Quote
http://i45.tinypic.com/2w3dp2o.jpgThanks
Posted 04 July 2010 - 10:13 PM
Quote
http://i45.tinypic.com/2w3dp2o.jpgThanks
Posted 04 July 2010 - 11:46 PM
zillah, on Jul 4 2010, 09:13 PM, said:
You should also search for the "wan miniport" in the following subkey:HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\ClassIf you are able to find it, then make the changes I suggested earlier. The Current Control Set takes precedence over the Current Control Set 001 and 002.
Edited by Tushman, 05 July 2010 - 12:00 AM.
Posted 05 July 2010 - 03:33 AM
Quote
Posted 05 July 2010 - 12:39 PM
zillah, on Jul 5 2010, 02:33 AM, said:
Edited by Tushman, 05 July 2010 - 12:40 PM.
Posted 06 July 2010 - 12:12 AM
Quote
Logfile of Trend Micro HijackThis v2.0.4Scan saved at 2:02:51 PM, on 7/6/2010Platform: Windows XP SP3 (WinNT 5.01.2600)MSIE: Internet Explorer v8.00 (8.00.6001.18702)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\spoolsv.exeC:\Program Files\AVG\AVG9\avgwdsvc.exeC:\Program Files\AVG\AVG9\avgchsvx.exeC:\Program Files\AVG\AVG9\avgrsx.exeC:\Program Files\PC Connectivity Solution\ServiceLayer.exeC:\Program Files\AVG\AVG9\avgcsrvx.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\Explorer.EXEC:\PROGRA~1\AVG\AVG9\avgtray.exeC:\WINDOWS\system32\hkcmd.exeC:\WINDOWS\system32\igfxpers.exeC:\WINDOWS\system32\ctfmon.exeC:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exeC:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exeC:\Program Files\Trend Micro\HiJackThis\HiJackThis.exeR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.com.au/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dllO2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG9\avgssie.dllO2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dllO2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dllO2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dllO2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dllO4 - HKLM\..\Run: [AVG9_TRAY] C:\PROGRA~1\AVG\AVG9\avgtray.exeO4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exeO4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exeO4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exeO4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exeO6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel presentO8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dllO9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dllO9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLLO9 - Extra button: (no name) - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\system32\shdocvw.dllO9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dllO9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dllO9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exeO9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exeO9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exeO9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exeO16 - DPF: {1CE17C82-8DE2-4EF6-ACF9-3A8B21830475} (Courier6 Control) - https://csm.cybertrust.com.au/courier/couriercontrol.cabO16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase6087.cabO16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cabO17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = any.localO17 - HKLM\Software\..\Telephony: DomainName = any.localO17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = any.localO17 - HKLM\System\CS1\Services\Tcpip\..\{A92F07A1-A271-4B39-82ED-279EBA843C61}: NameServer = 192.168.0.50O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = any.localO17 - HKLM\System\CS3\Services\Tcpip\Parameters: Domain = any.localO18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dllO18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG9\avgpp.dllO20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dllO23 - Service: AVG Free WatchDog (avg9wd) - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\AVG9\avgwdsvc.exeO23 - Service: ServiceLayer - Nokia - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe--End of file - 5751 bytesI tried to use those two links to analyze the log above http://hjt.networktechs.com/http://hijackthis.de...gselect=englishYes I do believe It is NOT to be used as a replacement for an expert but I believe it can be used as an educational toolQuote
Edited by zillah, 06 July 2010 - 12:13 AM.
Posted 06 July 2010 - 05:42 AM
Quote
Posted 06 July 2010 - 09:12 AM
Posted 06 July 2010 - 11:53 AM
zillah, on Jul 6 2010, 04:42 AM, said:
Edited by Tushman, 06 July 2010 - 11:57 AM.
Posted 06 July 2010 - 02:08 PM
zillah, on Jul 6 2010, 04:42 AM, said:
Posted 06 July 2010 - 04:59 PM
Quote
Quote
Quote
Quote
Posted 06 July 2010 - 05:04 PM
Quote
Posted 06 July 2010 - 05:11 PM
http://i48.tinypic.com/24v4br9.jpgBut then for few seconds every thing is okay as can be seen in the snap shot below http://i50.tinypic.com/29d9r91.jpg
Then all of the sudden another message pops up saying : devices may not work correctly,,,,I could not record that word by word
Posted 06 July 2010 - 07:44 PM
zillah, on Jul 6 2010, 04:11 PM, said:
Edited by Tushman, 06 July 2010 - 07:46 PM.
Posted 06 July 2010 - 08:28 PM
Quote
Quote
Quote
Quote
http://i50.tinypic.com/2zf6a2t.jpg
Posted 06 July 2010 - 09:37 PM
Edited by Tushman, 06 July 2010 - 09:39 PM.
Posted 06 July 2010 - 09:46 PM
Quote
Posted 06 July 2010 - 10:47 PM
zillah, on Jul 6 2010, 04:04 PM, said:

Posted 06 July 2010 - 10:57 PM
Quote
Posted 07 July 2010 - 05:26 AM
Posted 07 July 2010 - 05:35 AM
Quote
Posted 07 July 2010 - 05:21 PM
Quote
Quote
Posted 08 July 2010 - 04:56 AM
You should see the NIC properties menu show up as in my 2nd screenshot.Post back let us know which items are checked.
Posted 08 July 2010 - 07:05 AM
Quote
Quote
0 members, 0 guests, 0 anonymous users