Jump to content

DDS hangs the computer on MBR Scan

Recommended Posts

Hello. I was cleaning up my sister's computer (WinXP SP3) and used DDS to take a snapshot of what was installed on the system; DDS ran fine. Then I uninstalled a bunch of old apps (Java, Limewire 4, Spywareblaster, a-squared free), uninstalled Kerio 2.1.5, and installed Outpost Pro 7.5.3. I did install Java 7 but then uninstalled it after consideration of what I've read here. Now DDS will not run if MBR Scan is checked on, even with Outpost suspended, and not even in safe mode; it gets so far and then the system hangs. I wasn't really concerned about this system until now -- from what I've been reading (in my attempt to learn more here and on BC about malware detection), DDS doesn't usually have problems. So I put the computer through the ringer and ran (in order) MBAM (pro) quick scan, SecurityCheck, OTL, JRT, RogueKiller, MBAR, and adwCleaner (I only ran scans, did not try to clean anything). MBAM and MBAR were clean; I don't think anything noteworthy came up except a couple of things from adwCleaner. I noticed RogueKiller's MBR Check ran fine and the log output looks similar to DDS's, so don't know if I'm concerned over nothing.

The only possibly strange symptom I know of is that my sister complains about the computer dropping the internet connection at times (quite regularly) while surfing with IE; however, I have not been able to reproduce this behavior and I don't know if this is/was related to Kerio (which I have now replaced with Outpost).

I don't want to waste anyone's time running further diagnoses if there's nothing to be concerned about so far. Would someone mind having a look through these logs and telling me if there's anything to be concerned about and taking this further?

Thanks, in advance. I will withhold the OTL and MBAR logs unless requested (to avoid posting too much at once).

--- dds.txt with MBR Scan disabled ---

DDS (Ver_2012-11-20.01) - NTFS_x86

Internet Explorer: 8.0.6001.18702

Run by user2 at 17:04:29 on 2013-03-09

#Option MBR scan is disabled.

Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.3318.2436 [GMT -7:00]


AV: avast! Antivirus *Enabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}

FW: Outpost Firewall Pro *Enabled*


============== Running Processes ================


C:\Program Files\Alwil Software\Avast5\AvastSvc.exe


C:\Program Files\Common Files\EPSON\EBAPI\eEBSVC.exe

C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

C:\Program Files\Bonjour\mDNSResponder.exe

C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe

C:\Program Files\Maxtor\Sync\SyncServices.exe

C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe

C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe

C:\Program Files\Common Files\Motive\McciCMService.exe

C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe

C:\Program Files\Windows Media Player\WMPNetwk.exe

C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe





C:\Program Files\CyberLink DVD Solution\PowerDVD\PDVDServ.exe

C:\Program Files\HP\HP Software Update\HPWuSchd.exe

C:\Program Files\Microsoft IntelliPoint\ipoint.exe

C:\Program Files\TELUS_eCare_Lite\eCareTrayApp.exe

C:\Program Files\Maxtor\OneTouch Status\maxmenumgr.exe

C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe

C:\Program Files\Alwil Software\Avast5\avastUI.exe

C:\Program Files\iTunes\iTunesHelper.exe

C:\Program Files\Genie-Soft\GBMPro8\GBMAgent.exe

C:\Program Files\Epson Software\Event Manager\EEventManager.exe

C:\Program Files\Epson Software\FAX Utility\FUFAXSTM.exe

C:\Program Files\Hard Disk Sentinel\HDSentinel.exe


C:\Program Files\MSN Messenger\MsnMsgr.Exe

C:\Program Files\Windows Media Player\WMPNSCFG.exe

C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe

C:\Program Files\Nikon\PictureProject\NkbMonitor.exe

C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe

C:\Program Files\iPod\bin\iPodService.exe


C:\WINDOWS\System32\svchost.exe -k netsvcs

C:\WINDOWS\system32\svchost.exe -k NetworkService

C:\WINDOWS\system32\svchost.exe -k LocalService

C:\WINDOWS\system32\svchost.exe -k LocalService

C:\WINDOWS\System32\svchost.exe -k HTTPFilter

C:\WINDOWS\system32\svchost.exe -k imgsvc


============== Pseudo HJT Report ===============


uStart Page = file:///C:/Documents%20and%20Settings/user2/My%20Documents/Website/my%20website.html

uInternet Connection Wizard,ShellNext = iexplore

BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll

BHO: {7E853D72-626A-48EC-A868-BA8D5E23E045} - <orphaned>

BHO: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\alwil software\avast5\aswWebRepIE.dll

BHO: Windows Live Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll

TB: SciFinder Scholar Bar: {4e16a8fb-0521-46d1-aa2c-d0fc7abf6af9} -

TB: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\alwil software\avast5\aswWebRepIE.dll

uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe

uRun: [msnmsgr] "c:\program files\msn messenger\MsnMsgr.Exe" /background

uRun: [WMPNSCFG] c:\program files\windows media player\WMPNSCFG.exe

mRun: [igfxTray] c:\windows\system32\igfxtray.exe

mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe

mRun: [Persistence] c:\windows\system32\igfxpers.exe

mRun: [RemoteControl] "c:\program files\cyberlink dvd solution\powerdvd\PDVDServ.exe"

mRun: [NeroFilterCheck] c:\windows\system32\NeroCheck.exe

mRun: [HP Software Update] "c:\program files\hp\hp software update\HPWuSchd.exe"

mRun: [intelliPoint] "c:\program files\microsoft intellipoint\ipoint.exe"

mRun: [TELUS_eCare_Lite_McciTrayApp] c:\program files\telus_ecare_lite\eCareTrayApp.exe

mRun: [mxomssmenu] "c:\program files\maxtor\onetouch status\maxmenumgr.exe"

mRun: [LogitechQuickCamRibbon] "c:\program files\logitech\logitech webcam software\LWS.exe" /hide

mRun: [intuit SyncManager] c:\program files\common files\intuit\sync\IntuitSyncManager.exe startup

mRun: [avast5] "c:\program files\alwil software\avast5\avastUI.exe" /nogui

mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime

mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"

mRun: [GBMPro8Agent] "c:\program files\genie-soft\gbmpro8\GBMAgent.exe"

mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"

mRun: [EEventManager] "c:\program files\epson software\event manager\EEventManager.exe"

mRun: [FUFAXSTM] "c:\program files\epson software\fax utility\FUFAXSTM.exe"

mRun: [Hard Disk Sentinel] "c:\program files\hard disk sentinel\HDSentinel.exe" /AUTORUN

mRun: [OutpostMonitor] "c:\progra~1\agnitum\outpos~1\op_mon.exe" /tray /noservice

StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\hpdigi~1.lnk - c:\program files\hp\digital imaging\bin\hpqtra08.exe

StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\nkbmon~1.lnk - c:\program files\nikon\pictureproject\NkbMonitor.exe

StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\quickb~1.lnk - c:\program files\common files\intuit\quickbooks\qbupdate\qbupdate.exe

uPolicies-Explorer: NoDriveTypeAutoRun = dword:145

mPolicies-Windows\System: Allow-LogonScript-NetbiosDisabled = dword:1

mPolicies-Explorer: NoDriveTypeAutoRun = dword:145

IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000

IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office12\ONBttnIE.dll

IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}

IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe

IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe


INFO: HKCU has more than 50 listed domains.

If you wish to scan all of them, select the 'Force scan all domains' option.


DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} - hxxp://upload.facebook.com/controls/FacebookPhotoUploader.cab

DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1133459270701

DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - hxxp://download.divx.com/player/DivXBrowserPlugin.cab

DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1133459298169

DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab

DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

Handler: intu-help-qb2 - {84D77A00-41B5-4b8b-8ADF-86486D72E749} - c:\program files\intuit\quickbooks 2010\HelpAsyncPluggableProtocol.dll

Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll

Notify: igfxcui - igfxdev.dll

AppInit_DLLs= c:\progra~1\agnitum\outpos~1\wl_hook.dll

SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll


================= FIREFOX ===================


FF - ProfilePath - c:\documents and settings\user2\application data\mozilla\firefox\profiles\rmlmp86z.default\

FF - prefs.js: browser.startup.homepage - file:///C:/Documents%20and%20Settings/user2/My%20Documents/Website/my%20website.html

FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll

FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll

FF - plugin: c:\program files\mozilla firefox\plugins\NPAdbESD.dll

FF - plugin: c:\program files\mozilla firefox\plugins\npSfAppM.dll

FF - plugin: c:\program files\tracker software\pdf viewer\npPDFXCviewNPPlugin.dll

FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_4_402_265.dll

FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}

FF - Ext: avast! WebRep: wrc@avast.com - c:\program files\alwil software\avast5\webrep\FF


============= SERVICES / DRIVERS ===============


R0 phylock;phylock;c:\windows\system32\drivers\phylock.sys [2013-3-8 27256]

R1 aswKbd;aswKbd;c:\windows\system32\drivers\aswKbd.sys [2012-3-25 18544]

R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2010-11-18 729752]

R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2010-11-18 355632]

R1 RCFOX;SonicWALL IPsec Driver;c:\windows\system32\drivers\RCFOX.SYS [2008-3-30 101528]

R1 SandBox;SandBox;c:\windows\system32\drivers\SandBox.sys [2013-3-8 773120]

R2 acssrv;Agnitum Client Security Service;c:\progra~1\agnitum\outpos~1\acs.exe [2013-3-8 2293056]

R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2010-11-18 21256]

R2 avast! Antivirus;avast! Antivirus;c:\program files\alwil software\avast5\AvastSvc.exe [2010-11-18 44808]

R2 MBAMScheduler;MBAMScheduler;c:\program files\malwarebytes' anti-malware\mbamscheduler.exe [2012-11-21 398184]

R2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2009-2-20 682344]

R3 afw;Agnitum firewall driver;c:\windows\system32\drivers\afw.sys [2013-3-8 32472]

R3 afwcore;afwcore;c:\windows\system32\drivers\afwcore.sys [2013-3-8 284928]

R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2009-2-20 21104]

R3 rcvpn;SonicWALL VPN Adapter;c:\windows\system32\drivers\rcvpn.sys [2008-3-30 24876]

S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2013-1-8 161536]

S3 AIDA64Driver;FinalWire AIDA64 Kernel Driver;c:\program files\finalwire\aida64 extreme edition\kerneld.x32 [2013-3-9 29336]

S3 esihdrv;esihdrv;c:\docume~1\user3\locals~1\temp\esihdrv.sys [2010-3-21 107256]

S3 TBIMount;TBIMount;c:\windows\system32\drivers\TBIMount.sys [2013-3-8 411144]


=============== Created Last 30 ================


2013-03-09 21:48:35 -------- d-----w- c:\program files\FinalWire

2013-03-09 06:21:25 -------- d-----w- c:\documents and settings\user2\local settings\application data\Sun

2013-03-09 05:40:22 861088 ----a-w- c:\windows\system32\npDeployJava1.dll

2013-03-09 04:58:40 773120 ----a-w- c:\windows\system32\drivers\SandBox.sys

2013-03-09 04:58:26 284928 ----a-w- c:\windows\system32\drivers\afwcore.sys

2013-03-09 04:58:21 32472 ----a-w- c:\windows\system32\drivers\afw.sys

2013-03-09 04:58:10 -------- d-----w- c:\program files\Agnitum

2013-03-09 04:55:10 -------- d-----w- c:\documents and settings\all users\application data\Agnitum

2013-03-08 18:08:48 -------- d-----w- c:\documents and settings\all users\application data\TBIView

2013-03-08 18:08:47 411144 ----a-w- c:\windows\system32\drivers\TBIMount.sys

2013-03-08 18:08:39 90784 ----a-w- c:\windows\tbicd2hd.exe

2013-03-08 18:08:39 27256 ----a-w- c:\windows\system32\drivers\phylock.sys

2013-03-08 18:08:36 -------- d-----w- c:\program files\TeraByte Unlimited

2013-03-08 15:18:10 16473456 ----a-w- c:\windows\system32\FlashPlayerInstaller.exe

2013-03-08 15:05:16 -------- d-----w- c:\program files\Hard Disk Sentinel

2013-02-25 02:12:20 -------- d-----w- c:\program files\UFile 2012

2013-02-19 06:50:23 -------- d-----r- c:\program files\Skype

2013-02-15 22:31:23 186432 ----a-w- c:\program files\mozilla firefox\plugins\nppdf32.dll

2013-02-15 22:31:23 186432 ----a-w- c:\program files\internet explorer\plugins\nppdf32.dll


==================== Find3M ====================


2013-03-09 05:41:04 782240 ----a-w- c:\windows\system32\deployJava1.dll

2013-03-08 17:16:52 231760 ----a-w- c:\windows\system32\drivers\truecrypt.sys

2013-03-08 15:18:17 691568 ----a-w- c:\windows\system32\FlashPlayerApp.exe

2013-03-08 15:18:16 71024 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl

2013-01-26 03:55:44 552448 ----a-w- c:\windows\system32\oleaut32.dll

2013-01-07 01:19:45 2148864 ----a-w- c:\windows\system32\ntoskrnl.exe

2013-01-07 00:37:01 2027520 ----a-w- c:\windows\system32\ntkrnlpa.exe

2013-01-04 01:20:00 1867264 ----a-w- c:\windows\system32\win32k.sys

2013-01-02 06:49:10 148992 ----a-w- c:\windows\system32\mpg2splt.ax

2013-01-02 06:49:10 1292288 ----a-w- c:\windows\system32\quartz.dll

2012-12-26 20:16:29 916480 ----a-w- c:\windows\system32\wininet.dll

2012-12-26 20:16:28 43520 ----a-w- c:\windows\system32\licmgr10.dll

2012-12-26 20:16:28 1469440 ------w- c:\windows\system32\inetcpl.cpl

2012-12-24 06:40:59 385024 ----a-w- c:\windows\system32\html.iec

2012-12-16 12:23:59 290560 ----a-w- c:\windows\system32\atmfd.dll

2012-12-14 23:49:28 21104 ----a-w- c:\windows\system32\drivers\mbam.sys

2004-10-01 22:00:16 40960 ----a-w- c:\program files\Uninstall_CDS.exe


============= FINISH: 17:05:51.71 ===============

--- DDS attach.txt ---





DDS (Ver_2012-11-20.01)


Microsoft Windows XP Home Edition

Boot Device: \Device\HarddiskVolume1

Install Date: 13/11/2006 4:49:57 PM

System Uptime: 09/03/2013 3:59:55 PM (2 hours ago)


Motherboard: Intel Corporation | | DG965RY

Processor: Intel® Pentium® D CPU 2.80GHz | | 2797/200mhz


==== Disk Partitions =========================


C: is FIXED (NTFS) - 466 GiB total, 358.607 GiB free.

D: is CDROM ()

E: is FIXED (NTFS) - 676 GiB total, 262.909 GiB free.


==== Disabled Device Manager Items =============


==== System Restore Points ===================


RP1612: 30/12/2012 1:01:07 PM - System Checkpoint

RP1613: 31/12/2012 1:50:22 PM - System Checkpoint

RP1614: 02/01/2013 6:04:18 PM - System Checkpoint

RP1615: 03/01/2013 10:05:23 PM - System Checkpoint

RP1616: 04/01/2013 3:00:20 AM - Software Distribution Service 3.0

RP1617: 06/01/2013 9:15:26 AM - System Checkpoint

RP1618: 07/01/2013 9:30:03 AM - System Checkpoint

RP1619: 11/01/2013 11:11:34 PM - System Checkpoint

RP1620: 12/01/2013 3:00:26 AM - Software Distribution Service 3.0

RP1621: 13/01/2013 8:47:35 AM - System Checkpoint

RP1622: 14/01/2013 7:35:40 PM - System Checkpoint

RP1623: 15/01/2013 1:42:30 AM - Software Distribution Service 3.0

RP1624: 19/01/2013 2:13:59 PM - System Checkpoint

RP1625: 21/01/2013 9:08:03 AM - System Checkpoint

RP1626: 27/01/2013 10:45:11 AM - System Checkpoint

RP1627: 28/01/2013 9:10:48 PM - System Checkpoint

RP1628: 29/01/2013 9:21:48 PM - System Checkpoint

RP1629: 02/02/2013 6:11:06 PM - System Checkpoint

RP1630: 04/02/2013 6:48:49 AM - System Checkpoint

RP1631: 07/02/2013 11:36:16 PM - System Checkpoint

RP1632: 10/02/2013 9:35:33 AM - System Checkpoint

RP1633: 11/02/2013 9:06:15 PM - System Checkpoint

RP1634: 14/02/2013 6:48:29 PM - System Checkpoint

RP1635: 14/02/2013 11:13:15 PM - Software Distribution Service 3.0

RP1636: 18/02/2013 4:29:23 PM - System Checkpoint

RP1637: 19/02/2013 7:42:09 PM - System Checkpoint

RP1638: 21/02/2013 7:22:42 PM - System Checkpoint

RP1639: 22/02/2013 8:04:29 PM - System Checkpoint

RP1640: 24/02/2013 5:27:50 PM - System Checkpoint

RP1641: 27/02/2013 9:50:09 PM - System Checkpoint

RP1642: 01/03/2013 8:38:42 PM - System Checkpoint

RP1643: 03/03/2013 9:37:12 PM - System Checkpoint

RP1644: 05/03/2013 8:47:49 PM - System Checkpoint

RP1645: 08/03/2013 8:45:42 AM - System Checkpoint

RP1646: 08/03/2013 10:16:50 AM - TrueCrypt installation

RP1647: 08/03/2013 10:36:48 AM - Removed J2SE Runtime Environment 5.0 Update 10

RP1648: 08/03/2013 10:45:28 AM - Removed SUPERAntiSpyware Professional

RP1649: 08/03/2013 11:21:20 AM - Removed KODAK Gallery Upload Software.

RP1650: 08/03/2013 9:49:42 PM - Removed Kerio Personal Firewall

RP1651: 08/03/2013 9:50:16 PM - Removed Java™ 6 Update 20

RP1652: 08/03/2013 9:58:16 PM - Agnitum Outpost Firewall Pro Restore Point: install

RP1653: 08/03/2013 10:25:46 PM - Installed Java™ 7 Update 5

RP1654: 08/03/2013 10:40:05 PM - Removed Java™ 7 Update 5

RP1655: 08/03/2013 10:40:59 PM - Installed Java 7 Update 17

RP1656: 09/03/2013 8:28:56 AM - Removed Java 7 Update 17

RP1657: 09/03/2013 8:41:14 AM - Software Distribution Service 3.0


==== Installed Programs ======================


7-Zip 9.20

Adobe AIR

Adobe Digital Editions 2.0

Adobe Flash Player 11 ActiveX

Adobe Flash Player 11 Plugin

Adobe Reader X (10.1.6)

AIDA64 Extreme Edition v2.50

Apple Application Support

Apple Mobile Device Support

Apple Software Update

ArcSoft Panorama Maker 3.5

ArcSoft PhotoImpression 5


avast! Pro Antivirus




Cantax T2 Pay-Per-File 11.1

Compatibility Pack for the 2007 Office system


Critical Update for Windows Media Player 11 (KB959772)


DivX Codec

DivX Content Uploader

DivX Converter

DivX Player

DivX Web Player

DVD Solution

EPSON Artisan 830 Series Printer Uninstall

EPSON CX 7800 Guide

Epson Event Manager

Epson FAX Utility

Epson PC-FAX Driver

EPSON Printer Software


EpsonNet Print

EpsonNet Setup 3.3

Garmin Training Center

Garmin USB Drivers

Genie Backup Manager Pro 8.0

Hard Disk Sentinel PRO

High Definition Audio Driver Package - KB888111

HighMAT Extension to Microsoft Windows XP CD Writing Wizard

Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)

Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)

Hotfix for Windows Internet Explorer 7 (KB947864)

Hotfix for Windows Media Format 11 SDK (KB929399)

Hotfix for Windows Media Format SDK (KB902344)

Hotfix for Windows Media Player 11 (KB939683)

Hotfix for Windows XP (KB2158563)

Hotfix for Windows XP (KB2443685)

Hotfix for Windows XP (KB2570791)

Hotfix for Windows XP (KB2633952)

Hotfix for Windows XP (KB2756822)

Hotfix for Windows XP (KB2779562)

Hotfix for Windows XP (KB952287)

Hotfix for Windows XP (KB954550-v5)

Hotfix for Windows XP (KB961118)

Hotfix for Windows XP (KB970653-v3)

Hotfix for Windows XP (KB976098-v2)

Hotfix for Windows XP (KB979306)

Hotfix for Windows XP (KB981793)

HP Image Zone 3.5

HP Photosmart Cameras 3.5

HP Software Update



Image for Windows 2.80


Intel® Active Client Manager 2.0 HECI Driver

Intel® Graphics Media Accelerator Driver

Intel® PRO Network Connections



League of Legends

Logitech Webcam Software

Logitech Webcam Software Driver Package

Malwarebytes Anti-Malware version

Maxtor Manager

Memories Disc Creator 2.0

Microsoft .NET Framework 1.1

Microsoft .NET Framework 1.1 Security Update (KB2698023)

Microsoft .NET Framework 1.1 Security Update (KB2742597)

Microsoft .NET Framework 1.1 Security Update (KB979906)

Microsoft .NET Framework 2.0 Service Pack 2

Microsoft .NET Framework 3.0 Service Pack 2

Microsoft .NET Framework 3.5 SP1

Microsoft Base Smart Card Cryptographic Service Provider Package

Microsoft Compression Client Pack 1.0 for Windows XP

Microsoft IntelliPoint 6.1

Microsoft Interactive Training

Microsoft Internationalized Domain Names Mitigation APIs

Microsoft National Language Support Downlevel APIs

Microsoft Office 2007 Service Pack 3 (SP3)

Microsoft Office Excel MUI (English) 2007

Microsoft Office File Validation Add-In

Microsoft Office Home and Student 2007

Microsoft Office OneNote MUI (English) 2007

Microsoft Office PowerPoint MUI (English) 2007

Microsoft Office Proof (English) 2007

Microsoft Office Proof (French) 2007

Microsoft Office Proof (Spanish) 2007

Microsoft Office Proofing (English) 2007

Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)

Microsoft Office Shared MUI (English) 2007

Microsoft Office Shared Setup Metadata MUI (English) 2007

Microsoft Office Word MUI (English) 2007

Microsoft Software Update for Web Folders (English) 12

Microsoft User-Mode Driver Framework Feature Pack 1.0

Microsoft Visual C++ 2005 Redistributable

Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161

Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219

Mozilla Firefox (3.6.23)

Mozilla Thunderbird (3.1.15)

MSXML 4.0 SP2 (KB925672)

MSXML 4.0 SP2 (KB927978)

MSXML 4.0 SP2 (KB936181)

MSXML 4.0 SP2 (KB954430)

MSXML 4.0 SP2 (KB973688)

MSXML 4.0 SP2 Parser and SDK

MSXML 6 Service Pack 2 (KB954459)


Multimedia Launcher

Nero OEM

Nikon Message Center

Outpost Firewall Pro 7.5.3







QuickBooks EasyStart 2010

QuickBooks Premier Edition 2010




SciFinder Scholar 2007

SciFinder Scholar Toolbar

Security Update for CAPICOM (KB931906)

Security Update for Microsoft .NET Framework 3.5 SP1 (KB2604111)

Security Update for Microsoft .NET Framework 3.5 SP1 (KB2657424)

Security Update for Microsoft .NET Framework 3.5 SP1 (KB2736416)

Security Update for Microsoft Office 2007 suites (KB2596615) 32-Bit Edition

Security Update for Microsoft Office 2007 suites (KB2596672) 32-Bit Edition

Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition

Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition

Security Update for Microsoft Office 2007 suites (KB2596785) 32-Bit Edition

Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition

Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition

Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition

Security Update for Microsoft Office 2007 suites (KB2687311) 32-Bit Edition

Security Update for Microsoft Office 2007 suites (KB2687441) 32-Bit Edition

Security Update for Microsoft Office 2007 suites (KB2687499) 32-Bit Edition

Security Update for Microsoft Office 2007 suites (KB2760416) 32-Bit Edition

Security Update for Microsoft Office Excel 2007 (KB2687307) 32-Bit Edition

Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition

Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition

Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition

Security Update for Microsoft Office Word 2007 (KB2760421) 32-Bit Edition

Security Update for Microsoft Windows (KB2564958)

Security Update for Step By Step Interactive Training (KB898458)

Security Update for Step By Step Interactive Training (KB923723)

Security Update for Windows Internet Explorer 7 (KB928090)

Security Update for Windows Internet Explorer 7 (KB929969)

Security Update for Windows Internet Explorer 7 (KB931768)

Security Update for Windows Internet Explorer 7 (KB933566)

Security Update for Windows Internet Explorer 7 (KB937143)

Security Update for Windows Internet Explorer 7 (KB938127)

Security Update for Windows Internet Explorer 7 (KB939653)

Security Update for Windows Internet Explorer 7 (KB942615)

Security Update for Windows Internet Explorer 7 (KB944533)

Security Update for Windows Internet Explorer 7 (KB950759)

Security Update for Windows Internet Explorer 7 (KB953838)

Security Update for Windows Internet Explorer 7 (KB956390)

Security Update for Windows Internet Explorer 7 (KB958215)

Security Update for Windows Internet Explorer 7 (KB960714)

Security Update for Windows Internet Explorer 7 (KB961260)

Security Update for Windows Internet Explorer 7 (KB963027)

Security Update for Windows Internet Explorer 7 (KB969897)

Security Update for Windows Internet Explorer 7 (KB972260)

Security Update for Windows Internet Explorer 8 (KB2183461)

Security Update for Windows Internet Explorer 8 (KB2360131)

Security Update for Windows Internet Explorer 8 (KB2416400)

Security Update for Windows Internet Explorer 8 (KB2482017)

Security Update for Windows Internet Explorer 8 (KB2497640)

Security Update for Windows Internet Explorer 8 (KB2510531)

Security Update for Windows Internet Explorer 8 (KB2530548)

Security Update for Windows Internet Explorer 8 (KB2544521)

Security Update for Windows Internet Explorer 8 (KB2559049)

Security Update for Windows Internet Explorer 8 (KB2586448)

Security Update for Windows Internet Explorer 8 (KB2618444)

Security Update for Windows Internet Explorer 8 (KB2647516)

Security Update for Windows Internet Explorer 8 (KB2675157)

Security Update for Windows Internet Explorer 8 (KB2699988)

Security Update for Windows Internet Explorer 8 (KB2722913)

Security Update for Windows Internet Explorer 8 (KB2744842)

Security Update for Windows Internet Explorer 8 (KB2761465)

Security Update for Windows Internet Explorer 8 (KB2792100)

Security Update for Windows Internet Explorer 8 (KB2797052)

Security Update for Windows Internet Explorer 8 (KB2799329)

Security Update for Windows Internet Explorer 8 (KB971961)

Security Update for Windows Internet Explorer 8 (KB972260)

Security Update for Windows Internet Explorer 8 (KB974455)

Security Update for Windows Internet Explorer 8 (KB976325)

Security Update for Windows Internet Explorer 8 (KB978207)

Security Update for Windows Internet Explorer 8 (KB981332)

Security Update for Windows Internet Explorer 8 (KB982381)

Security Update for Windows Media Player (KB2378111)

Security Update for Windows Media Player (KB911564)

Security Update for Windows Media Player (KB952069)

Security Update for Windows Media Player (KB954155)

Security Update for Windows Media Player (KB968816)

Security Update for Windows Media Player (KB973540)

Security Update for Windows Media Player (KB975558)

Security Update for Windows Media Player (KB978695)

Security Update for Windows Media Player 10 (KB911565)

Security Update for Windows Media Player 10 (KB917734)

Security Update for Windows Media Player 11 (KB936782)

Security Update for Windows Media Player 11 (KB954154)

Security Update for Windows Media Player 6.4 (KB925398)

Security Update for Windows XP (KB2079403)

Security Update for Windows XP (KB2115168)

Security Update for Windows XP (KB2121546)

Security Update for Windows XP (KB2160329)

Security Update for Windows XP (KB2229593)

Security Update for Windows XP (KB2259922)

Security Update for Windows XP (KB2279986)

Security Update for Windows XP (KB2286198)

Security Update for Windows XP (KB2296011)

Security Update for Windows XP (KB2296199)

Security Update for Windows XP (KB2347290)

Security Update for Windows XP (KB2360937)

Security Update for Windows XP (KB2387149)

Security Update for Windows XP (KB2393802)

Security Update for Windows XP (KB2412687)

Security Update for Windows XP (KB2419632)

Security Update for Windows XP (KB2423089)

Security Update for Windows XP (KB2436673)

Security Update for Windows XP (KB2440591)

Security Update for Windows XP (KB2443105)

Security Update for Windows XP (KB2476490)

Security Update for Windows XP (KB2476687)

Security Update for Windows XP (KB2478960)

Security Update for Windows XP (KB2478971)

Security Update for Windows XP (KB2479628)

Security Update for Windows XP (KB2479943)

Security Update for Windows XP (KB2481109)

Security Update for Windows XP (KB2483185)

Security Update for Windows XP (KB2485376)

Security Update for Windows XP (KB2485663)

Security Update for Windows XP (KB2503658)

Security Update for Windows XP (KB2503665)

Security Update for Windows XP (KB2506212)

Security Update for Windows XP (KB2506223)

Security Update for Windows XP (KB2507618)

Security Update for Windows XP (KB2507938)

Security Update for Windows XP (KB2508272)

Security Update for Windows XP (KB2508429)

Security Update for Windows XP (KB2509553)

Security Update for Windows XP (KB2511455)

Security Update for Windows XP (KB2524375)

Security Update for Windows XP (KB2535512)

Security Update for Windows XP (KB2536276-v2)

Security Update for Windows XP (KB2536276)

Security Update for Windows XP (KB2544893-v2)

Security Update for Windows XP (KB2544893)

Security Update for Windows XP (KB2555917)

Security Update for Windows XP (KB2562937)

Security Update for Windows XP (KB2566454)

Security Update for Windows XP (KB2567053)

Security Update for Windows XP (KB2567680)

Security Update for Windows XP (KB2570222)

Security Update for Windows XP (KB2570947)

Security Update for Windows XP (KB2584146)

Security Update for Windows XP (KB2585542)

Security Update for Windows XP (KB2592799)

Security Update for Windows XP (KB2598479)

Security Update for Windows XP (KB2603381)

Security Update for Windows XP (KB2618451)

Security Update for Windows XP (KB2619339)

Security Update for Windows XP (KB2620712)

Security Update for Windows XP (KB2621440)

Security Update for Windows XP (KB2624667)

Security Update for Windows XP (KB2631813)

Security Update for Windows XP (KB2633171)

Security Update for Windows XP (KB2639417)

Security Update for Windows XP (KB2641653)

Security Update for Windows XP (KB2646524)

Security Update for Windows XP (KB2647518)

Security Update for Windows XP (KB2653956)

Security Update for Windows XP (KB2655992)

Security Update for Windows XP (KB2659262)

Security Update for Windows XP (KB2660465)

Security Update for Windows XP (KB2661637)

Security Update for Windows XP (KB2676562)

Security Update for Windows XP (KB2685939)

Security Update for Windows XP (KB2686509)

Security Update for Windows XP (KB2691442)

Security Update for Windows XP (KB2695962)

Security Update for Windows XP (KB2698365)

Security Update for Windows XP (KB2705219)

Security Update for Windows XP (KB2707511)

Security Update for Windows XP (KB2709162)

Security Update for Windows XP (KB2712808)

Security Update for Windows XP (KB2718523)

Security Update for Windows XP (KB2719985)

Security Update for Windows XP (KB2723135)

Security Update for Windows XP (KB2724197)

Security Update for Windows XP (KB2727528)

Security Update for Windows XP (KB2731847)

Security Update for Windows XP (KB2753842-v2)

Security Update for Windows XP (KB2753842)

Security Update for Windows XP (KB2757638)

Security Update for Windows XP (KB2758857)

Security Update for Windows XP (KB2761226)

Security Update for Windows XP (KB2770660)

Security Update for Windows XP (KB2778344)

Security Update for Windows XP (KB2779030)

Security Update for Windows XP (KB2780091)

Security Update for Windows XP (KB2799494)

Security Update for Windows XP (KB2802968)

Security Update for Windows XP (KB923561)

Security Update for Windows XP (KB923789)

Security Update for Windows XP (KB938464-v2)

Security Update for Windows XP (KB938464)

Security Update for Windows XP (KB941569)

Security Update for Windows XP (KB946648)

Security Update for Windows XP (KB950760)

Security Update for Windows XP (KB950762)

Security Update for Windows XP (KB950974)

Security Update for Windows XP (KB951066)

Security Update for Windows XP (KB951376-v2)

Security Update for Windows XP (KB951376)

Security Update for Windows XP (KB951698)

Security Update for Windows XP (KB951748)

Security Update for Windows XP (KB952004)

Security Update for Windows XP (KB952954)

Security Update for Windows XP (KB953839)

Security Update for Windows XP (KB954211)

Security Update for Windows XP (KB954600)

Security Update for Windows XP (KB955069)

Security Update for Windows XP (KB956391)

Security Update for Windows XP (KB956572)

Security Update for Windows XP (KB956744)

Security Update for Windows XP (KB956802)

Security Update for Windows XP (KB956803)

Security Update for Windows XP (KB956841)

Security Update for Windows XP (KB956844)

Security Update for Windows XP (KB957095)

Security Update for Windows XP (KB957097)

Security Update for Windows XP (KB958644)

Security Update for Windows XP (KB958687)

Security Update for Windows XP (KB958690)

Security Update for Windows XP (KB958869)

Security Update for Windows XP (KB959426)

Security Update for Windows XP (KB960225)

Security Update for Windows XP (KB960715)

Security Update for Windows XP (KB960803)

Security Update for Windows XP (KB960859)

Security Update for Windows XP (KB961371)

Security Update for Windows XP (KB961373)

Security Update for Windows XP (KB961501)

Security Update for Windows XP (KB968537)

Security Update for Windows XP (KB969059)

Security Update for Windows XP (KB969898)

Security Update for Windows XP (KB969947)

Security Update for Windows XP (KB970238)

Security Update for Windows XP (KB970430)

Security Update for Windows XP (KB971468)

Security Update for Windows XP (KB971486)

Security Update for Windows XP (KB971557)

Security Update for Windows XP (KB971633)

Security Update for Windows XP (KB971657)

Security Update for Windows XP (KB972270)

Security Update for Windows XP (KB973346)

Security Update for Windows XP (KB973354)

Security Update for Windows XP (KB973507)

Security Update for Windows XP (KB973525)

Security Update for Windows XP (KB973869)

Security Update for Windows XP (KB973904)

Security Update for Windows XP (KB974112)

Security Update for Windows XP (KB974318)

Security Update for Windows XP (KB974392)

Security Update for Windows XP (KB974571)

Security Update for Windows XP (KB975025)

Security Update for Windows XP (KB975467)

Security Update for Windows XP (KB975560)

Security Update for Windows XP (KB975561)

Security Update for Windows XP (KB975562)

Security Update for Windows XP (KB975713)

Security Update for Windows XP (KB977165)

Security Update for Windows XP (KB977816)

Security Update for Windows XP (KB977914)

Security Update for Windows XP (KB978037)

Security Update for Windows XP (KB978251)

Security Update for Windows XP (KB978262)

Security Update for Windows XP (KB978338)

Security Update for Windows XP (KB978542)

Security Update for Windows XP (KB978601)

Security Update for Windows XP (KB978706)

Security Update for Windows XP (KB979309)

Security Update for Windows XP (KB979482)

Security Update for Windows XP (KB979559)

Security Update for Windows XP (KB979683)

Security Update for Windows XP (KB979687)

Security Update for Windows XP (KB980195)

Security Update for Windows XP (KB980218)

Security Update for Windows XP (KB980232)

Security Update for Windows XP (KB980436)

Security Update for Windows XP (KB981322)

Security Update for Windows XP (KB981852)

Security Update for Windows XP (KB981957)

Security Update for Windows XP (KB981997)

Security Update for Windows XP (KB982132)

Security Update for Windows XP (KB982214)

Security Update for Windows XP (KB982665)

Security Update for Windows XP (KB982802)

Sid Meier's Civilization 4

SigmaTel Audio

Simply Accounting by Sage 2006

Simply Accounting by Sage 2007



Skype™ 6.1

Soap 3.0 Toolkit

SonicWALL Global VPN Client


SupportSoft Assisted Service

T4 Internet - T4 par Internet 11.0



TBIView 4.31 - TBIMount 1.10

TeraByte OS Deployment Tool Suite Professional version 1.44



UFile 2007

UFile 2008

UFile 2009

UFile 2010

UFile 2011

UFile 2012

UFile Updater 2007

UFile Updater 2008

UFile Updater 2009

UFile Updater 2010

UFile Updater 2011

UFile Updater 2012


Update for 2007 Microsoft Office System (KB967642)

Update for Microsoft .NET Framework 3.5 SP1 (KB963707)

Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition

Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition

Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition

Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition

Update for Windows Internet Explorer 8 (KB2447568)

Update for Windows Internet Explorer 8 (KB972636)

Update for Windows Internet Explorer 8 (KB973874)

Update for Windows Internet Explorer 8 (KB975364)

Update for Windows Internet Explorer 8 (KB976662)

Update for Windows Internet Explorer 8 (KB976749)

Update for Windows Internet Explorer 8 (KB980182)

Update for Windows Internet Explorer 8 (KB980302)

Update for Windows XP (KB2141007)

Update for Windows XP (KB2345886)

Update for Windows XP (KB2467659)

Update for Windows XP (KB2541763)

Update for Windows XP (KB2607712)

Update for Windows XP (KB2616676-v2)

Update for Windows XP (KB2641690)

Update for Windows XP (KB2661254-v2)

Update for Windows XP (KB2718704)

Update for Windows XP (KB2736233)

Update for Windows XP (KB2749655)

Update for Windows XP (KB951072-v2)

Update for Windows XP (KB951978)

Update for Windows XP (KB955759)

Update for Windows XP (KB955839)

Update for Windows XP (KB967715)

Update for Windows XP (KB968389)

Update for Windows XP (KB971029)

Update for Windows XP (KB971737)

Update for Windows XP (KB973687)

Update for Windows XP (KB973815)

WebEx Record and Playback

WebFldrs XP


Windows Driver Package - Garmin (grmnusb) GARMIN Devices (06/03/2009

Windows Genuine Advantage v1.3.0254.0

Windows Genuine Advantage Validation Tool (KB892130)

Windows Internet Explorer 7

Windows Internet Explorer 8

Windows Live Messenger

Windows Live Sign-in Assistant

Windows Media Connect

Windows Media Format 11 runtime

Windows Media Format SDK Hotfix - KB891122

Windows Media Player 11

Windows XP Service Pack 3


==== Event Viewer Messages From Past Week ========


09/03/2013 8:37:19 AM, error: W32Time [17] - Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15 minutes. The error was: A socket operation was attempted to an unreachable host. (0x80072751)

09/03/2013 3:39:44 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: Aavmker4 AFD aswRdr aswSnx aswSP aswTdi Fips intelppm IPSec MRxSmb NetBIOS NetBT RasAcd RCFOX Rdbss SandBox Tcpip truecrypt

09/03/2013 3:39:44 PM, error: Service Control Manager [7001] - The TCP/IP NetBIOS Helper service depends on the AFD service which failed to start because of the following error: A device attached to the system is not functioning.

09/03/2013 3:39:44 PM, error: Service Control Manager [7001] - The IPSEC Services service depends on the IPSEC driver service which failed to start because of the following error: A device attached to the system is not functioning.

09/03/2013 3:39:44 PM, error: Service Control Manager [7001] - The DNS Client service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.

09/03/2013 3:39:44 PM, error: Service Control Manager [7001] - The DHCP Client service depends on the NetBios over Tcpip service which failed to start because of the following error: A device attached to the system is not functioning.

09/03/2013 3:39:44 PM, error: Service Control Manager [7001] - The Bonjour Service service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.

09/03/2013 3:39:44 PM, error: Service Control Manager [7001] - The Apple Mobile Device service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.

09/03/2013 3:39:37 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service StiSvc with arguments "" in order to run the server: {A1F4E726-8CF1-11D1-BF92-0060081ED811}

09/03/2013 3:39:29 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}

08/03/2013 11:21:31 AM, error: Service Control Manager [7023] - The Application Management service terminated with the following error: The specified module could not be found.

08/03/2013 10:48:41 AM, error: Print [19] - Sharing printer failed + 1722, Printer EPSON Stylus CX7800 Series share name EpsonCX7800.

08/03/2013 10:45:48 AM, error: fwdrv [4000] -

08/03/2013 10:03:56 PM, error: Service Control Manager [7011] - Timeout (30000 milliseconds) waiting for a transaction response from the acssrv service.

05/03/2013 8:07:09 PM, error: System Error [1003] - Error code 1000000a, parameter1 000000e8, parameter2 00000002, parameter3 00000001, parameter4 806e7a16.


==== End Of File ===========================

--- SecurityCheck checkup.txt ---

Results of screen317's Security Check version 0.99.60

Windows XP Service Pack 3 x86

Internet Explorer 8

``````````````Antivirus/Firewall Check:``````````````

avast! Pro Antivirus

Outpost Firewall Pro 7.5.3

`````````Anti-malware/Other Utilities Check:`````````

Malwarebytes Anti-Malware version

Adobe Flash Player 11.6.602.171

Adobe Reader 10.1.6 Adobe Reader out of Date!

Mozilla Firefox (3.6.23) Firefox out of Date!

Mozilla Thunderbird (3.1.15) Thunderbird out of Date!

````````Process Check: objlist.exe by Laurent````````

Malwarebytes Anti-Malware mbamservice.exe

Malwarebytes Anti-Malware mbamgui.exe

Malwarebytes' Anti-Malware mbamscheduler.exe

Alwil Software Avast5 AvastSvc.exe

Alwil Software Avast5 avastUI.exe

`````````````````System Health check`````````````````

Total Fragmentation on Drive C:: 11% Defragment your hard drive soon! (Do NOT defrag if SSD!)

````````````````````End of Log``````````````````````

--- JRT.txt ---


Junkware Removal Tool (JRT) by Thisisu

Version: 4.6.9 (03.06.2013:1)

OS: Microsoft Windows XP x86

Ran by user1 on 09/03/2013 at 22:00:39.92


~~~ Services

~~~ Registry Values

Successfully repaired: [Registry Value] hkey_local_machine\software\microsoft\internet explorer\searchscopes\{0633ee93-d776-472f-a0ff-e1416b8b2e3a}\\DisplayName

Successfully repaired: [Registry Value] hkey_local_machine\software\microsoft\internet explorer\searchscopes\{0633ee93-d776-472f-a0ff-e1416b8b2e3a}\\URL

~~~ Registry Keys

~~~ Files

~~~ Folders


Scan was completed on 09/03/2013 at 23:08:21.04

End of JRT log


--- adwCleaner.txt ---

# AdwCleaner v2.114 - Logfile created 03/10/2013 at 07:49:10

# Updated 05/03/2013 by Xplode

# Operating system : Microsoft Windows XP Service Pack 3 (32 bits)

# User : user1 - FAMNDAMILY

# Boot Mode : Normal

# Running from : C:\Documents and Settings\user1\Desktop\adwcleaner.exe

# Option [search]

***** [services] *****

***** [Files / Folders] *****

File Found : C:\Program Files\Mozilla Firefox\.autoreg

***** [Registry] *****

Key Found : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\063A857434EDED11A893800002C0A966

Key Found : HKLM\Software\TENCENT

***** [internet Browsers] *****

-\\ Internet Explorer v8.0.6001.18702

[OK] Registry is clean.

-\\ Mozilla Firefox v3.6.23 (en-US)

File : C:\Documents and Settings\user1\Application Data\Mozilla\Firefox\Profiles\4482k8bz.default\prefs.js

[OK] File is clean.

File : C:\Documents and Settings\user2\Application Data\Mozilla\Firefox\Profiles\rmlmp86z.default\prefs.js

[OK] File is clean.

File : C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\xdnuwhg6.default\prefs.js

[OK] File is clean.

-\\ Google Chrome v [unable to get version]

File : C:\Documents and Settings\user1\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences

[OK] File is clean.


AdwCleaner[R1].txt - [1381 octets] - [10/03/2013 07:49:10]

########## EOF - C:\AdwCleaner[R1].txt - [1441 octets] ##########

--- RogueKiller RKreport.txt ---

RogueKiller V8.5.2 [Mar 9 2013] by Tigzy

mail : tigzyRK<at>gmail<dot>com

Feedback : http://www.geekstogo...13-roguekiller/

Website : http://tigzy.geeksto...roguekiller.php

Blog : http://tigzyrk.blogspot.com/

Operating System : Windows XP (5.1.2600 Service Pack 3) 32 bits version

Started in : Normal mode

User : user1 [Admin rights]

Mode : Scan -- Date : 03/09/2013 23:11:16

| ARK || FAK || MBR |

¤¤¤ Bad processes : 0 ¤¤¤

¤¤¤ Registry Entries : 4 ¤¤¤

[HJPOL] HKCU\[...]\System : DisableTaskMgr (0) -> FOUND

[HJPOL] HKCU\[...]\System : DisableRegistryTools (0) -> FOUND

[HJ SMENU] HKCU\[...]\Advanced : Start_ShowRecentDocs (0) -> FOUND

[HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND

¤¤¤ Particular Files / Folders: ¤¤¤

¤¤¤ Driver : [LOADED] ¤¤¤

¤¤¤ HOSTS File: ¤¤¤

--> C:\WINDOWS\system32\drivers\etc\hosts localhost

¤¤¤ MBR Check: ¤¤¤

+++++ PhysicalDrive0: ST31000528AS +++++

--- User ---

[MBR] 06116a5227ad3ed14d6aec2b9e2733aa

[bSP] 1485b3918382fc8b64884d0d43015ffe : Windows XP MBR Code

Partition table:

0 - [XXXXXX] FAT16 (0x06) [VISIBLE] Offset (sectors): 63 | Size: 262146 Mo

1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 536876235 | Size: 691720 Mo

User = LL1 ... OK!

User = LL2 ... OK!

+++++ PhysicalDrive1: ST3500418AS +++++

--- User ---

[MBR] f40561c642a3c3be9f54cb801c7eb4b5

[bSP] 65f7046bf57d4ef566b78d33c1f595ef : Windows XP MBR Code

Partition table:

0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 476939 Mo

User = LL1 ... OK!

User = LL2 ... OK!

Finished : << RKreport[1]_S_03092013_02d2311.txt >>


Link to post
Share on other sites

Hy there and sorry for the delay.

I do not see anything in the log which needs attention. Roguekillers MBR check is a little bit different to routine from DDS. So it can happen that DDS having problems and is one of the reason the developer added the function to disable it.

If the internet dropouts are still present, try TFC.exe and flush the dnscache. Also had this problem with my old netbook and it did help.

Please download TFC by OldTimer to your desktop.

  • Close any open windows.
  • Please double-click TFC.exe to run it.
    Vista and Win7 Users: Please right-click on the file and choose Run As Administrator.
  • TFC will close all open programs itself in order to run.
  • Click the Start button to begin the process
  • Allow TFC to run uninterrupted.
  • The program should not take long to finish it's job.
  • Once it's finished it should automatically reboot your machine. If it does not, please manually reboot the machine yourself to ensure a complete clean.

It's normal after running TFC cleaner that the PC will be slower to boot the first time.

Link to post
Share on other sites

Hey, Daniel. Thanks for responding, and no worries about the delay -- I know you guys are busy helping with malware, and this wasn't really an urgent issue or infection.

Any comment on Key Found : HKLM\Software\TENCENT ? I can't find anything named TENCENT on the system drive, only that one mention in the registry, so not sure where it came from. Online I see references to Tencent QQ, but not sure if that's related.

I will get back to you about TFC and the dns flush, but I'm going to be swamped today and tomorrow, so will likely not get to this until the weekend (my sister needed the computer back and I will have to go over as I'm doing this myself). But I will post back.

Thanks very much for looking through the logs, I appreciate your attention & time.


Link to post
Share on other sites

Hi Daniel. Things are looking good; she didn't have any internet drop-outs this past week. I'm thinking that's due to changing the firewall from the venerable old kerio and removing a bunch of junk, but we'll see as time goes on. Thanks for the tip on using TFC -- I've cleaned out a couple of computers now.


Link to post
Share on other sites

Glad we could help. :)

If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.