This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

Annoying Pop ups..Hijack and ewido scan log help plz

1 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

Hi all

I've been getting plagued by annoying pop ups appearing every so often headed

Advertisment - NSIS Media …. ads re Reg Cleaners, Casino sites, scratch games…etc…

Appreciate any help with a check of the following log files

Thankyou
Steve


Logfile of HijackThis v1.99.1
Scan saved at 14:39:49, on 05/08/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\System32\DRIVERS\CDANTSRV.EXE
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\PROGRA~1\ZONELA~1\ZONEAL~1\zlclient.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Startup Mechanic\StartupMonitor.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
C:\Documents and Settings\Steve.HOMEPC\Desktop\HijackThis.exe
C:\Program Files\Messenger\msmsgs.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=566…ER}&ar=home
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboForm.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboForm.dll
O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [Zone Labs Client] C:\PROGRA~1\ZONELA~1\ZONEAL~1\zlclient.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Startup Manager Scanner] C:\Program Files\Startup Mechanic\StartupMonitor.exe
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKCU\..\Run: [RoboForm] "C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
O8 - Extra context menu item: Customize Menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Fill Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O8 - Extra context menu item: Save Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: ICQ Pro - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Program Files\ICQ\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Program Files\ICQ\ICQ.exe
O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\ypager.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\ypager.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.dixons.co.uk
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {29C13B62-B9F7-4CD3-8CEF-0A58A1A99441} - http://fdl.msn.com/public/chat/msnchat41.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} - http://www.bitdefender.com/scan8/oscan8.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat…b?1132171561234
O16 - DPF: {7A32634B-029C-4836-A023-528983982A49} - http://fdl.msn.com/public/chat/msnchat42.cab
O16 - DPF: {E87A6788-1D0F-4444-8898-1D25829B6755} - http://fdl.msn.com/public/chat/msnchat4.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{A297ACA8-866B-4FD0-8BB7-A7105FB333B2}: NameServer = 194.74.65.68,194.72.9.39
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\System32\DRIVERS\CDANTSRV.EXE
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: CWShredder Service - Unknown owner - C:\My Shared Folder\cwshredder.exe (file missing)
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SPBBCSvc - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs Inc. - C:\WINDOWS\system32\ZoneLabs\vsmon.exe




———————————————————
ewido anti-spyware - Scan Report
———————————————————

+ Created at: 13:47:46 05/08/2006

+ Scan result:



C:\Program Files\Messenger Plus! 3\Setup.dat/sponsor.exe -> Downloader.Swizzor.ag : No action taken.
:mozilla.162:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.247realmedia : No action taken.
:mozilla.163:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.164:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.165:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.166:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.167:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.168:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.246:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.254:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.459:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.474:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.498:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.180:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.181:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
C:\Documents and Settings\Steve.HOMEPC\Local Settings\Temp\Cookies\[removed][1].txt -> TrackingCookie.Addcontrol : No action taken.
:mozilla.199:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Adtech : No action taken.
:mozilla.200:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Adtech : No action taken.
:mozilla.10:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.11:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.12:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.243:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Burstnet : No action taken.
:mozilla.250:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Clickbank : No action taken.
C:\Documents and Settings\Steve.HOMEPC\Cookies\[removed][1].txt -> TrackingCookie.Clickhype : No action taken.
C:\Documents and Settings\Steve.HOMEPC\Cookies\[removed][2].txt -> TrackingCookie.Clickzs : No action taken.
:mozilla.260:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Com : No action taken.
C:\Documents and Settings\Steve.HOMEPC\Cookies\steve@com[1].txt -> TrackingCookie.Com : No action taken.
:mozilla.261:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.262:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.707:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.708:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.730:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.731:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.733:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.739:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.740:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.742:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.745:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.758:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.760:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.766:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.770:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.773:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.781:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.849:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.850:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.895:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.896:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.161:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
C:\Documents and Settings\Steve.HOMEPC\Cookies\[removed][1].txt -> TrackingCookie.Enhance : No action taken.
:mozilla.285:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
C:\Documents and Settings\Steve.HOMEPC\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : No action taken.
:mozilla.855:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Etracker : No action taken.
:mozilla.184:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Euroclick : No action taken.
:mozilla.185:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Euroclick : No action taken.
:mozilla.186:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Euroclick : No action taken.
:mozilla.187:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Euroclick : No action taken.
:mozilla.188:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Euroclick : No action taken.
:mozilla.723:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.724:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.725:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.726:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.727:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.728:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
C:\Documents and Settings\Steve.HOMEPC\Cookies\[removed][2].txt -> TrackingCookie.Goclick : No action taken.
:mozilla.867:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.358:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Hotlog : No action taken.
:mozilla.151:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Ivwbox : No action taken.
C:\Documents and Settings\Steve.HOMEPC\Cookies\steve@ivwbox[2].txt -> TrackingCookie.Ivwbox : No action taken.
C:\Documents and Settings\Steve.HOMEPC\Local Settings\Temp\Cookies\steve@ivwbox[2].txt -> TrackingCookie.Ivwbox : No action taken.
:mozilla.383:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Komtrack : No action taken.
C:\Documents and Settings\Steve.HOMEPC\Cookies\steve@komtrack[2].txt -> TrackingCookie.Komtrack : No action taken.
:mozilla.785:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Liveperson : No action taken.
:mozilla.786:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Liveperson : No action taken.
:mozilla.787:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Liveperson : No action taken.
:mozilla.788:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Liveperson : No action taken.
:mozilla.789:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Liveperson : No action taken.
:mozilla.790:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Liveperson : No action taken.
:mozilla.791:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Liveperson : No action taken.
:mozilla.792:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Liveperson : No action taken.
:mozilla.84:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Mediaplex : No action taken.
:mozilla.548:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Onestat : No action taken.
:mozilla.549:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Onestat : No action taken.
:mozilla.192:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.193:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.194:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.195:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.504:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Questionmarket : No action taken.
:mozilla.505:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Questionmarket : No action taken.
:mozilla.506:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Questionmarket : No action taken.
:mozilla.70:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
:mozilla.71:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
:mozilla.72:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
:mozilla.73:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
:mozilla.74:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
:mozilla.75:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
:mozilla.76:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
:mozilla.77:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
:mozilla.240:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.530:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.531:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.532:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.533:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.777:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Sitestat : No action taken.
:mozilla.545:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Spylog : No action taken.
:mozilla.30:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.31:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.32:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.33:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.36:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.37:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.38:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.39:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.40:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.558:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.559:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.560:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.561:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
C:\Documents and Settings\Steve.HOMEPC\Cookies\steve@tacoda[1].txt -> TrackingCookie.Tacoda : No action taken.
C:\Documents and Settings\Steve.HOMEPC\Local Settings\Temp\Cookies\steve@tacoda[1].txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.100:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.97:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.98:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.99:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.579:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Tribalfusion : No action taken.
:mozilla.580:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Tribalfusion : No action taken.
:mozilla.618:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Weborama : No action taken.
:mozilla.698:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Yadro : No action taken.
:mozilla.78:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.79:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.80:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.81:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.82:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.83:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.86:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.87:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.88:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.89:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.90:C:\Documents and Settings\Steve.HOMEPC\Application Data\Mozilla\Firefox\Profiles\wokohoq4.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
C:\Documents and Settings\Steve.HOMEPC\Cookies\[removed][1].txt -> TrackingCookie.Yieldmanager : No action taken.


::Report end
Welcome back :wavey:

See if this file exists on your machine:

C:\Program Files\Common Files\NSIS\uninst.exe

If so, run it.

Reboot.

Post a new HijackThis! log into this thread, and describe how the PC behaves.

:)
Hello once again :)


I checked for the folder you suggested and yes it was there…I used the unistall as suggested and rebooted. Here is the updated Hijack log file.
I am using the Firefox web browser and I have noticed its been a little strange today..I remembered that it updated yesterday and was putting it down to that..after the reboot it still seems a bit slugish, but I'll keep a check.

Thanks again for the assistance…greatly appreciated believe me !


Logfile of HijackThis v1.99.1
Scan saved at 18:44:57, on 05/08/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\System32\DRIVERS\CDANTSRV.EXE
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\ZONELA~1\ZONEAL~1\zlclient.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Startup Mechanic\StartupMonitor.exe
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Documents and Settings\Steve.HOMEPC\Desktop\HijackThis.exe
C:\Program Files\Symantec\LiveUpdate\AUpdate.exe
C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe
C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe
C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=566…ER}&ar=home
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboForm.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\RoboForm.dll
O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [Zone Labs Client] C:\PROGRA~1\ZONELA~1\ZONEAL~1\zlclient.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Startup Manager Scanner] C:\Program Files\Startup Mechanic\StartupMonitor.exe
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKCU\..\Run: [RoboForm] "C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
O8 - Extra context menu item: Customize Menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Fill Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O8 - Extra context menu item: Save Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: ICQ Pro - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Program Files\ICQ\ICQ.exe
O9 - Extra 'Tools' menuitem: ICQ - {6224f700-cba3-4071-b251-47cb894244cd} - C:\Program Files\ICQ\ICQ.exe
O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\ypager.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\ypager.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.dixons.co.uk
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {29C13B62-B9F7-4CD3-8CEF-0A58A1A99441} - http://fdl.msn.com/public/chat/msnchat41.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} - http://www.bitdefender.com/scan8/oscan8.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat…b?1132171561234
O16 - DPF: {7A32634B-029C-4836-A023-528983982A49} - http://fdl.msn.com/public/chat/msnchat42.cab
O16 - DPF: {E87A6788-1D0F-4444-8898-1D25829B6755} - http://fdl.msn.com/public/chat/msnchat4.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{A297ACA8-866B-4FD0-8BB7-A7105FB333B2}: NameServer = 194.74.65.68,194.72.9.39
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\System32\DRIVERS\CDANTSRV.EXE
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: CWShredder Service - Unknown owner - C:\My Shared Folder\cwshredder.exe (file missing)
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SPBBCSvc - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs Inc. - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
Excellent :D …and so far, no pop up's are appearing to spoil my day, so hopefully uninstalling that file has done the trick ! ..I wonder how I managed to get that as I do have Nortons, Spy bot all running and working ! Oh well…. again, I greatly appreciate the help …many thanks :thumbup:
This topic is now closed.

If you need this topic reopened, please request this by sending an email to us at the following link

(Click for address)
Include your post user name and detail why you need it reopened with a valid link to your post.
Any bad links or emails that are not from the original poster will be deleted without response.
Any emails without the subject "Reopen" will be deleted without being looked at.

If this is not your thread please start a New Topic.

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI