Go Back   Tech Support Forum > Security Center > Virus/Trojan/Spyware Help > Resolved HJT Threads

User Tag List

Virus - Cannot visit anti-virus sites or Microsoft

This is a discussion on Virus - Cannot visit anti-virus sites or Microsoft within the Resolved HJT Threads forums, part of the Tech Support Forum category. Hello, I normally try and resolve these problems by myself, but I have run into a wall with this one.


 
 
Thread Tools Search this Thread
Old 05-23-2012, 03:13 PM   #1
Registered Member
 
Join Date: May 2012
Posts: 2
OS: XP Home



Hello,

I normally try and resolve these problems by myself, but I have run into a wall with this one. I have tried running Malwarebytes, it picked up a few things, but none of them cured the problem.

I am running Windows XP Home Edition Service Pack 3. I have access to my genuine Windows CD.

I cannot open any anti-virus websites or Microsoft related websites. Sites such as bleepingcomputer, malwarebytes etc. are all blocked. Both Firefox and IE 8 have this problem.

I also one day turned the computer on to have my searchbar reset to a Babylon search engine? I also have the problem of text being highlighted on websites and when you mouse over them they are links to advertisments.

Thanks in advance for any help.

Here is my DDS txt log:

.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_31
Run by Neris at 21:28:20 on 2012-05-23
Microsoft Windows XP Home Edition 5.1.2600.3.1252.61.1033.18.2030.1188 [GMT 9.5:30]
.
AV: AVG Internet Security 2011 *Enabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
FW: AVG Firewall *Disabled*
.
============== Running Processes ===============
.
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
C:\WINDOWS\system32\svchost -k rpcss
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\acs.exe
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Logitech\Gaming Software\LWEMon.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Documents and Settings\Neris\My Documents\ash\iTunesHelper.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\NETGEAR\WN111v2\WN111V2.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\svchost.exe -k bthsvcs
C:\Program Files\iRacing\iRacingService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Documents and Settings\Neris\My Documents\ash\iPod\bin\iPodService.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\HP\Digital Imaging\Product Assistant\bin\hprblog.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Neris\Desktop\gmer_1.0.15.15641.exe
C:\WINDOWS\System32\mshta.exe
C:\WINDOWS\System32\mshta.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
mWinlogon: Userinit=c:\windows\system32\userinit.exe,c:\documents and settings\neris\local settings\application data\uwweaejo\ddoqnepc.exe,
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: BitComet Helper: {39f7e362-828a-4b5a-bcaf-5b79bfdfea60} - c:\program files\bitcomet\tools\BitCometBHO_1.5.4.11.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\progra~1\spybot~1\SDHelper.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Java(tm) Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [DdoQnepc] c:\documents and settings\neris\local settings\application data\uwweaejo\ddoqnepc.exe
uRun: [SpybotSD TeaTimer] c:\program files\spybot - search & destroy\TeaTimer.exe
uRun: [SUPERAntiSpyware] c:\program files\superantispyware\SUPERAntiSpyware.exe
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [Start WingMan Profiler] c:\program files\logitech\gaming software\LWEMon.exe /noui
mRun: [RTHDCPL] RTHDCPL.EXE
mRun: [RemoteControl] "c:\program files\cyberlink\powerdvd\PDVDServ.exe"
mRun: [QuickTime Task] "c:\program files\mpcstar\codecs\quicktime\qttask.exe" -atboottime
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [nwiz] c:\program files\nvidia corporation\nview\nwiz.exe /installquiet
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [LanguageShortcut] "c:\program files\cyberlink\powerdvd\language\Language.exe"
mRun: [iTunesHelper] "c:\documents and settings\neris\my documents\ash\iTunesHelper.exe"
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
mRun: [Alcmtr] ALCMTR.EXE
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 8.0\reader\Reader_sl.exe"
mRun: [TrojanScanner] c:\program files\trojan remover\Trjscan.exe /boot
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\hpdigi~1.lnk - c:\program files\hp\digital imaging\bin\hpqtra08.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\micros~1.lnk - c:\program files\microsoft office\office10\OSA.EXE
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\netgea~1.lnk - c:\program files\netgear\wn111v2\WN111V2.exe
mPolicies-system: EnableLUA = 0 (0x0)
IE: {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - c:\program files\pokerstars\PokerStarsUpdate.exe
IE: {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://c:\program files\bitcomet\tools\BitCometBHO_1.5.4.11.dll/206
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\progra~1\spybot~1\SDHelper.dll
Trusted Zone: microsoft.com\www
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1224915340839
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
TCP: DhcpNameServer = 192.168.0.1
TCP: Interfaces\{9A44D6CB-08A3-4341-BF7B-01D6319FE3DC} : DhcpNameServer = 192.168.0.1
Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.DLL
Notify: igfxcui - igfxdev.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
LSA: Notification Packages = scecli scecli
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\neris\application data\mozilla\firefox\profiles\fxjph2zg.default\
FF - prefs.js: browser.search.selectedEngine - Search the web (Babylon)
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com.au/
FF - prefs.js: keyword.URL - hxxp://search.babylon.com/?affID=112477&tt=100512_1_&babsrc=KW_ss&mntrId=48d5436d000000000000001cc01b8d52&q=
FF - prefs.js: network.proxy.ftp - proxy.iprimus.com.au
FF - prefs.js: network.proxy.ftp_port - 8080
FF - prefs.js: network.proxy.gopher - proxy.iprimus.com.au
FF - prefs.js: network.proxy.gopher_port - 8080
FF - prefs.js: network.proxy.http - proxy.iprimus.com.au
FF - prefs.js: network.proxy.http_port - 8080
FF - prefs.js: network.proxy.socks - proxy.iprimus.com.au
FF - prefs.js: network.proxy.socks_port - 8080
FF - prefs.js: network.proxy.ssl - proxy.iprimus.com.au
FF - prefs.js: network.proxy.ssl_port - 8080
FF - prefs.js: network.proxy.type - 4
FF - component: c:\documents and settings\neris\application data\mozilla\firefox\profiles\fxjph2zg.default\extensions\{b042753d-f57e-4e8e-a01b-7379a6d4cefb}\components\IBitCometExtension3.dll
FF - plugin: c:\documents and settings\neris\application data\facebook\npfbplugin_1_0_1.dll
FF - plugin: c:\documents and settings\neris\application data\facebook\npfbplugin_1_0_3.dll
FF - plugin: c:\documents and settings\neris\application data\mozilla\firefox\profiles\fxjph2zg.default\extensions\[email protected]\plugins\NP_2020Player_IKEA.dll
FF - plugin: c:\documents and settings\neris\my documents\ash\mozilla plugins\npitunes.dll
FF - plugin: c:\program files\java\jre6\bin\plugin2\npdeployJava1.dll
FF - plugin: c:\program files\java\jre6\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npdeployJava1.dll
FF - plugin: c:\program files\mpcstar\codecs\quicktime\plugins\npqtplugin.dll
FF - plugin: c:\program files\mpcstar\codecs\quicktime\plugins\npqtplugin2.dll
FF - plugin: c:\program files\mpcstar\codecs\quicktime\plugins\npqtplugin3.dll
FF - plugin: c:\program files\mpcstar\codecs\quicktime\plugins\npqtplugin4.dll
FF - plugin: c:\program files\mpcstar\codecs\quicktime\plugins\npqtplugin5.dll
FF - plugin: c:\program files\mpcstar\codecs\quicktime\plugins\npqtplugin6.dll
FF - plugin: c:\program files\mpcstar\codecs\quicktime\plugins\npqtplugin7.dll
FF - plugin: c:\program files\mpcstar\codecs\real\browser\plugins\nppl3260.dll
FF - plugin: c:\program files\mpcstar\codecs\real\browser\plugins\nprpjplug.dll
.
---- FIREFOX POLICIES ----
FF - user.js: network.cookie.cookieBehavior - 0
FF - user.js: privacy.clearOnShutdown.cookies - false
FF - user.js: security.warn_viewing_mixed - false
FF - user.js: security.warn_viewing_mixed.show_once - false
FF - user.js: security.warn_submit_insecure - false
FF - user.js: security.warn_submit_insecure.show_once - false
FF - user.js: extensions.BabylonToolbar_i.babTrack - affID=112477&tt=100512_1_
FF - user.js: extensions.BabylonToolbar_i.babExt -
FF - user.js: extensions.BabylonToolbar_i.srcExt - ss
FF - user.js: extensions.BabylonToolbar_i.id - 48d5436d000000000000001cc01b8d52
FF - user.js: extensions.BabylonToolbar_i.hardId - 48d5436d000000000000001cc01b8d52
FF - user.js: extensions.BabylonToolbar_i.instlDay - 15476
FF - user.js: extensions.BabylonToolbar_i.vrsn - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsni - 1.5.3.17
FF - user.js: extensions.BabylonToolbar_i.vrsnTs - 1.5.3.1718:03:59
FF - user.js: extensions.BabylonToolbar_i.prtnrId - babylon
FF - user.js: extensions.BabylonToolbar_i.prdct - BabylonToolbar
FF - user.js: extensions.BabylonToolbar_i.aflt - babsst
FF - user.js: extensions.BabylonToolbar_i.smplGrp - none
FF - user.js: extensions.BabylonToolbar_i.tlbrId - base
FF - user.js: extensions.BabylonToolbar_i.instlRef - sst
.
============= SERVICES / DRIVERS ===============
.
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2011-7-23 12880]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2011-7-13 67664]
R2 !SASCORE;SAS Core Service;c:\program files\superantispyware\SASCore.exe [2011-8-12 116608]
R2 iRacingService;iRacing.com Helper Service;c:\program files\iracing\iRacingService.exe [2011-7-31 516264]
R3 JSWSCIMD;jswscimd Service;c:\windows\system32\drivers\jswscimd.sys [2008-10-1 57440]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda32.sys [2011-7-31 100456]
R4 Micorsoft Windows Service;Micorsoft Windows Service;\??\c:\docume~1\neris\locals~1\temp\krpxnblr.sys --> c:\docume~1\neris\locals~1\temp\krpxnblr.sys [?]
S1 dxysrbsa;dxysrbsa;\??\c:\windows\system32\drivers\dxysrbsa.sys --> c:\windows\system32\drivers\dxysrbsa.sys [?]
S3 DNINDIS5;DNINDIS5 NDIS Protocol Driver;c:\windows\system32\DNINDIS5.sys [2003-7-24 17149]
S3 jswpsapi;Jumpstart Wifi Protected Setup;c:\program files\netgear\wn111v2\jswpsapi.exe [2008-2-27 360547]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-5-23 22344]
S3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\mozilla maintenance service\maintenanceservice.exe [2012-5-3 129976]
S3 WN111v2;NETGEAR WN111v2 USB2.0 Wireless Card Service;c:\windows\system32\drivers\WN111v2.sys [2009-1-14 458752]
.
=============== Created Last 30 ================
.
2012-05-23 10:28:32 -------- d-----w- C:\TDSSKiller_Quarantine
2012-05-23 09:33:00 -------- d-----w- c:\documents and settings\neris\application data\SUPERAntiSpyware.com
2012-05-23 09:32:37 -------- d-----w- c:\program files\SUPERAntiSpyware
2012-05-23 09:32:37 -------- d-----w- c:\documents and settings\all users\application data\SUPERAntiSpyware.com
2012-05-23 08:57:24 -------- d-----w- c:\program files\Spybot - Search & Destroy
2012-05-23 08:57:24 -------- d-----w- c:\documents and settings\all users\application data\Spybot - Search & Destroy
2012-05-23 08:52:15 -------- d-----w- c:\program files\CCleaner
2012-05-23 07:43:39 22344 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-05-23 07:43:39 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2012-05-23 06:43:28 77312 ----a-w- c:\windows\system32\ztvunace26.dll
2012-05-23 06:43:28 75264 ----a-w- c:\windows\system32\unacev2.dll
2012-05-23 06:43:28 69632 ----a-w- c:\windows\system32\ztvcabinet.dll
2012-05-23 06:43:28 598528 ----a-w- c:\windows\system32\ztv7z.dll
2012-05-23 06:43:28 178176 ----a-w- c:\windows\system32\ztvunrar39.dll
2012-05-23 06:43:28 162304 ----a-w- c:\windows\system32\ztvunrar36.dll
2012-05-23 06:43:28 153088 ----a-w- c:\windows\system32\UNRAR3.dll
2012-05-23 06:43:28 -------- d-----w- c:\program files\Trojan Remover
2012-05-23 06:43:28 -------- d-----w- c:\documents and settings\neris\application data\Simply Super Software
2012-05-23 06:43:28 -------- d-----w- c:\documents and settings\all users\application data\Simply Super Software
2012-05-23 06:05:12 -------- d-----w- c:\documents and settings\all users\application data\Blizzard Entertainment
2012-05-23 06:01:01 -------- d-----w- c:\documents and settings\all users\application data\Battle.net
2012-05-21 05:49:54 -------- d-----w- c:\windows\pss
2012-05-20 05:42:20 -------- d-----w- c:\program files\common files\Blizzard Entertainment
2012-05-16 08:34:06 -------- d-----w- c:\documents and settings\all users\application data\Premium
2012-05-16 08:33:28 -------- d-----w- c:\documents and settings\all users\application data\InstallMate
2012-05-09 02:32:34 -------- d-----w- c:\documents and settings\neris\local settings\application data\uwweaejo
2012-05-09 02:32:32 85864 ----a-w- c:\documents and settings\neris\ms.exe
2012-05-03 09:02:49 -------- d-----w- c:\program files\Mozilla Maintenance Service
2012-05-03 09:02:46 157352 ----a-w- c:\program files\mozilla firefox\maintenanceservice_installer.exe
2012-05-03 09:02:46 129976 ----a-w- c:\program files\mozilla firefox\maintenanceservice.exe
2012-04-26 06:02:24 476904 ----a-w- c:\program files\mozilla firefox\plugins\npdeployJava1.dll
2012-04-26 06:02:24 472808 ----a-w- c:\windows\system32\deployJava1.dll
.
==================== Find3M ====================
.
2012-04-26 06:02:16 73728 ----a-w- c:\windows\system32\javacpl.cpl
2012-04-11 13:14:41 2148352 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-04-11 13:12:06 1862272 ----a-w- c:\windows\system32\win32k.sys
2012-04-11 12:35:51 2026496 ----a-w- c:\windows\system32\ntkrnlpa.exe
2012-03-01 11:01:32 916992 ----a-w- c:\windows\system32\wininet.dll
2012-03-01 11:01:32 43520 ----a-w- c:\windows\system32\licmgr10.dll
2012-03-01 11:01:32 1469440 ------w- c:\windows\system32\inetcpl.cpl
2012-02-29 14:10:16 177664 ----a-w- c:\windows\system32\wintrust.dll
2012-02-29 14:10:16 148480 ----a-w- c:\windows\system32\imagehlp.dll
2012-02-29 12:17:40 385024 ----a-w- c:\windows\system32\html.iec
.
============= FINISH: 21:29:36.23 ===============

Sorry I couldn't use anything but win rar, i don't know how to change that.
Attached Files
File Type: zip attach.zip (10.6 KB, 15 views)
Befanco is offline  
Sponsored Links
Advertisement
 
Old 05-24-2012, 05:23 AM   #2
Registered Member
 
Join Date: May 2012
Posts: 2
OS: XP Home



Please delete I am reinstalling windows

Thanks
Befanco is offline  
Old 05-24-2012, 09:40 PM   #3
TSF Security Manager
Emeritus
 
Ried's Avatar

Microsoft Most Valuable Professional
 
Join Date: Jan 2005
Location: Ohio
Posts: 42,837
OS: WinXP Home, Vista, Windows 7 64bit



Thanks for letting us know, Befanco. Best wishes to you.
__________________
Member of UNITE since 2006

Microsoft MVP - 2010, 2011, 2012, 2013, 2014, 2015

"It is one life whether we spend it laughing or weeping." "Take the time to laugh--it is the music of the soul."
Ried is offline  
 

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Similar Threads
Thread Thread Starter Forum Replies Last Post
Rootkit Zero Access Trojan / Virus
System Dell Duo inspiron 1090 Windows 7 Home Premium Machine has been infected by above mentioned virus this was deduced by running task manager and the top process read something 778686798.123456.exe then browsing google to see what I could find it couldn't be stopped and it has disabled all virus...
bigfoot57 Resolved HJT Threads 78 11-30-2011 03:31 PM
PLEASE HELP Stubborn Malware
Hey, early this week these messages from a fake program called Security Guard 2012 started popping up, it wanted me to pay for it and it made fake blue screens and reboot screens..it also redirected sites sometimes, didn't let me use certain programs, wouldn't let McAfee Real-Time scanning stay on...
Mike_Jack's_Gal Inactive Malware Help Topics 16 10-28-2011 05:17 PM
Rootkit problem - I posted log!
I keep getting BSODs after Windows startup in normal mode one was with "ataport.sys" and some others with "irql_not_less_or_equal" I believe it is some kind of rootkit or virus since I just got a new pair of memory which was memtested and it passed... I did this scan with DDS and GMER. As written...
Daniel089 Virus/Trojan/Spyware Help 46 09-04-2011 10:38 PM
Request for assistance cleaning up/out virus & bad image errors
Hi there. With the hope someone may be able to navigate me through a fix to restore this laptop to its pre "Windows XP Recovery" virus state, and the further hope I've not frustrated the solution process going too far ahead solo, here goes... My laptop is a newer Dell running Windows XP (I...
dagtagit Resolved HJT Threads 74 06-14-2011 06:40 PM
Infections / Malware / rundll32.exe error
My computer was last used by someone to download games and watch videos on the internet. The next thing I know, there were pop-ups. I am constantly getting these fake spyware removal pop ups. I tried going into control panel/add-remove programs and I get a 'rundll32.exe' error message. I used...
6one9 Resolved HJT Threads 54 05-16-2011 07:06 AM

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is on
Smilies are on
[IMG] code is on
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off


Post a Question


» Site Navigation
 > FAQ
  > 10.0.0.2
Powered by vBadvanced CMPS v3.2.3


All times are GMT -7. The time now is 12:43 PM.


Powered by vBulletin® Version 3.8.8
Copyright ©2000 - 2020, vBulletin Solutions, Inc.
vBulletin Security provided by vBSecurity v2.2.2 (Pro) - vBulletin Mods & Addons Copyright © 2020 DragonByte Technologies Ltd.
User Alert System provided by Advanced User Tagging v3.1.0 (Pro) - vBulletin Mods & Addons Copyright © 2020 DragonByte Technologies Ltd.
Copyright 2001 - 2018, Tech Support Forum

Windows 10 - Windows 7 - Windows XP - Windows Vista - Trojan Removal - Spyware Removal - Virus Removal - Networking - Security - Top Web Hosts