sc2racing Posted March 10, 2013 ID:655392 Share Posted March 10, 2013 Hi,I have spent many hours trying to fix my Toshiba running Windows 7. I had a vrius I was able to remove using MalwareBytes and HouseCall. Since then I have had a lot of problems with windows running correctly including Windows Update giving me different errors. I have figured out that I don't have BITS installed in Service.msc and any effort on my part to install it has failed. I welcome any help to get my computer back to normal. Thanks,mbam-check result log version: 2.0.0.1000Malwarebytes Version: REG_SZ 1.70.0.1100Date Log Created: 03/10/13Time Log Created: 01:16:58User Account type: Administrator64 bit Operating SystemProduct Name: REG_SZ Windows 7 Home PremiumCurrent Build Number: 7600Current Version Number: 6.1Current CSDVersion:Proxy Status: No proxy is SetProxy Server:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ ProxyServer REG_SZ proxy.cendant.com:8080Proxy Override:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ ProxyOverride REG_SZ <local>LAN Settings:=============only 'Automatically detect settings' is selectedSystemPartition:================HKEY_LOCAL_MACHINE\SYSTEM\Setup\ SystemPartition REG_SZ \Device\HarddiskVolume1Balloon Tips Status:====================EnabledTime Format Settings:=====================Should be: h:mm:ss tt AM PM :Currently:REG_SZ h:mm:ss ttREG_SZ AMREG_SZ PMREG_SZ :Language and Regional Settings:===============================ACP: Language is English (United States)MACCP: Language is English (United States)OEMCP: Language is English (United States)Startup Folders for Error_Expanding_Variables Check:====================================================All Users Startup Folder Exists.Current User's Startup Folder Exists.Terminal Services Status for (null) entries in PM logs and GetUserToken errors:===============================================================================TERMService:==============Type : 32State : 1 (The service is not running.) (State is stopped)WIN32_EXIT_CODE : 1077SERVICE_EXIT_CODE : 0CHECKPOINT : 0WAIT_HINT : 0TermService Start is set to: 3 (Manual Startup)Compatibility Flag Settings (Any MBAM file listings should be removed):=======================================================================HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\appCompatFlags\Layers C:\ProgramData\Best Buy pc app\ClickOnceUninstaller.exeREG_SZ VISTARTMHKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\appCompatFlags\Layers SIGN.MEDIA=22AF134C SETUP.EXE REG_SZ WIN98 640X480 SIGN.MEDIA=22AF134C AUTORUN.EXEREG_SZ WIN98 256COLOR 640X480 SIGN.MEDIA=3FD0 bowep\disk1\SETUP.EXEREG_SZ WINXPSP3 SIGN.MEDIA=34C32A0 SIMTOWER\SIMTOWER.EXEREG_SZ WINXPSP3 SIGN.MEDIA=399E0B SETUP.EXE REG_SZ WINXPSP3Malwarebytes Anti-Malware Shell Extension Block Check:======================================================MBAM Startup Entries:=====================HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunHKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnceHKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunHKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceService and Driver Status:========================== <--CAN NOT OPEN SC_HANDLE, SERVICE IS NOT RUNNING FOR: MBAMProtector <--CAN NOT OPEN SC_HANDLE, SERVICE IS NOT RUNNING FOR: MBAMService <--CAN NOT OPEN SC_HANDLE, SERVICE IS NOT RUNNING FOR: MBAMScheduler <--CAN NOT OPEN SC_HANDLE, SERVICE IS NOT RUNNING FOR: MBAMChameleonMBAMProtector Registry Values:==============================MBAMService Registry Values:============================MBAMScheduler Registry Values:==============================MBAM DLL's and Runtime Files:=============================HKEY_CLASSES_ROOT\vbAcceleratorSGrid6.vbalGrid (Default): REG_SZ vbAccelerator Grid ControlHKEY_CLASSES_ROOT\vbAcceleratorSGrid6.vbalGrid\Clsid (Default): REG_SZ {C5DA1F2B-B2BF-4DFC-BC9A-439133543A67}HKEY_CLASSES_ROOT\SSubTimer6.GSubclass (Default): REG_SZ SSubTimer6.GSubclassHKEY_CLASSES_ROOT\SSubTimer6.GSubclass\Clsid (Default): REG_SZ {71A27032-C7D8-11D2-BEF8-525400DFB47A}HKEY_CLASSES_ROOT\SSubTimer6.CTimer (Default): REG_SZ SSubTimer6.CTimerHKEY_CLASSES_ROOT\SSubTimer6.CTimer\Clsid (Default): REG_SZ {71A27034-C7D8-11D2-BEF8-525400DFB47A}HKEY_CLASSES_ROOT\SSubTimer6.ISubclass (Default): REG_SZ SSubTimer6.ISubclassHKEY_CLASSES_ROOT\SSubTimer6.ISubclass\Clsid (Default): REG_SZ {71A2702F-C7D8-11D2-BEF8-525400DFB47A}HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A2702F-C7D8-11D2-BEF8-525400DFB47A} (Default): REG_SZ SSubTimer6.ISubclassHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A2702F-C7D8-11D2-BEF8-525400DFB47A}\Implemented CategoriesHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A2702F-C7D8-11D2-BEF8-525400DFB47A}\Implemented Categories\{40FC6ED5-2438-11CF-A3DB-080036F12502}HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A2702F-C7D8-11D2-BEF8-525400DFB47A}\ProgID (Default): REG_SZ SSubTimer6.ISubclassHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A2702F-C7D8-11D2-BEF8-525400DFB47A}\ProgrammableHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A2702F-C7D8-11D2-BEF8-525400DFB47A}\TypeLib (Default): REG_SZ {71A2702D-C7D8-11D2-BEF8-525400DFB47A}HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A2702F-C7D8-11D2-BEF8-525400DFB47A}\VERSION (Default): REG_SZ 1.0HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27032-C7D8-11D2-BEF8-525400DFB47A} (Default): REG_SZ SSubTimer6.GSubclassHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27032-C7D8-11D2-BEF8-525400DFB47A}\Implemented CategoriesHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27032-C7D8-11D2-BEF8-525400DFB47A}\Implemented Categories\{40FC6ED5-2438-11CF-A3DB-080036F12502}HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27032-C7D8-11D2-BEF8-525400DFB47A}\InprocServer32 (Default): REG_SZ E:\Malwarebytes' Anti-Malware\ssubtmr6.dll ThreadingModel REG_SZ ApartmentHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27032-C7D8-11D2-BEF8-525400DFB47A}\ProgID (Default): REG_SZ SSubTimer6.GSubclassHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27032-C7D8-11D2-BEF8-525400DFB47A}\ProgrammableHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27032-C7D8-11D2-BEF8-525400DFB47A}\TypeLib (Default): REG_SZ {71A2702D-C7D8-11D2-BEF8-525400DFB47A}HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27032-C7D8-11D2-BEF8-525400DFB47A}\VERSION (Default): REG_SZ 1.0HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27034-C7D8-11D2-BEF8-525400DFB47A} (Default): REG_SZ SSubTimer6.CTimerHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27034-C7D8-11D2-BEF8-525400DFB47A}\Implemented CategoriesHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27034-C7D8-11D2-BEF8-525400DFB47A}\Implemented Categories\{40FC6ED5-2438-11CF-A3DB-080036F12502}HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27034-C7D8-11D2-BEF8-525400DFB47A}\InprocServer32 (Default): REG_SZ E:\Malwarebytes' Anti-Malware\ssubtmr6.dll ThreadingModel REG_SZ ApartmentHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27034-C7D8-11D2-BEF8-525400DFB47A}\ProgID (Default): REG_SZ SSubTimer6.CTimerHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27034-C7D8-11D2-BEF8-525400DFB47A}\ProgrammableHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27034-C7D8-11D2-BEF8-525400DFB47A}\TypeLib (Default): REG_SZ {71A2702D-C7D8-11D2-BEF8-525400DFB47A}HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27034-C7D8-11D2-BEF8-525400DFB47A}\VERSION (Default): REG_SZ 1.0HKEY_CLASSES_ROOT\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}HKEY_CLASSES_ROOT\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}\1.1 (Default): REG_SZ vbAccelerator VB6 SGrid Control 2.0HKEY_CLASSES_ROOT\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}\1.1\0HKEY_CLASSES_ROOT\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}\1.1\0\win32 (Default): REG_SZ E:\Malwarebytes' Anti-Malware\vbalsgrid6.ocxHKEY_CLASSES_ROOT\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}\1.1\FLAGS (Default): REG_SZ 2HKEY_CLASSES_ROOT\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}\1.1\HELPDIR (Default): REG_SZ E:\Malwarebytes' Anti-MalwareHKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}\1.1 (Default): REG_SZ vbAccelerator VB6 SGrid Control 2.0HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}\1.1\0HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}\1.1\0\win32 (Default): REG_SZ E:\Malwarebytes' Anti-Malware\vbalsgrid6.ocxHKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}\1.1\FLAGS (Default): REG_SZ 2HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}\1.1\HELPDIR (Default): REG_SZ E:\Malwarebytes' Anti-MalwareHKEY_CLASSES_ROOT\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}HKEY_CLASSES_ROOT\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}\1.0 (Default): REG_SZ vbAccelerator VB6 Subclassing and Timer Assistant (with configurable message response, multi-control support + timer bug fix)HKEY_CLASSES_ROOT\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}\1.0\0HKEY_CLASSES_ROOT\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}\1.0\0\win32 (Default): REG_SZ E:\Malwarebytes' Anti-Malware\ssubtmr6.dllHKEY_CLASSES_ROOT\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}\1.0\FLAGS (Default): REG_SZ 0HKEY_CLASSES_ROOT\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}\1.0\HELPDIR (Default): REG_SZ E:\Malwarebytes' Anti-MalwareHKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}\1.0 (Default): REG_SZ vbAccelerator VB6 Subclassing and Timer Assistant (with configurable message response, multi-control support + timer bug fix)HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}\1.0\0HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}\1.0\0\win32 (Default): REG_SZ E:\Malwarebytes' Anti-Malware\ssubtmr6.dllHKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}\1.0\FLAGS (Default): REG_SZ 0HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}\1.0\HELPDIR (Default): REG_SZ E:\Malwarebytes' Anti-MalwareHKEY_CLASSES_ROOT\Interface\{71A2702E-C7D8-11D2-BEF8-525400DFB47A} (Default): REG_SZ _ISubclassHKEY_CLASSES_ROOT\Interface\{71A2702E-C7D8-11D2-BEF8-525400DFB47A}\ProxyStubClsid32 (Default): REG_SZ {00020424-0000-0000-C000-000000000046}HKEY_CLASSES_ROOT\Interface\{71A2702E-C7D8-11D2-BEF8-525400DFB47A}\TypeLib (Default): REG_SZ {71A2702D-C7D8-11D2-BEF8-525400DFB47A} Version REG_SZ 1.0HKEY_CLASSES_ROOT\Wow6432Node\Interface\{71A2702E-C7D8-11D2-BEF8-525400DFB47A} (Default): REG_SZ ISubclassHKEY_CLASSES_ROOT\Wow6432Node\Interface\{71A2702E-C7D8-11D2-BEF8-525400DFB47A}\ProxyStubClsid (Default): REG_SZ {00020424-0000-0000-C000-000000000046}HKEY_CLASSES_ROOT\Wow6432Node\Interface\{71A2702E-C7D8-11D2-BEF8-525400DFB47A}\ProxyStubClsid32 (Default): REG_SZ {00020424-0000-0000-C000-000000000046}HKEY_CLASSES_ROOT\Wow6432Node\Interface\{71A2702E-C7D8-11D2-BEF8-525400DFB47A}\TypeLib (Default): REG_SZ {71A2702D-C7D8-11D2-BEF8-525400DFB47A} Version REG_SZ 1.0HKEY_CLASSES_ROOT\Interface\{71A27036-C7D8-11D2-BEF8-525400DFB47A} (Default): REG_SZ __CTimerHKEY_CLASSES_ROOT\Interface\{71A27036-C7D8-11D2-BEF8-525400DFB47A}\ProxyStubClsid32 (Default): REG_SZ {00020420-0000-0000-C000-000000000046}HKEY_CLASSES_ROOT\Interface\{71A27036-C7D8-11D2-BEF8-525400DFB47A}\TypeLib (Default): REG_SZ {71A2702D-C7D8-11D2-BEF8-525400DFB47A} Version REG_SZ 1.0HKEY_CLASSES_ROOT\Wow6432Node\Interface\{71A27036-C7D8-11D2-BEF8-525400DFB47A} (Default): REG_SZ CTimerHKEY_CLASSES_ROOT\Wow6432Node\Interface\{71A27036-C7D8-11D2-BEF8-525400DFB47A}\ProxyStubClsid (Default): REG_SZ {00020420-0000-0000-C000-000000000046}HKEY_CLASSES_ROOT\Wow6432Node\Interface\{71A27036-C7D8-11D2-BEF8-525400DFB47A}\ProxyStubClsid32 (Default): REG_SZ {00020420-0000-0000-C000-000000000046}HKEY_CLASSES_ROOT\Wow6432Node\Interface\{71A27036-C7D8-11D2-BEF8-525400DFB47A}\TypeLib (Default): REG_SZ {71A2702D-C7D8-11D2-BEF8-525400DFB47A} Version REG_SZ 1.0HKEY_CLASSES_ROOT\Interface\{1EDFD7DF-030D-4144-952E-9D7D86691CDB} (Default): REG_SZ __vbalGridHKEY_CLASSES_ROOT\Interface\{1EDFD7DF-030D-4144-952E-9D7D86691CDB}\ProxyStubClsid32 (Default): REG_SZ {00020420-0000-0000-C000-000000000046}HKEY_CLASSES_ROOT\Interface\{1EDFD7DF-030D-4144-952E-9D7D86691CDB}\TypeLib (Default): REG_SZ {DE8CE233-DD83-481D-844C-C07B96589D3A} Version REG_SZ 1.1HKEY_CLASSES_ROOT\Wow6432Node\Interface\{1EDFD7DF-030D-4144-952E-9D7D86691CDB} (Default): REG_SZ vbalGridHKEY_CLASSES_ROOT\Wow6432Node\Interface\{1EDFD7DF-030D-4144-952E-9D7D86691CDB}\ProxyStubClsid (Default): REG_SZ {00020420-0000-0000-C000-000000000046}HKEY_CLASSES_ROOT\Wow6432Node\Interface\{1EDFD7DF-030D-4144-952E-9D7D86691CDB}\ProxyStubClsid32 (Default): REG_SZ {00020420-0000-0000-C000-000000000046}HKEY_CLASSES_ROOT\Wow6432Node\Interface\{1EDFD7DF-030D-4144-952E-9D7D86691CDB}\TypeLib (Default): REG_SZ {DE8CE233-DD83-481D-844C-C07B96589D3A} Version REG_SZ 1.1MBAM Registry Settings and License Info:========================================HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware advancedheuristics REG_DWORD 1 downloadprogram REG_DWORD 1 hidereg REG_DWORD 0 detectp2p REG_DWORD 0 detectpum REG_DWORD 1 detectpup REG_DWORD 2 updatewarn REG_DWORD 1 updatewarndays REG_DWORD 7 useproxy REG_DWORD 0 useauthentication REG_DWORD 0 startipdisabled REG_DWORD 0 notifyinstallprogram REG_DWORD 1 InstallPath REG_SZ E:\Malwarebytes' Anti-Malware dbdate REG_SZ Mon, 04 Mar 2013 02:15:27 GMT dbversion REG_SZ v2013.03.04.01 programversion REG_SZ 1.70.0.1100 contextmenu REG_DWORD 1 reportthreats REG_DWORD 1 silentipmode REG_DWORD 0 trialpromptshown REG_DWORD 0 startwithwindows REG_DWORD 1 startfsdisabled REG_DWORD 0 autoquarantine REG_DWORD 1 autoquarantinenotify REG_DWORD 1 programbuild REG_SZ consumerHKEY_CURRENT_USER\SOFTWARE\Malwarebytes' Anti-Malware alwaysscanfiles REG_DWORD 1 alwaysscanheuristics REG_DWORD 1 alwaysscanmemory REG_DWORD 1 alwaysscanregistry REG_DWORD 1 alwaysscanstartups REG_DWORD 1 autosavelog REG_DWORD 1 openlog REG_DWORD 1 defaultscan REG_DWORD 0 terminateie REG_DWORD 0 Language REG_SZ English.lng selectedrives REG_SZ C:\|HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Malwarebytes' Anti-Malware_is1 Inno Setup: Setup Version REG_SZ 5.5.3-dev (a) Inno Setup: App Path REG_SZ E:\Malwarebytes' Anti-Malware InstallLocation REG_SZ E:\Malwarebytes' Anti-Malware\ Inno Setup: Icon Group REG_SZ Malwarebytes' Anti-Malware Inno Setup: No Icons REG_DWORD 1 Inno Setup: User REG_SZ Charlton Inno Setup: Selected Tasks REG_DWORD 0 Inno Setup: Deselected Tasks REG_SZ desktopicon,quicklaunchicon Inno Setup: Language REG_SZ English DisplayName REG_SZ Malwarebytes Anti-Malware version 1.70.0.1100 DisplayIcon REG_SZ E:\Malwarebytes' Anti-Malware\mbam.exe UninstallString REG_SZ "E:\Malwarebytes' Anti-Malware\unins000.exe" QuietUninstallString REG_SZ "E:\Malwarebytes' Anti-Malware\unins000.exe" /SILENT DisplayVersion REG_SZ 1.70.0.1100 Publisher REG_SZ Malwarebytes Corporation URLInfoAbout REG_SZ http://www.malwarebytes.org NoModify REG_DWORD 1 NoRepair REG_DWORD 1 InstallDate REG_SZ 20130224 MajorVersion REG_DWORD 1 MinorVersion REG_DWORD 70 EstimatedSize REG_DWORD 18895Pending File Rename Operations:================================If any Malwarebytes Anti-Malware items are listed below, the user must reboot to complete a Malwarebytes Anti-Malware upgrade installation.HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\ PendingFileRenameOperations REG_MULTI_SZ \??\C:\Users\Charlton\AppData\Local\Temp\~nsu.tmp\Au_.exeScheduler Queue:================Context Menu Entries:=====================HKEY_CLASSES_ROOT\AllFilesystemObjects\shellex\ContextMenuHandlers\MBAMShlExt (Default): REG_SZ {57CE581A-0CB6-4266-9CA0-19364C90A0B3}HKEY_CLASSES_ROOT\Folder\shellex\ContextMenuHandlers\MBAMShlExt (Default): REG_SZ {57CE581A-0CB6-4266-9CA0-19364C90A0B3}HKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt (Default): REG_SZ MBAMShlExt ClassHKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt\CLSID (Default): REG_SZ {57CE581A-0CB6-4266-9CA0-19364C90A0B3}HKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt\CurVer (Default): REG_SZ MBAMExt.MBAMShlExt.1HKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt.1 (Default): REG_SZ MBAMShlExt ClassHKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt.1\CLSID (Default): REG_SZ {57CE581A-0CB6-4266-9CA0-19364C90A0B3}HKEY_CLASSES_ROOT\Interface\{015FAC74-0374-494A-A02D-316D562C0FCE} (Default): REG_SZ IMBAMShlExtHKEY_CLASSES_ROOT\Interface\{015FAC74-0374-494A-A02D-316D562C0FCE}\ProxyStubClsid32 (Default): REG_SZ {00020424-0000-0000-C000-000000000046}HKEY_CLASSES_ROOT\Interface\{015FAC74-0374-494A-A02D-316D562C0FCE}\TypeLib (Default): REG_SZ {AFF1A83B-6C83-4342-8E68-1648DE06CB65} Version REG_SZ 1.0HKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3} (Default): REG_SZ MBAMShlExt ClassHKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}\InprocServer32 (Default): REG_SZ E:\Malwarebytes' Anti-Malware\mbamext.dll ThreadingModel REG_SZ ApartmentHKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}\ProgID (Default): REG_SZ MBAMExt.MBAMShlExt.1HKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}\TypeLib (Default): REG_SZ {AFF1A83B-6C83-4342-8E68-1648DE06CB65}HKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}\VersionIndependentProgID (Default): REG_SZ MBAMExt.MBAMShlExtHKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0 (Default): REG_SZ MBAMExt 1.0 Type LibraryHKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0\win64 (Default): REG_SZ E:\Malwarebytes' Anti-Malware\mbamext.dllHKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\FLAGS (Default): REG_SZ 0HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\HELPDIR (Default): REG_SZ E:\Malwarebytes' Anti-MalwareHKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0 (Default): REG_SZ MBAMExt 1.0 Type LibraryHKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0\win64 (Default): REG_SZ E:\Malwarebytes' Anti-Malware\mbamext.dllHKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\FLAGS (Default): REG_SZ 0HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\HELPDIR (Default): REG_SZ E:\Malwarebytes' Anti-MalwareMBAM Drivers:=============C:\windows\system32\drivers\mbam.sys File Size: 24176 BYTES FileVersion: 1.60.2.0Required Dependencies:======================BFE:==============Type : 32State : 4 (The service is running.)WIN32_EXIT_CODE : 0SERVICE_EXIT_CODE : 0CHECKPOINT : 0WAIT_HINT : 0HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE DisplayName REG_SZ @%SystemRoot%\system32\bfe.dll,-1001 Group REG_SZ NetworkProvider ImagePath REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k LocalServiceNoNetwork Description REG_SZ @%SystemRoot%\system32\bfe.dll,-1002 ObjectName REG_SZ NT AUTHORITY\LocalService ErrorControl REG_DWORD 1 Start REG_DWORD 2 Type REG_DWORD 32 DependOnService REG_MULTI_SZ RpcSs ServiceSidType REG_DWORD 3 RequiredPrivileges REG_MULTI_SZ SeAuditPrivilege FailureActions REG_BINARY Binary DataHKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters ServiceDll REG_EXPAND_SZ %SystemRoot%\System32\bfe.dll ServiceDllUnloadOnStop REG_DWORD 1 ServiceMain REG_SZ BfeServiceMainHKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\PolicyHKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\BootTimeHKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\BootTime\Filter {dc95b53e-01cf-4058-821d-350b3d0d4676}REG_BINARY Binary Data {2dd96961-5757-434f-b617-34e732517c0e}REG_BINARY Binary Data {2db25e6c-f07a-44f4-b6c8-50a330d2790b}REG_BINARY Binary Data {c42f1cd6-3a95-4ae2-a513-793c3ae610c7}REG_BINARY Binary Data {0c41d586-9c19-4e01-9d66-b5b98a97576e}REG_BINARY Binary Data {12c38916-82ac-4737-8f38-b6957ffebad6}REG_BINARY Binary Data {c970a45d-57f9-4e32-a5bd-886a9662641e}REG_BINARY Binary Data {0c3be01b-fe70-4cc4-89dc-c07996b67e6d}REG_BINARY Binary Data {074f7f68-ee10-428a-89d1-ba78f6c327ca}REG_BINARY Binary Data {c016105c-eb34-4519-a5fd-5f4e4ad4d18e}REG_BINARY Binary Data {a47525e2-725b-4888-8af1-ba5a60c04f4d}REG_BINARY Binary Data {0ccc96a3-8c5c-45e2-b80e-7e37b16cc1ad}REG_BINARY Binary Data {935b7f48-0ede-44dd-9bc2-e00bb635cda3}REG_BINARY Binary Data {941dad9d-7b1a-4354-997b-00cf1aa9b35c}REG_BINARY Binary DataHKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\PersistentHKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\Persistent\Filter {dc95b53e-01cf-4058-821d-350b3d0d4676}REG_BINARY Binary Data {f444c576-6e60-4ea2-9faa-80d57ed12cd2}REG_BINARY Binary Data {0c41d586-9c19-4e01-9d66-b5b98a97576e}REG_BINARY Binary Data {12c38916-82ac-4737-8f38-b6957ffebad6}REG_BINARY Binary Data {c970a45d-57f9-4e32-a5bd-886a9662641e}REG_BINARY Binary Data {0c3be01b-fe70-4cc4-89dc-c07996b67e6d}REG_BINARY Binary Data {4d9581d2-aef8-4993-84cd-b986ced80d42}REG_BINARY Binary Data {be7cbdf4-b192-4aa5-94f8-1fb5c5ee07bc}REG_BINARY Binary Data {716b48eb-0a35-4a76-92ab-1d987230d288}REG_BINARY Binary Data {1165065e-4996-4338-abaf-4b8556b4d431}REG_BINARY Binary Data {07a24961-a760-4e80-b263-6d275e1b09cb}REG_BINARY Binary Data {5b0cb2e2-ab87-4974-9f1c-2f22a654eeb9}REG_BINARY Binary Data {b6b2ca61-fb98-4422-adc2-e7cf56b3680c}REG_BINARY Binary Data {0aa7fff8-919f-453c-928c-28a12122ba38}REG_BINARY Binary Data {074f7f68-ee10-428a-89d1-ba78f6c327ca}REG_BINARY Binary Data {c016105c-eb34-4519-a5fd-5f4e4ad4d18e}REG_BINARY Binary Data {a47525e2-725b-4888-8af1-ba5a60c04f4d}REG_BINARY Binary Data {0ccc96a3-8c5c-45e2-b80e-7e37b16cc1ad}REG_BINARY Binary Data {91ffecf0-0a9e-4572-95f1-a7111af86967}REG_BINARY Binary Data {64e55933-15a5-495d-a928-ccca43d44875}REG_BINARY Binary Data {13bfd422-6f75-4408-8924-9400ec0cb19c}REG_BINARY Binary Data {cbfb56db-3c85-4543-9bc2-76ea28cdd74e}REG_BINARY Binary Data {2dd96961-5757-434f-b617-34e732517c0e}REG_BINARY Binary Data {375fb39b-08c6-40f2-bdf2-08fa63f970a2}REG_BINARY Binary Data {2db25e6c-f07a-44f4-b6c8-50a330d2790b}REG_BINARY Binary Data {c42f1cd6-3a95-4ae2-a513-793c3ae610c7}REG_BINARY Binary Data {b6fdab6b-dcc6-43e3-99ce-7aeca65063a4}REG_BINARY Binary Data {3697a558-3ed3-49be-a4c1-c1a4448653b4}REG_BINARY Binary Data {935b7f48-0ede-44dd-9bc2-e00bb635cda3}REG_BINARY Binary Data {941dad9d-7b1a-4354-997b-00cf1aa9b35c}REG_BINARY Binary Data {b02a4013-b6b5-4859-9168-1e3299e43b24}REG_BINARY Binary Data {d870c96c-75ee-46a6-8a02-8e4401a73423}REG_BINARY Binary Data {8b50e2ec-7cf0-4b71-b42e-5b0536f6cab8}REG_BINARY Binary Data {4137b143-2770-43d4-91a2-55bb0a069830}REG_BINARY Binary Data {3180114b-8338-4740-9a16-444134ad62f4}REG_BINARY Binary Data {17043d46-fac2-4561-bca1-0c7a05e95f5f}REG_BINARY Binary Data {567d3836-3f5b-4067-b9c4-952f677010a2}REG_BINARY Binary Data {4e718c57-c397-4221-9fbb-14fd51701d6a}REG_BINARY Binary Data {3a90a266-1519-4d23-911b-e84cd0f02ab8}REG_BINARY Binary DataHKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\Persistent\Provider {decc16ca-3f33-4346-be1e-8fb4ae0f3d62}REG_BINARY Binary Data {4b153735-1049-4480-aab4-d1b9bdc03710}REG_BINARY Binary Data {1bebc969-61a5-4732-a177-847a0817862a}REG_BINARY Binary Data {aa6a7d87-7f8f-4d2a-be53-fda555cd5fe3}REG_BINARY Binary DataHKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\Parameters\Policy\Persistent\SubLayer {b3cdd441-af90-41ba-a745-7c6008ff2300}REG_BINARY Binary Data {b3cdd441-af90-41ba-a745-7c6008ff2301}REG_BINARY Binary Data {b3cdd441-af90-41ba-a745-7c6008ff2302}REG_BINARY Binary Data {9ba30013-c84e-47e5-ac6e-1e1aed72fa69}REG_BINARY Binary Datafltmgr:==============Type : 2State : 4 (The service is running.) (STOPPABLE, NOT_PAUSABLE, IGNORES_SHUTDOWN)WIN32_EXIT_CODE : 0SERVICE_EXIT_CODE : 0CHECKPOINT : 0WAIT_HINT : 0HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\FltMgr AttachWhenLoaded REG_DWORD 1 DisplayName REG_SZ @%SystemRoot%\system32\drivers\fltmgr.sys,-10001 Group REG_SZ FSFilter Infrastructure ImagePath REG_EXPAND_SZ system32\drivers\fltmgr.sys Description REG_SZ @%SystemRoot%\system32\drivers\fltmgr.sys,-10000 ErrorControl REG_DWORD 3 Start REG_DWORD 0 Tag REG_DWORD 1 Type REG_DWORD 2HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\FltMgr\Enum 0 REG_SZ Root\LEGACY_FLTMGR\0000 Count REG_DWORD 1 NextInstance REG_DWORD 1C:\windows\system32\drivers\fltmgr.sys File Size: 290368 BYTES FileVersion: 6.1.7600.16385C:\windows\SysWOW64\mscomctl.ocx File Size: 1066176 BYTES FileVersion: 6.0.88.62C:\windows\SysWOW64\olepro32.dll File Size: 90112 BYTES FileVersion: 6.1.7600.16385List of MBAM Related Directories:=================================C:\Users\Charlton\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-MalwareC:\Users\Charlton\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logsmbam-log-2013-02-24 (17-56-24).txt File Size: 4568 BYTESmbam-log-2013-02-24 (18-03-39).txt File Size: 1836 BYTESmbam-log-2013-02-24 (20-28-03).txt File Size: 2218 BYTESmbam-log-2013-02-24 (21-00-57).txt File Size: 1836 BYTESmbam-log-2013-02-24 (21-25-16).txt File Size: 1810 BYTESmbam-log-2013-02-24 (21-39-30).txt File Size: 1836 BYTESmbam-log-2013-03-03 (21-54-34).txt File Size: 1834 BYTESC:\Users\Charlton\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine0231486101.data File Size: 736 BYTES0231486101.quar File Size: 462848 BYTES2074607426.data File Size: 735 BYTES2074607426.quar File Size: 2071 BYTES2283051209.data File Size: 896 BYTES3884876938.data File Size: 765 BYTES3884876938.quar File Size: 462848 BYTES4305501464.data File Size: 736 BYTES4305501464.quar File Size: 462848 BYTES5949585864.data File Size: 732 BYTES5949585864.quar File Size: 157184 BYTES6448310477.data File Size: 750 BYTES6448310477.quar File Size: 1024 BYTES7630777211.data File Size: 739 BYTES7630777211.quar File Size: 42496 BYTES8849923168.data File Size: 808 BYTES8849923168.quar File Size: 2107 BYTES9084624504.data File Size: 776 BYTES9343646376.data File Size: 777 BYTES9343646376.quar File Size: 42496 BYTESC:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malwarembam-setup.exe File Size: 10156344 BYTES FileVersion: 1.70.0.1100rules.ref File Size: 5973046 BYTESC:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\Configurationbuild.conf File Size: 140 BYTESconfig.conf File Size: 3970 BYTEScustom.conf File Size: 20 BYTESdatabase.conf File Size: 432 BYTEShtml.conf File Size: 2762 BYTESlocal.conf File Size: 896 BYTESmanifest.conf File Size: 1752 BYTESmessaging.conf File Size: 1430 BYTESnews.conf File Size: 405 BYTES===============================================================END OF FILE Link to post Share on other sites More sharing options...
Maurice Naggar Posted March 10, 2013 ID:655522 Share Posted March 10, 2013 (edited) Howdy sc2racing and welcome to MalwareBytes forum.You said the system had a "virus". Please advise of the name of the malware.Also, dig thru & get for me the last MBAM scan log.Windows security services & or windows update services "not running" are regularly a by-product of malware infections. Your current issue may be a leftover from that.I am somewhat curious why you went ahead & on your own ran mbam-check ?Please do the following:Windows servicesThis will be a batch-run .Press the Windows-key on keyboard.In the box, type notepad and press Enter.Highlight the contents of the following codebox, and copy and paste that text into NOTEPAD.@Echo offsc stop wuauservsc stop bitssc config dcomlaunch start= autosc config nsi start= autosc config dhcp start= autosc config rpcss start= autosc config winmgmt start= autosc config wscsvc start= delayed-autosc config bits start= delayed-autosc config wuauserv start= delayed-autosc config sdrsvc start= manualsc config vss start= autosc config eventlog start= autosc config bfe start= autosc config eventsystem start= autosc start sdrsvcsc start vsssc start rpcsssc start eventsystemsc start bfesc start bitssc start wuauservshutdown -r -t 1del %0Select File -> Save AS.Press the Desktop button on the left side of the save dialog.In the box, type in Fix.bat.Press .Close Notepad.Right click Fix.bat on your desktop, and choose .Press Yes if prompted by User Account Control.This procedure will do its tasks and then it will Restart Windows.Step 2Check for missing or disabled Windows services, by doing the following, and post detailed results when done !!From Start button, (or Win-key +R) and in the searcht-box type in MSCONFIG and press OK or Enter.On Vista or Windows 7, press Windows-key on keybooard, and type in MSCONFIGYou should see the General tab. Click the General tab. It should have Normal startup selected (in the radio-box=selection)IF it does not, then you click on Normal startup.Click on Services tab. To get it's display of services.Keep a written list of any changes from my list of services below. That way you and I have a reference document.Look at the bottom line Hide all Microsoft servicesIF and only IF its is checkmarked, then un-check it.the list of servies may be shown in non-alphabetical order, so ....Look at the heading titled "Service". Click on it as needed so the list is sorted and top of list starts with the "A" services.You can toggle as needed to get the desired order.IF any of below services are NOT shown, don't panic & do not stop, just write down the info for me and proceed with the others !Then using the scroll-bar scroll down the listLook for Background Intelligent Transfer Service. Is it shown? Is it checked? If not, click on that checkbox to checkmark.Look for Base Filtering Engine. Is it shown? Is it checked? If not, click on that checkbox to checkmark.Look for COM+ Event System. Is it shown? Is it checked? If not, click on that checkbox to checkmark.Look for COM+ System Application. Is it shown? Is it checked? If not, click on that checkbox to checkmark.Look for Cryptographic Services. Is it shown? Is it checked? If not, click on that checkbox to checkmark.Look for Ipsec Policy Agent. Is it shown? Is it checked? If not, click on that checkbox to checkmark.Look for Remote Procedure Call (RPC) Locator. Is it shown ? Is it checked? If not, click on that checkbox to checkmark.Look for RPC Endpoint Mapper. Is it shown ? Is it checked? If not, click on that checkbox to checkmark.Look for Windows Firewall. Is it shown ? Is it checked? If not, click on that checkbox to checkmark.Look for Windows Installer. Is it shown ? Is it checked? If not, click on that checkbox to checkmark.Look for Windows Management Instrumentation. Is it shown ? Is it checked? If not, click on that checkbox to checkmark.Look for Windows Update. Is it shown ? Is it checked? If not, click on that checkbox to checkmark.When done, press the Apply button, and the OK button.You're likely to be prompted to Restart Windows, do so.If not prompted, you do a Logoff and Restart of Windows.Then report back here with details.If any of the services are not shown, just let me know which. Edited March 10, 2013 by Maurice Naggar Link to post Share on other sites More sharing options...
sc2racing Posted March 10, 2013 Author ID:655611 Share Posted March 10, 2013 Hi Maurice,Thank you for your help. I own ran mbam-check because after spending many hours on this forum trying to figure out my issues I am stuck. I figured that would help start the process of getting me back to normal.Here is the results of my MSCONFIGIF any of below services are NOT shown, don't panic & do not stop, just write down the info for me and proceed with the others !Then using the scroll-bar scroll down the listLook for Background Intelligent Transfer Service. Is it shown? Is it checked? If not, click on that checkbox to checkmark.I dont have BITSLook for Base Filtering Engine. Is it shown? Is it checked? If not, click on that checkbox to checkmark.I have BFE CheckedLook for COM+ Event System. Is it shown? Is it checked? If not, click on that checkbox to checkmark.I have Com + EVent CheckedLook for COM+ System Application. Is it shown? Is it checked? If not, click on that checkbox to checkmark.I have Com + system checkedLook for Cryptographic Services. Is it shown? Is it checked? If not, click on that checkbox to checkmark.I have Crypto Services CheckedLook for Ipsec Policy Agent. Is it shown? Is it checked? If not, click on that checkbox to checkmark.I have Ipsec CheckedLook for Remote Procedure Call (RPC) Locator. Is it shown ? Is it checked? If not, click on that checkbox to checkmark.I have RPC CheckedLook for RPC Endpoint Mapper. Is it shown ? Is it checked? If not, click on that checkbox to checkmark.I have RPC Endpoint CheckedLook for Windows Firewall. Is it shown ? Is it checked? If not, click on that checkbox to checkmark.i have Windows firewall checkedLook for Windows Installer. Is it shown ? Is it checked? If not, click on that checkbox to checkmark.I have Windows installer checkedLook for Windows Management Instrumentation. Is it shown ? Is it checked? If not, click on that checkbox to checkmark.I have windows managment checkedLook for Windows Update. Is it shown ? Is it checked? If not, click on that checkbox to checkmark.I dont have windows update Link to post Share on other sites More sharing options...
Maurice Naggar Posted March 10, 2013 ID:655645 Share Posted March 10, 2013 Tell me "if" you have recently used System Mechanic or any sort of registry cleaner, tweaker, fixer, etc...?Download and save this file to your Desktop http://download.bleepingcomputer.com/win-services/7/BITS.regDownload and save this file to your Desktop http://download.bleepingcomputer.com/win-services/7/wuauserv.regNow, for each one of these reg files, do a Right-click on the file and select Merge and allow to merge into the registry.After that is done, Logoff and Restart Windows.That should get BITS & Windows automatic update service back to normal shape.run a manual check for updates at Windows Update, etc., etc...When you reach Windows Update, do a Custom scan for updates. Take (accept) only items marked Important or Critical.Have infinite patience while it scans and does it's work.When it prompts you to Restart Windows, please do that. Allow it to restart.IF and only if you get an "error" or "exception/failure" message, I will need the complete so called "failure code" and description (if you see it). Link to post Share on other sites More sharing options...
sc2racing Posted March 11, 2013 Author ID:655750 Share Posted March 11, 2013 Updates are being downloaded as we speak. Thank you for your help!I do have one other problem I have noticed. When I was at starbuck this afternoon I could not log onto the network. I was able to select the ATT network from windows, but when I used IE or Mozilla to try to get the connection page nothing happened. it just kept trying to load. I had my other laptop and blackberry with me. Both were able to get on the internet. Link to post Share on other sites More sharing options...
Maurice Naggar Posted March 11, 2013 ID:655816 Share Posted March 11, 2013 Good going on Windows updates. May we assume that all updates were done without issue ? All OK ?1. Open Internet Explorer.2. Click "Tools," and then click "Internet Options."3. Click "Connections," and then click "LAN Settings."4. Make sure the check boxes for "Automatically detect settings" and "Use automatic configuration script" are not selected.5. Make sure Proxy servers block is not selected (not checkmarked).6. Apply changes & OKUsing Internet Explorer browser (only!) go to http://support.microsoft.com/kb/923737 [ignore any DOES NOT APPLY warning as well as the APPLIES TO section], run the Fix It and then reboot.Tip: For optimal results, enable the Delete personal settings option.While in IE, press Shift+CTRL+Delete keys and delete temporary internet cache files.FirefoxTo Reset Firefox to its default state:Start Firefoxin the address bar, type in about:supportClick on the Reset Firefox button at top right of screen.While in Firefox, press Shift+CTRL+Delete keys and delete temporary internet cache files. Link to post Share on other sites More sharing options...
sc2racing Posted March 12, 2013 Author ID:656307 Share Posted March 12, 2013 Everything on this computer seems to back to normal... Thank you again!I do have a HP Mini with XP that is having issues with installing updates as well. Can I ask your help on this? Link to post Share on other sites More sharing options...
Maurice Naggar Posted March 12, 2013 ID:656386 Share Posted March 12, 2013 Yes you can, if it is related to failed Windows Update, then Let's have you use NOTEPAD & do some research in the Windows Update log (using Notepad) usually at C:\Windows\Windowsupdate.log or C:\WINNT\Windowsupdate.logCopy and Paste here the last 70 lines out of that log, for review. Go to near end of the log for latest entries and look for error notations. You can use CTRL+END keyboard keys to get to the end of the file. Then get the last 70 lines & copy & paste here, in replySee Microsoft KnowledgeBase article KB 902093 How to read the Windowsupdate.log file http://support.microsoft.com/kb/902093Is the issue with the HP XP a recent one? or from a long time ago?You need to insure that that system is free of viruses (run a full scan with your antivirus)and free of other malware (run a good quick scan with MBAM ).The system has to be free of infections. Not only for your security, but also some infections will disable parts of Windows update services. Link to post Share on other sites More sharing options...
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now