<?xml version="1.0" encoding="ISO-8859-1"?>

<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/">
	<channel>
		<title>Help2Go Forums</title>
		<link>http://www.help2go.com/</link>
		<description>Help2Go provides free computer help, advice, tutorials, and spyware help.</description>
		<language>en</language>
		<lastBuildDate>Tue, 21 May 2013 15:53:30 GMT</lastBuildDate>
		<generator>vBulletin</generator>
		<ttl>60</ttl>
		<image>
			<url>http://www.help2go.com/images/misc/rss.png</url>
			<title>Help2Go Forums</title>
			<link>http://www.help2go.com/</link>
		</image>
		<item>
			<title>Microsoft Office Search Enhancement Pack-it</title>
			<link>http://www.help2go.com/forum/computer-help/109604-microsoft-office-search-enhancement-pack.html</link>
			<pubDate>Sun, 19 May 2013 16:40:57 GMT</pubDate>
			<description>Everytime I login a window opens that says Microsoft Office Search Enhancement Pack-it acts like a virus-does anyone know what I should do to either...</description>
			<content:encoded><![CDATA[<div>Everytime I login a window opens that says Microsoft Office Search Enhancement Pack-it acts like a virus-does anyone know what I should do to either get rid of it or give it what it wants so it will stop bothering me? :confused:</div>

]]></content:encoded>
			<category domain="http://www.help2go.com/forum/computer-help/">Computer Help</category>
			<dc:creator>lilyorange</dc:creator>
			<guid isPermaLink="true">http://www.help2go.com/forum/computer-help/109604-microsoft-office-search-enhancement-pack.html</guid>
		</item>
		<item>
			<title>Computer freeze</title>
			<link>http://www.help2go.com/forum/computer-help/109598-computer-freeze.html</link>
			<pubDate>Sun, 19 May 2013 12:44:41 GMT</pubDate>
			<description><![CDATA[Hi, please could anyone advise me? My desktop (tower) computer has recently started to freeze, everything freezes. If I have documents that I'm in...]]></description>
			<content:encoded><![CDATA[<div>Hi, please could anyone advise me? My desktop (tower) computer has recently started to freeze, everything freezes. If I have documents that I'm in the process of creating (<b><i>Microsoft office Home &amp; Student 2010</i>)</b>, I either cannot finish the creation of the document, or I cannot save it, sometimes I can't even open Microsoft Office because of a freeze. If I have the internet open &amp; I'm viewing pages &amp; doing research, I lose the connection and/or can't shut down the pages. Sometimes (more frequently) the computer just completely freezes &amp; fails to function &amp; I can't even go to 'start' &amp; reboot the system, and if I do manage to reboot the system it then does a disc (HDD) check &amp; initiates a <b><i>'repair the computer' mode,</i></b> and sometimes the system gives a message that says <b><i>'unable to fix the computer, please restart',</i></b> I restart &amp; get the same problem. I'm running <b><i>Windows 7, I have a dual core processor</i></b>, and the windows 7 program is genuine &amp; legal. I have [I<b>]Avast free anti-virus[</b>/I] installed, I've done numerous full system scans which tell me the system is clean with no viruses or spyware. I've used <b><i>AVG</i></b>, and <b><i>Microsoft Security Essentials</i></b> (though not together) just to double check, and still it says (after the scans) that there are no viruses or spyware. I've done a '<b><i>CHKDSK</i></b>', I've run a scan to check for bad sectors, and everything comes up great. Sometimes (like now, as I write this), the system will run beautifully, and all of a sudden without warning it Will freeze &amp; I can do nothing so I have to reboot &amp; hope for the best. <br />
<br />
Could the problem be A 'TROJAN' somewhere? Could there be a hidden root-kit (whatever one of them is? I've heard they're not good)? Should I try alternative anti-viruses? Could there be a virus attached to the motherboard or could the motherboard be failing somewhere? The problem is I'm unemployed &amp; don't have the money to go to any expense. Please could you help? If you need more information I'll tell you anything you need to know. Thank you for your help. :confused::(:confused:</div>

]]></content:encoded>
			<category domain="http://www.help2go.com/forum/computer-help/">Computer Help</category>
			<dc:creator>Number7</dc:creator>
			<guid isPermaLink="true">http://www.help2go.com/forum/computer-help/109598-computer-freeze.html</guid>
		</item>
		<item>
			<title><![CDATA[filled with visuses & spyware - broswer & boot problems]]></title>
			<link>http://www.help2go.com/forum/spyware-help/109596-filled-visuses-spyware-broswer-boot-problems.html</link>
			<pubDate>Sat, 18 May 2013 21:58:28 GMT</pubDate>
			<description>THANKS IN ADVANCE!!!! 
 
Logs below: 
 
SUPERAntiSpyware Scan Log 
SUPERAntiSpyware | Remove Malware | Remove Spyware - AntiMalware, AntiSpyware,...</description>
			<content:encoded><![CDATA[<div>THANKS IN ADVANCE!!!!<br />
<br />
Logs below:<br />
<br />
SUPERAntiSpyware Scan Log<br />
<a href="http://www.superantispyware.com" target="_blank">SUPERAntiSpyware | Remove Malware | Remove Spyware - AntiMalware, AntiSpyware, AntiAdware!</a><br />
<br />
Generated 05/18/2013 at 12:14 PM<br />
<br />
Application Version : 5.6.1020<br />
<br />
Core Rules Database Version : 10419<br />
Trace Rules Database Version: 8231<br />
<br />
Scan type       : Complete Scan<br />
Total Scan Time : 01:00:03<br />
<br />
Operating System Information<br />
Windows XP Professional 32-bit, Service Pack 3 (Build 5.01.2600)<br />
Administrator<br />
<br />
Memory items scanned      : 483<br />
Memory threats detected   : 0<br />
Registry items scanned    : 35744<br />
Registry threats detected : 35<br />
File items scanned        : 28071<br />
File threats detected     : 8<br />
<br />
Adware.Tracking Cookie<br />
	C:\Documents and Settings\Administrator\Cookies\KGEU7H1I.txt [ /doubleclick.net ]<br />
	C:\Documents and Settings\Administrator\Cookies\20CDKRE6.txt [ /ad.yieldmanager.com ]<br />
<br />
PUP.Wajam<br />
	HKLM\System\ControlSet001\Services\WAJAMUPDATER<br />
	C:\PROGRAM FILES\WAJAM\UPDATER\WAJAMUPDATER.EXE<br />
	HKLM\System\ControlSet001\Enum\Root\LEGACY_WAJAMUPDATER<br />
	HKLM\System\ControlSet002\Services\WAJAMUPDATER<br />
	HKLM\System\ControlSet002\Enum\Root\LEGACY_WAJAMUPDATER<br />
	HKLM\System\CurrentControlSet\Services\WAJAMUPDATER<br />
	HKLM\System\CurrentControlSet\Enum\Root\LEGACY_WAJAMUPDATER<br />
	HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}<br />
	HKCR\CLSID\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}<br />
	HKCR\CLSID\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}<br />
	HKCR\CLSID\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}\InprocServer32<br />
	HKCR\CLSID\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}\InprocServer32#ThreadingModel<br />
	HKCR\CLSID\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}\ProgID<br />
	HKCR\CLSID\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}\Programmable<br />
	HKCR\CLSID\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}\TypeLib<br />
	HKCR\CLSID\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}\VersionIndependentProgID<br />
	HKCR\wajam.WajamBHO.1<br />
	HKCR\wajam.WajamBHO.1\CLSID<br />
	HKCR\wajam.WajamBHO<br />
	HKCR\wajam.WajamBHO\CLSID<br />
	HKCR\wajam.WajamBHO\CurVer<br />
	HKCR\TypeLib\{095BFD3C-4602-4FE1-96F1-AEFAFBFD067D}<br />
	HKCR\TypeLib\{095BFD3C-4602-4FE1-96F1-AEFAFBFD067D}\1.0<br />
	HKCR\TypeLib\{095BFD3C-4602-4FE1-96F1-AEFAFBFD067D}\1.0\0<br />
	HKCR\TypeLib\{095BFD3C-4602-4FE1-96F1-AEFAFBFD067D}\1.0\0\win32<br />
	HKCR\TypeLib\{095BFD3C-4602-4FE1-96F1-AEFAFBFD067D}\1.0\FLAGS<br />
	HKCR\TypeLib\{095BFD3C-4602-4FE1-96F1-AEFAFBFD067D}\1.0\HELPDIR<br />
	C:\PROGRAM FILES\WAJAM\IE\PRIAM_BHO.DLL<br />
	HKU\S-1-5-21-448539723-1035525444-1417001333-500\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A7A6995D-6EE1-4FD1-A258-49395D5BF99C}<br />
	C:\PROGRAM FILES\WAJAM\UNINSTALL.EXE<br />
	C:\RECYCLER\S-1-5-21-448539723-1035525444-1417001333-500\DC4\UNINSTALL.LNK<br />
	HKCR\Interface\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2}<br />
	HKCR\Interface\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2}\NumMethods<br />
	HKCR\Interface\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2}\ProxyStubClsid<br />
	HKCR\Interface\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2}\ProxyStubClsid32<br />
	HKCR\Interface\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2}\TypeLib<br />
	HKCR\Interface\{431532BD-0AE1-4ABC-BE8C-919F3D1332E2}\TypeLib#Version<br />
<br />
Adware.EpicPlay<br />
	HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{56E4076B-A42B-4745-BA35-34DA8AC4C2F2}<br />
	HKU\S-1-5-21-448539723-1035525444-1417001333-500\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{56E4076B-A42B-4745-BA35-34DA8AC4C2F2}<br />
<br />
Adware.Shopper<br />
	C:\DOCUMENTS AND SETTINGS\ADMINISTRATOR\LOCAL SETTINGS\TEMP\NSF3.TMP\HAPPYLYRICS_2204-E2F0CCE3.EXE<br />
	C:\PROGRAM FILES\HAPPYLYRICS\UNINSTALL.EXE<br />
<br />
<br />
Malwarebytes Anti-Malware (Trial) 1.75.0.1300<br />
<a href="http://www.malwarebytes.org" target="_blank">Malwarebytes : Free anti-malware download</a><br />
<br />
Database version: v2013.05.18.04<br />
<br />
Windows XP Service Pack 3 x86 NTFS<br />
Internet Explorer 8.0.6001.18702<br />
Administrator :: DEL001 [administrator]<br />
<br />
Protection: Disabled<br />
<br />
5/18/2013 12:25:22 PM<br />
mbam-log-2013-05-18 (12-25-22).txt<br />
<br />
Scan type: Full scan (C:\|)<br />
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM<br />
Scan options disabled: P2P<br />
Objects scanned: 240005<br />
Time elapsed: 54 minute(s), 1 second(s)<br />
<br />
Memory Processes Detected: 0<br />
(No malicious items detected)<br />
<br />
Memory Modules Detected: 0<br />
(No malicious items detected)<br />
<br />
Registry Keys Detected: 0<br />
(No malicious items detected)<br />
<br />
Registry Values Detected: 0<br />
(No malicious items detected)<br />
<br />
Registry Data Items Detected: 0<br />
(No malicious items detected)<br />
<br />
Folders Detected: 0<br />
(No malicious items detected)<br />
<br />
Files Detected: 57<br />
C:\WINDOWS\Temp\DealioToolbar.exe (PUP.Dealio.TB) -&gt; No action taken.<br />
C:\Documents and Settings\Administrator\6guzv0mwog92g.exe (Spyware.Passwords) -&gt; Quarantined and deleted successfully.<br />
C:\Documents and Settings\Administrator\opera.exe (Trojan.Krypt) -&gt; Quarantined and deleted successfully.<br />
C:\Documents and Settings\Administrator\Application Data\Occonu\axlaycm.exe (Trojan.Agent.ED) -&gt; Quarantined and deleted successfully.<br />
C:\Documents and Settings\Administrator\Local Settings\Temp\54.tmp (Rootkit.TDSS) -&gt; Quarantined and deleted successfully.<br />
C:\Documents and Settings\Administrator\Local Settings\Temp\56.exe (Trojan.Delf.ED) -&gt; Quarantined and deleted successfully.<br />
C:\Documents and Settings\Administrator\Local Settings\Temp\A.tmp (Trojan.Delf.ED) -&gt; Quarantined and deleted successfully.<br />
C:\Documents and Settings\Administrator\Local Settings\Temp\35.tmp (Trojan.Krypt) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP70\A0030406.exe (Trojan.Agent.ED) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP70\A0030483.exe (Trojan.Delf.ED) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP70\A0030485.exe (Trojan.Agent.ED) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP73\A0031034.data (Trojan.Tracur.DL) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP73\A0031035.data (Rootkit.0Access) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP73\A0031036.data (Trojan.Tracur.DL) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP73\A0031037.data (Rootkit.0Access) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP73\A0031039.data (Trojan.Dropper.ED) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP73\A0031040.data (Rootkit.0Access) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP73\A0031041.data (Rootkit.0Access) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP73\A0031042.data (Trojan.Dropper.ED) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP73\A0031038.data (Adware.Gamevance) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036371.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036373.data (Trojan.Agent.ED) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036375.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036376.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036377.data (Trojan.Agent.ED) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036378.data (Trojan.Fareit.RRE) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036383.data (Spyware.Zbot.ED) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036385.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036386.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036387.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036388.data (Trojan.Agent.ED) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036389.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036390.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036392.data (Trojan.Agent.ED) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036393.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036394.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036395.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036396.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036379.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036409.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036398.data (Rootkit.TDSS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036399.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036401.data (Trojan.Krypt) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036402.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036403.data (Trojan.Agent.ED) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036405.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036406.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036407.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036408.data (Trojan.Agent.ED) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036410.data (Trojan.Agent.ED) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036412.data (Trojan.Agent.ED) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036416.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036418.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036421.data (Trojan.Agent.ED) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036424.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036425.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
C:\System Volume Information\_restore{E8F92757-4F9A-47B3-97B4-7A98399BDC03}\RP75\A0036426.data (Trojan.Agent.VOS) -&gt; Quarantined and deleted successfully.<br />
<br />
(end)<br />
<br />
<br />
Logfile of Trend Micro HijackThis v2.0.4<br />
Scan saved at 5:39:34 PM, on 5/18/2013<br />
Platform: Windows XP SP3 (WinNT 5.01.2600)<br />
MSIE: Internet Explorer v8.00 (8.00.6001.18702)<br />
Boot mode: Normal<br />
<br />
Running processes:<br />
C:\WINDOWS\System32\smss.exe<br />
C:\WINDOWS\system32\winlogon.exe<br />
C:\WINDOWS\system32\services.exe<br />
C:\WINDOWS\system32\lsass.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\WINDOWS\system32\svchost.exe<br />
C:\Program Files\AVAST Software\Avast\AvastSvc.exe<br />
C:\WINDOWS\system32\spoolsv.exe<br />
C:\WINDOWS\System32\svchost.exe<br />
C:\WINDOWS\Explorer.EXE<br />
C:\WINDOWS\system32\rundll32.exe<br />
C:\WINDOWS\system32\wuauclt.exe<br />
C:\Program Files\AVAST Software\Avast\avastUI.exe<br />
C:\WINDOWS\system32\ctfmon.exe<br />
C:\Program Files\Messenger\msmsgs.exe<br />
C:\WINDOWS\system32\msiexec.exe<br />
C:\Program Files\Trend Micro\HiJackThis\HiJackThis.exe<br />
<br />
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = <a href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">Bing</a><br />
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = <a href="http://www.yahoo.com/?ilc=66" target="_blank">Yahoo!</a><br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = <a href="http://go.microsoft.com/fwlink/?LinkId=69157" target="_blank">MSN.com</a><br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = <a href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">Bing</a><br />
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = <a href="http://go.microsoft.com/fwlink/?LinkId=54896" target="_blank">Bing</a><br />
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.sweetpacks.com/?src=10&amp;st=12&amp;crg=3.5000006.10042&amp;barid={97785D38-BB65-11E2-A339-0010C69612B9}<br />
R3 - URLSearchHook: (no name) - {81017EA9-9AA8-4A6A-9734-7AF40E7D593F} - (no file)<br />
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)<br />
O2 - BHO: HelloWorldBHO - {1C8501DD-5580-48AB-B25C-6D5DBE835A6A} - C:\Program Files\OApps\SelectionLinks.dll<br />
O2 - BHO: UnfriendApp - {44ed99e2-16a6-4b89-80d6-5b21cf42e78b} - C:\Program Files\UnfriendApp\IE\common.dll<br />
O2 - BHO: Happy Lyrics - {59C0C5BD-2579-433A-BBB8-AFFD59642BAF} - C:\Program Files\HappyLyrics\hppylrc.dll<br />
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files\Norton AntiVirus\Engine\18.7.1.3\IPS\IPSBHO.DLL (file missing)<br />
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll<br />
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll<br />
O2 - BHO: Updater By SweetPacks Helper - {C4CFC0DE-134F-4466-B2A2-FF7C59A8BFAD} - C:\Program Files\Updater By SweetPacks\Extension32.dll<br />
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll<br />
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll<br />
O3 - Toolbar: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll<br />
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent<br />
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe<br />
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe<br />
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe<br />
O4 - HKLM\..\Run: [avast] &quot;C:\Program Files\AVAST Software\Avast\avastUI.exe&quot; /nogui<br />
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe<br />
O4 - HKCU\..\Run: [MSMSGS] &quot;C:\Program Files\Messenger\msmsgs.exe&quot; /background<br />
O4 - HKCU\..\Run: [Yahoo] rundll32.exe &quot;C:\Documents and Settings\Administrator\Local Settings\Application Data\Yahoo\mzokdwhi.dll&quot;,ASFGetDataUnitInfo<br />
O4 - HKUS\S-1-5-19\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'LOCAL SERVICE')<br />
O4 - HKUS\S-1-5-20\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'NETWORK SERVICE')<br />
O4 - HKUS\S-1-5-18\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM')<br />
O4 - HKUS\.DEFAULT\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user')<br />
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe<br />
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe<br />
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe<br />
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll<br />
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - <a href="http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab" target="_blank">http://fpdownload2.macromedia.com/ge...sh/swflash.cab</a><br />
O17 - HKLM\System\CCS\Services\Tcpip\..\{6E23F769-7F8C-43D8-A2E6-30D2AB33EF53}: NameServer = 8.26.56.26,156.154.70.22<br />
O17 - HKLM\System\CCS\Services\Tcpip\..\{EBC0F9EA-9A04-408C-B0A3-2DE4E75DA228}: NameServer = 8.26.56.26,156.154.70.22<br />
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll<br />
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll<br />
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe<br />
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Oracle Corporation - C:\Program Files\Java\jre7\bin\jqs.exe<br />
O23 - Service: Norton AntiVirus (NAV) - Unknown owner - C:\Program Files\Norton AntiVirus\Engine\18.7.1.3\ccSvcHst.exe (file missing)<br />
O23 - Service: Security Center Server - 1303951853 (SecurityCenterServer1303951853) - Unknown owner - C:\WINDOWS\system32\ifdarasee.exe (file missing)<br />
O23 - Service: Security Center Server - 2952017705 (SecurityCenterServer2952017705) - Unknown owner - C:\WINDOWS\system32\winsec32.exe (file missing)<br />
O23 - Service: Security Center Server - 3348744567 (SecurityCenterServer3348744567) - Unknown owner - C:\WINDOWS\system32\oxaham.exe (file missing)<br />
O23 - Service: Security Center Server - 4079863451 (SecurityCenterServer4079863451) - Unknown owner - C:\WINDOWS\system32\abihfout.exe (file missing)<br />
<br />
--<br />
End of file - 6415 bytes</div>

]]></content:encoded>
			<category domain="http://www.help2go.com/forum/spyware-help/">Spyware Help</category>
			<dc:creator>angelobricknj</dc:creator>
			<guid isPermaLink="true">http://www.help2go.com/forum/spyware-help/109596-filled-visuses-spyware-broswer-boot-problems.html</guid>
		</item>
	</channel>
</rss>
