hijack this log help please

245

Comments

  • chardonnay_2
    chardonnay_2 Posts: 2,201 Forumite
    1,000 Posts Combo Breaker
    thanks for your help
    :love: married to the man of my dreams! 9-08-09:love:
  • waddler_8
    waddler_8 Posts: 3,588 Forumite
    Run this combofix script. If combofix tells you there is a newer version available, let it update.
    • Open Notepad
    • Copy and paste the text present inside the code box below (Don't include Code:)
    Folder::
    C:\users\CLAIRE\AppData\Roaming\Huvu
    c:\users\CLAIRE\AppData\Roaming\Lyzot
    
    ClearJavaCache::
    
    • Save this as CFScript.txt and change the "Save as type" to "All Files" and place it on your desktop.
    • Temporarily disable your anti-virus, before following the steps below.
    • To disable your Antivirus, see here.
      CFScriptB-4.gif
    • Drag CFScript.txt into ComboFix.exe as the screenshot above shows.
    • ComboFix will scan & may reboot when it finishes. Combofix.txt will open.
    • Copy and paste the contents of the log here.
  • chardonnay_2
    chardonnay_2 Posts: 2,201 Forumite
    1,000 Posts Combo Breaker
    ComboFix 12-08-17.03 - CLAIRE 17/08/2012 18:16:59.5.4 - x86
    Microsoft Windows 7 Home Premium 6.1.7600.0.1252.44.1033.18.3326.2231 [GMT 1:00]
    Running from: c:\users\CLAIRE\Desktop\ComboFix.exe
    Command switches used :: c:\users\CLAIRE\Desktop\CFScript.txt
    AV: Lavasoft Ad-Aware *Disabled/Updated* {445B48C3-0FA4-6B16-8F07-6506F305D800}
    FW: Lavasoft Ad-Aware *Disabled* {7C60C9E6-45CB-6A4E-A458-CC330DD69F7B}
    SP: Lavasoft Ad-Aware *Disabled/Updated* {FF3AA927-299E-6498-B5B7-5E74888292BD}
    SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    .
    .
    ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    c:\users\CLAIRE\AppData\Roaming\Huvu
    c:\users\CLAIRE\AppData\Roaming\Lyzot
    c:\users\CLAIRE\AppData\Roaming\Lyzot\gyne.ruf
    .
    .
    ((((((((((((((((((((((((( Files Created from 2012-07-17 to 2012-08-17 )))))))))))))))))))))))))))))))
    .
    .
    2012-08-17 17:21 . 2012-08-17 17:21
    d
    w- c:\users\CLAIRE\AppData\Local\temp
    2012-08-17 17:21 . 2012-08-17 17:21
    d
    w- c:\users\Public\AppData\Local\temp
    2012-08-17 17:21 . 2012-08-17 17:21
    d
    w- c:\users\Default\AppData\Local\temp
    2012-08-17 17:21 . 2012-08-17 17:21
    d
    w- c:\users\admin\AppData\Local\temp
    2012-08-16 17:13 . 2012-08-16 17:13 388096 ----a-r- c:\users\CLAIRE\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
    2012-08-16 16:25 . 2012-08-17 17:15 56200 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{68638B91-9C80-45C3-BEB4-446661C91D00}\offreg.dll
    2012-08-16 13:55 . 2012-08-16 14:03
    d
    w- c:\users\CLAIRE\AppData\Local\adaware
    2012-08-16 13:32 . 2012-07-16 01:41 6891424 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{68638B91-9C80-45C3-BEB4-446661C91D00}\mpengine.dll
    2012-08-16 13:26 . 2012-08-16 13:26
    d-sh--w- c:\windows\system32\%APPDATA%
    2012-08-16 04:08 . 2011-12-19 11:44 93816 ----a-w- c:\windows\system32\drivers\sbhips.sys
    2012-08-16 04:07 . 2012-08-16 04:07
    d
    w- c:\windows\system32\drivers\VDD
    2012-08-16 04:07 . 2012-08-17 12:10
    d
    w- c:\programdata\Ad-Aware Browsing Protection
    2012-08-16 04:07 . 2012-08-16 04:07
    d
    w- c:\program files\Toolbar Cleaner
    2012-08-16 04:06 . 2012-08-16 04:07
    d
    w- c:\program files\adawaretb
    2012-08-16 02:48 . 2012-08-16 02:53
    d
    w- c:\users\CLAIRE\AppData\Roaming\PerformerSoft
    2012-08-16 02:25 . 2012-08-16 14:00
    d
    w- c:\program files\Ad-Aware Antivirus
    2012-08-16 02:25 . 2012-08-16 02:25
    d
    w- c:\programdata\Lavasoft
    2012-08-16 02:25 . 2012-08-16 04:07
    d
    w- c:\users\CLAIRE\AppData\Local\Downloaded Installations
    2012-08-16 02:24 . 2012-08-16 02:24
    d
    w- c:\windows\system32\searchplugins
    2012-08-16 02:24 . 2012-08-16 02:24
    d
    w- c:\windows\system32\Extensions
    2012-08-16 02:23 . 2012-08-16 02:23 319 ----a-w- C:\user.js
    2012-08-16 02:23 . 2012-08-16 16:12
    d
    w- c:\users\CLAIRE\AppData\Roaming\Ad-Aware Antivirus
    2012-08-16 02:23 . 2012-08-16 02:23
    d
    w- c:\users\CLAIRE\AppData\Local\Wajam
    2012-08-16 02:20 . 2012-08-16 03:44
    d
    w- c:\program files\Microsoft Security Essentials
    2012-08-16 01:03 . 2012-08-16 01:03
    d
    w- c:\users\admin\AppData\Roaming\Malwarebytes
    2012-08-16 00:57 . 2012-08-16 00:57
    d
    w- c:\users\admin\AppData\Roaming\Motive
    2012-08-14 19:55 . 2012-08-17 16:34
    d
    w- c:\program files\Steam
    2012-08-02 11:58 . 2012-08-02 11:58
    d
    w- c:\windows\en
    2012-08-02 11:57 . 2012-03-08 17:32 39272 ----a-w- c:\windows\system32\drivers\fssfltr.sys
    2012-08-02 11:49 . 2012-08-02 11:49 15712 ----a-w- c:\program files\Common Files\Windows Live\.cache\e7dc47271cd70a404\MeshBetaRemover.exe
    2012-08-02 11:49 . 2012-08-02 11:49 89944 ----a-w- c:\program files\Common Files\Windows Live\.cache\e723a2d31cd70a403\DSETUP.dll
    2012-08-02 11:49 . 2012-08-02 11:49 537432 ----a-w- c:\program files\Common Files\Windows Live\.cache\e723a2d31cd70a403\DXSETUP.exe
    2012-08-02 11:49 . 2012-08-02 11:49 1801048 ----a-w- c:\program files\Common Files\Windows Live\.cache\e723a2d31cd70a403\dsetup32.dll
    2012-07-27 20:51 . 2012-07-27 20:51 184248 ----a-w- c:\program files\Internet Explorer\Plugins\nppdf32.dll
    .
    .
    .
    (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2012-08-14 19:35 . 2012-05-04 01:19 426184 ----a-w- c:\windows\system32\FlashPlayerApp.exe
    2012-08-14 19:35 . 2011-11-21 18:38 70344 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
    2012-07-03 12:46 . 2010-07-21 22:10 22344 ----a-w- c:\windows\system32\drivers\mbam.sys
    2012-06-12 02:44 . 2012-07-11 01:28 2344448 ----a-w- c:\windows\system32\win32k.sys
    2012-06-06 05:09 . 2012-07-10 23:34 1389568 ----a-w- c:\windows\system32\msxml6.dll
    2012-06-06 05:09 . 2012-07-10 23:34 1236992 ----a-w- c:\windows\system32\msxml3.dll
    2012-06-02 22:19 . 2012-06-21 04:49 53784 ----a-w- c:\windows\system32\wuauclt.exe
    2012-06-02 22:19 . 2012-06-21 04:49 45080 ----a-w- c:\windows\system32\wups2.dll
    2012-06-02 22:19 . 2012-06-21 04:49 35864 ----a-w- c:\windows\system32\wups.dll
    2012-06-02 22:19 . 2012-06-21 04:49 577048 ----a-w- c:\windows\system32\wuapi.dll
    2012-06-02 22:19 . 2012-06-21 04:49 1933848 ----a-w- c:\windows\system32\wuaueng.dll
    2012-06-02 22:12 . 2012-06-21 04:49 2422272 ----a-w- c:\windows\system32\wucltux.dll
    2012-06-02 22:12 . 2012-06-21 04:49 88576 ----a-w- c:\windows\system32\wudriver.dll
    2012-06-02 14:19 . 2012-06-21 04:48 171904 ----a-w- c:\windows\system32\wuwebv.dll
    2012-06-02 14:12 . 2012-06-21 04:48 33792 ----a-w- c:\windows\system32\wuapp.exe
    2012-06-02 08:33 . 2012-07-11 01:31 1800192 ----a-w- c:\windows\system32\jscript9.dll
    2012-06-02 08:25 . 2012-07-11 01:31 1129472 ----a-w- c:\windows\system32\wininet.dll
    2012-06-02 08:25 . 2012-07-11 01:31 1427968 ----a-w- c:\windows\system32\inetcpl.cpl
    2012-06-02 08:20 . 2012-07-11 01:31 142848 ----a-w- c:\windows\system32\ieUnatt.exe
    2012-06-02 08:16 . 2012-07-11 01:31 2382848 ----a-w- c:\windows\system32\mshtml.tlb
    2012-06-02 04:51 . 2012-07-10 23:34 134000 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
    2012-06-02 04:51 . 2012-07-10 23:34 67440 ----a-w- c:\windows\system32\drivers\ksecdd.sys
    2012-06-02 04:50 . 2012-07-10 23:34 369336 ----a-w- c:\windows\system32\drivers\cng.sys
    2012-06-02 04:48 . 2012-07-10 23:34 225280 ----a-w- c:\windows\system32\schannel.dll
    2012-06-02 04:47 . 2012-07-10 23:34 219136 ----a-w- c:\windows\system32\ncrypt.dll
    .
    .
    ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Note* empty entries & legit default entries are not shown
    REGEDIT4
    .
    [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{6c97a91e-4524-4019-86af-2aa2d567bf5c}]
    2012-04-11 20:08 87440 ----a-w- c:\program files\adawaretb\adawareDx.dll
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
    "{6c97a91e-4524-4019-86af-2aa2d567bf5c}"= "c:\program files\adawaretb\adawareDx.dll" [2012-04-11 87440]
    .
    [HKEY_CLASSES_ROOT\clsid\{6c97a91e-4524-4019-86af-2aa2d567bf5c}]
    .
    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "SpybotSD TeaTimer"="c:\program files\Spybot - Search & Destroy\TeaTimer.exe" [2009-03-05 2260480]
    "Steam"="c:\program files\Steam\Steam.exe" [2012-08-14 1353080]
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "Ad-Aware Antivirus"="c:\program files\Ad-Aware Antivirus\AdAwareLauncher --windows-run" [X]
    "StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2010-01-08 98304]
    "CLMLServer"="c:\program files\CyberLink\Power2Go\CLMLSvc.exe" [2009-06-03 103720]
    "RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RtHDVCpl.exe" [2009-12-03 8120864]
    "Malwarebytes Anti-Malware (reboot)"="c:\program files\Malwarebytes' Anti-Malware\mbam.exe" [2012-07-03 973488]
    "btbb_McciTrayApp"="c:\program files\BT Broadband Desktop Help\btbb\BTHelpNotifier.exe" [2009-12-07 1584640]
    "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-07-27 919008]
    "MSSE"="c:\program files\Microsoft Security Essentials\msseces.exe" [2010-06-01 1093208]
    "Ad-Aware Browsing Protection"="c:\programdata\Ad-Aware Browsing Protection\adawarebp.exe" [2011-10-21 198032]
    .
    c:\users\CLAIRE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
    BBC iPlayer Desktop.lnk - c:\program files\BBC iPlayer Desktop\BBC iPlayer Desktop.exe [2011-7-28 142848]
    .
    c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
    McAfee Security Scan Plus.lnk - c:\program files\McAfee Security Scan\2.0.181\SSScheduler.exe [2010-1-15 255536]
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
    "ConsentPromptBehaviorAdmin"= 5 (0x5)
    "ConsentPromptBehaviorUser"= 3 (0x3)
    "EnableUIADesktopToggle"= 0 (0x0)
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
    "AppInit_DLLs"=c:\windows\System32\BdInstHk.dll
    .
    [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
    Security Packages REG_MULTI_SZ kerberos msv1_0 schannel wdigest tspkg pku2u livessp
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ad-Aware Service]
    @="Ad-Aware Service"
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BsMain]
    @="Service"
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MSIServer]
    @="Service"
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
    @="Service"
    .
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SBAMSvc]
    @="Service"
    .
    R2 BsMain;BullGuard main service;c:\windows\System32\SvcHost.exe [x]
    R2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [x]
    R3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [x]
    R3 gupdatem;Google Update Service (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [x]
    R3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\McAfee Security Scan\2.0.181\McCHSvc.exe [x]
    R3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\system32\DRIVERS\MpNWMon.sys [x]
    R3 sbhips;sbhips;c:\windows\system32\drivers\sbhips.sys [x]
    R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [x]
    R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe [x]
    S1 SBRE;SBRE;c:\windows\system32\drivers\SBREdrv.sys [x]
    S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [x]
    S2 acedrv11;acedrv11;c:\windows\system32\drivers\acedrv11.sys [x]
    S2 Ad-Aware Service;Ad-Aware Service;c:\program files\Ad-Aware Antivirus\AdAwareService.exe [x]
    S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [x]
    S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [x]
    S2 SBAMSvc;Ad-Aware;c:\program files\Ad-Aware Antivirus\SBAMSvc.exe [x]
    S2 sbapifs;sbapifs;c:\windows\system32\DRIVERS\sbapifs.sys [x]
    S2 SBSDWSCService;SBSD Security Center Service;c:\program files\Spybot - Search & Destroy\SDWinSec.exe [x]
    S3 amdkmdag;amdkmdag;c:\windows\system32\DRIVERS\atipmdag.sys [x]
    S3 amdkmdap;amdkmdap;c:\windows\system32\DRIVERS\atikmpag.sys [x]
    S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt86win7.sys [x]
    S3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter;c:\windows\system32\DRIVERS\RTL8192su.sys [x]
    S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys [x]
    .
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
    BullGuard_Main REG_MULTI_SZ BsMain
    .
    Contents of the 'Scheduled Tasks' folder
    .
    2012-08-16 c:\windows\Tasks\Ad-Aware Antivirus Scheduled Scan.job
    - c:\progra~1\AD-AWA~1\AdAwareLauncher.exe [2012-07-12 17:32]
    .
    2012-08-17 c:\windows\Tasks\Adobe Flash Player Updater.job
    - c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-05-04 19:35]
    .
    2012-08-17 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
    - c:\program files\Google\Update\GoogleUpdate.exe [2010-06-13 19:09]
    .
    2012-08-17 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
    - c:\program files\Google\Update\GoogleUpdate.exe [2010-06-13 19:09]
    .
    .
    Supplementary Scan
    .
    uStart Page = hxxp://www.google.co.uk/
    uInternet Settings,ProxyOverride = <local>
    IE: E&xport to Microsoft Excel - c:\progra~1\MIF5BA~1\Office12\EXCEL.EXE/3000
    TCP: DhcpNameServer = 192.168.1.254
    .
    .
    LOCKED REGISTRY KEYS
    .
    [HKEY_USERS\S-1-5-21-156472762-2403522986-494797692-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eml\UserChoice]
    @Denied: (2) (LocalSystem)
    "Progid"="WindowsLiveMail.Email.1"
    .
    [HKEY_USERS\S-1-5-21-156472762-2403522986-494797692-1001\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vcf\UserChoice]
    @Denied: (2) (LocalSystem)
    "Progid"="WindowsLiveMail.VCard.1"
    .
    [HKEY_USERS\S-1-5-21-156472762-2403522986-494797692-1001\Software\SecuROM\License information*]
    "datasecu"=hex:29,37,79,53,82,d8,ee,7c,5e,b0,c2,f9,3a,ac,98,93,46,d3,f8,5f,b1,
    f5,c1,9f,16,a3,65,b1,68,69,7c,74,72,aa,a4,dd,b0,0c,48,f7,36,3b,e7,17,08,87,\
    "rkeysecu"=hex:32,f3,02,4f,a5,df,b0,32,7a,27,c6,63,ca,cd,4e,99
    .
    Completion time: 2012-08-17 18:22:48
    ComboFix-quarantined-files.txt 2012-08-17 17:22
    ComboFix2.txt 2012-08-17 16:37
    ComboFix3.txt 2010-07-22 15:02
    ComboFix4.txt 2010-07-22 02:27
    .
    Pre-Run: 872,958,537,728 bytes free
    Post-Run: 872,949,325,824 bytes free
    .
    - - End Of File - - 6630AFE4E7E2B8B75E7C86236F39CBA6
    :love: married to the man of my dreams! 9-08-09:love:
  • waddler_8
    waddler_8 Posts: 3,588 Forumite
    That looks ok - any problems?

    A quick check:

    Download aswMBR and save it to your Desktop.

    http://public.avast.com/~gmerek/aswMBR.exe

    • Right click aswMBR.exe & choose "Run as Administrator" to run it.
    • Click NO to the prompt to download Avast virus definitions
    • Click the Scan button.
    • Wait till the scan reports "Scan finished successfully"
    • Click Save log & save the log to your desktop.
    • Click OK
    • Two files will be created, aswMBR.txt & a file named MBR.dat
    • Click EXIT.
    • Copy & Paste the contents of aswMBR.txt into your next reply.
    Don't click to fix anything yet, just post the log
  • chardonnay_2
    chardonnay_2 Posts: 2,201 Forumite
    1,000 Posts Combo Breaker
    aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
    Run date: 2012-08-17 18:44:41
    18:44:41.931 OS Version: Windows 6.1.7600
    18:44:41.931 Number of processors: 4 586 0x402
    18:44:41.932 ComputerName: CLAIRES-PC UserName: CLAIRE
    18:44:45.330 Initialize success
    18:44:56.951 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000055
    18:44:56.953 Disk 0 Vendor: WDC_WD10 80.0 Size: 953869MB BusType: 11
    18:44:56.962 Disk 0 MBR read successfully
    18:44:56.964 Disk 0 MBR scan
    18:44:56.966 Disk 0 unknown MBR code
    18:44:56.970 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
    18:44:56.987 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 932262 MB offset 206848
    18:44:57.017 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 20480 MB offset 1909479424
    18:44:57.044 Disk 0 Partition 4 00 12 Compaq diag NTFS 1025 MB offset 1951422464
    18:44:57.048 Disk 0 scanning sectors +1953521664
    18:44:57.092 Disk 0 scanning C:\Windows\system32\drivers
    18:45:03.019 Service scanning
    18:45:11.904 Modules scanning
    18:45:17.137 Disk 0 trace - called modules:
    18:45:17.484 ntkrnlpa.exe CLASSPNP.SYS disk.sys amdxata.sys storport.sys halmacpi.dll amdsata.sys
    18:45:17.489 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x864e5638]
    18:45:17.493 3 CLASSPNP.SYS[8bd8359e] -> nt!IofCallDriver -> [0x864a1c70]
    18:45:17.497 5 amdxata.sys[8b9877b6] -> nt!IofCallDriver -> \Device\00000055[0x863708e8]
    18:45:17.502 Scan finished successfully
    18:47:35.914 Disk 0 MBR has been saved successfully to "C:\Users\CLAIRE\Desktop\MBR.dat"
    18:47:35.927 The log file has been saved successfully to "C:\Users\CLAIRE\Desktop\aswMBR.txt"

    seems to be working ok now thanks :T
    :love: married to the man of my dreams! 9-08-09:love:
  • waddler_8
    waddler_8 Posts: 3,588 Forumite
    chardonnay wrote: »
    seems to be working ok now thanks :T

    Good.

    Post the contents of attach.txt - The other log from DDS
  • chardonnay_2
    chardonnay_2 Posts: 2,201 Forumite
    1,000 Posts Combo Breaker
    can i just post it or do i need to zip it like it says? thanks
    :love: married to the man of my dreams! 9-08-09:love:
  • waddler_8
    waddler_8 Posts: 3,588 Forumite
    Just post it - thanks
  • chardonnay_2
    chardonnay_2 Posts: 2,201 Forumite
    1,000 Posts Combo Breaker
    .
    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT
    .
    DDS (Ver_2011-08-26.01)
    .
    Microsoft Windows 7 Home Premium
    Boot Device: \Device\HarddiskVolume1
    Install Date: 25/03/2010 18:30:48
    System Uptime: 17/08/2012 13:09:56 (0 hours ago)
    .
    Motherboard: MEDIONPC | | MS-7646
    Processor: AMD Phenom(tm) II X4 820 Processor | CPU 1 | 2800/200mhz
    .
    ==== Disk Partitions =========================
    .
    C: is FIXED (NTFS) - 910 GiB total, 817.183 GiB free.
    D: is FIXED (NTFS) - 20 GiB total, 0.002 GiB free.
    E: is CDROM (UDF)
    F: is Removable
    G: is Removable
    H: is Removable
    .
    ==== Disabled Device Manager Items =============
    .
    ==== System Restore Points ===================
    .
    RP577: 01/08/2012 20:20:41 - Windows Update
    RP578: 01/08/2012 20:20:44 - Windows Backup
    RP580: 02/08/2012 12:49:41 - Windows Live Essentials
    RP582: 02/08/2012 12:51:03 - Installed DirectX
    RP584: 02/08/2012 12:52:23 - Installed DirectX
    RP585: 02/08/2012 12:52:55 - WLSetup
    RP586: 05/08/2012 19:00:17 - Windows Backup
    RP587: 05/08/2012 21:11:03 - Windows Update
    RP588: 09/08/2012 19:08:41 - Windows Update
    RP589: 12/08/2012 22:54:14 - Windows Backup
    RP590: 12/08/2012 22:54:49 - Windows Update
    RP591: 14/08/2012 20:55:09 - Installed Steam
    RP593: 16/08/2012 03:50:16 - PC Performer Thu, Aug 16, 12 03:50
    RP594: 16/08/2012 03:53:20 - Removed BabylonObjectInstaller
    RP595: 16/08/2012 04:38:12 - Restore Operation
    .
    ==== Installed Programs ======================
    .
    Ad-Aware Antivirus
    Ad-Aware Browsing Protection
    Ad-Aware Security Toolbar
    Adobe Acrobat 5.0
    Adobe AIR
    Adobe Flash Player 10 Plugin
    Adobe Flash Player 11 ActiveX
    Adobe Reader X (10.1.4)
    Adobe Shockwave Player 11.5
    AMD USB Filter Driver
    ATI Catalyst Install Manager
    BBC iPlayer Desktop
    Bing Bar
    Bing Bar Platform
    BT Broadband Desktop Help
    Catalyst Control Center Core Implementation
    Catalyst Control Center Graphics Full Existing
    Catalyst Control Center Graphics Full New
    Catalyst Control Center Graphics Light
    Catalyst Control Center Graphics Previews Vista
    Catalyst Control Center InstallProxy
    Catalyst Control Center Localization All
    ccc-core-static
    ccc-utility
    CCC Help Danish
    CCC Help Dutch
    CCC Help English
    CCC Help Finnish
    CCC Help French
    CCC Help German
    CCC Help Italian
    CCC Help Japanese
    CCC Help Norwegian
    CCC Help Spanish
    CCC Help Swedish
    CCleaner
    Compatibility Pack for the 2007 Office system
    CorelDRAW Essentials 4
    CorelDRAW Essentials 4 - Content
    CorelDRAW Essentials 4 - Draw
    CorelDRAW Essentials 4 - Extra Content
    CorelDRAW Essentials 4 - Filters
    CorelDRAW Essentials 4 - ICA
    CorelDRAW Essentials 4 - IPM - No VBA
    CorelDRAW Essentials 4 - Lang BR
    CorelDRAW Essentials 4 - Lang DE
    CorelDRAW Essentials 4 - Lang EN
    CorelDRAW Essentials 4 - Lang ES
    CorelDRAW Essentials 4 - Lang FR
    CorelDRAW Essentials 4 - Lang IT
    CorelDRAW Essentials 4 - Lang NL
    CorelDRAW Essentials 4 - PHOTO-PAINT
    CyberLink LabelPrint
    CyberLink Power2Go
    CyberLink PowerDVD Copy
    D3DX10
    DHTML Editing Component
    Fable III
    Football Manager 2012
    Google Chrome
    Google Toolbar for Internet Explorer
    Google Update Helper
    Gratuitous Space Battles
    HiJackThis
    Java Auto Updater
    Java(TM) 6 Update 18
    Junk Mail filter update
    Malwarebytes Anti-Malware version 1.62.0.1300
    McAfee Security Scan Plus
    Mesh Runtime
    Messenger Companion
    Microsoft .NET Compact Framework 2.0 SP1
    Microsoft .NET Framework 4 Client Profile
    Microsoft Antimalware
    Microsoft Application Error Reporting
    Microsoft Games for Windows - LIVE Redistributable
    Microsoft Games for Windows Marketplace
    Microsoft Office Live Add-in 1.5
    Microsoft Office PowerPoint Viewer 2007 (English)
    Microsoft Office Suite Activation Assistant
    Microsoft Search Enhancement Pack
    Microsoft Security Essentials
    Microsoft Silverlight
    Microsoft SQL Server 2005 Compact Edition [ENU]
    Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
    Microsoft Visual C++ 2005 Redistributable
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
    Microsoft Works
    MSVCRT
    OGA Notifier 2.0.0048.0
    OpenAL
    ProtectDisc Driver, Version 11
    Realtek High Definition Audio Driver
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)
    Sid Meier's Civilization V
    Spelling Dictionaries Support For Adobe Reader 9
    Spybot - Search & Destroy
    Steam
    Turbo Lister 2
    Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
    Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
    Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
    VLC media player 2.0.1
    Windows Live Communications Platform
    Windows Live Essentials
    Windows Live Family Safety
    Windows Live ID Sign-in Assistant
    Windows Live Installer
    Windows Live Mail
    Windows Live Mesh
    Windows Live Mesh ActiveX Control for Remote Connections
    Windows Live Messenger
    Windows Live Messenger Companion Core
    Windows Live MIME IFilter
    Windows Live Movie Maker
    Windows Live Photo Common
    Windows Live Photo Gallery
    Windows Live PIMT Platform
    Windows Live Remote Client
    Windows Live Remote Client Resources
    Windows Live Remote Service
    Windows Live Remote Service Resources
    Windows Live SOXE
    Windows Live SOXE Definitions
    Windows Live Sync
    Windows Live UX Platform
    Windows Live UX Platform Language Pack
    Windows Live Writer
    Windows Live Writer Resources
    WinRAR archiver
    Yahoo! Toolbar
    .
    :love: married to the man of my dreams! 9-08-09:love:
  • chardonnay_2
    chardonnay_2 Posts: 2,201 Forumite
    1,000 Posts Combo Breaker
    ==== Event Viewer Messages From Past Week ========
    .
    17/08/2012 13:11:28, Error: Service Control Manager [7023] - The Function Discovery Resource Publication service terminated with the following error: %%-2147024891
    17/08/2012 13:11:28, Error: Service Control Manager [7001] - The HomeGroup Provider service depends on the Function Discovery Resource Publication service which failed to start because of the following error: %%-2147024891
    17/08/2012 13:10:27, Error: Service Control Manager [7023] - The Computer Browser service terminated with the following error: The specified service does not exist as an installed service.
    17/08/2012 13:10:26, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Behavior Monitoring Error Code: 0x80004005 Error description: Unspecified error Reason: The filter driver requires an up-to-date engine in order to function. You must install the latest definition updates in order to enable real-time protection.
    17/08/2012 13:10:23, Error: Service Control Manager [7003] - The SBSD Security Center Service service depends the following service: wscsvc. This service might not be installed.
    17/08/2012 13:10:22, Error: Service Control Manager [7003] - The IPsec Policy Agent service depends the following service: BFE. This service might not be installed.
    17/08/2012 13:10:22, Error: Service Control Manager [7003] - The IKE and AuthIP IPsec Keying Modules service depends the following service: BFE. This service might not be installed.
    17/08/2012 13:10:21, Error: Service Control Manager [7023] - The BullGuard main service service terminated with the following error: The specified module could not be found.
    :love: married to the man of my dreams! 9-08-09:love:
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 349.9K Banking & Borrowing
  • 252.6K Reduce Debt & Boost Income
  • 453K Spending & Discounts
  • 242.8K Work, Benefits & Business
  • 619.6K Mortgages, Homes & Bills
  • 176.4K Life & Family
  • 255.7K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16.1K Discuss & Feedback
  • 15.1K Coronavirus Support Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.