View Single Post
Old 01-12-2009, 04:50 PM   #1 (permalink)
emergencylight
Registered User
 
Join Date: Jan 2009
Posts: 8
OS: Windows XP SP3


IE 7 not working

Hello,
My IE 7 has stopped working suddenly. When I try to start it, it gives me following error:

"windows cannot access the specified device, path, or file. you may not have the appropriate permission to access the item"

My computer was effected by some sypware last week and I removed it by using 'spy emergency'. I guess this problem came after removing that spyware as i don't use IE frequently. Following are logs as instructed in malware removal thread.


DDS (Ver_09-01-07.01) - FAT32x86
Run by fahad at 2:22:51.00 on 13/01/2009
Internet Explorer: 7.0.5730.13 BrowserJavaVersion: 1.6.0_07
Microsoft Windows XP Professional 5.1.2600.3.1256.966.1033.18.446.129 [GMT 3:00]

AV: avast! antivirus 4.8.1296 [VPS 090112-0] *On-access scanning enabled* (Updated)

============== Running Processes ===============

C:\WINDOWS\system32\svchost -k DcomLaunch
SVCHOST.EXE
C:\WINDOWS\System32\svchost.exe -k netsvcs
SVCHOST.EXE
SVCHOST.EXE
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
D:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Vidalia Bundle\Vidalia\vidalia.exe
C:\Documents and Settings\pc4\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
C:\Program Files\Vidalia Bundle\Privoxy\privoxy.exe
C:\Program Files\NetPerSec\NetPerSec.exe
C:\Program Files\Bonjour\mDNSResponder.exe
SVCHOST.EXE
d:\Program Files\Hotspot Shield\bin\openvpnas.exe
C:\Program Files\Webshots\webshots.scr
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\VMware\VMware Workstation\vmware-authd.exe
C:\Program Files\Vidalia Bundle\Tor\tor.exe
C:\Program Files\Common Files\VMware\VMware Virtual Image Editing\vmount2.exe
C:\WINDOWS\system32\vmnat.exe
C:\WINDOWS\System32\wltrysvc.exe
C:\WINDOWS\system32\vmnetdhcp.exe
C:\WINDOWS\System32\bcmwltry.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
D:\Program Files\Mozilla Firefox 2 Beta 2\firefox.exe
C:\Documents and Settings\pc4\Local Settings\Application Data\Google\Google Talk Plugin\googletalkplugin.exe
C:\WINDOWS\System32\vssvc.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\system32\dllhost.exe
C:\Documents and Settings\pc4\Desktop\dds.com

============== Pseudo HJT Report ===============

uStart Page = about:blank
uInternet Settings,ProxyOverride = <local>;*.local
BHO: {02478D38-C3F9-4efb-9B51-7695ECA05670} - No File
BHO: NoExplorer - No File
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 7.0\activex\AcroIEHelper.dll
BHO: Megaupload Toolbar: {4e7bd74f-2b8d-469e-ccb0-b130eedbe97c} - c:\progra~1\megaup~2\MEGAUP~1.DLL
BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre1.6.0_07\bin\ssv.dll
BHO: {7E853D72-626A-48EC-A868-BA8D5E23E045} - No File
BHO: D: {85cae368-e5cd-305e-a63d-477b433653a8} - c:\windows\system32\xsl93180.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: FDMIECookiesBHO Class: {cc59e0f9-7e43-44fa-9faa-8377850bf205} - c:\program files\free download manager\iefdmcks.dll
BHO: Hotspot Shield Class: {f9e4a054-e9b1-4bc3-83a3-76a1ae736170} - d:\program files\hotspot shield\hssie\HssIE.dll
TB: {E0E899AB-F487-11D5-8D29-0050BA6940E3} - No File
TB: Megaupload Toolbar: {4e7bd74f-2b8d-469e-ccb0-b130eedbe97c} - c:\progra~1\megaup~2\MEGAUP~1.DLL
TB: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No File
TB: {90B8B761-DF2B-48AC-BBE0-BCC03A819B3B} - No File
EB: {A7CDDCDC-BEEB-4685-A062-978F5E07CEEE} - No File
uRun: [msnmsgr] "c:\program files\windows live\messenger\MsnMsgr.Exe" /background
uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [Uniblue RegistryBooster 2009] c:\program files\uniblue\registrybooster\RegistryBooster.exe /S
uRun: [Vidalia] "c:\program files\vidalia bundle\vidalia\vidalia.exe"
uRun: [Google Update] "c:\documents and settings\pc4\local settings\application data\google\update\GoogleUpdate.exe" /c
uRun: [SpyEmergency] d:\program files\netgate\spy emergency 2008\SpyEmergency.exe
mRun: [VirtualCloneDrive] "d:\program files\elaborate bytes\virtualclonedrive\VCDDaemon.exe" /s
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
StartupFolder: c:\docume~1\pc4\startm~1\programs\startup\netper~1.lnk - c:\program files\netpersec\NetPerSec.exe
StartupFolder: c:\docume~1\pc4\startm~1\programs\startup\webshots.lnk - c:\program files\webshots\Launcher.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\micros~1.lnk - c:\program files\microsoft office\office10\OSA.EXE
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\adober~1.lnk - c:\program files\adobe\acrobat 7.0\reader\reader_sl.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\privoxy.lnk - c:\program files\vidalia bundle\privoxy\privoxy.exe
IE: Download all with Free Download Manager - file://c:\program files\free download manager\dlall.htm
IE: Download selected with Free Download Manager - file://c:\program files\free download manager\dlselected.htm
IE: Download with Free Download Manager - file://c:\program files\free download manager\dllink.htm
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office10\EXCEL.EXE/3000
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0_07\bin\ssv.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL

================= FIREFOX ===================

FF - ProfilePath - c:\docume~1\pc4\applic~1\mozilla\firefox\profiles\tqim454j.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.gmail.com
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?ei=utf-8&fr=megaup&p=
FF - component: c:\program files\free download manager\firefox\extension\components\component.dll
FF - component: d:\program files\mozilla firefox 2 beta 2\extensions\talkback@mozilla.org\components\qfaservices.dll
FF - plugin: c:\program files\mozilla firefox 2 beta 2\plugins\NPJava11.dll
FF - plugin: c:\program files\mozilla firefox 2 beta 2\plugins\NPJava12.dll
FF - plugin: c:\program files\mozilla firefox 2 beta 2\plugins\NPJava131_18.dll
FF - plugin: c:\program files\mozilla firefox 2 beta 2\plugins\NPJava32.dll
FF - plugin: c:\program files\mozilla firefox 2 beta 2\plugins\npnul32.dll
FF - plugin: c:\program files\mozilla firefox 2 beta 2\plugins\npoji600.dll
FF - plugin: c:\program files\mozilla firefox 2 beta 2\plugins\nppdf32.dll
FF - plugin: c:\program files\mozilla firefox 2 beta 2\plugins\nppl3260.dll
FF - plugin: c:\program files\mozilla firefox 2 beta 2\plugins\nprjplug.dll
FF - plugin: c:\program files\mozilla firefox 2 beta 2\plugins\nprpjplug.dll

============= SERVICES / DRIVERS ===============

R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2008-6-20 111184]
R3 avast! Mail Scanner;avast! Mail Scanner;c:\program files\alwil software\avast4\ashMaiSv.exe [2007-4-4 254040]
R3 avast! Web Scanner;avast! Web Scanner;c:\program files\alwil software\avast4\ashWebSv.exe [2007-4-4 352920]
R4 aawservice;Lavasoft Ad-Aware Service;c:\program files\lavasoft\ad-aware\aawservice.exe [2008-5-12 611664]
R4 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2008-6-20 20560]
R4 avast! Antivirus;avast! Antivirus;c:\program files\alwil software\avast4\ashServ.exe [2007-4-4 155160]
S3 lgatbus;LG USB Composite Device driver (WDM);c:\windows\system32\drivers\lgatbus.sys [2007-1-27 43024]
S3 lgatmdm;LG CDMA USB Modem Drivers;c:\windows\system32\drivers\lgatmdm.sys [2007-1-27 77104]
S3 lgatserd;LG CDMA USB Modem Diagnostic Serial Port Drivers (WDM);c:\windows\system32\drivers\lgatserd.sys [2007-1-27 60816]
S3 NPF;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2007-6-29 42512]
S3 tap0801;TAP-Win32 Adapter V8;c:\windows\system32\drivers\tap0801.sys [2006-10-1 26624]
S3 V0330VID;WebCam Vista/Live! Cam Chat;c:\windows\system32\drivers\V0330Vid.sys [2008-10-30 157696]

=============== Created Last 30 ================

2009-01-10 20:45 250 a------- c:\windows\gmer.ini
2009-01-10 02:15 81,920 a------- c:\windows\system32\ieencode.dll
2009-01-10 02:15 78,336 a------- c:\windows\system32\dllcache\ieencode.dll
2009-01-08 00:20 125,952 a------- c:\windows\system32\dllcache\apphelp.dll
2009-01-08 00:20 125,952 a------- c:\windows\system32\apphelp.dll
2008-12-29 00:43 176,128 a------- c:\windows\system32\xsl93180.dll
2008-12-29 00:43 176,128 a------- c:\windows\system32\sl93180.dll
2008-12-29 00:43 181,760 a------- c:\program files\common files\Ndm361a2rL.exe
2008-12-21 01:13 50 a------- c:\windows\winzipme.ini
2008-12-21 01:12 <DIR> --d----- c:\program files\DSL Speed

==================== Find3M ====================

2009-01-12 19:15 37,248 -------- c:\docume~1\pc4\applic~1\GDIPFONTCACHEV1.DAT
2008-12-13 09:40 3,593,216 a------- c:\windows\system32\dllcache\mshtml.dll
2008-11-22 11:33 166,455 a------- c:\windows\pchealth\helpctr\offlinecache\index.dat
2008-11-07 16:45 2,174,976 -------- c:\windows\system32\dllcache\WMVCore.dll
2008-10-24 14:21 455,296 -------- c:\windows\system32\dllcache\mrxsmb.sys
2008-10-23 15:36 286,720 a------- c:\windows\system32\gdi32.dll
2008-10-23 15:36 286,720 -------- c:\windows\system32\dllcache\gdi32.dll
2008-10-16 16:11 70,656 a------- c:\windows\system32\dllcache\ie4uinit.exe
2008-10-16 16:11 13,824 -------- c:\windows\system32\dllcache\ieudinit.exe
2008-10-16 14:13 1,809,944 a------- c:\windows\system32\dllcache\wuaueng.dll
2008-10-16 14:13 202,776 a------- c:\windows\system32\dllcache\wuweb.dll
2008-10-16 14:12 323,608 a------- c:\windows\system32\dllcache\wucltui.dll
2008-10-16 14:12 561,688 a------- c:\windows\system32\dllcache\wuapi.dll
2008-10-16 14:09 92,696 a------- c:\windows\system32\dllcache\cdm.dll
2008-10-16 14:09 51,224 a------- c:\windows\system32\dllcache\wuauclt.exe
2008-10-16 14:08 34,328 a------- c:\windows\system32\dllcache\wups.dll
2008-10-16 14:06 268,648 a------- c:\windows\system32\mucltui.dll
2008-10-16 14:06 208,744 a------- c:\windows\system32\muweb.dll
2008-10-15 19:34 337,408 -------- c:\windows\system32\dllcache\netapi32.dll
2008-10-15 10:06 633,632 a------- c:\windows\system32\dllcache\iexplore.exe
2008-10-15 10:04 161,792 a------- c:\windows\system32\dllcache\ieakui.dll
2008-03-02 00:16 144 a------- c:\program files\song-10452.ram
2007-09-20 20:03 486 a------- c:\program files\recover.arr
2007-09-20 20:02 486 a------- c:\program files\~arpr.arr
2007-09-20 19:09 6,502,752 a------- c:\program files\new.rpc

============= FINISH: 2:23:22.84 ===============

Fahad.
Attached Files
File Type: rar Attach.rar (3.9 KB, 3 views)
emergencylight is offline  
Important Information
Join the #1 Tech Support Forum Today - It's Totally Free!

TechSupportForum.com is a leading support website for your computer needs. We offer free, friendly and personalized computer support. Why pay to have your computer fixed when you can do it for free.

Join TechSupportforum.com Today - Click Here