PDA

View Full Version : Programs Terminate plus bad files....



Fashionista
2007-03-19, 01:34
Several programs terminate with no warning or explanation. For example, MS Windows Update thru IE7 starts but when it gets to the Active X screen, IE just closes down. Same thing happens with some of the Control Panel functions...

Here is the scan from Panda online:


Incident Status

Spyware:spyware/bundleware Not disinfected Windows Registry
Spyware:spyware/virtumonde Not disinfected Windows Registry
Adware:adware/wupd Not disinfected Windows Registry
Spyware:spyware/media-motor Not disinfected Windows Registry
Adware:adware/ieplugin Not disinfected Windows Registry
Adware:adware/wintools Not disinfected Windows Registry
Adware:adware/favoriteman Not disinfected Windows Registry
Spyware:spyware/betterinet Not disinfected Windows Registry
Adware:adware/ist.istbar Not disinfected Windows Registry
Adware:adware/exact.bargainbudy Not disinfected Windows Registry
Potentially unwanted tool:Application/Processor Not disinfected D:\Downloads\VirtumundoBeGone.exe[²PĒ]
Here is the log from Hijack This:

Logfile of HijackThis v1.99.1
Scan saved at 6:11:48 PM, on 3/18/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
D:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
D:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzCdb\VzFw.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Apoint\Apoint.exe
C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
C:\Program Files\Sony\ISB Utility\ISBMgr.exe
C:\WINDOWS\System32\ezSP_Px.exe
D:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Apoint\Apntex.exe
C:\WINDOWS\system32\ctfmon.exe
C:\AntiSpyWare\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O3 - Toolbar: AIM Search - {40D41A8B-D79B-43d7-99A7-9EE0F344C385} - C:\Program Files\AIM Toolbar\AIMBar.dll
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [VAIO Recovery] C:\WINDOWS\Sonysys\VAIO Recovery\PartSeal.exe
O4 - HKLM\..\Run: [SonyPowerCfg] C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
O4 - HKLM\..\Run: [ISBMgr.exe] C:\Program Files\Sony\ISB Utility\ISBMgr.exe
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\System32\ezSP_Px.exe
O4 - HKLM\..\Run: [AVG7_CC] D:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ares] "D:\Program\Ares\Ares.exe" -h
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: America Online 9.0 Tray Icon.lnk.disabled
O4 - Global Startup: Photo Loader supervisory.lnk.disabled
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_01\bin\npjpi142_01.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_01\bin\npjpi142_01.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://www.sony.com/vaiopeople
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://download.mcafee.com/molbin/shared/mcinsctl/en-us/4,0,0,83/mcinsctl.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1120534912143
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://download.mcafee.com/molbin/shared/mcgdmgr/en-us/1,0,0,20/mcgdmgr.cab
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - Unknown owner - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe (file missing)
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - D:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - D:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: PACSPTISVR - Unknown owner - C:\PROGRA~1\COMMON~1\SONYSH~1\AVLib\PACSPT~1.EXE
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\PROGRA~1\COMMON~1\SONYSH~1\AVLib\Sptisrv.exe
O23 - Service: VAIO Entertainment Aggregation and Control Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzRs\VzRs.exe
O23 - Service: VAIO Entertainment File Import Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzCdb\VzFw.exe
O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe
O23 - Service: VAIO Entertainment UPnP Client Adapter - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VCSW\VCSW.exe
O23 - Service: VAIO Media Integrated Server (VAIOMediaPlatform-IntegratedServer-AppServer) - Sony Corporation - C:\Program Files\Sony\vaio media integrated server\VMISrv.exe
O23 - Service: VAIO Media Integrated Server (HTTP) (VAIOMediaPlatform-IntegratedServer-HTTP) - Unknown owner - C:\Program Files\Sony\vaio media integrated server\Platform\SV_Httpd.exe" /Service=VAIOMediaPlatform-IntegratedServer-HTTP /RegRoot="SOFTWARE\Sony Corporation\VAIO Media Platform\2.0" /RegExt="Applications\IntegratedServer\HTTP (file missing)
O23 - Service: VAIO Media Integrated Server (UPnP) (VAIOMediaPlatform-IntegratedServer-UPnP) - Sony Corporation - C:\Program Files\Sony\vaio media integrated server\Platform\UPnPFramework.exe
O23 - Service: VAIO Media Gateway Server (VAIOMediaPlatform-Mobile-Gateway) - Unknown owner - C:\Program Files\Sony\vaio media integrated server\Platform\VmGateway.exe" /Service=VAIOMediaPlatform-Mobile-Gateway /RegRoot="SOFTWARE\Sony Corporation\VAIO Media Platform\2.0" /RegExt="\Addons\Packages\Mobile\Gateway" /DisplayName="VAIO Media Gateway Server (file missing)
O23 - Service: VAIO Media Video Server (VAIOMediaPlatform-VideoServer-AppServer) - Unknown owner - C:\Program Files\Sony\vaio media integrated server\Video\GPVSvr.exe" /Service=VAIOMediaPlatform-VideoServer-AppServer /DisplayName="VAIO Media Video Server (file missing)
O23 - Service: VAIO Media Video Server (HTTP) (VAIOMediaPlatform-VideoServer-HTTP) - Unknown owner - C:\Program Files\Sony\vaio media integrated server\Platform\SV_Httpd.exe" /Service=VAIOMediaPlatform-VideoServer-HTTP /RegRoot="SOFTWARE\Sony Corporation\VAIO Media Platform\2.0" /RegExt="\Applications\VideoServer\HTTP (file missing)
O23 - Service: VAIO Media Video Server (UPnP) (VAIOMediaPlatform-VideoServer-UPnP) - Sony Corporation - C:\Program Files\Sony\vaio media integrated server\Platform\UPnPFramework.exe


When I ran Spybot S&D in safe mode it returned no items to be fixed.

Thanks in advance for your assistance.....

Fashionista
2007-03-19, 02:26
I am getting the following error message when I send a crash report to MS:

This problem was caused by Hardware (disk drive) - Storage medium errors cause unexpected storage crash in Windows XP (884070)

I have restored two files per the MS instructions and I have also run chkdsk and found no physical problems with my hard drives...

Now I'm wondering if my hardware has corrupted a lot of Windows files or if it is malware?

Thanks again in advance for looking at this....

pskelley
2007-03-19, 21:57
Welcome to the forums, I am really seeing nothing in the HJT except a badly out of date Java program which is probably the reason for the Vundo leftovers. I see old Vundobegone entires, see this:
http://forums.spybot.info/showpost.php?p=12880&postcount=2
C:\Program Files\Java\j2re1.4.2_01\ <<< badly out of date, download the newest version and uninstall all old version in Add Remove Programs.

I personally advise you to concentrate on the hard drive, the above issues are going to be resolved if you have to replace the hard drive.

http://support.microsoft.com/kb/884070 <<< from the looks of this information this is not malware related and you probably have a damaged hard disk.

You can run a diagnostic here: http://www.pcpitstop.com/
Get help with the results here:
http://pcpitstop.invisionzone.com/index.php?showforum=6

TechExpress - Step by Step Instructions
http://www.pcpitstop.com/techexpress/howto1.asp

You can post a link to your report for me to view if you would, I may spot something.

My gut feeling here is that your hard drive is going and will probably need to be replaced. If you can not get your questions answered, I can direct you to folks who deal with hard drive issues at the forums if you wish, but unless you are familiar with how to replace them, you are going to need local help.

Thanks

Fashionista
2007-03-20, 15:41
uh oh.... a hard drive replacement in a Sony laptop... a new adventure in computing for me!

Here is the log from DiskMD:

Defrag Analysis Report, Generated by PC Pitstop Disk MD on 3/19/2007 8:10:11 PM:

Volume Information for C:\

Volume Size: 13.97 GB
Cluster Size: 4.00 KB
Used Space: 11.72 GB
Free Space: 2.25 GB
Percent Free Space: 16%


Volume Fragmentation:

Total Fragmentation: 29%
Data Fragmentation: 35%
File Fragmentation: 4%
Folder Fragmentation: 2%


File Fragmentation:

Total Files: 60,081
Average File Size: 236.59 KB
Total Fragmented Files: 2,530
Total Excess Fragments: 12,006
Average Fragments per File: 1.199830


Folder Fragmentation:

Total Folders: 5,560
Fragmented Folders: 119
Excess Folder Fragments: 1,047
Average Fragments per Folder: 1.188309


Page File Information:

Page File Size: 768.00 MB
Total Fragments: 444


MFT Fragmentation:

Total MFT Size: 83.39 MB
MFT Record Count: 65,734
Percent MFT in Use: 76%
Total MFT Fragments: 9


Most Fragmented Files:

File: Documents and Settings\Ashley\Local Settings\Application Data\Ares\Temp\17654275\___ARESTRA___family guy - 310 - family guy spring break 2.mpg
Fragments: 1864 Size: 217.40 MB (227,958,784 bytes)

File: Documents and Settings\Ashley\Local Settings\Application Data\Ares\Temp\41672061\___ARESTRA___the office - s2e12 - 18 - the injury.avi
Fragments: 551 Size: 175.22 MB (183,732,440 bytes)

File: pagefile.sys
Fragments: 444 Size: 768.00 MB (805,306,368 bytes)

File: WINDOWS\$hf_mig$\KB896727\SP2QFE\browseui.dll
Fragments: 249 Size: 996.00 KB (1,019,904 bytes)

File: WINDOWS\$hf_mig$\KB896727\SP2QFE\urlmon.dll
Fragments: 149 Size: 594.00 KB (608,256 bytes)

File: WINDOWS\$hf_mig$\KB896727\SP2QFE\wininet.dll
Fragments: 119 Size: 644.00 KB (659,456 bytes)

File: WINDOWS\$hf_mig$\KB896727\SP2QFE\shlwapi.dll
Fragments: 116 Size: 462.50 KB (473,600 bytes)

File: System Volume Information\_restore{BE6D594A-9937-4757-9D7D-47F11C10FAC3}\RP385\A0052505.rbf
Fragments: 104 Size: 11.69 MB (12,256,008 bytes)

File: Documents and Settings\Ashley\Desktop\download\ashers109\dane cook\CD 1\106-dane_cook-abducted.mp3
Fragments: 100 Size: 4.30 MB (4,505,365 bytes)

File: System Volume Information\_restore{BE6D594A-9937-4757-9D7D-47F11C10FAC3}\RP385\A0052393.rbf
Fragments: 95 Size: 6.10 MB (6,396,688 bytes)

File: WINDOWS\$hf_mig$\KB925454\SP2QFE\mshtml.dll
Fragments: 94 Size: 2.92 MB (3,061,248 bytes)

File: WINDOWS\system32\ActiveScan\Panda ActiveScanPSK_NAMES
Fragments: 93 Size: 5.62 MB (5,896,458 bytes)

File: Documents and Settings\Ashley\Local Settings\Application Data\Ares\Temp\5083699\___ARESTRA___04-eagles_of_death_metal-flames_go_higher-0mni.mp3
Fragments: 67 Size: 4.00 MB (4,198,400 bytes)

File: Documents and Settings\Ashley\Local Settings\Temp\Microsoft Office 2003 Setup(0002)_Task(0001).txt
Fragments: 67 Size: 283.94 KB (290,756 bytes)

File: WINDOWS\$NtUninstallKB896727$\browseui.dll
Fragments: 62 Size: 996.00 KB (1,019,904 bytes)

File: System Volume Information\_restore{BE6D594A-9937-4757-9D7D-47F11C10FAC3}\RP385\change.log.1
Fragments: 61 Size: 972.31 KB (995,644 bytes)

File: Program Files\Picasa2\setup.exe
Fragments: 54 Size: 4.68 MB (4,908,872 bytes)

File: Documents and Settings\Ashley\Local Settings\Temp\GLF228\SOAVMS-00772707-UN.exe
Fragments: 52 Size: 28.33 MB (29,701,736 bytes)

File: Documents and Settings\Ashley\My Documents\PostSoviet.ppt
Fragments: 51 Size: 2.97 MB (3,112,448 bytes)

File: System Volume Information\_restore{BE6D594A-9937-4757-9D7D-47F11C10FAC3}\RP384\A0052229.dll
Fragments: 47 Size: 2.91 MB (3,055,104 bytes)

File: WINDOWS\$hf_mig$\KB925454\SP2QFE\shdocvw.dll
Fragments: 46 Size: 1.43 MB (1,497,600 bytes)

File: WINDOWS\system32\dllcache\hwxcht.dll
Fragments: 44 Size: 9.63 MB (10,096,640 bytes)

File: WINDOWS\system32\dllcache\hwxjpn.dll
Fragments: 43 Size: 12.84 MB (13,463,552 bytes)

File: Documents and Settings\Ashley\Local Settings\Application Data\Apple Computer\QuickTime\downloads\08\08\88696c2d-3ca4d503-830305ef-4bc48882.qtch
Fragments: 43 Size: 2.21 MB (2,314,327 bytes)

File: Documents and Settings\Ashley\ntuser.dat.LOG
Fragments: 41 Size: 1.00 KB (1,024 bytes)

File: WINDOWS\FaxSetup.log
Fragments: 40 Size: 851.13 KB (871,559 bytes)

File: WINDOWS\system32\dllcache\hwxkor.dll
Fragments: 39 Size: 9.66 MB (10,129,408 bytes)

File: Documents and Settings\All Users\Application Data\Microsoft\Dr Watson\drwtsn32.log
Fragments: 39 Size: 5.80 MB (6,083,212 bytes)

File: WINDOWS\$hf_mig$\KB896727\SP2QFE\cdfview.dll
Fragments: 37 Size: 147.50 KB (151,040 bytes)

File: Documents and Settings\Ashley\Desktop\download\ashers109\dane cook\CD 2\213-dane_cook-one_night_stand-dj_diddles.mp3
Fragments: 36 Size: 16.46 MB (17,262,837 bytes)

File: WINDOWS\$hf_mig$\KB896727\SP2QFE\msrating.dll
Fragments: 36 Size: 143.00 KB (146,432 bytes)

File: WINDOWS\$NtUninstallKB925454_0$\shdocvw.dll
Fragments: 35 Size: 1.42 MB (1,494,016 bytes)

File: Documents and Settings\Ashley\Local Settings\Application Data\Apple Computer\QuickTime\downloads\00\00\007dd717-75352c41-adff01f7-681645b9.qtch
Fragments: 32 Size: 1.74 MB (1,823,512 bytes)

File: WINDOWS\$hf_mig$\KB925454\SP2QFE\browseui.dll
Fragments: 32 Size: 999.00 KB (1,022,976 bytes)

File: WINDOWS\WindowsUpdate.log
Fragments: 31 Size: 1.38 MB (1,444,672 bytes)

File: WINDOWS\Installer\$PatchCache$\Managed\9040211900063D11C8EF10054038389C\11.0.7969\STSLIST.DLL
Fragments: 30 Size: 2.68 MB (2,812,616 bytes)

File: WINDOWS\$NtUninstallKB896727$\wininet.dll
Fragments: 29 Size: 642.50 KB (657,920 bytes)

File: Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
Fragments: 27 Size: 11.70 MB (12,263,776 bytes)

File: Program Files\Common Files\Microsoft Shared\OFFICE11\MSO.DLL
Fragments: 27 Size: 11.69 MB (12,257,032 bytes)

File: WINDOWS\system32\query.dll
Fragments: 27 Size: 1.37 MB (1,435,648 bytes)

File: WINDOWS\Installer\585685.msi
Fragments: 26 Size: 9.47 MB (9,934,848 bytes)

File: Documents and Settings\Ashley\Local Settings\Temp\PNX7D.tmp
Fragments: 26 Size: 832.00 KB (851,969 bytes)

File: WINDOWS\system32\dllcache\ntkrnlpa.exe
Fragments: 24 Size: 1.96 MB (2,057,600 bytes)

File: WINDOWS\$NtUninstallKB925454_0$\browseui.dll
Fragments: 24 Size: 999.00 KB (1,022,976 bytes)

File: Documents and Settings\Ashley\Local Settings\Temp\PNX7C.tmp
Fragments: 24 Size: 768.00 KB (786,433 bytes)

File: WINDOWS\$hf_mig$\KB896727\SP2QFE\inseng.dll
Fragments: 24 Size: 94.00 KB (96,256 bytes)

File: Program Files\Microsoft Office\OFFICE11\EXCEL.EXE
Fragments: 23 Size: 9.79 MB (10,270,480 bytes)

File: Program Files\Microsoft Office\OFFICE11\OUTLLIB.DLL
Fragments: 23 Size: 7.27 MB (7,619,856 bytes)

File: System Volume Information\_restore{BE6D594A-9937-4757-9D7D-47F11C10FAC3}\RP384\A0052228.dll
Fragments: 23 Size: 1.43 MB (1,494,528 bytes)

File: WINDOWS\$NtUninstallKB920685$\query.dll
Fragments: 22 Size: 1.37 MB (1,435,648 bytes)

File: Documents and Settings\All Users\Application Data\Grisoft\Avg7Data\avg7upd\update7.log
Fragments: 22 Size: 975.14 KB (998,543 bytes)

File: System Volume Information\_restore{BE6D594A-9937-4757-9D7D-47F11C10FAC3}\RP384\A0052277.tlb
Fragments: 21 Size: 1.29 MB (1,351,168 bytes)

File: WINDOWS\$NtUninstallKB896727$\shlwapi.dll
Fragments: 21 Size: 462.50 KB (473,600 bytes)

File: RECYCLER\S-1-5-21-3915927328-2731698989-3359306681-1005\Dc473\IMG_0973.jpg
Fragments: 20 Size: 1.07 MB (1,122,534 bytes)

File: WINDOWS\$NtUninstallKB925454_0$\danim.dll
Fragments: 20 Size: 1.01 MB (1,054,208 bytes)

File: WINDOWS\$NtUninstallKB896727$\spuninst\updspapi.dll
Fragments: 20 Size: 363.22 KB (371,936 bytes)

File: WINDOWS\ntdtcsetup.log
Fragments: 20 Size: 176.90 KB (181,148 bytes)

File: WINDOWS\Installer\46b9c9.msp
Fragments: 19 Size: 4.94 MB (5,185,024 bytes)

File: WINDOWS\system32\dllcache\ntkrnlmp.exe
Fragments: 19 Size: 2.04 MB (2,136,064 bytes)

File: WINDOWS\$NtUninstallKB923689$\wmvcore.dll
Fragments: 19 Size: 2.01 MB (2,105,344 bytes)

File: WINDOWS\system32\TZLog.log
Fragments: 19 Size: 119.57 KB (122,436 bytes)

File: Documents and Settings\Ashley\Desktop\download\ashers109\Cru\Seu Jorge-Bola de Meia (Sock-Filled Ball).mp3
Fragments: 18 Size: 7.45 MB (7,807,395 bytes)

File: Documents and Settings\Ashley\Desktop\download\ashers109\dane cook\CD 2\215-dane_cook-lets_do_this_im_a_cashew.mp3
Fragments: 17 Size: 7.18 MB (7,532,586 bytes)

File: WINDOWS\$NtUninstallKB925454_0$\wininet.dll
Fragments: 17 Size: 643.50 KB (658,944 bytes)

File: WINDOWS\$hf_mig$\KB925454\SP2QFE\mstime.dll
Fragments: 17 Size: 520.00 KB (532,480 bytes)

File: WINDOWS\updspapi.log
Fragments: 17 Size: 71.37 KB (73,086 bytes)

File: RECYCLER\S-1-5-21-3915927328-2731698989-3359306681-1005\Dc494.AVI
Fragments: 16 Size: 152.22 MB (159,609,164 bytes)

File: Documents and Settings\Ashley\Desktop\download\ashers109\07-ben_folds_five-smoke-fnt.mp3
Fragments: 16 Size: 6.48 MB (6,795,390 bytes)

File: Program Files\Microsoft Office\OFFICE11\POWERPNT.EXE
Fragments: 16 Size: 6.10 MB (6,396,688 bytes)

File: Program Files\Common Files\Microsoft Shared\OFFICE11\MSXML5.DLL
Fragments: 16 Size: 1.24 MB (1,300,232 bytes)

File: System Volume Information\_restore{BE6D594A-9937-4757-9D7D-47F11C10FAC3}\RP384\A0052230.dll
Fragments: 16 Size: 999.00 KB (1,022,976 bytes)

File: System Volume Information\_restore{BE6D594A-9937-4757-9D7D-47F11C10FAC3}\RP385\A0052391.rbf
Fragments: 16 Size: 776.00 KB (794,624 bytes)

File: System Volume Information\_restore{BE6D594A-9937-4757-9D7D-47F11C10FAC3}\RP385\A0052480.rbf
Fragments: 16 Size: 776.00 KB (794,624 bytes)

File: System Volume Information\_restore{BE6D594A-9937-4757-9D7D-47F11C10FAC3}\RP385\A0052372.rbf
Fragments: 16 Size: 776.00 KB (794,624 bytes)

File: WINDOWS\ocgen.log
Fragments: 16 Size: 430.58 KB (440,915 bytes)

File: Program Files\InstallShield Installation Information\{184D95BE-B66A-4534-97E6-4C6A44032C6E}\setup.ilg
Fragments: 16 Size: 230.50 KB (236,032 bytes)

File: Documents and Settings\Ashley\Application Data\Macromedia\Shockwave Player\Shockwave Log
Fragments: 16 Size: 138.85 KB (142,186 bytes)

File: WINDOWS\system32\spool\drivers\w32x86\3\hpzeng05.exe
Fragments: 15 Size: 780.00 KB (798,720 bytes)

File: System Volume Information\_restore{BE6D594A-9937-4757-9D7D-47F11C10FAC3}\RP385\A0052357.rbf
Fragments: 15 Size: 776.00 KB (794,624 bytes)

File: System Volume Information\_restore{BE6D594A-9937-4757-9D7D-47F11C10FAC3}\RP385\A0052345.rbf
Fragments: 15 Size: 776.00 KB (794,624 bytes)

File: System Volume Information\_restore{BE6D594A-9937-4757-9D7D-47F11C10FAC3}\RP385\A0052515.rbf
Fragments: 15 Size: 776.00 KB (794,624 bytes)

File: WINDOWS\Installer\{91120409-6000-11D3-8CFE-0150048383C9}\outicon.exe
Fragments: 15 Size: 776.00 KB (794,624 bytes)

File: System Volume Information\_restore{BE6D594A-9937-4757-9D7D-47F11C10FAC3}\RP385\A0052403.rbf
Fragments: 15 Size: 776.00 KB (794,624 bytes)

File: WINDOWS\system32\spool\drivers\w32x86\3\mdigraph.dll
Fragments: 15 Size: 747.73 KB (765,680 bytes)

File: WINDOWS\Installer\fcbfdb.msp
Fragments: 14 Size: 10.47 MB (10,978,816 bytes)

File: Documents and Settings\Ashley\Desktop\download\ashers109\dane cook\CD 1\112-dane_cook-dream_house.mp3
Fragments: 14 Size: 5.88 MB (6,163,113 bytes)

File: WINDOWS\$hf_mig$\KB924496\SP2QFE\shdocvw.dll
Fragments: 14 Size: 1.43 MB (1,497,088 bytes)

File: WINDOWS\setupapi.log
Fragments: 14 Size: 998.36 KB (1,022,321 bytes)

File: Documents and Settings\Ashley\My Documents\My Homework\the dead tree.doc
Fragments: 14 Size: 670.50 KB (686,592 bytes)

File: WINDOWS\$NtUninstallKB925454_0$\urlmon.dll
Fragments: 14 Size: 599.50 KB (613,888 bytes)

File: WINDOWS\Installer\1208b73.msi
Fragments: 14 Size: 570.50 KB (584,192 bytes)

File: WINDOWS\$hf_mig$\KB925454\SP2QFE\mshtmled.dll
Fragments: 14 Size: 438.00 KB (448,512 bytes)

File: RECYCLER\S-1-5-21-3915927328-2731698989-3359306681-1005\INFO2
Fragments: 14 Size: 397.68 KB (407,220 bytes)

File: WINDOWS\system32\config\system.LOG
Fragments: 14 Size: 1.00 KB (1,024 bytes)

File: WINDOWS\Installer\fcbf5f.msp
Fragments: 13 Size: 9.46 MB (9,921,024 bytes)

File: WINDOWS\Installer\fcbf72.msp
Fragments: 13 Size: 9.35 MB (9,804,800 bytes)

File: WINDOWS\$NtUninstallKB928255$\shell32.dll
Fragments: 13 Size: 8.06 MB (8,453,632 bytes)

File: System Volume Information\_restore{BE6D594A-9937-4757-9D7D-47F11C10FAC3}\RP385\snapshot\Repository\FS\OBJECTS.DATA
Fragments: 13 Size: 5.10 MB (5,349,376 bytes)

File: Documents and Settings\Ashley\Desktop\download\ashers109\Never Mind The Bollocks\Problems.mp3
Fragments: 13 Size: 4.80 MB (5,029,273 bytes)

File: WINDOWS\Downloaded Installations\Macromedia Dreamweaver 8\WindowsInstaller-KB884016-v2-x86.exe
Fragments: 13 Size: 1.91 MB (2,003,176 bytes)





Thanks again so much for your assistance!!!

pskelley
2007-03-20, 15:48
Thanks for the feedback, here's the Google:
http://www.google.com/search?hl=en&q=how+to+install+a+hard+drive+in+a+laptop&btnG=Google+Search

I would suggest you ask around a little and make a few phone calls. It may be that a place like Best Buy:
http://www.bestbuy.com/ will install the item if you purchase it there. I am not positive of this, but most computer shops are going to want time, labor and materials.

I wish you well...Phil

pskelley
2007-03-31, 12:22
As the problem appears to be resolved this topic has been closed.

If you need it re-opened please send me or a forum staff member a private message (pm) and provide a link to the thread; this applies only to the original topic starter.

Anyone else with similar problems please start a new topic.

Thanks