Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

DrWatson post mortem debugger


  • Please log in to reply

#1
campbell jonah

campbell jonah

    New Member

  • Member
  • Pip
  • 2 posts
June 7th: My problem is resolved. I uninstalled the "ChildWebGuardian" program which I recently downloaded as a trial version, and then my computer worked fine. I don't know whether I did something wrong when I set up this program or whether there was something wrong with the program. Thanks very much for being here to help people!

June 4th: When I try to open any folder on my computer, I get the DrWatson post mortem debugger message and my computer locks up. I have read another posting on your site about this problem. Should I should start by downloading the HiJackThis program and then sending the log to you? Thanks very much.

June 5th: That was my original post. I'm sorry that I've been doing this wrong. I wasn't trying to cheat when I added a second post, I just didn't know what to do. You said that I am allowed to edit my original post, so I hope I am doing the right thing by adding my Hijack This log and all my other information to my original post by editing it. Here is the additional information:

I have now read the “Must-Read-This-Before-Posting-Hijackthis-Log” and have tried everything in that section. I am very sorry that I posted on June 4th to ask how to post a Hijackthis log without first reading the “Must-Read”. I still cannot access “My Computer” or any of my saved folders, but my Programs work. Now I will describe all that I have tried to do to solve the problem:

I ran “Spybot Search and Destroy” and it said there were no threats.

My anti-virus protection, provided by my server, runs every day, and it quarantined six files. This is what they say (they are all the same but with different numbers):

"C:\Program Files\Common Files\PestPatrol\Quarantine\20070529072829.zip
Some files of this archive could not be scanned because they are protected by a password. These files will be scanned by the real-time protection the first time the password is entered. If you want to scan them now, remove the password protection."

I don’t know what it means by password protected because it has never said that before, unless it is referring to the “ChildWebGuardian” trial version program I recently installed. I don’t know how to remove the password protection so that these files can be scanned. I phoned the tech support at our server and he said to just delete the quarantined files, but I can’t because I can’t access my program files.

I ran the ATF Cleaner, and then I created a new System Restore Point.

I downloaded the AVG Anti-Spyware program but it would not run in Safe Mode (I tried it several times and it said I wasn’t connected) so I ran it in regular mode. It found 37 malware items (mostly tracking cookies) but the report section was blank even though I selected “automatically generate report after every scan” and I couldn’t copy the list. I could have written them down by hand, but now the list is gone.

I ran the SUPER Anti-Spyware program and here are the results:

SUPERAntiSpyware Scan Log
Generated 06/05/2007 at 00:48 AM

Application Version : 3.6.1000

Core Rules Database Version : 3249
Trace Rules Database Version: 1260

Scan type : Complete Scan
Total Scan Time : 02:18:14

Memory items scanned : 462
Memory threats detected : 0
Registry items scanned : 5810
Registry threats detected : 0
File items scanned : 88331
File threats detected : 21

Adware.Tracking Cookie
C:\Documents and Settings\Owner\Cookies\[email protected][2].txt
C:\Documents and Settings\Owner\Cookies\[email protected][1].txt
C:\WINDOWS\SYSTEM32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\SYSTEM32\config\systemprofile\Cookies\owner@adcentriconline[1].txt
C:\WINDOWS\SYSTEM32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\SYSTEM32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\SYSTEM32\config\systemprofile\Cookies\owner@exitexchange[1].txt
C:\WINDOWS\SYSTEM32\config\systemprofile\Cookies\owner@focalex[2].txt
C:\WINDOWS\SYSTEM32\config\systemprofile\Cookies\owner@go4media[1].txt
C:\WINDOWS\SYSTEM32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\SYSTEM32\config\systemprofile\Cookies\owner@macromedia[1].txt
C:\WINDOWS\SYSTEM32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\SYSTEM32\config\systemprofile\Cookies\owner@metareward[2].txt
C:\WINDOWS\SYSTEM32\config\systemprofile\Cookies\owner@pennyweb[1].txt
C:\WINDOWS\SYSTEM32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\SYSTEM32\config\systemprofile\Cookies\owner@webpower[1].txt
C:\WINDOWS\SYSTEM32\config\systemprofile\Cookies\owner@windowsmedia[2].txt
C:\WINDOWS\SYSTEM32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\SYSTEM32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\SYSTEM32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\SYSTEM32\config\systemprofile\Cookies\[email protected][1].txt


I tried to run the Panda Activescan, but it would not run when I clicked the “My Computer” button, and just said that an error had occurred.

I went to the Windows Update site to check on whether I had SP1a, and it told me that there were no updates available for my computer.

I rebooted and the same “DrWatson” error occurred and I had to log off.

I did a Hijack This scan and here is my log:

Logfile of HijackThis v1.99.1
Scan saved at 3:12:59 AM, on 6/5/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16441)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Common Files\Command Software\dvpapi.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\windows\system\hpsysdrv.exe
C:\HP\KBD\KBD.EXE
C:\PROGRA~1\LEXMAR~1\ACMonitor_X83.exe
C:\PROGRA~1\LEXMAR~1\AcBtnMgr_X83.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe
C:\Program Files\TELUS\TELUS Security service\Freedom.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2G1.EXE
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\ChildWebGuardian\ChildWebGuardian.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Skype\Phone\Skype.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
C:\Program Files\SuperAntiSpyware Free Edition\SUPERAntiSpyware.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://us4.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-us4.hpwis.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ewtn.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft....k/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-us4.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft....k/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://srch-us4.hpwis.com/
F2 - REG:system.ini: Shell=
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: Pop-Up Blocker BHO - {3C060EA2-E6A9-4E49-A530-D4657B8C449A} - C:\Program Files\TELUS\TELUS Security service\pkR.dll
O2 - BHO: SafeSurferPopupKiller - {4A77B761-F91C-4A91-94A1-B638B146B6F9} - C:\WINDOWS\SYSTEM32\cwg.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Form Filler BHO - {56071E0D-C61B-11D3-B41C-00E02927A304} - C:\Program Files\TELUS\TELUS Security service\FreeBHOR.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - c:\Program Files\Microsoft Money\System\mnyviewer.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [DDCM] "C:\Program Files\WildTangent\DDC\DDCManager\DDCMan.exe" -Background
O4 - HKLM\..\Run: [DDCActiveMenu] "C:\Program Files\WildTangent\DDC\ActiveMenu\DDCActiveMenu.exe" -boot
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [S3TRAY2] S3tray2.exe
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [Lexmark X83 Button Monitor] C:\PROGRA~1\LEXMAR~1\ACMonitor_X83.exe
O4 - HKLM\..\Run: [Lexmark X83 Button Manager] C:\PROGRA~1\LEXMAR~1\AcBtnMgr_X83.exe
O4 - HKLM\..\Run: [PrinTray] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe
O4 - HKLM\..\Run: [TELUS Security service] "C:\Program Files\TELUS\TELUS Security service\Freedom.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [EPSON Stylus CX5400] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2G1.EXE /P19 "EPSON Stylus CX5400" /O6 "USB001" /M "Stylus CX5400"
O4 - HKLM\..\Run: [REGSHAVE] C:\Program Files\REGSHAVE\REGSHAVE.EXE /AUTORUN
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [ChildWebGuardian] C:\Program Files\ChildWebGuardian\ChildWebGuardian.exe startup
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [Microsoft Works Update Detection] c:\Program Files\Microsoft Works\WkDetect.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MoneyAgent] "c:\Program Files\Microsoft Money\System\Money Express.exe"
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SuperAntiSpyware Free Edition\SUPERAntiSpyware.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: MktBrowser - {17A27031-71FC-11d4-815C-005004D0F1FA} - C:\Program Files\MarketBrowser\lmt\MarketBrowser_Launch.xpy
O9 - Extra 'Tools' menuitem: MarketBrowser - {17A27031-71FC-11d4-815C-005004D0F1FA} - C:\Program Files\MarketBrowser\lmt\MarketBrowser_Launch.xpy
O9 - Extra button: ChildWebGuardian - {2358E75B-A1F3-4D15-989D-B63A8D55DBFB} - C:\Program Files\ChildWebGuardian\ChildWebGuardian.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - c:\Program Files\Microsoft Money\System\mnyviewer.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by108fd.bay10...es/MsnPUpld.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebo...otoUploader.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.micros...b?1152863356203
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.micros...b?1152863331562
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoft...free/asinst.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SuperAntiSpyware Free Edition\SASWINLO.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: DvpApi (dvpapi) - Command Software Systems, Inc. - C:\Program Files\Common Files\Command Software\dvpapi.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe

I also ran Hijackthis to get the uninstall list and here it is:

ABBYY FineReader 5.0 Sprint Plus
Adobe Acrobat 5.0
Adobe Flash Player 9 ActiveX
Adobe Shockwave Player
Age of Empires III
Age of Mythology
Age Of Wonders
ArcSoft Software Suite
AVG Anti-Spyware 7.5
Baldur's Gate
ChildWebGuardian 2.2
CleanUp!
Detto IntelliMover
DivX Codec
DivX Content Uploader
DivX Converter
DivX Player
DivX Web Player
Easy Internet Sign-up
Encore LaunchPad 6.8.25.100
Enjoyment_of_Music_9
EPSON Copy Utility
EPSON EIC CX5400
EPSON Photo Print
EPSON Printer Software
EPSON Scan
EPSON Smart Panel
FinePixViewer Ver.4.3
FlashSpring Pro 2.0.1
FUJIFILM USB Driver
GemMaster 2
Google Toolbar for Internet Explorer
Hijackthis 1.99.1
HijackThis 1.99.1
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows XP (KB914440)
Hotfix for Windows XP (KB915865)
Hotfix for Windows XP (KB926239)
hp center
HP Instant Support
HP RecordNow
IKEA Home Planner Kitchen
IKEA HomePlanner Kitchen
Inactive HP Printer Drivers (Remove only)
InterVideo WinDVD
iTunes
J2SE Runtime Environment 5.0 Update 10
J2SE Runtime Environment 5.0 Update 11
J2SE Runtime Environment 5.0 Update 9
Jasc Paint Shop Pro 8
Java™ SE Runtime Environment 6 Update 1
KaraFun 1.01b
KazooStudio
KBD
Lernout & Hauspie TruVoice American English TTS Engine
Lexmark X83
LucasArts' Force Commander
MarketBrowser
Microsoft .NET Framework 2.0
Microsoft Combat Flight Simulator
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft Money 2002
Microsoft Money 2002 System Pack
Microsoft National Language Support Downlevel APIs
Microsoft Office Standard Edition 2003
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Works 6.0
Microsoft Works and Money 2002 Setup Launcher
MPIO Software Installation
MSXML 4.0 SP2 (KB925672)
MSXML 4.0 SP2 (KB927978)
MSXML4 Parser
MUSICMATCH Jukebox
My Photo Center
Panda ActiveScan
Panzer Dragoon Killer !
PC-Doctor for Windows
PS2
Python 1.5 combined Win32 extensions
Python 1.5.2 (final)
Quicken Financial Center
QuickTime
RealPlayer
S3 Gamma
S3 Savage4 Family Display Switch2 Utility
SabreWing 2
ScanToWeb
Security Update for Microsoft .NET Framework 2.0 (KB917283)
Security Update for Microsoft .NET Framework 2.0 (KB922770)
Security Update for Step By Step Interactive Training (KB898458)
Security Update for Step By Step Interactive Training (KB923723)
Security Update for Windows Internet Explorer 7 (KB928090)
Security Update for Windows Internet Explorer 7 (KB929969)
Security Update for Windows Internet Explorer 7 (KB931768)
Security Update for Windows Media Player (KB911564)
Security Update for Windows Media Player 6.4 (KB925398)
Security Update for Windows Media Player 8 (KB917734)
Security Update for Windows Media Player 9 (KB911565)
Security Update for Windows Media Player 9 (KB917734)
Security Update for Windows XP (KB890046)
Security Update for Windows XP (KB893756)
Security Update for Windows XP (KB896358)
Security Update for Windows XP (KB896423)
Security Update for Windows XP (KB896424)
Security Update for Windows XP (KB896428)
Security Update for Windows XP (KB899587)
Security Update for Windows XP (KB899591)
Security Update for Windows XP (KB900725)
Security Update for Windows XP (KB901017)
Security Update for Windows XP (KB901214)
Security Update for Windows XP (KB902400)
Security Update for Windows XP (KB904706)
Security Update for Windows XP (KB905414)
Security Update for Windows XP (KB905749)
Security Update for Windows XP (KB908519)
Security Update for Windows XP (KB911562)
Security Update for Windows XP (KB911567)
Security Update for Windows XP (KB911927)
Security Update for Windows XP (KB912919)
Security Update for Windows XP (KB913580)
Security Update for Windows XP (KB914388)
Security Update for Windows XP (KB914389)
Security Update for Windows XP (KB916281)
Security Update for Windows XP (KB917159)
Security Update for Windows XP (KB917344)
Security Update for Windows XP (KB917422)
Security Update for Windows XP (KB917953)
Security Update for Windows XP (KB918118)
Security Update for Windows XP (KB918899)
Security Update for Windows XP (KB919007)
Security Update for Windows XP (KB920213)
Security Update for Windows XP (KB920214)
Security Update for Windows XP (KB920670)
Security Update for Windows XP (KB920683)
Security Update for Windows XP (KB920685)
Security Update for Windows XP (KB921398)
Security Update for Windows XP (KB921883)
Security Update for Windows XP (KB922616)
Security Update for Windows XP (KB922760)
Security Update for Windows XP (KB922819)
Security Update for Windows XP (KB923191)
Security Update for Windows XP (KB923414)
Security Update for Windows XP (KB923689)
Security Update for Windows XP (KB923694)
Security Update for Windows XP (KB923980)
Security Update for Windows XP (KB924191)
Security Update for Windows XP (KB924270)
Security Update for Windows XP (KB924496)
Security Update for Windows XP (KB924667)
Security Update for Windows XP (KB925454)
Security Update for Windows XP (KB925486)
Security Update for Windows XP (KB925902)
Security Update for Windows XP (KB926255)
Security Update for Windows XP (KB926436)
Security Update for Windows XP (KB927779)
Security Update for Windows XP (KB927802)
Security Update for Windows XP (KB928255)
Security Update for Windows XP (KB928843)
Security Update for Windows XP (KB930178)
Security Update for Windows XP (KB931261)
Security Update for Windows XP (KB931784)
Security Update for Windows XP (KB932168)
SiS 900 PCI Fast Ethernet Adapter Driver
SiS Audio Driver
Skype 2.5
Sonic Foundry Super Duper Music Looper XPress
Spybot - Search & Destroy 1.4
Studio
SUPERAntiSpyware Free Edition
Tcl 8.0.5 for Windows
TELUS Security & Privacy
Typing Tutor 10
Uniblue Registry Booster
Update for Windows XP (KB898461)
Update for Windows XP (KB900485)
Update for Windows XP (KB904942)
Update for Windows XP (KB908531)
Update for Windows XP (KB910437)
Update for Windows XP (KB911280)
Update for Windows XP (KB916595)
Update for Windows XP (KB920872)
Update for Windows XP (KB922582)
Update for Windows XP (KB927891)
Update for Windows XP (KB929338)
Update for Windows XP (KB930916)
Update for Windows XP (KB931836)
WeatherBug
WildTangent Channel Manager
Windows Installer 3.1 (KB893803)
Windows Internet Explorer 7
Windows Live Messenger
Windows Media Format 11 runtime
Windows Media Format 11 runtime
Windows Media Player 11
Windows Media Player 11
Windows XP Hotfix - KB873339
Windows XP Hotfix - KB885835
Windows XP Hotfix - KB885836
Windows XP Hotfix - KB886185
Windows XP Hotfix - KB887472
Windows XP Hotfix - KB888113
Windows XP Hotfix - KB888302
Windows XP Hotfix - KB890859
Windows XP Hotfix - KB891781
Windows XP Service Pack 2
WinRAR archiver
WordPerfect Office 2002 Try Before You Buy
WordPerfect Office 2002 Try Before You Buy
wxPython 2.8.0.1 (ansi) for Python 2.5

Then I tried running the Kaspersky Online Scan, and it said "object is locked" and "skipped" for everything on the report. Here is the report:

KASPERSKY ONLINE SCANNER REPORT
Tuesday, June 05, 2007 7:12:23 PM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.83.0
Kaspersky Anti-Virus database last update: 6/06/2007
Kaspersky Anti-Virus database records: 318912


Scan Settings
Scan using the following antivirus database standard
Scan Archives true
Scan Mail Bases true

Scan Target My Computer
A:\
C:\
D:\
E:\

Scan Statistics
Total number of scanned objects 94680
Number of viruses found 0
Number of infected objects 0 / 0
Number of suspicious objects 0
Duration of the scan process 02:33:59

Infected Object Name Virus Name Last Action
C:\52bda41df497ada8c6ad5b497ba0625\asms\10100\msft\windows\gdiplus\gdiplus.cat Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\asms\10100\msft\windows\gdiplus\gdiplus.dll Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\asms\10100\msft\windows\gdiplus\gdiplus.man Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\asms\10100\policy\msft\windows\gdiplus\gdiplus.cat Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\asms\10100\policy\msft\windows\gdiplus\gdiplus.man Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\asms\60100\msft\windows\common\controls\comctl32.dll Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\asms\60100\msft\windows\common\controls\controls.cat Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\asms\60100\msft\windows\common\controls\controls.man Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\asms\60100\policy\60100\comctl\comctl.cat Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\asms\60100\policy\60100\comctl\comctl.man Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\asms\70100\msft\windows\mswincrt\msvcirt.dll Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\asms\70100\msft\windows\mswincrt\msvcrt.dll Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\asms\70100\msft\windows\mswincrt\mswincrt.cat Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\asms\70100\msft\windows\mswincrt\mswincrt.man Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\asms\70100\policy\msft\mswincrt\mswincrt.cat Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\asms\70100\policy\msft\mswincrt\mswincrt.man Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\licdll.dll Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\new\secupd.dat Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\new\secupd.sig Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\readmesp.htm Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\spmsg.dll Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\spuninst.exe Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\tagfile.1 Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\update\eula.txt Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\update\sp1.cat Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\update\spcustom.dll Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\update\update.exe Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\update\update.inf Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\update\update.url Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\update\update.ver Object is locked skipped

C:\52bda41df497ada8c6ad5b497ba0625\winxp_logo_horiz_sm.gif Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\asms\10100\msft\windows\gdiplus\gdiplus.cat Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\asms\10100\msft\windows\gdiplus\gdiplus.dll Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\asms\10100\msft\windows\gdiplus\gdiplus.man Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\asms\10100\policy\msft\windows\gdiplus\gdiplus.cat Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\asms\10100\policy\msft\windows\gdiplus\gdiplus.man Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\asms\60100\msft\windows\common\controls\comctl32.dll Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\asms\60100\msft\windows\common\controls\controls.cat Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\asms\60100\msft\windows\common\controls\controls.man Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\asms\60100\policy\60100\comctl\comctl.cat Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\asms\60100\policy\60100\comctl\comctl.man Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\asms\70100\msft\windows\mswincrt\msvcirt.dll Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\asms\70100\msft\windows\mswincrt\msvcrt.dll Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\asms\70100\msft\windows\mswincrt\mswincrt.cat Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\asms\70100\msft\windows\mswincrt\mswincrt.man Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\asms\70100\policy\msft\mswincrt\mswincrt.cat Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\asms\70100\policy\msft\mswincrt\mswincrt.man Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\licdll.dll Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\new\secupd.dat Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\new\secupd.sig Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\readmesp.htm Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\spmsg.dll Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\spuninst.exe Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\tagfile.1 Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\update\eula.txt Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\update\sp1.cat Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\update\spcustom.dll Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\update\update.exe Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\update\update.inf Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\update\update.url Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\update\update.ver Object is locked skipped

C:\d28f5b787f66c8e649ac2a754\winxp_logo_horiz_sm.gif Object is locked skipped

C:\Documents and Settings\All Users\Application Data\TELUS\TELUS Security service\logs\ServiceModel06-05-2007--02-56-02.log Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Temp\History\History.IE5\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped

C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped

C:\Documents and Settings\Owner\Application Data\Microsoft\Templates\Normal.dot Object is locked skipped

C:\Documents and Settings\Owner\Application Data\Microsoft\Word\AutoRecovery save of Document1.asd Object is locked skipped

C:\Documents and Settings\Owner\Application Data\Skype\kay-kay-bay\chat512.dbb Object is locked skipped

C:\Documents and Settings\Owner\Application Data\Skype\kay-kay-bay\chatmsg256.dbb Object is locked skipped

C:\Documents and Settings\Owner\Application Data\Skype\kay-kay-bay\chatmsg512.dbb Object is locked skipped

C:\Documents and Settings\Owner\Application Data\Skype\kay-kay-bay\contactgroup256.dbb Object is locked skipped

C:\Documents and Settings\Owner\Application Data\Skype\kay-kay-bay\index2.dat Object is locked skipped

C:\Documents and Settings\Owner\Application Data\Skype\kay-kay-bay\profile16384.dbb Object is locked skipped

C:\Documents and Settings\Owner\Application Data\Skype\kay-kay-bay\user1024.dbb Object is locked skipped

C:\Documents and Settings\Owner\Application Data\Skype\kay-kay-bay\user256.dbb Object is locked skipped

C:\Documents and Settings\Owner\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SUPERANTISPYWARE.LOG Object is locked skipped

C:\Documents and Settings\Owner\Application Data\TELUS\TELUS Security service\logs\SafetyConsoleLog06-05-2007--02-56-07.log Object is locked skipped

C:\Documents and Settings\Owner\Cookies\index.dat Object is locked skipped

C:\Documents and Settings\Owner\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat Object is locked skipped

C:\Documents and Settings\Owner\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\Owner\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\Owner\Local Settings\History\History.IE5\index.dat Object is locked skipped

C:\Documents and Settings\Owner\Local Settings\History\History.IE5\MSHist012007060520070606\index.dat Object is locked skipped

C:\Documents and Settings\Owner\Local Settings\Temp\~DF171A.tmp Object is locked skipped

C:\Documents and Settings\Owner\Local Settings\Temp\~DF7323.tmp Object is locked skipped

C:\Documents and Settings\Owner\Local Settings\Temp\~DF7370.tmp Object is locked skipped

C:\Documents and Settings\Owner\Local Settings\Temp\~DFD005.tmp Object is locked skipped

C:\Documents and Settings\Owner\Local Settings\Temp\~WRS0002.tmp Object is locked skipped

C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

C:\Documents and Settings\Owner\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\Owner\ntuser.dat.LOG Object is locked skipped

C:\System Volume Information\_restore{0A438C3B-A487-4C6D-850C-C76CC3327FD0}\RP431\change.log Object is locked skipped

C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped

C:\WINDOWS\SchedLgU.Txt Object is locked skipped

C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped

C:\WINDOWS\Sti_Trace.log Object is locked skipped

C:\WINDOWS\SYSTEM32\CatRoot2\edb.log Object is locked skipped

C:\WINDOWS\SYSTEM32\CatRoot2\tmp.edb Object is locked skipped

C:\WINDOWS\SYSTEM32\config\AppEvent.Evt Object is locked skipped

C:\WINDOWS\SYSTEM32\config\default Object is locked skipped

C:\WINDOWS\SYSTEM32\config\default.LOG Object is locked skipped

C:\WINDOWS\SYSTEM32\config\Internet.evt Object is locked skipped

C:\WINDOWS\SYSTEM32\config\SAM Object is locked skipped

C:\WINDOWS\SYSTEM32\config\SAM.LOG Object is locked skipped

C:\WINDOWS\SYSTEM32\config\SecEvent.Evt Object is locked skipped

C:\WINDOWS\SYSTEM32\config\SECURITY Object is locked skipped

C:\WINDOWS\SYSTEM32\config\SECURITY.LOG Object is locked skipped

C:\WINDOWS\SYSTEM32\config\software Object is locked skipped

C:\WINDOWS\SYSTEM32\config\software.LOG Object is locked skipped

C:\WINDOWS\SYSTEM32\config\SysEvent.Evt Object is locked skipped

C:\WINDOWS\SYSTEM32\config\system Object is locked skipped

C:\WINDOWS\SYSTEM32\config\system.LOG Object is locked skipped

C:\WINDOWS\SYSTEM32\h323log.txt Object is locked skipped

C:\WINDOWS\SYSTEM32\wbem\Repository\FS\INDEX.BTR Object is locked skipped

C:\WINDOWS\SYSTEM32\wbem\Repository\FS\INDEX.MAP Object is locked skipped

C:\WINDOWS\SYSTEM32\wbem\Repository\FS\MAPPING.VER Object is locked skipped

C:\WINDOWS\SYSTEM32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped

C:\WINDOWS\SYSTEM32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped

C:\WINDOWS\SYSTEM32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped

C:\WINDOWS\SYSTEM32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped

C:\WINDOWS\wiadebug.log Object is locked skipped

C:\WINDOWS\wiaservc.log Object is locked skipped

C:\WINDOWS\WindowsUpdate.log Object is locked skipped

Scan process completed.



That is everything. The only other unusual thing that I can think of that might be related is that I installed a freeware parental control program on my computer called “Parental Filter 0.1.7”. I installed it, couldn’t get it to work, and so uninstalled it. It seemed like the problems started then, but I don’t know whether they are related to this program.

Thank you very much! I hope that I have explained everything properly and included all the information you need. I will be so grateful to have my computer working again.

Edited by campbell jonah, 07 June 2007 - 02:24 PM.

  • 0

Advertisements







Similar Topics

1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP