Page 1 of 2 12 LastLast
Results 1 to 10 of 12

Thread: conflicts?

  1. #1
    Junior Member
    Join Date
    Feb 2006
    Posts
    12

    Question conflicts?

    Hi. Im hoping you can help because I cant find an answer anywere. Im running windows xp pro edition sp2. I have installed spybot, ad-aware and trend micro anti spyware.I use windows firewall.The trend micro monitors window services, browser security settings,check program when they are run, monitors memory for privacy,monitors startup areas,monitors host file changes,monitors browser plugins, active x& dowloadedprograms, monitors shell config settings & lsps.I did not install teatimer with spybot but have it set to block bad downloads.I also run avg free anti virus.My computer is very sluggish but I havent found any serious spyware problem other then a few 3rd party cookies. Im beginning to feel strongly I am having software conflicts here and maybe need to change some settings. If you can advise, I would be so grateful.Kaminikij

  2. #2
    Member of Team Spybot tashi's Avatar
    Join Date
    Oct 2005
    Location
    USA
    Posts
    30,608

    Default

    Hello and welcome.

    Could we see a log please.
    • Open SpyBot, check for and get any updates available.
    • Close all browsers, check for problems and fix everything found in red
    • Then on the toolbar menu select mode and switch to advanced mode, on the left lower down select tools, and view report, ensure all the options are selected near the bottom except
    • Uncheck[ ] do not report disabled or known legitimate Items.
    • uncheck[ ] Include a list of services in report.
    • Uncheck[ ] Include uninstall list in report.
    • Now select (near the top) view report.
    • Press export in the save in box choose a place such as your my documents folder, then in your next post near the bottom select the "browse" button; navigate to and attach or post that report please.

    Cheers.
    UNITE-ASAP

    Microsoft MVP. Consumer Security 2006-2013

    Please help us improve Spybot, download our distributed testing client

  3. #3
    Junior Member
    Join Date
    Feb 2006
    Posts
    12

    Default

    Thank you. Im on it right now!

  4. #4
    Junior Member
    Join Date
    Feb 2006
    Posts
    12

    Default

    i hope I did this correctly.
    no threats found
    no updates available
    here is the log

    --- Search result list ---
    Congratulations!: No immediate threats were found. ()



    --- Spybot - Search & Destroy version: 1.4 (build: 20050523) ---

    2005-05-31 blindman.exe (1.0.0.1)
    2005-05-31 SpybotSD.exe (1.4.0.3)
    2005-05-31 TeaTimer.exe (1.4.0.2)
    2006-01-21 unins000.exe (51.41.0.0)
    2005-05-31 Update.exe (1.4.0.0)
    2005-05-31 advcheck.dll (1.0.2.0)
    2005-05-31 aports.dll (2.1.0.0)
    2005-05-31 borlndmm.dll (7.0.4.453)
    2005-05-31 delphimm.dll (7.0.4.453)
    2005-05-31 SDHelper.dll (1.4.0.0)
    2005-05-31 Tools.dll (2.0.0.2)
    2005-05-31 UnzDll.dll (1.73.1.1)
    2005-05-31 ZipDll.dll (1.73.2.0)
    2006-02-10 Includes\Cookies.sbi (*)
    2006-02-10 Includes\Dialer.sbi (*)
    2006-02-10 Includes\Hijackers.sbi (*)
    2006-02-10 Includes\Keyloggers.sbi (*)
    2004-11-29 Includes\LSP.sbi (*)
    2006-02-10 Includes\Malware.sbi (*)
    2006-02-10 Includes\PUPS.sbi (*)
    2006-02-10 Includes\Revision.sbi (*)
    2006-02-10 Includes\Security.sbi (*)
    2006-02-10 Includes\Spybots.sbi (*)
    2005-02-17 Includes\Tracks.uti
    2006-02-10 Includes\Trojans.sbi (*)

  5. #5
    Junior Member
    Join Date
    Feb 2006
    Posts
    12

    Question

    I notice that the teatimer exe is there. I thought I didnt install that(I left it uncheked.) Could that be my problem. Maybe conflicting with trend micro?

  6. #6
    Security Expert-Emeritus
    Join Date
    Oct 2005
    Posts
    5,078

    Default

    kaminikij
    If Tea timer is unchecked then it is not running.
    It is best to never have more that one antivirus program running or even installed at the same time, keep the one you prefer and uninstall the other.

    Thats only a partial log, please do post the rest of it...

  7. #7
    Junior Member
    Join Date
    Feb 2006
    Posts
    12

    Question

    can you walk me thru this. Im fairly computer illeterate. when I copy & paste it tells me its too large.If I upload it tells me this


    Your file of 3.34 MB bytes exceeds the forum's limit of 39.1 KB for this filetype.
    Last edited by kaminikij; 2006-02-14 at 14:48.

  8. #8
    Spybot Advisor Team [Retired] md usa spybot fan's Avatar
    Join Date
    Oct 2005
    Posts
    5,879

    Default

    kaminikij:

    To attach a Spybot report:

    First make sure that you ran a fresh scan/fix before you produced the report or the results of the scan/fix may not show up in the report. Also make sure that these items were unchecked before you ran the report:
    • Do not report disabled or known legitimate items
    • Include uninstall list in report
    • Include list of services in report

    Below the "Reply to Thread" area there is another entry area "Additional Options". In that area in the "Attach Files" section, click on the "Manage Attachments" button. In the "Manage Attachments" pop-up window click the "Browse" button, navigate to the file that you want to attach then click the "Upload" button.

    Note: If entire report is too big to upload just paste it in sections to posts.

    Getting an answer is one thing, learning is another.


    Microsoft Windows XP Home Edition running on a 2.40GHz IntelŪ PentiumŪ 4 Processor with 512 MB of RAM and a 533 MHz System Bus.

  9. #9
    Junior Member
    Join Date
    Feb 2006
    Posts
    12

    Default

    --- Search result list ---
    Congratulations!: No immediate threats were found. ()



    --- Spybot - Search & Destroy version: 1.4 (build: 20050523) ---

    2005-05-31 blindman.exe (1.0.0.1)
    2005-05-31 SpybotSD.exe (1.4.0.3)
    2005-05-31 TeaTimer.exe (1.4.0.2)
    2006-01-21 unins000.exe (51.41.0.0)
    2005-05-31 Update.exe (1.4.0.0)
    2005-05-31 advcheck.dll (1.0.2.0)
    2005-05-31 aports.dll (2.1.0.0)
    2005-05-31 borlndmm.dll (7.0.4.453)
    2005-05-31 delphimm.dll (7.0.4.453)
    2005-05-31 SDHelper.dll (1.4.0.0)
    2005-05-31 Tools.dll (2.0.0.2)
    2005-05-31 UnzDll.dll (1.73.1.1)
    2005-05-31 ZipDll.dll (1.73.2.0)
    2006-02-10 Includes\Cookies.sbi (*)
    2006-02-10 Includes\Dialer.sbi (*)
    2006-02-10 Includes\Hijackers.sbi (*)
    2006-02-10 Includes\Keyloggers.sbi (*)
    2004-11-29 Includes\LSP.sbi (*)
    2006-02-10 Includes\Malware.sbi (*)
    2006-02-10 Includes\PUPS.sbi (*)
    2006-02-10 Includes\Revision.sbi (*)
    2006-02-10 Includes\Security.sbi (*)
    2006-02-10 Includes\Spybots.sbi (*)
    2005-02-17 Includes\Tracks.uti
    2006-02-10 Includes\Trojans.sbi (*)



    --- System information ---
    Windows XP (Build: 2600) Service Pack 2
    / Windows XP / SP3: Windows XP Hotfix - KB873339
    / Windows XP / SP3: Windows XP Hotfix - KB885250
    / Windows XP / SP3: Windows XP Hotfix - KB885835
    / Windows XP / SP3: Windows XP Hotfix - KB885836
    / Windows XP / SP3: Windows XP Hotfix - KB886185
    / Windows XP / SP3: Windows XP Hotfix - KB887472
    / Windows XP / SP3: Windows XP Hotfix - KB887742
    / Windows XP / SP3: Windows XP Hotfix - KB888113
    / Windows XP / SP3: Windows XP Hotfix - KB888302
    / Windows XP / SP3: Security Update for Windows XP (KB890046)
    / Windows XP / SP3: Windows XP Hotfix - KB890859
    / Windows XP / SP3: Windows XP Hotfix - KB891781
    / Windows XP / SP3: Security Update for Windows XP (KB893066)
    / Windows XP / SP3: Security Update for Windows XP (KB893756)
    / Windows XP / SP3: Windows Installer 3.1 (KB893803)
    / Windows XP / SP3: Update for Windows XP (KB894391)
    / Windows XP / SP3: Security Update for Windows XP (KB896358)
    / Windows XP / SP3: Security Update for Windows XP (KB896422)
    / Windows XP / SP3: Security Update for Windows XP (KB896423)
    / Windows XP / SP3: Security Update for Windows XP (KB896424)
    / Windows XP / SP3: Security Update for Windows XP (KB896428)
    / Windows XP / SP3: Update for Windows XP (KB898461)
    / Windows XP / SP3: Security Update for Windows XP (KB899587)
    / Windows XP / SP3: Security Update for Windows XP (KB899589)
    / Windows XP / SP3: Security Update for Windows XP (KB899591)
    / Windows XP / SP3: Security Update for Windows XP (KB900725)
    / Windows XP / SP3: Security Update for Windows XP (KB901017)
    / Windows XP / SP3: Security Update for Windows XP (KB901214)
    / Windows XP / SP3: Security Update for Windows XP (KB902400)
    / Windows XP / SP3: Security Update for Windows XP (KB904706)
    / Windows XP / SP3: Security Update for Windows XP (KB905414)
    / Windows XP / SP3: Security Update for Windows XP (KB905749)
    / Windows XP / SP3: Security Update for Windows XP (KB905915)
    / Windows XP / SP3: Security Update for Windows XP (KB908519)
    / Windows XP / SP3: Update for Windows XP (KB910437)
    / Windows XP / SP3: Security Update for Windows XP (KB912919)


    --- Startup entries list ---
    Located: HK_LM:Run, AVG7_CC
    command: C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
    file: C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
    size: 356352
    MD5: 6492815fc67068a11420740637946b0e

    Located: HK_LM:Run, BCMSMMSG
    command: BCMSMMSG.exe
    file: C:\WINDOWS\BCMSMMSG.exe
    size: 122880
    MD5: 2d99607f21ff368c0e335a2d91a052a1

    Located: HK_LM:Run, Dell AIO Printer A940
    command: "C:\Program Files\Dell AIO Printer A940\dlbabmgr.exe"
    file: C:\Program Files\Dell AIO Printer A940\dlbabmgr.exe
    size: 86102
    MD5: 4b5d22bd0a11e1c97ecfa5a45a529fcb

    Located: Startup (common), Trend Micro Anti-Spyware.lnk
    command: C:\Program Files\Trend Micro\Tmas\Tmas.exe
    file: C:\Program Files\Trend Micro\Tmas\Tmas.exe
    size: 1306624
    MD5: 1465bb6eaff960638c3b958fba001636

    Located: Startup (disabled), Adobe Reader Speed Launch (DISABLED)
    command: C:\PROGRA~1\Adobe\ACROBA~1.0\Reader\READER~1.EXE
    file: C:\PROGRA~1\Adobe\ACROBA~1.0\Reader\READER~1.EXE
    size: 29696
    MD5: deb88aef013dd1eefb462d7cad642166

    Located: Startup (disabled), Event Planner Reminders Tray Icon (DISABLED)
    command: C:\PROGRA~1\Sierra\Planner\Plnrnote.exe
    file: C:\PROGRA~1\Sierra\Planner\Plnrnote.exe
    size: 184320
    MD5: d69ffdb79693ee9bb6d5bdd43c5056c7

    Located: Startup (disabled), Microsoft Office (DISABLED)
    command: C:\PROGRA~1\MICROS~2\Office\OSA9.EXE -b -l
    file: C:\PROGRA~1\MICROS~2\Office\OSA9.EXE
    size: 65588
    MD5: 57cb86b1cdd77eb5138ba05d1f193463

    Located: System.ini, crypt32chain
    command: crypt32.dll
    file: crypt32.dll

    Located: System.ini, cryptnet
    command: cryptnet.dll
    file: cryptnet.dll

    Located: System.ini, cscdll
    command: cscdll.dll
    file: cscdll.dll

    Located: System.ini, igfxcui
    command: igfxsrvc.dll
    file: igfxsrvc.dll

    Located: System.ini, ScCertProp
    command: wlnotify.dll
    file: wlnotify.dll

    Located: System.ini, Schedule
    command: wlnotify.dll
    file: wlnotify.dll

    Located: System.ini, sclgntfy
    command: sclgntfy.dll
    file: sclgntfy.dll

    Located: System.ini, SensLogn
    command: WlNotify.dll
    file: WlNotify.dll

    Located: System.ini, termsrv
    command: wlnotify.dll
    file: wlnotify.dll

    Located: System.ini, wlballoon
    command: wlnotify.dll
    file: wlnotify.dll



    --- Browser helper object list ---
    {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (AcroIEHlprObj Class)
    BHO name:
    CLSID name: AcroIEHlprObj Class
    description: Adobe Acrobat reader
    classification: Legitimate
    known filename: AcroIEhelper.ocx<br>AcroIEhelper.dll
    info link: http://www.adobe.com/products/acrobat/readstep2.html
    info source: TonyKlein
    Path: C:\Program Files\Adobe\Acrobat 7.0\ActiveX\
    Long name: AcroIEHelper.dll
    Short name: ACROIE~1.DLL
    Date (created): 12/14/2004 1:56:50 AM
    Date (last access): 2/14/2006 8:56:16 AM
    Date (last write): 12/14/2004 1:56:50 AM
    Filesize: 63136
    Attributes: archive
    MD5: 42729C3DE75A7A51FC6F9EF6546C9199
    CRC32: 4D60BD07
    Version: 7.0.0.1333

    {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (SSVHelper Class)
    BHO name:
    CLSID name: SSVHelper Class
    Path: C:\Program Files\Java\jre1.5.0_06\bin\
    Long name: ssv.dll
    Short name:
    Date (created): 11/10/2005 1:03:56 PM
    Date (last access): 2/14/2006 8:34:16 AM
    Date (last write): 11/10/2005 1:22:10 PM
    Filesize: 184423
    Attributes: archive
    MD5: F01726F7CA8538FDD4663C9DB8FEAEDC
    CRC32: 0111B892
    Version: 5.0.60.5



    --- ActiveX list ---
    {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object)
    DPF name:
    CLSID name: QuickTime Object
    Installer: C:\WINDOWS\Downloaded Program Files\QTPlugin.inf
    Codebase: http://www.apple.com/qtactivex/qtplugin.cab
    description: Apple Quicktime
    classification: Legitimate
    known filename: QTPLUGIN.OCX
    info link:
    info source: Patrick M. Kolla
    Path: C:\Program Files\QuickTime Alternative\QTSystem\
    Long name: QTPlugin.ocx
    Short name:
    Date (created): 1/30/2006 5:39:24 PM
    Date (last access): 2/14/2006 7:57:00 AM
    Date (last write): 1/10/2006 11:33:18 PM
    Filesize: 409600
    Attributes: archive
    MD5: F4EC36EB22CFE40551DE3713805FA3F2
    CRC32: 634EA6F9
    Version: 7.0.4.80

    {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control)
    DPF name:
    CLSID name: Shockwave ActiveX Control
    Installer: C:\WINDOWS\Downloaded Program Files\erma.inf
    Codebase: http://fpdownload.macromedia.com/get...irector/sw.cab
    description: Macromedia ShockWave Flash Player 7
    classification: Legitimate
    known filename: SWDIR.DLL
    info link:
    info source: Patrick M. Kolla
    Path: C:\WINDOWS\system32\Macromed\Director\
    Long name: SwDir.dll
    Short name:
    Date (created): 1/19/2006 12:22:40 AM
    Date (last access): 2/14/2006 4:20:22 AM
    Date (last write): 12/19/2005 4:05:56 PM
    Filesize: 54976
    Attributes: archive
    MD5: 9EDA5BB8F38D6A1235D93F1A81971928
    CRC32: 702383B9
    Version: 10.1.0.11

    {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control)
    DPF name:
    CLSID name: ewidoOnlineScan Control
    Installer:
    Codebase: http://download.ewido.net/ewidoOnlineScan.cab
    Path: C:\WINDOWS\DOWNLO~1\
    Long name: ewidoOnlineScan.dll
    Short name: EWIDOO~1.DLL
    Date (created): 1/3/2006 9:20:34 AM
    Date (last access): 2/14/2006 8:34:16 AM
    Date (last write): 1/3/2006 9:20:34 AM
    Filesize: 327008
    Attributes: archive
    MD5: D40DBB08A55751B2A390813B0EA6955A
    CRC32: 7D8648A3
    Version: 1.0.0.1

    {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class)
    DPF name:
    CLSID name: MUWebControl Class
    Installer: C:\WINDOWS\Downloaded Program Files\muweb.inf
    Codebase: http://update.microsoft.com/microsof...?1137649942562
    description:
    classification: Legitimate
    known filename: muweb.dll
    info link:
    info source: Safer Networking Ltd.
    Path: C:\WINDOWS\system32\
    Long name: muweb.dll
    Short name:
    Date (created): 5/26/2005 4:19:32 AM
    Date (last access): 2/14/2006 4:20:22 AM
    Date (last write): 5/26/2005 4:19:32 AM
    Filesize: 178408
    Attributes: archive
    MD5: EE37AA2C0700221CD8B02FADCD4C7FB5
    CRC32: F5494B06
    Version: 5.8.0.2469

    {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.5.0)
    DPF name: Java Runtime Environment 1.5.0
    CLSID name: Java Plug-in 1.5.0_06
    Installer: C:\WINDOWS\Downloaded Program Files\jinstall-1_5_0_06.inf
    Codebase: http://java.sun.com/update/1.5.0/jin...ndows-i586.cab
    description: Sun Java
    classification: Legitimate
    known filename: %PROGRAM FILES%\JabaSoft\JRE\*\Bin\npjava131.dll
    info link:
    info source: Patrick M. Kolla
    Path: C:\Program Files\Java\jre1.5.0_06\bin\
    Long name: NPJPI150_06.dll
    Short name: NPJPI1~1.DLL
    Date (created): 11/10/2005 1:03:56 PM
    Date (last access): 2/14/2006 7:15:34 AM
    Date (last write): 11/10/2005 1:22:10 PM
    Filesize: 69746
    Attributes: archive
    MD5: D2CF6BB5E9020E6707B62575F8083954
    CRC32: 7F39DC54
    Version: 5.0.60.5

    {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} (Java Runtime Environment 1.5.0)
    DPF name: Java Runtime Environment 1.5.0
    CLSID name: Java Plug-in 1.5.0_06
    Installer:
    Codebase: http://java.sun.com/update/1.5.0/jin...ndows-i586.cab
    Path: C:\Program Files\Java\jre1.5.0_06\bin\
    Long name: NPJPI150_06.dll
    Short name: NPJPI1~1.DLL
    Date (created): 11/10/2005 1:03:56 PM
    Date (last access): 2/14/2006 8:57:12 AM
    Date (last write): 11/10/2005 1:22:10 PM
    Filesize: 69746
    Attributes: archive
    MD5: D2CF6BB5E9020E6707B62575F8083954
    CRC32: 7F39DC54
    Version: 5.0.60.5

    {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} (Java Runtime Environment 1.5.0)
    DPF name: Java Runtime Environment 1.5.0
    CLSID name: Java Plug-in 1.5.0_06
    Installer:
    Codebase: http://java.sun.com/update/1.5.0/jin...ndows-i586.cab
    Path: C:\Program Files\Java\jre1.5.0_06\bin\
    Long name: NPJPI150_06.dll
    Short name: NPJPI1~1.DLL
    Date (created): 11/10/2005 1:03:56 PM
    Date (last access): 2/14/2006 8:57:12 AM
    Date (last write): 11/10/2005 1:22:10 PM
    Filesize: 69746
    Attributes: archive
    MD5: D2CF6BB5E9020E6707B62575F8083954
    CRC32: 7F39DC54
    Version: 5.0.60.5



    --- Process list ---
    PID: 0 ( 0) [System]
    PID: 596 ( 4) \SystemRoot\System32\smss.exe
    PID: 644 ( 596) \??\C:\WINDOWS\system32\csrss.exe
    PID: 668 ( 596) \??\C:\WINDOWS\system32\winlogon.exe
    PID: 712 ( 668) C:\WINDOWS\system32\services.exe
    size: 108032
    MD5: C6CE6EEC82F187615D1002BB3BB50ED4
    PID: 724 ( 668) C:\WINDOWS\system32\lsass.exe
    size: 13312
    MD5: 84885F9B82F4D55C6146EBF6065D75D2
    PID: 880 ( 712) C:\WINDOWS\system32\svchost.exe
    size: 14336
    MD5: 8F078AE4ED187AAABC0A305146DE6716
    PID: 956 ( 712) C:\WINDOWS\system32\svchost.exe
    size: 14336
    MD5: 8F078AE4ED187AAABC0A305146DE6716
    PID: 1048 ( 712) C:\WINDOWS\System32\svchost.exe
    size: 14336
    MD5: 8F078AE4ED187AAABC0A305146DE6716
    PID: 1104 ( 712) C:\WINDOWS\system32\svchost.exe
    size: 14336
    MD5: 8F078AE4ED187AAABC0A305146DE6716
    PID: 1160 ( 712) C:\WINDOWS\system32\svchost.exe
    size: 14336
    MD5: 8F078AE4ED187AAABC0A305146DE6716
    PID: 1504 (1456) C:\WINDOWS\Explorer.EXE
    size: 1032192
    MD5: A0732187050030AE399B241436565E64
    PID: 1560 ( 712) C:\WINDOWS\system32\LEXBCES.EXE
    size: 303104
    MD5: 5E3498F3D0146C0E275272B94369E3D2
    PID: 1584 ( 712) C:\WINDOWS\system32\spoolsv.exe
    size: 57856
    MD5: DA81EC57ACD4CDC3D4C51CF3D409AF9F
    PID: 1592 (1560) C:\WINDOWS\system32\LEXPPS.EXE
    size: 174592
    MD5: 4BAA2A65871C478CB45F11C948D9C539
    PID: 1772 (1504) C:\WINDOWS\BCMSMMSG.exe
    size: 122880
    MD5: 2D99607F21FF368C0E335A2D91A052A1
    PID: 1780 (1504) C:\Program Files\Dell AIO Printer A940\dlbabmgr.exe
    size: 86102
    MD5: 4B5D22BD0A11E1C97ECFA5A45A529FCB
    PID: 1788 (1504) C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
    size: 356352
    MD5: 6492815FC67068A11420740637946B0E
    PID: 1800 (1504) C:\Program Files\Trend Micro\Tmas\Tmas.exe
    size: 1306624
    MD5: 1465BB6EAFF960638C3B958FBA001636
    PID: 1808 (1780) C:\Program Files\Dell AIO Printer A940\dlbabmon.exe
    size: 73806
    MD5: E1B3D8B05E30FEF727748B84FC3D7366
    PID: 264 ( 712) C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    size: 336896
    MD5: 9BF46D959F713D64C8FF3DE2B2437863
    PID: 276 ( 712) C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    size: 84480
    MD5: 66093610FA61142F6BCFD83AFB7E8A29
    PID: 312 ( 712) C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    size: 280576
    MD5: E431814C506FD4FD1DF82D56F178B4A5
    PID: 516 ( 712) C:\WINDOWS\system32\svchost.exe
    size: 14336
    MD5: 8F078AE4ED187AAABC0A305146DE6716
    PID: 512 ( 712) C:\WINDOWS\System32\alg.exe
    size: 44544
    MD5: F1958FBF86D5C004CF19A5951A9514B7
    PID: 3328 (1504) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
    size: 4393096
    MD5: 09CA174A605B480318731E691DC98539
    PID: 4 ( 0) System


    --- Browser start & search pages list ---
    Spybot - Search & Destroy browser pages report, 2/14/2006 8:57:12 AM

    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
    C:\WINDOWS\system32\blank.htm
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
    http://www.microsoft.com/isapi/redir...ie&ar=iesearch
    HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
    http://www.adelphia.net/
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
    %SystemRoot%\system32\blank.htm
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
    http://www.microsoft.com/isapi/redir...ie&ar=iesearch
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
    http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
    http://www.microsoft.com/isapi/redir...r=6&ar=msnhome
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
    http://www.microsoft.com/isapi/redir...ie&ar=iesearch
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
    http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
    HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
    http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm


    --- Winsock Layered Service Provider list ---
    Protocol 0: MSAFD Tcpip [TCP/IP]
    GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP IP protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD Tcpip

  10. #10
    Junior Member
    Join Date
    Feb 2006
    Posts
    12

    Default

    Protocol 1: MSAFD Tcpip [UDP/IP]
    GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP IP protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD Tcpip[*]

    Protocol 2: MSAFD Tcpip [RAW/IP]
    GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP IP protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD Tcpip[*]

    Protocol 3: RSVP UDP Service Provider
    GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A}
    Filename: %SystemRoot%\system32\rsvpsp.dll
    Description: Microsoft Windows NT/2k/XP RVSP
    DB filename: %SystemRoot%\system32\rsvpsp.dll
    DB protocol: RSVP * Service Provider

    Protocol 4: RSVP TCP Service Provider
    GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A}
    Filename: %SystemRoot%\system32\rsvpsp.dll
    Description: Microsoft Windows NT/2k/XP RVSP
    DB filename: %SystemRoot%\system32\rsvpsp.dll
    DB protocol: RSVP * Service Provider

    Protocol 5: MSAFD NetBIOS [\Device\NetBT_Tcpip_{4092D47D-6AC5-47CC-AD63-15299702BFE4}] SEQPACKET 0
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 6: MSAFD NetBIOS [\Device\NetBT_Tcpip_{4092D47D-6AC5-47CC-AD63-15299702BFE4}] DATAGRAM 0
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 7: MSAFD NetBIOS [\Device\NetBT_Tcpip_{244478C9-A4E2-4779-B0D1-F11D12B826B0}] SEQPACKET 1
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 8: MSAFD NetBIOS [\Device\NetBT_Tcpip_{244478C9-A4E2-4779-B0D1-F11D12B826B0}] DATAGRAM 1
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 9: MSAFD NetBIOS [\Device\NetBT_Tcpip_{F35BD473-A1BB-466D-AFE9-1EB3D3482FAE}] SEQPACKET 2
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Protocol 10: MSAFD NetBIOS [\Device\NetBT_Tcpip_{F35BD473-A1BB-466D-AFE9-1EB3D3482FAE}] DATAGRAM 2
    GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
    Filename: %SystemRoot%\system32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP NetBios protocol
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: MSAFD NetBIOS *

    Namespace Provider 0: Tcpip
    GUID: {22059D40-7E9E-11CF-AE5A-00AA00A7112B}
    Filename: %SystemRoot%\System32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP TCP/IP name space provider
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: TCP/IP

    Namespace Provider 1: NTDS
    GUID: {3B2637EE-E580-11CF-A555-00C04FD8D4AC}
    Filename: %SystemRoot%\System32\winrnr.dll
    Description: Microsoft Windows NT/2k/XP name space provider
    DB filename: %SystemRoot%\system32\winrnr.dll
    DB protocol: NTDS

    Namespace Provider 2: Network Location Awareness (NLA) Namespace
    GUID: {6642243A-3BA8-4AA6-BAA5-2E0BD71FDD83}
    Filename: %SystemRoot%\System32\mswsock.dll
    Description: Microsoft Windows NT/2k/XP name space provider
    DB filename: %SystemRoot%\system32\mswsock.dll
    DB protocol: NLA-Namespace


    hope this is ok now

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •