Computer Randomly Shutting Down - Page 2
Page 2 of 2 FirstFirst 1 2
Results 16 to 22 of 22

Thread: Computer Randomly Shutting Down

  1. #16
    Registered User
    Join Date
    Oct 2005
    Posts
    11
    Quote Originally Posted by confus-ed
    Yup Noo does indeed think its spyware, as that's why she asked you to scan it & post a hijackthis log .. but where is it ?
    i'm not at my house i'll do it on Monday and hopefully put this log up on Monday if my computer will get online

  2. #17
    Registered User
    Join Date
    Oct 2005
    Posts
    11
    this is the notepad that came up after the scan its long so i'll send it in a few replies
    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\PROGRA~1\WINZIP\winzip32.exe
    C:\unzipped\hijackthis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://www.quicksearch360.com/sp2.php
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = file://C:\WINDOWS\system32\SearchBar.htm
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.quicksearch360.com/sp2.php
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = home.netscape.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://us6.hpwis.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://my.juno.com/s/search?r=minisearch
    R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.quicksearch360.com/sp2.php
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R1 - HKLM\Software\Microsoft\Internet Explorer\SearchURL,(Default) = www.searchant.com/r=6&s=%s
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://results.searchscout.com/conte...s_scout_2&bf=3
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Verizon Online
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyServer = http=127.0.0.1:7900
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = 64.136.29.30;64.136.21.30;64.136.29.34;searchap.un td.com;127.0.0.1;localhost;*microsoft.com;*windows update.com;*wustat.windows.com;*.pogo.com;*.worldw inner.com;*test-speed.com;liveupdate.symantecliveupdate.com;*syman tec.com;*.nai.com;*.networkassociates.com;
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    R3 - Default URLSearchHook is missing
    F2 - REG:system.ini: UserInit=C:\WINDOWS\System32\Userinit.exe
    O1 - Hosts: 216.39.69.102 view.atdmt.com
    O2 - BHO: IE5BarLauncherBHO Class - {1ADBCCE8-CF84-441E-9B38-AFC7A19C06A4} - C:\Program Files\DealBar\BarLcher.dll (file missing)
    O2 - BHO: COMMUNICATOR - {4E7BD74F-2B8D-469E-8DBC-A42EB79CB428} - C:\WINDOWS\system32\communicator.dll
    O2 - BHO: (no name) - {87766247-311C-43B4-8499-3D5FEC94A183} - (no file)
    O2 - BHO: LinkTracker Class - {8B6DA27E-7F64-4694-8F8F-DC87AB8C6B22} - C:\WINDOWS\system32\qlink32.dll
    O2 - BHO: Band Class - {C5183ABC-EB6E-4E05-B8C9-500A16B6CF94} - C:\Program Files\SEP\sep.dll
    O2 - BHO: Band Class - {CC378B83-9577-44D0-B4F8-0DD965E176FC} - C:\Program Files\eSyndicate\esyn.dll
    O3 - Toolbar: ActiveShopperToolBar 1.200 - {3D782BB3-F2A5-11D3-BF4C-000000000000} - C:\Program Files\DealBar\BarLcher.dll (file missing)
    O3 - Toolbar: COMMUNICATOR - {4E7BD74F-2B8D-469E-8DBC-A42EB79CB428} - C:\WINDOWS\system32\communicator.dll
    O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
    O3 - Toolbar: Band Class - {C5183ABC-EB6E-4E05-B8C9-500A16B6CF94} - C:\Program Files\SEP\sep.dll
    O4 - HKLM\..\Run: [RUFJSoov] C:\PROGRA~1\wvorrvtw\fUADAsRM.exe
    O4 - HKLM\..\Run: [xXaOA9] "C:\WINDOWS\system32\sav2.exe" /PC=CP.SAV2 /PC=CP.SAV2 /PC=CP.SAV2 /PC=CP.SAV2 /PC=CP.SAV2 /PC=CP.SAV2 /PC=CP.SAV2 /PC=CP.SAV2 /PC=CP.SAV2 /PC=CP.SAV2 /PC=CP.SAV2 /PC=CP.SAV2 /PC=CP.SAV2 /PC=CP.SAV2 /PC=CP.SAV2 /PC=CP.SAV2 /PC=CP.SAV2 /PC=CP.SAV2 /PC=CP.SAV2 /PC=CP.SAV2
    O4 - HKLM\..\Run: [ramas] C:\WINDOWS\system32\lhbba\ramas.exe
    O4 - HKLM\..\Run: [sxxbv] C:\WINDOWS\system32\xojj\sxxbv.exe
    O4 - HKLM\..\Run: [cyoatm] C:\WINDOWS\system32\oxfptoes\cyoatm.exe
    O4 - HKLM\..\Run: [kbpj] C:\WINDOWS\system32\wfvv\kbpj.exe
    O4 - HKLM\..\Run: [ubdxkg] C:\WINDOWS\system32\liuibq\ubdxkg.exe
    O4 - HKLM\..\Run: [System service66] C:\WINDOWS\etb\pokapoka66.exe
    O4 - HKLM\..\Run: [2P6WFAX43ZHE7C] C:\WINDOWS\system32\Xej7.exe
    O4 - HKLM\..\Run: [DslbKUIb.exe] C:\windows\system32\DslbKUIb.exe
    O4 - HKLM\..\Run: [bkwnkcdn] C:\WINDOWS\system32\btbxuq\bkwnkcdn.exe
    O4 - HKLM\..\Run: [winsync] C:\WINDOWS\system32\adrita.exe reg_run
    O4 - HKLM\..\Run: [l3k0hfen] C:\WINDOWS\system32\l3k0hfen.exe
    O4 - HKLM\..\Run: [ZStart] C:\windows\system32\rtdxregw.exe DO0605
    O4 - HKLM\..\Run: [Nsv] C:\WINDOWS\system32\nsvsvc\nsvsvc.exe
    O4 - HKLM\..\Run: [vidctrl] C:\WINDOWS\system32\vidctrl\vidctrl.exe
    O4 - HKLM\..\Run: [hpes] C:\WINDOWS\system32\tcjgbr\hpes.exe
    O4 - HKLM\..\Run: [dkkfpq] C:\WINDOWS\system32\ajvcay\dkkfpq.exe
    O4 - HKLM\..\Run: [gcecuhjx] C:\WINDOWS\system32\yaamoaa\gcecuhjx.exe
    O4 - HKLM\..\Run: [ctcjrait] C:\WINDOWS\system32\gachg\ctcjrait.exe
    O4 - HKLM\..\Run: [gepatjf] C:\WINDOWS\system32\hpbgrg\gepatjf.exe
    O4 - HKLM\..\Run: [tdontmm] C:\WINDOWS\system32\esvwg\tdontmm.exe
    O4 - HKLM\..\Run: [okfe] C:\WINDOWS\system32\corul\okfe.exe
    O4 - HKLM\..\Run: [gwiqw] C:\WINDOWS\system32\qity\gwiqw.exe
    O4 - HKLM\..\Run: [dkaldr] C:\WINDOWS\system32\hircjgtb\dkaldr.exe
    O4 - HKLM\..\Run: [hlcvh] C:\WINDOWS\system32\xminrc\hlcvh.exe
    O4 - HKLM\..\Run: [omsxcr] C:\WINDOWS\system32\bqho\omsxcr.exe
    O4 - HKLM\..\Run: [wwtuo] C:\WINDOWS\system32\orprp\wwtuo.exe
    O4 - HKLM\..\Run: [stb] C:\WINDOWS\system32\stb.exe
    O4 - HKLM\..\Run: [qyjykmmq] C:\WINDOWS\system32\aybas\qyjykmmq.exe
    O4 - HKLM\..\Run: [sufyff] C:\WINDOWS\system32\ioxkbxis\sufyff.exe
    O4 - HKLM\..\Run: [uricoefa] C:\WINDOWS\system32\abaevr\uricoefa.exe
    O4 - HKLM\..\Run: [nxnwmrxp] C:\WINDOWS\system32\bamjt\nxnwmrxp.exe
    O4 - HKLM\..\Run: [krfxdbl] C:\WINDOWS\system32\kwioc\krfxdbl.exe
    O4 - HKLM\..\Run: [glffoab] C:\WINDOWS\system32\cqdspvn\glffoab.exe
    O4 - HKLM\..\Run: [qietxdg] C:\WINDOWS\system32\vouav\qietxdg.exe
    O4 - HKLM\..\Run: [olhj] C:\WINDOWS\system32\xtbfwu\olhj.exe
    O4 - HKLM\..\Run: [tcppi] C:\WINDOWS\system32\xvwyigi\tcppi.exe
    O4 - HKLM\..\Run: [gjene] C:\WINDOWS\system32\ufvqqm\gjene.exe
    O4 - HKLM\..\Run: [qieieh] C:\WINDOWS\system32\knuqk\qieieh.exe
    O4 - HKLM\..\Run: [wtwrjiod] C:\WINDOWS\system32\pusxkf\wtwrjiod.exe
    O4 - HKLM\..\Run: [ypsvpvqx] C:\WINDOWS\system32\nboef\ypsvpvqx.exe
    O4 - HKLM\..\Run: [BrowserUpdateSched] C:\WINDOWS\system32\tsysvy6d.exe DO0605
    O4 - HKLM\..\Run: [trgypse] C:\WINDOWS\system32\dcht\trgypse.exe
    O4 - HKLM\..\Run: [wbnl] C:\WINDOWS\system32\kyga\wbnl.exe
    O4 - HKLM\..\Run: [rjlodc] C:\WINDOWS\system32\jrghj\rjlodc.exe
    O4 - HKLM\..\Run: [rpee] C:\WINDOWS\system32\cjcis\rpee.exe
    O4 - HKLM\..\Run: [vdgi] C:\WINDOWS\system32\nhfxmes\vdgi.exe
    O4 - HKLM\..\Run: [aparhodl] C:\WINDOWS\system32\ofwuxjw\aparhodl.exe
    O4 - HKLM\..\Run: [cmiyb] C:\WINDOWS\system32\xloultiq\cmiyb.exe
    O4 - HKLM\..\Run: [oyug] C:\WINDOWS\system32\jgys\oyug.exe
    O4 - HKLM\..\Run: [spxeecbb] C:\WINDOWS\system32\sotwixjt\spxeecbb.exe
    O4 - HKLM\..\Run: [ospmbini] C:\WINDOWS\system32\cccyll\ospmbini.exe
    O4 - HKLM\..\Run: [bjekb] C:\WINDOWS\system32\ilgrkb\bjekb.exe
    O4 - HKLM\..\Run: [McRegWiz] C:\PROGRA~1\McAfee.com\Agent\mcregwiz.exe /autorun
    O4 - HKLM\..\Run: [VSOCheckTask] "c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" /checktask
    O4 - HKLM\..\Run: [VirusScan Online] "c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe"
    O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
    O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\mcupdate.exe
    O4 - HKLM\..\Run: [MSKAGENTEXE] C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe
    O4 - HKLM\..\Run: [MSKDetectorExe] C:\PROGRA~1\McAfee\SPAMKI~1\MskDetct.exe /startup
    O4 - HKLM\..\Run: [zq0yvlj1.exe] C:\WINDOWS\zq0yvlj1.exe /dk
    O4 - HKLM\..\Run: [xhrmy] C:\WINDOWS\Xhrmy.exe
    O4 - HKLM\..\Run: [wnddrv] C:\WINDOWS\svchost.exe
    O4 - HKLM\..\Run: [winupdtl] C:\WINDOWS\System32\winupdtl.exe
    O4 - HKLM\..\Run: [WinTask driver] C:\WINDOWS\system32\wintask.exe
    O4 - HKLM\..\Run: [wcbijte] C:\WINDOWS\system32\hrjdmqq\wcbijte.exe
    O4 - HKLM\..\Run: [vlpt] C:\WINDOWS\system32\kiyknpxn\vlpt.exe
    O4 - HKLM\..\Run: [uhllahi] C:\WINDOWS\system32\qcbev\uhllahi.exe
    O4 - HKLM\..\Run: [TBPS] C:\PROGRA~1\Toolbar\TBPS.exe
    O4 - HKLM\..\Run: [SysStart] C:\WINDOWS\system32\tsysvy2d.exe DO0605
    O4 - HKLM\..\Run: [saSyncMgr] rundll32.exe sasync.dll,SyncWait app=SearchAnt wait=10
    O4 - HKLM\..\Run: [rripcecl] C:\WINDOWS\system32\rripcecl.exe
    O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
    O4 - HKLM\..\Run: [PSof1] C:\WINDOWS\system32\PSof1.exe
    O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
    O4 - HKLM\..\Run: [opr] C:\WINDOWS\system32\opr.exe
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize
    O4 - HKLM\..\Run: [mlosj] C:\WINDOWS\system32\raic\mlosj.exe
    O4 - HKLM\..\Run: [Mjb] C:\documents and settings\mike\local settings\temp\Mjb.exe
    O4 - HKLM\..\Run: [MedGS] C:\WINDOWS\system32\medgs1.exe
    O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
    O4 - HKLM\..\Run: [jramfcx] C:\WINDOWS\system32\lntjgk.exe r
    O4 - HKLM\..\Run: [iisvers] C:\WINDOWS\iisvers.exe
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
    O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
    O4 - HKLM\..\Run: [F3cYicKe] C:\windows\system32\F3cYicKe.exe
    O4 - HKLM\..\Run: [exp.exe] C:\WINDOWS\system32\exp.exe

  3. #18
    Registered User
    Join Date
    Oct 2005
    Posts
    11
    O4 - HKLM\..\Run: [emolyy] C:\WINDOWS\system32\eejmugs\emolyy.exe
    O4 - HKLM\..\Run: [ejdiuyi] C:\WINDOWS\system32\qths\ejdiuyi.exe
    O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
    O4 - HKLM\..\Run: [Desksite CMA] c:\program files\desksite\bin\cma.exe
    O4 - HKLM\..\Run: [checktime] c:\program files\HPSelect\Frontend\ct.exe
    O4 - HKLM\..\Run: [CamMonitor] c:\Program Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe
    O4 - HKLM\..\Run: [AutoUpdater] "C:\Program Files\AutoUpdate\AutoUpdate.exe"
    O4 - HKLM\..\Run: [AutoLoaders04f1MdfZMPW] "C:\WINDOWS\system32\minui1.exe"
    O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
    O4 - HKLM\..\Run: [
    O4 - HKLM\..\Run: [
    O4 - HKLM\..\Run: [

    O4 - HKLM\..\Run: [
    O4 - HKLM\..\Run: [31c196a548aa] C:\WINDOWS\system32\actxprxy.exe
    O4 - HKLM\..\Run: [- ] C:\WINDOWS\pokiy.exe
    O4 - HKLM\..\Run: [ Error</TI] c:\WINDOWS\System32\ <TITLE>Error
    O4 - HKLM\..\Run: [nempeji] C:\WINDOWS\system32\vsgb\nempeji.exe
    O4 - HKLM\..\Run: [Á ²#
    {"h'þ9ÓœÇ3rÅ WC:\Program Files\ISTsvc\istsvc.exe] C:\WINDOWS\pokiy.exe
    O4 - HKLM\..\Run: [byoweotl] C:\WINDOWS\system32\octlph\byoweotl.exe
    O4 - HKLM\..\Run: [lalu] C:\WINDOWS\system32\atiskhmi\lalu.exe
    O4 - HKLM\..\Run: [nang] C:\WINDOWS\system32\jspg\nang.exe
    O4 - HKLM\..\Run: [xehj] C:\WINDOWS\system32\lervmbql\xehj.exe
    O4 - HKLM\..\Run: [tojgtw] C:\WINDOWS\system32\efjmoe\tojgtw.exe
    O4 - HKLM\..\Run: [dcjw] C:\WINDOWS\system32\ovamam\dcjw.exe
    O4 - HKLM\..\Run: [nrypnik] C:\WINDOWS\system32\ekecslx\nrypnik.exe
    O4 - HKLM\..\Run: [rdsppdjr] C:\WINDOWS\system32\etdojjni\rdsppdjr.exe
    O4 - HKLM\..\Run: [mehhy] C:\WINDOWS\system32\xjow\mehhy.exe
    O4 - HKLM\..\Run: [kpvk] C:\WINDOWS\system32\hxctucmv\kpvk.exe
    O4 - HKLM\..\Run: [mtydqdbw] C:\WINDOWS\system32\uissw\mtydqdbw.exe
    O4 - HKLM\..\Run: [ptngfj] C:\WINDOWS\system32\nodcful\ptngfj.exe
    O4 - HKLM\..\Run: [vettrg] C:\WINDOWS\system32\bhrwavdd\vettrg.exe
    O4 - HKLM\..\Run: [ogtf] C:\WINDOWS\system32\uivyvfi\ogtf.exe
    O4 - HKLM\..\Run: [swkhwok] C:\WINDOWS\system32\oxdayw\swkhwok.exe
    O4 - HKLM\..\Run: [vgboejx] C:\WINDOWS\system32\buwlj\vgboejx.exe
    O4 - HKLM\..\Run: [xgqs] C:\WINDOWS\system32\fkxwa\xgqs.exe
    O4 - HKLM\..\Run: [ttfrc] C:\WINDOWS\system32\ahvvfyr\ttfrc.exe
    O4 - HKLM\..\Run: [rbyy] C:\WINDOWS\system32\kxsk\rbyy.exe
    O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\VERITAS Software\Update Manager\sgtray.exe" /r
    O4 - HKLM\..\Run: [Media Access] C:\Program Files\Media Access\MediaAccK.exe
    O4 - HKLM\..\Run: [Á ²#
    è"h'þ9ÓœT3rųWC:\Program Files\ISTsvc\istsvc.exe] C:\WINDOWS\pokiy.exe
    O4 - HKLM\..\Run: [qtsikthu] C:\WINDOWS\system32\jgmcden\qtsikthu.exe
    O4 - HKLM\..\Run: [nmyymbah] C:\WINDOWS\system32\pkrjcq\nmyymbah.exe
    O4 - HKLM\..\Run: [cyogcy] C:\WINDOWS\system32\wssgs\cyogcy.exe
    O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
    O4 - HKLM\..\Run: [Zfnrj] C:\Program Files\Vrlkavc\Rhaba.exe
    O4 - HKLM\..\Run: [Windows Incontext] C:\DOCUME~1\Mike\LOCALS~1\Temp\InSearch.exe
    O4 - HKLM\..\Run: [WebScan] C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe -k
    O4 - HKLM\..\Run: [The site you have requested doesn't ex] c:\WINDOWS\System32\The site you have requested doesn't exist.
    O4 - HKLM\..\Run: [The associated domain name has probably been reserved by a client ] c:\WINDOWS\System32\The associated domain name has probably been reserved by a client from
    O4 - HKLM\..\Run: [salm] c:\temp\salm.exe
    O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [NI.UWFX5LP_0001_0803] "C:\WINDOWS\Downloaded Program Files\CONFLICT.8\UWFX5LP_0001_0803NetInstaller.exe"
    O4 - HKLM\..\Run: [NI.UWFX5LP_0001_0715] "C:\WINDOWS\Downloaded Program Files\UWFX5LP_0001_0715NetInstaller.exe"
    O4 - HKLM\..\Run: [NI.UWFX5LP_0001_0614] "C:\WINDOWS\Downloaded Program Files\UWFX5LP_0001_0614NetInstaller.exe"
    O4 - HKLM\..\Run: [NI.UWFX5] "C:\WINDOWS\Downloaded Program Files\CONFLICT.1\UWFX5NetInstaller.exe"
    O4 - HKLM\..\Run: [New.net Startup] rundll32 C:\PROGRA~1\NEWDOT~1\NEWDOT~1.DLL,NewDotNetStartup -s
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [freesurfer] C:\Program Files\Free Surfer\fs20.exe
    O4 - HKLM\..\Run: [GANDI then par] c:\WINDOWS\System32\GANDI then parked.
    O4 - HKCU\..\Run: [dw49RSMte] mf3xdiag.exe
    O4 - HKCU\..\Run: [CAS Client] "C:\Program Files\Cas\Client\casclient.exe"
    O4 - HKCU\..\Run: [SurfSideKick 3] C:\Program Files\SurfSideKick 3\Ssk.exe
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - Startup: Zeno.lnk = C:\WINDOWS\system32\tsysvy2d.exe
    O4 - Startup: Zstart.lnk = C:\WINDOWS\system32\cxdxregt.exe
    O4 - Global Startup: hp center UI.lnk = C:\Program Files\hp center\137903\Shadow\ShadowBar.exe
    O4 - Global Startup: hp center.lnk = C:\Program Files\hp center\137903\Program\BackWeb-137903.exe
    O4 - Global Startup: hp psc 1000 series.lnk = ?
    O4 - Global Startup: hpoddt01.exe.lnk = ?
    O4 - Global Startup: nrpi.exe
    O4 - Global Startup: zq0yvlj1.lnk = C:\WINDOWS\zq0yvlj1.exe
    O8 - Extra context menu item: Display All Images with Full Quality - res://C:\Program Files\Juno\qsacc\appres.dll/228
    O8 - Extra context menu item: Display Image with Full Quality - res://C:\Program Files\Juno\qsacc\appres.dll/227
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
    O9 - Extra button: (no name) - {120E090D-9136-4b78-8258-F0B44B4BD2AC} - C:\WINDOWS\system32\maxspeed.exe (file missing)
    O9 - Extra 'Tools' menuitem: MaxSpeed - {120E090D-9136-4b78-8258-F0B44B4BD2AC} - C:\WINDOWS\system32\maxspeed.exe (file missing)
    O9 - Extra button: (no name) - {9E248641-0E24-4DDB-9A1F-705087832AD6} - C:\WINDOWS\system32\wuauclt.dll
    O9 - Extra 'Tools' menuitem: Java - {9E248641-0E24-4DDB-9A1F-705087832AD6} - C:\WINDOWS\system32\wuauclt.dll
    O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
    O9 - Extra button: Free Surfer - {AFC3FA82-AD07-45cd-8B57-983435B9899E} - C:\Program Files\Free Surfer\FS20.exe
    O9 - Extra 'Tools' menuitem: Free Surfer - {AFC3FA82-AD07-45cd-8B57-983435B9899E} - C:\Program Files\Free Surfer\FS20.exe
    O9 - Extra button: ActiveShopper - {BFA03761-5565-41b3-93D9-82B354C0A8EC} - SHDOCVW.DLL (file missing)

  4. #19
    Registered User
    Join Date
    Oct 2005
    Posts
    11
    O9 - Extra 'Tools' menuitem: ActiveShopper Toolbar - {BFA03761-5565-41b3-93D9-82B354C0A8EC} - SHDOCVW.DLL (file missing)
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O16 - DPF: {0878B424-1F95-4E26-B5AB-F0D349D89650} - http://download.bargain-buddy.net/do...ARKETING11.cab
    O16 - DPF: {15AD4789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://static.windupdates.com/cab/Ga.../bridge-c3.cab
    O16 - DPF: {205FF73B-CA67-11D5-99DD-444553540006} (CInstall Class) - http://www.errorguard.com/installation/Install.cab
    O16 - DPF: {2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} (MiniBugTransporterX Class) - http://download.weatherbug.com/minib...rand=200341716
    O16 - DPF: {41F31718-2B9D-4F76-85E2-DD11BBA99F8D} - http://install.spywarelabs.com/DistI...2501031120.EXE
    O16 - DPF: {5F3B3060-09E0-44C6-86F7-BC7B02B57BEE} - http://downloads.shopathomeselect.co...sm1009_sp2.cab
    O16 - DPF: {64696FB5-BA15-4920-B789-F35D3FC0A36A} (myax Control) - http://www.icannnews.com/app/ST/ax.ocx
    O16 - DPF: {972BB342-14A7-4660-83C1-51DDBEE171DB} - http://www.pacimedia.com/install/pcs_0009.exe
    O16 - DPF: {C4A8A4DA-BD3F-4DEB-9BBB-5B6BD3571EC7} (CDKeyCtl Class) - http://www.cdkey-promotions.com/download/CDKey.cab
    O16 - DPF: {FF65677A-8977-48CA-916A-DFF81B037DF3} - http://download.overpro.com/WildApp.cab
    O18 - Filter: text/html - {DFAA31C8-A356-4313-9D95-5EDAB46C5070} - C:\WINDOWS\system32\qlink32.dll
    O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
    O23 - Service: bkwnkcdnbtbxuq - Unknown owner - C:\WINDOWS\system32\btbxuq\bkwnkcdn.exe
    O23 - Service: gcecuhjxyaamoaa - Unknown owner - C:\WINDOWS\system32\yaamoaa\gcecuhjx.exe
    O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: McAfee.com McShield (McShield) - Unknown owner - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
    O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
    O23 - Service: McAfee.com VirusScan Online Realtime Engine (MCVSRte) - Networks Associates Technology, Inc - c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
    O23 - Service: McAfee SpamKiller Server (MskService) - Networks Associates Technology. Inc. - C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
    O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - c:\Program Files\Norton AntiVirus\navapsvc.exe
    O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
    O23 - Service: okfecorul - Unknown owner - C:\WINDOWS\system32\corul\okfe.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
    O23 - Service: qtsikthujgmcden - Unknown owner - C:\WINDOWS\system32\jgmcden\qtsikthu.exe
    O23 - Service: sufyffioxkbxis - Unknown owner - C:\WINDOWS\system32\ioxkbxis\sufyff.exe
    O23 - Service: WebSeach Toolbar support NT service (TBPSSvc) - Unknown owner - C:\PROGRA~1\Toolbar\TBPSSvc.exe (file missing)
    O23 - Service: trgypsedcht - Unknown owner - C:\WINDOWS\system32\dcht\trgypse.exe
    O23 - Service: ubdxkgliuibq - Unknown owner - C:\WINDOWS\system32\liuibq\ubdxkg.exe
    O23 - Service: ZESOFT - Unknown owner - C:\WINDOWS\zeta.exe

  5. #20
    Registered User
    Join Date
    Oct 2005
    Posts
    11
    alright i just sent you a lot of stuff not sure if thats what i was suppose to do with sending all this information to you but if it is and you can help somehow thank you so so so much

  6. #21
    Geezer confus-ed's Avatar
    Join Date
    Jul 1999
    Location
    In front of my PC....
    Posts
    13,087
    I'm not even gonna look at that log in detail - you've got loads of spyware !

    Go read, & follow the advice on this thread of Noo's How to fix popups, spyware, malware and nuisance programs

    Clean up your system 'a very great deal' (normally I say 'a bit' there ) & then repost, once you think you've got most of it, or are left with 'troublesome' entries ..

  7. #22
    Driver Terrier NooNoo's Avatar
    Join Date
    Dec 2000
    Location
    UK
    Posts
    31,824
    Oh lord, that's the worst spyware filled log I have seen in a very long time. You may want to consider reformatting... it may be quicker than digging out that lot.
    Never, ever approach a computer saying or even thinking "I will just do this quickly."

Similar Threads

  1. you probably need a new computer
    By clascomp in forum Tech Lounge & Tales
    Replies: 35
    Last Post: June 8th, 2005, 02:19 AM
  2. group policy?---advanced
    By qwicker in forum Windows XP
    Replies: 2
    Last Post: October 15th, 2003, 06:12 AM
  3. Error 629 - Disconnected by remote computer
    By nm in forum Tech-To-Tech
    Replies: 4
    Last Post: June 28th, 2002, 05:44 PM
  4. The continually-booting computer
    By Smokey702a in forum BIOS/Motherboard Drivers
    Replies: 9
    Last Post: April 30th, 2001, 03:14 AM
  5. computer won't boot
    By format c: in forum Windows 95/98/98SE/ME
    Replies: 11
    Last Post: January 31st, 2001, 02:02 AM

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •