Forum Home
Press F1
 
Thread ID: 69441 2006-06-01 22:03:00 spybot update -again and again effie c (6856) Press F1
Post ID Timestamp Content User
459784 2006-06-02 06:14:00 Hi S J,
:cool:
have done all that you said, have chatted with smithie 38 on msn and he has 1 more than you for blocked files, but near enough the same---I have 3182 only - I checked the files ( after uninstalling S B and redownloading- all, including those english files, you talk about)--- re checked on updates but still l get only the above number of files

N B ( I am running in conjunction with Spybot - spyware blaster which is acknowleged and recommended by Spy bot - and that has 6000 odd blocked files of it's own -- would that bring me up to what you guys have but by a different route?
O K I will await your reply before I go for the Beta version
:badpc:
Effie c
effie c (6856)
459785 2006-06-02 07:01:00 Hi SJ 46 ,
have decided to download beta as you suggest - it will take another 1/2 hour apparently- must be big even with my 3 GHz cpu etc
will still welcome comments as you find thee time please
Effie c
effie c (6856)
459786 2006-06-02 07:13:00 ??

Having a fast CPU, and if you're not on adsl, wont get you around any faster .

Or let you download files any faster .

The speed of the CPU has nothing to do with downloading files on the net .
Speedy Gonzales (78)
459787 2006-06-02 07:28:00 Hi
ah!but I am on BB and there apparently was 49 minutes then to download still have 30 mins to go
even with adsl
wish me luck
effie c
effie c (6856)
459788 2006-06-02 07:41:00 Hi, ah!

But I am on BB and there apparently was 49 minutes then to download still have 30 mins to go even with adsl wish me luck

effie c

Well, in that case, its a telecom screwup, as usual :xmouth:
Speedy Gonzales (78)
459789 2006-06-02 08:09:00 Hi,
is this what you want?
SG ,Logfile of HijackThis v1.99.1
Scan saved at 7:04:38 PM, on 6/2/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\FaxTalk NetOnHold\Ftnohmgr.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I3T 1.EXE
D:\Bin\INSTAN~1.EXE
D:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
D:\CalCheck.exe
C:\WINDOWS\twain_32\CIS600X\WATCH.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\SAVScan.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
D:\Program Files\ Yahoo! \Messenger\ymsgr_tray.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Messenger\msmsgs.exe
C:\DOCUME~1\EDCHIB~1\LOCALS~1\Temp\Temporary Directory 1 for hijackthis[1].zip\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = us.rd.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = us.rd.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://xtra.co.nz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = us.rd.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = us.rd.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = us.rd.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = us.rd.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\ Yahoo! \Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - D:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - D:\Program Files\ Yahoo! \Common\yiesrvc.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O2 - BHO: (no name) - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - (no file)
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\ Yahoo! \Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: (no name) - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - (no file)
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [NetOnHold] C:\Program Files\FaxTalk NetOnHold\Ftnohmgr.exe
O4 - HKLM\..\Run: [PRONoMgr.exe] C:\Program Files\Intel\NCS\PROSet\PRONoMgr.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [EPSON Stylus C45 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I3T 1.EXE /P23 "EPSON Stylus C45 Series" /O6 "USB001" /M "Stylus C45"
O4 - HKLM\..\Run: [EPSON Stylus C45 Series (Copy 1)] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I3T 1.EXE /P32 "EPSON Stylus C45 Series (Copy 1)" /O6 "USB001" /M "Stylus C45"
O4 - HKLM\..\Run: [InstantAccess] d:\Bin\INSTAN~1.EXE /h
O4 - HKLM\..\Run: [RegisterDropHandler] d:\Bin\REGIST~1.EXE
O4 - HKLM\..\Run: [PE2CKFNT SE] d:\ChkFont.exe
O4 - HKLM\..\RunServices: [RegisterDropHandler] d:\Bin\REGIST~1.EXE
O4 - HKCU\..\Run: [ Yahoo! Pager] D:\Program Files\ Yahoo! \Messenger\ypager.exe -quiet
O4 - HKCU\..\Run: [SpybotSD TeaTimer] D:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = D:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Photo Express Calendar Checker SE.lnk = D:\CalCheck.exe
O4 - Global Startup: Watch.lnk = C:\WINDOWS\twain_32\CIS600X\WATCH.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: & Yahoo! Search - file:///D:\Program Files\ Yahoo! \Common/ycsrch.htm
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O8 - Extra context menu item: Yahoo! &Dictionary - file:///D:\Program Files\ Yahoo! \Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///D:\Program Files\ Yahoo! \Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///D:\Program Files\ Yahoo! \Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - D:\Program Files\ Yahoo! \Common\yiesrvc.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - D:\Program Files\ Yahoo! \Common\yinsthelper.dll
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
effie c (6856)
459790 2006-06-02 08:17:00 Umm no, I dont want your HJT log. Speedy Gonzales (78)
459791 2006-06-02 08:52:00 Hi G S,
I know I am dumb but I get the same file you rejected or a site that tells me nothing but---- is merijin .org, but where do I select that which you want
O K now what?
Effie c
effie c (6856)
459792 2006-06-02 14:05:00 You are not going to be able to get protection from a different source as you feel possible from SpywareBlaster . It is an entirely different set of instructions and protection, although there is a little overlap .

If you are on DSL and you are getting 45 minutes to change/update Spybot, then there's something grossly wrong with your system . Are you using a wireless connection . . . . it might be "shared" with another p/c that you don't know about . That's just too long to get anything from Spybot .

I suspect that you are heavily infected with something . . . and I notice that you are using Nortons . . . a bad choice for security in my opinion, but I am not alone in that arena .

You might have to do a burn-down and format a clean install to get around all this nonsense and get a purged system .

I will be out of the area (to Long Beach, CA . ,) for the daylight hours of the next three days (Fri/Sat/Sun), but will get back to you in our evening time with help . . . . .

But, before you do anything hasty . . . run a copy of Belarc Adviser to get a print out of what you have, including your key numbers etc . . . get it here:

. belarc . com/free_download . html" target="_blank">www . belarc . com

. . . . . . . . . for future reference in case something gets messed up .

Merjin is the newest home for Spybot . . . . . . you can use the MajorGeeks site if you feel happier . I use the second Texas site from the top, as it seems to never get hang-ups . . majorgeeks . com/download2471 . html" target="_blank">www . majorgeeks . com

While you're on that site . . DO NOT click on any of the other things there . They may or may not safe to use as they are basically advertisers who want you to buy something . . .

Another unsafe thing to do: Using online scanners . Most times they insert all sorts of malware that can clog your system with garbage and take a big chunk of the speed outta your connection too .

Will be back in about 14 hours . . bye for now .
SurferJoe46 (51)
459793 2006-06-02 22:22:00 Hi Surfer Joe,Speedy Gonzales et al
Now in New Zealand we too have good surf--the wet kind :) -so Californian beaches are not as good as ours :thumbs:
You astound me with your ready access to this forum, although I should not be
I decided that Speedy Gonzales had a point- 56 mins to download what was at that time quoted as 14 mb - goodness knows where I had gone to to even start this--so I deleted all reference to spybot, using Regseeker, did a computer search as well - found nothing more relevant , went to Major Geeks as you suggested and downloaded from Australia ( our English spelling and date recording is different to american english :lol: ---4 minutes at 32kB/s not 1 as before
It works !! and now I have a log going back to March 3 and 10659 items blocked ( as against Smithie38 and Speedy G 11000 odd-- but far better than my original 3000 odd
Thank you all
:thumbs:
effie c
effie c (6856)
1 2 3