Recommended Posts

... I dunno... it didn't come back anymore after I run HijackThis twice...  :blink: ...

You could run 'Bazooka Adware and Spyware Scanner'... it doesn't clean the computer but identifies the spyware/adware others miss and tells how you can remove it manually...

  See this link: http://www.download.com/Get-rid-of-spyware...94.html?tag=txt

Did you already look at your startup entries?

:cool:

585468869[/snapback]

the start up lists 3 things

AOL Instant Messenger

Kaspersky AntiVirus

Microsoft AntiSpyware...

When the CWS thing reinfects i get a fourth, which i remove, which wants to do a rundll32 on c:\windows\temp\se.dll.

As far as services go...unlike one computer i had to deal with which had like 5 or so spyware things integrate itself as microsoft services in services.msc (showing up as like USB Driver or so), there is no such services that seem out of place.

Ive heard of bazooka before. I tried it way back in the past and i wasnt very satisfied. Personal opinion, but ill try it out again when i get some time. I have to leave soon to goto class...

I had similar problems with a new version of VX2 on a machine I was asked to work on. Damn it was impossible to get rid of. Hidden DLL's, hooked into the TCP/IP stack, what a mess. To get that I had to use LPS? LSP? to get rid of the one in the stack.

In the end, I had to boot into safemode, the first attempt that was what I did and it couldn't be cleaned...it would crash the taskbar and reload itself.

I used killbox to end active processes and replace them with dummy files on reboot, hijackthis to double check for active DLL's to make sure I got them all, Ad-aware to do an active scan of the drive after.

My mates comp was infected with CWS, i told him its not worth the bother of trying to remove it cos its a hell of alot of work, its better off just backing your data and just reinstalling a clean copy of WinXP :rolleyes:

Problem solved with the minimal amount of stress.

@Umteen: pretty lacking threat there...one guy makes mention of SpyBot andother CWShredder, things mentioned many times here :).

@JohnW: Actually I installed WebRoot Spysweeper, AdAware and Spy Bot. All three of them found CoolWebSearch entries and removed them all. Im going to wait a day or so to see if any of this junk comes back.

OK i think i have pinpointed the problem, but i cant resolve it...

I think the problems on the computer are installing these 3 TMP files in the Temp folder (in local settings).

They are named:

~DF5740.tmp

~DFA8DA.tmp

~DFBCEF.tmp

Well the names change actually...but its always three temp files whose names start with ~DF...

When i try to delete them while logged in, i cant because all three are used.

Having said that im remotely doing the fixing, I cant go into the recovery console to delete them...so I needed to get clever.

I logged in as Administrator, and just deleted them manually, which worked, the thing is though similar tmp files were created under the administrator account in the temp folder. But once i log in as the user again, they get recreated.

I figured then that I would rid the system of a link to the Temp folder. There is something in the registry (after having to fix this with the Recent Documents problem in the recent past) that points to the temp folder, with the entry: %USERPROFILE%\Local Settings\Temp

Figuring i would remove the link to that, would rid me of the files being created.

Well, they just created themself in the Documents and Settings folder instead...

I cant get rid of them and these are the only files that are left over after deep cleaning the system with every known good adware remover program known to man.

Edited by Tokar

Tokar,

I think those files ~DFxxxx.temp are generated when you open an app that uses .NET framework 1.1 (at least that's the case with me). They can be deleted after a reboot.

BTW CWshredder is now owned by Intermute. Latest versiuon is 2.13

http://www.intermute.com/spysubtract/cwshr...r_download.html

Tokar,

I think those files ~DFxxxx.temp are generated when you open an app that uses .NET framework 1.1 (at least that's the case with me). They can be deleted after a reboot.

BTW CWshredder is now owned by Intermute. Latest versiuon is 2.13

http://www.intermute.com/spysubtract/cwshr...r_download.html

585483738[/snapback]

lol have you even read the past 30 posts? ive been using this new version since day 1....

i should just edit the post and say in the description i have tried CWS 2.13 over and over...

Id like to say that those TMP files cant be deleted after reboot. They end up getting used again. If i delete them by any means (recovery console, logging in as someone else), the next time i log in they are recreated under a different name...

Try this to remove coolweb search attached is About:Buster 4.0 it was made to only remove coolweb search and does a good job. here is how to use it

1 close all apps

2 run About:Buster 4.0 a couple times

3 run hijackthis and remove

~DF5740.tmp

~DFA8DA.tmp

~DFBCEF.tmp

4 Reboot dont open Ie explore this is because there is still exe programs running in memory

5 after restart run About:Buster 4.0 to see if any thing is found if not it is safe to open IE again

AboutBuster.zip

Tokar

My first time on this board but I'm a regular on castlecops and spywareinfo.

I am having the exact same problem with one of my pc's.

Only difference is that I'm running Windows ME as my OS.

As to the problem with this "se.dll" you are exactly right that is a beast to get rid of. It has to be a new variant that has a file somewhere that I haven't recognized. Another thing I noticed is that a program titled Search Assistant is generated in Control Panel's Add\Remove Programs. Of course it will not uninstall there so I get rid of it in regedit. I also get pop-ups on my desktop even when I'm not using IE.

Now let me just say I do all of these things.

Try to remove the the Hijack in Standard Mode with HJT, Adaware, and Spybot

That never works fully because se.dll can't be removed when it's in use

Reboot in safe mode

Disable system restore

Delete c:\windows\temp\se.dll and it's random .dll companion in c:\windows\system

Delete all temp internet files, cookies, history, and temp files.

Reset all ie settings.

Run HJT, delete all about:blank's and rundll32 c:windows\temp\se.dll sp.html and anything else that shouldn't be there

Run Spybot S&D

Run Ad-aware SE

Run that seemly useless About:Buster 4.0 ("outdated", new variants are smarter than this prog)

Open up msconfig and kill the sp startup that corresponds

Open up regedit and delete all mentionings of about:blank, sp.html, se.dll, random .dll that generates in the c:\windows\system, and search assistant uninstall (see above)

Restart PC

Run HJT, Adaware, and Spybot.......find there is nothing left

Enable Spybot S&D's resident helper to block any changes to my registry.

I stopped using IE, disabled all of it's java and activex abilities.

Leave computer alone for a few hours and *POW* it all comes back

Now I'm assuming this is what happens to you to.......so if anybody sees a flaw in this approach, please offer some insight. If not, don't rehash the same old fixes because they are not working on this bugger.

Now the only thing I can think of is that there is a file somewhere. A .dll, .exe, whatever, that keeps redownloading all of this Hijack all over again when you aren't looking.

If we find that, we beat it.

HELP FOR SP.DLL SE.DLL COOLWEB SEARCH ABOUT:BLANK

Hello everyone!!!

i would like to help you with this kind of problem. (please be patient with my english im not that fluent, ok) ive already came up with this, i maintained 3 internet cafe here in the philippines and 5 of the pc's here had the same problem as yours. i used all kinds of anti spyware and anti-adware but doesnt work..

heres what..

it is a virus.. you have to get rid of it..

all you have to do is to get a kit..

1. download (or if you have) HijackThis and Kill box softwares. well use it later.

2. update your anti-virus software. (i used mc afee version 6. and updated virus def files this february.)

3. close all ie programs.

4. use the killbox software. then terminate RUNDLL32.DLL (the virus uses this file to restore registry entries.) note that terminate it - do not delete this file.

5. use the hijackthis program and delete entries you discussed before (which includes about:blank / se.dll / sp.dll/ BHO no name etc.)

6. run windows explorer ( anti-virus must turned on) go to the file c:\windows folder, explore all files until your anti virus will notify you that - "??task.dll is a virus" (im very sory i forgot the name of that file which is the virus but as i have said if your anti virus is updated, it will automatically be detected.) same thing to the c:\windows\system32 folder. (but most of the time it was stored in default windows folder).

7. reboot you computer

8. press f8 to select command prompt (in windows 98) for xp use startup.

9. type cd windows\temp

10. type del *.* - this will delete all the files in temp folder

11. restart your pc.

i hope youve got it.. again im sory if im not that perfect in english.. i hope this will help you.. please send me email if you have questions.

[email protected] / [email protected]

GUD LUCK!!!

Windows XP Pro

My broser keeps getting hijacked by CWS.  CWShredder says its CWS.HiddenDLL and it removes it, or so it says.  Only to come back a efw reboots later.

When doing HijackThis without the CWShredder program, it finds a few problematic entries...

it finds that two of the IE webpages are set to CWS standard page:

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\DOCUME~1<user>\LOCALS~1\Temp\sp.dll/sp.html

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\DOCUME~1\<user>\LOCALS~1\Temp\sp.dll/sp.html

Then it finds:

O2 - BHO: (no name) - {BF160F57-828F-42E6-9FD4-3C6D4BE29528} - C:\WINDOWS\system32\<random name>.dll

And:

O18 - Filter: text/html - {584D71CB-AD29-45F9-ABB4-AFA6A9688486} - C:\WINDOWS\system32\<random name>.dll

O18 - Filter: text/plain - {584D71CB-AD29-45F9-ABB4-AFA6A9688486} - C:\WINDOWS\system32\<random name>.dll

Where <random name> is some randomly generated alphanumeric code, in this case jjgd...and is the same for all three of them.

And lastly, it finds a key, which i dont have a log of, but its in the registry location of the startup\run stuff, and is a rundll32 of the se.dll as mentioned earlier.

Now...

If I decide to remove this stuff in hijackthis before killing the rundll32.exe service inthe processes, it does nothing, and everything i checked returns.  If i kill the process rundll32.exe, I can delete the entries for good, until it comes back a few reboots later.

After killing rundll32, actually even without kkilling it, I'm able to delete the se.dll file in the temp folder.  But after a few reboots the file returns, the thing is in the startup, all those entries and back and my homepage is hijacked (as well causing a lot of my softwares to crash, like explorer.exe and msimn.exe [outlook express]).

I would figure that after I do all the HijackThis word and CWShredder work it would be gone, but its not.

I remember someone told some other guy who had a recoccuring CoolWebSearch on his system to check this reg entry, App Init Dll...i cant remember its location.  But it owuld have something that the Windows registry editor couldnt read, and something like Registrar Lite could do it, as well as say if there is actually something there.

I used RegistrarLite and it said the key size was 0, that nothing was there.

So I'm clueless.  I have no idea how to remove this thing.

Anyone have any ideas?

585456807[/snapback]

Redstalker,

Thanks for you post -- unfortunately folloiwng the instructions did not remove the problem. I have the same exact symptoms as Tokar and have tried all the same tricks he has used all with the same result, i.e. it all comes back again!!!

Norton did find the "TrojanStartPage" virus in a couple of suspecious DLL's including "se.dll" I deleted them all, followed the rest of the instructions and at first thought that finally someone figured out how to kill it for good -- but to no avail it was all back less than 24 hours later.

Currently trying the Symantec instructions for removing Trojan.StartPage.G (there are at least 3 versions F,G, and H) -- I'll post the results after 24hrs to see if it really stays away.

Any other thoughts or suggestions on how to get rid of this most insidious pest -- besides reloading the entire OS -- would be greatly appreicate.

WF Dragon

HELP FOR SP.DLL SE.DLL COOLWEB SEARCH ABOUT:BLANK

Hello everyone!!!

i would like to help you with this kind of problem. (please be patient with my english im not that fluent, ok) ive already came up with this, i maintained 3 internet cafe here in the philippines and 5 of the pc's here had the same  problem as yours. i used all kinds of anti spyware and anti-adware but doesnt work..

heres what..

it is a virus.. you have to get rid of it..

all you have to do is to get a kit.. 

1. download (or if you have) HijackThis and  Kill box softwares. well use it later.

2. update your anti-virus software. (i used mc afee version 6. and updated virus def files this february.)

3. close all ie programs.

4. use the killbox software. then terminate RUNDLL32.DLL (the virus uses this file to restore registry entries.) note that terminate it - do not delete this file.

5. use the hijackthis program and delete entries you discussed before (which includes about:blank / se.dll /  sp.dll/ BHO no name etc.)

6. run windows explorer ( anti-virus must turned on) go to the file c:\windows folder, explore all files until your anti virus will notify you that - "??task.dll is a virus" (im very sory i forgot the name of that file which is the virus but as i have said if your anti virus is updated, it will automatically be detected.) same thing to the c:\windows\system32 folder. (but most of the time it was stored in default windows folder).

7. reboot you computer

8. press f8 to select command prompt (in windows 98) for xp use startup.

9. type cd windows\temp

10.  type del *.*        - this will delete all the files in temp folder

11. restart your pc.

i hope youve got it.. again im sory if im not that perfect in english.. i hope this will help you..  please send me email if you have questions.

[email protected] / [email protected]

GUD LUCK!!!

585509071[/snapback]

i gave up man.

I backup my files and all and reinstalled.

I have neither the time or the inclination to deal with the problem anymore.

edit: by the way wfdragon...i did the same thing as you...i went to some antivirus library site, and checked out all the variants of this trojan.startpage.win32.XX.

There are quite a few of them. A lot of them are outdated though, and have the obvious executable trojan.startpage.win32.XX.exe. And the directions for removing such was just to stop the process and delete the EXE.

I went through them all, and they made references to a few files i had seen over the period of trying to fix the problem, none of which eixsted during that time when the comptuer seemed fine. None of the directions helped me fix it.

I even used an updated HOSTS file from some site that is over 200 KB and blocks a boatload of ad sites...that did no good as it must be contacting some site thats not on there.

Considering that i was doing this over remote connection software i never got the chance to test out the system with no internet.

Would have been interesting to see if it recreated the file if the internet was off.

Turn of System Restore

Run msconfig and turn everything off.

Reboot into Safe Mode

Run MS Antipsyware

Check for funny folders on your C:\ drive

In the Windows directory check for files with newer dates and zero info when you hover your mouse over them. Compare the *exe, *.dll, and *.dat files against your windows system files dates. Sort by date and all the crap will be near the top.

Search the C:\windows\system32 folder for the same files as above.

As you delete these files make a note of them and when finished fire up regedit and search for references to the deleted files.

After cleaning your registry with regedit (don't use 3rd party tools to do this)

Reboot into Safe Mode again and run MS Antispyware. You should be clean at this point.

Reboot normally and run msconfig again and turn on only those programs that you know to be valid windows or trusted 3rd party programs.

Reboot your machine and CWS should be completely removed.

Turn System Restore back on.

well first off...this thread should be closed, and the posts used for information purposes. I have already solved my problem by formatting and reinstalling.

Neoforcer: that forum post had nothing to do with my problem. Did you happen to notice that in that post he makes no reference to the file i had problems with (c:\windows\temp\se.dll)?

Marden: i dont know where you got your copy MS Antispyware from, but mine sure doesnt detect CoolWebSearch.

To all -- I'm happy to report that 24 hours later I have not seen any evidence of the trojan returning -- while I still don't believe anyone fully understands what we are dealing with -- for now -- following Redstalker's post and Symantec's instructions on how to get rid of Trojan.StartPage.G (note not all steps found any files to delete) it look like at least there may be a wasy to get rid of the l1ttle pest!! Please let me knwo if it works for you too,

Regards,

WF Dragon

well first off...this thread should be closed, and the posts used for information purposes.  I have already solved my problem by formatting and reinstalling.

Neoforcer: that forum post had nothing to do with my problem.  Did you happen to notice that in that post he makes no reference to the file i had problems with (c:\windows\temp\se.dll)?

Marden: i dont know where you got your copy MS Antispyware from, but mine sure doesnt detect CoolWebSearch.

585520457[/snapback]

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • Thanks
    • 7 Days: Killing uBlock Origin bypasses, Euro Office faces fire, and will AI replace you? by Aditya Tiwari 7 Days is a weekly roundup of picks of what's been happening in the world of technology - written with a dash of humor, a hint of exasperation, and an endless supply of (black) coffee. This week's highlights include WWDC 2026 announcements, updates on child safety, and Meta's use of data from outside businesses to optimize your feed. Let's get started. You can check out the recent issues of the 7 Days weekly roundup. Killing uBlock Origin bypasses The hottest news of the week was about Google Chrome effectively ending most uBlock Origin workarounds (a free, open-source ad blocker extension) by permanently dropping MV2 extensions and their bypasses. Chrome is transitioning towards newer MV3 extensions. A recent discussion thread highlighted how the latest and upcoming versions of the most popular browser are expected to be its final releases with support for MV2 extensions. Genuinely European? Euro-Office faces fire The recently launched cloud-based office suite, Euro-Office, is facing criticism at home. The LibreOffice developer wrote an open letter criticizing Euro-Office for its marketing claim that it's the "first open-source office suite developed in Europe," since the honor has belonged to OpenOffice since 2001. The Document Foundation has called out Euro-Office, arguing that it can't consider "itself genuinely European" as long as it keeps pushing Microsoft defaults on users, adding that "it has to speak ODF as its mother tongue." Will AI replace you? Image: Tara Winstead via Pexels Microsoft's AI boss, Mustafa Suleyman, said in an interview earlier this year that AI would replace office workers within 12 to 18 months. Joining the ranks of top executives who have softened their stance on AI replacing humans, Suleyman recently walked back his earlier remarks and now says that AI will automate tasks, not replace entire white-collar jobs. He defended his earlier comments by arguing that they referred only to individual actions people perform at their desks. Louis Rossmann wants to sue Samsung Image: Louis Rossmann Tech repair entrepreneur and right-to-repair activist Louis Rossmann contacted Samsung support over a failed 4TB Samsung 990 Pro NVMe SSD. After back-and-forth communication, Samsung offered a $330 refund instead of a replacement, but Rossmann found that the SSD was readily available for new buyers at a higher price. He has issued a formal 60-day notice and intends to file a suit in Texas small claims court, as Samsung's actions reflect a failure to honor its warranty obligations. Samsung reached out to Neowin to clarify its updated stance that customers in such situations will receive a refund equal to the product's current market price. Child safety or mass surveillance? Image: Jonathan Borba via Pexels Signal accused the UK government of using child safety and device-level explicit content ban as a cover for mass surveillance. Calling the plan "dystopian," Signal warned that it violates everyone's fundamental right to privacy. The messaging platform believes that the government should keep children "safe" and "protected," but it should do so through social services and education. Fears of social media regulation Image via DepositPhotos.com More governments across the globe are tightening their grip on social media and bringing stricter regulations in the name of child safety. Bluesky COO, Rose Wang, warned that social media regulations could destroy competition from small startups and that heavy regulatory compliance costs favor deep-pocketed tech giants while locking out new entrants. Our Features Image: Pexels Our coffee-powered team publishes a platter of editorials, opinion posts, and guides. Here's what they got for the week: UK **** blockers are a looming privacy disaster, we must be able to see the source code This week in software news Image: Proton Catch up on some of the latest software news updates that arrived throughout the week: Dark clouds over PC makers: Building on our report from last month, Dell officially acknowledged that its own remediation software was causing BSOD issues and unexpected system restarts. HP is also facing equally frustrating issues involving recent Windows Secure Boot updates on Windows 11. Controversial icon: Spotify finally removed the disco ball icon from its app and replaced it with the familiar flat green logo after weeks of mixed reactions online. While some people don't like the new design, the retro, three-dimensional look has generated a following of its own. Even other brands are coming up with their versions of the disco logo. NVIDIA fixes stuff: A new hotfix driver 610.52 fixes various issues related to monitors and displays, noting that G-SYNC-related frame pacing troubles should now be resolved on Ada Lovelace GPUs. The feedback thread also points out that the hotfix patches a BSOD issue. FIFA World Cup tracker: Opera is redesigning its Android browser with a built-in football tracker for the upcoming World Cup in the US. The new homepage is now "more immersive" with easier access to common browser features. Command line for Proton: The Swiss technology company has launched a command line version of the Proton Drive, which you can use to manage your encrypted files directly from a terminal across all major platforms, including Windows, macOS, and Linux. This week in hardware news Image: Thermaltake Catch up on some of the latest software news updates that arrived throughout the week: Intel and AMD PCs in one case: Thermaltake's CAPO X dual-system chassis brings you the best of both worlds by supporting two microATX (mATX) motherboards and up to two 360 mm AIO liquid coolers. If you want ideas, maybe you can use one as your main PC and another as an AI agent. Google Tensor production: While TSMC will remain the lead producer, the search giant is reportedly in talks with Samsung to hand over part of the production of its next-generation Tensor AI chips. The upcoming TPUs are reportedly codenamed “Icefish” and will be produced using Samsung's 2-nanometer process technology. Lethal fake phone chargers: UK-based consumer rights organization Which? has warned that "potentially lethal knock-off chargers" are still being sold on online marketplaces, including Amazon and eBay, despite the dangers of such chargers having been exposed. This week in Google News Image: Google Catch up on some of the latest Google news updates that arrived throughout the week: Sliding into DMs: You might remember that YouTube had a direct messaging feature back in the day. It's now rolling out a revamped direct messaging inbox that lets you share Shorts, videos, and live streams and have conversations about them. New in NotebookLM: The AI-powered note-taking app got some new agentic capabilities and more advanced reasoning, thanks to support for Gemini 3.5 and Antigravity. NotebookLM can now generate outputs in more formats, making it easier to start new projects with less information. This week in Apple News Image: Apple Catch up on some of the latest Apple news updates that arrived throughout the week: WWDC 2026: This week was all about Apple's annual developer conference, where the iPhone-maker finally unveiled an upgraded Siri AI and a platter of new Apple Intelligence features. Siri AI now has a cross-platform app, which is supported on select models of iPhone, iPad, Mac, Apple Watch, and Vision Pro. What's different about WWDC: I wrote a detailed feature this week discussing how Apple changed the WWDC keynote this year, blurring the lines between its operating systems. Apple didn't have dedicated segments for its operating systems this year and didn't even publish the official press releases. Liquid Glass slider (finally): It's that time of the year when Apple previews fresh updates for iPhone, iPad, Mac, Apple Watch, AirPods, and other platforms. A new transparency slider for Liquid Glass is coming to iOS 27, iPadOS 27, and macOS 27 Golden Gate. Is your device supported?: If you're wondering whether your Apple device supports the new developer beta builds, you can check the respective compatibility lists for iOS 27, iPadOS 27, macOS 27, and watchOS 27. Siri AI not coming to Europe: Yes, that's true due to complications related to the Digital Markets Act (DMA). While Apple penned a blog post to tell its side of the story, a European Commission spokesperson told Neowin that the DMA does not prohibit Apple from launching its services in the EU; the company is simply required to comply with the law. New child safety features: Apple announced a trove of new safety features for kids, including a simpler setup experience for parents, Ask to Browse, Time Allowances, and a redesigned Screen Time UI. Parents can now visit a new website to find answers to common questions around child safety features. More cloud power: Apple's Private Cloud Compute cloud infrastructure will now run beyond its own data centers for the first time. It's working with Google and NVIDIA to run new Apple Intelligence workloads on Google Cloud systems powered by NVIDIA GPUs. This week in Meta news Catch up on the latest Meta news updates that arrived throughout the week: Data from outside: Meta is rolling out a new update globally to personalize your AI responses and primary feeds using data from outside businesses. It already targets ads based on shopping activity, but the latest development enables it to personalize other "parts of your experience." There is a toggle in the Settings to disable activity from other businesses; however, it won't prevent companies from sending your data to Meta. Level playing field: The European Commission has ordered the social media giant to restore access to WhatsApp for third-party AI chatbots, including ChatGPT and Copilot. Meta previously blocked rival AI chatbots from operating on WhatsApp, prompting the Commission to launch an antitrust investigation. Spying on users: On the flip side, WhatsApp accused the Israeli cyber-intelligence firm, NSO Group, of deploying a fresh wave of targeted "spear phishing" attacks against its users, which were thwarted by WhatsApp's security teams. Reorder profile grid: Adding some customization for the profile grid feature, Instagram now lets you rearrange posts in your profile without deleting and reuploading content. Go to your profile and long-press any thumbnail to find the "Reorder grid" option. This week in AI news Catch up on the latest artificial intelligence news updates that arrived throughout the week: Claude RAM hogger: Windows users are getting infuriated by Claude Desktop's hidden 1.8GB Hyper-V VM bug, which spins up if you use Claude Cowork or agent mode even once. It shows a Vmmem process in Task Manager, indicating 0% CPU usage but 1.8GB of RAM usage. Claude Fable 5: The new state-of-the-art AI model from Anthropic beats OpenAI's ChatGPT-5.5 in multiple AI benchmarks. Claude Fable 5 sits above the Opus models and outperforms most other generally available models across knowledge work, vision, scientific research, and more. However, the model was abruptly suspended after receiving an export control directive from the US government. Stack Overflow for AI agents: The popular Q&A platform has launched Stack Overflow for Agents in beta, which AI agents can use to share, find, and reuse coding knowledge. It explained that AI agents operate in isolation, creating an Ephemeral Intelligence Gap, and valuable tokens are wasted on something another agent has already solved. Upgrading Codex: OpenAI is buying a company called Ona, which makes secure cloud execution and orchestration technology for developers. The ChatGPT-maker aims to make Codex agents run for days without being tied to a local machine or an active session. It also announced a new developer mode in Chrome. This week in open-source news Catch up on some of the latest open-source and Linux updates that arrived throughout the week: Linux 7.1 rc7: Linux Torvalds dropped an optimized rc7 with crucial fixes for AMD and laptop hardware. He said that a stable version of Linux 7.1 could arrive next week, adding that the latest RC is not small, but smaller than recent releases. Alpine Linux 3.24: The latest Alpine Linux release added support for COSMIC Desktop, Linux 6.18, IPv6 installer support, automatic serial console configuration for headless setups, and major package updates and removals. This week in Microsoft News Microsoft had to shut down more than 70 GitHub repos after they were compromised by malware, Teams is getting a controversial tracking feature that users may hate, and the company explained why the new update makes PowerToys faster. You can check out Taras's freshly baked Microsoft Weekly roundup to catch up on all the interesting stories this week. This week in gaming The latest issue of Pulasthi's Weekend PC Game Deals curates several exciting games on sale this week. On the Epic Games Store, the new titles on display for grabs include Warhammer 40K Speed Freeks and The Ouroboros King. NVIDIA GeForce NOW's summer sale lowered the prices of both the Performance and Ultimate membership options for a limited time period. Meanwhile, the Xbox Free Play Days brought Undead Labs' post-apocalyptic title State of Decay 2, as well as two Team17-published titles. That said, here are some more stories from the gaming world: Dragon's Dogma 2: Dark Arisen expansion to bring snowy region, new updates also coming Playground drops 30 minutes of Fable gameplay, shows off life sim and morality system Playground Games confirms Forza Horizon 6 save wipe bug Doom: The Dark Ages Revelations expansion gives the Slayer a brutal Chain Spear State of Decay 3 is out in 2027, reveals Plague Nests with new co-op gameplay trailer From the review corner This week, Taras got his hands on the DuRoBo Krono portable e-ink reader, which comes with a $279 price tag. It's a smartphone-sized device with a rotating dial, sitting somewhere between premium and cheap in terms of build quality. Speaking of the pros, the physical controls are cool, the smart dial is useful, the battery life is good, and Android 15 has no-nonsense software. On the flip side, the device lacks software customization, the built-in AI needs improvement, the smart dial is a bit wobbly, and there is no ambient light sensor. EA Sports UFC 6 EA Sports UFC 6 does a better job at onboarding new players than most fighting games, according to Pulasthi's detailed review. The game comes with rewarding combat systems, top-notch animation, impressive impact physics, and visible damage on fighters. However, the menus lag a lot, grappling isn't very fun, and the flow state feels a little misplaced. More price drops! We got you covered with some hot tech deals all week. For some reason, if you missed out on a great discount, here is a summary of some recent deals that are still alive: GIGABYTE Radeon RX 9070 XT Gaming OC ICE 16G - $649.99 (13% off) 1TB Samsung T7 Portable SSD - $189.98 (31% off) AirPods Pro 3 - $179 ($50 off) Edifier R1280Ts Powered Bookshelf Speakers - $129.99 (24% off) To view all of our recent deals, click here. So, these were some of the biggest tech news and other updates from this week. There will be more issues of our 7 Days series in the coming weeks and months, so stay tuned. You can also support Neowin by registering for a free member account or subscribing to extra member benefits, along with an ad-free tier option. Have a great weekend!
    • Well I've done a grand total of nothing, and it now clocks between 2010mhz and 1995mhz (stock is 1710mhz) and hovers around 80c, warmer than it used to, but tolerable clocks seem to have returned. Thanks for all the advice on this thread. Will review the evidence and make a choice.
    • Audacious 4.6.1 by Razvan Serea Audacious is a lightweight, open-source audio player that emphasizes simplicity, performance, and sound quality. Designed for Linux, Windows, and macOS, it supports a wide range of audio formats, internet radio streaming, and playlist management. Users can customize the interface with Winamp-style skins or modern themes, making it flexible for different preferences. Audacious also includes an equalizer, advanced audio effects, and a plugin system for extending functionality. Its low resource usage makes it especially suitable for older computers or users who value efficiency without sacrificing playback quality. Audacious key features: High audio quality – delivers clean, gapless playback with minimal distortion. Wide format support – plays MP3, FLAC, Ogg Vorbis, AAC, WAV, WMA, and more. Internet radio streaming – supports Shoutcast, Icecast, and other online streams. Winamp skin support – classic, nostalgic look for users who prefer the old-school style. Modern GTK-based interface – clean, simple UI with a more modern feel. Customizable themes – change appearance through skins and themes. Advanced playlist management – organize, save, and edit playlists with ease. Equalizer – fine-tune audio output with a built-in graphical equalizer. Audio effects – built-in DSP options like crossfade, replay gain, and more. Plugin system – extend functionality with additional components. File metadata support – displays and organizes music based on tags. Drag-and-drop support – quickly add songs or playlists. Global hotkey support – control playback without switching windows. Bit-perfect output modes – bypass system mixers for pure audio output. ReplayGain support – normalizes track loudness automatically. Cue sheet support – play entire albums from a single audio file with .cue. MPRIS2 integration – integrates with Linux desktop environments for media controls. Advanced resampling options – adjust playback quality with different resampler settings. Gapless playback – seamless transition between tracks encoded properly. Crossfade plugin – blend one song into the next smoothly. Last.fm scrobbling plugin – track listening history online. Remote control support – control Audacious via command-line or scripts. Lyrics plugin – display song lyrics if available. Alarm / timer plugin – start or stop playback at set times. SOX resampler plugin – high-quality resampling for audiophiles. Spectrum analyzer / visualization plugins – visual feedback while playing music. Headphone crossfeed effect – simulates speaker listening for headphones. Customizable buffer size – tweak latency and playback smoothness. Audacious 4.6.1 changelog: Use XDG cache dir to store temporary files (#1817) Accept embedded lyrics in more cases (#1818) Bump .so and plugin ABI versions retrospectively (#1819) Include Georgian translation (#1820) Fix build on systems using musl instead of glibc (#1823) Download: Audacious 4.6.1 | 48.2 MB (Open Source) Download: Portable Audacious 4.6.1 | 69.8 MB View: Audacious Website | Screenshot Get alerted to all of our Software updates on Twitter at @NeowinSoftware
  • Recent Achievements

    • Week One Done
      rolfus earned a badge
      Week One Done
    • One Month Later
      Leroy Jethro Gibbs earned a badge
      One Month Later
    • Conversation Starter
      flexorcist earned a badge
      Conversation Starter
    • One Month Later
      AndreaB earned a badge
      One Month Later
    • One Month Later
      agatameier earned a badge
      One Month Later
  • Popular Contributors

    1. 1
      +primortal
      505
    2. 2
      +Edouard
      197
    3. 3
      PsYcHoKiLLa
      142
    4. 4
      ATLien_0
      89
    5. 5
      Steven P.
      80
  • Tell a friend

    Love Neowin? Tell a friend!