PDA

View Full Version : Blue Screen



Irish
2006-02-07, 19:57
Spybot will not finish checking, it will go about half way then it brings up a Blue Screen saying that windows has detected a fatal flaw and has closed to prevent damage. It tells me if I have installed any new software or hardware to remove it... but I have not installed any in months. This has been a problem with Spybot for a few months now. I have WinXP..SP2 installed..Avast Anti-Virus...Kerio Firewall and Mcafee security-only the security part in McAfee..I also have Ad-Aware SE Personal and Ad-Aware never gives me a problem when I run... only Spybot does. ThankYou for any help you can give.
Irish

tashi
2006-02-08, 16:07
Hello.
Please open Spybot>Help>About
Let us know the version and latest detection update.

Do you have the paid version of Adaware and if so is the Resident 'AdWatch' activated?

Regards. :)

Irish
2006-02-09, 01:23
Thanks for replying. The version of my Spybot is.. 1.4 and the latest update was Feb.3rd 2006. I have the free version of Ad-Aware... therefore the Ad-Watch is not activated. I tried running Spybot again today... but shut off McAfee Security first and Spybot ran fine... so guess it must be McAfee that is the problem. When my wife runs Spybot on her computer she never has a problem with it and she doesn't have to shut down McAfee either... so maybe it might be something else is the reason it won't run. Also I did want to mention.. The usuage tracks won't even show up after I run Spybot. Any idea as to why? Thanks again. :scratch:
Irish

tashi
2006-02-10, 18:14
Hello Irish
Open SpyBot, check for and get any updates available.
Close all browsers, check for problems and fix everything found in red
Then on the toolbar menu select mode and switch to advanced mode, on the left lower down select tools, and view report, ensure all the options are selected near the bottom except

Uncheck[ ] do not report disabled or known legitimate Items.
uncheck[ ] Include a list of services in report.
Uncheck[ ] Include uninstall list in report.

Now select (near the top) view report.
Press export in the save in box choose a place such as your my documents folder, then in your next post near the bottom select the "browse" button; navigate to and attach or post that report please.

Re: Usage tracks:
Spybot>Mode>Advanced>Settings>File Sets.
See if Search for usage tracks is checked.

Irish
2006-02-12, 03:46
Hello tashi

Here is the report you asked for..I still wonder why I have to close security
when I run Spybot and my wife dosn't ? I have Fat32..She has NTFS.. :scratch:


--- Search result list ---
Congratulations!: No immediate threats were found. ()

--- Process list ---
PID: 0 ( 0) [System]
PID: 548 ( 4) \SystemRoot\System32\smss.exe
PID: 604 ( 548) \??\C:\WINDOWS\system32\csrss.exe
PID: 628 ( 548) \??\C:\WINDOWS\system32\winlogon.exe
PID: 672 ( 628) C:\WINDOWS\system32\services.exe
size: 108032
MD5: C6CE6EEC82F187615D1002BB3BB50ED4
PID: 684 ( 628) C:\WINDOWS\system32\lsass.exe
size: 13312
MD5: 84885F9B82F4D55C6146EBF6065D75D2
PID: 832 ( 672) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 888 ( 672) C:\WINDOWS\system32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 988 ( 672) C:\WINDOWS\System32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 1132 ( 672) C:\WINDOWS\System32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 1300 ( 672) C:\WINDOWS\system32\LEXBCES.EXE
size: 311296
MD5: 2A125981BB23F0A023255D39B7E1C25E
PID: 1336 ( 672) C:\WINDOWS\system32\spoolsv.exe
size: 57856
MD5: DA81EC57ACD4CDC3D4C51CF3D409AF9F
PID: 1624 (1568) C:\WINDOWS\Explorer.EXE
size: 1032192
MD5: A0732187050030AE399B241436565E64
PID: 1692 ( 672) C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
size: 28672
MD5: 24A16F86E33D3AD19E22F331D8211B46
PID: 1736 ( 672) C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
size: 53248
MD5: 435D862E96FE19612093177CF6618F4E
PID: 1820 ( 672) C:\Program Files\Alwil Software\Avast4\ashServ.exe
size: 102448
MD5: 0839B8BFDF17DAC8C9B083009768400E
PID: 1888 ( 672) C:\Program Files\Kerio\Personal Firewall 4\kpf4ss.exe
size: 1617920
MD5: E7A74CEA1D5E6CE0EA5AD7D5C31A0D34
PID: 1968 ( 672) C:\WINDOWS\System32\svchost.exe
size: 14336
MD5: 8F078AE4ED187AAABC0A305146DE6716
PID: 2044 (1888) C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
size: 2887680
MD5: 188CB9B4E1B51215D385B7AB4A89CBD0
PID: 120 ( 672) C:\WINDOWS\system32\wdfmgr.exe
size: 38912
MD5: AB0A7CA90D9E3D6A193905DC1715DED0
PID: 484 ( 672) C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
size: 241712
MD5: A7A61A9FFE49102C0ECDC259C915BDB9
PID: 1568 ( 672) C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
size: 364592
MD5: 1E898FA5EA0C8CB3BF053997516BB2C0
PID: 1088 ( 672) C:\WINDOWS\System32\alg.exe
size: 44544
MD5: F1958FBF86D5C004CF19A5951A9514B7
PID: 2156 (1624) C:\PROGRA~1\LEXMAR~1\ACMonitor_X73.exe
size: 53248
MD5: EAAF269EFB33D469B3D98304B28C06F8
PID: 2172 (1624) C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
size: 139264
MD5: 2036A8579D88BFB27BDC96895735751B
PID: 2228 (1888) C:\Program Files\Kerio\Personal Firewall 4\kpf4gui.exe
size: 2887680
MD5: 188CB9B4E1B51215D385B7AB4A89CBD0
PID: 2240 (1624) C:\Program Files\McAfee\QuickClean\Plguni.exe
size: 98304
MD5: 3C246A878620C3393D17E92BAAE05AFD
PID: 2248 (1624) C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
size: 102448
MD5: 9EB989D83225F2E6D9ECFDCCDD0DB0CA
PID: 2256 (1624) C:\Program Files\CursorXP\CursorXP.exe
size: 128000
MD5: 7B70742882445F1269FC49708AB39751
PID: 2268 (1624) C:\Program Files\Desktop Architect\datray.exe
size: 118784
MD5: BD49EBD2EC392F9D6391AC62D5E76792
PID: 2304 (1624) C:\Documents and Settings\Ron McBride\Start Menu\Programs\Startup\tarsier.exe
size: 32768
MD5: 30EE8DC01764892A0753271E43F85D19
PID: 2548 (2172) C:\Program Files\Netropa\Onscreen Display\OSD.exe
size: 86016
MD5: 6D802E50E5A2998994B799DB0469F4FA
PID: 3104 (1624) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
size: 4393096
MD5: 09CA174A605B480318731E691DC98539
PID: 3236 (1624) C:\Program Files\Maxthon\Maxthon.exe
size: 887808
MD5: 391AC4580DCE1A34DB9D6C2601B80839
PID: 4 ( 0) System


--- Browser start & search pages list ---
Spybot - Search & Destroy browser pages report, 2/11/2006 9:09:22 PM

HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
C:\WINDOWS\system32\blank.htm
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Bar
http://g.msn.com/0SEENUS/SAOS01
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
http://www.cox.net/
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
%SystemRoot%\system32\blank.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
http://www.msn.com/
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
http://start.earthlink.net
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
http://ie.search.msn.com/en-us/srchasst/srchasst.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
http://ie.search.msn.com/en-us/srchasst/srchcust.htm


--- Winsock Layered Service Provider list ---
Protocol 0: McAfee_GdLsp [MSAFD Tcpip [TCP/IP]]
GUID: {B7E440B6-0075-43B3-9DA5-97DBB9D0C992}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 1: McAfee_GdLsp [MSAFD Tcpip [UDP/IP]]
GUID: {6FE7F886-857C-4146-826E-F2D707953051}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 2: McAfee_GdLsp [MSAFD Tcpip [RAW/IP]]
GUID: {2E5D99A0-E9B5-4939-A914-6DE99CAA5019}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 3: McAfee_GdLsp [RSVP UDP Service Provider]
GUID: {38556EB7-E2BC-4984-90F8-CC84CF2070E4}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 4: McAfee_GdLsp [RSVP TCP Service Provider]
GUID: {7D0DC594-C495-44A8-A4EA-DF3AF1B38A5F}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 5: McAfee_GdLsp [MSAFD Tcpip [TCP/IPv6]]
GUID: {8C49C19E-5EE1-4C58-9A63-49A589A770F9}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 6: McAfee_GdLsp [MSAFD Tcpip [UDP/IPv6]]
GUID: {C70C0D2B-EF1A-4198-9CDE-0C23C9FD3615}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 7: McAfee_GdLsp [MSAFD Tcpip [RAW/IPv6]]
GUID: {C8C95D15-D658-4508-B86F-9F0A662C46E5}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 8: McAfee_GdLsp [MSAFD NetBIOS [\Device\NetBT_Tcpip6_{5D538968-9795-4988-BB17-9CEEB032A162}] SEQPACKET 6]
GUID: {E5BAFF8C-CD96-4242-826F-3242C7808D72}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 9: McAfee_GdLsp [MSAFD NetBIOS [\Device\NetBT_Tcpip6_{5D538968-9795-4988-BB17-9CEEB032A162}] DATAGRAM 6]
GUID: {2F0B762B-B9BB-469D-B5A0-7383F62662EB}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 10: McAfee_GdLsp [MSAFD NetBIOS [\Device\NetBT_Tcpip6_{FD73253C-2158-4AAC-8285-A5D980CAB7FE}] SEQPACKET 7]
GUID: {C5B07813-56AF-4FE1-9D4C-875CDB6FD2C7}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 11: McAfee_GdLsp [MSAFD NetBIOS [\Device\NetBT_Tcpip6_{FD73253C-2158-4AAC-8285-A5D980CAB7FE}] DATAGRAM 7]
GUID: {05B46325-BC0A-4401-867A-8BB1E459EC0E}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 12: McAfee_GdLsp [MSAFD NetBIOS [\Device\NetBT_Tcpip6_{8446E493-34B9-4B81-AD45-E92B5267423A}] SEQPACKET 8]
GUID: {9B06F114-BB92-4DB5-B156-4BC1FFF12481}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 13: McAfee_GdLsp [MSAFD NetBIOS [\Device\NetBT_Tcpip6_{8446E493-34B9-4B81-AD45-E92B5267423A}] DATAGRAM 8]
GUID: {6B53EFF3-A73E-41D5-95E7-520EEBB46FC7}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 14: McAfee_GdLsp [MSAFD NetBIOS [\Device\NetBT_Tcpip_{FD73253C-2158-4AAC-8285-A5D980CAB7FE}] SEQPACKET 0]
GUID: {4B24FA7A-3441-4934-AE08-C729DDFE172B}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 15: McAfee_GdLsp [MSAFD NetBIOS [\Device\NetBT_Tcpip_{FD73253C-2158-4AAC-8285-A5D980CAB7FE}] DATAGRAM 0]
GUID: {8689DE61-C2E2-4E58-A095-E79E8B759B9E}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 16: McAfee_GdLsp [MSAFD NetBIOS [\Device\NetBT_Tcpip_{5D538968-9795-4988-BB17-9CEEB032A162}] SEQPACKET 3]
GUID: {936A0F49-0A97-4362-8048-0D94BDA6C58D}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 17: McAfee_GdLsp [MSAFD NetBIOS [\Device\NetBT_Tcpip_{5D538968-9795-4988-BB17-9CEEB032A162}] DATAGRAM 3]
GUID: {21093F58-F3DB-4FF8-A8D2-089F5A1F3D11}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 18: McAfee_GdLsp [MSAFD NetBIOS [\Device\NetBT_Tcpip_{9986C9BA-A7EA-4BC4-A09B-41EBAF9CCA69}] SEQPACKET 1]
GUID: {2DA3D08A-4A13-4DC8-9666-3B63792A05D3}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 19: McAfee_GdLsp [MSAFD NetBIOS [\Device\NetBT_Tcpip_{9986C9BA-A7EA-4BC4-A09B-41EBAF9CCA69}] DATAGRAM 1]
GUID: {8A07A791-B698-4AD5-86DF-B01D88621409}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 20: McAfee_GdLsp [MSAFD NetBIOS [\Device\NetBT_Tcpip_{51AC4D20-C4FE-4455-9EFA-7D95D96DE081}] SEQPACKET 2]
GUID: {FFD2F08F-AE5F-43A1-92A3-6C6ABAF1F1CF}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 21: McAfee_GdLsp [MSAFD NetBIOS [\Device\NetBT_Tcpip_{51AC4D20-C4FE-4455-9EFA-7D95D96DE081}] DATAGRAM 2]
GUID: {901886B7-7695-40E7-8009-9EEBCA3709C5}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 22: McAfee_GdLsp [MSAFD NetBIOS [\Device\NetBT_Tcpip_{0A1EFE33-DAB7-4246-9E91-EF670F68DCA8}] SEQPACKET 4]
GUID: {293DDF06-C211-4AD4-87B6-D04DCBE88940}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 23: McAfee_GdLsp [MSAFD NetBIOS [\Device\NetBT_Tcpip_{0A1EFE33-DAB7-4246-9E91-EF670F68DCA8}] DATAGRAM 4]
GUID: {1B4FA08C-8CA1-41F7-B9D2-42E46D867C73}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 24: McAfee_GdLsp [MSAFD NetBIOS [\Device\NetBT_Tcpip_{9704CAEE-6344-4549-92BE-0B783BF32B0E}] SEQPACKET 5]
GUID: {8826292B-C7B2-45EA-BA01-5DBA94795D0F}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 25: McAfee_GdLsp [MSAFD NetBIOS [\Device\NetBT_Tcpip_{9704CAEE-6344-4549-92BE-0B783BF32B0E}] DATAGRAM 5]
GUID: {B7FC3539-4C3A-4FFD-ADBF-EFFE91AF2141}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Protocol 26: MSAFD Tcpip [TCP/IP]
GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP IP protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD Tcpip

Protocol 27: MSAFD Tcpip [UDP/IP]
GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP IP protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD Tcpip

Protocol 28: MSAFD Tcpip [RAW/IP]
GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP IP protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD Tcpip

Protocol 29: RSVP UDP Service Provider
GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A}
Filename: %SystemRoot%\system32\rsvpsp.dll
Description: Microsoft Windows NT/2k/XP RVSP
DB filename: %SystemRoot%\system32\rsvpsp.dll
DB protocol: RSVP * Service Provider

Protocol 30: RSVP TCP Service Provider
GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A}
Filename: %SystemRoot%\system32\rsvpsp.dll
Description: Microsoft Windows NT/2k/XP RVSP
DB filename: %SystemRoot%\system32\rsvpsp.dll
DB protocol: RSVP * Service Provider

Protocol 31: MSAFD Tcpip [TCP/IPv6]
GUID: {F9EAB0C0-26D4-11D0-BBBF-00AA006C34E4}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP IPv6 protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD Tcpip

Protocol 32: MSAFD Tcpip [UDP/IPv6]
GUID: {F9EAB0C0-26D4-11D0-BBBF-00AA006C34E4}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP IPv6 protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD Tcpip

Protocol 33: MSAFD Tcpip [RAW/IPv6]
GUID: {F9EAB0C0-26D4-11D0-BBBF-00AA006C34E4}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP IPv6 protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD Tcpip

Protocol 34: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{5D538968-9795-4988-BB17-9CEEB032A162}] SEQPACKET 6
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 35: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{5D538968-9795-4988-BB17-9CEEB032A162}] DATAGRAM 6
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 36: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{FD73253C-2158-4AAC-8285-A5D980CAB7FE}] SEQPACKET 7
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 37: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{FD73253C-2158-4AAC-8285-A5D980CAB7FE}] DATAGRAM 7
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 38: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{8446E493-34B9-4B81-AD45-E92B5267423A}] SEQPACKET 8
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 39: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{8446E493-34B9-4B81-AD45-E92B5267423A}] DATAGRAM 8
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 40: MSAFD NetBIOS [\Device\NetBT_Tcpip_{FD73253C-2158-4AAC-8285-A5D980CAB7FE}] SEQPACKET 0
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 41: MSAFD NetBIOS [\Device\NetBT_Tcpip_{FD73253C-2158-4AAC-8285-A5D980CAB7FE}] DATAGRAM 0
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 42: MSAFD NetBIOS [\Device\NetBT_Tcpip_{5D538968-9795-4988-BB17-9CEEB032A162}] SEQPACKET 3
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 43: MSAFD NetBIOS [\Device\NetBT_Tcpip_{5D538968-9795-4988-BB17-9CEEB032A162}] DATAGRAM 3
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 44: MSAFD NetBIOS [\Device\NetBT_Tcpip_{9986C9BA-A7EA-4BC4-A09B-41EBAF9CCA69}] SEQPACKET 1
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 45: MSAFD NetBIOS [\Device\NetBT_Tcpip_{9986C9BA-A7EA-4BC4-A09B-41EBAF9CCA69}] DATAGRAM 1
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 46: MSAFD NetBIOS [\Device\NetBT_Tcpip_{51AC4D20-C4FE-4455-9EFA-7D95D96DE081}] SEQPACKET 2
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 47: MSAFD NetBIOS [\Device\NetBT_Tcpip_{51AC4D20-C4FE-4455-9EFA-7D95D96DE081}] DATAGRAM 2
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 48: MSAFD NetBIOS [\Device\NetBT_Tcpip_{0A1EFE33-DAB7-4246-9E91-EF670F68DCA8}] SEQPACKET 4
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 49: MSAFD NetBIOS [\Device\NetBT_Tcpip_{0A1EFE33-DAB7-4246-9E91-EF670F68DCA8}] DATAGRAM 4
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 50: MSAFD NetBIOS [\Device\NetBT_Tcpip_{9704CAEE-6344-4549-92BE-0B783BF32B0E}] SEQPACKET 5
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 51: MSAFD NetBIOS [\Device\NetBT_Tcpip_{9704CAEE-6344-4549-92BE-0B783BF32B0E}] DATAGRAM 5
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *

Protocol 52: McAfee_GdLsp
GUID: {4D7DC2C0-7807-11D6-A9EA-00045A6B76C2}
Filename: C:\WINDOWS\system32\CSLSP.DLL

Namespace Provider 0: Tcpip
GUID: {22059D40-7E9E-11CF-AE5A-00AA00A7112B}
Filename: %SystemRoot%\System32\mswsock.dll
Description: Microsoft Windows NT/2k/XP TCP/IP name space provider
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: TCP/IP

Namespace Provider 1: NTDS
GUID: {3B2637EE-E580-11CF-A555-00C04FD8D4AC}
Filename: %SystemRoot%\System32\winrnr.dll
Description: Microsoft Windows NT/2k/XP name space provider
DB filename: %SystemRoot%\system32\winrnr.dll
DB protocol: NTDS

Namespace Provider 2: Network Location Awareness (NLA) Namespace
GUID: {6642243A-3BA8-4AA6-BAA5-2E0BD71FDD83}
Filename: %SystemRoot%\System32\mswsock.dll
Description: Microsoft Windows NT/2k/XP name space provider
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: NLA-Namespace

LonnyRJones
2006-02-12, 04:32
Hi Irish
Id like to see the top half of the report (after checking for problems), try again please.

Why do you have both Mcaffee and avast ?
Please uninstall all but one antiviorus program (not just disable)

Irish
2006-02-12, 14:40
I do not have two anti-virus programs. As I said in my other post.. I only have McAfee Security... I do not have McAfee anti-virus. I only have Avast anti-virus. I will send you the top portion later today. I tried sending the whole thing yesterday.. but as you know.. it wouldn't let me send because it was to long. Thanks for replying and I will send you the other half later today.

LonnyRJones
2006-02-12, 19:23
Hi Irish

Mcaffee's security center is designed for its programs, since you do not use its programs why use it, to prevent any possible conflicts i recommend Un-Installing it

Irish
2006-02-12, 20:22
Hi Lonny
Here is the rest of the report you wanted..I'm looking for another security program but I figured the one I have is better then nothing..Had to do report
in two posts..


--- Search result list ---
Congratulations!: No immediate threats were found. ()



--- Spybot - Search & Destroy version: 1.4 (build: 20050523) ---

2005-09-12 unins000.exe (51.41.0.0)
2005-05-31 blindman.exe (1.0.0.1)
2005-05-31 SpybotSD.exe (1.4.0.3)
2005-05-31 TeaTimer.exe (1.4.0.2)
2005-05-31 Update.exe (1.4.0.0)
2005-05-31 advcheck.dll (1.0.2.0)
2005-05-31 aports.dll (2.1.0.0)
2005-05-31 borlndmm.dll (7.0.4.453)
2005-05-31 delphimm.dll (7.0.4.453)
2005-05-31 SDHelper.dll (1.4.0.0)
2005-05-31 Tools.dll (2.0.0.2)
2005-05-31 UnzDll.dll (1.73.1.1)
2005-05-31 ZipDll.dll (1.73.2.0)
2006-02-10 Includes\Cookies.sbi (*)
2006-02-10 Includes\Dialer.sbi (*)
2006-02-10 Includes\Hijackers.sbi (*)
2006-02-10 Includes\Keyloggers.sbi (*)
2006-02-10 Includes\Malware.sbi (*)
2006-02-10 Includes\Revision.sbi (*)
2006-02-10 Includes\Security.sbi (*)
2006-02-10 Includes\Spybots.sbi (*)
2006-02-10 Includes\Trojans.sbi (*)
2004-11-29 Includes\LSP.sbi (*)
2005-02-17 Includes\Tracks.uti
2006-02-10 Includes\PUPS.sbi (*)



--- System information ---
Windows XP (Build: 2600) Service Pack 2
/ DataAccess: Microsoft Data Access Components KB870669
/ DataAccess: Patch Available For XMLHTTP Vulnerability
/ DataAccess: Patch Available For XMLHTTP Vulnerability
/ DataAccess: Security update for Microsoft Data Access Components
/ DataAccess: Security Update for Microsoft Data Access Components
/ DirectX: DirectX Update 819696
/ DirectX / DX9 / SP1: DirectX 9 Hotfix - KB839643
/ Step By Step Interactive Training / SP2: Security Update for Step By Step Interactive Training (KB898458)
/ Windows Media Player: Windows Media Player Hotfix [See KB837272 for more information]
/ Windows Media Player / SP0: Windows Media Player Hotfix [See wm828026 for more information]
/ Windows Media Player: Windows Media Update 819639
/ Windows Media Player: Windows Media Update 828026
/ Windows XP / SP2: Windows XP Service Pack 2
/ Windows XP / SP3: Windows XP Hotfix - KB834707
/ Windows XP / SP3: Windows XP Hotfix - KB867282
/ Windows XP / SP3: Windows XP Hotfix - KB873333
/ Windows XP / SP3: Windows XP Hotfix - KB873339
/ Windows XP / SP3: Security Update for Windows XP (KB883939)
/ Windows XP / SP3: Windows XP Hotfix - KB885250
/ Windows XP / SP3: Windows XP Hotfix - KB885523
/ Windows XP / SP3: Windows XP Hotfix - KB885835
/ Windows XP / SP3: Windows XP Hotfix - KB885836
/ Windows XP / SP3: Windows XP Hotfix - KB885884
/ Windows XP / SP3: Windows XP Hotfix - KB886185
/ Windows XP / SP3: Windows XP Hotfix - KB887472
/ Windows XP / SP3: Windows XP Hotfix - KB887742
/ Windows XP / SP3: Windows XP Hotfix - KB887797
/ Windows XP / SP3: Windows XP Hotfix - KB888113
/ Windows XP / SP3: Windows XP Hotfix - KB888302
/ Windows XP / SP3: Security Update for Windows XP (KB890046)
/ Windows XP / SP3: Windows XP Hotfix - KB890047
/ Windows XP / SP3: Windows XP Hotfix - KB890175
/ Windows XP / SP3: Windows XP Hotfix - KB890859
/ Windows XP / SP3: Windows XP Hotfix - KB890923
/ Windows XP / SP3: Windows XP Hotfix - KB891781
/ Windows XP / SP3: Security Update for Windows XP (KB893066)
/ Windows XP / SP3: Windows XP Hotfix - KB893086
/ Windows XP / SP3: Security Update for Windows XP (KB893756)
/ Windows XP / SP3: Windows Installer 3.1 (KB893803)
/ Windows XP / SP3: Windows Installer 3.1 (KB893803)
/ Windows XP / SP3: Update for Windows XP (KB894391)
/ Windows XP / SP3: Hotfix for Windows XP (KB896344)
/ Windows XP / SP3: Security Update for Windows XP (KB896358)
/ Windows XP / SP3: Security Update for Windows XP (KB896422)
/ Windows XP / SP3: Security Update for Windows XP (KB896423)
/ Windows XP / SP3: Security Update for Windows XP (KB896424)
/ Windows XP / SP3: Security Update for Windows XP (KB896428)
/ Windows XP / SP3: Security Update for Windows XP (KB896688)
/ Windows XP / SP3: Update for Windows XP (KB896727)
/ Windows XP / SP3: Update for Windows XP (KB898461)
/ Windows XP / SP3: Security Update for Windows XP (KB899587)
/ Windows XP / SP3: Security Update for Windows XP (KB899588)
/ Windows XP / SP3: Security Update for Windows XP (KB899591)
/ Windows XP / SP3: Security Update for Windows XP (KB900725)
/ Windows XP / SP3: Update for Windows XP (KB900930)
/ Windows XP / SP3: Security Update for Windows XP (KB901017)
/ Windows XP / SP3: Security Update for Windows XP (KB901214)
/ Windows XP / SP3: Security Update for Windows XP (KB902400)
/ Windows XP / SP3: Security Update for Windows XP (KB903235)
/ Windows XP / SP3: Security Update for Windows XP (KB904706)
/ Windows XP / SP3: Security Update for Windows XP (KB905414)
/ Windows XP / SP3: Security Update for Windows XP (KB905749)
/ Windows XP / SP3: Security Update for Windows XP (KB905915)
/ Windows XP / SP3: Security Update for Windows XP (KB908519)
/ Windows XP / SP3: Update for Windows XP (KB910437)
/ Windows XP / SP3: Security Update for Windows XP (KB912919)


--- Startup entries list ---
Located: HK_LM:Run, avast!
command: C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
file: C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
size: 102448
MD5: 9eb989d83225f2e6d9ecfdccdd0db0ca

Located: HK_LM:Run, Imonitor
command: "C:\Program Files\McAfee\QuickClean\Plguni.exe" /START
file: C:\Program Files\McAfee\QuickClean\Plguni.exe
size: 98304
MD5: 3c246a878620c3393d17e92baae05afd

Located: HK_LM:Run, Lexmark X73 Button Monitor
command: C:\PROGRA~1\LEXMAR~1\ACMonitor_X73.exe
file: C:\PROGRA~1\LEXMAR~1\ACMonitor_X73.exe
size: 53248
MD5: eaaf269efb33d469b3d98304b28c06f8

Located: HK_LM:Run, McAfee Guardian
command: "C:\Program Files\McAfee\McAfee Shared Components\Guardian\CMGrdian.exe" /SU
file: C:\Program Files\McAfee\McAfee Shared Components\Guardian\CMGrdian.exe
size: 145920
MD5: a820bd16d8343b872117a1fed8299923

Located: HK_LM:Run, MULTIMEDIA KEYBOARD
command: C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
file: C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
size: 139264
MD5: 2036a8579d88bfb27bdc96895735751b

Located: HK_LM:Run, PrinTray
command: C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe
file: C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe
size: 36864
MD5: 7ba53cbea0b27de4b70ddee2e9f4a7e0

Located: HK_CU:Run, CursorXP
command: C:\Program Files\CursorXP\CursorXP.exe
file: C:\Program Files\CursorXP\CursorXP.exe
size: 128000
MD5: 7b70742882445f1269fc49708ab39751

Located: HK_CU:Run, Desktop Architect
command: "C:\Program Files\Desktop Architect\datray.exe" -S
file: C:\Program Files\Desktop Architect\datray.exe
size: 118784
MD5: bd49ebd2ec392f9d6391ac62d5e76792

Located: HK_CU:Run, RoboForm
command: "C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
file: C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
size: 139322
MD5: 3601dab1d626e047494ba40de8cb2cbc

Located: Startup (common), Adobe Reader Speed Launch.lnk
command: C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
file: C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
size: 29696
MD5: 43362b96870ce8649f4f2ec893da93f0

Located: System.ini, crypt32chain
command: crypt32.dll
file: crypt32.dll

Located: System.ini, cryptnet
command: cryptnet.dll
file: cryptnet.dll

Located: System.ini, cscdll
command: cscdll.dll
file: cscdll.dll

Located: System.ini, ScCertProp
command: wlnotify.dll
file: wlnotify.dll

Located: System.ini, Schedule
command: wlnotify.dll
file: wlnotify.dll

Located: System.ini, sclgntfy
command: sclgntfy.dll
file: sclgntfy.dll

Located: System.ini, SensLogn
command: WlNotify.dll
file: WlNotify.dll

Located: System.ini, termsrv
command: wlnotify.dll
file: wlnotify.dll

Located: System.ini, wlballoon
command: wlnotify.dll
file: wlnotify.dll



--- Browser helper object list ---
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (AcroIEHlprObj Class)
BHO name:
CLSID name: AcroIEHlprObj Class
description: Adobe Acrobat reader
classification: Legitimate
known filename: AcroIEhelper.ocx<br>AcroIEhelper.dll
info link: http://www.adobe.com/products/acrobat/readstep2.html
info source: TonyKlein
Path: C:\Program Files\Adobe\Acrobat 7.0\ActiveX\
Long name: AcroIEHelper.dll
Short name: ACROIE~1.DLL
Date (created): 9/23/2005 11:12:08 PM
Date (last access): 2/12/2006
Date (last write): 9/23/2005 11:12:08 PM
Filesize: 63136
Attributes: archive
MD5: B61D5D651ECC6055C29BF826CA7B1141
CRC32: FEF15799
Version: 7.0.5.172

{11359F4A-B191-42d7-905A-594F8CF0387B} (Dictionary.com)
BHO name:
CLSID name: Dictionary.com
description: Lexico toolbar
classification: Legitimate
known filename: Lexbar.dll
info link: http://dictionary.reference.com/tools/toolbar/
info source: TonyKlein
Path: C:\WINDOWS\Downloaded Program Files\CONFLICT.2\
Long name: lexbar.dll
Short name:
Date (created): 2/6/2003 8:16:34 AM
Date (last access): 2/12/2006
Date (last write): 2/6/2003 8:16:34 AM
Filesize: 270336
Attributes: archive
MD5: 2A685B301ABC35AEBF63D482D9FE94D1
CRC32: F77C8E19
Version: 1.2.0.1

{53707962-6F74-2D53-2644-206D7942484F} ()
BHO name:
CLSID name:
description: Spybot-S&D IE Browser plugin
classification: Legitimate
known filename: SDhelper.dll
info link: http://spybot.eon.net.au/
info source: Patrick M. Kolla
Path: C:\PROGRA~1\SPYBOT~1\
Long name: SDHelper.dll
Short name: SDHELPER.DLL
Date (created): 9/12/2005 8:20:00 PM
Date (last access): 2/12/2006
Date (last write): 5/31/2005 1:04:00 AM
Filesize: 853672
Attributes: archive
MD5: 250D787A5712D7768DDC133B3E477759
CRC32: D4589A41
Version: 1.4.0.0

{724d43a9-0d85-11d4-9908-00400523e39a} ()
BHO name:
CLSID name:
description: RoboForm
classification: Legitimate
known filename: RoboForm.dll
info link: http://www.roboform.com/
info source: TonyKlein
Path: C:\Program Files\Siber Systems\AI RoboForm\
Long name: RoboForm.dll
Short name: ROBOFORM.DLL
Date (created): 11/3/2004 1:17:22 AM
Date (last access): 2/12/2006
Date (last write): 2/3/2006 8:34:40 PM
Filesize: 4580408
Attributes: archive
MD5: DBD206CBAF5416FED6215C552B5421E8
CRC32: 4B30A496
Version: 6.6.4.0

{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (SSVHelper Class)
BHO name:
CLSID name: SSVHelper Class
Path: C:\Program Files\Java\jre1.5.0_06\bin\
Long name: ssv.dll
Short name:

Irish
2006-02-12, 20:30
Lonny
Here is the rest of the report..Irish

Date (created): 11/10/2005 1:03:56 PM
Date (last access): 2/12/2006
Date (last write): 11/10/2005 1:22:10 PM
Filesize: 184423
Attributes: archive
MD5: F01726F7CA8538FDD4663C9DB8FEAEDC
CRC32: 0111B892
Version: 5.0.60.5



--- ActiveX list ---
Microsoft XML Parser for Java (Microsoft XML Parser for Java)
DPF name: Microsoft XML Parser for Java
CLSID name:
Installer:
Codebase: file://C:\WINDOWS\Java\classes\xmldso.cab
description:
classification: Legitimate
known filename: %WINDIR%\Java\classes\xmldso.cab
info link:
info source: Patrick M. Kolla

{02BCC737-B171-4746-94C9-0D8A0B2C0089} (Microsoft Office Template and Media Control)
DPF name:
CLSID name: Microsoft Office Template and Media Control
Installer: C:\WINDOWS\Downloaded Program Files\ieawsdc.inf
Codebase: http://office.microsoft.com/templates/ieawsdc.cab
description:
classification: Open for discussion
known filename: IEAWSDC.DLL
info link:
info source: Safer Networking Ltd.
Path: C:\WINDOWS\Downloaded Program Files\
Long name: IEAWSDC.DLL
Short name:
Date (created): 8/10/2005 11:39:48 PM
Date (last access): 2/12/2006
Date (last write): 8/10/2005 11:39:48 PM
Filesize: 168448
Attributes: archive
MD5: 1C5AD94327814BFBE1CA3939CF5537D0
CRC32: 65A13A17
Version: 11.0.6009.0

{0C568603-D79D-11D2-87A7-00C04FF158BB} (BrowseFolderPopup Class)
DPF name:
CLSID name: BrowseFolderPopup Class
Installer: C:\WINDOWS\Downloaded Program Files\MGBrwFld.inf
Codebase: http://download.mcafee.com/molbin/Shared/MGBrwFld.cab
description: McAfee
classification: Legitimate
known filename: MGBRWFLD.DLL
info link:
info source: Patrick M. Kolla
Path: C:\WINDOWS\MCBin\Shared\
Long name: MGBrwFld.dll
Short name: MGBRWFLD.DLL
Date (created): 11/19/1999 7:06:54 PM
Date (last access): 2/11/2006
Date (last write): 11/19/1999 7:06:54 PM
Filesize: 94208
Attributes: archive
MD5: BE3CA757FB644CDF0A3CC0F6BCDF3803
CRC32: E67A73A4
Version: 1.0.0.5

{166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control)
DPF name:
CLSID name: Shockwave ActiveX Control
Installer: C:\WINDOWS\Downloaded Program Files\erma.inf
Codebase: http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
description: Macromedia ShockWave Flash Player 7
classification: Legitimate
known filename: SWDIR.DLL
info link:
info source: Patrick M. Kolla
Path: C:\WINDOWS\system32\Macromed\Director\
Long name: SwDir.dll
Short name: SWDIR.DLL
Date (created): 2/1/2003 4:03:06 PM
Date (last access): 2/11/2006
Date (last write): 1/9/2002 2:28:02 AM
Filesize: 32768
Attributes: archive
MD5: 92FA0AE21D3A08B65D291724AA7D0E43
CRC32: 7B63A9DB
Version: 8.5.1.102

{17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool)
DPF name:
CLSID name: Windows Genuine Advantage Validation Tool
Installer: C:\WINDOWS\Downloaded Program Files\LegitCheckControl.inf
Codebase: http://go.microsoft.com/fwlink/?linkid=39204
description:
classification: Legitimate
known filename: LegitCheckControl.DLL
info link:
info source: Safer Networking Ltd.
Path: C:\WINDOWS\system32\
Long name: LegitCheckControl.DLL
Short name: LEGITC~1.DLL
Date (created): 7/12/2005 6:04:22 PM
Date (last access): 2/11/2006
Date (last write): 8/29/2005 1:27:12 PM
Filesize: 520968
Attributes: archive
MD5: 679088DD42AFB105A6DA3F5E876D69B6
CRC32: 80D21320
Version: 1.3.272.0

{8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.5.0)
DPF name: Java Runtime Environment 1.5.0
CLSID name: Java Plug-in 1.5.0_06
Installer:
Codebase: http://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab
description: Sun Java
classification: Legitimate
known filename: %PROGRAM FILES%\JabaSoft\JRE\*\Bin\npjava131.dll
info link:
info source: Patrick M. Kolla
Path: C:\Program Files\Java\jre1.5.0_06\bin\
Long name: NPJPI150_06.dll
Short name: NPJPI1~1.DLL
Date (created): 11/10/2005 1:03:56 PM
Date (last access): 2/11/2006
Date (last write): 11/10/2005 1:22:10 PM
Filesize: 69746
Attributes: archive
MD5: D2CF6BB5E9020E6707B62575F8083954
CRC32: 7F39DC54
Version: 5.0.60.5

{8E28B3A9-FE83-45D1-B657-D5426B81A121} (CustomerCtrl Class)
DPF name:
CLSID name: CustomerCtrl Class
Installer:
Codebase: http://cs5b.instantservice.com/jars/customerxsigned35.cab
description:
classification: Open for discussion
known filename: customerclient.dll
info link:
info source: Safer Networking Ltd.
Path: C:\WINDOWS\Downloaded Program Files\
Long name: customerclient.dll
Short name: CUSTOM~1.DLL
Date (created): 7/11/2003 11:04:36 AM
Date (last access): 2/12/2006
Date (last write): 7/11/2003 11:04:36 AM
Filesize: 143360
Attributes: archive
MD5: D759918B3902534DF998FF297FF4253B
CRC32: 760C17DD
Version: 3.5.0.0

{90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player)
DPF name:
CLSID name: InstallShield International Setup Player
Installer: C:\WINDOWS\Downloaded Program Files\isetup.inf
Codebase: http://www.installengine.com/engine/isetup.cab
description:
classification: Open for discussion
known filename: isetup.dll
info link:
info source: Safer Networking Ltd.
Path: c:\windows\downlo~1\
Long name: iSetup.dll
Short name: ISETUP.DLL
Date (created): 7/25/2002 12:21:56 PM
Date (last access): 2/12/2006
Date (last write): 7/25/2002 12:21:56 PM
Filesize: 24576
Attributes: archive
MD5: 2812B7254C2080BE341E796548B54A4E
CRC32: 909869C6
Version: 6.31.100.1221

{90F7E144-984F-4FA6-83A7-C9C8DCB9974C} (RSActiveXObj Control)
DPF name:
CLSID name: RSActiveXObj Control
Installer:
Codebase: http://cnet.radarsync.com/RSActiveX.ocx
Path: C:\WINDOWS\DOWNLO~1\
Long name: RSActiveX.ocx
Short name: RSACTI~1.OCX
Date (created): 10/14/2005 9:42:32 PM
Date (last access): 2/11/2006
Date (last write): 10/14/2005 9:42:44 PM
Filesize: 664208
Attributes: archive
MD5: ABD443C36CA2C05764777C823F573805
CRC32: D7317F95
Version: 9.0.16.0

{9F1C11AA-197B-4942-BA54-47A8489BB47F} ()
DPF name:
CLSID name:
Installer: C:\WINDOWS\Downloaded Program Files\iuctl.inf
Codebase: http://v4.windowsupdate.microsoft.com/CAB/x86/unicode/iuctl.CAB?37579.4864351852
description: Windows Update
classification: Legitimate
known filename: %WINDIR%\System32\iuctl.dll,iuengine.dll
info link:
info source: Patrick M. Kolla

{A28DAC07-0D34-4A90-A0E6-CEE27208C86D} (CWDL_DownLoadControl Class)
DPF name:
CLSID name: CWDL_DownLoadControl Class
Installer: C:\WINDOWS\Downloaded Program Files\DownLoad.INF
Codebase: http://www.callwave.com/include/cab/CWDL_DownLoad.cab
Path: C:\WINDOWS\Downloaded Program Files\
Long name: CWDL_DownLoad.dll
Short name: CWDL_D~1.DLL
Date (created): 12/5/2001 8:34:12 AM
Date (last access): 2/12/2006
Date (last write): 12/5/2001 8:34:12 AM
Filesize: 296688
Attributes: archive
MD5: 8348EDFA596116F77557DBBBE0FCB62D
CRC32: 285D551D
Version: 1.0.0.9

{A48D0309-8DA3-41AA-98E4-89194D471890} (Pulse V5 ActiveX Control)
DPF name:
CLSID name: Pulse V5 ActiveX Control
Installer:
Codebase: http://www.pulse3d.com/players/english/5.2/win/PulsePlayer5.2AxWin.cab
description:
classification: Open for discussion
known filename: AxPulse5.dll
info link:
info source: Safer Networking Ltd.
Path: C:\WINDOWS\Downloaded Program Files\
Long name: AxPulse5.dll
Short name: AXPULSE5.DLL
Date (created): 10/21/2002 7:03:18 PM
Date (last access): 2/12/2006
Date (last write): 10/21/2002 7:03:18 PM
Filesize: 90196
Attributes: archive
MD5: E0CE818260B41D730593D542DFFC401E
CRC32: 45B357B1
Version: 5.2.0.10532

{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} (Java Runtime Environment 1.5.0)
DPF name: Java Runtime Environment 1.5.0
CLSID name: Java Plug-in 1.5.0_06
Installer:
Codebase: http://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab
Path: C:\Program Files\Java\jre1.5.0_06\bin\
Long name: NPJPI150_06.dll
Short name: NPJPI1~1.DLL
Date (created): 11/10/2005 1:03:56 PM
Date (last access): 2/12/2006
Date (last write): 11/10/2005 1:22:10 PM
Filesize: 69746
Attributes: archive
MD5: D2CF6BB5E9020E6707B62575F8083954
CRC32: 7F39DC54
Version: 5.0.60.5

{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} (Java Runtime Environment 1.5.0)
DPF name: Java Runtime Environment 1.5.0
CLSID name: Java Plug-in 1.5.0_06
Installer:
Codebase: http://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab
Path: C:\Program Files\Java\jre1.5.0_06\bin\
Long name: NPJPI150_06.dll
Short name: NPJPI1~1.DLL
Date (created): 11/10/2005 1:03:56 PM
Date (last access): 2/12/2006
Date (last write): 11/10/2005 1:22:10 PM
Filesize: 69746
Attributes: archive
MD5: D2CF6BB5E9020E6707B62575F8083954
CRC32: 7F39DC54
Version: 5.0.60.5

{D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object)
DPF name:
CLSID name: Shockwave Flash Object
Installer: C:\WINDOWS\Downloaded Program Files\swflash.inf
Codebase: http://fpdownload.macromedia.com/get/flashplayer/current/swflash.cab
description: Macromedia Shockwave Flash Player
classification: Legitimate
known filename:
info link:
info source: Patrick M. Kolla
Path: C:\WINDOWS\system32\Macromed\Flash\
Long name: Flash8.ocx
Short name: FLASH8.OCX
Date (created): 8/27/2005 1:38:56 PM
Date (last access): 2/11/2006
Date (last write): 8/27/2005 1:38:56 PM
Filesize: 1435272
Attributes: archive
MD5: 900373C059C2B51CA91BF110DBDECB33
CRC32: F19599BC
Version: 8.0.22.0

{DF6A0F17-0B1E-11D4-829D-00C04F6843FE} (Microsoft Office Tools on the Web Control)
DPF name:
CLSID name: Microsoft Office Tools on the Web Control
Installer: C:\WINDOWS\Downloaded Program Files\outc.inf
Codebase: http://officeupdate.microsoft.com/TemplateGallery/downloads/outc.cab
description: Microsoft Office Tools on the Web
classification: Legitimate
known filename: outc.cab
info link:
info source: JavaCool
Path: C:\WINDOWS\Downloaded Program Files\
Long name: OUTC.DLL
Short name:
Date (created): 3/13/2003 12:04:06 PM
Date (last access): 2/12/2006
Date (last write): 3/13/2003 12:04:06 PM
Filesize: 45720
Attributes: archive
MD5: 45DE1052FE8AA3D8507FD5A6343420E0
CRC32: 41AA4F0C
Version: 1.3.1.15

{F00F4763-7355-4725-82F7-0DA94A256D46} (IMDownloader Class)
DPF name:
CLSID name: IMDownloader Class
Installer:
Codebase: http://www2.incredimail.com/contents/setup/downloader/imloader.cab
description:
classification: Open for discussion
known filename:
info link:
info source: Safer Networking Ltd.

{F0E2D69A-DC2F-4E9B-A993-684FB1C21DBC} ()
DPF name:
CLSID name:
Installer: C:\WINDOWS\Downloaded Program Files\CONFLICT.2\lexico.inf
Codebase: http://dictionary.reference.com/tools/toolbar/lexico.cab

{FC89F9FA-0FEF-43DA-AE71-5C7897DC000D} (XLiteInstall Class)
DPF name:
CLSID name: XLiteInstall Class
Installer:
Codebase: http://www.cabcconnection.com/CABCXInstall_Full.cab
Path: C:\WINDOWS\Downloaded Program Files\
Long name: CABCXInstall_Full.dll
Short name: CABCXI~1.DLL
Date (created): 8/26/2002 2:53:42 PM
Date (last access): 2/12/2006
Date (last write): 8/26/2002 2:53:42 PM
Filesize: 136872
Attributes: archive
MD5: 1550186C4CE388240141F742914A847F
CRC32: 24721186
Version: 6.0.0.0


{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} (Java Runtime Environment 1.5.0)
DPF name: Java Runtime Environment 1.5.0
CLSID name: Java Plug-in 1.5.0_06
Installer:
Codebase: http://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab
Path: C:\Program Files\Java\jre1.5.0_06\bin\
Long name: NPJPI150_06.dll
Short name: NPJPI1~1.DLL
Date (created): 11/10/2005 1:03:56 PM
Date (last access): 2/12/2006
Date (last write): 11/10/2005 1:22:10 PM
Filesize: 69746
Attributes: archive
MD5: D2CF6BB5E9020E6707B62575F8083954
CRC32: 7F39DC54
Version: 5.0.60.5

{D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object)
DPF name:
CLSID name: Shockwave Flash Object
Installer: C:\WINDOWS\Downloaded Program Files\swflash.inf
Codebase: http://fpdownload.macromedia.com/get/flashplayer/current/swflash.cab
description: Macromedia Shockwave Flash Player
classification: Legitimate
known filename:
info link:
info source: Patrick M. Kolla
Path: C:\WINDOWS\system32\Macromed\Flash\
Long name: Flash8.ocx
Short name: FLASH8.OCX
Date (created): 8/27/2005 1:38:56 PM
Date (last access): 2/11/2006
Date (last write): 8/27/2005 1:38:56 PM
Filesize: 1435272
Attributes: archive
MD5: 900373C059C2B51CA91BF110DBDECB33
CRC32: F19599BC
Version: 8.0.22.0

{DF6A0F17-0B1E-11D4-829D-00C04F6843FE} (Microsoft Office Tools on the Web Control)
DPF name:
CLSID name: Microsoft Office Tools on the Web Control
Installer: C:\WINDOWS\Downloaded Program Files\outc.inf
Codebase: http://officeupdate.microsoft.com/TemplateGallery/downloads/outc.cab
description: Microsoft Office Tools on the Web
classification: Legitimate
known filename: outc.cab
info link:
info source: JavaCool
Path: C:\WINDOWS\Downloaded Program Files\
Long name: OUTC.DLL
Short name:
Date (created): 3/13/2003 12:04:06 PM
Date (last access): 2/12/2006
Date (last write): 3/13/2003 12:04:06 PM
Filesize: 45720
Attributes: archive
MD5: 45DE1052FE8AA3D8507FD5A6343420E0
CRC32: 41AA4F0C
Version: 1.3.1.15

{F00F4763-7355-4725-82F7-0DA94A256D46} (IMDownloader Class)
DPF name:
CLSID name: IMDownloader Class
Installer:
Codebase: http://www2.incredimail.com/contents/setup/downloader/imloader.cab
description:
classification: Open for discussion
known filename:
info link:
info source: Safer Networking Ltd.

{F0E2D69A-DC2F-4E9B-A993-684FB1C21DBC} ()
DPF name:
CLSID name:
Installer: C:\WINDOWS\Downloaded Program Files\CONFLICT.2\lexico.inf
Codebase: http://dictionary.reference.com/tools/toolbar/lexico.cab

{FC89F9FA-0FEF-43DA-AE71-5C7897DC000D} (XLiteInstall Class)
DPF name:
CLSID name: XLiteInstall Class
Installer:
Codebase: http://www.cabcconnection.com/CABCXInstall_Full.cab
Path: C:\WINDOWS\Downloaded Program Files\
Long name: CABCXInstall_Full.dll
Short name: CABCXI~1.DLL
Date (created): 8/26/2002 2:53:42 PM
Date (last access): 2/12/2006
Date (last write): 8/26/2002 2:53:42 PM
Filesize: 136872
Attributes: archive
MD5: 1550186C4CE388240141F742914A847F
CRC32: 24721186
Version: 6.0.0.0

LonnyRJones
2006-02-14, 18:06
Thanks

As a troubleshooting step I still would like you to uninstall all mcafee programs..

Irish
2006-02-14, 19:01
Hi Lonny.... I just wanted to let you know that I found my problem yesterday. Spybot is working just fine now. Thanks for your help.
Irish

LonnyRJones
2006-02-14, 19:09
Thats good to hear, fill us in please

tashi
2006-02-14, 19:32
Hi Lonny.... I just wanted to let you know that I found my problem yesterday. Spybot is working just fine now. Thanks for your help.
Irish

Yes please do let us know what the problem was. Thanks.

Irish
2006-02-14, 23:35
One reason the usuage tracks wasn't showing up was because for some reason I had spyware check only marked in the file sets.. so I changed that.
In settings there were 2boxes unchecked that should have been checked.. so I checked them.. then ran the scan with McAfee on and it ran fine. I still don't really know why McAfee would never let it finish.. but once the boxes in settings were checked it worked fine... not to sure if that had anything to do with it... but its still working so far. If I run in to the same problem with McAfee later on.. then I will uninstall McAfee altogether... although my wife never had a problem with McAfee when she runs spybot.. its still a little confusing... but as long as its working now.. then I won't worry about it.
Thanks again. Irish :)

md usa spybot fan
2006-02-15, 00:12
Irish:

I' m glad that you were able to resolve your problem. However:


One reason the usuage tracks wasn't showing up was because for some reason I had spyware check only marked in the file sets.. so I changed that.
Only the Spyware checks are selected by default in Spybot. You must go into "Advanced mode" (with its accompanying warning) > "Settings" > "File sets" to scan for "Usage tracking". This may be the reason that the last two items in the "File sets" were not checked.


In settings there were 2boxes unchecked that should have been checked.. so I checked them.. then ran the scan with McAfee on and it ran fine. I still don't really know why McAfee would never let it finish.. but once the boxes in settings were checked it worked fine... not to sure if that had anything to do with it.
I don't really think that checking the "Usage tracking" scan options is actually what solved your problem, since they are additional scans that are done after the spyware scans are finished. Is there anything else that you may have done that fixed the problem that you were having?

Irish
2006-02-16, 00:09
Hello.... I think you misunderstood what I was saying in my other message. The two boxes that weren't checked was not in file sets. It was in settings then in the second settings under expert settings. The last two boxes that were not checked and was already checked in my wifes were... Show expert buttons in results and recovery list. Like you said.... it probably was not the problem... but when I checked those two boxes and ran Spybot with McAfee on... then it ran fine. Now.... in the file sets only the spyware check only was checked and that is the reason my usage tracks were not showing up. I have no idea what caused the problem with McAfee when I ran Spybot and still don't know... but as long as its working fine now... then I won't worry to much about it. I will cross that path if and when it happens again.
Thanks for everything Irish :D