Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Problem With "Navipromo"


  • Please log in to reply

#1
watto55

watto55

    New Member

  • Member
  • Pip
  • 1 posts
Hi, new to this forum and stumbled upon it looking for help in removing this irritating bug on my PC. Noticed recently a slow down in the efficiency of my machine and then I started getting random pop ups that seemed to be promoting whatever I was showing interest in whilst browsing. I have Bit Defender active on my pc for anti virus and regularly run SpyBot & Adaware SE. I have followed all the advice offered prior to posting a HijackThis Log but I am still infected.
Please find Text File Logs below.


SUPERAntiSpyware Scan Log
Generated 01/09/2008 at 06:47 PM

Application Version : 3.6.1000

Core Rules Database Version : 3377
Trace Rules Database Version: 1371

Scan type : Complete Scan
Total Scan Time : 03:04:09

Memory items scanned : 578
Memory threats detected : 0
Registry items scanned : 6285
Registry threats detected : 14
File items scanned : 116373
File threats detected : 113

MyWay Search Assistant Computers
HKLM\Software\Classes\CLSID\{4D25F921-B9FE-4682-BF72-8AB8210D6D75}
HKCR\CLSID\{4D25F921-B9FE-4682-BF72-8AB8210D6D75}
HKCR\CLSID\{4D25F921-B9FE-4682-BF72-8AB8210D6D75}
HKCR\CLSID\{4D25F921-B9FE-4682-BF72-8AB8210D6D75}\InprocServer32
HKCR\CLSID\{4D25F921-B9FE-4682-BF72-8AB8210D6D75}\InprocServer32#ThreadingModel
HKCR\CLSID\{4D25F921-B9FE-4682-BF72-8AB8210D6D75}\Programmable
C:\PROGRAM FILES\MYWAYSA\SRCHASDE\DESRCAS.DLL
HKLM\Software\Classes\CLSID\{4D25F926-B9FE-4682-BF72-8AB8210D6D75}
HKCR\CLSID\{4D25F926-B9FE-4682-BF72-8AB8210D6D75}
HKCR\CLSID\{4D25F926-B9FE-4682-BF72-8AB8210D6D75}
HKCR\CLSID\{4D25F926-B9FE-4682-BF72-8AB8210D6D75}\InprocServer32
HKCR\CLSID\{4D25F926-B9FE-4682-BF72-8AB8210D6D75}\InprocServer32#ThreadingModel
HKCR\CLSID\{4D25F926-B9FE-4682-BF72-8AB8210D6D75}\Programmable
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4D25F921-B9FE-4682-BF72-8AB8210D6D75}
HKU\S-1-5-21-629682045-3931029317-1259212358-1006\Software\Microsoft\Internet Explorer\URLSearchHooks#{4D25F926-B9FE-4682-BF72-8AB8210D6D75}

Adware.Tracking Cookie
C:\Documents and Settings\Dave Watson\Cookies\[email protected][1].txt
C:\Documents and Settings\Dave Watson\Cookies\[email protected][1].txt
C:\Documents and Settings\Dave Watson\Cookies\[email protected][2].txt
C:\Documents and Settings\Dave Watson\Cookies\[email protected][2].txt
C:\Documents and Settings\Dave Watson\Cookies\[email protected][1].txt
C:\Documents and Settings\Dave Watson\Cookies\[email protected][1].txt
C:\Documents and Settings\Dave Watson\Cookies\[email protected][2].txt
C:\Documents and Settings\Dave Watson\Cookies\[email protected][2].txt
C:\Documents and Settings\Dave Watson\Cookies\[email protected][2].txt
C:\Documents and Settings\Dave Watson\Cookies\[email protected][1].txt
C:\Documents and Settings\Dave Watson\Cookies\[email protected][2].txt
C:\Documents and Settings\Dave Watson\Cookies\[email protected][2].txt
C:\Documents and Settings\Dave Watson\Cookies\[email protected][2].txt
C:\Documents and Settings\Dave Watson\Cookies\[email protected][3].txt
C:\Documents and Settings\Dave Watson\Cookies\[email protected][1].txt
C:\Documents and Settings\Dave Watson\Cookies\[email protected][2].txt
C:\Documents and Settings\Dave Watson\Cookies\[email protected][2].txt
C:\Documents and Settings\Dave Watson\Cookies\[email protected][2].txt
C:\Documents and Settings\Dave Watson\Cookies\[email protected][4].txt
C:\Documents and Settings\Dave Watson\Cookies\[email protected][1].txt
C:\Documents and Settings\Dave Watson\Cookies\[email protected][2].txt
C:\Documents and Settings\Dave Watson\Cookies\[email protected][1].txt
C:\Documents and Settings\Dave Watson\Cookies\[email protected][2].txt
C:\Documents and Settings\Dave Watson\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\rachael [email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\rachael [email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\rachael [email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\rachael [email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\rachael [email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\rachael [email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\rachael [email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\rachael [email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\rachael [email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\rachael [email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\rachael [email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\rachael [email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\rachael [email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\rachael [email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][bleep]-shack[2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][4].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][5].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][2].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][4].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt


The next is the output from the "Pana Active Scan"

Incident Status Location

Dialer:dialer.xd Not disinfected HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FF3F0F03-0F01-131A-A3F9-08F02B23E0CC}
Dialer:dialer.py Not disinfected HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8522F9B3-38C5-4AA4-AE40-7401F1BBC851}
Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Dave Watson\Cookies\[email protected][1].txt
Spyware:Cookie/Adviva Not disinfected C:\Documents and Settings\Dave Watson\Cookies\[email protected][2].txt
Spyware:Cookie/NewMedia Not disinfected C:\Documents and Settings\Dave Watson\Cookies\[email protected][2].txt
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Dave Watson\Cookies\[email protected][2].txt
Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Dave Watson\Cookies\[email protected][2].txt
Spyware:Cookie/Statcounter Not disinfected C:\Documents and Settings\Dave Watson\Cookies\[email protected][1].txt
Spyware:Cookie/888 Not disinfected C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
Spyware:Cookie/NewMedia Not disinfected C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
Spyware:Cookie/bravenetA Not disinfected C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
Spyware:Cookie/888 Not disinfected C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][1].txt
Spyware:Cookie/Cassava Not disinfected C:\Documents and Settings\Rachael Suggitt\Cookies\[email protected][2].txt
Potentially unwanted tool:Application/Webmediaplayer Not disinfected C:\Program Files\WebMediaPlayer\WebMediaPlayer.exe

And this is the "HijackThis Log File"

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:56:25, on 10/01/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Softwin\BitDefender Communicator\xcommsvr.exe
C:\Program Files\Common Files\Softwin\BitDefender Update Service\livesrv.exe
C:\Program Files\Common Files\Softwin\BitDefender Scan Server\bdss.exe
C:\Program Files\Softwin\BitDefender10\vsserv.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\Apoint\Apoint.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Dell\Media Experience\DMXLauncher.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Apoint\Apntex.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\PROGRA~1\Softwin\BITDEF~2\bdmcon.exe
C:\Program Files\Softwin\BitDefender10\bdagent.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Kontiki\KHost.exe
C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe
C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.co.uk/myway
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft....k/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft....k/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = \blank.htm
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [DMXLauncher] C:\Program Files\Dell\Media Experience\DMXLauncher.exe
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [OM_Monitor] C:\Program Files\OLYMPUS\OLYMPUS Master\FirstStart.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [BDMCon] C:\PROGRA~1\Softwin\BITDEF~2\bdmcon.exe
O4 - HKLM\..\Run: [BDAgent] "C:\Program Files\Softwin\BitDefender10\bdagent.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [4oD] "C:\Program Files\Kontiki\KHost.exe" -all
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [kdx] C:\Program Files\Kontiki\KHost.exe -all
O4 - HKCU\..\Run: [OM_Monitor] C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe
O4 - HKCU\..\Run: [CTSyncU.exe] "C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe"
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O16 - DPF: {01010E00-5E80-11D8-9E86-0007E96C65AE} (SupportSoft SmartIssue) - http://www.symantec....trl/tgctlsi.cab
O16 - DPF: {01012101-5E80-11D8-9E86-0007E96C65AE} (SupportSoft Script Runner Class) - http://www.symantec....trl/tgctlsr.cab
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) - http://www.symantec....rl/LSSupCtl.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by140fd.bay14...es/MsnPUpld.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebo...otoUploader.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.micros...b?1138666388109
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zon...nt.cab31267.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoft...free/asinst.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn...pDownloader.cab
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} (ActiveDataInfo Class) - http://www.symantec....rl/SymAData.cab
O16 - DPF: {CE3409C4-9E26-4F8E-83E4-778498F9E7B4} (PB_Uploader Class) - http://static.photob...ploader_uni.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{B3601DE6-9639-49D3-9EEA-63AE8D36D7DA}: NameServer = 192.168.0.1
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Common Files\Softwin\BitDefender Scan Server\bdss.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: KService - Kontiki Inc. - C:\Program Files\Kontiki\KService.exe
O23 - Service: BitDefender Desktop Update Service (LIVESRV) - SOFTWIN S.R.L. - C:\Program Files\Common Files\Softwin\BitDefender Update Service\livesrv.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: BitDefender Virus Shield (VSSERV) - SOFTWIN S.R.L. - C:\Program Files\Softwin\BitDefender10\vsserv.exe
O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
O23 - Service: BitDefender Communicator (XCOMM) - SOFTWIN S.R.L - C:\Program Files\Common Files\Softwin\BitDefender Communicator\xcommsvr.exe

--
End of file - 10655 bytes

Look forward to any help that can be offered from you tech guys.

Thanks for looking

Dave W

Edited by watto55, 11 January 2008 - 02:43 AM.

  • 0

Advertisements







Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP