1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Inactive [InActive] New Mozilla Browser Window Opens W/ Advertising.

Discussion in 'Malware and Virus Removal Archive' started by Boogiemaam, 2009/02/17.

  1. 2009/02/17
    Boogiemaam

    Boogiemaam Inactive Thread Starter

    Joined:
    2009/02/17
    Messages:
    7
    Likes Received:
    0
    I hope I'm doing this right. I have spontaneously opening browser windows opening with stupid ads in them, mostly when I am using Google but at other times as well. Have I been hijacked? What do I do? Per posting instructions here are my logs...

    DDS (Ver_09-02-01.01) - NTFSx86
    Run by mom at 12:48:48.18 on Tue 02/17/2009
    Internet Explorer: 6.0.2900.2180 BrowserJavaVersion: 1.6.0_06
    Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.511.98 [GMT -8:00]


    ============== Running Processes ===============

    C:\WINDOWS\system32\svchost -k DcomLaunch
    svchost.exe
    C:\WINDOWS\System32\svchost.exe -k netsvcs
    svchost.exe
    svchost.exe
    C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
    C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
    C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Program Files\Seagate\Basics\Service\SyncServicesBasics.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
    C:\WINDOWS\System32\svchost.exe -k imgsvc
    C:\Program Files\Compact Wireless-G USB Adapter Wireless Network Monitor\WLService.exe
    C:\Program Files\Compact Wireless-G USB Adapter Wireless Network Monitor\WUSB54GC.exe
    C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
    C:\WINDOWS\system32\wscntfy.exe
    C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe
    C:\Program Files\Seagate\Basics\Basics Status\MaxMenuMgrBasics.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\gtsrp\gtsrp.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
    C:\WINDOWS\system32\rundll32.exe
    C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe
    C:\WINDOWS\System32\svchost.exe -k HTTPFilter
    C:\Program Files\Java\jre1.6.0_06\bin\jucheck.exe
    C:\Program Files\Webshots\webshots.scr
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Program Files\iTunes\iTunes.exe
    C:\WINDOWS\explorer.exe
    C:\Documents and Settings\mom\Desktop\dds.scr

    ============== Pseudo HJT Report ===============

    uStart Page = hxxp://google.com/
    uInternet Settings,ProxyOverride = localhost;*.local
    uURLSearchHooks: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} -
    uURLSearchHooks: N/A: {00a6faf6-072e-44cf-8957-5838f569a31d} - c:\program files\mywebsearch\srchastt\1.bin\MWSSRCAS.DLL
    mURLSearchHooks: N/A: {00a6faf6-072e-44cf-8957-5838f569a31d} - c:\program files\mywebsearch\srchastt\1.bin\MWSSRCAS.DLL
    BHO: MyWebSearch Search Assistant BHO: {00a6faf1-072e-44cf-8957-5838f569a31d} - c:\program files\mywebsearch\srchastt\1.bin\MWSSRCAS.DLL
    BHO: {03e7706b-af91-4d41-be5b-a19fe8b5a37d} - No File
    BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
    BHO: mwsBar BHO: {07b18ea1-a523-4961-b6bb-170de4475cca} - c:\program files\mywebsearch\bar\1.bin\MWSBAR.DLL
    BHO: Popup-Blocker Class: {52706ef7-d7a2-49ad-a615-e903858cf284} - c:\program files\netzero\qsacc\X1IEBHO.dll
    BHO: {6d794cb4-c7cd-4c6f-bfdc-9b77afbdc02c} - c:\windows\system32\vtUmMdBQ.dll
    BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre1.6.0_06\bin\ssv.dll
    BHO: {96fc28e9-8cad-4cbb-ba7c-12b05c645a32} - c:\windows\system32\hhscms.dll
    BHO: {AAC296E6-3F7D-43A6-A306-7445E357B91D} - No File
    BHO: McAfee SiteAdvisor BHO: {b164e929-a1b6-4a06-b104-2cd0e90a88ff} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
    TB: {C17590D2-ECB4-4b15-8820-F58798DCC118} - No File
    TB: McAfee SiteAdvisor Toolbar: {0ebbbe48-bad4-4b4c-8e5a-516abecae064} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
    TB: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
    TB: {F0F8ECBE-D460-4B34-B007-56A92E8F84A7} - No File
    TB: {4982D40A-C53B-4615-B15B-B5B5E98D167C} - No File
    TB: {4E7BD74F-2B8D-469E-86BD-FD60BB9AAE3A} - No File
    TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} -
    EB: &Yahoo! Messenger: {4528bbe0-4e08-11d5-ad55-00010333d0ad} - c:\program files\yahoo!\messenger\yhexbmes.dll
    EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
    uRun: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "c:\program files\common files\ahead\lib\NMBgMonitor.exe "
    uRun: [AdobeUpdater] c:\program files\common files\adobe\updater5\AdobeUpdater.exe
    uRun: [MyWebSearch Email Plugin] c:\progra~1\mywebs~1\bar\1.bin\mwsoemon.exe
    mRun: [bO²ùð.×y-¯Å’] c:\windows\ghefmnu.exe
    mRun: [PicasaNet] "c:\program files\hello\Hello.exe" -b
    mRun: [SunJavaUpdateSched] "c:\program files\java\jre1.6.0_06\bin\jusched.exe "
    mRun: [basicsmssmenu] "c:\program files\seagate\basics\basics status\MaxMenuMgrBasics.exe "
    mRun: [TkBellExe] "c:\program files\common files\real\update_ob\realsched.exe" -osboot
    mRun: [gtsrp] c:\program files\gtsrp\gtsrp.exe
    mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
    mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe "
    mRun: [MyWebSearch Plugin] rundll32 c:\progra~1\mywebs~1\bar\1.bin\M3PLUGIN.DLL,UPF
    mRun: [My Web Search Bar] rundll32 c:\progra~1\mywebs~1\bar\1.bin\MWSBAR.DLL,S
    mRun: [MyWebSearch Email Plugin] c:\progra~1\mywebs~1\bar\1.bin\mwsoemon.exe
    mRun: [Ad-Watch] c:\program files\lavasoft\ad-aware\AAWTray.exe
    mRun: [4072ca05] rundll32.exe "c:\windows\system32\usxwbado.dll ",b
    mRun: [<NO NAME>]
    mRun: [RoxWatchTray] "c:\program files\common files\roxio shared\9.0\sharedcom\RoxWatchTray9.exe "
    StartupFolder: c:\docume~1\mom\startm~1\programs\startup\webshots.lnk - c:\program files\webshots\Launcher.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\hpdigi~1.lnk - c:\program files\hp\digital imaging\bin\hpqtra08.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\hpimag~1.lnk - c:\program files\hp\digital imaging\bin\hpqthb08.exe
    IE: &Search - http://edits.mywebsearch.com/toolbaredits/menusearch.jhtml?p=ZKman000
    IE: &Webshots Photo Search - c:\program files\webshots\WSToolbar4IE.dll/MENUSEARCH.HTM
    IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
    IE: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
    IE: Display All Images with Full Quality - c:\program files\netzero\qsacc\appres.dll/228
    IE: Display Image with Full Quality - c:\program files\netzero\qsacc\appres.dll/227
    IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office10\EXCEL.EXE/3000
    IE: {CD67F990-D8E9-11d2-98FE-00C0F0318AFE}
    IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
    IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0006-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0_06\bin\ssv.dll
    DPF: Microsoft XML Parser for Java - file://c:\windows\java\classes\xmldso.cab
    DPF: {01113300-3E00-11D2-8470-0060089874ED} - hxxps://yahoo.com/diskless/bin/tgctlcm.cab
    DPF: {33564D57-0000-0010-8000-00AA00389B71} - hxxp://download.microsoft.com/download/F/6/E/F6E491A6-77E1-4E20-9F5F-94901338C922/wmv9VCM.CAB
    DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} - hxxp://download.yahoo.com/dl/installs/yab_af.cab
    DPF: {D18F962A-3722-4B59-B08D-28BB9EB2281E} - hxxp://photos.yahoo.com/ocx/us/yexplorer1_9us.cab
    Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~1\mcafee\sitead~1\McIEPlg.dll
    Notify: hhscms - hhscms.dll
    Notify: vtUmMdBQ - vtUmMdBQ.dll
    AppInit_DLLs: jnfjoi.dll
    SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
    SEH: {6d794cb4-c7cd-4c6f-bfdc-9b77afbdc02c} - c:\windows\system32\vtUmMdBQ.dll

    ================= FIREFOX ===================

    FF - ProfilePath - c:\docume~1\mom\applic~1\mozilla\firefox\profiles\rlzshsxy.default\
    FF - prefs.js: browser.search.defaulturl - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q=
    FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/firefox?client=firefox-a&rls=org.mozilla:en-US:eek:fficial
    FF - component: c:\documents and settings\mom\application data\mozilla\firefox\profiles\rlzshsxy.default\extensions\{0b457caa-602d-484a-8fe7-c1d894a011ba}\platform\winnt_x86-msvc\components\SSSLauncher.dll
    FF - component: c:\documents and settings\mom\application data\mozilla\firefox\profiles\rlzshsxy.default\extensions\{463f6ca5-ee3c-4be1-b7e6-7fee11953374}\platform\winnt\components\FoxyTunes.dll
    FF - component: c:\documents and settings\mom\application data\mozilla\firefox\profiles\rlzshsxy.default\extensions\piclens@cooliris.com\components\coolirisstub.dll
    FF - component: c:\program files\mcafee\siteadvisor\components\McFFPlg.dll
    FF - plugin: c:\documents and settings\mom\application data\mozilla\firefox\profiles\rlzshsxy.default\extensions\moveplayer@movenetworks.com\platform\winnt_x86-msvc\plugins\npmnqmp07074039.dll
    FF - plugin: c:\program files\google\picasa3\npPicasa3.dll
    FF - plugin: c:\program files\mozilla firefox\plugins\npampx3.0.84.2.dll
    FF - plugin: c:\program files\mozilla firefox\plugins\npmozax.dll
    FF - plugin: c:\program files\mozilla firefox\plugins\NPMyWebS.dll
    FF - plugin: c:\program files\mozilla firefox\plugins\npracplug.dll
    FF - plugin: c:\program files\mozilla firefox\plugins\NPTURNMED.dll
    FF - plugin: c:\program files\mozilla firefox\plugins\npunagi2.dll
    FF - plugin: c:\program files\mozilla firefox\plugins\npViewpoint_03050024.dll
    FF - plugin: c:\program files\real\realarcade\plugins\mozilla\npracplug.dll
    FF - plugin: c:\program files\viewpoint\viewpoint experience technology\npViewpoint.dll

    ============= SERVICES / DRIVERS ===============

    S3 ati2mpaa;ati2mpaa;c:\windows\system32\drivers\ati2mpaa.sys [2007-1-28 281856]
    S3 DCamUSBMke;USB Video Camera for Panasonic Digital Palmcorder;c:\windows\system32\drivers\Mkeusbi.sys [2007-7-30 41729]

    =============== Created Last 30 ================

    2009-02-17 09:05 <DIR> --d----- c:\program files\common files\Sonic Shared
    2009-02-17 09:05 <DIR> --d----- c:\program files\Roxio
    2009-02-17 08:49 <DIR> --d----- c:\docume~1\mom\applic~1\Blackberry Desktop
    2009-02-17 08:47 <DIR> --d----- c:\program files\Research In Motion
    2009-02-17 06:10 1,598,554 ---sh--- c:\windows\system32\odabwxsu.ini
    2009-02-17 06:10 72,704 a------- c:\windows\system32\usxwbado.dll
    2009-02-17 06:07 129,024 a------- c:\windows\system32\jnfjoi.dll
    2009-02-17 06:07 129,024 a------- c:\windows\system32\rrafnqvg.dll
    2009-02-16 15:34 129,024 a------- c:\windows\system32\kxsjao.dll
    2009-02-16 15:34 129,024 a------- c:\windows\system32\usvaxlot.dll
    2009-02-16 15:31 1,589,969 ---sh--- c:\windows\system32\qtibscvt.ini
    2009-02-16 12:41 256 a------- c:\documents and settings\mom\pool.bin
    2009-02-16 09:34 3,022 a------- c:\windows\system32\tmp.reg
    2009-02-16 08:55 48,128 a------- c:\windows\system32\nnnkHyax.dll
    2009-02-16 08:49 15,688 a------- c:\windows\system32\lsdelete.exe
    2009-02-16 03:36 1,583,502 ---sh--- c:\windows\system32\sygpkipa.ini
    2009-02-16 03:33 129,024 a------- c:\windows\system32\rhudoh.dll
    2009-02-16 03:33 129,024 a------- c:\windows\system32\lqrneyjm.dll
    2009-02-15 18:44 64,160 a------- c:\windows\system32\drivers\Lbd.sys
    2009-02-15 18:15 <DIR> -cd-h--- c:\docume~1\alluse~1\applic~1\{83C91755-2546-441D-AC40-9A6B4B860800}
    2009-02-15 15:33 129,024 a------- c:\windows\system32\gwekup.dll
    2009-02-15 15:33 129,024 a------- c:\windows\system32\gxflunaw.dll
    2009-02-15 15:31 1,583,467 ---sh--- c:\windows\system32\ifmvohgd.ini
    2009-02-14 15:29 129,024 a------- c:\windows\system32\guzqcm.dll
    2009-02-14 15:29 129,024 a------- c:\windows\system32\qdacsnyt.dll
    2009-02-14 15:27 1,583,467 ---sh--- c:\windows\system32\bfuqnbvg.ini
    2009-02-14 15:26 76,205 a--sh--- c:\windows\system32\fghPoUtv.ini
    2009-02-14 15:26 75,796 a--sh--- c:\windows\system32\fghPoUtv.ini2
    2009-02-14 15:26 302,592 a------- c:\windows\system32\vtUoPhgf.dll
    2009-02-14 15:21 36,352 a------- c:\windows\system32\vtUmMdBQ.dll
    2009-02-06 06:59 <DIR> --d----- c:\program files\common files\McAfee
    2009-02-06 06:56 <DIR> --d----- c:\program files\McAfee
    2009-01-26 13:19 <DIR> --d----- c:\docume~1\mom\applic~1\FunWebProducts
    2009-01-26 13:18 28,672 a------- c:\windows\system32\f3PSSavr.scr
    2009-01-26 13:18 <DIR> --d----- c:\program files\FunWebProducts
    2009-01-26 13:18 <DIR> --d----- c:\program files\MyWebSearch

    ==================== Find3M ====================

    2009-01-05 14:33 3,751,995 a------- c:\windows\system32\GPhotos.scr
    2008-12-31 20:53 86,327 a------- c:\windows\pchealth\helpctr\offlinecache\index.dat
    2008-08-20 07:04 49,768 -c------ c:\docume~1\mom\applic~1\GDIPFONTCACHEV1.DAT
    2008-03-03 18:02 83,456 -c-sh--- c:\program files\Thumbs.db
    2006-09-20 11:43 774,144 -c------ c:\program files\RngInterstitial.dll
    2006-09-18 16:37 45,056 -c------ c:\program files\WT_0924.doc
    2006-09-15 18:51 42,496 -c------ c:\program files\WT_0917.doc
    2006-05-04 21:57 1,001,285 -c------ c:\program files\TT_SupportSchedWin32.EXE
    2006-05-04 21:54 1,049,619 -c------ c:\program files\TT_Reports.EXE
    2006-05-04 21:54 385,024 -c------ c:\program files\TT_DB_Update.exe
    2006-05-04 21:52 633,808 -c------ c:\program files\TT_HelpFile.EXE
    2006-05-04 21:38 1,942,633 -c------ c:\program files\TT_Update.EXE

    ============= FINISH: 12:51:13.04 ===============


    DDS (Ver_09-02-01.01)

    Microsoft Windows XP Professional
    Boot Device: \Device\HarddiskVolume1
    Install Date: 9/22/2005 10:33:00 PM
    System Uptime: 2/17/2009 8:34:02 AM (4 hours ago)

    Motherboard: Compaq | | 07A8h
    Processor: Intel(R) Celeron(TM) CPU 1300MHz | XU1 | 1295/100mhz

    ==== Disk Partitions =========================

    A: is Removable
    C: is FIXED (NTFS) - 75 GiB total, 33.371 GiB free.
    D: is CDROM (UDF)
    E: is CDROM ()
    F: is Removable
    G: is FIXED (NTFS) - 466 GiB total, 401.06 GiB free.

    ==== Disabled Device Manager Items =============

    Class GUID: {36FC9E60-C465-11CF-8056-444553540000}
    Description: Universal Serial Bus (USB) Controller
    Device ID: PCI\VEN_1106&DEV_3104&SUBSYS_31041106&REV_65\4&1351887D&0&7AF0
    Manufacturer: VIA
    Name: Universal Serial Bus (USB) Controller
    PNP Device ID: PCI\VEN_1106&DEV_3104&SUBSYS_31041106&REV_65\4&1351887D&0&7AF0
    Service:

    Class GUID: {4D36E96F-E325-11CE-BFC1-08002BE10318}
    Description: PS/2 Compatible Mouse
    Device ID: ACPI\PNP0F13\4&268D196D&0
    Manufacturer: Microsoft
    Name: PS/2 Compatible Mouse
    PNP Device ID: ACPI\PNP0F13\4&268D196D&0
    Service: i8042prt

    ==== System Restore Points ===================

    RP1164: 11/20/2008 6:37:54 PM - System Checkpoint
    RP1165: 11/21/2008 7:07:27 PM - System Checkpoint
    RP1166: 11/22/2008 8:37:26 PM - System Checkpoint
    RP1167: 11/24/2008 4:49:32 AM - System Checkpoint
    RP1168: 11/25/2008 5:04:16 AM - System Checkpoint
    RP1169: 11/26/2008 5:34:05 AM - System Checkpoint
    RP1170: 11/27/2008 5:49:09 AM - System Checkpoint
    RP1171: 11/29/2008 8:41:03 AM - System Checkpoint
    RP1172: 11/30/2008 8:56:25 AM - System Checkpoint
    RP1173: 12/1/2008 9:20:43 AM - System Checkpoint
    RP1174: 12/2/2008 9:50:38 AM - System Checkpoint
    RP1175: 12/3/2008 10:20:39 AM - System Checkpoint
    RP1176: 12/4/2008 1:38:45 PM - System Checkpoint
    RP1177: 12/5/2008 2:08:41 PM - System Checkpoint
    RP1178: 12/6/2008 2:29:10 PM - System Checkpoint
    RP1179: 12/7/2008 2:38:18 PM - System Checkpoint
    RP1180: 12/8/2008 3:08:17 PM - System Checkpoint
    RP1181: 12/9/2008 4:23:31 PM - System Checkpoint
    RP1182: 12/10/2008 4:50:22 PM - System Checkpoint
    RP1183: 12/11/2008 5:40:03 AM - Software Distribution Service 3.0
    RP1184: 12/12/2008 5:41:47 AM - System Checkpoint
    RP1185: 12/13/2008 6:12:02 AM - System Checkpoint
    RP1186: 12/14/2008 6:41:58 AM - System Checkpoint
    RP1187: 12/15/2008 6:51:30 AM - System Checkpoint
    RP1188: 12/15/2008 6:50:16 PM - Shockwave Player
    RP1189: 12/15/2008 6:50:54 PM - Shockwave Player
    RP1190: 12/15/2008 7:07:41 PM - Shockwave Player
    RP1191: 12/15/2008 7:29:04 PM - Installed Showoff Landscape Design
    RP1192: 12/17/2008 11:06:41 AM - System Checkpoint
    RP1193: 12/18/2008 11:21:27 AM - System Checkpoint
    RP1194: 12/19/2008 12:36:37 PM - System Checkpoint
    RP1195: 12/20/2008 1:52:29 PM - System Checkpoint
    RP1196: 12/21/2008 2:03:30 PM - System Checkpoint
    RP1197: 12/22/2008 3:48:31 PM - System Checkpoint
    RP1198: 12/23/2008 4:03:41 PM - System Checkpoint
    RP1199: 12/24/2008 4:33:33 PM - System Checkpoint
    RP1200: 12/25/2008 5:03:35 PM - System Checkpoint
    RP1201: 12/26/2008 5:33:52 PM - System Checkpoint
    RP1202: 12/27/2008 6:03:31 PM - System Checkpoint
    RP1203: 12/29/2008 8:19:16 AM - System Checkpoint
    RP1204: 12/30/2008 1:46:56 PM - System Checkpoint
    RP1205: 12/31/2008 2:48:00 PM - System Checkpoint
    RP1206: 12/31/2008 6:53:42 PM - Software Distribution Service 3.0
    RP1207: 12/31/2008 6:54:46 PM - Installed Windows XP KB892130.
    RP1208: 12/31/2008 7:25:34 PM - Windows Product Key Update Tool
    RP1209: 12/31/2008 8:25:51 PM - Installed Windows XP Service Pack 2.
    RP1210: 1/1/2009 10:08:05 AM - Installed iTunes
    RP1211: 1/2/2009 3:00:39 AM - Software Distribution Service 3.0
    RP1212: 1/3/2009 3:00:46 AM - Software Distribution Service 3.0
    RP1213: 1/9/2009 6:08:38 PM - Installed Opera 9.63
    RP1214: 1/10/2009 10:49:51 AM - Installed Windows Media Player 11
    RP1215: 1/10/2009 10:51:33 AM - Installed Windows XP Wudf01000.
    RP1216: 1/10/2009 10:58:28 AM - Installed Windows XP MSCompPackV1.
    RP1217: 1/10/2009 10:59:05 AM - Installed Windows XP KB926239.
    RP1218: 1/11/2009 7:55:59 PM - System Checkpoint
    RP1219: 1/12/2009 3:00:41 AM - Software Distribution Service 3.0
    RP1220: 1/13/2009 3:16:20 AM - System Checkpoint
    RP1221: 1/14/2009 3:00:28 AM - Software Distribution Service 3.0
    RP1222: 1/15/2009 3:32:32 AM - System Checkpoint
    RP1223: 1/16/2009 4:40:04 AM - System Checkpoint
    RP1224: 1/17/2009 5:40:05 AM - System Checkpoint
    RP1225: 1/18/2009 8:12:25 AM - System Checkpoint
    RP1226: 1/19/2009 8:50:12 AM - System Checkpoint
    RP1227: 1/20/2009 8:55:32 AM - System Checkpoint
    RP1228: 1/21/2009 9:54:38 AM - System Checkpoint
    RP1229: 1/22/2009 10:09:21 AM - System Checkpoint
    RP1230: 1/23/2009 10:18:24 AM - System Checkpoint
    RP1231: 1/24/2009 11:50:17 AM - System Checkpoint
    RP1232: 1/25/2009 12:32:56 PM - System Checkpoint
    RP1233: 1/27/2009 11:16:27 AM - System Checkpoint
    RP1234: 1/28/2009 2:08:51 PM - System Checkpoint
    RP1235: 1/29/2009 2:10:12 PM - Software Distribution Service 3.0
    RP1236: 1/29/2009 2:15:02 PM - Installed Windows Movie Maker 2.0
    RP1237: 1/31/2009 2:28:32 AM - System Checkpoint
    RP1238: 2/1/2009 10:23:17 AM - System Checkpoint
    RP1239: 2/2/2009 10:55:27 AM - System Checkpoint
    RP1240: 2/3/2009 11:38:09 AM - System Checkpoint
    RP1241: 2/6/2009 8:14:03 AM - System Checkpoint
    RP1242: 2/7/2009 9:07:09 AM - System Checkpoint
    RP1243: 2/8/2009 9:08:29 AM - System Checkpoint
    RP1244: 2/9/2009 10:06:30 AM - System Checkpoint
    RP1245: 2/10/2009 10:08:40 AM - System Checkpoint
    RP1246: 2/11/2009 10:47:26 AM - System Checkpoint
    RP1247: 2/12/2009 10:17:28 AM - Software Distribution Service 3.0
    RP1248: 2/13/2009 11:35:10 AM - System Checkpoint
    RP1249: 2/14/2009 12:11:48 PM - System Checkpoint
    RP1250: 2/14/2009 3:27:07 PM - Last known good configuration
    RP1251: 2/15/2009 4:56:02 PM - System Checkpoint
    RP1252: 2/16/2009 2:45:21 PM - Installed BlackBerry Desktop Software 4.2.2.
    RP1253: 2/16/2009 2:51:09 PM - Removed BlackBerry Desktop Software 4.2.2.
    RP1254: 2/16/2009 4:10:06 PM - Removed BlackBerry Desktop Software 4.2.2.
    RP1255: 2/17/2009 8:47:02 AM - Installed BlackBerry Desktop Software 4.2.2.
    RP1256: 2/17/2009 9:03:35 AM - Installed Roxio Media Manager

    ==== Installed Programs ======================

    6200
    6200_Help
    6200Trb
    Ad-Aware
    Ad-aware 6 Personal
    Adobe Flash Player 10 Plugin
    Adobe Reader 8.1.2
    Adobe Shockwave Player 11
    AiO_Scan
    AiOSoftware
    AOL Uninstaller (Choose which Products to Remove)
    Apple Mobile Device Support
    Apple Software Update
    AT&T Yahoo! Applications
    ATI Display Driver
    Audacity 1.2.6
    Biblical TimeLine 1.0
    BlackBerry Desktop Software 4.2.2
    Bonjour
    BufferChm
    CAM UnZip 4.42
    Compact Wireless-G USB Adapter
    Copy
    Corel Uninstaller
    CP_AtenaShokunin1Config
    cp_dwShrek2Albums1
    cp_dwShrek2Cards1
    CreativeProjects
    CreativeProjectsTemplates
    CueTour
    Destinations
    Director
    DocProc
    DocProcQFolder
    DocumentViewer
    Drive Manager
    f.y.e. Download Zone
    Fax
    First Step Guide
    FoxyTunes for Firefox
    Google Earth
    Hotfix for Windows Media Format 11 SDK (KB929399)
    Hotfix for Windows Media Player 11 (KB939683)
    Hotfix for Windows XP (KB926239)
    Hotfix for Windows XP (KB952287)
    HP Extended Capabilities 4.7
    HP Image Zone 4.7
    HP Product Assistant
    HP PSC & OfficeJet 4.7
    HP Software Update
    hpmdtab
    HPSystemDiagnostics
    InstantShare
    iTunes
    Java(TM) 6 Update 6
    LimeWire 4.18.8
    Lyra Jukebox Applications
    MarketResearch
    McAfee SiteAdvisor
    Microsoft .NET Framework 1.1
    Microsoft .NET Framework 1.1 Hotfix (KB928366)
    Microsoft Compression Client Pack 1.0 for Windows XP
    Microsoft Office XP Professional with FrontPage
    Microsoft Text-to-Speech Engine 4.0 (English)
    Microsoft User-Mode Driver Framework Feature Pack 1.0
    Microsoft Windows XP Video Decoder Checkup Utility
    Microsoft XML Parser and SDK
    Mjuice Components
    Mozilla Firefox (3.0.6)
    MSXML 4.0 SP2 (KB954430)
    MSXML 6 Service Pack 2 (KB954459)
    Musicmatch® Jukebox
    My Web Search (Webfetti)
    Nero 7 Ultra Edition
    OCR Software by I.R.I.S 7.0
    Opera 9.63
    Palmcorder USB Device Driver 2.00
    PanoStandAlone
    PhotoGallery
    Picasa 3
    ProductContext
    QuickTime
    Readme
    RealPlayer
    Roxio Media Manager
    Scan
    ScannerCopy
    Security Update for CAPICOM (KB931906)
    Security Update for Windows Media Player (KB952069)
    Security Update for Windows Media Player 10 (KB936782)
    Security Update for Windows Media Player 11 (KB936782)
    Security Update for Windows Media Player 11 (KB954154)
    Security Update for Windows XP (KB923689)
    Security Update for Windows XP (KB938464)
    Security Update for Windows XP (KB941569)
    Security Update for Windows XP (KB944338-v2)
    Security Update for Windows XP (KB946648)
    Security Update for Windows XP (KB950762)
    Security Update for Windows XP (KB950974)
    Security Update for Windows XP (KB951066)
    Security Update for Windows XP (KB951376-v2)
    Security Update for Windows XP (KB951698)
    Security Update for Windows XP (KB951748)
    Security Update for Windows XP (KB952954)
    Security Update for Windows XP (KB954211)
    Security Update for Windows XP (KB954600)
    Security Update for Windows XP (KB955069)
    Security Update for Windows XP (KB956391)
    Security Update for Windows XP (KB956802)
    Security Update for Windows XP (KB956803)
    Security Update for Windows XP (KB956841)
    Security Update for Windows XP (KB957095)
    Security Update for Windows XP (KB957097)
    Security Update for Windows XP (KB958215)
    Security Update for Windows XP (KB958644)
    Security Update for Windows XP (KB958687)
    Security Update for Windows XP (KB960714)
    Security Update for Windows XP (KB960715)
    Service Record
    Showoff Home Design 1.0
    Showoff Landscape Design
    SkinsHP1
    TBS WMP Plug-in
    tdf Chores
    The Bible Quiz
    TrayApp
    Unload
    Update for Windows XP (KB898461)
    Update for Windows XP (KB955839)
    Viewpoint Media Player
    ViewSonic Monitor Drivers
    Visual C++ 2008 x86 Runtime - (v9.0.30729)
    Visual C++ 2008 x86 Runtime - v9.0.30729.01
    Watchtower Library 2001 - English Edition
    Watchtower Library 2005 - English Edition
    Watchtower Library 2007 - English
    WavePad Uninstall
    WebFldrs XP
    WebReg
    Webshots Desktop
    Webshots Toolbar
    Winamp (remove only)
    Windows Genuine Advantage Validation Tool (KB892130)
    Windows Installer 3.1 (KB893803)
    Windows Media Format 11 runtime
    Windows Media Player 11
    Windows Movie Maker 2.0
    Windows XP Hotfix - KB885884
    Windows XP Service Pack 2
    winpwn-2.5 2.5.0.2
    WordSearcher

    ==== Event Viewer Messages From Past Week ========

    2/16/2009 8:54:28 AM, error: Service Control Manager [7000] - The Panasonic Digital Palmcorder service failed to start due to the following error: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.

    ==== End Of File ===========================
     
  2. 2009/02/17
    Geri Lifetime Subscription

    Geri Inactive Alumni

    Joined:
    2003/03/02
    Messages:
    4,580
    Likes Received:
    7
    Hi Boogiemaam
    Welcome to WindowsBBS.

    I'm not seeing a Anti-Virus program running on your system.

    One of your first defenses against infections is an Anti-virus program.
    This is a Must Have to help keep you protected in today’s Internet world.
    Here are some good ones and the best part, they are Free!

    Please Download only 1 AV.

    Anti-Virus
    AVGFree
    Avast

    Download, Update and scan your computer with the AV. Quarantine/Delete anything it finds.
    Check for updates at the least once a week and do regular scans. Most AV’s can be scheduled to scan at a given time, this is also recommended.

    After doing that please post a new dds.txt log here.

    Thanks
    Geri
     
    Geri,
    #2

  3. to hide this advert.

  4. 2009/02/18
    Boogiemaam

    Boogiemaam Inactive Thread Starter

    Joined:
    2009/02/17
    Messages:
    7
    Likes Received:
    0
    Thanks G

    Gett'n it done now.
     
  5. 2009/02/19
    Boogiemaam

    Boogiemaam Inactive Thread Starter

    Joined:
    2009/02/17
    Messages:
    7
    Likes Received:
    0
    G- I have a huge problem. I downloaded the Avast. And ran it. It found a virus quite quickly and then paused and asked me "1 for delete, 2 delete all, ect" So I chose 2 for delete all as this sounded like the usual choice for adaware and AVG when they find something fishy. Then a few min later it found another one and I chose 2, then the program would continue running. It was about at 43% and I had to go to work . when I came home I only had blue screen. So I pressed the power button to restart and it got to the "loading personal setting" message and is now stuck. It will not move past that message. Hope you still help me even though I ******* up those simple beginning instructions. You didnt actually ask me to run it. Sorry.
     
  6. 2009/02/19
    Boogiemaam

    Boogiemaam Inactive Thread Starter

    Joined:
    2009/02/17
    Messages:
    7
    Likes Received:
    0
    I must be cursed or retarded. I downloaded Avast.Ran it. Chose 2 (delete all) when it found a virus/trojan and left for work when it was about 43%. Came home and it was a blue screen with nothing happening. I pressed the power button and it gets stuck at "loading personal settings" screen. For hours. What did I do wrong? What do I do?

    <Added comments>
    I'm in big trouble. Loaded Avast. chose '2 to delete all' when virus found twice. Went to work came back to blue screen. Restarted w/ power button and now stuck on "loading personal settings ". Restarted in safe mode, chose 'use most recent good configuration" still same problem.
    Please help.
     
    Last edited by a moderator: 2009/02/19
  7. 2009/02/19
    Geri Lifetime Subscription

    Geri Inactive Alumni

    Joined:
    2003/03/02
    Messages:
    4,580
    Likes Received:
    7
    Hi
    OK that should not have happened by just running a anti virus.

    I'll need to get some help here. If noahdfear post please follow any of his instructions.

    One of us will get back to you ASAP.

    Geri
     
    Geri,
    #6
  8. 2009/02/20
    Geri Lifetime Subscription

    Geri Inactive Alumni

    Joined:
    2003/03/02
    Messages:
    4,580
    Likes Received:
    7
    Hi
    Just so you know, noahdfear will be here to give you some instructions as soon as he can, please follow them.

    Geri
     
    Geri,
    #7
  9. 2009/02/21
    Boogiemaam

    Boogiemaam Inactive Thread Starter

    Joined:
    2009/02/17
    Messages:
    7
    Likes Received:
    0
    O.k. guys n gals. I took my computer to a local repair store yesterday because I use it for my job and I cant get buy without it any longer. I told the guy about my origional malware prob. and he said "no eproblem sonora ". Not kidding. I'll post back next week to let you know what happened. Thank you.
     
  10. 2009/02/21
    Geri Lifetime Subscription

    Geri Inactive Alumni

    Joined:
    2003/03/02
    Messages:
    4,580
    Likes Received:
    7
    Hi
    Ok lets us know how things went.

    Thanks
    Geri
     
    Geri,
    #9
  11. 2009/02/23
    Boogiemaam

    Boogiemaam Inactive Thread Starter

    Joined:
    2009/02/17
    Messages:
    7
    Likes Received:
    0
    Thank you for the reply. I'm getting my computer from the repair shop today. $120 later, I should have no malware problem. I'll let you know if the local neighborhood pc repair shop returns my pc with the origional problem solved.Thanks.
     
  12. 2009/02/23
    PeteC

    PeteC SuperGeek Staff

    Joined:
    2002/05/10
    Messages:
    28,896
    Likes Received:
    389
    You posted in the wrong thread :) - moved to your thread, here.
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.