Jump to content
GreaseSpot Cafe

pawtucket

Administrators
  • Posts

    4,158
  • Joined

  • Last visited

  • Days Won

    17

Posts posted by pawtucket

  1. I am absolutely enjoying this whole thing (although I am still convinced that I am in a bizarre dream/nightmare and will wake up soon)

    At game 4, there will be a total lunar eclipse. This could be Babe's message to baseball that the curse is off.

  2. Rodney Dangerfield passed away after complications with heart surgery.

    He was one of those comedians that told the one liners. Many have abandoned that form for a longer one. He looked funny. His clothes were ill fitting. And we all identified with this disrespected everyman.

    I got to meet Rodney in the 80's. Off camera, he had a full head of grey hair. He was friendly, well dressed and quite distinquished. I saw how well he had crafted the character for

    "on stage."

    We will miss the man, but thanks to video we will continue to enjoy and laugh for years.

  3. Steve! and WW

    It comes up About:blank and then automatically loads a few seconds later the other stuff.

    Kit:

    Run Hijack this again and take out the files that I put an X next to.

    C:WINDOWSSYSTEMKERNEL32.DLL

    C:WINDOWSSYSTEMMSGSRV32.EXE

    C:WINDOWSSYSTEMmmtask.tsk

    C:WINDOWSSYSTEMMPREXE.EXE

    C:WINDOWSSYSTEMMSTASK.EXE

    C:WINDOWSSYSTEMSSDPSRV.EXE

    C:WINDOWSSYSTEMMDM.EXE

    C:PROGRAM FILESCOMMON FILESAOLACSACSD.EXE

    C:WINDOWSEXPLORER.EXE

    C:WINDOWSSYSTEMRESTORESTMGR.EXE

    C:WINDOWSTASKMON.EXE

    C:WINDOWSSYSTEMSYSTRAY.EXE

    C:PROGRAM FILESROXIOEASY CD CREATOR 6DRAGTODISCDRGTODSC.EXE

    C:PROGRAM FILESTHUNK DATE WINTONSMEMO.EXE

    C:WINDOWSSYSTEMWMIEXE.EXE

    C:PROGRAM FILESAMERICA ONLINE 9.0AOLTRAY.EXE

    C:PROGRAM FILESAOL COMPANIONCOMPANION.EXE

    C:WINDOWSSYSTEMSPOOL32.EXE

    C:WINDOWSSYSTEMTAPISRV.EXE

    C:WINDOWSSYSTEMDDHELP.EXE

    C:PROGRAM FILESTREND MICROINTERNET SECURITYPCCIOMON.EXE

    C:PROGRAM FILESTREND MICROINTERNET SECURITYPCCPFW.EXE

    C:PROGRAM FILESTREND MICROINTERNET SECURITYTMPROXY.EXE

    C:PROGRAM FILESTREND MICROINTERNET SECURITYPCCLIENT.EXE

    C:PROGRAM FILESTREND MICROINTERNET SECURITYPCCGUIDE.EXE

    C:PROGRAM FILESTREND MICROINTERNET SECURITYTMOAGENT.EXE

    C:PROGRAM FILESAMERICA ONLINE 9.0WAOL.EXE

    C:PROGRAM FILESAMERICA ONLINE 9.0SHELLMON.EXE

    C:PROGRAM FILESAMERICA ONLINE 9.0AOLWBSPD.EXE

    C:WINDOWSSYSTEMRNAAPP.EXE

    C:WINDOWSRUNDLL32.EXE

    C:WINDOWSTEMPORARY INTERNET FILESCONTENT.IE5GHAJ0LQVHIJACKTHIS[1]HIJACKTHIS.EXE

    R1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Bar = Xhttp://look-today.com/searchbar.html

    XR1 - HKCUSoftwareMicrosoftInternet ExplorerMain,Search Page = Xhttp://look-today.com/searchbar.html

    XR1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Bar = Xhttp://look-today.com/searchbar.html

    XR1 - HKLMSoftwareMicrosoftInternet ExplorerMain,Search Page = Xhttp://look-today.com/searchbar.html

    XR1 - HKCUSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = Xhttp://look-today.com/searchbar.html

    XR0 - HKLMSoftwareMicrosoftInternet ExplorerSearch,SearchAssistant = Xhttp://look-today.com/searchbar.html

    XR1 - HKCUSoftwareMicrosoftInternet ExplorerMain,HomeOldSP = about:blank

    XR1 - HKLMSoftwareMicrosoftInternet ExplorerMain,HomeOldSP = about:blank

    XO2 - BHO: (no name) - {89B28CC7-CCEC-4A0A-9F21-F555DC7C42CD} - (no file)

    XO2 - BHO: Windows OleServer - {98DBBF16-CA43-4c33-BE80-99E6694468A4} - C:WINDOWSSYSTEMMSMK.DLL (file missing)

    O2 - BHO: (no name) - {4BCF322B-9621-4e90-9678-F1424EB7584E} - C:WINDOWSUDPMOD.DLL

    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:PROGRAM FILESADOBEACROBAT 6.0READERACTIVEXACROIEHELPER.DLL

    O2 - BHO: (no name) - {64818568-29E0-487B-8355-352595A9919A} - C:WINDOWSSYSTEMKIKFAD.DLL

    XO2 - BHO: holejoybase - {A0315BB8-C7F3-5DCF-35D6-668B0E65AF11} - C:PROGRAM FILESFAST XTHEGRIMERROR.DLL

    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:Program FilesSpybot - Search & DestroySDHelper.dll

    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:WINDOWSSYSTEMMSDXM.OCX

    XO3 - Toolbar: DentMeet - {9423BB96-BEB0-4960-9066-CE077B7382A1} - C:PROGRAM FILESFAST XTHEGRIMERROR.DLL

    O4 - HKLM..Run: [scanRegistry] C:WINDOWSscanregw.exe /autorun

    O4 - HKLM..Run: [TaskMonitor] C:WINDOWStaskmon.exe

    O4 - HKLM..Run: [PCHealth] C:WINDOWSPCHealthSupportPCHSchd.exe -s

    O4 - HKLM..Run: [systemTray] SysTray.Exe

    O4 - HKLM..Run: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme

    O4 - HKLM..Run: [projselector] "C:Program FilesCommon FilesRoxio SharedProject Selectorprojselector.exe" -r

    O4 - HKLM..Run: [RoxioEngineUtility] "C:Program FilesCommon FilesRoxio SharedSystemEngUtil.exe"

    O4 - HKLM..Run: [RoxioDragToDisc] "C:Program FilesRoxioEasy CD Creator 6DragToDiscDrgToDsc.exe"

    O4 - HKLM..Run: [RoxioAudioCentral] "C:Program FilesRoxioEasy CD Creator 6AudioCentralRxMon.exe"

    O4 - HKLM..Run: [Type readme] C:PROGRA~1THUNKD~1Tonsmemo.exe

    O4 - HKLM..Run: [pccguide.exe] "C:Program FilesTrend MicroInternet Securitypccguide.exe"

    O4 - HKLM..Run: [PCCIOMON.exe] "C:Program FilesTrend MicroInternet SecurityPCCIOMON.exe"

    O4 - HKLM..Run: [PCClient.exe] "C:Program FilesTrend MicroInternet SecurityPCClient.exe"

    O4 - HKLM..Run: [TM Outbreak Agent] "C:Program FilesTrend MicroInternet SecurityTMOAgent.exe" /run

    O4 - HKLM..RunServices: [LoadPowerProfile] Rundll32.exe powrprof.dll,LoadCurrentPwrScheme

    O4 - HKLM..RunServices: [schedulingAgent] mstask.exe

    O4 - HKLM..RunServices: [*StateMgr] C:WINDOWSSystemRestoreStateMgr.exe

    O4 - HKLM..RunServices: [sSDPSRV] C:WINDOWSSYSTEMssdpsrv.exe

    O4 - HKLM..RunServices: [Machine Debug Manager] C:WINDOWSSYSTEMMDM.EXE

    O4 - HKLM..RunServices: [AolAcsDaemon1] "C:PROGRAM FILESCOMMON FILESAOLACSACSD.EXE"

    O4 - HKLM..RunServices: [PCCIOMON.exe] "C:Program FilesTrend MicroInternet SecurityPCCIOMON.exe"

    O4 - HKLM..RunServices: [PccPfw] C:Program FilesTrend MicroInternet SecurityPccPfw.exe

    O4 - HKLM..RunServices: [tmproxy] C:Program FilesTrend MicroInternet Securitytmproxy.exe

    O4 - Startup: America Online 9.0 Tray Icon.lnk = C:Program FilesAmerica Online 9.0aoltray.exe

    O4 - Startup: AOL Companion.lnk = C:Program FilesAOL Companioncompanion.exe

    O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:WINDOWSwebrelated.htm

    O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:WINDOWSwebrelated.htm

    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:PROGRA~1MESSEN~1MSMSGS.EXE

    O9 - Extra 'Tools' menuitem: MSN Messenger Service - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:PROGRA~1MESSEN~1MSMSGS.EXE

    XO9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:WINDOWSSYSTEMShdocvw.dll

    O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004033...all/xscan53.cab

    O16 - DPF: {10000000-1000-0000-1000-000000000000} - ms-its:mhtml:file://C:MAIN.MHT!http://d.dialer2004.com//tv/main.chm::/load.exe

    O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - http://aolcc.aol.com/computercheckup/qdiagcc.cab

    O17 - HKLMSystemCCSServicesVxDMSTCP: Domain = aoldsl.net

    O18 - Filter: text/html - {EDD4D320-8415-40CF-A658-781F63120D95} - C:WINDOWSSYSTEMKIKFAD.DLL

    O18 - Filter: text/plain - {EDD4D320-8415-40CF-A658-781F63120D95} - C:WINDOWSSYSTEMKIKFAD.DLL

    Try those.

    Here is the page I promised you. I have already gone ahead and put your hijackthis file up there I should get a response sometime in the next day or so.

    http://computercops.biz/forum67.html

    When you run hijackthis, run it in safe mode. The way to get to safe mode is to start up the computer and click on F8 every second or so from the initial start up and you will get a screen that will give you some options, pick safe mode at the top (not safe mode with networking and NOT safe mode prompt)

    And take two aspirin and let me know what happens icon_smile.gif:)-->

  4. Kit,

    If you are getting About:blank, that is a good thing.

    If you go to the TOOLS menu and then internet options. In the top box (Home Page) you can type in what you want as a home page.

    If the computer is rebooting and About:Blank is coming up, then you may have gotten rid of the monster. I will look at the Hijackthis printout and let you know which ones to delete, if any.

    Put in a web site, like Google and then reboot and see if it comes back as your home page after you reboot.

  5. Kit,

    I have had success with a program called, HIJACKTHIS.EXE Check on Google for download sites. Run it in the safe mode and it clears much of the hijacked browser problems.

    If that doesn't work, there is another program called ABOUTBUSTER that is great. I will look that up for you in the morning. There is also a forum that helps you with the problem.. I just don't have the info at hand right now, but will post it all tomorrow.

×
×
  • Create New...