[Resolved]run dll error

Can anybody help with these two annoying error messages I get every time I start my computer.

The first one I get is: Error loading C:\PROGRA~1\uninst~1.DLL. The specified module could not be found.
The second one is Error loading C:\PROGRA~1\MYWEBS~1\bar\1.bin\MWSBAR.DLL. The specified module could not be found.

Thanx in advance.

Comments

  • TroganTrogan London, UK
    edited October 2006
    Hi hoeman, welcome to Short-Media!

    Click here to download HJTsetup.exe. Save it to your Desktop!
    • Double click on the HJTsetup.exe icon on your desktop.
    • By default it will install to C:\Program Files\Hijack This.
    • Continue to click Next in the setup dialogue boxes until you get to the "Select Addition Tasks" dialogue.
    • Put a check by Create a desktop icon then click Next again.
    • Continue to follow the rest of the prompts from there.
    • At the final dialogue box click Finish and it will launch Hijack This.
    • Click on the "Do a system scan and save a log file" button. It will scan and then ask you to save the log.
    • Copy and paste the log here
    DO NOT have HijackThis fix anything yet. Most of what it finds will be harmless or even required.
  • edited October 2006
    Trogan_1000 Here it is


    Logfile of HijackThis v1.99.1
    Scan saved at 6:18:24 PM, on 19/10/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.5700.0006)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Windows Defender\MsMpEng.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
    C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
    C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
    C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
    C:\WINDOWS\system32\DVDRAMSV.exe
    C:\Program Files\Microsoft LifeCam\MSCamSvc.exe
    C:\Program Files\Norton AntiVirus\navapsvc.exe
    C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
    C:\Program Files\Canon\CAL\CALMAIN.exe
    C:\WINDOWS\vVX6000.exe
    C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\MSN Messenger\msnmsgr.exe
    C:\Program Files\Red Chair Software\Anapod Explorer\anamgr.exe
    C:\Program Files\Java\jre1.5.0_04\bin\javaw.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\Webroot\Spy Sweeper\SSU.EXE
    C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
    C:\Program Files\Outlook Express\msimn.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Hijackthis\HijackThis.exe

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=54729
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.ca/0SEENCA/SAOS01?FORM=TOOLBR
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
    O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton AntiVirus\NavShExt.dll
    O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
    O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
    O4 - HKLM\..\Run: [NvCplDaemon] "RUNDLL32.EXE" C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [VX6000] C:\WINDOWS\vVX6000.exe
    O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe" /startintray
    O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [My Web Search Bar] rundll32 C:\PROGRA~1\MYWEBS~1\bar\1.bin\MWSBAR.DLL,S
    O4 - HKLM\..\RunOnce: [CleanUp2] C:\windows\system32\oobe\html\oemreg\bin\ToshibaCleanup -s 1241764239
    O4 - HKLM\..\RunOnce: [MyWebSearch bar Uninstall] rundll32 C:\PROGRA~1\UNINST~1.DLL,O -2
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
    O4 - Startup: Anapod Manager.lnk = C:\Program Files\Red Chair Software\Anapod Explorer\anamgr.exe
    O4 - Startup: MP3 Rocket (silent).lnk = C:\Program Files\MP3 Rocket\MP3Rocket_on_startup.exe
    O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O11 - Options group: [INTERNATIONAL] International*
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?LinkID=39204
    O16 - DPF: {1754A1BA-A1DF-4F10-B199-AA55AA1A120F} (InstallerBehaviorFactory Class) - https://signup.msn.com/pages/MsnInstC.cab
    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by20fd.bay20.hotmail.msn.com/resources/MsnPUpld.cab
    O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
    O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
    O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
    O23 - Service: DVD-RAM_Service - Matsu****a Electric Industrial Co., Ltd. - C:\WINDOWS\system32\DVDRAMSV.exe
    O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
    O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
    O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
    O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
    O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
    O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    O23 - Service: SPBBCSvc - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
    O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
  • TroganTrogan London, UK
    edited October 2006
    Hi hoeman! Can you do the following please...
    • Run Hijackthis.
    • Click on Open the Misc Tools section.
    • Next click on Open uninstall manager.
    • Press the Save list button.
    • Save the file to your desktop, with the default name of uninstall_list
    • Copy & Paste the entire contents of that file in your in your next post.
    _________________________
    • Please go to Jotti's malware scan
    • Copy and paste the following file path into the "File to upload & scan" box on the top of the page:
    • C:\WINDOWS\vVX6000.exe
    • Click on the submit button
    • Please post the results in your next reply.
    _________________________

    Please post the Uninstall list, and the scan results back here. :)
  • edited October 2006
    Trogan_1000

    Here they are.

    Service load: 0% 100%

    File: vVX6000.exe
    Status: OK
    MD5 e42ca6cc6bb2612d52f634b4d29bdb65
    Packers detected: -
    Scanner results
    AntiVir Found nothing
    ArcaVir Found nothing
    Avast Found nothing
    AVG Antivirus Found nothing
    BitDefender Found nothing
    ClamAV Found nothing
    Dr.Web Found nothing
    F-Prot Antivirus Found nothing
    Fortinet Found nothing
    Kaspersky Anti-Virus Found nothing
    NOD32 Found nothing
    Norman Virus Control Found nothing
    VirusBuster Found nothing
    VBA32 Found nothing


    Ad-Aware SE Personal
    Adobe Download Manager 2.0 (Remove Only)
    Adobe Reader 7.0.8
    Anapod CopyGear (remove only)
    Anapod Explorer (remove only)
    Anapod PhotoSync (remove only)
    Canon Camera Access Library
    Canon Camera Support Core Library
    Canon Camera Window DC_DV 5 for ZoomBrowser EX
    Canon Camera Window DC_DV 6 for ZoomBrowser EX
    Canon Camera Window MC 6 for ZoomBrowser EX
    Canon G.726 WMP-Decoder
    Canon MovieEdit Task for ZoomBrowser EX
    Canon RAW Image Task for ZoomBrowser EX
    Canon RemoteCapture Task for ZoomBrowser EX
    Canon Utilities EOS Utility
    Canon Utilities PhotoStitch
    Canon Utilities ZoomBrowser EX
    ccCommon
    CD/DVD Drive Acoustic Silencer
    CDBurnerXP Pro 3
    Conexant HD Audio
    Dr Watson for Microsoft Windows OneCare Live v1.0.0971.42
    DVD-RAM Driver
    HDAUDIO Soft Data Fax Modem with SmartCP
    High Definition Audio Driver Package - KB888111
    Hijackthis 1.99.1
    HijackThis 1.99.1
    Hotfix for Windows XP (KB914440)
    Hotfix for Windows XP (KB915865)
    Intel(R) PRO Network Connections Drivers
    Intel(R) PROSet/Wireless Software
    Internet Worm Protection
    InterVideo WinDVD Creator 2
    InterVideo WinDVD for TOSHIBA
    iTunes
    J2SE Runtime Environment 5.0 Update 4
    K-Lite Codec Pack
    LiveUpdate 3.0 (Symantec Corporation)
    Macromedia Flash Player 8
    mCore
    mDrWiFi
    mHelp
    Microsoft .NET Framework 1.1
    Microsoft .NET Framework 1.1
    Microsoft .NET Framework 1.1 Hotfix (KB886903)
    Microsoft .NET Framework 2.0
    Microsoft Internationalized Domain Names Mitigation APIs
    Microsoft LifeCam
    Microsoft National Language Support Downlevel APIs
    Microsoft Office 2000 Premium
    Microsoft Office OneNote 2003
    mIWA
    mLogView
    mMHouse
    MP3 Rocket
    mPfMgr
    mPfWiz
    mProSafe
    MSXML 4.0 SP2 (KB925672)
    MSXML 4.0 SP2 Parser and SDK
    mWlsSafe
    mXML
    mZConfig
    NAVShortcut
    Net Assistant
    NetSpy Protector (remove only)
    Norton AntiVirus 2006
    Norton AntiVirus 2006 (Symantec Corporation)
    Norton AntiVirus Help
    Norton AntiVirus Parent MSI
    Norton AntiVirus SYMLT MSI
    Norton Protection Center
    Norton WMI Update
    NVIDIA Drivers
    Oblivion
    Panda ActiveScan
    QuickTime
    SD Secure Module
    Security Update for Microsoft .NET Framework 2.0 (KB917283)
    Security Update for Microsoft .NET Framework 2.0 (KB922770)
    Security Update for Windows Media Player (KB911564)
    Security Update for Windows Media Player 10 (KB911565)
    Security Update for Windows Media Player 10 (KB917734)
    Security Update for Windows XP (KB896424)
    Security Update for Windows XP (KB900725)
    Security Update for Windows XP (KB901017)
    Security Update for Windows XP (KB902400)
    Security Update for Windows XP (KB904706)
    Security Update for Windows XP (KB905414)
    Security Update for Windows XP (KB905749)
    Security Update for Windows XP (KB908519)
    Security Update for Windows XP (KB911562)
    Security Update for Windows XP (KB911567)
    Security Update for Windows XP (KB911927)
    Security Update for Windows XP (KB912812)
    Security Update for Windows XP (KB912919)
    Security Update for Windows XP (KB913446)
    Security Update for Windows XP (KB913580)
    Security Update for Windows XP (KB914388)
    Security Update for Windows XP (KB914389)
    Security Update for Windows XP (KB916281)
    Security Update for Windows XP (KB917159)
    Security Update for Windows XP (KB917344)
    Security Update for Windows XP (KB917422)
    Security Update for Windows XP (KB917953)
    Security Update for Windows XP (KB918439)
    Security Update for Windows XP (KB918899)
    Security Update for Windows XP (KB919007)
    Security Update for Windows XP (KB920214)
    Security Update for Windows XP (KB920670)
    Security Update for Windows XP (KB920683)
    Security Update for Windows XP (KB920685)
    Security Update for Windows XP (KB921398)
    Security Update for Windows XP (KB921883)
    Security Update for Windows XP (KB922616)
    Security Update for Windows XP (KB922819)
    Security Update for Windows XP (KB923191)
    Security Update for Windows XP (KB923414)
    Security Update for Windows XP (KB924191)
    Security Update for Windows XP (KB924496)
    Sonic DLA
    Sonic RecordNow!
    SPBBC
    Spy Sweeper
    Spybot - Search & Destroy 1.4
    Symantec
    Synaptics Pointing Device Driver
    Tabbed Browsing (Windows Live Toolbar)
    Texas Instruments PCIxx21/x515/xx12 drivers.
    TOSHIBA Assist
    TOSHIBA ConfigFree
    Toshiba Controls Utility
    TOSHIBA PC Diagnostic Tool
    TOSHIBA SD Memory Card Format
    TOSHIBA Speech System Applications
    TOSHIBA Speech System SR Engine(U.S.) Version1.0
    TOSHIBA Speech System TTS Engine(U.S.) Version1.0
    Toshiba Tbiosdrv Driver
    Toshiba Touchpad Utility
    Toshiba Utility
    TOSHIBA Zooming Utility
    Update for Windows XP (KB898461)
    Update for Windows XP (KB900485)
    Update for Windows XP (KB904942)
    Update for Windows XP (KB908531)
    Update for Windows XP (KB910437)
    Update for Windows XP (KB911280)
    Update for Windows XP (KB914882)
    Update for Windows XP (KB916595)
    Update for Windows XP (KB920872)
    Update for Windows XP (KB922582)
    VideoLAN VLC media player 0.8.4a
    Weather Watcher
    Web Sudoku Deluxe 1.0
    Windows Defender
    Windows Defender Signatures
    Windows Internet Explorer 7
    Windows Live Messenger
    Windows Live Sign-in Assistant
    Windows Live Toolbar
    Windows Live Toolbar
    Windows Live Toolbar MSN Extension (Windows Live Toolbar)
    Windows Media Format Runtime
    Windows Media Player 10
    Windows XP Hotfix - KB887742
    WinRAR archiver

    Thank you again for your time.

    Hoeman :thumbsup:
  • TroganTrogan London, UK
    edited October 2006
    Hi Hoeman! I'm away for the weekend, and do not have my 'tools' with me. I should be back on Monday when I will post back.
  • TroganTrogan London, UK
    edited October 2006
    Hi hoeman, I'm back! Can you do the following please...

    Open HijackThis
    - Click the Do a system scan only button
    - Check the following entries (below)

    O4 - HKLM\..\Run: [My Web Search Bar] rundll32 C:\PROGRA~1\MYWEBS~1\bar\1.bin\MWSBAR.DLL,S
    O4 - HKLM\..\RunOnce: [MyWebSearch bar Uninstall] rundll32 C:\PROGRA~1\UNINST~1.DLL,O -2


    - Close ALL open windows (especially Internet Explorer!)
    - Click Fix Checked
    Close HiajckThis

    Next, find and delete the following folder:

    C:\Program Files\MyWebSearch <-- This folder
    ____________________________

    Please do an online scan with Panda ActiveScan

    - Once you are on the Panda site, click the Scan your PC button
    - A new window will open...click the Check Now button
    - Enter your Country
    - Enter your State/Province
    - Enter your e-mail address and click send
    - Select either Home User or Company
    - Click the big Scan Now button
    - If it wants to install an ActiveX component allow it
    - It will start downloading the files it requires for the scan (Note: It may take a couple of minutes)
    - When download is complete, click on Local Disks to start the scan
    - When the scan completes, if anything malicious is detected, click the See Report button, then Save Report and save it to a convenient location.

    Post the contents of the Panda scan report, along with a new HijackThis Log
  • edited October 2006
    Trogan_1000

    This is not good, however knowing how capable you are, I am sure you will come up with a solution....

    First, looking for the folder MyWebSearch, I could not find it under Program Files. I made a search and the same, it did not come up. Secondly, when I came to run the Panda, I had a add-on message come up and referred me to the top and said that if I wanted to let it through click there, I did and it gave me an error on page mesage. I turned the add-on off in the accessories, still no luck, so where do we go from here.

    Hoeman having problems....
  • TroganTrogan London, UK
    edited October 2006
    Did you use Internet Explorer? I'm guessing you allowed the Active X to be downloaded, but it didn't work?

    Lets try this scan (make sure you use Internet Explorer).

    Please do an online scan with Kaspersky WebScanner

    Click on Kaspersky Online Scanner

    You will be promted to install an ActiveX component from Kaspersky, Click Yes.
    • The program will launch and then begin downloading the latest definition files:
    • Once the files have been downloaded click on NEXT
    • Now click on Scan Settings
    • In the scan settings make that the following are selected:
      • Scan using the following Anti-Virus database:
        Extended (if available otherwise Standard)
      • Scan Options:
        Scan Archives
        Scan Mail Bases


        [*]Click OK
        [*]Now under select a target to scan:
          Select
        My Computer

        [*]This will program will start and scan your system.
        [*]The scan will take a while so be patient and let it run.
        [*]Once the scan is complete it will display if your system has been infected.
        • Now click on the Save as Text button:
        [*]Save the file to your desktop.

        Post the Kaspersky report back here, along with a new HijackThis log.
      • edited October 2006
        Trogan_1000

        Kaspersky in not letting download Active X for some reason. Once I hit the add-on to install Active X, Kaspersky opens up a new window wich is the same as the one that opens up at the beginning without the option of accept or decline.

        I DON'T KNOW.............

        Hoeman
      • TroganTrogan London, UK
        edited October 2006
        Lets run another tool then:

        You may wish to Print or Save the following instructions, as the internet will not be available once in Safe Mode!

        Please download AVG Anti-Spyware to your Desktop or to your usual Download Folder.
        http://www.ewido.net/en/download/
        • Install AVG Anti-Spyware by double clicking the installer.
        • Follow the prompts. Make sure that Launch AVG Anti-Spyware is checked.
        • On the main screen under Your Computer's security.
          • Click on Change state next to Resident shield. It should now change to inactive.
          • Click on Change state next to Automatic updates. It should now change to inactive.
          • Next to Last Update, click on Update now. (You will need an active internet connection to perform this)
          • Wait until you see the Update succesfull message.
        • Right-click the AVG Anti-Spyware Tray Icon and uncheck Start with Windows.
        • Right-click the AVG Anti-Spyware Tray Icon and select Exit. Confirm by clicking Yes.
        If you are having problems with the updater, you can use this link to manually update ewido.
        AVG Anti-Spyware manual updates.
        Download the Full database to your Desktop or to your usual Download Folder and install it by double clicking the file. Make sure that AVG Anti-Spyware is closed before installing the update.

        Reboot your computer in Safe Mode.
        • If the computer is running, shut down Windows, and then turn off the power.
        • Wait 30 seconds, and then turn the computer on.
        • Start tapping the F8 key. The Windows Advanced Options Menu appears. If you begin tapping the F8 key too soon, some computers display a "keyboard error" message. To resolve this, restart the computer and try again.
        • Ensure that the Safe Mode option is selected.
        • Press Enter. The computer then begins to start in Safe mode.
        • Login on your usual account.
        Once in Safe Mode:

        Close ALL open Windows / Programs / Folders. Please start AVG Anti-Spyware and run a full scan.
        • Click on Scanner on the toolbar.
        • Click on the Settings tab.
          • Under How to act?
            • Click on Recommended Action and choose Quarantine from the popup menu.
          • Under How to scan?
            • All checkboxes should be ticked.
          • Under Possibly unwanted software:
            • All checkboxes should be ticked.
          • Under Reports:
            • Select Automatically generate report after every scan and uncheck Only if threats were found.
          • Under What to scan?
            • Select Scan every file.
        • Click on the Scan tab.
        • Click on Complete System Scan to start the scan process.
        • Let the program scan the machine.
        • When the scan has finished, follow the instructions below.
          IMPORTANT : Don't click on the "Save Scan Report" button before you did hit the "Apply all Actions" button.
          • Make sure that Set all elements to: shows Quarantine (1), if not click on the link and choose Quarantine from the popup menu. (2)
          • At the bottom of the window click on the Apply all Actions button. (3)
            scanavgjk2.jpg
        • When done, click the Save Scan Report button. (4)
          • Click the Save Report as button.
          • Save the report to your Desktop.
        • Right-click the AVG Anti-Spyware Tray Icon and select Exit. Confirm by clicking Yes.
        Reboot back into Normal Mode, and post a new HJT log, along with the AVG Anti-Spyware log.
      • edited October 2006
        Trogan_1000

        Here they are.
        First the HJT, Logfile of HijackThis v1.99.1
        Scan saved at 6:43:12 PM, on 26/10/2006
        Platform: Windows XP SP2 (WinNT 5.01.2600)
        MSIE: Internet Explorer v7.00 (7.00.5700.0006)

        Running processes:
        C:\WINDOWS\System32\smss.exe
        C:\WINDOWS\system32\winlogon.exe
        C:\WINDOWS\system32\services.exe
        C:\WINDOWS\system32\lsass.exe
        C:\WINDOWS\system32\svchost.exe
        C:\Program Files\Windows Defender\MsMpEng.exe
        C:\WINDOWS\System32\svchost.exe
        C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
        C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
        C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
        C:\WINDOWS\Explorer.EXE
        C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
        C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
        C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
        C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
        C:\WINDOWS\system32\spoolsv.exe
        C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
        C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
        C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
        C:\WINDOWS\system32\DVDRAMSV.exe
        C:\Program Files\Microsoft LifeCam\MSCamS32.exe
        C:\Program Files\Norton AntiVirus\navapsvc.exe
        C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
        C:\WINDOWS\system32\nvsvc32.exe
        C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
        C:\WINDOWS\system32\svchost.exe
        C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
        C:\Program Files\Canon\CAL\CALMAIN.exe
        C:\WINDOWS\vVX6000.exe
        C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe
        C:\Program Files\Common Files\Symantec Shared\ccApp.exe
        C:\Program Files\QuickTime\qttask.exe
        C:\WINDOWS\system32\ctfmon.exe
        C:\Program Files\MSN Messenger\msnmsgr.exe
        C:\Program Files\Red Chair Software\Anapod Explorer\anamgr.exe
        C:\Program Files\Java\jre1.5.0_04\bin\javaw.exe
        C:\Program Files\iPod\bin\iPodService.exe
        C:\Program Files\Webroot\Spy Sweeper\SSU.EXE
        C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
        C:\WINDOWS\system32\svchost.exe
        C:\Program Files\Outlook Express\msimn.exe
        C:\Program Files\Internet Explorer\IEXPLORE.EXE
        C:\Program Files\Messenger\msmsgs.exe
        C:\Program Files\Windows Live Toolbar\msn_sl.exe
        C:\WINDOWS\system32\wuauclt.exe
        C:\Program Files\Hijackthis\HijackThis.exe

        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=54729
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
        R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.ca/0SEENCA/SAOS01?FORM=TOOLBR
        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
        R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
        O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
        O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
        O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
        O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
        O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton AntiVirus\NavShExt.dll
        O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
        O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton AntiVirus\NavShExt.dll
        O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
        O4 - HKLM\..\Run: [NvCplDaemon] "RUNDLL32.EXE" C:\WINDOWS\system32\NvCpl.dll,NvStartup
        O4 - HKLM\..\Run: [VX6000] C:\WINDOWS\vVX6000.exe
        O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe" /startintray
        O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
        O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
        O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
        O4 - HKLM\..\Run: [My Web Search Bar] rundll32 C:\PROGRA~1\MYWEBS~1\bar\1.bin\MWSBAR.DLL,S
        O4 - HKLM\..\RunOnce: [CleanUp2] C:\windows\system32\oobe\html\oemreg\bin\ToshibaCleanup -s 1241764239
        O4 - HKLM\..\RunOnce: [MyWebSearch bar Uninstall] rundll32 C:\PROGRA~1\UNINST~1.DLL,O -2
        O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
        O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
        O4 - Startup: Anapod Manager.lnk = C:\Program Files\Red Chair Software\Anapod Explorer\anamgr.exe
        O4 - Startup: MP3 Rocket (silent).lnk = C:\Program Files\MP3 Rocket\MP3Rocket_on_startup.exe
        O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
        O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
        O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
        O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
        O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
        O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
        O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
        O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
        O11 - Options group: [INTERNATIONAL] International*
        O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?LinkID=39204
        O16 - DPF: {1754A1BA-A1DF-4F10-B199-AA55AA1A120F} (InstallerBehaviorFactory Class) - https://signup.msn.com/pages/MsnInstC.cab
        O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by20fd.bay20.hotmail.msn.com/resources/MsnPUpld.cab
        O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
        O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
        O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
        O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
        O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
        O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
        O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
        O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
        O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
        O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
        O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
        O23 - Service: DVD-RAM_Service - Matsu****a Electric Industrial Co., Ltd. - C:\WINDOWS\system32\DVDRAMSV.exe
        O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
        O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
        O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
        O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
        O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
        O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
        O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
        O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
        O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
        O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
        O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
        O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
        O23 - Service: SPBBCSvc - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
        O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
        O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe

        Secondly, the AVG:
        AVG Anti-Spyware - Scan Report

        + Created at: 1:08:22 AM 26/10/2006

        + Scan result:



        :mozilla.8:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
        :mozilla.271:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
        :mozilla.272:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
        :mozilla.296:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
        :mozilla.297:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@2o7[2].txt -> TrackingCookie.2o7 : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@cbs.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@ford.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@metacafe.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\02-09-2006-2-30-21-AM\1b839e6f-2254-42f1-b7b4-9b784b75c5a3.bak -> TrackingCookie.2o7 : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\02-09-2006-2-30-21-AM\32432a61-2051-4f17-a7d6-c9b7e4e58eb8.bak -> TrackingCookie.2o7 : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\02-09-2006-2-30-21-AM\961ca8db-3ad8-4a09-ac97-37d08e2813a4.bak -> TrackingCookie.2o7 : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\08-07-2006-2-31-16-AM\5dda7c60-07ad-4996-92b2-abb87791f666.bak -> TrackingCookie.2o7 : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\08-07-2006-2-31-16-AM\90a5433e-92ec-4ecc-b7fd-47ca684d2efb.bak -> TrackingCookie.2o7 : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\10-09-2006-1-00-04-AM\5cf5a628-3622-40b1-a500-63560908fec3.bak -> TrackingCookie.2o7 : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\12-07-2006-1-19-16-AM\3850b964-5cf9-4efc-ad1a-f243b8c40a35.bak -> TrackingCookie.2o7 : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\12-07-2006-1-19-16-AM\5f00f558-2112-4ac1-874a-2c63ae735e20.bak -> TrackingCookie.2o7 : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\13-10-2006-1-45-28-AM\7a4f7d7e-2c4c-42a6-bee8-ec8766608882.bak -> TrackingCookie.2o7 : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\14-07-2006-2-00-59-AM\4cdfb87c-98c1-4ad9-baf7-2b7fb4066d48.bak -> TrackingCookie.2o7 : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\14-08-2006-1-42-34-AM\e9bcc795-d8ce-4807-ab16-95ff5aa7b446.bak -> TrackingCookie.2o7 : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\14-08-2006-1-42-34-AM\eb6b4dc8-6167-4f6c-bdd8-812ad62fd2f3.bak -> TrackingCookie.2o7 : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\15-06-2006-8-43-00-PM\2f7972ff-3bfd-4657-a635-562e4ec75f89.bak -> TrackingCookie.2o7 : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\15-06-2006-8-43-00-PM\e4f0ef33-e047-487d-8622-2c982381af62.bak -> TrackingCookie.2o7 : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\15-09-2006-10-39-56-PM\1130359a-f45e-4d04-85f5-072e9cb7b77f.bak -> TrackingCookie.2o7 : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\15-09-2006-10-39-56-PM\a4be8540-07b7-488b-b5a7-8c9cf43a1be1.bak -> TrackingCookie.2o7 : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\15-09-2006-10-39-56-PM\bb930c95-729c-4fa4-b4c8-cdd2795950fe.bak -> TrackingCookie.2o7 : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\26-05-2006-12-53-08-AM\e9c173df-5380-4883-a91e-c177cebd7db0.bak -> TrackingCookie.2o7 : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\27-06-2006-2-33-53-AM\0f9eac18-14c1-4427-a56b-86822c06a264.bak -> TrackingCookie.2o7 : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\27-06-2006-2-33-53-AM\b03daef0-663f-4379-8a18-a02a003c8ca8.bak -> TrackingCookie.2o7 : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\27-06-2006-2-33-53-AM\faa29425-dd08-428f-aa41-ec652395ed81.bak -> TrackingCookie.2o7 : Cleaned.
        :mozilla.18:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
        :mozilla.19:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
        :mozilla.20:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@adbrite[2].txt -> TrackingCookie.Adbrite : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@advertising[2].txt -> TrackingCookie.Advertising : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@bfast[1].txt -> TrackingCookie.Bfast : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@casalemedia[1].txt -> TrackingCookie.Casalemedia : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\02-09-2006-2-30-21-AM\86815094-b5df-4f84-acec-d1dabf9f89f0.bak -> TrackingCookie.Casalemedia : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\14-08-2006-1-42-34-AM\68b632fd-de71-4c1b-a868-73469c5b3f14.bak -> TrackingCookie.Casalemedia : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\15-09-2006-10-39-56-PM\358dfad4-ce5f-4c54-8279-b14f5c2ecaa0.bak -> TrackingCookie.Casalemedia : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@clickbank[2].txt -> TrackingCookie.Clickbank : Cleaned.
        :mozilla.102:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Clickhype : Cleaned.
        :mozilla.16:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Clickhype : Cleaned.
        :mozilla.17:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Clickhype : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@ad1.clickhype[2].txt -> TrackingCookie.Clickhype : Cleaned.
        :mozilla.106:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Com : Cleaned.
        :mozilla.107:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Com : Cleaned.
        :mozilla.108:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Com : Cleaned.
        :mozilla.109:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Com : Cleaned.
        :mozilla.110:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Com : Cleaned.
        :mozilla.308:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Com : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@com[1].txt -> TrackingCookie.Com : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@bilbo.counted[2].txt -> TrackingCookie.Counted : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.
        :mozilla.133:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
        :mozilla.134:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
        :mozilla.135:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@e-2dj6wjnyoldpmhp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
        :mozilla.24:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
        :mozilla.25:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
        :mozilla.26:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@fastclick[2].txt -> TrackingCookie.Fastclick : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@media.fastclick[1].txt -> TrackingCookie.Fastclick : Cleaned.
        :mozilla.547:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
        :mozilla.548:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
        :mozilla.549:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
        :mozilla.550:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
        :mozilla.551:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
        :mozilla.552:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
        :mozilla.553:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
        :mozilla.554:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@ehg-bce.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@ehg-bestbuy.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@ehg-golftown.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@ehg-nfusiongroup.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@ehg-samsungusa.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@ehg-seca.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@sales.liveperson[2].txt -> TrackingCookie.Liveperson : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@server.iad.liveperson[1].txt -> TrackingCookie.Liveperson : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\10-09-2006-1-00-04-AM\0437b436-e713-4732-90b5-00d16e559af0.bak -> TrackingCookie.Liveperson : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\14-08-2006-1-42-34-AM\43f9e80e-3b4f-4092-9e42-083c1f533e0b.bak -> TrackingCookie.Liveperson : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\15-06-2006-8-43-00-PM\39ce7ad2-e22e-45bc-b344-adf31cc118ef.bak -> TrackingCookie.Liveperson : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\15-06-2006-8-43-00-PM\9f0e0af2-fd8b-4dab-a072-1514880e11cd.bak -> TrackingCookie.Liveperson : Cleaned.
        C:\Program Files\NetSpy Protector\quarantie\26-05-2006-12-53-08-AM\611b9fcb-8f1f-410a-8249-17c7d9c2114c.bak -> TrackingCookie.Liveperson : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@www.myaffiliateprogram[1].txt -> TrackingCookie.Myaffiliateprogram : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@stat.onestat[1].txt -> TrackingCookie.Onestat : Cleaned.
        :mozilla.339:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@overture[1].txt -> TrackingCookie.Overture : Cleaned.
        :mozilla.29:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
        :mozilla.30:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
        :mozilla.31:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
        :mozilla.32:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@ads.pointroll[2].txt -> TrackingCookie.Pointroll : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@edge.ru4[2].txt -> TrackingCookie.Ru4 : Cleaned.
        :mozilla.414:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.415:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.416:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.417:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.418:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
        :mozilla.439:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
        :mozilla.440:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
        :mozilla.441:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@tribalfusion[2].txt -> TrackingCookie.Tribalfusion : Cleaned.
        C:\Documents and Settings\Owner\Cookies\owner@statse.webtrendslive[4].txt -> TrackingCookie.Webtrendslive : Cleaned.
        :mozilla.13:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
        :mozilla.14:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
        :mozilla.15:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
        :mozilla.636:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
        :mozilla.637:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
        :mozilla.638:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
        :mozilla.639:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\lgmka1ns.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.


        ::Report end

        Thank you again.

        Hoeman

        P.S. Still getting error message even after I delete both from the list on HJT...
      • TroganTrogan London, UK
        edited October 2006
        Sorry for the delay. Looks like SpySweeper may have blocked the change. Lets try again by disabling SpySweeper.


        Open SpySweeper
        Click > Options over to the left then > program options > Uncheck "load at windows startup".
        Over to the left click "shields" and uncheck all there.
        Uncheck "home page shield".
        Uncheck 'automaticly restore default without notifiction".

        Remember to enable once we have finished it.
        _________________

        Open HijackThis
        - Click the Do a system scan only button
        - Check the following entries (below)

        O4 - HKLM\..\Run: [My Web Search Bar] rundll32 C:\PROGRA~1\MYWEBS~1\bar\1.bin\MWSBAR.DLL,S
        O4 - HKLM\..\RunOnce: [MyWebSearch bar Uninstall] rundll32 C:\PROGRA~1\UNINST~1.DLL,O -2


        - Close ALL open windows (especially Internet Explorer!)
        - Click Fix Checked
        Close HiajckThis


        Reboot and post a new HijackThis log.
      • edited October 2006
        Trog1K

        Sorry for the delay...

        Here is the scan report.

        Logfile of HijackThis v1.99.1
        Scan saved at 5:20:03 PM, on 30/10/2006
        Platform: Windows XP SP2 (WinNT 5.01.2600)
        MSIE: Internet Explorer v7.00 (7.00.5700.0006)

        Running processes:
        C:\WINDOWS\System32\smss.exe
        C:\WINDOWS\system32\winlogon.exe
        C:\WINDOWS\system32\services.exe
        C:\WINDOWS\system32\lsass.exe
        C:\WINDOWS\system32\svchost.exe
        C:\Program Files\Windows Defender\MsMpEng.exe
        C:\WINDOWS\System32\svchost.exe
        C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
        C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
        C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
        C:\WINDOWS\Explorer.EXE
        C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
        C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
        C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
        C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
        C:\WINDOWS\system32\spoolsv.exe
        C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
        C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
        C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
        C:\WINDOWS\system32\DVDRAMSV.exe
        C:\Program Files\Microsoft LifeCam\MSCamS32.exe
        C:\Program Files\Norton AntiVirus\navapsvc.exe
        C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
        C:\WINDOWS\system32\nvsvc32.exe
        C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
        C:\WINDOWS\system32\svchost.exe
        C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
        C:\Program Files\Canon\CAL\CALMAIN.exe
        C:\WINDOWS\vVX6000.exe
        C:\Program Files\Common Files\Symantec Shared\ccApp.exe
        C:\Program Files\QuickTime\qttask.exe
        C:\WINDOWS\system32\ctfmon.exe
        C:\Program Files\MSN Messenger\msnmsgr.exe
        C:\Program Files\Red Chair Software\Anapod Explorer\anamgr.exe
        C:\Program Files\Java\jre1.5.0_04\bin\javaw.exe
        C:\Program Files\iPod\bin\iPodService.exe
        C:\WINDOWS\system32\wuauclt.exe
        C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
        C:\Program Files\Messenger\msmsgs.exe
        C:\WINDOWS\system32\rsvp.exe
        C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe
        C:\Program Files\Hijackthis\HijackThis.exe

        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://pc.support.global.toshiba.com
        R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.ca/0SEENCA/SAOS01?FORM=TOOLBR
        R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
        O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
        O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
        O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
        O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
        O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton AntiVirus\NavShExt.dll
        O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
        O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton AntiVirus\NavShExt.dll
        O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
        O4 - HKLM\..\Run: [NvCplDaemon] "RUNDLL32.EXE" C:\WINDOWS\system32\NvCpl.dll,NvStartup
        O4 - HKLM\..\Run: [VX6000] C:\WINDOWS\vVX6000.exe
        O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
        O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
        O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
        O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
        O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
        O4 - Startup: Anapod Manager.lnk = C:\Program Files\Red Chair Software\Anapod Explorer\anamgr.exe
        O4 - Startup: MP3 Rocket (silent).lnk = C:\Program Files\MP3 Rocket\MP3Rocket_on_startup.exe
        O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
        O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
        O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
        O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
        O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
        O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
        O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
        O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
        O11 - Options group: [INTERNATIONAL] International*
        O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?LinkID=39204
        O16 - DPF: {1754A1BA-A1DF-4F10-B199-AA55AA1A120F} (InstallerBehaviorFactory Class) - https://signup.msn.com/pages/MsnInstC.cab
        O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by20fd.bay20.hotmail.msn.com/resources/MsnPUpld.cab
        O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
        O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
        O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
        O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
        O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
        O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
        O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
        O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
        O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
        O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
        O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
        O23 - Service: DVD-RAM_Service - Matsu****a Electric Industrial Co., Ltd. - C:\WINDOWS\system32\DVDRAMSV.exe
        O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
        O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
        O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
        O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
        O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
        O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
        O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
        O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
        O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
        O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
        O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
        O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
        O23 - Service: SPBBCSvc - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
        O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
        O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe

        Thank you.

        Hoeman
      • TroganTrogan London, UK
        edited October 2006
        Your log looks better. :)

        Your Java is out of date. Older versions have vulnerabilities that malware can use to infect your system. Please follow these steps to remove older version Java components and update to the latest version...

        Updating Java:
        • Download the latest version of Java Runtime Environment (JRE) 5.0 Update 9.
        • Scroll down to where it says "The J2SE Runtime Environment (JRE) allows end-users to run Java applications."
        • Click the "Download" button to the right.
        • Check the box that says: "Accept License Agreement."
        • The page will refresh.
        • Click on the link to download Windows Offline Installation with or without Multi-language and save to your desktop.
        • Close any programs you may have running - especially your web browser.
        • Go to Start > Control Panel double-click on Add/Remove programs and remove the following...
          • J2SE Runtime Environment 5.0 Update 4
        • Reboot your computer once all Java components are removed.
        • Then from your desktop double-click on jre-1_5_0_09-windowsi586-p.exe to install the newest version.

        Let me know how things are, and if we can mark this resolved. :)
      • edited October 2006
        Trog1K

        Things are great.............Believe or not I think you may have helped me solve another one of my problems simply by changing Java.

        Anyhow, no more error messages, what a treat and I am not saying that because it is Halloween.

        I am so, so, so gratefull to you and your team.

        Once more, thank you so much for the help.

        By the way, no matter what people say about you, it's not true. You are definitely the best...
        This is just a joke, ha! ha! not for the part of you being the best though.

        Hoeman. This is case is resolved. I hope for a little while.
      • TroganTrogan London, UK
        edited October 2006
        You are welcome. Thread is now resolved! :)
      This discussion has been closed.