Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

dsn error


  • Please log in to reply

#1
Jacqueee

Jacqueee

    Member

  • Member
  • PipPip
  • 10 posts
My web page will not open. This is the url that displays:
Res://c\\windows\system32\shdoclc.dll/dnserror.htm#http://www.tahitiannoni.co
Can this be changed so it will allow the page to display?
  • 0

Advertisements


#2
-=jonnyrotten=-

-=jonnyrotten=-

    Member 2k

  • Retired Staff
  • 2,678 posts
You need to type the full address http://www.tahitiannoni.com/ you forgot the "m" in com.

-=jonnyrotten=-
  • 0

#3
Jacqueee

Jacqueee

    Member

  • Topic Starter
  • Member
  • PipPip
  • 10 posts
Thanks Jonnyrotten. I always use the full address but it doesn't work.
The URL I printed was exactly as I saw it. I was thinking maybe the fact that the 'm' was missing was significant. Thanks for trying!! :-) I am now searching for something in sites that offer DNS repair for Windows XP systems. It is extremely frustrating! I even tried something called winsock fix that was supposed to work but it didn't! :-(
  • 0

#4
-=jonnyrotten=-

-=jonnyrotten=-

    Member 2k

  • Retired Staff
  • 2,678 posts
Which version of windows do you have? Do you install updates from microsoft? Do you use Internet explorer? We can get to the bottom of this, there's just this information that needs to be known. <_<

-=jonnyrotten=-
  • 0

#5
-=jonnyrotten=-

-=jonnyrotten=-

    Member 2k

  • Retired Staff
  • 2,678 posts
Ok, sorry, I see you have xp. home or pro? Is there any other websites that don't work? My first suggestion so far would be to download and run hijack this from the hijack this forum and post it here. I can help you find some things in there, but I will need help sorting out everything. Hijack this scans your registry and shows a log of everything that is running on your pc right now. It sounds like you may have something in there messing with your system. Any other strange problems besides loading this one page?

-=jonnyrotten=-
  • 0

#6
Jacqueee

Jacqueee

    Member

  • Topic Starter
  • Member
  • PipPip
  • 10 posts
Thanks Jonnyrotten! I have the home version 5.1. No problem with the other web sites loading. I'll do the highjack bit and post it for you. Sure hope something shows up! :-)
  • 0

#7
Jacqueee

Jacqueee

    Member

  • Topic Starter
  • Member
  • PipPip
  • 10 posts
Here is the log. I hope this will help! :-)
Logfile of HijackThis v1.98.2
Scan saved at 11:40:03 PM, on 09/15/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Nhksrv.exe
C:\WINDOWS\System32\CTsvcCDA.EXE
C:\Program Files\Norton SystemWorks\Norton Antivirus\navapsvc.exe
C:\PROGRA~1\NORTON~3\NORTON~2\NPROTECT.EXE
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Norton SystemWorks\Norton Antivirus\SAVScan.exe
C:\WINDOWS\System32\tcpsvcs.exe
C:\PROGRA~1\NORTON~3\NORTON~2\SPEEDD~1\NOPDB.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\devldr32.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\MusicMatch\MusicMatch Jukebox\mm_tray.exe
C:\WINDOWS\DELLMMKB.EXE
C:\Program Files\Creative\SBLive\Creative Diagnostics 2.0\DIAGENT.EXE
C:\Program Files\Microsoft Hardware\Mouse\point32.exe
C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb09.exe
C:\PROGRA~1\ADELPH~1\SMARTB~1\MotiveSB.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Creative\SBLive\AudioHQ\AHQTB.EXE
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Norton SystemWorks\Password Manager\AcctMgr.exe
c:\progra~1\intern~1\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Netropa\OSD.exe
C:\Program Files\America Online 8.0\aoltray.exe
C:\Program Files\Corel\WordPerfect Office 2000\programs\alarm.exe
C:\Program Files\Corel\WordPerfect Office 2000\programs\dad9.exe
C:\Program Files\Adelphia eSupport Assistant\bin\mpbtn.exe
C:\Program Files\Aluria Software\DrSpeed Suite\drspeed.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\Aluria Software\ASE\ASE Scheduler.exe
C:\WINDOWS\System32\HPZipm12.exe
C:\PROGRA~1\INCRED~1\bin\IMApp.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Jacqueline Somers\Local Settings\Temporary Internet Files\Content.IE5\W9QBSPEJ\HijackThis[1].exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.msnbc.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msnbc.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.msnbc.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.websearch...spx?tb_id=50032
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msnbc.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.wqzqnwrxo...mw3SEfIy0cX.jpg
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer Provided by Cox High Speed Internet
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {87766247-311C-43B4-8499-3D5FEC94A183} - C:\PROGRA~1\COMMON~1\WinTools\WToolsB.dll (file missing)
O2 - BHO: (no name) - {379C4E7D-8F20-685C-A96D-E399030A5FE0} - C:\PROGRA~1\GLOBAL~1\Hole bind.exe
O2 - BHO: (no name) - {87766247-311C-43B4-8499-3D5FEC94A183} - C:\PROGRA~1\COMMON~1\WinTools\WToolsB.dll (file missing)
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton SystemWorks\Norton Antivirus\NavShExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: (no name) - {339BB23F-A864-48C0-A59F-29EA915965EC} - (no file)
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize
O4 - HKLM\..\Run: [TCASUTIEXE] TCAUDIAG -off
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\Updreg.exe
O4 - HKLM\..\Run: [AHQInit] C:\Program Files\Creative\SBLive\Program\AHQInit.exe
O4 - HKLM\..\Run: [MMTray] C:\Program Files\MusicMatch\MusicMatch Jukebox\mm_tray.exe
O4 - HKLM\..\Run: [DellTouch] C:\WINDOWS\DELLMMKB.EXE
O4 - HKLM\..\Run: [DIAGENT] C:\Program Files\Creative\SBLive\Creative Diagnostics 2.0\DIAGENT.EXE startup
O4 - HKLM\..\Run: [POINTER] C:\Program Files\Microsoft Hardware\Mouse\point32.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb09.exe
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\ADELPH~1\SMARTB~1\MotiveSB.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [AudioHQ] C:\Program Files\Creative\SBLive\AudioHQ\AHQTB.EXE
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [AcctMgr] C:\Program Files\Norton SystemWorks\Password Manager\AcctMgr.exe /startup
O4 - HKLM\..\Run: [license multi] C:\PROGRA~1\KNOBRE~1\Scr Cast.exe
O4 - HKLM\..\Run: [SSC_UserPrompt] C:\Program Files\Common Files\Symantec Shared\Security Center\UsrPrmpt.exe
O4 - HKLM\..\Run: [enc long axis film] C:\Documents and Settings\All Users\Application Data\live stupid enc long\keepfile.exe
O4 - HKLM\..\Run: [WinTools] C:\PROGRA~1\COMMON~1\WinTools\WToolsA.exe
O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\Money Express.exe"
O4 - HKCU\..\Run: [IncrediMail] C:\PROGRA~1\INCRED~1\bin\IncMail.exe /c
O4 - Startup: ASE Scheduler.lnk = C:\Program Files\Aluria Software\ASE\ASE Scheduler.exe
O4 - Global Startup: Adelphia eSupport Assistant.lnk = C:\Program Files\Adelphia eSupport Assistant\bin\matcli.exe
O4 - Global Startup: America Online Tray Icon.lnk = C:\Program Files\America Online 8.0\aoltray.exe
O4 - Global Startup: Camio Viewer 2000.lnk = C:\Program Files\Sierra Imaging\Image Expert 2000\IXApplet.exe
O4 - Global Startup: CorelCENTRAL 9.LNK = C:\Program Files\Corel\WordPerfect Office 2000\programs\ccwin9.exe
O4 - Global Startup: CorelCENTRAL Alarms.LNK = C:\Program Files\Corel\WordPerfect Office 2000\programs\alarm.exe
O4 - Global Startup: Desktop Application Director 9.LNK = C:\Program Files\Corel\WordPerfect Office 2000\programs\dad9.exe
O4 - Global Startup: Dr.Speed NetRx.lnk = C:\Program Files\Aluria Software\DrSpeed Suite\drspeed.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &Add animation to IncrediMail Style Box - C:\PROGRA~1\INCRED~1\bin\resources\WebMenuImg.htm
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward &Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cac&hed Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Si&milar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyviewer.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.msnbc.com
O14 - IERESET.INF: MS_START_PAGE_URL=http://www.msnbc.com
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akama...meInstaller.exe
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.r...ip/RdxIE601.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.syma...n/bin/cabsa.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://download.av.a...,18/mcgdmgr.cab
O16 - DPF: {F00F4763-7355-4725-82F7-0DA94A256D46} (IMDownloader Class) - http://www2.incredim...er/imloader.cab
O18 - Protocol: cetihpz - {CF184AD3-CDCB-4168-A3F7-8E447D129300} - C:\Program Files\HP\hpcoretech\comp\hpuiprot.dll
O18 - Protocol: SafeAuthenticate - {8125919B-9BE9-4213-A1D6-75188A22D21E} - C:\WINDOWS\MVNFILT3.DLL
  • 0

#8
-=jonnyrotten=-

-=jonnyrotten=-

    Member 2k

  • Retired Staff
  • 2,678 posts
Ok it looks like there are a few things on here that need a closer look, please be patient while your log is analyzed. I will post a reply as soon as I have further answers.

-=jonnyrotten=-
  • 0

#9
-=jonnyrotten=-

-=jonnyrotten=-

    Member 2k

  • Retired Staff
  • 2,678 posts
Please go offline, close all browsers and any open Windows, making sure that only HijackThis is open. Scan and when it finishes, put an X in the boxes, only next to these following items, then click fix checked.


R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.wqzqnwrxo...mw3SEfIy0cX.jpg
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

O2 - BHO: (no name) - {379C4E7D-8F20-685C-A96D-E399030A5FE0} - C:\PROGRA~1\GLOBAL~1\Hole bind.exe
O2 - BHO: (no name) - {87766247-311C-43B4-8499-3D5FEC94A183} - C:\PROGRA~1\COMMON~1\WinTools\WToolsB.dll (file missing)

O3 - Toolbar: (no name) - {339BB23F-A864-48C0-A59F-29EA915965EC} - (no file)

O4 - HKLM\..\Run: [WinTools] C:\PROGRA~1\COMMON~1\WinTools\WToolsA.ex
O4 - HKLM\..\Run: [license multi] C:\PROGRA~1\KNOBRE~1\Scr Cast.exe
O4 - HKLM\..\Run: [enc long axis film] C:\Documents and Settings\All Users\Application Data\live stupid enc long\keepfile.exe

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
09 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)

O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.r...ip/RdxIE601.cab


Delete the Wintools folder, and all the O4 .exe files that have been fixed.
C:\PROGRAM FILES\GLOBAL... <- this folder (name abbreviated)
C:\PROGRAM FILES\COMMON FILES\WinTools <- this folder
C:\PROGRAM FILES\KNOBRE... <- this folder (name abbreviated)
C:\Documents and Settings\All Users\Application Data\live stupid enc long <- this folder


Reboot in safe mode (by tapping F8 at startup and select safe mode from the menu).
Be sure you're able to view hidden files, and remove the following files in bold (if found):
Reboot your PC.

If you would please, rescan with HijackThis and post a fresh log in this same topic, and let us know how your system's working.
  • 0

#10
Jacqueee

Jacqueee

    Member

  • Topic Starter
  • Member
  • PipPip
  • 10 posts
Please forgive the delay...I've been ducking tornados! Bad weather here! I'm not very knowledgable about how to do what was instructed but this is what I have so far!
Logfile of HijackThis v1.98.2
Scan saved at 10:12:10 PM, on 09/17/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Documents and Settings\Jacqueline Somers\My Documents\HijackThis.exe
C:\WINDOWS\notepad.exe
C:\WINDOWS\System32\devldr32.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.msnbc.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.

unvgisyhgjanigjbqclyzvje.com/mLXJm_QYStsXVFi4I5C__F_LH_rGRgKbrFeK1wsQrJQ.jpg
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.msnbc.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.websearch.com/

ie.aspx?tb_id=50032
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msnbc.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.crmbnatpsq.

net/mLXJm_QYStv3YlviPPcl6/m7xKP90im0wbwGqvbnOxxtu_MhDVwcjXw3SEfIy0cX.jsp
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer Provided by

Cox High Speed Internet
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R3 - URLSearchHook: (no name) - {87766247-311C-43B4-8499-3D5FEC94A183} - (no file)
O1 - Hosts: 66.220.17.157 157.17.220.66.in-addr.arpa
O1 - Hosts: 208.185.101.176 a.tribalfusion.com
O1 - Hosts: 64.235.246.120 ads1.revenue.net
O1 - Hosts: 66.180.229.203 andrea.editthispage.com
O1 - Hosts: 206.132.3.45 capitalone.bfi0.com
O1 - Hosts: 66.35.204.10 caselaw.lp.findlaw.com
O1 - Hosts: 63.240.173.32 cbs.marketwatch.com
O1 - Hosts: 216.19.170.248 cbs.sportsline.com
O1 - Hosts: 66.150.15.150 datavore.livejournal.com
O1 - Hosts: 66.102.135.81 detectivewho.com
O1 - Hosts: 219.254.32.69 diana.ikcfchh.info
O1 - Hosts: 216.40.33.220 domaindirect.com
O1 - Hosts: 209.35.114.249 domainforwarding.com.hosting.domaindirect.com
O1 - Hosts: 151.193.164.183 dps1.travelocity.com
O1 - Hosts: 159.153.230.19 drawpoker.pogo.com
O1 - Hosts: 209.157.66.88 equine.tahitiannoni.com
O1 - Hosts: 209.202.214.18 finance.lycos.com
O1 - Hosts: 63.251.169.251 find.intelius.com
O1 - Hosts: 64.41.73.216 forums.devshed.com
O1 - Hosts: 64.211.248.40 globetrek.com
O1 - Hosts: 66.15.60.65 gprix.com
O1 - Hosts: 159.153.230.27 hearts.pogo.com
O1 - Hosts: 66.77.70.170 insurance.respond.com
O1 - Hosts: 207.36.117.85 jackiesomers.noniworks.net
O1 - Hosts: 159.153.230.20 jumbee.pogo.com
O1 - Hosts: 206.29.192.130 kevdb.infospace.com
O1 - Hosts: 216.40.35.34 mail.realnoni4life.com
O1 - Hosts: 63.246.12.59 members.instantaudio.com
O1 - Hosts: 66.43.18.26 midatlantic.rootsweb.com
O1 - Hosts: 66.179.229.20 millennium.fortunecity.com
O1 - Hosts: 66.235.184.9 music.elijahlist.com
O1 - Hosts: 216.239.39.147 news.google.com
O1 - Hosts: 131.107.102.111 oca.microsoft.com
O1 - Hosts: 64.42.33.10 officesupplies.addresses.com
O1 - Hosts: 151.138.2.169 phonebook.superpages.com
O1 - Hosts: 159.153.253.29 play.pogo.com
O1 - Hosts: 159.153.253.34 play05.pogo.com
O1 - Hosts: 159.153.253.35 play06.pogo.com
O1 - Hosts: 64.14.205.92 preview.ussearch.com
O1 - Hosts: 66.77.43.53 products.consumerguide.com
O1 - Hosts: 199.171.55.40 pro-net.sba.gov
O1 - Hosts: 216.116.227.149 quarterhorsenews.com
O1 - Hosts: 66.218.79.165 reliable-isps.net
O1 - Hosts: 132.239.119.32 rohan.ucsd.edu
O1 - Hosts: 82.165.160.38 s89223352.onlinehome.us
O1 - Hosts: 207.44.218.12 safespy.net
O1 - Hosts: 205.179.93.6 search.freefind.com
O1 - Hosts: 64.94.162.226 search.starware.com
O1 - Hosts: 216.136.224.165 search.store.yahoo.com
O1 - Hosts: 209.18.34.78 securityresponse.symantec.com
O1 - Hosts: 162.42.218.245 specter2004.com
O1 - Hosts: 207.46.130.112 support.microsoft.com
O1 - Hosts: 199.166.24.10 support.open-rsc.org
O1 - Hosts: 151.193.166.10 travel.travelocity.com
O1 - Hosts: 63.67.120.11 users.zoominternet.net
O1 - Hosts: 209.11.65.151 v.0vm.com
O1 - Hosts: 207.46.157.29 v5.windowsupdate.microsoft.com
O1 - Hosts: 64.132.147.118 web2.acbl.org
O1 - Hosts: 208.185.182.210 whitepages.searchbug.com
O1 - Hosts: 64.62.229.27 www.888geekhelp.com
O1 - Hosts: 144.9.72.134 www.aa.com
O1 - Hosts: 192.150.18.60 www.adobe.com
O1 - Hosts: 66.49.188.39 www.agnovi.com
O1 - Hosts: 192.216.212.140 www.airtran.com
O1 - Hosts: 65.160.236.80 www.alibris.com
O1 - Hosts: 207.171.166.48 www.amazon.com
O1 - Hosts: 12.47.205.85 www.americawest.com
O1 - Hosts: 209.202.218.12 www.angelfire.com
O1 - Hosts: 209.126.184.65 www.anycities.com
O1 - Hosts: 204.127.135.136 www.anywho.com
O1 - Hosts: 171.161.161.173 www.bankofamerica.com
O1 - Hosts: 129.62.4.51 www.baylor.edu
O1 - Hosts: 216.130.185.143 www.begin2search.com
O1 - Hosts: 216.173.234.170 www.bestfares.com
O1 - Hosts: 69.56.244.238 www.bidwhistonline.com
O1 - Hosts: 216.52.244.254 www.bizrate.com
O1 - Hosts: 209.73.56.19 www.bobvila.com
O1 - Hosts: 209.249.124.12 www.boothfeeds.com
O1 - Hosts: 66.45.54.150 www.brbpub.com
O1 - Hosts: 209.63.18.100 www.broadandcassel.com
O1 - Hosts: 205.205.8.36 www.building-muscle101.com
O1 - Hosts: 205.243.248.147 www.burneychamber.com
O1 - Hosts: 66.77.216.100 www.burneyclassic.active.com
O1 - Hosts: 65.182.196.129 www.campaignmoney.com
O1 - Hosts: 64.70.241.15 www.cantcryhardenough.com
O1 - Hosts: 199.244.218.42 www.capitalone.com
O1 - Hosts: 170.20.0.25 www.cbsnews.com
O1 - Hosts: 63.81.68.3 www.cheaptickets.com
O1 - Hosts: 192.216.76.50 www.christianbook.com
O1 - Hosts: 207.44.180.25 www.city-data.com
O1 - Hosts: 209.115.29.41 www.clevelandseniors.com
O1 - Hosts: 207.114.236.45 www.clickbank.net
O1 - Hosts: 168.144.70.129 www.coastalhernando.com
O1 - Hosts: 212.227.124.21 www.compareandreview.com
O1 - Hosts: 69.93.141.100 www.computing.net
O1 - Hosts: 64.83.52.104 www.consumeraffairs.com
O1 - Hosts: 66.228.5.80 www.consumersearch.com
O1 - Hosts: 66.216.127.50 www.coolrunning.com
O1 - Hosts: 170.99.108.1 www.courts.state.md.us
O1 - Hosts: 12.96.184.82 www.cqservices.com
O1 - Hosts: 216.12.208.123 www.cybertechhelp.com
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program

Files\Norton SystemWorks\Norton Antivirus\NavShExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program

files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft

Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize
O4 - HKLM\..\Run: [TCASUTIEXE] TCAUDIAG -off
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Adaptec\Easy CD Creator 5

\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\Updreg.exe
O4 - HKLM\..\Run: [AHQInit] C:\Program Files\Creative\SBLive\Program\AHQInit.exe
O4 - HKLM\..\Run: [MMTray] C:\Program Files\MusicMatch\MusicMatch Jukebox\mm_tray.exe
O4 - HKLM\..\Run: [DellTouch] C:\WINDOWS\DELLMMKB.EXE
O4 - HKLM\..\Run: [DIAGENT] C:\Program Files\Creative\SBLive\Creative Diagnostics 2.0\DIAGENT.

EXE startup
O4 - HKLM\..\Run: [POINTER] C:\Program Files\Microsoft Hardware\Mouse\point32.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb09.exe
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\ADELPH~1\SMARTB~1\MotiveSB.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [AudioHQ] C:\Program Files\Creative\SBLive\AudioHQ\AHQTB.EXE
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -

osboot
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [AcctMgr] C:\Program Files\Norton SystemWorks\Password Manager\AcctMgr.exe /

startup
O4 - HKLM\..\Run: [SSC_UserPrompt] C:\Program Files\Common Files\Symantec Shared\Security

Center\UsrPrmpt.exe
O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\Money Express.exe"
O4 - HKCU\..\Run: [IncrediMail] C:\PROGRA~1\INCRED~1\bin\IncMail.exe /c
O4 - Startup: ASE Scheduler.lnk = C:\Program Files\Aluria Software\ASE\ASE Scheduler.exe
O4 - Global Startup: Adelphia eSupport Assistant.lnk = C:\Program Files\Adelphia eSupport

Assistant\bin\matcli.exe
O4 - Global Startup: America Online Tray Icon.lnk = C:\Program Files\America Online 8.0\aoltray

.exe
O4 - Global Startup: Camio Viewer 2000.lnk = C:\Program Files\Sierra Imaging\Image Expert 2000

\IXApplet.exe
O4 - Global Startup: CorelCENTRAL 9.LNK = C:\Program Files\Corel\WordPerfect Office 2000

\programs\ccwin9.exe
O4 - Global Startup: CorelCENTRAL Alarms.LNK = C:\Program Files\Corel\WordPerfect Office 2000

\programs\alarm.exe
O4 - Global Startup: Desktop Application Director 9.LNK = C:\Program Files\Corel\WordPerfect

Office 2000\programs\dad9.exe
O4 - Global Startup: Dr.Speed NetRx.lnk = C:\Program Files\Aluria Software\DrSpeed

Suite\drspeed.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital

Imaging\bin\hpqtra08.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &Add animation to IncrediMail Style Box - C:\PROGRA~1\INCRED~1

\bin\resources\WebMenuImg.htm
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll

/cmsearch.html
O8 - Extra context menu item: Backward &Links - res://c:\program files\google\GoogleToolbar1.

dll/cmbacklinks.html
O8 - Extra context menu item: Cac&hed Snapshot of Page - res://c:\program

files\google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Si&milar Pages - res://c:\program files\google\GoogleToolbar1.dll

/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:\program

files\google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program

Files\Microsoft Money\System\mnyviewer.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.msnbc.com
O14 - IERESET.INF: MS_START_PAGE_URL=http://www.msnbc.com
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/

20030530/qtinstall.info.apple.com/bonnie/us/win/QuickTimeInstaller.exe
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://

security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://download.av.

aol.com/molbin/shared/mcgdmgr/en-us/1,0,0,18/mcgdmgr.cab
O16 - DPF: {F00F4763-7355-4725-82F7-0DA94A256D46} (IMDownloader Class) - http://www2.

incredimail.com/contents/setup/downloader/imloader.cab
O18 - Protocol: cetihpz - {CF184AD3-CDCB-4168-A3F7-8E447D129300} - C:\Program

Files\HP\hpcoretech\comp\hpuiprot.dll
O18 - Protocol: SafeAuthenticate - {8125919B-9BE9-4213-A1D6-75188A22D21E} - C:\WINDOWS\MVNFILT3

.DLL


I look forward to the next task! :-)
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP