Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Vista Security 2012 [Solved]


  • This topic is locked This topic is locked

#16
CompCav

CompCav

    Member 5k

  • Expert
  • 12,448 posts
Step 1.

Please download Malwarebytes' Anti-Malware

Double Click mbam-setup.exe to install the application.
  • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select "Perform Quick Scan", then click Scan.
  • The scan may take some time to finish, so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy&Paste the entire report in your next reply.


Extra Note:
If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts, click OK to either and let MBAM proceed with the disinfection process, if asked to restart the computer, please do so immediately.



Step 2.

Please run a free online scan with the ESET Online Scanner
Note: You will need to use Internet Explorer for this scan
  • Tick the box next to YES, I accept the Terms of Use
  • Click Start
  • When asked, allow the ActiveX control to install
  • Click Start
  • Make sure that the options Remove found threats and the option Scan unwanted applications is checked
  • Click Scan (This scan can take several hours, so please be patient)
  • Once the scan is completed, you may close the window
  • Use Notepad to open the logfile located at C:\Program Files\EsetOnlineScanner\log.txt
  • Copy and paste that log as a reply to this topic


Run ESET Online Scan

  • Hold down Control and click on the following link to open ESET OnlineScan in a new window.
  • ESET OnlineScan
  • Click the Posted Image button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
  • Click on Posted Image to download the ESET Smart Installer. Save it to your desktop.
  • Double click on the Posted Image icon on your desktop.
  • Check Posted Image
  • Click the Posted Image button.
  • Accept any security warnings from your browser.
  • Check Posted Image
  • Make sure that the option "Remove found threats" is Unchecked
  • Push the Start button.
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, push Posted Image
  • Push Posted Image, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Push the Posted Image button.
  • Push Posted Image


Step 3.

Security Check
Download Security Check by screen317 from here or here.

Save it to your Desktop.
Double click SecurityCheck.exe and follow the onscreen instructions inside of the black box.
A Notepad document should open automatically called checkup.txt; please post the contents of that document.


Step 4.

Please post:
mbam log
eset log
checkup.txt



Are there any new issues?
  • 0

Advertisements


#17
Gilfindel

Gilfindel

    Member

  • Topic Starter
  • Member
  • PipPip
  • 53 posts
No problems that I can see. Your instructions for ESET don't match the tool, but I got as close as I could; it didn't find anything anyway.

Malwarebytes:
Malwarebytes' Anti-Malware 1.51.2.1300
www.malwarebytes.org

Database version: 911122603

Windows 6.0.6000
Internet Explorer 7.0.6000.16982

12/26/2011 9:49:19 AM
mbam-log-2011-12-26 (09-49-19).txt

Scan type: Quick scan
Objects scanned: 190287
Time elapsed: 12 minute(s), 23 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)

ESAT:
[email protected] as CAB hook log:
OnlineScanner.ocx - registred OK

Checkup:
Results of screen317's Security Check version 0.99.30
Windows Vista x86 (UAC is enabled)
Out of date service pack!!
Internet Explorer 7 Out of date!
``````````````````````````````
Antivirus/Firewall Check:

avast! Free Antivirus
ESET Online Scanner v3
WMI entry may not exist for antivirus; attempting automatic update.
```````````````````````````````
Anti-malware/Other Utilities Check:

Malwarebytes' Anti-Malware
Java DB 10.2.2.0
Java™ 6 Update 24
Java™ SE Runtime Environment 6
Java™ 6 Update 2
Java™ SE Development Kit 6 Update 2
Java version out of date!
Adobe Flash Player 9.0.124.0 Flash Player out of Date!
Adobe Reader 8 Adobe Reader out of date!
Mozilla Firefox (2.0.0 Firefox out of Date!
````````````````````````````````
Process Check:
objlist.exe by Laurent

AVAST Software Avast AvastSvc.exe
AVAST Software Avast AvastUI.exe
``````````End of Log````````````
  • 0

#18
CompCav

CompCav

    Member 5k

  • Expert
  • 12,448 posts
It is very important to keep key system software and programs updated and current on your computer. Many of the updates provide improved stability, new features, and more importantly better security. You need to do several updates to fully secure your computer

Step 1.

First you need to update Vista to SP 2 you currently do not have any service packs installed.

Here is a link to discussing service packs and other updates for windows Vista.


You must first Download and install
Windows Vista, 32-bit versions Five Language Standalone package for English, French, German, Japanese, or Spanish (Traditional)
Download
Download the Windows Vista Service Pack 1 Five Language Standalone (KB936330) package now.

Then after installing SP1 go back to method 2 here to get SP2 and other critical and important updates.


Continue to use method 2 and install all the updates beyond SP2 that are listed as critical or important. This will include an update of internet explorer to 8 and then to 9. Internet explorer is part of your Vista operating system and it is critical to your security to have the latest version installed.

Then go to method 1 and set up for automatic updates.


Step 2.

Update Java

Please download JavaRa to your desktop and unzip it to its own folder

Run JavaRa.exe, pick the language of your choice and click Select. Then click Remove Older Versions.
Accept any prompts.
Open JavaRa.exe again and select Search For Updates.
Select Update Using Sun Java's Website then click Search and click on the Open Webpage button. Download and install the latest Java Runtime Environment (JRE) version for your computer.


Step 3.

Update Adobe Reader

Recently there have been vunerabilities detected in older versions of Adobe Reader. It is strongly suggested that you update to the current version.

Uninstall all previous versions.
Download the latest version from: http://www.adobe.com.../readstep2.html

If you already have Adobe Photoshop® Album Starter Edition installed or do not wish to have it installed UNcheck the box which says Also Download Adobe Photoshop® Album Starter Edition.


Step 4.

Update Mozilla FireFox

Your version of FireFox is 2 and the current release is 9

Please uninstall the version you have and go here to download the latest version and install it.


Step 5.

Update adobe flash player

You will need to download and install both the IE and non-IE versions of Adobe Flashplayer. Make sure to uncheck the install of the McAfee tool before downloading. You will need to select your operating system (Vista 32-bit) and then each version to download and install separately.


Step 6.

Please rerun OTL.

Click Scan all Users, LOP, and Purity

Then click Quickscan

It will produce an OTL.txt log on your desktop. Please post it in your next reply.


What issues are you still having with your computer?
  • 0

#19
Gilfindel

Gilfindel

    Member

  • Topic Starter
  • Member
  • PipPip
  • 53 posts
It took a while to catch up on all the Vista updates. I just deleted Firefox, since we weren't using it. The Adobe Reader installer kept stalling, so I'll sort that out later.

OTL:
OTL logfile created on: 12/29/2011 9:54:17 AM - Run 6
OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Ovenmitt\Desktop
Windows Vista Home Premium Edition Service Pack 2 (Version = 6.0.6002) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

1013.38 Mb Total Physical Memory | 232.99 Mb Available Physical Memory | 22.99% Memory free
2.24 Gb Paging File | 1.11 Gb Available in Paging File | 49.64% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 68.62 Gb Total Space | 17.87 Gb Free Space | 26.05% Space Free | Partition Type: NTFS
Drive D: | 5.91 Gb Total Space | 0.95 Gb Free Space | 16.06% Space Free | Partition Type: NTFS

Computer Name: LOKI | User Name: Ovenmitt | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011/12/20 14:34:32 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\Ovenmitt\Desktop\OTL.exe
PRC - [2011/11/28 12:01:24 | 003,744,552 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastUI.exe
PRC - [2011/11/28 12:01:23 | 000,044,768 | ---- | M] (AVAST Software) -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe
PRC - [2011/09/19 04:31:10 | 002,221,200 | ---- | M] (Giraffic) -- C:\Program Files\Giraffic\Veoh_GirafficWatchdog.exe
PRC - [2011/09/19 04:30:52 | 003,663,488 | ---- | M] (Giraffic) -- C:\Program Files\Giraffic\Veoh_Giraffic.exe
PRC - [2009/10/15 11:14:26 | 000,198,160 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Common Files\Real\Update_OB\realsched.exe
PRC - [2009/07/17 21:12:12 | 000,257,440 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\System32\Macromed\Flash\FlashUtil10c.exe
PRC - [2009/04/11 00:27:36 | 002,926,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2008/08/08 06:11:12 | 000,490,952 | ---- | M] (DT Soft Ltd) -- C:\Program Files\DAEMON Tools Lite\daemon.exe
PRC - [2008/01/29 16:38:31 | 000,583,048 | ---- | M] (Symantec Corporation) -- C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
PRC - [2007/11/13 15:48:54 | 003,411,968 | ---- | M] (Veoh Networks) -- C:\Program Files\Veoh Networks\Veoh\VeohClient.exe
PRC - [2007/05/28 10:57:54 | 000,275,968 | ---- | M] (Rocket Division Software) -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
PRC - [2007/04/23 12:00:34 | 000,103,968 | ---- | M] (Impulse Point, LLC) -- C:\Program Files\SafeConnect\scManager.sys
PRC - [2007/04/09 09:44:58 | 000,206,368 | ---- | M] (Impulse Point, LLC) -- C:\Program Files\SafeConnect\SCClient.exe
PRC - [2006/09/28 13:21:04 | 000,057,344 | ---- | M] (SlySoft, Inc.) -- C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe


========== Modules (No Company Name) ==========

MOD - [2009/09/04 22:15:06 | 000,067,872 | ---- | M] () -- C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2008/08/08 06:10:48 | 000,081,920 | ---- | M] () -- C:\Program Files\DAEMON Tools Lite\Lang\ENU.dll
MOD - [2007/05/08 09:06:38 | 000,249,856 | ---- | M] () -- C:\Windows\System32\igfxTMM.dll
MOD - [2006/11/24 16:33:18 | 000,061,440 | ---- | M] () -- C:\Program Files\HP\QuickPlay\Kernel\common\MCEMediaStatus.dll


========== Win32 Services (SafeList) ==========

SRV - File not found [Auto | Stopped] -- -- (LiveUpdate Notice Ex)
SRV - File not found [Auto | Stopped] -- -- (CLTNetCnService)
SRV - [2011/11/28 12:01:23 | 000,044,768 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Program Files\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus)
SRV - [2011/09/19 04:31:10 | 002,221,200 | ---- | M] (Giraffic) [Auto | Running] -- C:\Program Files\Giraffic\Veoh_GirafficWatchdog.exe -- (Giraffic)
SRV - [2008/01/29 16:38:31 | 000,583,048 | ---- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe -- (LiveUpdate Notice Service)
SRV - [2007/05/28 10:57:54 | 000,275,968 | ---- | M] (Rocket Division Software) [Auto | Running] -- C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe -- (StarWindServiceAE)
SRV - [2007/04/23 12:00:34 | 000,103,968 | ---- | M] (Impulse Point, LLC) [Auto | Running] -- C:\Program Files\SafeConnect\scManager.sys -- (SCManager)
SRV - [2006/06/26 10:50:08 | 000,126,976 | ---- | M] (Hewlett-Packard Development Company, L.P.) [On_Demand | Stopped] -- C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe -- (AddFiltr)
SRV - [2004/10/22 04:24:18 | 000,073,728 | ---- | M] (Macrovision Corporation) [On_Demand | Stopped] -- C:\Program Files\Roxio\Roxio MyDVD Basic v9\InstallShield\Driver\1050\Intel 32\IDriverT.exe -- (IDriverT)


========== Driver Services (SafeList) ==========

DRV - [2011/12/25 13:54:57 | 000,007,168 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\uty2odk2.sys -- (uty2odk2)
DRV - [2011/12/25 13:54:27 | 000,011,264 | ---- | M] () [Kernel | System | Running] -- C:\Windows\System32\drivers\uzy2odk2.sys -- (uzy2odk2)
DRV - [2011/11/28 11:53:53 | 000,435,032 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\System32\drivers\aswSnx.sys -- (aswSnx)
DRV - [2011/11/28 11:53:35 | 000,314,456 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswSP.sys -- (aswSP)
DRV - [2011/11/28 11:52:19 | 000,034,392 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswRdr.sys -- (aswRdr)
DRV - [2011/11/28 11:52:16 | 000,052,952 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\System32\drivers\aswTdi.sys -- (aswTdi)
DRV - [2011/11/28 11:52:07 | 000,055,128 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswMonFlt.sys -- (aswMonFlt)
DRV - [2011/11/28 11:51:50 | 000,020,568 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\System32\drivers\aswFsBlk.sys -- (aswFsBlk)
DRV - [2008/06/22 06:35:10 | 000,717,296 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\sptd.sys -- (sptd)
DRV - [2008/05/15 16:21:16 | 000,385,072 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys -- (eeCtrl)
DRV - [2007/06/15 11:25:46 | 000,049,904 | R--- | M] (Avanquest Software) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\BVRPMPR5.SYS -- (BVRPMPR5)
DRV - [2007/02/15 18:57:04 | 000,034,760 | ---- | M] (SlySoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ElbyCDFL.sys -- (ElbyCDFL)
DRV - [2006/11/02 08:43:50 | 000,145,920 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CHDART.sys -- (HdAudAddService)
DRV - [2006/09/25 17:19:52 | 000,050,176 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Rtnicxp.sys -- (RTL8023xp)
DRV - [2006/08/04 11:39:10 | 000,008,192 | ---- | M] (Conexant Systems, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\XAudio.sys -- (XAudio)
DRV - [2006/06/28 10:57:00 | 000,008,192 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | System | Running] -- C:\Windows\System32\drivers\eabfiltr.sys -- (eabfiltr)
DRV - [2006/06/28 10:54:00 | 000,009,472 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CPQBttn.sys -- (HBtnKey)
DRV - [2004/10/05 10:40:18 | 000,015,872 | ---- | M] (Interlex Inc.) [Kernel | Auto | Running] -- C:\Program Files\VMLaunch\BuddyVM.sys -- ({09BB444F-B2E2-4009-BAF2-7B727681223E})


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.h...SARIO&pf=laptop


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-707605045-4109517109-592397696-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
IE - HKU\S-1-5-21-707605045-4109517109-592397696-1000\SOFTWARE\Microsoft\Internet Explorer\Main,StartPageCache = 1
IE - HKU\S-1-5-21-707605045-4109517109-592397696-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.startup.homepage: "http://www.yahoo.com"

FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Browser Plugin,version=1.0.0: C:\Program Files\DivX\DivX Web Player\npdivx32.dll (DivX,Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Content Upload Plugin,version=1.0.0: C:\Program Files\DivX\DivX Content Uploader\npUpload.dll (DivX,Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0: C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll (DivX, Inc)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.2.1: C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.2.1: C:\Program Files\Oracle\JavaFX 2.0 Runtime\bin\new_plugin\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@nexon.net/NxGame: C:\ProgramData\NexonUS\NGM\npNxGameUS.dll (Nexon)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=6.0.12.448: c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprjplug;version=1.0.3.448: c:\program files\real\realplayer\Netscape6\nprjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpjplug;version=6.0.12.448: c:\program files\real\realplayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nsJSRealPlayerPlugin;version=: File not found
FF - HKLM\Software\MozillaPlugins\@real.com/RhapsodyPlayerEngine,version=1.0: C:\Program Files\Real\RhapsodyPlayerEngine\nprhapengine.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@soe.sony.com/installer,version=1.0.3: C:\Windows\Downloaded Program Files\npsoe.dll ()
FF - HKLM\Software\MozillaPlugins\@unity3d.com/UnityPlayer: C:\Program Files\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF - HKLM\Software\MozillaPlugins\@veoh.com/VeohPlayer: C:\Program Files\Veoh Networks\Veoh\Plugins\noreg\NPVeohVersion.dll (Veoh Networks Inc)
FF - HKCU\Software\MozillaPlugins\@real.com/RhapsodyPlayerEngine: C:\Users\Ovenmitt\AppData\Roaming\nprhapengine.dll File not found
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Users\Ovenmitt\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Users\Ovenmitt\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll (Google Inc.)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\AVAST Software\Avast\WebRep\FF [2011/12/10 07:35:11 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{d5bc46d8-67c7-11dc-8c1d-0097498c2b7a}: C:\Users\Ovenmitt\Program Files\DNA [2008/08/31 22:21:34 | 000,000,000 | ---D | M]

[2011/12/22 17:15:54 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Ovenmitt\AppData\Roaming\mozilla\Firefox\Profiles\3ukka615.default\extensions
[2009/10/14 15:23:52 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Users\Ovenmitt\AppData\Roaming\mozilla\Firefox\Profiles\3ukka615.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2011/06/06 19:36:58 | 000,000,000 | ---D | M] (PageRage Community Toolbar) -- C:\Users\Ovenmitt\AppData\Roaming\mozilla\Firefox\Profiles\3ukka615.default\extensions\{9565115d-c7d6-46d3-bd63-b67b481a4368}
File not found (No name found) -- C:\PROGRAM FILES\MOZILLA FIREFOX\EXTENSIONS\[email protected]
File not found (No name found) -- C:\PROGRAM FILES\VEOH NETWORKS\VEOHWEBPLAYER\FFVIDEOFINDER
[2008/08/31 22:21:34 | 000,000,000 | ---D | M] (No name found) -- C:\USERS\OVENMITT\PROGRAM FILES\DNA
[2009/09/02 10:21:15 | 000,238,776 | ---- | M] (Pando Networks) -- C:\Program Files\mozilla firefox\plugins\npPandoWebInst.dll

========== Chrome ==========

CHR - default_search_provider: Yahoo! (Enabled)
CHR - default_search_provider: search_url = http://search.yahoo....p={searchTerms}
CHR - default_search_provider: suggest_url = http://ff.search.yah...d={searchTerms}
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Users\Ovenmitt\AppData\Local\Google\Chrome\Application\8.0.552.215\pdf.dll
CHR - plugin: Google Gears 0.5.33.0 (Enabled) = C:\Users\Ovenmitt\AppData\Local\Google\Chrome\Application\8.0.552.215\gears.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Users\Ovenmitt\AppData\Local\Google\Chrome\Application\8.0.552.215\gcswf32.dll
CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files\Adobe\Reader 8.0\Reader\Browser\nppdf32.dll
CHR - plugin: Shockwave for Director (Enabled) = C:\Program Files\Mozilla Firefox\plugins\np32dsw.dll
CHR - plugin: DivX\u00AE Web Player (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npdivx32.dll
CHR - plugin: DivX Player Netscape Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npDivxPlayerPlugin.dll
CHR - plugin: Pando Web Installer (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npPandoWebInst.dll
CHR - plugin: RealPlayer™ G2 LiveConnect-Enabled Plug-In (32-bit) (Enabled) = C:\Program Files\Mozilla Firefox\plugins\nppl3260.dll
CHR - plugin: QuickTime Plug-in 7.6.4 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
CHR - plugin: QuickTime Plug-in 7.6.4 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
CHR - plugin: QuickTime Plug-in 7.6.4 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
CHR - plugin: QuickTime Plug-in 7.6.4 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
CHR - plugin: QuickTime Plug-in 7.6.4 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
CHR - plugin: QuickTime Plug-in 7.6.4 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
CHR - plugin: QuickTime Plug-in 7.6.4 (Enabled) = C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
CHR - plugin: RealJukebox NS Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\nprjplug.dll
CHR - plugin: RealPlayer Version Plugin (Enabled) = C:\Program Files\Mozilla Firefox\plugins\nprpjplug.dll
CHR - plugin: BitTorrent DNA Plug-in (Enabled) = C:\Program Files\BitTorrent_DNA\npbtdna.dll
CHR - plugin: DivX\u00AE Content Upload Plugin (Enabled) = C:\Program Files\DivX\DivX Content Uploader\npUpload.dll
CHR - plugin: Pando Web Plugin (Enabled) = C:\Program Files\Pando Networks\Media Booster\npPandoWebPlugin.dll
CHR - plugin: RealNetworks Rhapsody Player Engine (Enabled) = C:\Program Files\Real\RhapsodyPlayerEngine\nprhapengine.dll
CHR - plugin: VeohTV Plugin (Enabled) = C:\Program Files\Veoh Networks\VeohWebPlayer\NPVeohTVPlugin.dll
CHR - plugin: Veoh Web Player Beta (Enabled) = C:\Program Files\Veoh Networks\VeohWebPlayer\npWebPlayerVideoPluginATL.dll
CHR - plugin: NPVeohVersion2 plugin (Enabled) = C:\Program Files\Veoh Networks\Veoh\Plugins\noreg\NPVeohVersion.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Google Update (Enabled) = C:\Users\Ovenmitt\AppData\Local\Google\Update\1.2.183.13\npGoogleOneClick8.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\system32\Macromed\Flash\NPSWF32.dll
CHR - plugin: Windows Presentation Foundation (Enabled) = c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
CHR - plugin: Default Plug-in (Enabled) = default_plugin

O1 HOSTS File: ([2011/12/22 17:16:15 | 000,000,098 | ---- | M]) - C:\Windows\System32\drivers\etc\Hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: ::1 localhost
O2 - BHO: (Yahoo! Toolbar Helper) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O2 - BHO: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Oracle\JavaFX 2.0 Runtime\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKLM\..\Toolbar: (Veoh Web Player Video Finder) - {0FBB9689-D3D7-4f7a-A2E2-585B10099BFC} - C:\Program Files\Veoh Networks\VeohWebPlayer\VeohIEToolbar.dll File not found
O3 - HKLM\..\Toolbar: (Veoh Video Compass) - {52836EB0-631A-47B1-94A6-61F9D9112DAE} - C:\Program Files\Veoh Networks\Veoh Video Compass\SearchRecsPlugin.dll (Veoh Networks)
O3 - HKLM\..\Toolbar: (avast! WebRep) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
O3 - HKLM\..\Toolbar: (Yahoo! Toolbar) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
O4 - HKLM..\Run: [avast] C:\Program Files\AVAST Software\Avast\avastUI.exe (AVAST Software)
O4 - HKLM..\Run: [CloneCDTray] C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe (SlySoft, Inc.)
O4 - HKLM..\Run: [HP Health Check Scheduler] C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe (Hewlett-Packard)
O4 - HKLM..\Run: [Symantec PIF AlertEng] C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe (Symantec Corporation)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKU\S-1-5-21-707605045-4109517109-592397696-1000..\Run: [AlcoholAutomount] C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe (Alcohol Soft Development Team)
O4 - HKU\S-1-5-21-707605045-4109517109-592397696-1000..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\daemon.exe (DT Soft Ltd)
O4 - HKU\S-1-5-21-707605045-4109517109-592397696-1000..\Run: [Veoh] C:\Program Files\Veoh Networks\Veoh\VeohClient.exe (Veoh Networks)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKU\S-1-5-21-707605045-4109517109-592397696-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O10 - NameSpace_Catalog5\Catalog_Entries\000000000005 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {000F1EA4-5E08-4564-A29B-29076F63A37A} http://launch.soe.co...ebInstaller.cab (SOE Web Installer)
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} http://appldnld.appl...ex/qtplugin.cab (QuickTime Object)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macr...director/sw.cab (Shockwave ActiveX Control)
O16 - DPF: {6B75345B-AA36-438A-BBE6-4078B4C6984D} http://h20270.www2.h...ctDetection.cab (HpProductDetection Class)
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} https://h20436.www2....re/HPDEXAXO.cab (HP Download Manager)
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} http://download.eset...lineScanner.cab (Reg Error: Key error.)
O16 - DPF: {75A6AEA3-F26E-4608-AE9B-8DA78C87576E} https://kingsisle.hs...ameLauncher.CAB (Wizard101GameLauncher)
O16 - DPF: {82FFA573-38AA-482A-99AD-91F697B91631} http://218be9f87d470...=/dl_applet.cab (Installer.InstallControl)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 10.2.1)
O16 - DPF: {CAFEEFAC-0017-0000-0002-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.7.0_02)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.7.0_02)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{453D4B25-5BDA-4367-8EE3-D79FD7C8EE1E}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{DA131B7A-6BE7-425D-A35A-7684ECB2B9B7}: DhcpNameServer = 192.168.1.1
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\System32\userinit.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Users\Ovenmitt\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper:
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2007/05/15 07:37:05 | 000,000,074 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2005/09/11 09:18:54 | 000,000,340 | --S- | M] () - D:\AUTOMODE -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O34 - HKLM BootExecute: (aswBoot.exe /M:322657bdb1)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/12/28 22:51:47 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Portable Devices
[2011/12/28 17:37:31 | 000,000,000 | -HSD | C] -- C:\Config.Msi
[2011/12/28 11:20:01 | 000,000,000 | ---D | C] -- C:\Windows\System32\vi-VN
[2011/12/28 11:20:01 | 000,000,000 | ---D | C] -- C:\Windows\System32\eu-ES
[2011/12/28 11:20:01 | 000,000,000 | ---D | C] -- C:\Windows\System32\ca-ES
[2011/12/28 09:47:00 | 000,000,000 | ---D | C] -- C:\Windows\System32\EventProviders
[2011/12/27 21:59:57 | 000,000,000 | ---D | C] -- C:\Windows\System32\WindowsPowerShell
[2011/12/27 18:20:33 | 000,000,000 | ---D | C] -- C:\PerfLogs
[2011/12/27 17:06:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
[2011/12/27 17:04:42 | 000,000,000 | ---D | C] -- C:\Program Files\Oracle
[2011/12/27 16:57:36 | 000,000,000 | ---D | C] -- C:\Users\Ovenmitt\Desktop\JavaRa
[2011/12/25 13:54:57 | 000,010,240 | ---- | C] (Zaitsev Oleg, 2006) -- C:\Windows\System32\drivers\ujy2odk2.sys
[2011/12/24 09:59:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Kaspersky Lab
[2011/12/22 17:15:47 | 000,000,000 | ---D | C] -- C:\_OTL
[2011/12/21 17:44:51 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2011/12/21 17:44:40 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2011/12/21 17:44:40 | 000,000,000 | ---D | C] -- C:\Users\Ovenmitt\AppData\Local\temp
[2011/12/21 16:51:10 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2011/12/21 16:51:10 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2011/12/21 16:51:10 | 000,212,480 | ---- | C] (SteelWerX) -- C:\Windows\SWXCACLS.exe
[2011/12/21 16:51:10 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2011/12/21 16:51:04 | 000,000,000 | ---D | C] -- C:\Windows\ERDNT
[2011/12/21 16:51:03 | 000,000,000 | ---D | C] -- C:\ComboFix
[2011/12/21 16:50:59 | 000,000,000 | ---D | C] -- C:\Qoobox
[2011/12/21 16:46:17 | 001,577,264 | ---- | C] (Kaspersky Lab ZAO) -- C:\Users\Ovenmitt\Desktop\tdsskiller.exe
[2011/12/21 16:46:12 | 004,347,226 | R--- | C] (Swearware) -- C:\Users\Ovenmitt\Desktop\ComboFix.exe
[2011/12/20 14:39:47 | 000,000,000 | ---D | C] -- C:\Users\Ovenmitt\Desktop\RK_Quarantine
[2011/12/20 14:39:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Panda Security
[2011/12/20 14:39:24 | 000,000,000 | ---D | C] -- C:\Program Files\Panda USB Vaccine
[2011/12/20 14:39:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Security
[2011/12/20 14:37:24 | 000,584,192 | ---- | C] (OldTimer Tools) -- C:\Users\Ovenmitt\Desktop\OTL.exe
[2011/12/20 14:37:19 | 001,916,416 | ---- | C] (AVAST Software) -- C:\Users\Ovenmitt\Desktop\aswMBR.exe
[2011/12/17 10:54:13 | 000,000,000 | ---D | C] -- C:\Users\Ovenmitt\Desktop\FUN!
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011/12/29 10:02:01 | 000,000,920 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-707605045-4109517109-592397696-1000UA.job
[2011/12/29 08:54:19 | 000,003,168 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
[2011/12/29 08:54:19 | 000,003,168 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
[2011/12/29 03:02:00 | 000,000,868 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-707605045-4109517109-592397696-1000Core.job
[2011/12/28 23:02:12 | 000,612,830 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2011/12/28 23:02:12 | 000,107,860 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2011/12/28 22:58:19 | 000,000,149 | ---- | M] () -- C:\Users\Public\Documents\hpqp.ini
[2011/12/28 22:54:34 | 000,351,800 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2011/12/28 22:54:15 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/12/28 22:53:20 | 1063,378,944 | -HS- | M] () -- C:\hiberfil.sys
[2011/12/28 22:51:17 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdMtpDr_01_07_00.Wdf
[2011/12/28 22:50:32 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_07_00.Wdf
[2011/12/28 12:47:40 | 000,000,943 | ---- | M] () -- C:\Users\Ovenmitt\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2011/12/28 12:00:49 | 000,008,798 | ---- | M] () -- C:\Windows\System32\icrav03.rat
[2011/12/28 12:00:49 | 000,001,988 | ---- | M] () -- C:\Windows\System32\ticrf.rat
[2011/12/28 12:00:03 | 000,072,822 | ---- | M] () -- C:\Windows\System32\ieuinit.inf
[2011/12/28 11:18:19 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_00_00.Wdf
[2011/12/28 11:17:29 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdMtpDr_01_00_00.Wdf
[2011/12/27 17:31:06 | 000,101,888 | ---- | M] (Infineon Technologies AG) -- C:\Windows\System32\ifxcardm.dll
[2011/12/27 17:30:51 | 000,082,432 | ---- | M] (Gemalto, Inc.) -- C:\Windows\System32\axaltocm.dll
[2011/12/26 15:09:44 | 000,879,683 | ---- | M] () -- C:\Users\Ovenmitt\Desktop\SecurityCheck.exe
[2011/12/25 13:54:57 | 000,010,240 | ---- | M] (Zaitsev Oleg, 2006) -- C:\Windows\System32\drivers\ujy2odk2.sys
[2011/12/25 13:54:57 | 000,007,168 | ---- | M] () -- C:\Windows\System32\drivers\uty2odk2.sys
[2011/12/25 13:54:27 | 000,011,264 | ---- | M] () -- C:\Windows\System32\drivers\uzy2odk2.sys
[2011/12/24 09:52:00 | 108,764,424 | ---- | M] () -- C:\Users\Ovenmitt\Desktop\setup_11.0.0.1245.x01_2011_12_24_18_27.exe
[2011/12/22 18:29:10 | 000,001,680 | ---- | M] () -- C:\Users\Ovenmitt\Desktop\afd reg fix.reg
[2011/12/22 17:16:15 | 000,000,098 | ---- | M] () -- C:\Windows\System32\drivers\etc\Hosts
[2011/12/21 16:43:58 | 000,080,384 | ---- | M] () -- C:\Users\Ovenmitt\Desktop\MBRCheck.exe
[2011/12/21 16:43:22 | 001,577,264 | ---- | M] (Kaspersky Lab ZAO) -- C:\Users\Ovenmitt\Desktop\tdsskiller.exe
[2011/12/21 16:42:20 | 004,347,226 | R--- | M] (Swearware) -- C:\Users\Ovenmitt\Desktop\ComboFix.exe
[2011/12/20 14:34:32 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\Ovenmitt\Desktop\OTL.exe
[2011/12/20 14:33:54 | 001,916,416 | ---- | M] (AVAST Software) -- C:\Users\Ovenmitt\Desktop\aswMBR.exe
[2011/12/20 14:31:44 | 000,771,072 | ---- | M] () -- C:\Users\Ovenmitt\Desktop\RogueKiller.exe
[2011/12/10 19:20:25 | 000,000,906 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/12/10 07:35:13 | 000,002,577 | ---- | M] () -- C:\Windows\System32\config.nt
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011/12/28 22:51:17 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdMtpDr_01_07_00.Wdf
[2011/12/28 22:50:32 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_07_00.Wdf
[2011/12/28 12:00:03 | 000,072,822 | ---- | C] () -- C:\Windows\System32\ieuinit.inf
[2011/12/28 11:18:19 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_00_00.Wdf
[2011/12/28 11:17:29 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdMtpDr_01_00_00.Wdf
[2011/12/27 23:21:38 | 000,018,904 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
[2011/12/27 23:21:28 | 011,967,524 | ---- | C] () -- C:\Windows\System32\korwbrkr.lex
[2011/12/27 21:59:59 | 000,130,008 | ---- | C] () -- C:\Windows\System32\systemsf.ebd
[2011/12/27 21:59:54 | 000,009,239 | ---- | C] () -- C:\Windows\System32\spcinstrumentation.man
[2011/12/27 21:59:18 | 000,442,788 | ---- | C] () -- C:\Windows\System32\dot3.tmf
[2011/12/27 21:59:11 | 000,107,612 | ---- | C] () -- C:\Windows\System32\StructuredQuerySchema.bin
[2011/12/27 21:59:09 | 000,117,248 | ---- | C] () -- C:\Windows\System32\EhStorAuthn.dll
[2011/12/27 21:59:00 | 000,392,170 | ---- | C] () -- C:\Windows\System32\onex.tmf
[2011/12/27 21:58:27 | 000,344,698 | ---- | C] () -- C:\Windows\System32\eaphost.tmf
[2011/12/27 21:57:24 | 000,208,966 | ---- | C] () -- C:\Windows\System32\WFP.TMF
[2011/12/27 21:57:15 | 000,092,918 | ---- | C] () -- C:\Windows\System32\slmgr.vbs
[2011/12/27 21:53:45 | 000,201,184 | ---- | C] () -- C:\Windows\System32\winrm.vbs
[2011/12/27 21:53:45 | 000,004,675 | ---- | C] () -- C:\Windows\System32\wsmanconfig_schema.xml
[2011/12/27 21:53:45 | 000,002,426 | ---- | C] () -- C:\Windows\System32\WsmTxt.xsl
[2011/12/27 21:51:59 | 000,009,212 | ---- | C] () -- C:\Windows\System32\RacUR.xml
[2011/12/27 21:51:40 | 000,000,153 | ---- | C] () -- C:\Windows\System32\RacUREx.xml
[2011/12/26 15:09:40 | 000,879,683 | ---- | C] () -- C:\Users\Ovenmitt\Desktop\SecurityCheck.exe
[2011/12/25 13:54:51 | 000,007,168 | ---- | C] () -- C:\Windows\System32\drivers\uty2odk2.sys
[2011/12/25 13:54:26 | 000,011,264 | ---- | C] () -- C:\Windows\System32\drivers\uzy2odk2.sys
[2011/12/24 09:54:26 | 108,764,424 | ---- | C] () -- C:\Users\Ovenmitt\Desktop\setup_11.0.0.1245.x01_2011_12_24_18_27.exe
[2011/12/24 09:46:57 | 000,001,680 | ---- | C] () -- C:\Users\Ovenmitt\Desktop\afd reg fix.reg
[2011/12/22 17:39:36 | 000,330,663 | ---- | C] () -- C:\Users\Ovenmitt\Desktop\FSS.exe
[2011/12/21 16:51:10 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2011/12/21 16:51:10 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2011/12/21 16:51:10 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2011/12/21 16:51:10 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2011/12/21 16:51:10 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2011/12/21 16:46:26 | 000,080,384 | ---- | C] () -- C:\Users\Ovenmitt\Desktop\MBRCheck.exe
[2011/12/20 14:37:30 | 000,771,072 | ---- | C] () -- C:\Users\Ovenmitt\Desktop\RogueKiller.exe
[2011/12/19 20:31:21 | 1063,378,944 | -HS- | C] () -- C:\hiberfil.sys
[2011/08/10 01:50:27 | 000,000,032 | R--- | C] () -- C:\ProgramData\hash.dat
[2009/10/14 18:10:31 | 000,000,096 | ---- | C] () -- C:\Users\Ovenmitt\AppData\Local\fusioncache.dat
[2009/06/04 14:53:31 | 000,000,010 | ---- | C] () -- C:\Windows\WININIT.INI
[2009/03/15 11:32:12 | 000,001,356 | ---- | C] () -- C:\Users\Ovenmitt\AppData\Local\d3d9caps.dat
[2009/01/16 17:52:47 | 000,000,071 | ---- | C] () -- C:\Windows\cdplayer.ini
[2009/01/01 01:24:17 | 000,007,680 | ---- | C] () -- C:\Windows\System32\ff_vfw.dll
[2008/06/02 13:08:40 | 000,000,041 | --S- | C] () -- C:\ProgramData\.zreglib
[2007/12/04 20:12:34 | 000,000,000 | ---- | C] () -- C:\Windows\nsreg.dat
[2007/11/29 16:30:28 | 003,596,288 | ---- | C] () -- C:\Windows\System32\qt-dx331.dll
[2007/11/28 15:52:32 | 000,012,288 | ---- | C] () -- C:\Windows\System32\DivXWMPExtType.dll
[2007/11/21 17:12:42 | 000,000,000 | ---- | C] () -- C:\Windows\iPlayer.INI
[2007/09/17 19:33:41 | 000,000,376 | ---- | C] () -- C:\Windows\ODBC.INI
[2007/09/09 14:52:36 | 000,183,296 | ---- | C] () -- C:\Users\Ovenmitt\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2007/09/08 12:51:58 | 000,023,888 | ---- | C] () -- C:\Users\Ovenmitt\AppData\Roaming\UserTile.png
[2007/05/08 10:17:18 | 000,204,800 | ---- | C] () -- C:\Windows\System32\igfxCoIn_v1272.dll
[2007/05/08 09:06:38 | 000,249,856 | ---- | C] () -- C:\Windows\System32\igfxTMM.dll
[2006/11/10 05:54:20 | 000,000,000 | ---- | C] () -- C:\Windows\System32\px.ini
[2006/11/06 05:02:10 | 000,204,800 | ---- | C] () -- C:\Windows\System32\igfxCoIn_v1114.dll
[2006/11/02 06:57:28 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2006/11/02 06:47:37 | 000,351,800 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2006/11/02 06:35:32 | 000,005,632 | ---- | C] () -- C:\Windows\System32\sysprepMCE.dll
[2006/11/02 04:33:01 | 000,612,830 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2006/11/02 04:33:01 | 000,287,440 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2006/11/02 04:33:01 | 000,107,860 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2006/11/02 04:33:01 | 000,030,674 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2006/11/02 04:23:21 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2006/11/02 02:58:30 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2006/11/02 02:19:00 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2006/11/02 01:40:29 | 000,013,750 | ---- | C] () -- C:\Windows\System32\pacerprf.ini
[2006/11/02 01:25:31 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2006/09/19 00:02:40 | 000,520,192 | ---- | C] () -- C:\Windows\System32\CddbPlaylist2Roxio.dll
[2006/09/19 00:02:40 | 000,204,800 | ---- | C] () -- C:\Windows\System32\CddbFileTaggerRoxio.dll
[2006/03/09 18:58:00 | 001,060,424 | ---- | C] () -- C:\Windows\System32\WdfCoInstaller01000.dll
[2004/09/16 14:24:26 | 003,375,104 | ---- | C] () -- C:\Windows\System32\qt-mt331.dll
[2003/11/16 03:48:02 | 000,909,312 | ---- | C] () -- C:\Windows\System32\vorbisenc.dll
[2003/11/16 03:48:00 | 001,060,864 | ---- | C] () -- C:\Windows\System32\vorbis.dll
[2003/11/15 10:54:18 | 000,036,864 | ---- | C] () -- C:\Windows\System32\ogg.dll
[2002/10/06 16:42:58 | 000,237,568 | ---- | C] () -- C:\Windows\System32\OggDS.dll

========== LOP Check ==========

[2008/12/31 21:39:28 | 000,000,000 | ---D | M] -- C:\Users\Ovenmitt\AppData\Roaming\CoreCodec
[2008/06/22 06:35:09 | 000,000,000 | ---D | M] -- C:\Users\Ovenmitt\AppData\Roaming\DAEMON Tools
[2007/09/08 15:51:07 | 000,000,000 | ---D | M] -- C:\Users\Ovenmitt\AppData\Roaming\JCreator
[2007/09/28 14:05:28 | 000,000,000 | ---D | M] -- C:\Users\Ovenmitt\AppData\Roaming\Nexon
[2007/09/08 12:51:58 | 000,000,000 | ---D | M] -- C:\Users\Ovenmitt\AppData\Roaming\PeerNetworking
[2009/08/03 07:00:11 | 000,000,000 | ---D | M] -- C:\Users\Ovenmitt\AppData\Roaming\RenPy
[2008/06/14 08:35:09 | 000,000,000 | ---D | M] -- C:\Users\Ovenmitt\AppData\Roaming\Secret of the Solstice
[2008/11/04 17:08:37 | 000,000,000 | ---D | M] -- C:\Users\Ovenmitt\AppData\Roaming\SlySoft
[2008/08/23 22:17:39 | 000,000,000 | ---D | M] -- C:\Users\Spatula\AppData\Roaming\DAEMON Tools
[2011/12/28 22:52:14 | 000,032,586 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



< End of report >
  • 0

#20
CompCav

CompCav

    Member 5k

  • Expert
  • 12,448 posts
What issues are you still having with your computer?
  • 0

#21
CompCav

CompCav

    Member 5k

  • Expert
  • 12,448 posts
1. Open the Start Menu.

2. Click on All Programs and Accessories, then right click on Command Prompt and click on Run as administrator. (See screenshot below)
Posted Image

3. In the elevated command prompt, type sfc /scannow and press Enter. (see screenshot below)
NOTE: This may take a little bit to finish.
Posted Image

4. When the scan is complete, copy the line below and paste it at the command prompt. Then press Enter

findstr /c:"[SR]" %windir%\Logs\CBS\CBS.log >%userprofile%\Desktop\sfcdetails.txt


5. The file sfcdetails.txt will now be on your desktop. Please open it , Edit | select all | copy and paste it in your next reply.


After this completes please try to install Adobe Reader again, then post the sfcdetails.txt log and let me know the status of your Adobe Reader install.
  • 0

#22
Gilfindel

Gilfindel

    Member

  • Topic Starter
  • Member
  • PipPip
  • 53 posts
The Adobe Reader installer consistently stops with a download timeout at 41%. The installer program itself also disappears; I've had to save a copy to avoid downloading it each time.

2011-12-29 17:40:31, Info CSI 00000006 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:40:31, Info CSI 00000007 [SR] Beginning Verify and Repair transaction
2011-12-29 17:40:39, Info CSI 00000009 [SR] Verify complete
2011-12-29 17:40:39, Info CSI 0000000a [SR] Verifying 100 (0x00000064) components
2011-12-29 17:40:39, Info CSI 0000000b [SR] Beginning Verify and Repair transaction
2011-12-29 17:40:49, Info CSI 0000000d [SR] Verify complete
2011-12-29 17:40:49, Info CSI 0000000e [SR] Verifying 100 (0x00000064) components
2011-12-29 17:40:49, Info CSI 0000000f [SR] Beginning Verify and Repair transaction
2011-12-29 17:40:53, Info CSI 00000011 [SR] Verify complete
2011-12-29 17:40:53, Info CSI 00000012 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:40:53, Info CSI 00000013 [SR] Beginning Verify and Repair transaction
2011-12-29 17:40:56, Info CSI 00000015 [SR] Verify complete
2011-12-29 17:40:56, Info CSI 00000016 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:40:56, Info CSI 00000017 [SR] Beginning Verify and Repair transaction
2011-12-29 17:40:59, Info CSI 00000019 [SR] Verify complete
2011-12-29 17:40:59, Info CSI 0000001a [SR] Verifying 100 (0x00000064) components
2011-12-29 17:40:59, Info CSI 0000001b [SR] Beginning Verify and Repair transaction
2011-12-29 17:41:02, Info CSI 0000001d [SR] Verify complete
2011-12-29 17:41:02, Info CSI 0000001e [SR] Verifying 100 (0x00000064) components
2011-12-29 17:41:02, Info CSI 0000001f [SR] Beginning Verify and Repair transaction
2011-12-29 17:41:04, Info CSI 00000021 [SR] Verify complete
2011-12-29 17:41:05, Info CSI 00000022 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:41:05, Info CSI 00000023 [SR] Beginning Verify and Repair transaction
2011-12-29 17:41:08, Info CSI 00000025 [SR] Verify complete
2011-12-29 17:41:09, Info CSI 00000026 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:41:09, Info CSI 00000027 [SR] Beginning Verify and Repair transaction
2011-12-29 17:41:11, Info CSI 00000029 [SR] Verify complete
2011-12-29 17:41:11, Info CSI 0000002a [SR] Verifying 100 (0x00000064) components
2011-12-29 17:41:11, Info CSI 0000002b [SR] Beginning Verify and Repair transaction
2011-12-29 17:41:14, Info CSI 0000002d [SR] Verify complete
2011-12-29 17:41:14, Info CSI 0000002e [SR] Verifying 100 (0x00000064) components
2011-12-29 17:41:14, Info CSI 0000002f [SR] Beginning Verify and Repair transaction
2011-12-29 17:41:16, Info CSI 00000031 [SR] Verify complete
2011-12-29 17:41:17, Info CSI 00000032 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:41:17, Info CSI 00000033 [SR] Beginning Verify and Repair transaction
2011-12-29 17:41:19, Info CSI 00000035 [SR] Verify complete
2011-12-29 17:41:20, Info CSI 00000036 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:41:20, Info CSI 00000037 [SR] Beginning Verify and Repair transaction
2011-12-29 17:41:22, Info CSI 00000039 [SR] Verify complete
2011-12-29 17:41:23, Info CSI 0000003a [SR] Verifying 100 (0x00000064) components
2011-12-29 17:41:23, Info CSI 0000003b [SR] Beginning Verify and Repair transaction
2011-12-29 17:41:25, Info CSI 0000003d [SR] Verify complete
2011-12-29 17:41:25, Info CSI 0000003e [SR] Verifying 100 (0x00000064) components
2011-12-29 17:41:25, Info CSI 0000003f [SR] Beginning Verify and Repair transaction
2011-12-29 17:41:28, Info CSI 00000041 [SR] Verify complete
2011-12-29 17:41:28, Info CSI 00000042 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:41:28, Info CSI 00000043 [SR] Beginning Verify and Repair transaction
2011-12-29 17:41:31, Info CSI 00000045 [SR] Verify complete
2011-12-29 17:41:31, Info CSI 00000046 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:41:31, Info CSI 00000047 [SR] Beginning Verify and Repair transaction
2011-12-29 17:41:34, Info CSI 00000049 [SR] Verify complete
2011-12-29 17:41:34, Info CSI 0000004a [SR] Verifying 100 (0x00000064) components
2011-12-29 17:41:34, Info CSI 0000004b [SR] Beginning Verify and Repair transaction
2011-12-29 17:41:36, Info CSI 0000004d [SR] Verify complete
2011-12-29 17:41:37, Info CSI 0000004e [SR] Verifying 100 (0x00000064) components
2011-12-29 17:41:37, Info CSI 0000004f [SR] Beginning Verify and Repair transaction
2011-12-29 17:41:39, Info CSI 00000051 [SR] Verify complete
2011-12-29 17:41:40, Info CSI 00000052 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:41:40, Info CSI 00000053 [SR] Beginning Verify and Repair transaction
2011-12-29 17:41:43, Info CSI 00000055 [SR] Verify complete
2011-12-29 17:41:43, Info CSI 00000056 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:41:43, Info CSI 00000057 [SR] Beginning Verify and Repair transaction
2011-12-29 17:41:46, Info CSI 00000059 [SR] Verify complete
2011-12-29 17:41:46, Info CSI 0000005a [SR] Verifying 100 (0x00000064) components
2011-12-29 17:41:46, Info CSI 0000005b [SR] Beginning Verify and Repair transaction
2011-12-29 17:41:48, Info CSI 0000005d [SR] Verify complete
2011-12-29 17:41:49, Info CSI 0000005e [SR] Verifying 100 (0x00000064) components
2011-12-29 17:41:49, Info CSI 0000005f [SR] Beginning Verify and Repair transaction
2011-12-29 17:41:51, Info CSI 00000061 [SR] Verify complete
2011-12-29 17:41:52, Info CSI 00000062 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:41:52, Info CSI 00000063 [SR] Beginning Verify and Repair transaction
2011-12-29 17:41:54, Info CSI 00000065 [SR] Verify complete
2011-12-29 17:41:54, Info CSI 00000066 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:41:54, Info CSI 00000067 [SR] Beginning Verify and Repair transaction
2011-12-29 17:41:56, Info CSI 00000069 [SR] Verify complete
2011-12-29 17:41:57, Info CSI 0000006a [SR] Verifying 100 (0x00000064) components
2011-12-29 17:41:57, Info CSI 0000006b [SR] Beginning Verify and Repair transaction
2011-12-29 17:42:00, Info CSI 0000006d [SR] Verify complete
2011-12-29 17:42:00, Info CSI 0000006e [SR] Verifying 100 (0x00000064) components
2011-12-29 17:42:00, Info CSI 0000006f [SR] Beginning Verify and Repair transaction
2011-12-29 17:42:03, Info CSI 00000071 [SR] Verify complete
2011-12-29 17:42:04, Info CSI 00000072 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:42:04, Info CSI 00000073 [SR] Beginning Verify and Repair transaction
2011-12-29 17:42:06, Info CSI 00000075 [SR] Verify complete
2011-12-29 17:42:07, Info CSI 00000076 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:42:07, Info CSI 00000077 [SR] Beginning Verify and Repair transaction
2011-12-29 17:42:09, Info CSI 00000079 [SR] Verify complete
2011-12-29 17:42:10, Info CSI 0000007a [SR] Verifying 100 (0x00000064) components
2011-12-29 17:42:10, Info CSI 0000007b [SR] Beginning Verify and Repair transaction
2011-12-29 17:42:13, Info CSI 0000007d [SR] Verify complete
2011-12-29 17:42:13, Info CSI 0000007e [SR] Verifying 100 (0x00000064) components
2011-12-29 17:42:13, Info CSI 0000007f [SR] Beginning Verify and Repair transaction
2011-12-29 17:42:16, Info CSI 00000081 [SR] Verify complete
2011-12-29 17:42:16, Info CSI 00000082 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:42:16, Info CSI 00000083 [SR] Beginning Verify and Repair transaction
2011-12-29 17:42:19, Info CSI 00000085 [SR] Verify complete
2011-12-29 17:42:20, Info CSI 00000086 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:42:20, Info CSI 00000087 [SR] Beginning Verify and Repair transaction
2011-12-29 17:42:22, Info CSI 00000089 [SR] Verify complete
2011-12-29 17:42:23, Info CSI 0000008a [SR] Verifying 100 (0x00000064) components
2011-12-29 17:42:23, Info CSI 0000008b [SR] Beginning Verify and Repair transaction
2011-12-29 17:42:27, Info CSI 0000008d [SR] Verify complete
2011-12-29 17:42:27, Info CSI 0000008e [SR] Verifying 100 (0x00000064) components
2011-12-29 17:42:27, Info CSI 0000008f [SR] Beginning Verify and Repair transaction
2011-12-29 17:42:29, Info CSI 00000091 [SR] Verify complete
2011-12-29 17:42:30, Info CSI 00000092 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:42:30, Info CSI 00000093 [SR] Beginning Verify and Repair transaction
2011-12-29 17:42:33, Info CSI 00000095 [SR] Verify complete
2011-12-29 17:42:33, Info CSI 00000096 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:42:33, Info CSI 00000097 [SR] Beginning Verify and Repair transaction
2011-12-29 17:42:36, Info CSI 00000099 [SR] Verify complete
2011-12-29 17:42:36, Info CSI 0000009a [SR] Verifying 100 (0x00000064) components
2011-12-29 17:42:36, Info CSI 0000009b [SR] Beginning Verify and Repair transaction
2011-12-29 17:42:39, Info CSI 0000009d [SR] Verify complete
2011-12-29 17:42:39, Info CSI 0000009e [SR] Verifying 100 (0x00000064) components
2011-12-29 17:42:39, Info CSI 0000009f [SR] Beginning Verify and Repair transaction
2011-12-29 17:42:45, Info CSI 000000a1 [SR] Verify complete
2011-12-29 17:42:46, Info CSI 000000a2 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:42:46, Info CSI 000000a3 [SR] Beginning Verify and Repair transaction
2011-12-29 17:42:54, Info CSI 000000a5 [SR] Verify complete
2011-12-29 17:42:55, Info CSI 000000a6 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:42:55, Info CSI 000000a7 [SR] Beginning Verify and Repair transaction
2011-12-29 17:43:02, Info CSI 000000a9 [SR] Verify complete
2011-12-29 17:43:02, Info CSI 000000aa [SR] Verifying 100 (0x00000064) components
2011-12-29 17:43:02, Info CSI 000000ab [SR] Beginning Verify and Repair transaction
2011-12-29 17:43:11, Info CSI 000000ae [SR] Verify complete
2011-12-29 17:43:12, Info CSI 000000af [SR] Verifying 100 (0x00000064) components
2011-12-29 17:43:12, Info CSI 000000b0 [SR] Beginning Verify and Repair transaction
2011-12-29 17:43:20, Info CSI 000000b3 [SR] Verify complete
2011-12-29 17:43:20, Info CSI 000000b4 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:43:20, Info CSI 000000b5 [SR] Beginning Verify and Repair transaction
2011-12-29 17:43:28, Info CSI 000000b7 [SR] Verify complete
2011-12-29 17:43:29, Info CSI 000000b8 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:43:29, Info CSI 000000b9 [SR] Beginning Verify and Repair transaction
2011-12-29 17:43:43, Info CSI 000000c3 [SR] Verify complete
2011-12-29 17:43:43, Info CSI 000000c4 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:43:43, Info CSI 000000c5 [SR] Beginning Verify and Repair transaction
2011-12-29 17:43:54, Info CSI 000000c7 [SR] Verify complete
2011-12-29 17:43:54, Info CSI 000000c8 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:43:54, Info CSI 000000c9 [SR] Beginning Verify and Repair transaction
2011-12-29 17:44:03, Info CSI 000000cb [SR] Verify complete
2011-12-29 17:44:04, Info CSI 000000cc [SR] Verifying 100 (0x00000064) components
2011-12-29 17:44:04, Info CSI 000000cd [SR] Beginning Verify and Repair transaction
2011-12-29 17:44:13, Info CSI 000000cf [SR] Verify complete
2011-12-29 17:44:13, Info CSI 000000d0 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:44:13, Info CSI 000000d1 [SR] Beginning Verify and Repair transaction
2011-12-29 17:44:24, Info CSI 000000d3 [SR] Verify complete
2011-12-29 17:44:24, Info CSI 000000d4 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:44:24, Info CSI 000000d5 [SR] Beginning Verify and Repair transaction
2011-12-29 17:44:41, Info CSI 000000d7 [SR] Verify complete
2011-12-29 17:44:41, Info CSI 000000d8 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:44:41, Info CSI 000000d9 [SR] Beginning Verify and Repair transaction
2011-12-29 17:45:00, Info CSI 000000dd [SR] Verify complete
2011-12-29 17:45:00, Info CSI 000000de [SR] Verifying 100 (0x00000064) components
2011-12-29 17:45:00, Info CSI 000000df [SR] Beginning Verify and Repair transaction
2011-12-29 17:45:22, Info CSI 000000e1 [SR] Verify complete
2011-12-29 17:45:22, Info CSI 000000e2 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:45:22, Info CSI 000000e3 [SR] Beginning Verify and Repair transaction
2011-12-29 17:45:46, Info CSI 000000e5 [SR] Verify complete
2011-12-29 17:45:46, Info CSI 000000e6 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:45:46, Info CSI 000000e7 [SR] Beginning Verify and Repair transaction
2011-12-29 17:45:53, Info CSI 000000e9 [SR] Verify complete
2011-12-29 17:45:53, Info CSI 000000ea [SR] Verifying 100 (0x00000064) components
2011-12-29 17:45:53, Info CSI 000000eb [SR] Beginning Verify and Repair transaction
2011-12-29 17:45:57, Info CSI 000000ed [SR] Verify complete
2011-12-29 17:45:57, Info CSI 000000ee [SR] Verifying 100 (0x00000064) components
2011-12-29 17:45:57, Info CSI 000000ef [SR] Beginning Verify and Repair transaction
2011-12-29 17:46:03, Info CSI 000000f1 [SR] Verify complete
2011-12-29 17:46:03, Info CSI 000000f2 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:46:03, Info CSI 000000f3 [SR] Beginning Verify and Repair transaction
2011-12-29 17:46:20, Info CSI 00000111 [SR] Verify complete
2011-12-29 17:46:21, Info CSI 00000112 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:46:21, Info CSI 00000113 [SR] Beginning Verify and Repair transaction
2011-12-29 17:46:25, Info CSI 00000115 [SR] Verify complete
2011-12-29 17:46:25, Info CSI 00000116 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:46:25, Info CSI 00000117 [SR] Beginning Verify and Repair transaction
2011-12-29 17:46:31, Info CSI 00000119 [SR] Verify complete
2011-12-29 17:46:31, Info CSI 0000011a [SR] Verifying 100 (0x00000064) components
2011-12-29 17:46:31, Info CSI 0000011b [SR] Beginning Verify and Repair transaction
2011-12-29 17:46:36, Info CSI 0000011d [SR] Verify complete
2011-12-29 17:46:37, Info CSI 0000011e [SR] Verifying 100 (0x00000064) components
2011-12-29 17:46:37, Info CSI 0000011f [SR] Beginning Verify and Repair transaction
2011-12-29 17:46:47, Info CSI 00000121 [SR] Verify complete
2011-12-29 17:46:47, Info CSI 00000122 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:46:47, Info CSI 00000123 [SR] Beginning Verify and Repair transaction
2011-12-29 17:47:03, Info CSI 00000126 [SR] Verify complete
2011-12-29 17:47:03, Info CSI 00000127 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:47:03, Info CSI 00000128 [SR] Beginning Verify and Repair transaction
2011-12-29 17:47:09, Info CSI 0000012a [SR] Verify complete
2011-12-29 17:47:10, Info CSI 0000012b [SR] Verifying 100 (0x00000064) components
2011-12-29 17:47:10, Info CSI 0000012c [SR] Beginning Verify and Repair transaction
2011-12-29 17:47:23, Info CSI 0000012e [SR] Verify complete
2011-12-29 17:47:23, Info CSI 0000012f [SR] Verifying 100 (0x00000064) components
2011-12-29 17:47:23, Info CSI 00000130 [SR] Beginning Verify and Repair transaction
2011-12-29 17:47:30, Info CSI 00000132 [SR] Verify complete
2011-12-29 17:47:30, Info CSI 00000133 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:47:30, Info CSI 00000134 [SR] Beginning Verify and Repair transaction
2011-12-29 17:47:39, Info CSI 00000136 [SR] Verify complete
2011-12-29 17:47:39, Info CSI 00000137 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:47:39, Info CSI 00000138 [SR] Beginning Verify and Repair transaction
2011-12-29 17:47:53, Info CSI 0000013a [SR] Verify complete
2011-12-29 17:47:54, Info CSI 0000013b [SR] Verifying 100 (0x00000064) components
2011-12-29 17:47:54, Info CSI 0000013c [SR] Beginning Verify and Repair transaction
2011-12-29 17:48:12, Info CSI 00000161 [SR] Verify complete
2011-12-29 17:48:13, Info CSI 00000162 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:48:13, Info CSI 00000163 [SR] Beginning Verify and Repair transaction
2011-12-29 17:48:27, Info CSI 00000165 [SR] Verify complete
2011-12-29 17:48:28, Info CSI 00000166 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:48:28, Info CSI 00000167 [SR] Beginning Verify and Repair transaction
2011-12-29 17:48:57, Info CSI 00000169 [SR] Verify complete
2011-12-29 17:48:58, Info CSI 0000016a [SR] Verifying 100 (0x00000064) components
2011-12-29 17:48:58, Info CSI 0000016b [SR] Beginning Verify and Repair transaction
2011-12-29 17:49:16, Info CSI 0000016d [SR] Verify complete
2011-12-29 17:49:16, Info CSI 0000016e [SR] Verifying 100 (0x00000064) components
2011-12-29 17:49:16, Info CSI 0000016f [SR] Beginning Verify and Repair transaction
2011-12-29 17:49:32, Info CSI 00000171 [SR] Verify complete
2011-12-29 17:49:32, Info CSI 00000172 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:49:32, Info CSI 00000173 [SR] Beginning Verify and Repair transaction
2011-12-29 17:49:42, Info CSI 00000175 [SR] Verify complete
2011-12-29 17:49:43, Info CSI 00000176 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:49:43, Info CSI 00000177 [SR] Beginning Verify and Repair transaction
2011-12-29 17:49:51, Info CSI 00000179 [SR] Verify complete
2011-12-29 17:49:51, Info CSI 0000017a [SR] Verifying 100 (0x00000064) components
2011-12-29 17:49:51, Info CSI 0000017b [SR] Beginning Verify and Repair transaction
2011-12-29 17:50:02, Info CSI 0000017e [SR] Verify complete
2011-12-29 17:50:02, Info CSI 0000017f [SR] Verifying 100 (0x00000064) components
2011-12-29 17:50:02, Info CSI 00000180 [SR] Beginning Verify and Repair transaction
2011-12-29 17:50:25, Info CSI 00000182 [SR] Verify complete
2011-12-29 17:50:25, Info CSI 00000183 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:50:25, Info CSI 00000184 [SR] Beginning Verify and Repair transaction
2011-12-29 17:50:35, Info CSI 00000186 [SR] Verify complete
2011-12-29 17:50:36, Info CSI 00000187 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:50:36, Info CSI 00000188 [SR] Beginning Verify and Repair transaction
2011-12-29 17:50:50, Info CSI 0000018a [SR] Verify complete
2011-12-29 17:50:50, Info CSI 0000018b [SR] Verifying 100 (0x00000064) components
2011-12-29 17:50:50, Info CSI 0000018c [SR] Beginning Verify and Repair transaction
2011-12-29 17:51:07, Info CSI 0000018e [SR] Verify complete
2011-12-29 17:51:07, Info CSI 0000018f [SR] Verifying 100 (0x00000064) components
2011-12-29 17:51:07, Info CSI 00000190 [SR] Beginning Verify and Repair transaction
2011-12-29 17:51:18, Info CSI 00000192 [SR] Verify complete
2011-12-29 17:51:19, Info CSI 00000193 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:51:19, Info CSI 00000194 [SR] Beginning Verify and Repair transaction
2011-12-29 17:51:32, Info CSI 00000196 [SR] Verify complete
2011-12-29 17:51:32, Info CSI 00000197 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:51:32, Info CSI 00000198 [SR] Beginning Verify and Repair transaction
2011-12-29 17:51:51, Info CSI 0000019b [SR] Verify complete
2011-12-29 17:51:51, Info CSI 0000019c [SR] Verifying 100 (0x00000064) components
2011-12-29 17:51:51, Info CSI 0000019d [SR] Beginning Verify and Repair transaction
2011-12-29 17:52:00, Info CSI 0000019f [SR] Verify complete
2011-12-29 17:52:01, Info CSI 000001a0 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:52:01, Info CSI 000001a1 [SR] Beginning Verify and Repair transaction
2011-12-29 17:52:10, Info CSI 000001a3 [SR] Verify complete
2011-12-29 17:52:11, Info CSI 000001a4 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:52:11, Info CSI 000001a5 [SR] Beginning Verify and Repair transaction
2011-12-29 17:52:22, Info CSI 000001a7 [SR] Verify complete
2011-12-29 17:52:22, Info CSI 000001a8 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:52:22, Info CSI 000001a9 [SR] Beginning Verify and Repair transaction
2011-12-29 17:52:34, Info CSI 000001ae [SR] Verify complete
2011-12-29 17:52:35, Info CSI 000001af [SR] Verifying 100 (0x00000064) components
2011-12-29 17:52:35, Info CSI 000001b0 [SR] Beginning Verify and Repair transaction
2011-12-29 17:52:47, Info CSI 000001b2 [SR] Verify complete
2011-12-29 17:52:47, Info CSI 000001b3 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:52:47, Info CSI 000001b4 [SR] Beginning Verify and Repair transaction
2011-12-29 17:53:00, Info CSI 000001b6 [SR] Verify complete
2011-12-29 17:53:01, Info CSI 000001b7 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:53:01, Info CSI 000001b8 [SR] Beginning Verify and Repair transaction
2011-12-29 17:53:07, Info CSI 000001ba [SR] Verify complete
2011-12-29 17:53:07, Info CSI 000001bb [SR] Verifying 100 (0x00000064) components
2011-12-29 17:53:07, Info CSI 000001bc [SR] Beginning Verify and Repair transaction
2011-12-29 17:53:17, Info CSI 000001be [SR] Verify complete
2011-12-29 17:53:17, Info CSI 000001bf [SR] Verifying 100 (0x00000064) components
2011-12-29 17:53:17, Info CSI 000001c0 [SR] Beginning Verify and Repair transaction
2011-12-29 17:53:32, Info CSI 000001c2 [SR] Verify complete
2011-12-29 17:53:32, Info CSI 000001c3 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:53:32, Info CSI 000001c4 [SR] Beginning Verify and Repair transaction
2011-12-29 17:53:43, Info CSI 000001c6 [SR] Verify complete
2011-12-29 17:53:43, Info CSI 000001c7 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:53:43, Info CSI 000001c8 [SR] Beginning Verify and Repair transaction
2011-12-29 17:53:57, Info CSI 000001ca [SR] Verify complete
2011-12-29 17:53:57, Info CSI 000001cb [SR] Verifying 100 (0x00000064) components
2011-12-29 17:53:57, Info CSI 000001cc [SR] Beginning Verify and Repair transaction
2011-12-29 17:54:18, Info CSI 000001ce [SR] Verify complete
2011-12-29 17:54:18, Info CSI 000001cf [SR] Verifying 100 (0x00000064) components
2011-12-29 17:54:18, Info CSI 000001d0 [SR] Beginning Verify and Repair transaction
2011-12-29 17:54:26, Info CSI 000001d2 [SR] Verify complete
2011-12-29 17:54:27, Info CSI 000001d3 [SR] Verifying 100 (0x00000064) components
2011-12-29 17:54:27, Info CSI 000001d4 [SR] Beginning Verify and Repair transaction
2011-12-29 17:54:38, Info CSI 000001df [SR] Verify complete
2011-12-29 17:54:39, Info CSI 000001e0 [SR] Verifying 59 (0x0000003b) components
2011-12-29 17:54:39, Info CSI 000001e1 [SR] Beginning Verify and Repair transaction
2011-12-29 17:54:44, Info CSI 000001e3 [SR] Verify complete
2011-12-29 17:54:44, Info CSI 000001e4 [SR] Repairing 0 components
2011-12-29 17:54:44, Info CSI 000001e5 [SR] Beginning Verify and Repair transaction
2011-12-29 17:54:44, Info CSI 000001e7 [SR] Repair complete
  • 0

#23
CompCav

CompCav

    Member 5k

  • Expert
  • 12,448 posts
Your sfc scan looks like it ran completely.

I understand your problem a little better so to get adobe reader go here:

Enterprise link

Select Windows Vista

Select Language English (I presume)

Select Reader X (10.1.1)


See if that works better and post back the results of trying it this way.

CompCav
  • 0

#24
Gilfindel

Gilfindel

    Member

  • Topic Starter
  • Member
  • PipPip
  • 53 posts
That worked. Adobe Reader installed just fine.
  • 0

#25
CompCav

CompCav

    Member 5k

  • Expert
  • 12,448 posts
Are there any issues remaining?
  • 0

Advertisements


#26
Gilfindel

Gilfindel

    Member

  • Topic Starter
  • Member
  • PipPip
  • 53 posts
No, everything looks good
  • 0

#27
CompCav

CompCav

    Member 5k

  • Expert
  • 12,448 posts
Very well done!! This is my general post for when your logs show no more signs of malware :thumbsup: - Please let me know if you are
still having problems with your computer and what these problems are.


The following procedure will implement some cleanup and update procedures. It will also reset your System Restore by flushing out previous restore points and create a new restore point. It will also remove all the backups our tools may have made. Finally, I have several recommendations to keep your computer safe and secure.

Any programs and logs that are left over can just be deleted from the desktop.


Uninstall ComboFix:
  • turn off all active protection software
  • push the "windows key" + "R" (between the "Ctrl" button and "Alt" Button)
  • please copy and past the following into the box ComboFix /Uninstall and click OK.
  • Note the space between the X and the /Uninstall, it needs to be there.

Remove Tools:

Please open OTL.
Click on the Cleanup button. This will remove most of the tools left on your desktop.
You will be prompted to reboot. Please reboot.

Clear System Restore Points:

This is a good time to clear your existing system restore points and establish a new clean restore point:
  • Go to Start > All Programs > Accessories > System Tools > System Restore
  • Select Create a restore point, and Ok it.
  • Next, go to Start > Run and type in cleanmgr
  • choose your root drive (normally C:\)
  • after it calculates how much space you will save it will open up a new window
  • Select the More options tab at the top of the window
  • Choose the option to clean up system restore and OK it.
  • go back to the disk clean up tab
  • put a checkmark in all - except compress old files (leave this unchecked)
  • click Ok then click yes
This will remove all restore points except the new one you just created and clean unneeded files

Antivirus Software:

Antvirus software is a necessity. This is your primary line of defense against the type of malware that has infected your computer. Each of the following products have real-time protection and scheduled scans. Please choose one, install it, update the antivirus database/definitions, and run a complete scan.

These are among the best free antivirus/antispyware products.
*Please note* You should never install more than one anti-virus program on a PC because it will cause conflicts.

Firewall:

Without a firewall your computer is succeptible to being hacked and taken over. Using a firewall will allow you to allow/deny access for applications that want to go online. Select one of these, or another of your choice:

For the Windows Firewall, just enable by following the directions in the link and for either of the other two, just download and install in the normal/standard configuration.


Make your Internet Explorer more secure:

  • From within Internet Explorer click on the Tools menu and then click on Options.
  • Click once on the Security tab
  • Click once on the Internet icon so it becomes highlighted.
  • Click once on the Custom Level button.
  • Change the Download signed ActiveX controls to Prompt
  • Change the Download unsigned ActiveX controls to Disable
  • Change the Initialize and script ActiveX controls not marked as safe to Disable
  • Change the Installation of desktop items to Prompt
  • Change the Launching programs and files in an IFRAME to Prompt
  • When all these settings have been made, click on the OK button.
  • If it prompts you as to whether or not you want to save the settings, press the Yes button.
  • Next press the Apply button and then the OK to exit the Internet Properties page.


Make Firefox more secure:

Please visit this page to explain how to make Firefox more secure - How to Secure Firefox



Make Sure Your Applications Have All of Their Updates:

It is also possible for other programs on your computer to have security vulnerability that can allow malware to infect you. Therefore, it is also a good idea to check for the latest versions of commonly installed applications that are regularly patched to fix vulnerabilities. You can check these by visiting Secunia Software Inspector


Turn On Automatic Updates:

To turn on Automatic Updates:
  • Click Start, click Run, type sysdm.cpl, and then press ENTER.
  • Click the Automatic Updates tab, and then click to select one of the following options. We recommend that you select the Automatic (recommended) Automatically download recommended updates for my computer and install them
If you click this setting, click to select the day and time for scheduled updates to occur. You can schedule Automatic Updates for any time of day. Remember, your computer must be on at the scheduled time for updates to be installed. After you set this option, Windows recognizes when you are online and uses your Internet connection to find updates on the Windows Update Web site or on the Microsoft Update Web site specific to your computer. Updates are downloaded automatically in the background, and you are not interrupted during this process. An icon appears in the notification area of your taskbar when the updates are being downloaded. You can point to the icon to view the download status. To pause or to resume the download, right-click the icon, and then click Pause or Resume. When the download is completed, another message appears in the notification area so that you can review the updates that are scheduled for installation. If you choose not to install at that time, Windows starts the installation on your set schedule.

You can also visit http://www.windowsupdate.com regularly. This will ensure your computer always has the latest security updates available installed on your computer. If there are new updates to install, install them immediately, reboot your computer, and revisit the site until there are no more critical updates.

Update Java:

Please download JavaRa to your desktop and unzip it to its own folder

Run JavaRa.exe, pick the language of your choice and click Select. Then click Remove Older Versions.
Accept any prompts.
Open JavaRa.exe again and select Search For Updates.
Select Update Using Sun Java's Website then click Search and click on the Open Webpage button. Download and install the latest Java Runtime Environment (JRE) version for your computer.


Update Adobe Reader

Recently there have been vunerabilities detected in older versions of Adobe Reader. It is strongly suggested that you update to the current version.

Uninstall all previous versions.
Download the latest version from: http://www.adobe.com.../readstep2.html

If you already have Adobe Photoshop® Album Starter Edition installed or do not wish to have it installed UNcheck the box which says Also Download Adobe Photoshop® Album Starter Edition.

If you do not like Adobe Reader (53 MB), you can download Foxit PDF Reader(7 MB) from here. It is a much smaller file to download and uses a lot less resources than Adobe Reader.

Note: When installing FoxitReader, be careful, do not install anything to do with AskBar.


Antispyware programs:

I recommend the download and installation of some or all of the following programs (all free), and remember to update them regularly:
  • WinPatrol As a robust security monitor, WinPatrol will alert you to hijackings, malware attacks and critical changes made to your computer without your permission. WinPatrol takes a snapshot of your critical system resources and alerts you to any changes that may occur without your knowledge.
  • Spyware Blaster - By altering your registry, this program stops harmful sites from installing things like ActiveX Controls on your machine.
  • Malwarebytes' Anti-Malware - It is a powerful anti-malware tool. It is totally free, but for real-time protection you will have to pay a small one-time fee. We used this to help clean your computer and we recomend keeping it and using it often.


Here is some great reading about how to be safer online:
PC Safety and Security - What Do I Need?
and
COMPUTER SECURITY - a short guide to staying safer online from Malware Removal

Keep Safe Posted Image




Please reply to this post so that I know you have read it. Then if you have no further questions, the thread can be closed.

I Will Keep This Open For About Three Days. If Anything Comes Up - Just Come Back And Let Me Know, after that time you will have to send me a PM
  • 0

#28
Gilfindel

Gilfindel

    Member

  • Topic Starter
  • Member
  • PipPip
  • 53 posts
All done. Thanks for your help!
  • 0

#29
Essexboy

Essexboy

    GeekU Moderator

  • Retired Staff
  • 69,964 posts
Since this issue appears to be resolved ... this Topic has been closed. Glad we could help. :)

If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.

Everyone else please begin a New Topic.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP