SHOP PRODUCTS
Houzz Logo Print
lynn237

Firewall is not turned on message

Lyban zone 4
15 years ago

I just got a new printer Hp J6480. While installing it it suggests that I turn off my Firewall. I did that, everything is working fine with printer. Then I turned Firewall back on. Now when I start my computer in the morning I get an error saying my No Fireall is turned on. When I look in control panel and then security it has my fireall as ON. Why do I get this message and can I do something about it.

Thanks

Comments (86)

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    32 Bit HP CIO Components Installer
    Acrobat.com
    Acrobat.com
    Ad-Aware
    Adobe ActiveShare 1.3.1
    Adobe AIR
    Adobe AIR
    Adobe Flash Player 10 ActiveX
    Adobe Reader 7.0.9
    Adobe Type Manager 4.0
    Apple Mobile Device Support
    Apple Software Update
    ArcSoft PhotoStudio 5.5
    ASUS Display Drivers
    AVG Free Edition
    Canon Camera Access Library
    Canon Camera Support Core Library
    Canon Camera Window DC_DV 5 for ZoomBrowser EX
    Canon Camera Window DC_DV 6 for ZoomBrowser EX
    Canon Camera Window MC 6 for ZoomBrowser EX
    Canon G.726 WMP-Decoder
    Canon MovieEdit Task for ZoomBrowser EX
    Canon RAW Image Task for ZoomBrowser EX
    Canon RemoteCapture Task for ZoomBrowser EX
    Canon Utilities EOS Utility
    Canon Utilities PhotoStitch
    Canon Utilities ZoomBrowser EX
    CBN Selector 3
    CCleaner (remove only)
    CloneDVD2
    Garmin MapSource
    Google Earth
    Google Pack Screensaver
    Google Toolbar for Firefox
    Google Toolbar for Internet Explorer
    Google Update Helper
    Google Updater
    HijackThis 2.0.2
    Hotfix for Windows Media Format 11 SDK (KB929399)
    Hotfix for Windows Media Player 11 (KB939683)
    Hotfix for Windows XP (KB952287)
    HP Customer Participation Program 10.0
    HP Document Manager 1.0
    HP Imaging Device Functions 10.0
    HP Officejet J6400 Series
    HP Photosmart Essential 2.5
    HP Smart Web Printing
    HP Solution Center 10.0
    HP Update
    Image Check Print Service for Kant Photo
    Image Resizer Powertoy for Windows XP
    Infinite Jigsaw Puzzle
    Intel(R) PRO Network Connections Drivers
    IrfanView (remove only)
    iTunes
    J2SE Runtime Environment 5.0 Update 5
    Java(TM) 6 Update 11
    Java(TM) 6 Update 3
    Java(TM) 6 Update 5
    Java(TM) 6 Update 7
    KODAK DC215 Software
    Kyodai Mahjongg 2006 v1.42
    Logitech Desktop Messenger
    Logitech SetPoint
    MapSource
    MapSource - MetroGuide Canada v4
    MapSource - Topo Canada v2
    MapSource - Trip & Waypoint Manager v2
    MediaLife
    Microsoft Compression Client Pack 1.0 for Windows XP
    Microsoft Office XP Professional with FrontPage
    Microsoft Publisher 2000
    Microsoft Silverlight
    Microsoft User-Mode Driver Framework Feature Pack 1.0
    MSXML 4.0 SP2 (KB936181)
    MSXML 4.0 SP2 (KB954430)
    MyPublisher BookMaker
    Nero 6
    OCR Software by I.R.I.S. 10.0
    Personal Ancestral File 5
    Personal Ancestral File Companion 5.1.5
    Personal Colour Viewer
    PhotoFantasy 2000
    PhotoInPress BookDesigner
    PhotoPrinter 2.0
    Picasa 2
    PowerDVD
    QuickTime
    Red Eye Remover 2.0
    Security Update for Windows Media Player (KB952069)
    Security Update for Windows Media Player 11 (KB936782)
    Security Update for Windows Media Player 11 (KB954154)
    Security Update for Windows Media Player 9 (KB917734)
    Security Update for Windows XP (KB938464)
    Security Update for Windows XP (KB941569)
    Security Update for Windows XP (KB946648)
    Security Update for Windows XP (KB950759)
    Security Update for Windows XP (KB950760)
    Security Update for Windows XP (KB950762)
    Security Update for Windows XP (KB950974)
    Security Update for Windows XP (KB951066)
    Security Update for Windows XP (KB951376)
    Security Update for Windows XP (KB951376-v2)
    Security Update for Windows XP (KB951698)
    Security Update for Windows XP (KB951748)
    Security Update for Windows XP (KB952954)
    Security Update for Windows XP (KB953838)
    Security Update for Windows XP (KB953839)
    Security Update for Windows XP (KB954211)
    Security Update for Windows XP (KB954459)
    Security Update for Windows XP (KB954600)
    Security Update for Windows XP (KB955069)
    Security Update for Windows XP (KB956390)
    Security Update for Windows XP (KB956391)
    Security Update for Windows XP (KB956802)
    Security Update for Windows XP (KB956803)
    Security Update for Windows XP (KB956841)
    Security Update for Windows XP (KB957095)
    Security Update for Windows XP (KB957097)
    Security Update for Windows XP (KB958215)
    Security Update for Windows XP (KB958644)
    Security Update for Windows XP (KB958687)
    Security Update for Windows XP (KB960714)
    Security Update for Windows XP (KB960715)
    Shop for HP Supplies
    SoundMAX
    Stickies 6.7a
    SUPERAntiSpyware Free Edition
    Trellix Web
    Update for Windows XP (KB951072-v2)
    Update for Windows XP (KB951978)
    Update for Windows XP (KB955839)
    Update for Windows XP (KB967715)
    Windows Media Format 11 runtime
    Windows Media Format 11 runtime
    Windows Media Player 11
    Windows Media Player 11
    Windows XP Service Pack 3
    Yahoo! Toolbar

  • zep516
    15 years ago
    last modified: 9 years ago

    Ok very good

    now run that Malwarebutes scan follow the directions in my other post for downloading Malwarebutes and post a log, it may take some time to scan..

  • Related Discussions

    Installed ZoneAlarm Firewall XP will not turn off

    Q

    Comments (2)
    owbist, Thanks, it was just me being stupid, not reading what was before my eyes. Yes, Microsoft's Windows Security Manager did show a firewall was on, and it was/is Zonealarm. I didn't expect MS to be so open as to say some FW other than theirs was active. I'm at a meeting and grumbled to my neighbor at the table, he looked over and said: "it says Zone Alarm is on".
    ...See More

    Firewall

    Q

    Comments (4)
    You may well be infected. This is a good indicator, these things turn off the firewall, stop the anti virus and can make it difficult for you to access safety programs online. Run either Superantispyware or Malwarebytes - or both to be sure. Update the definitions first of course. Is your anti virus still running or has that also been turned off? Click Start, click Control panel, click Security. What do you see there?
    ...See More

    Windows Firewall Problem

    Q

    Comments (7)
    Hi Mikie, It is just the plain Norton Antivirus, no bells or whistles. In other words I do not have the Security one. In 2008 I was told it didn't have a firewall and later found out that it did. I just booted up tonight and the shield did not pop up at all and so the windows firewall is on. What I did was do a check disk and a defrag and now it is not popping up. That was weird. Still I think Norton might have had something to do with it as they have been known to have a firewall and not state it on the box. I know it is not good to have two firewalls going at the same time but since they do this stuff and don't inform the public I can't be sure if they changed their minds on this version and put one in with their updates. That is if they can do that. The intrusion prevention says that it automatically blocks internet attacks aimed at taking advantage of vulnerable programs. Detects and prevents attacks from threats already on an infected computer. It has antivirus, antispyware, advanced protection which says Intelligently monitors processes in real time to detect suspicious behavior and emerging threats. Uses Nortons SONAR technology. It has email message scanning and Norton Insight, which speeds up the scanning process and increases computer performance by identifying trusted files that do not need scanning. I just ran it and it says trusted 86 percent and scanning 14 percent. It also catches trojan horses like last year. It is a lot more fancier looking than 2008 and is very impressive looking but like you said I agree that they keep people in the dark about their product. It shows on the list of not having a firewall but their security one does have a firewall. Since they block incoming stuff that made me wonder about the firewall being stopped by Norton. Do they are do they not have some type of firewall and they call it something else. Your guess is as good as mine. ??????? thirdfrt!!!
    ...See More

    Firewall ?

    Q

    Comments (1)
    Security Essentials isnt a firewall. Vista has its own firewall seperate. Enabled by default, works fine. You can go to Control Panel / Security to verify the firewall is enabled. You might need to switch to classic view in control panel to see the Security icon.
    ...See More
  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    You have been incredibly helpful and patient with me. I want to thank you very much.
    I did what you said and here is the log:
    Malwarebytes' Anti-Malware 1.34
    Database version: 1813
    Windows 5.1.2600 Service Pack 3

    3/1/2009 3:16:04 PM
    mbam-log-2009-03-01 (15-16-04).txt

    Scan type: Full Scan (C:\:E:\:)
    Objects scanned: 166403
    Time elapsed: 32 minute(s), 19 second(s)

    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 24
    Registry Values Infected: 4
    Registry Data Items Infected: 0
    Folders Infected: 6
    Files Infected: 2

    Memory Processes Infected:
    (No malicious items detected)

    Memory Modules Infected:
    (No malicious items detected)

    Registry Keys Infected:
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\(07b18ea1-a523-4961-b6bb-170de4475cca) (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\(07b18eab-a523-4961-b6bb-170de4475cca) (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\(3dc201fb-e9c9-499c-a11f-23c360d7c3f8) (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\(9ff05104-b030-46fc-94b8-81276e4e27df) (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\(00a6faf1-072e-44cf-8957-5838f569a31d) (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\(1d4db7d2-6ec9-47a3-bd87-1e41684e07bb) (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\(1d4db7d2-6ec9-47a3-bd87-1e41684e07bb) (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\(07b18eab-a523-4961-b6bb-170de4475cca) (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\(25560540-9571-4d7b-9389-0f166788785a) (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\(3dc201fb-e9c9-499c-a11f-23c360d7c3f8) (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\(3e720452-b472-4954-b7aa-33069eb53906) (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\(63d0ed2c-b45b-4458-8b3b-60c69bbbd83c) (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\(7473d294-b7bb-4f24-ae82-7e2ce94bb6a9) (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\(98d9753d-d73b-42d5-8c85-4469cda897ab) (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\(9ff05104-b030-46fc-94b8-81276e4e27df) (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\(e79dfbca-5697-4fbd-94e5-5b2a9c7c1612) (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\(59c7fc09-1c83-4648-b3e6-003d2bbc7481) (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\(68af847f-6e91-45dd-9b68-d6a12c30e5d7) (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\(9170b96c-28d4-4626-8358-27e6caeef907) (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\(d1a71fa0-ff48-48dd-9b6d-7a13a3e42127) (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\(ddb1968e-ead6-40fd-8dae-ff14757f60c7) (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\(f138d901-86f0-4383-99b6-9cdd406036da) (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\RunDll32Policy\f3ScrCtr.dll (Adware.MyWay) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pss (Adware.MyWebSearch) -> Quarantined and deleted successfully.

    Registry Values Infected:
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\realtecks (Trojan.FakeAlert) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\MenuExt\&Search\ (Adware.Hotbar) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Media\WMSDK\Sources\f3PopularScreensavers (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.

    Registry Data Items Infected:
    (No malicious items detected)

    Folders Infected:
    C:\Documents and Settings\All Users\Application Data\Adsl Software Limited (Rogue.MalWarrior) -> Quarantined and deleted successfully.
    C:\Documents and Settings\All Users\Application Data\Adsl Software Limited\WinSpywareProtect (Rogue.MalWarrior) -> Quarantined and deleted successfully.
    C:\Documents and Settings\All Users\Application Data\Adsl Software Limited\WinSpywareProtect\BASE (Rogue.MalWarrior) -> Quarantined and deleted successfully.
    C:\Documents and Settings\All Users\Application Data\Adsl Software Limited\WinSpywareProtect\DELETED (Rogue.MalWarrior) -> Quarantined and deleted successfully.
    C:\Documents and Settings\All Users\Application Data\Adsl Software Limited\WinSpywareProtect\LOG (Rogue.MalWarrior) -> Quarantined and deleted successfully.
    C:\Documents and Settings\All Users\Application Data\Adsl Software Limited\WinSpywareProtect\SAVED (Rogue.MalWarrior) -> Quarantined and deleted successfully.

    Files Infected:
    C:\Documents and Settings\All Users\Application Data\Adsl Software Limited\WinSpywareProtect\LOG\20080617163724125.log (Rogue.MalWarrior) -> Quarantined and deleted successfully.
    C:\Documents and Settings\User\Application Data\Google\wcwdu16814728.exe (Trojan.FakeAlert) -> Delete on reboot.

  • zep516
    15 years ago
    last modified: 9 years ago

    Please boot to Safe made here are directions take your time may take a couple of tries:

    1. Restart your computer.

    2. When the machine first starts again it will generally list some equipment that is installed in your machine, amount of memory, hard drives installed etc. At this point you should gently tap the F8 key repeatedly until you are presented with a Windows XP Advanced Options menu.

    3. Select the option for Safe Mode using the arrow keys.

    4. Then press enter on your keyboard to boot into Safe Mode.

    5. Do whatever tasks you require and when you are done reboot to boot back into normal mode.
    Once in safe mode, Click start>Control Panel open the add/remove programs list and remove these old Java versions below:

    Java(TM) 6 Update 3
    Java(TM) 6 Update 5
    Java(TM) 6 Update 7

    Let me know if any dont uninstall.

    Still in Safe mode double click the hijackthis Icon on the Desk top only have hijackthis open when using it no other windows or browsers this time DO A SYSTEM SCAN ONLY.
    Place a check mark in the little box to the left next to the following entries:

    O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe

    O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/menusearch.jhtml?p=ZUxdm574YYCA

    Click "fixed checked >at the bottom.

    Close hijackthis.

    Reboot the computer back to normal mode.

    Double click the hijackthis Icon do system scan AND SAVE A LOG FILE.

    Post the log in your next reply.

  • zep516
    15 years ago
    last modified: 9 years ago

    It's possible those entries may be gone already...

    O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe

    O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/menusearch.jhtml?p=ZUxdm574YYCA

    zep

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    OK. I got into Safe mode on my second try. Now I tired to delete the three Java's but they would not uninstall.
    Then I cliked the 04 one you mentioned and fixed it but the only 08 one I had did not match what you had written. My only 08 says Extra context menu item:E&xport to Microsoft Excel-res://C:\progam\micros~2\office1-\excel.exe

    So I did not click it.
    Here is the log file
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 4:11:58 PM, on 3/1/2009
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Google\Update\GoogleUpdate.exe
    C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\WINDOWS\asuskbservice.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Canon\CAL\CALMAIN.exe
    C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
    C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
    C:\WINDOWS\anvshell.exe
    C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
    C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
    C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    C:\Program Files\Logitech\SetPoint\KEM.exe
    C:\Program Files\Logitech\SetPoint\KHALMNPR.EXE
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_clipbook.exe
    C:\Documents and Settings\User\Desktop\HiJackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ca/ig?hl=en
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
    R3 - URLSearchHook: Yahoo! Toolbar - (EF99BD32-C1FB-11D2-892F-0090271D4F88) - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: &Yahoo! Toolbar Helper - (02478D38-C3F9-4efb-9B51-7695ECA05670) - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: HP Print Enhancer - (0347C33E-8762-4905-BF09-768834316C61) - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
    O2 - BHO: Adobe PDF Reader Link Helper - (06849E9F-C8D7-4D59-B87D-784B7D6BE0B3) - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: Java(tm) Plug-In SSV Helper - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - C:\Program Files\Java\jre6\bin\ssv.dll
    O2 - BHO: Google Toolbar Helper - (AA58ED58-01DD-4d91-8333-CF10577473F7) - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
    O2 - BHO: Google Toolbar Notifier BHO - (AF69DE43-7D58-4638-B6FA-CE66B5AD205D) - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll
    O2 - BHO: Google Dictionary Compression sdch - (C84D72FE-E17D-4195-BB24-76C02E2E7C4E) - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - (DBC80044-A445-435b-BC74-9C25C1C588A9) - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: JQSIEStartDetectorImpl - (E7E6F031-17CE-4C07-BC86-EABFE594F69C) - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    O2 - BHO: HP Smart BHO Class - (FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856) - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
    O3 - Toolbar: &Google Toolbar - (2318C2B1-4965-11d4-9B18-009027A5CD4F) - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
    O3 - Toolbar: Yahoo! Toolbar - (EF99BD32-C1FB-11D2-892F-0090271D4F88) - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
    O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
    O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
    O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
    O4 - HKLM\..\Run: [anvshell] anvshell.exe
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
    O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'NETWORK SERVICE')
    O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'Default user')
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\KEM.exe
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
    O9 - Extra button: HP Smart Select - (DDE87865-83C5-48c4-8357-2F5B1AA84522) - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
    O9 - Extra button: (no name) - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: (17492023-C23A-453E-A040-C7C580BBF700) (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
    O16 - DPF: (6414512B-B978-451D-A0D8-FCFDF33E833C) (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1144259972678
    O16 - DPF: (6E5E167B-1566-4316-B27F-0DDAB3484CF7) (Image Uploader Control) - http://pix.futureshop.ca/en/ImageUploader4.cab
    O16 - DPF: (6F15128C-E66A-490C-B848-5000B5ABEEAC) (HP Download Manager) - https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab
    O16 - DPF: (6F750203-1362-4815-A476-88533DE61D0C) (Kodak Gallery Easy Upload Manager Class) - http://www.kodakgallery.com/downloads/BUM/BUM_WIN_IE_2/axofupld.cab
    O16 - DPF: (917623D1-D8E5-11D2-BE8B-00104B06BDE3) (CamImage Class) - http://paris.ville.orange.fr/CO/activex/AxisCamControl.cab
    O16 - DPF: (BCBC9371-595D-11D4-A96D-00105A1CEF6C) (View22RTE Class) - http://onlinedesigner.hgtv.com/images/app/view22rte.cab
    O16 - DPF: (D57262F5-9637-4E67-BC59-88C53EA76FC3) (ULcontrol Control) - http://pix.futureshop.ca/en/ulcontrolxp.cab
    O16 - DPF: (F127B9BA-89EA-4B04-9C67-2074A9DF61FD) (Photo Upload Plugin Class) - http://walmartqb.pnimedia.com/upload/activex/v2_009/PCAXSetupv2.0.0.9.cab?
    O16 - DPF: (F137B9BA-89EA-4B04-9C67-2074A9DF61FD) (Photo Upload Plugin Class) - http://costco.pnimedia.com/upload/activex/v2_0010/PCAXSetupv2.0.0.10.cab?
    O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
    O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
    O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    O23 - Service: ASUSKeyboardService - ASUSTeK COMPUTER INC. - C:\WINDOWS\asuskbservice.exe
    O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
    O23 - Service: Google Update Service (gupdate1c99691c3ac98a4) (gupdate1c99691c3ac98a4) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
    O23 - Service: %NVSVC.name% (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe

    --
    End of file - 9830 bytes

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    Forgot to add, that when I just got on now I get a warning that A Threat was detected
    Trojan Horse: Downloader Generic8.yon

  • zep516
    15 years ago
    last modified: 9 years ago

    Malwarebytes took that 08 away..

    Looks good!

    Talk about Java later we will need to use revo uninstaller for now lets cont. the clean up process.

    Almost there.,

    I will get Adobe link if you need it.

    1 Empty you Recycle bin.

    2 UP DATE Adobe Reader 7.0.9 to the latest version.

    3 Visit windows up date an install all critical up dates. Windows up date should be in your Start menu---Click start> programs look for windows update you will need to use Internet Explorer for this.

    4.
    Download ATF Cleaner by Atribune to your Desktop.


    Note: Vista users must use Run As Administrator
    Under Main: Select Files to Delete choose: Select All.
    Click the Empty Selectedbutton.
    If you use Firefox browser click Firefox] at the top and choose: Select All
    Click the Empty Selected button.
    If you would like to keep your saved passwords click No at the prompt.
    If you use Opera browser click Opera at the top and choose: Select All
    Click the [b]Empty Selected[/b] button.
    If you would like to keep your saved passwords click No at the prompt.
    Click Exit on the Main menu to close the
    program.

    After running the ATF cleaner just for fun ha ha see if java will uninstall.

    zep.

    Post back let me know how things are running I don't expect this to resolve everything but it had to be done..

    Keep ATF cleaner on your computer and use it, same for Malwarebytes keep it always update it then run it, it's an on-Demand scan meaning it offers no protection just removes stuff.

  • zep516
    15 years ago
    last modified: 9 years ago

    What program is giving you this warning????

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    If I copied it down properly it is this: but I had to scribble fast because it just stays on for about 20 seconds and then disappears:
    C/document and settings/user/application data google mccklpp321211

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    Zep
    I emptied recycle bin
    Updated Adobe Reader
    My windows is updated
    I downloaded ATF and did what you said
    After running , I tried removing the Java's and they did remove this time. YOU ARE GOOD.
    Now , a question. I now have on my desktop:
    ATF cleaner, Malwearbytes,Suo=perantispyware,Lavasofts Ad-aware and CCleaner.
    Should I get rid of one or two of these.
    I am also running AVG Free edition but most people tell me that is no good.
    What is your opinion?
    Thanks

  • zep516
    15 years ago
    last modified: 9 years ago

    I am not sure what that is popping up like that, if any program is going to warn you it would be avg???????

    So follow up on the recycle bin an ATF Cleaner stuff above.

    I will look into that pop up and may refer you to another forum if it cont. to occur.

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    Look at the post above your last. I did all that you said.
    That pop up has not come up again so maybe it is gone.

  • zep516
    15 years ago
    last modified: 9 years ago

    Ok you did all that good.

    AVG 7 is going to die soon I think no support so you would need to install Avg free 8 or Avast I would install avast.

    Keep all those tools ATF, Malwarebytes ect those do not run on the computer an good to have.

    Let me know when you want to install Avast we will do that together as uninstalling AVG has an can be a hassle.

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    "Keep all those tools ATF, Malwarebytes ect those do not run on the computer an good to have"

    What do you mean they do not run on computer?

    Can I not download Avast and just keep AVG if it is a pain to get rid of.

  • zep516
    15 years ago
    last modified: 9 years ago

    They are not Active Scanners and are called on Demand Scanners meaning you make them scan.

    The only things running on the computer for scans are Avg right now and that's ok..

    NO NO AVG must be uninstalled first are you ready to do it.

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    I am ready. Thanks again for your help...
    Can we start a new post.

  • zep516
    15 years ago
    last modified: 9 years ago

    No new post this is all the same topic.

    In the link below Download Avast to your desktop on that page you will see it in green where it says download now.

    Just down load it don't install it yet you will see the Icon on the desk top.

    Let me know when you have the Avast Icon on the desk top don't double click it an install it yet till we remove AVG I will give you a link for AVG remover tool in next post.

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    OK. I have it downloaded to my desktop.

  • zep516
    15 years ago
    last modified: 9 years ago

    In the link below is the AVG remover tool, from that page, Download AVG REMOVER(32BIT) to you desk top, its the first one listed in blue on that page. Run the tool double click it and let it do its thing.

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    I downloaded avg remover 32 bit to my desktop, then I tried to run it. I clicked on run and it asked if I was sure and I said yes. Then it just dissappered from screen and nothing happened. I tried twice.

  • zep516
    15 years ago
    last modified: 9 years ago

    Click Start programs look for AVG in the start menu put you mouse over AVG see if an uninstall option pops up in there if so uninstall it that way.

    Let me know

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    I started that and it wants to know If i want to continue with two areas to check if I want :
    1- Remove User settings
    2- Including objects in virus vault
    Do I check these

  • zep516
    15 years ago
    last modified: 9 years ago

    Yes get rid of it all.

    Then double click the Avast Icon and follow the install instructions.

    Post a fresh hijackthis log so I can see Avast and no AVG..

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    I think that is all done.
    They asked if I wanted to schdule a boot time scan and I said no. Is that OK.
    Here is the log from hijackthis:
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 6:39:48 PM, on 3/1/2009
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
    C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
    C:\WINDOWS\anvshell.exe
    C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
    C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
    C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    C:\Program Files\Logitech\SetPoint\KEM.exe
    C:\Program Files\Logitech\SetPoint\KHALMNPR.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Google\Update\GoogleUpdate.exe
    C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\WINDOWS\asuskbservice.exe
    C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Canon\CAL\CALMAIN.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Documents and Settings\User\Desktop\HiJackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ca/ig?hl=en
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
    R3 - URLSearchHook: Yahoo! Toolbar - (EF99BD32-C1FB-11D2-892F-0090271D4F88) - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: &Yahoo! Toolbar Helper - (02478D38-C3F9-4efb-9B51-7695ECA05670) - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: HP Print Enhancer - (0347C33E-8762-4905-BF09-768834316C61) - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
    O2 - BHO: AcroIEHelperStub - (18DF081C-E8AD-4283-A596-FA578C2EBDC3) - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: SSVHelper Class - (761497BB-D6F0-462C-B6EB-D4DAF1D92D43) - C:\Program Files\Java\jre6\bin\ssv.dll
    O2 - BHO: Google Toolbar Helper - (AA58ED58-01DD-4d91-8333-CF10577473F7) - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
    O2 - BHO: Google Toolbar Notifier BHO - (AF69DE43-7D58-4638-B6FA-CE66B5AD205D) - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll
    O2 - BHO: Google Dictionary Compression sdch - (C84D72FE-E17D-4195-BB24-76C02E2E7C4E) - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - (DBC80044-A445-435b-BC74-9C25C1C588A9) - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: JQSIEStartDetectorImpl - (E7E6F031-17CE-4C07-BC86-EABFE594F69C) - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    O2 - BHO: HP Smart BHO Class - (FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856) - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
    O3 - Toolbar: &Google Toolbar - (2318C2B1-4965-11d4-9B18-009027A5CD4F) - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
    O3 - Toolbar: Yahoo! Toolbar - (EF99BD32-C1FB-11D2-892F-0090271D4F88) - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
    O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
    O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
    O4 - HKLM\..\Run: [anvshell] anvshell.exe
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
    O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    O4 - HKUS\S-1-5-18\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (User 'Default user')
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\KEM.exe
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
    O9 - Extra button: (no name) - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C:\Program Files\Java\jre6\bin\jp2iexp.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - (08B0E5C0-4FCB-11CF-AAA5-00401C608501) - C:\Program Files\Java\jre6\bin\jp2iexp.dll
    O9 - Extra button: HP Smart Select - (DDE87865-83C5-48c4-8357-2F5B1AA84522) - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
    O9 - Extra button: (no name) - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - (e2e2dd38-d088-4134-82b7-f2ba38496583) - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - (FB5F1910-F110-11d2-BB9E-00C04F795683) - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: (17492023-C23A-453E-A040-C7C580BBF700) (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
    O16 - DPF: (6414512B-B978-451D-A0D8-FCFDF33E833C) (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1144259972678
    O16 - DPF: (6E5E167B-1566-4316-B27F-0DDAB3484CF7) (Image Uploader Control) - http://pix.futureshop.ca/en/ImageUploader4.cab
    O16 - DPF: (6F15128C-E66A-490C-B848-5000B5ABEEAC) (HP Download Manager) - https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab
    O16 - DPF: (6F750203-1362-4815-A476-88533DE61D0C) (Kodak Gallery Easy Upload Manager Class) - http://www.kodakgallery.com/downloads/BUM/BUM_WIN_IE_2/axofupld.cab
    O16 - DPF: (917623D1-D8E5-11D2-BE8B-00104B06BDE3) (CamImage Class) - http://paris.ville.orange.fr/CO/activex/AxisCamControl.cab
    O16 - DPF: (BCBC9371-595D-11D4-A96D-00105A1CEF6C) (View22RTE Class) - http://onlinedesigner.hgtv.com/images/app/view22rte.cab
    O16 - DPF: (D57262F5-9637-4E67-BC59-88C53EA76FC3) (ULcontrol Control) - http://pix.futureshop.ca/en/ulcontrolxp.cab
    O16 - DPF: (F127B9BA-89EA-4B04-9C67-2074A9DF61FD) (Photo Upload Plugin Class) - http://walmartqb.pnimedia.com/upload/activex/v2_009/PCAXSetupv2.0.0.9.cab?
    O16 - DPF: (F137B9BA-89EA-4B04-9C67-2074A9DF61FD) (Photo Upload Plugin Class) - http://costco.pnimedia.com/upload/activex/v2_0010/PCAXSetupv2.0.0.10.cab?
    O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
    O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
    O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    O23 - Service: ASUSKeyboardService - ASUSTeK COMPUTER INC. - C:\WINDOWS\asuskbservice.exe
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
    O23 - Service: Google Update Service (gupdate1c99691c3ac98a4) (gupdate1c99691c3ac98a4) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
    O23 - Service: %NVSVC.name% (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe

    --
    End of file - 10148 bytes

  • zep516
    15 years ago
    last modified: 9 years ago

    They asked if I wanted to schdule a boot time scan and I said no. Is that OK.

    Yes it's ok.

    And so is everything else for now.

    That's all I can do for today.

    Thanks for making this easy.

    Joe

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    Thank you Joe....
    You have been a great help, I could not have done any of that without you.
    Thanks again,
    Lynne

  • kudzu9
    15 years ago
    last modified: 9 years ago

    Hey, Lynne-
    Congratulations! That's a lot of good work for someone who says he doesn't know much about computers. And now you're probably a little smarter...

  • zep516
    15 years ago
    last modified: 9 years ago

    Forgot one an it's important remove it from the add/remove list:

    J2SE Runtime Environment 5.0 Update 5

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    OK Zep.
    Thank you Zep. I just removed it.
    Kudzu9,
    Thanks. I feel a lot smarter, now if I could only remember what I did for another time. LOL

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    I am back again. This morning when I turned on my computer I got a message in a balloon down by the clock that quickly came on and said that My computer might be at risk No firewall turned on. Then the balloon disappered. I went to control panel and under security it says that my firewall is ON. What is this about?

  • ravencajun Zone 8b TX
    15 years ago
    last modified: 9 years ago

    try going in to the security area in control panel and turn off the firewall then reboot the pc and go back and turn on the firewall sometimes it has a glitch and does that and a reboot and reset helps.

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    Thanks Ravencajun,
    I did that but I won't know right away if it works or not because that balloon pops up every once in awhile in the mornings when I turn it on but not every day. Unless it does and I miss it because it does not stay up for long.
    Hope I am OK now.

  • ravencajun Zone 8b TX
    15 years ago
    last modified: 9 years ago

    since you are running xpsp2 you really would be better off with a firewall program that is a 2 way firewall, the one provided by windows is only one way so not great protection.
    Firewalls and ZoneAlarm Guide and Tips

    there are several free ones including the zone alarm so if you want a list just ask.

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    I just read that guide you mentioned but it says this:

    If you are using WindowsXP SP2, then your might not need to bother yourself with installing ZoneAlarm. SP2 Internet Connection Firewall does its job much better than earlier versions of it. If you dont want to mess with 3rd party firewall like ZoneAlarm, stay with SP2 Internet Connection Firewall! Also, ZoneAlarm does not work with latest versions of F-Secure products, so if you are using F-Secure, better dump ZoneAlarm and trust ICF or F-Secures firewall (if it has one!)...

    I have XP Pro. I think SP2 but how do I find out for sure what I have.
    If I am reading this info right,is it not saying if I have sp2 not to install zone alarm.

    I have had my computer for about 2 years now. Never never a problem until last week when I had to install this new HP printer. It mentioned in instructions to turn off Firewall which I did for about 20 min. while I did the install then turned it right back on and then all this stuff started.
    I might be OK now but I am just not sure if that baloon will reappear and if it means anything becasue like I said, my firewll is turned on .

  • zep516
    15 years ago
    last modified: 9 years ago

    Right click the (Mycomputer Icon), that may be on the desk top or in the start menu,now choose properties, tell us the Information presented,

    Ram?
    Processor type? (Pentium(R] ?

    & Operating System Information?

    What is the Model # of the HP Printer?

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    OK. Did that.
    Microsoft Windows XP
    Professional
    Version 2002
    Service Pack 3

    Intel R
    Pentium (R) cpu 2.66 GHz
    2.67 GHz, 1.00 GB of Ram
    HP Office Jet J6480 all in one

  • zep516
    15 years ago
    last modified: 9 years ago

    So the firewall issue has occurred with the addition of the printer software is that true.

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    Yes, But the balloon only pops up with the warning when I turn the computer on in the morning and even then not always.
    It says that my firewall is turned off but when I go look under security tab it is turned on.
    Then if I turn my computer on and off at different times, the balloon does not come on. I think it is on and the problem is really just that balloon coming up randomly.

  • zep516
    15 years ago
    last modified: 9 years ago

    But before the printer was installed, the balloon never poped up at any time right?

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    NO Never.

  • zep516
    15 years ago
    last modified: 9 years ago

    I don't know how much you use the printer, but I think the next step is to remove the printer software and run the computer an see if it solves the issue.

    Then reinstall the printer software again.

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    OK. Thank you for the help again.
    I will try that in the morning.

  • ravencajun Zone 8b TX
    15 years ago
    last modified: 9 years ago

    lyban as I had stated in my earlier reply I do not agree with that statement in the guide,(unfortunately that guide is a bit old and some of the issues we face today are much more serious, overall it is a helpful guide) and if you were to go to any of the support forums to get your pc cleaned they would tell you that you are lacking a firewall and recommend you install a stand alone firewall, yes the sp2 version is somewhat better than the original xp firewall but is not the same as what you get with a software firewall program, and sp3 did nothing to aid the firewall. Zep mentioned early on about the xp firewall not being a good choice.
    It is of course up to you how much protection you want, but I just wanted to make sure you had seen my reply to you earlier since you mentioned it again.
    I had also mentioned in my reply about a router and asked if you have one in your connections? how do you connect to the internet is it dsl, dialup, fios??

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    ravencajun,
    I connect to the internet through my cable company.
    I do not use a router.
    I would like to be well protected, I guess I am just nervous about installing this myself.

  • grandms
    15 years ago
    last modified: 9 years ago

    Lynne, since you do not use a router, by all means install a software firewall. The link RC provided on Mar. 3 gives such complete instructions for installing and configuring Zone Alarm, there's nothing to be nervous about. There are other good firewalls, also, but ZA is easy to install and use, so that is probably why it is so popular. Be sure you click to download the FREE version and not the trial version of Pro, unless you want to pay for the full Pro version.

  • ravencajun Zone 8b TX
    15 years ago
    last modified: 9 years ago

    it does take a little getting used to and letting the program learn, it will pop up and ask you do you want to let such and such connect to the internet you will likely know what is asking because you are trying to use something that needs access so in those cases say yes, if it is something that needs to access it regularly like your antivirus check mark where it says remember this so it does not ask each time.
    Do not give server rights some things will ask but it is not necessary once you say no to server rights it will next pop up asking for access, that you can allow. If it is something you do not recognize asking then say no and see if you can determine what it is, if you had some type of malware that is trying to phone home you would not want to allow that access. I prefer mine to pop up and ask each time with some of the rarely used stuff I like to know what is connecting.

    When getting zonealarm or any other free firewall or any program actually be very alert during the install period and uncheck or do not allow the addition of any toolbars or extras, Zone alarm unfortunately now does try to include a toolbar with the free version, you do not want that toolbar.

    and if you have problems or questions just ask.
    When something like generic win 32 something ask for permission say yes or you will not be able to connect to the internet, that is one to check mark always allow.

    Yes as grandms said with cable you have a direct connection and with no router in between you and the internet that even more dictates the use of a software firewall. The benefit of a router with built in hardware firewall is great but I use both on my windows machines, actually my linux has guarddog firewall built into it so I even have one on linux.

    The link I had provided the main reason I do refer that link is that there are such good instructions and pictures for someone new to firewalls.

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    Thank you Grandms and ravencajun,
    I will take a stab at installing that when I have more quiet time to follow the instructions.
    One thing you mention above about not downloading toolbars while downloading things. I wonder if that is my problem. While downloading the HP Printer I did download a HP toolbar. When I realized it , I tired to get rid ot it.I went into toolbars and turned it off but as soon as I reboot or change what I am doing it is back again.
    Can I get rid of this toolbar permanently

  • zep516
    15 years ago
    last modified: 9 years ago

    I don't see an hp tool bar in your last log the only hp stuff I see is below.

    O9 - Extra button: HP Smart Select - (DDE87865-83C5-48c4-8357-2F5B1AA84522) - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll

    O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe

    Unless your log has changed.

    O2 - BHO: HP Print Enhancer - (0347C33E-8762-4905-BF09-768834316C61) - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll

  • Lyban zone 4
    Original Author
    15 years ago
    last modified: 9 years ago

    No, no changes. that I know about. But it is called Yahoo toolbar. But has a HP before the Yahoo, I was asked if I wanted to download it when I installed HP printer. I found it in my add/remove programs and removed it there so I hope that is gone for good.