PDA

View Full Version : Tabs keep opening w/ adds.....



Dman2900
2010-04-28, 17:59
DDS (Ver_10-03-17.01) - NTFSx86
Run by smiller at 11:50:11.50 on Wed 04/28/2010
Internet Explorer: 8.0.6001.18702
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.3326.2533 [GMT -4:00]

AV: ESET NOD32 antivirus system 2.70 *On-access scanning enabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}

============== Running Processes ===============

C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
svchost.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\Explorer.EXE
C:\Program Files\Roxio\Drag-to-Disc\DrgToDsc.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Eset\nod32kui.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe
C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\PROGRA~1\MICROS~2\Office12\OUTLOOK.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\smiller.WIGHTMANPETRIE\Local Settings\Temporary Internet Files\Content.IE5\CH52FA59\dds[1].com

============== Pseudo HJT Report ===============

BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Adobe PDF Conversion Toolbar Helper: {ae7cd045-e861-484f-8273-0445ee161910} - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.1.1309.3572\swg.dll
TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll
EB: Adobe PDF: {182ec0be-5110-49c8-a062-beb1d02a220b} - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [RoxioDragToDisc] "c:\program files\roxio\drag-to-disc\DrgToDsc.exe"
mRun: [ISUSScheduler] "c:\program files\common files\installshield\updateservice\issch.exe" -start
mRun: [nod32kui] "c:\program files\eset\nod32kui.exe" /WAITSERVICE
mRun: [Synchronization Manager] %SystemRoot%\system32\mobsync.exe /logon
mRun: [SoundMAXPnP] c:\program files\analog devices\core\smax4pnp.exe
mRun: [Acrobat Assistant 8.0] "c:\program files\adobe\acrobat 8.0\acrobat\Acrotray.exe"
mRun: [PDVDDXSrv] "c:\program files\cyberlink\powerdvd dx\PDVDDXSrv.exe"
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [nwiz] nwiz.exe /install
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
mRun: [ISUSPM Startup] c:\progra~1\common~1\instal~1\update~1\isuspm.exe -startup
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
StartupFolder: c:\docume~1\smille~1.wig\startm~1\programs\startup\erunta~1.lnk - c:\program files\erunt\AUTOBACK.EXE
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\adobea~1.lnk - c:\windows\installer\{ac76ba86-1033-0000-ba7e-000000000003}\_SC_Acrobat.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\adobea~2.lnk - c:\program files\adobe\acrobat 8.0\acrobat\AdobeCollabSync.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\autoca~1.lnk - c:\program files\common files\autodesk shared\acstart16.exe
uPolicies-explorer: DisablePersonalDirChange = 1 (0x1)
IE: &ieSpell Options - c:\program files\iespell\iespell.dll/SPELLOPTION.HTM
IE: Append to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Check &Spelling - c:\program files\iespell\iespell.dll/SPELLCHECK.HTM
IE: Convert link target to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Convert link target to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert selected links to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Convert selected links to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Convert selection to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Convert selection to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000
IE: Lookup on Merriam Webster - file://c:\program files\iespell\Merriam Webster.HTM
IE: Lookup on Wikipedia - file://c:\program files\iespell\wikipedia.HTM
IE: {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - res://c:\program files\iespell\iespell.dll/SPELLCHECK.HTM
IE: {1606D6F9-9D3B-4aea-A025-ED5B2FD488E7} - res://c:\program files\iespell\iespell.dll/SPELLOPTION.HTM
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office12\REFIEBAR.DLL
LSP: c:\windows\system32\imon.dll
DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} - hxxp://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.5.0.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
Hosts: 127.0.0.1 www.spywareinfo.com
Hosts: 192.168.16.3 2server-da

============= SERVICES / DRIVERS ===============

R1 nod32drv;nod32drv;c:\windows\system32\drivers\nod32drv.sys [2009-3-2 15424]
R2 NOD32krn;NOD32 Kernel Service;c:\program files\eset\nod32krn.exe [2009-3-2 552064]
S2 gupdate1c99c34c0f6aa;Google Update Service (gupdate1c99c34c0f6aa);c:\program files\google\update\GoogleUpdate.exe [2009-3-3 133104]

============== File Associations ===============

.scr=AutoCADScriptFile

=============== Created Last 30 ================

2010-04-28 13:09:53 0 d-----w- c:\program files\ieSpell
2010-04-28 12:34:20 0 d-----w- c:\program files\Deltek FMS
2010-04-28 12:28:26 0 d-----w- c:\program files\Business Objects
2010-04-19 18:51:08 62976 ----a-w- c:\windows\system32\drivers\Cdrom.sys
2010-04-19 18:51:08 62976 ----a-w- c:\windows\system32\drivers\Cdrom(3).sys
2010-04-19 18:51:08 62976 ----a-w- c:\windows\system32\drivers\cdrom(2).sys
2010-04-19 15:13:57 0 d-----w- C:\Setup
2010-04-19 15:11:32 0 d-----w- C:\Autodesk
2010-04-13 14:07:25 0 d-----w- c:\windows\SxsCaPendDel
2010-04-13 12:37:08 95024 ----a-w- c:\windows\system32\drivers\SBREDrv.sys
2010-04-13 11:54:35 0 d-----w- c:\program files\Spybot - Search & Destroy
2010-04-13 11:54:35 0 d-----w- c:\docume~1\alluse~1\applic~1\Spybot - Search & Destroy
2010-04-12 11:50:26 552 ----a-w- c:\windows\system32\d3d8caps.dat
2010-04-01 15:00:40 0 d-----w- c:\program files\A-PDF Restrictions Remover

==================== Find3M ====================

2010-03-30 04:46:30 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-03-30 04:45:52 20824 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-03-10 06:15:52 420352 ----a-w- c:\windows\system32\vbscript.dll
2010-02-25 06:24:37 916480 ----a-w- c:\windows\system32\wininet.dll
2010-02-16 14:08:49 2146304 ----a-w- c:\windows\system32\ntoskrnl.exe
2010-02-16 13:25:04 2024448 ----a-w- c:\windows\system32\ntkrnlpa.exe
2010-02-12 04:33:11 100864 ----a-w- c:\windows\system32\6to4svc.dll

============= FINISH: 11:51:08.92 ===============


UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT

DDS (Ver_10-03-17.01)

Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 3/2/2009 1:12:41 PM
System Uptime: 4/28/2010 8:31:05 AM (3 hours ago)

Motherboard: Dell Inc. | | 0TP412
Processor: Intel Pentium III Xeon processor | CPU | 2660/1333mhz

==== Disk Partitions =========================

C: is FIXED (NTFS) - 149 GiB total, 117.635 GiB free.
D: is CDROM ()
G: is NetworkDisk (NTFS) - 1337 GiB total, 118.159 GiB free.
H: is NetworkDisk (NTFS) - 204 GiB total, 23.799 GiB free.
I: is NetworkDisk (NTFS) - 1337 GiB total, 118.159 GiB free.
J: is NetworkDisk (NTFS) - 204 GiB total, 23.799 GiB free.
O: is NetworkDisk (NTFS) - 1337 GiB total, 118.159 GiB free.
U: is NetworkDisk (NTFS) - 204 GiB total, 23.799 GiB free.
Z: is NetworkDisk (NTFS) - 136 GiB total, 112.331 GiB free.

==== Disabled Device Manager Items =============

==== System Restore Points ===================

RP178: 1/28/2010 2:13:54 PM - System Checkpoint
RP179: 2/3/2010 9:55:30 AM - System Checkpoint
RP180: 2/4/2010 12:13:15 PM - System Checkpoint
RP181: 2/8/2010 10:00:41 AM - System Checkpoint
RP182: 2/9/2010 2:05:03 PM - System Checkpoint
RP183: 2/10/2010 2:51:17 PM - System Checkpoint
RP184: 2/10/2010 5:28:29 PM - Software Distribution Service 3.0
RP185: 2/11/2010 2:15:31 PM - Installed Windows Media Player Firefox Plugin
RP186: 2/16/2010 8:38:09 AM - System Checkpoint
RP187: 2/17/2010 8:55:27 AM - System Checkpoint
RP188: 2/18/2010 11:17:33 AM - System Checkpoint
RP189: 2/19/2010 11:54:07 AM - System Checkpoint
RP190: 2/22/2010 9:06:14 AM - Installed Citrix Presentation Server Client
RP191: 2/23/2010 9:40:20 AM - System Checkpoint
RP192: 2/24/2010 11:36:35 AM - System Checkpoint
RP193: 2/24/2010 5:27:58 PM - Software Distribution Service 3.0
RP194: 3/1/2010 1:22:28 PM - System Checkpoint
RP195: 3/2/2010 2:41:05 PM - System Checkpoint
RP196: 3/4/2010 10:30:09 AM - System Checkpoint
RP197: 3/8/2010 8:05:58 AM - System Checkpoint
RP198: 3/11/2010 7:59:05 AM - Software Distribution Service 3.0
RP199: 3/12/2010 8:47:58 AM - System Checkpoint
RP200: 3/15/2010 2:49:32 PM - System Checkpoint
RP201: 3/18/2010 12:27:25 PM - System Checkpoint
RP202: 3/22/2010 3:47:58 PM - System Checkpoint
RP203: 3/23/2010 4:04:56 PM - System Checkpoint
RP204: 3/24/2010 4:14:38 PM - System Checkpoint
RP205: 3/26/2010 12:28:49 PM - System Checkpoint
RP206: 3/29/2010 9:55:07 AM - System Checkpoint
RP207: 3/30/2010 12:31:48 PM - System Checkpoint
RP208: 3/31/2010 7:48:09 AM - Software Distribution Service 3.0
RP209: 4/1/2010 11:24:42 AM - System Checkpoint
RP210: 4/8/2010 11:47:21 AM - System Checkpoint
RP211: 4/12/2010 9:54:26 AM - System Checkpoint
RP212: 4/12/2010 10:14:04 AM - Removed Java(TM) 6 Update 17
RP213: 4/13/2010 2:04:53 PM - System Checkpoint
RP214: 4/15/2010 7:57:51 AM - Software Distribution Service 3.0
RP215: 4/15/2010 8:11:19 AM - Software Distribution Service 3.0
RP216: 4/19/2010 9:46:35 AM - System Checkpoint
RP217: 4/21/2010 12:06:25 PM - System Checkpoint
RP218: 4/26/2010 5:02:31 PM - System Checkpoint
RP219: 4/27/2010 10:44:58 AM - Removed Deltek Financial Management System Workstation
RP220: 4/27/2010 12:59:51 PM - Restore Operation
RP221: 4/27/2010 1:03:33 PM - Restore Operation
RP222: 4/28/2010 8:17:41 AM - Removed Deltek Financial Management System Workstation
RP223: 4/28/2010 8:23:33 AM - Removed Deltek Financial Management System Workstation
RP224: 4/28/2010 8:26:19 AM - Removed Deltek Financial Management System Workstation
RP225: 4/28/2010 8:26:28 AM - Removed Deltek Financial Management System Workstation
RP226: 4/28/2010 8:28:41 AM - Removed Deltek Financial Management System Workstation
RP227: 4/28/2010 8:34:11 AM - Installed Deltek Financial Management System Workstation

==== Installed Programs ======================

A-PDF Restrictions Remover 1.6
AAC Decoder
Acrobat.com
Adobe Acrobat 8 Standard
Adobe AIR
Adobe Anchor Service CS3
Adobe Asset Services CS3
Adobe Bridge CS3
Adobe Bridge Start Meeting
Adobe Camera Raw 4.0
Adobe CMaps
Adobe Color - Photoshop Specific
Adobe Color Common Settings
Adobe Color EU Extra Settings
Adobe Color JA Extra Settings
Adobe Color NA Recommended Settings
Adobe Default Language CS3
Adobe Device Central CS3
Adobe ExtendScript Toolkit 2
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Fonts All
Adobe Help Viewer CS3
Adobe Linguistics CS3
Adobe PDF Library Files
Adobe Photoshop CS3
Adobe Reader 9.1
Adobe Setup
Adobe Shockwave Player 11.5
Adobe Stock Photos CS3
Adobe Type Support
Adobe Update Manager CS3
Adobe Version Cue CS3 Client
Adobe WinSoft Linguistics Plugin
Adobe XMP Panels CS3
Apple Application Support
Apple Mobile Device Support
Apple Software Update
AutoCAD 2005 - English
AutoCAD 2005 Express Tools Volumes 1-9
AutoCAD 2010 VBA Enabler
AutoCAD Architecture 2009
AutoCAD Architecture 2010
AutoCAD Architecture 2010 Language Pack - English
AutoCAD Architecture 2010 Version 2
Autodesk 2005 OE Hotfix
Autodesk Design Review 2010
Autodesk DWF Viewer
AutoTURN 6 Workstation
AutoUpdate
Bonjour
Broadcom Gigabit Integrated Controller
CaptureWizPro 4.00
Citrix Presentation Server Client - Web Only
COMcheck 3.6.0
Dell Resource CD
Deltek Financial Management System Workstation
DesignPro 5.4 Limited Edition
Digital Voice Recorder
DivX Codec
DivX Converter
DivX Player
DivX Plus DirectShow Filters
DivX Plus Web Player
DivX Version Checker
DWG TrueView 2009
ERUNT 1.1j
Eusing Free Registry Cleaner
Google Earth
Google Update Helper
Google Updater
H.264 Decoder
HijackThis 2.0.2
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows XP (KB954550-v5)
ieSpell
iTunes
Java Auto Updater
Karen's Directory Printer
Malwarebytes' Anti-Malware
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Security Update (KB953297)
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office Access MUI (English) 2007
Microsoft Office Access Setup Metadata MUI (English) 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office InfoPath MUI (English) 2007
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Professional Plus 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Software Update for Web Folders (English) 12
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
MKV Splitter
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 6.0 Parser (KB925673)
MTP Porting Kit
NOD32 Antivirus System
NVIDIA Drivers
NVIDIA Performance Driver for AutoCAD Architecture 2009
NVIDIA Performance Drivers
OGA Notifier 2.0.0048.0
PDF Settings
PowerDVD
QuickTime
Roxio Creator Audio
Roxio Creator Copy
Roxio Creator Data
Roxio Creator DE
Roxio Creator Tools
Roxio Drag-to-Disc
Roxio Express Labeler
Roxio Update Manager
Security Update for 2007 Microsoft Office System (KB969559)
Security Update for 2007 Microsoft Office System (KB978380)
Security Update for Microsoft Office Excel 2007 (KB978382)
Security Update for Microsoft Office Outlook 2007 (KB972363)
Security Update for Microsoft Office PowerPoint 2007 (KB957789)
Security Update for Microsoft Office Publisher 2007 (KB980470)
Security Update for Microsoft Office system 2007 (972581)
Security Update for Microsoft Office system 2007 (KB969613)
Security Update for Microsoft Office system 2007 (KB974234)
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)
Security Update for Microsoft Office Word 2007 (KB969604)
Security Update for Windows Internet Explorer 8 (KB969897)
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Internet Explorer 8 (KB972260)
Security Update for Windows Internet Explorer 8 (KB974455)
Security Update for Windows Internet Explorer 8 (KB976325)
Security Update for Windows Internet Explorer 8 (KB978207)
Security Update for Windows Internet Explorer 8 (KB981332)
Security Update for Windows XP (KB923789)
Security Update for Windows XP (KB977816)
Security Update for Windows XP (KB978338)
Security Update for Windows XP (KB978601)
Security Update for Windows XP (KB979309)
Security Update for Windows XP (KB979683)
Security Update for Windows XP (KB980232)
Sonic Activation Module
SoundMAX
Spybot - Search & Destroy
StoneCAD 5
Update for 2007 Microsoft Office System (KB967642)
Update for 2007 Microsoft Office System (KB981715)
Update for Microsoft Office InfoPath 2007 (KB976416)
Update for Outlook 2007 Junk Email Filter (kb981433)
Update for Windows Internet Explorer 8 (KB976662)
Update for Windows Internet Explorer 8 (KB976749)
Update for Windows Internet Explorer 8 (KB980182)
VBA
VBA (2627.01)
VC80CRTRedist - 8.0.50727.4053
Visual C++ 2008 x86 Runtime - (v9.0.30729)
Visual C++ 2008 x86 Runtime - v9.0.30729.01
WebFldrs XP
Windows Genuine Advantage Notifications (KB905474)
Windows Imaging Component
Windows Installer Clean Up
Windows Internet Explorer 8
Windows Media Format 11 runtime
Windows Media Player 11
Windows Media Player Firefox Plugin
Windows Presentation Foundation
Windows XP Service Pack 3
XML Paper Specification Shared Components Pack 1.0

==== Event Viewer Messages From Past Week ========

4/27/2010 9:07:44 AM, error: Dhcp [1002] - The IP address lease 192.168.10.28 for the Network Card with network address 001D09318B2E

has been denied by the DHCP server 192.168.16.3 (The DHCP Server sent a DHCPNACK message).
4/27/2010 12:21:18 PM, error: iastor [9] - The device, \Device\Ide\iaStor0, did not respond within the timeout period.
4/26/2010 5:34:29 PM, warning: Windows File Protection [64008] - The protected system file c:\windows\system32\drivers\cdrom.sys

could not be verified as valid because Windows File Protection is terminating. Use the SFC utility to verify the integrity of the

file at a later time.
4/26/2010 5:00:30 PM, information: Windows File Protection [64004] - The protected system file cdrom.sys could not be restored to

its original, valid version. The file version of the bad file is unknown The specific error code is 0x00000000 [The operation

completed successfully. ].
4/26/2010 5:00:24 PM, information: Windows File Protection [64002] - File replacement was attempted on the protected system file

cdrom.sys. This file was restored to the original version to maintain system stability. The file version of the system file is

5.1.2600.5512.

==== End Of File ===========================

Blade81
2010-04-30, 15:39
Hi,

Download GMER (http://www.gmer.net) here by clicking download exe -button and then saving it your desktop:
Double-click .exe that you downloaded
Click rootkit-tab, uncheck files option and then click scan.
Don't check
Show All
box while scanning in progress!
When scanning is ready, click Copy.
This copies log to clipboard
Post log (if the log is long, archive it into a zip file and attach instead of posting) in your reply.