Over 1 million tech questions and answers.

Personalized settings at start up + changed computer settings(pls helpD;)

Q: Personalized settings at start up + changed computer settings(pls helpD;)

Hi

Erm , I don't really know how it started , but i think it had gone worse these days so im getting worried .

Problems i'm facing
1- "[title] Personalized settings
Setting up personalized settings for:
C:\Recycler\S-1-5-21-1482476501-1644494937-68"

this appears each time i start up ,

2- my computer lags easily , but not always . sometimes when i afk for sometime and when i come back and i click something it lags and soon theres nothing i can do except pressing the restart button . (i can 'press' the task manager button , but after that it doesn't appear and it gets worse , sometimes it writes that explorar.exe is using very high % of my cpu . )

3- Certain settings Did change like the 'no active audio mixers available' problem , i searched the Internet for this problem and i found the solution using services.msg , i turned it to automatic but after i restart it turns back to the way it is . (Note : the no audio mixers problem seems to appear only after i use the computer for some time , everytime i trstart it turns back normal)
- last time when i press ctrl+alt+del the task manager appears immediately , now , the windows security appears first .

4- Sometimes when i insert my pendrive and after i finish i want to remove it safely , but it says its currently in use or something , i'm pretty sure im not though

5- Everytime i click on my hard disk , it opens in another window . I searched for it and i deleted the mousepointer2 or something registry and it fixed it .

This I've done which Might have made this(excluding those which i actually don't know)
1- I don't have an anti-virus for a period of time . And occasionally i get pendrives from my friends , im not sure if its clean or not .

2- Things I have installed : Changepaper.exe , i've disabled this .
Nod something (forgot the version) i don't have any keys so i soon uninstalled it . but i remember it deleting something named system volume information , on my harddisks (right now i got a kaspersky AV 2009)

The dds log

DDS (Ver_09-09-29.01) - NTFSx86
Run by ~~AWU~~ at 22:06:19.04 on 10/10/2009 Sat
Internet Explorer: 7.0.5730.13
Microsoft Windows XP Professional 5.1.2600.3.936.86.1033.18.1023.734 [GMT 8:00]

AV: Kaspersky Anti-Virus *On-access scanning disabled* (Updated) {2C4D4BC6-0793-4956-A9F9-E252435469C0}

============== Running Processes ===============

C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\WgaTray.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\WINDOWS\vsnpstd.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Messenger\msmsgs.exe
D:\Program Files\PPStream\ppsap.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Aztech Systems Ltd\WL630USB Wireless B+G Utility\ZDWlan.exe
C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
C:\Program Files\WordWeb\wweb32.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\Documents and Settings\~~AWU~~\Desktop\dds.scr
C:\WINDOWS\system32\conime.exe
C:\Documents and Settings\~~AWU~~\Desktop\dds.scr

============== Pseudo HJT Report ===============

uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}
uStart Page = about:blank
mStart Page = hxxp://00333.cn/wen.htm
uInternet Settings,ProxyOverride = *.local
mCustomizeSearch =
mSearchAssistant =
BHO: IE7Pro BHO: {00011268-e188-40df-a514-835fcd78b1bf} - c:\program files\iepro\iepro.dll
BHO: ThunderAtOnce Class: {01443aec-0fd1-40fd-9c87-e93d1494c233} - d:\program files\thunder network\thunder\comdlls\TDAtOnce_Now.dll
BHO: Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - c:\program files\yahoo!\companion\installs\cpn\yt.dll
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: IEVkbdBHO Class: {59273ab4-e7d3-40f9-a1a8-6fa9cca1862c} - c:\program files\kaspersky lab\kaspersky anti-virus 2009\ievkbd.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SearchHelper.dll
BHO: Thunder Browser Helper: {889d2feb-5411-4565-8998-1dd2c5261283} - d:\program files\thunder network\thunder\comdlls\xunleiBHO_Now.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\googletoolbar1.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\2.0.301.7164\swg.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: Windows Live Toolbar Helper: {e15a8dc0-8516-42a1-81ea-dc94ec1acf10} - c:\program files\windows live\toolbar\wltcore.dll
BHO: {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - No File
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: Yahoo! 导航条: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn\yt.dll
TB: &Google: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\googletoolbar1.dll
TB: &Windows Live Toolbar: {21fa44ef-376d-4d53-9b0f-8a89d3229068} - c:\program files\windows live\toolbar\wltcore.dll
TB: {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - No File
TB: {E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F} - No File
TB: {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - No File
TB: {89FDCC4B-8D91-49B0-81A6-18BCFF582735} - No File
TB: {32099AAC-C132-4136-9E9A-4E364A424E17} - No File
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "c:\program files\common files\ahead\lib\NMBgMonitor.exe"
uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
uRun: [PPS Accelerator] d:\program files\ppstream\ppsap.exe
uRun: [DAEMON Tools Lite] "d:\program files\daemon tools lite\daemon.exe" -autorun
mRun: [IMJPMIG8.1] "c:\windows\ime\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
mRun: [PHIME2002ASync] c:\windows\system32\ime\tintlgnt\TINTSETP.EXE /SYNC
mRun: [PHIME2002A] c:\windows\system32\ime\tintlgnt\TINTSETP.EXE /IMEName
mRun: [High Definition Audio Property Page Shortcut] HDAShCut.exe
mRun: [SoundMAXPnP] c:\program files\analog devices\core\smax4pnp.exe
mRun: [SoundMAX] "c:\program files\analog devices\soundmax\Smax4.exe" /tray
mRun: [NeroFilterCheck] c:\program files\common files\ahead\lib\NeroCheck.exe
mRun: [RemoteControl] "c:\program files\cyberlink\powerdvd\PDVDServ.exe"
mRun: [snpstd] c:\windows\vsnpstd.exe
mRun: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 8.0\reader\Reader_sl.exe"
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
mRun: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
mRun: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
mRun: [AVP] "c:\program files\kaspersky lab\kaspersky anti-virus 2009\avp.exe"
mRun: [Malwarebytes Anti-Malware (reboot)] "c:\program files\malwarebytes' anti-malware\mbam.exe" /runcleanupscript
StartupFolder: c:\docume~1\~~awu~~\startm~1\programs\startup\logite~1.lnk - c:\program files\common files\logishrd\ereg\setpoint\eReg.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\logite~1.lnk - c:\program files\logitech\setpoint\SetPoint.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\wl630u~1.lnk - c:\program files\aztech systems ltd\wl630usb wireless b+g utility\ZDWlan.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\wordweb.lnk - c:\program files\wordweb\wweb32.exe
IE: &Search
IE: 使用迅雷下载 - d:\program files\thunder network\thunder\program\geturl.htm
IE: 使用迅雷下载全部链接 - d:\program files\thunder network\thunder\program\getallurl.htm
IE: {09BA8F6D-CB54-424B-839C-C2A6C8E6B436} - d:\program files\thunder network\thunder\Thunder.exe
IE: {d9288080-1baa-4bc4-9cf8-a92d743db949} - c:\documents and settings\~~awu~~\start menu\programs\imvu\Run IMVU.lnk
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - {B119EB0C-C021-46CF-85B0-34A760E0D5FE} - c:\program files\iepro\iepro.dll
IE: {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - {85E0B171-04FA-11D1-B7DA-00A0C90348D6} - c:\program files\kaspersky lab\kaspersky anti-virus 2009\SCIEPlgn.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office11\REFIEBAR.DLL
Trusted Zone: fakku.net\www
Trusted Zone: xuite.net\webhd
DPF: {00000055-9980-0010-8000-00AA00389B71} - hxxp://codecs.microsoft.com/codecs/i386/fhg.CAB
DPF: {05D44720-58E3-49E6-BDF6-D00330E511D3} - hxxp://zone.msn.com/binFrameWork/v10/StagingUI.cab55579.cab
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/8/b/d/8bd77752-5704-4d68-a152-f7252adaa4f2/LegitCheckControl.cab
DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} - hxxp://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - c:\program files\yahoo!\common\yinsthelper.dll
DPF: {3BB54395-5982-4788-8AF4-B5388FFDD0D8} - hxxp://zone.msn.com/BinFrameWork/v10/ZBuddy.cab55579.cab
DPF: {3FE16C08-D6A7-4133-84FC-D5BFB4F7D886} - hxxp://games.bigfishgames.com/en_ricochetlostworlds/online/ReflexiveWebGameLoader.cab
DPF: {488A4255-3236-44B3-8F27-FA1AECAA8844} - hxxps://img.alipay.com/download/1101/aliedit.cab
DPF: {4B9F2C37-C0CF-42BC-BB2D-DCFA8B25CABF} - hxxp://zone.msn.com/bingame/rock/default/popcaploader1.cab
DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} - hxxp://gfx1.hotmail.com/mail/w3/resources/MSNPUpld.cab
DPF: {55027008-315F-4F45-BBC3-8BE119764741} - hxxp://static.slide.com/uploader/SlideImageUploader.cab
DPF: {5736C456-EA94-4AAC-BB08-917ABDD035B3} - hxxp://zone.msn.com/binframework/v10/ZPAChat.cab55579.cab
DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} - hxxp://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab
DPF: {5D6F45B3-9043-443D-A792-115447494D24} - hxxp://messenger.zone.msn.com/EN-MY/a-UNO1/GAME_UNO1.cab
DPF: {69EF49E5-FE46-4B92-B5FA-2193AB7A6B8A} - hxxp://www.acclaim.com/cabs/acclaim_v8.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
DPF: {A22B8FD2-4CAA-4EFB-82F7-680CD656D9B0} - hxxp://www.gogobox.com.tw/neo.fld/GNowStarter.cab
DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} - hxxp://cdn2.zone.msn.com/binFramework/v10/ZIntro.cab56649.cab
DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} - hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
DPF: {CAC181B0-4D70-402D-B571-C596A47D0CE0} - hxxp://zone.msn.com/bingame/zpagames/zpa_pool.cab56649.cab
DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} - hxxp://3dlifeplayer.dl.3dvia.com/player/install/3DVIA_player_installer.exe
DPF: {DA2AA6CF-5C7A-4B71-BC3B-C771BB369937} - hxxp://zone.msn.com/binframework/v10/StProxy.cab55579.cab
DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} - hxxp://zone.msn.com/bingame/popcaploader_v10.cab
DPF: {F58E877C-4F14-4805-B2D2-EB48927C7580} - hxxp://dist.cdnetworks.co.jp/cdndist/streamport/SPort.cab
DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} - hxxp://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
DPF: {F8C5C0F1-D884-43EB-A5A0-9E1C4A102FA8} - hxxps://secure.gopetslive.com/dev/GoPetsWeb.cab
Notify: AtiExtEvent - Ati2evxx.dll
Notify: klogon - c:\windows\system32\klogon.dll
Notify: LBTWlgn - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
AppInit_DLLs: c:\progra~1\kasper~1\kasper~1\mzvkbd3.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
LSA: Authentication Packages = msv1_0 nwprovau

============= SERVICES / DRIVERS ===============

R0 kl1;Kl1;c:\windows\system32\drivers\kl1.sys [2008-7-21 121872]
R0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\system32\drivers\klbg.sys [2008-1-29 33808]
R1 KLIF;Kaspersky Lab Driver;c:\windows\system32\drivers\klif.sys [2009-10-7 226832]
R2 NwSapAgent;SAP Agent;c:\windows\system32\svchost.exe -k netsvcs [2004-8-4 14336]
R2 SeaPort;SeaPort;c:\program files\microsoft\search enhancement pack\seaport\SeaPort.exe [2009-1-14 226656]
R2 sw848b;sw848b;c:\windows\system32\drivers\sw848b.sys [2007-7-30 29760]
R2 sw878b;sw878b;c:\windows\system32\drivers\sw878b.sys [2007-7-30 10148]
R3 klim5;Kaspersky Anti-Virus NDIS Filter;c:\windows\system32\drivers\klim5.sys [2008-4-30 24592]
S2 AVP;Kaspersky Anti-Virus;c:\program files\kaspersky lab\kaspersky anti-virus 2009\avp.exe [2008-11-11 208616]
S2 NOD32FiXTemDono;Eset Nod32 Boot;c:\windows\system32\regedt32.exe [2001-8-23 3584]
S2 riserver;riserver;c:\windows\system32\SVCHOST.EXE -k riserver [2004-8-4 14336]
S2 tbqphdzy;Driver Boot;c:\windows\system32\svchost.exe -k netsvcs [2004-8-4 14336]
S3 NPF;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2005-8-3 32512]
S4 SecureLockWare_EncryptFilterDriver;SecureLockWare Encryption Filter driver;c:\windows\system32\drivers\encrfil.sys --> c:\windows\system32\drivers\ENCRFIL.SYS [?]
S4 SecureLockWare_EncryptFilterDriver2;SecureLockWare Encryption Filter driver Ver.2;c:\windows\system32\drivers\slwfil.sys --> c:\windows\system32\drivers\SLWFIL.SYS [?]

=============== Created Last 30 ================

2009-10-08 16:27 <DIR> --d----- c:\docume~1\~~awu~~\applic~1\Malwarebytes
2009-10-08 16:27 38,224 a------- c:\windows\system32\drivers\mbamswissarmy.sys
2009-10-08 16:27 19,160 a------- c:\windows\system32\drivers\mbam.sys
2009-10-08 16:27 <DIR> --d----- c:\program files\Malwarebytes' Anti-Malware
2009-10-08 16:27 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Malwarebytes
2009-10-08 16:21 <DIR> --d----- c:\program files\Trend Micro
2009-10-08 16:17 <DIR> --d----- c:\program files\FixPolicies
2009-10-07 22:32 107,547 a------- c:\windows\system32\drivers\klin.dat
2009-10-07 22:32 95,259 a------- c:\windows\system32\drivers\klick.dat
2009-10-07 22:31 3,885,088 a--sh--- c:\windows\system32\drivers\fidbox.dat
2009-10-07 22:31 532,512 a--sh--- c:\windows\system32\drivers\fidbox2.dat
2009-10-07 22:31 34,576 a--sh--- c:\windows\system32\drivers\fidbox.idx
2009-10-07 22:31 6,044 a--sh--- c:\windows\system32\drivers\fidbox2.idx
2009-10-07 22:31 <DIR> --d----- c:\program files\Kaspersky Lab
2009-10-07 22:31 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Kaspersky Lab
2009-10-01 23:44 4,904 a------- c:\windows\system32\PerfStringBackup.TMP
2009-09-29 22:11 <DIR> --d----- c:\docume~1\~~awu~~\applic~1\Logitech
2009-09-29 22:11 <DIR> --d----- c:\docume~1\~~awu~~\applic~1\Leadertech
2009-09-29 22:08 301,656 a------- c:\windows\system32\BtCoreIf.dll
2009-09-29 22:08 170,512 a------- c:\windows\system32\kemutb.dll
2009-09-29 22:08 145,936 a------- c:\windows\system32\KemUtil.dll
2009-09-29 22:08 117,264 a------- c:\windows\system32\KemWnd.dll
2009-09-29 22:08 84,496 a------- c:\windows\system32\KemXML.dll
2009-09-29 22:07 <DIR> --d----- c:\docume~1\~~awu~~\applic~1\InstallShield
2009-09-29 22:03 21,504 ac------ c:\windows\system32\dllcache\hidserv.dll
2009-09-29 22:03 21,504 a------- c:\windows\system32\hidserv.dll
2009-09-29 22:03 14,592 ac------ c:\windows\system32\dllcache\kbdhid.sys
2009-09-29 22:03 14,592 a------- c:\windows\system32\drivers\kbdhid.sys
2009-09-29 22:03 32,128 ac------ c:\windows\system32\dllcache\usbccgp.sys
2009-09-29 22:03 32,128 a------- c:\windows\system32\drivers\usbccgp.sys
2009-09-25 21:07 <DIR> --d----- c:\docume~1\~~awu~~\applic~1\ESET
2009-09-20 20:49 <DIR> --d----- c:\program files\Aztech Systems Ltd
2009-09-20 20:42 <DIR> --d----- c:\windows\system32\wbem\Repository
2009-09-20 07:59 <DIR> --d----- c:\docume~1\~~awu~~\applic~1\SUPERAntiSpyware.com
2009-09-19 22:26 <DIR> --d----- c:\program files\SopCast
2009-09-19 06:50 15,204,352 a------- c:\documents and settings\~~awu~~\ntuser.dat
2009-09-11 00:26 <DIR> --dshr-- C:\Recycled
2009-09-11 00:26 27 ---shr-- C:\autorun.inf

==================== Find3M ====================

2009-10-10 22:01 11,218 a------- c:\windows\system32\cid_store.dat
2009-10-07 23:48 33,808 a------- c:\windows\system32\drivers\klbg.sys
2009-09-29 22:09 0 a---h--- c:\windows\system32\drivers\Msft_Kernel_LMouFilt_01005.Wdf
2009-09-29 22:09 0 a---h--- c:\windows\system32\drivers\Msft_Kernel_LHidFilt_01005.Wdf
2009-09-29 22:09 0 a---h--- c:\windows\system32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
2009-09-06 16:21 107,888 a------- c:\windows\system32\CmdLineExt.dll
2009-09-06 16:07 721,904 a------- c:\windows\system32\drivers\sptd.sys
2009-09-05 22:53 720,896 a------- c:\windows\iun6002.exe
2009-07-26 16:44 48,448 a------- c:\windows\system32\sirenacm.dll
2009-07-25 05:23 411,368 a------- c:\windows\system32\deploytk.dll
2009-07-20 20:52 47,104 a------- c:\windows\system32\KMVIDC32.DLL
2008-09-02 08:33 610,304 a------- c:\documents and settings\~~awu~~\TCPOptimizer.exe
2005-06-03 20:01 293,376 a--shr-- c:\windows\info\plugin.dat
2008-11-10 19:00 32,768 a--sh--- c:\windows\system32\config\systemprofile\local settings\history\history.ie5\mshist012008111020081111\index.dat

============= FINISH: 22:06:40.92 ===============

the attach log

UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT

DDS (Ver_09-09-29.01)

Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date:
System Uptime: 10/10/2009 10:21:24 AM (12 hours ago)

Motherboard: ASUSTeK Computer INC. | | P5PL2
Processor: Intel® Pentium® D CPU 3.00GHz | Socket 775 | 3010/200mhz

==== Disk Partitions =========================

A: is Removable
C: is FIXED (NTFS) - 38 GiB total, 19.093 GiB free.
D: is FIXED (NTFS) - 38 GiB total, 10.018 GiB free.
E: is FIXED (NTFS) - 39 GiB total, 15.309 GiB free.
F: is FIXED (NTFS) - 34 GiB total, 20.871 GiB free.
G: is CDROM ()
H: is CDROM ()
I: is CDROM ()

==== Disabled Device Manager Items =============

Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: Multimedia Video Controller
Device ID: PCI\VEN_109E&DEV_036E&SUBSYS_00000000&REV_11\4&CF81C54&0&08F0
Manufacturer:
Name: Multimedia Video Controller
PNP Device ID: PCI\VEN_109E&DEV_036E&SUBSYS_00000000&REV_11\4&CF81C54&0&08F0
Service:

Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: Multimedia Controller
Device ID: PCI\VEN_109E&DEV_0878&SUBSYS_00000000&REV_11\4&CF81C54&0&09F0
Manufacturer:
Name: Multimedia Controller
PNP Device ID: PCI\VEN_109E&DEV_0878&SUBSYS_00000000&REV_11\4&CF81C54&0&09F0
Service:

==== System Restore Points ===================

RP1: 10/6/2009 2:27:59 PM - System Checkpoint
RP2: 10/7/2009 3:06:18 PM - System Checkpoint
RP3: 10/7/2009 10:31:01 PM - Installed Kaspersky Anti-Virus 2009.
RP4: 10/10/2009 7:02:16 PM - System Checkpoint

==== Installed Programs ======================


3DVIA player 4.1
7-Zip 4.42
Adobe Anchor Service CS3
Adobe Asset Services CS3
Adobe Bridge CS3
Adobe Bridge Start Meeting
Adobe Camera Raw 4.0
Adobe CMaps
Adobe Color - Photoshop Specific
Adobe Color Common Settings
Adobe Color EU Extra Settings
Adobe Color JA Extra Settings
Adobe Color NA Recommended Settings
Adobe Default Language CS3
Adobe Device Central CS3
Adobe ExtendScript Toolkit 2
Adobe Flash Player 10 ActiveX
Adobe Flash Player Plugin
Adobe Fonts All
Adobe Help Viewer CS3
Adobe Linguistics CS3
Adobe PDF Library Files
Adobe Photoshop CS3
Adobe Reader 8.1.6
Adobe Setup
Adobe Shockwave Player
Adobe Stock Photos CS3
Adobe Type Support
Adobe Update Manager CS3
Adobe Version Cue CS3 Client
Adobe WinSoft Linguistics Plugin
Adobe XMP Panels CS3
Apple Software Update
ATI Display Driver
AusLogics Disk Defrag
BBE Sonic Maximizer Plugin
Bluesoleil2.6.0.8 Release 070517
CCleaner (remove only)
CDCheck
CDDRV_Installer
Compatibility Pack for the 2007 Office system
Cool Edit Pro 2.1
Critical Update for Windows Media Player 11 (KB959772)
Doraemon
DVD Decrypter (Remove Only)
Easy Image Converter
erLT
Fonts Installation
Form Fill (Windows Live Toolbar)
Free WMA to MP3 Converter 1.16
Freelang Dictionary (wordlist)
Freelang Dictionary 3.74 beta
Freez FLV to MP3 Converter
GOM Player
Google Gears
Google Toolbar for Internet Explorer
Hamachi 1.0.3.0
High Definition Audio Driver Package - KB888111
HijackThis 2.0.2
Hotfix for Windows Internet Explorer 7 (KB947864)
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows Media Player 11 (KB939683)
Hotfix for Windows XP (KB952287)
IE7Pro
IHMC CmapTools v4.18
Java™ 6 Update 15
K-Lite Mega Codec Pack 4.1.7
Kaspersky Anti-Virus 2009
KhalInstallWrapper
Korean Fonts Support For Adobe Reader 8
LHDN Borang eCP39
Logitech SetPoint
Malwarebytes' Anti-Malware
Map Button (Windows Live Toolbar)
Messenger Plus! Live
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Hotfix (KB928366)
Microsoft .NET Framework 2.0 Service Pack 1
Microsoft .NET Framework 2.0 Service Pack 1 Language Pack - CHS
Microsoft .NET Framework 3.0 Service Pack 1
Microsoft .NET Framework 3.5
Microsoft Application Error Reporting
Microsoft AppLocale
Microsoft Choice Guard
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
Microsoft National Language Support Downlevel APIs
Microsoft Office Professional Edition 2003
Microsoft Search Enhancement Pack
Microsoft Silverlight
Microsoft Sync Framework Runtime Native v1.0 (x86)
Microsoft Sync Framework Services Native v1.0 (x86)
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Virtual PC 2007 SP1
Microsoft Visual C++ 2005 Redistributable
Microsoft Windows Application Compatibility Database
mIRC
MKPP v3.02
MSVCRT
MSXML 4.0 SP2 (KB954430)
MSXML 6.0 Parser (KB927977)
Musicnotes Player V1.23.2 and Viewer
Nero 7 Ultra Edition
OGA Notifier 1.7.0105.35.0
OneCare Advisor (Windows Live Toolbar)
PDF Settings
Photo Story 3 for Windows
Pico2000
Popup Blocker (Windows Live Toolbar)
Power AMR MP3 WAV WMA M4A AC3 Audio Converter 1.6
PowerDVD
PPS网络电视 V2.6.86.8898 正式版
QuickTime
Real Alternative 1.9.0
Samsung ML-1740 Series
ScrCapture
Search Settings
Security Update for Windows Internet Explorer 7 (KB938127)
Security Update for Windows Internet Explorer 7 (KB939653)
Security Update for Windows Internet Explorer 7 (KB942615)
Security Update for Windows Internet Explorer 7 (KB944533)
Security Update for Windows Internet Explorer 7 (KB950759)
Security Update for Windows Internet Explorer 7 (KB953838)
Security Update for Windows Internet Explorer 7 (KB956390)
Security Update for Windows Internet Explorer 7 (KB958215)
Security Update for Windows Internet Explorer 7 (KB960714)
Security Update for Windows Internet Explorer 7 (KB961260)
Security Update for Windows Media Player (KB911564)
Security Update for Windows Media Player (KB952069)
Security Update for Windows Media Player 11 (KB936782)
Security Update for Windows Media Player 11 (KB954154)
Security Update for Windows Media Player 6.4 (KB925398)
Security Update for Windows XP (KB923789)
Security Update for Windows XP (KB938464-v2)
Security Update for Windows XP (KB938464)
Security Update for Windows XP (KB941569)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950760)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951376)
Security Update for Windows XP (KB951698)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB953839)
Security Update for Windows XP (KB954211)
Security Update for Windows XP (KB954459)
Security Update for Windows XP (KB954600)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956391)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956841)
Security Update for Windows XP (KB957095)
Security Update for Windows XP (KB957097)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958687)
Security Update for Windows XP (KB958690)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960715)
Segoe UI
Smart Menus (Windows Live Toolbar)
SopCast 3.2.4
SoundMAX
Tabbed Browsing (Windows Live Toolbar)
The KMPlayer (remove only)
Tweak UI
Ultrafunk Sonitus:fx plug-ins 2.0b
Update for Windows XP (KB951072-v2)
Update for Windows XP (KB951978)
Update for Windows XP (KB955839)
Update for Windows XP (KB967715)
URL Snooper v2.14.02
VideoCAM Eye
Waves Native Gold Bundle v3.01
WebFldrs XP
Winamp (remove only)
Windows Genuine Advantage Notifications (KB905474)
Windows Internet Explorer 7
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live Favorites for Windows Live Toolbar
Windows Live Messenger
Windows Live OneCare safety scanner
Windows Live Outlook Toolbar (Windows Live Toolbar)
Windows Live Sign-in Assistant
Windows Live Toolbar
Windows Live Toolbar Extension (Windows Live Toolbar)
Windows Live Toolbar Feed Detector (Windows Live Toolbar)
Windows Live Upload Tool
Windows Media Format 11 runtime
Windows Media Player 11
Windows XP Service Pack 3
WinPcap 3.1
WinRAR archiver
WinZip
WL630USB Wireless B/G USB Adapter
WordWeb
Worms2
XML Paper Specification Shared Components Pack 1.0
Yahoo! Install Manager
Yahoo! Toolbar
Yahoo! 导航条
YAMAHA Digital Music Notebook
千千静听 5.2Beta
迅雷5

==== End Of File ===========================

the rootrepal log
ROOTREPEAL © AD, 2007-2009
==================================================
Scan Start Time: 2009/10/10 22:15
Program Version: Version 1.3.5.0
Windows Version: Windows XP SP3
==================================================

Drivers
-------------------
Name:
Image Path:
Address: 0xF7292000 Size: 98304 File Visible: No Signed: -
Status: -

Name: dump_atapi.sys
Image Path: C:\WINDOWS\System32\Drivers\dump_atapi.sys
Address: 0xED886000 Size: 98304 File Visible: No Signed: -
Status: -

Name: dump_WMILIB.SYS
Image Path: C:\WINDOWS\System32\Drivers\dump_WMILIB.SYS
Address: 0xF7A3B000 Size: 8192 File Visible: No Signed: -
Status: -

Name: PCI_PNP0724
Image Path: \Driver\PCI_PNP0724
Address: 0x00000000 Size: 0 File Visible: No Signed: -
Status: -

Name: rootrepeal.sys
Image Path: C:\WINDOWS\system32\drivers\rootrepeal.sys
Address: 0xB9D2F000 Size: 49152 File Visible: No Signed: -
Status: -

Name: sphn.sys
Image Path: sphn.sys
Address: 0xF738D000 Size: 1052672 File Visible: No Signed: -
Status: -

Name: sptd
Image Path: \Driver\sptd
Address: 0x00000000 Size: 0 File Visible: No Signed: -
Status: -

Hidden/Locked Files
-------------------
Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{2E7C17E9-8787-648B-BBBD-F90DF9DFAF84}\12\12-{A5~2.FRX:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\60\60-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v60-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v60-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\61\425-{B~1.FRX:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\62\429-{B~1.FRX:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\62\598-{B~1.FRX:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\63\163-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v163-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v163-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\63\63-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v63-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v63-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\64\164-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v164-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v164-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\64\438-{B~1.FRX:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\65\65-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v65-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v65-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\65\718-{B~1.FRX:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\66\66-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v66-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v66-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\67\167-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v167-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v167-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\67\439-{B~1.FRX:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\68\168-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v168-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v168-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\68\434-{B~1.FRX:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\69\169-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v169-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v169-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\69\69-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v69-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v69-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\70\70-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v70-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v70-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\70\737-{B~1.FRX:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\71\171-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v171-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v171-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\71\71-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v71-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v71-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\72\72-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v72-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v72-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\73\173-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v173-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v173-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\73\73-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v73-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v73-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\74\74-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v74-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v74-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\74\766-{B~1.FRX:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\75\757-{B~1.FRX:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\76\176-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v176-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v176-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\77\177-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v177-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v177-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\78\764-{B~1.FRX:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\79\179-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v179-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v179-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\81\754-{B~1.FRX:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\82\182-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v182-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v182-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\83\762-{B~1.FRX:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\84\760-{B~1.FRX:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\86\186-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v186-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v186-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\87\187-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v187-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v187-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\88\188-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v188-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v188-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\89\189-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v189-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v189-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\90\190-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v190-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v190-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\91\191-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v191-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v191-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\92\92-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v92-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v92-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\93\460-{B~1.FRX:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\94\94-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v94-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v94-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\95\95-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v95-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v95-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\96\96-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v96-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v96-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\97\97-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v97-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v97-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\98\98-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v98-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v98-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\[email protected]\SharingMetadata\[email protected]\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\99\99-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v99-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v99-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\siqi_lee_sp@hotmail.com\SharingMetadata\meipeng_88@hotmail.com\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\44\562-{B~1.FRX:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\siqi_lee_sp@hotmail.com\SharingMetadata\meipeng_88@hotmail.com\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\45\145-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v145-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v145-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\siqi_lee_sp@hotmail.com\SharingMetadata\meipeng_88@hotmail.com\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\47\47-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v47-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v47-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\siqi_lee_sp@hotmail.com\SharingMetadata\meipeng_88@hotmail.com\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\48\148-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v148-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v148-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\siqi_lee_sp@hotmail.com\SharingMetadata\meipeng_88@hotmail.com\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\48\48-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v48-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v48-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\siqi_lee_sp@hotmail.com\SharingMetadata\meipeng_88@hotmail.com\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\49\49-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v49-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v49-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\siqi_lee_sp@hotmail.com\SharingMetadata\meipeng_88@hotmail.com\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\50\150-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v150-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v150-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\siqi_lee_sp@hotmail.com\SharingMetadata\meipeng_88@hotmail.com\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\50\408-{B~1.FRX:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\siqi_lee_sp@hotmail.com\SharingMetadata\meipeng_88@hotmail.com\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\51\151-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v151-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v151-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\siqi_lee_sp@hotmail.com\SharingMetadata\meipeng_88@hotmail.com\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\51\405-{B~1.FRX:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\siqi_lee_sp@hotmail.com\SharingMetadata\meipeng_88@hotmail.com\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\52\152-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v152-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v152-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\siqi_lee_sp@hotmail.com\SharingMetadata\meipeng_88@hotmail.com\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\53\583-{B~1.FRX:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\siqi_lee_sp@hotmail.com\SharingMetadata\meipeng_88@hotmail.com\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\54\154-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v154-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v154-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\siqi_lee_sp@hotmail.com\SharingMetadata\meipeng_88@hotmail.com\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\54\54-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v54-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v54-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\siqi_lee_sp@hotmail.com\SharingMetadata\meipeng_88@hotmail.com\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\55\155-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v155-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v155-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\siqi_lee_sp@hotmail.com\SharingMetadata\meipeng_88@hotmail.com\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\55\409-{B~1.FRX:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\siqi_lee_sp@hotmail.com\SharingMetadata\meipeng_88@hotmail.com\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\56\156-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v156-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v156-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\siqi_lee_sp@hotmail.com\SharingMetadata\meipeng_88@hotmail.com\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\56\419-{B~1.FRX:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\siqi_lee_sp@hotmail.com\SharingMetadata\meipeng_88@hotmail.com\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\57\157-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v157-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v157-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\siqi_lee_sp@hotmail.com\SharingMetadata\meipeng_88@hotmail.com\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\58\158-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v158-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v158-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\siqi_lee_sp@hotmail.com\SharingMetadata\meipeng_88@hotmail.com\DFSR\Staging\CS{1D3ACE64-5159-9845-8A92-387C3BDB4E44}\59\159-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v159-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v159-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\siqi_lee_sp@hotmail.com\SharingMetadata\simin_1992@hotmail.com\DFSR\Staging\CS{962970BD-533E-6748-8881-BEE91F32B14C}\30\130-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v130-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v130-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~\Local Settings\Application Data\Microsoft\Messenger\siqi_lee_sp@hotmail.com\SharingMetadata\unlove_wayne@hotmail.com\DFSR\Staging\CS{803A3215-65BB-8AF2-07A3-9EFF5AD48D25}\47\147-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v147-{B86EB25F-AF88-479C-9AC3-52B04E1E4A0E}-v147-Downloaded.frx:{59828bbb-3f72-4c1b-a420-b51ad66eb5d3}.XPRESS
Status: Visible to the Windows API, but not on disk.

Path: C:\Documents and Settings\~~AWU~~&

RELEVANCY SCORE 200
Preferred Solution: Personalized settings at start up + changed computer settings(pls helpD;)

I recommend downloading and running DAP. It can help sort out any driver and firmware related issues on your system

It's worked out well for many of us in the past.

You can download it direct from this link http://downloaddap.org. (This link will open the download page of DAP so you can save a copy to your computer.)

A: Personalized settings at start up + changed computer settings(pls helpD;)

somebody mind helping?D:~i think i did the right thing this time already><Hello siqilee,We ask that once you have posted your log and are waiting, please DO NOT "bump" your thread or make further replies until it has been responded to by a member of the HJT Team. The reason we ask this or do not respond to your requests is because that would remove you from the active queue that Techs and Staff have access to. The malware staff checks the forum for postings that have 0 replies as this makes it easier for them to identify those who have not been helped. If you post another response, there will be 1 reply. A team member, looking for a new log to work may assume another HJT Team member is already assisting you and not open the thread to respond.That is why I have made an edit to your last post, instead of a reply. Please do not multiple post here, as that only pushes you further down the queue and causes confusion to the staff.Please be patient. It may take a while to get a response but your log will be reviewed and answered as soon as possible.Thank you for understanding.Regards,The weatherman (Moderator)

Read other 3 answers
RELEVANCY SCORE 85.2

I had a virus or spyware that I resolved. Sorta.. It changed my global proxy settings I since then changed internet explorer and firefox back but the GLOBAL settings are still jacked cuz programs like windows update and msn messanger can not connect now due to this ...alkjshdfoehjwqofaw how do I fix this pls help!!!!

A:Spyware changed my proxy settings now my global settings are messed up

Hello and Welcome to TSF.

We want all our members to perform the steps outlined in the link I'll give you below, before posting for assistance. There's a sticky at the top of this forum, and a
Quote:




Having problems with spyware and pop-ups? First Steps




link at the top of each page.

------------------------------------------------------

Please follow our pre-posting process outlined here:

http://www.techsupportforum.com/f50/...lp-305963.html

After running through all the steps, you shall have a proper set of logs. Please post them in a new thread, as this one shall be closed.

If you have trouble with one of the steps, simply move on to the next one, and make note of it in your reply.

Please note that the Virus/Trojan/Spyware Help forum is extremely busy, and it may take a while to receive a reply.

------------------------------------------------------

Read other 1 answers
RELEVANCY SCORE 84.8

Help I just got done upgrading my windows and when it restarted again everything was normal when I logged in to my account but on my desktop there is nothing there but a personalized settings box and I have been waiting for hours and restarted it several times already and i even tried to delete it, it did delete however the screen continued to remain blank, help me!!!!!!!!

A:Help personalized settings

If you right-click the screen, does a menu appear?

Read other 5 answers
RELEVANCY SCORE 83.6

First of all hy,and sry for typing mistakes (if there are any)



Issue 1



Im using a 32 bit ultimate vista ,each time my pc shuts down improperly (restart , power down etc) i get 'personalized settings not responding' box and i cant use my network and sidebar.

In fact its the exact same problem he had

vista problem with personalized settings not responding

System restoring fixes this but only until the first improper shut down , is there a way to fix that for good? (reinstalling doesn't help)



Issue 2



Partition shrinking problem : When i try to shrinking my boot partition (using disk management) it wont shrink as much as i want it to (to be more clear: my C:// drive that contains windows is 150 gb large and it wont shrink more)

Is there a way of doing that?

Read other answers
RELEVANCY SCORE 83.6

everytime i start my computer.. there is always a window on the upper left that says: setting up personalized settings for: C:\WINDOWS\system32\Wndiir\WinLoad.exe restart i can't use my computer bcos its always stuck on that window..there are no icons come up on my screen and even the taskbar but i can access internet browser using task manager by creating new task(http://google.com)... help me pls..i dont know what to do.. ill really appriciate much who can help me on that problem.. BTW: im using Windows Xp.

A:Setting Up Personalized Settings For?

Your logon profile has become corrupted. In Task Manager go to File/New Task (run...) and type in control userpasswords and hit enter. Create a new User with Admin privileges. Log out and log back in as the new user. Browse to C:\Documents and Settings\ Look for your old Profile. Copy the Desktop, Favorites and My Documents to the New User Profile from the old.

Read other 17 answers
RELEVANCY SCORE 83.6

Everytime I open up explorer.exe I get personalized settings for less than a second showing C:\System\(recycler)\system32.exe , before that I had another file which I deleted and Now this is showing up . I think it copies itself but I am not sure. help please , this is my HJ log
DDS (Ver_09-01-07.01) - NTFSx86
Run by Reeko at 23:50:04.25 on Wed 01/14/2009
Internet Explorer: 7.0.5730.13 BrowserJavaVersion: 1.6.0_07
Microsoft Windows XP Professional 5.1.2600.3.1256.971.1033.18.3071.2136 [GMT 4:00]

AV: Norton Internet Security *On-access scanning enabled* (Outdated)
FW: Norton Internet Security *enabled*

============== Running Processes ===============

C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
C:\WINDOWS\system32\svchost -k rpcss
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe
C:\Program Files\Common Files\Apple\... Read more

A:Personalized settings virus

Hello. I am PropagandaPanda (Panda or PP for short), and I will be helping you.Disable Realtime ProtectionAntimalware programs can interfere with ComboFix and other tools we need to run. Please temporarily disable all realtime protections you have enabled. Refer to this page, if you are unsure how.Download and Run ComboFixIf you have already run ComboFix, delete your copy and download a new one. If the computer in question is unable to download ComboFix, transfer it using a removable media (CDs, flash drive).To disable Norton Antivirus.Right click on thr Norton icon () beside your click and select Disable Auto-Protect.Select a disabled duration of 5 hours to ensure that it will not interfere with this fix.Click OK to apply the settings.When done properly, you should recieve a pop-up warning saying that protection was disabled. The Norton icon should now look like .Download Combofix by sUBs from any of the links below, and save it to your desktop.Link 1, Link 2, Link 3 Close/disable all anti-virus and anti-malware programs so they do not interfere with the running of ComboFix. Refer to this page if you are not sure how.Double click on ComboFix.exe and follow the prompts. If you are using Windows Vista, right click the icon and select "Run as Administrator". You will not recieve the prompts below if you are not using Windows XP. ComboFix will check to see if you have the Windows Recovery Console installed.If you did not have it installed, you will see the prompt below. Choose ... Read more

Read other 8 answers
RELEVANCY SCORE 83.6

Half the time when I start my pc, after windows loads, I get a black
page with a box in the upper left saying Personalized Settings Not
Responding. 10 to 30 seconds later, 2 file names pop in the box
(run32.dll and something like misco....) and my desktop loads. It's
been this way from the beginning, about a year and a half. This is an
old Dell that originally had XP, but was upgraded to Vista Ultimate.
A couple times I've had to shut down and reboot to get the desktop to
load. Any ideas or suggestions? JT

Read other answers
RELEVANCY SCORE 82.8

I'm not sure what happen but I think some registry got messed up something.
I'm having the same problem as this person posted a few years ago:http://windows.bigresource.com/Track/xp-i8YAwm2k/

I can get into my personalize but then i can't open my display settings so i can extend my desktop. When I click on Display settings I get a window pop up of "Run a legacy cpl elevated"

It's driving me insane. Any help would be much appreciated.
 

A:Can't open my settings in personalized area

hello,

have you used a "registry cleaner"?
if yes, did you make a backup before you used it?
if yes, use the backup at this time.
if no, maybe system restore has a restore point to a time before the problem started.
start>all programs>system tools>system restore, pick "another date" see if theres a date before the problem..

good luck
 

Read other 2 answers
RELEVANCY SCORE 82.8

Here's another one of those silly questions that I can't seem to find the answer to.
I have Windows 2000 at home just to play with. I made a bunch of changes when logged on as Administrator like shortcuts, colors, desktop settings, mouse settings, Internet settings, etc. When I log on as another User, all those settings are gone. I don't want to redo all of that and I know there's a way to either disable the option to have different settings per User or to copy the settings to the other User but I'm blind and can't figure it out!

Addition:
I found the "Copy to" option on the User Profiles tab in System Properties but that must not contain all the settings unless I did it incorrectly. I copied the Administrator's and set it to allow the User to use it and logged on as the User. The icons on the desktop looked correct but it didn't look like any other settings transferred like the background, quick launch icons, ability to single click instead of double, Internet settings, etc.
I would like everyone's settings to be the same without a hassle. I'm sure it's clear as day somewhere!

Any help appreciated.
Thanks!

[This message has been edited by angel (edited 10-21-2000).]
 

A:{Advice Offered} - don't want personalized settings

Greetings

Unfortunately, there is no easy way to do this. NT is specially designed so that each user can have totally different settings to another, and not interfere with other users.

The one way to keep the icons shared between users is to have the icons stored in the ALL USERS profile's Start Menu and Desktop directories.

As for keeping the colours the same (this might work): Create the colour scheme you want use, with colours, fonts, iszes, etc. Then save this scheme with your own name. Then, when you log in with a different user, change the scheme to your own scheme, to restore your colours etc. (BTW, I tend to make changes to my personal profile, and leave the Administrator account plain... so that I can see the difference when I am logged in with my own account, or the Admin account).

As far as sharing Favourites etc, you will need to install TweakUI and create specific folders for your shared favourites, and use the TweakUI utility to change the default location to the directory that you have chosen, for each account.

Hope this helps

------------------
Reuel Miller
Windows NT Moderator (yes, that does make me biased )

[email protected]

Website: www.xperts.co.za/multiboot

Every morning is the dawn of a new error...
 

Read other 1 answers
RELEVANCY SCORE 82.8

Hi, This is my first post on this board. My basic problem arose by my own mistake when i double clicked a malicious exe which was named after some thing i was seeking desperately. My current problem is that when ever Explorer.exe is invoked it pops up a message setting up personalized settings for C\Windows\system32:explorer.exe also my computer freezes from time to time for 5-6 secs. When ever i check the processes running i find an instance of IExplore.exe running silently, also in the recent times i have observed an app called mDNSResponder.exe which usually comes with apple products running and trying to connect to the internet. I have tried Spybot S & D, Ad-Aware, Ashmpoo Spyware 2 , AVG 8.0 (Free) and Stinger (Latest) but of no avail. Thus as a last resort i am attaching the HiJackThis Log and also an image of the problem.Any help of any kind will be highly appreciated. The Log:Logfile of Trend Micro HijackThis v2.0.2Scan saved at 9:38:35 PM, on 8/6/2008Platform: Windows XP SP2 (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)Boot mode: NormalRunning processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\system32\svchost.exeC:\Program Files\Lavasoft\Ad-Aware\aawse... Read more

A:Explorer.exe Personalized Settings Virus

Hello, aseem.kher. to BleepingComputer.comMy name is Billy O'Neal and I will be helping you. (Billy or Bill is fine, if you like.)Please give me some time to look over your computer's log(s).Please take note of the following:In the meantime, please refrain from making any changes to your computer.Also, even if things appear to be running better, there is no guarantee that everything is finished. Please continue to check this forum post in order to ensure we get your system completely clean. We do not want to clean you part-way up, only to have the system re-infect itself. If you do not understand any step(s) provided, please do not hesitate to ask before continuing. I would much rather clarify instructions or explain them differently than have something important broken.Finally, please reply using the button in the lower left hand corner of your screen.We need to run OTScanItBefore running a new scan let's clean out the temporary folders. Download ATF Cleaner to your Desktop.Double-click ATF-Cleaner.exe to run the program.Click Select All found at the bottom of the list.Click the Empty Selected button.If you use Firefox browser, do this also:Click Firefox at the top and choose Select All from the list.Click the Empty Selected button.NOTE : If you would like to keep your saved passwords, please click No at the prompt.If you use Opera browser, do this also:Click Opera at the top and choose Select All from the list.Close ALL Internet browsers (very important).Click the Empty Se... Read more

Read other 2 answers
RELEVANCY SCORE 82.8

When I start up my laptop, just before my desktop appears I get a little box in the top left corner which says-

setting up personalized settings for:
C:\WINDOWS\svchost\svchost.exe Restart

I do not know if this is a virus or not?
The other day my computer locked up, but in the processes tab in Task Manager I had about 30+ svchost.exe running.

Sometimes my computer freezes while i'm browsing the net and I have to restart.

What is svchost? I know abit about computers, just the general, so I could really do with some help please.

I have run ccleaner, eset antivirus, spyware doctors, but they havent come back with anything

While writing this 2 pop ups just appeared which were pictures of transexuals (one was http://gals.shemaleprivate.com/grooby/braz...6/samara103.jpg) This has never happened before. Whats going on??? After these pop ups and begining to get really worried.
My log came out as

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 04:34:39, on 16/01/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\RtHDVCpl.exe
C:\Acer\Empowering Technology\eDataSecurity\eDSLoader.exe
C:\Acer\Empowering Technology\eAudio\eAudio.exe
C:\Program Files\Acer Arcade Deluxe\Play Movie\PMVService.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\... Read more

A:setting up personalized settings for:... virus?

I ran Malwarebytes straight after posting this, and this is the returned log.
Something else happened straight after I posted my first message - My webcam turned on. I dont use my webcam, but my brother and girlfriend do for Skype. The fact it activated with me turning it on myself worries me alot. I just cut the power to my laptop striaght away. started it back up and ran Malwarebytes.

Malwarebytes' Anti-Malware 1.44
Database version: 3808
Windows 6.0.6001 Service Pack 1
Internet Explorer 8.0.6001.18882
01/03/2010 01:43:47
Malware Log 01-03-10.txt
Scan type: Quick Scan
Objects scanned: 110927
Time elapsed: 13 minute(s), 6 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 22
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 2
Files Infected: 2
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{3446658r-0n1v-fvqj-0y8c-hi8137nfr80j} (Generic.Bot.H) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{2e9937fc-cf2f-4f56-af54-5a6a3dd375cc} (Adware.MyWebSearch) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{741de825-a6f0-4497-9aa6-8023cf9b0fff} (Adware.MyWebSearch) -> No action taken.
HKEY_CLASSES_ROOT\Interface\{cf54be1c-9359-4395-8533-1657cf209cfe} (Adware.MyWebSearch) -> No action taken.
HKEY_CLASSES_ROOT\CLSID\{147a976f-eee1-4377-8ea7-4716... Read more

Read other 1 answers
RELEVANCY SCORE 82.4

Sometimes when starting up my Windows 8.1 laptop, the scroll setting will be set to scroll one line per tick scroll. When I go to the mouse settings on the control panel, it says "5" lines per mouse scroll (which is what I have it set to.), however it only ticks one. This means every single time this happens, I have to reset the setting to 5, despite it already being there.

I do not know how to reproduce this issue, though would love this minor nuisance to be fixed.

Read other answers
RELEVANCY SCORE 82.4

Hi

I have been incredibly stupid and changed the settings in my BIOS setup. What is even more stupid is I did this by making it "Load Optimal Defaults" so I dont actually know what has been changed.

As a result of this windows 7 now cannot start, it brings you to the error fixing part where it searches for errors, cant find any and offers you some more options including system restore. Ive done a system restore but that has also not fixed it. I have little idea how to fix this, windows 7 was working perfectly until I changed the BIOS, but not knowing what was changed means I cant change it back.

The BIOS version is: 4core1600twins-p35 p1.40

Any help would be immensely appreciated. Thank you very much!

Rhodri

A:Changed BIOS settings now Windows 7 wont start

Hi Rhodri and welcome to Windows 7 Forums

This should be quite easy to fix. All you need to do is to reset the BIOS to its defaults. Boot up and enter your BIOS. You are looking for an option to reset it to its defaults (this is NOT the same as Optimal Defaults). Alternatively, remove and replace the motherboard battery - this will cause all settings to be lost from the BIOS, so you need to make a note of your current settings on a piece of paper so that you can restore them afterwards. This will include the date and time. For details on how to do this, the location of the battery and whether or not there is a motherboard jumper that accomplishes the same thing, see your motherboard manual. Please ensure that your system is unplugged from the mains whilst you do this.

Read other 4 answers
RELEVANCY SCORE 82

This morning I checked my Personalized Yahoo TV settings and they didn't show up. It tells me the personalized settings aren't set. Then I go to set them and there they are already listed. I click "Finished" and it takes me back to the main page where it says my personalized settings aren't showing up.

Is this happening to anyone else. I've emailed Yahoo and no response yet.

Win98Se IE 6.0
 

A:Solved: Yahoo Personalized TV Settings Not Showing Up

It was a Yahoo problem, solved later that afternoon
 

Read other 1 answers
RELEVANCY SCORE 82

Hi,
I have windows vista on a laptop. I went to shut it down last night but it seems it was doing an update and I didn't realize it. So when I restarted it, it now comes up with a personalized settings(not responding) message in upper left corner. I can access hard drive and windows task manager. Is there somewhere a backup is located to restore this? Or some how do a system restore?
Thanks,
Chuck
 

A:vista problem with personalized settings not responding

Read other 9 answers
RELEVANCY SCORE 82

Heres my problem,
If i do as much as log out of my computer my personalized settings (such as putting a toolbar on the start bar, or moving an icon on my desktop) wont save. I get a window that says "Setting up Personalized Settings" when I logon to my account, or any others I create.

I've Google'd it and the only one I've found was not fixed, and all the others are talking about a file called loadwc.exe, which does not exist on XP.

Any help would be appreciated,
Mystic (Mac G.)
 

A:Solved: Personalized settings are not saving on reboot

Read other 15 answers
RELEVANCY SCORE 82

Ok, well when i logon to any account that i make a window shows up in the top left corner and it says "Setting up personalized settings for: C:\Progam Files\drivers\msmsrs.exe s"
and the file isnt even there iv serched for it and i cant find it on my computer and i have no clue what to do so any help?
 

A:Solved: Personalized Settings Problem On Login.....

Read other 16 answers
RELEVANCY SCORE 82

Hi,
I have windows vista on a laptop. I went to shut it down last night but it seems it was doing an update and I didn't realize it. So when I restarted it, it now comes up with a personalized settings(not responding) message in upper left corner. I can access hard drive and windows task manager. Is there somewhere a backup is located to restore this? Or some how do a system restore? The only discs I have are the Toshiba recovery discs but I don't want to use them as they say they will reformat hard drive and I will lose all info. I saw a regback folder on the hard drive. Would that have something in it?
Thanks,
Chuck

A:vista problem with personalized settings not responding

Hello Chuck, and welcome to Vista Forums.

A System Restore using a restore point dated before the update incident may be able to fix this for you. The link will help show you how to do one even though you have a OEM Vista.

Hope this helps,
Shawn

Read other 3 answers
RELEVANCY SCORE 82

Well today I was infected with the almighty Vundo annoyance I had error DLL and Error messages here is my latest Log...I ran ComboFix...

I want to make sure I don't have it anymore...I sometimes see a Popup come up that says Personal Options or Personal Properties or something in the top left corner of the screen and then it disappears...

I ran Vundo Fix and No Luck...It couldn't delete some DLL's so I used ComboFix...I added pix of the issues I have had.

Please help me make my system clean again...

Here is My HiJackThis..

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 5:03:26 PM, on 8/9/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Comodo\Firewall\CPF.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Comodo\Firewall\cmdagent.exe
C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe
C:\Program Files\ESET\ESET NOD32 Antiviru... Read more

A:Personalized Settings PopUp and Error DLL?? Need Fixing

Please post the Combofix Log.
 

Read other 1 answers
RELEVANCY SCORE 82

Hi, I am trying to fix a computer for someone.

It is an HP Pavilion dm3 Entertainment PC running Windows 7 Home 64-Bit. The computer had several problems with it so I did a system restore that is built into a recovery partition. The install went fine, but then when it was loading in the 2nd time... it locked on Personalized Settings: Microsoft Windows Media Player.

The problem I am having is that the laptop does not have a CD drive so I cannot put in a Windows 7 disc and run a chkdsk /r.

I can log in to the machine if I go into safemode with networking. Is there anything there I can do to fix this?

Any suggestions would be appreciated.

A:Win7 Home x64 - Locks at Personalized Settings

Hello slumslum, welcome to Seven Forums!


Use the tutorial at the link below to make bootable Windows repair media.

USB Windows 7 Installation Key Drive - Create

How to Create a Windows 7 System Repair Disc


Then use that to run a sfc /scan from WinRE and be sure to post back with any further questions you may have and to keep us informed.

SFC /SCANNOW : Run in Command Prompt at Boot

Read other 2 answers
RELEVANCY SCORE 82

The last week or so, our computer has been really slow. A couple of days ago, when I tried to login to my personalized settings (as opposed to my husband's), as soon as I click on my name, a box came up, saying something along the lines of "personal file corrupt - cannot load settings - will login as guest." So irritated that I didn't write it down exactly.

So l clicked OK or ESC and it would basically log me in as a new user/guest. No settings, favorites, anything. I click on My Computer and see Husband Files, My Files, Shared Files. Click on Husband Files and all of his files are intact. My Files - nothing. There are no document. It still lists My Pictures - but nothing is in there.

I ran a malware program yesterday and it seemed to "catch" a few bugs. This morning, I logged in, and it let me through without the box - but then automatically logged me in as a guest user again.

Not sure if I'm describing this well enough - please let me know what else you'd need to know. I'm freaking out - of course my documents include all our budget stuff, pictures, etc. (they're backed up for the most part, but still).

Thank you!

A:Can't login -personalized settings/files disappeared?

You are in a pickle.

This issue is well discussed here:

http://forums.techarena.in/windows-x...rt/1057656.htm

The CRITICAL thing is to NOT use that hard drive for anything more if you want to recover any data.

Read other 1 answers
RELEVANCY SCORE 82

I have upgraded from Windows Vista Home Premium to Windows 7 Ultimate using the download method (For my laptop). Setup is trying to personalize my settings, and is stalls at that point. (it doesn't freeze but it just stalls)

Whenever I start Windows, it goes through the startup process and then brings up a window called 'Personalized Settings' which says:

Setting up personalized settings for:
Microsoft Windows Media Player

Anyone know how to bypass this or why it's taking a bit longer than it's suppose to?
 

Read other answers
RELEVANCY SCORE 80.8

Hi Not sure where to ask this....I have Windows 7 x64 on my 8 month old computer. I have 2 user accts so I can use Outlook for our 2 email accts. I set up both with themes and font and print size etc but the one acct (only used by me for my emails) when I log on, doesn't have the saved settings, only the desktop picture. Each time I have to right click on the desktop, click on personalize, the click on my Saved Theme, then go back and then the font and print size are fixed.
Just wondering how to fix this as it really ticks me that I need to do this each and every logon. I don't want to stay logged on all the time in that acct!
I hope someone can help me with this
Thanks
 

Read other answers
RELEVANCY SCORE 80

I wasn't sure which section to write this in, but my mother who is a computer programmer suggested that I might have a virus.
Last night I downloaded a kindle file from an author's blog with the intention of installing it on my kindle. This morning my computer was I little slow. I have a website and I downloaded the plugin for elegant themes to my desktop to install it to my WordPress. My computer started freezing so I used The task manager to restart. For quite some time my our touchpad hasn't been working but for every now and then it would start working until it I restart for updates. Because I only have one working usb and my touchpad mouse now wasn't working, I looked up ways to fix it. The consensus my the Toshiba forum I found talked about shutting it down, taking out the battery holding the start button for 15 seconds and then replacing everything and starting it over then as it starts up press f2 then f9 and f10.
I don't know which of these or what caused it, but I noticed that when it started, my pictures were not there. Well they were, but they were black. So I restarted it again and it took forever to load and for the longest time it had this black screen with this message box talking about processing my personalized settings in: Google chrome. When it did load, it sent me to a temporary sign in where I could'u access any of my files. I thought I had somehow lost everything. But after a couple of restarts, it brought me to my regular sign in, but I can'... Read more

A:Black screen with "processing personalized settings" is it a virus? Hack?

The first thing you want to try is press Ctrl+Alt+Del and see if it brings up the Task Manager. If it does, great. Click on File > Run new task. Type explorer.exe and hit Enter. This worked for me once when I faced this issue.
If this does not work for you, remove all external devices and reboot. If you are able to get display, it might mean that one of the external hardware is causing the problem. If that is the case, start plugging in external devices one by one until you lose display. Remove the last device you plugged in and see if you get the display back. If yes, don’t use that hardware device until you contact the device’s manufacturer. Check again with other external devices.
If removing external devices does not fix the issue, go to the safe mode. Since we assume that you are getting display until you sign in and not after you sign in, you will have to reboot your computer. At the lock screen, click on the power icon towards bottom left of the display. While holding down SHIFT, click on RESTART. This will make your computer reboot. After the reboot, you are given a number of options – select Safe mode with Networking mode. You can simply press F5 on the screen to enter safe mode.
If instead of reboot, you are presented with a screen having three options: Troubleshoot; and Shutdown, click on Troubleshoot and then on Advanced. Then click on Startup Settings and then Restart. The option to enter Safe Mode will be presen... Read more

Read other 1 answers
RELEVANCY SCORE 80

When I boot up today, I get a message box in the top left corner of my screen:

"Setting up personalized settings for: C:\windows\system32\install\server.exe Restart"

with nothing else--no taskbar, no icons on the desktop. I go, "OK, I uninstalled Norton 360 last night because my CD key was no longer valid," (after being used on another computer already). "Guess it's just doing it's thing." But minutes go by and my hard drive light isn't flickering, and the fact that "Restart" is capitalized at the end of the quote is suspicious to me, as in virus suspicious. So I get on another computer and google the phrase and find that, indeed, it is a virus/trojan/malware. And that someone posted the *exact* same problem here a month ago, after uninstalling their AV program and all. However, since that someone "discovered a fix for this problem, that works for now," there was never any solution posted.

I just ran Malwarebyres Anti-Malware and the server.exe file listed as a "Backdoor.Bifrose" was quarantined and deleted. I restarted and everything *seems* to be OK (i.e., it booted up normally) but I'm still wary. Am I rid of that crap?

A:Personalized VIRUS settings for: C:\windows\system32\install\server.exe...?

Info only.I will move this to the Am I Infected forum, for appropriate action.Louis

Read other 2 answers
RELEVANCY SCORE 80

My computer is extra extra slow, whenever I click on something it lags and it takes a long time to respond. It also does really weird things like open new pages out of nowhere. Please help...
Hijack Log

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:28:01 AM, on 12/7/2010
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18527)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\RtHDVCpl.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\SelectRebates\SelectRebates.exe
C:\Program Files\ScanSoft\OmniPageSE2.0\opwareSE2.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_clipbook.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexpl... Read more

A:Slow computer, changed settings, help!!!

no help
 

Read other 1 answers
RELEVANCY SCORE 79.2

Somehow malware infected my computer while avg was running and all my admin and browser settings had been changed. I launched malwarebytes and thought it got rid of the viruses. Upon logging back I noticed I couldnt log into certain websites, I kept getting redirected, some websites wouldnt even load, there are popups everywhere, my browsers all keep crashing (Ie, Ff, Gc) and this java/adobe pdf thing keeps popping up then avg suddenly says I have a virus again. Would really appreciate some help on this one.

Read other answers
RELEVANCY SCORE 78

Hello all laterly PC is running so slow i think it's cause of spyware please help post this hijack logLogfile of HijackThis v1.98.2Scan saved at 1:11:18 PM, on 4/1/2006Platform: Windows XP (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)Running processes:C:\WINNT\System32\smss.exeC:\WINNT\system32\winlogon.exeC:\WINNT\system32\services.exeC:\WINNT\system32\lsass.exeC:\WINNT\system32\svchost.exeC:\WINNT\System32\svchost.exeC:\WINNT\system32\spoolsv.exeC:\WINNT\Explorer.EXEC:\Program Files\ClamWin\bin\ClamTray.exeC:\Program Files\Softwin\BitDefender8\bdnagent.exeC:\Program Files\Common Files\Real\Update_OB\realsched.exeC:\Program Files\Sunbelt Software\CounterSpy\Consumer\sunserver.exeC:\WINNT\system32\cisvc.exeC:\WINNT\System32\ctfmon.exeC:\Program Files\Holtek\Hotkey Driver\Program\HotKeyEx.exeC:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exeC:\Program Files\LimeWire\LimeWire.exeC:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exeC:\Program Files\internet explorer\iexplore.exeC:\Program Files\Common Files\Softwin\BitDefender Communicator\xcommsvr.exeC:\Program Files\Common ... Read more

A:Slow Computer And Changed Settings Every Time I Boot Up

Hello punjabiWe can definitely help you, but first you need to help us. The first step in this process is to apply Service Pack 1b for Windows XP. Without this update, you're wide open to re-infection, and we're both just wasting our time.Click HERE. Apply the update, and rebootInstall all critical updates except Service Pack 2. Some hijacks interfere with the installation of Service Pack 2, so please wait until your computer is clean before installing it.David

Read other 2 answers
RELEVANCY SCORE 78

Get the message "your hardware settings have changed. Please reboot your computer for these changes to take effect" every time laptop turned on or rebooted.

Read other answers
RELEVANCY SCORE 78

ok, so i'm pretty sure i'm hooped. on my barton 2500 (or somewhere around that) asus a7n8x-x computer, i changed the memory frequency to 200% so that the resulting frequency is 400 MHz (2 stix of pc3200 512Mb RAM)after saving to bios and exiting, the computer showed no response. assuming the values were incorrect, (i reset the computer, and it wouldn't post) i cleared the bios (RTC) and figured this was enough. wrong. the computer wouldn't post still, and obviously, no video signal. i tested the ram in my current computer and it works. am i to assume that i fried the MOBO by altering the ram settings?
 

A:Computer won't post after i changed bios memory settings

perhaps you didn't fully reset the CMOS, i'd take the battery out for awhile. PC 3200 memory is the same as DDR 400 and it is supposed to run at 200 MHz.
 

Read other 3 answers
RELEVANCY SCORE 78

I have a TV that I've been connecting to my PC (Windows 7) via HDMI as a second monitor. Ever since I first plugged it in it's worked fine although the resolution has looked a little weird.

The weirdness got to me, so I pulled up the screen resolution settings on my computer and tried setting different resolutions. I hit "Apply" to test one and both screens began flickering and then I got a blue screen.

Now whenever I plug the TV back in to the PC, the monitor flickers, I see a warning message in the bottom right pop up (something about a driver being successfully restarted or something - sorry, hard to read while the screen is flickering), and it crashes.

I'd be totally fine getting it back to how it was before I meddled, but I just want it working again. Any thoughts? I can provide further info about the TV and such if necessary, but I'm inclined to believe this is a more generic issue.

Thank you so much!

A:Changed screen res settings to TV via HDMI, now crashes the computer.

Hi, and welcome to TSF, have you tried system restore, or system restore from safe mode, to go back to a point prior to your changes.

Read other 2 answers
RELEVANCY SCORE 78

Hi

I'm having problems with BOTH my computer now (I have another post relative to my laptop, but now my netbook is acting up to)

I have Windows xp Media center edition.

Firewall was turned off (not by me) I ran SB S&D and it found no problems BUT it is also not updating

I can't run Housecall as I get error messages, then it tells me there are several problems entries but cannot display any info on them.

Browser is running slooooooowwwww (I use firefox w/ABP)

I also have McAfee running, and its virus scan showed no problems, but somehting HAS to be wrong here.. This little computer used to zip around the internet, but now it's running slow and as I said, I can't tun at least TrendMicro's online scan

Here's the HJT log:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:37:37 AM, on 5/26/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\RTH... Read more

A:slow computer, settings being changed, other probs. (HJT included)

I have a post open for virus removal on both my laptop and my netbook (2 separate posts w/ HJT logs) well....

my laptop has a ! at the bottom of the screen that says "new x box detected" and I don't have an x box.

I do have wireless internet and I do have a password on it. I had this icon show up on the same computer in the past, but it went away, now it's back and at the same time that I seem to have some nasties in my system that I can't seem to remove (still waiting on some help on my prior posts about that)

WTF is this Xbox thing? Should/can I change my wireless pw? is there any pont in doing that until I get the system cleaned out?

Help please, I'm off work this week and actually have time to fix this stuff if possible. Thanks.
 

Read other 1 answers
RELEVANCY SCORE 78

First of all, my computer is a computer that I built myself.

It is running on a Shuttle motherboard with an Athlon 3000+ processor

1024 mb of ram (512, and two 256 dual channeled sticks)

128 mb 9200 video card

20 gig hard drive win xp pro

floppy/dvd-rw cd-rw drive

I changed some BIOS settings, such as the FSB because I wanted it higher, it was only at 130 i believe? My motherboard can support up to 400. I set it to 200 if i remember, i also changed the setting from optimal to expert so it can allow me to make the FSB higher.

i then saved the changes and it tried to reset itself but failed and i got a blank screen.... and yes i am sure that my video card is in the apg slot and connected properly to my monitor.

now whenever i turn it on, i jusst get the blank screen

i need to know how to past this... it seems that my hard drive only makes a little noise within the first couple seconds that i turn it on

now when i turn it off and turn it on, the power supply works, led lights come on, fans work, etc...hmmm

please let me know how i can fix my computer, any ideas at all would be great

edit: i made sure everything was attached (eg. hard drive to motherboard)...still doesnt work
 

A:changed BIOS settings - computer screen blank?

Read other 8 answers
RELEVANCY SCORE 77.2

I would love help as soon as possible as I am unsure of whether or not this problem is severe.
 
OS: Windows 8.1 Pro (WMC) x64
 
 
Symptoms: Noticed some very minor changes over time in the last few hours. Biggest change was that all hidden files were now hidden (before I had the setting to show hidden files). I can not enable "view hidden files", but can access them by typing it into the explorer bar.
 
After noticing a major lag when trying to open the Control Panel (did not open and took several attempts, explorer.exe kept on stalling and had to force restart), I looked through the files on my computer and went to C:\Users\[ME]\AppData\Local and found this text file: (scroll to the bottom for recent events):
 
BTServer.log http://pastebin.com/0wxHnYAH
 
After opening and viewing it, I became very cautious and disabled all drivers related to Bluetooth services and closed any related programs via Task Manager. (around 4:05pm)
 
I ran MBAM (Threat Scan) and still currently running BitDefender scan (Full system). MBAM found absolutely nothing, while BD is still scanning. I still do not have access to view hidden files. Control Panel is now able to open along with any other folder.
 
I'm not sure what caused this and I honestly do not know where to start. I wish I could be more detailed but this is all I've got at the moment, and if anyone can help, I would greatly appreciate it!
 
Thanks!
 
EDIT: WordPad.exe keeps on crashing a... Read more

A:Possible hijacked computer, scary log file found and changed settings.

Sorry for the double post, posting a speccy log: http://speccy.piriform.com/results/oNTNwBK8qEbZ8M1hTRckgmp
 

Read other 1 answers
RELEVANCY SCORE 76.4

PROBLEMS: (Persistent problems after using the tools are listed at the bottom of this post)1. Everytime I log in to my email account, the settings are already changed. 2. Everytime I visit antivirus sites, computer hangs.3. Everytime I turn the computer on, it hangs and I have to reboot it each time. 4. Aside from the malware symptoms, the most disturbing part of the problem is, someone knows what I'm doing on my computer. And he boldly tells me HE KNOWS. I tried the following malware tools:1. MalwareBytes Antimalware -- no threats detected2. SuperAntispyware -- 56 infections -- already removed3. Spybot Search and Destroy -- 3 or 6 persistent tracking cookies -- removed4. Advanced SystemCare -- still using, reports a number of infections occasionally, removed each time but doesn't seem to solve the problem(s)5. IOBitSecurity -- still using, reports a number of infections occasionally, removed each time but doesn't seem to solve the problem(s)I uninstalled the first three and kept the last two because they were the most convenient to use and if I kept too many malware tools, my computer runs extremely slow.I have also tried using the ff. intrusion detection/prevention systems: 1. With SNORT, I couldn't interpret the results displayed. 2. With SAX2, I have to manually find solutions to any detected intrusions, which was kind of tedious and a little confusing since I'm not that savvy in terms of computer security. Both were uninstalled because of user inconve... Read more

A:Settings changed mysteriously on email account, Computer hangs on boot

We need a deeper look. Please go here....Preparation Guide ,do steps 6 - 9.Create a DDS log and post it in the new topic explained in step 9,which is here Virus, Trojan, Spyware, and Malware Removal Logs and not in this topic,thanks.If Gmer won't run,skip it and move on.Let me know if that went well.

Read other 1 answers
RELEVANCY SCORE 72.4

So, ive heard of this virus called svchost, ive searched on it and even found a post in 2006, its 2011.In my opinion, no virus comes without a creator.
So anyway, like everyone else, when i sytart up my side of the computer, it says "Loading personalized setting for svchost or someting.
My destop icons, not even start bar, i restart my computer and try again and it pops up again.Ive read that it finally loads after 2-4 min. but i didnt wait that long, i just shut my computer off, im on my Dsi browser atm.I really need help, i know this has never happened before and i did nothing to cause it, Also theres been something called runner32.exe or something popping up every morning too, i ran it once and got CONSTANT virus attacks every min. all stopped by panda antivirus.Please tell me how to stop it

Note:
Tell me how this happened before you tell how to fix, i want to know if somehow i did something to cause it.
 

Read other answers
RELEVANCY SCORE 72

Hi,

I have recently had my laptop restored to factory defaults from Sony after the hardrive failed

but now when I try to update to Windows 8.1 as soon as I log in it is stuck on a black screen with a pop up box in the top left corner saying

Setting up personilzed settings

C:\Windows\SysWOW64\Rundll32.exe
C:\Windows\SysWOW64\mscories.dll.Install

All I can do is use ctrl + alt +delete to manually start programs using New task in Task Manager or shut down etc

I've resorted to resetting pc back to factory defaults to start again

Any ideas?

Sony Vaio
Model SVE14AJ15M
Intel Core i5
6GB RAM
Windows 8 Pro

Read other answers
RELEVANCY SCORE 70.4

Hello,

Thank you ahead of time, I have had problems with my computer that techs don't seem to be able to resolve, my computer had a virus one that redirects you to other pages from Google, one day I'm working on it and it just crashed, the computer would get a blue screen at the Login in all other than Safe mode (without network) I did a System Restore to a past date and I was able to get it working with Safe Mode and Safe Mode with Network, but Normal Mode would not work (I had no internet).

I hired an IT that remotely removed the virus, after that the computer will not pass the black screen with windows logo it just shuts down and restart, I did a system restore with the factory image, but it does the same thing.

Please help, Thank you so much!

A:Computer won't start after restore of factory settings

Run startup repair.

Startup Repair

Read other 7 answers
RELEVANCY SCORE 70.4

I was infected with Vundo and my norton is able to remove it but it will come back again after my next boot up.

However for a few weeks now there seem to be no news of the Vundo but my com had become incredibly slow. From startup (stay at the black loading screen for longer then a min) to shutting down(took more then 1 min to save the the user setting before shut down). Also my com will hang for at least 3 min after i log in,waiting for the MSN to load.

Most importantly i received an alert from my spywareguard that an attempt to change my IE settings had being detected everytime i start my com. Btw i can't open my IE too

**********************************************
The following BHO has been added to your system:
{5F86F65A-B99D-4804-8A06-D1C0012C3121}

ProgID: n/a
File Location: D:\WINDOWS\system32\ssqpn.dll

**************************************

The whole computer system is currently very slow, even opening simple programs need a bit of time. I hope you can help me out here as i am at my wits end. Thank you

*update 30 min after i post this, trojan.vundo appeared again after norton fixed it and requested me to restart my com.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 6:06:45 PM, on 2/6/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WIN... Read more

A:IE settings being change at start up and computer is too slow

Read other 16 answers
RELEVANCY SCORE 69.2

computer only seeing itself on the network not the others.
 

A:?? settings changed??

Read other 6 answers
RELEVANCY SCORE 69.2

My PC is hard-wired to the router, and the router DNS settings are for OpenDNS (208.67.222.222). Two days ago, everything was fine, then yesterday when I switched on my PC, it wouldn't connect to the internet. The router was working OK.

With the help of my ISP, I found that the DNS setting in the computer was for a specific address, not "automatic". Having reset that to automatic, it's fine again, but my question is - how could the DNS setting in the PC have changed, apparently by itself?

I can't tell you the specific address which was in there, because I didn't think to write it down, and now the field is blank, but I think it may have started 177....
Tech Support Guy System Info Utility version 1.0.0.2
OS Version: Microsoft Windows 7 Home Premium, Service Pack 1, 32 bit
Processor: Intel(R) Pentium(R) 4 CPU 3.40GHz, x86 Family 15 Model 4 Stepping 1
Processor Count: 1
RAM: 3062 Mb
Graphics Card: Intel(R) 82915G/GV/910GL Express Chipset Family (Microsoft Corporation - XDDM), 3 Mb
Hard Drives: C: Total - 941562 MB, Free - 791041 MB;
Motherboard: Dell Inc., 0T4649
Antivirus: COMODO Antivirus, Updated and Enabled
 

A:Someone changed my DNS settings?

Read other 9 answers
RELEVANCY SCORE 69.2

when i start my computer it wont load windows, I get a message cpu changed cpu ratio10 changed fail re-enter cpu settings, press f8 enable system config, f9 Booting device after post, f1 to continue, del to enter setup. I usually press f1 to continue because i dont know what else to do i have enterd the setup and dont want to touch anything incase i wreck something. when i continue my time and date are always wrong, It always says jan 1st 2004 and the time is always 12.00am. can anybody tell me how to fix this problem? I went out and bought a new battery thinking that might be the reason but since installing it nothing has changed.
 

A:cpu settings changed

Read other 8 answers
RELEVANCY SCORE 69.2

I had to do an XP repair install. After doing it, all my desktop settings had changed and most of my programs were gone...or so I thought.

What has happened is that in "Documents and Settings" , a new user folder has been created "bullseye.NET1". The original folder "bullseye" is still there, along with all my programs that I thought were gone, and all of my setting, etc.

So when I boot the system, I am "Bullseye", but XP is loading to the new "bullseye.NET1" folder and settings instead of the "bullseye" folder and settings that it used to load before I did the repair install.....

Any ideas how to get XP to go back to the original folder?

Thanks in advance.

Bullseye
 

A:XP settings have changed

Read other 8 answers
RELEVANCY SCORE 69.2

Hey everyone. First, thanks in advance for any possible help that you can offer. This problem started just last night. I was browsing a few tabbed websites last night while watching TV, and I turned away from my laptop. I turned back when I noticed that IE pop-ups started firing off pretty rapidly, maybe two or three a minute. I closed out Firefox and when I started it again, an AVG search bar (wasn't there before) was on my browser. That's the only change that I noticed with Firefox. IE pop-ups were still firing pretty frequently. I've restarted my laptop as well, and now AVG is eating up my CPU to 100% almost the entire time. The IE pop-ups are not appearing anymore, but it's only been maybe a half hour since the restart, so I won't neglect to mention it. I've since used HijackThis and removed one or two things that a friend of mine recommended, but I got nervous and decided to go to a forum instead for help.

EDIT: Oops, forgot to mention the AVG settings part. Now when I open AVG from my toolbar, there's no anti-spyware, no services at all showing. I try to start a scan, but the button does nothing to initialize a scan.

DDS (Ver_09-03-16.01) - NTFSx86
Run by John Martinovich at 15:56:49.57 on Sat 04/25/2009
Internet Explorer: 6.0.2900.5512 BrowserJavaVersion: 1.6.0_03
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.2046.1269 [GMT -5:00]

AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated)

============== Running Processes ==========... Read more

A:IE Pop-ups and AVG settings changed

Hello, my name is fenzodahl512 and welcome to Bleeping Computer.. Please do the following....Please download The Comedian.exe to your desktopDouble click the program to run it. It will only take around several minutes to run.It will do a series of tasks and tell you when each one is finished.You will be prompted to press any key after each stepWhen it is done it will close and exit itself automatically.You can delete The_Comedian.exe once it is finishedNEXTPlease download Malwarebytes' Anti-Malware from HERE or HERENote: If you already have Malwarebytes' Anti-Malware, just run and update it.. Then do a "Perform Full Scan"Double Click mbam-setup.exe to install the application.Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.If an update is found, it will download and install the latest version.Once the program has loaded, select "Perform Full Scan", then click Scan.The scan may take some time to finish,so please be patient.When the scan is complete, click OK, then Show Results to view the results.Make sure that everything is checked, and click Remove Selected.When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.Copy&Paste the entire report in your next reply.Extra Note:If MBAM encounters a file that is difficult to remove,you wi... Read more

Read other 2 answers
RELEVANCY SCORE 69.2

Hi all
Can anyone help i switched my P.C off for the first time in weeks, and on starting it up i had a warning saying CPU settings may have been changed reset the CPU setting in the comos and save. can anyone tell me what this is. i then booted up in the last knowing safe restore point and it seems to be ok but have not switched it off since.
 

A:cpu settings changed

The CPU has changed messages usually pops up on ASUS motherboards and in many cases for no reason; its a glitch that ASUS is aware of. It can also happen if the power is lost or if the system is turned off while in the early stages of bootup. Go into the BIOS setup, usually DEL or F1 and then Save and Exit to clear the message. Generally there's no need to change anything. This is not linked to Windows in any way.
 

Read other 1 answers
RELEVANCY SCORE 69.2

On boot up, I get the message "CPU Settings have been changed ... press F1 to continue" which starts the computer ok

What do I have to do to rectify the problem, and is it preventing me from using all aspects of the computer ?

Thanks

Mike
XP Pro, 700 Mhz, 256 RAM, Epox M/board
 

Read other answers