Yahoo messenger and Internet Explorer not working.
Everythng else works fine, Firefox,MSN,AIM,mIRC. Just ran Malwarebytes and whe i started up i got a system32.exe error. This is what YM tells me. Please help.
Checking virtual IP servers...
[VIP Raw] Connecting to Virtual IP server 127.0.0.1...
[VIP Raw] Resolving host name 127.0.0.1... [PASSED]
[VIP Raw] Connecting to Virtual IP server 127.0.0.1...
[VIP Raw] Resolving host name 127.0.0.1... [PASSED]
[VIP Raw] Connecting to Virtual IP server 127.0.0.1...
[VIP Raw] Resolving host name 127.0.0.1... [PASSED]
[VIP Raw] Connecting to Virtual IP server 127.0.0.1...
[VIP Raw] Resolving host name 127.0.0.1... [PASSED]
[VIP Raw] FAILED
*** 'COMPONENT_TYPE_YCP' YCPError: 'YMSG.ColoSelectionFailed' ***
Checking HTTP virtual IP servers...
[VIP Http] Connecting to HTTP Virtual IP server 127.0.0.1...
[VIP Http] Resolving host name 127.0.0.1... [PASSED]
[VIP Http] Connecting to HTTP Virtual IP server 127.0.0.1...
[VIP Http] Resolving host name 127.0.0.1... [PASSED]
[VIP Http] Connecting to HTTP Virtual IP server 127.0.0.1...
[VIP Http] Resolving host name 127.0.0.1... [PASSED]
[VIP Http] Connecting to HTTP Virtual IP server 127.0.0.1...
[VIP Http] Resolving host name 127.0.0.1... [PASSED]
[VIP Http] FAILED
*** 'COMPONENT_TYPE_YCP' YCPError: 'YMSG.ColoSelectionFailed' ***
Also here is the DDS log. Thank you guys in advance
DDS (Ver_10-03-17.01) - NTFSx86
Run by User at 0:41:10.44 on Wed 06/30/2010
Internet Explorer: 6.0.2900.5512 BrowserJavaVersion: 1.6.0_18
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1023.447 [GMT -4:00]
FW: ZoneAlarm Firewall *enabled* {829BDA32-94B3-44F4-8446-F8FCFF809F8B}
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\VM_STI.EXE
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\mIRC\mirc.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\User\My Documents\Downloads\dds.scr
============== Pseudo HJT Report ===============
uInternet Settings,ProxyServer = http=127.0.0.1:5577
uInternet Settings,ProxyOverride = <local>
uURLSearchHooks: H - No File
mWinlogon: Shell=Explorer.exe
BHO: Dealio Toolbar: {01398b87-61af-4ffb-9ab5-1a1c5fb39a9c} - c:\program files\dealio toolbar\ie\4.0.2\dealioToolbarIE.dll
BHO: {02478D38-C3F9-4efb-9B51-7695ECA05670} - No File
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SearchHelper.dll
BHO: ZoneAlarm Toolbar Registrar: {8a4a36c2-0535-4d2c-bd3d-496cb7eed6e3} - c:\program files\checkpoint\zaforcefield\trustchecker\bin\TrustCheckerIEPlugin.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Windows Live Toolbar Helper: {e15a8dc0-8516-42a1-81ea-dc94ec1acf10} - c:\program files\windows live\toolbar\wltcore.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: ZoneAlarm Toolbar: {ee2ac4e5-b0b0-4ec6-88a9-bca1a32ab107} - c:\program files\checkpoint\zaforcefield\trustchecker\bin\TrustCheckerIEPlugin.dll
TB: Dealio Toolbar: {01398b87-61af-4ffb-9ab5-1a1c5fb39a9c} - c:\program files\dealio toolbar\ie\4.0.2\dealioToolbarIE.dll
TB: &Windows Live Toolbar: {21fa44ef-376d-4d53-9b0f-8a89d3229068} - c:\program files\windows live\toolbar\wltcore.dll
TB: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No File
uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
uRun: [AIM] c:\progra~1\aim\aim.exe -cnetwait.odl
uRun: [Messenger (Yahoo!)] "c:\program files\yahoo!\messenger\YahooMessenger.exe" -quiet
mRun: [ZoneAlarm Client] "c:\program files\zone labs\zonealarm\zlclient.exe"
mRun: [BigDogPath] c:\windows\VM_STI.EXE Vimicro USB PC Camera (ZC0301PL)
IE: {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - c:\progra~1\aim\aim.exe
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} - hxxp://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
DPF: {5D6F45B3-9043-443D-A792-115447494D24} - hxxp://messenger.zone.msn.com/MessengerGamesContent/GameContent/Default/uno1/GAME_UNO1.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} - hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\wpdshserviceobj.dll
mASetup: {44BBA844-CC51-11CF-AAFA-00AA00B6015C} - rundll32.exe advpack.dll,LaunchINFSection c:\windows\inf\CChat25.inf,PerUserAdd.NT
Hosts: 0.0.0.0 virusin
Hosts: 0.0.0.0 www.vir
Hosts: 0.0.0.0 project
Hosts: 0.0.0.0 www.pro
Hosts: 0.0.0.0 novirus
Note: multiple HOSTS entries found. Please refer to Attach.txt
================= FIREFOX ===================
FF - ProfilePath - c:\docume~1\user\applic~1\mozilla\firefox\profiles\yhhem938.default\
FF - prefs.js: browser.search.selectedEngine - Yahoo
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&type=616163&p=
FF - plugin: c:\program files\mozilla firefox\plugins\npwachk.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
FF - plugin: c:\windows\system32\c2mp\npdivx32.dll
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}
---- FIREFOX POLICIES ----
FF - user.js: yahoo.ytff.general.dontshowhpoffer - truec:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
============= SERVICES / DRIVERS ===============
R0 d347bus;d347bus;c:\windows\system32\drivers\d347bus.sys [2010-6-12 155136]
R0 d347prt;d347prt;c:\windows\system32\drivers\d347prt.sys [2010-6-12 5248]
R1 vsdatant;vsdatant;c:\windows\system32\vsdatant.sys [2005-6-30 486280]
R2 ISWKL;ZoneAlarm Toolbar ISWKL;c:\program files\checkpoint\zaforcefield\ISWKL.sys [2009-10-14 25208]
R2 IswSvc;ZoneAlarm Toolbar IswSvc;c:\program files\checkpoint\zaforcefield\ISWSVC.exe [2009-10-14 476528]
R2 RPCQT;Remote Procedure Call (CQTPM);c:\windows\system32\svchost.exe -k netsvcs [2008-4-14 14336]
R2 vsmon;TrueVector Internet Monitor;c:\windows\system32\zonelabs\vsmon.exe -service --> c:\windows\system32\zonelabs\vsmon.exe -service [?]
R3 GTICARD;GTICARD;c:\windows\system32\drivers\gticard.sys [2003-10-23 76160]
S3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\mcafee security scan\2.0.181\McCHSvc.exe [2010-1-15 227232]
S4 Application Updater;Application Updater;c:\program files\application updater\ApplicationUpdater.exe [2009-12-16 375296]
=============== Created Last 30 ================
2010-06-25 07:42:12 108144 ----a-w- c:\windows\system32\CmdLineExt.dll
2010-06-25 07:16:59 0 d-----w- c:\program files\THQ
2010-06-25 00:07:57 0 d-----w- c:\docume~1\alluse~1\applic~1\McAfee Security Scan
2010-06-25 00:07:53 0 d-----w- c:\program files\McAfee Security Scan
2010-06-22 20:16:46 0 d-----w- c:\program files\Microsoft Chat
2010-06-21 08:42:40 0 d-----w- c:\documents and settings\user\screenshots
2010-06-21 08:42:40 0 d-----w- c:\documents and settings\user\saves
2010-06-21 08:42:40 0 d-----w- c:\documents and settings\user\cdimages
2010-06-21 08:42:40 0 d-----w- c:\documents and settings\user\cards
2010-06-21 05:33:12 116736 ----a-w- c:\windows\system32\drivers\mcdbus.sys
2010-06-21 05:33:11 0 d-----w- c:\program files\MagicDisc
2010-06-21 04:55:35 0 d-----w- c:\program files\Delta
2010-06-21 04:52:17 0 d-----w- c:\documents and settings\user\parapparappa
2010-06-21 04:08:29 0 d-----w- c:\program files\Pcsx2
2010-06-21 03:45:59 238088 ----a-w- c:\windows\system32\xactengine3_1.dll
2010-06-21 03:44:06 0 d--h--w- c:\windows\msdownld.tmp
2010-06-21 03:43:30 0 d-----w- c:\program files\PCSX2 0.9.7
2010-06-20 23:56:16 0 d-sh--w- c:\windows\indi64
2010-06-19 20:28:50 0 d-----w- c:\program files\uMusic
2010-06-16 09:47:24 195 ----a-w- c:\windows\yukon.ini
2010-06-16 09:38:43 24236 ----a-w- c:\windows\system\YUF_____.TTF
2010-06-16 09:38:43 1316 ----a-w- c:\windows\system\YUF_____.FOT
2010-06-16 09:38:43 0 d-----w- C:\MECC
2010-06-16 09:38:15 721 ----a-w- c:\windows\WIN.YKN
2010-06-16 09:38:15 721 ----a-w- c:\windows\WIN.EXM
2010-06-15 06:09:19 614 ----a-w- c:\windows\eReg.dat
2010-06-12 05:17:37 2297552 ----a-w- c:\windows\system32\d3dx9_26.dll
2010-06-12 05:17:10 0 d-----w- c:\windows\RegisteredPackages
2010-06-12 04:58:02 5248 ----a-w- c:\windows\system32\drivers\d347prt.sys
2010-06-12 04:58:02 155136 ----a-w- c:\windows\system32\drivers\d347bus.sys
2010-06-12 04:58:00 0 d-----w- c:\program files\D-Tools
2010-06-12 04:57:13 0 d-----w- c:\windows\Downloaded Installations
2010-06-12 04:47:32 96384 ----a-w- c:\windows\system32\drivers\sptd8589.sys
2010-06-12 04:16:59 77312 ----a-w- c:\windows\MBR.exe
2010-06-12 04:16:58 98816 ----a-w- c:\windows\sed.exe
2010-06-12 04:16:58 256512 ----a-w- c:\windows\PEV.exe
2010-06-12 04:16:58 161792 ----a-w- c:\windows\SWREG.exe
2010-06-12 04:14:35 0 d-s---w- C:\ComboFix
2010-06-12 04:09:03 0 d-----w- c:\program files\Trend Micro
2010-06-08 02:40:43 0 d-----w- c:\windows\system32\Adobe
2010-06-07 19:29:02 0 d-----w- c:\docume~1\user\applic~1\Malwarebytes
2010-06-07 19:27:44 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-06-07 19:27:42 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-06-07 19:27:42 0 d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-06-07 19:27:42 0 d-----w- c:\docume~1\alluse~1\applic~1\Malwarebytes
2010-06-04 09:00:51 0 d-----w- C:\dosprogs
2010-06-04 08:55:05 0 d-----w- c:\program files\DOSBox-0.74
==================== Find3M ====================
2010-06-25 07:51:52 11242 ----a-w- c:\windows\system32\nvModes.dat
2010-06-12 04:52:15 664064 ----a-w- c:\windows\system32\drivers\sptd.sys
2010-06-02 08:55:30 74072 ----a-w- c:\windows\system32\XAPOFX1_5.dll
2010-06-02 08:55:30 527192 ----a-w- c:\windows\system32\XAudio2_7.dll
2010-06-02 08:55:30 239960 ----a-w- c:\windows\system32\xactengine3_7.dll
2010-05-26 15:41:02 470880 ----a-w- c:\windows\system32\d3dx10_43.dll
2010-05-26 15:41:02 248672 ----a-w- c:\windows\system32\d3dx11_43.dll
2010-05-26 15:41:02 2106216 ----a-w- c:\windows\system32\D3DCompiler_43.dll
2010-05-26 15:41:02 1998168 ----a-w- c:\windows\system32\D3DX9_43.dll
2010-05-26 15:41:02 1868128 ----a-w- c:\windows\system32\d3dcsx_43.dll
2010-05-25 23:19:30 13616 ---ha-w- c:\windows\system32\mlfcache.dat
2010-05-13 23:46:05 223128 ----a-w- c:\windows\system32\drivers\dtscsi.sys
2010-04-29 09:47:50 499712 ----a-w- c:\windows\system32\msvcp71.dll
============= FINISH: 0:43:37.59 ===============