Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Downloading freezes and hangs


  • Please log in to reply

#16
coachwife6

coachwife6

    SuperStar

  • Retired Staff
  • 11,413 posts
* Please click this link to download Silent Runners.
* Save it to the desktop.
* Run Silent Runner's by doubleclicking the "Silent Runners" icon on your desktop.
* You will see a text file appear on the desktop - it's not done yet, just let it run (it won't appear to be doing anything!)
* Once you receive the prompt "All Done!", double-click on the new text file on the desktop and copy that entire log and paste it here.

*NOTE* If you receive any warning message about scripts, please choose to allow the script to run.
  • 0

Advertisements


#17
Phenom

Phenom

    Member

  • Topic Starter
  • Member
  • PipPip
  • 24 posts
I turned word wrap off so its easier to read.

"Silent Runners.vbs", revision 41, http://www.silentrunners.org/
Operating System: Windows XP SP2
Output limited to non-default values, except where indicated by "{++}"


Startup items buried in registry:
---------------------------------

HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ {++}
"H/PC Connection Agent" = ""C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"" [MS]
"tunebite.exe" = "C:\Program Files\tunebite\tunebite.exe -hidden" ["RapidSolution Software AG"]
"ctfmon.exe" = "C:\WINDOWS\system32\ctfmon.exe" [MS]
"Grades for Students Reminder" = "C:\Program Files\Grades for Students\RemindMe.exe" ["SupremeSoft"]

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ {++}
"ALiRaid" = "C:\Program Files\ALIRAID\ALiRaid.exe" [empty string]
"CTHelper" = "CTHELPER.EXE" ["Creative Technology Ltd"]
"SVPROG" = "C:\WINDOWS\PROTECT\SVPROG.EXE" ["SVPROG "]
"Acronis True Image Monitor" = ""C:\Program Files\Acronis\TrueImage\TrueImageMonitor.exe"" ["Acronis"]
"Acronis Scheduler2 Service" = ""C:\Program Files\Common Files\Acronis\Schedule2\schedhlp.exe"" ["Acronis"]
"NeroFilterCheck" = "C:\WINDOWS\system32\NeroCheck.exe" ["Ahead Software Gmbh"]
"MimBoot" = "C:\PROGRA~1\MUSICM~1\MUSICM~1\mimboot.exe" ["Musicmatch, Inc."]
"MMTray" = ""C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe"" ["Musicmatch, Inc."]
"SunJavaUpdateSched" = "C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe" ["Sun Microsystems, Inc."]
"Picasa Media Detector" = "C:\Program Files\Picasa2\PicasaMediaDetector.exe" ["Google Inc."]
"QuickTime Task" = ""C:\Program Files\QuickTime\qttask.exe" -atboottime" ["Apple Computer, Inc."]
"RemoteControl" = "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" ["Cyberlink Corp."]
"PSDrvCheck" = ""c:\program files\pinnacle\edition 5\program\PSDrvCheck.exe" -CheckReg" [empty string]
"SsAAD.exe" = "C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe" [null data]
"SmartGuardian" = "C:\Program Files\SOYO\HW Monitor\Itesmart.exe" [null data]
"APVXDWIN" = ""C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\APVXDWIN.EXE" /s" ["Panda Software International"]
"001PowerSupply" = "C:\WINDOWS\Memory64.exe" ["iJEN"]

HKLM\Software\Microsoft\Active Setup\Installed Components\
>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}\(Default) = "Outlook Express"
\StubPath = "C:\WINDOWS\system32\shmgrate.exe OCInstallUserConfigOE" [MS]

HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}\(Default) = "AcroIEHlprObj Class" [from CLSID]
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll" ["Adobe Systems Incorporated"]

HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
"{42071714-76d4-11d1-8b24-00a0c9068ff3}" = "Display Panning CPL Extension"
-> {CLSID}\InProcServer32\(Default) = "deskpan.dll" [file not found]
"{E0D79304-84BE-11CE-9641-444553540000}" = "WinZip"
-> {CLSID}\InProcServer32\(Default) = "C:\PROGRA~1\WINZIP\WZSHLSTB.DLL" ["WinZip Computing, Inc."]
"{E0D79305-84BE-11CE-9641-444553540000}" = "WinZip"
-> {CLSID}\InProcServer32\(Default) = "C:\PROGRA~1\WINZIP\WZSHLSTB.DLL" ["WinZip Computing, Inc."]
"{E0D79306-84BE-11CE-9641-444553540000}" = "WinZip"
-> {CLSID}\InProcServer32\(Default) = "C:\PROGRA~1\WINZIP\WZSHLSTB.DLL" ["WinZip Computing, Inc."]
"{E0D79307-84BE-11CE-9641-444553540000}" = "WinZip"
-> {CLSID}\InProcServer32\(Default) = "C:\PROGRA~1\WINZIP\WZSHLSTB.DLL" ["WinZip Computing, Inc."]
"{6B19FEC2-A45B-11CF-9045-00A0C9039735}" = "Registered ActiveX Controls"
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\Microsoft Visual Studio\Common\MSDev98\Bin\IDE\DEVXPGL.DLL" [MS]
"{D545EBD1-BD92-11CF-8772-00A0C9039735}" = "Developer Studio Components"
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\Microsoft Visual Studio\Common\MSDev98\Bin\IDE\DEVXPGL.DLL" [MS]
"{0006F045-0000-0000-C000-000000000046}" = "Microsoft Outlook Custom Icon Handler"
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\Microsoft Office\Office10\OLKFSTUB.DLL" [MS]
"{42042206-2D85-11D3-8CFF-005004838597}" = "Microsoft Office HTML Icon Handler"
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\Microsoft Office\Office10\msohev.dll" [MS]
"{79BC0345-1015-11D2-A299-006008312725}" = "blue.shell"
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\Pinnacle\Edition 5\Program\BlueShellExt.dll" [null data]
"{640167b4-59b0-47a6-b335-a6b3c0695aea}" = "Portable Media Devices"
-> {CLSID}\InProcServer32\(Default) = "C:\WINDOWS\system32\Audiodev.dll" [MS]
"{cc86590a-b60a-48e6-996b-41d25ed39a1e}" = "Portable Media Devices Menu"
-> {CLSID}\InProcServer32\(Default) = "C:\WINDOWS\system32\Audiodev.dll" [MS]
"{65756541-C65C-11CD-0000-4B656E696100}" = "Panda Antivirus"
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\ShellTit.DLL" ["Panda Software International"]
"{8FF88D21-7BD0-11D1-BFB7-00AA00262A11}" = "WinAce Archiver 2.6 Context Menu Shell Extension"
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\WinAce\arcext.dll" ["e-merge GmbH"]
"{8FF88D25-7BD0-11D1-BFB7-00AA00262A11}" = "WinAce Archiver 2.6 DragDrop Shell Extension"
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\WinAce\arcext.dll" ["e-merge GmbH"]
"{8FF88D27-7BD0-11D1-BFB7-00AA00262A11}" = "WinAce Archiver 2.6 Context Menu Shell Extension"
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\WinAce\arcext.dll" ["e-merge GmbH"]
"{8FF88D23-7BD0-11D1-BFB7-00AA00262A11}" = "WinAce Archiver 2.6 Property Sheet Shell Extension"
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\WinAce\arcext.dll" ["e-merge GmbH"]

HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\
INFECTION WARNING! "run" = "E:\RECYCLER\SVPRO\SVPROG.EXE" ["SVPROG "]

HKLM\System\CurrentControlSet\Control\Session Manager\
INFECTION WARNING! "BootExecute" = "PDBoot.exe autocheck autochk * PFDNNT C:\Program Files\DeskMates\Manager.exe PFDNNT C:\Program Files\DeskMates\Managerps.dll PFDNNT C:\Program Files\DeskMates\PaintMgr.dll PFDNNT C:\Program Files\DeskMates\Sprite.exe PFDNNT C:\Program Files\DeskMates\Spriteps.dll PFDNNT C:\Program Files\DeskMates\WebAbout.dll PFDNNT C:\Program Files\DeskMates\Tahni3D\Data\common_demo.FAS PFDNNT C:\Program Files\DeskMates\Tahni3D\Data\common_enter_demo.FAS PFDNNT C:\Program Files\DeskMates\Tahni3D\Data\DeskMate.WAS PFDNNT C:\Program Files\DeskMates\Tahni3D\Data\DeskMates.Wa3 PFDNNT C:\Program Files\DeskMates\Tahni3D\Data\T3D_balloon.FAS PFDNNT C:\Program Files\DeskMates\Tahni3D\Data\touch_demo.FAS PFDNNT C:\Program Files\DeskMates\Tahni3D\Data PFDNNT C:\Program Files\DeskMates\Tahni3D PFDNNT C:\Program Files\DeskMates PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\ICL_CFG.DLL PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\PAVEXCOM.DLL PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\PAVLSP.DLL PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\PAVTRC.DLL PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\PFSF.DLL PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\pskalloc.dll PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\Pskas.dll PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\Pskavs.dll PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\pskcmp.dll PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\Pskfss.dll PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\PSKHTML.dll PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\pskpack.dll PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\Pskudna.dll PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\pskutil.dll PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\pskvfile.dll PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\Pskvfs.dll PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\pskvm.dll PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\PSWLabel.dll PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\PSWLRes.dll PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\SHELLTIT.DLL PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\TITCFG.DLL PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\TPSrv.exe PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\Firewall\apflctrl.dll PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\Firewall\dsaflt.dll PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\Firewall\fnetctrl.dll PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\Firewall\idsflt.dll PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\Firewall\netflt.dll PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\Firewall\PNMSRV.exe PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\Firewall\smsflt.dll PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\Firewall\wnmflt.dll PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\Firewall PFDNNT C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware PFDNNT C:\Program Files\Panda Software PFDNNT C:\Program Files\Common Files\Panda Software\PavShld\PavShld.dll PFDNNT C:\Program Files\Common Files\Panda Software\PavShld\ProcProt.dll PFDNNT C:\Program Files\Common Files\Panda Software\PavShld PFDNNT C:\Program Files\Common Files\Panda Software PFDNNT C:\WINDOWS\system32\pavipc.dll PFDNNT C:\WINDOWS\system32\SYSTOOLS.DLL PFDNNT C:\WINDOWS\system32\PavSHook.dll PFDNNT C:\WINDOWS\system32\TpUtil.dll" [file not found], [file not found], [MS], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], [file not found], ["Panda Software"], [file not found], ["www.pandasoftware.com"], [file not found], ["Panda Software"], [file not found], [file not found]

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\
INFECTION WARNING! AtiExtEvent\DLLName = "Ati2evxx.dll" ["ATI Technologies Inc."]
INFECTION WARNING! avldr\DLLName = "avldr.dll" ["Panda Software"]

HKLM\Software\Classes\*\shellex\ContextMenuHandlers\
Panda Antivirus\(Default) = "{65756541-C65C-11CD-0000-4B656E696100}"
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\ShellTit.DLL" ["Panda Software International"]
WinZip\(Default) = "{E0D79304-84BE-11CE-9641-444553540000}"
-> {CLSID}\InProcServer32\(Default) = "C:\PROGRA~1\WINZIP\WZSHLSTB.DLL" ["WinZip Computing, Inc."]
ZFAdd\(Default) = "{8FF88D27-7BD0-11D1-BFB7-00AA00262A11}"
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\WinAce\arcext.dll" ["e-merge GmbH"]

HKLM\Software\Classes\Directory\shellex\ContextMenuHandlers\
WinZip\(Default) = "{E0D79304-84BE-11CE-9641-444553540000}"
-> {CLSID}\InProcServer32\(Default) = "C:\PROGRA~1\WINZIP\WZSHLSTB.DLL" ["WinZip Computing, Inc."]
ZFAdd\(Default) = "{8FF88D27-7BD0-11D1-BFB7-00AA00262A11}"
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\WinAce\arcext.dll" ["e-merge GmbH"]

HKLM\Software\Classes\Folder\shellex\ContextMenuHandlers\
Panda Antivirus\(Default) = "{65756541-C65C-11CD-0000-4B656E696100}"
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\ShellTit.DLL" ["Panda Software International"]
WinZip\(Default) = "{E0D79304-84BE-11CE-9641-444553540000}"
-> {CLSID}\InProcServer32\(Default) = "C:\PROGRA~1\WINZIP\WZSHLSTB.DLL" ["WinZip Computing, Inc."]


Active Desktop and Wallpaper:
-----------------------------

Active Desktop is disabled at this entry:
HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellState

HKCU\Control Panel\Desktop\
"Wallpaper" = "C:\Documents and Settings\Peter Worden\Local Settings\Application Data\Microsoft\Wallpaper1.bmp"


Startup items in "Peter Worden" & "All Users" startup folders:
--------------------------------------------------------------

C:\Documents and Settings\All Users\Start Menu\Programs\Startup
"Adobe Gamma Loader" -> shortcut to: "C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe" ["Adobe Systems, Inc."]
"Adobe Reader Speed Launch" -> shortcut to: "C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe" ["Adobe Systems Incorporated"]
"hp psc 2000 Series" -> shortcut to: "C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe" ["Hewlett-Packard Co."]
"hpoddt01.exe" -> shortcut to: "C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe" ["Hewlett-Packard"]
"Post-it® Software Notes" -> shortcut to: "C:\Program Files\3M\PSNotes2\Psn.exe -RegRun" ["3M"]
"WinZip Quick Pick" -> shortcut to: "C:\Program Files\WinZip\WZQKPICK.EXE" ["WinZip Computing, Inc."]


Winsock2 Service Provider DLLs:
-------------------------------

Namespace Service Providers

HKLM\System\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\ {++}
000000000001\LibraryPath = "%SystemRoot%\System32\mswsock.dll" [MS]
000000000002\LibraryPath = "%SystemRoot%\System32\winrnr.dll" [MS]
000000000003\LibraryPath = "%SystemRoot%\System32\mswsock.dll" [MS]

Transport Service Providers

HKLM\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\ {++}
0000000000##\PackedCatalogItem (contains) DLL [Company Name], (at) ## range:
C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\pavlsp.dll ["Panda Software "], 01 - 03, 19
%SystemRoot%\system32\mswsock.dll [MS], 04 - 06, 09 - 18
%SystemRoot%\system32\rsvpsp.dll [MS], 07 - 08


Toolbars, Explorer Bars, Extensions:
------------------------------------

Extensions (Tools menu items, main toolbar menu buttons)

HKLM\Software\Microsoft\Internet Explorer\Extensions\
{2EAF5BB1-070F-11D3-9307-00C04FAE2D4F}\
"ButtonText" = "Create Mobile Favorite"
"CLSIDExtension" = "{2EAF5BB0-070F-11D3-9307-00C04FAE2D4F}"
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\Microsoft ActiveSync\inetrepl.dll" [MS]

{4335F0BE-9AAF-4023-9929-681B937B814A}\
"ButtonText" = "FlashFavorite"
"MenuText" = "Flash Favorite"
"Script" = "res://C:\PROGRA~1\FLASHF~1\FFCom.dll/IeMenu.htm" [empty string]

{B13B4423-2647-4CFC-A4B3-C7D56CB83487}\
"ButtonText" = "Share in Hello"
"MenuText" = "Share in H&ello"
"CLSIDExtension" = "{B13B4423-2647-4cfc-A4B3-C7D56CB83487}"
-> {CLSID}\InProcServer32\(Default) = "C:\Program Files\Hello\PicasaCapture.dll" ["Picasa, Inc."]

{FB5F1910-F110-11D2-BB9E-00C04F795683}\
"ButtonText" = "Messenger"
"MenuText" = "Windows Messenger"
"Exec" = "C:\Program Files\Messenger\msmsgs.exe" [MS]


Running Services (Display Name, Service Name, Path {Service DLL}):
------------------------------------------------------------------

Acronis Scheduler2 Service, AcrSch2Svc, ""C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe"" ["Acronis"]
Ati HotKey Poller, Ati HotKey Poller, "C:\WINDOWS\system32\Ati2evxx.exe" ["ATI Technologies Inc."]
Machine Debug Manager, MDM, ""C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe"" [MS]
Panda anti-virus service, PAVSRV, ""C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\pavsrv51.exe"" ["Panda Software"]
Panda Function Service, PAVFNSVR, ""C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\PavFnSvr.exe"" ["Panda Software"]
Panda IManager Service, PSIMSVC, ""C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\PsImSvc.exe"" ["Panda Software Internacional"]
Panda Network Manager, PNMSRV, "C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\FIREWALL\PNMSRV.EXE" ["Panda Software"]
Panda Process Protection Service, PavPrSrv, ""C:\Program Files\Common Files\Panda Software\PavShld\pavprsrv.exe"" ["Panda Software"]
Panda TPSrv, TPSrv, ""C:\Program Files\Panda Software\Panda Titanium 2006 Antivirus + Antispyware\TPSrv.exe"" ["Panda Software"]
PDScheduler, PDSched, ""C:\Program Files\Raxco\PerfectDisk\PDSched.exe"" ["Raxco Software, Inc."]
SonicStage SCSI Service, SSScsiSV, "C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe" ["Sony Corporation"]
Windows User Mode Driver Framework, UMWdf, "C:\WINDOWS\system32\wdfmgr.exe" [MS]


Print Monitors:
---------------

HKLM\System\CurrentControlSet\Control\Print\Monitors\
hpzlnt07\Driver = "hpzlnt07.dll" ["HP"]


----------
+ This report excludes default entries except where indicated.
+ To see *everywhere* the script checks and *everything* it finds,
launch it from a command prompt or a shortcut with the -all parameter.
+ The search for DESKTOP.INI DLL launch points on all local fixed drives
took 22 seconds.
+ The search for all Registry CLSIDs containing dormant Explorer Bars
took 15 seconds.
---------- (total run time: 61 seconds)
  • 0

#18
coachwife6

coachwife6

    SuperStar

  • Retired Staff
  • 11,413 posts
Please go to Jottis and have this file scanned. Post the results back here.

C:\WINDOWS\SYSTEM32\avldr.dll

Also, do you have the latest version of macromedia downloaded?

Something funky is going on. I may have someone else look in on this.
  • 0

#19
Phenom

Phenom

    Member

  • Topic Starter
  • Member
  • PipPip
  • 24 posts

Please go to Jottis and have this file scanned. Post the results back here.

C:\WINDOWS\SYSTEM32\avldr.dll

Also, do you have the latest version of macromedia downloaded?

Something funky is going on. I may have someone else look in on this.

The status listed from Jottis is stated as:
"OK (Note: this file has been scanned before. Therefore, this file's scan results will not be stored in the database)" so I guess avldr.dll is clean.

Latest version of macromedia is version 8 I believe. Yes, that was updated about a month ago. It was also updated again when I uninstalled and reinstalled Firefox when I had that problem earlier this week.
  • 0

#20
coachwife6

coachwife6

    SuperStar

  • Retired Staff
  • 11,413 posts
I conferred with Keith - more his area of expertise.

Possibly, the damage was done when he used the registry cleaners, nothing else in his first post usually causes problems

Perhaps if he repaired XP then at least he is working with an all there OS, (again), reckon he isn't at the moment

Before he goes up the wall then the repair won't delete data, once XP is OK the he can look at re-installing flash etc

He needs to redo Microsoft Update if he runs the repair

http://www.geekstogo...ws-XP-t138.html


  • 0

#21
Phenom

Phenom

    Member

  • Topic Starter
  • Member
  • PipPip
  • 24 posts
Well, I probably will never know what the cause of the problem was, but I performed the repair procedure of windows XP without looking back. I found the repair procedure unsatisfactory because it put me back at square 1 for software installation, drivers, updates, blah, blah, blah. To combat this I just loaded one of my Acronis C: saves that I made the last time I reformatted my HDD and loaded all software. There is a lot of time lost reloading software and changing settings.

One final question about the repair process or reloading windows XP in general. Is it true that Windows XP can only be registered with microsoft 5 times before you need to buy another license from them? I read this somewhere and also found that someone discovered a way to fool the installation of windows, after the first legitimate software installation, into thinking that the registration process has occured.
  • 0

#22
coachwife6

coachwife6

    SuperStar

  • Retired Staff
  • 11,413 posts
I have never heard about that rule from microsoft and we don't assist users with workarounds. Somehow your registry was corrupted and even though reloading everything is a hassle, I believe it was your only option.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP