[Help!!!!11111] -



Help!!!!11111

Discuss Help!!!!11111



Posted by: Babyphat

i get yahoo links popping up on ma yahoo when im chating..how do i take it off

i got a pic of the kinda links that pops up


[IMG]http://img79.exs.cx/img79/5940/cdd6zp.jpg[/IMG]

BTW..this is a COOL SITE



Posted by: willsko87

[QUOTE][i]Originally posted by Babyphat [/i]
[B]
<img src="http://img122.exs.cx/img122/6051/cdd0fk.jpg" width="351" height="375" alt="Image Hosted by ImageShack.us" />
[/B][/QUOTE]

you need to copy the link that is btween [ IMG ] [ /IMG ] <-- no spaces but it wont post without them



Posted by: Babyphat

yea im tryna to fix it



Posted by: DMo224

That .jpg looks like part of a chat.

Dave :D



Posted by: Elite Bullet

Thats what i was thinking so i didn't really reply.
I thought it was some kinda joke



Posted by: Babyphat

NAH YALL IT AINT NO JOKE...I GOT VIRUS ON MA YAHOO MESSANGER...THOSE LINKS YALL SEE IN THE MESSAGE POPS UP WHEN I CHAT...THATS WHAT IM TRYNA SHOW YALL....I NEED HELP TO STOP THOSE LINKS FROM POPPING



Posted by: Elite Bullet

Well download SpyBot S&D or Ad-Aware and scan your system for spyware



Posted by: Babyphat

i tried that...it iant work



Posted by: Elite Bullet

what do u mean it aint work. Do you mean it dont find anything or the program doesn't work?



Posted by: DMo224

A friend of mine had some messages pop-in their chat like that, but it was on ICQ. I'll do some more looking into that.

In the meantime, please check out the "common instructions" link in my sig and try those out. You may have some "nasty" on your computer that you don't want.

Dave :D



Posted by: Elite Bullet

Yep and maybe download [URL=http://www.majorgeeks.com/download3155.html]Hijack This![/URL] and show us the log so we can tell you if you need to get rid of anything. But dont do anything but scan with Hijack This! and show us the log. I do not take any responsibility if you accidently delete an important program.



Posted by: Babyphat

i mean i scan ma PC with ad adware and i still got the problem



Posted by: Elite Bullet

k well just go and download [URL=http://www.majorgeeks.com/download3155.html]Hijack This![/URL] and show us the scan log so we can tell you what to get rid of.



Posted by: Babyphat

ok i'll try that 3 lite



Posted by: Babyphat

ok here's the log

Logfile of HijackThis v1.98.2
Scan saved at 9:05:18 PM, on 12/8/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exe
C:\WINDOWS\System32\DRIVERS\CDANTSRV.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
C:\windows\system\hpsysdrv.exe
C:\WINDOWS\System32\hkcmd.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe
C:\WINDOWS\System32\MsReal.exe
C:\PROGRA~1\LEXMAR~1\LXBRKsk.exe
C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe
C:\Program Files\Yahoo!\Messenger\ypager.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkCalRem.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\AOL Companion\companion.exe
C:\Program Files\America Online 9.0\waol.exe
C:\Program Files\America Online 9.0\shellmon.exe
C:\WINDOWS\System32\MShosts.exe
C:\Documents and Settings\Owner\Local Settings\Temp\Temporary Directory 1 for hijackthis[1].zip\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = [url]http://us9.hpwis.com/[/url]
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = [url]http://srch-us9.hpwis.com/[/url]
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = [url]http://red.clientapps.yahoo.com/customize/ie/defaults/sb/ymsgr6/*http://www.yahoo.com/ext/search/search.html[/url]
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = [url]http://red.clientapps.yahoo.com/customize/ie/defaults/sb/ymsgr6/*http://www.yahoo.com/ext/search/search.html[/url]
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = [url]http://red.clientapps.yahoo.com/customize/ie/defaults/su/ymsgr6/*http://www.yahoo.com[/url]
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
O2 - BHO: (no name) - SOFTWARE - (no file)
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O3 - Toolbar: HP View - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - (no file)
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: (no name) - {BDF6CE3D-F5C5-4462-9814-3C8EAC330CA8} - (no file)
O3 - Toolbar: (no name) - {339BB23F-A864-48C0-A59F-29EA915965EC} - (no file)
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [CamMonitor] c:\Program Files\Hewlett-Packard\Digital Imaging\\Unload\hpqcmon.exe
O4 - HKLM\..\Run: [AutoTKit] C:\hp\bin\AUTOTKIT.EXE
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect
O4 - HKLM\..\Run: [QuickFinder Scheduler] "c:\Program Files\WordPerfect Office 11\Programs\QFSCHD110.EXE"
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [RPC] C:\WINDOWS\System32\MShosts.exe
O4 - HKLM\..\Run: [IMClass] C:\WINDOWS\System32\MsReal.exe
O4 - HKLM\..\Run: [Lexmark 3100 Series] "C:\Program Files\Lexmark 3100 Series\lxbrbmgr.exe"
O4 - HKLM\..\Run: [LXBRKsk] C:\PROGRA~1\LEXMAR~1\LXBRKsk.exe
O4 - HKLM\..\Run: [webHancer Survey Companion] "C:\Program Files\webHancer\Programs\whSurvey.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe
O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe"
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
O4 - HKCU\..\Run: [Tsa] C:\PROGRA~1\COMMON~1\tsa\tsm.exe
O4 - HKCU\..\Run: [NVIEW] rundll32.exe nview.dll,nViewLoadHook
O4 - Startup: DLHelperEXE.exe
O4 - Startup: wkcalrem.LNK = C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkCalRem.exe
O4 - Global Startup: America Online 9.0 Tray Icon.lnk = C:\Program Files\America Online 9.0\aoltray.exe
O4 - Global Startup: AOL Companion.lnk = C:\Program Files\AOL Companion\companion.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O12 - Plugin for .wav: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin2.dll
O16 - DPF: Yahoo! Chat - [url]http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/c381/chat.cab[/url]
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - [url]http://us.dl1.yimg.com/download.yahoo.com/dl/installs/yinst20040510.cab[/url]
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - [url]http://software-dl.real.com/073c186956d0b74d3c01/netzip/RdxIE601.cab[/url]
O16 - DPF: {89D75D39-5531-47BA-9E4F-B346BA9C362C} (CWDL_DownLoadControl Class) - [url]http://www.callwave.com/include/cab/CWDL_DownLoad.CAB[/url]
O16 - DPF: {A587DAFF-DE03-4721-90CD-44BA8F047A03} (Snapfish File Upload ActiveX Control) - [url]http://www.yorkphoto.com/YorkUpload.cab[/url]
O16 - DPF: {AED98630-0251-4E83-917D-43A23D66D507} (WebHandler Class) - [url]http://activex.microgaming.com/DLhelper/version6/dlhelper.cab[/url]
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} - [url]http://us.dl1.yimg.com/download.yahoo.com/dl/installs/suite/yautocomplete.cab[/url]
O16 - DPF: {BAC01377-73DD-4796-854D-2A8997E3D68A} - [url]http://us.dl1.yimg.com/download.yahoo.com/dl/installs/ydropper/ydropper1_3us.cab[/url]
O17 - HKLM\System\CCS\Services\Tcpip\..\{5549E4B6-04E5-443C-943A-E6A5A5



Posted by: Elite Bullet

K now what we'll do is wait for SouthernLady or some1 else who can read this and tell you what to delete.



Posted by: Babyphat

aight..thanks



Posted by: Elite Bullet

I PM'ed SouthernLady so she knows about your problem, but she has alot of other people to help but she will get to you.



Posted by: Babyphat

aight got it..thank u



Posted by: southernlady

Babyphat, I'm Liz and I'm reading your log but you have something that I need you to do first.

You are running Hijack This out of a [color=#ff0000][u][b]temporary directory[/b][/u][/color] on your desktop. Can you please create a folder in My Documents and call it Hijack (or something similar). Then extract Hijack This into the folder you have created and run it from there. The reason for this is that Hijack This backup files may be deleted if it is being run from a temporary folder.

Run Hijack This again and put a check by these. Close ALL windows except HijackThis and click [b]"Fix checked"

[b]R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = [url]http://us9.hpwis.com/[/url][/b]

[b]R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = [url]http://srch-us9.hpwis.com/[/url][/b]

[b]R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =[/b]

[b]R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =[/b]

[b]R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =[/b]

[b]R3 - Default URLSearchHook is missing[/b]

[b]O2 - BHO: (no name) - SOFTWARE - (no file)[/b]

[b]O3 - Toolbar: (no name) - {BDF6CE3D-F5C5-4462-9814-3C8EAC330CA8} - (no file)[/b]

[b]O3 - Toolbar: (no name) - {339BB23F-A864-48C0-A59F-29EA915965EC} - (no file)[/b]

[b]O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE[/b]

[b]O4 - HKLM\..\Run: [RPC] C:\WINDOWS\System32\MShosts.exe[/b]

[b]O4 - HKLM\..\Run: [IMClass] C:\WINDOWS\System32\MsReal.exe[/b]

[b]O4 - HKLM\..\Run: [webHancer Survey Companion] "C:\Program Files\webHancer\Programs\whSurvey.exe"[/b]

[b]O4 - HKCU\..\Run: [Tsa] C:\PROGRA~1\COMMON~1\tsa\tsm.exe[/b]

[b]O4 - Startup: DLHelperEXE.exe[/b]

[b]O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - [url]http://software-dl.real.com/073c186...ip/RdxIE601.cab[/url][/b]

Restart to safe mode. [url]http://service1.symantec.com/SUPPORT/tsgeninfo.nsf/docid/2001052409420406[/url]

Because XP will not always show you hidden files and folders by default, Go to Start > Search and under "More advanced search options".
Make sure there is a check by "Search System Folders" and "Search hidden files and folders" and "Search system subfolders"

Next click on My Computer. Go to Tools > Folder Options. Click on the View tab and make sure that "Show hidden files and folders" is checked. Also uncheck "Hide protected operating system files" and "Hide extensions for known file types" . Now click "Apply to all folders"
Click "Apply" then "OK" [url]http://www.spyware911.net/forum/index.php?showtopic=27[/url]

Now find and delete these files:

C:\WINDOWS\System32\[b]MsReal.exe[/b]

C:\WINDOWS\System32\[b]MShosts.exe[/b]

Reboot

O17 - HKLM\System\CCS\Services\Tcpip\..\{5549E4B6-04E5-443C-943A-E6A5A5 (needs to be fixed) but I'm not exactly sure how to do that. It's your ISP and should not be deleted.

Empty the Recycle Bin

Then post another log. Liz



Posted by: Babyphat

hey liz..nice to meet you..thank u sooo much.....dang ur good...thank u


i did all what u told me

here's the new log

ogfile of HijackThis v1.98.2
Scan saved at 12:41:48 AM, on 12/9/2004
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exe
C:\WINDOWS\System32\DRIVERS\CDANTSRV.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
C:\windows\system\hpsysdrv.exe
C:\WINDOWS\System32\hkcmd.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe
C:\Program Files\Lexmark 3100 Series\lxbrbmgr.exe
C:\PROGRA~1\LEXMAR~1\LXBRKsk.exe
C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe
C:\Program Files\Yahoo!\Messenger\ypager.exe
C:\Program Files\AOL Companion\companion.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkCalRem.exe
C:\Program Files\Lexmark 3100 Series\lxbrbmon.exe
C:\Program Files\Lexmark 3100 Series\lxbrcmon.exe
C:\Program Files\America Online 9.0\waol.exe
C:\Program Files\America Online 9.0\shellmon.exe
C:\Program Files\America Online 9.0\aolwbspd.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Documents and Settings\Owner\My Documents\hijackers\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = [url]http://red.clientapps.yahoo.com/customize/ie/defaults/sb/ymsgr6/*http://www.yahoo.com/ext/search/search.html[/url]
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = [url]http://red.clientapps.yahoo.com/customize/ie/defaults/sb/ymsgr6/*http://www.yahoo.com/ext/search/search.html[/url]
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = [url]http://red.clientapps.yahoo.com/customize/ie/defaults/su/ymsgr6/*http://www.yahoo.com[/url]
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O3 - Toolbar: HP View - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - (no file)
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [CamMonitor] c:\Program Files\Hewlett-Packard\Digital Imaging\\Unload\hpqcmon.exe
O4 - HKLM\..\Run: [AutoTKit] C:\hp\bin\AUTOTKIT.EXE
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect
O4 - HKLM\..\Run: [QuickFinder Scheduler] "c:\Program Files\WordPerfect Office 11\Programs\QFSCHD110.EXE"
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [Lexmark 3100 Series] "C:\Program Files\Lexmark 3100 Series\lxbrbmgr.exe"
O4 - HKLM\..\Run: [LXBRKsk] C:\PROGRA~1\LEXMAR~1\LXBRKsk.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_06\bin\jusched.exe
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe"
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
O4 - HKCU\..\Run: [NVIEW] rundll32.exe nview.dll,nViewLoadHook
O4 - Startup: wkcalrem.LNK = C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkCalRem.exe
O4 - Global Startup: America Online 9.0 Tray Icon.lnk = C:\Program Files\America Online 9.0\aoltray.exe
O4 - Global Startup: AOL Companion.lnk = C:\Program Files\AOL Companion\companion.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O12 - Plugin for .wav: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin2.dll
O16 - DPF: Yahoo! Chat - [url]http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/c381/chat.cab[/url]
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - [url]http://us.dl1.yimg.com/download.yahoo.com/dl/installs/yinst20040510.cab[/url]
O16 - DPF: {89D75D39-5531-47BA-9E4F-B346BA9C362C} (CWDL_DownLoadControl Class) - [url]http://www.callwave.com/include/cab/CWDL_DownLoad.CAB[/url]
O16 - DPF: {A587DAFF-DE03-4721-90CD-44BA8F047A03} (Snapfish File Upload ActiveX Control) - [url]http://www.yorkphoto.com/YorkUpload.cab[/url]
O16 - DPF: {AED98630-0251-4E83-917D-43A23D66D507} (WebHandler Class) - [url]http://activex.microgaming.com/DLhelper/version6/dlhelper.cab[/url]
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} - [url]http://us.dl1.yimg.com/download.yahoo.com/dl/installs/suite/yautocomplete.cab[/url]
O16 - DPF: {BAC01377-73DD-4796-854D-2A8997E3D68A} - [url]http://us.dl1.yimg.com/download.yahoo.com/dl/installs/ydropper/ydropper1_3us.cab[/url]
O17 - HKLM\System\CCS\Services\Tcpip\..\{5549E4B6-04E5-443C-943A-E6A5A5519BA1}: NameServer = 205.188.146.146



Posted by: Elite Bullet

k dont trust me totaly but i think you have to get rid of
[b]O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto[/b]

So go with southern's when she tells you.



Posted by: Babyphat

aight..



Posted by: Elite Bullet

Cause this is my first try at anizily the log



Posted by: southernlady

Actually, that ones ok. I had to google it instead of using PacMan's Startup List tho. Ended up here: [url]http://www.windowsstartup.com/wso/detail.php?id=3652[/url] from here: [url]http://www.windowsstartup.com/wso/browse.php?l=13&start=200&end=225[/url]

Babyphat , I'll get the rest of your log read tomorrow. It's getting way past my bedtime. Liz



Posted by: Babyphat

lol.well this is ma first time knowing there's someting call log..i aint familia with the PC like that



Posted by: Babyphat

thanks liz..goontnite



Posted by: southernlady

You log is[size=6][u] [color=#008000][b]CLEAN[/b][/color][/u][/size]!!!!

Now, to keep that way, I want you to follw this advice:

[quote][u][b] Normal maintenance[/b] [/u]

Run regular maintenance on your PC...just as you would keep your house clean, your PC runs better when it's organized as well.

1) Use Disk Clean up and get rid of unneeded files. Compress old ones

2) Go thru your Add/Remove program and get rid of anything you haven't used lately, esp if you have the disk for it and can reinstall it or download it at a later date should you decide you want it again. Just letting it sit on your hard drive taking up space is ridiculous if you aren't using it.

3) Run the Disk Defrag on a periodic basis. If you have Norton Systemworks, set it up so that you can see how degragged your computer is and let it tell you when to defrag.

4) Remember to do a drive check every so often. You do this going to MY COMPUTER then SELECT YOUR DRIVE(C) right click it and go down to PROPERTIES on the pop up box select the second tab along TOOLS and click the top box CHECK ERRORS NOW.

And then ALWAYS. ALWAYS download and install any Critical Updates that Windows lets you know about. If you don't have your configuration set so that it will tell you and you aren't in the habit of checking periodically (like every other day) then set it so that
Windows WILL let you know there is a Critical Update. This step is an absolute necessity. SP2 is the exception to the rule, I still haven't done that one.

Then go and download these FREE programs:

1) Ad-aware [url]http://www.majorgeeks.com/download506.html[/url] (removes all adverts and ad self launch programs,feed up with pop ups get it)

2) Spy-bot [url]http://www.majorgeeks.com/download2471.html[/url] (same as ad-aware but always better two have two in this case because they'll double check everything)

3) AVG free [url]http://www.majorgeeks.com/download886.html[/url] (ok for basic scan but know not to detect major viruses) or Avast Home Edition: [url]http://www.majorgeeks.com/download1968.html[/url]

4) Zone Alarms [url]http://www.majorgeeks.com/download388.html[/url] (has a free and a paid version)

5) Sygate [url]http://www.majorgeeks.com/download3356.html[/url] (Has a free and a paid version or see the other firewall option

6) A Popup Blocker if your ISP doesn’t come with one:
[url]http://lists.gpick.com/pages/Ad~PopUp_Tools.htm[/url]


This one has been recommended by a number of people here on this web site: Google Toolbar [url]http://www.google.com[/url] (Can only be used with IE tho)

And this one, I have personal experience with and is excellent. It can be used with ANY browser:

POW [url]http://www.analogx.com.[/url]

Then you should download:

1) An Antivirus program:

Avast Home Edition: [url]http://www.majorgeeks.com/download1968.html[/url]

AVG free [url]http://www.majorgeeks.com/download886.html[/url]

Norton 2004 or 2005 [url]http://www.norton.com[/url] (a good professional antivirus,always as up to date virus definitions)

Panda Titanium [url]http://www.pandasoftware.com[/url] (another good one but slightly slows down computer applications etc)

AVG 7 pro [url]http://www.grisoft.com/us/us_index.php[/url] (again its ok but i found that it takes slightly longer for virus definitions to come out)

2) There are two other Firewall options:

Norton firewall [url]http://www.norton.com[/url] (good again stops a lot of unwanted internet activity but does become annoying if your have Bearshare, Kazaa etc installed)

Kerio [url]http://www.kerio.com/kpf_home.html[/url]

3) For making copies of your hard drive (good if you need to transfer your hard drive contents or if your hard drive keeps crashing.:

Norton Ghost: [url]http://www.norton.com[/url]

Drive image [url]http://www.r-tt.com[/url] (a software program that makes a up to date recovery point separate from system restore,good if you know your computer keeps crashing)

4) For fixing Registry and disk problems:

PC Bug Doctor [url]http://www.pcbugdoctor.com[/url] (corrects many problem but not deep registry ones)

PC Doctor Oncall [url]http://www.pcdocrx.net/cgi-bin/view...2004/index.html[/url] (does full system check fixes almost any problems)

Ashampoo WinOptimizer Platinum Suite 2
[url]http://www.ashampoo.com/[/url] (Drive Cleaner, Registry Cleaner, Internet Cleaner, DLL Cleaner,

Internet Tuner, StartUp Tuner, File Wiper, and File Associator. Free up valuable space on your hard drive. Speed up general system performance.)

Norton Systemworks 2003 or 2004: [url]http://www.norton.com[/url]

For a good listing of all this, go to: [url]http://www.wilders.org/[/url]

I hope this list helps.[/quote]

And this thread: [url]http://www.tech-forums.net/showthread.php?s=&threadid=35181[/url] Liz



Posted by: Babyphat

thanks gur...imma keep it clean