1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Windows XP LAN Trouble

Discussion in 'Networking (Hardware & Software)' started by Mortalbard, 2008/04/18.

  1. 2008/04/18
    Mortalbard

    Mortalbard Inactive Thread Starter

    Joined:
    2008/04/18
    Messages:
    20
    Likes Received:
    0
    Hi folks,

    I'm an experienced PC user but am having ongoing, seemingly unsolvable problems getting my laptop and desktop PCs to share files on my homewireless network. Both machines are running XP SP2. I've spent hours combing message boards like this one for problems that resemble mine, but nothing I try resolves the issue and I'm getting seriously frustrated. All I want is to share one stupid folder, but the Synchronize utility refuses to, y'know, Synchronize.

    This morning I ran ipconfig on each computer to get their respective ip addresses. Then I tried to ping each computer from the other, but no dice - 100% packet loss. Yet each PC can access the internet without trouble.

    Before you ask: Yes, the Windows firewall is disabled. No, I don't think this is a wireless router problem because I previously networked this same desktop PC with a different laptop and had no problems. Yes, I've reinstalled TCP/IP. Should I run the Windows XP Network Setup Wizard again?

    I've also updated the wireless card driver on my laptop. Is this a hardware or software problem? Can anyone please, please help me figure this one out before I lose what's left of my mind? Thanks.
     
  2. 2008/04/18
    ReggieB

    ReggieB Inactive Alumni

    Joined:
    2004/05/12
    Messages:
    2,786
    Likes Received:
    2

  3. to hide this advert.

  4. 2008/04/18
    Mortalbard

    Mortalbard Inactive Thread Starter

    Joined:
    2008/04/18
    Messages:
    20
    Likes Received:
    0
    Okay, I'll try that.

    Thanks. I'll try it and report on the result.
     
  5. 2008/04/19
    Mortalbard

    Mortalbard Inactive Thread Starter

    Joined:
    2008/04/18
    Messages:
    20
    Likes Received:
    0
    Bad News

    ReggieB,

    Well, the solution you proposed did indeed work - for about ten minutes. No, I'm not making this up. After I deleted the Qos packet scheduler from both machines, I was soon able to cross-ping and run the Synchronize utlity. Soon enough, however, the LAN connection was dropped once again. No ping, no sync.

    This is really nothing for me with this problem. Countless times - 20? 30? - I've seemingly discovered the solution after tracking down helpful info online, only to find the LAN connection missing once again a few hours (or minutes) later. It really is kind of cruel.

    Why have I tried so many different solutions? Because I've been trying to solve this problem, off and on, for more than three years. Yes, you read that right - three years. This laptop (an IBM T42p Thinkpad) has never reliably networked with my desktop PC. Sure, it will properly synchronize every once in a while, but soon enough the connection is dropped again for no apparent reason. I would estimate that I've spent about 150 hours over the years trying in vain to solve the problem. I even called Microsoft, but they couldn't solve it, either.

    Yet I still harbor the hope that someone can. Maybe it's a hardware defect - who knows? As always, I welcome more suggestions. Thanks again.

    Joshua
     
  6. 2008/04/19
    mflynn

    mflynn Inactive

    Joined:
    2002/08/14
    Messages:
    4,141
    Likes Received:
    9
    Hi Mortalbard

    This very well could be Hardware. We may have to come back to that if the below does not work.

    You said the Laptop had never worked reliably with your desktop, but when you travel does it work OK with other networks?

    We need more info so do the following.

    Paste the line in the box to an open comand prompt on both computers.

    A link to the results will appear on your desktop. You may hide personal data by using an *. To censor an IP do not cover the 1st or last digits. Do it like this:

    192.***.*.2

    Then past back to here.

    PHP:
    %SystemRoot%\system32\cmd.exe /%windir%\system32\ipconfig.exe /all "%USERPROFILE% "\Desktop\Ipcfg.txt
    Next:

    We are going to give your network and winsock settings an Enema.:)
    Paste the lines below to an open CMD prompt 1 at a time. Depending or your current settings you could get errors but that is OK for now just coninue on.
    --------------------------------
    netsh interface ip delete arpcache

    ipconfig /flushdns

    ipconfig /release *

    ipconfig /renew *

    nbtstat -RR

    netsh winsock reset catalog
    --------------------------------

    Reboot and test here before continuing.

    If the above does not work install Netbeui.

    Here are 2 links (for better understanding if needed) on how to install the Netbeui protocol.

    http://support.microsoft.com/kb/301041
    http://www.pchell.com/support/netbeui.shtml

    Reboot after installing before testing.

    Mike
     
    Last edited: 2008/04/19
  7. 2008/04/19
    Mortalbard

    Mortalbard Inactive Thread Starter

    Joined:
    2008/04/18
    Messages:
    20
    Likes Received:
    0
    Progress Report

    Mike,

    Thanks very much indeed for all this help. I gave both PCs the enema as directed, but the problem remains.

    I can't provide you with the requested IP info yet because I'm unsure how to enter the command line. Where you put USERPROFILE in red letters, what should I type? I tried typing my computer's name/my name, but that didn't work.

    As for NetBEUI, Windows XP came pre-loaded on this Thinkpad and I don't know where the recovery CDs are. I do have an OEM XP installation CD from another computer; could I use that CD to install NetBEUI?

    On that subject, however, I have reason to doubt that a lack of NetBEUI is the problem because I'm fairly sure that NetBEUI was in fact present on both of my PCs until yesterday, when I deleted it after reading some seemingly relevant posts at a different web site.

    Just a few minutes ago, the LAN suddenly became fully functional, with pinging and file sharing. Both PCs had been sitting idle for more than an hour. Then, of course, the LAN connection disappeared again.

    If this is a hardware problem, would getting a new wireless card solve it? Thanks again.

    Joshua
     
  8. 2008/04/19
    mflynn

    mflynn Inactive

    Joined:
    2002/08/14
    Messages:
    4,141
    Likes Received:
    9
    Don't even try to type it!

    Drag across it with the left button down and copy it. Then paste to open command prompt.

    But now it is out of step. I would have liked to see and save the original output before you did the other.

    Once you did the other steps it may have changed some info that would have helped.

    But we will deal with it!

    Get it posted.

    Mike
     
  9. 2008/04/19
    mflynn

    mflynn Inactive

    Joined:
    2002/08/14
    Messages:
    4,141
    Likes Received:
    9
    Hold on it did not work for me either. hold for a correction.

    Mike
     
  10. 2008/04/19
    mflynn

    mflynn Inactive

    Joined:
    2002/08/14
    Messages:
    4,141
    Likes Received:
    9
    do the one below


    %SystemRoot%\system32\cmd.exe /c %windir%\system32\ipconfig.exe /all > "%USERPROFILE% "\Desktop\Ipcfg.txt

    Mike
     
  11. 2008/04/19
    mflynn

    mflynn Inactive

    Joined:
    2002/08/14
    Messages:
    4,141
    Likes Received:
    9
    Sorry Mortalbard

    Appearently the PHP box did not like some of the symbols I pasted.

    I just tried it again and it messed it up again.

    I did not notice it.

    Mike
     
  12. 2008/04/19
    mflynn

    mflynn Inactive

    Joined:
    2002/08/14
    Messages:
    4,141
    Likes Received:
    9
    Just to be clear in post 10 I was referring to the original problem.

    The one in post 9 should work as it did for me.

    Mike
     
  13. 2008/04/19
    mflynn

    mflynn Inactive

    Joined:
    2002/08/14
    Messages:
    4,141
    Likes Received:
    9
    Became fully operational before or after the series of commands you ran?

    Again, does the Laptop work OK on other networks?

    Wireless card! Not necessarily it could also be the router.

    Get the ipconfig posted back.

    Mike
     
  14. 2008/04/19
    Mortalbard

    Mortalbard Inactive Thread Starter

    Joined:
    2008/04/18
    Messages:
    20
    Likes Received:
    0
    Update

    Mike,

    It became operational a couple of hours after I ran the enema stuff on both PCs.

    Just now I pasted the line from message #9 into a command prompt but the result was simply another command prompt.

    This laptop has no problem accessing the internet wherever I take it, but my home network is the only place where it's asked to share files.

    Until recently I used a different Thinkpad here at home and no problem sharing files.

    Joshua
     
  15. 2008/04/19
    mflynn

    mflynn Inactive

    Joined:
    2002/08/14
    Messages:
    4,141
    Likes Received:
    9
    OK Josh

    That is what it was supposed to do come back to cmd prompt!

    Now look on your desktop for a new icon ipconfig.txt. Open and paste it here.

    1 for ea machine.

    Mike
     
  16. 2008/04/19
    mflynn

    mflynn Inactive

    Joined:
    2002/08/14
    Messages:
    4,141
    Likes Received:
    9
    Josh it seems each time you do something to the network settings that things begin to work and fail some time later.

    I would still like to see the ipconfigs on both computers but lets try another whole route.

    Try one more thing before doing the below. Boot to Safe mode networking with the laptop and see if the issue exists. If it don't and you have network and Internet then stay in Safe Mode long enough for you to know that here you have the issue or not.

    Either way after confirming Safe mode results then let me know and continue below.

    First download the below and run, wait a while and it will pop up a startup log post this back to us. Perhaps there is something else stompimg on the network.

    http://www.tombraiderhub.com/download/ardiag.exe

    Then go here read this page and understand all and do all it says except I want to see all 3 DSS logs. This is normally for checking for malware and you may have some. But it also shows what is going on on your computer so perhaps we can find another reason for this.

    http://windowsbbs.com/announcement.php?f=41
     
  17. 2008/04/19
    Mortalbard

    Mortalbard Inactive Thread Starter

    Joined:
    2008/04/18
    Messages:
    20
    Likes Received:
    0
    Okay, here it is.

    Sorry to be so dense. Here's the info from the laptop:



    Windows IP Configuration



    Host Name . . . . . . . . . . . . : BIGLET

    Primary Dns Suffix . . . . . . . :

    Node Type . . . . . . . . . . . . : Broadcast

    IP Routing Enabled. . . . . . . . : Yes

    WINS Proxy Enabled. . . . . . . . : Yes



    Ethernet adapter Wireless Network Connection:



    Connection-specific DNS Suffix . :

    Description . . . . . . . . . . . : 11a/b/g Wireless LAN Mini PCI Adapter

    Physical Address. . . . . . . . . : 00-05-4E-4B-3E-DB

    Dhcp Enabled. . . . . . . . . . . : Yes

    Autoconfiguration Enabled . . . . : Yes

    IP Address. . . . . . . . . . . . : 192.***.*.101

    Subnet Mask . . . . . . . . . . . : 255.255.255.0

    Default Gateway . . . . . . . . . : 192.***.*.1

    DHCP Server . . . . . . . . . . . : 192.***.*.1

    DNS Servers . . . . . . . . . . . : 192.***.*.1

    Lease Obtained. . . . . . . . . . : Saturday, April 19, 2008 11:57:12 AM

    Lease Expires . . . . . . . . . . : Sunday, April 20, 2008 11:57:12 AM
     
  18. 2008/04/19
    Mortalbard

    Mortalbard Inactive Thread Starter

    Joined:
    2008/04/18
    Messages:
    20
    Likes Received:
    0
    P.s.

    And here's the desktop:



    Windows IP Configuration



    Host Name . . . . . . . . . . . . : sasquatch

    Primary Dns Suffix . . . . . . . :

    Node Type . . . . . . . . . . . . : Unknown

    IP Routing Enabled. . . . . . . . : No

    WINS Proxy Enabled. . . . . . . . : No



    Ethernet adapter Wireless Network Connection:



    Connection-specific DNS Suffix . :

    Description . . . . . . . . . . . : 3Com 3CRDAG675B Wireless LAN PCI Adapter

    Physical Address. . . . . . . . . : 00-0F-CB-B3-1C-2D

    Dhcp Enabled. . . . . . . . . . . : Yes

    Autoconfiguration Enabled . . . . : Yes

    IP Address. . . . . . . . . . . . : 192.***.*.100

    Subnet Mask . . . . . . . . . . . : 255.255.255.0

    Default Gateway . . . . . . . . . : 192.***.*.1

    DHCP Server . . . . . . . . . . . : 192.***.*.1

    DNS Servers . . . . . . . . . . . : 192.***.*.1

    Lease Obtained. . . . . . . . . . : Saturday, April 19, 2008 10:09:30 AM

    Lease Expires . . . . . . . . . . : Sunday, April 20, 2008 10:09:30 AM



    Ethernet adapter Local Area Connection:



    Media State . . . . . . . . . . . : Media disconnected

    Description . . . . . . . . . . . : SiS 900-Based PCI Fast Ethernet Adapter

    Physical Address. . . . . . . . . : 00-50-2C-04-22-59
     
  19. 2008/04/19
    mflynn

    mflynn Inactive

    Joined:
    2002/08/14
    Messages:
    4,141
    Likes Received:
    9
    Nothing unusual here but are you using any cables at all or are both computers wireless?

    If so disable the wired NIC's. Rt click and disable.

    Now go with my last post!

    Mike
     
  20. 2008/04/19
    Mortalbard

    Mortalbard Inactive Thread Starter

    Joined:
    2008/04/18
    Messages:
    20
    Likes Received:
    0
    Here's the ardiag.exe log

    Copy the following text and paste it to your report AS IS!!!

    ---------------------------------------------------------------
    AutoRuns Diagnostics for TRF v 0.5 Developed by EscondeR
    ---------------------------------------------------------------

    Code:
     
    Program: 
    N/A
    Publisher: 
     "(Verified) Lavasoft AB "
    Entry path: 
    HKLM\System\CurrentControlSet\Control\Session Manager\BootExecute
    Entry name: 
    lsdelete
    Program path & name: 
     "c:\windows\system32\lsdelete.exe "
    Enabled: [V]
     
     
    Program: 
     "Protects your computer from spyware "
    Publisher: 
     "(Verified) Lavasoft AB "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    aawservice
    Program path & name: 
     "c:\program files\lavasoft\ad-aware 2007\aawservice.exe "
    Enabled: [V]
     
     
    Program: 
     "Access Connections Profile Manager Service "
    Publisher: 
     "(Not verified) Lenovo  "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    AcPrfMgrSvc
    Program path & name: 
     "c:\program files\thinkpad\connectutilities\acprfmgrsvc.exe "
    Enabled: [V]
     
     
    Program: 
     "Access Connections Main Service "
    Publisher: 
     "(Not verified) Lenovo  "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    AcSvc
    Program path & name: 
     "c:\program files\thinkpad\connectutilities\acsvc.exe "
    Enabled: [V]
     
     
    Program: 
     "Provides the interface to Apple mobile devices. "
    Publisher: 
     "(Not verified) Apple Inc. "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    Apple Mobile Device
    Program path & name: 
     "c:\program files\common files\apple\mobile device support\bin\applemobiledeviceservice.exe "
    Enabled: [V]
     
     
    Program: 
     "Enables hardware devices and software services to automatically configure themselves on the network and advertise their presence
    Publisher: 
     so that users can discover and use those services without any unnecessary manual setup or administration. "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    Bonjour Service
    Program path & name: 
     "(Not verified) Apple Inc." "c:\program files\bonjour\mdnsresponder.exe "
    Enabled: [V]
     
     
    Program: 
     "Bluetooth Support Server "
    Publisher: 
     "(Not verified) WIDCOMM Inc. "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    btwdins
    Program path & name: 
     "c:\program files\ibm\bluetooth software\bin\btwdins.exe "
    Enabled: [V]
     
     
    Program: 
     "Manages the event trace messages for all the components of Intel(R) PROSet/Wireless software. "
    Publisher: 
     "(Not verified) Intel Corporation "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    EvtEng
    Program path & name: 
     "c:\program files\intel\wireless\bin\evteng.exe "
    Enabled: [V]
     
     
    Program: 
     "Intel(R) PROSet/Wireless Registry Service "
    Publisher: 
     "(Not verified) Intel Corporation "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    RegSrvc
    Program path & name: 
     "c:\program files\intel\wireless\bin\regsrvc.exe "
    Enabled: [V]
     
     
    Program: 
     "Wireless Management Service for Intel(R) PROSet/Wireless "
    Publisher: 
     "(Not verified) Intel Corporation  "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    S24EventMonitor
    Program path & name: 
     "c:\program files\intel\wireless\bin\s24evmon.exe "
    Enabled: [V]
     
     
    Program: 
     "SoundMAX service agent component "
    Publisher: 
     "(Not verified) Analog Devices Inc. "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    SoundMAX Agent Service (default)
    Program path & name: 
     "c:\program files\analog devices\soundmax\smagent.exe "
    Enabled: [V]
     
     
    Program: 
     "ThinkVantage System Update Service "
    Publisher: 
     "(Not verified) Lenovo Group Limited "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    SUService
    Program path & name: 
     "c:\program files\lenovo\system update\suservice.exe "
    Enabled: [V]
     
     
    Program: 
     "ThinkVantage Registry Monitor Service "
    Publisher: 
     "(Verified) Lenovo (United States) Inc. "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    ThinkVantage Registry Monitor Service
    Program path & name: 
     "c:\program files\common files\lenovo\tvt_reg_monitor_svc.exe "
    Enabled: [V]
     
     
    Program: 
     "ThinkVantage Active Protection System - HDD Logger Module "
    Publisher: 
     "(Verified) Lenovo (Japan) Ltd. "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    TPHDEXLGSVC
    Program path & name: 
     "c:\windows\system32\tphdexlg.exe "
    Enabled: [V]
     
     
    Program: 
    N/A
    Publisher: 
    N/A
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    TpKmpSVC
    Program path & name: 
    c:\windows\system32\tpkmpsvc.exe "
    Enabled: [V]
     
     
    Program: 
     "tvttcsd Application "
    Publisher: 
     "(Verified) Lenovo (United States) Inc. "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    TSSCoreService
    Program path & name: 
     "c:\program files\lenovo\client security solution\tvttcsd.exe "
    Enabled: [V]
     
     
    Program: 
     "Rescue and Recovery Backup Service "
    Publisher: 
     "(Not verified) Lenovo Group Limited "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    TVT Backup Service
    Program path & name: 
     "c:\program files\lenovo\rescue and recovery\rrservice.exe "
    Enabled: [V]
     
     
    Program: 
     "ThinkVantage Scheduler "
    Publisher: 
     "(Not verified) Lenovo Group Limited "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    TVT Scheduler
    Program path & name: 
     "c:\program files\common files\lenovo\scheduler\tvtsched.exe "
    Enabled: [V]
     
     
    Program: 
    N/A
    Publisher: 
    N/A
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    tvtnetwk
    Program path & name: 
    c:\program files\lenovo\rescue and recovery\adm\iuservice.exe "
    Enabled: [V]
     
     
    Program: 
     "AEGIS Protocol (IEEE 802.1x) v3.7.5.0 "
    Publisher: 
     "(Not verified) Cisco Systems Inc. "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    AegisP
    Program path & name: 
     "c:\windows\system32\drivers\aegisp.sys "
    Enabled: [V]
     
     
    Program: 
     "IBM Access Connections - ANC "
    Publisher: 
     "(Not verified) IBM Corp. "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    ANC
    Program path & name: 
     "c:\windows\system32\drivers\anc.sys "
    Enabled: [V]
     
     
    Program: 
     "Bluetooth Protocol Driver for Windows 2000 "
    Publisher: 
     "(Not verified) WIDCOMM Inc. "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    BTKRNL
    Program path & name: 
     "c:\windows\system32\drivers\btkrnl.sys "
    Enabled: [V]
     
     
    Program: 
     "Device Driver "
    Publisher: 
     "(Not verified) Sonic Solutions "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    drvmcdb
    Program path & name: 
     "c:\windows\system32\drivers\drvmcdb.sys "
    Enabled: [V]
     
     
    Program: 
     "IBM eGatherer Kernel Module "
    Publisher: 
     "(Not verified) IBM Corporation "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    EGATHDRV
    Program path & name: 
     "c:\windows\system32\egathdrv.sys "
    Enabled: [V]
     
     
    Program: 
     "CD DVD Filter "
    Publisher: 
     "(Verified) GEAR Software Inc. "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    GEARAspiWDM
    Program path & name: 
     "c:\windows\system32\drivers\gearaspiwdm.sys "
    Enabled: [V]
     
     
    Program: 
    N/A
    Publisher: 
    N/A
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    IBMTPCHK
    Program path & name: 
    c:\windows\system32\drivers\ibmbldid.sys "
    Enabled: [V]
     
     
    Program: 
     "Padus(R) ASPI Shell "
    Publisher: 
     "(Not verified) Padus Inc. "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    Pfc
    Program path & name: 
     "c:\windows\system32\drivers\pfc.sys "
    Enabled: [V]
     
     
    Program: 
     "Physical Memory Driver "
    Publisher: 
     "(Not verified) Microsoft Corporation "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    PMEM
    Program path & name: 
     "c:\windows\system32\drivers\pmemnt.sys "
    Enabled: [V]
     
     
    Program: 
     "Px Engine Device Driver for Windows 2000/XP "
    Publisher: 
     "(Not verified) Sonic Solutions "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    PxHelp20
    Program path & name: 
     "c:\windows\system32\drivers\pxhelp20.sys "
    Enabled: [V]
     
     
    Program: 
     "Shockproof Disk Driver "
    Publisher: 
     "(Verified) Lenovo (Japan) Ltd. "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    Shockprf
    Program path & name: 
     "c:\windows\system32\drivers\apsx86.sys "
    Enabled: [V]
     
     
    Program: 
     "SMAPI I/O "
    Publisher: 
     "(Not verified) Microsoft Corporation "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    Smapint
    Program path & name: 
     "c:\windows\system32\drivers\smapint.sys "
    Enabled: [V]
     
     
    Program: 
     "SMI BIOS driver "
    Publisher: 
     "(Not verified) IBM Corp. "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    smi2
    Program path & name: 
     "c:\program files\smi2\smi2.sys "
    Enabled: [V]
     
     
    Program: 
    N/A
    Publisher: 
    N/A
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    TDSMAPI
    Program path & name: 
    c:\windows\system32\drivers\tdsmapi.sys "
    Enabled: [V]
     
     
    Program: 
     "APS Digitizer Activity Monitor "
    Publisher: 
     "(Verified) Lenovo (Japan) Ltd. "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    TPDIGIMN
    Program path & name: 
     "c:\windows\system32\drivers\apshm86.sys "
    Enabled: [V]
     
     
    Program: 
     "ThinkPad Hotkey Driver "
    Publisher: 
     "(Not verified) IBM Corporation "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    TPHKDRV
    Program path & name: 
     "c:\windows\system32\drivers\tphkdrv.sys "
    Enabled: [V]
     
     
    Program: 
     "IBM ThinkPad Power Management Device Driver "
    Publisher: 
     "(Not verified) IBM Corp. "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    TPPWR
    Program path & name: 
     "c:\windows\system32\drivers\tppwr.sys "
    Enabled: [V]
     
     
    Program: 
    N/A
    Publisher: 
    N/A
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    TSMAPIP
    Program path & name: 
    c:\windows\system32\drivers\tsmapip.sys "
    Enabled: [V]
     
     
    Program: 
     "Rescue and Recovery filter driver "
    Publisher: 
     "(Not verified) Lenovo "
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    tvtfilter
    Program path & name: 
     "c:\windows\system32\drivers\tvtfilter.sys "
    Enabled: [V]
     
     
    Program: 
    N/A
    Publisher: 
    N/A
    Entry path: 
    HKLM\System\CurrentControlSet\Services
    Entry name: 
    UIUSys
    Program path & name: 
    File not found: system32\drivers\UIUSys.sys "
    Enabled: [V]
     
     
    Program: 
     "Access Connections Notify Support Module "
    Publisher: 
     "(Not verified) Lenovo  "
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify
    Entry name: 
    ACNotify
    Program path & name: 
     "c:\program files\thinkpad\connectutilities\acnotify.dll "
    Enabled: [V]
     
     
    Program: 
    N/A
    Publisher: 
     "(Verified) Lenovo (Japan) Ltd "
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify
    Entry name: 
    tpfnf2
    Program path & name: 
     "c:\program files\lenovo\hotkey\notifyf2.dll "
    Enabled: [V]
     
     
    Program: 
    N/A
    Publisher: 
    N/A
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify
    Entry name: 
    tphotkey
    Program path & name: 
    c:\program files\lenovo\hotkey\tphklock.dll "
    Enabled: [V]
     
     
    Program: 
     "bthcrp DLL "
    Publisher: 
     "(Not verified) WIDCOMM Inc. "
    Entry path: 
    HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors
    Entry name: 
    Bluetooth Printer Port
    Program path & name: 
     "c:\windows\system32\bthcrp.dll "
    Enabled: [V]
     
     
    Program: 
     "Access Connections Gina Module "
    Publisher: 
     "(Not verified) Lenovo  "
    Entry path: 
    HKLM\SYSTEM\CurrentControlSet\Control\Lsa\Notification Packages
    Entry name: 
    ACGina
    Program path & name: 
     "c:\program files\thinkpad\connectutilities\acgina.dll "
    Enabled: [V]
     
     
    Program: 
     "IntelNetProvCredMan "
    Publisher: 
     "(Not verified) Intel Corporation "
    Entry path: 
    HKLM\SYSTEM\CurrentControlSet\Control\NetworkProvider\Order
    Entry name: 
    IntelNetProvCredMan
    Program path & name: 
     "c:\windows\system32\netprovcredman.dll "
    Enabled: [V]
     
     
    Program: 
     "Keyboard Customizer "
    Publisher: 
     "(Not verified) Lenovo "
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    TPKMAPHELPER
    Program path & name: 
     "c:\program files\thinkpad\utilities\tpkmapap.exe "
    Enabled: [V]
     
     
    Program: 
     "ThinkVantage Active Protection System "
    Publisher: 
     "(Verified) Lenovo(Japan)Ltd. "
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    TpShocks
    Program path & name: 
     "c:\windows\system32\tpshocks.exe "
    Enabled: [V]
     
     
    Program: 
     "On screen display message handler "
    Publisher: 
     "(Verified) Lenovo (Japan) Ltd. "
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    TPHOTKEY
    Program path & name: 
     "c:\program files\lenovo\hotkey\tposdsvc.exe "
    Enabled: [V]
     
     
    Program: 
     "TrackPoint Accessibility Features "
    Publisher: 
     "(Not verified) Lenovo Group Limited "
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    TP4EX
    Program path & name: 
     "c:\windows\system32\tp4ex.exe "
    Enabled: [V]
     
     
    Program: 
     "ThinkPad EasyEject Support Application "
    Publisher: 
     "(Verified) Lenovo (Japan) Ltd. "
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    EZEJMNAP
    Program path & name: 
     "c:\program files\thinkpad\utilities\ezejmnap.exe "
    Enabled: [V]
     
     
    Program: 
     "ATI Desktop Control Panel "
    Publisher: 
     "(Not verified) ATI Technologies Inc. "
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    ATIPTA
    Program path & name: 
     "c:\program files\ati technologies\ati control panel\atiptaxx.exe "
    Enabled: [V]
     
     
    Program: 
     "Drive Letter Access Component "
    Publisher: 
     "(Not verified) Sonic Solutions "
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    dla
    Program path & name: 
     "c:\windows\system32\dla\tfswctrl.exe "
    Enabled: [V]
     
     
    Program: 
     "IBM ThinkPad Battery MaxiMiser Gauge "
    Publisher: 
     "(Not verified) IBM Corp. "
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    BMMGAG
    Program path & name: 
     "c:\program files\thinkpad\utilities\pwrmonit.dll "
    Enabled: [V]
     
     
    Program: 
    N/A
    Publisher: 
    N/A
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    BMMLREF
    Program path & name: 
    c:\program files\thinkpad\utilities\bmmlref.exe "
    Enabled: [V]
     
     
    Program: 
     "IBM ThinkPad Battery Information "
    Publisher: 
     "(Not verified) IBM Corp. "
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    BMMMONWND
    Program path & name: 
     "c:\program files\thinkpad\utilities\batinfex.dll "
    Enabled: [V]
     
     
    Program: 
    N/A
    Publisher: 
    N/A
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    BLOG
    Program path & name: 
    c:\program files\thinkpad\utilities\batlogex.dll "
    Enabled: [V]
     
     
    Program: 
     "ATI FGL Rseries OpenGL graphics driver install "
    Publisher: 
     "(Not verified) ATI Technologies Inc. "
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    frymxins
    Program path & name: 
     "c:\program files\ati technologies\fire gl 3d studio max\atiimxgl.exe "
    Enabled: [V]
     
     
    Program: 
     "SMax4PNP MFC Application "
    Publisher: 
     "(Not verified) Analog Devices Inc. "
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    SoundMAXPnP
    Program path & name: 
     "c:\program files\analog devices\soundmax\smax4pnp.exe "
    Enabled: [V]
     
     
    Program: 
     "SoundMAX Control Center "
    Publisher: 
     "(Not verified) Analog Devices Inc. "
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    SoundMAX
    Program path & name: 
     "c:\program files\analog devices\soundmax\smax4.exe "
    Enabled: [V]
     
     
    Program: 
    N/A
    Publisher: 
    N/A
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    TPKBDLED
    Program path & name: 
    c:\windows\system32\tpscrlk.exe "
    Enabled: [V]
     
     
    Program: 
     "PRONotifyMgr Module "
    Publisher: 
     "(Not verified) Intel(R) Corporation "
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    PRONoMgrWired
    Program path & name: 
     "c:\program files\intel\prosetwired\ncs\proset\pronomgr.exe "
    Enabled: [V]
     
     
    Program: 
     "Access Connections Tray Status Application "
    Publisher: 
     "(Not verified) Lenovo  "
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    ACWLIcon
    Program path & name: 
     "c:\program files\thinkpad\connectutilities\acwlicon.exe "
    Enabled: [V]
     
     
    Program: 
     "cssauth "
    Publisher: 
     "(Verified) Lenovo (United States) Inc. "
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    cssauth
    Program path & name: 
     "c:\program files\lenovo\client security solution\cssauth.exe "
    Enabled: [V]
     
     
    Program: 
     "scheduler_proxy Application "
    Publisher: 
     "(Not verified) Lenovo Group Limited "
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    TVT Scheduler Proxy
    Program path & name: 
     "c:\program files\common files\lenovo\scheduler\scheduler_proxy.exe "
    Enabled: [V]
     
     
    Program: 
     "signupshield "
    Publisher: 
     "(Verified) Protecteer LLC "
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    signupshield
    Program path & name: 
     "c:\program files\signupshield\bin\signupshield.exe "
    Enabled: [V]
     
     
    Program: 
     "Adobe Acrobat SpeedLauncher "
    Publisher: 
     "(Verified) Adobe Systems Incorporated "
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    Adobe Reader Speed Launcher
    Program path & name: 
     "c:\program files\adobe\reader 8.0\reader\reader_sl.exe "
    Enabled: [V]
     
     
    Program: 
     "QuickTime Task "
    Publisher: 
     "(Not verified) Apple Inc. "
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    QuickTime Task
    Program path & name: 
     "c:\program files\quicktime\qttask.exe "
    Enabled: [V]
     
     
    Program: 
     "iTunesHelper Module "
    Publisher: 
     "(Verified) Apple Inc. "
    Entry path: 
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    iTunesHelper
    Program path & name: 
     "c:\program files\itunes\ituneshelper.exe "
    Enabled: [V]
     
     
    Program: 
    N/A
    Publisher: 
    N/A
    Entry path: 
    HKCU\SOFTWARE\Microsoft\Internet Explorer\Desktop\Components
    Entry name: 
    0
    Program path & name: 
    File not found: About:Home "
    Enabled: [V]
     
     
    Program: 
     "Digital Line Detection "
    Publisher: 
     "(Not verified) BVRP Software "
    Entry path: 
    C:\Documents and Settings\All Users\Start Menu\Programs\Startup
    Entry name: 
    Digital Line Detect.lnk
    Program path & name: 
     "c:\program files\digital line detect\dlg.exe "
    Enabled: [V]
     
     
    Program: 
    N/A
    Publisher: 
    N/A
    Entry path: 
    C:\Documents and Settings\All Users\Start Menu\Programs\Startup
    Entry name: 
    LaunchU3.exe.lnk
    Program path & name: 
    c:\windows\installer\{d8e363a7-88b7-446d-b2c0-e26ce4dc8e54}\_2cd672ae.exe "
    Enabled: [V]
     
     
    Program: 
    N/A
    Publisher: 
    N/A
    Entry path: 
    HKCU\Software\Microsoft\Windows\CurrentVersion\Run
    Entry name: 
    Shell
    Program path & name: 
    File not found: C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00001.exe "
    Enabled: [V]
     
     
    Program: 
     "Adobe PDF Helper for Internet Explorer "
    Publisher: 
     "(Verified) Adobe Systems Incorporated "
    Entry path: 
    HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
    Entry name: 
    Adobe PDF Reader Link Helper
    Program path & name: 
     "c:\program files\common files\adobe\acrobat\activex\acroiehelper.dll "
    Enabled: [V]
     
     
    Program: 
     "Bad download blocker "
    Publisher: 
     "(Verified) Safer Networking Ltd. "
    Entry path: 
    HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
    Entry name: 
    {53707962-6F74-2D53-2644-206D7942484F}
    Program path & name: 
     "c:\program files\spybot - search & destroy\sdhelper.dll "
    Enabled: [V]
     
     
    Program: 
     "Drive Letter Access Component "
    Publisher: 
     "(Not verified) Sonic Solutions "
    Entry path: 
    HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects
    Entry name: 
    DriveLetterAccess
    Program path & name: 
     "c:\windows\system32\dla\tfswshx.dll "
    Enabled: [V]
     
     
    Program: 
    N/A
    Publisher: 
    N/A
    Entry path: 
    HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
    Entry name: 
    Display Panning CPL Extension
    Program path & name: 
    File not found: deskpan.dll "
    Enabled: [V]
     
     
    Program: 
     "Shell Extensions "
    Publisher: 
    N/A
    Entry path: 
    HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
    Entry name: 
    RecordNow! SendToExt
    Program path & name: 
    c:\program files\ibm recordnow!\shlext.dll "
    Enabled: [V]
     
     
    Program: 
     "Drive Letter Access Component "
    Publisher: 
     "(Not verified) Sonic Solutions "
    Entry path: 
    HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
    Entry name: 
    DriveLetterAccess
    Program path & name: 
     "c:\windows\system32\dla\tfswshx.dll "
    Enabled: [V]
     
     
    Program: 
     "IcdShlex.dll (E) "
    Publisher: 
     "(Not verified) Sony Corporation "
    Entry path: 
    HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
    Entry name: 
    Sony Digital Voice File Shell Extention Module
    Program path & name: 
     "c:\windows\system32\icdshlex.dll "
    Enabled: [V]
     
     
    Program: 
     "Wipext Module "
    Publisher: 
     "(Verified) Acelogix Software "
    Entry path: 
    HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
    Entry name: 
    WipeExt Class
    Program path & name: 
     "c:\program files\ace utilities\wipext.dll "
    Enabled: [V]
     
     
    Program: 
     "BTNeighborhood DLL "
    Publisher: 
     "(Not verified) WIDCOMM Inc. "
    Entry path: 
    HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
    Entry name: 
    My Bluetooth Places
    Program path & name: 
     "c:\windows\system32\btneighborhood.dll "
    Enabled: [V]
     
     
    Program: 
    N/A
    Publisher: 
    N/A
    Entry path: 
    HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
    Entry name: 
    7-Zip Shell Extension
    Program path & name: 
    c:\program files\thinkvantage\sma\7z\7-zip.dll "
    Enabled: [V]
     
     
    Program: 
     "iTunes Mini Player DLL "
    Publisher: 
     "(Verified) Apple Inc. "
    Entry path: 
    HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved
    Entry name: 
    iTunes
    Program path & name: 
     "c:\program files\itunes\itunesminiplayer.dll "
    Enabled: [V]
     
     
    Program: 
     "PDF Shell Extension "
    Publisher: 
     "(Not verified) Adobe Systems Inc. "
    Entry path: 
    HKLM\Software\Classes\Folder\Shellex\ColumnHandlers
    Entry name: 
    PDF Shell Extension
    Program path & name: 
     "c:\program files\common files\adobe\acrobat\activex\pdfshell.dll "
    Enabled: [V]
     
     
    Program: 
    enabled
    Publisher: 
    " "
    Entry path: 
    HKLM\Software\Microsoft\Internet Explorer\Extensions
    Entry name: 
    @btrez.dll
    Program path & name: 
     "c:\program files\ibm\bluetooth software\btsendto_ie.htm "
    Enabled: [ ]
     
     
    Program: 
     "Software Installer "
    Publisher: 
     "(Not verified) Lenovo Group Limited "
    Entry path: 
    HKLM\Software\Microsoft\Internet Explorer\Extensions
    Entry name: 
    Software Installer
    Program path & name: 
     "c:\program files\thinkpad\pkgmgr\pkgmgr.exe "
    Enabled: [V]
     
    
     
  21. 2008/04/19
    Mortalbard

    Mortalbard Inactive Thread Starter

    Joined:
    2008/04/18
    Messages:
    20
    Likes Received:
    0
    Here's the hijackthis log

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 6:15:08 PM, on 4/19/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16640)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\ibmpmsvc.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe
    C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\IBM\Bluetooth Software\bin\btwdins.exe
    C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
    C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
    C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
    C:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe
    C:\WINDOWS\System32\TPHDEXLG.exe
    C:\WINDOWS\system32\TpKmpSVC.exe
    C:\Program Files\Lenovo\Rescue and Recovery\rrservice.exe
    C:\Program Files\Common Files\Lenovo\Scheduler\tvtsched.exe
    C:\Program Files\Lenovo\Rescue and Recovery\ADM\IUService.exe
    C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe
    c:\program files\lenovo\system update\suservice.exe
    C:\Program Files\Common Files\Lenovo\Logger\logmon.exe
    C:\WINDOWS\system32\acs.exe
    C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\WINDOWS\system32\rundll32.exe
    C:\WINDOWS\system32\TpShocks.exe
    C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
    C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe
    C:\WINDOWS\system32\dla\tfswctrl.exe
    C:\WINDOWS\system32\RunDll32.exe
    C:\WINDOWS\system32\rundll32.exe
    C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
    C:\WINDOWS\system32\TpScrLk.exe
    C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe
    C:\Program Files\Lenovo\Client Security Solution\cssauth.exe
    C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe
    C:\Program Files\SignupShield\bin\signupshield.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe
    C:\Program Files\Digital Line Detect\DLG.exe
    C:\Program Files\ThinkPad\PkgMgr\HOTKEY_1\TpScrex.exe
    C:\Documents and Settings\All Users\Application Data\U3\U3Launcher\LaunchU3.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\ThinkPad\ConnectUtilities\SvcGuiHlpr.exe
    C:\WINDOWS\system32\wscntfy.exe
    C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.aldaily.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy1.smc.edu:80
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
    O4 - HKLM\..\Run: [S3TRAY2] S3Tray2.exe
    O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
    O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
    O4 - HKLM\..\Run: [TPKMAPHELPER] C:\Program Files\ThinkPad\Utilities\TpKmapAp.exe -helper
    O4 - HKLM\..\Run: [TpShocks] TpShocks.exe
    O4 - HKLM\..\Run: [TPHOTKEY] C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
    O4 - HKLM\..\Run: [TP4EX] tp4ex.exe
    O4 - HKLM\..\Run: [EZEJMNAP] C:\PROGRA~1\ThinkPad\UTILIT~1\EzEjMnAp.Exe
    O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
    O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
    O4 - HKLM\..\Run: [Synchronization Manager] %SystemRoot%\system32\mobsync.exe /logon
    O4 - HKLM\..\Run: [BMMGAG] RunDll32 C:\PROGRA~1\ThinkPad\UTILIT~1\pwrmonit.dll,StartPwrMonitor
    O4 - HKLM\..\Run: [BMMLREF] C:\Program Files\ThinkPad\Utilities\BMMLREF.EXE
    O4 - HKLM\..\Run: [BMMMONWND] rundll32.exe C:\PROGRA~1\ThinkPad\UTILIT~1\BatInfEx.dll,BMMAutonomicMonitor
    O4 - HKLM\..\Run: [BLOG] rundll32.exe C:\PROGRA~1\ThinkPad\UTILIT~1\BatLogEx.DLL,StartBattLog
    O4 - HKLM\..\Run: [frymxins] "C:\Program Files\ATI Technologies\Fire GL 3D Studio Max\atiimxgl "
    O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
    O4 - HKLM\..\Run: [SoundMAX] C:\Program Files\Analog Devices\SoundMAX\Smax4.exe /tray
    O4 - HKLM\..\Run: [TPKBDLED] C:\WINDOWS\system32\TpScrLk.exe
    O4 - HKLM\..\Run: [PRONoMgrWired] C:\Program Files\Intel\PROSetWired\NCS\PROSet\PRONoMgr.exe
    O4 - HKLM\..\Run: [ACWLIcon] C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe
    O4 - HKLM\..\Run: [cssauth] "C:\Program Files\Lenovo\Client Security Solution\cssauth.exe" silent
    O4 - HKLM\..\Run: [TVT Scheduler Proxy] C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe
    O4 - HKLM\..\Run: [signupshield] C:\Program Files\SignupShield\bin\signupshield.exe
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe "
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe "
    O4 - HKCU\..\Run: [Shell] "C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00001.exe "
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - Global Startup: Digital Line Detect.lnk = ?
    O4 - Global Startup: LaunchU3.exe.lnk = ?
    O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\IBM\Bluetooth Software\btsendto_ie_ctx.htm
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\IBM\Java141\jre\bin\NPJPI141.dll
    O9 - Extra 'Tools' menuitem: IBM Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\IBM\Java141\jre\bin\NPJPI141.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\IBM\Bluetooth Software\btsendto_ie.htm
    O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\IBM\Bluetooth Software\btsendto_ie.htm
    O9 - Extra button: Software Installer - {D1A4DEBD-C2EE-449f-B9FB-E8409F9A0BC5} - C:\Program Files\ThinkPad\PkgMgr\PkgMgr.exe
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
    O11 - Options group: [JAVA_IBM] Java (IBM)
    O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB
    O16 - DPF: {1842B0EE-B597-11D4-8997-00104BD12D94} (iCC Class) - http://www.pcpitstop.com/internet/pcpConnCheck.cab
    O16 - DPF: {238F6F83-B8B4-11CF-8771-00A024541EE3} (Citrix ICA Client) - http://www.runaware.com/dolphin/wficat.cab
    O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) - http://acs.pandasoftware.com/activescan/cabs/as2stubie.cab
    O16 - DPF: {2DAD3559-2923-4935-AD49-B673D2539944} (IASRunner Class) - http://www-307.ibm.com/pc/support/acpir.cab
    O16 - DPF: {31E68DE2-5548-4B23-88F0-C51E6A0F695E} (Microsoft PID Sniffer) - https://support.microsoft.com/OAS/ActiveX/odc.cab
    O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-18.cab
    O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.c...ls/en/x86/client/wuweb_site.cab?1099723804360
    O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
    O16 - DPF: {8BC53B30-32E4-4ED3-BEF9-DB761DB77453} (CInstallLPCtrl Object) - http://u3.sandisk.com/download/apps/LPInstaller.CAB
    O16 - DPF: {EFAEF0E4-F044-4D57-9900-1C3FF18524C9} (AV Class) - http://www.pcpitstop.com/antivirus/PitPav.cab
    O20 - Winlogon Notify: ACNotify - ACNotify.dll (file missing)
    O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
    O23 - Service: Ac Profile Manager Service (AcPrfMgrSvc) - Lenovo - C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe
    O23 - Service: ACU Configuration Service (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
    O23 - Service: Access Connections Main Service (AcSvc) - Lenovo - C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe
    O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: Bluetooth Service (btwdins) - WIDCOMM, Inc. - C:\Program Files\IBM\Bluetooth Software\bin\btwdins.exe
    O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
    O23 - Service: ThinkPad PM Service (IBMPMSVC) - Lenovo - C:\WINDOWS\system32\ibmpmsvc.exe
    O23 - Service: Sony SPTI Service for DVE (ICDSPTSV) - Sony Corporation - C:\WINDOWS\system32\IcdSptSv.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
    O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
    O23 - Service: IBM PSA Access Driver Control (PsaSrv) - Unknown owner - C:\WINDOWS\system32\PsaSrv.exe (file missing)
    O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
    O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
    O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
    O23 - Service: System Update (SUService) - Lenovo Group Limited - c:\program files\lenovo\system update\suservice.exe
    O23 - Service: ThinkVantage Registry Monitor Service - Lenovo Group Limited - C:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe
    O23 - Service: ThinkPad HDD APS Logging Service (TPHDEXLGSVC) - Lenovo. - C:\WINDOWS\System32\TPHDEXLG.exe
    O23 - Service: IBM KCU Service (TpKmpSVC) - Unknown owner - C:\WINDOWS\system32\TpKmpSVC.exe
    O23 - Service: TSS Core Service (TSSCoreService) - IBM - C:\Program Files\Lenovo\Client Security Solution\tvttcsd.exe
    O23 - Service: TVT Backup Service - Lenovo Group Limited - C:\Program Files\Lenovo\Rescue and Recovery\rrservice.exe
    O23 - Service: TVT Scheduler - Lenovo Group Limited - C:\Program Files\Common Files\Lenovo\Scheduler\tvtsched.exe
    O23 - Service: tvtnetwk - Unknown owner - C:\Program Files\Lenovo\Rescue and Recovery\ADM\IUService.exe

    --
    End of file - 12464 bytes
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.