Custom Search
Join the PC homebuilding revolution! Read the all-new, FREE 200-page online guide: How to Build Your Own PC!
NOTE: Using robot software to mass-download the site degrades the server and is prohibited. See here for more.
Find The PC Guide helpful? Please consider a donation to The PC Guide Tip Jar. Visa/MC/Paypal accepted.
Page 1 of 2 12 LastLast
Results 1 to 25 of 29

Thread: Task Manager problems

  1. #1

    Task Manager problems

    new to this forum. I am pushing CTRL + ATL + Delete, and taskman does not appear... I have downloaded processviewer.exe as an alternat until i could get it fixed. I dun know what information u need to help me if ne, so if u need a HJT log or nething like that let me know...

  2. #2
    wellcome
    assuming u are running Xp - maybe system restore will help u.

  3. #3
    Join Date
    Jul 2001
    Location
    Wyncote, PA, USA
    Posts
    10,167
    Welcome to forums.

    Please tell us more about your PC.

    CPU

    RAm

    OS

    Any new software or hardware installed?

    Broadband or Dial-UP?

    Which AV software and is it updated?

    Software Firewall?? If so Which one?

    What browser do you use?

    Have you done any scans for spyware?
    No two moments are alike and a person who thinks that any two moments are alike has never lived.

    A.J. Heschel

  4. #4
    hey classic, i got an intel pentium4 proc. with windows office xp...

    umm... antivirus program that i have is AVG free

    no firewall... don't really have tons of time to learn about them...

    umm... i use to use internet exlporer, but it kept switching to this about:blank page, so now i use Opera

    ...and... i have spybot, ad-adware Se, spyblaster, and hijackthis

    i'll post by HJT log for you to see how bad of shape my comp truly is...

    Logfile of HijackThis v1.99.1
    Scan saved at 11:21:50 PM, on 8/31/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Windows Defender\MsMpEng.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    C:\WINDOWS\System32\CTsvcCDA.exe
    c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
    C:\Program Files\Sony\MD Simple Burner\NetMDSB.exe
    C:\Program Files\McAfee.com\Agent\mcagent.exe
    C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
    C:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
    C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
    C:\Program Files\Creative\SBLive\Diagnostics\diagent.exe
    C:\WINDOWS\System32\nvsvc32.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
    C:\PROGRA~1\VERIZO~1\SUPPOR~1\SMARTB~1\MotiveSB.ex e
    C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
    C:\WINDOWS\System32\MsPMSPSv.exe
    C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
    C:\Program Files\Windows Defender\MSASCui.exe
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\AIM\aim.exe
    C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    C:\PROGRA~1\DELLSU~1\DSAgnt.exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hposol08.exe
    c:\PROGRA~1\mcafee.com\vso\mcshield.exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
    C:\WINDOWS\System32\HPZipm12.exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
    C:\Program Files\Opera\Opera.exe
    C:\Documents and Settings\Cory Schutz\My Documents\Downloads\hijackthis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\DOCUME~1\CORYSC~1\LOCALS~1\Temp\se.dll/sp.html
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\DOCUME~1\CORYSC~1\LOCALS~1\Temp\se.dll/sp.html
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
    R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = 127.0.0.1
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: (no name) - {5D8F06E9-AD3C-4193-A248-A77C2230F794} - C:\WINDOWS\System32\djdb.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O2 - BHO: (no name) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - (no file)
    O2 - BHO: (no name) - {E552EEFC-DE97-45D4-BA1A-F534A1B4A579} - (no file)
    O4 - HKLM\..\Run: [MCAgentExe] C:\Program Files\McAfee.com\Agent\mcagent.exe
    O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\McAfee.com\Agent\mcupdate.exe
    O4 - HKLM\..\Run: [diagent] "C:\Program Files\Creative\SBLive\Diagnostics\diagent.exe" startup
    O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
    O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
    O4 - HKLM\..\Run: [VirusScan Online] c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
    O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\VERIZO~1\SUPPOR~1\SMARTB~1\MotiveSB.ex e
    O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
    O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
    O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    O4 - HKCU\..\Run: [DellSupport] "C:\PROGRA~1\DELLSU~1\DSAgnt.exe" /startup
    O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
    O4 - Global Startup: officejet 6100.lnk = ?
    O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.co...?1108913912828
    O18 - Filter: text/html - {C66507CA-3D57-4B41-B413-C84597FE228D} - C:\WINDOWS\System32\djdb.dll
    O18 - Filter: text/plain - {C66507CA-3D57-4B41-B413-C84597FE228D} - C:\WINDOWS\System32\djdb.dll
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
    O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
    O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
    O23 - Service: McAfee.com McShield (McShield) - Unknown owner - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
    O23 - Service: McAfee.com VirusScan Online Realtime Engine (MCVSRte) - Mcafee.com Corporation - c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
    O23 - Service: MD Simple Burner Service (NetMDSB) - Sony Corporation - C:\Program Files\Sony\MD Simple Burner\NetMDSB.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
    O23 - Service: PACSPTISVR - Unknown owner - C:\Program Files\Common Files\Sony Shared\AVLib\Pacsptisvr.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
    O23 - Service: Seclaipcmc - Unknown owner - (no file)
    O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\Sptisrv.exe

  5. #5
    Join Date
    Jul 2001
    Location
    Wyncote, PA, USA
    Posts
    10,167
    Please print out this post so that you have a hard copy of these instructions. You will need to keep Internet Explorer and Windows Explorer (including My Computer) closed throughout the entire process.

    You have resident protection from Windows Defender and TeaTimer running... This creates 2 problems... One is that it may be blocking the proper uninstall of NewDotNet... The second is that they may conflict with each other making them both less effective and slowing down your system...

    1) Run Spybot-S&D
    2) Go to the Mode menu and make sure "Advanced Mode" is selected
    3) On the left hand side, choose Tools -> Resident
    4) Uncheck "Resident TeaTimer" and OK any prompts
    5) Restart your computer.

    and... This is outdated, but I believe the process is the same:

    Before starting any cleaning steps, please disable the Microsoft Anti-Spyware real-time protection:
    1. Right-click on the Microsoft Anti-Spyware tray icon by your clock (it's the one with the red and yellow bulls-eye).
    2. Click on "Security Agents Status".
    3. Click on "Disable real-time protection".


    Next, open Microsoft Anti-Spyware.
    1. Click on the Options menu, then Settings.
    2. Select "Real Time Protection" from the left column.
    3. Uncheck "Enable (MSAS) Security Agents" and "Enable real-time spyware threat protection".
    4. Click the Save button.

    Finally, Right-click on the MSAS tray icon, select "Shutdown Microsoft Antispyware", and click "Yes" in the dialog that comes up.

    You can reenable it once your system is clean.



    Please download Intermute's CWShredder from here:
    http://cwshredder.net/bin/CWShredder.exe
    Save it to the desktop but do NOT run it yet.

    Then please download About:Buster from here:
    http://www.malwarebytes.org/AboutBuster.zip
    Unzip it to the desktop, run it, Check for Updates, and update the files, but do NOT run a scan yet.

    Please download the trial version of Ewido Security Suite here:
    http://www.ewido.net/en/download/
    Install it, and update the definitions to the newest files. Do NOT run a scan yet.

    Next, please reboot your computer in Safe Mode by doing the following:
    1) Restart your computer
    2) Just before the Windows starts to load, press F8.
    3) Instead of Windows loading as normal, a menu should appear
    4) Select the first option, to run Windows in Safe Mode.

    For additional help in booting into Safe Mode, see the following site:
    http://www.pchell.com/support/safemode.shtml


    Once in Safe Mode, please run CWShredder, and click Fix.

    Then please run About:Buster and click Start to begin the scan. If prompted to end the Explorer.exe process, click Yes. Your desktop may disappear --- this is normal. Allow the program to scan twice, and when complete click "Save Log". This will create a text file called "AB Logfile.txt" in the folder where About:Buster is saved. I will want to see this logfile later.

    Then please run Ewido, and run a full scan. Save the log from the scan for me.

    Finally, please run HijackThis, click Scan, and check:

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\DOCUME~1\CORYSC~1\LOCALS~1\Temp\se.dll/sp.html
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\DOCUME~1\CORYSC~1\LOCALS~1\Temp\se.dll/sp.html
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
    R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank

    O2 - BHO: (no name) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - (no file)
    O2 - BHO: (no name) - {E552EEFC-DE97-45D4-BA1A-F534A1B4A579} - (no file)

    O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE

    O18 - Filter: text/html - {C66507CA-3D57-4B41-B413-C84597FE228D} - C:\WINDOWS\System32\djdb.dll
    O18 - Filter: text/plain - {C66507CA-3D57-4B41-B413-C84597FE228D} - C:\WINDOWS\System32\djdb.dll

    Close all program and browser windows except Hijackthis and click fix checked.

    Post back with:
    1. A New Hijackthis log
    2. The Ewido Log
    3. The About Buster Log
    No two moments are alike and a person who thinks that any two moments are alike has never lived.

    A.J. Heschel

  6. #6
    Join Date
    Jul 2002
    Location
    Minn
    Posts
    17,373
    Please excuse the intrusion... You also need to disable TeaTimer...

    1) Run Spybot-S&D
    2) Go to the Mode menu and make sure "Advanced Mode" is selected
    3) On the left hand side, choose Tools -> Resident
    4) Uncheck "Resident TeaTimer" and OK any prompts
    5) Restart your computer.
    Budfred ..... Caveat Emptor....

    Helpful links SpywareBlaster... HijackThis... ATF Cleaner...

    Post a complaint about malware here!!
    So how did I get infected in the first place??

    MS MVP 2006 and ASAP member since 2004...

    If you PM me for help, expect an irritated response... Post in the forum...

  7. #7
    thnx for the instructions, hopefully this will help...

  8. #8
    Join Date
    Sep 2006
    Location
    England
    Posts
    14
    Quote Originally Posted by Sputzy

    no firewall... don't really have tons of time to learn about them...
    Use windows firewall then
    Right click your internet connection icon....>properties......>advanced>>>>>>.enable windows firewall.

    Or you can just do it from Security Center in control panel.
    Option 2, Zonealarm

  9. #9
    Join Date
    Jul 2001
    Location
    Wyncote, PA, USA
    Posts
    10,167
    Quote Originally Posted by classicsoftware
    1) Run Spybot-S&D
    2) Go to the Mode menu and make sure "Advanced Mode" is selected
    3) On the left hand side, choose Tools -> Resident
    4) Uncheck "Resident TeaTimer" and OK any prompts
    5) Restart your computer.
    I didn't think I missed that.... But thanks for looking over my shoulder.....
    No two moments are alike and a person who thinks that any two moments are alike has never lived.

    A.J. Heschel

  10. #10
    Join Date
    Jul 2002
    Location
    Minn
    Posts
    17,373
    Quote Originally Posted by classicsoftware
    I didn't think I missed that.... But thanks for looking over my shoulder.....
    Ooops... Sorry I missed that...

    vaio,

    It isn't a good idea to start a firewall in the midst of a fix and there are a number of simple alternatives that are much safer than the Windows firewall... Kerio has a simple mode that doesn't require any user intervention for instance...
    Budfred ..... Caveat Emptor....

    Helpful links SpywareBlaster... HijackThis... ATF Cleaner...

    Post a complaint about malware here!!
    So how did I get infected in the first place??

    MS MVP 2006 and ASAP member since 2004...

    If you PM me for help, expect an irritated response... Post in the forum...

  11. #11
    um... yeah, i was following your instructions as well as i could, but ran into many different problems. Mainly that my computer is sooooo slow. Everything was good until i ran Ewido Security in Safe Mode. It ran a 2 1/2 hour scan, and after it was repairing it went into a full black screen, and i couln't do anything, so i cut the power, and restarted computer, but now my computer takes around a half an hour just to start up : ( This took a 5 hours of so of downloading and scanning, and my comp has seemed to make no noticeable progress.

    About a year ago my computer was given to an IT guy at my mother's work, and he erased everything, then reinstalled Xp, and it was like a brand new computer. This only took about an hour.

    After all the problems i was running into yesterday i feel that this may be the fastest way to get the results that i want.

    Only problem is that i don't know how to fully erase system, and was hoping that sumone could give me sum help...

  12. #12
    Join Date
    Jul 2001
    Location
    Wyncote, PA, USA
    Posts
    10,167
    Skip the Ewido step for now and follow the rest of the suggestions and then post back with the results.

    If you want to start over, just reformat the drive and reinstall Windows.... If you do that, please let us know so we can help you protect yourself. It will take more than one hour to reinstall windows and install all of your drivers, but it is up to you.
    No two moments are alike and a person who thinks that any two moments are alike has never lived.

    A.J. Heschel

  13. #13
    k, this i will do, but i gotta wait until atleast tuesday...

    i'll get back to you with the results

    ty classic

  14. #14
    Here's new logfile after I ran CWShredder, About:Blaster, and Spybot S&D in Safe Mode

    Logfile of HijackThis v1.99.1
    Scan saved at 6:21:01 PM, on 9/4/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Windows Defender\MsMpEng.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\McAfee.com\Agent\mcagent.exe
    C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
    C:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
    C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
    C:\Program Files\Creative\SBLive\Diagnostics\diagent.exe
    C:\PROGRA~1\VERIZO~1\SUPPOR~1\SMARTB~1\MotiveSB.ex e
    C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
    C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
    C:\Program Files\Windows Defender\MSASCui.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    C:\Program Files\AIM\aim.exe
    C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    C:\PROGRA~1\DELLSU~1\DSAgnt.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    C:\WINDOWS\System32\CTsvcCDA.exe
    C:\Program Files\ewido anti-spyware 4.0\guard.exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
    c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hposol08.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
    C:\Program Files\Sony\MD Simple Burner\NetMDSB.exe
    C:\WINDOWS\System32\nvsvc32.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\System32\MsPMSPSv.exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
    c:\PROGRA~1\mcafee.com\vso\mcshield.exe
    C:\WINDOWS\System32\HPZipm12.exe
    C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
    C:\Documents and Settings\Cory Schutz\My Documents\Downloads\hijackthis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = 127.0.0.1
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: (no name) - {5D8F06E9-AD3C-4193-A248-A77C2230F794} - (no file)
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O2 - BHO: (no name) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - (no file)
    O2 - BHO: (no name) - {E552EEFC-DE97-45D4-BA1A-F534A1B4A579} - (no file)

    O4 - HKLM\..\Run: [MCAgentExe] C:\Program Files\McAfee.com\Agent\mcagent.exe
    O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\McAfee.com\Agent\mcupdate.exe
    O4 - HKLM\..\Run: [diagent] "C:\Program Files\Creative\SBLive\Diagnostics\diagent.exe" startup
    O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
    O4 - HKLM\..\Run: [VirusScan Online] c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
    O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\VERIZO~1\SUPPOR~1\SMARTB~1\MotiveSB.ex e
    O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
    O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
    O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    O4 - HKCU\..\Run: [DellSupport] "C:\PROGRA~1\DELLSU~1\DSAgnt.exe" /startup
    O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O4 - Global Startup: hp psc 2000 Series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpobnz08.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
    O4 - Global Startup: officejet 6100.lnk = ?
    O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.co...?1108913912828
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
    O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
    O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
    O23 - Service: McAfee.com McShield (McShield) - Unknown owner - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
    O23 - Service: McAfee.com VirusScan Online Realtime Engine (MCVSRte) - Mcafee.com Corporation - c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
    O23 - Service: MD Simple Burner Service (NetMDSB) - Sony Corporation - C:\Program Files\Sony\MD Simple Burner\NetMDSB.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
    O23 - Service: PACSPTISVR - Unknown owner - C:\Program Files\Common Files\Sony Shared\AVLib\Pacsptisvr.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
    O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\Sptisrv.exe

    I had a problem with two of the BHO (no file) entries, highlighted in dark red), which came back even after i checked to fix them

    --TY for help, and ne other advice would be greatly appreciated--

  15. #15
    Join Date
    Jul 2001
    Location
    Wyncote, PA, USA
    Posts
    10,167
    I need the about buster logs as well.
    No two moments are alike and a person who thinks that any two moments are alike has never lived.

    A.J. Heschel

  16. #16
    yo, can you just gimmie a list that tells me how to delete everything on comp and reinstall Xp, cause this is really pissing me off
    Last edited by Sputzy; 09-08-2006 at 06:23 PM.

  17. #17
    Join Date
    Jul 2001
    Location
    Wyncote, PA, USA
    Posts
    10,167
    First of all, a little decorum here. You may be upset, but your not pixxed off. Get it.

    Next, if you want to give up, that's up to you. Just pop in your windows CD and reformat the drive.
    No two moments are alike and a person who thinks that any two moments are alike has never lived.

    A.J. Heschel

  18. #18
    I officially got everything back in order, thnx for your time and advice Classic : )

  19. #19
    Join Date
    Jul 2001
    Location
    Wyncote, PA, USA
    Posts
    10,167
    Did you reinstall Windows? And is that the reason for the SP1 v SP2 question in the other post?

    You better get setup with protections or you will be right back where you started with an infected PC.
    No two moments are alike and a person who thinks that any two moments are alike has never lived.

    A.J. Heschel

  20. #20
    Join Date
    Feb 2006
    Location
    Seattle
    Posts
    495
    Haven't read all the intervening post in detail, but to address your initial question, another way to get to task manager is to right click the task bar at the bottom of the window & select "task manager".

    Hope that helps

    Fred

  21. #21
    Join Date
    Jul 2001
    Location
    Wyncote, PA, USA
    Posts
    10,167
    Quote Originally Posted by Fred Forsythe View Post
    Haven't read all the intervening post in detail, but to address your initial question, another way to get to task manager is to right click the task bar at the bottom of the window & select "task manager".

    Hope that helps

    Fred
    NO duh......

    This computer was so seriously infected, the task manager would not run, so the user could not stop the malware by stopping the processes.....
    No two moments are alike and a person who thinks that any two moments are alike has never lived.

    A.J. Heschel

  22. #22
    Join Date
    May 2005
    Location
    Tallahassee, FL
    Posts
    1,082
    Quote Originally Posted by classicsoftware View Post
    NO duh......
    Welcome back to Friday night fights at the PCGuide forums. We know it's all good-natured and it's nothing personal, but you're in store for some major action tonight. Weighing in at thousands of posts each, watch a couple heavy-hitting mods keep each other in line.

    Wait, what's this? A newish poster guy takes a shot at second guessing one of the forum masters. Boffo!! Sent back to the locker room with a quick retort. Maybe he'll put on a couple of posts before trying that again.

    Sorry guys. I'm just playing and entertaining myself a little. No offense intended to anybody involved.

  23. #23
    Join Date
    Jul 2001
    Location
    Wyncote, PA, USA
    Posts
    10,167
    Quote Originally Posted by pangea33 View Post
    Welcome back to Friday night fights at the PCGuide forums. We know it's all good-natured and it's nothing personal, but you're in store for some major action tonight. Weighing in at thousands of posts each, watch a couple heavy-hitting mods keep each other in line.

    Wait, what's this? A newish poster guy takes a shot at second guessing one of the forum masters. Boffo!! Sent back to the locker room with a quick retort. Maybe he'll put on a couple of posts before trying that again.

    Sorry guys. I'm just playing and entertaining myself a little. No offense intended to anybody involved.
    I was probably a little harsh. But when he started out by saying:

    Haven't read all the intervening post in detail
    I thought a little sarcasm was in order....
    No two moments are alike and a person who thinks that any two moments are alike has never lived.

    A.J. Heschel

  24. #24
    Join Date
    May 2005
    Location
    Tallahassee, FL
    Posts
    1,082
    You weren't too harsh, I just thought I was being funny. This actually all started in my mind by watching how swiftly you mods take care of the would be spammers on these forums. Keep in mind I am not talking about anyone in this thread, just in general.

    You guys are extremely knowledgeable and helpful, but you don't take any s**t. Thanks for your hard work. Yuck, enough warm fuzzies. I'm not even drinking.

  25. #25
    Join Date
    Feb 2006
    Location
    Seattle
    Posts
    495
    Quote Originally Posted by classicsoftware View Post
    NO duh......

    This computer was so seriously infected, the task manager would not run, so the user could not stop the malware by stopping the processes.....
    duh.....? Nice, very nice. And from a MODERATOR yet. Way to encourage civil discussion. Why don't I just stick to newsgroups? I didn't say it would fix his problem, I was just mentioning there was ANOTHER way to get into task manager. So far, I've only gotten advise here, pardon me from trying to CONTRIBUTE in my "small way". And thanks for the encouragement to do so in the future.

    Fred

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •