![]() |
![]() |
![]() |
|||||
![]() |
![]() |
![]() |
![]() |
![]() |
|||
| Welcome
to Tech Support Forum home to more then 136,000 problems solved. Issues
have included: Spyware, Malware, Virus Issues, Windows, Microsoft,
Linux, Networking, Security, Hardware, and Gaming Getting your
problem solved is as easy as: 1. Registering for a free account 2. Asking your question 3. Receiving an answer Registered members: * See fewer ads. * And much more..
|
| Want to know how to post a question? click here | Having problems with spyware and pop-ups? First Steps |
|
|||||||
| Virus/Trojan/Spyware Help Get Rid Of Malware With Help From Our Analysts. Follow the "First Steps" link at the top right of each page before posting for help. |
![]() |
|
|
LinkBack | Thread Tools |
|
|
#1 (permalink) |
|
Registered User
Join Date: Apr 2009
Posts: 3
OS: XP Pro
|
Computer has Serious Erro message after installing AVG 8.5
Hi there
I have been running this XP Pro machine for some time now without problems, I don't tend to use it as a workstation, more like a server (it has a big disk on it and SQL server) so I don't tend to install much software on it. I recently upgraded to the latest AVG Free (8.5) and now when I come to the machine in the morning there is an error message that state the machine has had a serious error. I have to admit that some time ago I ran Malware Bytes and it did the same thing but at the time I dismised it (probably a mistake) as the machine was almost new and had an older copy of AVG (that was up to date with latest definitions). Thanks in advance for anything you can find. Best regards Dave DDS (Ver_09-03-16.01) - NTFSx86 Run by Dave at 9:00:28.23 on 26/04/2009 Internet Explorer: 7.0.5730.13 Microsoft Windows XP Professional 5.1.2600.2.1252.44.1033.18.1662.1044 [GMT 1:00] AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) ============== Running Processes =============== C:\WINDOWS\system32\svchost -k DcomLaunch svchost.exe C:\WINDOWS\System32\svchost.exe -k netsvcs svchost.exe svchost.exe C:\WINDOWS\system32\spoolsv.exe svchost.exe C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe C:\Documents and Settings\All Users\Application Data\EPSON\EPW!3 SSRP\E_S40RP7.EXE C:\PROGRA~1\MICROS~4\MSSQL\binn\sqlservr.exe C:\PROGRA~1\AVG\AVG8\avgrsx.exe C:\WINDOWS\Explorer.EXE C:\PROGRA~1\AVG\AVG8\avgnsx.exe C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe C:\Program Files\Java\jre1.5.0\bin\jusched.exe C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAIE.EXE C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe C:\WINDOWS\System32\svchost.exe -k HTTPFilter C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\Documents and Settings\Dave\Desktop\dds.scr ============== Pseudo HJT Report =============== uStart Page = hxxp://www.google.co.uk/ BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll BHO: AskBar BHO: {201f27d4-3704-41d6-89c1-aa35e39143ed} - c:\program files\askbardis\bar\bin\askBar.dll BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg8\avgssie.dll BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\progra~1\spybot~1\SDHelper.dll TB: Ask Toolbar: {3041d03e-fd4b-44e0-b742-2d9b88305f98} - c:\program files\askbardis\bar\bin\askBar.dll uRun: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "c:\program files\common files\nero\lib\NMBgMonitor.exe" uRun: [EPSON Stylus Photo R220 Series] c:\windows\system32\spool\drivers\w32x86\3\e_fatiaie.exe /fu "c:\windows\temp\E_S1DC.tmp" /EF "HKCU" uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe mRun: [SunJavaUpdateSched] c:\program files\java\jre1.5.0\bin\jusched.exe mRun: [SoundMan] SOUNDMAN.EXE mRun: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent mRun: [NeroFilterCheck] c:\program files\common files\nero\lib\NeroCheck.exe mRun: [NBKeyScan] "c:\program files\nero\nero8\nero backitup\NBKeyScan.exe" mRun: [openvpn-gui] c:\program files\openvpn\bin\openvpn-gui.exe mRun: [AVG8_TRAY] c:\progra~1\avg\avg8\avgtray.exe mRun: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 8.0\reader\Reader_sl.exe" dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\micros~1.lnk - c:\program files\microsoft office\office\OSA9.EXE StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\servic~1.lnk - c:\program files\microsoft sql server\80\tools\binn\sqlmangr.exe StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\symant~1.lnk - c:\program files\microsoft office\office\1033\OLFSNT40.EXE StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\utilit~1.lnk - c:\windows\system32\sistray.exe StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\vpncli~1.lnk - c:\windows\installer\{06624881-cf7d-4f8a-86c0-5114b122e776}\Icon3E5562ED7.ico IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0015-0000-0000-ABCDEFFEDCBC} - c:\program files\java\jre1.5.0\bin\npjpi150.dll IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\progra~1\spybot~1\SDHelper.dll DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1194879015359 DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0-windows-i586.cab DPF: {CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0-windows-i586.cab DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab TCP: {4B6E75C9-338B-4962-8BAC-5775A147D53B} = 158.152.1.58,158.152.1.43 Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg8\avgpp.dll Notify: avgrsstarter - avgrsstx.dll SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll ============= SERVICES / DRIVERS =============== R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2009-4-23 325640] R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86;c:\windows\system32\drivers\avgmfx86.sys [2007-11-12 27656] R1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2009-4-23 108552] R2 avg8wd;AVG Free8 WatchDog;c:\progra~1\avg\avg8\avgwdsvc.exe [2009-4-23 298264] S3 MSSQL$INSTANCE_2;MSSQL$INSTANCE_2;c:\progra~1\micros~4\mssql$~1\binn\sqlservr.exe -sinstance_2 --> c:\progra~1\micros~4\mssql$~1\binn\sqlservr.exe -sINSTANCE_2 [?] S3 vsdatant;vsdatant;c:\windows\system32\vsdatant.sys [2004-10-27 278384] =============== Created Last 30 ================ 2009-04-26 08:53 <DIR> --d----- C:\HJT 2009-04-23 13:34 10,520 a------- c:\windows\system32\avgrsstx.dll 2009-04-23 13:34 325,640 a------- c:\windows\system32\drivers\avgldx86.sys 2009-04-23 13:34 108,552 a------- c:\windows\system32\drivers\avgtdix.sys 2009-04-23 13:34 <DIR> --d----- c:\windows\system32\drivers\Avg 2009-04-23 13:34 <DIR> --d----- c:\program files\AVG 2009-04-23 13:34 <DIR> --d----- c:\docume~1\alluse~1\applic~1\avg8 2009-03-29 13:59 <DIR> --d----- C:\OLA 2009-03-29 13:58 9,550,300 a------- C:\OLA.7z ==================== Find3M ==================== 2009-03-06 15:44 283,648 a------- c:\windows\system32\pdh.dll 2009-03-03 01:18 826,368 a------- c:\windows\system32\wininet.dll 2009-02-20 19:09 78,336 a------- c:\windows\system32\ieencode.dll 2009-02-09 11:20 723,456 a------- c:\windows\system32\lsasrv.dll 2009-02-09 11:20 399,360 a------- c:\windows\system32\rpcss.dll 2009-02-09 11:20 714,752 a------- c:\windows\system32\ntdll.dll 2009-02-09 11:20 616,960 a------- c:\windows\system32\advapi32.dll 2009-02-09 11:19 1,846,272 a------- c:\windows\system32\win32k.sys 2009-02-06 18:24 2,180,480 a------- c:\windows\system32\ntoskrnl.exe 2009-02-06 18:14 110,592 a------- c:\windows\system32\services.exe 2009-02-06 17:54 35,328 a------- c:\windows\system32\sc.exe 2009-02-06 17:49 2,057,728 a------- c:\windows\system32\ntkrnlpa.exe 2009-02-03 21:08 55,808 a------- c:\windows\system32\secur32.dll 2008-06-12 08:14 605,466 a------- c:\documents and settings\dave\TEST.DAT 1998-12-09 03:53 186,368 a------- c:\program files\common files\IRAREG.DLL 1998-12-09 03:53 99,840 a------- c:\program files\common files\IRAABOUT.DLL 1998-12-09 03:53 70,144 a------- c:\program files\common files\IRAMDMTR.DLL 1998-12-09 03:53 48,640 a------- c:\program files\common files\IRALPTTR.DLL 1998-12-09 03:53 31,744 a------- c:\program files\common files\IRAWEBTR.DLL 1998-12-09 03:53 17,920 a------- c:\program files\common files\IRASRIAL.DLL ============= FINISH: 9:00:54.21 =============== Last edited by TheBruce1; 04-26-2009 at 03:42 AM. |
|
|
|
| Important Information |
|
Join the #1 Tech Support Forum Today - It's Totally Free!
TechSupportForum.com is a leading support website for your computer needs. We offer free, friendly and personalized computer support. Why pay to have your computer fixed when you can do it for free. Join TechSupportforum.com Today - Click Here |
![]() |
| Thread Tools | |
|
|