1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Inactive [InActive] Constantly encountering a problem

Discussion in 'Malware and Virus Removal Archive' started by pblnc, 2009/03/08.

Thread Status:
Not open for further replies.
  1. 2009/03/08
    pblnc

    pblnc Inactive Thread Starter

    Joined:
    2009/03/08
    Messages:
    1
    Likes Received:
    0
    A number of programs keep crashing after a few minutes with the message "--- has encountered a problem and needs to close ".

    I was able to keep Internet Explorer open long enough to install Firefox, which works fine so I can at least access the internet, but Windows Live Mail, Messenger and a few other non-Windows programs keep crashing.

    AVG hasn't picked up any viruses... please help. Thanks! :eek:

    DDS logs below:

    Internet Explorer: 7.0.5730.13 BrowserJavaVersion: 1.6.0_11
    Microsoft Windows XP Home Edition 5.1.2600.3.1252.44.1033.18.1022.289 [GMT 0:00]

    AV: AVG 7.5.557 *On-access scanning enabled* (Updated)
    FW: Norton Internet Worm Protection *disabled*

    ============== Running Processes ===============

    C:\WINDOWS\system32\svchost -k DcomLaunch
    svchost.exe
    C:\WINDOWS\System32\svchost.exe -k netsvcs
    svchost.exe
    svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    C:\Program Files\Kontiki\KService.exe
    C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\WINDOWS\System32\snmp.exe
    C:\WINDOWS\system32\svchost.exe -k imgsvc
    C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
    C:\WINDOWS\system32\RUNDLL32.EXE
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\Program Files\HP\QuickPlay\QPService.exe
    C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
    C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
    C:\Program Files\Macrogaming\SweetIM\SweetIM.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoemon.exe
    C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
    C:\PROGRA~1\HPQ\Shared\HPQTOA~1.EXE
    C:\PROGRA~1\MYWEBS~1\bar\2.bin\m3SrchMn.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Nokia\Nokia PC Suite 7\PCSync2.exe
    C:\Program Files\Nokia\Nokia PC Suite 7\PCSuite.exe
    C:\Program Files\Samsung\Digimax Viewer 2.0\STImgBrowser.exe
    C:\WINDOWS\FSScrCtl.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe
    C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
    C:\Program Files\Common Files\Nokia\MPAPI\MPAPI3s.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\Program Files\PC Connectivity Solution\Transports\NclUSBSrv.exe
    C:\Program Files\PC Connectivity Solution\Transports\NclRSSrv.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Documents and Settings\Philippa\Desktop\dds.scr

    ============== Pseudo HJT Report ===============

    uSearch Page = hxxp://www.google.com
    uSearch Bar = hxxp://www.google.com/ie
    uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
    uInternet Connection Wizard,ShellNext = hxxp://www.nokia.com/support/tutorials/PCsuite/english
    uInternet Settings,ProxyOverride = 127.0.0.1
    uSearchAssistant = hxxp://www.google.com/ie
    uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
    mSearchAssistant = hxxp://www.google.com/ie
    uURLSearchHooks: H - No File
    uURLSearchHooks: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn0\yt.dll
    uURLSearchHooks: H - No File
    uURLSearchHooks: N/A: {00a6faf6-072e-44cf-8957-5838f569a31d} - c:\program files\mywebsearch\srchastt\2.bin\MWSSRCAS.DLL
    uURLSearchHooks: BTjunkie Toolbar: {1a71246c-3eb0-4d6c-af77-3ab756017c3a} - c:\program files\btjunkie\tbBTj1.dll
    BHO: MyWebSearch Search Assistant BHO: {00a6faf1-072e-44cf-8957-5838f569a31d} - c:\program files\mywebsearch\srchastt\2.bin\MWSSRCAS.DLL
    BHO: Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - c:\program files\yahoo!\companion\installs\cpn0\yt.dll
    BHO: AcroIEHlprObj Class: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 7.0\activex\AcroIEHelper.dll
    BHO: mwsBar BHO: {07b18ea1-a523-4961-b6bb-170de4475cca} - c:\program files\mywebsearch\bar\2.bin\MWSBAR.DLL
    BHO: {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - No File
    BHO: BTjunkie Toolbar: {1a71246c-3eb0-4d6c-af77-3ab756017c3a} - c:\program files\btjunkie\tbBTj1.dll
    BHO: Skype add-on (mastermind): {22bf413b-c6d2-4d91-82a9-a0f997ba588c} - c:\progra~1\skype\phone\ieplugin\SKYPEI~1.DLL
    BHO: Java(tm) Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
    BHO: {7E853D72-626A-48EC-A868-BA8D5E23E045} - No File
    BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
    BHO: Windows Live Toolbar Helper: {bdbd1dad-c946-4a17-adc1-64b5b4ff55d0} - c:\program files\windows live toolbar\msntb.dll
    BHO: NoExplorer - No File
    BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
    BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    TB: {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - No File
    TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn0\yt.dll
    TB: Windows Live Toolbar: {bdad1dad-c946-4a17-adc1-64b5b4ff55d0} - c:\program files\windows live toolbar\msntb.dll
    TB: My Web Search: {07b18ea9-a523-4961-b6bb-170de4475cca} - c:\program files\mywebsearch\bar\2.bin\MWSBAR.DLL
    TB: BTjunkie Toolbar: {1a71246c-3eb0-4d6c-af77-3ab756017c3a} - c:\program files\btjunkie\tbBTj1.dll
    TB: {C4069E3A-68F1-403E-B40E-20066696354B} - No File
    TB: {855F3B16-6D32-4FE6-8A56-BBB695989046} - No File
    TB: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
    EB: &Yahoo! Messenger: {4528bbe0-4e08-11d5-ad55-00010333d0ad} - c:\progra~1\yahoo!\common\yhexbmesuk.dll
    uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
    uRun: [SweetIM] c:\program files\macrogaming\sweetim\SweetIM.exe
    uRun: [Yahoo! Pager] "c:\progra~1\yahoo!\messen~1\YAHOOM~1.EXE" -quiet
    uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
    uRun: [MyWebSearch Email Plugin] c:\progra~1\mywebs~1\bar\2.bin\mwsoemon.exe
    uRun: [kdx] c:\program files\kontiki\KHost.exe -all
    uRun: [Nokia.PCSync] "c:\program files\nokia\nokia pc suite 7\PCSync2.exe" /NoDialog
    uRun: [PC Suite Tray] "c:\program files\nokia\nokia pc suite 7\PCSuite.exe" -onlytray
    uRun: [RegistryMechanic] c:\program files\registry mechanic\RegMech.exe /H
    mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe "
    mRun: [hpWirelessAssistant] c:\program files\hpq\hp wireless assistant\HP Wireless Assistant.exe
    mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
    mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
    mRun: [nwiz] nwiz.exe /installquiet /nodetect
    mRun: [High Definition Audio Property Page Shortcut] CHDAudPropShortcut.exe
    mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
    mRun: [QPService] "c:\program files\hp\quickplay\QPService.exe "
    mRun: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
    mRun: [Cpqset] c:\program files\hpq\default settings\cpqset.exe
    mRun: [RecGuard] c:\windows\sminst\RecGuard.exe
    mRun: [Adobe Photo Downloader] "c:\program files\adobe\photoshop album starter edition\3.0\apps\apdproxy.exe "
    mRun: [SweetIM] c:\program files\macrogaming\sweetim\SweetIM.exe
    mRun: [AVG7_CC] c:\progra~1\grisoft\avgfre~1\avgcc.exe /STARTUP
    mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
    mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe "
    mRun: [MyWebSearch Email Plugin] c:\progra~1\mywebs~1\bar\2.bin\mwsoemon.exe
    mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe
    mRun: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
    mRun: [MyWebSearch Plugin] rundll32 c:\progra~1\mywebs~1\bar\2.bin\M3PLUGIN.DLL,UPF
    mRun: [My Web Search Bar Search Scope Monitor] "c:\progra~1\mywebs~1\bar\2.bin\m3SrchMn.exe" /m=2 /w
    dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
    dRun: [AVG7_Run] c:\progra~1\grisoft\avgfre~1\avgw.exe /RUNONCE
    dRun: [PcSync] c:\program files\nokia\nokia pc suite 6\PcSync2.exe /NoDialog
    StartupFolder: c:\docume~1\philippa\startm~1\programs\startup\screen~1.lnk - c:\windows\FSScrCtl.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\adobeg~1.lnk - c:\program files\common files\adobe\calibration\Adobe Gamma Loader.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\adober~1.lnk - c:\program files\adobe\acrobat 7.0\reader\reader_sl.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\digima~1.lnk - c:\program files\samsung\digimax viewer 2.0\STImgBrowser.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\hpphot~1.lnk - c:\program files\hp\digital imaging\bin\hpqthb08.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\micros~1.lnk - c:\program files\microsoft office\office\OSA9.EXE
    IE: &Search - http://edits.mywebsearch.com/toolbaredits/menusearch.jhtml?p=ZKxdm098YYGB
    IE: &Windows Live Search - c:\program files\windows live toolbar\msntb.dll/search.htm
    IE: Send Image to Photo Library - file://c:\program files\mgi\mgi photosuite iii se\temp\MGI00000.html
    IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
    IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
    IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
    IE: {4528BBE0-4E08-11D5-AD55-00010333D0AD} - {4C171D40-8277-11D5-AD55-00010333D0AD} - c:\progra~1\yahoo!\common\yhexbmesuk.dll
    IE: {77BF5300-1474-4EC7-9980-D32B190E9B07} - {77BF5300-1474-4EC7-9980-D32B190E9B07} - c:\progra~1\skype\phone\ieplugin\SKYPEI~1.DLL
    DPF: Microsoft XML Parser for Java - file://c:\windows\java\classes\xmldso.cab
    DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - hxxp://ak.exe.imgfarm.com/images/nocache/funwebproducts/ei-4/ZwinkyInitialSetup1.0.1.1.cab
    DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - c:\program files\yahoo!\common\yinsthelper.dll
    DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} - hxxp://www.truprint.co.uk/TruprintActivia.cab
    DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - hxxp://go.divx.com/plugin/DivXBrowserPlugin.cab
    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
    DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab
    DPF: {C98C3D93-348B-4B22-B237-81EAF2F06F11} - hxxp://www.ksuperstar.com/mskaraoke.cab
    DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab
    DPF: {CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_11-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
    DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxps://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
    DPF: {F04A8AE2-A59D-11D2-8792-00C04F8EF29D} - hxxp://by123fd.bay123.hotmail.msn.com/activex/HMAtchmt.ocx
    DPF: {F2D35D99-63B1-46D3-970C-6E22320D5DCB} - hxxp://www.ksolo.com/playerBase/kSoloIEHDSD.cab
    Filter: text/html - {7fddffcb-7472-4a65-8c15-36aa0a431a91} - c:\windows\system32\mst123.dll
    Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
    SEH: CShellExecuteHookImpl Object: {57b86673-276a-48b2-bae7-c6dbb3020eb8} - c:\program files\grisoft\avg anti-spyware 7.5\shellexecutehook.dll

    ================= FIREFOX ===================

    FF - ProfilePath - c:\docume~1\philippa\applic~1\mozilla\firefox\profiles\3cxla5gb.default\
    FF - plugin: c:\progra~1\yahoo!\common\npyaxmpb.dll
    FF - plugin: c:\program files\mozilla firefox\plugins\NPMyWebS.dll

    ============= SERVICES / DRIVERS ===============

    R1 AVG Anti-Spyware Driver;AVG Anti-Spyware Driver;c:\program files\grisoft\avg anti-spyware 7.5\guard.sys [2006-9-28 11000]
    R1 Avg7Core;AVG7 Kernel;c:\windows\system32\drivers\avg7core.sys [2006-11-11 821856]
    R1 Avg7RsW;AVG7 Wrap Driver;c:\windows\system32\drivers\avg7rsw.sys [2006-11-11 4224]
    R1 Avg7RsXP;AVG7 Resident Driver XP;c:\windows\system32\drivers\avg7rsxp.sys [2006-11-11 27776]
    R1 AvgAsCln;AVG Anti-Spyware Clean Driver;c:\windows\system32\drivers\AvgAsCln.sys [2006-11-11 3968]
    R1 AvgClean;AVG7 Clean Driver;c:\windows\system32\drivers\avgclean.sys [2006-11-11 10760]
    R2 AVG Anti-Spyware Guard;AVG Anti-Spyware Guard;c:\program files\grisoft\avg anti-spyware 7.5\guard.exe [2006-9-28 312880]
    R2 Avg7Alrt;AVG7 Alert Manager Server;c:\progra~1\grisoft\avgfre~1\avgamsvr.exe [2006-11-11 418816]
    R2 Avg7UpdSvc;AVG7 Update Service;c:\progra~1\grisoft\avgfre~1\avgupsvc.exe [2006-11-11 49664]
    R2 AVGEMS;AVG E-mail Scanner;c:\progra~1\grisoft\avgfre~1\avgemc.exe [2006-11-11 406528]
    R2 AvgTdi;AVG Network Redirector;c:\windows\system32\drivers\avgtdi.sys [2006-11-11 4960]
    S2 MyWebSearchService;My Web Search Service;c:\progra~1\mywebs~1\bar\2.bin\mwssvc.exe [2009-2-16 28762]

    =============== Created Last 30 ================

    2009-03-08 17:36 410,984 a------- c:\windows\system32\deploytk.dll
    2009-03-08 14:02 <DIR> -cd----- c:\docume~1\alluse~1\applic~1\{83C91755-2546-441D-AC40-9A6B4B860800}
    2009-03-08 13:53 <DIR> --d--r-- c:\documents and settings\philippa\Copy of Favorites
    2009-03-07 23:06 <DIR> --d----- c:\docume~1\philippa\applic~1\uniblue
    2009-03-07 23:04 <DIR> --d----- c:\program files\Uniblue
    2009-03-07 23:01 <DIR> -cd-h--- c:\docume~1\alluse~1\applic~1\{F5216027-5606-498A-B177-EF29CDBAF27A}
    2009-03-07 17:36 <DIR> --d----- c:\program files\CCleaner
    2009-03-03 19:50 <DIR> --dsh--- c:\documents and settings\philippa\PrivacIE
    2009-03-03 19:50 <DIR> --dsh--- c:\documents and settings\philippa\IETldCache
    2009-03-03 01:06 <DIR> --d----- c:\windows\ie8updates
    2009-03-03 01:04 81,920 a------- c:\windows\system32\ieencode.dll
    2009-03-03 01:01 79,360 -------- c:\windows\system32\dllcache\iecompat.dll
    2009-03-03 00:14 <DIR> --d----- c:\windows\system32\scripting
    2009-03-03 00:14 <DIR> --d----- c:\windows\l2schemas
    2009-03-03 00:14 <DIR> --d----- c:\windows\system32\en
    2009-03-03 00:14 <DIR> --d----- c:\windows\system32\bits
    2009-03-03 00:09 <DIR> --d----- c:\windows\ServicePackFiles
    2009-03-02 23:55 <DIR> --d----- c:\windows\EHome
    2009-02-07 20:55 <DIR> --d----- c:\docume~1\philippa\applic~1\Samsung
    2009-02-07 20:53 174,592 a------- c:\windows\system32\framedyn.dll
    2009-02-07 20:52 137,884 a------- c:\windows\system32\drivers\sscdmdm.sys
    2009-02-07 20:52 80,272 a------- c:\windows\system32\drivers\sscdbus.sys
    2009-02-07 20:52 11,877 a------- c:\windows\system32\drivers\sscdcmnt.sys
    2009-02-07 20:52 11,877 a------- c:\windows\system32\drivers\sscdcm.sys
    2009-02-07 20:52 11,188 a------- c:\windows\system32\drivers\sscdwhnt.sys
    2009-02-07 20:52 11,188 a------- c:\windows\system32\drivers\sscdwh.sys
    2009-02-07 20:52 10,864 a------- c:\windows\system32\drivers\sscdmdfl.sys
    2009-02-07 20:51 <DIR> --d----- c:\windows\system32\Samsung_USB_Drivers
    2009-02-07 20:51 766 a------- c:\windows\system32\Uninstall.ico
    2009-02-07 20:50 5,632 a------- c:\windows\system32\drivers\StarOpen.sys

    ==================== Find3M ====================

    2009-03-03 00:18 86,323 a------- c:\windows\pchealth\helpctr\offlinecache\index.dat
    2009-02-16 00:58 28,672 a------- c:\windows\system32\f3PSSavr.scr
    2009-01-16 21:35 3,594,752 a------- c:\windows\system32\dllcache\mshtml.dll
    2008-12-19 09:10 70,656 a------- c:\windows\system32\dllcache\ie4uinit.exe
    2008-12-19 09:10 13,824 -------- c:\windows\system32\dllcache\ieudinit.exe
    2008-12-19 05:25 634,024 a------- c:\windows\system32\dllcache\iexplore.exe
    2008-12-19 05:23 161,792 a------- c:\windows\system32\dllcache\ieakui.dll
    2008-12-11 10:57 333,952 -------- c:\windows\system32\dllcache\srv.sys
    2007-10-01 21:34 0 a------- c:\docume~1\philippa\applic~1\wklnhst.dat
    2006-10-01 02:29 22 a--sh--- c:\windows\sminst\HPCD.sys

    ============= FINISH: 0:45:00.70 ===============

    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT

    DDS (Ver_09-02-01.01)

    Microsoft Windows XP Home Edition
    Boot Device: \Device\HarddiskVolume1
    Install Date: 20/08/2006 18:47:51
    System Uptime: 03/08/2009 23:16:46 (-3551 hours ago)

    Motherboard: Hewlett-Packard | | 30A7
    Processor: Genuine Intel(R) CPU T2050 @ 1.60GHz | U1 | 1053/mhz

    ==== Disk Partitions =========================

    C: is FIXED (NTFS) - 84 GiB total, 19.619 GiB free.
    D: is FIXED (FAT32) - 8 GiB total, 1.149 GiB free.
    E: is CDROM ()

    ==== Disabled Device Manager Items =============

    ==== System Restore Points ===================

    RP227: 07/12/2008 00:16:46 - Installed Windows XP Wdf01007.
    RP228: 08/12/2008 08:02:07 - Software Distribution Service 3.0
    RP229: 09/12/2008 23:40:37 - Software Distribution Service 3.0
    RP230: 20/12/2008 01:11:17 - Software Distribution Service 3.0
    RP231: 08/01/2009 21:31:49 - System Checkpoint
    RP232: 14/01/2009 21:49:35 - Software Distribution Service 3.0
    RP233: 16/01/2009 20:45:38 - System Checkpoint
    RP234: 18/01/2009 15:18:44 - System Checkpoint
    RP235: 20/01/2009 02:16:14 - System Checkpoint
    RP236: 25/01/2009 17:23:27 - System Checkpoint
    RP237: 26/01/2009 21:15:56 - System Checkpoint
    RP238: 27/01/2009 23:54:43 - System Checkpoint
    RP239: 30/01/2009 22:29:45 - System Checkpoint
    RP240: 04/02/2009 22:47:39 - Software Distribution Service 3.0
    RP241: 07/02/2009 20:49:42 - Installed Samsung PC Studio 3
    RP242: 08/02/2009 21:12:32 - System Checkpoint
    RP243: 11/02/2009 08:31:04 - Software Distribution Service 3.0
    RP244: 12/02/2009 20:36:37 - System Checkpoint
    RP245: 15/02/2009 19:37:41 - System Checkpoint
    RP246: 17/02/2009 21:34:14 - System Checkpoint
    RP247: 20/02/2009 21:50:40 - System Checkpoint
    RP248: 22/02/2009 13:26:45 - System Checkpoint
    RP249: 26/02/2009 07:55:24 - Software Distribution Service 3.0
    RP250: 02/03/2009 23:42:56 - Software Distribution Service 3.0
    RP251: 03/03/2009 01:04:41 - Installed Windows Internet Explorer 8.
    RP252: 03/03/2009 01:06:05 - Software Distribution Service 3.0
    RP253: 04/03/2009 20:20:59 - Software Distribution Service 3.0
    RP254: 06/03/2009 21:22:25 - Software Distribution Service 3.0
    RP255: 08/03/2009 12:31:26 - System Checkpoint
    RP256: 08/03/2009 17:36:14 - Installed Java(TM) 6 Update 11

    ==== Installed Programs ======================

    Adobe Flash Player 10 Plugin
    Adobe Flash Player ActiveX
    Adobe Photoshop 7.0
    Adobe Reader 7.0
    Adobe® Photoshop® Album Starter Edition 3.0
    Apple Mobile Device Support
    Apple Software Update
    AVG Anti-Spyware 7.5
    AVG Free Edition
    BBC iPlayer Download Manager
    BTjunkie Toolbar
    BufferChm
    CCleaner (remove only)
    Conexant HD Audio
    CP_AtenaShokunin1Config
    CP_CalendarTemplates1
    cp_LightScribeConfig
    cp_OnlineProjectsConfig
    CP_Package_Basic1
    CP_Package_Variety1
    CP_Package_Variety2
    CP_Package_Variety3
    CP_Panorama1Config
    cp_PosterPrintConfig
    cp_UpdateProjectsConfig
    CueTour
    Destinations
    DeviceManagementQFolder
    Digimax V
    Digimax Viewer 2.0
    DivX Web Player
    Dubai Screen Saver
    FullDPAppQFolder
    HDAUDIO Soft Data Fax Modem with SmartCP
    Hotfix for Windows XP (KB952287)
    HP Help and Support
    HP Imaging Device Functions 6.0
    HP Photosmart Premier Software 6.0
    HP Quick Launch Buttons 6.00 E2
    HP QuickPlay 2.1
    HP Update
    HP User Guides--System Recovery
    HP User Guides 0019
    HP Wireless Assistant 2.00 E1
    HpSdpAppCoreApp
    InstantShareDevices
    Intel(R) PRO Network Connections Drivers
    InterActual Player
    iPod for Windows 2006-01-10
    iTunes
    J2SE Runtime Environment 5.0 Update 11
    J2SE Runtime Environment 5.0 Update 6
    Java(TM) 6 Update 11
    Java(TM) 6 Update 3
    LightScribe 1.4.74.1
    LimeWire 4.16.3
    LiveUpdate 3.0 (Symantec Corporation)
    Macrogaming SweetIM 1.2a
    MGI PhotoSuite III SE (Remove Only)
    Microsoft .NET Framework 1.1
    Microsoft .NET Framework 1.1 Hotfix (KB928366)
    Microsoft Internationalized Domain Names Mitigation APIs
    Microsoft Kernel-Mode Driver Framework Feature Pack 1.7
    Microsoft National Language Support Downlevel APIs
    Microsoft Office 2000 Standard
    Microsoft SQL Server 2005 Compact Edition [ENU]
    Microsoft Works
    Mozilla Firefox (3.0.7)
    MSN
    MSVC80_x86
    MSXML 4.0 SP2 (KB925672)
    MSXML 4.0 SP2 (KB927978)
    MSXML 4.0 SP2 (KB936181)
    MSXML 4.0 SP2 (KB954430)
    MSXML 6 Service Pack 2 (KB954459)
    My Web Search (Zwinky)
    Netscape Browser (remove only)
    NetWaiting
    Nokia Connectivity Cable Driver
    Nokia Flashing Cable Driver
    Nokia PC Suite
    Nokia Software Updater
    NVIDIA Drivers
    OptionalContentQFolder
    Paolo Nutini Screen Saver
    PC Camera (6029 CIF)
    PC CameraQ
    PC Connectivity Solution
    PhotoGallery
    QuickTime
    RandMap
    RealPlayer
    RegCure 1.5.2.7
    Registry Mechanic 8.0
    SAMSUNG CDMA Modem Driver Set
    SAMSUNG Mobile Composite Device Software
    Samsung Mobile phone USB driver Software
    SAMSUNG Mobile USB Modem 1.0 Software
    SAMSUNG Mobile USB Modem Software
    Samsung PC Studio 3
    Scientific-Atlanta WebSTAR 2000 series Cable Modem
    Security Update for CAPICOM (KB931906)
    Security Update for Step By Step Interactive Training (KB898458)
    Security Update for Step By Step Interactive Training (KB923723)
    Security Update for Windows Internet Explorer 7 (KB938127-v2)
    Security Update for Windows Internet Explorer 7 (KB938127)
    Security Update for Windows Internet Explorer 7 (KB958215)
    Security Update for Windows Internet Explorer 7 (KB960714)
    Security Update for Windows Internet Explorer 7 (KB961260)
    Security Update for Windows Media Player (KB911564)
    Security Update for Windows Media Player (KB952069)
    Security Update for Windows Media Player 10 (KB917734)
    Security Update for Windows Media Player 10 (KB936782)
    Security Update for Windows Media Player 6.4 (KB925398)
    Security Update for Windows Media Player 9 (KB911565)
    Security Update for Windows XP (KB923689)
    Security Update for Windows XP (KB938464)
    Security Update for Windows XP (KB941569)
    Security Update for Windows XP (KB946648)
    Security Update for Windows XP (KB950760)
    Security Update for Windows XP (KB950762)
    Security Update for Windows XP (KB950974)
    Security Update for Windows XP (KB951066)
    Security Update for Windows XP (KB951376-v2)
    Security Update for Windows XP (KB951376)
    Security Update for Windows XP (KB951698)
    Security Update for Windows XP (KB951748)
    Security Update for Windows XP (KB952954)
    Security Update for Windows XP (KB953839)
    Security Update for Windows XP (KB954211)
    Security Update for Windows XP (KB954459)
    Security Update for Windows XP (KB954600)
    Security Update for Windows XP (KB955069)
    Security Update for Windows XP (KB956390)
    Security Update for Windows XP (KB956391)
    Security Update for Windows XP (KB956802)
    Security Update for Windows XP (KB956803)
    Security Update for Windows XP (KB956841)
    Security Update for Windows XP (KB957095)
    Security Update for Windows XP (KB957097)
    Security Update for Windows XP (KB958644)
    Security Update for Windows XP (KB958687)
    Security Update for Windows XP (KB960715)
    SkinsHP1
    Skype 3.0
    Skype add-on for IE
    Skype Plugin Manager
    Smart Menus (Windows Live Toolbar)
    SmartAudio
    Sonic Audio Module
    Sonic Copy Module
    Sonic Data Module
    Sonic Express Labeler
    Sonic MyDVD Plus
    Sonic Update Manager
    Sonic_PrimoSDK
    SweetIM For Internet Explorer 1.0a
    Synaptics Pointing Device Driver
    Tabbed Browsing (Windows Live Toolbar)
    Texas Instruments PCIxx21/x515/xx12 drivers.
    TIPCI
    Uniblue RegistryBooster 2009
    Unload
    Update for Windows XP (KB951072-v2)
    Update for Windows XP (KB951978)
    Update for Windows XP (KB955839)
    Update for Windows XP (KB967715)
    WebFldrs XP
    Windows Driver Package - Nokia Modem (05/22/2008 3.8)
    Windows Driver Package - Nokia Modem (05/22/2008 7.00.0.1)
    Windows Driver Package - Nokia pccsmcfd (10/12/2007 6.85.4.0)
    Windows Genuine Advantage Notifications (KB905474)
    Windows Imaging Component
    Windows Internet Explorer 7
    Windows Live installer
    Windows Live Mail
    Windows Live Messenger
    Windows Live Photo Gallery
    Windows Live Sign-in Assistant
    Windows Live Toolbar
    Windows Live Toolbar Extension (Windows Live Toolbar)
    Windows Live Toolbar Feed Detector (Windows Live Toolbar)
    Windows Live Writer
    Windows Media Format Runtime
    Windows Media Player 10
    Windows XP Service Pack 3
    WinRAR archiver
    Yahoo! extras
    Yahoo! Install Manager
    Yahoo! Internet Mail
    Yahoo! Messenger
    Yahoo! Toolbar

    ==== Event Viewer Messages From Past Week ========

    03/03/2009 19:47:02, error: RemoteAccess [20106] - Unable to add the interface {83446B33-BAA6-40F9-9946-65E3B2CBF9AE} with the Router Manager for the IP protocol. The following error occurred: Cannot complete this function.
    03/03/2009 01:09:18, error: nv [43] - The system sleep operation failed
    03/03/2009 00:51:52, error: SideBySide [59] - Generate Activation Context failed for C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\MFC80U.DLL. Reference error message: The operation completed successfully. .
    03/03/2009 00:51:52, error: SideBySide [59] - Resolve Partial Assembly failed for Microsoft.VC80.MFCLOC. Reference error message: The referenced assembly is not installed on your system. .
    03/03/2009 00:51:52, error: SideBySide [32] - Dependent Assembly Microsoft.VC80.MFCLOC could not be found and Last Error was The referenced assembly is not installed on your system.
    05/03/2009 07:18:06, error: RemoteAccess [20013] - The communication device attached to port VPN6-1 is not functioning.
    05/03/2009 07:18:06, error: RemoteAccess [20013] - The communication device attached to port VPN6-0 is not functioning.
    07/03/2009 23:39:07, error: Dhcp [1001] - Your computer was not assigned an address from the network (by the DHCP Server) for the Network Card with network address 00130295D7E7. The following error occurred: The operation was canceled by the user. . Your computer will continue to try and obtain an address on its own from the network address (DHCP) server.

    ==== End Of File ===========================
     
  2. 2009/03/11
    Juliet

    Juliet Well-Known Member

    Joined:
    2008/09/15
    Messages:
    976
    Likes Received:
    6
    Hi and welcome

    AV: AVG 7.5.557 *On-access scanning enabled* (Updated)
    FW: Norton Internet Worm Protection *disabled*

    Is the above for Norton Personal firewall?
    I need to make sure your not running two antivirus on the machine.



    Please download ATF Cleaner by Atribune From Here and save it to your Desktop.
    Follow the instructions for the browser you use.
    Read the instructions about the cookies. Delete what you do not need.

    Double click ATF-Cleaner.exe to run the program.
    Check the boxes to the left of:
    Windows Temp
    Current User Temp
    All Users Temp
    Temporary Internet Files
    Java Cache

    The rest are optional - if you want to remove the lot, check "Select All ".
    Finally click Empty Selected. When you get the "Done Cleaning " message, click OK.
    If you use the Firefox or Opera browsers, you can use this program
    as a quick way to tidy those up as well.
    When you have finished, click on the Exit button in the Main menu.
    ========================


    NEXT**
    Please download Malwarebytes' Anti-Malware to your desktop

    Additional Link

    * Double-click mbam-setup.exe and follow the prompts to install the program.
    * Be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
    * If an update is found, it will download and install the latest version.
    * Once the program has loaded, select Perform quick scan, then click Scan.
    * When the scan is complete, click OK, then Show Results to view the results.
    * Be sure that everything is checked, and click Remove Selected.
    * When completed, a log will open in Notepad. Please save it to a convenient location.
    * You can also access the log by doing the following:

    o Click on the Malwarebytes' Anti-Malware icon to launch the program.
    o Click on the Logs tab.
    o Click on the log at the bottom of those listed to highlight it.
    o Click Open.

    Tutorial if needed
    http://thespykiller.co.uk/index.php/topic,5946.0.html

    Extra Note:
    If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process,if asked to restart the computer,please do so immediately.




    NEXT**
    Download Combofix from any of the links below.

    Save it to your desktop.

    Link 1
    Link 2
    Link 3


    --------------------------------------------------------------------
    Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools
    (Click on this link to see a list of programs that should be disabled.)
    http://www.bleepingcomputer.com/forums/topic114351.html


    Double click on Combo-Fix.exe & follow the prompts.

    Please allow ComboFix to install, if needed, Windows Recovery Console. It is a simple procedure that will only take a few moments of your time.

    No Validation is Required.

    The Windows Recovery Console will allow you to boot up into a special recovery (repair) mode. This allows us to more easily help you should your computer have a problem after an attempted removal of malware. It is a simple procedure that will only take a few moments of your time.



    ** Please Note:
    At times ComboFix may appear to stall, please be patient.
    • When finished, it will produce a report for you.

    Please only run the tool once, ty.

    Extra note: After you have installed the Recovery Console - if you reboot your computer, right after reboot, you'll see the option for the Recovery Console now as well.
    Don't select to run the Recovery Console as we don't need it.
    By default, your main OS is selected there. The screen stays for 2 seconds and then it proceeds to load Windows.

    You may need several replies to post the requested logs, otherwise they might get cut off.


    In your next reply post:
    Malwarebytes' Anti-Malware log
    ComboFix.txt
    New DDS log
     

  3. to hide this advert.

  4. 2009/05/21
    Juliet

    Juliet Well-Known Member

    Joined:
    2008/09/15
    Messages:
    976
    Likes Received:
    6
    Due to the lack of feedback this Topic is closed.

    If you need this topic reopened, please contact a Staff member. Include the address of this thread in your request. This applies only to the original topic starter.
     
Thread Status:
Not open for further replies.

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.