<?xml version="1.0" encoding="utf-8"?>

<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/">
	<channel>
		<title>DaniWeb IT Discussion Community - Windows NT / 2000 / XP / 2003</title>
		<link>http://www.daniweb.com/forums</link>
		<description>Tech support, programming, web development, and internet marketing community. Forums to get free computer help and support.</description>
		<language>en-US</language>
		<lastBuildDate>Tue, 07 Oct 2008 15:48:00 GMT</lastBuildDate>
		<generator>vBulletin</generator>
		<ttl>60</ttl>
		<image>
			<url>http://www.daniweb.com/forums/myimages/misc/rss.jpg</url>
			<title>DaniWeb IT Discussion Community - Windows NT / 2000 / XP / 2003</title>
			<link>http://www.daniweb.com/forums</link>
		</image>
		<item>
			<title>Strange File in Win XP</title>
			<link>http://www.daniweb.com/forums/thread149753.html</link>
			<pubDate>Tue, 07 Oct 2008 14:06:04 GMT</pubDate>
			<description><![CDATA[On my son's Laptop there is a file called C:\winbkup which at 3.70GB takes up a quarter of his hard drive. Can this be deleted, or will that completely mess things up?]]></description>
			<content:encoded><![CDATA[<div>On my son's Laptop there is a file called C:\winbkup which at 3.70GB takes up a quarter of his hard drive. Can this be deleted, or will that completely mess things up?</div> ]]></content:encoded>
			<category domain="http://www.daniweb.com/forums/forum10.html">Windows NT / 2000 / XP / 2003</category>
			<dc:creator>Colin Mallett</dc:creator>
			<guid isPermaLink="true">http://www.daniweb.com/forums/thread149753.html</guid>
		</item>
		<item>
			<title>Slow computer</title>
			<link>http://www.daniweb.com/forums/thread149740.html</link>
			<pubDate>Tue, 07 Oct 2008 13:13:36 GMT</pubDate>
			<description>I was directed by hijackthis to post this log file

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:36:08, on 07/10/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18241)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe</description>
			<content:encoded><![CDATA[<div>I was directed by hijackthis to post this log file<br />
<br />
Logfile of Trend Micro HijackThis v2.0.2<br />
Scan saved at 13:36:08, on 07/10/2008<br />
Platform: Windows XP SP2 (WinNT 5.01.2600)<br />
MSIE: Internet Explorer v8.00 (8.00.6001.18241)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:\WINDOWS\System32\smss.exe<br />
C:\WINDOWS\system32\winlogon.exe<br />
C:\WINDOWS\system32\services.exe<br />
C:\WINDOWS\system32\lsass.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe<br />
C:\WINDOWS\Explorer.EXE<br />
C:\WINDOWS\system32\spoolsv.exe<br />
C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe<br />
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe<br />
C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe<br />
C:\Program Files\inKline Global\Modem Booster\ModemBtr.exe<br />
C:\WINDOWS\system32\crypserv.exe<br />
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe<br />
C:\Program Files\Common Files\LightScribe\LSSrvc.exe<br />
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE<br />
C:\Program Files\inKline Global\PC Booster\PCBooster.exe<br />
C:\Program Files\Registry Mechanic\RegMech.exe<br />
D:\C Drive\UnrealEngine3\MOHAGame\pb\PnkBstrA.exe<br />
C:\WINDOWS\system32\ctfmon.exe<br />
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\WINDOWS\system32\devldr32.exe<br />
C:\Program Files\IncrediMail\bin\IncMail.exe<br />
C:\Program Files\IncrediMail\bin\IMApp.exe<br />
C:\Program Files\Internet Explorer\iexplore.exe<br />
C:\Program Files\Internet Explorer\iexplore.exe<br />
C:\Program Files\PC Connectivity Solution\ServiceLayer.exe<br />
D:\Office10\EXCEL.EXE<br />
C:\Program Files\Internet Explorer\iexplore.exe<br />
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE<br />
C:\Program Files\Internet Explorer\iexplore.exe<br />
C:\Program Files\Internet Explorer\iexplore.exe<br />
C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe<br />
C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe<br />
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe<br />
<br />
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = <a rel="nofollow" class="t" href="http://uk.my.yahoo.com/" target="_blank">http://uk.my.yahoo.com/</a><br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = <a rel="nofollow" class="t" href="http://uk.yahoo.com" target="_blank">http://uk.yahoo.com</a><br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = <a rel="nofollow" class="t" href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = <a rel="nofollow" class="t" href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = <a rel="nofollow" class="t" href="http://uk.yahoo.com" target="_blank">http://uk.yahoo.com</a><br />
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn4\yt.dll<br />
O2 - BHO: &amp;Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn4\yt.dll<br />
O2 - BHO: eBay Toolbar Helper - {22D8E815-4A5E-4DFB-845E-AAB64207F5BD} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll<br />
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll<br />
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll<br />
O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.6\coIEPlg.dll<br />
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll<br />
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll<br />
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll<br />
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.0.1225.9868\swg.dll<br />
O2 - BHO: SidebarAutoLaunch Class - {F2AA9440-6328-4933-B7C9-A6CCDF9CBF6D} - C:\Program Files\Yahoo!\browser\YSidebarIEBHO.dll<br />
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn4\YTSingleInstance.dll<br />
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn4\yt.dll<br />
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll<br />
O3 - Toolbar: &amp;Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll<br />
O3 - Toolbar: (no name) - {a6e4a4eb-d169-4e99-8988-250fcbafe767} - (no file)<br />
O3 - Toolbar: (no name) - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - (no file)<br />
O3 - Toolbar: (no name) - {07B18EA9-A523-4961-B6BB-170DE4475CCA} - (no file)<br />
O3 - Toolbar: Show Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.6\CoIEPlg.dll<br />
O4 - HKLM\..\Run: [ccApp] C:\Program Files\Common Files\Symantec Shared\ccApp.exe<br />
O4 - HKLM\..\Run: [Modem Booster] C:\Program Files\inKline Global\Modem Booster\ModemBtr.exe<br />
O4 - HKLM\..\Run: [PC Booster] C:\Program Files\inKline Global\PC Booster\PCBooster.exe<br />
O4 - HKLM\..\Run: [RegistryMechanic] C:\Program Files\Registry Mechanic\RegMech.exe /H<br />
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe<br />
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe<br />
O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] &quot;C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe&quot; /NoDialog (User 'SYSTEM')<br />
O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] &quot;C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe&quot; /NoDialog (User 'Default user')<br />
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present<br />
O8 - Extra context menu item: E&amp;xport to Microsoft Excel - res://D:\Office10\EXCEL.EXE/3000<br />
O8 - Extra context menu item: eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html<br />
O8 - Extra context menu item: Open In Regedit - C:\Program Files\Open In Regedit\OpenInRegedit.htm<br />
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll<br />
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll<br />
O9 - Extra button: BT Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll<br />
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL<br />
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\system32\shdocvw.dll<br />
O9 - Extra 'Tools' menuitem: Show &amp;Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\system32\shdocvw.dll<br />
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe<br />
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe<br />
O9 - Extra button: InterCasino $$$ - {909AAEB6-C2CB-4AB5-A7BB-C33B72AB4BFB} - C:\WINDOWS\system32\shdocvw.dll (HKCU)<br />
O9 - Extra 'Tools' menuitem: InterCasino $$$ - {909AAEB6-C2CB-4AB5-A7BB-C33B72AB4BFB} - C:\WINDOWS\system32\shdocvw.dll (HKCU)<br />
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5) - <a rel="nofollow" class="t" href="http://upload.facebook.com/controls/FacebookPhotoUploader5.cab" target="_blank">http://upload.facebook.com/controls/...oUploader5.cab</a><br />
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - <a rel="nofollow" class="t" href="http://ak.exe.imgfarm.com/images/nocache/funwebproducts/ei-3/MyFunCardsFWBInitialSetup1.0.1.0.cab" target="_blank">http://ak.exe.imgfarm.com/images/noc...tup1.0.1.0.cab</a><br />
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll<br />
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - <a rel="nofollow" class="t" href="http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase9563.cab" target="_blank">http://cdn.scan.onecare.live.com/res...scbase9563.cab</a><br />
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - <a rel="nofollow" class="t" href="http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1212943081921" target="_blank">http://www.update.microsoft.com/micr...?1212943081921</a><br />
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - <a rel="nofollow" class="t" href="http://sdlc-esd.sun.com/ESD39/JSCDL/jre/6u5-b15/jinstall-6u5-windows-i586-jc.cab?AuthParam=1206395178_27a7724d02b4da30a0fb8a4f1fd7366d&amp;GroupName=JSC&amp;BHost=javadl.sun.com&amp;FilePath=/ESD39/JSCDL/jre/6u5-b15/jinstall-6u5-windows-i586-jc.cab&amp;File=jinstall-6u5-windows-i586-jc.cab" target="_blank">http://sdlc-esd.sun.com/ESD39/JSCDL/...ws-i586-jc.cab</a><br />
O16 - DPF: {C606BA60-AB76-48B6-96A7-2C4D5C386F70} (PreQualifier Class) - <a rel="nofollow" class="t" href="http://help.broadbandassist.com/bbdesktop/PreQual/files/MotivePreQual.cab" target="_blank">http://help.broadbandassist.com/bbde...ivePreQual.cab</a><br />
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL<br />
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~4\GOEC62~1.DLL<br />
O20 - Winlogon Notify: ljJDUnki - ljJDUnki.dll (file missing)<br />
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe<br />
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe<br />
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe<br />
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe<br />
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe<br />
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe<br />
O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe<br />
O23 - Service: Crypkey License - CrypKey (Canada) Ltd. - C:\WINDOWS\SYSTEM32\crypserv.exe<br />
O23 - Service: Google Desktop Manager 5.7.802.22438 (GoogleDesktopManager-022208-143751) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe<br />
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe<br />
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe<br />
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe<br />
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe<br />
O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE<br />
O23 - Service: LiveUpdate Notice - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe<br />
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe<br />
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe<br />
O23 - Service: PunkBuster (PnkBstrA) - Unknown owner - D:\C Drive\UnrealEngine3\MOHAGame\pb\PnkBstrA.exe<br />
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe<br />
O23 - Service: Symantec Core LC - Unknown owner - C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe<br />
O23 - Service: YPCService - Yahoo! Inc. - C:\WINDOWS\system32\YPCSER~1.EXE<br />
O24 - Desktop Component 1: (no name) - <a rel="nofollow" class="t" href="http://uk.yahoo.com/?fr=fptb-" target="_blank">http://uk.yahoo.com/?fr=fptb-</a><br />
<br />
--<br />
End of file - 11612 bytes</div> ]]></content:encoded>
			<category domain="http://www.daniweb.com/forums/forum10.html">Windows NT / 2000 / XP / 2003</category>
			<dc:creator>Homelink1</dc:creator>
			<guid isPermaLink="true">http://www.daniweb.com/forums/thread149740.html</guid>
		</item>
		<item>
			<title>wholesale cheap gucci dunk lacoste adidas air force 1 converse shoes</title>
			<link>http://www.daniweb.com/forums/thread149728.html</link>
			<pubDate>Tue, 07 Oct 2008 13:03:42 GMT</pubDate>
			<description>We are the sports shoes fashion apparel wholesaler in china we can supply worldwide,and you can go to view our website:   http://www.cheap-wholesale-shoes.net  .we have many top quality shoes in stock . Such as Adidas ,Ipods, Nike shoes , nike,Jordan shoes,Jordan,Air Max,Shox TL/TL5 /NZ/R4,Air...</description>
			<content:encoded><![CDATA[<div>We are the sports shoes fashion apparel wholesaler in china we can supply worldwide,and you can go to view our website:   <a rel="nofollow" class="t" href="http://www.cheap-wholesale-shoes.net" target="_blank">http://www.cheap-wholesale-shoes.net</a>  .we have many top quality shoes in stock . Such as Adidas ,Ipods, Nike shoes , nike,Jordan shoes,Jordan,Air Max,Shox TL/TL5 /NZ/R4,Air Force 1,Bape shoes,bape,Timberland,etc . and I can give you a good price,and order the more the cheaper. <br />
We also provide many brand clothes. such as bbc hoodies , bape hoodies , evisu coat , red monkey jean , bape jean , bbc jean , evisu jean , etc . <br />
And any problem ,we can negotiate it.Trust we will have a good business in the future,and you will love to do the business with me,and then we will benefit. <br />
If you are interested in my products contact me in the <br />
MSN: <a href="mailto:wholesale_shoes@live.cn">wholesale_shoes@live.cn</a>   <br />
YAHOO/Email: <a href="mailto:cheap_wholesale@yahoo.cn">cheap_wholesale@yahoo.cn</a></div> ]]></content:encoded>
			<category domain="http://www.daniweb.com/forums/forum10.html">Windows NT / 2000 / XP / 2003</category>
			<dc:creator>mimi1</dc:creator>
			<guid isPermaLink="true">http://www.daniweb.com/forums/thread149728.html</guid>
		</item>
		<item>
			<title>Unresponsive/very slow Office 2003 programs on Vista 64bit</title>
			<link>http://www.daniweb.com/forums/thread149718.html</link>
			<pubDate>Tue, 07 Oct 2008 12:41:38 GMT</pubDate>
			<description>I have a laptop running Vista Business 64bit Edition (SP1) with Office 2003 SP3 installed (version number 11.8169.8172). It encounters severe slow downs or goes unresponsive for 30-60 seconds at a time when first opening documents on a network share with Word or Excel, or when running Outlook using...</description>
			<content:encoded><![CDATA[<div>I have a laptop running Vista Business 64bit Edition (SP1) with Office 2003 SP3 installed (version number 11.8169.8172). It encounters severe slow downs or goes unresponsive for 30-60 seconds at a time when first opening documents on a network share with Word or Excel, or when running Outlook using word as the editor and creating new emails/replying. This also happens when saving documents after the machine has been idle for a short time. This does not happen when opening documents from the local disk. The user has the same network permissions as they did when using 32bit XP Pro machines running Office 2003 which had no problems doing the same operations. The laptop sits in a docking station, but is not set to enter sleep mode. I have reinstalled both Office and Vista on separate occasions but this doesn’t seem to have changed anything.<br />
<br />
This is driving me nuts as I can’t find anything specific to the problem on google (unless I'm missing something obvious), or anything relevant beyond faulting application logs when word hangs completely in the event log. If any further information/logs/etc is required please let me know. Any help is greatly appreciated. Thanks!</div> ]]></content:encoded>
			<category domain="http://www.daniweb.com/forums/forum92.html">Windows Software</category>
			<dc:creator>Fafnir</dc:creator>
			<guid isPermaLink="true">http://www.daniweb.com/forums/thread149718.html</guid>
		</item>
		<item>
			<title>A Huge Problem.. Seeking advice.</title>
			<link>http://www.daniweb.com/forums/thread149701.html</link>
			<pubDate>Tue, 07 Oct 2008 11:00:46 GMT</pubDate>
			<description>Hello Everyone,

I have my Windows Xp operating system with perntium 4 in my Pc with 20 gb hardisk installed.

So i divided the space into 2 partitions , C: with 8 GB and D with 11 GB and the other was just unformatted. 

It was running Fine. But suddenly yesterday when i just went into the C DRIVE...</description>
			<content:encoded><![CDATA[<div>Hello Everyone,<br />
<br />
I have my Windows Xp operating system with perntium 4 in my Pc with 20 gb hardisk installed.<br />
<br />
So i divided the space into 2 partitions , C: with 8 GB and D with 11 GB and the other was just unformatted. <br />
<br />
It was running Fine. But suddenly yesterday when i just went into the C DRIVE it shows that my total memory space in Drive C: is only 2 Gb , The other 6 GB is missing. I dont have any idea on what to do , So wanted to ask for some help. <br />
Thanks in Advance.</div> ]]></content:encoded>
			<category domain="http://www.daniweb.com/forums/forum10.html">Windows NT / 2000 / XP / 2003</category>
			<dc:creator>Sky Diploma</dc:creator>
			<guid isPermaLink="true">http://www.daniweb.com/forums/thread149701.html</guid>
		</item>
		<item>
			<title>PC asks for Boot Disc on Start-up</title>
			<link>http://www.daniweb.com/forums/thread149697.html</link>
			<pubDate>Tue, 07 Oct 2008 10:27:20 GMT</pubDate>
			<description><![CDATA[After a recent Senior Moment, I re-installed XP and have since encountered countless problems. The latest being that I have to press F11 on start-up and arrow down to HDD.  How can I prevent this please.
Also, when I go on to "Stand-by" mode everything shuts down but on restart up - I get a blue...]]></description>
			<content:encoded><![CDATA[<div>After a recent Senior Moment, I re-installed XP and have since encountered countless problems. The latest being that I have to press F11 on start-up and arrow down to HDD.  How can I prevent this please.<br />
Also, when I go on to &quot;Stand-by&quot; mode everything shuts down but on restart up - I get a blue screen and I have to switch off &amp; restart.</div> ]]></content:encoded>
			<category domain="http://www.daniweb.com/forums/forum10.html">Windows NT / 2000 / XP / 2003</category>
			<dc:creator>cliff east</dc:creator>
			<guid isPermaLink="true">http://www.daniweb.com/forums/thread149697.html</guid>
		</item>
		<item>
			<title><![CDATA["Dangerous viruses detected in your system" popup when opening files and folders]]></title>
			<link>http://www.daniweb.com/forums/thread149631.html</link>
			<pubDate>Tue, 07 Oct 2008 03:26:32 GMT</pubDate>
			<description><![CDATA[Hi i am new here and trying to fix a relative's computer

First it would not boot windows so i had to reinstall the boot files from winxp cd
then once i was able to boot i ran over 6 scans from different companies (avg8, ad aware, pc doctor)   i was able to remove over 15 trojans  but the computer...]]></description>
			<content:encoded><![CDATA[<div>Hi i am new here and trying to fix a relative's computer<br />
<br />
First it would not boot windows so i had to reinstall the boot files from winxp cd<br />
then once i was able to boot i ran over 6 scans from different companies (avg8, ad aware, pc doctor)   i was able to remove over 15 trojans  but the computer still has problems and i need your help to figure this out...<br />
<br />
when openning a document file or folder there is a popup telling<br />
&quot;Attention,<br />
Some dangerous viruse detected in your system. Microsoft WindowsXP files corrupted. This may lead to the desrtruction of important files in C:\WINDOWS. Download protection software now! Click OK to download the the antispyware.(Recommended)<br />
                                       YES\NO&quot;<br />
<br />
<br />
this page will also randomly appear when browsing the internet<br />
<br />
I desesperately need your help!<br />
<br />
Hijackthis log:<br />
<br />
Logfile of Trend Micro HijackThis v2.0.2<br />
Scan saved at 7:50:53 PM, on 10/6/2008<br />
Platform: Windows XP SP3 (WinNT 5.01.2600)<br />
MSIE: Internet Explorer v7.00 (7.00.6000.16705)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:\WINDOWS\System32\smss.exe<br />
C:\WINDOWS\system32\csrss.exe<br />
C:\WINDOWS\system32\winlogon.exe<br />
C:\WINDOWS\system32\services.exe<br />
C:\WINDOWS\system32\lsass.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe<br />
C:\WINDOWS\system32\spoolsv.exe<br />
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe<br />
C:\Program Files\Spyware Doctor\pctsTray.exe<br />
C:\WINDOWS\system32\RUNDLL32.EXE<br />
C:\PROGRA~1\AVG\AVG8\avgtray.exe<br />
C:\WINDOWS\system32\ctfmon.exe<br />
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe<br />
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe<br />
C:\PROGRA~1\AVG\AVG8\avgfws8.exe<br />
C:\Program Files\Bonjour\mDNSResponder.exe<br />
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe<br />
C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe<br />
C:\WINDOWS\system32\nvsvc32.exe<br />
C:\WINDOWS\system32\IoctlSvc.exe<br />
C:\PROGRA~1\AVG\AVG8\avgam.exe<br />
C:\PROGRA~1\AVG\AVG8\avgrsx.exe<br />
C:\PROGRA~1\AVG\AVG8\avgnsx.exe<br />
C:\Program Files\Spyware Doctor\pctsAuxs.exe<br />
C:\Program Files\Spyware Doctor\pctsSvc.exe<br />
C:\Program Files\Analog Devices\SoundMAX\spkrmon.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\WINDOWS\system32\wdfmgr.exe<br />
C:\WINDOWS\System32\alg.exe<br />
C:\PROGRA~1\AVG\AVG8\aAvgApi.exe<br />
C:\WINDOWS\explorer.exe<br />
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe<br />
C:\WINDOWS\System32\wbem\wmiprvse.exe<br />
<br />
R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = <a rel="nofollow" class="t" href="http://windiwsfsearch.com" target="_blank">http://windiwsfsearch.com</a><br />
R1 - HKLM\Software\Microsoft\Internet Explorer,SearchURL = <a rel="nofollow" class="t" href="http://windiwsfsearch.com" target="_blank">http://windiwsfsearch.com</a><br />
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = <a rel="nofollow" class="t" href="http://windiwsfsearch.com" target="_blank">http://windiwsfsearch.com</a><br />
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = <a rel="nofollow" class="t" href="http://safesearch.cyberdefender.com/smallsearch.html" target="_blank">http://safesearch.cyberdefender.com/smallsearch.html</a><br />
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = <a rel="nofollow" class="t" href="http://windiwsfsearch.com" target="_blank">http://windiwsfsearch.com</a><br />
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = <a rel="nofollow" class="t" href="http://www.dufpy.com" target="_blank">http://www.dufpy.com</a><br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = <a rel="nofollow" class="t" href="http://go.microsoft.com/fwlink/?LinkId=69157" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a><br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = <a rel="nofollow" class="t" href="http://windiwsfsearch.com" target="_blank">http://windiwsfsearch.com</a><br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = <a rel="nofollow" class="t" href="http://windiwsfsearch.com/ie6.html" target="_blank">http://windiwsfsearch.com/ie6.html</a><br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = <a rel="nofollow" class="t" href="http://windiwsfsearch.com" target="_blank">http://windiwsfsearch.com</a><br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = <a rel="nofollow" class="t" href="http://go.microsoft.com/fwlink/?LinkId=69157" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a><br />
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = <a rel="nofollow" class="t" href="http://windiwsfsearch.com" target="_blank">http://windiwsfsearch.com</a><br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = <a rel="nofollow" class="t" href="http://windiwsfsearch.com" target="_blank">http://windiwsfsearch.com</a><br />
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll<br />
O2 - BHO: VRLWarningBHO Class - {0DCD4F35-9FD5-420b-A9AA-FED0E2AECEE0} - C:\Program Files\VirusRL2009\AVLWarning.dll (file missing)<br />
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll<br />
O2 - BHO: Osma - {6599A965-FA2D-41CD-95B1-13140F1CF8A3} - C:\WINDOWS\system32\rgf.dll<br />
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll<br />
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll<br />
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL<br />
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll<br />
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.0.1225.9868\swg.dll<br />
O2 - BHO: 590075 helper - {AFC8A14F-B50A-4F0F-8FB7-77982092D81D} - C:\WINDOWS\system32\590075\590075.dll (file missing)<br />
O2 - BHO: (no name) - {CFEE97A3-4911-444D-8BE8-E243A23D3DE2} - C:\Program Files\Applications\iebt.dll (file missing)<br />
O3 - Toolbar: Internet Service - {144A6B24-0EBC-4D89-BF09-A06A718E57B5} - C:\Program Files\Applications\iebr.dll (file missing)<br />
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL<br />
O4 - HKLM\..\Run: [SunJavaUpdateSched] &quot;C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe&quot;<br />
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup<br />
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install<br />
O4 - HKLM\..\Run: [ISTray] &quot;C:\Program Files\Spyware Doctor\pctsTray.exe&quot;<br />
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit<br />
O4 - HKLM\..\Run: [QuickTime Task] &quot;C:\Program Files\QuickTime\QTTask.exe&quot; -atboottime<br />
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe<br />
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe<br />
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe<br />
O4 - HKLM\..\Policies\Explorer\Run: [smile] C:\Program Files\Applications\wcs.exe<br />
O8 - Extra context menu item: E&amp;xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000<br />
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll<br />
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll<br />
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll<br />
O9 - Extra 'Tools' menuitem: S&amp;end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll<br />
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL<br />
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe<br />
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe<br />
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - <a rel="nofollow" class="t" href="http://go.microsoft.com/fwlink/?linkid=39204" target="_blank">http://go.microsoft.com/fwlink/?linkid=39204</a><br />
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - <a rel="nofollow" class="t" href="http://www.srtest.com/srl_bin/sysreqlab3.cab" target="_blank">http://www.srtest.com/srl_bin/sysreqlab3.cab</a><br />
O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} (CDownloadCtrl Object) - <a rel="nofollow" class="t" href="http://www.fileplanet.com/fpdlmgr/cabs/FPDC_2.3.6.108.cab" target="_blank">http://www.fileplanet.com/fpdlmgr/ca..._2.3.6.108.cab</a><br />
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - <a rel="nofollow" class="t" href="http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1212115273359" target="_blank">http://www.update.microsoft.com/micr...?1212115273359</a><br />
O16 - DPF: {9732FB42-C321-11D1-836F-00A0C993F125} (mhLabel Class) - <a rel="nofollow" class="t" href="http://www.pcpitstop.com/mhLbl.cab" target="_blank">http://www.pcpitstop.com/mhLbl.cab</a><br />
O17 - HKLM\System\CCS\Services\Tcpip\..\{5F75A1FA-4882-4AA4-A2A7-5E4E15FD580C}: NameServer = 208.67.222.222,208.67.220.220<br />
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll<br />
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll<br />
O20 - AppInit_DLLs: avgrsstx.dll<br />
O22 - SharedTaskScheduler: impetuousities - {0ba3e00d-b660-46e6-a2db-2672ee82dc98} - C:\WINDOWS\system32\oanlvs.dll (file missing)<br />
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe<br />
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe<br />
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe<br />
O23 - Service: AVG8 Firewall (avgfws8) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgfws8.exe<br />
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe<br />
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe<br />
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe<br />
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe<br />
O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe<br />
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe<br />
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe<br />
O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\WINDOWS\system32\IoctlSvc.exe<br />
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe<br />
O23 - Service: Roxio UPnP Renderer 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe<br />
O23 - Service: Roxio Upnp Server 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe<br />
O23 - Service: LiveShare P2P Server 9 (RoxLiveShare9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe<br />
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe<br />
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe<br />
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe<br />
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe<br />
O23 - Service: spkrmon - Unknown owner - C:\Program Files\Analog Devices\SoundMAX\spkrmon.exe<br />
<br />
--<br />
End of file - 10355 bytes<br />
<br />
<br />
<br />
<br />
<br />
<br />
<br />
<br />
<br />
<br />
Silent Runners log:<br />
<br />
&quot;Silent Runners.vbs&quot;, revision 58, <a rel="nofollow" class="t" href="http://www.silentrunners.org/" target="_blank">http://www.silentrunners.org/</a><br />
Operating System: Windows XP<br />
Output limited to non-default values, except where indicated by &quot;{++}&quot;<br />
<br />
<br />
Startup items buried in registry:<br />
---------------------------------<br />
<br />
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\ {++}<br />
&quot;ctfmon.exe&quot; = &quot;C:\WINDOWS\system32\ctfmon.exe&quot; [MS]<br />
<br />
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\ {++}<br />
&quot;smile&quot; = &quot;C:\Program Files\Applications\wcs.exe&quot; [file not found]<br />
<br />
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ {++}<br />
&quot;SunJavaUpdateSched&quot; = &quot;&quot;C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe&quot;&quot; [&quot;Sun Microsystems, Inc.&quot;]<br />
&quot;NvCplDaemon&quot; = &quot;RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup&quot; [MS]<br />
&quot;nwiz&quot; = &quot;nwiz.exe /install&quot; [&quot;NVIDIA Corporation&quot;]<br />
&quot;ISTray&quot; = &quot;&quot;C:\Program Files\Spyware Doctor\pctsTray.exe&quot;&quot; [&quot;PC Tools&quot;]<br />
&quot;NvMediaCenter&quot; = &quot;RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit&quot; [MS]<br />
&quot;QuickTime Task&quot; = &quot;&quot;C:\Program Files\QuickTime\QTTask.exe&quot; -atboottime&quot; [&quot;Apple Inc.&quot;]<br />
&quot;AppleSyncNotifier&quot; = &quot;C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe&quot; [&quot;Apple Inc.&quot;]<br />
&quot;AVG8_TRAY&quot; = &quot;C:\PROGRA~1\AVG\AVG8\avgtray.exe&quot; [&quot;AVG Technologies CZ, s.r.o.&quot;]<br />
<br />
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\<br />
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}\(Default) = (no title provided)<br />
  -&gt; {HKLM...CLSID} = &quot;Adobe PDF Reader Link Helper&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll&quot; [&quot;Adobe Systems Incorporated&quot;]<br />
{0DCD4F35-9FD5-420b-A9AA-FED0E2AECEE0}\(Default) = (no title provided)<br />
  -&gt; {HKLM...CLSID} = &quot;VRLWarningBHO Class&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\VirusRL2009\AVLWarning.dll&quot; [file not found]<br />
{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}\(Default) = &quot;WormRadar.com IESiteBlocker.NavFilter&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;AVG Safe Search&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\AVG\AVG8\avgssie.dll&quot; [&quot;AVG Technologies CZ, s.r.o.&quot;]<br />
{6599A965-FA2D-41CD-95B1-13140F1CF8A3}\(Default) = (no title provided)<br />
  -&gt; {HKLM...CLSID} = &quot;Osma&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\WINDOWS\system32\rgf.dll&quot; [null data]<br />
{72853161-30C5-4D22-B7F9-0BBC1D38A37E}\(Default) = (no title provided)<br />
  -&gt; {HKLM...CLSID} = &quot;Groove GFS Browser Helper&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll&quot; [MS]<br />
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\(Default) = (no title provided)<br />
  -&gt; {HKLM...CLSID} = &quot;SSVHelper Class&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll&quot; [&quot;Sun Microsystems, Inc.&quot;]<br />
{A057A204-BACC-4D26-9990-79A187E2698E}\(Default) = (no title provided)<br />
  -&gt; {HKLM...CLSID} = &quot;AVG Security Toolbar&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL&quot; [&quot;AVG, Technologies CZ, s.r.o                  &quot;]<br />
{AA58ED58-01DD-4d91-8333-CF10577473F7}\(Default) = (no title provided)<br />
  -&gt; {HKLM...CLSID} = &quot;Google Toolbar Helper&quot;<br />
                   \InProcServer32\(Default) = &quot;c:\program files\google\googletoolbar1.dll&quot; [&quot;Google Inc.&quot;]<br />
{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}\(Default) = (no title provided)<br />
  -&gt; {HKLM...CLSID} = &quot;Google Toolbar Notifier BHO&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Google\GoogleToolbarNotifier\3.0.1225.9868\swg.dll&quot; [&quot;Google Inc.&quot;]<br />
{AFC8A14F-B50A-4F0F-8FB7-77982092D81D}\(Default) = &quot;590075 helper&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;590075 Class&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\WINDOWS\system32\590075\590075.dll&quot; [file not found]<br />
{CFEE97A3-4911-444D-8BE8-E243A23D3DE2}\(Default) = (no title provided)<br />
  -&gt; {HKLM...CLSID} = (no title provided)<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Applications\iebt.dll&quot; [file not found]<br />
<br />
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\<br />
&quot;{42071714-76d4-11d1-8b24-00a0c9068ff3}&quot; = &quot;Display Panning CPL Extension&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Display Panning CPL Extension&quot;<br />
                   \InProcServer32\(Default) = &quot;deskpan.dll&quot; [file not found]<br />
&quot;{88895560-9AA2-1069-930E-00AA0030EBC8}&quot; = &quot;HyperTerminal Icon Ext&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;HyperTerminal Icon Ext&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\WINDOWS\System32\hticons.dll&quot; [&quot;Hilgraeve, Inc.&quot;]<br />
&quot;{A70C977A-BF00-412C-90B7-034C51DA2439}&quot; = &quot;NvCpl DesktopContext Class&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;DesktopContext Class&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\WINDOWS\system32\nvcpl.dll&quot; [&quot;NVIDIA Corporation&quot;]<br />
&quot;{1CDB2949-8F65-4355-8456-263E7C208A5D}&quot; = &quot;Desktop Explorer&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Desktop Explorer&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\WINDOWS\system32\nvshell.dll&quot; [&quot;NVIDIA Corporation&quot;]<br />
&quot;{1E9B04FB-F9E5-4718-997B-B8DA88302A47}&quot; = &quot;Desktop Explorer Menu&quot;<br />
  -&gt; {HKLM...CLSID} = (no title provided)<br />
                   \InProcServer32\(Default) = &quot;C:\WINDOWS\system32\nvshell.dll&quot; [&quot;NVIDIA Corporation&quot;]<br />
&quot;{1E9B04FB-F9E5-4718-997B-B8DA88302A48}&quot; = &quot;nView Desktop Context Menu&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;nView Desktop Context Menu&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\WINDOWS\system32\nvshell.dll&quot; [&quot;NVIDIA Corporation&quot;]<br />
&quot;{72853161-30C5-4D22-B7F9-0BBC1D38A37E}&quot; = &quot;Groove GFS Browser Helper&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Groove GFS Browser Helper&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll&quot; [MS]<br />
&quot;{2A541AE1-5BF6-4665-A8A3-CFA9672E4291}&quot; = &quot;Groove GFS Explorer Bar&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Groove Folder Synchronization&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll&quot; [MS]<br />
&quot;{A449600E-1DC6-4232-B948-9BD794D62056}&quot; = &quot;Groove GFS Stub Icon Handler&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Groove GFS Stub Icon Handler&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll&quot; [MS]<br />
&quot;{B5A7F190-DDA6-4420-B3BA-52453494E6CD}&quot; = &quot;Groove GFS Stub Execution Hook&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Groove GFS Stub Execution Hook&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll&quot; [MS]<br />
&quot;{6C467336-8281-4E60-8204-430CED96822D}&quot; = &quot;Groove GFS Context Menu Handler&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Groove GFS Context Menu Handler&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll&quot; [MS]<br />
&quot;{387E725D-DC16-4D76-B310-2C93ED4752A0}&quot; = &quot;Groove XML Icon Handler&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Groove XML Icon Handler&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll&quot; [MS]<br />
&quot;{16F3DD56-1AF5-4347-846D-7C10C4192619}&quot; = &quot;Groove Explorer Icon Overlay 3 (GFS Folder)&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Groove Explorer Icon Overlay 3 (GFS Folder)&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll&quot; [MS]<br />
&quot;{AB5C5600-7E6E-4B06-9197-9ECEF74D31CC}&quot; = &quot;Groove Explorer Icon Overlay 2 (GFS Stub)&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Groove Explorer Icon Overlay 2 (GFS Stub)&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll&quot; [MS]<br />
&quot;{2916C86E-86A6-43FE-8112-43ABE6BF8DCC}&quot; = &quot;Groove Explorer Icon Overlay 4 (GFS Unread Mark)&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Groove Explorer Icon Overlay 4 (GFS Unread Mark)&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll&quot; [MS]<br />
&quot;{99FD978C-D287-4F50-827F-B2C658EDA8E7}&quot; = &quot;Groove Explorer Icon Overlay 1 (GFS Unread Stub)&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Groove Explorer Icon Overlay 1 (GFS Unread Stub)&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll&quot; [MS]<br />
&quot;{920E6DB1-9907-4370-B3A0-BAFC03D81399}&quot; = &quot;Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Groove Explorer Icon Overlay 2.5 (GFS Unread Folder)&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll&quot; [MS]<br />
&quot;{0006F045-0000-0000-C000-000000000046}&quot; = &quot;Microsoft Office Outlook Custom Icon Handler&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Outlook File Icon Extension&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\PROGRA~1\MICROS~3\Office12\OLKFSTUB.DLL&quot; [MS]<br />
&quot;{00020D75-0000-0000-C000-000000000046}&quot; = &quot;Microsoft Office Outlook Desktop Icon Handler&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Microsoft Office Outlook&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\PROGRA~1\MICROS~3\Office12\MLSHEXT.DLL&quot; [MS]<br />
&quot;{5858A72C-C2B4-4dd7-B2BF-B76DB1BD9F6C}&quot; = &quot;Microsoft Office OneNote Namespace Extension for Windows Desktop Search&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Microsoft Office OneNote Namespace Extension for Windows Desktop Search&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\PROGRA~1\MICROS~3\Office12\ONFILTER.DLL&quot; [MS]<br />
&quot;{42042206-2D85-11D3-8CFF-005004838597}&quot; = &quot;Microsoft Office HTML Icon Handler&quot;<br />
  -&gt; {HKLM...CLSID} = (no title provided)<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Microsoft Office\Office12\msohevi.dll&quot; [MS]<br />
&quot;{993BE281-6695-4BA5-8A2A-7AACBFAAB69E}&quot; = &quot;Microsoft Office Metadata Handler&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Microsoft Office Metadata Handler&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\msoshext.dll&quot; [MS]<br />
&quot;{C41662BB-1FA0-4CE0-8DC5-9B7F8279FF97}&quot; = &quot;Microsoft Office Thumbnail Handler&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Microsoft Office Thumbnail Handler&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\msoshext.dll&quot; [MS]<br />
&quot;{FFB699E0-306A-11d3-8BD1-00104B6F7516}&quot; = &quot;Play on my TV helper&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;NVIDIA CPL Extension&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\WINDOWS\system32\nvcpl.dll&quot; [&quot;NVIDIA Corporation&quot;]<br />
&quot;{97F68CE3-7146-45FF-BE24-D9A7DD7CB8A2}&quot; = &quot;NeroCoverEd Live Icons&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;NeroCoverEdLiveIcons Class&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Nero\Nero8\Nero CoverDesigner\CoverEdExtension.dll&quot; [&quot;Nero AG&quot;]<br />
&quot;{B327765E-D724-4347-8B16-78AE18552FC3}&quot; = &quot;NeroDigitalIconHandler&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;NeroDigitalIconHandler Class&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Common Files\Nero\Lib\NeroDigitalExt.dll&quot; [&quot;Nero AG&quot;]<br />
&quot;{7F1CF152-04F8-453A-B34C-E609530A9DC8}&quot; = &quot;NeroDigitalPropSheetHandler&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;NeroDigitalPropSheetHandler Class&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Common Files\Nero\Lib\NeroDigitalExt.dll&quot; [&quot;Nero AG&quot;]<br />
&quot;{B9E1D2CB-CCFF-4AA6-9579-D7A4754030EF}&quot; = &quot;iTunes&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;iTunes&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\iTunes\iTunesMiniPlayer.dll&quot; [&quot;Apple Inc.&quot;]<br />
&quot;{9F97547E-4609-42C5-AE0C-81C61FFAEBC3}&quot; = &quot;AVG8 Shell Extension&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;AVG8 Shell Extension Class&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\AVG\AVG8\avgse.dll&quot; [&quot;AVG Technologies CZ, s.r.o.&quot;]<br />
<br />
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\<br />
&lt;&lt;!&gt;&gt; &quot;{0ba3e00d-b660-46e6-a2db-2672ee82dc98}&quot; = &quot;impetuousities&quot;<br />
  -&gt; {HKLM...CLSID} = (no title provided)<br />
                   \InProcServer32\(Default) = &quot;C:\WINDOWS\system32\oanlvs.dll&quot; [file not found]<br />
<br />
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\<br />
&lt;&lt;!&gt;&gt; &quot;{B5A7F190-DDA6-4420-B3BA-52453494E6CD}&quot; = &quot;Groove GFS Stub Execution Hook&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Groove GFS Stub Execution Hook&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll&quot; [MS]<br />
<br />
HKLM\SYSTEM\CurrentControlSet\Control\Session Manager\<br />
&lt;&lt;!&gt;&gt; &quot;BootExecute&quot; = &quot;autocheck autochk *&quot;|&quot;lsdelete&quot; [null data]<br />
<br />
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\<br />
&lt;&lt;!&gt;&gt; dimsntfy\DLLName = &quot;C:\WINDOWS\System32\dimsntfy.dll&quot; [MS]<br />
<br />
HKLM\SOFTWARE\Classes\PROTOCOLS\Filter\<br />
&lt;&lt;!&gt;&gt; text/xml\CLSID = &quot;{807563E5-5146-11D5-A672-00B0D022E945}&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Microsoft Office InfoPath XML Mime Filter&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL&quot; [MS]<br />
<br />
HKLM\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\<br />
{7D4D6379-F301-4311-BEBA-E26EB0561882}\(Default) = &quot;NeroDigitalExt.NeroDigitalColumnHandler&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;NeroDigitalColumnHandler Class&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Common Files\Nero\Lib\NeroDigitalExt.dll&quot; [&quot;Nero AG&quot;]<br />
{F9DB5320-233E-11D1-9F84-707F02C10627}\(Default) = &quot;PDF Column Info&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;PDF Shell Extension&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll&quot; [&quot;Adobe Systems, Inc.&quot;]<br />
<br />
HKLM\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\<br />
AVG8 Shell Extension\(Default) = &quot;{9F97547E-4609-42C5-AE0C-81C61FFAEBC3}&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;AVG8 Shell Extension Class&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\AVG\AVG8\avgse.dll&quot; [&quot;AVG Technologies CZ, s.r.o.&quot;]<br />
Cover Designer\(Default) = &quot;{73FCA462-9BD5-4065-A73F-A8E5F6904EF7}&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;NeroCoverEdContextMenu Class&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Nero\Nero8\Nero CoverDesigner\CoverEdExtension.dll&quot; [&quot;Nero AG&quot;]<br />
XXX Groove GFS Context Menu Handler XXX\(Default) = &quot;{6C467336-8281-4E60-8204-430CED96822D}&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Groove GFS Context Menu Handler&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll&quot; [MS]<br />
<br />
HKLM\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\<br />
XXX Groove GFS Context Menu Handler XXX\(Default) = &quot;{6C467336-8281-4E60-8204-430CED96822D}&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Groove GFS Context Menu Handler&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll&quot; [MS]<br />
<br />
HKLM\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\<br />
AVG8 Shell Extension\(Default) = &quot;{9F97547E-4609-42C5-AE0C-81C61FFAEBC3}&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;AVG8 Shell Extension Class&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\AVG\AVG8\avgse.dll&quot; [&quot;AVG Technologies CZ, s.r.o.&quot;]<br />
XXX Groove GFS Context Menu Handler XXX\(Default) = &quot;{6C467336-8281-4E60-8204-430CED96822D}&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Groove GFS Context Menu Handler&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll&quot; [MS]<br />
<br />
HKLM\SOFTWARE\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers\<br />
XXX Groove GFS Context Menu Handler XXX\(Default) = &quot;{6C467336-8281-4E60-8204-430CED96822D}&quot;<br />
  -&gt; {HKLM...CLSID} = &quot;Groove GFS Context Menu Handler&quot;<br />
                   \InProcServer32\(Default) = &quot;C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll&quot; [MS]<br />
<br />
<br />
Group Policies {GPedit.msc branch and setting}:<br />
-----------------------------------------------<br />
<br />
Note: detected settings may not have any effect.<br />
<br />
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\<br />
<br />
&quot;shutdownwithoutlogon&quot; = (REG_DWORD) dword:0x00000001<br />
{Computer Configuration|Windows Settings|Security Settings|Local Policies|Security Options|<br />
Shutdown: Allow system to be shut down without having to log on}<br />
<br />
&quot;undockwithoutlogon&quot; = (REG_DWORD) dword:0x00000001<br />
{Computer Configuration|Windows Settings|Security Settings|Local Policies|Security Options|<br />
Devices: Allow undock without having to log on}<br />
<br />
<br />
Active Desktop and Wallpaper:<br />
-----------------------------<br />
<br />
Active Desktop may be disabled at this entry:<br />
HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellState<br />
<br />
Displayed if Active Desktop enabled and wallpaper not set by Group Policy:<br />
HKCU\Software\Microsoft\Internet Explorer\Desktop\General\<br />
&quot;Wallpaper&quot; = &quot;C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\Microsoft\Wallpaper1.bmp&quot;<br />
<br />
Displayed if Active Desktop disabled and wallpaper not set by Group Policy:<br />
HKCU\Control Panel\Desktop\<br />
&quot;Wallpaper&quot; = &quot;C:\Documents and Settings\ME\Application Data\Mozilla\Firefox\Desktop Background.bmp&quot;<br />
<br />
<br />
Enabled Screen Saver:<br />
---------------------<br />
<br />
HKCU\Control Panel\Desktop\<br />
&quot;SCRNSAVE.EXE&quot; = &quot;C:\WINDOWS\System32\ssbezier.scr&quot; [MS]<br />
<br />
<br />
Windows Portable Device AutoPlay Handlers<br />
-----------------------------------------<br />
<br />
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\<br />
<br />
iTunesBurnCDOnArrival\<br />
&quot;Provider&quot; = &quot;iTunes&quot;<br />
&quot;InvokeProgID&quot; = &quot;iTunes.BurnCD&quot;<br />
&quot;InvokeVerb&quot; = &quot;burn&quot;<br />
HKLM\SOFTWARE\Classes\iTunes.BurnCD\shell\burn\command\(Default) = &quot;&quot;C:\Program Files\iTunes\iTunes.exe&quot; /AutoPlayBurn &quot;%L&quot;&quot; [&quot;Apple Inc.&quot;]<br />
<br />
iTunesImportSongsOnArrival\<br />
&quot;Provider&quot; = &quot;iTunes&quot;<br />
&quot;InvokeProgID&quot; = &quot;iTunes.ImportSongsOnCD&quot;<br />
&quot;InvokeVerb&quot; = &quot;import&quot;<br />
HKLM\SOFTWARE\Classes\iTunes.ImportSongsOnCD\shell\import\command\(Default) = &quot;&quot;C:\Program Files\iTunes\iTunes.exe&quot; /AutoPlayImportSongs &quot;%L&quot;&quot; [&quot;Apple Inc.&quot;]<br />
<br />
iTunesPlaySongsOnArrival\<br />
&quot;Provider&quot; = &quot;iTunes&quot;<br />
&quot;InvokeProgID&quot; = &quot;iTunes.PlaySongsOnCD&quot;<br />
&quot;InvokeVerb&quot; = &quot;play&quot;<br />
HKLM\SOFTWARE\Classes\iTunes.PlaySongsOnCD\shell\play\command\(Default) = &quot;&quot;C:\Program Files\iTunes\iTunes.exe&quot; /playCD &quot;%L&quot;&quot; [&quot;Apple Inc.&quot;]<br />
<br />
iTunesShowSongsOnArrival\<br />
&quot;Provider&quot; = &quot;iTunes&quot;<br />
&quot;InvokeProgID&quot; = &quot;iTunes.ShowSongsOnCD&quot;<br />
&quot;InvokeVerb&quot; = &quot;showsongs&quot;<br />
<br />
<br />
<br />
thanks for looking</div> ]]></content:encoded>
			<category domain="http://www.daniweb.com/forums/forum64.html">Viruses, Spyware and other Nasties</category>
			<dc:creator>thehangner</dc:creator>
			<guid isPermaLink="true">http://www.daniweb.com/forums/thread149631.html</guid>
		</item>
		<item>
			<title>Print Spooler Not running</title>
			<link>http://www.daniweb.com/forums/thread149604.html</link>
			<pubDate>Mon, 06 Oct 2008 23:05:04 GMT</pubDate>
			<description>For a year I have been using a Dell 3010cn laser printer on a wireless network. The Dell is attached to my office pc via a USB connection. There are three other computers in the house all connecting via wireless router. There has never been a problem printing to the Dell from the network until Sat....</description>
			<content:encoded><![CDATA[<div>For a year I have been using a Dell 3010cn laser printer on a wireless network. The Dell is attached to my office pc via a USB connection. There are three other computers in the house all connecting via wireless router. There has never been a problem printing to the Dell from the network until Sat. night. When one of the wireless pc's attempts to print the message &quot;print spooler not running&quot; displays. I have verified that on all of the pc's the print spooler program in on automatic and running. I have even re-started the program and removed the printer and re-installed it with the most current drivers available. There is no issue printing from the local pc. The local pc has been updated to XP SP3. Any thoughts or ideas will be welcomed.</div> ]]></content:encoded>
			<category domain="http://www.daniweb.com/forums/forum10.html">Windows NT / 2000 / XP / 2003</category>
			<dc:creator>metalmover3</dc:creator>
			<guid isPermaLink="true">http://www.daniweb.com/forums/thread149604.html</guid>
		</item>
		<item>
			<title>Webpages Not Loading</title>
			<link>http://www.daniweb.com/forums/thread149591.html</link>
			<pubDate>Mon, 06 Oct 2008 22:12:08 GMT</pubDate>
			<description><![CDATA[Hello. I am a windows XP user with Mozilla Firefox as my web browser.  All of a sudden, yesterday I was uable to load any webpages.  I am connected to the internet and can get on AIM and even my school email, but other than that when I try to get on a website an error comes up that says "the...]]></description>
			<content:encoded><![CDATA[<div>Hello. I am a windows XP user with Mozilla Firefox as my web browser.  All of a sudden, yesterday I was uable to load any webpages.  I am connected to the internet and can get on AIM and even my school email, but other than that when I try to get on a website an error comes up that says &quot;the connection was reset&quot;.  I reset my wireless router and everyone else's computer in the house is working fine.  I have no idea what to do or how this happened and I need my internet for school (college student!). Please help :) <br />
<br />
Thank you.</div> ]]></content:encoded>
			<category domain="http://www.daniweb.com/forums/forum29.html">Web Browsers</category>
			<dc:creator>casey1125</dc:creator>
			<guid isPermaLink="true">http://www.daniweb.com/forums/thread149591.html</guid>
		</item>
		<item>
			<title>Google links redirect to ad sites...</title>
			<link>http://www.daniweb.com/forums/thread149590.html</link>
			<pubDate>Mon, 06 Oct 2008 21:58:43 GMT</pubDate>
			<description>I have an issue where all of the links created by searched in Google (I tried other search engines as well) when selected redirect to an ad.  The link starts with the web address of www.go.google.com.... and then redirects to a website usually completely unrelated to the initial search.  This has...</description>
			<content:encoded><![CDATA[<div>I have an issue where all of the links created by searched in Google (I tried other search engines as well) when selected redirect to an ad.  The link starts with the web address of <a rel="nofollow" class="t" href="http://www.go.google.com" target="_blank">www.go.google.com</a>.... and then redirects to a website usually completely unrelated to the initial search.  This has been happenning for about a week now and began after I downloaded the iTunes 8.0 update.  I have since completely removed iTunes from my laptop.  I have tried to a couple of different spyware/adware tools that were recommended but to no avail...most in fact, will not even allow me to access the webpage or download the tool.  <br />
<br />
I read the first &quot;sticky&quot; post and tried to download the scanners and tools listed, but again was not able to access those webpages or download the tools.  I was able to download and run a scan with Trend Micro's Hijack This.  I have copied the log file below:<br />
<br />
Logfile of Trend Micro HijackThis v2.0.2<br />
Scan saved at 5:35:13 PM, on 10/6/2008<br />
Platform: Windows XP SP2 (WinNT 5.01.2600)<br />
MSIE: Internet Explorer v7.00 (7.00.6000.16705)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:\WINDOWS\System32\smss.exe<br />
C:\WINDOWS\system32\winlogon.exe<br />
C:\WINDOWS\system32\services.exe<br />
C:\WINDOWS\system32\lsass.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe<br />
C:\Program Files\Hewlett-Packard\IAM\bin\asghost.exe<br />
C:\WINDOWS\Explorer.EXE<br />
C:\WINDOWS\system32\AccelerometerSt.exe<br />
C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE<br />
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe<br />
C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe<br />
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe<br />
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe<br />
C:\Program Files\Analog Devices\Core\smax4pnp.exe<br />
C:\Program Files\PDF Complete\pdfsty.exe<br />
C:\WINDOWS\system32\igfxtray.exe<br />
C:\WINDOWS\system32\hkcmd.exe<br />
C:\WINDOWS\system32\igfxpers.exe<br />
C:\Program Files\CA\eTrustITM\realmon.exe<br />
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe<br />
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe<br />
C:\WINDOWS\system32\spoolsv.exe<br />
C:\Program Files\Boingo\GoBoingo\GoBoingo.exe<br />
C:\WINDOWS\system32\igfxsrvc.exe<br />
C:\WINDOWS\system32\ctfmon.exe<br />
C:\Program Files\TomTom HOME 2\HOMERunner.exe<br />
C:\Program Files\Microsoft ActiveSync\wcescomm.exe<br />
C:\PROGRA~1\MI3AA1~1\rapimgr.exe<br />
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe<br />
C:\Program Files\Windows Desktop Search\WindowsSearch.exe<br />
C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe<br />
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe<br />
C:\WINDOWS\system32\ifxspmgt.exe<br />
C:\WINDOWS\system32\ifxtcs.exe<br />
C:\Program Files\CA\SharedComponents\iTechnology\igateway.exe<br />
C:\Program Files\CA\eTrustITM\InoRpc.exe<br />
C:\Program Files\CA\eTrustITM\InoRT.exe<br />
C:\Program Files\CA\eTrustITM\InoTask.exe<br />
C:\Program Files\CA\SharedComponents\PPRealtime\bin\ITMRTSVC.exe<br />
C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe<br />
C:\Program Files\PDF Complete\pdfsvc.exe<br />
C:\WINDOWS\system32\IfxPsdSv.exe<br />
C:\Program Files\chatsupport.palm.com\bin\tgsrvc.exe<br />
C:\WINDOWS\system32\SearchIndexer.exe<br />
C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe<br />
C:\Program Files\Internet Explorer\iexplore.exe<br />
C:\Program Files\Hewlett-Packard\Embedded Security Software\PSDrt.exe<br />
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe<br />
C:\WINDOWS\system32\wuauclt.exe<br />
C:\Program Files\Java\jre1.6.0_05\bin\jucheck.exe<br />
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe<br />
C:\Program Files\Microsoft Office\Office12\EXCEL.EXE<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\Program Files\Microsoft ActiveSync\WCESMgr.exe<br />
C:\Program Files\Internet Explorer\Iexplore.exe<br />
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe<br />
C:\WINDOWS\system32\SearchProtocolHost.exe<br />
<br />
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = <a rel="nofollow" class="t" href="http://www.gointranet.com/mcalisters/" target="_blank">http://www.gointranet.com/mcalisters/</a><br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = <a rel="nofollow" class="t" href="http://go.microsoft.com/fwlink/?LinkId=69157" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a><br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = <a rel="nofollow" class="t" href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = <a rel="nofollow" class="t" href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = <a rel="nofollow" class="t" href="http://go.microsoft.com/fwlink/?LinkId=69157" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a><br />
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = <a rel="nofollow" class="t" href="http://www.hp.com/" target="_blank">http://www.hp.com/</a><br />
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll<br />
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll<br />
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll<br />
O2 - BHO: Credential Manager for HP ProtectTools - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - C:\Program Files\Hewlett-Packard\IAM\Bin\ItIEAddIn.dll<br />
O3 - Toolbar: &amp;Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll<br />
O4 - HKLM\..\Run: [SoundMAX] C:\Program Files\Analog Devices\SoundMAX\Smax4.exe /tray<br />
O4 - HKLM\..\Run: [AccelerometerSysTrayApplet] C:\WINDOWS\system32\AccelerometerSt.exe<br />
O4 - HKLM\..\Run: [PTHOSTTR] C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\PTHOSTTR.EXE /Start<br />
O4 - HKLM\..\Run: [IFXSPMGT] C:\WINDOWS\system32\ifxspmgt.exe /NotifyLogon<br />
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe<br />
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\Hewlett-Packard\Default Settings\cpqset.exe<br />
O4 - HKLM\..\Run: [HP Software Update] &quot;C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe&quot;<br />
O4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe<br />
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start<br />
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe<br />
O4 - HKLM\..\Run: [CognizanceTS] rundll32.exe C:\PROGRA~1\HEWLET~1\IAM\Bin\ASTSVCC.dll,RegisterModule<br />
O4 - HKLM\..\Run: [PDF Complete] &quot;C:\Program Files\PDF Complete\pdfsty.exe&quot;<br />
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe<br />
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe<br />
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe<br />
O4 - HKLM\..\Run: [Realtime Monitor] &quot;C:\Program Files\CA\eTrustITM\realmon.exe&quot; -s<br />
O4 - HKLM\..\Run: [WatchDog] C:\Program Files\InterVideo\DVD Check\DVDCheck.exe<br />
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb12.exe<br />
O4 - HKLM\..\Run: [HP Component Manager] &quot;C:\Program Files\HP\hpcoretech\hpcmpmgr.exe&quot;<br />
O4 - HKLM\..\Run: [FinishOptions] C:\DOCUME~1\user\LOCALS~1\Temp\hpbinxst.exe<br />
O4 - HKLM\..\Run: [SunJavaUpdateSched] &quot;C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe&quot;<br />
O4 - HKLM\..\Run: [GoBoingo] C:\Program Files\Boingo\GoBoingo\GoBoingo.lnk<br />
O4 - HKLM\..\Run: [QuickTime Task] &quot;C:\Program Files\QuickTime\QTTask.exe&quot; -atboottime<br />
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe<br />
O4 - HKCU\..\Run: [TomTomHOME.exe] &quot;C:\Program Files\TomTom HOME 2\HOMERunner.exe&quot;<br />
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe<br />
O4 - HKCU\..\Run: [H/PC Connection Agent] &quot;C:\Program Files\Microsoft ActiveSync\wcescomm.exe&quot;<br />
O4 - HKCU\..\Run: [SVCHOST.EXE] C:\WINDOWS\system32\drivers\svchost.exe<br />
O4 - Global Startup: DVD Check.lnk = C:\Program Files\InterVideo\DVD Check\DVDCheck.exe<br />
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe<br />
O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe<br />
O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\Windows Desktop Search\WindowsSearch.exe<br />
O8 - Extra context menu item: E&amp;xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000<br />
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll<br />
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll<br />
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll<br />
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll<br />
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll<br />
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL<br />
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe<br />
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe<br />
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - <a rel="nofollow" class="t" href="http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab" target="_blank">http://appldnld.apple.com.edgesuite....x/qtplugin.cab</a><br />
O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5) - <a rel="nofollow" class="t" href="http://upload.facebook.com/controls/FacebookPhotoUploader5.cab" target="_blank">http://upload.facebook.com/controls/...oUploader5.cab</a><br />
O16 - DPF: {6B75345B-AA36-438A-BBE6-4078B4C6984D} (HpProductDetection Class) - <a rel="nofollow" class="t" href="http://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection.cab" target="_blank">http://h20270.www2.hp.com/ediags/gmn...tDetection.cab</a><br />
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - <a rel="nofollow" class="t" href="http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab" target="_blank">http://fpdownload2.macromedia.com/ge...sh/swflash.cab</a><br />
O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} (Virtools WebPlayer Class) - <a rel="nofollow" class="t" href="http://3dlifeplayer.dl.3dvia.com/player/install/installer.exe" target="_blank">http://3dlifeplayer.dl.3dvia.com/pla.../installer.exe</a><br />
O20 - AppInit_DLLs: APSHook.dll<br />
O20 - Winlogon Notify: OneCard - C:\Program Files\Hewlett-Packard\IAM\Bin\ASWLNPkg.dll<br />
O20 - Winlogon Notify: __c0042D22 - C:\WINDOWS\system32\__c0042D22.dat (file missing)<br />
O20 - Winlogon Notify: __c00C3FCC - C:\WINDOWS\system32\__c00C3FCC.dat (file missing)<br />
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe<br />
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe<br />
O23 - Service: pcAnywhere Host Service (awhost32) - Symantec Corporation - C:\Program Files\Symantec\pcAnywhere\awhost32.exe<br />
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe<br />
O23 - Service: HP Port Resolver - Hewlett-Packard Company - C:\WINDOWS\system32\hpbpro.exe<br />
O23 - Service: HP Status Server - Hewlett-Packard Company - C:\WINDOWS\system32\hpboid.exe<br />
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqWmiEx.exe<br />
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe<br />
O23 - Service: Security Platform Management Service (IFXSpMgtSrv) - Infineon Technologies AG - C:\WINDOWS\system32\ifxspmgt.exe<br />
O23 - Service: Trusted Platform Core Service (IFXTCS) - Infineon Technologies AG - C:\WINDOWS\system32\ifxtcs.exe<br />
O23 - Service: iTechnology iGateway 4.2 (iGateway) - CA, Inc. - C:\Program Files\CA\SharedComponents\iTechnology\igateway.exe<br />
O23 - Service: eTrust ITM RPC Service (InoRPC) - CA - C:\Program Files\CA\eTrustITM\InoRpc.exe<br />
O23 - Service: eTrust Antivirus Realtime Service (InoRT) - CA - C:\Program Files\CA\eTrustITM\InoRT.exe<br />
O23 - Service: eTrust ITM Job Service (InoTask) - CA - C:\Program Files\CA\eTrustITM\InoTask.exe<br />
O23 - Service: CA Pest Patrol Realtime Protection Service (ITMRTSVC) - CA, Inc. - C:\Program Files\CA\SharedComponents\PPRealtime\bin\ITMRTSVC.exe<br />
O23 - Service: IviRegMgr - InterVideo - C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe<br />
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files\PDF Complete\pdfsvc.exe<br />
O23 - Service: Personal Secure Drive service (PersonalSecureDriveService) - Infineon Technologies AG - C:\WINDOWS\system32\IfxPsdSv.exe<br />
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe<br />
O23 - Service: LiveShare P2P Server 9 (RoxLiveShare9) - Unknown owner - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe (file missing)<br />
O23 - Service: SupportSoft RemoteAssist - SupportSoft, Inc. - C:\Program Files\Common Files\supportsoft\bin\ssrc.exe<br />
O23 - Service: SupportSoft Repair Service (chatsupport.palm.com) (tgsrvc_chatsupport.palm.com) - SupportSoft, Inc. - C:\Program Files\chatsupport.palm.com\bin\tgsrvc.exe<br />
<br />
--<br />
End of file - 12226 bytes<br />
<br />
I greatly appreciate any help with this problem.  I know that I have not been able to accomplish what you all have asked of us before posting a thread, but I hope that I may be able to work around this issue if possible.  Thanks in advance for any help you can offer.<br />
<br />
Greg</div> ]]></content:encoded>
			<category domain="http://www.daniweb.com/forums/forum64.html">Viruses, Spyware and other Nasties</category>
			<dc:creator>gpoole</dc:creator>
			<guid isPermaLink="true">http://www.daniweb.com/forums/thread149590.html</guid>
		</item>
		<item>
			<title>Help trying to remove Virus Alert</title>
			<link>http://www.daniweb.com/forums/thread149588.html</link>
			<pubDate>Mon, 06 Oct 2008 21:53:51 GMT</pubDate>
			<description>hi I recently had an infect on my computer this Virus Alert! I did some research and thought I had cleared it out but apparently not. I now have an empty device manager. So the virus is still on my pc somewhere. I had originally tried using the Malwarebytes and then using SUPERAntispyware. It had...</description>
			<content:encoded><![CDATA[<div>hi I recently had an infect on my computer this Virus Alert! I did some research and thought I had cleared it out but apparently not. I now have an empty device manager. So the virus is still on my pc somewhere. I had originally tried using the Malwarebytes and then using SUPERAntispyware. It had cleared the virus so I assumed. The Virus Alert! was still on my taskbar. I had to manually set the time to 12hr rather than military time it from the HKEY registry. Then noticed my device manager is empty. My restore point didnt restore anything. I am running Windows XP SP2. I really would like some help if you guys can help. Thanks much for all those who do happen to help. If any.</div> ]]></content:encoded>
			<category domain="http://www.daniweb.com/forums/forum64.html">Viruses, Spyware and other Nasties</category>
			<dc:creator>halsey</dc:creator>
			<guid isPermaLink="true">http://www.daniweb.com/forums/thread149588.html</guid>
		</item>
		<item>
			<title>Strange problem</title>
			<link>http://www.daniweb.com/forums/thread149552.html</link>
			<pubDate>Mon, 06 Oct 2008 18:32:21 GMT</pubDate>
			<description>Hello Friends,
My Name is Viru,
I faced a strange problem,
my friend system is not displaying anything after start, A black screen is comming thats all
I tried in safe mode also but no result ,
and when i tried to format the C:\ drive,
The CD is also not able to run means no autorun is going...</description>
			<content:encoded><![CDATA[<div>Hello Friends,<br />
My Name is Viru,<br />
I faced a strange problem,<br />
my friend system is not displaying anything after start, A black screen is comming thats all<br />
I tried in safe mode also but no result ,<br />
and when i tried to format the C:\ drive,<br />
The CD is also not able to run means no autorun is going on<br />
please help me to solve the issue.<br />
<br />
Viru</div> ]]></content:encoded>
			<category domain="http://www.daniweb.com/forums/forum37.html"><![CDATA[Windows tips 'n' tweaks]]></category>
			<dc:creator>virspy</dc:creator>
			<guid isPermaLink="true">http://www.daniweb.com/forums/thread149552.html</guid>
		</item>
		<item>
			<title><![CDATA[IE displays blank page when "Done"]]></title>
			<link>http://www.daniweb.com/forums/thread149537.html</link>
			<pubDate>Mon, 06 Oct 2008 17:49:24 GMT</pubDate>
			<description><![CDATA[Hi all, 

I have problems with my internet explorer. In some sites, IE displays a blank page however the site is connected and downloads fine (can see that from the status bar before it displays "done") What's strange is that firefox loads fine and even if I try other pages apart from the main one...]]></description>
			<content:encoded><![CDATA[<div>Hi all, <br />
<br />
I have problems with my internet explorer. In some sites, IE displays a blank page however the site is connected and downloads fine (can see that from the status bar before it displays &quot;done&quot;) What's strange is that firefox loads fine and even if I try other pages apart from the main one on the site, it works as well. It just started happening. I didn' t make any updates (I use IE6) and I didn' t change anything on the settings. <br />
<br />
I have registered the dll files as the official windows fix says, but didn't fix it.<br />
<br />
I have also run Malwarebyte's and Avast check didn't find any viruses, but since it just started happening I can't rule out anything, I think!<br />
<br />
Any thoughts? <br />
<br />
Thanx!</div> ]]></content:encoded>
			<category domain="http://www.daniweb.com/forums/forum29.html">Web Browsers</category>
			<dc:creator>kitkat</dc:creator>
			<guid isPermaLink="true">http://www.daniweb.com/forums/thread149537.html</guid>
		</item>
		<item>
			<title><![CDATA[Need help with my wife's laptop]]></title>
			<link>http://www.daniweb.com/forums/thread149525.html</link>
			<pubDate>Mon, 06 Oct 2008 16:14:28 GMT</pubDate>
			<description><![CDATA[I've gone through the "Read me before posting a request" thread and here are the requested log files.  I am also including a hijackthis log.  Your help is greatly appreciated!

Thanks.

Malwarebytes' Anti-Malware 1.28
Database version: 1234
Windows 5.1.2600 Service Pack 3

10/6/2008 11:18:34...]]></description>
			<content:encoded><![CDATA[<div>I've gone through the &quot;Read me before posting a request&quot; thread and here are the requested log files.  I am also including a hijackthis log.  Your help is greatly appreciated!<br />
<br />
Thanks.<br />
<br />
Malwarebytes' Anti-Malware 1.28<br />
Database version: 1234<br />
Windows 5.1.2600 Service Pack 3<br />
<br />
10/6/2008 11:18:34 AM<br />
mbam-log-2008-10-06 (11-18-34).txt<br />
<br />
Scan type: Full Scan (C:\|)<br />
Objects scanned: 128852<br />
Time elapsed: 26 minute(s), 4 second(s)<br />
<br />
Memory Processes Infected: 0<br />
Memory Modules Infected: 4<br />
Registry Keys Infected: 18<br />
Registry Values Infected: 2<br />
Registry Data Items Infected: 2<br />
Folders Infected: 4<br />
Files Infected: 23<br />
<br />
Memory Processes Infected:<br />
(No malicious items detected)<br />
<br />
Memory Modules Infected:<br />
C:\WINDOWS\system32\ljJCuSJD.dll (Trojan.Vundo.H) -&gt; Delete on reboot.<br />
C:\WINDOWS\system32\wnkamw.dll (Trojan.Vundo) -&gt; Delete on reboot.<br />
C:\WINDOWS\system32\lvwsbk.dll (Trojan.Vundo) -&gt; Delete on reboot.<br />
C:\WINDOWS\system32\ljhqne.dll (Trojan.Vundo) -&gt; Delete on reboot.<br />
<br />
Registry Keys Infected:<br />
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0907ec91-e392-49d9-954c-8608ede92d83} (Trojan.Vundo.H) -&gt; Delete on reboot.<br />
HKEY_CLASSES_ROOT\CLSID\{0907ec91-e392-49d9-954c-8608ede92d83} (Trojan.Vundo.H) -&gt; Delete on reboot.<br />
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{88379d08-c9c1-4636-981d-ebcb315a9b8e} (Trojan.Vundo.H) -&gt; Quarantined and deleted successfully.<br />
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\efcaqixu (Trojan.Vundo.H) -&gt; Quarantined and deleted successfully.<br />
HKEY_CLASSES_ROOT\CLSID\{88379d08-c9c1-4636-981d-ebcb315a9b8e} (Trojan.Vundo.H) -&gt; Quarantined and deleted successfully.<br />
HKEY_CLASSES_ROOT\CLSID\{f70a242e-2b40-4764-815d-fb1c73e62a87} (Trojan.Vundo) -&gt; Quarantined and deleted successfully.<br />
HKEY_CLASSES_ROOT\CLSID\{cb50df52-d06c-4e8d-8b67-a7e6ca66bb87} (Trojan.Vundo) -&gt; Quarantined and deleted successfully.<br />
HKEY_CLASSES_ROOT\CLSID\{12035aaf-240b-4bbd-b47a-2fa4ef0a9b97} (Trojan.Vundo) -&gt; Quarantined and deleted successfully.<br />
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\tdssdata (Trojan.Agent) -&gt; Quarantined and deleted successfully.<br />
HKEY_LOCAL_MACHINE\SOFTWARE\tdss (Trojan.Agent) -&gt; Quarantined and deleted successfully.<br />
HKEY_LOCAL_MACHINE\SOFTWARE\xpre (Trojan.Downloader) -&gt; Quarantined and deleted successfully.<br />
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Juan (Malware.Trace) -&gt; Quarantined and deleted successfully.<br />
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\contim (Trojan.Vundo) -&gt; Quarantined and deleted successfully.<br />
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\dslcnnct (Trojan.Vundo) -&gt; Quarantined and deleted successfully.<br />
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\IProxyProvider (Trojan.Vundo) -&gt; Quarantined and deleted successfully.<br />
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Track System (Trojan.Vundo) -&gt; Quarantined and deleted successfully.<br />
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\FCOVM (Trojan.Vundo) -&gt; Quarantined and deleted successfully.<br />
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RemoveRP (Trojan.Vundo) -&gt; Quarantined and deleted successfully.<br />
<br />
Registry Values Infected:<br />
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\prunnet (Trojan.Agent) -&gt; Quarantined and deleted successfully.<br />
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\5092f358 (Trojan.Vundo) -&gt; Quarantined and deleted successfully.<br />
<br />
Registry Data Items Infected:<br />
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Notification Packages (Trojan.Vundo.H) -&gt; Data: c:\windows\system32\ljjcusjd -&gt; Quarantined and deleted successfully.<br />
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Authentication Packages (Trojan.Vundo) -&gt; Data: c:\windows\system32\ljjcusjd  -&gt; Delete on reboot.<br />
<br />
Folders Infected:<br />
C:\Program Files\ShoppingReport (Adware.Shopping.Report) -&gt; Quarantined and deleted successfully.<br />
C:\Program Files\ShoppingReport\Bin (Adware.Shopping.Report) -&gt; Quarantined and deleted successfully.<br />
C:\Program Files\ShoppingReport\Bin\2.0.26 (Adware.Shopping.Report) -&gt; Quarantined and deleted successfully.<br />
C:\Program Files\altcmd (Trojan.Agent) -&gt; Quarantined and deleted successfully.<br />
<br />
Files Infected:<br />
C:\WINDOWS\system32\ljJCuSJD.dll (Trojan.Vundo.H) -&gt; Delete on reboot.<br />
C:\WINDOWS\system32\DJSuCJjl.ini (Trojan.Vundo.H) -&gt; Delete on reboot.<br />
C:\WINDOWS\system32\DJSuCJjl.ini2 (Trojan.Vundo.H) -&gt; Quarantined and deleted successfully.<br />
C:\WINDOWS\system32\efcAQIxU.dll (Trojan.Vundo.H) -&gt; Quarantined and deleted successfully.<br />
C:\WINDOWS\system32\chmsruky.dll (Trojan.Vundo.H) -&gt; Quarantined and deleted successfully.<br />
C:\WINDOWS\system32\ykursmhc.ini (Trojan.Vundo.H) -&gt; Quarantined and deleted successfully.<br />
C:\WINDOWS\system32\wnkamw.dll (Trojan.Vundo) -&gt; Delete on reboot.<br />
C:\WINDOWS\system32\lvwsbk.dll (Trojan.Vundo) -&gt; Delete on reboot.<br />
C:\WINDOWS\system32\ljhqne.dll (Trojan.Vundo) -&gt; Delete on reboot.<br />
C:\WINDOWS\system32\myaqqvlb.dll (Trojan.Vundo) -&gt; Quarantined and deleted successfully.<br />
C:\WINDOWS\system32\percbfjf.dll (Trojan.Vundo) -&gt; Quarantined and deleted successfully.<br />
C:\Program Files\altcmd\uninstall.bat (Trojan.Agent) -&gt; Quarantined and deleted successfully.<br />
C:\Documents and Settings\Dee\Local Settings\Temp\prun.exe (Trojan.Agent) -&gt; Quarantined and deleted successfully.<br />
C:\WINDOWS\system32\tdssservers.dat (Trojan.Agent) -&gt; Quarantined and deleted successfully.<br />
C:\WINDOWS\system32\pac.txt (Malware.Trace) -&gt; Quarantined and deleted successfully.<br />
C:\WINDOWS\BM53a1c0c4.xml (Trojan.Vundo) -&gt; Quarantined and deleted successfully.<br />
C:\WINDOWS\BM53a1c0c4.txt (Trojan.Vundo) -&gt; Quarantined and deleted successfully.<br />
C:\Documents and Settings\Dee\Local Settings\Temp\e301_appcompat.txt (Trojan.Extension.Exploit) -&gt; Quarantined and deleted successfully.<br />
C:\Documents and Settings\Dee\Desktop\Cover letter.doc (Trojan.Extension.Exploit) -&gt; Quarantined and deleted successfully.<br />
C:\Documents and Settings\Dee\Desktop\Turner Contact HR.docx (Trojan.Extension.Exploit) -&gt; Quarantined and deleted successfully.<br />
C:\Documents and Settings\Dee\Local Settings\Temp\winvsnet.exe (Rogue.Installer) -&gt; Quarantined and deleted successfully.<br />
C:\Documents and Settings\Dee\Local Settings\Temp\TDSSe9bd.tmp (Trojan.FakeAlert) -&gt; Quarantined and deleted successfully.<br />
C:\WINDOWS\system32\TDSSerrors.log (Trojan.TDSS) -&gt; Quarantined and deleted successfully.<br />
<br />
-----------------<br />
<br />
# version=4<br />
# OnlineScanner.ocx=1.0.0.635<br />
# OnlineScannerDLLA.dll=1, 0, 0, 79<br />
# OnlineScannerDLLW.dll=1, 0, 0, 78<br />
# OnlineScannerUninstaller.exe=1, 0, 0, 49<br />
# vers_standard_module=3497 (20081006)<br />
# vers_arch_module=1.064 (20080214)<br />
# vers_adv_heur_module=1.066 (20070917)<br />
# EOSSerial=ba7bc3d355d16c47ab312f9d3488b7fa<br />
# end=finished<br />
# remove_checked=false<br />
# unwanted_checked=true<br />
# utc_time=2008-10-06 04:04:30<br />
# local_time=2008-10-06 12:04:30 (-0500, Eastern Daylight Time)<br />
# country=&quot;United States&quot;<br />
# osver=5.1.2600 NT Service Pack 3<br />
# scanned=303415<br />
# found=7<br />
# scan_time=2218<br />
C:\Documents and Settings\All Users\Application Data\Spybot - Search &amp; Destroy\Recovery\SmitfraudCgeneric.zip	Win32/Bagle.gen.zip worm	37EA806C53E6C1A53BDDB3B2F5B8EF97<br />
C:\Documents and Settings\All Users\Application Data\Spybot - Search &amp; Destroy\Recovery\VirtumondeCrack1.zip	Win32/Bagle.gen.zip worm	95C94E6CED5CAF4DA7179F310A8EF13F<br />
C:\Documents and Settings\All Users\Application Data\Spybot - Search &amp; Destroy\Recovery\VirtumondeCrack2.zip	Win32/Bagle.gen.zip worm	33E52D8604A8D015B0A0BC75528BAA0C<br />
C:\Documents and Settings\All Users\Application Data\Spybot - Search &amp; Destroy\Recovery\VirtumondeCrack3.zip	Win32/Bagle.gen.zip worm	4AF746A7691DDD7995574E848C3CD7E8<br />
C:\Documents and Settings\All Users\Application Data\Spybot - Search &amp; Destroy\Recovery\VirtumondeCrack4.zip	Win32/Bagle.gen.zip worm	49189EEFF28329DC227D7ED6A2775576<br />
C:\Documents and Settings\All Users\Application Data\Spybot - Search &amp; Destroy\Recovery\ZangoShoppingReport11.zip	Win32/Bagle.gen.zip worm	26195DC8A348DDD4B7232A23FA7E684C<br />
C:\WINDOWS\system32\drivers\etc\hosts.20080925-220246.backup	Win32/Qhost trojan	4640CDE257F84B1C1D3D6F385F1D2B95<br />
<br />
-----------------------<br />
<br />
Logfile of Trend Micro HijackThis v2.0.2<br />
Scan saved at 12:09:37 PM, on 10/6/2008<br />
Platform: Windows XP SP3 (WinNT 5.01.2600)<br />
MSIE: Internet Explorer v7.00 (7.00.6000.16705)<br />
Boot mode: Safe mode with network support<br />
<br />
Running processes:<br />
C:\WINDOWS\System32\smss.exe<br />
C:\WINDOWS\system32\winlogon.exe<br />
C:\WINDOWS\system32\services.exe<br />
C:\WINDOWS\system32\lsass.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe<br />
C:\WINDOWS\Explorer.exe<br />
C:\Program Files\Internet Explorer\IEXPLORE.EXE<br />
C:\WINDOWS\system32\ctfmon.exe<br />
C:\Documents and Settings\Administrator.DEE\Desktop\HiJackThis.exe<br />
<br />
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = <a rel="nofollow" class="t" href="http://www.dell4me.com/myway" target="_blank">http://www.dell4me.com/myway</a><br />
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = <a rel="nofollow" class="t" href="http://bfc.myway.com/search/de_srchlft.html" target="_blank">http://bfc.myway.com/search/de_srchlft.html</a><br />
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = <a rel="nofollow" class="t" href="http://www.dell4me.com/myway" target="_blank">http://www.dell4me.com/myway</a><br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = <a rel="nofollow" class="t" href="http://go.microsoft.com/fwlink/?LinkId=69157" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a><br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = <a rel="nofollow" class="t" href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = <a rel="nofollow" class="t" href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">http://go.microsoft.com/fwlink/?LinkId=54896</a><br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = <a rel="nofollow" class="t" href="http://go.microsoft.com/fwlink/?LinkId=69157" target="_blank">http://go.microsoft.com/fwlink/?LinkId=69157</a><br />
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = <a rel="nofollow" class="t" href="http://go.microsoft.com/fwlink/?LinkId=74005" target="_blank">http://go.microsoft.com/fwlink/?LinkId=74005</a><br />
R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - (no file)<br />
F2 - REG:system.ini: Shell=Explorer.exe <br />
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll<br />
O2 - BHO: (no name) - {0907EC91-E392-49D9-954C-8608EDE92D83} - C:\WINDOWS\system32\ljJCuSJD.dll (file missing)<br />
O2 - BHO: (no name) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)<br />
O2 - BHO: (no name) - {4E583605-D8B0-49E6-8291-EB874413E92D} - (no file)<br />
O2 - BHO: Spybot-S&amp;D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll<br />
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll<br />
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll<br />
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll<br />
O2 - BHO: (no name) - {EE86DA01-A709-437B-9D38-EECBCA46A02B} - (no file)<br />
O3 - Toolbar: &amp;Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll<br />
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe<br />
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe<br />
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe<br />
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe<br />
O4 - HKLM\..\Run: [Dell Wireless Manager UI] C:\WINDOWS\system32\WLTRAY<br />
O4 - HKLM\..\Run: [DVDLauncher] &quot;C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe&quot;<br />
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER<br />
O4 - HKLM\..\Run: [QuickTime Task] &quot;C:\Program Files\QuickTime\qttask.exe&quot; -atboottime<br />
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe<br />
O4 - HKLM\..\Run: [ISUSPM Startup] &quot;C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe&quot; -startup<br />
O4 - HKLM\..\Run: [ISUSScheduler] &quot;C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe&quot; -start<br />
O4 - HKLM\..\Run: [DMXLauncher] C:\Program Files\Dell\Media Experience\DMXLauncher.exe<br />
O4 - HKLM\..\Run: [iTunesHelper] &quot;C:\Program Files\iTunes\iTunesHelper.exe&quot;<br />
O4 - HKLM\..\Run: [dscactivate] &quot;C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe&quot;<br />
O4 - HKLM\..\Run: [DellSupportCenter] &quot;C:\Program Files\Dell Support Center\bin\sprtcmd.exe&quot; /P DellSupportCenter<br />
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe<br />
O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] &quot;C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe&quot; /runcleanupscript<br />
O4 - HKLM\..\RunOnce: [SpybotSnD] &quot;C:\Program Files\Spybot - Search &amp; Destroy\SpybotSD.exe&quot; /autocheck<br />
O4 - HKCU\..\Run: [OE_OEM] &quot;C:\Program Files\Trend Micro\Internet Security 12\TMAS_OE\TMAS_OEMon.exe&quot;<br />
O4 - HKCU\..\Run: [DellSupport] &quot;C:\Program Files\DellSupport\DSAgnt.exe&quot; /startup<br />
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe<br />
O4 - Global Startup: Digital Line Detect.lnk = ?<br />
O4 - Global Startup: Google Updater.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe<br />
O4 - Global Startup: HotSync Manager.lnk = ?<br />
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll<br />
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll<br />
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL<br />
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll<br />
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll<br />
O9 - Extra 'Tools' menuitem: Spybot - Search &amp; Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll<br />
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe<br />
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe<br />
O16 - DPF: {149E45D8-163E-4189-86FC-45022AB2B6C9} (SpinTop DRM Control) - file:///C:/Program%20Files/Monopoly/Images/stg_drm.ocx<br />
O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) - <a rel="nofollow" class="t" href="http://acs.pandasoftware.com/activescan/cabs/as2stubie.cab" target="_blank">http://acs.pandasoftware.com/actives.../as2stubie.cab</a><br />
O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} (OnlineScanner Control) - <a rel="nofollow" class="t" href="http://www.eset.eu/buxus/docs/OnlineScanner.cab" target="_blank">http://www.eset.eu/buxus/docs/OnlineScanner.cab</a><br />
O16 - DPF: {CC450D71-CC90-424C-8638-1F2DBAC87A54} (ArmHelper Control) - file:///C:/Program%20Files/Monopoly/Images/armhelper.ocx<br />
O16 - DPF: {D0C0F75C-683A-4390-A791-1ACFD5599AB8} (Oberon Flash Game Host) - <a rel="nofollow" class="t" href="http://games.myspace.com/Gameshell/GameHost/1.0/OberonGameHost.cab" target="_blank">http://games.myspace.com/Gameshell/G...onGameHost.cab</a><br />
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll<br />
O20 - AppInit_DLLs: avgrsstx.dll wnkamw.dll lvwsbk.dll ljhqne.dll<br />
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe<br />
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe<br />
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe<br />
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe<br />
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe<br />
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe<br />
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe<br />
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe<br />
O23 - Service: SupportSoft Sprocket Service (dellsupportcenter) (sprtsvc_dellsupportcenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe<br />
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe<br />
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\wltrysvc.exe<br />
<br />
--<br />
End of file - 8238 bytes</div> ]]></content:encoded>
			<category domain="http://www.daniweb.com/forums/forum64.html">Viruses, Spyware and other Nasties</category>
			<dc:creator>kingt36</dc:creator>
			<guid isPermaLink="true">http://www.daniweb.com/forums/thread149525.html</guid>
		</item>
		<item>
			<title>Windows XP Home/Non-existing PW</title>
			<link>http://www.daniweb.com/forums/thread149511.html</link>
			<pubDate>Mon, 06 Oct 2008 14:55:21 GMT</pubDate>
			<description><![CDATA[I am Locked out!
Since a Windows Update, I am asked for a password for the user, either my or my wife. With my user name in the box, I tried no password (blank) and got the wallpaper with no icons. I have tried "Safe Mode": the same result with big writing; I have tried "Administrator" with no...]]></description>
			<content:encoded><![CDATA[<div>I am Locked out!<br />
Since a Windows Update, I am asked for a password for the user, either my or my wife. With my user name in the box, I tried no password (blank) and got the wallpaper with no icons. I have tried &quot;Safe Mode&quot;: the same result with big writing; I have tried &quot;Administrator&quot; with no password; I have tried &quot;Last known good configuration&quot;, but Windows thinks that locking us out is a &quot;Good Configuration&quot;.<br />
Can anybody help?</div> ]]></content:encoded>
			<category domain="http://www.daniweb.com/forums/forum10.html">Windows NT / 2000 / XP / 2003</category>
			<dc:creator>gfredb</dc:creator>
			<guid isPermaLink="true">http://www.daniweb.com/forums/thread149511.html</guid>
		</item>
	</channel>
</rss>
