Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

System Restore window "PC Performance & Stability analysis rep


  • This topic is locked This topic is locked

#46
maezhou

maezhou

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 152 posts
I don't think that's happening.
  • 0

Advertisements


#47
maezhou

maezhou

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 152 posts
Nothing's happened so far.
  • 0

#48
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
OK try the other programme now.

At this stage it may be advisable to back up all your important data and be prepared for a reinstall
  • 0

#49
maezhou

maezhou

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 152 posts
I don't think i'm up for that. Any other possible solution where there's no need to reinstall applications/files?
  • 0

#50
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
There is a repair install option - but if you are game we will try to fix it
  • 0

#51
maezhou

maezhou

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 152 posts
I don't have hard drive with me right now (i'm at work) where I can store my files for back-up. I'll do it once I got back home.

If ever, will it affect applications? Or files and documents only? Files and documents are fine. It's the applications i'm worried about.
I have a VPN connected for work, which I'm afraid will be the most problematic if it will be reinstalled.
  • 0

#52
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Applications will need to be re-installed but files and documents will be safe

But lets see what rootkit revealer finds first
  • 0

#53
maezhou

maezhou

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 152 posts
OK. Thanks. I'll get back once I've stored my files to the external hard drive.
  • 0

#54
maezhou

maezhou

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 152 posts
Hi Essexboy, just an update, I was just able to start copying files to external hard drive this morning. I have tons of files on my machine. It says copying will be done in 4 hours! So I just leave it at home doing the file transfers.
  • 0

#55
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Good it is always usefull to have a backup in case something untoward occurs

Once done we shall see what rootkit revealer finds
  • 0

Advertisements


#56
maezhou

maezhou

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 152 posts
Thing is I will be out of town from tomorrow until this weekend. I can't be able to bring my laptop with me. I will be back Monday. So do I have to PM you to reactivate this?
  • 0

#57
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Only if I inadvertently close it, but I shouldn't unless I have a senior moment :)
  • 0

#58
maezhou

maezhou

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 152 posts
Hi there, i'm back. Hopefully, will be able to fix this. Keeping my fingers crossed. I'm going to run rookitrevealer in a short while.
  • 0

#59
maezhou

maezhou

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 152 posts
RookitReveler was not able to complete scanning. It encountered an error on CMD.EXE -- not sure if it's CMD.EXE though. I thought I was able to take a screenshot of the error message, but turned out that I was not able to. And I was not able to take note of the error message.

Should I do it again?

Anyways, here's the TXT report:

HKU\S-1-5-21-2528014064-590018410-3601204245-1000\console_combofixbackup 10/22/2011 2:29 PM 0 bytes Security mismatch.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WSMAN 3/25/2011 11:51 PM 0 bytes Security mismatch.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WSMAN\CertMapping 3/25/2011 11:51 PM 0 bytes Security mismatch.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WSMAN\Client 11/2/2006 5:54 AM 0 bytes Security mismatch.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WSMAN\Listener 11/2/2006 5:54 AM 0 bytes Security mismatch.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WSMAN\Plugin 3/25/2011 11:51 PM 0 bytes Security mismatch.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WSMAN\Service 11/2/2006 5:54 AM 0 bytes Security mismatch.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WSMAN\WinRS 10/15/2008 1:36 AM 0 bytes Security mismatch.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\WSMAN\WinRS\CustomRemoteShell 10/15/2008 1:36 AM 0 bytes Security mismatch.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\009 11/2/2006 3:33 AM 0 bytes Security mismatch.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6C041448-C69A-4D8B-A774-4F3948997407}\DynamicInfo 11/1/2011 7:25 PM 28 bytes Data mismatch between Windows API and raw hive data.
HKLM\SOFTWARE\Swearware\backup\winsock2 10/23/2011 3:46 PM 0 bytes Security mismatch.
HKLM\SOFTWARE\Swearware\backup\winsock2\Parameters 10/23/2011 3:46 PM 0 bytes Security mismatch.
HKLM\SOFTWARE\Swearware\backup\winsock2\Parameters\NameSpace_Catalog5 10/23/2011 3:46 PM 0 bytes Security mismatch.
HKLM\SOFTWARE\Swearware\backup\winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries 10/23/2011 3:46 PM 0 bytes Security mismatch.
HKLM\SOFTWARE\Swearware\backup\winsock2\Parameters\Protocol_Catalog9 10/23/2011 3:46 PM 0 bytes Security mismatch.
HKLM\SOFTWARE\Swearware\backup\winsock2\Parameters\Protocol_Catalog9\Catalog_Entries 10/23/2011 3:46 PM 0 bytes Security mismatch.

Edited by maezhou, 01 November 2011 - 10:04 PM.

  • 0

#60
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
This is being a bit of a cuss - OK could you run me a fresh OTL scan please ensuring all users is selected. There will be just one log this time
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP