Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

IRCbot [RESOLVED]


  • This topic is locked This topic is locked

#61
Rorschach112

Rorschach112

    Ralphie

  • Retired Staff
  • 47,710 posts
One final scan

Please download Runscanner to your desktop and run it.
  • When the first page comes up select Beginner Mode
  • On the next page select Save a binary .Run file (Recommended) then click Start full scan at the top.
  • At this time Runscanner.exe may request access to the Internet through your firewall please allow it to do so, it will then run for two or three minutes.
  • On completion it will ask for a location to save the file and a name. It will do this for both the .run file and the log file
  • Call the .run file "Select a name" and save it to your desktop. You will see the .run file on your desktop. Upload that file here.

  • 0

Advertisements


#62
synesthesia

synesthesia

    Member

  • Topic Starter
  • Member
  • PipPip
  • 43 posts
I'm not sure if you need the log too, but i'm gonna post it anyway, just in case =P


Runscanner logfile http://www.runscanner.net

* = signed file
- = file not found

General info
------------
Computer name : TOSHIBA-USER
Creation time : 9/2/2008 9:59:56 PM
Hosts <> 127.0.0.1 : 0
Hosts file location : %SystemRoot%\System32\drivers\etc
IE version : 6.0.2800.1106
OS : Microsoft Windows XP
OS Build : 2600
OS SP : Service Pack 1
RunScanner Version : 1.7.0.0
User Language : English (United States)
User rights : Administrator
Windows folder : C:\WINDOWS

Running processes
-----------------
* C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe (Lavasoft)
* C:\Program Files\AIM6\aim6.exe (AOL LLC)
* C:\Program Files\Apoint2K\Apoint.exe (Alps Electric Co., Ltd.)
* C:\Program Files\Apoint2K\Apntex.exe (Alps Electric Co., Ltd.)
* C:\Program Files\AIM6\aolsoftware.exe (AOL LLC)
* c:\program files\aol\aim toolbar 5.0\AolTbServer.exe (AOL LLC)
* C:\WINDOWS\System32\alg.exe (Microsoft Corporation)
C:\Program Files\AccessRamp\ARMon32.exe (Inverse Network Technology)
C:\WINDOWS\System32\DRIVERS\CDANTSRV.EXE (C-Dilla Ltd)
* C:\WINDOWS\system32\csrss.exe (Microsoft Corporation)
C:\Program Files\Toshiba\ConfigFree\NDSTray.exe (TOSHIBA CORPORATION)
* C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIABA.EXE (SEIKO EPSON CORPORATION)
C:\WINDOWS\System32\ezSP_Px.exe (Easy Systems Japan Ltd.)
* C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
* C:\WINDOWS\system32\svchost.exe (Microsoft Corporation)
* C:\WINDOWS\System32\svchost.exe (Microsoft Corporation)
* C:\WINDOWS\System32\svchost.exe (Microsoft Corporation)
* C:\WINDOWS\System32\svchost.exe (Microsoft Corporation)
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe (Hewlett-Packard Co.)
C:\Program Files\HP\Digital Imaging\Product Assistant\bin\hprblog.exe (Hewlett-Packard Co.)
* C:\WINDOWS\System32\hkcmd.exe (Intel Corporation)
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe (Hewlett-Packard Co.)
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
* C:\WINDOWS\System32\igfxtray.exe (Intel Corporation)
* C:\Program Files\internet explorer\iexplore.exe (Microsoft Corporation)
* C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe (Sun Microsystems, Inc.)
* C:\WINDOWS\system32\lsass.exe (Microsoft Corporation)
C:\Program Files\ltmoh\Ltmoh.exe (Agere Systems)
* C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
C:\Program Files\Analog Devices\SoundMAX\PmProxy.exe (adi)
C:\WINDOWS\System32\qttask.exe
* C:\Documents and Settings\Soleil Robichaud\Local Settings\temp\Temporary Directory 1 for runscanner.zip\RunScanner.exe (Runscanner.net)
* C:\WINDOWS\system32\services.exe (Microsoft Corporation)
C:\WINDOWS\AGRSMMSG.exe (Agere Systems)
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe (Analog Devices, Inc.)
* C:\WINDOWS\system32\spoolsv.exe (Microsoft Corporation)
C:\WINDOWS\System32\TFNF5.exe (Toshiba Corp.)
C:\WINDOWS\System32\00THotkey.exe (TOSHIBA Corp.)
C:\toshiba\ivp\ism\pinger.exe (TOSHIBA Corporation)
C:\WINDOWS\System32\TPWRTRAY.EXE (TOSHIBA Corporation)
C:\Program Files\TOSHIBA\TouchED\TouchED.Exe (TOSHIBA Corporation)
* C:\WINDOWS\Explorer.EXE (Microsoft Corporation)
* C:\WINDOWS\system32\winlogon.exe (Microsoft Corporation)
* c:\windows\System32\smss.exe (Microsoft Corporation)
* C:\WINDOWS\System32\wuauclt.exe (Microsoft Corporation)

Unrated items
-------------
002 C:\WINDOWS\System32\000StTHK.exe
002 C:\WINDOWS\System32\00THotkey.exe (TOSHIBA Corp.)
002 C:\Program Files\AccessRamp\ARMon32.exe (Inverse Network Technology)
002 C:\WINDOWS\AGRSMMSG.exe (Agere Systems)
002 C:\WINDOWS\System32\ezSP_Px.exe (Easy Systems Japan Ltd.)
002 C:\Program Files\HP\HP Software Update\HPWuSchd2.exe (Hewlett-Packard Co.)
002 C:\Program Files\ltmoh\Ltmoh.exe (Agere Systems)
002 C:\Program Files\Toshiba\ConfigFree\NDSTray.exe (TOSHIBA CORPORATION)
002 c:\toshiba\ivp\ism\pinger.exe (TOSHIBA Corporation)
002 C:\Program Files\Analog Devices\SoundMAX\PmProxy.exe (adi)
002 C:\WINDOWS\System32\qttask.exe
002 C:\WINDOWS\System32\TFNF5.exe (Toshiba Corp.)
002 C:\Program Files\TOSHIBA\TouchED\TouchED.Exe (TOSHIBA Corporation)
002 C:\WINDOWS\System32\TPWRTRAY.EXE (TOSHIBA Corporation)
003 * C:\Program Files\AIM6\aim6.exe (AOL LLC)
005 C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
005 C:\Program Files\Microsoft Office\Office\OSA9.EXE (Microsoft Corporation)
010 C:\WINDOWS\System32\DRIVERS\CDANTSRV.EXE (C-DillaSrv)
010 C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe (SoundMAX Agent Service)
011 C:\WINDOWS\system32\drivers\ASCTRM.sys (ASCTRM)
011 C:\WINDOWS\System32\drivers\CDANT.SYS (C-Dilla)
011 C:\WINDOWS\System32\DRIVERS\PxHelp20.sys (PxHelp20)
011 C:\WINDOWS\System32\Drivers\Tbiosdrv.sys (TBiosDrv)
011 C:\WINDOWS\system32\drivers\tiehdusb.sys (TIEHDUSB)
011 C:\WINDOWS\System32\DRIVERS\TVALD.SYS (Toshiba ACPI-Based Value Added Logical Device Driver)
011 C:\WINDOWS\System32\DRIVERS\TVALG.SYS (Toshiba Value Added Logical and General Purpose Device Driver)
030 C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation) {1E66F26B-79EE-11D2-8710-00C04F79ED0D}
030 C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation) {1E66F26B-79EE-11D2-8710-00C04F79ED0D}
030 C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation) {1E66F26B-79EE-11D2-8710-00C04F79ED0D}
040 * C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.) {EF99BD32-C1FB-11D2-892F-0090271D4F88}
041 * C:\Program Files\AOL\AIM Toolbar 5.0\aoltb.dll (AOL LLC) {DE9C389F-3316-41A7-809B-AA305ED9D922}
041 * C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.) {EF99BD32-C1FB-11D2-892F-0090271D4F88}
045 * C:\Program Files\AOL\AIM Toolbar 5.0\aoltb.dll (AOL LLC) {DE9C389F-3316-41A7-809B-AA305ED9D922}
045 * C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.) {EF99BD32-C1FB-11D2-892F-0090271D4F88}
047 Zone: : msn
052 * C:\Program Files\AOL\AIM Toolbar 5.0\aoltb.dll (AOL LLC) {7C554162-8CB7-45A4-B8F4-8EA1C75885F9}
052 * C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.) {02478D38-C3F9-4efb-9B51-7695ECA05670}
061 C:\WINDOWS\system32\mscoree.dll (Microsoft Corporation) {1D2680C9-0E2A-469d-B787-065558BC7D43}
061 C:\PROGRA~1\COMMON~1\TISHAR~1\TICONN~1\TIShlExt.dll (Texas Instruments Incorporated) {3FCEF010-09A4-11D4-8D3B-D12F9D3D8B02}
061 C:\Program Files\TOSHIBA\TouchED\TouchED.dll (TOSHIBA Corporation) {C4213067-97B3-4929-9B98-B5600FBBBA13}
069 C:\WINDOWS\System32\HpTcpMon.dll (Hewlett Packard)
100 Start Page HKCU : http://www.yahoo.com/
105 &AIM Search : c:\program files\aol\aim toolbar 5.0\resources\en-US\local\search.html
173 GUID / CLSID not found
221 GUID / CLSID not found
227 GUID / CLSID not found

Missing files
-------------
011 C:\WINDOWS\system32\drivers\Abiosdsk.sys
011 C:\WINDOWS\system32\drivers\abp480n5.sys
011 C:\WINDOWS\system32\drivers\adpu160m.sys
011 C:\WINDOWS\system32\drivers\Aha154x.sys
011 C:\WINDOWS\system32\drivers\aic78u2.sys
011 C:\WINDOWS\system32\drivers\aic78xx.sys
011 C:\WINDOWS\system32\drivers\AliIde.sys
011 C:\WINDOWS\system32\drivers\amsint.sys
011 C:\WINDOWS\system32\drivers\asc.sys
011 C:\WINDOWS\system32\drivers\asc3350p.sys
011 C:\WINDOWS\system32\drivers\asc3550.sys
011 C:\WINDOWS\system32\drivers\Atdisk.sys
011 C:\ComboFix\catchme.sys
011 C:\WINDOWS\system32\drivers\cd20xrnt.sys
011 C:\WINDOWS\system32\drivers\Changer.sys
011 C:\WINDOWS\system32\drivers\CmdIde.sys
011 C:\WINDOWS\system32\drivers\Cpqarray.sys
011 C:\WINDOWS\system32\drivers\dac2w2k.sys
011 C:\WINDOWS\system32\drivers\dac960nt.sys
011 C:\WINDOWS\system32\drivers\dpti2o.sys
011 C:\WINDOWS\system32\drivers\hpn.sys
011 C:\WINDOWS\system32\drivers\i2omgmt.sys
011 C:\WINDOWS\system32\drivers\i2omp.sys
011 C:\WINDOWS\system32\drivers\ini910u.sys
011 C:\WINDOWS\system32\drivers\lbrtfdc.sys
011 C:\WINDOWS\system32\drivers\mraid35x.sys
011 C:\WINDOWS\system32\drivers\mrtRate.sys
011 C:\WINDOWS\system32\drivers\papycpu.sys
011 C:\WINDOWS\system32\drivers\PCIDump.sys
011 C:\WINDOWS\system32\drivers\PDCOMP.sys
011 C:\WINDOWS\system32\drivers\PDFRAME.sys
011 C:\WINDOWS\system32\drivers\PDRELI.sys
011 C:\WINDOWS\system32\drivers\PDRFRAME.sys
011 C:\WINDOWS\system32\drivers\perc2.sys
011 C:\WINDOWS\system32\drivers\perc2hib.sys
011 C:\WINDOWS\system32\drivers\ql1080.sys
011 C:\WINDOWS\system32\drivers\Ql10wnt.sys
011 C:\WINDOWS\system32\drivers\ql12160.sys
011 C:\WINDOWS\system32\drivers\ql1240.sys
011 C:\WINDOWS\system32\drivers\ql1280.sys
011 C:\WINDOWS\system32\drivers\Simbad.sys
011 C:\WINDOWS\system32\drivers\Sparrow.sys
011 C:\WINDOWS\system32\drivers\sym_hi.sys
011 C:\WINDOWS\system32\drivers\sym_u3.sys
011 C:\WINDOWS\system32\drivers\symc810.sys
011 C:\WINDOWS\system32\drivers\symc8xx.sys
011 C:\WINDOWS\system32\drivers\TosIde.sys
011 C:\WINDOWS\system32\drivers\ultra.sys
011 C:\WINDOWS\system32\drivers\ViaIde.sys
011 System32\DRIVERS\wanatw4.sys
011 C:\WINDOWS\system32\drivers\WDICA.sys
061 deskpan.dll

Attached Files


  • 0

#63
Rorschach112

Rorschach112

    Ralphie

  • Retired Staff
  • 47,710 posts
Hello


Download the attachment at the end of this post (this will be your runscanner file fixed by me)

  • Save it to your desktop then double click the runscanner icon this will run the program.
  • You will notice several entries in red and in blue.
  • Click the button at the top called Item Fixer
  • Accept the warning(s) and repeat until they are all gone.
  • Reboot your PC


Also tell me how your PC is running
  • 0

#64
synesthesia

synesthesia

    Member

  • Topic Starter
  • Member
  • PipPip
  • 43 posts
when i go to the Item Fixer tab, there are no items listed =/
am i doing something wrong?
  • 0

#65
Rorschach112

Rorschach112

    Ralphie

  • Retired Staff
  • 47,710 posts
Download the run file in my previous post

Double click on it and run it

Then you should see a good few entries with ticks in the boxes, fix them
  • 0

#66
synesthesia

synesthesia

    Member

  • Topic Starter
  • Member
  • PipPip
  • 43 posts
Okay, it's done =]

My computer seems to be working fine, but the things that used to keep happening (like the blue screen of death) didn't really happen that often, maybe a few times a week, so i can't really tell you for sure.

Also, i don't think this is because of any infection (as this problem started before this computer had internet access), but the USB drives don't seem to work. It used to be able to read my flash drive, but now it says that it doesn't recognize the USB device. This happens with everything i plug into the USB drive, not just the flash drive. I looked online for a driver for the flash drive, but it says that XP should be able to recognize it without a driver. Is there anyway I can fix this?

Thanks for all your help!!

Edited by synesthesia, 03 September 2008 - 03:54 PM.

  • 0

#67
Rorschach112

Rorschach112

    Ralphie

  • Retired Staff
  • 47,710 posts
Best post in the Windows XP forum about that
  • 0

#68
synesthesia

synesthesia

    Member

  • Topic Starter
  • Member
  • PipPip
  • 43 posts
Okay thanks =]

Can i just delete all the scan/fix stuff that you had me download? cuz it's taking up a lot of space on my computer.
  • 0

#69
Rorschach112

Rorschach112

    Ralphie

  • Retired Staff
  • 47,710 posts
Yes go ahead
  • 0

#70
synesthesia

synesthesia

    Member

  • Topic Starter
  • Member
  • PipPip
  • 43 posts
ugh....
I just did a scan with Ad-Aware (the real thing from Lavasoft) and it found win32.trojan.inject, if i just quarantine this do you think i'll be fine?
  • 0

Advertisements


#71
Rorschach112

Rorschach112

    Ralphie

  • Retired Staff
  • 47,710 posts
I wouldn't worry about that, its probably some harmless left overs

Quarantine it if you want
  • 0

#72
Rorschach112

Rorschach112

    Ralphie

  • Retired Staff
  • 47,710 posts
Since this issue appears to be resolved ... this Topic has been closed. Glad we could help. :)

If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.

Everyone else please begin a New Topic.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP