1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Inactive Cannot open any programs

Discussion in 'Malware and Virus Removal Archive' started by mmcglonea, 2010/04/04.

Thread Status:
Not open for further replies.
  1. 2010/04/04
    mmcglonea

    mmcglonea Inactive Thread Starter

    Joined:
    2010/04/04
    Messages:
    4
    Likes Received:
    0
    [Inactive] Cannot open any programs

    Clearly some sort of virus got to my computer -- I was able to run my symantec antivirus software and then after a reboot, no desktop programs would run. I can open Word through documents, but not programs. I went to install antivirus/malware software but everytime I run the program it asks me to choose a program to run it with and nothing will work.
     
  2. 2010/04/04
    Admin.

    Admin. Administrator Administrator Staff

    Joined:
    2001/12/30
    Messages:
    6,687
    Likes Received:
    107
    Hi,

    Read this post as indicated at the top of this forum & follow the instructions.

    If you can't run these programs, post back & wait for a Malware expert to make suggestions.
     

  3. to hide this advert.

  4. 2010/04/04
    mmcglonea

    mmcglonea Inactive Thread Starter

    Joined:
    2010/04/04
    Messages:
    4
    Likes Received:
    0
    DDS (Ver_10-03-17.01) - NTFSx86
    Run by mcglonma at 1:44:43.12 on Sun 04/04/2010
    Internet Explorer: 7.0.5730.13
    Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.759.325 [GMT -4:00]

    AV: Symantec Endpoint Protection *On-access scanning disabled* (Updated) {FB06448E-52B8-493A-90F3-E43226D3305C}
    FW: Symantec Endpoint Protection *enabled* {BE898FE3-CD0B-4014-85A9-03DB9923DDB6}

    ============== Running Processes ===============

    C:\WINDOWS\System32\Novell\XTAgent.exe
    C:\WINDOWS\system32\svchost -k DcomLaunch
    svchost.exe
    C:\WINDOWS\System32\svchost.exe -k netsvcs
    C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
    C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
    C:\Program Files\Symantec AntiVirus\Smc.exe
    svchost.exe
    C:\WINDOWS\System32\svchost.exe -k eapsvcs
    svchost.exe
    C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    C:\WINDOWS\system32\spoolsv.exe
    svchost.exe
    C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
    C:\Program Files\Novell\ZENworks\nalntsrv.exe
    C:\Program Files\Intel\Wireless\Bin\OProtSvc.exe
    C:\WINDOWS\system32\HPZipm12.exe
    C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
    C:\Program Files\Novell\ZENworks\RemoteManagement\RMAgent\ZenRem32.exe
    C:\WINDOWS\system32\svchost.exe -k imgsvc
    C:\Program Files\Symantec AntiVirus\Rtvscan.exe
    C:\Program Files\Novell\ZENworks\wm.exe
    C:\WINDOWS\system32\SearchIndexer.exe
    C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Symantec AntiVirus\SmcGui.exe
    C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\iTunes\iTunes.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\Novell\ZENworks\WMRUNDLL.EXE
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Documents and Settings\mcglonma\Local Settings\Temporary Internet Files\Content.IE5\GTZPV1CU\dds[1].scr
    C:\Program Files\Common Files\Symantec Shared\COH\coh32.exe

    ============== Pseudo HJT Report ===============

    uInternet Settings,ProxyOverride = *.local
    BHO: &Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - c:\progra~1\yahoo!\companion\installs\cpn\yt.dll
    BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
    BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre1.6.0_07\bin\ssv.dll
    BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
    BHO: Skype add-on for Internet Explorer: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
    BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.5.4723.1820\swg.dll
    BHO: SingleInstance Class: {fdad4da1-61a2-4fd8-9c17-86f7ac245081} - c:\progra~1\yahoo!\companion\installs\cpn\YTSingleInstance.dll
    TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
    TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\progra~1\yahoo!\companion\installs\cpn\yt.dll
    uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
    uRun: [Aim6]
    uRun: [Skype] "c:\program files\skype\phone\Skype.exe" /nosplash /minimized
    uRun: [swg] c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe
    uRun: [Messenger (Yahoo!)] "c:\progra~1\yahoo!\messenger\YahooMessenger.exe" -quiet
    mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
    mRun: [NDPS] c:\windows\system32\dpmw32.exe
    mRun: [ZENRC Tray Icon] c:\windows\system32\zentray.exe
    mRun: [NWTRAY] NWTRAY.EXE
    mRun: [AGRSMMSG] AGRSMMSG.exe
    mRun: [ccApp] "c:\program files\common files\symantec shared\ccApp.exe "
    mRun: [HP Software Update] "c:\program files\hp\hp software update\HPWuSchd2.exe "
    mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
    mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe "
    mRun: [Sprint SmartView] "c:\program files\sprint\sprint smartview\SprintSV.exe" -a
    mRun: [VX1000] c:\windows\vVX1000.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\applic~1.lnk - c:\program files\novell\zenworks\NalView.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\hpdigi~1.lnk - c:\program files\hp\digital imaging\bin\hpqtra08.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\hpimag~1.lnk - c:\program files\hp\digital imaging\bin\hpqthb08.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\window~1.lnk - c:\program files\windows desktop search\WindowsSearch.exe
    uPolicies-explorer: ForceClassicControlPanel = 1 (0x1)
    uPolicies-explorer: NoDevMgrUpdate = 1 (0x1)
    mPolicies-system: CompatibleRUPSecurity = 1 (0x1)
    IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
    IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\MSMSGS.EXE
    IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0_07\bin\ssv.dll
    IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~2\office12\ONBttnIE.dll
    IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
    IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office12\REFIEBAR.DLL
    IE: {C1994287-422F-47aa-8E5E-6323E210A125} - {4B5F7606-8666-4D5A-9780-DB92A9D8812B} - c:\program files\novell\zenworks\AxNalServer.dll
    DPF: {05D96F71-87C6-11D3-9BE4-00902742D6E0} - hxxps://quickplace1.udayton.edu/qp2.cab
    DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} - hxxp://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
    DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1220623583812
    DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} - hxxps://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab
    DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} - hxxp://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab
    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
    Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
    Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
    Notify: igfxcui - igfxsrvc.dll
    Notify: IntelWireless - c:\program files\intel\wireless\bin\LgNotify.dll
    Notify: NavLogon - c:\windows\system32\NavLogon.dll
    Notify: NetIdentity Notification - c:\windows\system32\novell\XtNotify.dll
    SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
    SEH: Application Explorer: {763370c4-268e-4308-a60c-d8da0342be32} - c:\program files\novell\zenworks\NalShell.dll
    SEH: Windows Desktop Search Namespace Manager: {56f9679e-7826-4c84-81f3-532071a8bcc5} - c:\program files\windows desktop search\MSNLNamespaceMgr.dll
    LSA: Authentication Packages = msv1_0 nwv1_0

    ============= SERVICES / DRIVERS ===============

    R2 BlankScr;HBDevice;c:\windows\system32\drivers\blankscr.sys [2005-5-23 6899]
    R2 ccEvtMgr;Symantec Event Manager;c:\program files\common files\symantec shared\ccSvcHst.exe [2009-9-27 108392]
    R2 ccSetMgr;Symantec Settings Manager;c:\program files\common files\symantec shared\ccSvcHst.exe [2009-9-27 108392]
    R2 Remote Management Agent;Novell ZENworks Remote Management Agent;c:\program files\novell\zenworks\remotemanagement\rmagent\ZenRem32.exe [2006-5-9 167936]
    R2 Symantec AntiVirus;Symantec Endpoint Protection;c:\program files\symantec antivirus\Rtvscan.exe [2009-9-27 2440632]
    R2 XTAgent;Novell XTier Agent Services;c:\windows\system32\novell\xtagent.exe [2007-1-10 61440]
    R3 COH_Mon;COH_Mon;c:\windows\system32\drivers\COH_Mon.sys [2008-9-11 23888]
    R3 Darpan;Darpan;c:\windows\system32\drivers\Darpan.sys [2005-5-23 2773]
    R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\common files\symantec shared\eengine\EraserUtilRebootDrv.sys [2009-9-17 102448]
    R3 NAVENG;NAVENG;c:\progra~1\common~1\symant~1\virusd~1\20100403.020\NAVENG.SYS [2010-4-3 84912]
    R3 NAVEX15;NAVEX15;c:\progra~1\common~1\symant~1\virusd~1\20100403.020\NAVEX15.SYS [2010-4-3 1324720]
    S2 gupdate;Google Update Service (gupdate);c:\program files\google\update\GoogleUpdate.exe [2010-2-21 135664]
    S3 Smcinst;Symantec Auto-upgrade Agent;c:\program files\symantec antivirus\smclu\setup\smcinst.exe --> c:\program files\symantec antivirus\smclu\setup\smcinst.exe [?]
    S3 WinRM;Windows Remote Management (WS-Management);c:\windows\system32\svchost.exe -k WINRM [2008-7-28 14336]
    S4 vsdatant;vsdatant;a --> a [?]

    ============== File Associations ===============

    .exe=secfile

    =============== Created Last 30 ================


    ==================== Find3M ====================

    2010-02-17 20:36:22 162048 ----a-w- c:\windows\system32\drivers\WpsHelper.sys
    2010-01-05 10:00:29 832512 ----a-w- c:\windows\system32\wininet.dll
    2010-01-05 10:00:21 78336 ----a-w- c:\windows\system32\ieencode.dll
    2010-01-05 10:00:20 17408 ----a-w- c:\windows\system32\corpol.dll

    ============= FINISH: 1:45:37.42 ===============


    Microsoft Windows XP Professional
    Boot Device: \Device\HarddiskVolume1
    Install Date: 11/6/2008 10:51:44 AM
    System Uptime: 4/2/2010 3:04:01 PM (34 hours ago)

    Motherboard: Intel Corporation | | Alviso
    Processor: Intel(R) Pentium(R) M processor 1.73GHz | uFCPGA | 795/133mhz

    ==== Disk Partitions =========================

    C: is FIXED (NTFS) - 56 GiB total, 23.063 GiB free.
    D: is CDROM ()

    ==== Disabled Device Manager Items =============

    ==== System Restore Points ===================

    RP395: 1/16/2010 1:40:15 PM - System Checkpoint
    RP396: 1/21/2010 7:09:39 PM - System Checkpoint
    RP397: 1/22/2010 6:01:31 AM - Software Distribution Service 3.0
    RP398: 1/23/2010 1:15:26 PM - System Checkpoint
    RP399: 1/24/2010 2:28:46 PM - System Checkpoint
    RP400: 1/25/2010 10:22:52 PM - System Checkpoint
    RP401: 1/26/2010 11:02:34 PM - System Checkpoint
    RP402: 1/27/2010 9:10:43 AM - Software Distribution Service 3.0
    RP403: 1/28/2010 1:24:37 PM - System Checkpoint
    RP404: 1/29/2010 2:59:21 PM - System Checkpoint
    RP405: 1/30/2010 3:02:05 PM - System Checkpoint
    RP406: 1/31/2010 3:54:52 PM - System Checkpoint
    RP407: 2/1/2010 6:37:59 PM - System Checkpoint
    RP408: 2/2/2010 7:15:24 PM - System Checkpoint
    RP409: 2/3/2010 8:21:14 PM - System Checkpoint
    RP410: 2/4/2010 8:57:32 PM - System Checkpoint
    RP411: 2/6/2010 3:30:46 AM - System Checkpoint
    RP412: 2/7/2010 4:09:57 AM - System Checkpoint
    RP413: 2/8/2010 10:16:37 AM - System Checkpoint
    RP414: 2/9/2010 10:49:36 AM - System Checkpoint
    RP415: 2/10/2010 12:42:57 PM - System Checkpoint
    RP416: 2/11/2010 3:58:07 PM - System Checkpoint
    RP417: 2/12/2010 4:26:43 PM - System Checkpoint
    RP418: 2/13/2010 5:26:38 PM - System Checkpoint
    RP419: 2/14/2010 7:13:28 PM - System Checkpoint
    RP420: 2/15/2010 7:46:40 PM - System Checkpoint
    RP421: 2/16/2010 10:56:18 PM - System Checkpoint
    RP422: 2/18/2010 1:03:50 AM - System Checkpoint
    RP423: 2/19/2010 1:39:46 PM - System Checkpoint
    RP424: 2/20/2010 2:43:35 PM - System Checkpoint
    RP425: 2/21/2010 3:59:16 PM - System Checkpoint
    RP426: 2/22/2010 6:31:19 PM - System Checkpoint
    RP427: 2/23/2010 12:13:47 PM - Software Distribution Service 3.0
    RP428: 2/24/2010 12:49:22 PM - System Checkpoint
    RP429: 2/25/2010 8:08:09 PM - System Checkpoint
    RP430: 2/26/2010 8:17:00 PM - System Checkpoint
    RP431: 2/27/2010 9:01:16 PM - System Checkpoint
    RP432: 2/28/2010 10:06:02 PM - System Checkpoint
    RP433: 3/2/2010 1:13:04 AM - System Checkpoint
    RP434: 3/3/2010 1:20:07 AM - System Checkpoint
    RP435: 3/4/2010 1:18:58 PM - System Checkpoint
    RP436: 3/5/2010 1:23:09 PM - System Checkpoint
    RP437: 3/6/2010 7:45:09 PM - System Checkpoint
    RP438: 3/7/2010 10:24:14 PM - System Checkpoint
    RP439: 3/9/2010 2:53:15 PM - System Checkpoint
    RP440: 3/10/2010 10:25:02 AM - Software Distribution Service 3.0
    RP441: 3/11/2010 1:49:32 PM - System Checkpoint
    RP442: 3/12/2010 4:41:27 PM - System Checkpoint
    RP443: 3/13/2010 6:09:19 PM - System Checkpoint
    RP444: 3/14/2010 7:36:53 PM - System Checkpoint
    RP445: 3/15/2010 8:10:21 PM - System Checkpoint
    RP446: 3/16/2010 8:20:46 PM - System Checkpoint
    RP447: 3/17/2010 9:20:43 PM - System Checkpoint
    RP448: 3/18/2010 10:20:48 PM - System Checkpoint
    RP449: 3/19/2010 11:38:10 PM - System Checkpoint
    RP450: 3/21/2010 12:20:45 AM - System Checkpoint
    RP451: 3/22/2010 8:12:05 PM - System Checkpoint
    RP452: 3/23/2010 6:05:22 AM - Software Distribution Service 3.0
    RP453: 3/23/2010 2:08:59 PM - Software Distribution Service 3.0
    RP454: 3/25/2010 3:36:05 PM - System Checkpoint
    RP455: 3/26/2010 4:05:37 PM - System Checkpoint
    RP456: 3/30/2010 9:32:16 AM - System Checkpoint
    RP457: 3/31/2010 4:18:16 PM - System Checkpoint
    RP458: 4/1/2010 6:08:09 PM - System Checkpoint
    RP459: 4/2/2010 9:35:30 PM - System Checkpoint

    ==== Installed Programs ======================


    2007 Microsoft Office Suite Service Pack 1 (SP1)
    2600
    2600_Help
    2600Trb
    Acrobat.com
    Adobe AIR
    Adobe Flash Player 10 ActiveX
    Adobe Reader 9
    Adobe Shockwave Player
    Agere Systems AC'97 Modem
    AIM 6
    AiO_Scan
    AiOSoftware
    ALPS Touch Pad Driver
    Apple Mobile Device Support
    Apple Software Update
    Bonjour
    BufferChm
    Copy
    CP_AtenaShokunin1Config
    cp_dwShrek2Albums1
    cp_dwShrek2Cards1
    CreativeProjects
    CreativeProjectsTemplates
    Critical Update for Windows Media Player 11 (KB959772)
    CueTour
    Destinations
    Director
    DocProc
    DocumentViewer
    EPAFactory Endpoint Analysis Plugin 4.5.5.2 For HF4
    Facebook Plug-In
    Fax
    Google Toolbar for Internet Explorer
    Google Update Helper
    Hotfix for Windows Media Format 11 SDK (KB929399)
    Hotfix for Windows Media Player 11 (KB939683)
    Hotfix for Windows XP (KB915800-v4)
    Hotfix for Windows XP (KB952287)
    Hotfix for Windows XP (KB969084)
    Hotfix for Windows XP (KB970653-v3)
    Hotfix for Windows XP (KB976098-v2)
    Hotfix for Windows XP (KB979306)
    HP Extended Capabilities 4.7
    HP Image Zone 4.7
    HP Product Assistant
    HP PSC & OfficeJet 4.7
    HP Software Update
    HPSystemDiagnostics
    IBM Lotus Sametime Connect 7.5.1
    InstantShare
    Intel(R) Graphics Media Accelerator Driver for Mobile
    Intel(R) PROSet/Wireless Software
    iTunes
    Java(TM) 6 Update 7
    LiveUpdate 3.3 (Symantec Corporation)
    Macromedia Authorware Web Player
    MarketResearch
    mCore
    mDriver
    mDrWiFi
    mEoU.msi
    mHelp
    Microsoft .NET Framework 1.1
    Microsoft .NET Framework 1.1 Security Update (KB953297)
    Microsoft .NET Framework 2.0 Service Pack 1
    Microsoft .NET Framework 3.0 Service Pack 1
    Microsoft .NET Framework 3.5
    Microsoft Compression Client Pack 1.0 for Windows XP
    Microsoft Internationalized Domain Names Mitigation APIs
    Microsoft National Language Support Downlevel APIs
    Microsoft Office Access MUI (English) 2007
    Microsoft Office Access Setup Metadata MUI (English) 2007
    Microsoft Office Enterprise 2007
    Microsoft Office Excel 2007 Get Started Tab
    Microsoft Office Excel MUI (English) 2007
    Microsoft Office FrontPage 2003
    Microsoft Office Groove MUI (English) 2007
    Microsoft Office Groove Setup Metadata MUI (English) 2007
    Microsoft Office InfoPath MUI (English) 2007
    Microsoft Office OneNote MUI (English) 2007
    Microsoft Office Outlook MUI (English) 2007
    Microsoft Office PowerPoint 2007 Get Started Tab
    Microsoft Office PowerPoint MUI (English) 2007
    Microsoft Office Proof (English) 2007
    Microsoft Office Proof (French) 2007
    Microsoft Office Proof (Spanish) 2007
    Microsoft Office Proofing (English) 2007
    Microsoft Office Publisher MUI (English) 2007
    Microsoft Office Shared MUI (English) 2007
    Microsoft Office Shared Setup Metadata MUI (English) 2007
    Microsoft Office Word 2007 Get Started Tab
    Microsoft Office Word MUI (English) 2007
    Microsoft Silverlight
    Microsoft Software Update for Web Folders (English) 12
    Microsoft User-Mode Driver Framework Feature Pack 1.0
    Microsoft Visual C++ 2005 Redistributable
    mIWA
    mIWCA
    mLogView
    mMHouse
    Move Media Player
    mPfMgr
    mPfWiz
    mProSafe
    MSXML 4.0 SP2 (KB936181)
    MSXML 4.0 SP2 (KB954430)
    MSXML 4.0 SP2 (KB973688)
    MSXML 6.0 Parser (KB925673)
    mWlsSafe
    mXML
    mZConfig
    Nero OEM
    NICI (Shared) U.S./Worldwide (128 bit) (2.7.3-1)
    NMAS Challenge Response Method
    NMAS Client
    Novell Client for Windows
    PanoStandAlone
    PhotoGallery
    PowerDVD
    ProductContext
    QFolder
    QuickTime
    Readme
    RealPlayer Enterprise
    Realtek AC'97 Audio
    REALTEK Gigabit and Fast Ethernet NIC Driver
    Scan
    ScannerCopy
    Security Update for 2007 Microsoft Office System (KB951550)
    Security Update for 2007 Microsoft Office System (KB951944)
    Security Update for 2007 Microsoft Office System (KB969559)
    Security Update for 2007 Microsoft Office System (KB978380)
    Security Update for CAPICOM (KB931906)
    Security Update for Microsoft Office Excel 2007 (KB978382)
    Security Update for Microsoft Office OneNote 2007 (KB950130)
    Security Update for Microsoft Office Outlook 2007 (KB972363)
    Security Update for Microsoft Office PowerPoint 2007 (KB957789)
    Security Update for Microsoft Office Publisher 2007 (KB969693)
    Security Update for Microsoft Office system 2007 (972581)
    Security Update for Microsoft Office system 2007 (KB969613)
    Security Update for Microsoft Office system 2007 (KB974234)
    Security Update for Microsoft Office Visio Viewer 2007 (KB973709)
    Security Update for Windows Internet Explorer 7 (KB938127-v2)
    Security Update for Windows Internet Explorer 7 (KB953838)
    Security Update for Windows Internet Explorer 7 (KB956390)
    Security Update for Windows Internet Explorer 7 (KB958215)
    Security Update for Windows Internet Explorer 7 (KB960714)
    Security Update for Windows Internet Explorer 7 (KB961260)
    Security Update for Windows Internet Explorer 7 (KB963027)
    Security Update for Windows Internet Explorer 7 (KB969897)
    Security Update for Windows Internet Explorer 7 (KB972260)
    Security Update for Windows Internet Explorer 7 (KB974455)
    Security Update for Windows Internet Explorer 7 (KB976325)
    Security Update for Windows Internet Explorer 7 (KB978207)
    Security Update for Windows Media Player (KB952069)
    Security Update for Windows Media Player (KB954155)
    Security Update for Windows Media Player (KB968816)
    Security Update for Windows Media Player (KB973540)
    Security Update for Windows Media Player 11 (KB936782)
    Security Update for Windows Media Player 11 (KB954154)
    Security Update for Windows Search 4 - KB963093
    Security Update for Windows XP (KB923561)
    Security Update for Windows XP (KB938464)
    Security Update for Windows XP (KB941569)
    Security Update for Windows XP (KB946648)
    Security Update for Windows XP (KB950762)
    Security Update for Windows XP (KB950974)
    Security Update for Windows XP (KB951066)
    Security Update for Windows XP (KB951376-v2)
    Security Update for Windows XP (KB951698)
    Security Update for Windows XP (KB951748)
    Security Update for Windows XP (KB952004)
    Security Update for Windows XP (KB952954)
    Security Update for Windows XP (KB953839)
    Security Update for Windows XP (KB954211)
    Security Update for Windows XP (KB954459)
    Security Update for Windows XP (KB954600)
    Security Update for Windows XP (KB955069)
    Security Update for Windows XP (KB956391)
    Security Update for Windows XP (KB956572)
    Security Update for Windows XP (KB956744)
    Security Update for Windows XP (KB956802)
    Security Update for Windows XP (KB956803)
    Security Update for Windows XP (KB956841)
    Security Update for Windows XP (KB956844)
    Security Update for Windows XP (KB957095)
    Security Update for Windows XP (KB957097)
    Security Update for Windows XP (KB958644)
    Security Update for Windows XP (KB958687)
    Security Update for Windows XP (KB958690)
    Security Update for Windows XP (KB958869)
    Security Update for Windows XP (KB959426)
    Security Update for Windows XP (KB960225)
    Security Update for Windows XP (KB960715)
    Security Update for Windows XP (KB960803)
    Security Update for Windows XP (KB960859)
    Security Update for Windows XP (KB961371)
    Security Update for Windows XP (KB961373)
    Security Update for Windows XP (KB961501)
    Security Update for Windows XP (KB968537)
    Security Update for Windows XP (KB969059)
    Security Update for Windows XP (KB969898)
    Security Update for Windows XP (KB969947)
    Security Update for Windows XP (KB970238)
    Security Update for Windows XP (KB970430)
    Security Update for Windows XP (KB971468)
    Security Update for Windows XP (KB971486)
    Security Update for Windows XP (KB971557)
    Security Update for Windows XP (KB971633)
    Security Update for Windows XP (KB971657)
    Security Update for Windows XP (KB971961)
    Security Update for Windows XP (KB972270)
    Security Update for Windows XP (KB973346)
    Security Update for Windows XP (KB973354)
    Security Update for Windows XP (KB973507)
    Security Update for Windows XP (KB973525)
    Security Update for Windows XP (KB973869)
    Security Update for Windows XP (KB973904)
    Security Update for Windows XP (KB974112)
    Security Update for Windows XP (KB974318)
    Security Update for Windows XP (KB974392)
    Security Update for Windows XP (KB974571)
    Security Update for Windows XP (KB975025)
    Security Update for Windows XP (KB975467)
    Security Update for Windows XP (KB975560)
    Security Update for Windows XP (KB975561)
    Security Update for Windows XP (KB975713)
    Security Update for Windows XP (KB977165)
    Security Update for Windows XP (KB977914)
    Security Update for Windows XP (KB978037)
    Security Update for Windows XP (KB978251)
    Security Update for Windows XP (KB978262)
    Security Update for Windows XP (KB978706)
    SkinsHP1
    Skype Toolbars
    Skypeâ„¢ 4.1
    Sprint SmartView
    Symantec Endpoint Protection
    TrayApp
    Unload
    Update for 2007 Microsoft Office System (KB967642)
    Update for Microsoft Office 2007 Help for Common Features (KB963673)
    Update for Microsoft Office Access 2007 Help (KB963663)
    Update for Microsoft Office Excel 2007 Help (KB963678)
    Update for Microsoft Office InfoPath 2007 (KB976416)
    Update for Microsoft Office Infopath 2007 Help (KB963662)
    Update for Microsoft Office OneNote 2007 Help (KB963670)
    Update for Microsoft Office Outlook 2007 Help (KB963677)
    Update for Microsoft Office Powerpoint 2007 Help (KB963669)
    Update for Microsoft Office Publisher 2007 Help (KB963667)
    Update for Microsoft Office Script Editor Help (KB963671)
    Update for Microsoft Office Word 2007 (KB974561)
    Update for Microsoft Office Word 2007 Help (KB963665)
    Update for Microsoft Windows (KB971513)
    Update for Outlook 2007 Junk Email Filter (kb979895)
    Update for Windows XP (KB898461)
    Update for Windows XP (KB951072-v2)
    Update for Windows XP (KB951618-v2)
    Update for Windows XP (KB951978)
    Update for Windows XP (KB955759)
    Update for Windows XP (KB955839)
    Update for Windows XP (KB967715)
    Update for Windows XP (KB968389)
    Update for Windows XP (KB971737)
    Update for Windows XP (KB973687)
    Update for Windows XP (KB973815)
    WebFldrs XP
    WebReg
    Windows CHM To HTML 2008
    Windows Genuine Advantage Validation Tool (KB892130)
    Windows Internet Explorer 7
    Windows Management Framework Core
    Windows Media Format 11 runtime
    Windows Media Player 11
    Windows Presentation Foundation
    Windows Search 4.0
    Write-N-Cite
    XML Paper Specification Shared Components Pack 1.0
    Yahoo! Messenger
    Yahoo! Toolbar
    ZENworks Desktop Management Agent

    ==== Event Viewer Messages From Past Week ========

    3/30/2010 8:29:15 PM, error: DCOM [10005] - DCOM got error "%1058" attempting to start the service upnphost with arguments " " in order to run the server: {204810B9-73B2-11D4-BF42-00B0D0118B56}

    ==== End Of File ===========================
     
  5. 2010/04/04
    crunchie

    crunchie Inactive

    Joined:
    2010/01/12
    Messages:
    982
    Likes Received:
    5
    Download Malwarebytes' Anti-Malware (http://www.majorgeeks.com/Malwarebytes_Anti-Malware_d5756.html) to your desktop.

    * Double-click mbam-setup.exe and follow the prompts to install the program.
    * At the end, be sure to checkmark the Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
    * If an update is found, it will download and install the latest version.
    * Download the update from here if you have problems.
    * Once the program has loaded, select Perform full scan, then click Scan.
    * When the scan is complete, click OK, then Show Results to view the results.
    * Be sure that everything is checked, and click Remove Selected.
    * When completed, a log will open in Notepad.
    * Post the log back here.

    The log can also be found here:
    C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-date.txt
    Or at C:\Program Files\Malwarebytes' Anti-Malware\Logs\log-date.txt

    Make sure that you restart the computer.

    ==============

    Download HijackThis Executable from here. Save it to your desktop.
    Start HJT & press the "Do a system scan and save a log file" button. When the scan is finished a window will pop up giving you the option of where to save it. Save it to desktop where it is easy to access. Open the log file and then go to the format Tab and make sure that wordwrap is unchecked. Copy the entire contents of the file & paste it into the body of your post. DO NOT FIX ANYTHING YET. Most of what is there is necessary for the running of your system.
     
  6. 2010/04/05
    mmcglonea

    mmcglonea Inactive Thread Starter

    Joined:
    2010/04/04
    Messages:
    4
    Likes Received:
    0
    I cannot finish installing any downloads... once I get to the option to save/run -- if I run it, it prompts me to select a program to "open with" nothing from the list will open a program -- if I save it, and try to open it by double clicking, I am still prompted to do the same.
     
  7. 2010/04/05
    crunchie

    crunchie Inactive

    Joined:
    2010/01/12
    Messages:
    982
    Likes Received:
    5
  8. 2010/04/06
    mmcglonea

    mmcglonea Inactive Thread Starter

    Joined:
    2010/04/04
    Messages:
    4
    Likes Received:
    0
    THANK YOU THANK YOU THANK YOU!!! Programs finally launch again

    Malwarebytes' Anti-Malware 1.45
    www.malwarebytes.org

    Database version: 3961

    Windows 5.1.2600 Service Pack 3
    Internet Explorer 7.0.5730.13

    4/6/2010 6:39:52 PM
    mbam-log-2010-04-06 (18-39-52).txt

    Scan type: Full scan (C:\|D:\|)
    Objects scanned: 185876
    Time elapsed: 1 hour(s), 1 minute(s), 15 second(s)

    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 0
    Registry Values Infected: 3
    Registry Data Items Infected: 1
    Folders Infected: 0
    Files Infected: 0

    Memory Processes Infected:
    (No malicious items detected)

    Memory Modules Infected:
    (No malicious items detected)

    Registry Keys Infected:
    (No malicious items detected)

    Registry Values Infected:
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\forceclassiccontrolpanel (Hijack.ControlPanelStyle) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\.exe\shell\open\command\(default) (Hijack.ExeFile) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\secfile\shell\open\command\(default) (Rogue.MultipleAV) -> Quarantined and deleted successfully.

    Registry Data Items Infected:
    HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\(default) (Hijack.StartMenuInternet) -> Bad: ( "C:\Documents and Settings\mcglonma\Local Settings\Application Data\av.exe" /START "C:\Program Files\Internet Explorer\iexplore.exe ") Good: (iexplore.exe) -> Quarantined and deleted successfully.

    Folders Infected:
    (No malicious items detected)

    Files Infected:
    (No malicious items detected)
     
  9. 2010/04/06
    crunchie

    crunchie Inactive

    Joined:
    2010/01/12
    Messages:
    982
    Likes Received:
    5
    Excellent :).

    Please use the Internet Explorer browser (or FireFox with IETab), and do an online scan with [color= "blue"]Kaspersky Online Scanner[/color]

    Note: If you have used this particular scanner before, you MAY HAVE TO UNINSTALL the program through Add/Remove Programs before downloading the new ActiveX component

    Click Yes, when prompted to install its ActiveX component.
    (Note.. for Internet [color= "#3333FF"]Explorer 7[/color] users: If at any time you have trouble with the "Accept" button of the license, click on the "Zoom" tool located at the bottom right of the IE window and set the zoom to 75 %. Once the license has been accepted, reset to 100%.)
    The program launches and downloads the latest definition files.
    • Once the files are downloaded click on Next
    • Click on Scan Settings and configure as follows:
      • Scan using the following Anti-Virus database:
        • [color= "#6666CC"]Extended[/color]
      • Scan Options:
        • [color= "#6666CC"]Scan Archives[/color]
        • [color= "#6666CC"]Scan Mail Bases[/color]
    • Click OK and, under select a target to scan, select My Computer
    When the scan is done, in the [color= "Navy"]Scan is completed [/color]window (below), any infection is displayed.
    There is no option to clean/disinfect, however, we need to analyze the information on the report.

    To obtain the report:
    Click on: Save Report As (above - red blinking arrow)
    Next, in the [color= "Navy"]Save as [/color]prompt, [color= "navy"]Save in[/color] area, select: Desktop
    In the [color= "navy"]File name[/color] area, use KScan, or something similar
    In [color= "navy"]Save as type[/color], click the drop arrow and select: Text file [*.txt]
    Then, click: Save
    Please post the [color= "Navy"]Kaspersky Online Scanner Report [/color]in your reply.
     
Thread Status:
Not open for further replies.

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.