1
   

inetkw.dll Problem :( Hijackthis Log posted

 
 
-John-
 
Reply Sun 11 Jul, 2004 02:32 pm
I am having troubles with the recent inetkw.dll rundll errors. Could somone please help me? here is my Hijackthis Log


Logfile of HijackThis v1.98.0
Scan saved at 1:31:00 PM, on 7/11/2004
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\WinTools\WToolsS.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\apphg32.exe
C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe
C:\PROGRA~1\NORTON~1\WinFax\WFXSWTCH.exe
C:\WINDOWS\System32\wfxsnt40.exe
C:\Program Files\Common Files\Real\Update_OB\evntsvc.exe
C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\windows\system32\nscntrl.exe
C:\WINDOWS\System32\kggdwl.exe
C:\WINDOWS\System32\glaneiq.exe
C:\WINDOWS\System32\LzioMediaUpdater.exe
C:\Program Files\Common Files\WinTools\WToolsA.exe
C:\WINDOWS\System32\hpdllhost.exe
C:\WINDOWS\system32\appjh32.exe
C:\Program Files\WhenUSearch\Search.exe
C:\WINDOWS\System32\robstr.exe
C:\PROGRA~1\INTERN~3\inetmgr.exe
C:\Program Files\Messenger\msmsgs.exe
C:\PROGRA~1\Web Offer\wo.exe
C:\WINDOWS\System32\linl386.exe
C:\Documents and Settings\John Kim\Application Data\tnbt.exe
C:\WINDOWS\System32\NDrv.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\PROGRA~1\INTERN~3\inetsvc.exe
C:\WINDOWS\System32\devldr32.exe
C:\Program Files\Common Files\WinTools\WSup.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\Kazaa Lite2\kazaalite.kpp
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Microsoft Office\Office\WINWORD.EXE
C:\Program Files\MSN\MSNCoreFiles\MSN6.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\John Kim\Desktop\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.websearch.com/ie.aspx?tb_id=50140
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\wkxwn.dll/sp.html#96676
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = res://wkxwn.dll/index.html#96676
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = res://wkxwn.dll/index.html#96676
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = res://C:\WINDOWS\wkxwn.dll/sp.html#96676
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.websearch.com/ie.aspx?tb_id=50140
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\wkxwn.dll/sp.html#96676
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = res://wkxwn.dll/index.html#96676
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.websearch.com/ie.aspx?tb_id=50140
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {707E6F76-9FFB-4920-A976-EA101271BC25} - C:\Program Files\TV Media\TvmBho.dll
O2 - BHO: TwaintecObj Class - {000020DD-C72E-4113-AF77-DD56626C6C42} -   ¦C:\WINDOWS\twaintec.dll (file missing)
O2 - BHO: (no name) - {87766247-311C-43B4-8499-3D5FEC94A183} - C:\PROGRA~1\COMMON~1\WinTools\WToolsB.dll
O2 - BHO: (no name) - {EF566E13-6825-500A-957F-C72AD1DF5E45} - C:\WINDOWS\system32\msok.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [NAV Agent] C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe
O4 - HKLM\..\Run: [WFXSwtch] C:\PROGRA~1\NORTON~1\WinFax\WFXSWTCH.exe
O4 - HKLM\..\Run: [WinFaxAppPortStarter] wfxsnt40.exe
O4 - HKLM\..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\evntsvc.exe -osboot
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Adaptec\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [nscntrl] c:\windows\system32\nscntrl.exe /noconnect
O4 - HKLM\..\Run: [mpvbnosem] C:\WINDOWS\System32\kggdwl.exe
O4 - HKLM\..\Run: [CTLLFYLM] c:\windows\system32\ctllfylm.exe /install
O4 - HKLM\..\Run: [NJUGYPPB] c:\windows\system32\njugyppb.exe /install
O4 - HKLM\..\Run: [hpsysconf1] C:\WINDOWS\System32\glaneiq.exe
O4 - HKLM\..\Run: [LzioMediaUpdater] C:\WINDOWS\System32\LzioMediaUpdater.exe
O4 - HKLM\..\Run: [li01f948] rundll32.exe C:\WINDOWS\System32\li01f948.dll,EnableRunDLL32
O4 - HKLM\..\Run: [iel2cde8] rundll32.exe C:\WINDOWS\System32\iel2cde8.dll,EnableRunDLL32
O4 - HKLM\..\Run: [bxxs5] RunDLL32.EXE C:\WINDOWS\bxxs5.dll,DllRun
O4 - HKLM\..\Run: [icdd7ee6] rundll32.exe C:\WINDOWS\System32\icdd7ee6.dll,EnableRunDLL32
O4 - HKLM\..\Run: [AutoUpdater] "C:\Program Files\AutoUpdate\AutoUpdate.exe"
O4 - HKLM\..\Run: [WinTools] C:\Program Files\Common Files\WinTools\WToolsA.exe
O4 - HKLM\..\Run: [000hpdllhost] C:\WINDOWS\System32\hpdllhost.exe
O4 - HKLM\..\Run: [readdb40] rundll32.exe C:\WINDOWS\System32\readdb40.dll,EnableRunDLL32
O4 - HKLM\..\Run: [wm41a398] rundll32.exe C:\WINDOWS\System32\wm41a398.dll,EnableRunDLL32
O4 - HKLM\..\Run: [WhenUSearch] "C:\Program Files\WhenUSearch\Search.exe"
O4 - HKLM\..\Run: [appjh32.exe] C:\WINDOWS\system32\appjh32.exe
O4 - HKLM\..\Run: [Cryptographic Service] C:\WINDOWS\System32\qnxog.exe
O4 - HKLM\..\Run: [XTPLCAHT] c:\windows\system32\xtplcaht.exe /install
O4 - HKLM\..\Run: [235W3th] robstr.exe
O4 - HKLM\..\Run: [inetmgr] C:\PROGRA~1\INTERN~3\inetmgr.exe
O4 - HKLM\..\Run: [svchost] C:\WINDOWS\svchost.exe
O4 - HKLM\..\RunOnce: [apphg32.exe] C:\WINDOWS\apphg32.exe
O4 - HKLM\..\RunOnce: [apiio32.exe] C:\WINDOWS\system32\apiio32.exe
O4 - HKLM\..\RunOnce: [winni.exe] C:\WINDOWS\winni.exe
O4 - HKLM\..\RunOnce: [appxh32.exe] C:\WINDOWS\system32\appxh32.exe
O4 - HKLM\..\RunOnce: [iezb.exe] C:\WINDOWS\system32\iezb.exe
O4 - HKLM\..\RunOnce: [sdkhr.exe] C:\WINDOWS\system32\sdkhr.exe
O4 - HKLM\..\RunOnce: [ntpd32.exe] C:\WINDOWS\system32\ntpd32.exe
O4 - HKLM\..\RunOnce: [appsw.exe] C:\WINDOWS\appsw.exe
O4 - HKLM\..\RunOnce: [ipbl32.exe] C:\WINDOWS\ipbl32.exe
O4 - HKLM\..\RunOnce: [appeg.exe] C:\WINDOWS\appeg.exe
O4 - HKLM\..\RunOnce: [atlfk32.exe] C:\WINDOWS\atlfk32.exe
O4 - HKLM\..\RunOnce: [ntrq.exe] C:\WINDOWS\system32\ntrq.exe
O4 - HKLM\..\RunOnce: [appqn.exe] C:\WINDOWS\appqn.exe
O4 - HKLM\..\RunOnce: [winnx32.exe] C:\WINDOWS\system32\winnx32.exe
O4 - HKLM\..\RunOnce: [apisz32.exe] C:\WINDOWS\system32\apisz32.exe
O4 - HKLM\..\RunOnce: [ipcu.exe] C:\WINDOWS\system32\ipcu.exe
O4 - HKLM\..\RunOnce: [appff32.exe] C:\WINDOWS\system32\appff32.exe
O4 - HKLM\..\RunOnce: [javaba32.exe] C:\WINDOWS\system32\javaba32.exe
O4 - HKLM\..\RunOnce: [sysvg.exe] C:\WINDOWS\system32\sysvg.exe
O4 - HKLM\..\RunOnce: [winor32.exe] C:\WINDOWS\system32\winor32.exe
O4 - HKLM\..\RunOnce: [d3dw32.exe] C:\WINDOWS\system32\d3dw32.exe
O4 - HKLM\..\RunOnce: [ipka.exe] C:\WINDOWS\ipka.exe
O4 - HKLM\..\RunOnce: [winwl.exe] C:\WINDOWS\system32\winwl.exe
O4 - HKLM\..\RunOnce: [netxd32.exe] C:\WINDOWS\system32\netxd32.exe
O4 - HKLM\..\RunOnce: [ieam.exe] C:\WINDOWS\system32\ieam.exe
O4 - HKLM\..\RunOnce: [atllj32.exe] C:\WINDOWS\atllj32.exe
O4 - HKLM\..\RunOnce: [ipdr.exe] C:\WINDOWS\ipdr.exe
O4 - HKLM\..\RunOnce: [TV Media] C:\Program Files\TV Media\Tvm.exe
O4 - HKLM\..\RunOnce: [d3zy.exe] C:\WINDOWS\system32\d3zy.exe
O4 - HKLM\..\RunOnce: [javasy32.exe] C:\WINDOWS\system32\javasy32.exe
O4 - HKCU\..\Run: [SureCleanProfessional] "C:\PROGRA~1\PANICW~1\SURECL~1\SRClean.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [eZWO] C:\PROGRA~1\Web Offer\wo.exe
O4 - HKCU\..\Run: [J0u6RjN8g] linl386.exe
O4 - HKCU\..\Run: [Eedh] C:\Documents and Settings\John Kim\Application Data\tnbt.exe
O4 - HKCU\..\Run: [NDrv] C:\WINDOWS\System32\NDrv.exe
O4 - HKCU\..\RunOnce: [TV Media] C:\Program Files\TV Media\Tvm.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O9 - Extra button: (no name) - {237AA178-C3BC-4f67-A8BB-D8BC14BA0B89} - (no file)
O9 - Extra button: (no name) - {869EE607-5376-486d-8DAC-EDC8E239AD5F} - (no file)
O9 - Extra button: (no name) - {94379F6C-EE6A-4C82-92CC-8D8D93F6FDE9} - C:\WINDOWS\System32\COMDLG32.OCX
O9 - Extra button: (no name) - {BE2F2769-8A63-4bc7-8A99-06C2C4AD7B9B} - (no file)
O9 - Extra button: Microsoft® JavaScript® Console - {E97601D6-782D-428A-8609-6F0811B9C673} - C:\WINDOWS\System32\COMDLG32.OCX
O9 - Extra 'Tools' menuitem: JavaScript Console - {E97601D6-782D-428A-8609-6F0811B9C673} - C:\WINDOWS\System32\COMDLG32.OCX
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra button: (no name) - {237AA178-C3BC-4f67-A8BB-D8BC14BA0B89} - (no file) (HKCU)
O9 - Extra button: (no name) - {869EE607-5376-486d-8DAC-EDC8E239AD5F} - (no file) (HKCU)
O9 - Extra button: (no name) - {BE2F2769-8A63-4bc7-8A99-06C2C4AD7B9B} - (no file) (HKCU)
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab
O16 - DPF: {286C27EB-642E-4EC3-82BC-A7EF69498266} (WebCalendar Control) - https://signon.koreanair.co.kr/Shfiles.nsf/FilesV/WebCalendar/$file/WebCalendar.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab
O16 - DPF: {3B99B0C6-F3BE-4BA1-B1BE-E12849211433} (prjMCrypCSBasicCtrl.UserControl1) - https://signon.koreanair.co.kr/./prjMCrypCSBasicCtrl.CAB
O16 - DPF: {4E888414-DB8F-11D1-9CD9-00C04F98436A} (Microsoft.WinRep) - https://webresponse.one.microsoft.com/oas/ActiveX/winrep.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2e529727a6ef04/housecall.antivirus.com/housecall/xscan53.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab
O16 - DPF: {9EB320CE-BE1D-4304-A081-4B4665414BEF} (MediaTicketsInstaller Control) - http://www.mt-download.com/MediaTicketsInstaller.cab
O18 - Protocol: icoo - {4A8DADD4-5A25-4D41-8599-CB7458766220} - C:\WINDOWS\msopt.dll


Thank you
  • Topic Stats
  • Top Replies
  • Link to this Topic
Type: Discussion • Score: 1 • Views: 1,279 • Replies: 1
No top replies

 
Craven de Kere
 
  1  
Reply Tue 3 Aug, 2004 04:49 am
Hi, sorry that this one slipped through the cracks.

If you still need help post a fresh log and I will try to get around to it.
0 Replies
 
 

Related Topics

Clone of Micosoft Office - Question by Advocate
Do You Turn Off Your Computer at Night? - Discussion by Phoenix32890
The "Death" of the Computer Mouse - Discussion by Phoenix32890
Windows 10... - Discussion by Region Philbis
Surface Pro 3: What do you think? - Question by neologist
Windows 8 tips thread - Discussion by Wilso
GOOGLE CHROME - Question by Setanta
.Net and Firefox... - Discussion by gungasnake
Hacking a computer and remote access - Discussion by trying2learn
 
  1. Forums
  2. » inetkw.dll Problem :( Hijackthis Log posted
Copyright © 2025 MadLab, LLC :: Terms of Service :: Privacy Policy :: Page generated in 0.03 seconds on 12/23/2025 at 08:31:03