1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Inactive [InActive] unauble to access antivirus sites or Windows update

Discussion in 'Malware and Virus Removal Archive' started by jeffd, 2009/03/19.

  1. 2009/03/19
    jeffd

    jeffd Inactive Thread Starter

    Joined:
    2009/03/19
    Messages:
    4
    Likes Received:
    0
    Hi. Have run Bit defender anti virus - shows system clean. Reg Mechanic shows 2 errors HKEY_CLASSES_ROOT\CLSID\(1171A62F-05D2-11D1-83FC-00A00C9089C5a)INPROCSERVER32 & HKEY-LOCA-MACHINE\SOFTWARE\BITDEFENDER\BITDEFENDER ANITVIRUS 2009\12.0.1.5 bt does not fix these. Search & Destroys shows 5 errors DSO Exploit: Data source object exploit (Registry change, nothing done)
    HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\1004!=W=3

    DSO Exploit: Data source object exploit (Registry change, nothing done)
    HKEY_USERS\S-1-5-21-1749521121-1333191943-1754454779-1006\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\1004!=W=3

    DSO Exploit: Data source object exploit (Registry change, nothing done)
    HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\1004!=W=3

    DSO Exploit: Data source object exploit (Registry change, nothing done)
    HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\1004!=W=3

    DSO Exploit: Data source object exploit (Registry change, nothing done)
    HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\0\1004!=W=3. It says they are fixed but they instantly return. Hijackthis log file as follow.
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 10:59:06 AM, on 19/03/2009
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16791)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Common Files\BitDefender\BitDefender Update Service\livesrv.exe
    C:\Program Files\BitDefender\BitDefender 2009\vsserv.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
    C:\WINDOWS\System32\CTsvcCDA.exe
    C:\Program Files\Prevx\prevx.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\Program Files\Kontiki\KService.exe
    C:\WINDOWS\System32\nvsvc32.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\System32\MsPMSPSv.exe
    C:\Program Files\Prevx\prevx.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\dla\tfswctrl.exe
    C:\WINDOWS\AGRSMMSG.exe
    C:\Program Files\Scansoft\PaperPort\pptd40nt.exe
    C:\Program Files\Logitech\iTouch\iTouch.exe
    C:\Program Files\Creative\USB SBAudigy2 NX\DVDAudio\CTDVDDet.EXE
    C:\Program Files\Creative\USB SBAudigy2 NX\Surround Mixer\CTSysVol.exe
    C:\Program Files\Common Files\Smith Micro Shared\FAX\SMLoader.exe
    C:\WINDOWS\SM1BG.EXE
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\WINDOWS\system32\LVCOMSX.EXE
    C:\Program Files\Logitech\Video\LogiTray.exe
    C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe
    C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
    C:\Program Files\Napster\napster.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\Kontiki\KHost.exe
    C:\WINDOWS\system32\rundll32.exe
    C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\BitDefender\BitDefender 2009\bdagent.exe
    C:\Program Files\Logitech\Video\FxSvr2.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Program Files\TomTom HOME 2\HOMERunner.exe
    C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
    C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
    C:\Program Files\PC-TV\WinManager\IR_SERVER.exe
    C:\Program Files\ArcSoft\TotalMedia 3\TMMonitor.exe
    C:\Program Files\PC-TV\WinManager\WinManager.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\PROGRA~1\INCRED~1\bin\IMApp.exe
    C:\Program Files\BitDefender\BitDefender 2009\seccenter.exe
    C:\Program Files\Windows Live\Messenger\usnsvc.exe
    C:\Program Files\Java\jre6\bin\jucheck.exe
    C:\WINDOWS\explorer.exe
    C:\Program Files\Microsoft Office\Office10\WINWORD.EXE
    C:\PROGRA~1\INCRED~1\bin\IncMail.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bbc.co.uk/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://uk.red.clientapps.yahoo.com/...b/*http://uk.docs.yahoo.com/info/bt_side.html
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
    O2 - BHO: (no name) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - (no file)
    O2 - BHO: (no name) - {65D886A2-7CA7-479B-BB95-14D1EFB7946A} - (no file)
    O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
    O2 - BHO: (no name) - {D80C4E21-C346-4E21-8E64-20746AA20AEB} - (no file)
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
    O3 - Toolbar: BitDefender Toolbar - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:\Program Files\BitDefender\BitDefender 2009\IEToolbar.dll
    O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
    O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
    O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\Scansoft\PaperPort\pptd40nt.exe
    O4 - HKLM\..\Run: [IndexSearch] C:\Program Files\Scansoft\PaperPort\IndexSearch.exe
    O4 - HKLM\..\Run: [zBrowser Launcher] C:\Program Files\Logitech\iTouch\iTouch.exe
    O4 - HKLM\..\Run: [CTDVDDet] C:\Program Files\Creative\USB SBAudigy2 NX\DVDAudio\CTDVDDet.EXE
    O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\USB SBAudigy2 NX\Surround Mixer\CTSysVol.exe /r
    O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
    O4 - HKLM\..\Run: [SMSI Loader] C:\Program Files\Common Files\Smith Micro Shared\FAX\SMLoader.exe /PRNDRV
    O4 - HKLM\..\Run: [SM1BG] C:\WINDOWS\SM1BG.EXE
    O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
    O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe "
    O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe "
    O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe -startup
    O4 - HKLM\..\Run: [ctfmon] C:\WINDOWS\system32\dlg\ctfmon.exe
    O4 - HKLM\..\Run: [CloneDVDElbyDelay] "C:\Program Files\Elaborate Bytes\CloneDVD\ElbyCheck.exe" /L ElbyDelay
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [NapsterShell] C:\Program Files\Napster\napster.exe /systray
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PifSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll "
    O4 - HKLM\..\Run: [4oD] "C:\Program Files\Kontiki\KHost.exe" -all
    O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
    O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe "
    O4 - HKLM\..\Run: [BDAgent] "C:\Program Files\BitDefender\BitDefender 2009\bdagent.exe "
    O4 - HKLM\..\Run: [BitDefender Antiphishing Helper] "C:\Program Files\BitDefender\BitDefender 2009\IEShow.exe "
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
    O4 - HKCU\..\Run: [IncrediMail] C:\PROGRA~1\INCRED~1\bin\IncMail.exe /c
    O4 - HKCU\..\Run: [kdx] C:\Program Files\Kontiki\KHost.exe -all
    O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\HOMERunner.exe "
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\S-1-5-18\..\Run: [Nokia.PCSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
    O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
    O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O4 - Global Startup: BTTray.lnk = ?
    O4 - Global Startup: hpoddt01.exe.lnk = ?
    O4 - Global Startup: IR_SERVER.lnk = C:\Program Files\PC-TV\WinManager\IR_SERVER.exe
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
    O4 - Global Startup: TMMonitor.lnk = C:\Program Files\ArcSoft\TotalMedia 3\TMMonitor.exe
    O4 - Global Startup: WinManager.lnk = C:\Program Files\PC-TV\WinManager\WinManager.exe
    O8 - Extra context menu item: &Search - ?p=ZUman000
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
    O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra button: Rip YouTube File - {38E51477-DDB4-4aed-9D61-D0C193E10749} - C:\Program Files\AllMusicConverter\YouTubeRipper.dll
    O9 - Extra 'Tools' menuitem: Rip YouTube file embedded in this page - {38E51477-DDB4-4aed-9D61-D0C193E10749} - C:\Program Files\AllMusicConverter\YouTubeRipper.dll
    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
    O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
    O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
    O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {215B8138-A3CF-44C5-803F-8226143CFC0A} (Trend Micro ActiveX Scan Agent 6.6) - http://housecall65.trendmicro.com/housecall/applet/html/native/x86/win32/activex/hcImpl.cab
    O16 - DPF: {31C766ED-EAB7-400B-A861-86EB4001F491} (NTR ActiveX 1.1.4) - http://www.inquiero.com/inquiero/mod/setup/ntractivex114_9.cab
    O16 - DPF: {4E62C4DE-627D-4604-B157-4B7D6B09F02E} (AccountTracking Profile Manager Class) - https://moneymanager.egg.com/Pinsafe/accounttracking.cab
    O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
    O16 - DPF: {6A344D34-5231-452A-8A57-D064AC9B7862} (Symantec Download Manager) - https://webdl.symantec.com/activex/symdlmgr.cab
    O16 - DPF: {70D86F3C-BA4D-11D2-80F5-006008B066EE} (VSPrefMgmt Class) - https://www.osis.uk.com/trustwise/vspcakm.cab
    O16 - DPF: {71057C18-0507-4747-86BC-E11CE7512C5F} (mailhelper Class) - https://register.btinternet.com/templates/btmailcontrol013.cab
    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
    O16 - DPF: {F00F4763-7355-4725-82F7-0DA94A256D46} (IMDownloader Class) - http://www2.incredimail.com/contents/setup/downloader/imloader.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{1D081D02-AF06-4B83-973C-F38CBAE3F9D0}: NameServer = 85.255.112.20,85.255.112.141
    O17 - HKLM\System\CCS\Services\Tcpip\..\{5BD94291-9827-4FEF-82FB-CF405F1EDABA}: NameServer = 85.255.112.20,85.255.112.141
    O17 - HKLM\System\CCS\Services\Tcpip\..\{EA44DEC2-47C1-4F0E-B6FC-CFE3151718C6}: NameServer = 85.255.112.20,85.255.112.141
    O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 85.255.112.149,85.255.112.214
    O17 - HKLM\System\CS1\Services\Tcpip\..\{1D081D02-AF06-4B83-973C-F38CBAE3F9D0}: NameServer = 85.255.112.149,85.255.112.214
    O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer = 85.255.112.20,85.255.112.141
    O17 - HKLM\System\CS2\Services\Tcpip\..\{1D081D02-AF06-4B83-973C-F38CBAE3F9D0}: NameServer = 85.255.112.20,85.255.112.141
    O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 85.255.112.20,85.255.112.141
    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    O23 - Service: BitDefender Arrakis Server (Arrakis3) - BitDefender S.R.L. http://www.bitdefender.com - C:\Program Files\Common Files\BitDefender\BitDefender Arrakis Server\bin\Arrakis3.exe
    O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: Bluetooth Service (btwdins) - WIDCOMM, Inc. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
    O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
    O23 - Service: CSIScanner - Prevx - C:\Program Files\Prevx\prevx.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
    O23 - Service: KService - Kontiki Inc. - C:\Program Files\Kontiki\KService.exe
    O23 - Service: BitDefender Desktop Update Service (LIVESRV) - BitDefender SRL - C:\Program Files\Common Files\BitDefender\BitDefender Update Service\livesrv.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
    O23 - Service: LiveUpdate Notice Service - Unknown owner - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PifSvc.exe (file missing)
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
    O23 - Service: ServiceLayer - Nokia. - C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
    O23 - Service: SoundMovieServer - SoundMovieServer - C:\WINDOWS\system32\snmvtsvc.exe
    O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    O23 - Service: BitDefender Virus Shield (VSSERV) - BitDefender S. R. L. - C:\Program Files\BitDefender\BitDefender 2009\vsserv.exe

    --
    End of file - 16588 bytes
    Any help would be appreciated. Thanks
     
  2. 2009/03/19
    PeteC

    PeteC SuperGeek Staff

    Joined:
    2002/05/10
    Messages:
    28,896
    Likes Received:
    389
    Welcome to WindowsBBS :)

    There is an announcement at the head of the forum .....

    *** READ THIS BEFORE POSTING IN THIS FORUM ***

    Please read and post the logs requested in this thread - we have moved on from a straight HJT log :)
     

  3. to hide this advert.

  4. 2009/03/19
    jeffd

    jeffd Inactive Thread Starter

    Joined:
    2009/03/19
    Messages:
    4
    Likes Received:
    0
    Attached logs. with apologies.

    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT

    DDS (Ver_09-03-16.01)

    Microsoft Windows XP Home Edition
    Boot Device: \Device\HarddiskVolume1
    Install Date: 7/10/2004 2:28:04 PM
    System Uptime: 3/18/2009 11:42:26 PM (17 hours ago)

    Motherboard: TriGem Computer NETHERLANDS | | Advent Series
    Processor: Intel(R) Pentium(R) 4 CPU 3.40GHz | Socket 478 | 3400/200mhz

    ==== Disk Partitions =========================

    A: is Removable
    C: is FIXED (NTFS) - 186 GiB total, 44.543 GiB free.
    D: is FIXED (NTFS) - 186 GiB total, 144.225 GiB free.
    E: is CDROM ()
    F: is CDROM ()
    G: is Removable
    H: is Removable
    I: is Removable
    J: is Removable
    K: is FIXED (NTFS) - 699 GiB total, 663.841 GiB free.

    ==== Disabled Device Manager Items =============

    Class GUID: {EEC5AD98-8080-425F-922A-DABF3DE3F69A}
    Description: Nokia 6300
    Device ID: ROOT\WPD\0001
    Manufacturer: Nokia
    Name: Nokia 6300
    PNP Device ID: ROOT\WPD\0001
    Service: WUDFRd

    ==== System Restore Points ===================

    No restore point in system.

    ==== Installed Programs ======================


    4oD
    Adobe Acrobat - Reader 6.0.2 Update
    Adobe Acrobat 6.0.1 Professional
    Adobe Acrobat and Reader 6.0.3 Update
    Adobe Acrobat and Reader 6.0.4 Update
    Adobe AIR
    Adobe Atmosphere Player for Acrobat and Adobe Reader
    Adobe Flash Player 10 ActiveX
    Adobe Flash Player Plugin
    Adobe Media Player
    Adobe Reader 6.0.1
    Adobe Reader 7.0.8
    Adobe Reader 7.0.9
    Agere Systems PCI Soft Modem
    Ahead Nero Burning ROM
    AllMusicConverter 3.4.5
    Any Video Converter 1.0
    Apple Mobile Device Support
    Apple Software Update
    ArcSoft TotalMedia 3
    ArcSoft VideoImpression 2
    ASUS WLAN Card Utilities/Driver
    Audacity 1.2.6
    AVerTV
    BitDefender Antivirus 2009
    BitDefender Definitions Update
    Bonjour
    Camera RAW Plug-In for EPSON Creativity Suite
    CloneDVD
    Creative MediaSource
    Creative System Information
    Crystal Report Merge Module
    Cypress USB Mass Storage Driver Installation
    Depositit Automated Backup
    DigitalTV
    Drv
    DVD Decrypter (Remove Only)
    DVD Shrink 3.2
    DVD Solution
    Empires Dawn of the Modern World
    EPSON Attach To Email
    EPSON Easy Photo Print
    EPSON File Manager
    EPSON Print CD
    EPSON PRINT Image Framer Tool
    EPSON Printer Software
    EPSON Scan Assistant
    EPSON Web-To-Page
    ESPR360_390 User's Guide
    EZ Vinyl Converter by MixMeister 1.0.5
    Grosvenor Casinos
    HijackThis 2.0.2
    HotFax MessageCenter
    Hotfix for Windows Internet Explorer 7 (KB947864)
    Hotfix for Windows Media Format 11 SDK (KB929399)
    Hotfix for Windows Media Player 11 (KB939683)
    Hotfix for Windows XP (KB952287)
    hp instant support
    HP Memories Disc
    IncrediMail Xe
    InterActual Player
    InterVideo FilterSDK
    iPod for Windows 2005-09-23
    iPod Updater 2004-08-06
    iPod Updater 2004-10-20
    iPod Updater 2004-11-15
    iTunes
    J2SE Runtime Environment 5.0 Update 4
    Java 2 Runtime Environment, SE v1.4.0
    Java Web Start
    Java(TM) 6 Update 11
    Java(TM) 6 Update 3
    Java(TM) 6 Update 5
    LimeWire 4.18.5
    LiveUpdate (Symantec Corporation)
    LiveUpdate Notice (Symantec Corporation)
    Logitech Desktop Messenger
    Logitech iTouch Software
    Logitech Print Service
    Logitech QuickCam Software
    Logitech® Camera Driver
    Macromedia Flash Player
    Macromedia Shockwave Player
    Microsoft .NET Framework (English)
    Microsoft .NET Framework (English) v1.0.3705
    Microsoft .NET Framework 1.0 Hotfix (KB928367)
    Microsoft .NET Framework 1.1
    Microsoft .NET Framework 1.1 Hotfix (KB928366)
    Microsoft .NET Framework 2.0 Service Pack 1
    Microsoft AutoRoute v11.0
    Microsoft Compression Client Pack 1.0 for Windows XP
    Microsoft Data Access Components KB870669
    Microsoft Internationalized Domain Names Mitigation APIs
    Microsoft National Language Support Downlevel APIs
    Microsoft Office XP Professional with FrontPage
    Microsoft Publisher 2002
    Microsoft Silverlight
    Microsoft User-Mode Driver Framework Feature Pack 1.5
    Microsoft Visual C++ 2005 Redistributable
    Microsoft XML Parser
    MixVibes PRO 5 uninstall
    MobileMe Control Panel
    Mozilla Firefox (3.0.7)
    MSXML 4.0 SP2 (KB936181)
    MSXML 4.0 SP2 (KB954430)
    Multimedia Launcher
    MUSTEK 1200 UB v2.1
    MyDVD
    myibay eBay bid sniper 1.0.37
    Napster
    Napster Burn Engine
    Nokia Connectivity Cable Driver
    Nokia PC Suite
    NVIDIA Drivers
    PaperPort 8.0
    PC Connectivity Solution
    PowerDVD
    PowerProducer
    Prevx CSI
    QuickTime
    RealPlayer
    Realtek AC'97 Audio
    Registry Mechanic 7.0
    Safari
    SAM Party DJ (remove only)
    Samsung PC Studio II 2.0 Image Editor
    Security Update for Windows Internet Explorer 7 (KB938127)
    Security Update for Windows Internet Explorer 7 (KB950759)
    Security Update for Windows Internet Explorer 7 (KB953838)
    Security Update for Windows Internet Explorer 7 (KB956390)
    Security Update for Windows Internet Explorer 7 (KB958215)
    Security Update for Windows Internet Explorer 7 (KB960714)
    Security Update for Windows Internet Explorer 7 (KB961260)
    Security Update for Windows Media Player (KB911564)
    Security Update for Windows Media Player (KB952069)
    Security Update for Windows Media Player 11 (KB936782)
    Security Update for Windows Media Player 11 (KB954154)
    Security Update for Windows Media Player 6.4 (KB925398)
    Security Update for Windows Media Player 9 (KB911565)
    Security Update for Windows Media Player 9 (KB917734)
    Security Update for Windows Media Player 9 (KB936782)
    Security Update for Windows XP (KB923689)
    Security Update for Windows XP (KB938464)
    Security Update for Windows XP (KB941569)
    Security Update for Windows XP (KB946648)
    Security Update for Windows XP (KB950760)
    Security Update for Windows XP (KB950762)
    Security Update for Windows XP (KB950974)
    Security Update for Windows XP (KB951066)
    Security Update for Windows XP (KB951376-v2)
    Security Update for Windows XP (KB951376)
    Security Update for Windows XP (KB951698)
    Security Update for Windows XP (KB951748)
    Security Update for Windows XP (KB952954)
    Security Update for Windows XP (KB953839)
    Security Update for Windows XP (KB954211)
    Security Update for Windows XP (KB954600)
    Security Update for Windows XP (KB955069)
    Security Update for Windows XP (KB956391)
    Security Update for Windows XP (KB956802)
    Security Update for Windows XP (KB956803)
    Security Update for Windows XP (KB956841)
    Security Update for Windows XP (KB957095)
    Security Update for Windows XP (KB957097)
    Security Update for Windows XP (KB958644)
    Security Update for Windows XP (KB958687)
    Security Update for Windows XP (KB960715)
    ShowBiz
    SightCAM PC-100
    Sonic DLA
    Sonic RecordNow DX
    Sonic Simple Backup
    Sonic Update Manager
    SopCast 2.0.4
    Spybot - Search & Destroy 1.3
    TomTom HOME 2.5.2.60
    Turbo Lister 2
    TV
    TVAnts 1.0
    Update for Windows XP (KB951072-v2)
    Update for Windows XP (KB955839)
    Update for Windows XP (KB967715)
    USB Sound Blaster Audigy 2 NX
    USB Storage Adapter FX (SM1)
    VC_MergeModuleToMSI
    Veetle TV 0.9.14
    Viewpoint Media Player
    WebFldrs XP
    WIDCOMM Bluetooth Software
    Windows Driver Package - Nokia (WUDFRd) WPD (03/19/2007 6.83.31.1)
    Windows Driver Package - Nokia Modem (02/15/2007 3.1)
    Windows Driver Package - Nokia Modem (11/03/2006 6.82.0.1)
    Windows Internet Explorer 7
    Windows Live installer
    Windows Live Messenger
    Windows Live Sign-in Assistant
    Windows Live Writer
    Windows Media Format 11 runtime
    Windows Media Player 11
    Windows XP Service Pack 3
    Yahoo! Messenger
    Yahoo! Toolbar

    ==== Event Viewer Messages From Past Week ========

    3/17/2009 1:03:00 PM, error: Print [19] - Sharing printer failed + 1722, Printer PaperPort Color share name PaperPor.
    3/17/2009 1:01:06 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service EventSystem with arguments " " in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
    3/17/2009 12:54:28 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service wuauserv with arguments " " in order to run the server: {E60687F7-01A1-40AA-86AC-DB1CBF673334}
    3/17/2009 12:50:28 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service usnjsvc with arguments " " in order to run the server: {98AC5C33-EE18-4EC2-BE25-3B16EE8F75F1}
    3/17/2009 12:49:55 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service BITS with arguments " " in order to run the server: {4991D34B-80A1-4291-83B6-3328366B9097}
    3/17/2009 12:48:42 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service iPod Service with arguments "-Service" in order to run the server: {063D34A4-BF84-4B8D-B699-E8CA06504DDE}
    3/17/2009 12:46:16 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: Fips intelppm
    3/17/2009 12:45:00 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service upnphost with arguments " " in order to run the server: {204810B9-73B2-11D4-BF42-00B0D0118B56}
    3/16/2009 12:19:51 PM, error: ipnathlp [31008] - The DNS proxy agent was unable to read the local list of name-resolution servers from the registry. The data is the error code.
    3/18/2009 8:46:58 AM, error: Service Control Manager [7034] - The BitDefender Virus Shield service terminated unexpectedly. It has done this 1 time(s).
    3/18/2009 8:47:02 AM, error: Service Control Manager [7034] - The BitDefender Desktop Update Service service terminated unexpectedly. It has done this 1 time(s).
    3/18/2009 9:44:10 PM, error: DCOM [10005] - DCOM got error "%1053" attempting to start the service usnjsvc with arguments " " in order to run the server: {98AC5C33-EE18-4EC2-BE25-3B16EE8F75F1}
    3/18/2009 9:44:10 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the Messenger Sharing Folders USN Journal Reader service service to connect.
    3/18/2009 9:44:10 PM, error: Service Control Manager [7000] - The Messenger Sharing Folders USN Journal Reader service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.

    ==== End Of File ===========================

    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT

    DDS (Ver_09-03-16.01)

    Microsoft Windows XP Home Edition
    Boot Device: \Device\HarddiskVolume1
    Install Date: 7/10/2004 2:28:04 PM
    System Uptime: 3/18/2009 11:42:26 PM (17 hours ago)

    Motherboard: TriGem Computer NETHERLANDS | | Advent Series
    Processor: Intel(R) Pentium(R) 4 CPU 3.40GHz | Socket 478 | 3400/200mhz

    ==== Disk Partitions =========================

    A: is Removable
    C: is FIXED (NTFS) - 186 GiB total, 44.543 GiB free.
    D: is FIXED (NTFS) - 186 GiB total, 144.225 GiB free.
    E: is CDROM ()
    F: is CDROM ()
    G: is Removable
    H: is Removable
    I: is Removable
    J: is Removable
    K: is FIXED (NTFS) - 699 GiB total, 663.841 GiB free.

    ==== Disabled Device Manager Items =============

    Class GUID: {EEC5AD98-8080-425F-922A-DABF3DE3F69A}
    Description: Nokia 6300
    Device ID: ROOT\WPD\0001
    Manufacturer: Nokia
    Name: Nokia 6300
    PNP Device ID: ROOT\WPD\0001
    Service: WUDFRd

    ==== System Restore Points ===================

    No restore point in system.

    ==== Installed Programs ======================


    4oD
    Adobe Acrobat - Reader 6.0.2 Update
    Adobe Acrobat 6.0.1 Professional
    Adobe Acrobat and Reader 6.0.3 Update
    Adobe Acrobat and Reader 6.0.4 Update
    Adobe AIR
    Adobe Atmosphere Player for Acrobat and Adobe Reader
    Adobe Flash Player 10 ActiveX
    Adobe Flash Player Plugin
    Adobe Media Player
    Adobe Reader 6.0.1
    Adobe Reader 7.0.8
    Adobe Reader 7.0.9
    Agere Systems PCI Soft Modem
    Ahead Nero Burning ROM
    AllMusicConverter 3.4.5
    Any Video Converter 1.0
    Apple Mobile Device Support
    Apple Software Update
    ArcSoft TotalMedia 3
    ArcSoft VideoImpression 2
    ASUS WLAN Card Utilities/Driver
    Audacity 1.2.6
    AVerTV
    BitDefender Antivirus 2009
    BitDefender Definitions Update
    Bonjour
    Camera RAW Plug-In for EPSON Creativity Suite
    CloneDVD
    Creative MediaSource
    Creative System Information
    Crystal Report Merge Module
    Cypress USB Mass Storage Driver Installation
    Depositit Automated Backup
    DigitalTV
    Drv
    DVD Decrypter (Remove Only)
    DVD Shrink 3.2
    DVD Solution
    Empires Dawn of the Modern World
    EPSON Attach To Email
    EPSON Easy Photo Print
    EPSON File Manager
    EPSON Print CD
    EPSON PRINT Image Framer Tool
    EPSON Printer Software
    EPSON Scan Assistant
    EPSON Web-To-Page
    ESPR360_390 User's Guide
    EZ Vinyl Converter by MixMeister 1.0.5
    Grosvenor Casinos
    HijackThis 2.0.2
    HotFax MessageCenter
    Hotfix for Windows Internet Explorer 7 (KB947864)
    Hotfix for Windows Media Format 11 SDK (KB929399)
    Hotfix for Windows Media Player 11 (KB939683)
    Hotfix for Windows XP (KB952287)
    hp instant support
    HP Memories Disc
    IncrediMail Xe
    InterActual Player
    InterVideo FilterSDK
    iPod for Windows 2005-09-23
    iPod Updater 2004-08-06
    iPod Updater 2004-10-20
    iPod Updater 2004-11-15
    iTunes
    J2SE Runtime Environment 5.0 Update 4
    Java 2 Runtime Environment, SE v1.4.0
    Java Web Start
    Java(TM) 6 Update 11
    Java(TM) 6 Update 3
    Java(TM) 6 Update 5
    LimeWire 4.18.5
    LiveUpdate (Symantec Corporation)
    LiveUpdate Notice (Symantec Corporation)
    Logitech Desktop Messenger
    Logitech iTouch Software
    Logitech Print Service
    Logitech QuickCam Software
    Logitech® Camera Driver
    Macromedia Flash Player
    Macromedia Shockwave Player
    Microsoft .NET Framework (English)
    Microsoft .NET Framework (English) v1.0.3705
    Microsoft .NET Framework 1.0 Hotfix (KB928367)
    Microsoft .NET Framework 1.1
    Microsoft .NET Framework 1.1 Hotfix (KB928366)
    Microsoft .NET Framework 2.0 Service Pack 1
    Microsoft AutoRoute v11.0
    Microsoft Compression Client Pack 1.0 for Windows XP
    Microsoft Data Access Components KB870669
    Microsoft Internationalized Domain Names Mitigation APIs
    Microsoft National Language Support Downlevel APIs
    Microsoft Office XP Professional with FrontPage
    Microsoft Publisher 2002
    Microsoft Silverlight
    Microsoft User-Mode Driver Framework Feature Pack 1.5
    Microsoft Visual C++ 2005 Redistributable
    Microsoft XML Parser
    MixVibes PRO 5 uninstall
    MobileMe Control Panel
    Mozilla Firefox (3.0.7)
    MSXML 4.0 SP2 (KB936181)
    MSXML 4.0 SP2 (KB954430)
    Multimedia Launcher
    MUSTEK 1200 UB v2.1
    MyDVD
    myibay eBay bid sniper 1.0.37
    Napster
    Napster Burn Engine
    Nokia Connectivity Cable Driver
    Nokia PC Suite
    NVIDIA Drivers
    PaperPort 8.0
    PC Connectivity Solution
    PowerDVD
    PowerProducer
    Prevx CSI
    QuickTime
    RealPlayer
    Realtek AC'97 Audio
    Registry Mechanic 7.0
    Safari
    SAM Party DJ (remove only)
    Samsung PC Studio II 2.0 Image Editor
    Security Update for Windows Internet Explorer 7 (KB938127)
    Security Update for Windows Internet Explorer 7 (KB950759)
    Security Update for Windows Internet Explorer 7 (KB953838)
    Security Update for Windows Internet Explorer 7 (KB956390)
    Security Update for Windows Internet Explorer 7 (KB958215)
    Security Update for Windows Internet Explorer 7 (KB960714)
    Security Update for Windows Internet Explorer 7 (KB961260)
    Security Update for Windows Media Player (KB911564)
    Security Update for Windows Media Player (KB952069)
    Security Update for Windows Media Player 11 (KB936782)
    Security Update for Windows Media Player 11 (KB954154)
    Security Update for Windows Media Player 6.4 (KB925398)
    Security Update for Windows Media Player 9 (KB911565)
    Security Update for Windows Media Player 9 (KB917734)
    Security Update for Windows Media Player 9 (KB936782)
    Security Update for Windows XP (KB923689)
    Security Update for Windows XP (KB938464)
    Security Update for Windows XP (KB941569)
    Security Update for Windows XP (KB946648)
    Security Update for Windows XP (KB950760)
    Security Update for Windows XP (KB950762)
    Security Update for Windows XP (KB950974)
    Security Update for Windows XP (KB951066)
    Security Update for Windows XP (KB951376-v2)
    Security Update for Windows XP (KB951376)
    Security Update for Windows XP (KB951698)
    Security Update for Windows XP (KB951748)
    Security Update for Windows XP (KB952954)
    Security Update for Windows XP (KB953839)
    Security Update for Windows XP (KB954211)
    Security Update for Windows XP (KB954600)
    Security Update for Windows XP (KB955069)
    Security Update for Windows XP (KB956391)
    Security Update for Windows XP (KB956802)
    Security Update for Windows XP (KB956803)
    Security Update for Windows XP (KB956841)
    Security Update for Windows XP (KB957095)
    Security Update for Windows XP (KB957097)
    Security Update for Windows XP (KB958644)
    Security Update for Windows XP (KB958687)
    Security Update for Windows XP (KB960715)
    ShowBiz
    SightCAM PC-100
    Sonic DLA
    Sonic RecordNow DX
    Sonic Simple Backup
    Sonic Update Manager
    SopCast 2.0.4
    Spybot - Search & Destroy 1.3
    TomTom HOME 2.5.2.60
    Turbo Lister 2
    TV
    TVAnts 1.0
    Update for Windows XP (KB951072-v2)
    Update for Windows XP (KB955839)
    Update for Windows XP (KB967715)
    USB Sound Blaster Audigy 2 NX
    USB Storage Adapter FX (SM1)
    VC_MergeModuleToMSI
    Veetle TV 0.9.14
    Viewpoint Media Player
    WebFldrs XP
    WIDCOMM Bluetooth Software
    Windows Driver Package - Nokia (WUDFRd) WPD (03/19/2007 6.83.31.1)
    Windows Driver Package - Nokia Modem (02/15/2007 3.1)
    Windows Driver Package - Nokia Modem (11/03/2006 6.82.0.1)
    Windows Internet Explorer 7
    Windows Live installer
    Windows Live Messenger
    Windows Live Sign-in Assistant
    Windows Live Writer
    Windows Media Format 11 runtime
    Windows Media Player 11
    Windows XP Service Pack 3
    Yahoo! Messenger
    Yahoo! Toolbar

    ==== Event Viewer Messages From Past Week ========

    3/17/2009 1:03:00 PM, error: Print [19] - Sharing printer failed + 1722, Printer PaperPort Color share name PaperPor.
    3/17/2009 1:01:06 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service EventSystem with arguments " " in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
    3/17/2009 12:54:28 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service wuauserv with arguments " " in order to run the server: {E60687F7-01A1-40AA-86AC-DB1CBF673334}
    3/17/2009 12:50:28 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service usnjsvc with arguments " " in order to run the server: {98AC5C33-EE18-4EC2-BE25-3B16EE8F75F1}
    3/17/2009 12:49:55 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service BITS with arguments " " in order to run the server: {4991D34B-80A1-4291-83B6-3328366B9097}
    3/17/2009 12:48:42 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service iPod Service with arguments "-Service" in order to run the server: {063D34A4-BF84-4B8D-B699-E8CA06504DDE}
    3/17/2009 12:46:16 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: Fips intelppm
    3/17/2009 12:45:00 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service upnphost with arguments " " in order to run the server: {204810B9-73B2-11D4-BF42-00B0D0118B56}
    3/16/2009 12:19:51 PM, error: ipnathlp [31008] - The DNS proxy agent was unable to read the local list of name-resolution servers from the registry. The data is the error code.
    3/18/2009 8:46:58 AM, error: Service Control Manager [7034] - The BitDefender Virus Shield service terminated unexpectedly. It has done this 1 time(s).
    3/18/2009 8:47:02 AM, error: Service Control Manager [7034] - The BitDefender Desktop Update Service service terminated unexpectedly. It has done this 1 time(s).
    3/18/2009 9:44:10 PM, error: DCOM [10005] - DCOM got error "%1053" attempting to start the service usnjsvc with arguments " " in order to run the server: {98AC5C33-EE18-4EC2-BE25-3B16EE8F75F1}
    3/18/2009 9:44:10 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the Messenger Sharing Folders USN Journal Reader service service to connect.
    3/18/2009 9:44:10 PM, error: Service Control Manager [7000] - The Messenger Sharing Folders USN Journal Reader service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.

    ==== End Of File ===========================

    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT

    DDS (Ver_09-03-16.01)

    Microsoft Windows XP Home Edition
    Boot Device: \Device\HarddiskVolume1
    Install Date: 7/10/2004 2:28:04 PM
    System Uptime: 3/18/2009 11:42:26 PM (17 hours ago)

    Motherboard: TriGem Computer NETHERLANDS | | Advent Series
    Processor: Intel(R) Pentium(R) 4 CPU 3.40GHz | Socket 478 | 3400/200mhz

    ==== Disk Partitions =========================

    A: is Removable
    C: is FIXED (NTFS) - 186 GiB total, 44.543 GiB free.
    D: is FIXED (NTFS) - 186 GiB total, 144.225 GiB free.
    E: is CDROM ()
    F: is CDROM ()
    G: is Removable
    H: is Removable
    I: is Removable
    J: is Removable
    K: is FIXED (NTFS) - 699 GiB total, 663.841 GiB free.

    ==== Disabled Device Manager Items =============

    Class GUID: {EEC5AD98-8080-425F-922A-DABF3DE3F69A}
    Description: Nokia 6300
    Device ID: ROOT\WPD\0001
    Manufacturer: Nokia
    Name: Nokia 6300
    PNP Device ID: ROOT\WPD\0001
    Service: WUDFRd

    ==== System Restore Points ===================

    No restore point in system.

    ==== Installed Programs ======================


    4oD
    Adobe Acrobat - Reader 6.0.2 Update
    Adobe Acrobat 6.0.1 Professional
    Adobe Acrobat and Reader 6.0.3 Update
    Adobe Acrobat and Reader 6.0.4 Update
    Adobe AIR
    Adobe Atmosphere Player for Acrobat and Adobe Reader
    Adobe Flash Player 10 ActiveX
    Adobe Flash Player Plugin
    Adobe Media Player
    Adobe Reader 6.0.1
    Adobe Reader 7.0.8
    Adobe Reader 7.0.9
    Agere Systems PCI Soft Modem
    Ahead Nero Burning ROM
    AllMusicConverter 3.4.5
    Any Video Converter 1.0
    Apple Mobile Device Support
    Apple Software Update
    ArcSoft TotalMedia 3
    ArcSoft VideoImpression 2
    ASUS WLAN Card Utilities/Driver
    Audacity 1.2.6
    AVerTV
    BitDefender Antivirus 2009
    BitDefender Definitions Update
    Bonjour
    Camera RAW Plug-In for EPSON Creativity Suite
    CloneDVD
    Creative MediaSource
    Creative System Information
    Crystal Report Merge Module
    Cypress USB Mass Storage Driver Installation
    Depositit Automated Backup
    DigitalTV
    Drv
    DVD Decrypter (Remove Only)
    DVD Shrink 3.2
    DVD Solution
    Empires Dawn of the Modern World
    EPSON Attach To Email
    EPSON Easy Photo Print
    EPSON File Manager
    EPSON Print CD
    EPSON PRINT Image Framer Tool
    EPSON Printer Software
    EPSON Scan Assistant
    EPSON Web-To-Page
    ESPR360_390 User's Guide
    EZ Vinyl Converter by MixMeister 1.0.5
    Grosvenor Casinos
    HijackThis 2.0.2
    HotFax MessageCenter
    Hotfix for Windows Internet Explorer 7 (KB947864)
    Hotfix for Windows Media Format 11 SDK (KB929399)
    Hotfix for Windows Media Player 11 (KB939683)
    Hotfix for Windows XP (KB952287)
    hp instant support
    HP Memories Disc
    IncrediMail Xe
    InterActual Player
    InterVideo FilterSDK
    iPod for Windows 2005-09-23
    iPod Updater 2004-08-06
    iPod Updater 2004-10-20
    iPod Updater 2004-11-15
    iTunes
    J2SE Runtime Environment 5.0 Update 4
    Java 2 Runtime Environment, SE v1.4.0
    Java Web Start
    Java(TM) 6 Update 11
    Java(TM) 6 Update 3
    Java(TM) 6 Update 5
    LimeWire 4.18.5
    LiveUpdate (Symantec Corporation)
    LiveUpdate Notice (Symantec Corporation)
    Logitech Desktop Messenger
    Logitech iTouch Software
    Logitech Print Service
    Logitech QuickCam Software
    Logitech® Camera Driver
    Macromedia Flash Player
    Macromedia Shockwave Player
    Microsoft .NET Framework (English)
    Microsoft .NET Framework (English) v1.0.3705
    Microsoft .NET Framework 1.0 Hotfix (KB928367)
    Microsoft .NET Framework 1.1
    Microsoft .NET Framework 1.1 Hotfix (KB928366)
    Microsoft .NET Framework 2.0 Service Pack 1
    Microsoft AutoRoute v11.0
    Microsoft Compression Client Pack 1.0 for Windows XP
    Microsoft Data Access Components KB870669
    Microsoft Internationalized Domain Names Mitigation APIs
    Microsoft National Language Support Downlevel APIs
    Microsoft Office XP Professional with FrontPage
    Microsoft Publisher 2002
    Microsoft Silverlight
    Microsoft User-Mode Driver Framework Feature Pack 1.5
    Microsoft Visual C++ 2005 Redistributable
    Microsoft XML Parser
    MixVibes PRO 5 uninstall
    MobileMe Control Panel
    Mozilla Firefox (3.0.7)
    MSXML 4.0 SP2 (KB936181)
    MSXML 4.0 SP2 (KB954430)
    Multimedia Launcher
    MUSTEK 1200 UB v2.1
    MyDVD
    myibay eBay bid sniper 1.0.37
    Napster
    Napster Burn Engine
    Nokia Connectivity Cable Driver
    Nokia PC Suite
    NVIDIA Drivers
    PaperPort 8.0
    PC Connectivity Solution
    PowerDVD
    PowerProducer
    Prevx CSI
    QuickTime
    RealPlayer
    Realtek AC'97 Audio
    Registry Mechanic 7.0
    Safari
    SAM Party DJ (remove only)
    Samsung PC Studio II 2.0 Image Editor
    Security Update for Windows Internet Explorer 7 (KB938127)
    Security Update for Windows Internet Explorer 7 (KB950759)
    Security Update for Windows Internet Explorer 7 (KB953838)
    Security Update for Windows Internet Explorer 7 (KB956390)
    Security Update for Windows Internet Explorer 7 (KB958215)
    Security Update for Windows Internet Explorer 7 (KB960714)
    Security Update for Windows Internet Explorer 7 (KB961260)
    Security Update for Windows Media Player (KB911564)
    Security Update for Windows Media Player (KB952069)
    Security Update for Windows Media Player 11 (KB936782)
    Security Update for Windows Media Player 11 (KB954154)
    Security Update for Windows Media Player 6.4 (KB925398)
    Security Update for Windows Media Player 9 (KB911565)
    Security Update for Windows Media Player 9 (KB917734)
    Security Update for Windows Media Player 9 (KB936782)
    Security Update for Windows XP (KB923689)
    Security Update for Windows XP (KB938464)
    Security Update for Windows XP (KB941569)
    Security Update for Windows XP (KB946648)
    Security Update for Windows XP (KB950760)
    Security Update for Windows XP (KB950762)
    Security Update for Windows XP (KB950974)
    Security Update for Windows XP (KB951066)
    Security Update for Windows XP (KB951376-v2)
    Security Update for Windows XP (KB951376)
    Security Update for Windows XP (KB951698)
    Security Update for Windows XP (KB951748)
    Security Update for Windows XP (KB952954)
    Security Update for Windows XP (KB953839)
    Security Update for Windows XP (KB954211)
    Security Update for Windows XP (KB954600)
    Security Update for Windows XP (KB955069)
    Security Update for Windows XP (KB956391)
    Security Update for Windows XP (KB956802)
    Security Update for Windows XP (KB956803)
    Security Update for Windows XP (KB956841)
    Security Update for Windows XP (KB957095)
    Security Update for Windows XP (KB957097)
    Security Update for Windows XP (KB958644)
    Security Update for Windows XP (KB958687)
    Security Update for Windows XP (KB960715)
    ShowBiz
    SightCAM PC-100
    Sonic DLA
    Sonic RecordNow DX
    Sonic Simple Backup
    Sonic Update Manager
    SopCast 2.0.4
    Spybot - Search & Destroy 1.3
    TomTom HOME 2.5.2.60
    Turbo Lister 2
    TV
    TVAnts 1.0
    Update for Windows XP (KB951072-v2)
    Update for Windows XP (KB955839)
    Update for Windows XP (KB967715)
    USB Sound Blaster Audigy 2 NX
    USB Storage Adapter FX (SM1)
    VC_MergeModuleToMSI
    Veetle TV 0.9.14
    Viewpoint Media Player
    WebFldrs XP
    WIDCOMM Bluetooth Software
    Windows Driver Package - Nokia (WUDFRd) WPD (03/19/2007 6.83.31.1)
    Windows Driver Package - Nokia Modem (02/15/2007 3.1)
    Windows Driver Package - Nokia Modem (11/03/2006 6.82.0.1)
    Windows Internet Explorer 7
    Windows Live installer
    Windows Live Messenger
    Windows Live Sign-in Assistant
    Windows Live Writer
    Windows Media Format 11 runtime
    Windows Media Player 11
    Windows XP Service Pack 3
    Yahoo! Messenger
    Yahoo! Toolbar

    ==== Event Viewer Messages From Past Week ========

    3/17/2009 1:03:00 PM, error: Print [19] - Sharing printer failed + 1722, Printer PaperPort Color share name PaperPor.
    3/17/2009 1:01:06 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service EventSystem with arguments " " in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
    3/17/2009 12:54:28 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service wuauserv with arguments " " in order to run the server: {E60687F7-01A1-40AA-86AC-DB1CBF673334}
    3/17/2009 12:50:28 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service usnjsvc with arguments " " in order to run the server: {98AC5C33-EE18-4EC2-BE25-3B16EE8F75F1}
    3/17/2009 12:49:55 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service BITS with arguments " " in order to run the server: {4991D34B-80A1-4291-83B6-3328366B9097}
    3/17/2009 12:48:42 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service iPod Service with arguments "-Service" in order to run the server: {063D34A4-BF84-4B8D-B699-E8CA06504DDE}
    3/17/2009 12:46:16 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: Fips intelppm
    3/17/2009 12:45:00 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service upnphost with arguments " " in order to run the server: {204810B9-73B2-11D4-BF42-00B0D0118B56}
    3/16/2009 12:19:51 PM, error: ipnathlp [31008] - The DNS proxy agent was unable to read the local list of name-resolution servers from the registry. The data is the error code.
    3/18/2009 8:46:58 AM, error: Service Control Manager [7034] - The BitDefender Virus Shield service terminated unexpectedly. It has done this 1 time(s).
    3/18/2009 8:47:02 AM, error: Service Control Manager [7034] - The BitDefender Desktop Update Service service terminated unexpectedly. It has done this 1 time(s).
    3/18/2009 9:44:10 PM, error: DCOM [10005] - DCOM got error "%1053" attempting to start the service usnjsvc with arguments " " in order to run the server: {98AC5C33-EE18-4EC2-BE25-3B16EE8F75F1}
    3/18/2009 9:44:10 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the Messenger Sharing Folders USN Journal Reader service service to connect.
    3/18/2009 9:44:10 PM, error: Service Control Manager [7000] - The Messenger Sharing Folders USN Journal Reader service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.

    ==== End Of File ===========================

    DDS (Ver_09-03-16.01) - NTFSx86
    Run by First Call Mortgage at 16:38:39.90 on 19/03/2009
    Internet Explorer: 7.0.5730.13
    Microsoft Windows XP Home Edition 5.1.2600.3.1252.44.1033.18.1023.311 [GMT 0:00]

    AV: BitDefender Antivirus *On-access scanning enabled* (Updated)

    ============== Running Processes ===============

    C:\WINDOWS\system32\svchost -k DcomLaunch
    svchost.exe
    C:\Program Files\Common Files\BitDefender\BitDefender Update Service\livesrv.exe
    C:\Program Files\BitDefender\BitDefender 2009\vsserv.exe
    C:\WINDOWS\System32\svchost.exe -k netsvcs
    C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
    svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    svchost.exe
    C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
    C:\WINDOWS\System32\CTsvcCDA.exe
    C:\Program Files\Prevx\prevx.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\Program Files\Kontiki\KService.exe
    C:\WINDOWS\System32\nvsvc32.exe
    C:\WINDOWS\System32\svchost.exe -k imgsvc
    C:\WINDOWS\System32\MsPMSPSv.exe
    C:\Program Files\Prevx\prevx.exe
    C:\WINDOWS\System32\svchost.exe -k HTTPFilter
    C:\WINDOWS\system32\dla\tfswctrl.exe
    C:\WINDOWS\AGRSMMSG.exe
    C:\Program Files\Scansoft\PaperPort\pptd40nt.exe
    C:\Program Files\Logitech\iTouch\iTouch.exe
    C:\Program Files\Creative\USB SBAudigy2 NX\DVDAudio\CTDVDDet.EXE
    C:\Program Files\Creative\USB SBAudigy2 NX\Surround Mixer\CTSysVol.exe
    C:\Program Files\Common Files\Smith Micro Shared\FAX\SMLoader.exe
    C:\WINDOWS\SM1BG.EXE
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\WINDOWS\system32\LVCOMSX.EXE
    C:\Program Files\Logitech\Video\LogiTray.exe
    C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe
    C:\Program Files\Nokia\Nokia PC Suite 6\LaunchApplication.exe
    C:\Program Files\Napster\napster.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\Kontiki\KHost.exe
    C:\WINDOWS\system32\rundll32.exe
    C:\Program Files\PC Connectivity Solution\ServiceLayer.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\BitDefender\BitDefender 2009\bdagent.exe
    C:\Program Files\Logitech\Video\FxSvr2.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Program Files\TomTom HOME 2\HOMERunner.exe
    C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
    C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
    C:\Program Files\PC-TV\WinManager\IR_SERVER.exe
    C:\Program Files\ArcSoft\TotalMedia 3\TMMonitor.exe
    C:\Program Files\PC-TV\WinManager\WinManager.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\PROGRA~1\INCRED~1\bin\IMApp.exe
    C:\Program Files\BitDefender\BitDefender 2009\seccenter.exe
    C:\Program Files\Windows Live\Messenger\usnsvc.exe
    C:\Program Files\Java\jre6\bin\jucheck.exe
    C:\WINDOWS\explorer.exe
    C:\PROGRA~1\INCRED~1\bin\IncMail.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\WINDOWS\system32\wuauclt.exe
    C:\Documents and Settings\First Call Mortgage\My Documents\spy problem\dds.pif

    ============== Pseudo HJT Report ===============

    uStart Page = hxxp://www.bbc.co.uk/
    mSearch Bar = hxxp://uk.red.clientapps.yahoo.com/customize/btyahoo/defaults/sb/*http://uk.docs.yahoo.com/info/bt_side.html
    uInternet Settings,ProxyOverride = *.local
    uURLSearchHooks: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn\yt.dll
    BHO: Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - c:\program files\yahoo!\companion\installs\cpn\yt.dll
    BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 7.0\activex\AcroIEHelper.dll
    BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - c:\program files\real\realplayer\rpbrowserrecordplugin.dll
    BHO: {53707962-6f74-2d53-2644-206d7942484f} - c:\program files\spybot - search & destroy\SDHelper.dll
    BHO: DriveLetterAccess: {5ca3d70e-1895-11cf-8e15-001234567890} - c:\windows\system32\dla\tfswshx.dll
    BHO: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - No File
    BHO: {65D886A2-7CA7-479B-BB95-14D1EFB7946A} - No File
    BHO: Java(tm) Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
    BHO: {7E853D72-626A-48EC-A868-BA8D5E23E045} - No File
    BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
    BHO: AcroIEToolbarHelper Class: {ae7cd045-e861-484f-8273-0445ee161910} - c:\program files\adobe\acrobat 6.0\acrobat\AcroIEFavClient.dll
    BHO: {D80C4E21-C346-4E21-8E64-20746AA20AEB} - No File
    BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
    BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    BHO: EpsonToolBandKicker Class: {e99421fb-68dd-40f0-b4ac-b7027cae2f1a} - c:\program files\epson\epson web-to-page\EPSON Web-To-Page.dll
    TB: BitDefender Toolbar: {381ffde8-2394-4f90-b10d-fc6124a40f8c} - c:\program files\bitdefender\bitdefender 2009\IEToolbar.dll
    TB: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
    EB: Adobe PDF: {182ec0be-5110-49c8-a062-beb1d02a220b} - c:\program files\adobe\acrobat 6.0\acrobat\AcroIEFavClient.dll
    EB: {4528BBE0-4E08-11D5-AD55-00010333D0AD} - No File
    uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
    uRun: [IncrediMail] c:\progra~1\incred~1\bin\IncMail.exe /c
    uRun: [kdx] c:\program files\kontiki\KHost.exe -all
    uRun: [TomTomHOME.exe] "c:\program files\tomtom home 2\HOMERunner.exe "
    mRun: [dla] c:\windows\system32\dla\tfswctrl.exe
    mRun: [AGRSMMSG] AGRSMMSG.exe
    mRun: [PaperPort PTD] c:\program files\scansoft\paperport\pptd40nt.exe
    mRun: [IndexSearch] c:\program files\scansoft\paperport\IndexSearch.exe
    mRun: [zBrowser Launcher] c:\program files\logitech\itouch\iTouch.exe
    mRun: [CTDVDDet] c:\program files\creative\usb sbaudigy2 nx\dvdaudio\CTDVDDet.EXE
    mRun: [CTSysVol] c:\program files\creative\usb sbaudigy2 nx\surround mixer\CTSysVol.exe /r
    mRun: [UpdReg] c:\windows\UpdReg.EXE
    mRun: [SMSI Loader] c:\program files\common files\smith micro shared\fax\SMLoader.exe /PRNDRV
    mRun: [SM1BG] c:\windows\SM1BG.EXE
    mRun: [UpdateManager] "c:\program files\common files\sonic\update manager\sgtray.exe" /r
    mRun: [ISUSScheduler] "c:\program files\common files\installshield\updateservice\issch.exe" -start
    mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe "
    mRun: [LVCOMSX] c:\windows\system32\LVCOMSX.EXE
    mRun: [LogitechVideoRepair] c:\program files\logitech\video\ISStart.exe
    mRun: [LogitechVideoTray] c:\program files\logitech\video\LogiTray.exe
    mRun: [RemoteControl] "c:\program files\cyberlink dvd solution\powerdvd\PDVDServ.exe "
    mRun: [PCSuiteTrayApplication] c:\program files\nokia\nokia pc suite 6\LaunchApplication.exe -startup
    mRun: [ctfmon] c:\windows\system32\dlg\ctfmon.exe
    mRun: [RegistryMechanic]
    mRun: [CloneDVDElbyDelay] "c:\program files\elaborate bytes\clonedvd\ElbyCheck.exe" /L ElbyDelay
    mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
    mRun: [NapsterShell] c:\program files\napster\napster.exe /systray
    mRun: [TkBellExe] "c:\program files\common files\real\update_ob\realsched.exe" -osboot
    mRun: [Symantec PIF AlertEng] "c:\program files\common files\symantec shared\pif\{b8e1dd85-8582-4c61-b58f-2f227fca9a08}\pifsvc.exe" /a /m "c:\program files\common files\symantec shared\pif\{b8e1dd85-8582-4c61-b58f-2f227fca9a08}\AlertEng.dll "
    mRun: [4oD] "c:\program files\kontiki\KHost.exe" -all
    mRun: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
    mRun: [AppleSyncNotifier] c:\program files\common files\apple\mobile device support\bin\AppleSyncNotifier.exe
    mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
    mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe "
    mRun: [BDAgent] "c:\program files\bitdefender\bitdefender 2009\bdagent.exe "
    mRun: [BitDefender Antiphishing Helper] "c:\program files\bitdefender\bitdefender 2009\IEShow.exe "
    dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
    dRun: [Nokia.PCSync] c:\program files\nokia\nokia pc suite 6\PcSync2.exe /NoDialog
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\acroba~1.lnk - c:\program files\adobe\acrobat 6.0\distillr\acrotray.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\adober~1.lnk - c:\program files\adobe\acrobat 7.0\reader\reader_sl.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\bttray.lnk - c:\program files\widcomm\bluetooth software\BTTray.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\hpoddt~1.lnk - c:\program files\hewlett-packard\digital imaging\bin\hpotdd01.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\ir_ser~1.lnk - c:\program files\pc-tv\winmanager\IR_SERVER.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\logite~1.lnk - c:\program files\logitech\desktop messenger\8876480\program\LDMConf.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\micros~1.lnk - c:\program files\microsoft office\office10\OSA.EXE
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\tmmoni~1.lnk - c:\program files\arcsoft\totalmedia 3\TMMonitor.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\winman~1.lnk - c:\program files\pc-tv\winmanager\WinManager.exe
    IE: &Search - ?p=ZUman000
    IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office10\EXCEL.EXE/3000
    IE: {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe
    IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\program files\widcomm\bluetooth software\btsendto_ie.htm
    IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
    IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
    IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
    IE: {38E51477-DDB4-4aed-9D61-D0C193E10749} - {38E51477-DDB4-4aed-9D61-D0C193E10749} {38E51477-DDB4-4aed-9D61-D0C193E10749} - {38e51477-ddb4-4aed-9d61-d0c193e10749}\inprocserver32 does not exist!
    DPF: DirectAnimation Java Classes - file://c:\windows\java\classes\dajava.cab
    DPF: Microsoft XML Parser for Java - file://c:\windows\java\classes\xmldso.cab
    DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
    DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/8/b/d/8bd77752-5704-4d68-a152-f7252adaa4f2/LegitCheckControl.cab
    DPF: {215B8138-A3CF-44C5-803F-8226143CFC0A} - hxxp://housecall65.trendmicro.com/housecall/applet/html/native/x86/win32/activex/hcImpl.cab
    DPF: {31C766ED-EAB7-400B-A861-86EB4001F491} - hxxp://www.inquiero.com/inquiero/mod/setup/ntractivex114_9.cab
    DPF: {4E62C4DE-627D-4604-B157-4B7D6B09F02E} - hxxps://moneymanager.egg.com/Pinsafe/accounttracking.cab
    DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} - hxxp://download.bitdefender.com/resources/scan8/oscan8.cab
    DPF: {6A344D34-5231-452A-8A57-D064AC9B7862} - hxxps://webdl.symantec.com/activex/symdlmgr.cab
    DPF: {70D86F3C-BA4D-11D2-80F5-006008B066EE} - hxxps://www.osis.uk.com/trustwise/vspcakm.cab
    DPF: {71057C18-0507-4747-86BC-E11CE7512C5F} - hxxps://register.btinternet.com/templates/btmailcontrol013.cab
    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
    DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab
    DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} - hxxp://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
    DPF: {CAFEEFAC-0014-0000-0000-ABCDEFFEDCBA} - hxxp://java.sun.com/products/plugin/1.4/jinstall-14-win.cab
    DPF: {CAFEEFAC-0015-0000-0004-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_04-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
    DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
    DPF: {F00F4763-7355-4725-82F7-0DA94A256D46} - hxxp://www2.incredimail.com/contents/setup/downloader/imloader.cab
    TCP: NameServer = 85.255.112.20,85.255.112.141
    TCP: {1D081D02-AF06-4B83-973C-F38CBAE3F9D0} = 85.255.112.20,85.255.112.141
    TCP: {5BD94291-9827-4FEF-82FB-CF405F1EDABA} = 85.255.112.20,85.255.112.141
    TCP: {EA44DEC2-47C1-4F0E-B6FC-CFE3151718C6} = 85.255.112.20,85.255.112.141
    SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
    LSA: Notification Packages = scecli

    ================= FIREFOX ===================

    FF - ProfilePath - c:\docume~1\firstc~1\applic~1\mozilla\firefox\profiles\5uk823xc.default\
    FF - component: c:\program files\mozilla firefox\components\FFComm.dll
    FF - plugin: c:\program files\mozilla firefox\plugins\npstrlnk.dll
    FF - plugin: c:\program files\veetle\player\npvlc.dll
    FF - plugin: c:\program files\veetle\plugins\npVeetle.dll
    FF - plugin: c:\program files\viewpoint\viewpoint media player\npViewpoint.dll

    ============= SERVICES / DRIVERS ===============

    R0 pxprot;pxprot;c:\windows\system32\drivers\pxprot.sys [2009-3-11 16776]
    R0 pxscan;pxscan;c:\windows\system32\drivers\pxscan.sys [2009-3-8 22536]
    R2 CSIScanner;CSIScanner;c:\program files\prevx\prevx.exe [2009-3-8 4150840]
    R3 bdfm;BDFM;c:\windows\system32\drivers\bdfm.sys [2008-9-18 111112]
    R3 MusCDriverV32;MusCDriverV32;c:\windows\system32\drivers\MusCDriverV32.sys [2008-7-2 508544]
    R3 MusCVideo32;MusCVideo32;c:\windows\system32\drivers\MusCVideo32.sys [2008-3-9 3768]
    R3 PhTVTune;Cap7134 TVTuner;c:\windows\system32\drivers\PhTVTune.sys [2004-6-1 34880]
    R3 W8100PCI;ASUS 802.11b/g Driver for Windows XP;c:\windows\system32\drivers\mrv8k51.sys [2004-5-4 256512]
    S3 Arrakis3;BitDefender Arrakis Server;c:\program files\common files\bitdefender\bitdefender arrakis server\bin\Arrakis3.exe [2008-7-17 118784]
    S3 ASNDIS5;ASNDIS5 Protocol Driver;c:\windows\system32\ASNDIS5.sys [2004-5-4 16269]
    S3 brfilt;Brother MFC Filter Driver;c:\windows\system32\drivers\BrFilt.sys [2004-7-11 2944]
    S3 brparimg;Brother Multi Function Parallel Image driver;c:\windows\system32\drivers\BrParImg.sys [2004-7-11 3168]
    S3 BrParWdm;Brother WDM Parallel Driver;c:\windows\system32\drivers\BrParwdm.sys [2004-7-11 39552]
    S3 BrSerWDM;Brother Serial driver;c:\windows\system32\drivers\BrSerWdm.sys [2004-7-11 60416]
    S3 MA8630C;MA8630C;c:\windows\system32\drivers\MA8630C.sys [2005-6-22 23248]
    S3 MA8630M;MA8630M;c:\windows\system32\drivers\MA8630M.sys [2005-6-22 25428]
    S3 MA8630U;MA8630U;c:\windows\system32\drivers\MA8630U.sys [2005-6-22 50642]
    S3 MODRC;DiBcom Infrared Receiver;c:\windows\system32\drivers\modrc.sys [2009-1-11 13824]
    S3 RTL2831UBDA;REALTEK 2831U BDA Driver;c:\windows\system32\drivers\RTL2831UBDA.sys [2008-3-21 62720]
    S3 RTL2831UUSB;REALTEK 2831U USB Driver;c:\windows\system32\drivers\RTL2831UUSB.sys [2008-3-21 24064]
    S3 S6U12BScanner;MUSTEK 1200 UB Still Image Device Service;c:\windows\system32\drivers\usbscan.sys [2004-7-10 15104]
    S3 sbusb;Sound Blaster USB Audio Driver;c:\windows\system32\drivers\sbusb.sys [2004-7-25 892160]
    S3 SoundMovieServer;SoundMovieServer;c:\windows\system32\snmvtsvc.exe [2008-7-2 184320]
    S3 SUNPLUS;SightCAM PC-100;c:\windows\system32\drivers\sp508pix.sys [2005-10-18 98905]
    S3 Symantec Core LC;Symantec Core LC;c:\program files\common files\symantec shared\ccpd-lc\symlcsvc.exe [2007-11-21 1251720]

    =============== Created Last 30 ================

    2009-03-19 10:39 <DIR> --d----- c:\program files\Trend Micro
    2009-03-19 10:34 <DIR> --d----- c:\documents and settings\first call mortgage\.housecall6.6
    2009-03-18 23:40 <DIR> --d----- c:\windows\system32\CatRoot2
    2009-03-18 22:14 <DIR> --d----- c:\program files\TeaTimer (Spybot - Search & Destroy)
    2009-03-18 22:14 <DIR> --d----- c:\program files\SDHelper (Spybot - Search & Destroy)
    2009-03-18 22:14 <DIR> --d----- c:\program files\Misc. Support Library (Spybot - Search & Destroy)
    2009-03-18 22:14 <DIR> --d----- c:\program files\File Scanner Library (Spybot - Search & Destroy)
    2009-03-18 09:27 <DIR> --d----- c:\docume~1\firstc~1\applic~1\BitDefender
    2009-03-18 09:27 <DIR> --d----- c:\docume~1\alluse~1\applic~1\BitDefender
    2009-03-18 09:26 <DIR> --d----- c:\program files\common files\BitDefender
    2009-03-17 13:42 <DIR> --d----- c:\program files\iTunes
    2009-03-17 13:42 <DIR> --d----- c:\docume~1\alluse~1\applic~1\{00D89592-F643-4D8D-8F0F-AFAE0F14D4C3}
    2009-03-17 13:39 <DIR> --d----- c:\program files\Bonjour
    2009-03-17 13:28 1,900,544 a------- c:\windows\system32\usbaaplrc.dll
    2009-03-17 12:27 <DIR> --d----- c:\program files\common files\Windows Live
    2009-03-11 14:21 16,776 a------- c:\windows\system32\drivers\pxprot.sys
    2009-03-10 13:06 850 a------- c:\windows\system32\ProductTweaks.xml
    2009-03-10 13:06 385 a------- c:\windows\system32\user_gensett.xml
    2009-03-09 23:05 <DIR> --d----- c:\program files\BitDefender
    2009-03-08 23:46 <DIR> --d----- c:\windows\system32\en
    2009-03-08 20:57 22,536 a------- c:\windows\system32\drivers\pxscan.sys
    2009-03-08 20:57 <DIR> --d----- c:\program files\Prevx
    2009-03-08 20:57 <DIR> --d----- c:\docume~1\alluse~1\applic~1\PrevxCSI
    2009-03-08 17:51 4 a------- c:\windows\system32\gaopdxcounter
    2009-02-28 14:52 10,129,408 ac------ c:\windows\system32\dllcache\hwxkor.dll
    2009-02-28 14:51 8,704 ac------ c:\windows\system32\dllcache\kbdjpn.dll
    2009-02-28 14:51 8,192 ac------ c:\windows\system32\dllcache\kbdkor.dll
    2009-02-28 14:51 6,144 ac------ c:\windows\system32\dllcache\kbd101c.dll
    2009-02-28 14:51 5,632 ac------ c:\windows\system32\dllcache\kbd103.dll
    2009-02-28 14:51 8,704 a------- c:\windows\system32\kbdjpn.dll
    2009-02-28 14:51 8,192 a------- c:\windows\system32\kbdkor.dll
    2009-02-28 14:51 6,144 a------- c:\windows\system32\kbd106.dll
    2009-02-28 14:51 6,144 a------- c:\windows\system32\kbd101c.dll
    2009-02-28 14:51 5,632 a------- c:\windows\system32\kbd103.dll
    2009-02-28 14:51 6,144 ac------ c:\windows\system32\dllcache\kbd101b.dll
    2009-02-28 14:51 6,144 a------- c:\windows\system32\kbd101b.dll

    ==================== Find3M ====================

    2009-03-19 16:37 81,984 a------- c:\windows\system32\bdod.bin
    2009-03-18 22:42 1,660 a------- c:\windows\bthservsdp.dat
    2009-03-13 21:49 73,736 a------- c:\docume~1\firstc~1\applic~1\GDIPFONTCACHEV1.DAT
    2009-03-08 23:51 77,939 a------- c:\windows\pchealth\helpctr\offlinecache\index.dat
    2009-03-05 23:59 36,864 a------- c:\windows\system32\drivers\usbaapl.sys
    2009-02-15 11:58 410,984 a------- c:\windows\system32\deploytk.dll
    2008-12-20 23:15 826,368 a------- c:\windows\system32\wininet.dll
    2005-10-17 11:14 124 a---h--- c:\program files\AppUpdate.log
    2004-03-11 13:27 40,960 a------- c:\program files\Uninstall_CDS.exe
    2003-08-27 13:19 36,963 a----r-- c:\program files\common files\SM1updtr.dll
    2002-08-29 12:00 94,784 ---sh--- c:\windows\twain.dll
    2008-04-14 00:12 50,688 ---sh--- c:\windows\twain_32.dll
    2008-04-14 00:12 413,696 a--sh--- c:\windows\system32\msvcp60.dll
    2008-04-14 00:12 11,776 ---sh--- c:\windows\system32\regsvr32.exe

    ============= FINISH: 16:40:13.31 ===============
     
  5. 2009/03/20
    PeteC

    PeteC SuperGeek Staff

    Joined:
    2002/05/10
    Messages:
    28,896
    Likes Received:
    389
    Thanks :)

    One of our trained malware analysts will take a look at your logs ASAP, but it may be a day or so before you get a response as they are always very busy. All logs are dealt with in the order received.

    Thank you for your patience.
     
  6. 2009/03/21
    Geri Lifetime Subscription

    Geri Inactive Alumni

    Joined:
    2003/03/02
    Messages:
    4,580
    Likes Received:
    7
    Hi jeffd
    Is this a work computer?
    Run by First Call Mortgage

    We prefer not to work on corporate computers if at all possible, I would have your IT person look at the system.

    Geri
     
    Geri,
    #5
  7. 2009/03/22
    jeffd

    jeffd Inactive Thread Starter

    Joined:
    2009/03/19
    Messages:
    4
    Likes Received:
    0
    Hi it is not a work pc. Was a business I used to own,but now closed. Have now fixed issue using mailwarebytes. Many thanks for your help
     
  8. 2009/03/22
    Geri Lifetime Subscription

    Geri Inactive Alumni

    Joined:
    2003/03/02
    Messages:
    4,580
    Likes Received:
    7
    Hi jeffd
    OK thanks for letting us know.

    Please look at this link for some preventive recommendations, It could keep you from ending up back here to the Malware and Virus Removal Forums.
    http://www.windowsbbs.com/showthread.php?t=67958

    Surf Safely
    Geri
     
    Geri,
    #7
  9. 2009/03/23
    tmondal

    tmondal Inactive

    Joined:
    2009/03/22
    Messages:
    2
    Likes Received:
    0
    Jeffd,
    Can you put the detail of malewareremoval you used to clean your computer? I am having similar problem in my personal computer where I can't go to any antivirus site as well as windows update. Also did you find out which virus caused this?
     
  10. 2009/03/23
    jeffd

    jeffd Inactive Thread Starter

    Joined:
    2009/03/19
    Messages:
    4
    Likes Received:
    0
    Hi Tmondal. I attach log for Malwarebytes' Anti-Malware the program. I used a link from a thread on this site to access the download. Everything is working fine now.
    Malwarebytes' Anti-Malware 1.34
    Database version: 1749
    Windows 5.1.2600 Service Pack 3

    20/03/2009 14:49:53
    mbam-log-2009-03-20 (14-49-53).txt

    Scan type: Quick Scan
    Objects scanned: 106100
    Time elapsed: 20 minute(s), 38 second(s)

    Memory Processes Infected: 0
    Memory Modules Infected: 1
    Registry Keys Infected: 16
    Registry Values Infected: 0
    Registry Data Items Infected: 14
    Folders Infected: 0
    Files Infected: 1

    Memory Processes Infected:
    (No malicious items detected)

    Memory Modules Infected:
    C:\Program Files\Windows Live\Messenger\msimg32.dll (Adware.MyWebSearch) -> Delete on reboot.

    Registry Keys Infected:
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{7545d8c8-f53c-4e2f-8fa0-d248ef4a6e61} (Rogue.Installer) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07b18ea9-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07b18eab-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{25560540-9571-4d7b-9389-0f166788785a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3dc201fb-e9c9-499c-a11f-23c360d7c3f8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00a6faf1-072e-44cf-8957-5838f569a31d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{59c7fc09-1c83-4648-b3e6-003d2bbc7481} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68af847f-6e91-45dd-9b68-d6a12c30e5d7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9170b96c-28d4-4626-8358-27e6caeef907} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d1a71fa0-ff48-48dd-9b6d-7a13a3e42127} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ddb1968e-ead6-40fd-8dae-ff14757f60c7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f138d901-86f0-4383-99b6-9cdd406036da} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\RunDll32Policy\f3ScrCtr.dll (Adware.MyWay) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pss (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Explorer.exe (Security.Hijack) -> Quarantined and deleted successfully.

    Registry Values Infected:
    (No malicious items detected)

    Registry Data Items Infected:
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.20,85.255.112.141 -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{1d081d02-af06-4b83-973c-f38cbae3f9d0}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.20,85.255.112.141 -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{5bd94291-9827-4fef-82fb-cf405f1edaba}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.20,85.255.112.141 -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Interfaces\{ea44dec2-47c1-4f0e-b6fc-cfe3151718c6}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.20,85.255.112.141 -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.149,85.255.112.214 -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{1d081d02-af06-4b83-973c-f38cbae3f9d0}\DhcpNameServer (Trojan.DNSChanger) -> Data: 85.255.112.149,85.255.112.214 -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{1d081d02-af06-4b83-973c-f38cbae3f9d0}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.149,85.255.112.214 -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{5bd94291-9827-4fef-82fb-cf405f1edaba}\DhcpNameServer (Trojan.DNSChanger) -> Data: 85.255.112.149,85.255.112.214 -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{5bd94291-9827-4fef-82fb-cf405f1edaba}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.149,85.255.112.214 -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{ea44dec2-47c1-4f0e-b6fc-cfe3151718c6}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.149,85.255.112.214 -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Tcpip\Parameters\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.20,85.255.112.141 -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Tcpip\Parameters\Interfaces\{1d081d02-af06-4b83-973c-f38cbae3f9d0}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.20,85.255.112.141 -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Tcpip\Parameters\Interfaces\{5bd94291-9827-4fef-82fb-cf405f1edaba}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.20,85.255.112.141 -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Tcpip\Parameters\Interfaces\{ea44dec2-47c1-4f0e-b6fc-cfe3151718c6}\NameServer (Trojan.DNSChanger) -> Data: 85.255.112.20,85.255.112.141 -> Quarantined and deleted successfully.

    Folders Infected:
    (No malicious items detected)

    Files Infected:
    C:\Program Files\Windows Live\Messenger\msimg32.dll (Adware.MyWebSearch) -> Delete on reboot.
     
  11. 2009/03/24
    tmondal

    tmondal Inactive

    Joined:
    2009/03/22
    Messages:
    2
    Likes Received:
    0
    Tried the malwarebytes. But it still the same issue. First of all it doen't allow me to go to malwarebytes or anyother antivirus/malware remover website. So I downloaded thru other computer and install it in the infected one. It removed quite a few adware, 2 trojans and 1 Rogue installer. But still I can't go to microsoft, symantec, macfee, quickheal, etc.

    I can post the log file of malwarebytes if needed. I have Hijackthis logfile also. Can someone help?
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.