My battery is goosed so last night I just put the laptop on and took battery out so using the ac adaptor to keep laptop on and it totally fixed it, then I tried it this morning and it's back to cutting out the internet. I guess I could try getting another laptop to try this. However surely if I've rebooted the laptop to factory settings then anything that was causing problems should be gone?

Thanks for taking the time to help me

Hi

So for months I haven't really used my laptop for this reason.

When I switch my laptop on even if the wireless card I switched off the internet goes down around 0.3 Mbps (painfully slow) it's not just my laptop it's effecting but my phone is also effected by this speed. I use a BT home hub and they and it's been replaced and the engineers been out.

So after a few months I'm a bit annoyed and decided to do something about it. So I backed up my files and restarted my computer
Hoping it would work. However nope still not working and even weirder is when I go to my Grans the laptop doesn't do the same to the internet there.

Please help as im tearing my hair out with this.

Paul

Well after alot of trials and errors i decided it wouldint do anyharm getting a Crossover cable. The cable works. I now have Xbox live access but i have a stript NAT. I have opened ports on my BT home hub but i cant assign it to my xbox as the Hub only recognises the PC that the xbox is connected to. Assigning the port opening to the pc i thought would work but my nat is still strict. Any ideas anyone?

i think so. I think i set it up on the wireless connection but i think the xbox has a problem obtaining an ip address.

[QUOTE=rch1231;1111059]An old router should work if you plug both into the LAN ports and not the WAN. For the cross connect cable try this site:

[url]http://en.wikipedia.org/wiki/Ethernet_crossover_cable[/url][/QUOTE]

so do i plug one ethernet into the router and the computer. one into the router and the xbox?

are cross connect cables different from ethernet cables then? could you link me to a picture of a hub? would and old router not act as one?

thanks for your reply

Hello

Ok, i have a computer in my room, i also have an xbox 360.

My computer picks up my wireless connection from a hub in the hallway. I dont have a wireless card for my xbox so i tried to connect the ethernet from computer to xbox in hope that would work. I have searched for ages and ages for info but nothing works. I have bridged connections but once i do that the internet is lost even though the network is there.

I have tried setting up the old wireless router in my room hopein the router would pick up the wirless signal and pass it on to the xbox. that does not work.

Anyone got any ideas how i can make my xbox go on xbox live without an wireless adaptor and a long ethernet cable going half way through my house.

Please help!

thanks

There is nothng found on MSNcleaner anymore, i did however delete one file on the first scan. butthe report comes back clean.

The system is running a little smoother now, do i still have a problem??

Thanks again for your help.

ComboFix 08-03-14.4 - Owner 2008-03-22 12:53:50.3 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.195 [GMT 0:00]
Running from: C:\Documents and Settings\Owner\Desktop\ComboFix.exe
Command switches used :: C:\Documents and Settings\Owner\Desktop\CFScript

  • Created a new restore point

FILE ::
C:\Documents and Settings\Owner\Desktop\Warhammer_40000_Dawn_of_War_1.0.rar
C:\Program Files\SearchRelevant\SearchRelevant5.dll
C:\Temp\Bargains.exe
C:\WINDOWS\FQTKHI.DAT
D:\Ahead.Nero.v7.7.5.1.Multilingual.Incl.Keymaker-EMBRACE\Nero-7.7.5.1_all_trial.exe C:\WINDOWS\SYSTEM32\ciadmon.dll
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Documents and Settings\Owner\Desktop\Warhammer_40000_Dawn_of_War_1.0.rar
C:\Documents and Settings\Owner\My Documents\My Received Files\photo album.zip
C:\Program Files\ACE Mega CoDecS Pack\Anti-Virus\chpD.tmp
C:\Program Files\SearchRelevant\SearchRelevant5.dll
C:\Temp\Bargains.exe
C:\WINDOWS\FQTKHI.DAT

.
((((((((((((((((((((((((( Files Created from 2008-02-22 to 2008-03-22 )))))))))))))))))))))))))))))))
.

2008-03-22 12:34 . 2008-03-22 12:39 <DIR> d-------- C:\MSNCleaner
2008-03-15 11:57 . 2008-03-15 11:57 <DIR> d-------- C:\WINDOWS\SYSTEM32\Kaspersky Lab
2008-03-15 11:57 . 2008-03-15 11:57 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-03-22 12:58 --------- d-----w C:\Documents and Settings\All Users\Application Data\Kontiki
2008-03-22 12:54 --------- d-----w C:\Program Files\SearchRelevant
2008-03-22 12:02 --------- d-----w C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-03-22 11:53 --------- d-----w C:\Program Files\Spybot - Search & Destroy
2008-03-15 11:25 --------- d-----w C:\Program Files\QuickTime
2008-03-15 11:25 --------- d-----w C:\Program Files\Microsoft Works
2008-03-15 11:25 --------- d-----w C:\Program Files\LiveUpdate
2008-03-15 11:25 --------- d-----w C:\Program Files\iTunes
2008-03-15 11:25 --------- d-----w C:\Program Files\DAEMON Tools
2008-02-03 23:14 96,256 ----a-w C:\WINDOWS\system32\drivers\sptd8269.sys
2008-02-03 18:41 --------- d-----w C:\Program Files\Alwil Software
2008-02-01 18:45 --------- d-----w C:\Program Files\Windows Live Safety Center
2008-01-30 19:49 ...

Saturday, March 15, 2008 4:19:59 PM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 15/03/2008
Kaspersky Anti-Virus database records: 631202

Scan Settings
Scan using the following antivirus database extended
Scan Archives true
Scan Mail Bases true

Scan Target My Computer
A:\
C:\
D:\
E:\
F:\
G:\

Scan Statistics
Total number of scanned objects 97586
Number of viruses found 24
Number of infected objects 76
Number of suspicious objects 2
Duration of the scan process 03:51:03

Infected Object Name Virus Name Last Action
C:\Documents and Settings\All Users\Application Data\Kontiki\error.log Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DyFuCAInternetOptimizer2.zip/install.exe Suspicious: Password-protected-EXE skipped

C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\DyFuCAInternetOptimizer2.zip ZIP: suspicious - 1 skipped

C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\temp\Cookies\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\temp\History\History.IE5\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\temp\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped

C:\Documents and Settings\NetworkService\Cookies\index.dat Object is locked skipped

C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and ...

WindowsXP-KB310994-SP2-Home-BootDisk-ENU.exe
[boot loader]
default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS
[operating systems]
multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Microsoft Windows Whistler Personal" /fastdetect /NoExecute=OptIn
C:\CMDCONS\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons

Thanks for your time and help, here is the required log files from combofix and hijackthis

I look forward to your advice.

Paul

ComboFix 08-02.03.1 - Owner 2008-02-04 11:30:07.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.130 [GMT 0:00]
Running from: C:\Documents and Settings\Owner\Desktop\ComboFix.exe

  • Created a new restore point

[color=red][b]WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !![/b][/color]
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\WINDOWS\system32\iifgdee.dll
C:\WINDOWS\system32\vtsts.dll
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat
C:\Program Files\Common Files{3C29F~1
C:\Program Files\Common Files{3C29F~1\Uninst.exe
C:\Program Files\Common Files{BC29F~1
C:\Program Files\Common Files\asks~1
C:\Program Files\Common Files\crosof~1.net
C:\Program Files\printview
C:\Program Files\printview\chnlist.dat
C:\Program Files\printview\hotlist.dat
C:\Program Files\printview\remlist.dat
C:\Program Files\winupdates
C:\WINDOWS\cookies.ini
C:\WINDOWS\Downloaded Program Files\UDC6_0001_D19M1908NetInstaller.exe
C:\WINDOWS\IA
C:\WINDOWS\ie-hook.txt
C:\WINDOWS\system32\alog.txt
C:\WINDOWS\system32\awtsr.exe
C:\WINDOWS\system32\bszip.dll
C:\WINDOWS\system32\cookie.dat
C:\WINDOWS\system32\cvvmwbpn.dll
C:\WINDOWS\SYSTEM32\gowljxsf.ini
C:\WINDOWS\system32\helper.dll
C:\WINDOWS\system32\hgggedb.dll
C:\WINDOWS\SYSTEM32\hupbuvhk.ini
C:\WINDOWS\system32\idyohwtn.dll
C:\WINDOWS\system32\iifgdee.dll
C:\WINDOWS\SYSTEM32\ijabuwiy.ini
C:\WINDOWS\system32\khvubpuh.dll
C:\WINDOWS\system32\knvkqmus.dll
C:\WINDOWS\system32\lpfkbogu.dll
C:\WINDOWS\system32\mcrh.tmp
C:\WINDOWS\SYSTEM32\ntwhoydi.ini
C:\WINDOWS\system32\ps.dat
C:\WINDOWS\SYSTEM32\ststv.ini
C:\WINDOWS\SYSTEM32\ststv.ini2
C:\WINDOWS\system32\txltoedd.dll
C:\WINDOWS\system32\vfwkaltd.dll
C:\WINDOWS\system32\vfwkaltd.dllbox
C:\WINDOWS\system32\vngmjxei.dll
C:\WINDOWS\system32\vtsts.dll
C:\WINDOWS\system32\ygjizkud.dllbox
D:\Autorun.inf

----- BITS: Possible infected sites -----

hxxp://www.download.windowsupdate.com
hxxp://msgr.dlservice.microsoft.com
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))

.
-------\nm

((((((((((((((((((((((((( Files Created from 2008-01-04 to 2008-02-04 )))))))))))))))))))))))))))))))
.

2008-02-03 18:41 . 2008-02-03 18:41 <DIR> d-------- C:\Program Files\Alwil Software
2008-02-03 18:41 . 2007-12-04 13:04 837,496 --a------ C:\WINDOWS\SYSTEM32\aswBoot.exe
2008-02-03 18:41 . 2007-12-04 12:54 95,608 --a------ C:\WINDOWS\SYSTEM32\AvastSS.scr
2008-02-03 18:41 . 2007-12-04 14:55 94,544 --a------ C:\WINDOWS\SYSTEM32\drivers\aswmon2.sys
2008-02-03 18:41 . 2007-12-04 14:56 93,264 --a------ C:\WINDOWS\SYSTEM32\drivers\aswmon.sys
2008-02-03 18:41 . 2007-12-04 14:51 42,912 --a------ C:\WINDOWS\SYSTEM32\drivers\aswTdi.sys
2008-02-03 18:41 . 2007-12-04 14:49 26,624 --a------ C:\WINDOWS\SYSTEM32\drivers\aavmker4.sys
2008-02-03 18:41 . 2007-12-04 14:53 23,152 --a------ C:\WINDOWS\SYSTEM32\drivers\aswRdr.sys
2008-01-30 19:49 . 2008-01-30 19:49 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Yahoo! Companion
2008-01-29 12:34 . 2008-01-29 12:44 15,400 --a------ C:\WINDOWS\BMbf1aca51.xml

.
(((((((((((((((((((((((((((((((((((((((( Find3M ...

I think i have a win32 trojan,

Can someone please help me. Im at my wits end.

No antivirus software removes it.

Thanks
Paul

Logfile of Trend Micro HijackThis v2.0.0 (BETA)
Scan saved at 21:38:53, on 03/02/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Kontiki\KService.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Spyware Doctor\sdhelp.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\UAService7.exe
C:\WINDOWS\system32\pctspk.exe
C:\WINDOWS\Dit.exe
C:\WINDOWS\system32\BtUsrBdg.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Kontiki\KHost.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\DitExp.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\MSN Messenger\livecall.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Owner\My Documents\HiJackThis_v2.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = [url]http://www.dundeefc.co.uk/[/url]
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = [url]http://go.microsoft.com/fwlink/?LinkId=54896[/url]
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = [url]http://go.microsoft.com/fwlink/?LinkId=54896[/url]
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = [url]http://uk4.hpwis.com/[/url]
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: (no name) - {0A3948C4-B3F9-4625-815F-31DD87765572} - (no file)
O2 - BHO: (no name) - {122C8E9A-3686-4011-A560-9BA0403EA362} - C:\WINDOWS\system32\vtsts.dll
O2 - BHO: {fe56a865-6f17-c2ab-a004-efca22090113} - {31109022-acfe-400a-ba2c-71f6568a65ef} - C:\WINDOWS\system32\cvvmwbpn.dll
O2 - BHO: (no name) - {3170c686-bc1a-4a4a-a5b6-61e534c3c23a} - (no file)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Helper Class - {850C7964-9320-4055-BE11-7D7B562A6417} - C:\WINDOWS\system32\helper.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - ...

No problem mate,here is the new logfile

you think i have a trojan?

logfile of HijackThis v1.99.1
Scan saved at 13:04:21, on 19/10/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\pctspk.exe
C:\WINDOWS\Dit.exe
C:\WINDOWS\system32\BtUsrBdg.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Program Files\Common Files\Teleca Shared\CapabilityManager.exe
C:\Program Files\Extended Systems\XTNDConnect Blue Manager\XTNDConnect Blue Manager\XCBluMgr.exe
C:\PROGRA~1\EXTEND~1\XTNDCO~1\XTNDCO~1\SUSHIM~1.EXE
C:\WINDOWS\DitExp.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Extended Systems\XTNDConnect Blue Manager\btprot.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Spyware Doctor\sdhelp.exe
C:\PROGRA~1\EXTEND~1\XTNDCO~1\XTNDCO~1\BTUI_M~1.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\UAService7.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\wuauclt.exe
D:\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = [URL]http://www.dundeefc.co.uk/[/URL]
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = [URL]http://uk4.hpwis.com/[/URL]
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM..\Run: [S3TRAY2] S3tray2.exe
O4 - HKLM..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize
O4 - HKLM..\Run: [nwiz] nwiz.exe /install
O4 - HKLM..\Run: [PCTVOICE] pctspk.exe
O4 - HKLM..\Run: [Dit] Dit.exe
O4 - HKLM..\Run: [BTUSRBDG] BtUsrBdg.exe

The new logfile

cheers

Logfile of HijackThis v1.99.1
Scan saved at 15:11:46, on 05/10/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Spyware Doctor\sdhelp.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\UAService7.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\pctspk.exe
C:\WINDOWS\Dit.exe
C:\WINDOWS\system32\BtUsrBdg.exe
C:\WINDOWS\DitExp.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Program Files\Extended Systems\XTNDConnect Blue Manager\XTNDConnect Blue Manager\XCBluMgr.exe
C:\PROGRA~1\EXTEND~1\XTNDCO~1\XTNDCO~1\SUSHIM~1.EXE
C:\Program Files\Extended Systems\XTNDConnect Blue Manager\btprot.exe
C:\PROGRA~1\EXTEND~1\XTNDCO~1\XTNDCO~1\BTUI_M~1.EXE
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
D:\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = [URL]http://www.dundeefc.co.uk/[/URL]
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = [URL]http://uk4.hpwis.com/[/URL]
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM..\Run: [S3TRAY2] S3tray2.exe
O4 - HKLM..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize
O4 - HKLM..\Run: [nwiz] nwiz.exe /install
O4 - HKLM..\Run: [PCTVOICE] pctspk.exe
O4 - HKLM..\Run: [Dit] Dit.exe
O4 - HKLM..\Run: [BTUSRBDG] BtUsrBdg.exe
O4 - HKLM..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKCU..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
O4 - Global Startup: Startup.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: ...

Thanks very much for helping me, I have done as you say and this is the log from hijackthis now.

Logfile of HijackThis v1.99.1
Scan saved at 17:32:08, on 04/10/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Spyware Doctor\sdhelp.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\UAService7.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\pctspk.exe
C:\WINDOWS\Dit.exe
C:\WINDOWS\system32\BtUsrBdg.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\WINDOWS\DitExp.exe
C:\Program Files\Extended Systems\XTNDConnect Blue Manager\XTNDConnect Blue Manager\XCBluMgr.exe
C:\PROGRA~1\EXTEND~1\XTNDCO~1\XTNDCO~1\SUSHIM~1.EXE
C:\Program Files\Extended Systems\XTNDConnect Blue Manager\btprot.exe
C:\PROGRA~1\EXTEND~1\XTNDCO~1\XTNDCO~1\BTUI_M~1.EXE
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
D:\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = [URL]http://www.dundeefc.co.uk/[/URL]
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchURL = prosearching.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchURL = prosearching.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = [URL]http://g.msn.co.uk/0SEENGB/SAOS01?FORM=TOOLBR[/URL]
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page_bak = prosearching.com
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = [URL]http://uk4.hpwis.com/[/URL]
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: (no name) - {C004DEC2-2623-438e-9CA2-C9043AB28508} - (no file)
O4 - HKLM..\Run: [S3TRAY2] S3tray2.exe
O4 - HKLM..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize
O4 - HKLM..\Run: [nwiz] nwiz.exe /install
O4 - HKLM..\Run: [PCTVOICE] pctspk.exe
O4 - HKLM..\Run: [Dit] Dit.exe
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM..\Run: [Easy-PrintToolBox] C:\Program Files\Canon\Easy-PrintToolBox\BJPSMAIN.EXE /logon ...

hi

So i started my computer and i got a warning on my computer then this bluebox poped up

it said

RUNDLL

error loading w1ee781b.dll

the specific module could not be found

I dont understand this, i typed the code into google and nothign comes up

when i try and put msn on it doesnt load, ive tryed using regcure but that doesnt seem to work.

here is hijackthis report

Logfile of HijackThis v1.99.1
Scan saved at 20:21:00, on 03/10/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Spyware Doctor\sdhelp.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\UAService7.exe
C:\WINDOWS\Explorer.EXE
C:\windows\system\hpsysdrv.exe
C:\WINDOWS\system32\pctspk.exe
C:\WINDOWS\Dit.exe
C:\WINDOWS\system32\BtUsrBdg.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Program Files\Extended Systems\XTNDConnect Blue Manager\XTNDConnect Blue Manager\XCBluMgr.exe
C:\Program Files\Common Files\Teleca Shared\CapabilityManager.exe
C:\WINDOWS\DitExp.exe
C:\PROGRA~1\EXTEND~1\XTNDCO~1\XTNDCO~1\SUSHIM~1.EXE
C:\Program Files\Extended Systems\XTNDConnect Blue Manager\btprot.exe
C:\PROGRA~1\EXTEND~1\XTNDCO~1\XTNDCO~1\BTUI_M~1.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\RegCure\RegCure.exe
C:\Program Files\Internet Explorer\iexplore.exe
D:\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = [URL]http://www.dundeefc.co.uk/[/URL]
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchURL = prosearching.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchURL = prosearching.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = [URL]http://g.msn.co.uk/0SEENGB/SAOS01?FORM=TOOLBR[/URL]
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page_bak = prosearching.com
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = [URL]http://uk4.hpwis.com/[/URL]
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll ...