Tumbleweed88
-
Posts
52 -
Joined
-
Last visited
Content Type
Events
Profiles
Forums
Posts posted by Tumbleweed88
-
-
thats correct
-
Yes, I can run a full scan in Safe Mode
-
here is the file you wanted
-
I ran the sfc /scannow . I saw lots of things I didn't understand. Mostly in the middle of it, it said a lot of "NO REPAIR OPERATIONS ". Not sure what to do from here ???
-
All green blocks
-
Again, while I'm waiting for some more instructions to try to try on this laptop, are there any good programs that someone could use after someone cleans a bunch of useless or unwanted programs that would be safe to clean out any stray files that are left over after removal? I do use Ccleaner but is there a better program or 2 to use to clean out stray, useless files?
-
Stop codes this time were :
Stop: 0x0000007A (then these change) (0xC0218E14, 0xC00000185, 0x0C2DE860, 0x86385012
ataport.sys- Address 86385012 base at 86371000,Datestamp 49e10eee
-
I did as ya said to do with the batch file and MBAM ran about a minute and a half and then blue screened.
-
struggling with some meds. i will do my best to get your instructions done tonite. sorry fore the relay, surgery has taken quite a tole on me.
-
Deleted Eusing Registry Cleaner. Is there another program that will clean out a registry after unistalling a bunch of programs, to get rid of straggling files?
I ran MABM for 6 minutes and it blue screened.
-
Ran chkdsk /r, rebooted, updated MBAN and it ran 6 and a half minutes before it blue screened.
-
Surgery went well, and I'm back to slowley working on this computer. I downloaded rkill.exe onto my thunb drive just as I have done with everything else that I've downloaded from all these sites, I put it on the oriblem computer, ran it and will post that log at the bottom of this post. But I got the same results. It ran 5 minutes and then it blue screened. here is the rkill.exe file:
Rkill 2.4.5 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2012 BleepingComputer.com
More Information about Rkill can be found at this link:
http://www.bleepingcomputer.com/forums/topic308364.html
Program started at: 11/23/2012 04:29:39 PM in x86 mode.
Windows Version: Windows Vista Home Basic Service Pack 2
Checking for Windows services to stop:
* No malware services found to stop.
Checking for processes to terminate:
* C:\Users\Kenneth\AppData\Local\Temp\RtkBtMnt.exe (PID: 3300) [uP-HEUR]
* C:\Users\Kenneth\AppData\Local\Temp\RtkBtMnt.exe (PID: 3300) [T-HEUR]
2 proccesses terminated!
Checking Registry for malware related settings:
* No issues found in the Registry.
Resetting .EXE, .COM, & .BAT associations in the Windows Registry.
Performing miscellaneous checks:
* No issues found.
Checking Windows Service Integrity:
* Windows Defender (WinDefend) is not Running.
Startup Type set to: Manual
* msiserver => %systemroot%\system32\msiexec.exe /V [incorrect ImagePath]
Searching for Missing Digital Signatures:
* No issues found.
Checking HOSTS File:
* HOSTS file entries found:
127.0.0.1 localhost
Program finished at: 11/23/2012 04:30:18 PM
Execution time: 0 hours(s), 0 minute(s), and 38 seconds(s)
-
I'm recovering out of state. I will be back to Tn and back to working on the computer in about a week.
-
I'm going through back surgery in Franklin, TN. tomorrow morning. I will be away from my computer for at least a week. Please come up with some good suggestions for fixing this computer, please. I will let ya know when I get back on here. Thank you for all your help so far.
-
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-05.02)
.
Microsoft® Windows Vista™ Home Basic
Boot Device: \Device\HarddiskVolume2
Install Date: 1/21/2008 2:49:45 PM
System Uptime: 11/15/2012 12:52:34 PM (0 hours ago)
.
Motherboard: Acer | | Acadia
Processor: Intel® Celeron® CPU 540 @ 1.86GHz | uPGA-478 | 1868/133mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 33 GiB total, 9.256 GiB free.
D: is FIXED (NTFS) - 32 GiB total, 32.127 GiB free.
E: is CDROM ()
F: is Removable
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP562: 11/10/2012 11:42:03 AM - Scheduled Checkpoint
RP563: 11/12/2012 11:37:34 AM - ComboFix created restore point
RP564: 11/12/2012 4:38:50 PM - Tweaking.com - Windows Repair
RP566: 11/14/2012 12:41:42 PM - SPTD setup V1.83
RP568: 11/14/2012 12:50:01 PM - SPTD setup V1.83
RP570: 11/14/2012 12:57:06 PM - SPTD setup V1.83
.
==== Installed Programs ======================
.
Acer Arcade
Acer Assist
Acer eDataSecurity Management
Acer eLock Management
Acer Empowering Technology
Acer eNet Management
Acer ePower Management
Acer ePresentation Management
Acer eSettings Management
Acer Mobility Center Plug-In
Acer Registration
Acer ScreenSaver
Acer Tour
Activation Assistant for the 2007 Microsoft Office suites
Adobe Flash Player 11 ActiveX
Adobe Reader 8.1.3
Agere Systems HDA Modem
ALPS Touch Pad Driver
AusLogics Disk Defrag
avast! Free Antivirus
Bejeweled 2 Deluxe
Canon MP280 series MP Drivers
CCleaner (remove only)
Eusing Free Registry Cleaner
Google Chrome
Google Update Helper
HiJackThis
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Intel® Graphics Media Accelerator Driver
Java 6 Update 17
LightScribe 1.4.142.1
Malwarebytes Anti-Malware version 1.65.1.1000
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4 Client Profile
Microsoft Office Excel MUI (English) 2007
Microsoft Office Home and Student 2007
Microsoft Office Live Meeting 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Works
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
PowerProducer 3.72
Realtek High Definition Audio Driver
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2604111)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2657424)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)
Spybot - Search & Destroy
SpywareBlaster 4.3
SUPERAntiSpyware
TimeLineRemove 0.9
Tweaking.com - Windows Repair (All in One)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
Update for Office 2007 (KB934528)
Update for Office System 2007 Setup (KB929722)
VLC media player 1.1.0
Yahoo! BrowserPlus 2.9.8
Yahoo! Messenger
Yahoo! Software Update
Yahoo! Toolbar
.
==== Event Viewer Messages From Past Week ========
.
11/8/2012 12:07:18 AM, Error: EventLog [6008] - The previous system shutdown at 11:56:47 PM on 11/7/2012 was unexpected.
11/15/2012 12:54:36 PM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the LanmanServer service.
11/15/2012 12:54:36 PM, Error: Service Control Manager [7001] - The Computer Browser service depends on the Server service which failed to start because of the following error: The service did not respond to the start or control request in a timely fashion.
11/15/2012 12:54:36 PM, Error: Service Control Manager [7000] - The Server service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
11/14/2012 1:36:15 PM, Error: EventLog [6008] - The previous system shutdown at 1:33:52 PM on 11/14/2012 was unexpected.
11/14/2012 1:28:03 PM, Error: EventLog [6008] - The previous system shutdown at 1:21:11 PM on 11/14/2012 was unexpected.
11/12/2012 7:33:44 PM, Error: EventLog [6008] - The previous system shutdown at 7:31:41 PM on 11/12/2012 was unexpected.
11/12/2012 5:42:58 PM, Error: EventLog [6008] - The previous system shutdown at 5:28:37 PM on 11/12/2012 was unexpected.
11/12/2012 5:09:45 PM, Error: EventLog [6008] - The previous system shutdown at 5:08:29 PM on 11/12/2012 was unexpected.
11/12/2012 11:49:32 AM, Error: Service Control Manager [7030] - The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.
11/12/2012 11:38:44 AM, Error: Service Control Manager [7034] - The MobilityService service terminated unexpectedly. It has done this 1 time(s).
11/12/2012 11:36:49 AM, Error: Service Control Manager [7034] - The XAudioService service terminated unexpectedly. It has done this 1 time(s).
11/12/2012 1:36:17 PM, Error: EventLog [6008] - The previous system shutdown at 1:32:52 PM on 11/12/2012 was unexpected.
11/12/2012 1:16:32 PM, Error: EventLog [6008] - The previous system shutdown at 1:14:21 PM on 11/12/2012 was unexpected.
11/11/2012 6:04:16 PM, Error: atapi [11] - The driver detected a controller error on \Device\Ide\IdePort2.
.
==== End Of File ===========================
-
DDS (Ver_2012-11-05.02) - NTFS_x86
Internet Explorer: 9.0.8112.16450
Run by Kenneth at 12:56:42 on 2012-11-15
Microsoft® Windows Vista™ Home Basic 6.0.6002.2.1252.1.1033.18.1013.151 [GMT -6:00]
.
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\SLsvc.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
C:\Windows\system32\agrsmsvc.exe
C:\Acer\ALaunch\ALaunchSvc.exe
C:\Windows\RtHDVCpl.exe
C:\Acer\Empowering Technology\eDataSecurity\eDSLoader.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLCapSvc.exe
C:\Program Files\Acer\Acer Arcade\Kernel\CLML_NTService\CLMLServer.exe
C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe
C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
C:\Acer\Empowering Technology\eNet\eNet Service.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Common Files\Motive\McciCMService.exe
C:\Acer\Mobility Center\MobilityService.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\DRIVERS\xaudio.exe
C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLSched.exe
C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe
C:\Acer\Empowering Technology\ePower\ePowerSvc.exe
C:\Windows\system32\wbem\WmiPrvSE.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\System32\mobsync.exe
C:\Users\Kenneth\AppData\Local\Temp\RtkBtMnt.exe
C:\Program Files\AVAST Software\Avast\setup\avast.setup
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\wbem\WmiPrvSE.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://mail.google.com/
uSearchMigratedDefaultURL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
mStart Page = hxxp://en.us.acer.yahoo.com
uSearchURL,(Default) = hxxp://us.rd.yahoo.com/customize/ycomp/defaults/su/*http://www.yahoo.com
BHO: &Yahoo! Toolbar Helper: {02478D38-C3F9-4efb-9B51-7695ECA05670} - c:\program files\yahoo!\companion\installs\cpn1\yt.dll
BHO: ShowBarObj Class: {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - c:\windows\system32\ActiveToolBand.dll
BHO: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
BHO: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: SingleInstance Class: {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - c:\program files\yahoo!\companion\installs\cpn0\YTSingleInstance.dll
TB: Acer eDataSecurity Management: {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - c:\windows\system32\eDStoolbar.dll
TB: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
TB: Yahoo! Toolbar: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - c:\program files\yahoo!\companion\installs\cpn1\yt.dll
mRun: [RtHDVCpl] RtHDVCpl.exe
mRun: [eDataSecurity Loader] c:\acer\empowering technology\edatasecurity\eDSloader.exe
mRun: [Apoint] c:\program files\apoint2k\Apoint.exe
mRun: [avast] "c:\program files\avast software\avast\avastUI.exe" /nogui
uPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: BindDirectlyToPropertySetStorage = dword:0
mPolicies-Explorer: NoDrives = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {4B54A9DE-EF1C-4EBE-A328-7C28EA3B433A} - hxxp://quickscan.bitdefender.com/qsax/qsax.cab
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{8E28C7F8-15AB-45F2-8A8F-BB7E65AC0FEB} : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{FBC7A79D-EB01-474E-8F43-C9A92D8CA7D1} : DHCPNameServer = 172.16.0.1
Notify: igfxcui - igfxdev.dll
LSA: Security Packages = kerberos msv1_0 schannel wdigest tspkg
.
============= SERVICES / DRIVERS ===============
.
R?2 FontCache;Windows Font Cache Service;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [2009-8-3 21504]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2011-11-19 612184]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2009-9-21 337880]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2011-7-22 12880]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2011-7-12 67664]
R2 !SASCORE;SAS Core Service;c:\program files\superantispyware\SASCore.exe [2012-7-11 116608]
R2 ALaunchService;ALaunch Service;c:\acer\alaunch\ALaunchSvc.exe [2007-7-31 50688]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2009-9-21 20696]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2009-9-21 57688]
R2 avast! Antivirus;avast! Antivirus;c:\program files\avast software\avast\AvastSvc.exe [2011-11-19 44768]
R3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2007-7-31 179712]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [2012-11-12 40776]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
.
=============== Created Last 30 ================
.
2012-11-12 23:25:43 40776 -c--a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2012-11-12 22:56:03 303616 -c--a-w- C:\SetACL.exe
2012-11-12 22:41:35 290304 -c--a-w- C:\subinacl.exe
2012-11-12 22:39:16 -------- dc----w- C:\RegBackup
2012-11-12 22:35:37 -------- dc----w- C:\Tweaking.com_Windows_Repair_Logs
2012-11-12 22:35:25 -------- dc----w- c:\program files\Tweaking.com
2012-11-12 17:53:26 -------- dc----w- c:\users\kenneth\appdata\local\temp
2012-11-12 17:51:39 -------- dcsh--w- C:\$RECYCLE.BIN
2012-11-09 22:42:13 6918632 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{86fe1d82-eb00-423e-bd2a-47d6774485d0}\mpengine.dll
2012-11-08 05:53:08 -------- dc----w- c:\users\kenneth\appdata\roaming\Malwarebytes
2012-11-08 05:52:56 -------- dc----w- c:\programdata\Malwarebytes
2012-11-08 05:52:33 22856 -c--a-w- c:\windows\system32\drivers\mbam.sys
2012-11-08 05:52:33 -------- dc----w- c:\program files\Malwarebytes' Anti-Malware
2012-11-08 00:14:27 -------- dc----w- C:\FRST
2012-11-06 22:18:46 6918632 ----a-w- c:\programdata\microsoft\windows defender\definition updates\updates\mpengine.dll
2012-11-06 21:55:34 98816 -c--a-w- c:\windows\sed.exe
2012-11-06 21:55:34 256000 -c--a-w- c:\windows\PEV.exe
2012-11-06 21:55:34 208896 -c--a-w- c:\windows\MBR.exe
2012-11-06 18:14:16 388096 -c--a-r- c:\users\kenneth\appdata\roaming\microsoft\installer\{45a66726-69bc-466b-a7a4-12fcba4883d7}\HiJackThis.exe
2012-11-06 18:14:13 -------- dc----w- c:\program files\Trend Micro
2012-11-04 01:49:37 -------- dc----w- c:\programdata\Spybot - Search & Destroy
2012-11-04 01:49:37 -------- dc----w- c:\program files\Spybot - Search & Destroy
2012-11-03 06:56:07 -------- dc----w- c:\program files\Eusing Free Registry Defrag
2012-11-03 06:50:21 -------- dc----w- c:\program files\Eusing Free Registry Cleaner
2012-11-03 00:56:16 -------- dc----w- c:\users\kenneth\appdata\roaming\SUPERAntiSpyware.com
2012-11-03 00:55:50 -------- dc----w- c:\programdata\SUPERAntiSpyware.com
2012-11-03 00:55:50 -------- dc----w- c:\program files\SUPERAntiSpyware
2012-10-31 19:22:11 -------- dc----w- c:\programdata\D852ADD2F4338B3B0000D851D58690AD
.
==================== Find3M ====================
.
2012-10-09 21:35:34 73656 -c--a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-10-09 21:35:34 696760 -c--a-w- c:\windows\system32\FlashPlayerApp.exe
2012-09-13 13:28:08 2048 -c--a-w- c:\windows\system32\tzres.dll
2012-08-29 11:27:41 3602816 -c--a-w- c:\windows\system32\ntkrnlpa.exe
2012-08-29 11:27:41 3550080 -c--a-w- c:\windows\system32\ntoskrnl.exe
2012-08-24 15:53:29 172544 -c--a-w- c:\windows\system32\wintrust.dll
2012-08-24 06:59:17 1800704 -c--a-w- c:\windows\system32\jscript9.dll
2012-08-24 06:51:27 1129472 -c--a-w- c:\windows\system32\wininet.dll
2012-08-24 06:51:02 1427968 -c--a-w- c:\windows\system32\inetcpl.cpl
2012-08-24 06:47:26 142848 -c--a-w- c:\windows\system32\ieUnatt.exe
2012-08-24 06:47:12 420864 -c--a-w- c:\windows\system32\vbscript.dll
2012-08-24 06:43:58 2382848 -c--a-w- c:\windows\system32\mshtml.tlb
.
============= FINISH: 12:58:41.84 ===============
-
I tried to run MBAM again by doing a Quick Scan and it only ran 2 minutes and 27 seconds and I got the BSOD again.
-
Installed it, it wanted to update to version 1.83,so I updated it, rebooted, ran it again and it wanted to update again, updated it, rebooted....same thing. So I hit uninstall and got a warning that said.....This program will remove SCSI Pass Through Direct(SPTD) layer from yer computer. I hit uninstall, rebooted and then updated and ran MBAM for a Quick Scan and it worked
The I tried to run MBAM in a Full Scan and it ran 2 and a half minutes. 
Malwarebytes Anti-Malware 1.65.1.1000
Database version: v2012.11.14.04
Windows Vista Service Pack 2 x86 NTFS
Internet Explorer 9.0.8112.16421
Kenneth :: HOME-PC [administrator]
11/14/2012 1:10:51 PM
mbam-log-2012-11-14 (13-10-51).txt
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 189864
Time elapsed: 7 minute(s), 57 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
(end)
-
My system runs perfect besides MBAM. I even ran Spybot Search and Destroy, yesterday, just to see if it would run all the way through and it ran perfect. Everything is perfect except MBAM won't run more than 3 minutes.
-
I tried to run MBAM in Quick Scan and the scan lasted 2 minutes and 11 seconds before it blue screened
-
I always run full scans.
-
Sorry, I reset my router and MBAM updated fine. But MBAM still blue screens after running less than 3 minutes
-
Ran the program, rebooted, tried to update MBAM and it gave an error. I tried to run a scan and it ran for a little over 2 minutes before I got the BSOD.
When I try to update MBAM, I get an error that says....... An error has occured. Please report this issure to our support team(include the content of all error message(s) and codes in your submission)
Program_error_updating(0,0, Host not found)
-
I went to run MBAM, updated it and it ran about 3 minutes and then gave me a blue screen that didn't have and words on it. I rebooted, and tried again but now MBAM wouldn't update. I tried to run it but it only ran about 2 min.
MBAM causing BSOD
in Resolved Malware Removal Logs
Posted
Thank you for ALL your gracious help. I have decided to speed it up and just pust a fresh system on the laptop. Thank you again for all your help !!!!