Page 1 of 4 1234 LastLast
Results 1 to 10 of 40

Thread: my IE explorer has been hijacked. accidently deleted spybot and cant get it back.

  1. #1
    Junior Member
    Join Date
    Jul 2009
    Posts
    23

    Default my IE explorer has been hijacked. accidently deleted spybot and cant get it back.

    hi ive been havin issues with google mostly but now its all search sites with them redirecting me to sites that have nothing to do with anything. i tried runnin my spybot and i guess sumthin blocked it and i just thought it was broke so deleted it and when i tried to go to the site and get it redownloaded it wont open the site. ive read it might be blocked by sumthin. how do i remove watever the problem is? i ran the DDS thing and this is wat it says




    DDS (Ver_09-06-26.01) - NTFSx86
    Run by Nick at 4:11:23.95 on Sun 07/26/2009
    Internet Explorer: 8.0.6001.18702
    Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.2047.1303 [GMT -5:00]


    ============== Running Processes ===============

    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost -k DcomLaunch
    svchost.exe
    C:\WINDOWS\System32\svchost.exe -k netsvcs
    C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
    svchost.exe
    svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\rundll32.exe
    C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\Program Files\AIM6\aim6.exe
    C:\Program Files\Belkin Corporation\Belkin Wireless Network Monitor Utility and Driver (USB)\BelkinWlanMonitor.exe
    C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
    svchost.exe
    svchost.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\WINDOWS\system32\PnkBstrA.exe
    C:\WINDOWS\System32\svchost.exe -k imgsvc
    C:\Program Files\Viewpoint\Common\ViewpointService.exe
    C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
    C:\WINDOWS\system32\wscntfy.exe
    C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
    C:\Program Files\AIM6\aolsoftware.exe
    C:\WINDOWS\System32\svchost.exe -k HTTPFilter
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\BitTorrent\bittorrent.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Eusing Free Registry Cleaner\Regcleaner.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Documents and Settings\Nick\Desktop\dds.scr

    ============== Pseudo HJT Report ===============

    uSearch Bar = hxxp://search.myidentitydefender.com/smallsearch.html
    uStart Page = hxxp://google.com/
    uInternet Connection Wizard,ShellNext = iexplore
    uInternet Settings,ProxyOverride = localhost
    BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
    BHO: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - AVG Safe Search
    BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.1.1309.15642\swg.dll
    BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
    BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    TB: Veoh Web Player Video Finder: {0fbb9689-d3d7-4f7a-a2e2-585b10099bfc} - c:\program files\veoh networks\veohwebplayer\VeohIEToolbar.dll
    TB: {32099AAC-C132-4136-9E9A-4E364A424E17} - No File
    EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
    uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
    uRun: [Start WingMan Profiler] "c:\program files\logitech\profiler\lwemon.exe" /noui
    uRun: [EA Core] "c:\program files\electronic arts\eadm\Core.exe" -silent
    uRun: [VeohPlugin] "c:\program files\veoh networks\veohwebplayer\veohwebplayer.exe"
    uRun: [BitTorrent DNA] "c:\program files\dna\btdna.exe"
    uRun: [igndlm.exe] c:\program files\download manager\DLM.exe /windowsstart /startifwork
    uRun: [Aim6] "c:\program files\aim6\aim6.exe" /d locale=en-US ee://aol/imApp
    uRun: [swg] c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe
    mRun: [ALi5289] c:\program files\uli5289\ALi5289.exe
    mRun: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
    mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
    mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 8.0\reader\Reader_sl.exe"
    mRun: [ISUSPM Startup] c:\progra~1\common~1\instal~1\update~1\ISUSPM.exe -startup
    mRun: [ISUSScheduler] "c:\program files\common files\installshield\updateservice\issch.exe" -start
    mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
    mRun: [XboxStat] "c:\program files\microsoft xbox 360 accessories\XboxStat.exe" silentrun
    mRun: [SoundMan] SOUNDMAN.EXE
    mRun: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
    mRun: [HPDJ Taskbar Utility] c:\windows\system32\spool\drivers\w32x86\3\hpztsb04.exe
    StartupFolder: c:\docume~1\nick\startm~1\programs\startup\magicd~1.lnk - c:\program files\magicdisc\MagicDisc.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\belkin~2.lnk - c:\program files\belkin corporation\belkin wireless network monitor utility and driver (usb)\BelkinWlanMonitor.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\belkin~1.lnk - c:\program files\belkin\usb f5d7050\wireless utility\Belkinwcui.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\blueto~1.lnk - c:\program files\widcomm\bluetooth software\BTTray.exe
    IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
    IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
    DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
    DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} - hxxp://www.systemrequirementslab.com/srl_bin/sysreqlab_srl.cab
    DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} - hxxp://www.fileplanet.com/fpdlmgr/cabs/FPDC_2.3.7.109.cab
    DPF: {48DD0448-9209-4F81-9F6D-D83562940134} - hxxp://lads.myspace.com/upload/MySpaceUploader1006.cab
    DPF: {6218F7B5-0D3A-48BA-AE4C-49DCFA63D400} - hxxp://www.myheritage.com/Genoogle/Components/ActiveX/SearchEngineQuery.dll
    DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1208918179561
    DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} - hxxp://www.systemrequirementslab.com/sysreqlab2.cab
    DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} - hxxps://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab
    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
    DPF: {A084A130-28AE-4B32-B51A-1C8CE164BC88} - hxxp://convergysworkathome.com/AppHardT.CAB
    DPF: {B8A48F42-30E1-48f8-AE87-7BD7C75DB8AA} - hxxp://www.srtest.com/srl_bin/sysreqlab_test.cab
    DPF: {CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA}
    DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}
    DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
    DPF: {CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA}
    DPF: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
    DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
    TCP: NameServer = 85.255.112.215,85.255.112.94
    TCP: {1A1D83B7-DA13-4822-9C5A-9191F0C5D759} = 85.255.112.215,85.255.112.94
    Notify: AtiExtEvent - Ati2evxx.dll
    SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll

    ============= SERVICES / DRIVERS ===============

    R0 m5289;m5289;c:\windows\system32\drivers\m5289.sys [2008-4-22 51840]
    R0 uliagpkx;ULi AGP Bus Filter Driver;c:\windows\system32\drivers\AGPKX.SYS [2008-4-22 45056]
    R2 Viewpoint Manager Service;Viewpoint Manager Service;c:\program files\viewpoint\common\ViewpointService.exe [2008-4-25 24652]
    R3 AtiHdmiService;ATI Function Driver for HDMI Service;c:\windows\system32\drivers\AtiHdmi.sys [2009-1-2 84992]
    R3 ULI5261XP;ULi M526X Ethernet NT Driver;c:\windows\system32\drivers\ULILAN51.SYS [2008-4-22 28672]
    S2 gupdate1c98890794b6b46;Google Update Service (gupdate1c98890794b6b46);c:\program files\google\update\GoogleUpdate.exe [2009-2-6 133104]
    S2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; [x]
    S3 SonyPVP1;Sony PTP USB Lower Filter driver;c:\windows\system32\drivers\SonyPVP1.sys [2009-6-19 6920]
    UnknownUnknown szkg5;szkg5; [x]

    =============== Created Last 30 ================

    2009-07-26 03:51 <DIR> -cd----- c:\docume~1\alluse~1\applic~1\STOPzilla!
    2009-07-24 01:36 <DIR> -cd----- C:\EPSON
    2009-07-24 00:42 800 a------- c:\windows\hpinfo.lnk
    2009-07-24 00:41 376 a------- c:\windows\mozregistry.dat
    2009-07-24 00:41 <DIR> --d----- c:\program files\hp deskjet 825c series
    2009-07-23 00:58 <DIR> -cd-h--- c:\docume~1\alluse~1\applic~1\{5794CDCB-FAB7-4C15-9069-4D8AC02592DE}
    2009-07-22 21:18 <DIR> --d----- c:\windows\system32\Adobe
    2009-07-21 17:28 <DIR> --d----- c:\program files\AC3Filter
    2009-07-18 15:27 <DIR> --d----- c:\program files\AIM6
    2009-07-15 15:55 25,856 ac------ c:\windows\system32\dllcache\usbprint.sys
    2009-07-15 15:55 25,856 a------- c:\windows\system32\drivers\usbprint.sys
    2009-07-09 12:02 <DIR> --d----- c:\program files\Realtek AC97
    2009-07-09 10:42 4,096 a------- c:\windows\system32\crash
    2009-07-03 19:32 <DIR> --d----- c:\program files\Alex Feinman
    2009-07-01 13:10 <DIR> --dsh--- c:\documents and settings\nick\IECompatCache
    2009-06-30 22:53 <DIR> --d----- c:\windows\ie8updates
    2009-06-30 22:47 246,272 -c------ c:\windows\system32\dllcache\ieproxy.dll
    2009-06-30 22:47 12,800 -c------ c:\windows\system32\dllcache\xpshims.dll
    2009-06-30 18:44 559,161 ac------ C:\AnalysisLog.sr0
    2009-06-30 18:30 33,792 a------- c:\windows\cmsetac.dll
    2009-06-30 18:30 2,269,232 a------- c:\windows\prototypef.exe
    2009-06-30 18:02 <DIR> --dsh--- c:\windows\ftpcache
    2009-06-30 17:54 <DIR> --d----- c:\program files\Activision
    2009-06-30 12:25 <DIR> --dsh--- c:\documents and settings\nick\PrivacIE
    2009-06-30 12:18 <DIR> --dsh--- c:\documents and settings\nick\IETldCache
    2009-06-30 12:15 <DIR> -cd-h--- c:\windows\ie8
    2009-06-26 13:41 <DIR> --d----- c:\program files\Microsoft Xbox 360 Accessories

    ==================== Find3M ====================

    2009-07-23 11:53 138,832 a------- c:\windows\system32\drivers\PnkBstrK.sys
    2009-07-23 11:53 202,024 a------- c:\windows\system32\PnkBstrB.exe
    2009-07-02 17:29 119,296 a------- c:\windows\system32\zlib.dll
    2009-06-21 11:10 721,904 a------- c:\windows\system32\drivers\sptd.sys
    2009-06-16 09:36 119,808 a------- c:\windows\system32\t2embed.dll
    2009-06-16 09:36 81,920 a------- c:\windows\system32\fontsub.dll
    2009-06-12 20:54 21,840 a------- c:\windows\system32\SIntfNT.dll
    2009-06-12 20:54 17,212 a------- c:\windows\system32\SIntf32.dll
    2009-06-12 20:54 12,067 a------- c:\windows\system32\SIntf16.dll
    2009-06-10 10:04 2,668,313 a------- c:\windows\mstwain32.exe
    2009-06-04 06:37 348,160 a------- c:\windows\system32\msvcr71.dll
    2009-06-04 06:37 499,712 a------- c:\windows\system32\msvcp71.dll
    2009-06-03 14:09 1,291,264 a------- c:\windows\system32\quartz.dll
    2009-05-21 10:33 410,984 a------- c:\windows\system32\deploytk.dll
    2009-05-15 22:39 442,368 a------- c:\windows\system32\ATIDEMGX.dll
    2009-05-15 22:38 335,872 a------- c:\windows\system32\ati2dvag.dll
    2009-05-15 22:18 204,800 a------- c:\windows\system32\atipdlxx.dll
    2009-05-15 22:17 155,648 a------- c:\windows\system32\Oemdspif.dll
    2009-05-15 22:17 26,112 a------- c:\windows\system32\Ati2mdxx.exe
    2009-05-15 22:17 43,520 a------- c:\windows\system32\ati2edxx.dll
    2009-05-15 22:17 155,648 a------- c:\windows\system32\ati2evxx.dll
    2009-05-15 22:15 602,112 a------- c:\windows\system32\ati2evxx.exe
    2009-05-15 22:14 53,248 a------- c:\windows\system32\ATIDDC.DLL
    2009-05-15 22:07 2,987,136 a------- c:\windows\system32\ati3duag.dll
    2009-05-15 21:55 11,423,744 a------- c:\windows\system32\atioglxx.dll
    2009-05-15 21:54 2,122,624 a------- c:\windows\system32\ativvaxx.dll
    2009-05-15 21:54 887,724 a------- c:\windows\system32\ativva6x.dat
    2009-05-15 21:51 311,296 a------- c:\windows\system32\atiiiexx.dll
    2009-05-15 21:38 49,664 a------- c:\windows\system32\atimpc32.dll
    2009-05-15 21:38 49,664 a------- c:\windows\system32\amdpcom32.dll
    2009-05-15 21:33 479,232 a------- c:\windows\system32\atikvmag.dll
    2009-05-15 21:31 139,264 a------- c:\windows\system32\atiadlxx.dll
    2009-05-15 21:31 17,408 a------- c:\windows\system32\atitvo32.dll
    2009-05-15 21:26 376,832 a------- c:\windows\system32\atiok3x2.dll
    2009-05-15 21:24 651,264 a------- c:\windows\system32\ati2cqag.dll
    2009-05-15 20:35 45,056 a------- c:\windows\system32\aticalrt.dll
    2009-05-15 20:34 45,056 a------- c:\windows\system32\aticalcl.dll
    2009-05-15 20:33 3,158,016 a------- c:\windows\system32\aticaldd.dll
    2009-05-15 20:05 593,920 -------- c:\windows\system32\ati2sgag.exe
    2009-05-13 00:15 915,456 a------- c:\windows\system32\wininet.dll
    2009-05-07 10:32 345,600 a------- c:\windows\system32\localspl.dll
    2009-05-05 14:33 118,784 a------- c:\windows\system32\atibtmon.exe
    2009-05-01 16:02 823,296 a------- c:\windows\system32\divx_xx0c.dll
    2009-05-01 16:02 823,296 a------- c:\windows\system32\divx_xx07.dll
    2009-05-01 16:02 815,104 a------- c:\windows\system32\divx_xx0a.dll
    2009-05-01 16:02 811,008 a------- c:\windows\system32\divx_xx16.dll
    2009-05-01 16:02 802,816 a------- c:\windows\system32\divx_xx11.dll
    2009-05-01 16:02 685,056 a------- c:\windows\system32\DivX.dll
    2009-03-26 17:54 22,328 a------- c:\docume~1\nick\applic~1\PnkBstrK.sys
    2008-06-12 02:27 32,768 ac-sh--- c:\windows\system32\config\systemprofile\local settings\history\history.ie5\mshist012008061220080613\index.dat

    ============= FINISH: 4:11:54.53 ===============



    it wont let me load the attachment because its a rar file and not a zip. can i just post it here for u?

  2. #2
    Security Expert: Emeritus
    Join Date
    Oct 2006
    Location
    Finland
    Posts
    29,374

    Default

    Hi stonedanimal

    Yes please post it into your reply )
    Microsoft MVP Consumer Security 2008-2011

    Member of ASAP and UNITE since 2006

  3. #3
    Junior Member
    Join Date
    Jul 2009
    Posts
    23

    Default

    here this is wat it says.


    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT

    DDS (Ver_09-06-26.01)

    Microsoft Windows XP Professional
    Boot Device: \Device\HarddiskVolume1
    Install Date: 4/22/2008 9:12:16 PM
    System Uptime: 7/23/2009 2:45:08 PM (62 hours ago)

    Motherboard: | | 939Dual-SATA2
    Processor: AMD Athlon(tm) 64 Processor 3400+ | CPUSocket | 2200/200mhz

    ==== Disk Partitions =========================

    A: is Removable
    C: is FIXED (NTFS) - 75 GiB total, 12.952 GiB free.
    D: is CDROM ()
    E: is CDROM ()
    F: is CDROM ()
    G: is CDROM ()
    H: is FIXED (FAT32) - 149 GiB total, 112.454 GiB free.
    J: is CDROM ()

    ==== Disabled Device Manager Items =============

    Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
    Description: Bluetooth LAN Access Server Driver
    Device ID: {95C7A0A0-3094-11D7-A202-00508B9D7D5A}\BTWDNDIS\1&30EE4AD&0&1000000020000
    Manufacturer: Broadcom
    Name: Bluetooth LAN Access Server Driver
    PNP Device ID: {95C7A0A0-3094-11D7-A202-00508B9D7D5A}\BTWDNDIS\1&30EE4AD&0&1000000020000
    Service: BTWDNDIS

    ==== System Restore Points ===================

    RP417: 5/11/2009 5:19:25 PM - Avg8 Update
    RP418: 5/11/2009 11:29:22 PM - System Checkpoint
    RP419: 5/13/2009 12:55:45 PM - Avg8 Update
    RP420: 5/14/2009 2:00:17 AM - Software Distribution Service 3.0
    RP421: 5/15/2009 2:08:33 AM - System Checkpoint
    RP422: 5/17/2009 4:04:51 PM - System Checkpoint
    RP423: 5/18/2009 1:59:55 PM - Avg8 Update
    RP424: 5/18/2009 2:00:37 PM - Avg8 Update
    RP425: 5/19/2009 11:57:19 PM - System Checkpoint
    RP426: 5/21/2009 5:06:49 PM - Installed Realtek AC'97 Audio
    RP427: 5/22/2009 6:22:30 PM - System Checkpoint
    RP428: 5/23/2009 6:27:15 PM - System Checkpoint
    RP429: 5/25/2009 2:34:31 AM - System Checkpoint
    RP430: 5/25/2009 11:57:58 PM - Removed Ad-Aware
    RP431: 5/26/2009 12:04:12 AM - Removed AVG 8.5
    RP432: 5/26/2009 12:04:40 AM - Installed AVG 8.5
    RP433: 5/26/2009 12:04:59 AM - Removed ISO Recorder
    RP434: 5/27/2009 1:45:38 AM - System Checkpoint
    RP435: 5/28/2009 3:28:43 PM - Installed Java(TM) 6 Update 13
    RP436: 5/28/2009 3:31:58 PM - Installed Java(TM) 6 Update 13
    RP437: 5/28/2009 3:33:28 PM - Installed Java(TM) 6 Update 13
    RP438: 5/29/2009 11:22:45 PM - System Checkpoint
    RP439: 5/30/2009 11:34:53 PM - System Checkpoint
    RP440: 6/1/2009 12:53:41 AM - System Checkpoint
    RP441: 6/2/2009 1:38:26 AM - System Checkpoint
    RP442: 6/3/2009 2:30:23 AM - System Checkpoint
    RP443: 6/4/2009 3:31:08 AM - System Checkpoint
    RP444: 6/5/2009 4:09:03 AM - System Checkpoint
    RP445: 6/7/2009 12:47:45 AM - System Checkpoint
    RP446: 6/8/2009 4:37:07 PM - System Checkpoint
    RP447: 6/9/2009 11:24:56 PM - System Checkpoint
    RP448: 6/10/2009 10:02:18 AM - Software Distribution Service 3.0
    RP449: 6/10/2009 10:20:18 AM - Installed Java(TM) 6 Update 14
    RP450: 6/11/2009 10:41:47 AM - System Checkpoint
    RP451: 6/11/2009 6:36:55 PM - Installed SPORE™
    RP452: 6/11/2009 10:31:40 PM - Removed SPORE™
    RP453: 6/12/2009 6:10:11 PM - Installed SPORE™ Creature Creator Trial Edition
    RP454: 6/12/2009 7:03:22 PM - Configured SPORE™ Creature Creator Trial Edition
    RP455: 6/12/2009 9:02:40 PM - Removed Crysis(R).
    RP456: 6/12/2009 9:03:48 PM - Removed GameSpy Comrade.
    RP457: 6/12/2009 9:32:06 PM - Removed SPORE™ Creature Creator Trial Edition
    RP458: 6/13/2009 4:39:44 PM - Installed SPORE™
    RP459: 6/14/2009 11:40:07 AM - Installed SPORE™
    RP460: 6/16/2009 1:49:11 AM - System Checkpoint
    RP461: 6/17/2009 11:48:10 PM - Configured SPORE™
    RP462: 6/19/2009 5:53:51 PM - Unsigned driver install
    RP463: 6/20/2009 11:27:41 AM - Installed DirectX
    RP464: 6/20/2009 11:09:45 PM - Installed Project64 1.6
    RP465: 6/21/2009 11:10:22 AM - SPTD setup V1.58
    RP466: 6/22/2009 11:22:38 AM - System Checkpoint
    RP467: 6/23/2009 11:35:37 AM - System Checkpoint
    RP468: 6/24/2009 6:29:21 PM - System Checkpoint
    RP469: 6/24/2009 8:09:13 PM - Installed Prototype(TM)
    RP470: 6/24/2009 8:17:58 PM - Removed SPORE™
    RP471: 6/24/2009 8:26:25 PM - Installed Prototype(TM)
    RP472: 6/24/2009 8:33:48 PM - Installed Prototype(TM)
    RP473: 6/24/2009 9:00:25 PM - Installed Prototype(TM)
    RP474: 6/24/2009 9:01:11 PM - Installed Prototype(TM)
    RP475: 6/24/2009 9:15:56 PM - Installed Prototype(TM)
    RP476: 6/24/2009 9:21:11 PM - Installed Prototype(TM)
    RP477: 6/24/2009 9:34:28 PM - Removed Prototype(TM)
    RP478: 6/24/2009 9:37:27 PM - Removed Prototype(TM)
    RP479: 6/24/2009 9:38:10 PM - Installed Prototype(TM)
    RP480: 6/24/2009 11:49:45 PM - Removed Prototype(TM)
    RP481: 6/25/2009 12:17:15 AM - Installed Prototype(TM)
    RP482: 6/26/2009 2:40:41 AM - System Checkpoint
    RP483: 6/26/2009 1:29:10 PM - Installed Pinnacle Game Profiler
    RP484: 6/26/2009 1:41:53 PM - Installed DirectX
    RP485: 6/27/2009 1:58:43 PM - System Checkpoint
    RP486: 6/27/2009 5:15:23 PM - Configured Prototype(TM)
    RP487: 6/28/2009 4:31:23 PM - Removed Steam
    RP488: 6/30/2009 4:34:03 AM - Software Distribution Service 3.0
    RP489: 6/30/2009 5:42:33 PM - Installed Prototype(TM)
    RP490: 6/30/2009 5:54:05 PM - Installed Prototype(TM)
    RP491: 6/30/2009 10:52:06 PM - Software Distribution Service 3.0
    RP492: 7/3/2009 1:51:02 AM - System Checkpoint
    RP493: 7/3/2009 7:32:41 PM - Installed ISO Recorder
    RP494: 7/3/2009 10:20:53 PM - Removed Pinnacle Game Profiler
    RP495: 7/4/2009 11:08:13 PM - System Checkpoint
    RP496: 7/6/2009 12:38:13 AM - System Checkpoint
    RP497: 7/7/2009 2:07:17 AM - System Checkpoint
    RP498: 7/8/2009 2:17:48 AM - System Checkpoint
    RP499: 7/9/2009 4:17:45 AM - System Checkpoint
    RP500: 7/9/2009 12:02:25 PM - Installed Realtek AC'97 Audio
    RP501: 7/10/2009 2:39:30 PM - System Checkpoint
    RP502: 7/11/2009 9:59:11 PM - System Checkpoint
    RP503: 7/12/2009 10:19:01 PM - System Checkpoint
    RP504: 7/15/2009 4:07:21 PM - Software Distribution Service 3.0
    RP505: 7/16/2009 8:53:08 PM - System Checkpoint
    RP506: 7/17/2009 10:41:53 PM - System Checkpoint
    RP507: 7/19/2009 4:03:51 AM - System Checkpoint
    RP508: 7/20/2009 4:18:28 AM - System Checkpoint
    RP509: 7/21/2009 4:47:32 AM - System Checkpoint

    ==== Installed Programs ======================

    AAC Decoder
    AC3Filter (remove only)
    Adobe Flash Player 10 ActiveX
    Adobe Flash Player 10 Plugin
    Adobe Reader 8.1.4
    Adobe Shockwave Player 11.5
    AIM 6
    Alarm 2.0.4
    ALi mini IDE driver
    Apple Software Update
    Athlon 64 Processor Driver
    ATI - Software Uninstall Utility
    ATI Catalyst Control Center
    ATI Display Driver
    ATI HYDRAVISION
    AutoUpdate
    Belkin Wireless Network Monitor Utility and Driver (USB)
    Belkin Wireless USB Utility
    BitTorrent
    Catalyst Control Center - Branding
    Catalyst Control Center Core Implementation
    Catalyst Control Center Graphics Full Existing
    Catalyst Control Center Graphics Full New
    Catalyst Control Center Graphics Light
    Catalyst Control Center Graphics Previews Common
    Catalyst Control Center HydraVision Full
    ccc-core-preinstall
    ccc-core-static
    ccc-utility
    CCC Help English
    Critical Update for Windows Media Player 11 (KB959772)
    Crysis Wars(R)
    Crysis Wars(R) Patch
    DivX Codec
    DivX Converter
    DivX Player
    DivX Plus DirectShow Filters
    DivX Version Checker
    DivX Web Player
    DNA
    Download Manager 2.3.7
    EA Download Manager
    Eusing Free Registry Cleaner
    File Splitter and Joiner (FFSJ v3.2)
    Free Create-Burn ISO Image v2.0
    Google Earth
    Google Update Helper
    Google Updater
    H.264 Decoder
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
    Hotfix for Windows Internet Explorer 7 (KB947864)
    Hotfix for Windows Media Format 11 SDK (KB929399)
    Hotfix for Windows Media Player 11 (KB939683)
    Hotfix for Windows XP (KB952287)
    Hotfix for Windows XP (KB954550-v5)
    Hotfix for Windows XP (KB961118)
    hp deskjet 825c series (Remove only)
    ImagXpress
    IOGEAR Bluetooth Software
    ISO Recorder
    Java(TM) 6 Update 14
    Logitech Gaming Software
    Magic ISO Maker v5.5 (build 0276)
    MagicDisc 2.6.93
    Microsoft .NET Framework 1.1
    Microsoft .NET Framework 1.1 Hotfix (KB928366)
    Microsoft .NET Framework 2.0 Service Pack 2
    Microsoft .NET Framework 3.0 Service Pack 2
    Microsoft .NET Framework 3.5 SP1
    Microsoft Application Error Reporting
    Microsoft Compression Client Pack 1.0 for Windows XP
    Microsoft Internationalized Domain Names Mitigation APIs
    Microsoft National Language Support Downlevel APIs
    Microsoft User-Mode Driver Framework Feature Pack 1.0
    Microsoft VC9 runtime libraries
    Microsoft Visual C++ 2005 Redistributable
    Microsoft Xbox 360 Accessories 1.1
    MKV Splitter
    MSXML 4.0 SP2 (KB954430)
    MyIdentityDefender Toolbar (CyberDefender Corporation)
    neroxml
    Project64 1.6
    Prototype(TM)
    PunkBuster Services
    Realtek AC'97 Audio
    Roxio Creator Audio
    Roxio Creator Copy
    Roxio Creator Data
    Roxio Creator DE
    Roxio Creator Tools
    Roxio Drag-to-Disc
    Roxio Update Manager
    Security Update for CAPICOM (KB931906)
    Security Update for Windows Internet Explorer 7 (KB938127)
    Security Update for Windows Internet Explorer 7 (KB950759)
    Security Update for Windows Internet Explorer 7 (KB953838)
    Security Update for Windows Internet Explorer 7 (KB956390)
    Security Update for Windows Internet Explorer 7 (KB958215)
    Security Update for Windows Internet Explorer 7 (KB960714)
    Security Update for Windows Internet Explorer 7 (KB961260)
    Security Update for Windows Internet Explorer 7 (KB963027)
    Security Update for Windows Internet Explorer 7 (KB969897)
    Security Update for Windows Internet Explorer 8 (KB969897)
    Security Update for Windows Media Player (KB911564)
    Security Update for Windows Media Player (KB952069)
    Security Update for Windows Media Player 11 (KB936782)
    Security Update for Windows Media Player 11 (KB954154)
    Security Update for Windows Media Player 9 (KB936782)
    Security Update for Windows XP (KB923561)
    Security Update for Windows XP (KB938464)
    Security Update for Windows XP (KB941569)
    Security Update for Windows XP (KB946648)
    Security Update for Windows XP (KB950760)
    Security Update for Windows XP (KB950762)
    Security Update for Windows XP (KB950974)
    Security Update for Windows XP (KB951066)
    Security Update for Windows XP (KB951376-v2)
    Security Update for Windows XP (KB951376)
    Security Update for Windows XP (KB951698)
    Security Update for Windows XP (KB951748)
    Security Update for Windows XP (KB952004)
    Security Update for Windows XP (KB952954)
    Security Update for Windows XP (KB953839)
    Security Update for Windows XP (KB954211)
    Security Update for Windows XP (KB954459)
    Security Update for Windows XP (KB954600)
    Security Update for Windows XP (KB955069)
    Security Update for Windows XP (KB956391)
    Security Update for Windows XP (KB956572)
    Security Update for Windows XP (KB956802)
    Security Update for Windows XP (KB956803)
    Security Update for Windows XP (KB956841)
    Security Update for Windows XP (KB957095)
    Security Update for Windows XP (KB957097)
    Security Update for Windows XP (KB958644)
    Security Update for Windows XP (KB958687)
    Security Update for Windows XP (KB958690)
    Security Update for Windows XP (KB959426)
    Security Update for Windows XP (KB960225)
    Security Update for Windows XP (KB960715)
    Security Update for Windows XP (KB960803)
    Security Update for Windows XP (KB961371)
    Security Update for Windows XP (KB961373)
    Security Update for Windows XP (KB961501)
    Security Update for Windows XP (KB968537)
    Security Update for Windows XP (KB969898)
    Security Update for Windows XP (KB970238)
    Security Update for Windows XP (KB971633)
    Security Update for Windows XP (KB973346)
    Skins
    Sonic Activation Module
    Sony PTP USB Driver
    System Requirements Lab
    TuxGuitar
    ULi AGP Driver
    ULi LAN Driver
    ULi M5289 SATA Driver
    Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
    Update for Windows XP (KB951072-v2)
    Update for Windows XP (KB951978)
    Update for Windows XP (KB955839)
    Update for Windows XP (KB967715)
    VC80CRTRedist - 8.0.50727.762
    Ventrilo Client
    Veoh Web Player
    Viewpoint Media Player
    Visual C++ 2008 x86 Runtime - (v9.0.30729)
    Visual C++ 2008 x86 Runtime - v9.0.30729.01
    WebFldrs XP
    Windows Genuine Advantage Notifications (KB905474)
    Windows Genuine Advantage Validation Tool (KB892130)
    Windows Imaging Component
    Windows Internet Explorer 7
    Windows Internet Explorer 8
    Windows Media Format 11 runtime
    Windows Media Format SDK Hotfix - KB891122
    Windows Media Player 11
    Windows XP Service Pack 3
    WinRAR archiver
    XML Paper Specification Shared Components Pack 1.0

    ==== Event Viewer Messages From Past Week ========

    7/25/2009 12:07:01 PM, error: m5289 [9] - The device, \Device\Scsi\m52891, did not respond within the timeout period.
    7/21/2009 5:29:44 PM, error: sr [1] - The System Restore filter encountered the unexpected error '0xC0000001' while processing the file '' on the volume 'HarddiskVolume2'. It has stopped monitoring the volume.
    7/21/2009 5:11:53 PM, error: Service Control Manager [7000] - The Nero BackItUp Scheduler 4.0 service failed to start due to the following error: The system cannot find the path specified.

    ==== End Of File ===========================

  4. #4
    Security Expert: Emeritus
    Join Date
    Oct 2006
    Location
    Finland
    Posts
    29,374

    Default

    IMPORTANT I notice there are signs of one or more P2P (Peer to Peer) File Sharing Programs on your computer.

    BitTorrent
    DNA


    I'd like you to read the this thread.

    Please go to Control Panel > Add/Remove Programs and uninstall the programs listed above (in red).

    Please run a new DDS log scan when finished and post the logs back here.
    Microsoft MVP Consumer Security 2008-2011

    Member of ASAP and UNITE since 2006

  5. #5
    Junior Member
    Join Date
    Jul 2009
    Posts
    23

    Default ok

    alrighty i just deleted them. heres the new dds and attach.


    DDS (Ver_09-06-26.01) - NTFSx86
    Run by Nick at 13:07:44.98 on Tue 07/28/2009
    Internet Explorer: 8.0.6001.18702
    Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.2047.1541 [GMT -5:00]


    ============== Running Processes ===============

    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost -k DcomLaunch
    svchost.exe
    C:\WINDOWS\System32\svchost.exe -k netsvcs
    C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
    svchost.exe
    svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\ULI5289\ALi5289.exe
    C:\WINDOWS\system32\rundll32.exe
    C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
    C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Logitech\Profiler\lwemon.exe
    C:\Program Files\Electronic Arts\EADM\Core.exe
    C:\Program Files\AIM6\aim6.exe
    C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    C:\Program Files\Belkin Corporation\Belkin Wireless Network Monitor Utility and Driver (USB)\BelkinWlanMonitor.exe
    C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
    svchost.exe
    svchost.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\WINDOWS\system32\PnkBstrA.exe
    C:\WINDOWS\System32\svchost.exe -k imgsvc
    C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
    C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
    C:\Program Files\Viewpoint\Common\ViewpointService.exe
    C:\WINDOWS\system32\wscntfy.exe
    C:\Program Files\AIM6\aolsoftware.exe
    C:\WINDOWS\System32\svchost.exe -k HTTPFilter
    C:\Program Files\MagicDisc\MagicDisc.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Documents and Settings\Nick\Desktop\dds.scr

    ============== Pseudo HJT Report ===============

    uSearch Bar = hxxp://search.myidentitydefender.com/smallsearch.html
    uStart Page = hxxp://google.com/
    uInternet Connection Wizard,ShellNext = iexplore
    uInternet Settings,ProxyOverride = localhost
    BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
    BHO: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - AVG Safe Search
    BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.1.1309.15642\swg.dll
    BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
    BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    TB: Veoh Web Player Video Finder: {0fbb9689-d3d7-4f7a-a2e2-585b10099bfc} - c:\program files\veoh networks\veohwebplayer\VeohIEToolbar.dll
    TB: {32099AAC-C132-4136-9E9A-4E364A424E17} - No File
    EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
    uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
    uRun: [Start WingMan Profiler] "c:\program files\logitech\profiler\lwemon.exe" /noui
    uRun: [EA Core] "c:\program files\electronic arts\eadm\Core.exe" -silent
    uRun: [VeohPlugin] "c:\program files\veoh networks\veohwebplayer\veohwebplayer.exe"
    uRun: [igndlm.exe] c:\program files\download manager\DLM.exe /windowsstart /startifwork
    uRun: [Aim6] "c:\program files\aim6\aim6.exe" /d locale=en-US ee://aol/imApp
    uRun: [swg] c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe
    mRun: [ALi5289] c:\program files\uli5289\ALi5289.exe
    mRun: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
    mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
    mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 8.0\reader\Reader_sl.exe"
    mRun: [ISUSPM Startup] c:\progra~1\common~1\instal~1\update~1\ISUSPM.exe -startup
    mRun: [ISUSScheduler] "c:\program files\common files\installshield\updateservice\issch.exe" -start
    mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
    mRun: [XboxStat] "c:\program files\microsoft xbox 360 accessories\XboxStat.exe" silentrun
    mRun: [SoundMan] SOUNDMAN.EXE
    mRun: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
    mRun: [HPDJ Taskbar Utility] c:\windows\system32\spool\drivers\w32x86\3\hpztsb04.exe
    StartupFolder: c:\docume~1\nick\startm~1\programs\startup\magicd~1.lnk - c:\program files\magicdisc\MagicDisc.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\belkin~2.lnk - c:\program files\belkin corporation\belkin wireless network monitor utility and driver (usb)\BelkinWlanMonitor.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\belkin~1.lnk - c:\program files\belkin\usb f5d7050\wireless utility\Belkinwcui.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\blueto~1.lnk - c:\program files\widcomm\bluetooth software\BTTray.exe
    IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
    IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
    DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
    DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} - hxxp://www.systemrequirementslab.com/srl_bin/sysreqlab_srl.cab
    DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} - hxxp://www.fileplanet.com/fpdlmgr/cabs/FPDC_2.3.7.109.cab
    DPF: {48DD0448-9209-4F81-9F6D-D83562940134} - hxxp://lads.myspace.com/upload/MySpaceUploader1006.cab
    DPF: {6218F7B5-0D3A-48BA-AE4C-49DCFA63D400} - hxxp://www.myheritage.com/Genoogle/Components/ActiveX/SearchEngineQuery.dll
    DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1208918179561
    DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} - hxxp://www.systemrequirementslab.com/sysreqlab2.cab
    DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} - hxxps://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab
    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
    DPF: {A084A130-28AE-4B32-B51A-1C8CE164BC88} - hxxp://convergysworkathome.com/AppHardT.CAB
    DPF: {B8A48F42-30E1-48f8-AE87-7BD7C75DB8AA} - hxxp://www.srtest.com/srl_bin/sysreqlab_test.cab
    DPF: {CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA}
    DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}
    DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
    DPF: {CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA}
    DPF: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
    DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
    TCP: NameServer = 85.255.112.215,85.255.112.94
    TCP: {1A1D83B7-DA13-4822-9C5A-9191F0C5D759} = 85.255.112.215,85.255.112.94
    Notify: AtiExtEvent - Ati2evxx.dll
    SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll

    ============= SERVICES / DRIVERS ===============

    R0 m5289;m5289;c:\windows\system32\drivers\m5289.sys [2008-4-22 51840]
    R0 uliagpkx;ULi AGP Bus Filter Driver;c:\windows\system32\drivers\AGPKX.SYS [2008-4-22 45056]
    R2 Viewpoint Manager Service;Viewpoint Manager Service;c:\program files\viewpoint\common\ViewpointService.exe [2008-4-25 24652]
    R3 AtiHdmiService;ATI Function Driver for HDMI Service;c:\windows\system32\drivers\AtiHdmi.sys [2009-1-2 84992]
    R3 ULI5261XP;ULi M526X Ethernet NT Driver;c:\windows\system32\drivers\ULILAN51.SYS [2008-4-22 28672]
    S2 gupdate1c98890794b6b46;Google Update Service (gupdate1c98890794b6b46);c:\program files\google\update\GoogleUpdate.exe [2009-2-6 133104]
    S2 Nero BackItUp Scheduler 4.0;Nero BackItUp Scheduler 4.0; [x]
    S3 SonyPVP1;Sony PTP USB Lower Filter driver;c:\windows\system32\drivers\SonyPVP1.sys [2009-6-19 6920]
    S3 st3bus28;st3bus28;c:\windows\system32\drivers\st3bus28.sys [2002-12-28 8416]
    S3 st3mp28;st3mp28;c:\windows\system32\drivers\st3mp28.sys [2002-12-28 95328]

    =============== Created Last 30 ================

    2009-07-27 04:23 <DIR> --d----- c:\program files\D-Tools
    2009-07-26 03:51 <DIR> -cd----- c:\docume~1\alluse~1\applic~1\STOPzilla!
    2009-07-24 01:36 <DIR> -cd----- C:\EPSON
    2009-07-24 00:42 800 a------- c:\windows\hpinfo.lnk
    2009-07-24 00:41 376 a------- c:\windows\mozregistry.dat
    2009-07-24 00:41 <DIR> --d----- c:\program files\hp deskjet 825c series
    2009-07-23 00:58 <DIR> -cd-h--- c:\docume~1\alluse~1\applic~1\{5794CDCB-FAB7-4C15-9069-4D8AC02592DE}
    2009-07-22 21:18 <DIR> --d----- c:\windows\system32\Adobe
    2009-07-21 17:28 <DIR> --d----- c:\program files\AC3Filter
    2009-07-18 15:27 <DIR> --d----- c:\program files\AIM6
    2009-07-15 15:55 25,856 ac------ c:\windows\system32\dllcache\usbprint.sys
    2009-07-15 15:55 25,856 a------- c:\windows\system32\drivers\usbprint.sys
    2009-07-09 12:02 <DIR> --d----- c:\program files\Realtek AC97
    2009-07-09 10:42 4,096 a------- c:\windows\system32\crash
    2009-07-03 19:32 <DIR> --d----- c:\program files\Alex Feinman
    2009-07-01 13:10 <DIR> --dsh--- c:\documents and settings\nick\IECompatCache
    2009-06-30 22:53 <DIR> --d----- c:\windows\ie8updates
    2009-06-30 22:47 246,272 -c------ c:\windows\system32\dllcache\ieproxy.dll
    2009-06-30 22:47 12,800 -c------ c:\windows\system32\dllcache\xpshims.dll
    2009-06-30 18:44 559,161 ac------ C:\AnalysisLog.sr0
    2009-06-30 18:30 33,792 a------- c:\windows\cmsetac.dll
    2009-06-30 18:30 2,269,232 a------- c:\windows\prototypef.exe
    2009-06-30 18:02 <DIR> --dsh--- c:\windows\ftpcache
    2009-06-30 17:54 <DIR> --d----- c:\program files\Activision
    2009-06-30 12:25 <DIR> --dsh--- c:\documents and settings\nick\PrivacIE
    2009-06-30 12:18 <DIR> --dsh--- c:\documents and settings\nick\IETldCache
    2009-06-30 12:15 <DIR> -cd-h--- c:\windows\ie8

    ==================== Find3M ====================

    2009-07-27 02:18 138,832 a------- c:\windows\system32\drivers\PnkBstrK.sys
    2009-07-27 02:18 202,024 a------- c:\windows\system32\PnkBstrB.exe
    2009-07-02 17:29 119,296 a------- c:\windows\system32\zlib.dll
    2009-06-21 11:10 721,904 a------- c:\windows\system32\drivers\sptd.sys
    2009-06-16 09:36 119,808 a------- c:\windows\system32\t2embed.dll
    2009-06-16 09:36 81,920 a------- c:\windows\system32\fontsub.dll
    2009-06-12 20:54 21,840 a------- c:\windows\system32\SIntfNT.dll
    2009-06-12 20:54 17,212 a------- c:\windows\system32\SIntf32.dll
    2009-06-12 20:54 12,067 a------- c:\windows\system32\SIntf16.dll
    2009-06-10 10:04 2,668,313 a------- c:\windows\mstwain32.exe
    2009-06-04 06:37 348,160 a------- c:\windows\system32\msvcr71.dll
    2009-06-04 06:37 499,712 a------- c:\windows\system32\msvcp71.dll
    2009-06-03 14:09 1,291,264 a------- c:\windows\system32\quartz.dll
    2009-05-21 10:33 410,984 a------- c:\windows\system32\deploytk.dll
    2009-05-15 22:39 442,368 a------- c:\windows\system32\ATIDEMGX.dll
    2009-05-15 22:38 335,872 a------- c:\windows\system32\ati2dvag.dll
    2009-05-15 22:18 204,800 a------- c:\windows\system32\atipdlxx.dll
    2009-05-15 22:17 155,648 a------- c:\windows\system32\Oemdspif.dll
    2009-05-15 22:17 26,112 a------- c:\windows\system32\Ati2mdxx.exe
    2009-05-15 22:17 43,520 a------- c:\windows\system32\ati2edxx.dll
    2009-05-15 22:17 155,648 a------- c:\windows\system32\ati2evxx.dll
    2009-05-15 22:15 602,112 a------- c:\windows\system32\ati2evxx.exe
    2009-05-15 22:14 53,248 a------- c:\windows\system32\ATIDDC.DLL
    2009-05-15 22:07 2,987,136 a------- c:\windows\system32\ati3duag.dll
    2009-05-15 21:55 11,423,744 a------- c:\windows\system32\atioglxx.dll
    2009-05-15 21:54 2,122,624 a------- c:\windows\system32\ativvaxx.dll
    2009-05-15 21:54 887,724 a------- c:\windows\system32\ativva6x.dat
    2009-05-15 21:51 311,296 a------- c:\windows\system32\atiiiexx.dll
    2009-05-15 21:38 49,664 a------- c:\windows\system32\atimpc32.dll
    2009-05-15 21:38 49,664 a------- c:\windows\system32\amdpcom32.dll
    2009-05-15 21:33 479,232 a------- c:\windows\system32\atikvmag.dll
    2009-05-15 21:31 139,264 a------- c:\windows\system32\atiadlxx.dll
    2009-05-15 21:31 17,408 a------- c:\windows\system32\atitvo32.dll
    2009-05-15 21:26 376,832 a------- c:\windows\system32\atiok3x2.dll
    2009-05-15 21:24 651,264 a------- c:\windows\system32\ati2cqag.dll
    2009-05-15 20:35 45,056 a------- c:\windows\system32\aticalrt.dll
    2009-05-15 20:34 45,056 a------- c:\windows\system32\aticalcl.dll
    2009-05-15 20:33 3,158,016 a------- c:\windows\system32\aticaldd.dll
    2009-05-15 20:05 593,920 -------- c:\windows\system32\ati2sgag.exe
    2009-05-13 00:15 915,456 a------- c:\windows\system32\wininet.dll
    2009-05-07 10:32 345,600 a------- c:\windows\system32\localspl.dll
    2009-05-05 14:33 118,784 a------- c:\windows\system32\atibtmon.exe
    2009-05-01 16:02 823,296 a------- c:\windows\system32\divx_xx0c.dll
    2009-05-01 16:02 823,296 a------- c:\windows\system32\divx_xx07.dll
    2009-05-01 16:02 815,104 a------- c:\windows\system32\divx_xx0a.dll
    2009-05-01 16:02 811,008 a------- c:\windows\system32\divx_xx16.dll
    2009-05-01 16:02 802,816 a------- c:\windows\system32\divx_xx11.dll
    2009-05-01 16:02 685,056 a------- c:\windows\system32\DivX.dll
    2009-03-26 17:54 22,328 a------- c:\docume~1\nick\applic~1\PnkBstrK.sys
    2008-06-12 02:27 32,768 ac-sh--- c:\windows\system32\config\systemprofile\local settings\history\history.ie5\mshist012008061220080613\index.dat

    ============= FINISH: 13:08:17.32 ===============

  6. #6
    Security Expert: Emeritus
    Join Date
    Oct 2006
    Location
    Finland
    Posts
    29,374

    Default

    Please copy/paste attach.txt to your next reply
    Microsoft MVP Consumer Security 2008-2011

    Member of ASAP and UNITE since 2006

  7. #7
    Junior Member
    Join Date
    Jul 2009
    Posts
    23

    Default

    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT

    DDS (Ver_09-06-26.01)

    Microsoft Windows XP Professional
    Boot Device: \Device\HarddiskVolume1
    Install Date: 4/22/2008 9:12:16 PM
    System Uptime: 7/27/2009 4:24:37 AM (33 hours ago)

    Motherboard: | | 939Dual-SATA2
    Processor: AMD Athlon(tm) 64 Processor 3400+ | CPUSocket | 2200/200mhz

    ==== Disk Partitions =========================

    A: is Removable
    C: is FIXED (NTFS) - 75 GiB total, 12.956 GiB free.
    D: is CDROM ()
    E: is CDROM ()
    F: is CDROM ()
    H: is FIXED (FAT32) - 149 GiB total, 110.625 GiB free.

    ==== Disabled Device Manager Items =============

    Class GUID: {4D36E97B-E325-11CE-BFC1-08002BE10318}
    Description: ST3MP28 SCSI Controller
    Device ID: ROOT\*ST3L28\0000
    Manufacturer: (Standard mass storage controllers)
    Name: ST3MP28 SCSI Controller
    PNP Device ID: ROOT\*ST3L28\0000
    Service: st3mp28

    Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
    Description: Bluetooth LAN Access Server Driver
    Device ID: {95C7A0A0-3094-11D7-A202-00508B9D7D5A}\BTWDNDIS\1&30EE4AD&0&1000000020000
    Manufacturer: Broadcom
    Name: Bluetooth LAN Access Server Driver
    PNP Device ID: {95C7A0A0-3094-11D7-A202-00508B9D7D5A}\BTWDNDIS\1&30EE4AD&0&1000000020000
    Service: BTWDNDIS

    ==== System Restore Points ===================

    RP417: 5/11/2009 5:19:25 PM - Avg8 Update
    RP418: 5/11/2009 11:29:22 PM - System Checkpoint
    RP419: 5/13/2009 12:55:45 PM - Avg8 Update
    RP420: 5/14/2009 2:00:17 AM - Software Distribution Service 3.0
    RP421: 5/15/2009 2:08:33 AM - System Checkpoint
    RP422: 5/17/2009 4:04:51 PM - System Checkpoint
    RP423: 5/18/2009 1:59:55 PM - Avg8 Update
    RP424: 5/18/2009 2:00:37 PM - Avg8 Update
    RP425: 5/19/2009 11:57:19 PM - System Checkpoint
    RP426: 5/21/2009 5:06:49 PM - Installed Realtek AC'97 Audio
    RP427: 5/22/2009 6:22:30 PM - System Checkpoint
    RP428: 5/23/2009 6:27:15 PM - System Checkpoint
    RP429: 5/25/2009 2:34:31 AM - System Checkpoint
    RP430: 5/25/2009 11:57:58 PM - Removed Ad-Aware
    RP431: 5/26/2009 12:04:12 AM - Removed AVG 8.5
    RP432: 5/26/2009 12:04:40 AM - Installed AVG 8.5
    RP433: 5/26/2009 12:04:59 AM - Removed ISO Recorder
    RP434: 5/27/2009 1:45:38 AM - System Checkpoint
    RP435: 5/28/2009 3:28:43 PM - Installed Java(TM) 6 Update 13
    RP436: 5/28/2009 3:31:58 PM - Installed Java(TM) 6 Update 13
    RP437: 5/28/2009 3:33:28 PM - Installed Java(TM) 6 Update 13
    RP438: 5/29/2009 11:22:45 PM - System Checkpoint
    RP439: 5/30/2009 11:34:53 PM - System Checkpoint
    RP440: 6/1/2009 12:53:41 AM - System Checkpoint
    RP441: 6/2/2009 1:38:26 AM - System Checkpoint
    RP442: 6/3/2009 2:30:23 AM - System Checkpoint
    RP443: 6/4/2009 3:31:08 AM - System Checkpoint
    RP444: 6/5/2009 4:09:03 AM - System Checkpoint
    RP445: 6/7/2009 12:47:45 AM - System Checkpoint
    RP446: 6/8/2009 4:37:07 PM - System Checkpoint
    RP447: 6/9/2009 11:24:56 PM - System Checkpoint
    RP448: 6/10/2009 10:02:18 AM - Software Distribution Service 3.0
    RP449: 6/10/2009 10:20:18 AM - Installed Java(TM) 6 Update 14
    RP450: 6/11/2009 10:41:47 AM - System Checkpoint
    RP451: 6/11/2009 6:36:55 PM - Installed SPORE™
    RP452: 6/11/2009 10:31:40 PM - Removed SPORE™
    RP453: 6/12/2009 6:10:11 PM - Installed SPORE™ Creature Creator Trial Edition
    RP454: 6/12/2009 7:03:22 PM - Configured SPORE™ Creature Creator Trial Edition
    RP455: 6/12/2009 9:02:40 PM - Removed Crysis(R).
    RP456: 6/12/2009 9:03:48 PM - Removed GameSpy Comrade.
    RP457: 6/12/2009 9:32:06 PM - Removed SPORE™ Creature Creator Trial Edition
    RP458: 6/13/2009 4:39:44 PM - Installed SPORE™
    RP459: 6/14/2009 11:40:07 AM - Installed SPORE™
    RP460: 6/16/2009 1:49:11 AM - System Checkpoint
    RP461: 6/17/2009 11:48:10 PM - Configured SPORE™
    RP462: 6/19/2009 5:53:51 PM - Unsigned driver install
    RP463: 6/20/2009 11:27:41 AM - Installed DirectX
    RP464: 6/20/2009 11:09:45 PM - Installed Project64 1.6
    RP465: 6/21/2009 11:10:22 AM - SPTD setup V1.58
    RP466: 6/22/2009 11:22:38 AM - System Checkpoint
    RP467: 6/23/2009 11:35:37 AM - System Checkpoint
    RP468: 6/24/2009 6:29:21 PM - System Checkpoint
    RP469: 6/24/2009 8:09:13 PM - Installed Prototype(TM)
    RP470: 6/24/2009 8:17:58 PM - Removed SPORE™
    RP471: 6/24/2009 8:26:25 PM - Installed Prototype(TM)
    RP472: 6/24/2009 8:33:48 PM - Installed Prototype(TM)
    RP473: 6/24/2009 9:00:25 PM - Installed Prototype(TM)
    RP474: 6/24/2009 9:01:11 PM - Installed Prototype(TM)
    RP475: 6/24/2009 9:15:56 PM - Installed Prototype(TM)
    RP476: 6/24/2009 9:21:11 PM - Installed Prototype(TM)
    RP477: 6/24/2009 9:34:28 PM - Removed Prototype(TM)
    RP478: 6/24/2009 9:37:27 PM - Removed Prototype(TM)
    RP479: 6/24/2009 9:38:10 PM - Installed Prototype(TM)
    RP480: 6/24/2009 11:49:45 PM - Removed Prototype(TM)
    RP481: 6/25/2009 12:17:15 AM - Installed Prototype(TM)
    RP482: 6/26/2009 2:40:41 AM - System Checkpoint
    RP483: 6/26/2009 1:29:10 PM - Installed Pinnacle Game Profiler
    RP484: 6/26/2009 1:41:53 PM - Installed DirectX
    RP485: 6/27/2009 1:58:43 PM - System Checkpoint
    RP486: 6/27/2009 5:15:23 PM - Configured Prototype(TM)
    RP487: 6/28/2009 4:31:23 PM - Removed Steam
    RP488: 6/30/2009 4:34:03 AM - Software Distribution Service 3.0
    RP489: 6/30/2009 5:42:33 PM - Installed Prototype(TM)
    RP490: 6/30/2009 5:54:05 PM - Installed Prototype(TM)
    RP491: 6/30/2009 10:52:06 PM - Software Distribution Service 3.0
    RP492: 7/3/2009 1:51:02 AM - System Checkpoint
    RP493: 7/3/2009 7:32:41 PM - Installed ISO Recorder
    RP494: 7/3/2009 10:20:53 PM - Removed Pinnacle Game Profiler
    RP495: 7/4/2009 11:08:13 PM - System Checkpoint
    RP496: 7/6/2009 12:38:13 AM - System Checkpoint
    RP497: 7/7/2009 2:07:17 AM - System Checkpoint
    RP498: 7/8/2009 2:17:48 AM - System Checkpoint
    RP499: 7/9/2009 4:17:45 AM - System Checkpoint
    RP500: 7/9/2009 12:02:25 PM - Installed Realtek AC'97 Audio
    RP501: 7/10/2009 2:39:30 PM - System Checkpoint
    RP502: 7/11/2009 9:59:11 PM - System Checkpoint
    RP503: 7/12/2009 10:19:01 PM - System Checkpoint
    RP504: 7/15/2009 4:07:21 PM - Software Distribution Service 3.0
    RP505: 7/16/2009 8:53:08 PM - System Checkpoint
    RP506: 7/17/2009 10:41:53 PM - System Checkpoint
    RP507: 7/19/2009 4:03:51 AM - System Checkpoint
    RP508: 7/20/2009 4:18:28 AM - System Checkpoint
    RP509: 7/21/2009 4:47:32 AM - System Checkpoint
    RP510: 7/27/2009 5:21:55 AM - System Checkpoint
    RP511: 7/28/2009 5:22:36 AM - System Checkpoint

    ==== Installed Programs ======================

    AAC Decoder
    AC3Filter (remove only)
    Adobe Flash Player 10 ActiveX
    Adobe Flash Player 10 Plugin
    Adobe Reader 8.1.4
    Adobe Shockwave Player 11.5
    AIM 6
    Alarm 2.0.4
    ALi mini IDE driver
    Apple Software Update
    Athlon 64 Processor Driver
    ATI - Software Uninstall Utility
    ATI Catalyst Control Center
    ATI Display Driver
    ATI HYDRAVISION
    AutoUpdate
    Belkin Wireless Network Monitor Utility and Driver (USB)
    Belkin Wireless USB Utility
    Catalyst Control Center - Branding
    Catalyst Control Center Core Implementation
    Catalyst Control Center Graphics Full Existing
    Catalyst Control Center Graphics Full New
    Catalyst Control Center Graphics Light
    Catalyst Control Center Graphics Previews Common
    Catalyst Control Center HydraVision Full
    ccc-core-preinstall
    ccc-core-static
    ccc-utility
    CCC Help English
    Critical Update for Windows Media Player 11 (KB959772)
    Crysis Wars(R)
    Crysis Wars(R) Patch
    DivX Codec
    DivX Converter
    DivX Player
    DivX Plus DirectShow Filters
    DivX Version Checker
    DivX Web Player
    Download Manager 2.3.7
    EA Download Manager
    Eusing Free Registry Cleaner
    File Splitter and Joiner (FFSJ v3.2)
    Free Create-Burn ISO Image v2.0
    Google Earth
    Google Update Helper
    Google Updater
    H.264 Decoder
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
    Hotfix for Windows Internet Explorer 7 (KB947864)
    Hotfix for Windows Media Format 11 SDK (KB929399)
    Hotfix for Windows Media Player 11 (KB939683)
    Hotfix for Windows XP (KB952287)
    Hotfix for Windows XP (KB954550-v5)
    Hotfix for Windows XP (KB961118)
    hp deskjet 825c series (Remove only)
    ImagXpress
    IOGEAR Bluetooth Software
    ISO Recorder
    Java(TM) 6 Update 14
    Logitech Gaming Software
    Magic ISO Maker v5.5 (build 0276)
    MagicDisc 2.6.93
    Microsoft .NET Framework 1.1
    Microsoft .NET Framework 1.1 Hotfix (KB928366)
    Microsoft .NET Framework 2.0 Service Pack 2
    Microsoft .NET Framework 3.0 Service Pack 2
    Microsoft .NET Framework 3.5 SP1
    Microsoft Application Error Reporting
    Microsoft Compression Client Pack 1.0 for Windows XP
    Microsoft Internationalized Domain Names Mitigation APIs
    Microsoft National Language Support Downlevel APIs
    Microsoft User-Mode Driver Framework Feature Pack 1.0
    Microsoft VC9 runtime libraries
    Microsoft Visual C++ 2005 Redistributable
    Microsoft Xbox 360 Accessories 1.1
    MKV Splitter
    MSXML 4.0 SP2 (KB954430)
    MyIdentityDefender Toolbar (CyberDefender Corporation)
    neroxml
    Project64 1.6
    Prototype(TM)
    PunkBuster Services
    Realtek AC'97 Audio
    Roxio Creator Audio
    Roxio Creator Copy
    Roxio Creator Data
    Roxio Creator DE
    Roxio Creator Tools
    Roxio Drag-to-Disc
    Roxio Update Manager
    Security Update for CAPICOM (KB931906)
    Security Update for Windows Internet Explorer 7 (KB938127)
    Security Update for Windows Internet Explorer 7 (KB950759)
    Security Update for Windows Internet Explorer 7 (KB953838)
    Security Update for Windows Internet Explorer 7 (KB956390)
    Security Update for Windows Internet Explorer 7 (KB958215)
    Security Update for Windows Internet Explorer 7 (KB960714)
    Security Update for Windows Internet Explorer 7 (KB961260)
    Security Update for Windows Internet Explorer 7 (KB963027)
    Security Update for Windows Internet Explorer 7 (KB969897)
    Security Update for Windows Internet Explorer 8 (KB969897)
    Security Update for Windows Media Player (KB911564)
    Security Update for Windows Media Player (KB952069)
    Security Update for Windows Media Player 11 (KB936782)
    Security Update for Windows Media Player 11 (KB954154)
    Security Update for Windows Media Player 9 (KB936782)
    Security Update for Windows XP (KB923561)
    Security Update for Windows XP (KB938464)
    Security Update for Windows XP (KB941569)
    Security Update for Windows XP (KB946648)
    Security Update for Windows XP (KB950760)
    Security Update for Windows XP (KB950762)
    Security Update for Windows XP (KB950974)
    Security Update for Windows XP (KB951066)
    Security Update for Windows XP (KB951376-v2)
    Security Update for Windows XP (KB951376)
    Security Update for Windows XP (KB951698)
    Security Update for Windows XP (KB951748)
    Security Update for Windows XP (KB952004)
    Security Update for Windows XP (KB952954)
    Security Update for Windows XP (KB953839)
    Security Update for Windows XP (KB954211)
    Security Update for Windows XP (KB954459)
    Security Update for Windows XP (KB954600)
    Security Update for Windows XP (KB955069)
    Security Update for Windows XP (KB956391)
    Security Update for Windows XP (KB956572)
    Security Update for Windows XP (KB956802)
    Security Update for Windows XP (KB956803)
    Security Update for Windows XP (KB956841)
    Security Update for Windows XP (KB957095)
    Security Update for Windows XP (KB957097)
    Security Update for Windows XP (KB958644)
    Security Update for Windows XP (KB958687)
    Security Update for Windows XP (KB958690)
    Security Update for Windows XP (KB959426)
    Security Update for Windows XP (KB960225)
    Security Update for Windows XP (KB960715)
    Security Update for Windows XP (KB960803)
    Security Update for Windows XP (KB961371)
    Security Update for Windows XP (KB961373)
    Security Update for Windows XP (KB961501)
    Security Update for Windows XP (KB968537)
    Security Update for Windows XP (KB969898)
    Security Update for Windows XP (KB970238)
    Security Update for Windows XP (KB971633)
    Security Update for Windows XP (KB973346)
    Skins
    Sonic Activation Module
    Sony PTP USB Driver
    System Requirements Lab
    TuxGuitar
    ULi AGP Driver
    ULi LAN Driver
    ULi M5289 SATA Driver
    Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
    Update for Windows XP (KB951072-v2)
    Update for Windows XP (KB951978)
    Update for Windows XP (KB955839)
    Update for Windows XP (KB967715)
    VC80CRTRedist - 8.0.50727.762
    Ventrilo Client
    Veoh Web Player
    Viewpoint Media Player
    Visual C++ 2008 x86 Runtime - (v9.0.30729)
    Visual C++ 2008 x86 Runtime - v9.0.30729.01
    WebFldrs XP
    Windows Genuine Advantage Notifications (KB905474)
    Windows Genuine Advantage Validation Tool (KB892130)
    Windows Imaging Component
    Windows Internet Explorer 7
    Windows Internet Explorer 8
    Windows Media Format 11 runtime
    Windows Media Format SDK Hotfix - KB891122
    Windows Media Player 11
    Windows XP Service Pack 3
    WinRAR archiver
    XML Paper Specification Shared Components Pack 1.0

    ==== Event Viewer Messages From Past Week ========

    7/25/2009 12:07:01 PM, error: m5289 [9] - The device, \Device\Scsi\m52891, did not respond within the timeout period.
    7/22/2009 10:28:32 PM, error: Service Control Manager [7000] - The Nero BackItUp Scheduler 4.0 service failed to start due to the following error: The system cannot find the path specified.
    7/21/2009 5:29:44 PM, error: sr [1] - The System Restore filter encountered the unexpected error '0xC0000001' while processing the file '' on the volume 'HarddiskVolume2'. It has stopped monitoring the volume.

    ==== End Of File ===========================

  8. #8
    Security Expert: Emeritus
    Join Date
    Oct 2006
    Location
    Finland
    Posts
    29,374

    Default

    Please download Malwarebytes Anti-Malware and save it to your desktop.
    alternate download link 1
    alternate download link 2
    • Make sure you are connected to the Internet.
    • Double-click on mbam-setup.exe to install the application.
    • When the installation begins, follow the prompts and do not make any changes to default settings.
    • When installation has finished, make sure you leave both of these checked:
      • Update Malwarebytes' Anti-Malware
      • Launch Malwarebytes' Anti-Malware
    • Then click Finish.
    • MBAM will automatically start and you will be asked to update the program before performing a scan. If an update is found, the program will automatically update itself. Press the OK button to close that box and continue. If you encounter any problems while downloading the updates, manually download them from here and just double-click on mbam-rules.exe to install.
    • On the Scanner tab:
      • Make sure the "Perform Full Scan" option is selected.
      • Then click on the Scan button.
    • If asked to select the drives to scan, leave all the drives selected and click on the Start Scan button.
    • The scan will begin and "Scan in progress" will show at the top. It may take some time to complete so please be patient.
    • When the scan is finished, a message box will say "The scan completed successfully. Click 'Show Results' to display all objects found".
    • Click OK to close the message box and continue with the removal process.
    • Back at the main Scanner screen, click on the Show Results button to see a list of any malware that was found.
    • Make sure that everything is checked, and click Remove Selected.
    • When removal is completed, a log report will open in Notepad and you may be prompted to restart your computer. (see Note below)
    • The log is automatically saved and can be viewed by clicking the Logs tab in MBAM.
    • Copy and paste the contents of that report in your next reply and exit MBAM.
    Note: If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts. Click OK to either and let MBAM proceed with the disinfection process. If asked to restart the computer, please do so immediately. Failure to reboot will prevent MBAM from removing all the malware.

    Rerun dds.

    Post:

    - mbam log
    - fresh dds logs (taken after mbam run)
    Microsoft MVP Consumer Security 2008-2011

    Member of ASAP and UNITE since 2006

  9. #9
    Junior Member
    Join Date
    Jul 2009
    Posts
    23

    Default

    alright i downloaded that malware thing and i try to open it but nothing comes up at all.

  10. #10
    Security Expert: Emeritus
    Join Date
    Oct 2006
    Location
    Finland
    Posts
    29,374

    Default

    Please rename mbam.exe and try again
    Microsoft MVP Consumer Security 2008-2011

    Member of ASAP and UNITE since 2006

Tags for this Thread

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •