Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

My Windows Xp Computer seems infected


  • Please log in to reply

#1
dowsp

dowsp

    Member

  • Member
  • PipPipPip
  • 543 posts

Hi,

 

My computer has been often seeming to have a series of spells where it seems to freeze up or become inactive when I click on certain websites.

 

I suspect that I have a virus or some form of spyware that is logging or monitoring my online  activity.

 

I am using an Old Windows Inspiron 1501 Laptop Computer on Windows XP operating system..series 2 from 2002.

 

In the past I used to try various antivirus software programs.. that used to seem to work for me and remove various spyware and viruses..

 

but in more recent times... the Antivirus programs no longer seem to work on Windows XP...

 

so I have NOT as yet attempted to try and use any Antivirus.

 

I dont think I have any really valid protection on my computer like I once used to have..

 

and overall in general I think overall I am much more careful in what websites I visit and for quite a few years now.. I have avoided any real problems..

even without any protection or AV programs installed.

 

But Unfortunately in the last 2 to 3 months... I have found my computer running poorly and sometimes it does freeze up badly.

and becomes unusable.

 

I would appreciate any help and advice to try to solve the problem.

 

Thank you

 

Regards

 

Dowsp


Edited by dowsp, 06 August 2021 - 01:41 PM.

  • 0

Advertisements


#2
dowsp

dowsp

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 543 posts

I dont know why,

 

but when I initially tried to post the FRST and Addition Notepad txts...

 

After attempting to select, copy and then paste..

 

When I tried to paste the content into the editor... it would not show the Paste option..

 

and all it showed on a right click was a inpect element option.

 

Later for some reason it eventually allowed me to paste..

 

 

I tried to paste it 3 times and now I can see all 3 attempts have now shown..

 

Is it possible for me to delete two of these ?

 

alternatively I will have to remove the content out of two of the posts...

 

I later ammended two posts and added in the 2nd Addition Notepad to use up one of the 2 extra  posts that  I had made ...

 

I can also now see there is a note showing up related to the FRST program maybe being outdated..

 

 

(ATTENTION: ====> FRSTversion is 79 days old and could

be outdated
)


Edited by dowsp, 06 August 2021 - 02:12 PM.

  • 0

#3
dowsp

dowsp

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 543 posts

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 19-05-2021 (ATTENTION: ====> FRSTversion is 79 days old and could

be outdated
)
Ran by JS (administrator) on J-809441C46B9D4 (Dell Inc. 0UW744??????  ) (06-08-2021 20:13:01)
Running from C:\Documents and Settings\JS\Desktop
Loaded Profiles: JS
Platform: Microsoft Windows XP Home Edition Service Pack 3 (X86) Language: English (United States) -> English (United Kingdom)
Default browser: FF
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ArcSoft, Inc. -> ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
(ArcSoft, Inc. -> ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
(ArcSoft, Inc. -> ArcSoft Inc.) C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
(ATI Technologies Inc.) [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe <2>
(Microsoft Windows Component Publisher -> Microsoft Corporation) C:\WINDOWS\system32\alg.exe
(Microsoft Windows Component Publisher -> Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(Microsoft Windows Hardware Compatibility Publisher -> ATI Technologies Inc.) C:\WINDOWS\system32\ati2evxx.exe <2>
(Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.) C:\WINDOWS\sttray.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(SigmaTel, Inc.) [File not signed] C:\WINDOWS\stsystra.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [IDTSysTrayApp] => C:\WINDOWS\sttray.exe [405504 2007-09-05] (Microsoft Windows Hardware Compatibility Publisher -> IDT,

Inc.)
HKLM\...\Run: [ArcSoft Connection Service] => C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [162304 2008-10-17]

(ArcSoft, Inc. -> ArcSoft Inc.)
HKLM\...\Run: [SigmatelSysTrayApp] => C:\WINDOWS\stsystra.exe [282624 2006-07-27] (SigmaTel, Inc.) [File not signed]
HKLM\...\Run: [ATICCC] => C:\Program Files\ATI Technologies\ATI.ACE\CLIStart.exe [90112 2006-05-10] () [File not signed]
Winlogon\Notify\AtiExtEvent: C:\WINDOWS\system32\Ati2evxx.dll [2006-09-22] (ATI Technologies Inc.)
HKU\S-1-5-21-1935655697-1035525444-839522115-1004\...\Run: [Skype] => "C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun
HKLM\...\Windows NT x86\Print Processors\winprint: localspl.dll
HKLM\...\Print\Monitors\BJ Language Monitor: C:\WINDOWS\system32\cnbjmon.dll [47104 2008-04-14] (Microsoft Windows Component Publisher ->

Microsoft Corporation)
HKLM\...\Print\Monitors\PJL Language Monitor: C:\WINDOWS\system32\pjlmon.dll [15360 2008-04-14] (Microsoft Windows Component Publisher ->

Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [<{12d0ed0d-0ee0-4f90-8827-78cefb8f4988}] -> C:\WINDOWS\system32\ieudinit.exe

[2009-03-08] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}] -> C:\WINDOWS\INF\unregmp2.exe

[2008-04-14] (Microsoft Windows Component Publisher -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [>{881dd1c5-3dcf-431b-b061-f3f88e8be88a}] -> C:\WINDOWS\system32\shmgrate.exe

[2008-04-14] (Microsoft Windows Component Publisher -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{2179C5D3-EBFF-11CF-B6FD-00AA00B4E220}] ->
HKLM\Software\Microsoft\Active Setup\Installed Components: [{22d6f312-b0f6-11d0-94ab-0080c74c7e95}] -> C:\WINDOWS\system32\advpack.dll

[2009-03-08] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{44BBA840-CC51-11CF-AAFA-00AA00B6015C}] -> C:\Program Files\Outlook

Express\setup50.exe [2008-04-14] (Microsoft Windows Component Publisher -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{44BBA842-CC51-11CF-AAFA-00AA00B6015B}] -> C:\WINDOWS\system32\advpack.dll

[2009-03-08] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{5945c046-1e7d-11d1-bc44-00c04fd912be}] -> C:\WINDOWS\system32\advpack.dll

[2009-03-08] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{6BF52A52-394A-11d3-B153-00C04F79FAA6}] -> C:\WINDOWS\system32\advpack.dll

[2009-03-08] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{7790769C-0471-11d2-AF11-00C04FA35D02}] -> C:\Program Files\Outlook

Express\setup50.exe [2008-04-14] (Microsoft Windows Component Publisher -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program

Files\Google\Chrome\Application\49.0.2623.112\Installer\chrmstp.exe [2018-02-13] (Google Inc -> Google Inc.)
HKLM\Software\...\Winlogon\GPExtensions: [{C631DF4C-088F-4156-B058-4375F0853CD8}] -> C:\WINDOWS\System32\cscui.dll [2008-04-14] (Microsoft

Windows Component Publisher -> Microsoft Corporation)
HKLM\Software\...\Winlogon\GPExtensions: [{c6dc5466-785a-11d2-84d0-00c04fb169f7}] -> appmgmts.dll

==================== Scheduled Tasks=============================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player NPAPI Notifier.job => C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Microsoft Windows XP End of Service Notification Logon.job => C:\WINDOWS\system32\xp_eos.exe
Task: C:\WINDOWS\Tasks\Microsoft Windows XP End of Service Notification Monthly.job => C:\WINDOWS\system32\xp_eos.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{33CADDDA-3491-437E-82F8-894082596759}: [DhcpNameServer] 172.20.10.1

FireFox:
========
FF DefaultProfile: obha0eru.default
FF ProfilePath: C:\Documents and Settings\JS\Application Data\Mozilla\Firefox\Profiles\obha0eru.default [2021-08-06]
FF DownloadDir: C:\Documents and Settings\JS\My Documents\Downloads
FF Extension: (Avast Online Security) - C:\Documents and Settings\JS\Application

Data\Mozilla\Firefox\Profiles\obha0eru.default\Extensions\[email protected] [2021-02-17]
FF Extension: (Hotfix for Firefox bug 1548973 (armagaddon 2.0) mitigation) - C:\Documents and Settings\JS\Application

Data\Mozilla\Firefox\Profiles\obha0eru.default\features\{d739e0a8-dd3f-4187-b1f3-6c4ee192ce6e}\[email protected]

[2019-05-25] [Legacy]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_32_0_0_465.dll [2020-12-10] (Adobe Inc. -> ) [File not

signed]

Chrome:
=======
CHR Profile: C:\Documents and Settings\JS\Local Settings\Application Data\Google\Chrome\User Data\Default [2021-08-06]
CHR Notifications: Default -> hxxps://www.manchestereveningnews.co.uk
CHR Extension: (Slides) - C:\Documents and Settings\JS\Local Settings\Application Data\Google\Chrome\User

Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-20]
CHR Extension: (Docs) - C:\Documents and Settings\JS\Local Settings\Application Data\Google\Chrome\User

Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-20]
CHR Extension: (Google Drive) - C:\Documents and Settings\JS\Local Settings\Application Data\Google\Chrome\User

Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-09-13]
CHR Extension: (YouTube) - C:\Documents and Settings\JS\Local Settings\Application Data\Google\Chrome\User

Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-09-13]
CHR Extension: (Sheets) - C:\Documents and Settings\JS\Local Settings\Application Data\Google\Chrome\User

Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-20]
CHR Extension: (Google Docs Offline) - C:\Documents and Settings\JS\Local Settings\Application Data\Google\Chrome\User

Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-05-30]
CHR Extension: (Chrome Web Store Payments) - C:\Documents and Settings\JS\Local Settings\Application Data\Google\Chrome\User

Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-11]
CHR Extension: (Gmail) - C:\Documents and Settings\JS\Local Settings\Application Data\Google\Chrome\User

Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-04]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ACDaemon; C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [109056 2008-10-17] (ArcSoft, Inc. -> ArcSoft Inc.)
S3 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-10] (Adobe Inc. -> Adobe)

[File not signed]
S3 aspnet_state; C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_state.exe [32768 2004-07-15] (Microsoft Corporation) [File not signed]
R2 Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [401408 2006-09-22] (Microsoft Windows Hardware Compatibility Publisher -> ATI

Technologies Inc.)
S3 SwPrv; C:\WINDOWS\system32\dllhost.exe /Processid:{EB3E7A6E-CD02-47B3-90A6-9C3C968762F0} [5120 2008-04-14] (Microsoft Windows Component

Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 Afc; C:\WINDOWS\System32\drivers\Afc.sys [18688 2006-11-10] (ArcSoft, Inc. -> Arcsoft, Inc.)
R3 ati2mtag; C:\WINDOWS\System32\DRIVERS\ati2mtag.sys [1681920 2006-09-22] (Microsoft Windows Hardware Compatibility Publisher -> ATI

Technologies Inc.)
R0 atiide; C:\WINDOWS\System32\DRIVERS\atiide.sys [3456 2006-09-13] (Microsoft Windows Hardware Compatibility Publisher -> ATI Technologies

Inc.)
S0 cercsr6; C:\Windows\System32\Drivers\cercsr6.sys [39904 2004-12-13] (Adaptec, Inc.) [File not signed]
R3 HDAudBus; C:\WINDOWS\System32\DRIVERS\HDAudBus.sys [144384 2008-04-13] (Microsoft Windows Component Publisher -> Windows ® Server 2003

DDK provider)
R3 HSFHWAZL; C:\WINDOWS\System32\DRIVERS\HSFHWAZL.sys [201600 2005-07-22] (Microsoft Windows Hardware Compatibility Publisher -> Conexant

Systems, Inc.)
R3 HSF_DPV; C:\WINDOWS\System32\DRIVERS\HSF_DPV.sys [1035008 2005-07-22] (Microsoft Windows Hardware Compatibility Publisher -> Conexant

Systems, Inc.)
R2 mdmxsdk; C:\WINDOWS\System32\DRIVERS\mdmxsdk.sys [13059 2004-03-17] (Microsoft Windows Hardware Compatibility Publisher -> Conexant)
R3 Ptilink; C:\WINDOWS\System32\DRIVERS\ptilink.sys [17792 2004-08-04] (Microsoft Windows Component Publisher -> Parallel Technologies,

Inc.)
R3 rimmptsk; C:\WINDOWS\System32\DRIVERS\rimmptsk.sys [28544 2005-07-14] (Microsoft Windows Hardware Compatibility Publisher -> REDC)
R3 rt2870; C:\WINDOWS\System32\DRIVERS\rt2870.sys [1213632 2011-11-14] (Ralink Technology Corporation -> Ralink Technology, Corp.)
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-14] (Microsoft Windows Component Publisher -> Microsoft Corporation)
S3 Secdrv; C:\WINDOWS\System32\DRIVERS\secdrv.sys [20480 2008-04-13] (Microsoft Windows Component Publisher -> Macrovision Corporation,

Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
R3 STHDA; C:\WINDOWS\System32\drivers\sthda.sys [1171464 2006-07-27] (Microsoft Windows Hardware Compatibility Publisher -> SigmaTel, Inc.)
R3 winachsf; C:\WINDOWS\System32\DRIVERS\HSF_CNXT.sys [717952 2005-07-22] (Microsoft Windows Hardware Compatibility Publisher -> Conexant

Systems, Inc.)
S4 IntelIde; no ImagePath
S1 OMCI; \??\C:\WINDOWS\SYSTEM32\DRIVERS\OMCI.SYS [X]
U1 WS2IFSL; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-08-06 20:13 - 2021-08-06 20:14 - 000012847 _____ C:\Documents and Settings\JS\Desktop\FRST.txt
2021-08-06 20:10 - 2021-08-06 20:10 - 002012160 _____ (Farbar) C:\Documents and Settings\JS\Desktop\FRST.exe

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-08-06 20:14 - 2015-06-10 20:42 - 000000000 ____D C:\Documents and Settings\JS\Local Settings\Temp
2021-08-06 20:13 - 2017-09-17 05:04 - 000000000 ____D C:\FRST
2021-08-06 19:45 - 2017-12-12 12:39 - 000000216 _____ C:\WINDOWS\Tasks\Microsoft Windows XP End of Service Notification Logon.job
2021-08-06 19:45 - 2017-09-13 19:48 - 000000882 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2021-08-06 19:45 - 2017-09-13 19:47 - 000000000 ____D C:\Program Files\Google
2021-08-06 19:45 - 2015-06-10 20:39 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-08-06 19:26 - 2017-12-15 05:41 - 000524288 _____ C:\WINDOWS\system32\config\ACEEvent.evt
2021-08-06 19:26 - 2015-06-10 20:39 - 000032586 _____ C:\WINDOWS\SchedLgU.Txt
2021-08-06 19:24 - 2017-09-13 19:48 - 000000886 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2021-08-06 19:19 - 2015-06-29 18:35 - 000000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2021-08-06 11:24 - 2020-11-04 22:14 - 000000000 ____D C:\Documents and Settings\JS\Desktop\AA
2021-08-05 17:55 - 2018-10-07 13:36 - 000000000 ____D C:\Documents and Settings\JS\My Documents\E
2021-08-05 10:00 - 2018-06-21 22:03 - 000000000 ____D C:\Documents and Settings\JS\My Documents\Ho
2021-08-04 17:13 - 2017-06-29 23:41 - 000000754 _____ C:\WINDOWS\WORDPAD.INI
2021-08-03 17:38 - 2017-10-09 18:47 - 000000000 ____D C:\Documents and Settings\JS\My Documents\Pe
2021-08-02 16:55 - 2017-11-23 00:02 - 000000000 ____D C:\Documents and Settings\JS\My Documents\Mc
2021-07-31 20:34 - 2018-03-14 05:19 - 000000880 _____ C:\WINDOWS\Tasks\Adobe Flash Player NPAPI Notifier.job
2021-07-31 20:34 - 2015-06-10 20:30 - 000000000 ____D C:\WINDOWS\system32\Macromed
2021-07-28 09:44 - 2004-08-04 11:00 - 000002206 _____ C:\WINDOWS\system32\wpa.dbl
2021-07-19 06:48 - 2019-01-17 16:42 - 000000000 ____D C:\Documents and Settings\JS\My Documents\Wo
2021-07-19 06:20 - 2017-12-12 12:39 - 000000210 _____ C:\WINDOWS\Tasks\Microsoft Windows XP End of Service Notification Monthly.job
2021-07-12 16:52 - 2020-03-02 08:44 - 000000000 ____D C:\Documents and Settings\JS\My Documents\A D

==================== Files in the root of some directories ========

2018-10-06 16:39 - 2018-10-06 16:39 - 000003584 _____ () C:\Documents and Settings\JS\Local Settings\Application

Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2017-12-15 05:40 - 2017-12-15 05:40 - 000000125 _____ () C:\Documents and Settings\JS\Local Settings\Application Data\fusioncache.dat

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================


Edited by dowsp, 06 August 2021 - 02:15 PM.

  • 0

#4
dowsp

dowsp

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 543 posts

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 19-05-2021
Ran by JS (06-08-2021 20:14:39)
Running from C:\Documents and Settings\JS\Desktop
Microsoft Windows XP Home Edition Service Pack 3 (X86) (2015-06-10 19:35:04)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1935655697-1035525444-839522115-500 - Administrator - Enabled)
ASPNET (S-1-5-21-1935655697-1035525444-839522115-1005 - Limited - Enabled)
Guest (S-1-5-21-1935655697-1035525444-839522115-501 - Limited - Disabled)
HelpAssistant (S-1-5-21-1935655697-1035525444-839522115-1000 - Limited - Disabled)
JS (S-1-5-21-1935655697-1035525444-839522115-1004 - Administrator - Enabled) => %SystemDrive%\Documents and Settings\JS
SUPPORT_388945a0 (S-1-5-21-1935655697-1035525444-839522115-1002 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)


==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled

manually.)

2T2R 11n USB Adapter (HKLM\...\{55C6BDB5-E5E5-4607-B9E3-08917FF2CDE2}) (Version: 1.5.12.0 - )
Adobe Flash Player 32 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 32.0.0.465 - Adobe)
ArcSoft MediaImpression (HKLM\...\{CCF38218-BD4A-4A4D-8EBE-735569BF89F5}) (Version: 1.2.33.353 - ArcSoft)
ArcSoft PhotoImpression (HKLM\...\{35B8CC58-F128-4169-82EB-0E6CB0C3AFE6}) (Version:  - )
ArcSoft VideoImpression 1.6 (HKLM\...\{DEF2E5A3-0317-4822-B930-8B721EB483E4}) (Version:  - )
ATI - Software Uninstall Utility (HKLM\...\All ATI Software) (Version: 6.14.10.1014 - )
ATI Catalyst Control Center (HKLM\...\{AC6AE077-1566-4655-BE73-38A869C150DC}) (Version: 1.2.2460.36742 - )
ATI Display Driver (HKLM\...\ATI Display Driver) (Version: 8.282.2.1-060922a-036833C-Dell - )
Conexant HDA D110 MDC V.92 Modem (HKLM\...\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_2BFA&SUBSYS_14F100C3) (Version:  - )
Dell Resource CD (HKLM\...\{FCD9CD52-7222-4672-94A0-A722BA702FD0}) (Version: 1.00.0000 - Dell Inc.)
Google Chrome (HKLM\...\Google Chrome) (Version: 49.0.2623.112 - Google Inc.)
GoTo Opener (HKLM\...\{1F803452-798F-49FB-A5DD-9F527F7017E4}) (Version: 1.0.473 - LogMeIn, Inc.)
Microsoft .NET Framework 1.1 (HKLM\...\Microsoft .NET Framework 1.1  (1033)) (Version:  - )
Microsoft .NET Framework 1.1 Security Update (KB2833941) (HKLM\...\M2833941) (Version:  - )
Mozilla Firefox 52.9.0 ESR (x86 en-GB) (HKLM\...\Mozilla Firefox 52.9.0 ESR (x86 en-GB)) (Version: 52.9.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 52.9.0.6746 - Mozilla)
MSN (HKLM\...\MSNINST) (Version:  - )
PENTAX Digital Camera Utility (HKLM\...\PENTAX Digital Camera Utility) (Version:  - )
SigmaTel Audio (HKLM\...\{A462213D-EED4-42C2-9A60-7BDD4D4B0B17}) (Version: 5.10.4820.0 - SigmaTel)
Windows Driver Package - Ricoh Company Memorystick Host Controller (07/09/2005 1.00.01.12)

(HKLM\...\3635FC5A3FE7DACCEF2123BDBDA808BA811B977B) (Version: 07/09/2005 1.00.01.12 - Ricoh Company)
Windows Driver Package - Ricoh Company MMC Host Controller (07/14/2005 1.00.00.06) (HKLM\...\F631A62FA5E06534A0FE3637D75AAA5B1D3E4FB7)

(Version: 07/14/2005 1.00.00.06 - Ricoh Company)
Windows Driver Package - Ricoh Company xD-Picture Card/SmartMedia Host Controller (07/14/2005 1.00.02.04)

(HKLM\...\452416B030C25BAA383F3DA368FECD5D48FAE727) (Version: 07/14/2005 1.00.02.04 - Ricoh Company)
Windows Internet Explorer 8 (HKLM\...\ie8) (Version: 20090308.140743 - Microsoft Corporation)
Windows XP Service Pack 3 (HKLM\...\Windows XP Service Pack) (Version: 20080414.031525 - Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Windows Component Publisher

-> Microsoft Corporation)
SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Windows Component Publisher ->

Microsoft Corporation)
SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll (Microsoft Windows -> Microsoft Corporation)
SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll (Microsoft Windows Component Publisher ->

Microsoft Corporation)
ShellExecuteHooks: URL Exec Hook - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - C:\WINDOWS\system32\shell32.dll [8462848 2012-06-08] (Microsoft

Windows Component Publisher -> Microsoft Corporation)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} =>  -> No File

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [msacm.trspch] => C:\WINDOWS\system32\tssoft32.acm [8192 2004-08-04] (Microsoft Windows Component Publisher -> DSP

GROUP, INC.)
HKLM\...\Drivers32: [vidc.I420] => C:\WINDOWS\system32\msh263.drv [294912 2008-04-14] (Microsoft Windows Component Publisher -> Microsoft

Corporation)
HKLM\...\Drivers32: [vidc.iv31] => C:\WINDOWS\system32\ir32_32.dll [199168 2004-08-04] (Microsoft Windows Component Publisher -> )
HKLM\...\Drivers32: [vidc.iv32] => C:\WINDOWS\system32\ir32_32.dll [199168 2004-08-04] (Microsoft Windows Component Publisher -> )
HKLM\...\Drivers32: [vidc.iv41] => C:\WINDOWS\system32\ir41_32.ax [848384 2008-04-14] (Microsoft Windows Component Publisher -> Intel

Corporation)
HKLM\...\Drivers32: [msacm.msg723] => C:\WINDOWS\system32\msg723.acm [118784 2004-08-04] (Microsoft Windows Component Publisher ->

Microsoft Corporation)
HKLM\...\Drivers32: [vidc.M263] => C:\WINDOWS\system32\msh263.drv [294912 2008-04-14] (Microsoft Windows Component Publisher -> Microsoft

Corporation)
HKLM\...\Drivers32: [vidc.M261] => C:\WINDOWS\system32\msh261.drv [188416 2008-04-14] (Microsoft Windows Component Publisher -> Microsoft

Corporation)
HKLM\...\Drivers32: [msacm.msaudio1] => C:\WINDOWS\system32\msaud32.acm [282654 2009-09-01] (Microsoft Windows Component Publisher ->

Microsoft Corporation)
HKLM\...\Drivers32: [msacm.sl_anet] => C:\WINDOWS\system32\sl_anet.acm [86016 2008-04-14] (Microsoft Windows Component Publisher -> Sipro

Lab Telecom Inc.)
HKLM\...\Drivers32: [msacm.iac2] => C:\WINDOWS\system32\iac25_32.ax [199680 2008-04-14] (Microsoft Windows Component Publisher -> Intel

Corporation)
HKLM\...\Drivers32: [vidc.iv50] => C:\WINDOWS\system32\ir50_32.dll [755200 2008-04-14] (Microsoft Windows Component Publisher -> Intel

Corporation)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

WMI:subscription\__FilterToConsumerBinding->\\.\root\subscription:MSFT_UCScenarioControl.Name=\"Microsoft WMI Updating Consumer Scenario

Control\"",Filter="\\.\root\subscription:__EventFilter.Name=\"Microsoft WMI Updating Consumer Scenario Control\"::
WMI:subscription\__EventFilter->Microsoft WMI Updating Consumer Scenario Control::[Query => SELECT * FROM __InstanceOperationEvent WHERE

TargetInstance ISA 'MSFT_UCScenario']

==================== Loaded Modules (Whitelisted) =============

2005-11-14 22:32 - 2005-11-14 22:32 - 000006144 _____ () [File not signed] c:\program files\ati technologies\ati.ace\atixclib.dll
2006-09-26 22:19 - 2006-09-26 22:19 - 000126976 _____ () [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.radeon3d.graphics.wizard.dll
2017-12-17 10:26 - 2017-12-17 10:26 - 003391488 _____ () [File not signed]

c:\windows\assembly\nativeimages1_v1.1.4322\mscorlib\1.0.5000.0__b77a5c561934e089_7b56a16c\mscorlib.dll
2017-12-17 10:26 - 2017-12-17 10:26 - 000843776 _____ () [File not signed]

c:\windows\assembly\nativeimages1_v1.1.4322\system.drawing\1.0.5000.0__b03f5f7f11d50a3a_3f19c02f\system.drawing.dll
2017-12-17 10:25 - 2017-12-17 10:25 - 003035136 _____ () [File not signed]

c:\windows\assembly\nativeimages1_v1.1.4322\system.windows.forms\1.0.5000.0__b77a5c561934e089_f423888b\system.windows.forms.dll
2017-12-17 10:26 - 2017-12-17 10:26 - 002088960 _____ () [File not signed]

c:\windows\assembly\nativeimages1_v1.1.4322\system.xml\1.0.5000.0__b77a5c561934e089_49f297e9\system.xml.dll
2017-12-17 03:11 - 2017-12-17 03:11 - 001966080 _____ () [File not signed]

c:\windows\assembly\nativeimages1_v1.1.4322\system\1.0.5000.0__b77a5c561934e089_9b740ddc\system.dll
2006-01-17 17:39 - 2006-01-17 17:39 - 000024576 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\ace.graphics.displaysmanager.shared.dll
2006-01-17 17:39 - 2006-01-17 17:39 - 000016384 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\ace.graphics.videooverlay.shared.dll
2006-01-17 17:39 - 2006-01-17 17:39 - 000024576 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\aem.foundation.dll
2006-01-17 17:40 - 2006-01-17 17:40 - 000024576 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\apm.foundation.dll
2006-01-17 18:01 - 2006-01-17 18:01 - 000020480 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\aticccom.dll
2006-05-30 17:33 - 2006-05-30 17:33 - 000024576 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.customformats.graphics.shared.dll
2006-09-26 22:23 - 2006-09-26 22:23 - 000036864 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicecrt.graphics.runtime.dll
2006-02-14 17:11 - 2006-02-14 17:11 - 000057344 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicecrt.graphics.shared.dll
2006-09-26 22:20 - 2006-09-26 22:20 - 000036864 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicecrt2.graphics.runtime.dll
2006-02-14 17:12 - 2006-02-14 17:12 - 000057344 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicecrt2.graphics.shared.dll
2006-09-26 22:23 - 2006-09-26 22:23 - 000057344 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicecv.graphics.runtime.dll
2006-05-30 17:34 - 2006-05-30 17:34 - 000036864 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicecv.graphics.shared.dll
2006-09-26 22:19 - 2006-09-26 22:19 - 001232896 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicecv.graphics.wizard.dll
2006-09-26 22:21 - 2006-09-26 22:21 - 000057344 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicecv2.graphics.runtime.dll
2006-05-30 17:33 - 2006-05-30 17:33 - 000040960 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicecv2.graphics.shared.dll
2006-09-26 22:20 - 2006-09-26 22:20 - 001232896 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicecv2.graphics.wizard.dll
2006-09-26 22:23 - 2006-09-26 22:23 - 000040960 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicedfp.graphics.runtime.dll
2006-05-30 17:33 - 2006-05-30 17:33 - 000040960 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicedfp.graphics.shared.dll
2006-09-26 22:20 - 2006-09-26 22:20 - 000045056 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicedfp2.graphics.runtime.dll
2006-05-30 17:34 - 2006-05-30 17:34 - 000040960 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicedfp2.graphics.shared.dll
2006-09-26 22:23 - 2006-09-26 22:23 - 000028672 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicelcd.graphics.runtime.dll
2006-01-24 18:18 - 2006-01-24 18:18 - 000028672 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicelcd.graphics.shared.dll
2006-09-26 22:19 - 2006-09-26 22:19 - 000413696 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicelcd.graphics.wizard.dll
2006-09-26 22:20 - 2006-09-26 22:20 - 000028672 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicelcd2.graphics.runtime.dll
2006-01-24 18:19 - 2006-01-24 18:19 - 000028672 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicelcd2.graphics.shared.dll
2006-09-26 22:20 - 2006-09-26 22:20 - 000413696 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicelcd2.graphics.wizard.dll
2006-01-17 18:01 - 2006-01-17 18:01 - 000016384 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.deviceproperty.graphics.shared.dll
2006-01-17 18:01 - 2006-01-17 18:01 - 000020480 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.deviceproperty2.graphics.shared.dll
2006-09-26 22:23 - 2006-09-26 22:23 - 000057344 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicetv.graphics.runtime.dll
2006-04-26 17:15 - 2006-04-26 17:15 - 000057344 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicetv.graphics.shared.dll
2006-09-26 22:19 - 2006-09-26 22:19 - 000147456 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicetv.graphics.wizard.dll
2006-09-26 22:23 - 2006-09-26 22:23 - 000061440 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicetv2.graphics.runtime.dll
2006-04-26 17:14 - 2006-04-26 17:14 - 000057344 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicetv2.graphics.shared.dll
2006-09-26 22:19 - 2006-09-26 22:19 - 000147456 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.devicetv2.graphics.wizard.dll
2006-09-26 22:23 - 2006-09-26 22:23 - 000040960 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.displayscolour.graphics.runtime.dll
2006-01-17 18:02 - 2006-01-17 18:02 - 000024576 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.displayscolour.graphics.shared.dll
2006-09-26 22:20 - 2006-09-26 22:20 - 000045056 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.displayscolour2.graphics.runtime.dll
2006-04-21 16:31 - 2006-04-21 16:31 - 000024576 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.displayscolour2.graphics.shared.dll
2006-09-26 22:20 - 2006-09-26 22:20 - 002367488 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.displaysmanager.graphics.wizard.dll
2006-09-26 22:22 - 2006-09-26 22:22 - 000032768 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.displaysoptions.graphics.runtime.dll
2006-01-17 18:02 - 2006-01-17 18:02 - 000024576 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.displaysoptions.graphics.shared.dll
2006-09-26 22:21 - 2006-09-26 22:21 - 000020480 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.hotkeyshandling.graphics.runtime.dll
2006-04-12 16:53 - 2006-04-12 16:53 - 000020480 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.hotkeyshandling.graphics.shared.dll
2006-09-26 22:22 - 2006-09-26 22:22 - 000032768 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.infocentre.graphics.runtime.dll
2006-01-17 18:02 - 2006-01-17 18:02 - 000028672 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.infocentre.graphics.shared.dll
2006-09-26 22:19 - 2006-09-26 22:19 - 000331776 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.infocentre.graphics.wizard.dll
2006-09-26 22:22 - 2006-09-26 22:22 - 000020480 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.integratedumaframebuffer.graphics.runtime.dll
2006-01-19 14:48 - 2006-01-19 14:48 - 000020480 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.integratedumaframebuffer.graphics.shared.dll
2006-09-26 22:22 - 2006-09-26 22:22 - 000040960 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.mmvideo.graphics.runtime.dll
2006-01-17 18:02 - 2006-01-17 18:02 - 000032768 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.mmvideo.graphics.shared.dll
2006-09-26 22:19 - 2006-09-26 22:19 - 000462848 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.mmvideo.graphics.wizard.dll
2006-09-26 22:21 - 2006-09-26 22:21 - 000036864 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.multivpu.graphics.runtime.dll
2006-01-17 18:02 - 2006-01-17 18:02 - 000024576 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.multivpu.graphics.shared.dll
2006-09-26 22:19 - 2006-09-26 22:19 - 000036864 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.multivpu2.graphics.runtime.dll
2006-01-17 18:02 - 2006-01-17 18:02 - 000024576 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.multivpu2.graphics.shared.dll
2006-09-26 22:20 - 2006-09-26 22:20 - 000036864 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.multivpu3.graphics.runtime.dll
2006-04-21 12:42 - 2006-04-21 12:42 - 000024576 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.multivpu3.graphics.shared.dll
2006-09-26 22:22 - 2006-09-26 22:22 - 000028672 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.overdrive2.graphics.runtime.dll
2006-08-09 17:17 - 2006-08-09 17:17 - 000020480 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.overdrive2.graphics.shared.dll
2006-09-26 22:22 - 2006-09-26 22:22 - 000077824 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.overdrive3.graphics.runtime.dll
2006-08-29 15:48 - 2006-08-29 15:48 - 000024576 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.overdrive3.graphics.shared.dll
2006-09-26 22:22 - 2006-09-26 22:22 - 000049152 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.powerplay3.graphics.runtime.dll
2006-01-17 18:02 - 2006-01-17 18:02 - 000028672 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.powerplay3.graphics.shared.dll
2006-09-26 22:21 - 2006-09-26 22:21 - 000057344 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.radeon3d.graphics.runtime.dll
2006-02-10 16:58 - 2006-02-10 16:58 - 000057344 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.radeon3d.graphics.shared.dll
2006-09-26 22:21 - 2006-09-26 22:21 - 000040960 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.radeon3dlegacy.graphics.runtime.dll
2006-02-10 16:58 - 2006-02-10 16:58 - 000049152 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.radeon3dlegacy.graphics.shared.dll
2006-09-26 22:21 - 2006-09-26 22:21 - 000028672 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.smartgart.graphics.runtime.dll
2006-01-17 18:02 - 2006-01-17 18:02 - 000028672 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.smartgart.graphics.shared.dll
2006-09-26 22:19 - 2006-09-26 22:19 - 000286720 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.transcode.local.shared.dll
2006-09-26 22:19 - 2006-09-26 22:19 - 000507904 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.transcode.local.wizard.dll
2006-09-26 22:20 - 2006-09-26 22:20 - 000032768 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.verylargedesktop.graphics.runtime.dll
2006-01-17 18:02 - 2006-01-17 18:02 - 000024576 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.verylargedesktop.graphics.shared.dll
2006-09-26 22:21 - 2006-09-26 22:21 - 000036864 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.videooverlay.graphics.runtime.dll
2006-01-17 18:02 - 2006-01-17 18:02 - 000028672 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.videooverlay.graphics.shared.dll
2006-09-26 22:21 - 2006-09-26 22:21 - 000024576 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.vpurecover.graphics.runtime.dll
2006-01-17 18:02 - 2006-01-17 18:02 - 000024576 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.vpurecover.graphics.shared.dll
2006-09-26 22:21 - 2006-09-26 22:21 - 000036864 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.workstationconfig.graphics.runtime.dll
2006-07-18 16:24 - 2006-07-18 16:24 - 000032768 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.aspect.workstationconfig.graphics.shared.dll
2006-09-26 22:24 - 2006-09-26 22:24 - 000299008 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.caste.graphics.runtime.dll
2006-06-30 15:39 - 2006-06-30 15:39 - 000049152 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.caste.graphics.shared.dll
2006-09-26 22:20 - 2006-09-26 22:20 - 000081920 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.caste.graphics.wizard.dll
2006-01-17 18:02 - 2006-01-17 18:02 - 000016384 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.caste.graphics.wizard.shared.dll
2006-09-26 22:24 - 2006-09-26 22:24 - 000086016 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.component.runtime.dll
2006-01-17 18:02 - 2006-01-17 18:02 - 000032768 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.component.runtime.shared.dll
2006-09-26 22:20 - 2006-09-26 22:20 - 000626688 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.component.wizard.dll
2006-01-17 18:02 - 2006-01-17 18:02 - 000024576 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.component.wizard.shared.dll
2006-01-17 18:02 - 2006-01-17 18:02 - 000040960 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.foundation.clients.dll
2006-02-01 17:48 - 2006-02-01 17:48 - 000069632 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.foundation.dll
2006-09-26 22:24 - 2006-09-26 22:24 - 000024576 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.foundation.xmanifestation.dll
2006-09-26 22:19 - 2006-09-26 22:19 - 000032768 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\cli.implementation.dll
2006-01-17 18:02 - 2006-01-17 18:02 - 000016384 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\dem.foundation.dll
2006-09-26 22:06 - 2006-09-26 22:06 - 000016384 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\dem.graphics.i0600.dll
2006-06-09 11:27 - 2006-06-09 11:27 - 000045056 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\dem.graphics.i0601.dll
2006-02-08 18:32 - 2006-02-08 18:32 - 000016384 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\dem.graphics.i0602.dll
2006-01-17 17:39 - 2006-01-17 17:39 - 000036864 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\log.foundation.dll
2006-09-26 22:24 - 2006-09-26 22:24 - 000040960 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\log.foundation.service.dll
2006-01-17 17:39 - 2006-01-17 17:39 - 000020480 _____ (ATI Technologies Inc.) [File not signed] c:\program files\ati

technologies\ati.ace\log.foundation.shared.dll
2017-12-13 02:55 - 2004-08-17 13:00 - 000413696 _____ (Microsoft Corporation) [File not signed] C:\Program Files\Common

Files\ArcSoft\Connection Service\Bin\MSVCP60.dll
2017-12-17 03:11 - 2017-12-17 03:11 - 000471040 _____ (Microsoft Corporation) [File not signed]

c:\windows\assembly\gac\system.drawing\1.0.5000.0__b03f5f7f11d50a3a\system.drawing.dll
2017-12-16 04:04 - 2017-12-16 04:04 - 000372736 _____ (Microsoft Corporation) [File not signed]

c:\windows\assembly\gac\system.management\1.0.5000.0__b03f5f7f11d50a3a\system.management.dll
2017-12-16 04:04 - 2017-12-16 04:04 - 000323584 _____ (Microsoft Corporation) [File not signed]

c:\windows\assembly\gac\system.runtime.remoting\1.0.5000.0__b77a5c561934e089\system.runtime.remoting.dll
2017-12-17 03:11 - 2017-12-17 03:11 - 001269760 _____ (Microsoft Corporation) [File not signed]

c:\windows\assembly\gac\system.web\1.0.5000.0__b03f5f7f11d50a3a\system.web.dll
2017-12-17 03:11 - 2017-12-17 03:11 - 002064384 _____ (Microsoft Corporation) [File not signed]

c:\windows\assembly\gac\system.windows.forms\1.0.5000.0__b77a5c561934e089\system.windows.forms.dll
2017-12-16 04:04 - 2017-12-16 04:04 - 001339392 _____ (Microsoft Corporation) [File not signed]

c:\windows\assembly\gac\system.xml\1.0.5000.0__b77a5c561934e089\system.xml.dll
2017-12-17 03:11 - 2017-12-17 03:11 - 001232896 _____ (Microsoft Corporation) [File not signed]

c:\windows\assembly\gac\system\1.0.5000.0__b77a5c561934e089\system.dll
2013-04-03 02:00 - 2013-04-03 02:00 - 000258048 _____ (Microsoft Corporation) [File not signed]

C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\aspnet_isapi.dll
2004-07-15 01:24 - 2004-07-15 01:24 - 000282624 _____ (Microsoft Corporation) [File not signed]

C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\fusion.dll
2013-04-03 00:46 - 2013-04-03 00:46 - 000315392 _____ (Microsoft Corporation) [File not signed]

C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MSCORJIT.DLL
2013-04-04 01:46 - 2013-04-04 01:46 - 002142208 _____ (Microsoft Corporation) [File not signed]

c:\windows\microsoft.net\framework\v1.1.4322\mscorlib.dll
2013-04-03 00:48 - 2013-04-03 00:48 - 000077824 _____ (Microsoft Corporation) [File not signed]

C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorsn.dll
2013-04-03 00:47 - 2013-04-03 00:47 - 002519040 _____ (Microsoft Corporation) [File not signed]

C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\mscorwks.dll
2003-02-21 05:42 - 2003-02-21 05:42 - 000348160 _____ (Microsoft Corporation) [File not signed]

C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\MSVCR71.dll
2004-07-15 01:34 - 2004-07-15 01:34 - 000094208 _____ (Microsoft Corporation) [File not signed]

C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\perfcounter.dll
2004-07-15 03:11 - 2004-07-15 03:11 - 000031744 _____ (Microsoft Corporation) [File not signed]

C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\WMINet_Utils.dll
2017-12-12 11:29 - 2006-07-26 11:58 - 001093632 _____ (SigmaTel, Inc.) [File not signed] C:\WINDOWS\system32\STLang.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) =================

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)

HKLM\...\batfile\DefaultIcon: %SystemRoot%\System32\shell32.dll,-153 <==== ATTENTION

==================== Internet Explorer (Version 8) (Whitelisted) ==========

HKU\S-1-5-21-1935655697-1035525444-839522115-1004\Software\Microsoft\Internet Explorer\Main,Start Page =

hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKU\S-1-5-21-1935655697-1035525444-839522115-1004\Software\Microsoft\Internet Explorer\Main,Search Page =

hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2004-08-04 11:00 - 2004-08-04 11:00 - 000000734 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1       localhost

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1935655697-1035525444-839522115-1004\Control Panel\Desktop\\Wallpaper -> C:\Documents and Settings\JS\My Documents\Area 51\NTS

 Nellis Area 51 terrain photo.bmp
DNS Servers: 172.20.10.1
HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName3 -> C:\WINDOWS\system32\ipconf.tsp (Microsoft

Windows Component Publisher -> Microsoft Corporation)
HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName4 -> C:\WINDOWS\system32\h323.tsp (Microsoft Windows

Component Publisher -> Microsoft Corporation)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

StandardProfile\AuthorizedApplications: [C:\Program Files\Google\Chrome\Application\chrome.exe] => Enabled:Google Chrome
StandardProfile\AuthorizedApplications: [C:\Program Files\Mozilla Firefox\firefox.exe] => Enabled:Firefox (C:\Program Files\Mozilla

Firefox)
StandardProfile\GloballyOpenPorts: [1900:UDP] => :LocalSubNet:Disabled:@xpsp2res.dll,-22007
StandardProfile\GloballyOpenPorts: [2869:TCP] => :LocalSubNet:Disabled:@xpsp2res.dll,-22008

==================== Restore Points =========================

09-05-2021 21:41:27 System Checkpoint
10-05-2021 22:01:57 System Checkpoint
11-05-2021 22:14:57 System Checkpoint
13-05-2021 01:03:58 System Checkpoint
14-05-2021 13:47:16 System Checkpoint
15-05-2021 13:48:51 System Checkpoint
16-05-2021 21:53:11 System Checkpoint
18-05-2021 00:03:02 System Checkpoint
19-05-2021 13:13:47 System Checkpoint
20-05-2021 14:40:06 System Checkpoint
24-05-2021 16:12:49 System Checkpoint
26-05-2021 23:01:39 System Checkpoint
27-05-2021 23:34:07 System Checkpoint
29-05-2021 11:37:10 System Checkpoint
01-06-2021 01:09:33 System Checkpoint
02-06-2021 19:32:56 System Checkpoint
04-06-2021 15:59:01 System Checkpoint
05-06-2021 20:47:10 System Checkpoint
07-06-2021 12:00:13 System Checkpoint
08-06-2021 15:29:05 System Checkpoint
09-06-2021 16:01:46 System Checkpoint
11-06-2021 13:53:06 System Checkpoint
13-06-2021 16:04:40 System Checkpoint
15-06-2021 11:29:57 System Checkpoint
16-06-2021 11:43:41 System Checkpoint
17-06-2021 13:19:07 System Checkpoint
18-06-2021 19:22:19 System Checkpoint
20-06-2021 23:53:01 System Checkpoint
22-06-2021 11:30:41 System Checkpoint
24-06-2021 16:30:18 System Checkpoint
26-06-2021 01:41:32 System Checkpoint
27-06-2021 15:28:28 System Checkpoint
28-06-2021 16:42:52 System Checkpoint
29-06-2021 19:58:48 System Checkpoint
30-06-2021 22:01:06 System Checkpoint
02-07-2021 10:58:24 System Checkpoint
05-07-2021 17:25:13 System Checkpoint
07-07-2021 01:49:04 System Checkpoint
09-07-2021 18:58:21 System Checkpoint
12-07-2021 19:33:29 System Checkpoint
19-07-2021 09:15:27 System Checkpoint
20-07-2021 15:25:29 System Checkpoint
25-07-2021 19:45:51 System Checkpoint
28-07-2021 11:50:26 System Checkpoint
30-07-2021 16:31:37 System Checkpoint
31-07-2021 16:51:30 System Checkpoint
02-08-2021 17:47:05 System Checkpoint
03-08-2021 18:42:16 System Checkpoint
04-08-2021 23:05:25 System Checkpoint
06-08-2021 10:38:21 System Checkpoint

==================== Faulty Device Manager Devices ============

Name: Network Controller
Description: Network Controller
Class Guid: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Ethernet Controller
Description: Ethernet Controller
Class Guid: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: ========================

Application errors:
==================
Error: (08/06/2021 07:47:34 PM) (Source: crypt32) (EventID: 11) (User: )
Description: Failed extract of third-party root list from auto update cab at:

<http://www.download....uthrootstl.cab>with error: Invalid algorithm specified.

Error: (08/06/2021 07:47:34 PM) (Source: crypt32) (EventID: 11) (User: )
Description: Failed extract of third-party root list from auto update cab at:

<http://www.download....uthrootstl.cab>with error: Invalid algorithm specified.

Error: (08/06/2021 07:47:34 PM) (Source: crypt32) (EventID: 11) (User: )
Description: Failed extract of third-party root list from auto update cab at:

<http://www.download....uthrootstl.cab>with error: Invalid algorithm specified.

Error: (08/06/2021 07:47:34 PM) (Source: crypt32) (EventID: 11) (User: )
Description: Failed extract of third-party root list from auto update cab at:

<http://www.download....uthrootstl.cab>with error: Invalid algorithm specified.

Error: (08/06/2021 07:47:34 PM) (Source: crypt32) (EventID: 11) (User: )
Description: Failed extract of third-party root list from auto update cab at:

<http://www.download....uthrootstl.cab>with error: Invalid algorithm specified.

Error: (08/06/2021 07:47:34 PM) (Source: crypt32) (EventID: 11) (User: )
Description: Failed extract of third-party root list from auto update cab at:

<http://www.download....uthrootstl.cab>with error: Invalid algorithm specified.

Error: (08/06/2021 07:47:34 PM) (Source: crypt32) (EventID: 11) (User: )
Description: Failed extract of third-party root list from auto update cab at:

<http://www.download....uthrootstl.cab>with error: Invalid algorithm specified.

Error: (08/06/2021 07:47:34 PM) (Source: crypt32) (EventID: 11) (User: )
Description: Failed extract of third-party root list from auto update cab at:

<http://www.download....uthrootstl.cab>with error: Invalid algorithm specified.


System errors:
=============
Error: (08/06/2021 03:32:23 PM) (Source: Windows Update Agent) (EventID: 16) (User: )
Description: Unable to Connect: Windows is unable to connect to the automatic updates service and therefore cannot download and install

updates according to the set schedule. Windows will continue to try to establish a connection.

Error: (08/04/2021 03:32:22 PM) (Source: Windows Update Agent) (EventID: 16) (User: )
Description: Unable to Connect: Windows is unable to connect to the automatic updates service and therefore cannot download and install

updates according to the set schedule. Windows will continue to try to establish a connection.

Error: (08/04/2021 12:42:50 AM) (Source: W32Time) (EventID: 29) (User: )
Description: The time provider NtpClient is configured to acquire time from one or more
time sources, however none of the sources are currently accessible.
No attempt to contact a source will be made for 14 minutes.
NtpClient has no source of accurate time.

Error: (08/04/2021 12:42:50 AM) (Source: W32Time) (EventID: 17) (User: )
Description: Time Provider NtpClient: An error occurred during DNS lookup of the manually
configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15
minutes.
The error was: A socket operation was attempted to an unreachable host. (0x80072751)

Error: (08/02/2021 03:32:26 PM) (Source: Windows Update Agent) (EventID: 16) (User: )
Description: Unable to Connect: Windows is unable to connect to the automatic updates service and therefore cannot download and install

updates according to the set schedule. Windows will continue to try to establish a connection.

Error: (07/30/2021 01:24:55 PM) (Source: Windows Update Agent) (EventID: 16) (User: )
Description: Unable to Connect: Windows is unable to connect to the automatic updates service and therefore cannot download and install

updates according to the set schedule. Windows will continue to try to establish a connection.

Error: (07/28/2021 09:45:47 AM) (Source: Windows Update Agent) (EventID: 16) (User: )
Description: Unable to Connect: Windows is unable to connect to the automatic updates service and therefore cannot download and install

updates according to the set schedule. Windows will continue to try to establish a connection.

Error: (07/25/2021 07:14:08 PM) (Source: Windows Update Agent) (EventID: 16) (User: )
Description: Unable to Connect: Windows is unable to connect to the automatic updates service and therefore cannot download and install

updates according to the set schedule. Windows will continue to try to establish a connection.


==================== Memory info ===========================

BIOS: Dell Inc. PTLTD  - 6040000 11/16/2006
Motherboard: Dell Inc. 0UW744
Processor: AMD Turion™ 64 Mobile Technology MK-36
Percentage of memory in use: 74%
Total physical RAM: 1918.04 MB
Available physical RAM: 486.94 MB
Total Virtual: 3811.98 MB
Available Virtual: 2544.44 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:55.88 GB) (Free:14.89 GB) NTFS ==>[drive with boot components (Windows XP)]


==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows XP) (Size: 55.9 GB) (Disk ID: 4F14C30E)
Partition 1: (Active) - (Size=55.9 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================


Edited by dowsp, 06 August 2021 - 02:18 PM.

  • 0

#5
dowsp

dowsp

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 543 posts

Content removed


Edited by dowsp, 06 August 2021 - 02:19 PM.

  • 0

#6
dowsp

dowsp

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 543 posts

Content removed due to trying to paste in FRST   notepad txt that later entered on two other posts.


Edited by dowsp, 06 August 2021 - 02:05 PM.

  • 0

#7
Gary R

Gary R

    Trusted Helper

  • Malware Removal
  • 445 posts

Windows XP has not been supported since 8th April 2014.

 

XP cannot be secured against infection, if you go online with it, you are going to get infected, over, and over, and over again. It is an exercise in futility removing an infection from a machine that cannot be secured. Sorry if this sounds harsh, but it's the truth, and few helpers will be willing to waste their time in cleaning up an XP machine.

 

XP is obsolete, and increasingly you will not be able to find programs, apps, and drivers for it.

 

You need to update to an OS that is supported. With a machine that's old enough to be running XP, it is unlikely that your hardware will support Windows 10, however there are a number of Linux distros that are still able to run on old hardware, and I suggest you try out one of those.


  • 0

#8
dowsp

dowsp

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 543 posts

What you say may well be correct,

However overall.... when I have still used Windows XP... I have not really had that many issues in how my computer has operated that were noticable to me.

 

Generally It worked Ok for me for the basic use that I have used it for...

and most websites that I tend to visit .have not appeared to cause me any obvious problems.

 

It does unfortunately seem that there no longer appears to be any easy Antivirus program that one can use to remove any spyware or viruses anymore.

In the past when I have had some problems and used Geekstogo...

They have offered certain programs that have seemed to aid to remove any problems that I have had in the past..

However some of those past programs seemed to have since been replaced by other newer or alternative prorgams...that I am not familiar with.

 

But the programs used in the past often did seem to remove the problem and make the computer run much better , even if the process was not fully completed.

IF there are still some recommended programs suggested...

 

At the very least I think that they would be well worth my trying if someone could recommend one that I could at least try to see if it make a difference..

even if they do not want to go thru the whole process...

 

At one time I think some of the programs were listed or there were obvious links to them...with instructions...

but Im not sure if they are shown available any more.

 

Im not sure if other similar threads may refer to some worth trying..

 

 

Windows XP has not been supported since 8th April 2014.

 

XP cannot be secured against infection, if you go online with it, you are going to get infected, over, and over, and over again. It is an exercise in futility removing an infection from a machine that cannot be secured. Sorry if this sounds harsh, but it's the truth, and few helpers will be willing to waste their time in cleaning up an XP machine.

 

XP is obsolete, and increasingly you will not be able to find programs, apps, and drivers for it.

 

You need to update to an OS that is supported. With a machine that's old enough to be running XP, it is unlikely that your hardware will support Windows 10, however there are a number of Linux distros that are still able to run on old hardware, and I suggest you try out one of those.


Edited by dowsp, 07 August 2021 - 05:42 AM.

  • 0

#9
Gary R

Gary R

    Trusted Helper

  • Malware Removal
  • 445 posts

The fact that you didn't appear to be having problems is somewhat irrelevant, as many infections can lie "quiet" on your machine, so you may be infected without you knowing it, and being used as a means to spread infection to others.

 

Your data is also a valuable resource, especially if you were foolish enough to undertake any kind of financial transactions using your XP machine, and that includes making online purchases using it.  Also your free disk space is a valuable commodity, which can be used for a number of different illicit purposes, including hosting porn, hosting spam, hosting infection spreading software.

 

None of the above would  necessarily be observable by you.

 

Unless you are able to patch your system, which with an unsupported OS you are not, then any exploits on your machine, will remain permanently exploitable, so even if you detect and clean your current infection, there is nothing whatsoever to prevent the same exploit being used against you again. Doesn't matter what AV you have installed, or what Firewall you use, as it is not the purpose of either to patch vulnerabilities.

 

I know this is not what you want to hear, but I cannot put it any clearer ...... XP is not fit for going online with ..... period.


  • 0

#10
dowsp

dowsp

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 543 posts

Can you explain a bit more how this could occur

 

Is this a case that if someone either had placed something on a website or who sent me an email that I may have opened... that they then obtain a ref to my ISP..that somehow allows them

to access my computer and install some sort of hosting on my machines remaining data space.

 

After Windows XP...

 

how would other Op sytems compare..

 

I do not have money to update to a new system at the moment...

 

Ive obtained a 2nd hand desk top computer from a business that was throwing things out...that has windows 7 on it but unfortunately its password protected so I am unable to log into it.

 

I know that Windows 10 is the lastest version, but how does Windows 7 still compare ?

 

Also on my Windows Xp machine at the moment, for some reason... it can seem to run ok again for some time..

 

but I have used it a while and try to access certain websites that I tend to use..I am finding thats when I notice issues or poor perfomance or freezing up.

 

and then the last few days... when I reswitch my machine on... on two main sites that I regulary visit and normally have no problem accessing...

 

for the first 5 minutes of attempting to access these sites... I unable to do so. but I can access some other websites which seems strange.

 

I have deleted temporary files etc anc certain cookies..and flushed DNS   (  ipconfig /flushdns ) which today I had to try this 2 or 3 times before I was able to then get connected

to the two websites I normally visit..

 

So something seems acting very strange.

 

I think I best delete the Farbar Recovery Scan Tool txts that I posted if this also could aid someone who may observe the file if they had intentions of targeting certain opportune persons who may post their issues on such websites.

 

 

Also your free disk space is a valuable commodity, which can be used for a number of different illicit purposes, including hosting porn, hosting spam, hosting infection spreading software.


Edited by dowsp, 09 August 2021 - 04:03 AM.

  • 0

#11
Gary R

Gary R

    Trusted Helper

  • Malware Removal
  • 445 posts

Too big a subject to go into in detail, but there are numerous ways to compromise a computer and remain invisible to the owner of that machine.  It's particularly easy to do on an old operating system like XP, which was released at a time when computer security was very much a second thought.

 

WIndows 7, like XP is no longer supported by Microsoft, and hasn't been since 14th Jan 2020, so you have a similar problem in trying to secure them.

 

As I said in my first post, if you can't afford a computer that is able to run W10, then there are plenty of Linux distros that will operate fine on older hardware.

 

I see your XP version is 32 bit which sadly limits the number of Linux distros that will run on your hardware.


  • 0

#12
dowsp

dowsp

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 543 posts

I am not familiar with linux at all and never experienced it.. so it would be a new learning curve.

 

I have tried one or two other options to Windows XP... but I had issues with getting used to them.

 

and becasue I am so used to using XP and I normally perfectly OK with using it and as familar as I need to be to use it for what I generally need.. without having to be too technical.

 

It suited me fine for my needs.

 

It just upsets me that there no longer seems any solution to even remove any threats any more from what you have said to at allow me to at least continue to use it for just very limited

options...

 

At one time not too long ago if I recall.. there was at least some types specilist virus removers for XP users even sometime after they stopped the updates.

 

SO does it really make much difference now, if Geeks2gos decisions is no longer even offering any other option that a member can use to even offer a most recent

type of antivirus remover that may be different to the main versions that you tend to find online.. such AVG, Microtrends , Kapersky, McaFee etc ..

 

or the types listed on wikipedia

 

Comparison of antivirus software

 

https://en.wikipedia...ivirus_software

 

 

 

 

 

As I said in my first post, if you can't afford a computer that is able to run W10, then there are plenty of Linux distros that will operate fine on older hardware.

 

I see your XP version is 32 bit which sadly limits the number of Linux distros that will run on your hardware.


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP