PDA

View Full Version : Connectivity issues, auto-shutdowns



aaron2691
2007-12-16, 01:13
the other day I got a "blue screen" on my computer telling me that it had to shut down to prevent damage to my systems. Before this I had been experiencing slower than normal performance. I scanned my comp with AVG, Spybot, Adaware and nothing came up. I then used one of th online scans that is recommended by one of your helpers. located 2 infections and removed them. Since then, I have had the shutdown happen again, my volume controls disappear, Windows Explorer Files I was viewing automatically shut, and work saved to MS Word Disapear. Also, I am having trouble connecting wirelessly. My system is having trouble identifying my connection, and when it does, it says I have local access only. This is remedied by a restart. I have scanned in safe mode with Spybot, and found nothing. Any assistance would be appreciated. Here are my logs.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 6:01:25 PM, on 12/15/2007
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16575)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\DellTPad\Apoint.exe
C:\Windows\sttray.exe
C:\Windows\System32\WLTRAY.EXE
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Dell\MediaDirect\PCMService.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Grisoft\AVG7\avgcc.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
c:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\DellTPad\ApMsgFwd.exe
C:\Program Files\DellTPad\HidFind.exe
C:\Program Files\DellTPad\Apntex.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer provided by Dell
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe
O4 - HKLM\..\Run: [SigmatelSysTrayApp] sttray.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\Windows\system32\WLTRAY.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\MediaDirect\PCMService.exe"
O4 - HKLM\..\Run: [ECenter] c:\dell\E-Center\EULALauncher.exe
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O4 - Global Startup: QuickSet.lnk = ?
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send image to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O13 - Gopher Prefix:
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english/kavwebscan_unicode.cab
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www.ca.com/us/securityadvisor/virusinfo/webscan.cab
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL
O20 - Winlogon Notify: avgwlntf - C:\Windows\SYSTEM32\avgwlntf.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: ATI WebPAM (ATIWebPAM) - Unknown owner - C:\Program Files\ATI\WebPAM\jetty\extra\win32\Wrapper.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG7 Resident Shield Service (AvgCoreSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgrssvc.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: SigmaTel Audio Service (STacSV) - SigmaTel, Inc. - C:\Windows\system32\STacSV.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\Windows\System32\ZoneLabs\vsmon.exe
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\Windows\System32\WLTRYSVC.EXE
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 8764 bytes

aaron2691
2007-12-16, 01:15
KASPERSKY ONLINE SCANNER REPORT
Saturday, December 15, 2007 3:31:02 PM
Operating System: Microsoft Windows Vista Home Edition, (Build 6000)
Kaspersky Online Scanner version: 5.0.98.0
Kaspersky Anti-Virus database last update: 15/12/2007
Kaspersky Anti-Virus database records: 483327
-------------------------------------------------------------------------------

Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true

Scan Target - My Computer:
C:\
D:\
E:\

Scan Statistics:
Total number of scanned objects: 85604
Number of viruses found: 0
Number of infected objects: 0
Number of suspicious objects: 0
Duration of the scan process: 00:54:01

Infected Object Name / Virus Name / Last Action
C:\Program Files\ATI\WebPAM\jetty\extra\win32\derby.log Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\db.lck Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\log\log2.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c10.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c121.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c130.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c141.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c180.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c191.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c20.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c290.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c2c1.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c2d0.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c2e1.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c330.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c341.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c351.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c3d0.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c3e1.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c3f0.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c400.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c411.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c421.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c430.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c441.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c451.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c461.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c471.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c481.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c491.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c4a1.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c51.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c60.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c71.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\c90.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\ca1.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\cc0.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\cd1.dat Object is locked skipped
C:\Program Files\ATI\WebPAM\jetty\webapps\webpam\data\webpam\seg0\cf0.dat Object is locked skipped
C:\Program Files\InstallShield Installation Information\{5CD29180-A95E-11D3-A4EB-00C04F7BDB2C}\setup.ilg Object is locked skipped
C:\ProgramData\Grisoft\Avg7Data\avg7log.log Object is locked skipped
C:\ProgramData\Grisoft\Avg7Data\avg7log.log.lck Object is locked skipped
C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys\dell.txt Object is locked skipped
C:\Users\aaron\AppData\Local\Microsoft\Feeds Cache\index.dat Object is locked skipped
C:\Users\aaron\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat Object is locked skipped
C:\Users\aaron\AppData\Local\Microsoft\Windows\History\Low\History.IE5\index.dat Object is locked skipped
C:\Users\aaron\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Users\aaron\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat Object is locked skipped
C:\Users\aaron\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\index.dat Object is locked skipped
C:\Users\aaron\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\MSIMGSIZ.DAT Object is locked skipped
C:\Users\aaron\AppData\Local\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Users\aaron\AppData\Local\Microsoft\Windows\UsrClass.dat.LOG1 Object is locked skipped
C:\Users\aaron\AppData\Local\Microsoft\Windows\UsrClass.dat.LOG2 Object is locked skipped
C:\Users\aaron\AppData\Local\Microsoft\Windows\UsrClass.dat{f4fffdb1-52be-11dc-bfb7-001c26f41307}.TM.blf Object is locked skipped
C:\Users\aaron\AppData\Local\Microsoft\Windows\UsrClass.dat{f4fffdb1-52be-11dc-bfb7-001c26f41307}.TMContainer00000000000000000001.regtrans-ms Object is locked skipped
C:\Users\aaron\AppData\Local\Microsoft\Windows\UsrClass.dat{f4fffdb1-52be-11dc-bfb7-001c26f41307}.TMContainer00000000000000000002.regtrans-ms Object is locked skipped
C:\Users\aaron\AppData\Local\Microsoft\Windows Defender\FileTracker\{3B42494B-3A19-4A78-8E7E-F5E845D079C3} Object is locked skipped
C:\Users\aaron\AppData\Local\Temp\~DF94A5.tmp Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\dbc2e.ht1 Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\dbdam Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\dbdao Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\dbeam Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\dbeao Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\dbm Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\dbu2d.ht1 Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\dbvm.cf1 Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\dbvmh.ht1 Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\fii.cf1 Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\fiih.ht1 Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\hp Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\hpt2i.ht1 Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\rpm.cf1 Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\rpm1m.cf1 Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\rpm1mh.ht1 Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\rpmh.ht1 Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\safeweb\goog-black-enchashm.cf1 Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\safeweb\goog-black-enchashmh.ht1 Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\safeweb\goog-black-urlm.cf1 Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\safeweb\goog-black-urlmh.ht1 Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\safeweb\goog-malware-domainm.cf1 Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\safeweb\goog-malware-domainmh.ht1 Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\safeweb\goog-white-domainm.cf1 Object is locked skipped
C:\Users\aaron\AppData\Local\Google\Google Desktop\fcf4d24a56c7\safeweb\goog-white-domainmh.ht1 Object is locked skipped
C:\Users\aaron\AppData\Roaming\Microsoft\Windows\Cookies\index.dat Object is locked skipped
C:\Users\aaron\AppData\Roaming\Microsoft\Windows\Cookies\Low\index.dat Object is locked skipped
C:\Users\aaron\NTUSER.DAT Object is locked skipped
C:\Users\aaron\ntuser.dat.LOG1 Object is locked skipped
C:\Users\aaron\ntuser.dat.LOG2 Object is locked skipped
C:\Users\aaron\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TM.blf Object is locked skipped
C:\Users\aaron\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000001.regtrans-ms Object is locked skipped
C:\Users\aaron\NTUSER.DAT{3a539871-6a70-11db-887c-d362bd253390}.TMContainer00000000000000000002.regtrans-ms Object is locked skipped
C:\Windows\bthservsdp.dat Object is locked skipped
C:\Windows\Debug\PASSWD.LOG Object is locked skipped
C:\Windows\Debug\sam.log Object is locked skipped
C:\Windows\Debug\WIA\wiatrace.log Object is locked skipped
C:\Windows\Internet Logs\AARON-PC.ldb Object is locked skipped
C:\Windows\Internet Logs\fwdbglog.txt Object is locked skipped
C:\Windows\Internet Logs\fwpktlog.txt Object is locked skipped
C:\Windows\Internet Logs\IAMDB.RDB Object is locked skipped
C:\Windows\Internet Logs\tvDebug.log Object is locked skipped
C:\Windows\Internet Logs\ZALog2007.12.12.txt Object is locked skipped
C:\Windows\Internet Logs\ZALog2007.12.14.txt Object is locked skipped
C:\Windows\Logs\CBS\CBS.log Object is locked skipped
C:\Windows\Logs\CBS\CBS.persist.log Object is locked skipped
C:\Windows\Logs\DPX\setupact.log Object is locked skipped
C:\Windows\Logs\DPX\setuperr.log Object is locked skipped
C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe.config Object is locked skipped
C:\Windows\Panther\UnattendGC\diagerr.xml Object is locked skipped
C:\Windows\Panther\UnattendGC\diagwrn.xml Object is locked skipped
C:\Windows\Panther\UnattendGC\setupact.log Object is locked skipped
C:\Windows\Panther\UnattendGC\setuperr.log Object is locked skipped
C:\Windows\security\database\secedit.sdb Object is locked skipped
C:\Windows\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 Object is locked skipped
C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 Object is locked skipped
C:\Windows\System32\catroot2\edb.log Object is locked skipped
C:\Windows\System32\catroot2\{127D0A1D-4EF2-11D1-8608-00C04FC295EE}\catdb Object is locked skipped
C:\Windows\System32\catroot2\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\catdb Object is locked skipped
C:\Windows\System32\config\COMPONENTS Object is locked skipped
C:\Windows\System32\config\COMPONENTS.LOG1 Object is locked skipped
C:\Windows\System32\config\COMPONENTS.LOG2 Object is locked skipped
C:\Windows\System32\config\DEFAULT Object is locked skipped
C:\Windows\System32\config\DEFAULT.LOG1 Object is locked skipped
C:\Windows\System32\config\DEFAULT.LOG2 Object is locked skipped
C:\Windows\System32\config\SAM Object is locked skipped
C:\Windows\System32\config\SAM.LOG1 Object is locked skipped
C:\Windows\System32\config\SAM.LOG2 Object is locked skipped
C:\Windows\System32\config\SECURITY Object is locked skipped
C:\Windows\System32\config\SECURITY.LOG1 Object is locked skipped
C:\Windows\System32\config\SECURITY.LOG2 Object is locked skipped
C:\Windows\System32\config\SOFTWARE Object is locked skipped
C:\Windows\System32\config\SOFTWARE.LOG1 Object is locked skipped
C:\Windows\System32\config\SOFTWARE.LOG2 Object is locked skipped
C:\Windows\System32\config\SYSTEM Object is locked skipped
C:\Windows\System32\config\SYSTEM.LOG1 Object is locked skipped
C:\Windows\System32\config\SYSTEM.LOG2 Object is locked skipped
C:\Windows\System32\config\TxR\{250834b7-750c-494d-bdc3-da86b6e2101a}.TxR.0.regtrans-ms Object is locked skipped
C:\Windows\System32\config\TxR\{250834b7-750c-494d-bdc3-da86b6e2101a}.TxR.1.regtrans-ms Object is locked skipped
C:\Windows\System32\config\TxR\{250834b7-750c-494d-bdc3-da86b6e2101a}.TxR.2.regtrans-ms Object is locked skipped
C:\Windows\System32\config\TxR\{250834b7-750c-494d-bdc3-da86b6e2101a}.TxR.blf Object is locked skipped
C:\Windows\System32\config\TxR\{250834B7-750C-494d-BDC3-DA86B6E2101B}.TM.blf Object is locked skipped
C:\Windows\System32\config\TxR\{250834B7-750C-494d-BDC3-DA86B6E2101B}.TMContainer00000000000000000001.regtrans-ms Object is locked skipped
C:\Windows\System32\config\TxR\{250834B7-750C-494d-BDC3-DA86B6E2101B}.TMContainer00000000000000000002.regtrans-ms Object is locked skipped
C:\Windows\System32\LogFiles\Scm\SCM.EVM Object is locked skipped
C:\Windows\System32\LogFiles\WUDF\WUDFTrace.etl Object is locked skipped
C:\Windows\System32\restore\MachineGuid.txt Object is locked skipped
C:\Windows\System32\spool\SpoolerETW.etl Object is locked skipped
C:\Windows\System32\sysprep\Panther\diagerr.xml Object is locked skipped
C:\Windows\System32\sysprep\Panther\diagwrn.xml Object is locked skipped
C:\Windows\System32\sysprep\Panther\setupact.log Object is locked skipped
C:\Windows\System32\sysprep\Panther\setuperr.log Object is locked skipped
C:\Windows\System32\wbem\AutoRecover\8A94AF24F162D580E3D9889344A3A317.mof Object is locked skipped
C:\Windows\System32\wbem\Logs\WMITracing.log Object is locked skipped
C:\Windows\System32\wbem\Repository\INDEX.BTR Object is locked skipped
C:\Windows\System32\wbem\Repository\MAPPING1.MAP Object is locked skipped
C:\Windows\System32\wbem\Repository\MAPPING2.MAP Object is locked skipped
C:\Windows\System32\wbem\Repository\OBJECTS.DATA Object is locked skipped
C:\Windows\System32\winevt\Logs\Application.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Broadcom Wireless LAN.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\DFS Replication.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\HardwareEvents.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Internet Explorer.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Key Management Service.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Media Center.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-Bits-Client%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-CodeIntegrity%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-Diagnosis-DPS%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-Diagnostics-Networking%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-Diagnostics-Performance%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-DiskDiagnosticDataCollector%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-DriverFrameworks-UserMode%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-GroupPolicy%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-Help%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-International%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-Kernel-WHEA.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-LanguagePackSetup%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-MUI%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-NetworkAccessProtection%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-Program-Compatibility-Assistant%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-ReadyBoost%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-ReliabilityAnalysisComponent%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-Resource-Exhaustion-Detector%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-Resource-Exhaustion-Resolver%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-Resource-Leak-Diagnostic%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-RestartManager%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-TaskScheduler%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-UAC%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-UAC-FileVirtualization%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-WindowsUpdateClient%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-Winsock-WS2HELP%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Microsoft-Windows-WLAN-AutoConfig%4Operational.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Security.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\Setup.evtx Object is locked skipped
C:\Windows\System32\winevt\Logs\System.evtx Object is locked skipped
C:\Windows\Tasks\SCHEDLGU.TXT Object is locked skipped
C:\Windows\Temp\hsperfdata_SYSTEM\3376 Object is locked skipped
C:\Windows\Temp\ZLT01ed4.TMP Object is locked skipped
C:\Windows\Temp\ZLT03890.TMP Object is locked skipped
C:\Windows\WindowsUpdate.log Object is locked skipped
C:\Windows\winsxs\x86_microsoft-windows-n..n_service_datastore_31bf3856ad364e35_6.0.6000.16386_none_cef7ceb03914a67f\dnary.xsd Object is locked skipped
D:\Windows\security\database\secedit.sdb Object is locked skipped

Scan process completed.

aaron2691
2007-12-23, 01:33
The issue has been resolved

pskelley
2007-12-23, 01:42
Thanks for letting us know, here's some good information to take with you:santa:

Some good information for you:
http://users.telenet.be/bluepatchy/miekiemoes/slowcomputer.html

Here is some great information from experts in this field that will help you stay clean and safe online.
http://users.telenet.be/bluepatchy/miekiemoes/prevention.html
http://forums.spybot.info/showthread.php?t=279
http://russelltexas.com/malware/allclear.htm
http://forum.malwareremoval.com/viewtopic.php?t=14
http://www.bleepingcomputer.com/forums/topict2520.html
http://cybercoyote.org/security/not-admin.shtml

Thanks...pskelley
Safer Networking Forums
If you are reading this information...thank a teacher,
If you are reading it in English...thank a soldier.