Jump to content
Compatible Support Forums

wo653

Members
  • Content count

    10
  • Joined

  • Last visited

    Never

Community Reputation

0 Neutral

About wo653

  • Rank
    stranger
  1. wo653

    USB devices not recognized

    Well, If you have windows xp it might be the fact that you dont have service pack 1, when i got my new abit kv8 pro It said i could not install the USB 2.0 Drivers For some reason, I looked into it and apparently you need to have Microsoft "Service Pack 1" From windows update, Very common, I had the same problem, except i didn't have a camera, it was my mouse. but i had a printer and a saitek playstation like controller that were usb and ... not working. After i restarted the computer after installing sp1.. All the lights were on my controller and printer... Success (At least for me) I'm not sure if this will work for you but its worth a shot , If you already have service pack 1, I'm not sure what i can tell you then, But I'm just letting you know what my problem was and how I fixed it Hoping to give you some guidance through your computer troubles.
  2. wo653

    I need help, Quick!

    Thanks, And good luck with your project.
  3. wo653

    NT 4.0 and 800 FSB

    Yeah, Same here, I don't run on windows NT so i woudln't know if it would support an Asus 800 fsb mobo.. because i dont know compatability with that op sys sorry bud. If i were you id switch to xp pro but you've probably got a reason for using nt
  4. wo653

    I need help, Quick!

    PLEASE NOTE THAT ALL FILES FOUND BY THIS METHOD ARE NOT BAD FILES, THERE MIGHT BE LEGIT FILES LISTED AND PLEASE BE CAREFUL WHILE FIXING. IF YOU ARE UNSURE OF WHAT IT IS LEAVE THEM ALONE. »»»»»»»»»»»»»»»»»»»»»»»» Files found »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» * urllogic C:\WINDOWS\JMHHV.DLL * qoologic C:\WINDOWS\JMHHV.DLL * qoologic C:\WINDOWS\UNADBEH.EXE * ad-beh C:\WINDOWS\System32\ADPPQ.DLL * ad-beh C:\WINDOWS\System32\TSHHBBR.DLL * ad-beh C:\WINDOWS\System32\WINUP2~1.DLL * ad-beh C:\WINDOWS\System32\BDRRQQM.EXE * ad-beh C:\WINDOWS\System32\VIMMLL.EXE * ad-beh C:\WINDOWS\System32\WMCONFIG.CPL * ad-beh C:\WINDOWS\UNADBEH.EXE »»»»»»»»»»»»»»»»»»»»»»»» startup files»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» * exe C:\docume~1\alluse~1\startm~1\programs\startup\NRPP.EXE »»»»»»»»»»»»»»»»»»»»»»»» Checking Global Startup »»»»»»»»»»»»»»»»»»»»»» (fstarts by IMM - test ver. 0.001) NOT using address check -- 0x77f7ecc3 Global Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup . .. desktop.ini nrpp.exe User Startup: C:\Documents and Settings\Jordan\Start Menu\Programs\Startup . .. desktop.ini »»»»»»»»»»»»»»»»»»»»»»»» Registry Entries Found »»»»»»»»»»»»»»»»»»»»»»» ! REG.EXE VERSION 3.0 HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\fmttkkxk <NO NAME> REG_SZ {ff549842-977e-454e-a730-3e4f5f3d81e3} HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Offline Files <NO NAME> REG_SZ {750fdf0e-2a26-11d1-a3ea-080036587f03} HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Open With <NO NAME> REG_SZ {09799AFB-AD67-11d1-ABCD-00C04FC30936} HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Open With EncryptionMenu <NO NAME> REG_SZ {A470F8CF-A1E8-4f65-8335-227475AA5C46} HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\WinRAR <NO NAME> REG_SZ {B41DB860-8EE4-11D2-9906-E49FADC173CA} HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\{a2a9545d-a0c2-42b4-9708-a0b2badd77c8} <NO NAME> REG_SZ Start Menu Pin »»»»»»»»»»»»»»»»»»»»»»»»» Active setup »»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»» "Find activesetup", version1, launched at: 14:54 Operating System: Windows XP HKLM\Software\Microsoft\Active Setup\Installed Components\ "6cb1abe1-2bcc-47a0-8a90-2ac368f47d8b\(Default)" = "" \StubPath = "C:\WINDOWS\System32\bdrrqqm.exe" [null data]
  5. wo653

    I need help, Quick!

    Ok this is kind of big but ---------------- FindVX2 NT-2K-XP ---------------- Warning! This utility will find legitimate files in addition to malware. Do not remove anything unless you are sure you know what you're doing. ***** Operating System ***** Microsoft Windows XP Professional 5.1 (Build 2600) ********* Date/Time ******** Thursday, April 21, 2005 (4/21/2005) 1:44 PM, Pacific Daylight Time *********** Path *********** FindVX2.bat is running from: C:\Documents and Settings\Jordan\Desktop\FindIt NT-2K-XP ------- System Files in System32 Directory ------- Volume in drive C has no label. Volume Serial Number is 50D1-34D6 Directory of C:\WINDOWS\System32 04/21/2005 12:14 PM <DIR> dllcache 0 File(s) 0 bytes 1 Dir(s) 62,642,429,952 bytes free ------- Hidden Files in System32 Directory ------- Volume in drive C has no label. Volume Serial Number is 50D1-34D6 Directory of C:\WINDOWS\System32 04/21/2005 12:14 PM <DIR> dllcache 04/14/2005 01:06 PM 488 WindowsLogon.manifest 04/14/2005 01:06 PM 488 logonui.exe.manifest 04/14/2005 01:06 PM 749 nwc.cpl.manifest 04/14/2005 01:06 PM 749 sapi.cpl.manifest 04/14/2005 01:06 PM 749 wuaucpl.cpl.manifest 04/14/2005 01:06 PM 749 cdplayer.exe.manifest 04/14/2005 01:06 PM 749 ncpa.cpl.manifest 7 File(s) 4,721 bytes 1 Dir(s) 62,642,429,952 bytes free --------------- Files Named "Guard" -------------- Volume in drive C has no label. Volume Serial Number is 50D1-34D6 Directory of C:\WINDOWS\System32 -------- Temp Files in System32 Directory -------- Volume in drive C has no label. Volume Serial Number is 50D1-34D6 Directory of C:\WINDOWS\System32 08/23/2001 05:00 AM 2,577 CONFIG.TMP 1 File(s) 2,577 bytes 0 Dir(s) 62,642,425,856 bytes free ------------------- User Agent ------------------- REGEDIT4 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform] "iebar"="" --------------- Keys Under Notify ---------------- REGEDIT4 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain] "Asynchronous"=dword:00000000 "Impersonate"=dword:00000000 "DllName"=hex(2):63,72,79,70,74,33,32,2e,64,6c,6c,00 "Logoff"="ChainWlxLogoffEvent" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet] "Asynchronous"=dword:00000000 "Impersonate"=dword:00000000 "DllName"=hex(2):63,72,79,70,74,6e,65,74,2e,64,6c,6c,00 "Logoff"="CryptnetWlxLogoffEvent" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll] "DLLName"="cscdll.dll" "Logon"="WinlogonLogonEvent" "Logoff"="WinlogonLogoffEvent" "ScreenSaver"="WinlogonScreenSaverEvent" "Startup"="WinlogonStartupEvent" "Shutdown"="WinlogonShutdownEvent" "StartShell"="WinlogonStartShellEvent" "Impersonate"=dword:00000000 "Asynchronous"=dword:00000001 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp] "DLLName"="wlnotify.dll" "Logon"="SCardStartCertProp" "Logoff"="SCardStopCertProp" "Lock"="SCardSuspendCertProp" "Unlock"="SCardResumeCertProp" "Enabled"=dword:00000001 "Impersonate"=dword:00000001 "Asynchronous"=dword:00000001 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule] "Asynchronous"=dword:00000000 "DllName"=hex(2):77,6c,6e,6f,74,69,66,79,2e,64,6c,6c,00 "Impersonate"=dword:00000000 "StartShell"="SchedStartShell" "Logoff"="SchedEventLogOff" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy] "Logoff"="WLEventLogoff" "Impersonate"=dword:00000000 "Asynchronous"=dword:00000001 "DllName"=hex(2):73,63,6c,67,6e,74,66,79,2e,64,6c,6c,00 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn] "DLLName"="WlNotify.dll" "Lock"="SensLockEvent" "Logon"="SensLogonEvent" "Logoff"="SensLogoffEvent" "Safe"=dword:00000001 "MaxWait"=dword:00000258 "StartScreenSaver"="SensStartScreenSaverEvent" "StopScreenSaver"="SensStopScreenSaverEvent" "Startup"="SensStartupEvent" "Shutdown"="SensShutdownEvent" "StartShell"="SensStartShellEvent" "PostShell"="SensPostShellEvent" "Disconnect"="SensDisconnectEvent" "Reconnect"="SensReconnectEvent" "Unlock"="SensUnlockEvent" "Impersonate"=dword:00000001 "Asynchronous"=dword:00000001 [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv] "Asynchronous"=dword:00000000 "DllName"=hex(2):77,6c,6e,6f,74,69,66,79,2e,64,6c,6c,00 "Impersonate"=dword:00000000 "Logoff"="TSEventLogoff" "Logon"="TSEventLogon" "PostShell"="TSEventPostShell" "Shutdown"="TSEventShutdown" "StartShell"="TSEventStartShell" "Startup"="TSEventStartup" "MaxWait"=dword:00000258 "Reconnect"="TSEventReconnect" "Disconnect"="TSEventDisconnect" [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon] "DLLName"="wlnotify.dll" "Logon"="RegisterTicketExpiredNotificationEvent" "Logoff"="UnregisterTicketExpiredNotificationEvent" "Impersonate"=dword:00000001 "Asynchronous"=dword:00000001 ------------ Shell Extensions Approved ----------- REGEDIT4 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved] --------------- Locate.com Results --------------- C:\WINDOWS\SYSTEM32\ cdplay~1.man Thu Apr 14 2005 1:06:44p A..HR 749 0.73 K logonu~1.man Thu Apr 14 2005 1:06:48p A..HR 488 0.48 K ncpacp~1.man Thu Apr 14 2005 1:06:44p A..HR 749 0.73 K nwccpl~1.man Thu Apr 14 2005 1:06:44p A..HR 749 0.73 K sapicp~1.man Thu Apr 14 2005 1:06:44p A..HR 749 0.73 K window~1.man Thu Apr 14 2005 1:06:48p A..HR 488 0.48 K wuaucp~1.man Thu Apr 14 2005 1:06:44p A..HR 749 0.73 K 7 items found: 7 files, 0 directories. Total of file sizes: 4,721 bytes 4.61 K ---------------- FindVX2 NT-2K-XP ----------------
  6. wo653

    I need help, Quick!

    Ahhhh, It wont stop... I use all the spyware i can use to get rid o f it... It wont go away... i look for it , its not there i used all your tips... it just keeps coming with the popups... NOOOOO evil popups what do i do... nothings working
  7. wo653

    I need help, Quick!

    Alright, All good tips guys. Thanks a bunch, I'm still finding it because Theefools tip helped and jarry your help worked but im still findint out some stuff but thanks so much already
  8. wo653

    I need help, Quick!

    See, That's the hard thing I could have done that "What Jarry Ark" said but the thing is i cant find the file and if i delete it it will come back so i have to use that tip but i cant find the file it says its in the sys32 folder, Apparnetly not after my searching
  9. wo653

    I need help, Quick!

    Logfile of HijackThis v1.99.1 Scan saved at 11:36:52 AM, on 4/20/2005 Platform: Windows XP (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 (6.00.2600.0000) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\System32\nvsvc32.exe C:\WINDOWS\System32\MsPMSPSv.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\System32\vimmll.exe C:\PROGRA~1\MOZILL~1\FIREFOX.EXE C:\WINDOWS\System32\msiexec.exe C:\Program Files\Ventrilo\Ventrilo.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Documents and Settings\Jordan\Desktop\Krap\HijackThis.exe O4 - HKLM\..\Run: [etbrun] C:\windows\system32\elitejky32.exe O4 - HKLM\..\Run: [KavSvc] C:\WINDOWS\System32\vimmll.exe O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKCU\..\Run: [Tracks Eraser Pro] C:\Program Files\Acesoft\Tracks Eraser Pro\te.exe min O23 - Service: AutoComplete Service (Autocomplete) - Acesoft - C:\Program Files\Acesoft\Tracks Eraser Pro\autocomp.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe I've known how to keep a clean fast computer until this everything feels slow i just cant stand it... Any other info Win xp pro
  10. wo653

    I need help, Quick!

    Greetings. I'm in urgent need of help with spyware attacks I have ad-aware 6 spybot s and d hijack this Thats it Well i get a pop up every minute or so... just 1 every minute for some random thing ... i know i dont have the big stuff like 180searchware or coolwwwsearch Its not big thats why its wierd but ok i scan on all 3 and get rid of all 3 i think its called elitejky32.exe and vimml.exe or something and i get rid of them... but they come back... Spyware gets rid of it then it just comes back. What do i do, I really cant just reformat. EDIT : Ok I figured out some things Its called Ebates Moneymaker , i got rid of the registry thing so ebates is gone my new one is in the processes its called Vimmll.exe I cant find it in spybot or ad-aware and it only shows up on hijack but it comes back too... is there somthing i do for that?
×