Knight`UK
Lollerstorycarpark
+371|6872|England
i would like to buy a new modem (not a wireless one) that can handle 8mb connection (from bt) anyone got any ideas i dont want to spunk a load of money so please keep the price as low as poss

thanks in adavance

dan.
max
Vela Incident
+1,652|6859|NYC / Hamburg

[netsas]knight wrote:

i would like to buy a new modem (not a wireless one) that can handle 8mb connection (from bt) anyone got any ideas i dont want to spunk a load of money so please keep the price as low as poss

thanks in adavance

dan.
what sort of modem are you talking about? an old fashioned one, dsl, cable, T1, T3???
once upon a midnight dreary, while i pron surfed, weak and weary, over many a strange and spurious site of ' hot  xxx galore'. While i clicked my fav'rite bookmark, suddenly there came a warning, and my heart was filled with mourning, mourning for my dear amour, " 'Tis not possible!", i muttered, " give me back my free hardcore!"..... quoth the server, 404.
Knight`UK
Lollerstorycarpark
+371|6872|England
at the moment m8 i have a bt voyager 100 which is adsl (through a usb cable)

and thanks for your reply
max
Vela Incident
+1,652|6859|NYC / Hamburg

[netsas]knight wrote:

at the moment m8 i have a bt voyager 100 which is adsl (through a usb cable)

and thanks for your reply
so you want dsl? i have always had zyxel ones. They are pretty good. I like mine. Do you have an analoge or ISDN line?
http://www.zyxel.com/web/product_catego … 0812093058
i have the p-660 HW

Last edited by max (2006-05-27 14:08:04)

once upon a midnight dreary, while i pron surfed, weak and weary, over many a strange and spurious site of ' hot  xxx galore'. While i clicked my fav'rite bookmark, suddenly there came a warning, and my heart was filled with mourning, mourning for my dear amour, " 'Tis not possible!", i muttered, " give me back my free hardcore!"..... quoth the server, 404.
Knight`UK
Lollerstorycarpark
+371|6872|England
iam a pc nub m8 lol so i havent got a clue what you are on about sorry i just want a modem easy to use/set-up and doesnt cost much but can handle braodband .

Also if your a pc whizz i just found out my pc has a "trojan horse generic.uxe" virus and i havent got a clue what to do .

ive run :-

avg

sypbot s+d

ad-adware se

and coolwebshreddar

and the thing is still there .

ive got it through useing nnscript a irc programme.
broncobullfrog
Extra Tender Juicy SPINY
+58|7043|The 70's
You're in a bit of a mess m8, try ewido, its the best anti-malware prog available and its free,

http://www.ewido.net/en/



(btw, you may find it more effective to run your anti-virus and spyware scans in Safe Mode, and if AVG or ewido find and clean your problem, run them again as it sometimes takes more than one pass to clear up things completely).

Last edited by broncobullfrog (2006-05-27 16:55:40)

max
Vela Incident
+1,652|6859|NYC / Hamburg

^^^^ what he said

yes boot in safe mode (press F8 after bios) run you scans in this mode. If your programs find it but cannot delete it, that should do the trick.

http://img83.imageshack.us/my.php?image=av1kd.jpg: this is what keeps me virus free, never had one again since my hardcore p2p days are over (and i'm still often in shady places [*cough*])

You could try reversing your pc status to when you didnt have this malware (system restore in windows).

if you can find the *.exe file you could try to delete it (in safe mode; though that only works for the "cheap" viruses).

Did you try to google the virus? sometimes it may give you some help. (just did it, no real info)

try downloading windows defender from ms in addition to your programs. It is supposed to be pretty good.

Try going through you startup list. If it is there, delete it. This may (again only for cheap ones) stop it from executing.

If you cant really get rid of it, I think you should reformat (make sure to scan you backup files) as that will be less trouble than killing it of the hard way. If it has registered itself in the registry and can dublicate itself from some unsuspicious file, reformating is pretty much the only way.

About the router: do you have a analog or a digital (ISDN) telephone line. (ie, does the plug that goes into the telephone have 2 or more copper-connector thingys)

Last edited by max (2006-05-27 17:21:22)

once upon a midnight dreary, while i pron surfed, weak and weary, over many a strange and spurious site of ' hot  xxx galore'. While i clicked my fav'rite bookmark, suddenly there came a warning, and my heart was filled with mourning, mourning for my dear amour, " 'Tis not possible!", i muttered, " give me back my free hardcore!"..... quoth the server, 404.
Snipedya14
Dont tread on me
+77|6986|Mountains of West Virginia

max wrote:

You could try reversing your pc status to when you didnt have this malware (system restore in windows).
Please dont do that. Alot of spyware likes to reside in System Restore and thus will reinfect you everytime you use it.

I would recommend turning off Restore (thus deleting all entries in it) then running you scan.

To rid yourself of spyware please

Step A.
If you still run Windows 98/SE, download Trojan Hunter (trial) from http://www.trojanhunter.com/
Perform a full system scan. Let it fix any infections it finds.
Next, please run this free online virus scan: Panda Active Scan. Save the scanlog it generates on your desktop.
Continue at Step C.

Step B.
Download Ewido Security Suite (trial) from http://www.ewido.net/en/download/
When installing, under "Additional Options" uncheck "Install background guard" and "Install scan via context menu".

REBOOT in SAFE MODE (press F8 .

XP/ME only: DISABLE SYSTEM RESTORE


Start Ewido. When you run it the first time, you get a warning "Database could not be found!". Click OK.
On the main screen, click on Update in the left menu, then click the Start Update button.
After the Update finishes, the status bar at the bottom will display "Update successful".
-- If you have problems updating see here: http://www.ewido.net/en/download/updates/

Once the updates are installed do the following:
Click on Scanner

Click on Complete system scan and let Ewido scan the PC.
While the scan is in progress, you will be prompted to 'Clean files', click OK.

Then Get the following programs

HijackThis from www.tomcoyote.org/hjt/ (current version 1.99.1)
-- HJT MUST have its own directory to make Backups of all 'fixes', so you can 'undo' a wrong fix!
Spybot S&D from www.safer-networking.org: during install let it immunise your PC!
Adaware Personal SE from www.lavasoftusa.com.
CWshredder from http://www.intermute.com/products/cwshredder.html.

Run Spybot Adaware CW and AVG In Safe Mode. (F8)

Then Run Hijack this, post it back, and I will have a look for you.

Any Questions please let me know.

Last edited by Snipedya14 (2006-05-27 17:33:02)

max
Vela Incident
+1,652|6859|NYC / Hamburg

Snipedya14 wrote:

max wrote:

You could try reversing your pc status to when you didnt have this malware (system restore in windows).
Please dont do that. Alot of spyware likes to reside in System Restore and thus will reinfect you everytime you use it.

I would recommend turning off Restore (thus deleting all entries in it) then running you scan.

To rid yourself of spyware please

Step A.
If you still run Windows 98/SE, download Trojan Hunter (trial) from http://www.trojanhunter.com/
Perform a full system scan. Let it fix any infections it finds.
Next, please run this free online virus scan: Panda Active Scan. Save the scanlog it generates on your desktop.
Continue at Step C.

Step B.
Download Ewido Security Suite (trial) from http://www.ewido.net/en/download/
When installing, under "Additional Options" uncheck "Install background guard" and "Install scan via context menu".

REBOOT in SAFE MODE (press F8 .

XP/ME only: DISABLE SYSTEM RESTORE


Start Ewido. When you run it the first time, you get a warning "Database could not be found!". Click OK.
On the main screen, click on Update in the left menu, then click the Start Update button.
After the Update finishes, the status bar at the bottom will display "Update successful".
-- If you have problems updating see here: http://www.ewido.net/en/download/updates/

Once the updates are installed do the following:
Click on Scanner

Click on Complete system scan and let Ewido scan the PC.
While the scan is in progress, you will be prompted to 'Clean files', click OK.

Then Get the following programs

HijackThis from www.tomcoyote.org/hjt/ (current version 1.99.1)
-- HJT MUST have its own directory to make Backups of all 'fixes', so you can 'undo' a wrong fix!
Spybot S&D from www.safer-networking.org: during install let it immunise your PC!
Adaware Personal SE from www.lavasoftusa.com.
CWshredder from http://www.intermute.com/products/cwshredder.html.

Run Spybot Adaware CW and AVG In Safe Mode. (F8)

Then Run Hijack this, post it back, and I will have a look for you.

Any Questions please let me know.
thats why I have system restore off. but if its on and you cant get rid of the virus, you might as well try it. But i agree, if it doesnt work; switch it off
once upon a midnight dreary, while i pron surfed, weak and weary, over many a strange and spurious site of ' hot  xxx galore'. While i clicked my fav'rite bookmark, suddenly there came a warning, and my heart was filled with mourning, mourning for my dear amour, " 'Tis not possible!", i muttered, " give me back my free hardcore!"..... quoth the server, 404.
Knight`UK
Lollerstorycarpark
+371|6872|England
Logfile of HijackThis v1.99.1
Scan saved at 03:22:00, on 28/05/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\ewido anti-malware\ewidoguard.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Spyware Doctor\sdhelp.exe
C:\WINDOWS\system32\slserv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Electronic Arts\EA Downloader\Core.exe
C:\Program Files\Spyware Doctor\swdoctor.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\gsicon.exe
C:\Documents and Settings\Owner\Desktop\hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.co.uk/
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~1\tools\iesdsg.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [EA Core] C:\Program Files\Electronic Arts\EA Downloader\Core.exe -silent
O4 - HKCU\..\Run: [Spyware Doctor] "C:\Program Files\Spyware Doctor\swdoctor.exe" /Q
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://download.ewido.net/ewidoOnlineScan.cab
O16 - DPF: {2357B3CF-7F8D-4451-8D81-FD6097610AEE} (CamfrogWEB Advanced Unicode Control) - http://activex.camfrogweb.com/advanced/ … module.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMe … loader.cab
O16 - DPF: {D1E7CBDA-E60E-4970-A01C-37301EF7BF98} (Measurement Services Client v.3.7) - http://gameadvisor.futuremark.com/global/msc37.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{55DB13BA-6BE7-4F84-B3EB-66A1AD152780}: NameServer = 194.74.65.69 194.72.9.34
O18 - Protocol: bw+0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O18 - Protocol: offline-8876480 - {6E8C4BEE-FDE8-4FE1-84CD-65BFAE1971D0} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - C:\Program Files\Spyware Doctor\sdhelp.exe
O23 - Service: SmartLinkService (SLService) -   - C:\WINDOWS\SYSTEM32\slserv.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

there you go all from hijack this

and guys i took all the info you guys gave me and done it all .it seems to have gone but please have a good look at the above as i have no idea what it means .
Snipedya14
Dont tread on me
+77|6986|Mountains of West Virginia
Ok your log is a bit messy.

First off do you have logitech mosue/keyboard or other software? If not Delete all Logitech Entries.

       O17 - HKLM\System\CCS\Services\Tcpip\..\{55DB13BA-6BE7-4F84-B3EB-66A1AD152780}: NameServer = 194.74.65.69 194.72.9.34

If you do not know that IP (verify first)

       O16 - DPF: {2357B3CF-7F8D-4451-8D81-FD6097610AEE} (CamfrogWEB Advanced Unicode Control) - http://activex.camfrogweb.com/advanced/ … module.exe

If you do not know this site get rid of it.


Other then that, nothing too harsh. There are a few other ones i question, but if youre running ok, then i guess its better to leave alone.
Knight`UK
Lollerstorycarpark
+371|6872|England
i do have a log mouse which is a mx518 but nothing else .

and thanks again for all the help .

Board footer

Privacy Policy - © 2025 Jeff Minard