Advertisement
If you have a new account but are having problems posting or verifying your account, please email us on hello@boards.ie for help. Thanks :)
Hello all! Please ensure that you are posting a new thread or question in the appropriate forum. The Feedback forum is overwhelmed with questions that are having to be moved elsewhere. If you need help to verify your account contact hello@boards.ie
Hi there,
There is an issue with role permissions that is being worked on at the moment.
If you are having trouble with access or permissions on regional forums please post here to get access: https://www.boards.ie/discussion/2058365403/you-do-not-have-permission-for-that#latest

Limewire problems

  • 20-10-2007 8:46pm
    #1
    Closed Accounts Posts: 19,080 ✭✭✭✭


    Basically this loads up in firefox when I click certain files to download within Limewire, and I want to know if my version is corrupt or hacked or something.

    58a23b1929dd56ea3d82.jpg


    It doesn't happen to all files, just some. Usually MP3 files but sometimes images etc. This never used to happen and has only been happening a couple of weeks. I've tried reinstalling but no change.


Comments

  • Closed Accounts Posts: 19,080 ✭✭✭✭Random


    Anyone help out with this at all?

    Limewire version is 4.10.0 pro.

    Sometimes when I click files in the search results box it just loads up various pages in my web browser.

    Thanks


  • Closed Accounts Posts: 1,970 ✭✭✭ActorSeeksJob


    Sounds like malware, may want to do this

    Please download Deckard's System Scanner (DSS) and save it to your Desktop.
    • Close all other windows before proceeding.
    • Double-click on dss.exe and follow the prompts.
    • If your anti-virus or firewall complains, please allow this script to run as it is not malicious.
    • When it has finished, dss will open two Notepads main.txt and extra.txt -- please copy (CTRL+A and then CTRL+C) and paste (CTRL+V) the contents of main.txt and extra.txt in your next reply.


  • Closed Accounts Posts: 19,080 ✭✭✭✭Random


    I've had this problem across 2 Windows installs. I previously did not have this issue using the same installer to install Limewire.

    I shall try that other program as soon as I read a bit more about it and post back here but I really don't see anything it brings up being the issue.


  • Closed Accounts Posts: 19,080 ✭✭✭✭Random


    main.txt
    Deckard's System Scanner v20071014.68
    Run by zero on 2007-12-31 17:52:47
    Computer is in Normal Mode.
    --------------------------------------------------------------------------------
    
    -- System Restore --------------------------------------------------------------
    
    Successfully created a Deckard's System Scanner Restore Point.
    
    
    -- Last 5 Restore Point(s) --
    75: 2007-12-31 17:52:51 UTC - RP109 - Deckard's System Scanner Restore Point
    74: 2007-12-30 17:19:55 UTC - RP108 - System Checkpoint
    73: 2007-12-29 15:54:41 UTC - RP107 - System Checkpoint
    72: 2007-12-28 15:18:20 UTC - RP106 - System Checkpoint
    71: 2007-12-26 19:02:36 UTC - RP105 - System Checkpoint
    
    
    -- First Restore Point -- 
    1: 2007-10-03 14:50:13 UTC - RP35 - System Checkpoint
    
    
    Backed up registry hives.
    Performed disk cleanup.
    
    
    
    -- HijackThis Clone ------------------------------------------------------------
    
    
    Emulating logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 2007-12-31 17:54:07
    Platform: Windows XP Service Pack 2 (5.01.2600)
    MSIE: Internet Explorer (6.00.2900.2180)
    Boot mode: Normal
    
    Running processes:
    C:\WINDOWS\system32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\explorer.exe
    C:\Program Files\NVIDIA Corporation\NvMixer\NvMixerTray.exe
    C:\WINDOWS\system32\rundll32.exe
    C:\Program Files\ESET\nod32kui.exe
    C:\WINDOWS\system32\TaskSwitch.exe
    C:\WINDOWS\system32\Fast.exe
    C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
    C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
    C:\Program Files\Sierra Wireless Inc\3G Watcher\WaHelper.exe
    C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
    C:\WINDOWS\system32\rundll32.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\Program Files\ESET\nod32krn.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\Fast.exe
    C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
    C:\Program Files\Common Files\Teleca Shared\Generic.exe
    C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
    C:\WINDOWS\system32\wscntfy.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Java\jre1.6.0_02\bin\jucheck.exe
    W:\downloads\dss.exe
    
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: flashget urlcatch - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - W:\FlashGet\jccatch.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
    O2 - BHO: FlashGet GetFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - W:\FlashGet\getflash.dll
    O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
    O4 - HKLM\..\Run: [NVMixerTray] "C:\Program Files\NVIDIA Corporation\NvMixer\NVMixerTray.exe"
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
    O4 - HKLM\..\Run: [googletalk] C:\Program Files\Google\Google Talk\googletalk.exe /autostart
    O4 - HKLM\..\Run: [BackgroundSwitcher] C:\WINDOWS\system32\bgswitch.exe
    O4 - HKLM\..\Run: [CoolSwitch] C:\WINDOWS\system32\taskswitch.exe
    O4 - HKLM\..\Run: [FastUser] C:\WINDOWS\system32\fast.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
    O4 - HKLM\..\Run: [Flashget] W:\FlashGet\flashget.exe /min
    O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup
    O4 - HKLM\..\Run: [WatcherHelper] "C:\Program Files\Sierra Wireless Inc\3G Watcher\WaHelper.exe"
    O4 - HKLM\..\Run: [Watcher3G] "C:\Program Files\Sierra Wireless Inc\3G Watcher\Watcher.exe" /minimized
    O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
    O4 - HKLM\..\Run: [AME_CSA] rundll32 amecsa.cpl,RUN_DLL
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
    O4 - HKUS\.DEFAULT\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'Default user')
    O4 - Startup: No-IP DUC.lnk = C:\Program Files\No-IP\DUC20.exe
    O8 - Extra context menu item: &Download All with FlashGet - W:\FlashGet\jc_all.htm
    O8 - Extra context menu item: &Download with FlashGet - W:\FlashGet\jc_link.htm
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - (file missing)
    O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - W:\FlashGet\flashget.exe
    O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - W:\FlashGet\flashget.exe
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O18 - Protocol: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\MSITSS.DLL
    O18 - Protocol: mso-offdap - {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Program Files\Common Files\Microsoft Shared\Web Components\10\OWC10.DLL
    O18 - Protocol: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} - C:\Program Files\Common Files\Microsoft Shared\Web Components\11\OWC11.DLL
    O18 - Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
    O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\ESET\nod32krn.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
    O23 - Service: VNC Server Version 4 (WinVNC4) - RealVNC Ltd. - C:\Program Files\RealVNC\VNC4\winvnc4.exe
    
    
    --
    End of file - 6964 bytes
    
    -- File Associations -----------------------------------------------------------
    
    All associations okay.
    
    
    -- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------
    
    R0 xmasbus - c:\windows\system32\drivers\xmasbus.sys
    R0 xmasscsi - c:\windows\system32\drivers\xmasscsi.sys
    R3 LVCap138 (TV Card Capture Driver) - c:\windows\system32\drivers\lvcap138.sys <Not Verified; Philips; TV Card>
    
    S3 AmeLanPc - c:\windows\system32\drivers\amelanpc.sys <Not Verified; Alcatel Microelectronics; Alcatel Microelectronics ADSL USB MODEM>
    S3 SWUMX20 (Sierra Wireless USB MUX Driver (UMTS20)) - c:\windows\system32\drivers\swumx20.sys (file missing)
    
    
    -- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------
    
    R3 ServiceLayer - "c:\program files\pc connectivity solution\servicelayer.exe" <Not Verified; Nokia.; PC Connectivity Solution>
    
    
    -- Device Manager: Disabled ----------------------------------------------------
    
    Class GUID: {4D36E96C-E325-11CE-BFC1-08002BE10318}
    Description: 
    Device ID: STREAM\LVTUNER\5&2DA1C645&0&0
    Manufacturer: 
    Name: 
    PNP Device ID: STREAM\LVTUNER\5&2DA1C645&0&0
    Service: 
    
    Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
    Description: Ethernet Controller
    Device ID: PCI\VEN_11AB&DEV_4320&SUBSYS_811A1043&REV_13\4&13699180&0&6048
    Manufacturer: 
    Name: Ethernet Controller
    PNP Device ID: PCI\VEN_11AB&DEV_4320&SUBSYS_811A1043&REV_13\4&13699180&0&6048
    Service: 
    
    Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
    Description: 
    Device ID: ACPI\ATK0110\1010110
    Manufacturer: 
    Name: 
    PNP Device ID: ACPI\ATK0110\1010110
    Service: 
    
    
    -- Files created between 2007-11-30 and 2007-12-31 -----------------------------
    
    2007-12-31 06:12:47         0 dr-h----- C:\Documents and Settings\zero\Recent
    2007-12-19 20:05:26         0 d-------- C:\Program Files\uTorrent
    2007-12-19 20:05:17         0 d-------- C:\Documents and Settings\zero\Application Data\uTorrent
    2007-12-12 00:22:08         0 d-------- C:\Documents and Settings\zero\Application Data\Skype
    2007-12-12 00:22:04         0 d-------- C:\Program Files\Skype
    2007-12-12 00:21:43         0 d-------- C:\Documents and Settings\All Users\Application Data\Skype
    2007-12-06 21:12:06         0 d-------- C:\Program Files\Web Publish
    2007-12-06 19:24:44    140048 --a------ C:\WINDOWS\system32\jit.dll <Not Verified; Microsoft Corporation; Microsoft&#174; Windows&#174; Operating System>
    2007-12-06 19:24:44     42496 --a------ C:\WINDOWS\setdebug.exe <Not Verified; Microsoft Corporation; Microsoft&#174; Windows&#174; Operating System>
    2007-12-06 19:24:42    135168 --a------ C:\WINDOWS\system32\javaee.dll <Not Verified; Microsoft Corporation; Microsoft&#174; Windows&#174; Operating System>
    2007-12-06 19:24:42      6550 --a------ C:\WINDOWS\jautoexp.dat
    2007-12-06 19:24:41    313856 --a------ C:\WINDOWS\system32\dx3j.dll <Not Verified; Microsoft Corporation; Microsoft&#174; DirectX for Java>
    2007-12-06 19:24:33       113 --a------ C:\WINDOWS\system32\zonedon.reg
    2007-12-06 19:24:32       113 --a------ C:\WINDOWS\system32\zonedoff.reg
    2007-12-06 19:24:31    147456 --a------ C:\WINDOWS\wjview.exe <Not Verified; Microsoft Corporation; Microsoft&#174; Windows&#174; Operating System>
    2007-12-06 19:24:31    207872 --a------ C:\WINDOWS\system32\vmhelper.dll <Not Verified; Microsoft Corporation; Microsoft&#174; Windows&#174; Operating System>
    2007-12-06 19:24:30     73728 --a------ C:\WINDOWS\system32\msjdbc10.dll <Not Verified; Microsoft Corporation; Microsoft JDBC Bridge>
    2007-12-06 19:24:29    843024 --a------ C:\WINDOWS\system32\msjava.dll <Not Verified; Microsoft Corporation; Microsoft&#174; Windows&#174; Operating System>
    2007-12-06 19:24:28    155920 --a------ C:\WINDOWS\system32\msawt.dll <Not Verified; Microsoft Corporation; Microsoft&#174; Windows&#174; Operating System>
    2007-12-06 19:24:28    154112 --a------ C:\WINDOWS\jview.exe <Not Verified; Microsoft Corporation; Microsoft&#174; Windows&#174; Operating System>
    2007-12-06 19:24:27     14848 --a------ C:\WINDOWS\system32\jdbgmgr.exe <Not Verified; Microsoft Corporation; Microsoft&#174; Windows&#174; Operating System>
    2007-12-06 19:24:26    361744 --a------ C:\WINDOWS\system32\javart.dll <Not Verified; Microsoft Corporation; Microsoft&#174; Windows&#174; Operating System>
    2007-12-06 19:24:25     32528 --a------ C:\WINDOWS\system32\javaprxy.dll <Not Verified; Microsoft Corporation; Microsoft&#174; Windows&#174; Operating System>
    2007-12-06 19:24:24    209168 --a------ C:\WINDOWS\system32\javacypt.dll <Not Verified; Microsoft Corporation; Microsoft&#174; Windows&#174; Operating System>
    2007-12-06 19:24:23     44544 --a------ C:\WINDOWS\clspack.exe <Not Verified; Microsoft Corporation; Microsoft&#174; Windows&#174; Operating System>
    2007-12-06 19:24:21    103424 --a------ C:\WINDOWS\extrac32.exe <Not Verified; Microsoft Corporation; Microsoft (R) CAB File Extract Utility>
    2007-12-05 19:13:43    204800 -----n--- C:\WINDOWS\system32\WaitMsg.exe <Not Verified; ; WaitMsg Application>
    2007-12-05 19:13:43    110592 -----n--- C:\WINDOWS\system32\Utility.exe
    2007-12-05 19:13:43     12507 -----n--- C:\WINDOWS\system32\Snetcfg.exe <Not Verified; Windows (R) 2000 DDK provider; Windows (R) 2000 DDK driver>
    2007-12-05 19:13:43     24576 -----n--- C:\WINDOWS\system32\RenCSA.exe
    2007-12-05 19:13:43     28672 --a------ C:\WINDOWS\system32\PnpFix.exe
    2007-12-05 19:13:43    319488 -----n--- C:\WINDOWS\system32\MultLang.dll <Not Verified; ; test Dynamic Link Library>
    2007-12-05 19:13:43    290256 -----n--- C:\WINDOWS\system32\fw-usb.bin
    2007-12-05 19:13:43    290256 --a------ C:\WINDOWS\system32\drivers\fw-usb.bin
    2007-12-05 19:13:43    118347 --a------ C:\WINDOWS\system32\drivers\amelanpc.sys <Not Verified; Alcatel Microelectronics; Alcatel Microelectronics ADSL USB MODEM>
    2007-12-05 19:13:43     24576 -----n--- C:\WINDOWS\system32\DelCSA.exe
    2007-12-05 19:13:43    106496 -----n--- C:\WINDOWS\system32\Cleanup.exe
    2007-12-05 19:13:43     36864 -----n--- C:\WINDOWS\system32\Api32.dll
    2007-12-05 19:13:43    118347 -----n--- C:\WINDOWS\system32\Amelanpc.sys <Not Verified; Alcatel Microelectronics; Alcatel Microelectronics ADSL USB MODEM>
    2007-12-05 19:13:42     30182 --a------ C:\WINDOWS\system32\wippppoe.sys <Not Verified; Alcatel Microelectronics; Alcatel Microelectronics PPPOE Driver>
    2007-12-05 19:13:42     38860 --a------ C:\WINDOWS\system32\Wippppoe.dll
    2007-12-05 19:13:42    241664 --a------ C:\WINDOWS\system32\WipDUN.exe <Not Verified; ; WipDUN Application>
    2007-12-05 19:13:42     36864 --a------ C:\WINDOWS\system32\Wip.exe
    2007-12-05 19:13:42     28672 --a------ C:\WINDOWS\system32\UninstPPPoE.exe
    2007-12-05 19:13:42     28672 --a------ C:\WINDOWS\system32\RShort2k.exe
    2007-12-05 19:13:42     65536 --a------ C:\WINDOWS\system32\RasXP.exe
    2007-12-05 19:13:42     36864 --a------ C:\WINDOWS\system32\Ras2000.exe
    2007-12-05 19:13:42     81920 --a------ C:\WINDOWS\system32\NotifyPhoneBook.exe
    2007-12-05 19:13:42        29 --a------ C:\WINDOWS\system32\InstallMOF.bat
    2007-12-05 19:13:42     45056 --a------ C:\WINDOWS\system32\InstallHardware.exe
    2007-12-05 19:13:42      1208 --a------ C:\WINDOWS\system32\INIT-USB.BIN
    2007-12-05 19:13:42     45056 --a------ C:\WINDOWS\system32\GainSettings.exe
    2007-12-05 19:13:42      6511 --a------ C:\WINDOWS\system32\drivers\StrFilter.sys <Not Verified; Windows (R) 2000 DDK provider; Windows (R) 2000 DDK driver>
    2007-12-05 19:13:42      1208 --a------ C:\WINDOWS\system32\drivers\init-usb.bin
    2007-12-05 19:13:42     28672 --a------ C:\WINDOWS\system32\DisconnectPPPoE.exe
    2007-12-05 19:13:42     36864 --a------ C:\WINDOWS\system32\CustomizeNdisParams.exe
    2007-12-05 19:13:42     90112 --a------ C:\WINDOWS\system32\AMEUninst2000.exe
    2007-12-05 19:13:42     36864 --a------ C:\WINDOWS\system32\AMEInstall.exe
    2007-12-05 19:13:41     32768 --a------ C:\WINDOWS\system32\RemDial.exe
    2007-12-05 19:13:41     28672 --a------ C:\WINDOWS\system32\AMELaunchUninst.exe
    2007-12-05 19:13:41     24576 --a------ C:\WINDOWS\system32\AMECSARemove.exe
    2007-12-02 22:21:13         0 d-------- C:\Documents and Settings\zero\j2mewtk
    2007-12-02 22:17:39         0 d-------- C:\WTK2.5.2
    2007-12-02 21:20:22         0 d-------- C:\Documents and Settings\zero\Application Data\dvdcss
    
    
    -- Find3M Report ---------------------------------------------------------------
    
    2007-12-31 17:25:28         0 d-------- C:\Program Files\Mozilla Thunderbird
    2007-12-31 05:48:03         0 d-------- C:\Documents and Settings\zero\Application Data\LimeWire
    2007-12-31 05:30:20         0 d-------- C:\Documents and Settings\zero\Application Data\Xfire
    2007-12-26 17:39:45         0 d-------- C:\Program Files\Xfire
    2007-12-06 21:12:13         0 d-------- C:\Program Files\Common Files
    2007-12-05 19:13:41         0 d--h----- C:\Program Files\InstallShield Installation Information
    2007-12-02 19:35:19         0 d-------- C:\Documents and Settings\zero\Application Data\Adobe
    2007-11-04 17:01:54         0 d-------- C:\Documents and Settings\zero\Application Data\PC Suite
    2007-11-03 14:15:12         0 d-------- C:\Documents and Settings\zero\Application Data\Teleca
    2007-11-03 14:14:24         0 d-------- C:\Documents and Settings\zero\Application Data\Sony Ericsson
    2007-11-03 14:12:00         0 d-------- C:\Program Files\Common Files\Teleca Shared
    2007-11-03 14:11:45         0 d-------- C:\Program Files\Common Files\Sony Ericsson Shared
    2007-11-03 14:11:41         0 d-------- C:\Program Files\Sony Ericsson
    2007-11-03 14:10:47         0 d-------- C:\Program Files\Common Files\InstallShield
    
    
    -- Registry Dump ---------------------------------------------------------------
    
    *Note* empty entries & legit default entries are not shown
    
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "NVMixerTray"="C:\Program Files\NVIDIA Corporation\NvMixer\NVMixerTray.exe" [20/12/2004 16:12]
    "NvCplDaemon"="C:\WINDOWS\system32\NvCpl.dll" [28/06/2007 23:43]
    "nwiz"="nwiz.exe" [28/06/2007 23:43 C:\WINDOWS\system32\nwiz.exe]
    "NvMediaCenter"="C:\WINDOWS\system32\NvMcTray.dll" [28/06/2007 23:43]
    "nod32kui"="C:\Program Files\Eset\nod32kui.exe" [01/09/2007 20:48]
    "googletalk"="C:\Program Files\Google\Google Talk\googletalk.exe" [01/01/2007 21:22]
    "BackgroundSwitcher"="C:\WINDOWS\system32\bgswitch.exe" [19/10/2001 11:14]
    "CoolSwitch"="C:\WINDOWS\system32\taskswitch.exe" [19/10/2001 11:14]
    "FastUser"="C:\WINDOWS\system32\fast.exe" [19/10/2001 11:14]
    "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe" [12/07/2007 03:00]
    "NeroFilterCheck"="C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe" [12/01/2006 14:40]
    "Flashget"="W:\FlashGet\flashget.exe" [29/06/2007 11:44]
    "PCSuiteTrayApplication"="C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe" [18/06/2007 14:10]
    "AirCardEnabler"="" []
    "WatcherHelper"="C:\Program Files\Sierra Wireless Inc\3G Watcher\WaHelper.exe" [02/11/2006 13:57]
    "Watcher3G"="C:\Program Files\Sierra Wireless Inc\3G Watcher\Watcher.exe" [03/11/2006 16:09]
    "Sony Ericsson PC Suite"="C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" [24/11/2006 01:06]
    "AME_CSA"="amecsa.cpl" [15/04/2003 12:30 C:\WINDOWS\system32\AmeCSA.cpl]
    
    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [03/08/2004 23:56]
    "MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [16/01/2007 20:08]
    
    [HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
    "Nokia.PCSync"=C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
    
    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
    "NoSMHelp"=01000000
    "NoRecentDocsMenu"=01000000
    "ClearRecentDocsOnExit"=01000000
    "NoRecentDocsHistory"=01000000
    "NoRecentDocsNetHood"=01000000
    "NoLowDiskSpaceChecks"=1 (0x1)
    
    
    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{0ab4140f-5f0b-11dc-bd49-0011d88a755f}]
    AutoRun\command- G:\AutoRun.exe
    
    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{0ab41411-5f0b-11dc-bd49-0011d88a755f}]
    AutoRun\command- G:\AutoRun.exe
    
    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{38d12d37-78fe-11dc-bd58-0011d88a755f}]
    AutoRun\command- G:\AutoRun.exe
    
    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{38d12d38-78fe-11dc-bd58-0011d88a755f}]
    AutoRun\command- G:\AutoRun.exe
    
    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{57d21a2f-8656-11dc-bd65-00a0d5ffff8c}]
    AutoRun\command- G:\AutoRun.exe
    
    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{7e37fa3f-64a6-11dc-bd4a-9b149ca5ad22}]
    AutoRun\command- G:\AutoRun.exe
    
    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{caad56b3-8e26-11dc-bd76-00a0d5ffff8c}]
    AutoRun\command- G:\AutoRun.exe
    
    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{caad56b4-8e26-11dc-bd76-00a0d5ffff8c}]
    AutoRun\command- G:\AutoRun.exe
    
    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{caad56b5-8e26-11dc-bd76-00a0d5ffff8c}]
    AutoRun\command- G:\AutoRun.exe
    
    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{caad56b6-8e26-11dc-bd76-00a0d5ffff8c}]
    AutoRun\command- G:\AutoRun.exe
    
    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{fdf5c46a-6eb1-11dc-bd51-0011d88a755f}]
    AutoRun\command- G:\AutoRun.exe
    
    
    
    
    -- End of Deckard's System Scanner: finished at 2007-12-31 17:54:42 ------------
    
    
    

    extra.txt
    Deckard's System Scanner v20071014.68
    Extra logfile - please post this as an attachment with your post.
    --------------------------------------------------------------------------------
    
    -- System Information ----------------------------------------------------------
    
    Microsoft Windows XP Professional (build 2600) SP 2.0
    Architecture: X86; Language: English
    
    CPU 0: AMD Athlon(tm) 64 Processor 3500+
    Percentage of Memory in Use: 21&#37;
    Physical Memory (total/avail): 2047.48 MiB / 1610.53 MiB
    Pagefile Memory (total/avail): 3940.15 MiB / 3689.37 MiB
    Virtual Memory (total/avail): 2047.88 MiB / 1915.68 MiB
    
    A: is Removable (Unformatted)
    C: is Fixed (NTFS) - 186.3 GiB total, 166.77 GiB free. 
    D: is CDROM (Unformatted)
    E: is CDROM (UDF)
    F: is CDROM (No Media)
    W: is Fixed (NTFS) - 186.31 GiB total, 122.63 GiB free. 
    X: is Fixed (NTFS) - 372.61 GiB total, 156.86 GiB free. 
    
    \\.\PHYSICALDRIVE0 - Hitachi HDT725040VLA360 - 372.61 GiB - 1 partition
      \PARTITION0 - Logical Disk Manager - 372.61 GiB - X:
    
    \\.\PHYSICALDRIVE2 - SAMSUNG SP2004C - 186.31 GiB - 1 partition
      \PARTITION0 - Logical Disk Manager - 186.31 GiB - W:
    
    \\.\PHYSICALDRIVE1 - SAMSUNG SP2004C - 186.31 GiB - 1 partition
      \PARTITION0 (bootable) - Installable File System - 186.3 GiB - C:
    
    
    
    -- Security Center -------------------------------------------------------------
    
    AUOptions is set to notify before download.
    Windows Internal Firewall is disabled.
    
    FirstRunDisabled is set.
    
    AV: ESET NOD32 antivirus system 2.70 v2.70 (ESET, spol. s r.o.)
    
    [HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
    "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
    
    [HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
    "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
    "C:\\Program Files\\Google\\Google Talk\\googletalk.exe"="C:\\Program Files\\Google\\Google Talk\\googletalk.exe:*:Enabled:Google Talk"
    "W:\\Trillian\\trillian.exe"="W:\\Trillian\\trillian.exe:*:Enabled:Trillian"
    !! I CUT A LINE OUT !!
    "C:\\Program Files\\Xfire\\xfire.exe"="C:\\Program Files\\Xfire\\xfire.exe:*:Enabled:Xfire"
    "C:\\Program Files\\EA Games\\Command & Conquer The First Decade\\Command & Conquer(tm) Generals Zero Hour\\generals.exe"="C:\\Program Files\\EA Games\\Command & Conquer The First Decade\\Command & Conquer(tm) Generals Zero Hour\\generals.exe:*:Enabled:generals"
    "C:\\Program Files\\Nero\\Nero 7\\Nero Home\\NeroHome.exe"="C:\\Program Files\\Nero\\Nero 7\\Nero Home\\NeroHome.exe:*:Disabled:Nero Home"
    "W:\\UTORRENT\\utorrent.exe"="W:\\UTORRENT\\utorrent.exe:*:Enabled:&#181;Torrent"
    "W:\\HLSW\\hlsw.exe"="W:\\HLSW\\hlsw.exe:*:Enabled:hlsw"
    "W:\\FlashGet\\flashget.exe"="W:\\FlashGet\\flashget.exe:*:Enabled:Flashget"
    "C:\\Program Files\\DAP\\DAP.exe"="C:\\Program Files\\DAP\\DAP.exe:*:Enabled:Download Accelerator Plus (DAP)"
    !! I CUT A LINE OUT !!
    "W:\\STEAM\\Steam.exe"="W:\\STEAM\\Steam.exe:*:Enabled:Steam"
    "C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
    !! I CUT A LINE OUT !!
    "C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
    ""=""
    "C:\\Program Files\\Sierra Wireless Inc\\3G Watcher\\SwiApiMux.exe"="C:\\Program Files\\Sierra Wireless Inc\\3G Watcher\\SwiApiMux.exe:*:Enabled:SwiApiMux"
    !! I CUT A LINE OUT !!
    "C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"
    "C:\\Program Files\\uTorrent\\uTorrent.exe"="C:\\Program Files\\uTorrent\\uTorrent.exe:*:Enabled:&#181;Torrent"
    
    
    -- Environment Variables -------------------------------------------------------
    
    ALLUSERSPROFILE=C:\Documents and Settings\All Users
    APPDATA=C:\Documents and Settings\zero\Application Data
    CLIENTNAME=Console
    CommonProgramFiles=C:\Program Files\Common Files
    COMPUTERNAME=PCLINE
    ComSpec=C:\WINDOWS\system32\cmd.exe
    DEFAULT_CA_NR=CA8
    FP_NO_HOST_CHECK=NO
    HOMEDRIVE=C:
    HOMEPATH=\Documents and Settings\zero
    include=C:\Program Files\Microsoft Visual Studio\VC98\atl\include;C:\Program Files\Microsoft Visual Studio\VC98\mfc\include;C:\Program Files\Microsoft Visual Studio\VC98\include
    lib=C:\Program Files\Microsoft Visual Studio\VC98\mfc\lib;C:\Program Files\Microsoft Visual Studio\VC98\lib
    LOGONSERVER=\\PCLINE
    MSDevDir=C:\Program Files\Microsoft Visual Studio\Common\MSDev98
    NUMBER_OF_PROCESSORS=1
    OS=Windows_NT
    Path=C:\Program Files\PC Connectivity Solution\;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\Program Files\Common Files\Teleca Shared;C:\Program Files\Microsoft Visual Studio\Common\Tools\WinNT;C:\Program Files\Microsoft Visual Studio\Common\MSDev98\Bin;C:\Program Files\Microsoft Visual Studio\Common\Tools;C:\Program Files\Microsoft Visual Studio\VC98\bin
    PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
    PROCESSOR_ARCHITECTURE=x86
    PROCESSOR_IDENTIFIER=x86 Family 15 Model 47 Stepping 2, AuthenticAMD
    PROCESSOR_LEVEL=15
    PROCESSOR_REVISION=2f02
    ProgramFiles=C:\Program Files
    PROMPT=$P$G
    SESSIONNAME=Console
    SystemDrive=C:
    SystemRoot=C:\WINDOWS
    TEMP=C:\DOCUME~1\zero\LOCALS~1\Temp
    TMP=C:\DOCUME~1\zero\LOCALS~1\Temp
    USERDOMAIN=PCLINE
    USERNAME=zero
    USERPROFILE=C:\Documents and Settings\zero
    windir=C:\WINDOWS
    
    
    -- User Profiles ---------------------------------------------------------------
    
    zero [I](admin)[/I]
    
    
    -- Add/Remove Programs ---------------------------------------------------------
    
     --> C:\Program Files\Nero\Nero 7\nero\uninstall\UNNERO.exe /UNINSTALL
     --> C:\WINDOWS\UNNeroBackItUp.exe /UNINSTALL
     --> C:\WINDOWS\UNNeroMediaHome.exe /UNINSTALL
     --> C:\WINDOWS\UNNeroShowTime.exe /UNINSTALL
     --> C:\WINDOWS\UNNeroVision.exe /UNINSTALL
     --> C:\WINDOWS\UNRecode.exe /UNINSTALL
     --> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
    Adobe Reader 7.0.7 --> MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A70700000002}
    Alcohol 120% --> MsiExec.exe /X{E9F81423-211E-46B6-9AE0-38568BC5CF6F}
    &#181;Torrent --> "C:\Program Files\uTorrent\uTorrent.exe" /UNINSTALL
    Attack on Pearl Harbor Demo --> "W:\STEAM\steam.exe" steam://uninstall/8630
    Bioshock Demo --> "W:\STEAM\steam.exe" steam://uninstall/7710
    !! I CUT A LINE OUT !!
    CDex extraction audio --> "C:\Program Files\CDex_150\uninstall.exe"
    Command & Conquer The First Decade --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{66D6F3BD-CA23-41A4-9FA3-96B26B32528C}\setup.exe" -l0x9  -removeonly
    Condition Zero --> "W:\STEAM\steam.exe" steam://uninstall/80
    Condition Zero Deleted Scenes --> "W:\STEAM\steam.exe" steam://uninstall/100
    Deathmatch Classic --> "W:\STEAM\steam.exe" steam://uninstall/40
    Doom 3 Demo --> "W:\STEAM\steam.exe" steam://uninstall/9100
    ffdshow [rev 1448] [2007-08-31] --> "C:\Program Files\ffdshow\unins000.exe"
    FlashGet 1.9.0.1012 --> W:\FlashGet\uninst.exe
    Google Talk (remove only) --> "C:\Program Files\Google\Google Talk\uninstall.exe"
    Half-Life 2 --> "W:\STEAM\steam.exe" steam://uninstall/220
    Half-Life 2: Episode One --> "W:\STEAM\steam.exe" steam://uninstall/380
    Half-Life 2: Lost Coast --> "W:\STEAM\steam.exe" steam://uninstall/340
    Half-Life Deathmatch: Source --> "W:\STEAM\steam.exe" steam://uninstall/360
    Half-Life: Blue Shift --> "W:\STEAM\steam.exe" steam://uninstall/130
    HLSW v1.2.0.1 --> "W:\HLSW\unins000.exe"
    J2SE Development Kit 5.0 Update 13 --> MsiExec.exe /I{32A3A4F4-B792-11D6-A78A-00B0D0150130}
    J2SE Runtime Environment 5.0 Update 13 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150130}
    Java(TM) 6 Update 2 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160020}
    Java(TM) SE Runtime Environment 6 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160000}
    LimeWire PRO 4.10.0 --> "C:\Program Files\LimeWire\uninstall.exe"
    Microsoft Office Professional Edition 2003 --> MsiExec.exe /I{90110409-6000-11D3-8CFE-0150048383C9}
    Microsoft Visual C++ 2005 Redistributable --> MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
    Microsoft Visual Studio 6.0 Enterprise Edition --> "C:\Program Files\Microsoft Visual Studio\Common\Setup\1033\Setup.exe"
    Microsoft VM for Java --> RunDll32 advpack.dll,LaunchINFSection java.inf,UnInstall
    Microsoft Web Publishing Wizard 1.53 --> RunDll32 ADVPACK.DLL,LaunchINFSection C:\WINDOWS\INF\wpie3x86.inf,WebPostUninstall
    Mobile Connect --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3EAAC5FD-E209-4856-8C49-D4EA40F85032}\setup.exe" -l0x9  -removeonly
    Mozilla Firefox (2.0.0.11) --> C:\Program Files\Mozilla Firefox\uninstall\helper.exe
    Mozilla Thunderbird (2.0.0.9) --> C:\Program Files\Mozilla Thunderbird\uninstall\helper.exe
    MSXML 6.0 Parser (KB933579) --> MsiExec.exe /I{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}
    MyPhoneExplorer --> C:\Program Files\MyPhoneExplorer\uninstall.exe
    !! I CUT A LINE OUT !!
    Nero 7 Demo --> MsiExec.exe /I{0D9E1F52-CE29-B03B-D79F-8EC434821033}
    No-IP.com DUC (remove only) --> "C:\Program Files\No-IP\DUC20.exe" -uninstall
    NOD32 antivirus system --> C:\Program Files\Eset\Setup\setup.exe /UNINSTALL
    Nokia Connectivity Cable Driver --> MsiExec.exe /X{11964613-805F-432D-A12B-169554B793E7}
    Nokia Map Loader --> MsiExec.exe /I{03528A01-7E5E-4C5F-94DF-1D8012E969EF}
    Nokia PC Suite --> C:\Documents and Settings\All Users\Application Data\Installations\{A982E6CC-9F0D-4948-9B18-BDFD55DE4A72}\Nokia_PC_Suite_6_84_10_3_eng_web.exe
    Nokia PC Suite --> MsiExec.exe /I{A982E6CC-9F0D-4948-9B18-BDFD55DE4A72}
    NVIDIA Drivers --> C:\WINDOWS\system32\nvudisp.exe UninstallGUI
    NvMixer --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D7A6C517-11F2-419F-B5BB-27772B939698}\Setup.exe"  -uninstall
    OpenOffice.org 2.2 --> MsiExec.exe /I{3CCBC9FF-7F35-4220-B66D-B60E2E7AB4E2}
    Opposing Force --> "W:\STEAM\steam.exe" steam://uninstall/50
    PC Connectivity Solution --> MsiExec.exe /I{99A40651-0BC2-4095-8F9A-A40FAB224FEF}
    Peggle Extreme --> "W:\STEAM\steam.exe" steam://uninstall/3483
    Powertoys For Windows XP --> MsiExec.exe /I{6C31E111-96BB-4ADC-9C81-E6D3EEDDD8D3}
    QuickTime Alternative 1.76 --> "C:\Program Files\QuickTime Alternative\unins000.exe"
    Real Alternative 1.49 --> "C:\Program Files\Real Alternative\unins000.exe"
    Ricochet --> "W:\STEAM\steam.exe" steam://uninstall/60
    Sierra Wireless 3G Watcher --> MsiExec.exe /I{3904A5E2-B989-4541-8B1A-DCBA2436C667}
    Skype&#8482; 3.6 --> MsiExec.exe /X{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}
    Sony Ericsson PC Suite --> MsiExec.exe /I{FC906D5C-91F9-4DA4-A765-6DCBB669F317}
    Sun Java (TM) Wireless Toolkit 2.5.2 for CLDC --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D3EEBD4C-DE98-4130-9169-6891467F5CF1}\setup.exe" -l0x9  -removeonly
    Team Fortress 2 --> "W:\STEAM\steam.exe" steam://uninstall/440
    Team Fortress Classic --> "W:\STEAM\steam.exe" steam://uninstall/20
    TextPad 5 --> MsiExec.exe /X{B6EC7388-E277-4A5B-8C8F-71067A41BA64}
    Trillian --> W:\Trillian\trillian.exe /uninstall
    VideoLAN VLC media player 0.8.5 --> C:\Program Files\VideoLAN\VLC\uninstall.exe
    VNC Free Edition 4.1.2 --> "C:\Program Files\RealVNC\VNC4\unins000.exe"
    Windows Communication Foundation --> MsiExec.exe /X{491DD792-AD81-429C-9EB4-86DD3D22E333}
    Windows Driver Package - Nokia (WUDFRd) WPD (06/01/2007 6.84.33.0) --> C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\pccswpddri_044C8712DB44F83D9DE6C376991EE9254E0A69E4\pccswpddriver.inf
    Windows Driver Package - Nokia Modem (02/15/2007 3.1) --> C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\pccs_bluet_8B37DC72918CCD58A6EC20373AF6242B037A293B\pccs_bluetooth.inf
    Windows Driver Package - Nokia Modem (02/15/2007 3.1) --> C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\pccs_bluet_F12A08B6F776984A95553486F64C541356F86E38\pccs_bluetooth.inf
    Windows Driver Package - Nokia Modem (05/24/2007 6.84.0.1) --> C:\PROGRA~1\DIFX\270581355A767BF1\dpinst.exe /u C:\WINDOWS\system32\DRVSTORE\nokbtmdm_5E1541AFF1E1EA3554CE566743CCAD323ED1C108\nokbtmdm.inf
    Windows Imaging Component --> "C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
    Windows Presentation Foundation --> MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
    Windows Workflow Foundation --> MsiExec.exe /I{7D1B85BD-AA07-48B8-808D-67A4067FC6BD}
    WinRAR archiver --> C:\Program Files\WinRAR\uninstall.exe
    Xfire (remove only) --> "C:\Program Files\Xfire\uninst.exe"
    XML Paper Specification Shared Components Pack 1.0 --> 
    XP Codec Pack --> C:\Program Files\XP Codec Pack\Uninstall.exe
    ZyXEL ADSL USB Modem WA.9.2.C0 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BEBED42E-0BF4-11D5-928C-0060677630C4}\Setup.exe" 
    
    
    -- Application Event Log -------------------------------------------------------
    
    Event Record #/Type1258 / Error
    Event Submitted/Written: 12/08/2007 04:30:25 PM
    Event ID/Source: 1 / WinVNC4
    Event Description:
    ManagedListener: unable to bind listening socket: Only one usage of each socket address (protocol/network address/port) is normally permitted. (10048)
    
    Event Record #/Type1257 / Error
    Event Submitted/Written: 12/08/2007 04:29:47 PM
    Event ID/Source: 1 / WinVNC4
    Event Description:
    ManagedListener: unable to bind listening socket: Only one usage of each socket address (protocol/network address/port) is normally permitted. (10048)
    
    Event Record #/Type1254 / Error
    Event Submitted/Written: 12/08/2007 11:00:06 AM
    Event ID/Source: 1 / WinVNC4
    Event Description:
    ManagedListener: unable to bind listening socket: Only one usage of each socket address (protocol/network address/port) is normally permitted. (10048)
    
    Event Record #/Type1250 / Error
    Event Submitted/Written: 12/07/2007 06:55:00 PM
    Event ID/Source: 1 / WinVNC4
    Event Description:
    ManagedListener: unable to bind listening socket: Only one usage of each socket address (protocol/network address/port) is normally permitted. (10048)
    
    Event Record #/Type1245 / Error
    Event Submitted/Written: 12/06/2007 07:27:36 PM
    Event ID/Source: 1 / WinVNC4
    Event Description:
    ManagedListener: unable to bind listening socket: Only one usage of each socket address (protocol/network address/port) is normally permitted. (10048)
    
    
    
    -- Security Event Log ----------------------------------------------------------
    
    No Errors/Warnings found.
    
    
    -- System Event Log ------------------------------------------------------------
    
    Event Record #/Type4018 / Error
    Event Submitted/Written: 12/31/2007 05:24:45 PM / 12/31/2007 05:25:12 PM
    Event ID/Source: 7 / Disk
    Event Description:
    The device, \Device\Harddisk1\D, has a bad block.
    
    Event Record #/Type4010 / Warning
    Event Submitted/Written: 12/29/2007 03:29:29 AM
    Event ID/Source: 36 / W32Time
    Event Description:
    The time service has not been able to synchronize the system time
    for 49152 seconds because none of the time providers has been able to
    provide a usable time stamp. The system clock is unsynchronized.
    
    Event Record #/Type4009 / Error
    Event Submitted/Written: 12/29/2007 00:42:59 AM
    Event ID/Source: 7 / Disk
    Event Description:
    The device, \Device\Harddisk1\D, has a bad block.
    
    Event Record #/Type4005 / Warning
    Event Submitted/Written: 12/28/2007 04:04:06 PM
    Event ID/Source: 4226 / Tcpip
    Event Description:
    TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.
    
    Event Record #/Type4004 / Warning
    Event Submitted/Written: 12/28/2007 02:31:37 PM
    Event ID/Source: 4226 / Tcpip
    Event Description:
    TCP/IP has reached the security limit imposed on the number of concurrent TCP connect attempts.
    
    
    
    -- End of Deckard's System Scanner: finished at 2007-12-31 17:54:42 ------------
    
    
    


  • Closed Accounts Posts: 636 ✭✭✭conor2007


    cant help ya with that text there

    but limewire itself is a problem (when i had it i never got a problem - but everyone else does)

    so get rid of that and run an antivirus and antispyware/malware


  • Advertisement
  • Closed Accounts Posts: 19,080 ✭✭✭✭Random


    Limewire still brings in the goods for various things you might search for and I'm happy enough to just close the browser window as it opens for now, but would really like a solution.

    My mate tells me today that he has the same problem as me and he's always had that problem - so maybe I was just lucky for 2 years or whatever when it didn't happen me at all.

    Very strange.


  • Registered Users, Registered Users 2 Posts: 946 ✭✭✭Enright


    looks! like a limewire problem, try swopping to frostwire ! it looks and feels exactly like limewime


  • Closed Accounts Posts: 1,970 ✭✭✭ActorSeeksJob


    Good luck


  • Closed Accounts Posts: 636 ✭✭✭conor2007


    or g2p and other ways to get good free new bands music
    images
    videos etc


  • Closed Accounts Posts: 19,080 ✭✭✭✭Random


    ActorSeeksJob - can you please explain exactly what you're asking me to do?


  • Advertisement
  • Closed Accounts Posts: 1,970 ✭✭✭ActorSeeksJob


    You seem to have a flash drive infection, that will fix it.


  • Closed Accounts Posts: 19,080 ✭✭✭✭Random


    You seem to have a flash drive infection, that will fix it.
    What do you base this on?


  • Closed Accounts Posts: 1,970 ✭✭✭ActorSeeksJob


    Fixing a few thousand PCs.

    Hope you find a solution to your problem


  • Closed Accounts Posts: 13,874 ✭✭✭✭PogMoThoin


    random wrote: »
    What do you base this on?

    :rolleyes: Your doubting ASJ, honestly I've seen him help loads of peeps here with malware probs. He knows what he's talkin bout.


  • Closed Accounts Posts: 19,080 ✭✭✭✭Random


    Fixing a few thousand PCs.

    Hope you find a solution to your problem
    I'm sure you're very experience in what you do but I'd really like to understand what you're asking me to do and what's wrong so that I'll know for future reference.

    I also like to understand what changes I'm making to my PC.


  • Moderators, Recreation & Hobbies Moderators, Science, Health & Environment Moderators, Technology & Internet Moderators Posts: 93,572 Mod ✭✭✭✭Capt'n Midnight


    random wrote: »
    I also like to understand what changes I'm making to my PC.
    you are not making changes to your PC, you are trying to UNDO the changes that have been made by the malware. the damage has been done and windows will get worse and worse until it keels over.


  • Closed Accounts Posts: 19,080 ✭✭✭✭Random


    Let's not be petty over words. I do appreciate people trying to help but I'd like to understand what changes I'm making (or undoing) by making .reg files and running them (as per a post above that has since been edited).

    It's great to fix a problem but worthless if I can't learn from it.

    More info would be great lads and appreciated!

    Thanks


  • Registered Users, Registered Users 2 Posts: 14,006 ✭✭✭✭The Muppet


    some of the files available on limewire do that. I suspect they are nasties but I have never downloaded one to fine out. Never download exe's unless you are sure what they are.


  • Closed Accounts Posts: 1,970 ✭✭✭ActorSeeksJob


    I can understand you wanting to know what's happening and that is fine to an extent. But the fact is that I fix up around 40 PC's a week, all with different and numerous complicated infections, and if I have to explain every step to every person, that is a serious waste of my time, and is rather useless since you and others will have no idea what I'm talking about.

    If you followed the instructions and then asked any necessary questions, that would be a lot more helpful and I would have no problem with that at all.


    Anyway, just my two cents :)


  • Closed Accounts Posts: 19,080 ✭✭✭✭Random


    You've even edited your post where you made the suggestions so now nobody else can even help me.

    I don't want to get into a row.. I understand you're giving your free time to help but this really doesn't make me confident in making "random" changes to my setup.

    If anyone else can help out I'd appreciate it.

    I'd like to know how you came to the conclusion I have a flash drive infection or virus, and how your changes will fix it.
    Also, is this directly related to the Limewire issue or jsut something else that became apparent from the text files I posted?

    Thanks very much.


  • Advertisement
  • Registered Users, Registered Users 2 Posts: 14,006 ✭✭✭✭The Muppet


    if you want to see if your machine is infected doenload a program called hijackthis and run it. It will generate a log file .

    Copy the log file to the site linke below and analize it. Then make the suggested changes using Hijack this.

    You will also need to run a virus scan as well.

    Hijackthis

    online analyzer


    Good luck


  • Closed Accounts Posts: 19,080 ✭✭✭✭Random


    How does the stuff I pasted suggest an infection though?

    Thanks


Advertisement