This is a read-only archive. No new posts or registrations. Privacy Page
Software

Restarting

13 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

As the description says.. my computer restarts by itself 2-3 times per day. I want to stop this immediately b/c it never restarted like this in the past.
Download hijackthis to its own folder C:/HJT for example. Extrat the zip file to that folder. Then close all browseer windows, open hijackthis and click on scan. Once the scan has completed click on Save Log, this will produce a text file log. Highlight all of the information from in that text box then right click and copy. Come back to this post you made and click on "add reply" at the bottom right and a new window will open. Paste the hijackthis log into the new window hit add reply in that new window.

HJT download >>> http://www.softpedia.com/public/cat/10/17/10-17-69.shtml
Logfile of HijackThis v1.99.1
Scan saved at 6:40:51 AM, on 5/15/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\PFShared\UmxCfg.exe
C:\Program Files\Common Files\PFShared\UmxPol.exe
C:\Program Files\Tiny Firewall Pro\UmxAgent.exe
C:\Program Files\Tiny Firewall Pro\UmxTray.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\LTMSG.exe
C:\Program Files\F-Secure\Common\FSM32.EXE
C:\Program Files\Logitech\iTouch\iTouch.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\F-Secure\Anti-Virus\fsgk32st.exe
C:\Program Files\F-Secure\Anti-Virus\FSGK32.EXE
C:\Program Files\F-Secure\BackWeb\7681197\program\fsbwsys.exe
C:\Program Files\F-Secure\Anti-Virus\fssm32.exe
C:\Program Files\F-Secure\Common\FSMA32.EXE
C:\Program Files\F-Secure\Common\FSMB32.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\tcpsvcs.exe
C:\Program Files\Common Files\PFShared\umxlu.exe
C:\Program Files\F-Secure\Common\FCH32.EXE
C:\Program Files\F-Secure\Common\FAMEH32.EXE
C:\Program Files\F-Secure\Common\FNRB32.EXE
C:\Program Files\F-Secure\FWES\Program\fsdfwd.exe
C:\Program Files\F-Secure\Anti-Virus\fsav32.exe
C:\Program Files\F-Secure\Common\FIH32.EXE
C:\Program Files\F-Secure\FSGUI\fsguiexe.exe
C:\WINDOWS\System32\svchost.exe
C:\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://us8.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-us8.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-us8.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://srch-us8.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://us8.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-us8.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-us8.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://srch-us8.hpwis.com/
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O4 - HKLM\..\Run: [LTMSG] LTMSG.exe 7
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\F-Secure\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\F-Secure\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\RunServices: [System Execute] sysexec.exe
O4 - HKCU\..\Run: [AMonitor] C:\Program Files\Tiny Firewall Pro\amon.exe
O8 - Extra context menu item: Download all by Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download by Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Download selected by Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download web site by Free Download Manager - file://C:\Program Files\Free Download Manager\dlpage.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O10 - Broken Internet access because of LSP provider 'xfire_lsp_10406.dll' missing
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {558958F1-FF22-4A76-8595-79A6B7BA698A} (PuzzleBobbleLauncher Control) - https://www.pbo.jp/bobrun/PuzzleBobbleLauncher.ocx
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5co…b?1099562265725
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (ASquaredScanForm Element) - http://www.windowsecurity.com/trojanscan/axscan.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{F1FB5BA6-5D8C-49E3-9EA0-58049168257F}: NameServer = 151.198.0.39 151.197.0.39
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: PFW - C:\WINDOWS\SYSTEM32\UmxWnp.Dll
O23 - Service: F-Secure Automatic Update (BackWeb Plug-in - 7681197) - Unknown owner - C:\PROGRA~1\F-Secure\BackWeb\7681197\Program\SERVIC~1.EXE
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\F-Secure\Anti-Virus\fsgk32st.exe
O23 - Service: F-Secure Network Request Broker - F-Secure Corporation - C:\Program Files\F-Secure\Common\FNRB32.EXE
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\F-Secure\BackWeb\7681197\program\fsbwsys.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\F-Secure\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\F-Secure\Common\FSMA32.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: FW Event Manager (UmxAgent) - Tiny Software, Inc. - C:\Program Files\Tiny Firewall Pro\UmxAgent.exe
O23 - Service: FW Configuration Interpreter (UmxCfg) - Tiny Software, Inc. - C:\Program Files\Common Files\PFShared\UmxCfg.exe
O23 - Service: FW Live Update (UmxLU) - Tiny Software, Inc. - C:\Program Files\Common Files\PFShared\umxlu.exe
O23 - Service: FW Policy Manager (UmxPol) - Tiny Software Inc. - C:\Program Files\Common Files\PFShared\UmxPol.exe
O23 - Service: FW User to IP Address Translation (UmxUTA) - Tiny Software, Inc. - C:\Program Files\Tiny Firewall Pro\umxuta.exe

Here you go. :)
Please locate this file on your system

sysexec.exe

you will probabaly need to do a search for it.

Then upload the file to the link below and it will scan it and produce a log please post the log.

Scan Here >>>> http://virusscan.jotti.org/
I scanned using Bit Defender and Panda and it somewhat did the job. However, I updated my F-Secure client and I did a few more scans to get a better picture of things. It reported that viruses were in some Java programs I never use, so I un-installed those. There were at least 2 viruses (Trojan downloaders, etc.) that somehow got into my Java programs. This could be the reason why my PC restarts, who knows. If my PC restarts (It seems to be running stable, so far..) again, I'll notify back here. Trojan downloaders: C:\Documents and Settings\Owner\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\javainstaller.jar-3cc46f89-65a1e1ad.zip\javainstaller\InstallerApplet.class C\\WINDOWS\system32\AA.0xe Oh yeah, can you tell me what these things are and actually do? Thanks again. :|
Download MicroWorld virus scan here >>> Micro World http://www.mwti.net/antivirus/free_utilities.asp

To run the virus scan make sure you click the following

memory, registry, startup folders, system folders, services, drive (all drives will be added) then click on scan clean. When the scan is complete hilight all the files in the LOWER box. Then ctrl + c and paste them into the thread ctrl + v.

I warn you the scan will take a long time to run and will not fix anything just identifies bad files.
Now with this.. Object "Quicken Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "AltNet Spyware/Adware" found in File System! Action Taken: No Action Taken. Object "mysearch Spyware/Adware" found in File System! Action Taken: No Action Taken. Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\Program Files\Common Files\Adobe\Fonts\Reqrd\Base\AdobeFnt.lst". Action Taken: No Action Taken. Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\Program Files\Common Files\Sony Shared\OpenMG\ekb\newekb040130.txt". Action Taken: No Action Taken. Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\Program Files\Common Files\Ahead\AudioPlugins\ogg.dll". Action Taken: No Action Taken. Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\Program Files\Ahead\CoverDesigner\covered-deu.nls". Action Taken: No Action Taken. Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\Program Files\Ahead\Nero BackItUp\BackItUp-Deu.nls". Action Taken: No Action Taken. Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\Program Files\Easy Internet signup\GRIC.SCP". Action Taken: No Action Taken. Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\Program Files\Easy Internet signup\HPSDP.pbk". Action Taken: No Action Taken. Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\Program Files\Easy Internet signup\RASDialer.ini". Action Taken: No Action Taken. Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\Program Files\Easy Internet signup\Dialer_phonebook_test.html". Action Taken: No Action Taken. Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\Program Files\Easy Internet signup\HPSdpApp.exe". Action Taken: No Action Taken. Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\Program Files\Easy Internet signup\HTTPTransport.dll". Action Taken: No Action Taken. Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\Program Files\Easy Internet signup\HPUpdater.exe". Action Taken: No Action Taken. Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\Program Files\Easy Internet signup\HPSender.dll". Action Taken: No Action Taken. Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\Program Files\Easy Internet signup\HPHTTP.dll". Action Taken: No Action Taken. Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\Program Files\Easy Internet signup\HPDialer.dll". Action Taken: No Action Taken. Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\Program Files\Easy Internet signup\locale.xml". Action Taken: No Action Taken. Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\WINDOWS\system32\pxwma.dll". Action Taken: No Action Taken. Entry "HKLM\Software\Microsoft\Windows\CurrentVersion\SharedDlls" refers to invalid object "C:\Program Files\ItsDeductibleEX\ID2004DB.mdb". Action Taken: No Action Taken. Entry "HKCR\CLSID\{0246CA20-776D-11D2-8010-00104B9B8592}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\ivivideo.ax". Action Taken: No Action Taken. Entry "HKCR\CLSID\{047EE215-8407-49A8-8632-D5C537430DE0}" refers to invalid object "C:\PROGRA~1\ArcSoft\SHOWBI~1\lpcm2pcm.ax". Action Taken: No Action Taken. Entry "HKCR\CLSID\{0BEDA08A-C516-4A44-9141-7B2CF28975EA}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\IviAudioProcess.ax". Action Taken: No Action Taken. Entry "HKCR\CLSID\{0D4AE5B1-CB51-420F-BDC9-2CA217A4DA36}" refers to invalid object "C:\PROGRA~1\ArcSoft\SHOWBI~1\MPEGWriter.ax". Action Taken: No Action Taken. Entry "HKCR\CLSID\{10E9D898-AEB2-4367-A23E-EDF362374D42}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\expDMO.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{1733A125-BB07-491E-A469-5E745D11D6BF}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVIPLA~1.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{189504B8-50D1-4AA8-B4D6-95C8F58A6414}" refers to invalid object "C:\PROGRA~1\AIM\sb.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{1A9756EC-9C61-4605-922C-FE624317F938}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVIAUD~3.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{1B0AE5A1-FD65-478C-BC27-CCF2E4DADF61}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVIAUD~2.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{1B53F360-9A1B-1069-930C-00AA0030EBC8}" refers to invalid object "C:\WINDOWS\System32\hypertrm.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{1B62A3D1-9C04-4BD5-84B5-D2607302501F}" refers to invalid object "C:\WINDOWS\system32\divxdec.ax". Action Taken: No Action Taken. Entry "HKCR\CLSID\{1C2CDBB1-95CB-4E3C-9FE2-8AA91093C22B}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\DSPDMO.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{1C9920E5-7623-4AAF-936B-A14BCAB742EC}" refers to invalid object "C:\WINDOWS\system32\NCTAudioRecord2.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{1E2C4B09-9669-4B23-9BD3-913A71EE0399}" refers to invalid object "C:\WINDOWS\system32\NCTAudioEditor2.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{1E9A3233-A677-11d3-A773-00C04F68F44E}" refers to invalid object "C:\Program Files\Sonic Foundry\ACID 4.0\acid40k.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{1EF2E5CB-646F-4F85-A355-8E328652CA60}" refers to invalid object "C:\PROGRA~1\MUSICM~1\MUSICM~1\MMFWCtrl.ocx". Action Taken: No Action Taken. Entry "HKCR\CLSID\{1FEAE0A3-77D5-4A6C-A04C-A4CE4E8C4A7D}" refers to invalid object "c:\PROGRA~1\HEWLET~1\HPINST~1\common\MOTIVE~1.DLL". Action Taken: No Action Taken. Entry "HKCR\CLSID\{23AA6EBC-86AA-11D2-8F58-00E02916007D}" refers to invalid object "C:\PROGRA~1\MUSICM~1\MUSICM~1\mmjbctrl.ocx". Action Taken: No Action Taken. Entry "HKCR\CLSID\{23AA6EBD-86AA-11D2-8F58-00E02916007D}" refers to invalid object "C:\PROGRA~1\MUSICM~1\MUSICM~1\mmjbctrl.ocx". Action Taken: No Action Taken. Entry "HKCR\CLSID\{27855D52-0913-4F88-A8CC-343D374E7CC9}" refers to invalid object "C:\PROGRA~1\MUSICM~1\MUSICM~1\MMFWCtrl.ocx". Action Taken: No Action Taken. Entry "HKCR\CLSID\{27CD324B-49F1-4329-AE92-F45DBE7780C2}" refers to invalid object "C:\WINDOWS\system32\NCTAudioEditor2.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{2A992A4A-B0DE-4D73-B720-9178D4687D08}" refers to invalid object "C:\WINDOWS\system32\NCTAudioEditor2.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{2B7E6AA9-C4FA-4951-815B-4AFE39D81453}" refers to invalid object "C:\Program Files\Messenger\msgsc.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C}" refers to invalid object "C:\PROGRA~1\AWS\WEATHE~1\MINIBU~1.DLL". Action Taken: No Action Taken. Entry "HKCR\CLSID\{2C146E0F-29FE-4BA6-ABB0-E92C23BB2A24}" refers to invalid object "C:\WINDOWS\system32\NCTAudioEditor2.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{2EB4263F-A680-4d8b-BDD0-C3309EB5CCD7}" refers to invalid object "C:\Documents and Settings\Owner\Sunabozu\Work\pd\WAVMetaDataRW6.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{2F680BC0-C305-42B1-9F76-8D28EB4CD7E2}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\IVIGUI.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{342734E3-D9AC-408F-8724-B7A257C4529E}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\AppRegAgent.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{352CEF41-C142-4166-8E13-EAB4D91D1D8C}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVIBOO~1.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD}" refers to invalid object "C:\WINDOWS\system32\NCTAudioFile2.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{399CB6C4-7312-11D2-B4D9-00105A0422DF}" refers to invalid object "C:\PROGRA~1\Sygate\SPF\Help\HHACTI~1.DLL". Action Taken: No Action Taken. Entry "HKCR\CLSID\{3C9E293E-3C02-4260-9B5B-3666AD6663E0}" refers to invalid object "C:\Program Files\Easy Internet signup\HPSender.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{40AF8200-4E6E-11D4-878D-00C0F6B0D1A7}" refers to invalid object "C:\Program Files\ArcSoft\Software Suite\photoimpression\ezrgb24.ax". Action Taken: No Action Taken. Entry "HKCR\CLSID\{40AF8201-4E6E-11D4-878D-00C0F6B0D1A7}" refers to invalid object "C:\Program Files\ArcSoft\Software Suite\photoimpression\ezrgb24.ax". Action Taken: No Action Taken. Entry "HKCR\CLSID\{411D229E-4F54-41F8-A5AF-251A01C0AF33}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\IviContainerDMO.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{43337B50-9827-4050-A6DE-A6849CB57BF5}" refers to invalid object "C:\WINDOWS\system32\NCTAudioEditor2.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{44F2EAE9-0EAB-4C11-BB78-976F0FDC666C}" refers to invalid object "C:\WINDOWS\system32\NCTAudioEditor2.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{45385FA4-4714-452E-BDA1-E791496C7420}" refers to invalid object "C:\WINDOWS\system32\NCTAudioEditor2.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{460FCB32-2877-406B-8096-155A3A3B308B}" refers to invalid object "C:\PROGRA~1\ArcSoft\SHOWBI~1\DvIntcpt.ax". Action Taken: No Action Taken. Entry "HKCR\CLSID\{462A0D7E-0A86-4FCD-93D0-BCBA75F16DBD}" refers to invalid object "C:\Documents and Settings\Owner\Sunabozu\Work\napsterregreader.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{4769DAFC-DCBA-4B73-AC3D-76DC477583CB}" refers to invalid object "C:\Program Files\Windows Media Player\WM9SamurizeInfo.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{4BDE60CA-BF3B-4922-8A80-0CB329FBF9A7}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVIAUD~2.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{4D1401BB-D436-4D94-8BFF-9F49AABCEF33}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\IviContainerDMO.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{4FEE6388-CF7A-44BE-9125-0A12E722E299}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\AppRegAgent.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{511ED270-6B89-41A3-BAE5-6C3EC49F730C}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\AppRegAgent.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{5321966D-031F-4A66-B698-2EB7C0D26705}" refers to invalid object "C:\Program Files\Easy Internet signup\HPHTTP.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{5497E014-E4EC-4920-8EC0-4D6562F4DDC6}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\DSPDMO.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{55DC98AF-7BBC-4857-B26D-FCCD06369BCA}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVILAN~1.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{55F40405-C618-4311-B993-21361792DB95}" refers to invalid object "C:\WINDOWS\system32\NCTAudioEditor2.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{5637A5F0-48A3-4A5C-8054-D9EA269A421C}" refers to invalid object "C:\PROGRA~1\ArcSoft\SHOWBI~1\lpcm2pcm.ax". Action Taken: No Action Taken. Entry "HKCR\CLSID\{56BB6D63-F98A-42eb-827F-6594E76DE94B}" refers to invalid object "C:\Documents and Settings\Owner\Sunabozu\Work\pd\MP3MetaDataRW6.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{5A48BE5D-BDF2-4749-9B2A-1448ABDBC7A8}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\DSPDMO.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{5AD31A03-9136-4C8E-AAA8-121B20B5EA66}" refers to invalid object "C:\WINDOWS\system32\NCTAudioTransform2.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{5AF28DA4-01D8-44EE-B860-695E111E225F}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\ivinav.ax". Action Taken: No Action Taken. Entry "HKCR\CLSID\{5E2663C1-51B3-49B7-B081-70181C2AF816}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\ComTruSurroundXT.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{5EA6DA3F-8E19-4B1C-8DD2-7D5F4A644DF2}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVILAN~1.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{5F752827-675A-445A-B5F5-5A3BF9F49D06}" refers to invalid object "C:\WINDOWS\system32\NCTAudioTransform2.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{5F99B381-AB44-11D2-9C22-00104B3801F6}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\iviaudio.ax". Action Taken: No Action Taken. Entry "HKCR\CLSID\{623ACE26-ED4F-4922-A7D6-DEE8B0C744A2}" refers to invalid object "C:\Documents and Settings\Owner\Sunabozu\Work\pd\WMAMetaDataRW6.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{6303C580-2431-46C2-99D6-195F8693F063}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVIBOO~1.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{664F4D53-9E3C-4140-964C-33D9D6F81B29}" refers to invalid object "C:\PROGRA~1\ArcSoft\SHOWBI~1\MPEGWriter.ax". Action Taken: No Action Taken. Entry "HKCR\CLSID\{6B58B5DC-7405-11D2-8F58-00E02916007D}" refers to invalid object "C:\PROGRA~1\MUSICM~1\MUSICM~1\mmjbctrl.ocx". Action Taken: No Action Taken. Entry "HKCR\CLSID\{6B58B5DD-7405-11D2-8F58-00E02916007D}" refers to invalid object "C:\PROGRA~1\MUSICM~1\MUSICM~1\mmjbctrl.ocx". Action Taken: No Action Taken. Entry "HKCR\CLSID\{6B58B5E0-7405-11D2-8F58-00E02916007D}" refers to invalid object "C:\PROGRA~1\MUSICM~1\MUSICM~1\mmjbctrl.ocx". Action Taken: No Action Taken. Entry "HKCR\CLSID\{6B58B5E1-7405-11D2-8F58-00E02916007D}" refers to invalid object "C:\PROGRA~1\MUSICM~1\MUSICM~1\mmjbctrl.ocx". Action Taken: No Action Taken. Entry "HKCR\CLSID\{6B58B5E4-7405-11D2-8F58-00E02916007D}" refers to invalid object "C:\PROGRA~1\MUSICM~1\MUSICM~1\mmjbctrl.ocx". Action Taken: No Action Taken. Entry "HKCR\CLSID\{6B58B5E5-7405-11D2-8F58-00E02916007D}" refers to invalid object "C:\PROGRA~1\MUSICM~1\MUSICM~1\mmjbctrl.ocx". Action Taken: No Action Taken. Entry "HKCR\CLSID\{6BEA1C48-1850-486C-8F58-C7354BA3165E}" refers to invalid object "C:\Program Files\Picasa\pinstall.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{6CA646FD-CE11-417D-9888-A56C6BAC342C}" refers to invalid object "C:\PROGRA~1\ArcSoft\SHOWBI~1\filedump.ax". Action Taken: No Action Taken. Entry "HKCR\CLSID\{6D226A20-7838-45CE-8BD7-559954F92988}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVIVID~1.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{6E7267D0-D09D-11D2-8488-00105A26DF2D}" refers to invalid object "c:\PROGRA~1\Quicken\QIHNDLR.DLL". Action Taken: No Action Taken. Entry "HKCR\CLSID\{6F63B172-5543-4593-91CE-EDBA65B9FACD}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\DSPDMO.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{73FCEEB8-953F-41a1-87F7-93602A0BE7BB}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\timestretchDMO.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{77829F14-D911-40FF-A2F0-D11DB8D6D0BC}" refers to invalid object "C:\WINDOWS\system32\NCTAudioFile2.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{79B46D76-CEC6-4709-96ED-044FB5EA8853}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVICOL~1.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{7CD6EEF9-3F31-4497-A598-AEE9FDFACB48}" refers to invalid object "C:\PROGRA~1\ArcSoft\SHOWBI~1\GoMotionDVtoMPEG.ax". Action Taken: No Action Taken. Entry "HKCR\CLSID\{7E2E0DC1-31FD-11D2-9C21-00104B3801F6}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\iviaudio.ax". Action Taken: No Action Taken. Entry "HKCR\CLSID\{7F0D2335-29AE-4B27-8014-4274C6D56F69}" refers to invalid object "C:\PROGRA~1\ArcSoft\SHOWBI~1\MPEGWriter.ax". Action Taken: No Action Taken. Entry "HKCR\CLSID\{7F1B4A44-CC11-4B35-9238-68CAF52C9E06}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVIAUD~1.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{83D4679F-B6D7-11D2-BF36-00C04FB90A03}" refers to invalid object "C:\PROGRA~1\MESSEN~1\rtcimsp.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{83E66439-05D5-488C-A236-AA20E543D384}" refers to invalid object "C:\WINDOWS\system32\divxdec.ax". Action Taken: No Action Taken. Entry "HKCR\CLSID\{84268CDA-5AE9-409C-94E9-B6FEB4B5A123}" refers to invalid object "C:\PROGRA~1\MUSICM~1\MUSICM~1\MMFWCtrl.ocx". Action Taken: No Action Taken. Entry "HKCR\CLSID\{84E4FC7D-12E9-4E85-97EB-4A2006A3673C}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVICAP~1.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{8532DECB-E102-48A8-BE72-DADC2B02C49F}" refers to invalid object "C:\WINDOWS\system32\NCTAudioPlayer2.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{87B310F8-F40F-4013-BB7B-21B2CC158710}" refers to invalid object "C:\PROGRA~1\ArcSoft\SHOWBI~1\GoMotionCaptureEncoder.ax". Action Taken: No Action Taken. Entry "HKCR\CLSID\{88389625-D193-45af-9FCE-43E1FCAC3850}" refers to invalid object "C:\Documents and Settings\Owner\Sunabozu\Work\pd\Devicetracker6.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{88895560-9AA2-1069-930E-00AA0030EBC8}" refers to invalid object "C:\WINDOWS\System32\hticons.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{88E729D6-BDC1-11D1-BD2A-00C04FB9603F}" refers to invalid object "fde.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{91252823-AF21-11D4-A90B-0050DACE2436}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\ivivideo.ax". Action Taken: No Action Taken. Entry "HKCR\CLSID\{91866113-708B-4EE3-B800-9BCA13CD4D99}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\DMO_TSXT.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{959C01B2-B62A-4C68-B9F7-3E9436D1FECE}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVICAP~1.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{959F94FD-DD1E-11D2-B559-00105A0422DF}" refers to invalid object "C:\PROGRA~1\Sygate\SPF\Help\HHACTI~1.DLL". Action Taken: No Action Taken. Entry "HKCR\CLSID\{978EF314-74E2-40D1-BFCD-EEB1E1A06D07}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVIVID~1.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{99180163-DA16-101A-935C-444553540000}" refers to invalid object "recncl.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{9AD2DF65-2B4C-4dc3-9B08-84691983F537}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\timestretchDMO.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{9C123EA9-AEC9-4f75-BBC0-7565FA139896}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\DSPDMO.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{9CB576B8-1FB6-4EF2-A375-224C050D57EE}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVIPLA~1.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{A3B3CF7D-0FB0-4561-8919-FB7A142DA4FA}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVIDIS~1.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{A970E763-D149-462b-B1EB-B0E7831996DB}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\DSPDMO.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{A98ABF1C-107C-44E7-9254-2C3FF435D0C2}" refers to invalid object "C:\PROGRA~1\AIM\sb.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{AABC1235-776D-11D2-8010-00104B9B8592}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\ivinav.ax". Action Taken: No Action Taken. Entry "HKCR\CLSID\{AAFA1E73-4842-4BEC-BC46-48C62E1C5C9C}" refers to invalid object "C:\WINDOWS\system32\NCTAudioInformation2.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{AB1744AB-E320-443D-A852-FB8F46D4405E}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVIAUD~3.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{AB1D8565-40E9-4616-984D-98465687E82C}" refers to invalid object "C:\Program Files\Messenger\msgsc.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{ADC4FE5F-9ACA-4551-8AD1-7B1DEF9D6BE8}" refers to invalid object "C:\PROGRA~1\MUSICM~1\MUSICM~1\MMFWCtrl.ocx". Action Taken: No Action Taken. Entry "HKCR\CLSID\{AFA95F79-06AC-4B9A-B261-D415063DC2B3}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\ComTruSurroundXT.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{AFC41D6B-54F4-4496-A2A6-33F382B29B95}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\GPIProxy.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{B0CEC9BB-C729-4445-85D7-1899E23C0298}" refers to invalid object "C:\Program Files\Easy Internet signup\HPDialer.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{B13E4B72-207E-4C01-94A8-99285AA64E0B}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\IviAudioProcess.ax". Action Taken: No Action Taken. Entry "HKCR\CLSID\{B1A99896-3AB9-4125-89FC-45656D918477}" refers to invalid object "C:\Program Files\Easy Internet signup\HPSender.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{B617F87F-1856-43BC-ADEB-C43922F7A575}" refers to invalid object "C:\PROGRA~1\MUSICM~1\MUSICM~1\MMFWCtrl.ocx". Action Taken: No Action Taken. Entry "HKCR\CLSID\{B69003B3-C55E-4b48-836C-BC5946FC3B28}" refers to invalid object "C:\Program Files\Messenger\msgsc.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{B800E60F-B1CD-4C13-8645-5B0AD304C9EF}" refers to invalid object "C:\WINDOWS\system32\NCTAudioEditor2.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{B90813BD-778F-42BB-89B8-6D1A53968E52}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVIVRX.ocx". Action Taken: No Action Taken. Entry "HKCR\CLSID\{BBBFCB14-3B21-491c-9E2A-B0F3D50F83FD}" refers to invalid object "C:\Program Files\Messenger\msgsc.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{BE265956-6F5F-4790-9CAB-EDFAC64362EF}" refers to invalid object "C:\Program Files\AIM\rtvideo.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{C1B8CE59-7FE5-4316-8803-712EC96EA636}" refers to invalid object "C:\PROGRA~1\Napster\NMSUBS~1.DLL". Action Taken: No Action Taken. Entry "HKCR\CLSID\{C2F18352-A7FC-487E-9B44-8FF0AB12B58B}" refers to invalid object "C:\Documents and Settings\Owner\Sunabozu\Work\xdetect.ocx". Action Taken: No Action Taken. Entry "HKCR\CLSID\{C3DB19A6-D5A2-11D2-8F58-00E02916007D}" refers to invalid object "C:\PROGRA~1\MUSICM~1\MUSICM~1\mmjbctrl.ocx". Action Taken: No Action Taken. Entry "HKCR\CLSID\{C57DEAF2-E637-4FA0-B510-461C4EF86AEB}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVIDIS~1.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{C79C91A1-DB06-11D2-9E0C-00105A26F05D}" refers to invalid object "c:\PROGRA~1\Quicken\QWAPP.DLL". Action Taken: No Action Taken. Entry "HKCR\CLSID\{C7A40592-EB0C-43B4-A114-327953CCCBF1}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVINAV~1.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{CA7B11B2-937E-43AA-B5E8-2D7F084FD39E}" refers to invalid object "C:\WINDOWS\system32\NCTAudioEditor2.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{CAB9B154-8435-42B4-B797-D0DE04D5593D}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\DMO_TSXT.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{CE0E7204-D82C-4273-8A70-919963F4CFE0}" refers to invalid object "C:\PROGRA~1\MUSICM~1\MUSICM~1\MMFWCtrl.ocx". Action Taken: No Action Taken. Entry "HKCR\CLSID\{D11CCB19-770C-40EC-BD26-D52F7019ABEC}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVIWEB~1.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{D2514BD8-ACE4-4386-8249-8876D67C445D}" refers to invalid object "C:\Documents and Settings\Owner\Sunabozu\Work\pd\Ppsp71.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{D326DC3B-8ADF-456A-B1B7-8A9E37704C60}" refers to invalid object "C:\PROGRA~1\MUSICM~1\MUSICM~1\MMFWCtrl.ocx". Action Taken: No Action Taken. Entry "HKCR\CLSID\{D59EBAD7-AF87-4A5C-8459-D3F6B918E7C9}" refers to invalid object "C:\Program Files\Sygate\SPF\SSHelper.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{D9B1C8E7-129F-4CFC-ABEB-ECACACD5B63A}" refers to invalid object "C:\PROGRA~1\ArcSoft\SHOWBI~1\GoMotionCaptureEncoder.ax". Action Taken: No Action Taken. Entry "HKCR\CLSID\{DDE40572-DC6E-44c2-BC69-7CC18FA05035}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\expDMO.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{DF66AFC9-C61D-404a-B535-64FBF91D420F}" refers to invalid object "C:\Program Files\Messenger\msgsc.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{E3A3B1D9-5675-43c0-BF04-37BE11939FB7}" refers to invalid object "C:\Program Files\Messenger\msgsc.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{E66F1353-EB9D-11d3-9B67-00105A17C778}" refers to invalid object "C:\PROGRA~1\HEWLET~1\HPINST~1\common\ACTL_4~1.DLL". Action Taken: No Action Taken. Entry "HKCR\CLSID\{E6A52614-6FE7-4FD3-ACC6-B6CB262FAABB}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVICOL~1.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{E9A69E4E-71FC-4A0C-98DD-6E4D96D039A3}" refers to invalid object "C:\PROGRA~1\ArcSoft\SHOWBI~1\VirtSrc.ax". Action Taken: No Action Taken. Entry "HKCR\CLSID\{EB812EE4-7651-46CB-A279-1EEA1C43E212}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVIWEB~1.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{ED40EF05-9163-4AE1-8A7A-2FC5814C4B3E}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVINAV~1.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{EFAC012B-2A65-4D0B-9237-ADBADD94DFE9}" refers to invalid object "C:\PROGRA~1\MUSICM~1\MUSICM~1\MMFWCtrl.ocx". Action Taken: No Action Taken. Entry "HKCR\CLSID\{F1DD8F2C-1A49-40F0-9649-ACB3AB7AF86A}" refers to invalid object "C:\PROGRA~1\MUSICM~1\MUSICM~1\MMFWCtrl.ocx". Action Taken: No Action Taken. Entry "HKCR\CLSID\{F7BA900A-B42C-4EC2-B6F9-212071C4BFFA}" refers to invalid object "C:\Program Files\InterVideo\Common\Bin\DSPDMO.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{F8B97B85-DA6D-4070-95A9-FF63A766F8B0}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVIVRX.ocx". Action Taken: No Action Taken. Entry "HKCR\CLSID\{F907153E-B95C-4c10-A59B-C5B172FDF657}" refers to invalid object "C:\Documents and Settings\Owner\Sunabozu\Work\pd\HDDRecoverer6.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{F97C6546-6737-4D6E-9388-A53E0860B83F}" refers to invalid object "C:\WINDOWS\system32\NCTAudioEditor2.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{FA3D34A2-C60D-461B-8463-C9AF9A158966}" refers to invalid object "C:\WINDOWS\system32\NCTAudioEditor2.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{FB215E25-F536-4B36-8262-ECF59601FAC1}" refers to invalid object "C:\PROGRA~1\MUSICM~1\MUSICM~1\MMFWCtrl.ocx". Action Taken: No Action Taken. Entry "HKCR\CLSID\{FB7199AB-79BF-11d2-8D94-0000F875C541}" refers to invalid object "C:\Program Files\Messenger\msgsc.dll". Action Taken: No Action Taken. Entry "HKCR\CLSID\{FBAB59A7-60F8-4672-9581-155284CE7A9E}" refers to invalid object "C:\PROGRA~1\INTERV~1\Common\Bin\IVIAUD~1.OCX". Action Taken: No Action Taken. Entry "HKCR\CLSID\{FCAD0559-23E7-481D-A3B7-D7F57DFF226D}" refers to invalid object "C:\WINDOWS\system32\NCTAudioEditor2.dll". Action Taken: No Action Taken. Entry "HKCR\ActMsg.Session" refers to invalid object "{3FA7DEB3-6438-101B-ACC1-00AA00423326}". Action Taken: No Action Taken. Entry "HKCR\Alg.AlgSetup" refers to invalid object "{27D0BCCC-344D-4287-AF37-0C72C161C14C}". Action Taken: No Action Taken. Entry "HKCR\Alg.AlgSetup.1" refers to invalid object "{27D0BCCC-344D-4287-AF37-0C72C161C14C}". Action Taken: No Action Taken. Entry "HKCR\DSP.DSP" refers to invalid object "{9C123EA9-AEC9-4f75-BBC0-7565FA1398966}". Action Taken: No Action Taken. Entry "HKCR\DSP.DSPDMOProp_Chorus.1" refers to invalid object "{6F63B172-5543-4593-91CE-EDBA65B9FACDB}". Action Taken: No Action Taken. Entry "HKCR\Jccatch.IeCatch2" refers to invalid object "{A5366673-E8CA-11D3-9CD9-0090271D075B}". Action Taken: No Action Taken. Entry "HKCR\MailFileAtt" refers to invalid object "{00020D05-0000-0000-C000-000000000046}". Action Taken: No Action Taken. Entry "HKCR\mapifvbx.object" refers to invalid object "{41116C00-8B90-101B-96CD-00AA003B14FC}". Action Taken: No Action Taken. Entry "HKCR\mapifvbx.object.1" refers to invalid object "{41116C00-8B90-101B-96CD-00AA003B14FC}". Action Taken: No Action Taken. Entry "HKCR\Plenoptic.Plenoptic" refers to invalid object "{607C27E9-AB27-11d3-A116-A0EA50C10801}". Action Taken: No Action Taken. Entry "HKCR\Plenoptic.Plenoptic.1" refers to invalid object "{607C27E9-AB27-11d3-A116-A0EA50C10801}". Action Taken: No Action Taken. Entry "HKCR\RTCCore.RTCClient" refers to invalid object "{7a42ea29-a2b7-40c4-b091-f6f024aa89be}". Action Taken: No Action Taken. Entry "HKCR\RTCCore.RTCClient.1" refers to invalid object "{7a42ea29-a2b7-40c4-b091-f6f024aa89be}". Action Taken: No Action Taken. Entry "HKCR\SymWriter.pdb" refers to invalid object "{520DC67A-752E-11D3-8D56-00C04F680B2B}". Action Taken: No Action Taken. Entry "HKCR\WMPPublsihCntr.WMPPublsihCntr" refers to invalid object "{939438A9-CF0F-44d8-9140-599736F0D3A2}". Action Taken: No Action Taken. Entry "HKCR\WMPPublsihCntr.WMPPublsihCntr.1" refers to invalid object "{939438A9-CF0F-44d8-9140-599736F0D3A2}". Action Taken: No Action Taken. File C:\hp\bin\Terminator.exe tagged as not-a-virus:RiskWare.Tool.KillApp. No Action Taken. File C:\Program Files\NoNameScript\mirc.exe tagged as not-a-virus:RiskWare.mIRC.6.16. No Action Taken. Got any tips for me to start off? :|
Please download and run CWShredder. Make sure that all browser windows are closed with the exception of Cwshredder and choose FIX.

http://www.majorgeeks.com/downloadget.php?…7fd6b3ff02edc90

REBOOT

Step #2

Please download and run Spybot & AdAware SE Then follow the instructions in the link below to run.

Spybot & Adaware Tutorial

REBOOT

Step # 3

Then do a virus scan here >>> Trend Micro

Reboot and post a new HiJackThis log.

If you have an issue running the scanners then boot to safe mode and run them.
Logfile of HijackThis v1.99.1
Scan saved at 6:50:04 AM, on 5/26/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\PFShared\UmxCfg.exe
C:\Program Files\Common Files\PFShared\UmxPol.exe
C:\Program Files\Tiny Firewall Pro\UmxAgent.exe
C:\Program Files\Tiny Firewall Pro\UmxTray.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\LTMSG.exe
C:\Program Files\Logitech\iTouch\iTouch.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\F-Secure\Anti-Virus\fsgk32st.exe
C:\Program Files\F-Secure\Anti-Virus\FSGK32.EXE
C:\Program Files\F-Secure\Anti-Virus\fssm32.exe
C:\Program Files\F-Secure\Common\FSMA32.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\tcpsvcs.exe
C:\Program Files\Common Files\PFShared\umxlu.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\F-Secure\Common\FSLAUNCH.EXE
C:\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://us8.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-us8.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-us8.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://srch-us8.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://us8.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-us8.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-us8.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://srch-us8.hpwis.com/
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O4 - HKLM\..\Run: [LTMSG] LTMSG.exe 7
O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\F-Secure\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\F-Secure\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [TPF_AAIMR] C:\Program Files\Tiny Firewall Pro\aaimr.exe
O4 - HKCU\..\Run: [AMonitor] C:\Program Files\Tiny Firewall Pro\amon.exe
O8 - Extra context menu item: Download all by Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download by Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Download selected by Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download web site by Free Download Manager - file://C:\Program Files\Free Download Manager\dlpage.htm
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O10 - Broken Internet access because of LSP provider 'xfire_lsp_10406.dll' missing
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {1DE9BB01-B121-401D-8877-BCD5ED5B7EE5} (Tpwin Control) - http://www.crezio.com/test/leeyunho/AlwaysOn/AlwaysOn.CAB
O16 - DPF: {558958F1-FF22-4A76-8595-79A6B7BA698A} (PuzzleBobbleLauncher Control) - https://www.pbo.jp/bobrun/PuzzleBobbleLauncher.ocx
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.com/scan8/oscan8.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5co…b?1099562265725
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061…all/xscan53.cab
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www3.ca.com/securityadvisor/virusinfo/webscan.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
O16 - DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} (ASquaredScanForm Element) - http://www.windowsecurity.com/trojanscan/axscan.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: PFW - C:\WINDOWS\SYSTEM32\UmxWnp.Dll
O23 - Service: F-Secure Automatic Update (BackWeb Plug-in - 7681197) - Unknown owner - C:\PROGRA~1\F-Secure\BackWeb\7681197\Program\SERVIC~1.EXE
O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\F-Secure\Anti-Virus\fsgk32st.exe
O23 - Service: F-Secure Network Request Broker - F-Secure Corporation - C:\Program Files\F-Secure\Common\FNRB32.EXE
O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\F-Secure\BackWeb\7681197\program\fsbwsys.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\F-Secure\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\F-Secure\Common\FSMA32.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: FW Event Manager (UmxAgent) - Tiny Software, Inc. - C:\Program Files\Tiny Firewall Pro\UmxAgent.exe
O23 - Service: FW Configuration Interpreter (UmxCfg) - Tiny Software, Inc. - C:\Program Files\Common Files\PFShared\UmxCfg.exe
O23 - Service: FW Live Update (UmxLU) - Tiny Software, Inc. - C:\Program Files\Common Files\PFShared\umxlu.exe
O23 - Service: FW Policy Manager (UmxPol) - Tiny Software Inc. - C:\Program Files\Common Files\PFShared\UmxPol.exe
O23 - Service: FW User to IP Address Translation (UmxUTA) - Tiny Software, Inc. - C:\Program Files\Tiny Firewall Pro\umxuta.exe

And I can't seem to get rid of these annoyances by Spybot.

BackWeb lite:
HKEY_USERS\S-1-5-18\Software\BackWeb
HKEY_USERS\.DEFAULT\Software\BackWeb
I can't seem to find BackWeb Lite on my Add/Remove Programs list and the site tells me to purchase a program, but I can't. So, is there any way I can remove it w/o the program? Oh yeah, both are registry keys.

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI