Hijackthis Log File, Help?

Discussion in 'System Security & Infection Support' started by lifeismusic4, Apr 2, 2004.

  1. lifeismusic4

    lifeismusic4 VIP Member

    Joined:
    Apr 2, 2004
    Messages:
    132
    Likes Received:
    1
    Location:
    Vermont
    Hey everyone, a little while a ago my computer has started taking a longer time to log on to my desktop with Windows XP. i also have gotton about 15-20 icons on my desktop that i didn not put there... then, i was on AOL, and i got a little taskbar which had nothing to do with AOL. i have run ad-aware 6.0 and deleated lots of stuff, but my computer is still slow when logging on..one more thing, IE pops up sometimes trying to get to some page but AOL makes it so it can't. is spywaretrying to access the internet? any help would be appreciated!! here is my hijackthis log file: :help

    Logfile of HijackThis v1.97.7
    Scan saved at 7:40:07 PM, on 4/1/2004
    Platform: Windows XP SP1 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exe
    C:\WINDOWS\system32\cisvc.exe
    C:\WINDOWS\SYSTEM32\CTsvcCDA.EXE
    C:\WINDOWS\System32\gearsec.exe
    c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
    C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\wanmpsvc.exe
    C:\WINDOWS\System32\MsPMSPSv.exe
    c:\PROGRA~1\mcafee.com\vso\mcshield.exe
    C:\WINDOWS\system32\rundll32.exe
    C:\WINDOWS\Explorer.EXE
    C:\PROGRA~1\A4Tech\Mouse\Amoumain.exe
    C:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
    c:\program files\mcafee.com\agent\mcagent.exe
    C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb05.exe
    C:\WINDOWS\System32\hkcmd.exe
    C:\WINDOWS\BCMSMMSG.exe
    C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
    C:\WINDOWS\System32\CTHELPER.EXE
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\PROGRA~1\DELLMO~1\moh.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\America Online 9.0\aoltray.exe
    C:\Documents and Settings\All Users\Start Menu\Programs\Startup\BLLL.EXE
    C:\Program Files\Digital Line Detect\DLG.exe
    C:\WINDOWS\system32\cidaemon.exe
    C:\WINDOWS\system32\cidaemon.exe
    C:\Program Files\Common Files\Real\Update_OB\rnathchk.exe
    C:\Program Files\America Online 9.0\waol.exe
    C:\Program Files\America Online 9.0\shellmon.exe
    C:\Documents and Settings\Ebrahim\My Documents\Applications\HijackThis.exe
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://allaboutsearching.com/searchbar.html
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://allaboutsearching.com/searchbar.html
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = allaboutsearching.com
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://start.earthlink.net/
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.earthlink.net/partner/more/msie/button/search.html
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dellnet.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://allaboutsearching.com/searchbar.html
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://allaboutsearching.com/searchbar.html
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://allaboutsearching.com/searchbar.html
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=localhost:8080
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SYSTEM\blank.htm
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,Shellnext = http://www.dellnet.com/
    R3 - Default URLSearchHook is missing
    O2 - BHO: (no name) - {07AF9AC6-22CA-41F8-8F44-866A12E682CF} - C:\WINDOWS\System32\ieakasie.dll
    O2 - BHO: (no name) - {204FF7CA-22D7-011D-8753-08085D52C6DE} - C:\PROGRA~1\ISOINF~1\ace4.dll (file missing)
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
    O3 - Toolbar: part trust for - {AD8FBCEA-A942-E12F-AE8B-5830A05A3CD7} - C:\PROGRA~1\ISOINF~1\ace4.dll (file missing)
    O4 - HKLM\..\Run: [DwlClient] C:\Program Files\Common Files\Dell\EUSW\Support.exe
    O4 - HKLM\..\Run: [sr1exe] "C:\Documents and Settings\All Users\Application Data\Dell\Alert\252\updtSup3.exe"
    O4 - HKLM\..\Run: [WheelMouse] C:\PROGRA~1\A4Tech\Mouse\Amoumain.exe
    O4 - HKLM\..\Run: [VirusScan Online] c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [mmtask] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
    O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\McUpdate.exe
    O4 - HKLM\..\Run: [LVCOMS] C:\WINDOWS\System32\LVCOMS.EXE
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
    O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb05.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
    O4 - HKLM\..\Run: [DXM6Patch_981116] C:\WINDOWS\p_981116.exe /Q:A
    O4 - HKLM\..\Run: [BCMSMMSG] BCMSMMSG.exe
    O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
    O4 - HKLM\..\Run: [MCAgentExe] C:\Program Files\McAfee.com\Agent\mcagent.exe
    O4 - HKLM\..\Run: [WINDVDPatch] CTHELPER.EXE
    O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
    O4 - HKLM\..\Run: [Jet Detection] "C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe"
    O4 - HKLM\..\Run: [CTStartup] C:\Program Files\Creative\Splash Screen\CTEaxSpl.EXE /run
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
    O4 - HKLM\..\Run: [updater] C:\Program Files\Common files\updater\wupdater.exe
    O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\Clone CD\CloneCD\CloneCDTray.exe" /s
    O4 - HKLM\..\Run: [showcreative] C:\PROGRA~1\free pure\ping chin fast.exe
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [ModemOnHold] C:\PROGRA~1\DELLMO~1\moh.exe
    O4 - HKCU\..\Run: [E6TaskPanel] "C:\Program Files\EarthLink TotalAccess\TaskPanl.exe" -winstart
    O4 - Startup: PowerReg Scheduler V3.exe
    O4 - Global Startup: America Online 9.0 Tray Icon.lnk = C:\Program Files\America Online 9.0\aoltray.exe
    O4 - Global Startup: BLLL.EXE
    O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
    O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O9 - Extra button: AIM (HKLM)
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://download.yahoo.com/dl/installs/yinst.cab
    O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://207.188.7.150/1937e5b85de98ae2af20/netzip/RdxIE601.cab
    O16 - DPF: {886DDE35-E955-11D0-A707-000000521958} - http://69.56.176.78/webplugin.cab
    O16 - DPF: {AE1C01E3-0283-11D3-9B3F-00C04F8EF466} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
    O16 - DPF: {DDFFA75A-E81D-4454-89FC-B9FD0631E726} - http://www.bundleware.com/activeX/DS3/DS3.cab
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = J5782.tdmy.com
    O17 - HKLM\Software\..\Telephony: DomainName = J5782.tdmy.com
    O17 - HKLM\System\CCS\Services\Tcpip\..\{42B0A18A-49E6-49EA-B453-E64D0B01C1B7}: Domain = J5782.tdmy.com
    O17 - HKLM\System\CCS\Services\Tcpip\..\{C15E4677-61A3-4B43-BA35-20CF4DF5A1E2}: NameServer = 205.188.146.146
    O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = J5782.tdmy.com
    O17 - HKLM\System\CS1\Services\Tcpip\..\{42B0A18A-49E6-49EA-B453-E64D0B01C1B7}: Domain = J5782.tdmy.com
     
    Last edited: Apr 2, 2004
    lifeismusic4, Apr 2, 2004
    #1
    1. Advertisements

  2. lifeismusic4

    Fenis-Wolf VIP Member

    Joined:
    Apr 30, 2003
    Messages:
    2,951
    Likes Received:
    35
    Location:
    Ann Arbor, Mi
    Yeah, you have a lot of unneccessary things running. The music match and ipod stuff is unneccessary, as is the 'bill' program thats in global startup. And there some search stuff in there, that chaged your homepage, and default search page to alloftheweb.com
    I think you should get the newest version of AdAware, run it, delete what it finds, then get SpyBot Search and Destroy and run that as well.



    m
     
    Fenis-Wolf, Apr 2, 2004
    #2
    1. Advertisements

  3. lifeismusic4

    lifeismusic4 VIP Member

    Joined:
    Apr 2, 2004
    Messages:
    132
    Likes Received:
    1
    Location:
    Vermont
    Hey Fenris-Wolf! thanks for the tips...i ran ad-aware, and i ran spybot.. i deleated some things, but my desktop still loads really slowly (it takes about 35 seconds to load...) i also disabled the ipod and BLL thing. here is my new hijackthis log file.. can you please review this and see if i got everything? i really don't know what to do.. i have been told to run norton anti virus. should i do that? i am most thankful for your help.. i don't know what i'd do with out people like you.. thanks


    Logfile of HijackThis v1.97.7
    Scan saved at 10:58:15 PM, on 4/4/2004
    Platform: Windows XP SP1 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exe
    C:\WINDOWS\system32\cisvc.exe
    C:\WINDOWS\SYSTEM32\CTsvcCDA.EXE
    C:\WINDOWS\System32\gearsec.exe
    c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
    C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\wanmpsvc.exe
    C:\WINDOWS\System32\MsPMSPSv.exe
    C:\WINDOWS\system32\rundll32.exe
    c:\PROGRA~1\mcafee.com\vso\mcshield.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Common Files\Dell\EUSW\Support.exe
    C:\PROGRA~1\A4Tech\Mouse\Amoumain.exe
    C:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
    C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb05.exe
    C:\WINDOWS\System32\hkcmd.exe
    C:\WINDOWS\BCMSMMSG.exe
    C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
    C:\Program Files\McAfee.com\Agent\mcagent.exe
    C:\WINDOWS\System32\CTHELPER.EXE
    C:\PROGRA~1\DELLMO~1\moh.exe
    C:\Program Files\America Online 9.0\aoltray.exe
    C:\Documents and Settings\All Users\Start Menu\Programs\Startup\BLLL.EXE
    C:\Program Files\Digital Line Detect\DLG.exe
    C:\Program Files\America Online 9.0\waol.exe
    C:\Program Files\America Online 9.0\shellmon.exe
    C:\Program Files\America Online 9.0\aolwbspd.exe
    C:\WINDOWS\system32\cidaemon.exe
    C:\WINDOWS\system32\cidaemon.exe
    C:\Documents and Settings\Ebrahim\My Documents\Applications\HijackThis.exe
    C:\Program Files\Common Files\Real\Update_OB\rnathchk.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://allaboutsearching.com/searchbar.html
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://allaboutsearching.com/searchbar.html
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = allaboutsearching.com
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://start.earthlink.net/
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.earthlink.net/partner/more/msie/button/search.html
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dellnet.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://allaboutsearching.com/searchbar.html
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://allaboutsearching.com/searchbar.html
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = res://C:\PROGRA~1\Toolbar\toolbar.dll/sa
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=localhost:8080
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\SYSTEM\blank.htm
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,Shellnext = http://www.dellnet.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = res://C:\PROGRA~1\Toolbar\toolbar.dll/sa
    R3 - Default URLSearchHook is missing
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
    O3 - Toolbar: part trust for - {AD8FBCEA-A942-E12F-AE8B-5830A05A3CD7} - C:\PROGRA~1\ISOINF~1\ace4.dll (file missing)
    O3 - Toolbar: &Search Toolbar - {339BB23F-A864-48C0-A59F-29EA915965EC} - C:\PROGRA~1\Toolbar\toolbar.dll
    O4 - HKLM\..\Run: [DwlClient] C:\Program Files\Common Files\Dell\EUSW\Support.exe
    O4 - HKLM\..\Run: [sr1exe] "C:\Documents and Settings\All Users\Application Data\Dell\Alert\252\updtSup3.exe"
    O4 - HKLM\..\Run: [WheelMouse] C:\PROGRA~1\A4Tech\Mouse\Amoumain.exe
    O4 - HKLM\..\Run: [VirusScan Online] c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [mmtask] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
    O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\McAfee.com\Agent\McUpdate.exe
    O4 - HKLM\..\Run: [LVCOMS] C:\WINDOWS\System32\LVCOMS.EXE
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
    O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb05.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
    O4 - HKLM\..\Run: [DXM6Patch_981116] C:\WINDOWS\p_981116.exe /Q:A
    O4 - HKLM\..\Run: [BCMSMMSG] BCMSMMSG.exe
    O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
    O4 - HKLM\..\Run: [MCAgentExe] C:\Program Files\McAfee.com\Agent\mcagent.exe
    O4 - HKLM\..\Run: [WINDVDPatch] CTHELPER.EXE
    O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
    O4 - HKLM\..\Run: [Jet Detection] "C:\Program Files\Creative\SBLive\PROGRAM\ADGJDet.exe"
    O4 - HKLM\..\Run: [CTStartup] C:\Program Files\Creative\Splash Screen\CTEaxSpl.EXE /run
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\Clone CD\CloneCD\CloneCDTray.exe" /s
    O4 - HKLM\..\Run: [showcreative] C:\PROGRA~1\free pure\ping chin fast.exe
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [ModemOnHold] C:\PROGRA~1\DELLMO~1\moh.exe
    O4 - HKCU\..\Run: [E6TaskPanel] "C:\Program Files\EarthLink TotalAccess\TaskPanl.exe" -winstart
    O4 - Startup: PowerReg Scheduler V3.exe
    O4 - Global Startup: America Online 9.0 Tray Icon.lnk = C:\Program Files\America Online 9.0\aoltray.exe
    O4 - Global Startup: BLLL.EXE
    O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
    O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O9 - Extra button: AIM (HKLM)
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://download.yahoo.com/dl/installs/yinst.cab
    O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://207.188.7.150/1937e5b85de98ae2af20/netzip/RdxIE601.cab
    O16 - DPF: {886DDE35-E955-11D0-A707-000000521958} - http://69.56.176.78/webplugin.cab
    O16 - DPF: {AE1C01E3-0283-11D3-9B3F-00C04F8EF466} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
    O16 - DPF: {DDFFA75A-E81D-4454-89FC-B9FD0631E726} - http://www.bundleware.com/activeX/DS3/DS3.cab
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = J5782.tdmy.com
    O17 - HKLM\Software\..\Telephony: DomainName = J5782.tdmy.com
    O17 - HKLM\System\CCS\Services\Tcpip\..\{42B0A18A-49E6-49EA-B453-E64D0B01C1B7}: Domain = J5782.tdmy.com
    O17 - HKLM\System\CCS\Services\Tcpip\..\{C15E4677-61A3-4B43-BA35-20CF4DF5A1E2}: NameServer = 205.188.146.146
    O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = J5782.tdmy.com
    O17 - HKLM\System\CS1\Services\Tcpip\..\{42B0A18A-49E6-49EA-B453-E64D0B01C1B7}: Domain = J5782.tdmy.com
     
    lifeismusic4, Apr 5, 2004
    #3
  4. lifeismusic4

    Fenis-Wolf VIP Member

    Joined:
    Apr 30, 2003
    Messages:
    2,951
    Likes Received:
    35
    Location:
    Ann Arbor, Mi
    Uncheck
    C:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exe
    C:\WINDOWS\SYSTEM32\CTsvcCDA.EXE
    C:\WINDOWS\System32\gearsec.exe
    C:\WINDOWS\wanmpsvc.exe
    C:\WINDOWS\System32\MsPMSPSv.exe
    C:\Program Files\Common Files\Dell\EUSW\Support.exe
    C:\PROGRA~1\A4Tech\Mouse\Amoumain.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
    c:\WINDOWS\BCMSMMSG.exe
    C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
    C:\WINDOWS\System32\CTHELPER.EXE
    C:\PROGRA~1\DELLMO~1\moh.exe
    C:\Program Files\America Online 9.0\aoltray.exe
    C:\Documents and Settings\All Users\Start Menu\Programs\Startup\BLLL.EXE
    C:\Program Files\Digital Line Detect\DLG.exe
    C:\Program Files\America Online 9.0\waol.exe
    C:\Program Files\America Online 9.0\shellmon.exe
    C:\Program Files\America Online 9.0\aolwbspd.exe
    C:\Program Files\Common Files\Real\Update_OB\rnathchk.exe
     
    Fenis-Wolf, Apr 6, 2004
    #4
  5. lifeismusic4

    lifeismusic4 VIP Member

    Joined:
    Apr 2, 2004
    Messages:
    132
    Likes Received:
    1
    Location:
    Vermont
    where do i uncheck those? in hijackthis? can you be describe where to do this? thanks a lot! sorry i'm being a pain-in-the-butt...
     
    lifeismusic4, Apr 6, 2004
    #5
  6. lifeismusic4

    Fenis-Wolf VIP Member

    Joined:
    Apr 30, 2003
    Messages:
    2,951
    Likes Received:
    35
    Location:
    Ann Arbor, Mi
    If you go start, run, then type msconfig, you can go in under the startup tab and uncheck everything you don't need, most of which I outlined above
     
    Fenis-Wolf, Apr 6, 2004
    #6
  7. lifeismusic4

    lifeismusic4 VIP Member

    Joined:
    Apr 2, 2004
    Messages:
    132
    Likes Received:
    1
    Location:
    Vermont
    well, i already went to msconfig, but some of the things you told me to uncheck are things i know are not bad. (like my mouse, my dell modem-on-hold, my sound card, etc..) would you like me to give you a list of the things that i do have in msconfig under startup? the only problem i have at the moment is that it takes about 35 seconds to get from where i sign on to XP Home and it stays on "loading you personal settings" for as i said, 35 seconds.. some of the things that you told me to uncheck aren't even there..got any brainstorms?
     
    lifeismusic4, Apr 6, 2004
    #7
  8. lifeismusic4

    lifeismusic4 VIP Member

    Joined:
    Apr 2, 2004
    Messages:
    132
    Likes Received:
    1
    Location:
    Vermont
    one more thing, i unchecked the BLLL program and then (i haven't restarted) i opened msconfig again, and BLLL was checked again! is this some kind of automatic virus thing? man i am lost..
     
    lifeismusic4, Apr 6, 2004
    #8
  9. lifeismusic4

    James Photojournalist

    Joined:
    Dec 24, 2002
    Messages:
    6,662
    Likes Received:
    35
    Uncheck them in HijackThis. This will delete the entries from the registry.
     
    James, Apr 6, 2004
    #9
  10. lifeismusic4

    lifeismusic4 VIP Member

    Joined:
    Apr 2, 2004
    Messages:
    132
    Likes Received:
    1
    Location:
    Vermont
    hey guys, i have aother question.. IE sometimes ramdonly treis to access a website that has "tdmy" domain name or somewhere in the URL(i forget where) and there are also 4-5 things in hijackthis that have to do with this tdmy thing..is it allright if i deleat those things? i'm really sorry for all the trouble, but i thank you none the less.
     
    lifeismusic4, Apr 9, 2004
    #10
  11. lifeismusic4

    Fenis-Wolf VIP Member

    Joined:
    Apr 30, 2003
    Messages:
    2,951
    Likes Received:
    35
    Location:
    Ann Arbor, Mi
    Yeah, just go ahead
     
    Fenis-Wolf, Apr 9, 2004
    #11
  12. lifeismusic4

    lifeismusic4 VIP Member

    Joined:
    Apr 2, 2004
    Messages:
    132
    Likes Received:
    1
    Location:
    Vermont
    thanks!!! you are great!!
     
    lifeismusic4, Apr 9, 2004
    #12
  13. lifeismusic4

    James Photojournalist

    Joined:
    Dec 24, 2002
    Messages:
    6,662
    Likes Received:
    35
    Yep, go ahead and trash those entries.
     
    James, Apr 9, 2004
    #13
    1. Advertisements

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments (here). After that, you can post your question and our members will help you out.