Trouble deleting windir32.exe

Posted 5/24/2008 9:13 PM
#62365
User avatar

Dice Member

Date Joined Nov 2016
Total Posts: 2
Hello :smile: <br/>I'd really appreciate if someone could help me - I can't delete windir32.exe file. I follow all the instructions to remove it, but nothing seems to work. I fix problems (not sure if all) using "HijackThis" and delete windir32.exe file with "KillBox" (in Safe mode) but every time I reboot, windir32.exe reappears. <br/>By the way, "tot.exe" file can be found in my Local Disk (C), even though I have never installed it. I delete this file every time I turn my computer on, but it reappears after every restart, just like windir32.exe (and some other files - mirc.ini, secus16.exe, windir32.zip, WMM2RE2.dll, WMM2RE3.dll, WMM2RE4.dll and shortcut to "gm2re1"). <br/>Thanks in advance for any help :) <br/> <br/>This is my HijackThis log: <br/> <br/>Logfile of HijackThis v1.99.1 <br/>Scan saved at 00:04:39, on 2008.05.25 <br/>Platform: Windows 2003 SP2 (WinNT 5.02.3790) <br/>MSIE: Internet Explorer v7.00 (7.00.6000.16640) <br/> <br/>Running processes: <br/>C:\WINDOWS\System32\smss.exe <br/>C:\WINDOWS\system32\winlogon.exe <br/>C:\WINDOWS\system32\services.exe <br/>C:\WINDOWS\system32\lsass.exe <br/>C:\WINDOWS\system32\svchost.exe <br/>C:\Program Files\Windows Defender\MsMpEng.exe <br/>C:\WINDOWS\System32\svchost.exe <br/>C:\WINDOWS\system32\spoolsv.exe <br/>C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe <br/>C:\WINDOWS\system32\CTsvcCDA.exe <br/>C:\WINDOWS\System32\svchost.exe <br/>C:\Program Files\Ahead\InCD\InCDsrv.exe <br/>C:\WINDOWS\system32\optmouse.exe <br/>C:\WINDOWS\system32\RUNDLL32.EXE <br/>C:\Program Files\Ahead\InCD\InCD.exe <br/>C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe <br/>C:\WINDOWS\SOUNDMAN.EXE <br/>C:\WINDOWS\system32\rundll32.exe <br/>C:\Program Files\Windows Defender\MSASCui.exe <br/>C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe <br/>C:\Program Files\QuickTime\qttask.exe <br/>C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe <br/>C:\WINDOWS\system32\ctfmon.exe <br/>C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe <br/>C:\Program Files\Skype\Phone\Skype.exe <br/>C:\WINDOWS\System32\svchost.exe <br/>C:\WINDOWS\System32\svchost.exe <br/>C:\WINDOWS\explorer.exe <br/>C:\Program Files\Skype\Plugin Manager\skypePM.exe <br/>C:\Program Files\Opera\Opera.exe <br/>C:\Program Files\Hijack this\HijackThis.exe <br/> <br/>O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll <br/>O2 - BHO: (no name) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - (no file) <br/>O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll <br/>O2 - BHO: (no name) - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - (no file) <br/>O4 - HKLM\..\Run: [OPTMOUSEMOUSE] C:\WINDOWS\system32\optmouse.exe <br/>O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup <br/>O4 - HKLM\..\Run: [nwiz] nwiz.exe /install <br/>O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit <br/>O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe <br/>O4 - HKLM\..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe <br/>O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" <br/>O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE <br/>O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide <br/>O4 - HKLM\..\Run: [OrderReminder] C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe <br/>O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime <br/>O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized <br/>O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u <br/>O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe <br/>O4 - HKCU\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe <br/>O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\nbj.exe" <br/>O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe <br/>O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized <br/>O4 - Startup: MagicDisc.lnk = C:\Program Files\MagicDisc\MagicDisc.exe <br/>O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe <br/>O4 - Global Startup: IDW Logging Tool.lnk = C:\WINDOWS\idwlog.exe <br/>O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE <br/>O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - <br/>O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL <br/>O20 - Winlogon Notify: dimsntfy - C:\WINDOWS\SYSTEM32\dimsntfy.dll <br/>O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe <br/>O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe <br/>O23 - Service: HighPoint Storage Management Service (hptsvr) - Unknown owner - C:\Program Files\HighPoint Technologies, Inc.\HighPoint Storage Management Software\service\hptsvr.exe <br/>O23 - Service: InCD Helper (InCDsrv) - Ahead Software AG - C:\Program Files\Ahead\InCD\InCDsrv.exe <br/>O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
Posted 5/25/2008 5:42 AM
#62369
User avatar

Touch Advanced member

Date Joined Nov 2016
Total Posts: 12976
Hello :smile: <br/> <br/> <br/> <br/><SPAN class=postbody><SPAN lang=EN-GB style="COLOR: black; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-family: Tahoma; mso-ansi-language: EN-GB">Please download Combofix:<?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" /><o:p></o:p> <br/> <br/><SPAN lang=EN-US style="FONT-SIZE: 9pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-size: 11.0pt">[color=#222222][2]http://download.bleepingcomputer.com/sUBs/ComboFix.exe[/2][/color]<o:p></o:p> <br/> <br/><SPAN lang=EN-US style="FONT-SIZE: 9pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-size: 11.0pt"><o:p>[2] [/2]</o:p> <br/> <br/><SPAN lang=EN-GB style="FONT-SIZE: 9pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-ansi-language: EN-GB; mso-bidi-font-size: 11.0pt"><o:p>[2] [/2]</o:p> <br/> <br/><SPAN class=postbody><SPAN lang=EN-GB style="COLOR: black; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-family: Tahoma; mso-ansi-language: EN-GB">And save to the desktop.<o:p></o:p> <br/><SPAN lang=EN-GB style="FONT-SIZE: 9pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-ansi-language: EN-GB; mso-bidi-font-size: 11.0pt"> <br/> <br/><SPAN lang=EN style="FONT-SIZE: 9pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-ansi-language: EN; mso-bidi-font-size: 11.0pt">[2]Close all other browser windows.<o:p></o:p>[/2] <br/> <br/><SPAN lang=EN style="FONT-SIZE: 9pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-ansi-language: EN; mso-bidi-font-size: 11.0pt"><o:p>[2] [/2]</o:p> <br/> <br/>[2]<SPAN lang=EN-US style="FONT-SIZE: 9pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-family: Arial; mso-bidi-font-size: 10.0pt">Please connect all your external hard drive/flash drive before running Combofix<SPAN lang=EN-US style="FONT-SIZE: 9pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-size: 11.0pt"><o:p></o:p>[/2] <br/> <br/><SPAN lang=EN style="FONT-SIZE: 9pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-ansi-language: EN; mso-bidi-font-size: 11.0pt"><o:p>[2] [/2]</o:p> <br/> <br/><SPAN lang=EN style="FONT-SIZE: 9pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-ansi-language: EN; mso-bidi-font-size: 11.0pt"><o:p>[2] [/2]</o:p> <br/> <br/><SPAN lang=EN style="FONT-SIZE: 9pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-ansi-language: EN; mso-bidi-font-size: 11.0pt"><o:p>[2] [/2]</o:p> <br/> <br/>[2]<SPAN lang=EN style="FONT-SIZE: 9pt; COLOR: red; FONT-FAMILY: 'Verdana','sans-serif'; mso-ansi-language: EN; mso-bidi-font-size: 11.0pt">Important-><SPAN lang=EN style="FONT-SIZE: 9pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-ansi-language: EN; mso-bidi-font-size: 11.0pt"> Temporarily disable your anti-virus, real-time protection before performing a scan. They can interfere with combofix or remove some of its embedded files which may cause "unpredictable results".<o:p></o:p>[/2] <br/> <br/><SPAN lang=EN-GB style="FONT-SIZE: 9pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-ansi-language: EN-GB; mso-bidi-font-size: 11.0pt"><o:p>[2] [/2]</o:p> <br/> <br/><SPAN lang=EN-GB style="FONT-SIZE: 9pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-ansi-language: EN-GB; mso-bidi-font-size: 11.0pt"><o:p>[2] [/2]</o:p> <br/> <br/><SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: black; FONT-FAMILY: 'Verdana','sans-serif'">[2]Go to Start->Run and copy/paste: ComboFix /snapshot and hit OK. It should run Combofix.<o:p></o:p>[/2] <br/> <br/><SPAN lang=EN-GB style="FONT-SIZE: 9pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-ansi-language: EN-GB"><o:p>[2] [/2]</o:p> <br/> <br/><B style="mso-bidi-font-weight: normal"><SPAN lang=EN-GB style="FONT-SIZE: 9pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-ansi-language: EN-GB; mso-bidi-font-size: 11.0pt">[2]Please note, that once you start combofix you should not click anywhere on the combofix window as it can cause the program to stall. In fact, when combofix is running, do not touch your computer at all and just take a break as it may take a while for it to complete.<o:p></o:p>[/2]</B> <br/><SPAN lang=EN-GB style="FONT-SIZE: 9pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-ansi-language: EN-GB; mso-bidi-font-size: 11.0pt"> <br/> <br/><SPAN class=postbody><SPAN lang=EN-GB style="COLOR: black; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-family: Tahoma; mso-ansi-language: EN-GB"><SPAN style="mso-spacerun: yes"> When finished, it will produce a logfile located at C:\combofix.txt.<o:p></o:p> <br/> <br/><SPAN class=postbody><SPAN lang=EN-GB style="COLOR: black; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-family: Tahoma; mso-ansi-language: EN-GB"><o:p> </o:p> <br/><SPAN lang=EN-GB style="FONT-SIZE: 9pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-ansi-language: EN-GB; mso-bidi-font-size: 11.0pt"> <br/> <br/><SPAN class=postbody><SPAN lang=EN-GB style="COLOR: black; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-family: Tahoma; mso-ansi-language: EN-GB">Post the contents of that log in your next reply with a new hijackthis log.<o:p></o:p> <br/> <br/><SPAN class=postbody><SPAN lang=EN-GB style="COLOR: black; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-family: Tahoma; mso-ansi-language: EN-GB"><o:p> </o:p> <br/> <br/>[2]<SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #222222; LINE-HEIGHT: 160%; FONT-FAMILY: 'Verdana','sans-serif'">Please copy and paste your log files. <SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: red; LINE-HEIGHT: 160%; FONT-FAMILY: 'Verdana','sans-serif'">DO NOT add it as an attachment<SPAN lang=EN-US style="FONT-SIZE: 9pt; COLOR: #222222; LINE-HEIGHT: 160%; FONT-FAMILY: 'Verdana','sans-serif'"><o:p></o:p>[/2] <br/><SPAN lang=EN-GB style="FONT-SIZE: 9pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-ansi-language: EN-GB; mso-bidi-font-size: 11.0pt"> <br/> <br/><BR style="mso-special-character: line-break"><BR style="mso-special-character: line-break"> <br/><SPAN class=postbody><SPAN lang=EN-GB style="COLOR: black; FONT-FAMILY: 'Verdana','sans-serif'; mso-bidi-font-family: Tahoma; mso-ansi-language: EN-GB"><o:p></o:p> <br/>[2]<SPAN lang=EN-GB style="FONT-SIZE: 9pt; COLOR: red; FONT-FAMILY: 'Verdana','sans-serif'; mso-ansi-language: EN-GB; mso-bidi-font-size: 11.0pt">NB. <SPAN lang=EN-GB style="FONT-SIZE: 9pt; FONT-FAMILY: 'Verdana','sans-serif'; mso-ansi-language: EN-GB; mso-bidi-font-size: 11.0pt">If you are using any P2P (file sharing) programs, please remove them before we clean your computer.<SPAN class=postbody1><SPAN lang=EN-GB style="FONT-SIZE: 9pt; COLOR: black; FONT-FAMILY: 'Verdana','sans-serif'; LETTER-SPACING: 0pt; mso-bidi-font-family: Tahoma; mso-ansi-language: EN-GB">. We do not clean logs that have P2P applications installed as this can cause reinfection during your cleaning.<SPAN class=postbody1><SPAN lang=EN-GB style="FONT-SIZE: 9pt; FONT-FAMILY: 'Verdana','sans-serif'; LETTER-SPACING: 0pt; mso-bidi-font-family: Tahoma; mso-ansi-language: EN-GB"><o:p></o:p>[/2]

[color=black face="Courier New" sab="311">[2]Click here: Before-posting-a-log[/2][/url]

<?xml:namespace prefix = o ns = "urn:schemas-microsoft-com:office:office" />
[/color]
Do not PM me with logfiles. They will be deleted.


Posted 5/25/2008 12:33 PM
#62392
User avatar

Dice Member

Date Joined Nov 2016
Total Posts: 2
Thanks for taking the time to help :smile: <br/>I couldn't open ComboFix through Start->Run->ComboFix /snapshot. It said "Windows cannot find ComboFix". I clicked on the file on desktop and I was shown a message that ComboFix can only run on Windows 2000 and XP (Don't know if it's really true?). I have Windows 2003. <br/>Anyway, yesterday I updated my NOD32 antivirus program and it found "a variant of Win32/AutoRun.KS worm" here: c:\recycler\s-1-5-21-1482476501-1644491937-682003330-1013\ise32.exe. I deleted it along with windir32.exe (it was in C:\WINDOWS\system32) and all its associated files. I also ran CCleaner. After the restart everything was normal and windir32.exe with all its other files didn't reappear. So maybe everything's ok now? <br/> <br/>Please take a look at my fresh HijackThis log: <br/> <br/>Logfile of HijackThis v1.99.1 <br/>Scan saved at 15:25:49, on 2008.05.25 <br/>Platform: Windows 2003 SP2 (WinNT 5.02.3790) <br/>MSIE: Internet Explorer v7.00 (7.00.6000.16640) <br/> <br/>Running processes: <br/>C:\WINDOWS\System32\smss.exe <br/>C:\WINDOWS\system32\winlogon.exe <br/>C:\WINDOWS\system32\services.exe <br/>C:\WINDOWS\system32\lsass.exe <br/>C:\WINDOWS\system32\svchost.exe <br/>C:\Program Files\Windows Defender\MsMpEng.exe <br/>C:\WINDOWS\System32\svchost.exe <br/>C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe <br/>C:\WINDOWS\system32\spoolsv.exe <br/>C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe <br/>C:\WINDOWS\system32\CTsvcCDA.exe <br/>C:\WINDOWS\System32\svchost.exe <br/>C:\Program Files\Ahead\InCD\InCDsrv.exe <br/>C:\WINDOWS\Explorer.EXE <br/>C:\Program Files\Eset\nod32krn.exe <br/>C:\WINDOWS\system32\optmouse.exe <br/>C:\WINDOWS\system32\RUNDLL32.EXE <br/>C:\WINDOWS\system32\rundll32.exe <br/>C:\Program Files\Ahead\InCD\InCD.exe <br/>C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe <br/>C:\WINDOWS\SOUNDMAN.EXE <br/>C:\Program Files\Windows Defender\MSASCui.exe <br/>C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe <br/>C:\WINDOWS\system32\ctfmon.exe <br/>C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe <br/>C:\Program Files\Skype\Phone\Skype.exe <br/>C:\WINDOWS\System32\svchost.exe <br/>C:\WINDOWS\System32\svchost.exe <br/>C:\Program Files\MagicDisc\MagicDisc.exe <br/>C:\Program Files\Skype\Plugin Manager\skypePM.exe <br/>C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe <br/>C:\Program Files\Eset\nod32kui.exe <br/>C:\Program Files\Opera\Opera.exe <br/>C:\Program Files\Hijack this\HijackThis.exe <br/> <br/>O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll <br/>O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll <br/>O4 - HKLM\..\Run: [OPTMOUSEMOUSE] C:\WINDOWS\system32\optmouse.exe <br/>O4 - HKLM\..\Run: [nwiz] nwiz.exe /install <br/>O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit <br/>O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe <br/>O4 - HKLM\..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe <br/>O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" <br/>O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE <br/>O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide <br/>O4 - HKLM\..\Run: [OrderReminder] C:\Program Files\Hewlett-Packard\OrderReminder\OrderReminder.exe <br/>O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized <br/>O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE <br/>O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe <br/>O4 - HKCU\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe <br/>O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\nbj.exe" <br/>O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe <br/>O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized <br/>O4 - Startup: MagicDisc.lnk = C:\Program Files\MagicDisc\MagicDisc.exe <br/>O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe <br/>O4 - Global Startup: IDW Logging Tool.lnk = C:\WINDOWS\idwlog.exe <br/>O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE <br/>O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL <br/>O20 - Winlogon Notify: dimsntfy - C:\WINDOWS\SYSTEM32\dimsntfy.dll <br/>O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe <br/>O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe <br/>O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe <br/>O23 - Service: HighPoint Storage Management Service (hptsvr) - Unknown owner - C:\Program Files\HighPoint Technologies, Inc.\HighPoint Storage Management Software\service\hptsvr.exe <br/>O23 - Service: InCD Helper (InCDsrv) - Ahead Software AG - C:\Program Files\Ahead\InCD\InCDsrv.exe <br/>O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe <br/>O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
  • Unread posts or replies
  • No unread posts or replies
  • Unread Posts (Read Only Forum)
  • No Unread Posts (Read Only Forum)

Forum Information

Currently it is Sunday, December 11, 2016, 3:24 AM (GMT +1)
There are a total of 61,164 posts in 13,450 threads.
In the last 3 days there were 1 new threads and 4 reply posts.

Who's online

This forum has 37,970 registered members. Please welcome our newest member, MJD.
There are currently no users on-line.