• Announcements

    • Budfred

      IE 11 copy/paste problem

      It has come to our attention that people using Internet Explorer 11 (IE 11) are having trouble with copy/paste to the forum. If you encounter this problem, using a different browser like Firefox or Chrome seems to get around the problem. We do not know what the problem is, but it seems to be specific to IE 11 and we are hopeful that Microsoft will eventually fix it.
Sign in to follow this  
Followers 0
arre68

Ad-adware 6.0-Spybot removal failures

4 posts in this topic

Hi all,

Im a beginner :wtf: ... and these are my problems.

I had my homepage reset + Popups about Spyware/Adaware...

 

AVG found a trojan "backdoor.agent.ba" (had a hard time removing it)

 

Used Ad-aware (lavasoft) and Spybot to clean the rest but they are not able to remove what they find (coolwebsearch regValue and regkey with AD, WebDialer with Spybot).

It seems like they have but if you scan again > same results.

 

Hereafter a log from Ad-aware...

 

Lavasoft Ad-aware Personal Build 6.181

Logfile created on:mercoledì 7 luglio 2004 15.57.29

Created with Ad-aware Personal, free for private use.

Using reference file:01R298 20.04.2004

______________________________________________________

 

Ad-aware Settings

=========================

Set : Activate in-depth scan

Set : Safe mode (always request a confirmation)

Set : Scan active processes

Set : Scan registry

Set : Deep scan registry

Set : Scan within archives

 

 

07-07-2004 15.57.29 - Scan started. (Smart mode)

 

Listing running processes

¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

 

#:1 [smss.exe]

FilePath : \SystemRoot\System32\

ThreadCreationTime : 07-07-2004 13.31.02

BasePriority : Normal

 

 

#:2 [winlogon.exe]

FilePath : \??\C:\WINDOWS\system32\

ThreadCreationTime : 07-07-2004 13.31.04

BasePriority : High

 

 

#:3 [services.exe]

FilePath : C:\WINDOWS\system32\

ThreadCreationTime : 07-07-2004 13.31.05

BasePriority : Normal

FileSize : 99 KB

FileVersion : 5.1.2600.0 (xpclient.010817-1148)

ProductVersion : 5.1.2600.0

CompanyName : Microsoft Corporation

FileDescription : Applicazione Servizi e Controller

InternalName : services.exe

OriginalFilename : services.exe

ProductName : Sistema operativo Microsoft

Created on : 31/08/2001 12.00.00

Last accessed : 07/07/2004 13.23.20

Last modified : 31/08/2001 12.00.00

 

#:4 [lsass.exe]

FilePath : C:\WINDOWS\system32\

ThreadCreationTime : 07-07-2004 13.31.05

BasePriority : Normal

FileSize : 11 KB

FileVersion : 5.1.2600.1106 (xpsp1.020828-1920)

ProductVersion : 5.1.2600.1106

CompanyName : Microsoft Corporation

FileDescription : LSA Shell (Export Version)

InternalName : lsass.exe

OriginalFilename : lsass.exe

ProductName : Microsoft

Created on : 31/08/2001 12.00.00

Last accessed : 07/07/2004 13.23.20

Last modified : 09/09/2002 11.51.32

 

#:5 [svchost.exe]

FilePath : C:\WINDOWS\system32\

ThreadCreationTime : 07-07-2004 13.31.05

BasePriority : Normal

FileSize : 12 KB

FileVersion : 5.1.2600.0 (xpclient.010817-1148)

ProductVersion : 5.1.2600.0

CompanyName : Microsoft Corporation

FileDescription : Generic Host Process for Win32 Services

InternalName : svchost.exe

OriginalFilename : svchost.exe

ProductName : Microsoft

Created on : 31/08/2001 12.00.00

Last accessed : 07/07/2004 13.21.43

Last modified : 31/08/2001 12.00.00

 

#:6 [svchost.exe]

FilePath : C:\WINDOWS\System32\

ThreadCreationTime : 07-07-2004 13.31.05

BasePriority : Normal

FileSize : 12 KB

FileVersion : 5.1.2600.0 (xpclient.010817-1148)

ProductVersion : 5.1.2600.0

CompanyName : Microsoft Corporation

FileDescription : Generic Host Process for Win32 Services

InternalName : svchost.exe

OriginalFilename : svchost.exe

ProductName : Microsoft

Created on : 31/08/2001 12.00.00

Last accessed : 07/07/2004 13.21.43

Last modified : 31/08/2001 12.00.00

 

#:7 [smc.exe]

FilePath : C:\Programmi\Sygate\SPF\

ThreadCreationTime : 07-07-2004 13.31.06

BasePriority : Normal

FileSize : 2297 KB

FileVersion : 5.5.00.2577

ProductVersion : 5.5.00.2577

Copyright : Copyright

CompanyName : Sygate Technologies, Inc.

FileDescription : Sygate Agent Firewall

InternalName : Smc

OriginalFilename : Smc.EXE

ProductName : Sygate

Created on : 05/06/2004 15.34.28

Last accessed : 07/07/2004 13.31.14

Last modified : 05/06/2004 15.34.28

 

#:8 [spoolsv.exe]

FilePath : C:\WINDOWS\system32\

ThreadCreationTime : 07-07-2004 13.31.09

BasePriority : Normal

FileSize : 50 KB

FileVersion : 5.1.2600.0 (XPClient.010817-1148)

ProductVersion : 5.1.2600.0

CompanyName : Microsoft Corporation

FileDescription : Spooler SubSystem App

InternalName : spoolsv.exe

OriginalFilename : spoolsv.exe

ProductName : Microsoft

Created on : 31/08/2001 12.00.00

Last accessed : 07/07/2004 13.23.20

Last modified : 31/08/2001 12.00.00

 

#:9 [avgserv.exe]

FilePath : C:\PROGRA~1\Grisoft\AVG6\

ThreadCreationTime : 07-07-2004 13.31.09

BasePriority : Normal

FileSize : 16 KB

FileVersion : 6.0.1.696

ProductVersion : 6.0.1.696

Copyright : Copyright © GRISOFT 1998-2004

CompanyName : GRISOFT s.r.o

FileDescription : AvgServ - displays notification message

InternalName : AvgServ

OriginalFilename : AvgServ

ProductName : AVG6

Created on : 07/07/2004 8.07.13

Last accessed : 07/07/2004 13.23.20

Last modified : 22/06/2004 4.00.00

 

#:10 [slserv.exe]

FilePath : C:\WINDOWS\system32\

ThreadCreationTime : 07-07-2004 13.31.10

BasePriority : Normal

FileSize : 44 KB

FileVersion : 2.80.00(24Apr2000)

ProductVersion : 2.80.00

Copyright : Copyright

FileDescription : User-Level Modem Service

InternalName : slserv

OriginalFilename : slserv.exe

ProductName : Modem

Created on : 05/05/2002 10.29.34

Last accessed : 07/07/2004 13.23.20

Last modified : 05/05/2002 10.29.34

 

#:11 [svchost.exe]

FilePath : C:\WINDOWS\System32\

ThreadCreationTime : 07-07-2004 13.31.10

BasePriority : Normal

FileSize : 12 KB

FileVersion : 5.1.2600.0 (xpclient.010817-1148)

ProductVersion : 5.1.2600.0

CompanyName : Microsoft Corporation

FileDescription : Generic Host Process for Win32 Services

InternalName : svchost.exe

OriginalFilename : svchost.exe

ProductName : Microsoft

Created on : 31/08/2001 12.00.00

Last accessed : 07/07/2004 13.21.43

Last modified : 31/08/2001 12.00.00

 

#:12 [explorer.exe]

FilePath : C:\WINDOWS\

ThreadCreationTime : 07-07-2004 13.35.34

BasePriority : Normal

FileSize : 975 KB

FileVersion : 6.00.2800.1221 (xpsp2.030511-1403)

ProductVersion : 6.00.2800.1221

CompanyName : Microsoft Corporation

FileDescription : Esplora risorse

InternalName : explorer

OriginalFilename : EXPLORER.EXE

ProductName : Sistema operativo Microsoft

Created on : 29/05/2003 9.52.04

Last accessed : 07/07/2004 13.35.35

Last modified : 29/05/2003 9.52.04

 

#:13 [sistray.exe]

FilePath : C:\WINDOWS\System32\

ThreadCreationTime : 07-07-2004 13.35.35

BasePriority : Normal

FileSize : 296 KB

FileVersion : 0.0.0.2081

ProductVersion : 0.0.0.2081

Copyright : Copyright © Silicon Integrated Systems Corp. 1998-2002

CompanyName : Silicon Integrated Systems Corporation

FileDescription : SiS Compatible Super VGA Tray Application

InternalName : SISTRAY 2.07k.00

OriginalFilename : SISTRAY.EXE

ProductName : SiS ® Compatible Super VGA SiSTray application for Windows NT4.0/2000/XP

Created on : 11/10/2002 11.04.22

Last accessed : 07/07/2004 13.35.35

Last modified : 09/05/2002 1.19.48

 

#:14 [khooker.exe]

FilePath : C:\WINDOWS\System32\

ThreadCreationTime : 07-07-2004 13.35.35

BasePriority : Normal

FileSize : 284 KB

FileVersion : 0, 0, 0, 2060

ProductVersion : 0, 0, 0, 2060

Copyright : Copyright © Silicon Integrated Systems Corp. 1998-2002

CompanyName : Silicon Integrated Systems Corporation

FileDescription : SiS Compatible Super VGA Keyboard Daemon

InternalName : KHOOKER 2.06.50

OriginalFilename : KHOOKER.EXE

ProductName : SIS ® Compatible Super VGA keyboard daemon for Windows 2000/XP

Created on : 11/10/2002 11.04.24

Last accessed : 07/07/2004 13.35.35

Last modified : 25/01/2002 0.30.48

 

#:15 [soundman.exe]

FilePath : C:\WINDOWS\

ThreadCreationTime : 07-07-2004 13.35.36

BasePriority : Normal

FileSize : 45 KB

FileVersion : 5.0.05

ProductVersion : 5.0.05

Copyright : Copyright © 2001-2002 Avance Logic, Inc.

CompanyName : Avance Logic, Inc.

FileDescription : Avance Sound Manager

InternalName : ALSMTray

OriginalFilename : ALSMTray.exe

ProductName : Avance Sound Manager

Created on : 11/10/2002 11.10.46

Last accessed : 07/07/2004 13.35.35

Last modified : 15/08/2002 4.46.36

 

#:16 [hpgs2wnd.exe]

FilePath : C:\Programmi\Hewlett-Packard\HP Share-to-Web\

ThreadCreationTime : 07-07-2004 13.35.36

BasePriority : Normal

FileSize : 68 KB

FileVersion : 2,3,0,0\

ProductVersion : 2,3,0,0\

Copyright : Copyright

CompanyName : Hewlett-Packard

FileDescription : hpgs2wnd

InternalName : hpgs2wnd

OriginalFilename : hpgs2wnd.exe

ProductName : Hewlett-Packard hpgs2wnd

Created on : 17/04/2002 9.42.56

Last accessed : 07/07/2004 13.35.35

Last modified : 17/04/2002 9.42.56

 

#:17 [hpqcmon.exe]

FilePath : C:\Programmi\Hewlett-Packard\Digital Imaging\Unload\

ThreadCreationTime : 07-07-2004 13.35.36

BasePriority : Normal

FileSize : 68 KB

FileVersion : 1.1.0.121

ProductVersion : 1.1.0.121

Copyright : Copyright © 2001

FileDescription : HpqCmon MFC Application

InternalName : HpqCmon

OriginalFilename : HpqCmon.EXE

ProductName : HpqCmon Application

Created on : 11/07/2002 15.24.08

Last accessed : 07/07/2004 13.35.35

Last modified : 11/07/2002 15.24.08

 

#:18 [qttask.exe]

FilePath : C:\Programmi\QuickTime\

ThreadCreationTime : 07-07-2004 13.35.36

BasePriority : Normal

FileSize : 96 KB

FileVersion : 6.5

ProductVersion : QuickTime 6.5

CompanyName : Apple Computer, Inc.

InternalName : QuickTime Task

OriginalFilename : QTTask.exe

ProductName : QuickTime

Created on : 27/01/2004 21.47.17

Last accessed : 07/07/2004 13.35.35

Last modified : 27/01/2004 21.47.17

 

#:19 [dragdiag.exe]

FilePath : C:\Programmi\Thomson\SpeedTouch USB\

ThreadCreationTime : 07-07-2004 13.35.36

BasePriority : Normal

FileSize : 857 KB

FileVersion : 300.7.0.2

ProductVersion : 300.7.0.2

Copyright : Copyright

CompanyName : THOMSON

FileDescription : SpeedTouch Statistics

ProductName : SpeedTouch USB

Created on : 02/02/2004 20.40.57

Last accessed : 07/07/2004 13.35.35

Last modified : 05/09/2003 5.59.20

 

#:20 [avgcc32.exe]

FilePath : C:\PROGRA~1\Grisoft\AVG6\

ThreadCreationTime : 07-07-2004 13.35.36

BasePriority : Normal

FileSize : 337 KB

FileVersion : 6, 0, 0, 515

ProductVersion : 6, 0, 0, 0

Copyright : Copyright

CompanyName : GRISOFT s.r.o.

FileDescription : AVG Control Center

InternalName : AvgCC32

OriginalFilename : AvgCC32.EXE

ProductName : AVG Anti-Virus System

Created on : 07/07/2004 8.07.13

Last accessed : 07/07/2004 13.35.35

Last modified : 22/06/2004 4.00.00

 

#:21 [ctfmon.exe]

FilePath : C:\WINDOWS\System32\

ThreadCreationTime : 07-07-2004 13.35.36

BasePriority : Normal

FileSize : 13 KB

FileVersion : 5.1.2600.1106 (xpsp1.020828-1920)

ProductVersion : 5.1.2600.1106

CompanyName : Microsoft Corporation

FileDescription : CTF Loader

InternalName : CTFMON

OriginalFilename : CTFMON.EXE

ProductName : Microsoft

Created on : 14/05/2004 11.39.58

Last accessed : 07/07/2004 13.35.35

Last modified : 09/09/2002 11.51.28

 

#:22 [msmsgs.exe]

FilePath : C:\Programmi\Messenger\

ThreadCreationTime : 07-07-2004 13.35.37

BasePriority : Normal

FileSize : 1462 KB

FileVersion : 4.7.2009

ProductVersion : Version 4.7

Copyright : Copyright © Microsoft Corporation 1997-2003

CompanyName : Microsoft Corporation

FileDescription : Messenger

InternalName : msmsgs

OriginalFilename : msmsgs.exe

ProductName : Messenger

Created on : 14/04/2003 18.06.20

Last accessed : 07/07/2004 13.35.35

Last modified : 14/04/2003 18.06.20

 

#:23 [hpgs2wnf.exe]

FilePath : C:\Programmi\Hewlett-Packard\HP Share-to-Web\

ThreadCreationTime : 07-07-2004 13.35.42

BasePriority : Normal

FileSize : 76 KB

FileVersion : 2, 6, 0,

ProductVersion : 2, 6, 0,

Copyright : Copyright 2001

FileDescription : hpgs2wnf Module

InternalName : hpgs2wnf

OriginalFilename : hpgs2wnf.EXE

ProductName : hpgs2wnf Module

Created on : 17/04/2002 9.49.16

Last accessed : 07/07/2004 13.23.20

Last modified : 17/04/2002 9.49.16

 

#:24 [ad-aware.exe]

FilePath : C:\PROGRA~1\Lavasoft\AD-AWA~1\

ThreadCreationTime : 07-07-2004 13.52.52

BasePriority : Normal

FileSize : 668 KB

FileVersion : 6.0.1.181

ProductVersion : 6.0.0.0

Copyright : Copyright

CompanyName : Lavasoft Sweden

FileDescription : Ad-aware 6 core application

InternalName : Ad-aware.exe

OriginalFilename : Ad-aware.exe

ProductName : Lavasoft Ad-aware Plus

Created on : 06/07/2004 22.13.23

Last accessed : 07/07/2004 13.52.52

Last modified : 12/07/2003 19.00.20

 

Memory scan result:

¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

New objects: 0

Objects found so far: 0

 

 

Started registry scan

¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

 

CoolWebSearch Object recognized!

Type : RegValue

Data :

Rootkey : HKEY_LOCAL_MACHINE

Object : SOFTWARE\Microsoft\Internet Explorer\Main

Value : HOMEOldSP

 

 

Registry scan result:

¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

New objects: 1

Objects found so far: 1

 

 

Started deep registry scan

¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

 

Deep registry scan result:

¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

New objects: 0

Objects found so far: 1

 

 

¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

 

 

Deep scanning and examining files (C:)

¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

 

 

Performing conditional scans

¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

 

CoolWebSearch Object recognized!

Type : RegKey

Data :

Rootkey : HKEY_CLASSES_ROOT

Object : PROTOCOLS\Filter\text/html

 

 

CoolWebSearch Object recognized!

Type : RegKey

Data :

Rootkey : HKEY_CLASSES_ROOT

Object : PROTOCOLS\Filter\text/plain

 

 

Conditional scan result:

¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

New objects: 2

Objects found so far: 3

 

 

15.59.47 Scan complete

 

Summary of this scan

¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

Total scanning time:00.02.18.219

Objects scanned:44001

Objects identified:3

Objects ignored:0

New objects:3

 

... pls help.

Share this post


Link to post
Share on other sites

can this help you help me?

 

Logfile of HijackThis v1.97.7

Scan saved at 17.21.49, on 07/07/2004

Platform: Windows XP SP1 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\Programmi\Sygate\SPF\smc.exe

C:\WINDOWS\system32\spoolsv.exe

C:\PROGRA~1\Grisoft\AVG6\avgserv.exe

C:\WINDOWS\system32\slserv.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\System32\sistray.EXE

C:\WINDOWS\System32\khooker.exe

C:\WINDOWS\SOUNDMAN.EXE

C:\Programmi\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe

C:\Programmi\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe

C:\Programmi\QuickTime\qttask.exe

C:\Programmi\Thomson\SpeedTouch USB\Dragdiag.exe

C:\PROGRA~1\Grisoft\AVG6\avgcc32.exe

C:\WINDOWS\System32\ctfmon.exe

C:\Programmi\Messenger\msmsgs.exe

C:\Programmi\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe

C:\Documents and Settings\a\Desktop\HijackThis.exe

 

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = file://C:\DOCUME~1\a\IMPOST~1\Temp\sp.html

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = file://C:\DOCUME~1\a\IMPOST~1\Temp\sp.html

R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = file://C:\DOCUME~1\a\IMPOST~1\Temp\sp.html

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = file://C:\DOCUME~1\a\IMPOST~1\Temp\sp.html

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = file://C:\DOCUME~1\a\IMPOST~1\Temp\sp.html

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = file://C:\DOCUME~1\a\IMPOST~1\Temp\sp.html

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,HomeOldSP = about:blank

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Collegamenti

O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programmi\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx

O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O2 - BHO: (no name) - {6621D0BC-99FD-4795-A7A0-66609440C629} - C:\WINDOWS\System32\liecdea.dll

O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx

O4 - HKLM\..\Run: [siS Tray] C:\WINDOWS\System32\sistray.EXE

O4 - HKLM\..\Run: [siS KHooker] C:\WINDOWS\System32\khooker.exe

O4 - HKLM\..\Run: [siSUSBRG] C:\WINDOWS\sisUSBrg.exe

O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE

O4 - HKLM\..\Run: [share-to-Web Namespace Daemon] C:\Programmi\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe

O4 - HKLM\..\Run: [CamMonitor] C:\Programmi\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe

O4 - HKLM\..\Run: [GSICONEXE] GSICON.EXE

O4 - HKLM\..\Run: [DSLAGENTEXE] DSLAGENT.EXE USB

O4 - HKLM\..\Run: [QuickTime Task] "C:\Programmi\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [speedTouch USB Diagnostics] "C:\Programmi\Thomson\SpeedTouch USB\Dragdiag.exe" /icon

O4 - HKLM\..\Run: [smcService] C:\PROGRA~1\Sygate\SPF\smc.exe -startgui

O4 - HKLM\..\Run: [AVG_CC] C:\PROGRA~1\Grisoft\AVG6\avgcc32.exe /STARTUP

O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe

O4 - HKCU\..\Run: [MSMSGS] "C:\Programmi\Messenger\msmsgs.exe" /background

O4 - Global Startup: Microsoft Office.lnk = C:\Programmi\Microsoft Office\Office10\OSA.EXE

O8 - Extra context menu item: E&sporta in Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000

O9 - Extra button: Messenger (HKLM)

O9 - Extra 'Tools' menuitem: Messenger (HKLM)

O12 - Plugin for .spop: C:\Programmi\Internet Explorer\Plugins\NPDocBox.dll

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwa...ash/swflash.cab

Share this post


Link to post
Share on other sites

hallo,

since nobody helped me I :grrr: solved the problem by myself with Pandasoftware.. :bounce:

 

Bye bye

Share this post


Link to post
Share on other sites

hallo,

since nobody helped me I solved the problem by myself with Pandasoftware

 

regards

AA

Share this post


Link to post
Share on other sites
Sign in to follow this  
Followers 0