Malware and Virus RemovalProblems removing malware/viruses? Get help from our Malware removal experts.
Mission Statement
WindowsBBS is an online community dedicated to easily accessible technical support for those using Microsoft operating systems and other Windows software.
Our goal is to become the leading resource for computer users that require assistance with their day-to-day computer usage, including full support for networking PC's, virus & malware removal, system upgrades and general support questions.
Howdy, I've got some kind of virus that is doing all it can to stay alive. Started about 4 months ago with Norton AV going berzerk giving me false warnings faster than I could click out. It will not let me install AV software, or update windows or Java (usually tells me an error code that I cannot find on the host sites). Every now and then I can get one run from stinger or combofix. Usually it causes a bluescreen. Each time I reboot I get either various "could not write to memory" and bluescreen or a note about windows having to recover the registry. A Norton online Tech spent 6 hours remotely running my computer to conclude that I am accurately describing what the virus does - no other help there. Lately, my keyboard is disabled during boot up - so no safe mode and now my internet connection will shut off every now and then after i try to update.
I am running an older dell dimension 4700 with windows XP SP2.
If you guys can help, I will be truly greatful. My files:
DDS (Ver_09-02-01.01) - NTFSx86
Run by Mike at 1:36:03.87 on Tue 03/10/2009
Internet Explorer: 7.0.5730.11
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.1022.600 [GMT -5:00]
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
DDS (Ver_09-02-01.01)
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume2
Install Date: 12/2/2004 1:11:48 PM
System Uptime: 3/9/2009 11:42:47 PM (2 hours ago)
Motherboard: Dell Inc. | | 0M3918
Processor: Intel(R) Pentium(R) 4 CPU 2.80GHz | Microprocessor | 2793/800mhz
Processor: Intel(R) Pentium(R) 4 CPU 2.80GHz | Microprocessor | 2793/800mhz
==== Disk Partitions =========================
C: is FIXED (NTFS) - 149 GiB total, 117.775 GiB free.
D: is CDROM ()
E: is CDROM (CDFS)
==== Disabled Device Manager Items =============
==== System Restore Points ===================
RP1: 3/9/2009 11:48:38 PM - System Checkpoint
RP2: 3/9/2009 11:48:58 PM - ComboFix created restore point
RP3: 3/10/2009 12:12:57 AM - Removed Java(TM) 6 Update 11
RP4: 3/10/2009 12:13:24 AM - Installed Java(TM) 6 Update 12
RP5: 3/10/2009 12:18:17 AM - Installed Java(TM) 6 Update 12
RP6: 3/10/2009 12:18:43 AM - Installed Java(TM) 6 Update 12
RP7: 3/10/2009 12:19:25 AM - Installed Java(TM) 6 Update 12
==== Installed Programs ======================
3D Home Design Suite
Adobe Flash Player 10 ActiveX
Adobe Photoshop 5.5
Adobe Reader 7.0.9
Adobe® Photoshop® Album Starter Edition 3.0
ATI Control Panel
ATI Display Driver
Audit Support Center 1.0
Cisco AnyConnect VPN Client
CyberDefender Early Detection Center
Dell Driver Reset Tool
EarthLink Setup Files
G5a922EN
GameSpy Arcade
GEAR ISO Burn
Google Earth
Google Updater
Highlight Viewer (Windows Live Toolbar)
Hotfix for Windows Internet Explorer 7 (KB947864)
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows Media Player 11 (KB939683)
Hotfix for Windows XP (KB914440)
Hotfix for Windows XP (KB915865)
Hotfix for Windows XP (KB926239)
Hotfix for Windows XP (KB952287)
hp deskjet 930c series (Remove only)
HP Photosmart Essential
Imagine TM 6 program
InfoMaker 6.5
Intel(R) 537EP V9x DF PCI Modem
Intel(R) PRO Network Connections Drivers
Intel(R) PROSet for Wired Connections
Intellisync® for Yahoo!
Internet Explorer Default Page
ItsDeductible Express
Jasc Paint Shop Photo Album
Jasc Paint Shop Pro 8 Dell Edition
Java 2 Runtime Environment, SE v1.4.2_03
Java(TM) 6 Update 2
Learn2 Player (Uninstall Only)
Linksys EasyLink Advisor 1.5 (1010)
LX Systems Download Manager
Macromedia Flash Player
Macromedia Shockwave Player
Malwarebytes' Anti-Malware
Map Button (Windows Live Toolbar)
McAfee SecurityCenter
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Hotfix (KB928366)
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft LifeCam
Microsoft National Language Support Downlevel APIs
Microsoft Office Professional Edition 2003
Microsoft Project 2000
Microsoft Silverlight
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 Redistributable
Modem Event Monitor
Modem Helper
Modem On Hold
MS Access 97 SP2
MSN Toolbar Setup
My Little Pony
MyIdentityDefender Toolbar (CyberDefender Corporation)
Nero Suite
On2 VP3 Video for Windows Codec
P_CS
Panda ActiveScan 2.0
Picasa 2
Picture Package
PowerDVD 5.1
Quicken 2005
QuickTime
RealPlayer
Risk+ 2.0 for Microsoft Project
Security Update for CAPICOM (KB931906)
Security Update for Step By Step Interactive Training (KB898458)
Security Update for Step By Step Interactive Training (KB923723)
Security Update for Windows Internet Explorer 7 (KB928090)
Security Update for Windows Internet Explorer 7 (KB929969)
Security Update for Windows Internet Explorer 7 (KB931768)
Security Update for Windows Internet Explorer 7 (KB933566)
Security Update for Windows Internet Explorer 7 (KB937143)
Security Update for Windows Internet Explorer 7 (KB938127)
Security Update for Windows Internet Explorer 7 (KB939653)
Security Update for Windows Internet Explorer 7 (KB942615)
Security Update for Windows Internet Explorer 7 (KB944533)
Security Update for Windows Internet Explorer 7 (KB950759)
Security Update for Windows Internet Explorer 7 (KB953838)
Security Update for Windows Internet Explorer 7 (KB956390)
Security Update for Windows Internet Explorer 7 (KB958215)
Security Update for Windows Media Player (KB911564)
Security Update for Windows Media Player 11 (KB936782)
Security Update for Windows Media Player 11 (KB954154)
Security Update for Windows Media Player 6.4 (KB925398)
Security Update for Windows Media Player 9 (KB911565)
Security Update for Windows Media Player 9 (KB917734)
Security Update for Windows XP (KB883939)
Security Update for Windows XP (KB890046)
Security Update for Windows XP (KB893756)
Security Update for Windows XP (KB896358)
Security Update for Windows XP (KB896422)
Security Update for Windows XP (KB896423)
Security Update for Windows XP (KB896424)
Security Update for Windows XP (KB896428)
Security Update for Windows XP (KB896688)
Security Update for Windows XP (KB899587)
Security Update for Windows XP (KB899588)
Security Update for Windows XP (KB899589)
Security Update for Windows XP (KB899591)
Security Update for Windows XP (KB900725)
Security Update for Windows XP (KB901017)
Security Update for Windows XP (KB901214)
Security Update for Windows XP (KB902400)
Security Update for Windows XP (KB903235)
Security Update for Windows XP (KB904706)
Security Update for Windows XP (KB905414)
Security Update for Windows XP (KB905749)
Security Update for Windows XP (KB905915)
Security Update for Windows XP (KB908519)
Security Update for Windows XP (KB908531)
Security Update for Windows XP (KB911280)
Security Update for Windows XP (KB911562)
Security Update for Windows XP (KB911567)
Security Update for Windows XP (KB911927)
Security Update for Windows XP (KB912812)
Security Update for Windows XP (KB912919)
Security Update for Windows XP (KB913446)
Security Update for Windows XP (KB913580)
Security Update for Windows XP (KB914388)
Security Update for Windows XP (KB914389)
Security Update for Windows XP (KB916281)
Security Update for Windows XP (KB917159)
Security Update for Windows XP (KB917344)
Security Update for Windows XP (KB917422)
Security Update for Windows XP (KB917953)
Security Update for Windows XP (KB918118)
Security Update for Windows XP (KB918439)
Security Update for Windows XP (KB918899)
Security Update for Windows XP (KB919007)
Security Update for Windows XP (KB920213)
Security Update for Windows XP (KB920214)
Security Update for Windows XP (KB920670)
Security Update for Windows XP (KB920683)
Security Update for Windows XP (KB920685)
Security Update for Windows XP (KB921398)
Security Update for Windows XP (KB921503)
Security Update for Windows XP (KB921883)
Security Update for Windows XP (KB922616)
Security Update for Windows XP (KB922819)
Security Update for Windows XP (KB923191)
Security Update for Windows XP (KB923414)
Security Update for Windows XP (KB923689)
Security Update for Windows XP (KB923694)
Security Update for Windows XP (KB923980)
Security Update for Windows XP (KB924191)
Security Update for Windows XP (KB924270)
Security Update for Windows XP (KB924496)
Security Update for Windows XP (KB924667)
Security Update for Windows XP (KB925454)
Security Update for Windows XP (KB925486)
Security Update for Windows XP (KB925902)
Security Update for Windows XP (KB926255)
Security Update for Windows XP (KB926436)
Security Update for Windows XP (KB927779)
Security Update for Windows XP (KB927802)
Security Update for Windows XP (KB928255)
Security Update for Windows XP (KB928843)
Security Update for Windows XP (KB929123)
Security Update for Windows XP (KB930178)
Security Update for Windows XP (KB931261)
Security Update for Windows XP (KB931784)
Security Update for Windows XP (KB932168)
Security Update for Windows XP (KB933729)
Security Update for Windows XP (KB935839)
Security Update for Windows XP (KB935840)
Security Update for Windows XP (KB936021)
Security Update for Windows XP (KB937894)
Security Update for Windows XP (KB938464)
Security Update for Windows XP (KB938829)
Security Update for Windows XP (KB941202)
Security Update for Windows XP (KB941568)
Security Update for Windows XP (KB941569)
Security Update for Windows XP (KB941644)
Security Update for Windows XP (KB941693)
Security Update for Windows XP (KB943055)
Security Update for Windows XP (KB943460)
Security Update for Windows XP (KB943485)
Security Update for Windows XP (KB944653)
Security Update for Windows XP (KB945553)
Security Update for Windows XP (KB946026)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB948590)
Security Update for Windows XP (KB948881)
Security Update for Windows XP (KB950749)
Security Update for Windows XP (KB950760)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951376)
Security Update for Windows XP (KB951698)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB953839)
Security Update for Windows XP (KB954211)
Security Update for Windows XP (KB954600)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956391)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956841)
Security Update for Windows XP (KB957095)
Security Update for Windows XP (KB957097)
Security Update for Windows XP (KB958644)
SimCity 3000 Unlimited
Smart Menus (Windows Live Toolbar)
Sonic DLA
Sonic RecordNow!
Sonic Update Manager
Sony USB Driver
Star Wars®: Knights of the Old Republic (TM)
TurboTax Deluxe 2004
Update for Windows XP (KB894391)
Update for Windows XP (KB896727)
Update for Windows XP (KB898461)
Update for Windows XP (KB900485)
Update for Windows XP (KB904942)
Update for Windows XP (KB910437)
Update for Windows XP (KB916595)
Update for Windows XP (KB920872)
Update for Windows XP (KB922582)
Update for Windows XP (KB927891)
Update for Windows XP (KB929338)
Update for Windows XP (KB930916)
Update for Windows XP (KB931836)
Update for Windows XP (KB932823-v3)
Update for Windows XP (KB933360)
Update for Windows XP (KB936357)
Update for Windows XP (KB938828)
Update for Windows XP (KB942763)
Update for Windows XP (KB951072-v2)
Update for Windows XP (KB955839)
VRQTool
WebFldrs XP
WexTech AnswerWorks
Windows Genuine Advantage Notifications (KB905474)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Installer 3.1 (KB893803)
Windows Installer Clean Up
Windows Internet Explorer 7
Windows Live Favorites for Windows Live Toolbar
Windows Live installer
Windows Live Messenger
Windows Live Sign-in Assistant
Windows Live Toolbar
Windows Live Toolbar Extension (Windows Live Toolbar)
Windows Media Format 11 runtime
Windows Media Player 11
Windows XP Hotfix - KB834707
Windows XP Hotfix - KB867282
Windows XP Hotfix - KB873333
Windows XP Hotfix - KB873339
Windows XP Hotfix - KB885250
Windows XP Hotfix - KB885835
Windows XP Hotfix - KB885836
Windows XP Hotfix - KB886185
Windows XP Hotfix - KB887472
Windows XP Hotfix - KB887742
Windows XP Hotfix - KB888113
Windows XP Hotfix - KB888302
Windows XP Hotfix - KB890047
Windows XP Hotfix - KB890175
Windows XP Hotfix - KB890859
Windows XP Hotfix - KB890923
Windows XP Hotfix - KB891781
Windows XP Hotfix - KB893066
Windows XP Hotfix - KB893086
WinRAR archiver
wInsight 5.0
Yahoo! Toolbar
==== Event Viewer Messages From Past Week ========
3/9/2009 8:43:06 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: IKFileSec IKSysFlt IKSysSec
3/9/2009 8:43:06 PM, error: Service Control Manager [7000] - The PC Tools Security Service service failed to start due to the following error: The system cannot find the file specified.
3/9/2009 8:43:06 PM, error: Service Control Manager [7000] - The PC Tools Auxiliary Service service failed to start due to the following error: The system cannot find the file specified.
3/9/2009 8:43:06 PM, error: Service Control Manager [7000] - The DHCP Client service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
3/9/2009 8:43:06 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the DHCP Client service to connect.
3/9/2009 8:43:06 PM, error: Service Control Manager [7000] - The Themes service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
3/9/2009 8:43:06 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the Themes service to connect.
3/7/2009 3:22:32 PM, error: Service Control Manager [7031] - The Remote Procedure Call (RPC) service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Reboot the machine.
3/7/2009 3:22:26 PM, error: Service Control Manager [7001] - The Windows Firewall/Internet Connection Sharing (ICS) service depends on the Network Connections service which failed to start because of the following error: After starting, the service hung in a start-pending state.
3/7/2009 3:22:26 PM, error: Service Control Manager [7001] - The System Event Notification service depends on the COM+ Event System service which failed to start because of the following error: After starting, the service hung in a start-pending state.
3/7/2009 3:22:26 PM, error: Service Control Manager [7022] - The Windows Image Acquisition (WIA) service hung on starting.
3/7/2009 3:22:22 PM, error: Service Control Manager [7022] - The Network Connections service hung on starting.
3/7/2009 3:22:22 PM, error: Service Control Manager [7022] - The COM+ Event System service hung on starting.
3/7/2009 3:21:59 PM, error: Service Control Manager [7023] - The Automatic Updates service terminated with the following error: %%2147944122
3/7/2009 3:21:59 PM, error: Service Control Manager [7023] - The Security Center service terminated with the following error: The endpoint mapper database entry could not be created.
3/7/2009 3:21:59 PM, error: Service Control Manager [7023] - The IPSEC Services service terminated with the following error: The endpoint mapper database entry could not be created.
3/7/2009 3:21:59 PM, error: Service Control Manager [7023] - The MSN Toolbar Setup service terminated with the following error: %%2147944122
3/7/2009 3:21:59 PM, error: Service Control Manager [7023] - The McAfee SiteAdvisor Service service terminated with the following error: %%2147944122
3/7/2009 3:21:59 PM, error: Service Control Manager [7024] - The Background Intelligent Transfer Service service terminated with service-specific error 2147944122 (0x800706BA).
3/7/2009 3:21:59 PM, error: Service Control Manager [7023] - The Google Software Updater service terminated with the following error: %%2147944122
3/7/2009 3:21:59 PM, error: Service Control Manager [7023] - The Task Scheduler service terminated with the following error: The endpoint mapper database entry could not be created.
3/6/2009 9:14:25 PM, error: Service Control Manager [7023] - The Computer Browser service terminated with the following error: This operation returned because the timeout period expired.
3/6/2009 9:09:37 PM, error: System Error [1003] - Error code 1000000a, parameter1 c0140334, parameter2 00000002, parameter3 00000000, parameter4 80500301.
3/6/2009 9:09:35 PM, error: Service Control Manager [7023] - The Automatic Updates service terminated with the following error: %%2147952506
3/6/2009 9:09:35 PM, error: Service Control Manager [7023] - The Windows Firewall/Internet Connection Sharing (ICS) service terminated with the following error: Invalid access to memory location.
3/6/2009 9:09:35 PM, error: Service Control Manager [7023] - The IPSEC Services service terminated with the following error: The requested service provider could not be loaded or initialized.
3/6/2009 9:09:35 PM, error: Service Control Manager [7024] - The Background Intelligent Transfer Service service terminated with service-specific error 2147952506 (0x8007277A).
3/9/2009 9:08:08 PM, error: System Error [1003] - Error code 1000008e, parameter1 c0000005, parameter2 00320001, parameter3 eb116b24, parameter4 00000000.
3/9/2009 9:08:48 PM, error: System Error [1003] - Error code 00000024, parameter1 001902fe, parameter2 f7b2c994, parameter3 f7b2c690, parameter4 805824fe.
3/9/2009 9:25:20 PM, error: Service Control Manager [7000] - The Remote Registry service failed to start due to the following error: The system cannot find the path specified.
3/9/2009 9:25:30 PM, error: System Error [1003] - Error code 000000c2, parameter1 00000007, parameter2 00000cd4, parameter3 f752c826, parameter4 f74cb9f8.
3/9/2009 11:53:20 PM, error: PlugPlayManager [11] - The device Root\LEGACY_GMER\0000 disappeared from the system without first being prepared for removal.
==== End Of File ===========================
Didn't find the information you thought to find? Check out these Similar Threads