Author Topic: CHKDLL.DLL  (Read 2763 times)

0 Members and 1 Guest are viewing this topic.

Offline kapa

  • Newbie
  • *
  • Posts: 5
CHKDLL.DLL
« on: July 31, 2006, 09:42:31 PM »
Hi everybody !

I installed yesterday Avast antivirus home version and it found that my file CHKDLL.DLL is infected with a spyware.  This file give access to Internet Explorer so if I put this file into quarantine or delete it, I won't have access to Internet anymore.  Well I suspected that this file was infected as everytime I was going on Internet, my main page was redirected to another page, offering (offering is a big word, as they don't give the choice...!) to download kind of software named, if I remember well, Winantivrus 2006.

Any suggestion about what I should do ?

Thanks in advance !

Offline mitch

  • Hero Member
  • *****
  • Posts: 729
Re: CHKDLL.DLL
« Reply #1 on: July 31, 2006, 10:28:35 PM »
is the spelling correct as i could find nothing in google about it?
what is your system?xp ?
do you have a good working
firewall/anti-virus/anti-spyware?

if you have anti-spyware, what ones and have you ran a scan with them?

and gottta ask, how did you post if no IE?

do you know about firefox?
did avast say what the infection was? name?
and did you quarentine or delete the dll?


why i ask is i think there woud be a good chance that if one of our experts looks at the hijack this log there might be a chance to repair your IE? usually there is more to spyware than just a dll!


so will wait for answers and then we can work on a game plan ok?

and do you know how to post a hijack this log?

Offline Corrine

  • The Mystical Rose
  • Administrator
  • Hero Member
  • *****
  • Posts: 11536
  • "Stronger than the past, united in our goal."
    • Security Garden
Re: CHKDLL.DLL
« Reply #2 on: July 31, 2006, 11:30:11 PM »
I agree, Mitch.  There is no such legitimate file as CHKDLL.DLL

Hi, Kapa.  Welcome to LandzDown Forum. 

Please download HijackThis© from:  http://www.thespykiller.co.uk/files/HJTsetup.exe

Note:  This is a complete installer that installs HijackThis to your computer to at C:\Program Files\HijackThis, making an entry in the start menu and also providing a desktop shortcut.

At the download prompt, choose "Save".  After the download is complete, navigate to the C:\Program Files\HijackThis folder and double-click it.  When the installation is complete, double-click the HijackThis icon on your desktop.  Select "Do a system scan and save logfile".  Select a name for this first logfile and a text file will be produced.  Please have word wrap turned ON in Notepad. Copy the text file and paste it here as a reply.
,  

Take a walk through the "Security Garden" -- Where Everything is Coming up Roses!

Remember - A day without laughter is a day wasted.
May the wind sing to you and the sun rise in your heart.

Offline kapa

  • Newbie
  • *
  • Posts: 5
Re: CHKDLL.DLL
« Reply #3 on: August 02, 2006, 12:43:37 AM »
Dear Mitch and Corrine,

First of all, thank you very much for your help and information.  I am not familiar with forums, and english is not my first language, but I am discovering a wonderful world of help.

I got a file named CHKDLL.DLL, installed in c:\windows\system32 directory, my system is Windows XP with sp2.

I got AVAST as antivirus and Ad-Aware.  The problem is that I installed the antivirus too late, we went on Internet sometimes before installing AVAST...

I ran a scan with both.  Avast report shows:
30-07-06 23:34:55   SYSTEM   1480 Sign of "Win32:Conhook-L [Trj]" has been found in "C:\WINDOWS\system32\chkDll.dll" file.  I just quarantine the file.

I go on Internet through my computer at office. Infected computer is home one.

I don't know firefox neither Hijack this log, but thanks to Corrine who helped to discover it.
So following is a copy of the log file:
Logfile of HijackThis v1.99.1
Scan saved at 19:37:31, on 01-08-06
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\RunDll32.exe
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TELUS\TurboGT\turbogt.exe
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:5400
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: PBlockHelper Class - {4115122B-85FF-4DD3-9515-F075BEDE5EB5} - C:\Program Files\TELUS\TurboGT\PBHelper.dll
O2 - BHO: (no name) - {d1468ff5-a845-4815-b809-0599bd933cd0} - C:\WINDOWS\system32\chkDll.dll
O4 - HKLM\..\Run: [SiSUSBRG] C:\WINDOWS\SiSUSBrg.exe
O4 - HKLM\..\Run: [SiS KHooker] C:\WINDOWS\System32\khooker.exe
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [mmtask] "C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_7 -reboot 1
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: Démarrer Internet Turbo GT.lnk = C:\Program Files\TELUS\TurboGT\turbogt.exe
O4 - Startup: PowerReg Scheduler V3.exe
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: Afficher l'image d'origine. - res://C:\Program Files\TELUS\TurboGT\turbogt.exe/227
O8 - Extra context menu item: Afficher toutes les images d'origine. - res://C:\Program Files\TELUS\TurboGT\turbogt.exe/250
O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{51738362-A112-4BA0-B57D-6E4F522EF8EB}: NameServer = 142.169.1.16 199.84.242.22
O20 - Winlogon Notify: chkDll - C:\WINDOWS\SYSTEM32\chkDll.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe

Hope that I sent all information you asked.  Thanks again for your help.  With best regards,

Kapa

Offline winchester73

  • Administrator
  • Hero Member
  • *****
  • Posts: 5124
  • Half a bubble off plumb
Re: CHKDLL.DLL
« Reply #4 on: August 02, 2006, 01:42:22 PM »
I see how you found us:  http://forum.avast.com/index.php?PHPSESSID=a12cb1c3fd20a4beb777a62256b8ccaf&topic=22533.new

 :D

This shows a Vundo infection:

O2 - BHO: (no name) - {d1468ff5-a845-4815-b809-0599bd933cd0} - C:\WINDOWS\system32\chkDll.dll

O20 - Winlogon Notify: chkDll - C:\WINDOWS\SYSTEM32\chkDll.dll


First, download Atri's VundoFix.exe to your desktop: http://www.atribune.org/ccount/click.php?id=4

Double-click VundoFix.exe to run it.

Put a check next to 'Run VundoFix as a task'.
You will receive a message saying vundofix will close and re-open in a minute or less. Click 'OK'.
When VundoFix re-opens, click the 'Scan for Vundo' button.
Once it's done scanning, click the 'Remove Vundo' button.
You will receive a prompt asking if you want to remove the files, click 'YES'.
Once you click yes, your desktop will go blank as it starts removing Vundo.
When completed, it will prompt that it will shutdown your computer, click 'OK'.

Turn your computer back on.

Please post the contents of C:\vundofix.txt and a new HJT log ...
Speak softly, but carry a big Winchester ... Winchester Arms Collectors Association member



Offline SpiritWind

  • Jr. Member
  • **
  • Posts: 81
Re: CHKDLL.DLL
« Reply #5 on: August 02, 2006, 07:55:00 PM »
 :D  Winchester :

      Another one of my "referrals" ; normally on the Avast forums I would have 1st
      recommended "ewido" if kapa had mentioned there a "trojan" . I see from doing
      Google Search that VundoFix is one of the recommendations; thought that was
      no longer used !? Has "Conhook" revitalized its use ?
For the BEST in what counts in Life :

www.tacf.org

Offline kapa

  • Newbie
  • *
  • Posts: 5
Re: CHKDLL.DLL
« Reply #6 on: August 07, 2006, 10:48:43 PM »
Hello Winchester73 and everybody !

I did the process as per Winchester73's recommandations.

This is the content of my new HijackThis LOG that I ran after running the Vundofix.exe:
Logfile of HijackThis v1.99.1
Scan saved at 18:30:29, on 07-08-06
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\RunDll32.exe
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TELUS\TurboGT\turbogt.exe
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\spider.exe
C:\Program Files\Hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: PBlockHelper Class - {4115122B-85FF-4DD3-9515-F075BEDE5EB5} - C:\Program Files\TELUS\TurboGT\PBHelper.dll
O2 - BHO: (no name) - {d1468ff5-a845-4815-b809-0599bd933cd0} - C:\WINDOWS\system32\chkDll.dll (file missing)
O4 - HKLM\..\Run: [SiSUSBRG] C:\WINDOWS\SiSUSBrg.exe
O4 - HKLM\..\Run: [SiS KHooker] C:\WINDOWS\System32\khooker.exe
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [mmtask] "C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_7 -reboot 1
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: Démarrer Internet Turbo GT.lnk = C:\Program Files\TELUS\TurboGT\turbogt.exe
O4 - Startup: PowerReg Scheduler V3.exe
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_04\bin\npjpi150_04.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe

Then, Vundofix LOG:
VundoFix V5.1.7
Running as SYSTEM
from c:\windows\system32\VundoFix.exe

Checking Java version...
Java version is 1.5.0.4
Scan started at 18:03:08 07/08/2006
Listing files found while scanning....
C:\windows\system32\chkDll.dll

Beginning removal...
The process smss.exe was successfully stopped
The process winlogon.exe was successfully stopped
The process explorer.exe was successfully stopped
The process iexplore.exe was successfully stopped
The process rundll32.exe was successfully stopped

Attempting to delete C:\windows\system32\chkDll.dll
C:\windows\system32\chkDll.dll Has been deleted!

Performing Repairs to the registry.
Done!

VundoFix V5.1.7
Checking Java version...
Java version is 1.5.0.4
Scan started at 18:24:45 07-08-06
Listing files found while scanning....
No infected files were found.

OK I got a question, now I got on my computer a directory: C:\VundoFixBackups that contains my infected file CHKDLL.DLL.  Must I erase it or leave it?  What should I do ?

Thanks to everybody, I connected to Internet directly from my computer at home, sign that the problem is solved. I wasn't familiar with forums and I find it very efficiency, wow !

Kapa

Offline winchester73

  • Administrator
  • Hero Member
  • *****
  • Posts: 5124
  • Half a bubble off plumb
Re: CHKDLL.DLL
« Reply #7 on: August 07, 2006, 11:59:32 PM »
When you get the chance, run HJT once again ... put a checkmark next to the following item, and press "Fix Checked":

O2 - BHO: (no name) - {d1468ff5-a845-4815-b809-0599bd933cd0} - C:\WINDOWS\system32\chkDll.dll (file missing)

The item is orphaned, and that will tidy things up a bit.

Quote
OK I got a question, now I got on my computer a directory: C:\VundoFixBackups that contains my infected file CHKDLL.DLL.  Must I erase it or leave it?  What should I do ?

You could certainly keep that backup for posterity should you like, but you could also delete it as it isn't something that you will want to 'restore'.
Speak softly, but carry a big Winchester ... Winchester Arms Collectors Association member



Offline SpiritWind

  • Jr. Member
  • **
  • Posts: 81
Outdated Sun Java
« Reply #8 on: August 08, 2006, 04:51:39 PM »
 :D  Hi Kapa :

      Your Sun Java program is 3 Updates behind, which may be why you had to use
      the Vundofix program . Uninstall your current version of Sun Java, then go to :
      www.java.com/en and get their latest .
For the BEST in what counts in Life :

www.tacf.org

Offline kapa

  • Newbie
  • *
  • Posts: 5
Re: CHKDLL.DLL
« Reply #9 on: August 14, 2006, 02:25:50 AM »
Dear Winchester73,

This is my last HJT log, after I ran a "fix checked" on what you recommended.  I also updated my Java as per Spiritwind's recommandations.

Thanks to everybody for your help !  :thumbsup:

kapa  :D

Logfile of HijackThis v1.99.1
Scan saved at 22:17:56, on 13-08-06
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\RunDll32.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TELUS\TurboGT\turbogt.exe
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\Hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: PBlockHelper Class - {4115122B-85FF-4DD3-9515-F075BEDE5EB5} - C:\Program Files\TELUS\TurboGT\PBHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O4 - HKLM\..\Run: [SiSUSBRG] C:\WINDOWS\SiSUSBrg.exe
O4 - HKLM\..\Run: [SiS KHooker] C:\WINDOWS\System32\khooker.exe
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [mmtask] "C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_7 -reboot 1
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: Démarrer Internet Turbo GT.lnk = C:\Program Files\TELUS\TurboGT\turbogt.exe
O4 - Startup: PowerReg Scheduler V3.exe
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: Convertir les liens sélectionnés en fichier Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe

Offline winchester73

  • Administrator
  • Hero Member
  • *****
  • Posts: 5124
  • Half a bubble off plumb
Re: CHKDLL.DLL
« Reply #10 on: August 14, 2006, 01:22:47 PM »
Everything back to normal now?
Speak softly, but carry a big Winchester ... Winchester Arms Collectors Association member



Offline kapa

  • Newbie
  • *
  • Posts: 5
Re: CHKDLL.DLL
« Reply #11 on: August 14, 2006, 08:25:49 PM »
Yes, everything now works very well, thanks !

kapa