|
-
August 19th, 2004, 07:27 AM
#1
Right click on folder refreshes windows
Hi All
Hope someone can advise as to what is happening as everytime I right click on any folder all that happens is that windows refreshes and all tray icons disappear except my avg and zone alarm and internet icons, this started recently. I have scanned and removed 5 spyware files, checked for viruses etc all o.k so why is this happening and how do I stop it.
Thanking you in advance for any help.
MissyMax
Win xp Pro SP1
Athlon XP 2000+ 1.67 GHz
512 DDR 333 RAM
MSI KT3 Ultra M/B Via KT333 Chipset
80 gig Hard Drive
Soundbaster Live 5.1
Creative 5.1 Surround Speakers
Trust Easywebscan 19200 Scanner
Epson Stylus C84 Printer
Broadband Cable Modem Surfboard 4100
Linksys Router BEFSR41
Ethernet Card
Sony 200ES 17 Monitor
Liteon CD-Rewriter 40x12x48
Sony DVD Drive
G-Force 5900 XT 128 meg
650 Watt PSU
-
August 19th, 2004, 08:04 AM
#2
Hi,
I think this could be a video card driver problem. Have you upgraded it recently? Or maybe you need to go get the latest one.
Check if any errors are showing in Device Manager
Right click My Computer / Properties / Hardware / Device Manager.
Look for "Yellow" errors especially at video card. Right click on it /Properties and check out what it says about the driver.
Elaine
-
August 19th, 2004, 08:47 AM
#3
Hi Elaine
Many thanks for your reply.
Drivers were updated in April
No problems in Device Manager
I think the last thing I did before this started was install a game, so I will uninstall it and see if that helps.
Will let you know.
Many thanks for your time and trouble in helping.
MissyMax
-
August 19th, 2004, 12:41 PM
#4
Hi Elaine
Well that didn't work so it wasn't the game causing this.
Have just downloaded new drivers so I will try them although I absolutely hate installing new drivers, why would my graphics drivers suddenly start causing this problem.
The strange thing is after I have tried right clicking on folders a few times and it keeps refreshing windows then it will let me right click, but something is definitely wrong and this is so frustrating.
So any other help would be greatly appreciated.
I will try the new drivers and post back.
Many Thanks
MissyMax
-
August 19th, 2004, 02:05 PM
#5
Get your WinXP CD handy, then go to Start>Run and type "sfc /scannow" without the quotes. That'll replace any missing or corrupt system files. It will often fix that particular problem.
Nick.
-
August 19th, 2004, 02:46 PM
#6
Hi Elaine and SuperSparks
Well did the dreaded driver install and at the moment it seems to have cured the problem I was a bit wary when installing as a warning came up saying my graphics card did not have windows logo certification and installing may cause system to be unstable etc and microsoft strongly recommends not installing, but I had got that far so clicked continue anyway, hope I don't have further problems.
SuperSparks
If the problem comes back tomorrow I will do as you suggest.
Many Many thanks to both of you for your interest and help.
At the moment very happy Hope it stays that way.
Thank You
MissyMax
-
August 19th, 2004, 05:45 PM
#7
Hi,
I hope it stays OK for you. If problem returns or gets worse, roll back the driver and try Nick`s suggestion.
Good luck
Elaine
-
August 21st, 2004, 04:55 AM
#8
Hi Elaine and SuperSparks
Well have tried both your suggestions and sadly neither works, the problem is still there
So any help please as this is so annoying, it means I cannot right click on a folder to do a scan.
Thanks for trying.
MissyMax
-
August 21st, 2004, 07:33 AM
#9
Hi,
You said you think this started after you installed a game. I know that you uninstalled that game, but do a System Restore to before you ever installed it just in case it was really it which mucked things up.
Elaine
-
August 21st, 2004, 04:17 PM
#10
Though it states that it's a fix for 'closing' folder problems,it also covers other problems when Windows Explorer 'refreshes' itself for no apparent reason. And you may,or may not,get a box saying 'explorer encountered a problem and must close'. I had the same problem,and after much searching and research,it fixed this problem for me: http://www.microsoft.com/downloads/d...A-C9D98DADA7A5
M$ also says this 'fix' will be included in sp2. Perhaps that's why they've kept it on the back of the shelf?
Stupid question? No such thing!
Virtual Dr. to the rescue!
Just ask. Bookmark your post for easy reference.
==================================
-
August 23rd, 2004, 10:22 AM
#11
Ridgerunr
Many thanks for your reply, I did as you suggested Sunday morning and all seemed well I was elated, but Monday morning started up and back to same old problem
Any other ideas anyone, please
Many thanks to Elaine, SuperSparks and yourself for trying to help me.
Looks like time to reformat !!! which I don't really want to do but it looks like that's the only option left, as I am not really sure when this started a system restore probably wouldn't help.
Have scanned online and offline for viruses and trojans- nothing found, I am truly baffled. I just want my compy to play nice, damn it.
Thanks everyone your help is greatly appreciated.
MissyMax
-
August 23rd, 2004, 10:43 AM
#12
Hi,
Well, since you have exhausted all we can think of, you might as well just run through the whole list of spyware/virus checks. You never know....sometimes this fixes the most unexpected problems!
After you install Ad-Aware and Spybot get them to check for updates before running them. Work your way through the list checking if fixed after each one.
1. Trend Micro Housecall http://housecall.trendmicro.com/
2. Trojan Scan http://www.windowsecurity.com/trojanscan/
3. Spybot Search & Destroy http://www.majorgeeks.com/download2471.html
4. Ad-aware SE http://www.lavasoft.de/support/download/#free
5. Hijack This http://www.majorgeeks.com/download3155.html
Make a special folder to download it to. Set it to "Scan" and then to create its "Log". This will be long, but copy all of it into Notepad and post it back to be checked.
Elaine
-
August 23rd, 2004, 01:54 PM
#13
Hi Elaine
Have done all those and many more and nothing found
Logfile of HijackThis v1.98.2
Scan saved at 18:37:01, on 23/08/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\System32\CTHELPER.EXE
C:\Program Files\TextBridge Pro Millennium\Bin\InstantAccess.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\fpdisp5a.exe
C:\Program Files\Grisoft\AVG6\avgcc32.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXE
C:\PROGRA~1\Zone Labs\ZoneAlarm\zapro.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
C:\Program Files\Trust\Easy Webscan 19200\ScanPanel\ScnPanel.exe
C:\PROGRA~1\Grisoft\AVG6\avgserv.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\WINDOWS\system32\crypserv.exe
C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\System32\devldr32.exe
C:\WINDOWS\explorer.exe
C:\Virus Scanners etc\Hijack This\hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://uk.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://uk.yahoo.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = webcache.blueyonder.co.uk
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {5FA6752A-C4A0-4222-88C2-928AE5AB4966} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\windows\googletoolbar2.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\windows\googletoolbar2.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [WINDVDPatch] CTHELPER.EXE
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [Jet Detection] C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe
O4 - HKLM\..\Run: [CTStartup] C:\Program Files\Creative\Splash Screen\CTEaxSpl.EXE /run
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [InstantAccess] C:\Program Files\TextBridge Pro Millennium\Bin\InstantAccess.exe /h
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [FinePrint Dispatcher v5] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\fpdisp5a.exe
O4 - HKLM\..\Run: [AVG_CC] C:\Program Files\Grisoft\AVG6\avgcc32.exe /startup
O4 - HKLM\..\Run: [EPSON Stylus C84 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXE /P23 "EPSON Stylus C84 Series" /O6 "USB002" /M "Stylus C84"
O4 - HKLM\..\Run: [Zone Labs Client] C:\PROGRA~1\Zone Labs\ZoneAlarm\zapro.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: ScanPanel.lnk = C:\Program Files\Trust\Easy Webscan 19200\ScanPanel\ScnPanel.exe
O8 - Extra context menu item: &Google Search - res://c:\windows\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: Backward &Links - res://c:\windows\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cac&hed Snapshot of Page - res://c:\windows\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Si&milar Pages - res://c:\windows\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:\windows\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\inetrepl.dll
O9 - Extra button: Researcher - {9455301C-CF6B-11D3-A266-00C04F689C50} - C:\Program Files\Common Files\Microsoft Shared\Encarta Researcher\EROPROJ.DLL
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: ppctlcab - http://www.pestscan.com/scanner/ppctlcab.cab
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/SU/ocx/12119/CTSUEng.cab
O16 - DPF: {2FC9A21E-2069-4E47-8235-36318989DB13} (PPSDKActiveXScanner.MainScreen) - http://www.pestscan.com/scanner/axscanner.cab
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/...eInstaller.exe
O16 - DPF: {5CE71396-91B6-4779-A79B-D80A21DC31B1} (Microsoft Excel 2002 Step by Step Interactive) - file://C:\Program Files\Microsoft Interactive Training\xl2002\mitm0032.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2...ll/xscan53.cab
O16 - DPF: {8EDAD21C-3584-4E66-A8AB-EB0E5584767D} - http://toolbar.google.com/data/GoogleActivate.cab
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://floridakeysmedia.tv/axiscam/C...CamControl.ocx
O16 - DPF: {AE9DCB17-F804-11D2-A44A-0020182C1446} (IntraLaunch.MainControl) - file://E:\SuperCD\IntraLaunch.CAB
O16 - DPF: {D74AEB87-1F97-40E5-9397-477FEB6E5CD6} (Microsoft Word 2002 Step by Step Interactive) - file://C:\Program Files\Microsoft Interactive Training\WRD2002\mitm0031.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/SU/ocx/12119/CTPID.cab
O16 - DPF: {FE5D6722-826F-11D5-A24E-0060B0F1A5AE} (Tukati Launcher) - http://3dgamers.tukati.com/tukati/1.6.9.9/tukati.cab
Startup List
StartupList report, 23/08/2004, 18:30:52
StartupList version: 1.52.2
Started from : C:\Virus Scanners etc\Hijack This\hijackthis\HijackThis.EXE
Detected: Windows XP SP1 (WinNT 5.01.2600)
Detected: Internet Explorer v6.00 SP1 (6.00.2800.1106)
* Using default options
==================================================
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\System32\CTHELPER.EXE
C:\Program Files\TextBridge Pro Millennium\Bin\InstantAccess.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\fpdisp5a.exe
C:\Program Files\Grisoft\AVG6\avgcc32.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXE
C:\PROGRA~1\Zone Labs\ZoneAlarm\zapro.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
C:\Program Files\Trust\Easy Webscan 19200\ScanPanel\ScnPanel.exe
C:\PROGRA~1\Grisoft\AVG6\avgserv.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\WINDOWS\system32\crypserv.exe
C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\System32\devldr32.exe
C:\WINDOWS\explorer.exe
C:\Virus Scanners etc\Hijack This\hijackthis\HijackThis.exe
--------------------------------------------------
Listing of startup folders:
Shell folders Common Startup:
[C:\Documents and Settings\All Users\Start Menu\Programs\Startup]
Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
ScanPanel.lnk = C:\Program Files\Trust\Easy Webscan 19200\ScanPanel\ScnPanel.exe
--------------------------------------------------
Checking Windows NT UserInit:
[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
UserInit = C:\WINDOWS\system32\userinit.exe,
--------------------------------------------------
Autorun entries from Registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run
SoundMan = SOUNDMAN.EXE
NeroCheck = C:\WINDOWS\system32\NeroCheck.exe
WINDVDPatch = CTHELPER.EXE
UpdReg = C:\WINDOWS\UpdReg.EXE
Jet Detection = C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe
--------------------------------------------------
Autorun entries from Registry:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run
ctfmon.exe = C:\WINDOWS\System32\ctfmon.exe
H/PC Connection Agent = "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
--------------------------------------------------
Shell & screensaver key from C:\WINDOWS\SYSTEM.INI:
Shell=*INI section not found*
SCRNSAVE.EXE=*INI section not found*
drivers=*INI section not found*
Shell & screensaver key from Registry:
Shell=Explorer.exe
SCRNSAVE.EXE=*Registry value not found*
drivers=*Registry value not found*
Policies Shell key:
HKCU\..\Policies: Shell=*Registry key not found*
HKLM\..\Policies: Shell=*Registry value not found*
--------------------------------------------------
Enumerating Browser Helper Objects:
(no name) - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}
(no name) - (no file) - {5FA6752A-C4A0-4222-88C2-928AE5AB4966}
(no name) - c:\windows\googletoolbar2.dll - {AA58ED58-01DD-4d91-8333-CF10577473F7}
--------------------------------------------------
Enumerating Download Program Files:
[ppctlcab]
CODEBASE = http://www.pestscan.com/scanner/ppctlcab.cab
OSD = C:\WINDOWS\Downloaded Program Files\OSD406.OSD
[Creative Software AutoUpdate]
InProcServer32 = C:\WINDOWS\DOWNLO~1\CTSUEng.ocx
CODEBASE = http://www.creative.com/SU/ocx/12119/CTSUEng.cab
[PPSDKActiveXScanner.MainScreen]
InProcServer32 = C:\WINDOWS\Downloaded Program Files\PPSDKActiveXScanner.ocx
CODEBASE = http://www.pestscan.com/scanner/axscanner.cab
[{41F17733-B041-4099-A042-B518BB6A408C}]
CODEBASE = http://a1540.g.akamai.net/7/1540/52/...eInstaller.exe
[Microsoft Excel 2002 Step by Step Interactive]
InProcServer32 = C:\WINDOWS\Downloaded Program Files\mitm0032.dll
CODEBASE = file://C:\Program Files\Microsoft Interactive Training\xl2002\mitm0032.cab
[HouseCall Control]
InProcServer32 = C:\WINDOWS\DOWNLO~1\xscan53.ocx
CODEBASE = http://a840.g.akamai.net/7/840/537/2...ll/xscan53.cab
[{8EDAD21C-3584-4E66-A8AB-EB0E5584767D}]
CODEBASE = http://toolbar.google.com/data/GoogleActivate.cab
[CamImage Class]
InProcServer32 = C:\WINDOWS\Downloaded Program Files\AxisCamControl.ocx
CODEBASE = http://floridakeysmedia.tv/axiscam/C...CamControl.ocx
[Update Class]
InProcServer32 = C:\WINDOWS\System32\iuctl.dll
CODEBASE = http://v4.windowsupdate.microsoft.co...535.4229513889
[IntraLaunch.MainControl]
InProcServer32 = C:\WINDOWS\Downloaded Program Files\INTRALAUNCH.OCX
CODEBASE = file://E:\SuperCD\IntraLaunch.CAB
[Shockwave Flash Object]
InProcServer32 = C:\WINDOWS\System32\macromed\flash\Flash.ocx
CODEBASE = http://fpdownload.macromedia.com/pub...sh/swflash.cab
[Microsoft Word 2002 Step by Step Interactive]
InProcServer32 = C:\WINDOWS\Downloaded Program Files\mitm0031.dll
CODEBASE = file://C:\Program Files\Microsoft Interactive Training\WRD2002\mitm0031.cab
[Creative Software AutoUpdate Support Package]
InProcServer32 = C:\WINDOWS\DOWNLO~1\CTPID.ocx
CODEBASE = http://www.creative.com/SU/ocx/12119/CTPID.cab
[Tukati Launcher]
InProcServer32 = C:\WINDOWS\System32\TukatiClientInstaller.dll
CODEBASE = http://3dgamers.tukati.com/tukati/1.6.9.9/tukati.cab
--------------------------------------------------
Enumerating ShellServiceObjectDelayLoad items:
PostBootReminder: C:\WINDOWS\system32\SHELL32.dll
CDBurn: C:\WINDOWS\system32\SHELL32.dll
WebCheck: C:\WINDOWS\System32\webcheck.dll
SysTray: C:\WINDOWS\System32\stobject.dll
--------------------------------------------------
End of report, 6,909 bytes
Report generated in 0.219 seconds
Command line options:
/verbose - to add additional info on each section
/complete - to include empty sections and unsuspicious data
/full - to include several rarely-important sections
/force9x - to include Win9x-only startups even if running on WinNT
/forcent - to include WinNT-only startups even if running on Win9x
/forceall - to include all Win9x and WinNT startups, regardless of platform
/history - to list version history only
Hope this gives you a clue, by the way as far as I know I don't use Google toolbar.
Many Thanks for taking the time to help
MissyMax
Hadn't run Spybot it found these
Avenue.A.Inc 1 entry
Conducent Timesink 1 entry
DSO Exploit 5 entries
Mediaplex 1 entry
Retrieve 1 entry
MissyMax
Last edited by MissyMax; August 23rd, 2004 at 06:10 PM.
-
August 23rd, 2004, 06:57 PM
#14
Hi,
Pretty clean log. This is all I could see.
Run HijackThis again, put a tick against the following and get HijackThis to fix it
O2 - BHO: (no name) - {5FA6752A-C4A0-4222-88C2-928AE5AB4966} - (no file)
Has running Spybot helped you?
Elaine
-
August 24th, 2004, 08:28 AM
#15
Hi Elaine
Tried to post log of Spybot but it said too many characters so I'll post it now and then will delete file you mentioned. Thank you very much for your help.
MissyMax
Avenue A, Inc.: Tracking cookie (Internet Explorer: Pat) (Cookie, fixed)
Conducent TimeSink: System file (File, nothing done)
C:\WINDOWS\System32\Addon2VB.dll
DSO Exploit: Data source object exploit (Registry change, nothing done)
HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\1004!=W=3
DSO Exploit: Data source object exploit (Registry change, nothing done)
HKEY_USERS\S-1-5-21-1715567821-1659004503-839522115-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\1004!=W=3
DSO Exploit: Data source object exploit (Registry change, nothing done)
HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\1004!=W=3
DSO Exploit: Data source object exploit (Registry change, nothing done)
HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\1004!=W=3
DSO Exploit: Data source object exploit (Registry change, nothing done)
HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\1004!=W=3
MediaPlex: Tracking cookie (Internet Explorer: Pat) (Cookie, fixed)
Retrieve: Autorun settings (Registry value, nothing done)
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\InstantAccess
--- Spybot - Search && Destroy version: 1.3 ---
2004-08-11 Includes\Cookies.sbi
2004-08-20 Includes\Dialer.sbi
2004-08-20 Includes\Hijackers.sbi
2004-08-20 Includes\Keyloggers.sbi
2004-05-12 Includes\LSP.sbi
2004-08-20 Includes\Malware.sbi
2004-08-12 Includes\Revision.sbi
2004-08-11 Includes\Security.sbi
2004-08-20 Includes\Spybots.sbi
2004-08-12 Includes\Tracks.uti
2004-08-20 Includes\Trojans.sbi
Thread Information
Users Browsing this Thread
There are currently 1 users browsing this thread. (0 members and 1 guests)
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules
|
|