Forum Home
Press F1
 
Thread ID: 88032 2008-03-12 21:50:00 attn.,speedy (hijack this) checkout effie c (6856) Press F1
Post ID Timestamp Content User
648909 2008-03-12 21:50:00 Hi Speedy,
After doing the right thing in congratulating you on your skill--I went into my own files and found a gi-normous pile - and I am too timid to correct anything
:blush:

--reason : I am having trouble in moving "online chess pieces,as when I move, test the wisdom of the move and then hurriedly back off and make another move instead---then, the hour glass will not show as it should, when sending-- it works perfectly if I move and send once, but a double attempt won't

I even wonder if I should try a "repair" off my XP Pro CD- and would I run into trouble if I did repair?

Please vet this HJ list
Logfile of HijackThis v1 . 99 . 1
Scan saved at 10:27:55 a . m . , on 13/03/2008
Platform: Windows XP SP2 (WinNT 5 . 01 . 2600)
MSIE: Internet Explorer v7 . 00 (7 . 00 . 6000 . 16608)

Running processes:
C:\WINDOWS\System32\smss . exe
C:\WINDOWS\system32\winlogon . exe
C:\WINDOWS\system32\services . exe
C:\WINDOWS\system32\lsass . exe
C:\WINDOWS\system32\svchost . exe
C:\WINDOWS\System32\svchost . exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr . exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr . exe
D:\Program Files\Lavasoft\Ad-Aware 2007\aawservice . exe
C:\WINDOWS\Explorer . EXE
C:\WINDOWS\system32\ctfmon . exe
C:\Program Files\Common Files\Symantec Shared\ccApp . exe
C:\Program Files\Java\jre1 . 6 . 0_03\bin\jusched . exe
C:\WINDOWS\vsnpstd . exe
D:\Bin\INSTAN~1 . EXE
D:\Program Files\Adobe\Photoshop Album Starter Edition\3 . 2\Apps\apdproxy . exe
C:\Program Files\Common Files\Real\Update_OB\realsched . exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNo tifier . exe
C:\WINDOWS\system32\spoolsv . exe
C:\Program Files\Skype\Phone\Skype . exe
C:\WINDOWS\twain_32\CIS600X\WATCH . exe
C:\Program Files\ Yahoo! \Messenger\ymsgr_tray . exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM . EXE
C:\Program Files\Norton AntiVirus\navapsvc . exe
C:\Program Files\Norton AntiVirus\SAVScan . exe
C:\WINDOWS\system32\svchost . exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc . exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC . exe
C:\Program Files\Skype\Plugin Manager\skypePM . exe
C:\Program Files\Messenger\msmsgs . exe
C:\Program Files\Mozilla Firefox\firefox . exe
C:\Program Files\HijackThis\HijackThis . exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://nz . yahoo . com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer,Firefox . com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = 127 . 0 . 0 . 1
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\ Yahoo! \Companion\Installs\cpn\yt . dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\ Yahoo! \Companion\Installs\cpn\yt . dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper . dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - D:\Program Files\Real\RealPlayer\rpbrowserrecordplugin . dll
O2 - BHO: (no name) - {5A263CF7-56A6-4D68-A8CF-345BE45BC911} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1 . 6 . 0_03\bin\ssv . dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2 . dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2 . 1 . 1119 . 1736\s wg . dll
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt . dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt . dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2 . dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\ Yahoo! \Companion\Installs\cpn\yt . dll
O4 - HKLM\ . . \Run: [EPSON Stylus C45 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I3T 1 . EXE /P23 "EPSON Stylus C45 Series" /O6 "USB001" /M "Stylus C45"
O4 - HKLM\ . . \Run: [EPSON Stylus C45 Series (Copy 1)] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I3T 1 . EXE /P32 "EPSON Stylus C45 Series (Copy 1)" /O6 "USB001" /M "Stylus C45"
O4 - HKLM\ . . \Run: [SSBkgdUpdate] C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate . exe -Embedding -boot
O4 - HKLM\ . . \Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp . exe"
O4 - HKLM\ . . \Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon . exe
O4 - HKLM\ . . \Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1 . 6 . 0_03\bin\jusched . exe"
O4 - HKLM\ . . \Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\ . . \Run: [snpstd] C:\WINDOWS\vsnpstd . exe
O4 - HKLM\ . . \Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask . exe" -atboottime
O4 - HKLM\ . . \Run: [InstantAccess] d:\Bin\INSTAN~1 . EXE /h
O4 - HKLM\ . . \Run: [RegisterDropHandler] d:\Bin\REGIST~1 . EXE
O4 - HKLM\ . . \Run: [Adobe Photo Downloader] "D:\Program Files\Adobe\Photoshop Album Starter Edition\3 . 2\Apps\apdproxy . exe"
O4 - HKLM\ . . \Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched . exe" -osboot
O4 - HKLM\ . . \RunServices: [RegisterDropHandler] d:\Bin\REGIST~1 . EXE
O4 - HKCU\ . . \Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNo tifier . exe
O4 - HKCU\ . . \Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ . exe"
O4 - HKCU\ . . \Run: [ctfmon . exe] C:\WINDOWS\system32\ctfmon . exe
O4 - HKCU\ . . \Run: [ Yahoo! Pager] "C:\Program Files\ Yahoo! \Messenger\YahooMessenger . exe" -quiet
O4 - HKCU\ . . \Run: [Skype] "C:\Program Files\Skype\Phone\Skype . exe" /nosplash /minimized
O4 - Global Startup: Adobe Reader Synchronizer . lnk = D:\Program Files\Adobe\Reader 8 . 0\Reader\AdobeCollabSync . exe
O4 - Global Startup: Watch . lnk = C:\WINDOWS\twain_32\CIS600X\WATCH . exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1 . 6 . 0_03\bin\ssv . dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1 . 6 . 0_03\bin\ssv . dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR . DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs . exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs . exe
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - . g . akamai . net/7/1540/52/20070711/qtinstall . info . apple . com/qtactivex/qtplugin . cab" target="_blank">a1540 . g . akamai . net
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\ Yahoo! \Common\yinsthelper . dll
O16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} - . crucial . com/controls/cpcScanner . cab" target="_blank">www . crucial . com
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - . macromedia . com/get/shockwave/cabs/flash/swflash . cab" target="_blank">fpdownload2 . macromedia . com
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1 . DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon . dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - D:\Program Files\Lavasoft\Ad-Aware 2007\aawservice . exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr . exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc . exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr . exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService . exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc . exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc . exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan . exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ . exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc . exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc . exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC . exe



effie c
effie c (6856)
648910 2008-03-12 22:02:00 Tick these entries then tick fix checked

Close browser/s

O2 - BHO: (no name) - {5A263CF7-56A6-4D68-A8CF-345BE45BC911} - (no file)

O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"

O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [InstantAccess] d:\Bin\INSTAN~1.EXE /h

O4 - HKLM\..\Run: [Adobe Photo Downloader] "D:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe"

Uninstall all versions of Java, yours is out of date. Update is in my sig.

I wouldnt be surprised if Nortons, or realplayer is the prob.

Both install a lot of crap on a system.
Speedy Gonzales (78)
648911 2008-03-12 22:40:00 Hi Speedy
Thank you - I have just been called away so will follow your suggestions when I get back
Gee you really are a treasure
effie c
effie c (6856)
1