0

Hi guys,


My windows won't load on desktop.I have to go through the taskmgr to open my desktop folder.but it also usually says taskmgr not
responding.here is my Hijack This! log

Logfile of HijackThis v1.99.1
Scan saved at 11:25:54 AM, on 8/28/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\SYSTEM32\Brmfrmps.exe
C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\PROGRA~1\Dantz\RETROS~1\retrorun.exe
C:\PROGRA~1\Dantz\RETROS~1\wdsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\taskmgr.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\SYSTEM32\MSAVCfg.exe
H:\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dellnet.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www1.sympatico.ca/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dellnet.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://adblock.linkz.com/abho/bandsearch.abs
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = http://www.search.com/
R3 - Default URLSearchHook is missing
F2 - REG:system.ini: UserInit=C:\WINDOWS\System32\Userinit.exe
O2 - BHO: myBar BHO - {0494D0D1-F8E0-41ad-92A3-14154ECE70AC} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Local Spool support DLL - {20C9D850-244D-11E1-B3C9-10805E499D95} - C:\WINDOWS\system32\loclspl.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {55292972-CE98-EB35-B41D-CAEEF9F6BDCD} - C:\WINDOWS\system32\zidudgt.dll
O2 - BHO: Ipswitch.WsftpBrowserHelper - {601ED020-FB6C-11D3-87D8-0050DA59922B} - C:\Program Files\Ipswitch\WS_FTP Home\wsbho2k0.dll
O2 - BHO: (no name) - {65041972-E3A0-DA74-992C-8FC3BCC490FF} - C:\WINDOWS\system32\zidudgt.dll
O2 - BHO: Web assistant - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: IECatcher Class - {B930BA63-9E5A-11D3-A288-0000E80E2EDE} - C:\Program Files\Mass Downloader\MDHELPER.DLL
O3 - Toolbar: (no name) - {62999427-33FC-4baf-9C9C-BCE6BD127F08} - (no file)
O3 - Toolbar: &SearchBar - {0494D0D9-F8E0-41ad-92A3-14154ECE70AC} - (no file)
O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: (no name) - {86227D9C-0EFE-4f8a-AA55-30386A3F5686} - (no file)
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb04.exe
O4 - HKLM\..\Run: [DownloadAccelerator] C:\PROGRA~1\DAP\DAP.EXE /STARTUP
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\System32\\NeroCheck.exe
O4 - HKLM\..\Run: [Openwares LiveUpdate] C:\Program Files\LiveUpdate\LiveUpdate.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [DIGStream] C:\Program Files\DIGStream\digstream.exe
O4 - HKLM\..\Run: [MSN Video Enhanced] "C:\Program Files\MSN Video Enhanced\MSNVE.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [DVDTray] "C:\Program Files\HP DVD\Umbrella\DVDTray.exe"
O4 - HKLM\..\Run: [DVDBitSet] "C:\Program Files\HP DVD\Umbrella\DVDBitSet.exe" /NOUI
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [Parallel Tasking] C:\Program Files\Parallel Tasking\ptask.exe
O4 - HKLM\..\Run: [smtpsrv] C:\Program Files\1st SMTP Server\SMTPServer.exe
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Alcatel\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
O4 - HKLM\..\Run: [IndexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe
O4 - HKLM\..\Run: [SetDefPrt] C:\Program Files\Brother\Brmfl04a\BrStDvPt.exe
O4 - HKLM\..\Run: [ControlCenter2.0] C:\Program Files\Brother\ControlCenter2\brctrcen.exe /autorun
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKLM\..\Run: [MS Manager 32] C:\WINDOWS\SYSTEM32\OSAV32.exe
O4 - HKLM\..\Run: [Admin Manager Update] C:\WINDOWS\SYSTEM32\SysExec.exe
O4 - HKLM\..\Run: [Registry Client Manager] C:\WINDOWS\SYSTEM32\MSExecCfg.exe
O4 - HKLM\..\Run: [Win Verification Application] C:\WINDOWS\SYSTEM32\MSExecCom.exe
O4 - HKLM\..\Run: [NT Application Server] C:\WINDOWS\SYSTEM32\MSAVCfg.exe
O4 - HKLM\..\Run: [Current Manager Update] C:\WINDOWS\SYSTEM32\SysDllServ.exe
O4 - HKLM\..\Run: [Microsoft Device Service] C:\WINDOWS\SYSTEM32\WinExec.exe
O4 - HKLM\..\Run: [Antivirus 32 Manager] C:\WINDOWS\SYSTEM32\WinOCX.exe
O4 - HKLM\..\Run: [Firewall Socket Device] C:\WINDOWS\SYSTEM32\WinOCX32.exe
O4 - HKLM\..\Run: [MS Manager Socket] C:\WINDOWS\SYSTEM32\OSAVCfg.exe
O4 - HKLM\..\Run: [XP Manager Socket] C:\WINDOWS\SYSTEM32\OSAVCfg.exe
O4 - HKLM\..\Run: [Current Manager Validation] C:\WINDOWS\SYSTEM32\SysDllServ.exe
O4 - HKLM\..\Run: [System Verification Application] C:\WINDOWS\SYSTEM32\MSExecCom.exe
O4 - HKLM\..\Run: [Remote Update Client] C:\WINDOWS\SYSTEM32\DBDllCom.exe
O4 - HKLM\..\Run: [Windows Validation Client] C:\WINDOWS\SYSTEM32\DBExecCom.exe
O4 - HKLM\..\Run: [Root Service Verification] C:\WINDOWS\SYSTEM32\DBDllServ.exe
O4 - HKLM\..\Run: [Driver Device Service] C:\WINDOWS\SYSTEM32\SysExec.exe
O4 - HKLM\..\Run: [Remote Update Verification] C:\WINDOWS\SYSTEM32\DBDllServ.exe
O4 - HKLM\..\Run: [Root Service Validation] C:\WINDOWS\SYSTEM32\SysDllServ.exe
O4 - HKLM\..\Run: [Microsoft 32 Manager] C:\WINDOWS\SYSTEM32\WinExec.exe
O4 - HKLM\..\Run: [Secure Server Device] C:\WINDOWS\SYSTEM32\OSOCX32.exe
O4 - HKLM\..\Run: [Root Update Verification] C:\WINDOWS\SYSTEM32\DBDllServ.exe
O4 - HKLM\..\Run: [Secure Server 32] C:\WINDOWS\SYSTEM32\OSOCX32.exe
O4 - HKLM\..\Run: [MS Server 32] C:\WINDOWS\SYSTEM32\OSOCX32.exe
O4 - HKLM\..\Run: [Current Service Validation] C:\WINDOWS\SYSTEM32\SysDllServ.exe
O4 - HKLM\..\Run: [System Verification Manager] C:\WINDOWS\SYSTEM32\MSExecCom.exe
O4 - HKLM\..\RunServices: [MS Manager 32] C:\WINDOWS\SYSTEM32\OSAV32.exe
O4 - HKLM\..\RunServices: [Admin Manager Update] C:\WINDOWS\SYSTEM32\SysExec.exe
O4 - HKLM\..\RunServices: [Registry Client Manager] C:\WINDOWS\SYSTEM32\MSExecCfg.exe
O4 - HKLM\..\RunServices: [Win Verification Application] C:\WINDOWS\SYSTEM32\MSExecCom.exe
O4 - HKLM\..\RunServices: [NT Application Server] C:\WINDOWS\SYSTEM32\MSAVCfg.exe
O4 - HKLM\..\RunServices: [Current Manager Update] C:\WINDOWS\SYSTEM32\SysDllServ.exe
O4 - HKLM\..\RunServices: [Microsoft Device Service] C:\WINDOWS\SYSTEM32\WinExec.exe
O4 - HKLM\..\RunServices: [Antivirus 32 Manager] C:\WINDOWS\SYSTEM32\WinOCX.exe
O4 - HKLM\..\RunServices: [Firewall Socket Device] C:\WINDOWS\SYSTEM32\WinOCX32.exe
O4 - HKLM\..\RunServices: [MS Manager Socket] C:\WINDOWS\SYSTEM32\OSAVCfg.exe
O4 - HKLM\..\RunServices: [XP Manager Socket] C:\WINDOWS\SYSTEM32\OSAVCfg.exe
O4 - HKLM\..\RunServices: [Current Manager Validation] C:\WINDOWS\SYSTEM32\SysDllServ.exe
O4 - HKLM\..\RunServices: [System Verification Application] C:\WINDOWS\SYSTEM32\MSExecCom.exe
O4 - HKLM\..\RunServices: [Remote Update Client] C:\WINDOWS\SYSTEM32\DBDllCom.exe
O4 - HKLM\..\RunServices: [Windows Validation Client] C:\WINDOWS\SYSTEM32\DBExecCom.exe
O4 - HKLM\..\RunServices: [Root Service Verification] C:\WINDOWS\SYSTEM32\DBDllServ.exe
O4 - HKLM\..\RunServices: [Driver Device Service] C:\WINDOWS\SYSTEM32\SysExec.exe
O4 - HKLM\..\RunServices: [Remote Update Verification] C:\WINDOWS\SYSTEM32\DBDllServ.exe
O4 - HKLM\..\RunServices: [Root Service Validation] C:\WINDOWS\SYSTEM32\SysDllServ.exe
O4 - HKLM\..\RunServices: [Microsoft 32 Manager] C:\WINDOWS\SYSTEM32\WinExec.exe
O4 - HKLM\..\RunServices: [Secure Server Device] C:\WINDOWS\SYSTEM32\OSOCX32.exe
O4 - HKLM\..\RunServices: [Root Update Verification] C:\WINDOWS\SYSTEM32\DBDllServ.exe
O4 - HKLM\..\RunServices: [Secure Server 32] C:\WINDOWS\SYSTEM32\OSOCX32.exe
O4 - HKLM\..\RunServices: [MS Server 32] C:\WINDOWS\SYSTEM32\OSOCX32.exe
O4 - HKLM\..\RunServices: [Current Service Validation] C:\WINDOWS\SYSTEM32\SysDllServ.exe
O4 - HKLM\..\RunServices: [System Verification Manager] C:\WINDOWS\SYSTEM32\MSExecCom.exe
O4 - HKLM\..\RunOnce: [Windows Validation Client] C:\WINDOWS\SYSTEM32\DBExecCom.exe
O4 - HKLM\..\RunOnce: [Current Service Validation] C:\WINDOWS\SYSTEM32\SysDllServ.exe
O4 - HKLM\..\RunOnce: [Microsoft 32 Manager] C:\WINDOWS\SYSTEM32\WinExec.exe
O4 - HKLM\..\RunOnce: [Win Verification Application] C:\WINDOWS\SYSTEM32\MSExecCom.exe
O4 - HKLM\..\RunOnce: [Firewall Socket Device] C:\WINDOWS\SYSTEM32\WinOCX32.exe
O4 - HKLM\..\RunOnce: [System Verification Manager] C:\WINDOWS\SYSTEM32\MSExecCom.exe
O4 - HKLM\..\RunOnce: [Secure Server 32] C:\WINDOWS\SYSTEM32\OSOCX32.exe
O4 - HKLM\..\RunOnce: [System Verification Application] C:\WINDOWS\SYSTEM32\MSExecCom.exe
O4 - HKLM\..\RunOnce: [Antivirus 32 Manager] C:\WINDOWS\SYSTEM32\WinOCX.exe
O4 - HKLM\..\RunOnce: [Driver Device Service] C:\WINDOWS\SYSTEM32\SysExec.exe
O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\Money Express.exe"
O4 - HKCU\..\Run: [VirtualDrive-B:] subst.exe B: C:\DOCUME~1\THOMAS~1\Desktop
O4 - HKCU\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe
O4 - HKCU\..\Run: [Aida] C:\Program Files\rdso\eetu.exe
O4 - HKCU\..\Run: [MS Manager 32] C:\WINDOWS\SYSTEM32\OSAV32.exe
O4 - HKCU\..\Run: [Admin Manager Update] C:\WINDOWS\SYSTEM32\SysExec.exe
O4 - HKCU\..\Run: [Registry Client Manager] C:\WINDOWS\SYSTEM32\MSExecCom.exe
O4 - HKCU\..\Run: [Win Verification Application] C:\WINDOWS\SYSTEM32\MSExecCom.exe
O4 - HKCU\..\Run: [XP Manager Socket] C:\WINDOWS\SYSTEM32\OSAVCfg.exe
O4 - HKCU\..\Run: [Firewall Socket Device] C:\WINDOWS\SYSTEM32\WinOCX32.exe
O4 - HKCU\..\Run: [Current Manager Validation] C:\WINDOWS\SYSTEM32\SysDllServ.exe
O4 - HKCU\..\Run: [System Verification Application] C:\WINDOWS\SYSTEM32\MSExecCom.exe
O4 - HKCU\..\Run: [Driver Device Service] C:\WINDOWS\SYSTEM32\SysExec.exe
O4 - HKCU\..\Run: [Remote Update Verification] C:\WINDOWS\SYSTEM32\DBDllServ.exe
O4 - HKCU\..\Run: [Root Service Validation] C:\WINDOWS\SYSTEM32\SysDllServ.exe
O4 - HKCU\..\Run: [Remote Update Client] C:\WINDOWS\SYSTEM32\DBDllCom.exe
O4 - HKCU\..\Run: [NT Application Server] C:\WINDOWS\SYSTEM32\MSAVCfg.exe
O4 - HKCU\..\Run: [Windows Validation Client] C:\WINDOWS\SYSTEM32\DBExecCom.exe
O4 - HKCU\..\Run: [Current Service Validation] C:\WINDOWS\SYSTEM32\SysDllServ.exe
O4 - HKCU\..\Run: [Microsoft 32 Manager] C:\WINDOWS\SYSTEM32\WinExec.exe
O4 - HKCU\..\Run: [System Verification Manager] C:\WINDOWS\SYSTEM32\MSExecCom.exe
O4 - HKCU\..\Run: [Secure Server 32] C:\WINDOWS\SYSTEM32\OSOCX32.exe
O4 - HKCU\..\Run: [Antivirus 32 Manager] C:\WINDOWS\SYSTEM32\WinOCX.exe
O4 - HKCU\..\RunServices: [MS Manager 32] C:\WINDOWS\SYSTEM32\OSAV32.exe
O4 - HKCU\..\RunServices: [Admin Manager Update] C:\WINDOWS\SYSTEM32\SysExec.exe
O4 - HKCU\..\RunServices: [Registry Client Manager] C:\WINDOWS\SYSTEM32\MSExecCom.exe
O4 - HKCU\..\RunServices: [Win Verification Application] C:\WINDOWS\SYSTEM32\MSExecCom.exe
O4 - HKCU\..\RunServices: [XP Manager Socket] C:\WINDOWS\SYSTEM32\OSAVCfg.exe
O4 - HKCU\..\RunServices: [Firewall Socket Device] C:\WINDOWS\SYSTEM32\WinOCX32.exe
O4 - HKCU\..\RunServices: [Current Manager Validation] C:\WINDOWS\SYSTEM32\SysDllServ.exe
O4 - HKCU\..\RunServices: [System Verification Application] C:\WINDOWS\SYSTEM32\MSExecCom.exe
O4 - HKCU\..\RunServices: [Driver Device Service] C:\WINDOWS\SYSTEM32\SysExec.exe
O4 - HKCU\..\RunServices: [Remote Update Verification] C:\WINDOWS\SYSTEM32\DBDllServ.exe
O4 - HKCU\..\RunServices: [Root Service Validation] C:\WINDOWS\SYSTEM32\SysDllServ.exe
O4 - HKCU\..\RunServices: [Remote Update Client] C:\WINDOWS\SYSTEM32\DBDllCom.exe
O4 - HKCU\..\RunServices: [NT Application Server] C:\WINDOWS\SYSTEM32\MSAVCfg.exe
O4 - HKCU\..\RunServices: [Windows Validation Client] C:\WINDOWS\SYSTEM32\DBExecCom.exe
O4 - HKCU\..\RunServices: [Current Service Validation] C:\WINDOWS\SYSTEM32\SysDllServ.exe
O4 - HKCU\..\RunServices: [Microsoft 32 Manager] C:\WINDOWS\SYSTEM32\WinExec.exe
O4 - HKCU\..\RunServices: [System Verification Manager] C:\WINDOWS\SYSTEM32\MSExecCom.exe
O4 - HKCU\..\RunServices: [Secure Server 32] C:\WINDOWS\SYSTEM32\OSOCX32.exe
O4 - HKCU\..\RunServices: [Antivirus 32 Manager] C:\WINDOWS\SYSTEM32\WinOCX.exe
O4 - HKCU\..\RunOnce: [MS Manager 32] C:\WINDOWS\SYSTEM32\OSAV32.exe
O4 - HKCU\..\RunOnce: [Admin Manager Update] C:\WINDOWS\SYSTEM32\SysExec.exe
O4 - HKCU\..\RunOnce: [Registry Client Manager] C:\WINDOWS\SYSTEM32\MSExecCom.exe
O4 - HKCU\..\RunOnce: [Win Verification Application] C:\WINDOWS\SYSTEM32\MSExecCom.exe
O4 - HKCU\..\RunOnce: [XP Manager Socket] C:\WINDOWS\SYSTEM32\OSAVCfg.exe
O4 - HKCU\..\RunOnce: [Firewall Socket Device] C:\WINDOWS\SYSTEM32\WinOCX32.exe
O4 - HKCU\..\RunOnce: [Current Manager Validation] C:\WINDOWS\SYSTEM32\SysDllServ.exe
O4 - HKCU\..\RunOnce: [System Verification Application] C:\WINDOWS\SYSTEM32\MSExecCom.exe
O4 - HKCU\..\RunOnce: [Driver Device Service] C:\WINDOWS\SYSTEM32\SysExec.exe
O4 - HKCU\..\RunOnce: [Remote Update Verification] C:\WINDOWS\SYSTEM32\DBDllServ.exe
O4 - HKCU\..\RunOnce: [Root Service Validation] C:\WINDOWS\SYSTEM32\SysDllServ.exe
O4 - HKCU\..\RunOnce: [Remote Update Client] C:\WINDOWS\SYSTEM32\DBDllCom.exe
O4 - HKCU\..\RunOnce: [NT Application Server] C:\WINDOWS\SYSTEM32\MSAVCfg.exe
O4 - HKCU\..\RunOnce: [Windows Validation Client] C:\WINDOWS\SYSTEM32\DBExecCom.exe
O4 - HKCU\..\RunOnce: [Current Service Validation] C:\WINDOWS\SYSTEM32\SysDllServ.exe
O4 - HKCU\..\RunOnce: [Microsoft 32 Manager] C:\WINDOWS\SYSTEM32\WinExec.exe
O4 - HKCU\..\RunOnce: [System Verification Manager] C:\WINDOWS\SYSTEM32\MSExecCom.exe
O4 - HKCU\..\RunOnce: [Secure Server 32] C:\WINDOWS\SYSTEM32\OSOCX32.exe
O4 - HKCU\..\RunOnce: [Antivirus 32 Manager] C:\WINDOWS\SYSTEM32\WinOCX.exe
O4 - Startup: DLHelperEXE.exe
O4 - Startup: MemTurbo.lnk = C:\Program Files\Silicon Prairie Software\MemTurbo\memturbo.exe
O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
O4 - Global Startup: Status Monitor.lnk = C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\DAP\dapextie.htm
O8 - Extra context menu item: Coupons - file://C:\Program Files\couponsandoffers\System\Temp\couponsandoffers_script0.htm
O8 - Extra context menu item: Download &all with DAP - C:\PROGRA~1\DAP\dapextie2.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Partypoker\IEExtension.dll
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Partypoker\IEExtension.dll
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyviewer.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {1D6711C8-7154-40BB-8380-3DEA45B69CBF} (Web P2P Installer) -
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://207.188.7.150/12d163850d6572...tzip/RdxIE2.cab
O16 - DPF: {5EE92643-21CE-4949-903F-39439DCC3944} - http://mirror.worldwinner.com/games/v42/shape/shape.cab
O16 - DPF: {70522FA2-4656-11D5-B0E9-0050DAC24E8F} - http://download.iwon.com/ct/pm3/iwonpm_8_1,0,2,5.cab
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www3.ca.com/securityadvisor/...nfo/webscan.cab
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} - http://www.installengine.com/engine/isetup.cab
O16 - DPF: {93829908-07C2-44A2-95DB-F78F201A9B48} - http://adblock.linkz.com/APHelper.dll
O16 - DPF: {C5142630-9BC9-4236-BAC9-2E3C24566EC8} - http://mirror.worldwinner.com/games/v40/xword/xword.cab
O16 - DPF: {E0E1BB66-8C50-4B2B-9101-891EF98F16AE} (WHVHR Big Control) - file://C:\WilliamHillInstallation\WHVHRBig.ocx
O16 - DPF: {E12EB891-D000-421B-A8ED-EDE1BDCA14A0} - http://mirror.worldwinner.com/games...sol/golfsol.cab
O16 - DPF: {E5EF1E59-8AFD-425A-9F30-817FD6507215} - http://mirror.worldwinner.com/games/v40/darts/darts.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{0A9E8A47-9B54-461B-82F8-77428E8934B8}: NameServer = 206.47.244.55 206.47.244.111
O17 - HKLM\System\CS1\Services\Tcpip\..\{0A9E8A47-9B54-461B-82F8-77428E8934B8}: NameServer = 206.47.244.55 206.47.244.111
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Brother Popup Suspend service for Resource manager (brmfrmps) - Unknown owner - C:\WINDOWS\SYSTEM32\Brmfrmps.exe" -service (file missing)
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\system32\brsvc01a.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Retrospect Launcher (RetroLauncher) - Dantz Development Corporation - C:\PROGRA~1\Dantz\RETROS~1\retrorun.exe
O23 - Service: Retrospect WD Service (RetroWDSvc) - Dantz Development Corporation - C:\PROGRA~1\Dantz\RETROS~1\wdsvc.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe

i started experiencing this problem 2 days ago when while i was downloading,my computer froze so i manually cut it off from the surge protector.when i started back up the prob began. plz help!!!! :confused:

3
Contributors
2
Replies
3
Views
12 Years
Discussion Span
Last Post by swatkat
0

Is this Windows XP?

Have you tried going into Safe mode or seeing if a System Restore option is available for you?

Were you protected with an anti-virus package at the time, or can you confirm whether or not this is a virus?

First thing I would do in that situation is see if a recent System Restore is viable. Great thing about that utility is not only does it not delete your user data, but you can also go back to your previous state, or any other restore state that is still available.... its rarely a one-way deal!

0

Hi,
Download Ewido and install it. Then run, you will receive a warning message saying "Database not found", click "OK" for this. Next in the main screen, click "Update" and click "Start Update". After the update process, exit from Ewido.


Boot in safe mode with networking, run Ewido, click on the "Scanner" button in the left menu, then click on the "Start" button.
If ewido finds anything, it will pop up a notification. You can select "Clean" and check the boxes "Perform action with all infections" and "Create encrypted backup" before clicking on OK.
When the scan finishes, click on "Save Report". This will create a text file.


( How to boot in Safe Mode:-
Restart (or switch ON) the PC.
Then, keep tapping the F8 Key.
From the menu that will be displayed, out of which choose Safe Mode with networking and press Enter. )


After Ewido scan, perform an online virus scan at Panda ActiveScan with the "Disinfection" option enabled. Save the log file it gives.


After these two scans, reboot to Normal Mode, and run HijackThis again to get a new log. Post this new log along with Ewido and Panda logs.

This topic has been dead for over six months. Start a new discussion instead.
Have something to contribute to this discussion? Please be thoughtful, detailed and courteous, and be sure to adhere to our posting rules.