1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Inactive [InActive] page load error

Discussion in 'Malware and Virus Removal Archive' started by Sullysan, 2009/03/18.

  1. 2009/03/18
    Sullysan

    Sullysan Inactive Thread Starter

    Joined:
    2009/03/18
    Messages:
    12
    Likes Received:
    0
    I have recently joined 'cause I think HIJACKING has occurred. I browsed through forums, found similar issues, tried on line KAS scan, windows error shut it down half way through. have DDS and attachment for perusal by anyone willing to help this poor sod out. Thanks, Sully
     
  2. 2009/03/18
    PeteC

    PeteC SuperGeek Staff

    Joined:
    2002/05/10
    Messages:
    28,896
    Likes Received:
    389
    Welcome to WindowsBBS :)

    Copy/paste your DDS log into your next post here - split over 2 or more posts if necessary.

    Thread moved to the Malware & Virus Removal forum.
     

  3. to hide this advert.

  4. 2009/03/18
    Sullysan

    Sullysan Inactive Thread Starter

    Joined:
    2009/03/18
    Messages:
    12
    Likes Received:
    0
    DDS (Ver_09-03-16.01) - NTFSx86
    Run by Sully at 9:42:53.18 on Wed 03/18/2009
    Internet Explorer: 7.0.5730.13
    Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.3326.2473 [GMT -6:00]

    AV: McAfee VirusScan *On-access scanning enabled* (Updated)
    FW: McAfee Personal Firewall *enabled*

    ============== Running Processes ===============

    C:\WINDOWS\system32\svchost -k DcomLaunch
    svchost.exe
    C:\WINDOWS\System32\svchost.exe -k netsvcs
    svchost.exe
    svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\RUNDLL32.EXE
    C:\WINDOWS\RTHDCPL.EXE
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\WINDOWS\system32\rundll32.exe
    C:\Program Files\McAfee.com\Agent\mcagent.exe
    C:\WINDOWS\system32\LVCOMSX.EXE
    C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
    C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
    C:\Program Files\Logitech\Video\LogiTray.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\WINDOWS\System32\M-AudioTaskBarIcon.exe
    C:\Program Files\Linksys\Linksys EasyLink Advisor\Linksys EasyLink Advisor.exe
    C:\Program Files\Common Files\Pure Networks Shared\Platform\nmctxth.exe
    C:\Program Files\Allume Systems\Internet Cleanup 5.0\SpamCatcher\Launcher.exe
    C:\Program Files\Allume Systems\Internet Cleanup 5.0\ICTray.exe
    C:\Program Files\Allume Systems\Internet Cleanup 5.0\FileSystemGuard\MSFG.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    C:\Program Files\Allume Systems\Internet Cleanup 5.0\FileSystemGuard\WinFSG.exe
    C:\Program Files\The Weather Channel FW\Desktop\DesktopWeather.exe
    C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
    C:\Program Files\Brother\ControlCenter3\brccMCtl.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Program Files\Allume Systems\Internet Cleanup 5.0\SpamCatcher\sc_daemon.exe
    C:\Program Files\Windows Desktop Search\WindowsSearch.exe
    C:\Program Files\Brother\Brmfcmon\BrMfcmon.exe
    C:\Program Files\Logitech\Video\FxSvr2.exe
    C:\Program Files\Allume Systems\Internet Cleanup 5.0\ICSpyware\Onistask.exe
    C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\Program Files\Linksys\Linksys Updater\bin\LinksysUpdater.exe
    C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
    c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
    C:\WINDOWS\system32\java.exe
    c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
    C:\Program Files\McAfee\MPF\MPFSrv.exe
    C:\WINDOWS\system32\nvsvc32.exe
    svchost.exe "C:\WINDOWS\system32\wpv371237070981.cpx "
    C:\Program Files\Allume Systems\Internet Cleanup 5.0\SpamCatcher\spamcatcher.exe
    C:\WINDOWS\system32\svchost.exe -k imgsvc
    C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exe
    C:\WINDOWS\system32\SearchIndexer.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
    C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
    C:\Program Files\Windows Live\Contacts\wlcomm.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Documents and Settings\Sully\Local Settings\Temporary Internet Files\Content.IE5\J42YGJJF\dds[1].scr

    ============== Pseudo HJT Report ===============

    uStart Page = hxxp://comcast.net/
    uInternet Settings,ProxyOverride = *.local;localhost
    BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
    BHO: ICHlprObj Class: {1f0c8547-2639-4c91-b8aa-c7eca24c3163} - c:\progra~1\allume~1\intern~1.0\netblo~1\IC3hlpr.dll
    BHO: PopupFilter Class: {1f2e844b-8211-46ff-8262-772f03295cf4} - c:\progra~1\allume~1\intern~1.0\netblo~1\PopFiltr.dll
    BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
    BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
    BHO: Quick Fill ToolBar: {7be2e2e3-4b8a-4fe4-be98-95fa313fdd19} - c:\program files\allume systems\internet cleanup 5.0\quickfill\IEBHO.dll
    BHO: scriptproxy: {7db2d5a0-7241-4e79-b68d-6309f01c5231} - c:\program files\mcafee\virusscan\scriptsn.dll
    BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
    BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar.dll
    BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.0.926.3450\swg.dll
    BHO: Google Dictionary Compression sdch: {c84d72fe-e17d-4195-bb24-76c02e2e7c4e} - c:\program files\google\google toolbar\component\fastsearch_219B3E1547538286.dll
    BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
    BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    TB: &Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar.dll
    TB: The Weather Channel Toolbar: {2e5e800e-6ac0-411e-940a-369530a35e43} - c:\windows\system32\TwcToolbarIe7.dll
    TB: Quick Fill ToolBar: {7be2e2e3-4b8a-4fe4-be98-95fa313fdd19} - c:\program files\allume systems\internet cleanup 5.0\quickfill\IEBHO.dll
    uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
    uRun: [swg] c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe
    uRun: [DW6] "c:\program files\the weather channel fw\desktop\DesktopWeather.exe "
    uRun: [LDM] c:\program files\logitech\desktop messenger\8876480\program\BackWeb-8876480.exe
    uRun: [LogitechSoftwareUpdate] "c:\program files\logitech\video\ManifestEngine.exe" boot
    uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
    mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
    mRun: [nwiz] nwiz.exe /install
    mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
    mRun: [RTHDCPL] RTHDCPL.EXE
    mRun: [Alcmtr] ALCMTR.EXE
    mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe "
    mRun: [UIUCU] c:\docume~1\sully\locals~1\temp\UIUCU.EXE -CLEAN_UP -S
    mRun: [mcagent_exe] c:\program files\mcafee.com\agent\mcagent.exe /runkey
    mRun: [LVCOMSX] c:\windows\system32\LVCOMSX.EXE
    mRun: [SSBkgdUpdate] "c:\program files\common files\scansoft shared\ssbkgdupdate\SSBkgdupdate.exe" -Embedding -boot
    mRun: [PaperPort PTD] "c:\program files\scansoft\paperport\pptd40nt.exe "
    mRun: [IndexSearch] "c:\program files\scansoft\paperport\IndexSearch.exe "
    mRun: [PPort11reminder] "c:\program files\scansoft\paperport\ereg\ereg.exe" -r "c:\documents and settings\all users\application data\scansoft\paperport\11\config\ereg\Ereg.ini "
    mRun: [BrMfcWnd] c:\program files\brother\brmfcmon\BrMfcWnd.exe /AUTORUN
    mRun: [ControlCenter3] c:\program files\brother\controlcenter3\brctrcen.exe /autorun
    mRun: [LogitechVideoRepair] c:\program files\logitech\video\ISStart.exe
    mRun: [LogitechVideoTray] c:\program files\logitech\video\LogiTray.exe
    mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
    mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe "
    mRun: [Adobe Photo Downloader] "c:\program files\adobe\photoshop album starter edition\3.2\apps\apdproxy.exe "
    mRun: [M-Audio Taskbar Icon] c:\windows\system32\M-AudioTaskBarIcon.exe
    mRun: [LELA] "c:\program files\linksys\linksys easylink advisor\Linksys EasyLink Advisor.exe" /minimized
    mRun: [nmctxth] "c:\program files\common files\pure networks shared\platform\nmctxth.exe "
    mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 8.0\reader\Reader_sl.exe "
    mRun: [OE_Plugin_Startup] "c:\program files\allume systems\internet cleanup 5.0\spamcatcher\Launcher.exe "
    mRun: [ICTray] c:\program files\allume systems\internet cleanup 5.0\ICTray.exe
    mRun: [MSFG.exe] c:\program files\allume systems\internet cleanup 5.0\filesystemguard\MSFG.exe
    StartupFolder: c:\docume~1\sully\startm~1\programs\startup\istask~1.lnk - c:\program files\allume systems\internet cleanup 5.0\icspyware\Onistask.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\logite~1.lnk - c:\program files\logitech\desktop messenger\8876480\program\LDMConf.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\window~1.lnk - c:\program files\windows desktop search\WindowsSearch.exe
    IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000
    IE: {55F0FC28-443B-4d2d-AF32-C6DD3563E446} - c:\program files\allume systems\internet cleanup 5.0\quickfill\QFill.exe
    IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
    IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
    IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~2\office12\ONBttnIE.dll
    IE: {2E5E800E-6AC0-411E-940A-369530A35E43} - {A6790AA5-C6C7-4BCF-A46D-0FDAC4EA90EB}
    IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office12\REFIEBAR.DLL
    LSP: c:\program files\allume systems\internet cleanup 5.0\netblockade\adlsp.dll
    DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} - hxxp://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
    DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} - hxxp://gfx2.hotmail.com/mail/w3/resources/MSNPUpld.cab
    DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1230359310218
    DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1230359297484
    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
    DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
    DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
    DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} -
    Handler: pure-go - {4746C79A-2042-4332-8650-48966E44ABA8} - c:\program files\common files\pure networks shared\platform\puresp3.dll
    SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
    SEH: Windows Desktop Search Namespace Manager: {56f9679e-7826-4c84-81f3-532071a8bcc5} - c:\program files\windows desktop search\MSNLNamespaceMgr.dll
    SecurityProviders: msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll, digeste.dll

    ================= FIREFOX ===================

    FF - ProfilePath - c:\docume~1\sully\applic~1\mozilla\firefox\profiles\tu5t5gw6.default\
    FF - prefs.js: browser.startup.homepage - www.comcast.net

    ============= SERVICES / DRIVERS ===============

    R1 mfehidk;McAfee Inc. mfehidk;c:\windows\system32\drivers\mfehidk.sys [2008-12-26 201320]
    R2 LinksysUpdater;Linksys Updater;c:\program files\linksys\linksys updater\bin\LinksysUpdater.exe [2008-4-18 204800]
    R2 McProxy;McAfee Proxy Service;c:\progra~1\common~1\mcafee\mcproxy\mcproxy.exe [2008-12-26 359248]
    R2 McShield;McAfee Real-time Scanner;c:\progra~1\mcafee\viruss~1\mcshield.exe [2008-12-26 144704]
    R2 SpamCatcherUniversal;SpamCatcherUniversal;c:\program files\allume systems\internet cleanup 5.0\spamcatcher\spamcatcher.exe [2004-10-18 712704]
    R3 McSysmon;McAfee SystemGuards;c:\progra~1\mcafee\viruss~1\mcsysmon.exe [2008-12-26 695624]
    R3 mfeavfk;McAfee Inc. mfeavfk;c:\windows\system32\drivers\mfeavfk.sys [2008-12-26 79304]
    R3 mfebopk;McAfee Inc. mfebopk;c:\windows\system32\drivers\mfebopk.sys [2008-12-26 35240]
    R3 mfesmfk;McAfee Inc. mfesmfk;c:\windows\system32\drivers\mfesmfk.sys [2008-12-26 40488]
    R3 mxfsgMon;mxfsgMon;c:\progra~1\allume~1\intern~1.0\filesy~1\mxfsgMon.sys [2009-3-16 32768]
    S2 ProtectedStorageTermService;Protected Storage ProtectedStorageTermService;c:\windows\system32\wpv371237070981.cpx srv --> c:\windows\system32\wpv371237070981.cpx srv [?]
    S3 MAUSBMP;Service for M-Audio Mobile Pre (WDM);c:\windows\system32\drivers\mausbmp.sys [2009-1-30 144008]
    S3 mferkdk;McAfee Inc. mferkdk;c:\windows\system32\drivers\mferkdk.sys [2008-12-26 33832]

    =============== Created Last 30 ================

    2009-03-18 04:02 <DIR> --d----- c:\docume~1\sully\applic~1\Windows Desktop Search
    2009-03-18 04:02 <DIR> --d----- c:\windows\system32\GroupPolicy
    2009-03-18 04:02 <DIR> --d----- c:\program files\Windows Desktop Search
    2009-03-18 04:01 98,304 -c------ c:\windows\system32\dllcache\nlhtml.dll
    2009-03-18 04:01 29,696 -c------ c:\windows\system32\dllcache\mimefilt.dll
    2009-03-18 04:01 192,000 -c------ c:\windows\system32\dllcache\offfilt.dll
    2009-03-17 12:31 32 a--s---- c:\windows\system32\3905945968.dat
    2009-03-17 12:31 48,128 a------- c:\windows\system32\wpv371237070981.cpx
    2009-03-17 12:30 29,184 a------- c:\windows\system32\digeste.dll
    2009-03-16 23:01 <DIR> --d----- c:\program files\DiskCheckup
    2009-03-16 15:24 <DIR> --d----- c:\docume~1\sully\applic~1\Aladdin Systems
    2009-03-16 15:24 <DIR> --d----- c:\docume~1\sully\applic~1\Allume Systems
    2009-03-16 15:23 <DIR> --d----- c:\program files\common files\Allume System
    2009-03-16 15:23 <DIR> --d----- c:\program files\Allume Systems
    2009-03-14 21:25 <DIR> --d----- c:\documents and settings\sully\Tracing
    2009-03-14 21:23 <DIR> --d----- c:\program files\Microsoft
    2009-03-14 21:23 <DIR> --d----- c:\program files\Windows Live SkyDrive
    2009-03-14 21:20 <DIR> --d----- c:\program files\common files\Windows Live
    2009-03-06 21:04 <DIR> --d----- c:\program files\WebEx
    2009-03-06 21:00 <DIR> --d----- c:\windows\system32\XPSViewer
    2009-03-06 20:59 14,048 -------- c:\windows\system32\spmsg2.dll
    2009-03-06 20:55 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Linksys
    2009-03-06 20:54 23,992 a------- c:\windows\system32\drivers\pnarp.sys
    2009-03-06 20:54 25,272 a------- c:\windows\system32\drivers\purendis.sys
    2009-03-06 20:54 <DIR> --d----- c:\program files\common files\Pure Networks Shared
    2009-03-06 20:54 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Pure Networks
    2009-03-06 20:53 <DIR> --d----- c:\program files\Linksys
    2009-03-05 17:50 <DIR> --d----- c:\program files\PFConfig
    2009-02-28 16:30 <DIR> --d----- c:\windows\LMI128.tmp

    ==================== Find3M ====================

    2009-02-09 05:13 1,846,784 a------- c:\windows\system32\win32k.sys
    2009-02-06 18:52 49,504 a------- c:\windows\system32\sirenacm.dll
    2009-01-10 19:36 410,984 a------- c:\windows\system32\deploytk.dll
    2008-12-28 10:50 81,920 -----r-- c:\windows\bwUnin-6.1.4.68-8876480L.exe
    2008-12-27 00:52 77,423 a------- c:\windows\pchealth\helpctr\offlinecache\index.dat
    2008-12-24 19:52 315,392 a------- c:\windows\HideWin.exe
    2008-12-24 18:34 21,640 a------- c:\windows\system32\emptyregdb.dat
    2008-12-20 17:15 826,368 a------- c:\windows\system32\wininet.dll

    ============= FINISH: 9:43:29.71 ===============
     
  5. 2009/03/18
    Sullysan

    Sullysan Inactive Thread Starter

    Joined:
    2009/03/18
    Messages:
    12
    Likes Received:
    0
    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT

    DDS (Ver_09-03-16.01)

    Microsoft Windows XP Home Edition
    Boot Device: \Device\HarddiskVolume2
    Install Date: 12/24/2008 5:38:17 PM
    System Uptime: 3/18/2009 9:35:12 AM (0 hours ago)

    Motherboard: Dell Inc. | | 0CU409
    Processor: Intel(R) Pentium(R) Dual CPU E2140 @ 1.60GHz | Socket 775 | 1596/200mhz

    ==== Disk Partitions =========================

    C: is FIXED (NTFS) - 149 GiB total, 113.978 GiB free.
    D: is CDROM ()
    E: is Removable

    ==== Disabled Device Manager Items =============

    Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
    Description: SM Bus Controller
    Device ID: PCI\VEN_8086&DEV_2930&SUBSYS_02381028&REV_02\3&2411E6FE&0&FB
    Manufacturer:
    Name: SM Bus Controller
    PNP Device ID: PCI\VEN_8086&DEV_2930&SUBSYS_02381028&REV_02\3&2411E6FE&0&FB
    Service:

    ==== System Restore Points ===================

    RP1: 12/24/2008 5:40:32 PM - System Checkpoint
    RP2: 12/24/2008 6:07:05 PM - Installed EVGA Display Driver
    RP3: 12/24/2008 6:51:48 PM - Installed Dell Resource CD.
    RP4: 12/24/2008 6:52:57 PM - Installed Realtek High Definition Audio Driver
    RP5: 12/24/2008 6:53:04 PM - Installed Windows XP KB888111WXPSP2.
    RP6: 12/24/2008 6:56:24 PM - Installed Modem Diagnostic Tool
    RP7: 12/24/2008 7:05:10 PM - Installed J2SE Runtime Environment 5.0 Update 6
    RP8: 12/24/2008 7:06:14 PM - Installed Modem Diagnostic Tool
    RP9: 12/24/2008 8:22:35 PM - Installed Microsoft Office Home and Student 2007
    RP10: 12/24/2008 8:27:36 PM - Printer Driver Send To Microsoft OneNote Driver Installed
    RP11: 12/24/2008 9:22:54 PM - Installed Broadcom Gigabit Integrated Controller
    RP12: 12/25/2008 9:49:18 AM - Removed Broadcom Gigabit Integrated Controller
    RP13: 12/26/2008 4:02:40 PM - System Checkpoint
    RP14: 12/26/2008 10:34:01 PM - Installed Intel(R) PRO Network Connections
    RP15: 12/26/2008 11:30:53 PM - Software Distribution Service 3.0
    RP16: 12/26/2008 11:41:16 PM - Software Distribution Service 3.0
    RP17: 12/27/2008 12:06:29 AM - Software Distribution Service 3.0
    RP18: 12/27/2008 12:34:57 AM - Software Distribution Service 3.0
    RP19: 12/27/2008 7:35:00 AM - Software Distribution Service 3.0
    RP20: 12/27/2008 11:29:27 AM - Installed ScanSoft PaperPort 11
    RP21: 12/27/2008 11:30:46 AM - Installed PaperPort Image Printer
    RP22: 12/27/2008 11:30:58 AM - Printer Driver Nuance Image Printer Driver Installed
    RP23: 12/27/2008 11:31:11 AM - Installed Microsoft Visual C++ 2005 Redistributable
    RP24: 12/27/2008 11:31:46 AM - Installed Brother MFL-Pro Suite
    RP25: 12/27/2008 11:32:52 AM - Unsigned printer driver Brother PC-FAX v.2 installed.
    RP26: 12/27/2008 12:11:07 PM - Installed Adobe Reader 9.
    RP27: 12/28/2008 9:30:10 AM - Software Distribution Service 3.0
    RP28: 12/28/2008 9:38:50 AM - Installed Microsoft Visual C++ 2005 Redistributable
    RP29: 12/28/2008 9:50:21 AM - Installed Logitech Desktop Messenger
    RP30: 12/28/2008 9:50:42 AM - Installed Logitech QuickCam
    RP31: 12/28/2008 10:02:32 AM - Installed Windows Live installer
    RP32: 12/28/2008 10:02:52 AM - Installed Windows Live
    RP33: 12/28/2008 10:46:47 AM - Installed WinZip 12.0
    RP34: 12/28/2008 11:46:12 AM - Installed iTunes
    RP35: 12/29/2008 12:46:55 PM - Software Distribution Service 3.0
    RP36: 12/30/2008 12:47:27 PM - System Checkpoint
    RP37: 12/31/2008 12:55:28 PM - System Checkpoint
    RP38: 1/1/2009 2:07:28 PM - System Checkpoint
    RP39: 1/2/2009 2:41:55 PM - System Checkpoint
    RP40: 1/3/2009 3:09:06 PM - System Checkpoint
    RP41: 1/4/2009 3:19:24 PM - System Checkpoint
    RP42: 1/5/2009 3:45:42 PM - System Checkpoint
    RP43: 1/10/2009 6:36:26 PM - Installed Java(TM) 6 Update 11
    RP44: 1/11/2009 7:08:41 PM - System Checkpoint
    RP45: 1/12/2009 7:35:15 PM - System Checkpoint
    RP46: 1/13/2009 3:00:14 AM - Software Distribution Service 3.0
    RP47: 1/13/2009 3:28:39 AM - Installed Windows Defender
    RP48: 1/13/2009 3:29:56 AM - Software Distribution Service 3.0
    RP49: 1/14/2009 2:08:46 AM - Software Distribution Service 3.0
    RP50: 1/15/2009 8:26:04 AM - System Checkpoint
    RP51: 1/15/2009 8:32:04 AM - Software Distribution Service 3.0
    RP52: 1/16/2009 8:52:54 AM - System Checkpoint
    RP53: 1/17/2009 9:40:46 AM - System Checkpoint
    RP54: 1/17/2009 2:49:19 PM - Installed Adobe® Photoshop® Album Starter Edition 3.2
    RP55: 1/18/2009 3:34:47 PM - System Checkpoint
    RP56: 1/19/2009 4:21:21 PM - System Checkpoint
    RP57: 1/20/2009 7:34:01 AM - Software Distribution Service 3.0
    RP58: 1/21/2009 8:04:33 AM - System Checkpoint
    RP59: 1/22/2009 8:01:53 AM - Software Distribution Service 3.0
    RP60: 1/23/2009 8:02:10 AM - System Checkpoint
    RP61: 1/24/2009 9:27:24 AM - System Checkpoint
    RP62: 1/25/2009 9:41:04 AM - System Checkpoint
    RP63: 1/26/2009 10:00:59 AM - System Checkpoint
    RP64: 1/27/2009 3:20:19 AM - Software Distribution Service 3.0
    RP65: 1/28/2009 8:19:34 AM - System Checkpoint
    RP66: 1/29/2009 8:34:01 AM - System Checkpoint
    RP67: 1/29/2009 12:22:48 PM - Software Distribution Service 3.0
    RP68: 1/30/2009 12:18:33 PM - Installed MobilePre
    RP69: 1/30/2009 12:26:00 PM - Installed MobilePre
    RP70: 1/30/2009 12:28:43 PM - Update to an unsigned driver
    RP71: 1/31/2009 1:16:43 PM - System Checkpoint
    RP72: 2/1/2009 1:51:39 PM - System Checkpoint
    RP73: 2/2/2009 2:30:38 PM - System Checkpoint
    RP74: 2/3/2009 10:03:19 AM - Software Distribution Service 3.0
    RP75: 2/4/2009 10:58:38 AM - System Checkpoint
    RP76: 2/5/2009 9:13:45 AM - Software Distribution Service 3.0
    RP77: 2/5/2009 11:11:17 AM - Installed Windows Media Player 11
    RP78: 2/5/2009 11:25:31 AM - Software Distribution Service 3.0
    RP79: 2/6/2009 6:51:48 AM - Software Distribution Service 3.0
    RP80: 2/7/2009 8:26:33 AM - System Checkpoint
    RP81: 2/8/2009 9:45:53 AM - System Checkpoint
    RP82: 2/9/2009 9:58:27 AM - System Checkpoint
    RP83: 2/9/2009 10:47:21 AM - Software Distribution Service 3.0
    RP84: 2/10/2009 11:41:07 AM - System Checkpoint
    RP85: 2/10/2009 8:28:18 PM - Update to an unsigned driver
    RP86: 2/11/2009 6:39:47 PM - Software Distribution Service 3.0
    RP87: 2/11/2009 9:26:10 PM - Removed Adobe® Photoshop® Album Starter Edition 3.2
    RP88: 2/11/2009 9:32:39 PM - Removed Adobe Reader 9.
    RP89: 2/12/2009 10:52:27 PM - System Checkpoint
    RP90: 2/13/2009 6:16:15 AM - Software Distribution Service 3.0
    RP91: 2/13/2009 5:42:45 PM - Installed Adobe Reader 9.
    RP92: 2/14/2009 6:07:52 PM - System Checkpoint
    RP93: 2/15/2009 6:44:57 PM - System Checkpoint
    RP94: 2/16/2009 7:53:31 AM - Software Distribution Service 3.0
    RP95: 2/17/2009 8:39:27 AM - System Checkpoint
    RP96: 2/18/2009 8:53:05 AM - System Checkpoint
    RP97: 2/22/2009 2:28:16 PM - Software Distribution Service 3.0
    RP98: 2/23/2009 2:41:32 PM - System Checkpoint
    RP99: 2/23/2009 3:49:05 PM - Software Distribution Service 3.0
    RP100: 2/24/2009 4:16:21 PM - System Checkpoint
    RP101: 2/25/2009 5:12:56 PM - System Checkpoint
    RP102: 2/25/2009 8:41:42 PM - Software Distribution Service 3.0
    RP103: 2/26/2009 6:01:48 PM - Software Distribution Service 3.0
    RP104: 2/26/2009 11:53:05 PM - Software Distribution Service 3.0
    RP105: 2/28/2009 7:31:40 AM - System Checkpoint
    RP106: 3/1/2009 9:06:51 AM - System Checkpoint
    RP107: 3/2/2009 9:25:19 AM - System Checkpoint
    RP108: 3/3/2009 6:05:32 AM - Software Distribution Service 3.0
    RP109: 3/4/2009 6:49:52 AM - System Checkpoint
    RP110: 3/5/2009 7:33:25 AM - System Checkpoint
    RP111: 3/5/2009 8:30:37 PM - Software Distribution Service 3.0
    RP112: 3/5/2009 10:42:35 PM - Software Distribution Service 3.0
    RP113: 3/6/2009 6:05:25 AM - Software Distribution Service 3.0
    RP114: 3/6/2009 6:59:21 PM - Installed Router
    RP115: 3/7/2009 8:02:26 AM - Removed Windows Defender
    RP116: 3/8/2009 8:07:54 AM - System Checkpoint
    RP117: 3/9/2009 8:22:07 AM - System Checkpoint
    RP118: 3/9/2009 6:22:51 PM - Installed Router
    RP119: 3/10/2009 2:27:18 PM - Installed Router
    RP120: 3/11/2009 3:11:53 PM - System Checkpoint
    RP121: 3/11/2009 11:36:49 PM - Software Distribution Service 3.0
    RP122: 3/13/2009 7:08:54 AM - System Checkpoint
    RP123: 3/13/2009 9:16:08 AM - Installed Router
    RP124: 3/14/2009 9:21:02 AM - System Checkpoint
    RP125: 3/14/2009 9:24:25 PM - Installed Windows Live
    RP126: 3/15/2009 9:26:22 PM - System Checkpoint
    RP127: 3/15/2009 11:43:46 PM - Software Distribution Service 3.0
    RP128: 3/16/2009 3:20:40 PM - Installed Internet Cleanup 5.0
    RP129: 3/17/2009 3:37:22 PM - System Checkpoint
    RP130: 3/18/2009 4:01:39 AM - Installed Windows XP KB915800-v4.
    RP131: 3/18/2009 4:02:05 AM - Installed Windows XP Windows Search 4.0.

    ==== Installed Programs ======================

    2007 Microsoft Office Suite Service Pack 1 (SP1)
    Acrobat.com
    Adobe Flash Player 10 ActiveX
    Adobe Flash Player 10 Plugin
    Adobe Reader 8.1.1
    Apple Mobile Device Support
    Apple Software Update
    Audacity 1.3.7 (Unicode)
    Bonjour
    Brother MFL-Pro Suite MFC-490CW
    Choice Guard
    Critical Update for Windows Media Player 11 (KB959772)
    Dell Resource CD
    DiskCheckup V2.1
    EVGA Display Driver
    Google Toolbar for Internet Explorer
    High Definition Audio Driver Package - KB888111
    Hotfix for Windows Media Format 11 SDK (KB929399)
    Hotfix for Windows Media Player 11 (KB939683)
    Hotfix for Windows XP (KB915800-v4)
    Hotfix for Windows XP (KB952287)
    Intel(R) PRO Network Connections 12.1.12.0
    Internet Cleanup 5.0
    iTunes
    J2SE Runtime Environment 5.0 Update 6
    Java(TM) 6 Update 11
    Java(TM) 6 Update 3
    Linksys EasyLink Advisor
    Logitech Desktop Messenger
    Logitech Print Service
    Logitech QuickCam Software
    Logitech® Camera Driver
    McAfee SecurityCenter
    Microsoft .NET Framework 2.0
    Microsoft .NET Framework 3.0
    Microsoft Application Error Reporting
    Microsoft Compression Client Pack 1.0 for Windows XP
    Microsoft Internationalized Domain Names Mitigation APIs
    Microsoft National Language Support Downlevel APIs
    Microsoft Office Excel MUI (English) 2007
    Microsoft Office Home and Student 2007
    Microsoft Office OneNote MUI (English) 2007
    Microsoft Office PowerPoint MUI (English) 2007
    Microsoft Office Proof (English) 2007
    Microsoft Office Proof (French) 2007
    Microsoft Office Proof (Spanish) 2007
    Microsoft Office Proofing (English) 2007
    Microsoft Office Shared MUI (English) 2007
    Microsoft Office Shared Setup Metadata MUI (English) 2007
    Microsoft Office Word MUI (English) 2007
    Microsoft Silverlight
    Microsoft Software Update for Web Folders (English) 12
    Microsoft User-Mode Driver Framework Feature Pack 1.0
    Microsoft Visual C++ 2005 Redistributable
    MobilePre
    Modem Diagnostic Tool
    Mozilla Firefox (3.0.7)
    MSVCRT
    MSXML 4.0 SP2 (KB954430)
    MSXML 6.0 Parser (KB925673)
    PaperPort Image Printer
    PFConfig 1.0.232
    Pure Networks Platform
    QuickTime
    Realtek High Definition Audio Driver
    RegCure 1.5.1.3
    ScanSoft PaperPort 11
    Security Update for 2007 Microsoft Office System (KB951550)
    Security Update for 2007 Microsoft Office System (KB951944)
    Security Update for 2007 Microsoft Office System (KB958439)
    Security Update for CAPICOM (KB931906)
    Security Update for Microsoft Office Excel 2007 (KB958437)
    Security Update for Microsoft Office OneNote 2007 (KB950130)
    Security Update for Microsoft Office PowerPoint 2007 (KB951338)
    Security Update for Microsoft Office system 2007 (KB954326)
    Security Update for Microsoft Office system 2007 (KB956828)
    Security Update for Microsoft Office Word 2007 (KB956358)
    Security Update for Windows Internet Explorer 7 (KB938127-v2)
    Security Update for Windows Internet Explorer 7 (KB956390)
    Security Update for Windows Internet Explorer 7 (KB958215)
    Security Update for Windows Internet Explorer 7 (KB960714)
    Security Update for Windows Internet Explorer 7 (KB961260)
    Security Update for Windows Media Player (KB952069)
    Security Update for Windows Media Player 11 (KB936782)
    Security Update for Windows Media Player 11 (KB954154)
    Security Update for Windows XP (KB938464)
    Security Update for Windows XP (KB941569)
    Security Update for Windows XP (KB946648)
    Security Update for Windows XP (KB950762)
    Security Update for Windows XP (KB950974)
    Security Update for Windows XP (KB951066)
    Security Update for Windows XP (KB951376-v2)
    Security Update for Windows XP (KB951698)
    Security Update for Windows XP (KB951748)
    Security Update for Windows XP (KB952954)
    Security Update for Windows XP (KB954211)
    Security Update for Windows XP (KB954459)
    Security Update for Windows XP (KB954600)
    Security Update for Windows XP (KB955069)
    Security Update for Windows XP (KB956391)
    Security Update for Windows XP (KB956802)
    Security Update for Windows XP (KB956803)
    Security Update for Windows XP (KB956841)
    Security Update for Windows XP (KB957095)
    Security Update for Windows XP (KB957097)
    Security Update for Windows XP (KB958215)
    Security Update for Windows XP (KB958644)
    Security Update for Windows XP (KB958687)
    Security Update for Windows XP (KB958690)
    Security Update for Windows XP (KB960225)
    Security Update for Windows XP (KB960714)
    Security Update for Windows XP (KB960715)
    Segoe UI
    The Weather Channel Desktop 6
    The Weather Channel Toolbar
    Tweak UI
    Update for Office 2007 (KB946691)
    Update for Windows XP (KB951978)
    Update for Windows XP (KB955839)
    Update for Windows XP (KB967715)
    WebEx
    WebEx Support Manager for Internet Explorer
    WebFldrs XP
    Windows Communication Foundation
    Windows Genuine Advantage Validation Tool (KB892130)
    Windows Internet Explorer 7
    Windows Live Call
    Windows Live Communications Platform
    Windows Live Essentials
    Windows Live Messenger
    Windows Live Sign-in Assistant
    Windows Live Upload Tool
    Windows Media Format 11 runtime
    Windows Media Player 11
    Windows Presentation Foundation
    Windows Search 4.0
    Windows Workflow Foundation
    Windows XP Service Pack 3
    WinZip 12.0
    XML Paper Specification Shared Components Pack 1.0

    ==== Event Viewer Messages From Past Week ========

    3/13/2009 9:12:54 AM, error: Dhcp [1002] - The IP address lease 192.168.1.100 for the Network Card with network address 001AA09EF684 has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).
    3/16/2009 5:45:06 PM, error: Dhcp [1002] - The IP address lease 192.168.1.100 for the Network Card with network address 001AA09EF684 has been denied by the DHCP server 192.168.100.1 (The DHCP Server sent a DHCPNACK message).
    3/18/2009 9:36:33 AM, error: Service Control Manager [7011] - Timeout (30000 milliseconds) waiting for a transaction response from the mcmscsvc service.
    3/18/2009 9:38:02 AM, error: Service Control Manager [7031] - The McAfee Real-time Scanner service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.

    ==== End Of File ===========================
     
  6. 2009/03/18
    Sullysan

    Sullysan Inactive Thread Starter

    Joined:
    2009/03/18
    Messages:
    12
    Likes Received:
    0
    I hope that all got to you Pete C...Thanks for the response.

    Sully
     
  7. 2009/03/18
    PeteC

    PeteC SuperGeek Staff

    Joined:
    2002/05/10
    Messages:
    28,896
    Likes Received:
    389
    Thanks :)

    One of our trained malware analysts will take a look at your logs ASAP, but it may be a day or so before you get a response as they are always very busy. All logs are dealt with in the order received.

    Thank you for your patience.
     
  8. 2009/03/18
    Sullysan

    Sullysan Inactive Thread Starter

    Joined:
    2009/03/18
    Messages:
    12
    Likes Received:
    0
    No Problemo...any help will be extremely appreciated. I put an Liksis wrt160N router on recently to throw the WiFi signal to my PS3, and a new RCA modem from Comcast, but the problems still persist. When I do a hard re-boot on all components it seems to lessen the drops, but even the Comcast tech felt it is a hard drive issue. Thanks Pete C et al.

    Sully
     
  9. 2009/03/18
    PeteC

    PeteC SuperGeek Staff

    Joined:
    2002/05/10
    Messages:
    28,896
    Likes Received:
    389
  10. 2009/03/18
    Sullysan

    Sullysan Inactive Thread Starter

    Joined:
    2009/03/18
    Messages:
    12
    Likes Received:
    0
    Yep! Did that. All's well for Hard drive integrity...Thanks, Sully
     
  11. 2009/03/21
    Geri Lifetime Subscription

    Geri Inactive Alumni

    Joined:
    2003/03/02
    Messages:
    4,580
    Likes Received:
    7
    Hi Sully
    I'm not seeing anything jumping out at me.

    Lets try this one.

    Please download ATF Cleaner by Atribune.
    This program is for XP and Windows 2000, Vista only

    • Double-click ATF-Cleaner.exe to run the program.
      Under Main choose: Select All
      Click the Empty Selected button.
    If you use Firefox browser
    • Click Firefox at the top and choose: Select All
      Click the Empty Selected button.
      NOTE: If you would like to keep your saved passwords, please click No at the prompt.
    If you use Opera browser
    • Click Opera at the top and choose: Select All
      Click the Empty Selected button.
      NOTE: If you would like to keep your saved passwords, please click No at the prompt.
    Click Exit on the Main menu to close the program.
    For Technical Support, double-click the e-mail address located at the bottom of each menu.

    Now a scan.

    Please go HERE to run Panda's ActiveScan
    • Once you are on the Panda site click the Scan your PC button
    • A new window will open...click the Check Now button
    • Enter your Country
    • Enter your State/Province
    • Enter your e-mail address and click send
    • Select either Home User or Company
    • Click the big Scan Now button
    • If it wants to install an ActiveX component allow it
    • It will start downloading the files it requires for the scan (Note: It may take a couple of minutes)
    • When download is complete, click on My Computer to start the scan
    • When the scan completes, if anything malicious is detected, click the See Report button, then Save Report and save it to a convenient location. Post the contents of the ActiveScan report

    Thanks
    Geri
     
  12. 2009/03/22
    Sullysan

    Sullysan Inactive Thread Starter

    Joined:
    2009/03/18
    Messages:
    12
    Likes Received:
    0
    Thx Gerri:

    I will give this a tumble and see if anything helps!

    Sully

    PS I was born in Bremerton, lived in Grey's harbor a bit.

    Sully
     
  13. 2009/03/22
    Geri Lifetime Subscription

    Geri Inactive Alumni

    Joined:
    2003/03/02
    Messages:
    4,580
    Likes Received:
    7
    Hi Sully
    I'm on the other side of the mountain.

    Geri
     
  14. 2009/03/22
    Sullysan

    Sullysan Inactive Thread Starter

    Joined:
    2009/03/18
    Messages:
    12
    Likes Received:
    0
    So far , so good Geri. Panda seems to have took care of it. Question? I have used lot's of different malware removal programs. What makes this one so much more efficent in your opinion? Thanks again for the help!

    Sully
     
  15. 2009/03/22
    Geri Lifetime Subscription

    Geri Inactive Alumni

    Joined:
    2003/03/02
    Messages:
    4,580
    Likes Received:
    7
    Hi
    Could you post the log from Panda if you saved it.

    Panda is a on line virus scanner and will remove certian infections, unlike Kaspersky which is just a scanner only.

    Geri
     
  16. 2009/03/22
    Sullysan

    Sullysan Inactive Thread Starter

    Joined:
    2009/03/18
    Messages:
    12
    Likes Received:
    0
    Sure Geri...as soon as I feel my way around Panda so I know where to look, etc.

    Thanks again!

    Sully

    PS:

    I'm leaving in the morn to teach disabled skiers in Winter Park and Steamboat for a couple of weeks. I have access to PC's there, but I'm not sure what data I can get for you pronto via those systems.

    Sully
     
  17. 2009/03/22
    Sullysan

    Sullysan Inactive Thread Starter

    Joined:
    2009/03/18
    Messages:
    12
    Likes Received:
    0
    Geri:

    Weird thing...went to Panda "scan other files ", set scam for "C" drive, found 5 infected 13% in and went blue screen on me. Yikes!
    Full re-boot, running same "C" drive scan, 40%% on and 5 files found infected, still running...so far. This is just getting beyond bizzare. I'll let you know what happens...

    Sully
     
  18. 2009/04/12
    Sullysan

    Sullysan Inactive Thread Starter

    Joined:
    2009/03/18
    Messages:
    12
    Likes Received:
    0
    Page load error solved!

    Geri, et al:

    Thanks for your help. The issue was not malware per se, but a firmware problem w/my new WRT160N Linksys router. I replaced firmware v11 w/the prev. v8 and am in cracking good order now.

    BFN,

    Sully
     
  19. 2009/04/12
    Geri Lifetime Subscription

    Geri Inactive Alumni

    Joined:
    2003/03/02
    Messages:
    4,580
    Likes Received:
    7
    Hi
    Ok thanks for letting me know.

    Geri
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.