![]() |
![]() |
![]() |
|||||
![]() |
![]() |
![]() |
![]() |
![]() |
|||
| Welcome
to Tech Support Forum home to more then 136,000 problems solved. Issues
have included: Spyware, Malware, Virus Issues, Windows, Microsoft,
Linux, Networking, Security, Hardware, and Gaming Getting your
problem solved is as easy as: 1. Registering for a free account 2. Asking your question 3. Receiving an answer Registered members: * See fewer ads. * And much more..
|
|
| Want to know how to post a question? click here | Having problems with spyware and pop-ups? First Steps |
|
|||||||
|
|
LinkBack | Thread Tools |
|
|
#1 (permalink) |
|
Registered User
Join Date: Oct 2007
Location: USA
Posts: 22
OS: Vista Home Premium
|
Hello everyone!
I have a topic posted in Windows Vista Support, and dai suggested I follow the 5 steps for this area and it ended with telling me to post a log here, so that's what I'm doing. In short, my problem is that my PC freezes several times a day while in use. It's usually after a few hours of running several programs (I usually always have at least 2 programs running) and that program freezes. Then the other programs freeze and eventually I can not even restart through the start menu, I have to turn it off with the off button. For a more in depth description of my problem and what I've done to resolve it so far, check this topic http://www.techsupportforum.com/micr...ml#post1128398 Now, I went through the 5 steps and I ran into a problem. Step 2 says to run the online scanner, but I'm running Vista and it isn't supported. I have tried to run other online scanners previously and they wouldn't work for that reason, as well as UAC interrupting other scanners. All the rest went through fine. The only thing I didn't do was in step 3, I didn't install the IE-Spyad because I NEVER used IE, except for official Microsoft things. I use FireFox for regular surfing. If you still want me to install it let me know and I will. Now on with the DSS reports. Main.txt, the extra.txt is attached. Deckard's System Scanner v20071014.68 Run by Andy on 2007-10-24 00:23:01 Computer is in Normal Mode. -------------------------------------------------------------------------------- -- Last 5 Restore Point(s) -- 17: 2007-10-24 01:21:47 UTC - RP77 - Windows Update 16: 2007-10-23 18:26:57 UTC - RP76 - Scheduled Checkpoint 15: 2007-10-22 21:40:02 UTC - RP75 - Windows Update 14: 2007-10-22 20:02:42 UTC - RP74 - Scheduled Checkpoint 13: 2007-10-22 06:29:54 UTC - RP73 - Scheduled Checkpoint -- First Restore Point -- 1: 2007-10-10 22:13:52 UTC - RP61 - Shockwave Player Backed up registry hives. Performed disk cleanup. -- HijackThis Clone ------------------------------------------------------------ Emulating logfile of Trend Micro HijackThis v2.0.2 Scan saved at 2007-10-24 00:25:34 Platform: Windows Vista (6.00.6000) MSIE: Internet Explorer (7.00.6000.16386) Boot mode: Normal Running processes: C:\Windows\System32\wisptis.exe C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe C:\Windows\System32\dwm.exe C:\Windows\System32\taskeng.exe C:\Windows\explorer.exe C:\Windows\System32\WTablet\Pen_TabletUser.exe C:\Program Files\Windows Defender\MSASCui.exe C:\Windows\System32\nvraidservice.exe C:\Windows\RtHDVCpl.exe C:\Windows\System32\rundll32.exe C:\Windows\System32\rundll32.exe C:\Program Files\Zune\ZuneLauncher.exe C:\Program Files\SensorsViewPro31\sviewpro.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Windows\ehome\ehtray.exe C:\Program Files\Windows Media Player\wmpnscfg.exe C:\Windows\System32\wbem\unsecapp.exe C:\Windows\ehome\ehmsas.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Program Files\Shareaza\Shareaza.exe C:\Program Files\Common Files\microsoft shared\ink\InputPersonalization.exe C:\Program Files\GRISOFT\AVG7\avgcc.exe C:\Andy\Apps, installs, progs, etc\dss.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: flashget urlcatch - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\Program Files\FlashGet\jccatch.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll O2 - BHO: FlashGet GetFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - C:\Program Files\FlashGet\getflash.dll O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide O4 - HKLM\..\Run: [NVRaidService] C:\Windows\system32\nvraidservice.exe O4 - HKLM\..\Run: [Creative Spectre GKbd] "C:\Program Files\Creative\Spectre Gamer Keyboard(VM)\SpectreGKB.exe" O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\GRISOFT\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP O4 - HKLM\..\Run: [Zune Launcher] "C:\Program Files\Zune\ZuneLauncher.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [SensorsViewPro31] C:\Program Files\SensorsViewPro31\sviewpro.exe O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKCU\..\Run: [Shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-20\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'Default user') O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Startup: CPUCooL.lnk = C:\Program Files\CPUCooL\CPUCooL.exe O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe O8 - Extra context menu item: &Download All with FlashGet - C:\Program Files\FlashGet\jc_all.htm O8 - Extra context menu item: &Download with FlashGet - C:\Program Files\FlashGet\jc_link.htm O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\flashget.exe O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\Program Files\FlashGet\flashget.exe O20 - Winlogon Notify: avgwlntf - C:\Windows\system32\avgwlntf.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\GRISOFT\AVG Anti-Spyware 7.5\guard.exe O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\Program Files\GRISOFT\AVG7\avgamsvr.exe O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\Program Files\GRISOFT\AVG7\avgupsvc.exe O23 - Service: AVG7 Resident Shield Service (AvgCoreSvc) - GRISOFT, s.r.o. - C:\Program Files\GRISOFT\AVG7\avgrssvc.exe O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\Program Files\GRISOFT\AVG7\avgemc.exe O23 - Service: CPUCooLServer Service (CPUCooLServer) - Unknown owner - C:\Program Files\CPUCooL\CooLSRV.exe O23 - Service: mental ray 3.5 Satellite (32-bit) (mi-raysat_3dsmax9_32) - Unknown owner - C:\Program Files\Autodesk\3ds Max 9\mentalray\satellite\raysat_3dsmax9_32server.exe O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe O23 - Service: TabletServicePen - Wacom Technology, Corp. - C:\Windows\System32\Pen_Tablet.exe -- End of file - 6880 bytes -- File Associations ----------------------------------------------------------- All associations okay. -- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------- R1 ntiowp - c:\windows\system32\drivers\ntiowp.sys <Not Verified; ; NT IO driver> R2 sensorsview - \??\c:\windows\system32\drivers\sensorsview.sys R3 AvgWFP (AVG7 Firewall Driver x86) - c:\windows\system32\drivers\avgwfp.sys -- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled -------------------- R2 Autodesk Licensing Service - "c:\program files\common files\autodesk shared\service\adskscsrv.exe" <Not Verified; Autodesk; Autodesk Licensing Service> R2 CPUCooLServer (CPUCooLServer Service) - "c:\program files\cpucool\coolsrv.exe" S2 mi-raysat_3dsmax9_32 (mental ray 3.5 Satellite (32-bit)) - "c:\program files\autodesk\3ds max 9\mentalray\satellite\raysat_3dsmax9_32server.exe" -- Device Manager: Disabled ---------------------------------------------------- No disabled devices found. -- Files created between 2007-09-24 and 2007-10-24 ----------------------------- 2007-10-23 23:56:59 118784 --a------ C:\Windows\system32\MSSTDFMT.DLL <Not Verified; Microsoft Corporation; MSSTDFMT Object Library> 2007-10-23 23:56:59 0 d-------- C:\Program Files\SpywareBlaster 2007-10-20 23:27:30 0 d-------- C:\Program Files\SensorsViewPro31 2007-10-20 22:39:59 0 d-------- C:\Program Files\Real Desktop 2007-10-19 00:43:59 0 d-------- C:\Program Files\CPU-Z 2007-10-19 00:36:12 0 d-------- C:\Program Files\CPUCooL 2007-10-18 18:50:12 0 d-------- C:\Program Files\Softnyx 2007-10-17 23:26:47 0 d-------- C:\Users\Andy\.housecall6.6 2007-10-15 00:07:07 0 d-------- C:\Matt Pictures 2007-10-14 22 38 0 d-------- C:\School 12007-10-14 17:00:04 4682 --a------ C:\Windows\system32\npptNT2.sys <Not Verified; INCA Internet Co., Ltd.; nProtect NPSC Kernel Mode Driver for NT> 2007-10-13 01:43:44 0 d-------- C:\Deemarauctions 2007-10-08 19:49:26 0 d-------- C:\Program Files\GTA San Andreas 2007-10-08 13:29:52 0 d-------- C:\Downloads 2007-10-08 13:22:39 0 d-------- C:\Program Files\FlashGet 2007-10-08 08:45:54 0 d-------- C:\Program Files\VideoLAN 2007-10-08 08:21:06 0 d-------- C:\Program Files\Winamp 2007-10-08 08:09:15 0 d-------- C:\Users\Andy\Shared 2007-10-08 08:08:58 0 d-------- C:\Program Files\Cabos 2007-10-05 22:49:56 108 ---hs---- C:\Windows\WSYS049.SYS 2007-10-05 22:49:51 257972 --a------ C:\Windows\CoffeeCup Visual Site Designer Uninstaller.exe 2007-10-05 22:49:47 0 d-------- C:\Program Files\CoffeeCup Software 2007-10-05 16:47:34 0 d-------- C:\WTablet 2007-10-05 01:36:16 0 d-------- C:\Program Files\FileZilla Client 2007-10-05 00:23:53 0 d-------- C:\Program Files\Easiestutils 2007-10-04 17:38:50 0 d-------- C:\Program Files\Common Files\Steam 2007-10-04 17:38:49 0 d-------- C:\Program Files\Steam 2007-10-02 23 08 105168 --a------ C:\Windows\NSUninst.exe2007-10-02 23:05:56 105168 --a------ C:\Windows\GREUninstall.exe 2007-10-02 23:05:55 9371 --a------ C:\Windows\mozver.dat 2007-10-02 23:05:53 0 d-------- C:\Program Files\Common Files\mozilla.org 2007-10-02 23:05:37 0 d-------- C:\Program Files\Netscape 2007-10-01 21:14:29 0 d-------- C:\Users\All Users\AppData 2007-10-01 21:11:35 0 d-------- C:\Windows\system32\WTablet 2007-10-01 21:11:29 0 d-------- C:\Program Files\Tablet 2007-10-01 09:33:35 0 d-------- C:\Program Files\Total Video Converter 2007-09-30 12:07:13 0 d-------- C:\Users\All Users\Apple Computer 2007-09-30 12:07:13 0 d-------- C:\Program Files\QuickTime 2007-09-30 12 47 0 d-------- C:\Program Files\Apple Software Update2007-09-30 12 46 0 d-------- C:\Users\All Users\Apple2007-09-30 10:46:14 0 d-------- C:\Program Files\Bethesda Softworks 2007-09-30 00:13:59 0 d-------- C:\Program Files\DIFX 2007-09-30 00:13:51 0 d-------- C:\Program Files\Common Files\ComponentOne 2007-09-30 00:13:48 0 d-------- C:\Program Files\Zune 2007-09-29 22:53:13 0 d-------- C:\Users\Andy\Incomplete 2007-09-29 22:50:07 0 d-------- C:\Program Files\Java 2007-09-29 22:47:05 0 d-------- C:\Program Files\Common Files\Java 2007-09-29 22:46:30 0 d-------- C:\Program Files\LimeWire 2007-09-29 14:51:33 0 d-------- C:\GTR2 2007-09-29 13:47:18 0 d-------- C:\Program Files\Desktop Icon Toy 2007-09-28 23:35:02 0 d-------- C:\Program Files\Shareaza 2007-09-28 11:36:28 0 d-------- C:\TempDVD 2007-09-28 11:36:28 0 d-------- C:\dvdsanta 2007-09-28 11:36:24 237568 --a------ C:\Windows\system32\xvidvfw.dll 2007-09-28 11:36:24 1216512 --a------ C:\Windows\system32\xvidcore.dll 2007-09-28 11:36:24 921600 --a------ C:\Windows\system32\vorbisenc.dll 2007-09-28 11:36:24 188416 --a------ C:\Windows\system32\vorbis.dll 2007-09-28 11:36:24 237568 --a------ C:\Windows\system32\OggDS.dll <Not Verified; ; Ogg DirectShow(tm) Filter Collection> 2007-09-28 11:36:24 45056 --a------ C:\Windows\system32\ogg.dll 2007-09-28 11:36:24 0 d-------- C:\Program Files\dvdSanta 2007-09-28 09:36:03 0 d-------- C:\Users\Andy\dwhelper 2007-09-28 00:55:38 0 d-------- C:\Users\All Users\Adobe Systems 2007-09-28 00:53:03 0 d-------- C:\Program Files\Common Files\Adobe Systems Shared 2007-09-28 00:40:35 0 d-------- C:\Program Files\Common Files\ChaosGroup 2007-09-28 00:40:26 0 d-------- C:\Program Files\Chaos Group 2007-09-28 00:25:12 0 d-------- C:\Demos 2007-09-27 23:59:23 0 d-------- C:\Users\All Users\Autodesk 2007-09-27 23:57:16 0 d-------- C:\Program Files\Common Files\Autodesk Shared 2007-09-27 23:57:16 0 d-------- C:\Program Files\Autodesk 2007-09-27 23:51:36 737280 --a------ C:\Windows\iun6002.exe <Not Verified; Indigo Rose Corporation; Setup Factory 6.0 Runtime Module> 2007-09-27 15:31:48 0 d-------- C:\Program Files\Trillian 2007-09-27 15:31:14 0 d-------- C:\Tucker 2007-09-27 03:26:41 335 --a------ C:\Windows\nsreg.dat 2007-09-27 03:20:31 0 d-------- C:\Users\All Users\NVIDIA 2007-09-27 03:15:15 47104 --a------ C:\Windows\system32\drivers\avgwfp.sys 2007-09-27 03:15:08 0 d-------- C:\Users\All Users\avg7 2007-09-27 03:14:10 0 d-------- C:\NVIDIA 2007-09-27 03:13:06 0 d-------- C:\Users\All Users\Grisoft 2007-09-27 03:12:55 0 d-------- C:\Windows\Panther 2007-09-27 03:12:42 0 d--hs---- C:\Boot 2007-09-27 03:12:29 0 d-------- C:\Windows\system32\OEM 2007-09-27 03:00:29 200704 --a------ C:\Windows\system32\UpdateDriver.exe <Not Verified; ; UpdateDriver Application> 2007-09-27 03:00:29 40960 --a------ C:\Windows\system32\F5D7050.dll 2007-09-27 03:00:28 0 d-------- C:\Program Files\Belkin 2007-09-27 02:46:03 0 d-------- C:\Windows\system32\Macromed 2007-09-27 02:37:01 0 d-------- C:\Users\All Users\Adobe 2007-09-27 02:36:57 0 d-------- C:\Program Files\Common Files\Adobe 2007-09-27 02:36:29 0 d--hs---- C:\Windows\Installer 2007-09-27 02:34:37 0 d-------- C:\Windows\system32\RTCOM 2007-09-27 02:34:12 0 d-------- C:\Program Files\Realtek 2007-09-27 02:34:02 520192 -r------- C:\Windows\RtlExUpd.dll <Not Verified; Realtek Semiconductor Corp.; RtlExUpd Dynamic Link Library> 2007-09-27 02:34:02 315392 --a------ C:\Windows\HideWin.exe <Not Verified; Realtek Semiconductor Corp.; HD Audio Hide windows program> 2007-09-27 02:33:30 41984 -----n--- C:\Windows\Ctregrun.exe <Not Verified; Creative Technology Ltd; Creative On-line Registration System> 2007-09-27 02:33:13 0 d-------- C:\Program Files\Creative 2007-09-27 02:33:01 0 d--h----- C:\Program Files\InstallShield Installation Information 2007-09-27 02:32:58 0 d-------- C:\Program Files\Common Files\InstallShield 2007-09-27 02:25:21 10288 --a------ C:\Windows\system32\drivers\ASUSHWIO.SYS 2007-09-27 02:24:28 0 dr------- C:\Users\Andy\Searches 2007-09-27 02:24:20 0 dr------- C:\Users\Andy\Contacts 2007-09-27 02:24:17 0 d--hs---- C:\Users\Andy\Templates 2007-09-27 02:24:17 0 d--hs---- C:\Users\Andy\Start Menu 2007-09-27 02:24:17 0 d--hs---- C:\Users\Andy\SendTo 2007-09-27 02:24:17 0 d--hs---- C:\Users\Andy\Recent 2007-09-27 02:24:17 0 d--hs---- C:\Users\Andy\PrintHood 2007-09-27 02:24:17 0 d--hs---- C:\Users\Andy\NetHood 2007-09-27 02:24:17 0 d--hs---- C:\Users\Andy\My Documents 2007-09-27 02:24:17 0 d--hs---- C:\Users\Andy\Local Settings 2007-09-27 02:24:17 0 d--hs---- C:\Users\Andy\Cookies 2007-09-27 02:24:17 0 d--hs---- C:\Users\Andy\Application Data 2007-09-27 02:24:16 0 dr------- C:\Users\Andy\Videos 2007-09-27 02:24:16 0 dr------- C:\Users\Andy\Saved Games 2007-09-27 02:24:16 0 dr------- C:\Users\Andy\Pictures 2007-09-27 02:24:16 3145728 --ahs---- C:\Users\Andy\NTUSER.DAT 2007-09-27 02:24:16 0 dr------- C:\Users\Andy\Music 2007-09-27 02:24:16 0 dr------- C:\Users\Andy\Links 2007-09-27 02:24:16 0 dr------- C:\Users\Andy\Favorites 2007-09-27 02:24:16 0 dr------- C:\Users\Andy\Downloads 2007-09-27 02:24:16 0 dr------- C:\Users\Andy\Documents 2007-09-27 02:24:16 0 dr------- C:\Users\Andy\Desktop 2007-09-27 02:24:16 0 d--h----- C:\Users\Andy\AppData 2007-09-27 02:23:46 0 d-------- C:\Andy 2007-09-27 02:15:48 0 d-------- C:\Windows\SoftwareDistribution 2007-09-27 02:14:46 0 d-------- C:\Windows\Debug 2007-09-27 02:13:53 0 d-------- C:\Windows\Prefetch 2007-09-27 02:13:39 0 d--hs---- C:\System Volume Information -- Find3M Report --------------------------------------------------------------- 2007-10-23 23:56:39 0 d-------- C:\Users\Andy\AppData\Roaming\AVG7 2007-10-23 21:16:08 0 d-------- C:\Users\Andy\AppData\Roaming\WTablet 2007-10-21 23:34:53 0 d-------- C:\Users\Andy\AppData\Roaming\LimeWire 2007-10-21 10:46:57 0 d-------- C:\Users\Andy\AppData\Roaming\Bioshock 2007-10-14 00:53:43 0 d-------- C:\Users\Andy\AppData\Roaming\FileZilla 2007-10-10 03:08:43 0 d-------- C:\Program Files\Windows Mail 2007-10-08 18:17:56 0 d-------- C:\Users\Andy\AppData\Roaming\Adobe 2007-10-08 13:22:46 0 d-------- C:\Users\Andy\AppData\Roaming\FlashGet 2007-10-08 08:46:39 0 d-------- C:\Users\Andy\AppData\Roaming\vlc 2007-10-08 08:24:20 0 d-------- C:\Users\Andy\AppData\Roaming\Cabos 2007-10-08 08:24:20 4922 --a------ C:\Users\Andy\AppData\Roaming\Cabos.plist 2007-10-08 08:23:19 0 d-------- C:\Users\Andy\AppData\Roaming\Winamp 2007-10-08 08:09:13 437 --a------ C:\Users\Andy\AppData\Roaming\CabosCore.bat 2007-10-06 01:09:03 0 d-------- C:\Users\Andy\AppData\Roaming\Alien Skin 2007-10-04 17:38:50 0 d-------- C:\Program Files\Common Files 2007-10-02 23 20 0 d-------- C:\Users\Andy\AppData\Roaming\Mozilla2007-10-02 12:31:48 0 d-------- C:\Users\Andy\AppData\Roaming\Opera 2007-09-30 23:34:50 0 d-------- C:\Users\Andy\AppData\Roaming\Sun 2007-09-28 23:35:02 0 d-------- C:\Users\Andy\AppData\Roaming\Shareaza 2007-09-27 11:56:50 0 d-------- C:\Users\Andy\AppData\Roaming\WinRAR 2007-09-27 04:19:07 174 --ahs---- C:\Program Files\desktop.ini 2007-09-27 04:15:44 0 d-------- C:\Program Files\Windows Calendar 2007-09-27 04:15:23 0 d-------- C:\Program Files\Windows Defender 2007-09-27 03:13:11 0 d-------- C:\Users\Andy\AppData\Roaming\Grisoft 2007-09-27 02:46:14 0 d-------- C:\Users\Andy\AppData\Roaming\Macromedia 2007-09-27 02:30:15 0 d-------- C:\Users\Andy\AppData\Roaming\InstallShield 2007-09-27 02:24:21 0 d-------- C:\Users\Andy\AppData\Roaming\Identities -- Registry Dump --------------------------------------------------------------- *Note* empty entries & legit default entries are not shown [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Windows Defender"="C:\Program Files\Windows Defender\MSASCui.exe" [09/27/2007 04:05 AM] "NVRaidService"="C:\Windows\system32\nvraidservice.exe" [12/22/2006 10:12 PM] "Creative Spectre GKbd"="C:\Program Files\Creative\Spectre Gamer Keyboard(VM)\SpectreGKB.exe" [11/24/2006 01:29 PM] "RtHDVCpl"="RtHDVCpl.exe" [03/01/2007 02:38 PM C:\Windows\RtHDVCpl.exe] "NvSvc"="C:\Windows\system32\nvsvc.dll" [09/12/2007 12:28 AM] "NvCplDaemon"="C:\Windows\system32\NvCpl.dll" [09/12/2007 12:28 AM] "NvMediaCenter"="C:\Windows\system32\NvMcTray.dll" [09/12/2007 12:28 AM] "!AVG Anti-Spyware"="C:\Program Files\GRISOFT\AVG Anti-Spyware 7.5\avgas.exe" [06/11/2007 04:25 AM] "AVG7_CC"="C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" [09/27/2007 03:15 AM] "Zune Launcher"="C:\Program Files\Zune\ZuneLauncher.exe" [03/14/2007 05:03 PM] "QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [06/29/2007 06:24 AM] "SensorsViewPro31"="C:\Program Files\SensorsViewPro31\sviewpro.exe" [02/12/2007 04:11 AM] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Sidebar"="C:\Program Files\Windows Sidebar\sidebar.exe" [11/02/2006 07:35 AM] "ehTray.exe"="C:\Windows\ehome\ehTray.exe" [11/02/2006 07:35 AM] "Shareaza"="C:\Program Files\Shareaza\Shareaza.exe" [02/05/2007 04:05 AM] "WMPNSCFG"="C:\Program Files\Windows Media Player\WMPNSCFG.exe" [11/02/2006 07:36 AM] C:\Users\Andy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ Adobe Gamma.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [3/16/2005 7:16:50 PM] CPUCooL.lnk - C:\Program Files\CPUCooL\CPUCooL.exe [1/3/2005 10:50:30 AM] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe [10/23/2006 3:48:20 AM] Adobe Reader Synchronizer.lnk - C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe [10/23/2006 2:01:50 AM] [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"=2 (0x2) [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgwlntf] avgwlntf.dll 09/27/2007 03:15 AM 9216 C:\Windows\System32\avgwlntf.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppInfo] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\KeyIso] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NTDS] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ProfSvc] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sacsvr] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SWPRV] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TabletInputService] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TBS] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TrustedInstaller] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\VDS] @="Service" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgr.sys] @="Driver" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\volmgrx.sys] @="Driver" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{533C5B84-EC70-11D2-9505-00C04F79DEAF}] @="Volume shadow copy" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{6BDD1FC1-810F-11D0-BEC7-08002BE2092F}] @="IEEE 1394 Bus host controllers" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D48179BE-EC20-11D1-B6B8-00C04FA372A7}] @="SBP2 IEEE 1394 Devices" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{D94EE5D8-D189-4994-83D2-F68D7D41B0E6}] @="SecurityDevices" [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] LocalSystemNetworkRestricted hidserv UxSms WdiSystemHost Netman trkwks AudioEndpointBuilder WUDFSvc irmon sysmain IPBusEnum dot3svc PcaSvc EMDMgmt TabletInputService wlansvc WPDBusEnum [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{2a5debe2-6cc9-11dc-9a4d-806e6f6e6963}] AutoRun\command- E:\USLaunch.exe [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{22d6f312-b0f6-11d0-94ab-0080c74c7e95}] C:\Windows\system32\unregmp2.exe /ShowWMP [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{6BF52A52-394A-11d3-B153-00C04F79FAA6}] %SystemRoot%\system32\unregmp2.exe /FirstLogon /Shortcuts /RegBrowsers /ResetMUI -- End of Deckard's System Scanner: finished at 2007-10-24 00:26:42 ------------ As far as previous actions I took, I've done full scans with AVG programs (spyware, virus and rootkit, the free versions) and for other actions I've taken you an read the topic I linked to above. Needless to say, those scans resulted in no infections. Also, the 5 steps you guys gave turned up nothing as well, as far as I can tell. Thanks so much for any help you guys can give! I appreciate you all for taking your time out and helping people in these bad situations like mine! You are great people! ![]() dai did say that you are pretty busy over here, so I understand if it takes some time to help me out. Last edited by Ried; 11-05-2007 at 09:23 PM. Reason: removed code tags from log--pain to read like that ;) |
|
|
| Important Information |
|
Join the #1 Tech Support Forum Today - It's Totally Free!
TechSupportForum.com is a leading support website for your computer needs. We offer free, friendly and personalized computer support. Why pay to have your computer fixed when you can do it for free. Join TechSupportforum.com Today - Click Here |
| Thread Tools | |
|
|