Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

PC slow after some recent popups from IE (Hijackthis log posted)


  • Please log in to reply

#1
uzi9mm

uzi9mm

    Member

  • Member
  • PipPip
  • 34 posts
Hi guys,

Yesterday all of a sudden I got popups from IE called 'Advertisement by Outerinfo', thereafter the PC was very slow. After searching on the web I managed to uninstall the Outerinfo program using their very own uninstaller.

After uninstalling Outerinfo the PC has got a bit better in terms of speed, but is still relatively slow.

Can you please help me solve this problem.

Thanks.

My HijackThis log:

Logfile of HijackThis v1.99.1
Scan saved at 21:16:14, on 10/01/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINNT\system32\spoolsv.exe
C:\WINNT\Explorer.EXE
C:\WINNT\System32\svchost.exe
C:\WINNT\System32\hkcmd.exe
C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher .exe
C:\WINNT\system32\ctfmon.exe
C:\WINNT\System32\hkcmd .exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Dot1XCfg\Dot1XCfg.exe
C:\Program Files\NETGEAR\WG121 Configuration Utility\wlancfg8.exe
C:\WINNT\system32\ctfmon .exe
C:\Program Files\Java\jre1.6.0_02\bin\jusched .exe
C:\Program Files\Windows Media Player\WMPNSCFG .exe
C:\Program Files\Common Files\Teleca Shared\CapabilityManager.exe
C:\Program Files\Dot1XCfg\Dot1XCfg .exe
C:\WINNT\system32\wscntfy.exe
C:\Program Files\MSN Messenger\MsnMsgr .Exe
C:\WINNT\system32\wuauclt.exe
C:\Program Files\Common Files\Teleca Shared\Generic.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\HijackThis\HijackThis.exe

F3 - REG:win.ini: load=C:\WINNT\system32\ddcyv.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINNT\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINNT\System32\hkcmd.exe
O4 - HKLM\..\Run: [Athan] C:\Program Files\Athan\Athan.exe
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask .exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINNT\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [Dot1XCfg] C:\Program Files\Dot1XCfg\Dot1XCfg.exe
O4 - Global Startup: Smart Wizard Wireless Settings.lnk = ?
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {3EA4FA88-E0BE-419A-A732-9B79B87A6ED0} (CTVUAxCtrl Object) - http://dl.tvunetworks.com/TVUAx.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.mi...b?1189461715843
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.mi...b?1189461702046
O16 - DPF: {C5E28B9D-0A68-4B50-94E9-E8F6B4697514} (NsvPlayX Control) - http://www.nullsoft....ayx_vp3_mp3.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINNT\system32\WPDShServiceObj.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
  • 0

Advertisements


#2
uzi9mm

uzi9mm

    Member

  • Topic Starter
  • Member
  • PipPip
  • 34 posts
Ok guys just seen your topic on Outerinfo.

Here is the ComboFix log:



ComboFix 08-01-10.2 - Uzi 2008-01-10 21:25:57.1 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.159 [GMT 0:00]
Running from: C:\Documents and Settings\Uzi.USMAN\My Documents\ComboFix.exe
* Created a new restore point
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Autorun.inf
C:\Documents and Settings\LocalService.NT AUTHORITY.000\Application Data\NetMon
C:\Documents and Settings\LocalService.NT AUTHORITY.000\Application Data\NetMon\domains.txt
C:\Documents and Settings\LocalService.NT AUTHORITY.000\Application Data\NetMon\log.txt
C:\Documents and Settings\NetworkService.NT AUTHORITY.000\Application Data\NetMon
C:\Documents and Settings\NetworkService.NT AUTHORITY.000\Application Data\NetMon\domains.txt
C:\Documents and Settings\NetworkService.NT AUTHORITY.000\Application Data\NetMon\log.txt
C:\Program Files\Athan\Athan.exe
C:\Program Files\Common Files\stem32~1
C:\Program Files\Common Files\Yazzle1281OinAdmin.exe
C:\Program Files\Common Files\Yazzle1281OinUninstaller.exe
C:\Program Files\Dot1XCfg\Dot1XCfg.exe
C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\MSN\profsysy.html
C:\Program Files\QuickTime\QTTask .exe
C:\Program Files\QuickTime\QTTask .exe
C:\Program Files\QuickTime\QTTask .exe
C:\Program Files\QuickTime\QTTask .exe
C:\Program Files\QuickTime\QTTask .exe
C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\WINNT\b122.exe
C:\WINNT\mrofinu1000106.exe
C:\WINNT\mrofinu572.exe
C:\WINNT\svchost.exe
C:\WINNT\system32\atmtd.dll.tmp
C:\WINNT\system32\byxxvvt.dll
C:\WINNT\system32\Cache
C:\WINNT\system32\ctfmon .exe
C:\WINNT\system32\ctfmon.exe.tmp
C:\WINNT\system32\ddcyv.dll
C:\WINNT\system32\ddcyv.exe
C:\WINNT\system32\gebyyyw.dll
C:\WINNT\System32\hkcmd.exe
C:\WINNT\System32\igfxtray.exe
C:\WINNT\system32\jkkkkjg.dll
C:\WINNT\system32\pac.txt
C:\WINNT\system32\RCX20.tmp
C:\WINNT\system32\scurit~1
C:\WINNT\system32\vycdd.ini
C:\WINNT\system32\vycdd.ini2
C:\WINNT\system32\wnsapii32.exe

<pre>
C:\Program Files\Athan\Athan .exe ---> Athan.exe
C:\Program Files\Dot1XCfg\Dot1XCfg .exe ---> Dot1XCfg.exe
C:\Program Files\Java\jre1.6.0_02\bin\jusched .exe ---> jusched.exe
C:\Program Files\MSN Messenger\MsnMsgr .Exe ---> MsnMsgr.Exe
C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher .exe ---> Application Launcher.exe
C:\Program Files\Windows Media Player\WMPNSCFG .exe ---> WMPNSCFG.exe
C:\WINNT\system32\ctfmon .exe ---> QooBox
C:\WINNT\system32\hkcmd .exe ---> hkcmd.exe
C:\WINNT\system32\igfxtray .exe ---> igfxtray.exe
</pre>
.
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))

.
-------\LEGACY_NETWORK_MONITOR


((((((((((((((((((((((((( Files Created from 2007-12-10 to 2008-01-10 )))))))))))))))))))))))))))))))
.

2008-01-10 21:21 . 2000-08-31 08:00 51,200 --a------ C:\WINNT\NirCmd.exe
2008-01-10 00:43 . 2008-01-10 00:43 <DIR> d-------- C:\Documents and Settings\All Users.WINNT\Application Data\Lavasoft
2008-01-10 00:40 . 2008-01-10 00:40 <DIR> d-------- C:\Program Files\Common Files\Wise Installation Wizard
2008-01-10 00:11 . 2008-01-10 00:13 <DIR> d-------- C:\Documents and Settings\Uzi.USMAN\Application Data\AdwareAlert
2008-01-09 22:09 . 2008-01-10 20:41 155,648 --a------ C:\WINNT\system32\igfxtray.exe
2008-01-09 22:09 . 2008-01-10 20:41 126,976 --a------ C:\WINNT\system32\hkcmd.exe
2008-01-09 21:21 . 2008-01-10 21:41 <DIR> d-------- C:\Program Files\Dot1XCfg
2008-01-09 21:18 . 2008-01-10 01:14 <DIR> d--hs---- C:\WINNT\VXNtYW4gSGFmaXo
2008-01-09 21:17 . 2008-01-10 20:04 <DIR> d-------- C:\WINNT\system32\pe2
2008-01-09 21:17 . 2008-01-10 20:04 <DIR> d-------- C:\WINNT\system32\ka8
2008-01-09 21:17 . 2008-01-09 21:17 <DIR> d-------- C:\WINNT\system32\edcA01
2008-01-09 21:17 . 2008-01-10 19:16 381,440 --a------ C:\WINNT\mrofinu572.exe.tmp
2007-12-31 18:52 . 2007-12-31 18:52 <DIR> d-------- C:\WINNT\Cache
2007-12-15 16:04 . 2008-01-02 20:44 <DIR> d-------- C:\Documents and Settings\Uzi.USMAN\Shared
2007-12-15 16:04 . 2008-01-09 23:41 <DIR> d-------- C:\Documents and Settings\Uzi.USMAN\Incomplete
2007-12-15 16:03 . 2008-01-09 23:41 <DIR> d-------- C:\Documents and Settings\Uzi.USMAN\Application Data\LimeWire
2007-12-15 16:02 . 2007-12-15 16:03 <DIR> d-------- C:\Program Files\LimeWire

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-01-10 21:41 --------- d-----w C:\Program Files\MSN Messenger
2008-01-10 21:41 --------- d-----w C:\Program Files\Athan
2008-01-10 21:36 --------- d-----w C:\Program Files\QuickTime
2008-01-10 00:43 --------- d-----w C:\Program Files\Lavasoft
2008-01-09 21:10 --------- d-----w C:\Program Files\SopCast
2007-12-23 13:22 --------- d-----w C:\Documents and Settings\Uzi.USMAN\Application Data\SopCast
2007-12-09 14:49 --------- d-----w C:\Documents and Settings\All Users.WINNT\Application Data\Apple Computer
2007-12-09 14:48 --------- d-----w C:\Program Files\Apple Software Update
2007-12-09 14:48 --------- d-----w C:\Documents and Settings\All Users.WINNT\Application Data\Apple
2007-10-23 11:08 77,824 ----a-w C:\MicroSofts.pif
2005-02-19 16:51 17,776 ----a-w C:\Documents and Settings\Yusuf\Application Data\GDIPFONTCACHEV1.DAT
2005-01-16 19:22 17,776 ----a-w C:\Documents and Settings\Ayesha\Application Data\GDIPFONTCACHEV1.DAT
2004-12-14 20:00 17,776 ----a-w C:\Documents and Settings\Owner\Application Data\GDIPFONTCACHEV1.DAT
2005-07-29 16:24 472 --sha-r C:\WINNT\VXNtYW4gSGFmaXo\prhQsqb0m3IAurC.vbs
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINNT\system32\ctfmon.exe" [2004-08-03 23:56 15360]
"MsnMsgr"="C:\Program Files\MSN Messenger\MsnMsgr.exe" [2008-01-10 20:42 5674352]
"WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe" [2008-01-10 20:41 204288]
"Dot1XCfg"="C:\Program Files\Dot1XCfg\Dot1XCfg.exe" [2008-01-10 20:41 61440]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="C:\WINNT\System32\igfxtray.exe" [2008-01-10 20:41 155648]
"HotKeysCmds"="C:\WINNT\System32\hkcmd.exe" [2008-01-10 20:41 126976]
"Athan"="C:\Program Files\Athan\Athan.exe" [2008-01-10 20:17 1003520]
"Sony Ericsson PC Suite"="C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" [2008-01-10 20:41 159744]
"QuickTime Task"="C:\Program Files\QuickTime\QTTask .exe" [ ]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe" [2008-01-10 20:41 132496]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="C:\WINNT\System32\CTFMON.EXE" [2004-08-03 23:56 15360]

C:\Documents and Settings\All Users.WINNT\Start Menu\Programs\Startup\
Smart Wizard Wireless Settings.lnk - C:\Program Files\NETGEAR\WG121 Configuration Utility\wlancfg8.exe [2004-02-27 15:41:54]

S3 NSNDIS5;NSNDIS5 NDIS Protocol Driver;C:\WINNT\system32\NSNDIS5.SYS [2004-03-24 02:12]
S3 wg121;NETGEAR WG121 802.11g Wireless USB2.0 Adapter;C:\WINNT\system32\DRIVERS\wg121nd5.sys [2003-11-28 10:18]

.
Contents of the 'Scheduled Tasks' folder
"2008-01-10 00:12:55 C:\WINNT\Tasks\AdwareAlert Scheduled Scan.job"
- C:\Program Files\AdwareAlert\AdwareAlert.ex
- C:\Program Files\AdwareAlert
"2007-12-27 16:45:01 C:\WINNT\Tasks\AppleSoftwareUpdate.job"
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe
.
**************************************************************************

catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-01-10 21:41:54
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
Completion time: 2008-01-10 21:48:42 - machine was rebooted
ComboFix-quarantined-files.txt 2008-01-10 21:48:39
  • 0

#3
uzi9mm

uzi9mm

    Member

  • Topic Starter
  • Member
  • PipPip
  • 34 posts
Ok I've now run a full system scan on AVG Anti-Spyware 7.5, but for some reason I can't save the report. So I can't post the report here, but I will post my HijackThis Log.


My HjackThis log after doing a full system scan on AVG:

Logfile of HijackThis v1.99.1
Scan saved at 23:44:46, on 10/01/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINNT\System32\smss.exe
C:\WINNT\system32\winlogon.exe
C:\WINNT\system32\services.exe
C:\WINNT\system32\lsass.exe
C:\WINNT\system32\svchost.exe
C:\WINNT\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINNT\system32\spoolsv.exe
C:\WINNT\System32\svchost.exe
C:\WINNT\system32\wscntfy.exe
C:\WINNT\Explorer.EXE
C:\WINNT\System32\hkcmd.exe
C:\Program Files\Athan\Athan.exe
C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
C:\WINNT\system32\ctfmon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Dot1XCfg\Dot1XCfg.exe
C:\Program Files\NETGEAR\WG121 Configuration Utility\wlancfg8.exe
C:\Program Files\Common Files\Teleca Shared\CapabilityManager.exe
C:\Program Files\Common Files\Teleca Shared\Generic.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINNT\system32\wuauclt.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\HijackThis\HijackThis.exe

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINNT\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINNT\System32\hkcmd.exe
O4 - HKLM\..\Run: [Athan] C:\Program Files\Athan\Athan.exe
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask .exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINNT\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [Dot1XCfg] C:\Program Files\Dot1XCfg\Dot1XCfg.exe
O4 - Global Startup: Smart Wizard Wireless Settings.lnk = ?
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {C5E28B9D-0A68-4B50-94E9-E8F6B4697514} (NsvPlayX Control) - http://www.nullsoft....ayx_vp3_mp3.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
O20 - Winlogon Notify: igfxcui - C:\WINNT\SYSTEM32\igfxsrvc.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINNT\system32\WPDShServiceObj.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
  • 0

#4
uzi9mm

uzi9mm

    Member

  • Topic Starter
  • Member
  • PipPip
  • 34 posts
Rebooted the PC and so far so good. Hopefully it stays this way.

Anyway thanks for the guide on Outerinfo. It proved very helpful.

Much appreciated.

Kind Regards,

uzi9mm
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP