As I wake up toady morning I see my Windows was shutdown with the following message on black background screen:
A problem has been detected and windows has been shut down to prevent damage to your computer.
If this is the first time you have seen this stop screen,restart your computer.if this screen appears again,follow these steps.
Check to be sure you have adequate disck space.If a driver is identified in the stop message,disable the driver or check with manufacturer for driver upadtes.Try changing video adapters.
Check with your harware vendor for any BIOS upadtes.Disable BIOS memory options such as caching or shadowing.If you need to use the safe mode to remove or disable components,press F8 to select adavnce startup options,and then select safe mode.
Technical Information:
***STOP:0x0000008E(0x0000005,0xBF802F96,0xF29EFC14,0x00000000)
***win32k.Sys-Address BF802F96 base at BF800000,Date Stamp 00000000
Beginning Dump of Physical Memory
Please note that after that I run AOL Spyware in Safe Mode which did not show anything,later as a preventive step,I shutdown to take out an additional AZEN RAM PC133-128MB from slot#1 which was defunct inside there for few days to check possibility of increasing RAM.I left original INTEL specified Kingston RAM in slot#0.
Further note that yesterday and last night I kept trying to add Sympatico E-mail in Outlook Express which is running very well for our 2 hotmail addresses.
I kept Outlook Express in Permit All Configuartion of Nortron Antivirus.
I think I must run HJT and will post log for your kind tech review and suggestions.
Logfile of HijackThis v1.99.1
Scan saved at 1:11:04 PM, on 7/1/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\Explorer.EXE
D:\WINDOWS\system32\spoolsv.exe
D:\Program Files\Common Files\Real\Update_OB\realsched.exe
D:\WINDOWS\system32\wfxsnt40.exe
D:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe
D:\Program Files\MSN
Apps\Updater\01.02.3000.1001\en-us\msnappau.exe
D:\Program Files\QuickTime\qttask.exe
D:\WINDOWS\System32\igfxtray.exe
D:\WINDOWS\System32\hkcmd.exe
D:\PROGRA~1\COMMON~1\AOL\ACS\AOLACSD.EXE
D:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
D:\Program Files\Norton Internet Security\IAMAPP.EXE
D:\PROGRA~1\NORTON~2\navapw32.exe
D:\WINDOWS\system32\rkmpkk.exe
D:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
D:\Program Files\Adobe\Acrobat 7.0\Distillr\AcroDist.exe
D:\Program Files\hotfoon4.exe
D:\Program Files\ewido\security suite\ewidoctrl.exe
D:\Program Files\AOL Companion\companion.exe
D:\Program Files\ewido\security suite\ewidoguard.exe
C:\Program Files\WinZip\WZQKPICK.EXE
D:\Program Files\Norton Antivirus\navapsvc.exe
D:\Program Files\Norton Internet Security\NISUM.EXE
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Norton Internet Security\SymProxySvc.exe
D:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
D:\WINDOWS\system32\WFXSVC.EXE
D:\Program Files\Norton Internet Security\NISSERV.EXE
D:\Program Files\Symantec\WinFax\WFXMOD32.EXE
D:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Adobelm_Cleanup.0001
D:\Program Files\Common Files\Adobe Systems
Shared\Service\Adobelmsvc.exe
D:\WINDOWS\system32\wscntfy.exe
D:\COMPROB\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start
Page =
http://groups-beta.google.com/group/24hoursupport.helpdesk
O2 - BHO: Google Toolbar Helper -
{AA58ED58-01DD-4d91-8333-CF10577473F7} - d:\program
files\google\googletoolbar1.dll
O2 - BHO: NAV Helper -
{BDF3E430-B101-42AD-A544-FADC6B084872} - D:\Program
Files\Norton Antivirus\NavShExt.dll
O3 - Toolbar: &Google -
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - d:\program
files\google\googletoolbar1.dll
O3 - Toolbar: Norton AntiVirus -
{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - D:\Program
Files\Norton Antivirus\NavShExt.dll
O4 - HKLM\..\Run: [TkBellExe] "D:\Program Files\Common
Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [WinFaxAppPortStarter] wfxsnt40.exe
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "D:\Program
Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [msnappau] "D:\Program Files\MSN
Apps\Updater\01.02.3000.1001\en-us\msnappau.exe"
O4 - HKLM\..\Run: [QuickTime Task] "D:\Program
Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Symantec NetDriver Monitor]
D:\PROGRA~1\SYMNET~1\SNDMon.exe
O4 - HKLM\..\Run: [IgfxTray]
D:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds]
D:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [DownloadAccelerator]
D:\PROGRA~1\DAP\DAP.EXE /STARTUP
O4 - HKLM\..\Run: [CallControl 4.5] D:\Program
Files\FaxTalk Communicator\FTCtrl32.exe /autoload
O4 - HKLM\..\Run: [AOL Spyware Protection]
"D:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
O4 - HKLM\..\Run: [iamapp] D:\Program Files\Norton
Internet Security\IAMAPP.EXE
O4 - HKLM\..\Run: [NAV Agent]
D:\PROGRA~1\NORTON~2\navapw32.exe
O4 - HKLM\..\Run: [KavSvc] D:\WINDOWS\system32\rkmpkk.exe
reg_run
O4 - HKLM\..\Run: [SunJavaUpdateSched] D:\Program
Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [KernelFaultCheck]
%systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [msnmsgr] "D:\Program Files\MSN
Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] D:\Program
Files\Yahoo!\Messenger\ypager.exe -quiet
O4 - HKCU\..\Run: [Babylon Translator] D:\Program
Files\Babylon\Babylon.exe
O4 - HKCU\..\Run: [HOTFOON2] D:\Program Files\hotfoon4.exe
/h
O4 - Global Startup: AOL Companion.lnk = D:\Program
Files\AOL Companion\companion.exe
O4 - Global Startup: AOL 9.0 Tray Icon.lnk = D:\Program
Files\AOL 9.0a\aoltray.exe
O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program
Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &Google Search -
res://D:\Program
Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word -
res://D:\Program
Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links -
res://D:\Program
Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page -
res://D:\Program
Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Convert link target to Adobe
PDF - res://D:\Program Files\Adobe\Acrobat
7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert link target to
existing PDF - res://D:\Program Files\Adobe\Acrobat
7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert selected links to
Adobe PDF - res://D:\Program Files\Adobe\Acrobat
7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert selected links to
existing PDF - res://D:\Program Files\Adobe\Acrobat
7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Convert selection to Adobe
PDF - res://D:\Program Files\Adobe\Acrobat
7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert selection to
existing PDF - res://D:\Program Files\Adobe\Acrobat
7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert to Adobe PDF -
res://D:\Program Files\Adobe\Acrobat
7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert to existing PDF -
res://D:\Program Files\Adobe\Acrobat
7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: E&xport to Microsoft Excel -
res://D:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages -
res://D:\Program
Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English
- res://D:\Program
Files\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) -
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program
Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java Console -
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program
Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Messenger -
{4528BBE0-4E08-11D5-AD55-00010333D0AD} - D:\Program
Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger -
{4528BBE0-4E08-11D5-AD55-00010333D0AD} - D:\Program
Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra button: AOL Toolbar -
{4982D40A-C53B-4615-B15B-B5B5E98D167C} - D:\Program
Files\AOL Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: AOL Toolbar -
{4982D40A-C53B-4615-B15B-B5B5E98D167C} - D:\Program
Files\AOL Toolbar\toolbar.dll
O9 - Extra button: Research -
{92780B25-18CC-41C8-B9BE-3C9C571A8263} -
D:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Share in Hello -
{B13B4423-2647-4cfc-A4B3-C7D56CB83487} - D:\Program
Files\Hello\PicasaCapture.dll
O9 - Extra 'Tools' menuitem: Share in H&ello -
{B13B4423-2647-4cfc-A4B3-C7D56CB83487} - D:\Program
Files\Hello\PicasaCapture.dll
O9 - Extra button: Messenger -
{FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program
Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger -
{FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program
Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: D:\Program Files\Internet
Explorer\Plugins\NPDocBox.dll
O20 - Winlogon Notify: igfxcui -
D:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: Adobe LM Service - Adobe Systems -
D:\Program Files\Common Files\Adobe Systems
Shared\Service\Adobelmsvc.exe
O23 - Service: AOL Connectivity Service (AOL ACS) -
America Online, Inc. -
D:\PROGRA~1\COMMON~1\AOL\ACS\AOLACSD.EXE
O23 - Service: AOL Spyware Protection Service (AOLService)
- Unknown owner -
D:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\\aolserv.exe
O23 - Service: ewido security suite control - ewido
networks - D:\Program Files\ewido\security
suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks
- D:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: Norton AntiVirus Auto Protect Service
(navapsvc) - Symantec Corporation - D:\Program
Files\Norton Antivirus\navapsvc.exe
O23 - Service: Norton Internet Security Service (NISSERV)
- Symantec Corporation - D:\Program Files\Norton Internet
Security\NISSERV.EXE
O23 - Service: Norton Internet Security Accounts Manager
(NISUM) - Symantec Corporation - D:\Program Files\Norton
Internet Security\NISUM.EXE
O23 - Service: ScriptBlocking Service (SBService) -
Symantec Corporation -
D:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc)
- Symantec Corporation - D:\Program Files\Common
Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Norton Internet Security Proxy Service
(SymProxySvc) - Symantec Corporation - D:\Program
Files\Norton Internet Security\SymProxySvc.exe
O23 - Service: WinFax PRO (wfxsvc) - Symantec Corporation
- D:\WINDOWS\system32\WFXSVC.EXE
A problem has been detected and windows has been shut down to prevent damage to your computer.
If this is the first time you have seen this stop screen,restart your computer.if this screen appears again,follow these steps.
Check to be sure you have adequate disck space.If a driver is identified in the stop message,disable the driver or check with manufacturer for driver upadtes.Try changing video adapters.
Check with your harware vendor for any BIOS upadtes.Disable BIOS memory options such as caching or shadowing.If you need to use the safe mode to remove or disable components,press F8 to select adavnce startup options,and then select safe mode.
Technical Information:
***STOP:0x0000008E(0x0000005,0xBF802F96,0xF29EFC14,0x00000000)
***win32k.Sys-Address BF802F96 base at BF800000,Date Stamp 00000000
Beginning Dump of Physical Memory
Please note that after that I run AOL Spyware in Safe Mode which did not show anything,later as a preventive step,I shutdown to take out an additional AZEN RAM PC133-128MB from slot#1 which was defunct inside there for few days to check possibility of increasing RAM.I left original INTEL specified Kingston RAM in slot#0.
Further note that yesterday and last night I kept trying to add Sympatico E-mail in Outlook Express which is running very well for our 2 hotmail addresses.
I kept Outlook Express in Permit All Configuartion of Nortron Antivirus.
I think I must run HJT and will post log for your kind tech review and suggestions.
Logfile of HijackThis v1.99.1
Scan saved at 1:11:04 PM, on 7/1/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
D:\WINDOWS\System32\smss.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\WINDOWS\Explorer.EXE
D:\WINDOWS\system32\spoolsv.exe
D:\Program Files\Common Files\Real\Update_OB\realsched.exe
D:\WINDOWS\system32\wfxsnt40.exe
D:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe
D:\Program Files\MSN
Apps\Updater\01.02.3000.1001\en-us\msnappau.exe
D:\Program Files\QuickTime\qttask.exe
D:\WINDOWS\System32\igfxtray.exe
D:\WINDOWS\System32\hkcmd.exe
D:\PROGRA~1\COMMON~1\AOL\ACS\AOLACSD.EXE
D:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
D:\Program Files\Norton Internet Security\IAMAPP.EXE
D:\PROGRA~1\NORTON~2\navapw32.exe
D:\WINDOWS\system32\rkmpkk.exe
D:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
D:\Program Files\Adobe\Acrobat 7.0\Distillr\AcroDist.exe
D:\Program Files\hotfoon4.exe
D:\Program Files\ewido\security suite\ewidoctrl.exe
D:\Program Files\AOL Companion\companion.exe
D:\Program Files\ewido\security suite\ewidoguard.exe
C:\Program Files\WinZip\WZQKPICK.EXE
D:\Program Files\Norton Antivirus\navapsvc.exe
D:\Program Files\Norton Internet Security\NISUM.EXE
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Norton Internet Security\SymProxySvc.exe
D:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
D:\WINDOWS\system32\WFXSVC.EXE
D:\Program Files\Norton Internet Security\NISSERV.EXE
D:\Program Files\Symantec\WinFax\WFXMOD32.EXE
D:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Adobelm_Cleanup.0001
D:\Program Files\Common Files\Adobe Systems
Shared\Service\Adobelmsvc.exe
D:\WINDOWS\system32\wscntfy.exe
D:\COMPROB\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start
Page =
http://groups-beta.google.com/group/24hoursupport.helpdesk
O2 - BHO: Google Toolbar Helper -
{AA58ED58-01DD-4d91-8333-CF10577473F7} - d:\program
files\google\googletoolbar1.dll
O2 - BHO: NAV Helper -
{BDF3E430-B101-42AD-A544-FADC6B084872} - D:\Program
Files\Norton Antivirus\NavShExt.dll
O3 - Toolbar: &Google -
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - d:\program
files\google\googletoolbar1.dll
O3 - Toolbar: Norton AntiVirus -
{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - D:\Program
Files\Norton Antivirus\NavShExt.dll
O4 - HKLM\..\Run: [TkBellExe] "D:\Program Files\Common
Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [WinFaxAppPortStarter] wfxsnt40.exe
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "D:\Program
Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [msnappau] "D:\Program Files\MSN
Apps\Updater\01.02.3000.1001\en-us\msnappau.exe"
O4 - HKLM\..\Run: [QuickTime Task] "D:\Program
Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Symantec NetDriver Monitor]
D:\PROGRA~1\SYMNET~1\SNDMon.exe
O4 - HKLM\..\Run: [IgfxTray]
D:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds]
D:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [DownloadAccelerator]
D:\PROGRA~1\DAP\DAP.EXE /STARTUP
O4 - HKLM\..\Run: [CallControl 4.5] D:\Program
Files\FaxTalk Communicator\FTCtrl32.exe /autoload
O4 - HKLM\..\Run: [AOL Spyware Protection]
"D:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
O4 - HKLM\..\Run: [iamapp] D:\Program Files\Norton
Internet Security\IAMAPP.EXE
O4 - HKLM\..\Run: [NAV Agent]
D:\PROGRA~1\NORTON~2\navapw32.exe
O4 - HKLM\..\Run: [KavSvc] D:\WINDOWS\system32\rkmpkk.exe
reg_run
O4 - HKLM\..\Run: [SunJavaUpdateSched] D:\Program
Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [KernelFaultCheck]
%systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [msnmsgr] "D:\Program Files\MSN
Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] D:\Program
Files\Yahoo!\Messenger\ypager.exe -quiet
O4 - HKCU\..\Run: [Babylon Translator] D:\Program
Files\Babylon\Babylon.exe
O4 - HKCU\..\Run: [HOTFOON2] D:\Program Files\hotfoon4.exe
/h
O4 - Global Startup: AOL Companion.lnk = D:\Program
Files\AOL Companion\companion.exe
O4 - Global Startup: AOL 9.0 Tray Icon.lnk = D:\Program
Files\AOL 9.0a\aoltray.exe
O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program
Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &Google Search -
res://D:\Program
Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word -
res://D:\Program
Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links -
res://D:\Program
Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page -
res://D:\Program
Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Convert link target to Adobe
PDF - res://D:\Program Files\Adobe\Acrobat
7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert link target to
existing PDF - res://D:\Program Files\Adobe\Acrobat
7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert selected links to
Adobe PDF - res://D:\Program Files\Adobe\Acrobat
7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert selected links to
existing PDF - res://D:\Program Files\Adobe\Acrobat
7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Convert selection to Adobe
PDF - res://D:\Program Files\Adobe\Acrobat
7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert selection to
existing PDF - res://D:\Program Files\Adobe\Acrobat
7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert to Adobe PDF -
res://D:\Program Files\Adobe\Acrobat
7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert to existing PDF -
res://D:\Program Files\Adobe\Acrobat
7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: E&xport to Microsoft Excel -
res://D:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages -
res://D:\Program
Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English
- res://D:\Program
Files\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) -
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program
Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Sun Java Console -
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program
Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Messenger -
{4528BBE0-4E08-11D5-AD55-00010333D0AD} - D:\Program
Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger -
{4528BBE0-4E08-11D5-AD55-00010333D0AD} - D:\Program
Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra button: AOL Toolbar -
{4982D40A-C53B-4615-B15B-B5B5E98D167C} - D:\Program
Files\AOL Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: AOL Toolbar -
{4982D40A-C53B-4615-B15B-B5B5E98D167C} - D:\Program
Files\AOL Toolbar\toolbar.dll
O9 - Extra button: Research -
{92780B25-18CC-41C8-B9BE-3C9C571A8263} -
D:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Share in Hello -
{B13B4423-2647-4cfc-A4B3-C7D56CB83487} - D:\Program
Files\Hello\PicasaCapture.dll
O9 - Extra 'Tools' menuitem: Share in H&ello -
{B13B4423-2647-4cfc-A4B3-C7D56CB83487} - D:\Program
Files\Hello\PicasaCapture.dll
O9 - Extra button: Messenger -
{FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program
Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger -
{FB5F1910-F110-11d2-BB9E-00C04F795683} - D:\Program
Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: D:\Program Files\Internet
Explorer\Plugins\NPDocBox.dll
O20 - Winlogon Notify: igfxcui -
D:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: Adobe LM Service - Adobe Systems -
D:\Program Files\Common Files\Adobe Systems
Shared\Service\Adobelmsvc.exe
O23 - Service: AOL Connectivity Service (AOL ACS) -
America Online, Inc. -
D:\PROGRA~1\COMMON~1\AOL\ACS\AOLACSD.EXE
O23 - Service: AOL Spyware Protection Service (AOLService)
- Unknown owner -
D:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\\aolserv.exe
O23 - Service: ewido security suite control - ewido
networks - D:\Program Files\ewido\security
suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks
- D:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: Norton AntiVirus Auto Protect Service
(navapsvc) - Symantec Corporation - D:\Program
Files\Norton Antivirus\navapsvc.exe
O23 - Service: Norton Internet Security Service (NISSERV)
- Symantec Corporation - D:\Program Files\Norton Internet
Security\NISSERV.EXE
O23 - Service: Norton Internet Security Accounts Manager
(NISUM) - Symantec Corporation - D:\Program Files\Norton
Internet Security\NISUM.EXE
O23 - Service: ScriptBlocking Service (SBService) -
Symantec Corporation -
D:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc)
- Symantec Corporation - D:\Program Files\Common
Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Norton Internet Security Proxy Service
(SymProxySvc) - Symantec Corporation - D:\Program
Files\Norton Internet Security\SymProxySvc.exe
O23 - Service: WinFax PRO (wfxsvc) - Symantec Corporation
- D:\WINDOWS\system32\WFXSVC.EXE