Hi! I've been having troubles :cry: and have been keeping things going by the ax method (cleaning up cookies, temp files, etc.) but still, I was told I have a trojan, yet, ad-aware cannot find it nor can norton antivirus find it. And spybot is too behind , so I don't use it anymore. Aboutbuster didn't see it either. It was Shredder that told me I had a trojan that was not allowing it to work in its regular fashion. Anyway, I found a I found a file (folder) named Temp-Installtemped, is that a critter?
I never noticed it before. I sent it to my wastebasket but have not deleted it yet. Will not delete it until I hear from one of you.
Thanks! :o
goodtaste 0 Junior Poster
kc0arf 68 Posting Virtuoso Team Colleague
Hello,
I am not the resident virus expert for Windows here, but can tell that you will need to let the group know if Shredder gave you any specific warning messages. Those are handy for the fine folk here who help debug these things.
Also, this is a great time to make sure you have backups. You are at a point here that your box may get worse, and you may have to re-install, and backups will be most critical of that process. Get your data safe now, and setup a plan to keep it safe after your box is fixed.
Finally, if you are registry-savvy, you can go into the registry, and look at the startup items. See if there are things starting at boot time that you do not need. IF you have questions on a particular file, do a Google search on the file, and see what others have to say. Beware... there are a few things that are named quite weird, but belong in that area of the registry.
Enjoy,
Christian
goodtaste 0 Junior Poster
Thank you for your tips! I still don't know if tempinstalled is something I should delete or not. I stillhave it in my recycle bin just in case. . .
I don't know how to do things in the registry and have been told that if I don't, I shouldn't mess around with it :sad: , so I stay away from such heavy-duty technical jobs.
Shredder told me about the trojan when it was about to start searching and would not tell me the name of the critter nor any other info about it. It just said that a trojan was trying to prevent it from working but that it would work anyway without opening an apparent window (neat!) and it did. When it was done, it let itself be seen. I don't know anything about what I've got and don't like to post hijackthis logs unless told to, because I know that people don't like too much to read them, so I was just asking around about this file that I had not noticed before, trying to 86it. :confused:
I you do know what it is, please let me know, if now, can anybody let me know if I should delete it or not?
Thanks!!!! :o
DMR 152 Wombat At Large Team Colleague
1.
I found a I found a file (folder) named Temp-Installtemped...
Which is it, a file or a folder?
2. If it is a folder, what are the names of the files within the folder?
3. Regardless of whether it's a file or folder, within what folder did you find it (C:\, C:\Windows, C:\Program Files, etc.)?
4. Go ahead and post a HijackThis log for us to review; it might yield some clues.
goodtaste 0 Junior Poster
1. Which is it, a file or a folder?
2. If it is a folder, what are the names of the files within the folder?
3. Regardless of whether it's a file or folder, within what folder did you find it (C:\, C:\Windows, C:\Program Files, etc.)?
4. Go ahead and post a HijackThis log for us to review; it might yield some clues.
TOO LATE!!!!! :cry:
I had placed the folder in my wastebakset and waited for a reply from here. I got one, but it couldn't tell me anything about the item in question, so. . .since the machine seemed to be working better, I deleted the thing :o but I still have problems. My machine is terribly low on memory, so I know that something's churning in the background, and interestingly, I can't go on safe mode. I tried this morning and the computer acted as if I had performed an improper shutdown. So, exhausted, I just went to Panda's activescan and tried that. I couldn't do it so I bought their little antispyware software because I run on Win ME and I cannot get the new things you suggest, only AboutBuster. Thanks for trying to help me. I don't post a HijackThis log because since Adaware can't see it, and Norton can't see it, and Shredder is no longer picking up on it, I think I have cut off part of it and that's why it doesn't show up and I might be wasting your time by posting a log.
I always appreciate very much the help I get here.
I hope you have a good 2006.
God bless!
DMR 152 Wombat At Large Team Colleague
What? Wasting our time by posting a log??
Haven't you heard? We live for HJT logs. Eat 'em for breakfast, lunch, and dinner; sometimes have 'em for midnight snacks, too. :mrgreen:
Well, OK... that might be a bit extreme, but shoot us a log if you want- we'll give it a review for you.
goodtaste 0 Junior Poster
I'm sorry!!! I thought I was being helpful by not giving you guys extra work. Finally I crashed so many times that I had to send my computer into the shop (how I wish I knew more!!!) It doesn't have whatever it is anymore, but now I lack my pop up blocker and my firewall, since one got corrupeted and the tech took the other out. Could you tell me where I could get a free firewall that is easy to configure (I don't know that much) and an easy, free pop up blocker? This technician insisted I didn't need either one, but I had a lot of problems before I had them in the past, and I want them back. Since he's not willing to put them back, I have to. Any tips?
Thanks!!! :o
What? Wasting our time by posting a log??
Haven't you heard? We live for HJT logs. Eat 'em for breakfast, lunch, and dinner; sometimes have 'em for midnight snacks, too. :mrgreen:
Well, OK... that might be a bit extreme, but shoot us a log if you want- we'll give it a review for you.
Edited by diafol because: fixed formatting
goodtaste 0 Junior Poster
I'm sorry!!! I thought I was being helpful by not giving you guys extra work. Finally I crashed so many times that I had to send my computer into the shop (how I wish I knew more!!!) It doesn't have whatever it is anymore, but now I lack my pop up blocker and my firewall, since one got corrupeted and the tech took the other out. Could you tell me where I could get a free firewall that is easy to configure (I don't know that much) and an easy, free pop up blocker? This technician insisted I didn't need either one, but I had a lot of problems before I had them in the past, and I want them back. Since he's not willing to put them back, I have to. Any tips?
Thanks!!! :o
What? Wasting our time by posting a log??
Haven't you heard? We *live *for HJT logs. Eat 'em for breakfast, lunch, and dinner; sometimes have 'em for midnight snacks, too. :mrgreen:
Well, OK... that might be a bit extreme, but shoot us a log if you want- we'll give it a review for you.
Edited by diafol because: fixed formatting
goodtaste 0 Junior Poster
Thanks DMR, I used to have Sygate, but now that they are charging, I've decided to try Kerio.
Thanks for the link. I'm using Mozilla Firefox mosdt of the time since IE gives me so much trouble, still, when it loads, it wants to go to a strange place: Lycos. And it has pop ups which I would like to suppress.
Thanks!
DMR 152 Wombat At Large Team Colleague
... IE gives me so much trouble, still, when it loads, it wants to go to a strange place: Lycos.
If you want to run HijackThis again and post the new log, that might tell us where some of the strange IE behaviour is coming from.
goodtaste 0 Junior Poster
If you want to run HijackThis again and post the new log, that might tell us where some of the strange IE behaviour is coming from.
Thank you guys for all your help! I am no longer plagued by tempinstalled. I have dismembered it by using Shredder, Ad-Aware, CCleaner, etc. My problem is that I cannot find a free firewall that will work with Win ME. I tried to download Kerio but it is for XP. Sygate is no longer free, and when I went to the other suggestion, it said that it was an antivirus. I have AVG, so I don't need an antivirus. I did download the pop up stopper. At least one out of two is better than nothing!
Thanks again. :cool:
smartcookie 0 Newbie Poster
Hi! I've been having troubles :cry: and have been keeping things going by the ax method (cleaning up cookies, temp files, etc.) but still, I was told I have a trojan, yet, ad-aware cannot find it nor can norton antivirus find it. And spybot is too behind , so I don't use it anymore. Aboutbuster didn't see it either. It was Shredder that told me I had a trojan that was not allowing it to work in its regular fashion. Anyway, I found a I found a file (folder) named Temp-Installtemped, is that a critter?
I never noticed it before. I sent it to my wastebasket but have not deleted it yet. Will not delete it until I hear from one of you.
Thanks! :o
Okay, this is happening to me too! :-O
Originally Posted by DMR
1. Which is it, a file or a folder?
2. If it is a folder, what are the names of the files within the folder?
3. Regardless of whether it's a file or folder, within what folder did you find it (C:\, C:\Windows, C:\Program Files, etc.)?
4. Go ahead and post a HijackThis log for us to review; it might yield some clues.
1. It is a folder - C:\Temp\installtemped
2. There is nothing that I can see in IE, I have sys & hidden files viewable, there are various folders on my c drive like so - C:\Random Folder\temp - that contain files named like 10k.tmp and vary in file sizes??
3. It is in my c: drive root on down
4. Couldn't install Hijack this for some reason, I kept on getting a dll error?? or I would have a log file up for you ??
thnx in advance :cool:
smartcookie 0 Newbie Poster
Okay, this is happening to me too! :-O
1. It is a folder - C:\Temp\installtemped
2. There is nothing that I can see in IE, I have sys & hidden files viewable, there are various folders on my c drive like so - C:\Random Folder\temp - that contain files named like 10k.tmp and vary in file sizes??
3. It is in my c: drive root on down
4. Couldn't install Hijack this for some reason, I kept on getting a dll error?? or I would have a log file up for you ??
thnx in advance :cool:
Okay I installed visualbasic runtime and installed and ran shredder and then I was able to install hijackthis! with no dll error, so below I have included my hijackthis! log file below, I am not really sure if I have much on my c: drive or not anymore, I mean shredder did help to allow me to install hijackthis but it found nothing else wrong, my avg antispy & antivirus are coming up clean, and when I analyzed my hijackthis log at : exelib there is nothing highlighted red - but I still have the installedtemp folder and ALL the temp folders with all the .tmp files making a HUGE pagesys file that won't delete for some reason, so there IS something going on, I am just not sure what??
Logfile of HijackThis v1.99.1
Scan saved at 5:56:03 PM, on 6/28/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\WLTRYSVC.EXE
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
C:\WINDOWS\ehome\RMSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\WINDOWS\system32\WLTRAY.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\WINDOWS\ehome\RMSysTry.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Documents and Settings\Karma\Desktop\hijackthis\HijackThis.exeR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O1 - Hosts: 17.250.248.77 idisk0.mac.com idisk1.mac.com idisk2.mac.com idisk3.mac.com idisk4.mac.com idisk5.mac.com idisk6.mac.com idisk7.mac.com idisk8.mac.com idisk9.mac.com idisk10.mac.com idisk11.mac.com idisk12.mac.com idisk13.mac.com idisk14.mac.com idisk15.mac.com idisk16.mac.com idisk17.mac.com idisk18.mac.com idisk19.mac.com idisk20.mac.com idisk21.mac.com idisk22.mac.com idisk23.mac.com idisk24.mac.com idisk25.mac.com
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Yahoo! IE Suggest - {5A263CF7-56A6-4D68-A8CF-345BE45BC911} - C:\Program Files\Yahoo!\Search\YSearchSuggest.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar5.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar5.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe
O4 - HKLM\..\Run: [ShowLOMControl]
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [LFM] C:\PROGRA~1\LeapFrogMessenger\LeapFrogMessenger.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [googletalk] C:\Program Files\Google\Google Talk\googletalk.exe /autostart
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKCU\..\Run: [ModemOnHold] C:\Program Files\NetWaiting\netWaiting.exe
O4 - HKCU\..\Run: [OE_OEM] "C:\Program Files\Trend Micro\Internet Security 12\TMAS_OE\TMAS_OEMon.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [RoboForm] "C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Extender Resource Monitor.lnk = C:\WINDOWS\ehome\RMSysTry.exe
O4 - Global Startup: Google Updater.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O8 - Extra context menu item: Customize Menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Fill Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O8 - Extra context menu item: RoboForm Toolbar - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: Save Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: Casino-on-Net - {3015DB92-158E-4b77-9020-85C8E311FBB5} - C:\PROGRA~1\CASINO~1\Casino.exe
O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: Generate - {320AF880-6646-11D3-ABEE-C5DBF3571F50} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComPasswordGenerator.html
O9 - Extra 'Tools' menuitem: Password Generator - {320AF880-6646-11D3-ABEE-C5DBF3571F50} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComPasswordGenerator.html
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker.Com\PartyPoker\RunApp.exe
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker.Com\PartyPoker\RunApp.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: PartyPoker.net - {F4430FE8-2638-42e5-B849-800749B94EED} - C:\Program Files\PartyPoker.Net\PartyPokerNet\RunPF.exe
O9 - Extra 'Tools' menuitem: PartyPoker.net - {F4430FE8-2638-42e5-B849-800749B94EED} - C:\Program Files\PartyPoker.Net\PartyPokerNet\RunPF.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www3.ca.com/securityadvisor/virusinfo/webscan.cab
O16 - DPF: {E7D2588A-7FB5-47DC-8830-832605661009} (Live Collaboration) - http://livesc03.custhelp.com/7550-b415h/rnl/java/RntX.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
O23 - Service: Spyware Doctor Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\svcntaux.exe
O23 - Service: Spyware Doctor Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\swdsvc.exe
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXEThnx Again!
Be a part of the DaniWeb community
We're a friendly, industry-focused community of developers, IT pros, digital marketers, and technology enthusiasts meeting, networking, learning, and sharing knowledge.