Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

I think FACEBOOK got me - lost all programs on start menu. Only have


  • This topic is locked This topic is locked

#1
Candy Doby

Candy Doby

    Member

  • Member
  • PipPip
  • 16 posts
I am pretty sure facebook got me. I have a blue screen with no icons and nothing on the starte up menu. There are no favorites on the internet either, I tried several things last noght to fix the problem, seems similar to a problem I had before, but not all the links work now in my topic archives. PLEASE HELP ME!!!!
Here is my OTL log:

OTL logfile created on: 11/17/2011 7:28:18 AM - Run 4
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Documents and Settings\Administrator\Desktop
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

765.99 Mb Total Physical Memory | 408.86 Mb Available Physical Memory | 53.38% Memory free
1.46 Gb Paging File | 1.16 Gb Available in Paging File | 79.71% Paging File free
Paging file location(s): C:\pagefile.sys 768 1536 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 37.24 Gb Total Space | 25.86 Gb Free Space | 69.44% Space Free | Partition Type: NTFS

Computer Name: FAMILY | User Name: Administrator | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011/11/16 19:47:14 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Administrator\Desktop\OTL.exe
PRC - [2011/10/24 20:29:16 | 002,415,456 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgtray.exe
PRC - [2011/10/18 06:14:54 | 001,229,152 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgnsx.exe
PRC - [2011/10/12 06:25:22 | 004,433,248 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe
PRC - [2011/10/10 06:23:34 | 000,973,664 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgemcx.exe
PRC - [2011/09/08 20:53:26 | 000,743,264 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgrsx.exe
PRC - [2011/09/05 12:04:58 | 000,035,736 | -H-- | M] (Adobe Systems Incorporated) -- C:\Program Files\Adobe\Reader 10.0\Reader\reader_sl.exe
PRC - [2011/08/15 06:21:40 | 000,337,760 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgcsrvx.exe
PRC - [2011/08/09 16:02:04 | 001,176,064 | -H-- | M] (W3i, LLC) -- C:\Program Files\W3i\InstallIQUpdater\InstallIQUpdater.exe
PRC - [2011/08/02 06:09:08 | 000,192,776 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2012\avgwdsvc.exe
PRC - [2008/04/13 19:12:19 | 001,033,728 | -H-- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe


========== Modules (No Company Name) ==========


========== Win32 Services (SafeList) ==========

SRV - [2011/10/12 06:25:22 | 004,433,248 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe -- (AVGIDSAgent)
SRV - [2011/08/02 06:09:08 | 000,192,776 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2012\avgwdsvc.exe -- (avgwd)


========== Driver Services (SafeList) ==========

DRV - [2011/11/16 20:13:09 | 000,111,872 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\TrueSight.sys -- (TrueSight)
DRV - [2011/10/07 06:23:48 | 000,230,608 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgldx86.sys -- (Avgldx86)
DRV - [2011/10/04 06:21:42 | 000,016,720 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSShim.sys -- (AVGIDSShim)
DRV - [2011/09/13 06:30:10 | 000,032,592 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\avgrkx86.sys -- (Avgrkx86)
DRV - [2011/08/08 06:08:58 | 000,040,016 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\avgmfx86.sys -- (Avgmfx86)
DRV - [2011/07/11 01:14:38 | 000,295,248 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\avgtdix.sys -- (Avgtdix)
DRV - [2011/07/11 01:14:28 | 000,024,272 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSFilter.sys -- (AVGIDSFilter)
DRV - [2011/07/11 01:14:28 | 000,023,120 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\AVGIDSEH.Sys -- (AVGIDSEH)
DRV - [2011/07/11 01:14:26 | 000,134,608 | ---- | M] (AVG Technologies CZ, s.r.o. ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\AVGIDSDriver.sys -- (AVGIDSDriver)
DRV - [2004/09/17 11:02:54 | 000,732,928 | -H-- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\senfilt.sys -- (senfilt)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========


IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.wsoctv.com/
IE - HKCU\..\URLSearchHook: {81017EA9-9AA8-4A6A-9734-7AF40E7D593F} - No CLSID value found
IE - HKCU\..\URLSearchHook: {A3BC75A2-1F87-4686-AA43-5347D756017C} - No CLSID value found
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.startup.homepage: "http://wsoctv.com/"
FF - prefs.js..network.proxy.type: 0
FF - prefs.js..browser.startup.homepage: "www.rr.com"

FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\4.0.60129.0\npctrl.dll File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\{1E73965B-8B48-48be-9C8D-68B920ABC1C4}: C:\Program Files\AVG\AVG2012\Firefox4\ [2011/11/16 17:30:01 | 000,000,000 | ---D | M]

[2011/07/07 21:45:09 | 000,000,000 | -H-D | M] (No name found) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Extensions
[2010/10/13 13:11:49 | 000,000,000 | -H-D | M] (No name found) -- C:\Documents and Settings\Administrator\Application Data\Mozilla\Extensions\[email protected]

========== Chrome ==========


O1 HOSTS File: ([2011/11/16 19:58:20 | 000,000,098 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No CLSID value found.
O2 - BHO: (AVG Safe Search) - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG2012\avgssie.dll (AVG Technologies CZ, s.r.o.)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {B99F805C-F0B1-48EA-8C8B-753BFCBED913} - No CLSID value found.
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [AVG_TRAY] C:\Program Files\AVG\AVG2012\avgtray.exe (AVG Technologies CZ, s.r.o.)
O4 - HKCU..\Run: [InstallIQUpdater] C:\Program Files\W3i\InstallIQUpdater\InstallIQUpdater.exe (W3i, LLC)
O4 - HKCU..\Run: [Weather] C:\Program Files\AWS\WeatherBug\Weather.exe 1 File not found
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDesktop = 1
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105 File not found
O16 - DPF: {23A2712A-7A4F-4D0C-822C-D7BA9974447B} https://registration...m/RegHelper.cab (SettingsHelper Class)
O16 - DPF: {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} http://catalog.updat...b?1302311187906 (MUCatalogWebControl Class)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://update.micros...b?1051525427828 (WUWebControl Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.mi...b?1282536646125 (MUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_24)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 209.18.47.61 209.18.47.62
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E6EBB49B-906B-42BC-B313-53025D3F6AE0}: DhcpNameServer = 209.18.47.61 209.18.47.62
O18 - Protocol\Handler\linkscanner {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG2012\avgpp.dll (AVG Technologies CZ, s.r.o.)
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - (igfxsrvc.dll) - C:\WINDOWS\System32\igfxsrvc.dll (Intel Corporation)
O24 - Desktop WallPaper: C:\Documents and Settings\Administrator\My Documents\My Pictures\untitled.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Administrator\My Documents\My Pictures\untitled.bmp
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2003/04/28 03:44:09 | 000,000,000 | -H-- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O35 - HKCU\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKCU\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/11/16 20:57:43 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011/11/16 20:57:34 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrator\My Documents\My Videos
[2011/11/16 20:57:34 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Administrator\Start Menu\Programs\Administrative Tools
[2011/11/16 20:57:19 | 000,000,000 | --SD | C] -- C:\32788R22FWJFW
[2011/11/16 20:12:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Desktop\RK_Quarantine
[2011/11/16 19:58:13 | 000,000,000 | ---D | C] -- C:\_OTL
[2011/11/16 19:47:26 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Administrator\Desktop\OTL.exe
[2011/11/16 17:59:14 | 000,000,000 | -H-D | C] -- C:\$AVG
[2011/11/16 17:41:57 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Administrative Tools
[2011/11/16 17:36:59 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Administrator\Recent
[2011/11/16 17:30:57 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Administrator\Application Data\AVG2012
[2011/11/16 17:30:01 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\AVG 2012
[2011/11/16 17:29:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\AVG2012
[2011/11/16 17:29:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\AVG
[2011/11/16 17:24:36 | 003,903,608 | ---- | C] (AVG Technologies) -- C:\Documents and Settings\Administrator\Desktop\avg_free_stb_all_2012_1869_cnet.exe
[2011/11/16 17:17:57 | 000,000,000 | -HSD | C] -- C:\WINDOWS\CSC
[2011/11/16 14:33:57 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Administrator\Start Menu\Programs\System Fix
[2011/11/11 08:52:31 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Google Earth
[2011/11/05 17:39:13 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Administrator\My Documents\Facebook Pics

========== Files - Modified Within 30 Days ==========

[2011/11/17 07:31:20 | 000,000,438 | -H-- | M] () -- C:\WINDOWS\tasks\User_Feed_Synchronization-{3FF45B31-763B-43F0-893A-5E5B4CF41A3B}.job
[2011/11/17 07:27:57 | 000,013,646 | -H-- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/11/17 07:27:30 | 000,000,896 | -H-- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[2011/11/17 07:27:29 | 000,000,422 | -H-- | M] () -- C:\WINDOWS\tasks\PC Optimizer Pro startups.job
[2011/11/17 07:27:26 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/11/17 07:19:48 | 000,000,272 | ---- | M] () -- C:\WINDOWS\reimage.ini
[2011/11/17 06:48:00 | 000,000,900 | -H-- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[2011/11/16 20:40:29 | 000,000,464 | -H-- | M] () -- C:\WINDOWS\tasks\At2.job
[2011/11/16 20:33:31 | 000,017,408 | ---- | M] () -- C:\Documents and Settings\Administrator\Local Settings\Application Data\WebpageIcons.db
[2011/11/16 20:13:09 | 000,111,872 | ---- | M] () -- C:\WINDOWS\System32\drivers\TrueSight.sys
[2011/11/16 20:12:30 | 000,760,832 | ---- | M] () -- C:\Documents and Settings\Administrator\Desktop\RogueKiller.exe
[2011/11/16 19:58:20 | 000,000,098 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\Hosts
[2011/11/16 19:47:14 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Administrator\Desktop\OTL.exe
[2011/11/16 17:32:46 | 071,256,053 | ---- | M] () -- C:\WINDOWS\System32\drivers\AVG\incavi.avm
[2011/11/16 17:29:35 | 000,427,407 | ---- | M] () -- C:\WINDOWS\System32\drivers\AVG\incavi.avm.old
[2011/11/16 17:24:38 | 003,903,608 | ---- | M] (AVG Technologies) -- C:\Documents and Settings\Administrator\Desktop\avg_free_stb_all_2012_1869_cnet.exe
[2011/11/16 14:58:15 | 000,000,456 | -H-- | M] () -- C:\Documents and Settings\All Users\Application Data\b7An9X5muTodLR
[2011/11/16 14:58:06 | 000,000,296 | -H-- | M] () -- C:\Documents and Settings\All Users\Application Data\~b7An9X5muTodLR
[2011/11/16 14:58:06 | 000,000,216 | -H-- | M] () -- C:\Documents and Settings\All Users\Application Data\~b7An9X5muTodLRr
[2011/11/16 14:58:00 | 000,000,849 | -H-- | M] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\System Fix.lnk
[2011/11/16 14:34:11 | 000,000,831 | -H-- | M] () -- C:\Documents and Settings\Administrator\Desktop\System Fix.lnk
[2011/11/16 14:00:21 | 000,000,464 | -H-- | M] () -- C:\WINDOWS\tasks\At4.job
[2011/11/16 13:07:16 | 000,000,464 | -H-- | M] () -- C:\WINDOWS\tasks\At3.job
[2011/11/16 10:10:16 | 000,000,464 | -H-- | M] () -- C:\WINDOWS\tasks\At1.job
[2011/11/09 16:51:53 | 000,001,374 | -H-- | M] () -- C:\WINDOWS\imsins.BAK
[2011/11/07 09:25:33 | 000,435,688 | -H-- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011/11/07 09:25:33 | 000,068,584 | -H-- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011/10/28 09:33:13 | 000,623,338 | -H-- | M] () -- C:\Documents and Settings\Administrator\My Documents\for lake norman.pdf
[2011/10/25 16:23:39 | 000,397,364 | -H-- | M] () -- C:\Documents and Settings\Administrator\My Documents\Scan.pdf
[2011/10/25 16:21:44 | 000,155,879 | -H-- | M] () -- C:\Documents and Settings\Administrator\My Documents\Scan0002.pdf
[2011/10/25 16:20:18 | 000,251,949 | -H-- | M] () -- C:\Documents and Settings\Administrator\My Documents\Scan0001.pdf

========== Files Created - No Company Name ==========

[2011/11/16 21:05:32 | 000,000,272 | ---- | C] () -- C:\WINDOWS\reimage.ini
[2011/11/16 20:33:23 | 000,017,408 | ---- | C] () -- C:\Documents and Settings\Administrator\Local Settings\Application Data\WebpageIcons.db
[2011/11/16 20:12:44 | 000,111,872 | ---- | C] () -- C:\WINDOWS\System32\drivers\TrueSight.sys
[2011/11/16 20:12:20 | 000,760,832 | ---- | C] () -- C:\Documents and Settings\Administrator\Desktop\RogueKiller.exe
[2011/11/16 17:32:46 | 071,256,053 | ---- | C] () -- C:\WINDOWS\System32\drivers\AVG\incavi.avm
[2011/11/16 14:57:59 | 000,000,849 | -H-- | C] () -- C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\System Fix.lnk
[2011/11/16 14:34:11 | 000,000,216 | -H-- | C] () -- C:\Documents and Settings\All Users\Application Data\~b7An9X5muTodLRr
[2011/11/16 14:34:10 | 000,000,831 | -H-- | C] () -- C:\Documents and Settings\Administrator\Desktop\System Fix.lnk
[2011/11/16 14:34:09 | 000,000,296 | -H-- | C] () -- C:\Documents and Settings\All Users\Application Data\~b7An9X5muTodLR
[2011/11/16 14:33:23 | 000,000,456 | -H-- | C] () -- C:\Documents and Settings\All Users\Application Data\b7An9X5muTodLR
[2011/11/14 08:52:16 | 000,427,407 | ---- | C] () -- C:\WINDOWS\System32\drivers\AVG\incavi.avm.old
[2011/10/28 09:33:11 | 000,623,338 | -H-- | C] () -- C:\Documents and Settings\Administrator\My Documents\for lake norman.pdf
[2011/10/25 16:23:38 | 000,397,364 | -H-- | C] () -- C:\Documents and Settings\Administrator\My Documents\Scan.pdf
[2011/10/25 16:21:44 | 000,155,879 | -H-- | C] () -- C:\Documents and Settings\Administrator\My Documents\Scan0002.pdf
[2011/10/25 16:20:17 | 000,251,949 | -H-- | C] () -- C:\Documents and Settings\Administrator\My Documents\Scan0001.pdf
[2011/04/11 17:30:19 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\nsreg.dat
[2009/08/03 15:07:42 | 000,403,816 | -H-- | C] () -- C:\WINDOWS\System32\OGACheckControl.dll
[2009/08/03 15:07:42 | 000,230,768 | -H-- | C] () -- C:\WINDOWS\System32\OGAEXEC.exe
[2004/08/04 00:00:00 | 000,673,088 | -H-- | C] () -- C:\WINDOWS\System32\mlang.dat
[2004/08/04 00:00:00 | 000,435,688 | -H-- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2004/08/04 00:00:00 | 000,272,128 | -H-- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2004/08/04 00:00:00 | 000,218,003 | -H-- | C] () -- C:\WINDOWS\System32\dssec.dat
[2004/08/04 00:00:00 | 000,068,584 | -H-- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2004/08/04 00:00:00 | 000,046,258 | -H-- | C] () -- C:\WINDOWS\System32\mib.bin
[2004/08/04 00:00:00 | 000,028,626 | -H-- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2004/08/04 00:00:00 | 000,004,569 | -H-- | C] () -- C:\WINDOWS\System32\secupd.dat
[2004/08/04 00:00:00 | 000,001,804 | -H-- | C] () -- C:\WINDOWS\System32\dcache.bin
[2004/08/04 00:00:00 | 000,000,741 | -H-- | C] () -- C:\WINDOWS\System32\noise.dat
[2004/07/29 17:49:10 | 013,107,200 | -H-- | C] () -- C:\WINDOWS\System32\oembios.bin
[2004/07/29 17:48:26 | 000,005,151 | -H-- | C] () -- C:\WINDOWS\System32\oembios.dat
[2003/04/28 03:52:39 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2003/04/28 03:40:32 | 000,021,640 | -H-- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2003/04/27 20:14:54 | 000,004,161 | -H-- | C] () -- C:\WINDOWS\ODBCINST.INI
[2003/04/27 20:13:38 | 000,265,416 | -H-- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT

========== LOP Check ==========

[2011/04/10 10:07:19 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\Administrator\Application Data\Auslogics
[2011/04/09 12:47:53 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\Administrator\Application Data\AVG10
[2011/11/16 17:30:57 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\Administrator\Application Data\AVG2012
[2010/12/07 16:01:21 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\Administrator\Application Data\Catalina Marketing Corp
[2011/04/08 07:21:53 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\Administrator\Application Data\Sammsoft
[2011/04/05 19:00:45 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\Administrator\Application Data\SoftGrid Client
[2010/11/27 13:43:51 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\Administrator\Application Data\TP
[2011/04/09 15:29:45 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\Administrator\Application Data\updatetool
[2011/07/05 09:57:19 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\Administrator\Application Data\WeatherBug
[2011/04/15 20:11:53 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\AVG10
[2011/11/16 17:41:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\AVG2012
[2011/04/05 20:50:03 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\Common Files
[2011/11/16 21:00:43 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\MFAData
[2011/07/05 06:33:16 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\W3i
[2011/11/16 10:10:16 | 000,000,464 | -H-- | M] () -- C:\WINDOWS\Tasks\At1.job
[2011/11/16 20:40:29 | 000,000,464 | -H-- | M] () -- C:\WINDOWS\Tasks\At2.job
[2011/11/16 13:07:16 | 000,000,464 | -H-- | M] () -- C:\WINDOWS\Tasks\At3.job
[2011/11/16 14:00:21 | 000,000,464 | -H-- | M] () -- C:\WINDOWS\Tasks\At4.job
[2011/11/17 07:27:29 | 000,000,422 | -H-- | M] () -- C:\WINDOWS\Tasks\PC Optimizer Pro startups.job
[2011/11/17 07:31:20 | 000,000,438 | -H-- | M] () -- C:\WINDOWS\Tasks\User_Feed_Synchronization-{3FF45B31-763B-43F0-893A-5E5B4CF41A3B}.job

========== Purity Check ==========



< End of report >


Thanks in advsnce for ANY help
  • 0

Advertisements


#2
azarl

azarl

    GeekU Admin

  • Community Leader
  • 25,310 posts
Hi there, let's see if we can help you.

Download RogueKiller to your desktop. If you already have it, please download the latest version

  • Quit all running programs
  • For Vista/Seven, right click -> run as administrator, for XP simply run RogueKiller.exe
  • When prompted, type 2 and validate
  • The RKreport.txt shall be generated next to the executable.
  • If the program is blocked, do not hesitate to try several times. If it really does not work (it could happen), rename it to winlogon.exe


Re-run Roguekiller


  • Quit all running programs
  • For Vista/Seven, right click -> run as administrator, for XP simply run RogueKiller.exe
  • When prompted, type 6 and validate
  • The RKreport.txt shall be generated next to the executable.
  • If the program is blocked, do not hesitate to try several times. If it really does not work (it could happen), rename it to winlogon.exe
Please post the contents of the RKreport.txt in your next Reply.

THEN

  • Run OTL there will only be one log this time
  • Select All Users
  • Under the Custom Scan box paste this in
    netsvcs
    %SYSTEMDRIVE%\*.exe
    /md5start
    consrv.dll
    explorer.exe
    winlogon.exe
    Userinit.exe
    svchost.exe
    /md5stop
    C:\Windows\assembly\tmp\U\*.* /s
    CREATERESTOREPOINT
  • Click the Quick Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.

  • 0

#3
Candy Doby

Candy Doby

    Member

  • Topic Starter
  • Member
  • PipPip
  • 16 posts
I apologize for not removing this post yesterday but I was able to run the roguekiller last night and removed all the corrupted files seems to have cleared up the problem then I ran a malebytes.org scan and removed what was left. Thanks you for responding to me though!!! I LOVE GEEKS TO GO!!!!!
  • 0

#4
azarl

azarl

    GeekU Admin

  • Community Leader
  • 25,310 posts
No probs, glad you got it sorted :)
  • 0

#5
azarl

azarl

    GeekU Admin

  • Community Leader
  • 25,310 posts
Since this issue appears to be resolved ... this Topic has been closed. Glad we could help. :)

If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.

Everyone else please begin a New Topic.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP