Jump to content

Dban and hope for a re-install or attempt to "fix"


Recommended Posts

My Wife has an old acer laptop aspire 3680- running vista home basic. She lost the boot / recovery CD's. She got presumably a virus (or did something) which has messed with the registry files and prevents the machine from booting although the bios seems intact. I can't find a system recovery disk for Vista Home Basic, just one from dell for Vista Home premium. I tried to use it to allow the utility to fix itself and it is not able to. The question boils down to: Am I better off to deban the system and hope I can re install off a vista home premium disk or attempt to do soemthing else? if so what? I have tired to order a cd from acer who notes they will not /cannot sell me a boot/ reinstall cd/ dvd for this machine.

THANK YOU!!!- Ariel

I was able to find/fix them with webroot and save her data by removing the hard drive and plugging it into my pc. Here is the log file for the past 3.5 days:

Mon 2013-05-13 11:04:33.0788 Scan Results: Files Scanned: 45318, Duration: 1m 30s, Malicious Files: 0

Mon 2013-05-13 11:04:33.0819 Scan Finished: [iD: 266 - Seq: 66841472]

Mon 2013-05-13 22:32:26.0034 SLevel updated to CA0UEN20BB000000NB000181OV00102ARH0004EDSC000287MM000CEA

Tue 2013-05-14 06:25:09.0185 Blocked website: http://filestore72.info/download.php?id=98b8371eTue 2013-05-14 06:25:27.0014 Begin passive write scan (1 file(s))

.54256 - 0100007F.53744]

Tue 2013-05-14 06:25:09.0185 Closed network connection: [5101A8C0.15583 - 63E17D4A.47873]

Tue 2013-05-14 06:25:09.0185 Closed network connection: [5101A8C0.17119 - B4E17D4A.47873]

Tue 2013-05-14 06:25:09.0186 Closed network connection: [5101A8C0.17887 - B4E17D4A.20480]

Tue 2013-05-14 06:25:09.0186 Closed network connection: [5101A8C0.28895 - 014A0D1F.47873]

Tue 2013-05-14 06:25:09.0186 Closed network connection: [5101A8C0.31711 - 7CE17D4A.20480]

Tue 2013-05-14 06:25:09.0186 Closed network connection: [5101A8C0.31967 - 1A1FAC41.20480]

Tue 2013-05-14 06:25:09.0186 Closed network connection: [5101A8C0.32223 - 1A1FAC41.20480]

Tue 2013-05-14 06:25:09.0186 Closed network connection: [5101A8C0.32479 - 79E17D4A.20480]

Tue 2013-05-14 06:25:09.0186 Closed network connection: [5101A8C0.32991 - 6BD03F17.20480]

Tue 2013-05-14 06:25:09.0186 Closed network connection: [5101A8C0.37855 - 10F8AB45.47873]

Tue 2013-05-14 06:25:09.0186 Closed network connection: [5101A8C0.38111 - 715EFEA5.20480]

Tue 2013-05-14 06:25:09.0186 Closed network connection: [5101A8C0.38623 - 6FE17D4A.47873]

Tue 2013-05-14 06:25:09.0186 Closed network connection: [5101A8C0.38879 - 63E17D4A.47873]

Tue 2013-05-14 06:25:09.0186 Closed network connection: [5101A8C0.39135 - FD0D1B04.20480]

Tue 2013-05-14 06:25:09.0186 Closed network connection: [0100007F.3564 - 0100007F.3820]

Tue 2013-05-14 06:25:09.0186 Closed network connection: [0100007F.3820 - 0100007F.3564]

Tue 2013-05-14 06:25:09.0186 Closed network connection: [5101A8C0.51696 - 75E17D4A.47873]

Tue 2013-05-14 06:25:21.0012 Begin passive write scan (1 file(s))

Tue 2013-05-14 06:25:21.0538 End passive write scan (1 file(s))

Tue 2013-05-14 06:25:27.0014 Begin passive write scan (1 file(s))

Tue 2013-05-14 06:25:27.0248 End passive write scan (1 file(s))

Tue 2013-05-14 06:26:01.0305 Scan Started: [iD: 267 - Flags: 551/0]

Tue 2013-05-14 06:27:25.0834 Scan Results: Files Scanned: 45422, Duration: 1m 24s, Malicious Files: 0

Tue 2013-05-14 06:27:25.0858 Scan Finished: [iD: 267 - Seq: 66911244]

Tue 2013-05-14 06:33:21.0578 Saved updated configuration

Tue 2013-05-14 06:33:41.0806 Saved updated configuration

Tue 2013-05-14 06:34:14.0706 Monitoring process C:\Program Files\Oracle\VirtualBox\VBoxTestOGL.exe [2984BB5F24AA4460BB2E8680489B24C4]. Type: 4 (24655)

Tue 2013-05-14 06:34:14.0735 Monitoring process C:\Program Files\Oracle\VirtualBox\VBoxTestOGL.exe [2984BB5F24AA4460BB2E8680489B24C4]. Type: 8 (24655)

Tue 2013-05-14 06:34:15.0759 Monitoring process C:\Program Files\Oracle\VirtualBox\VBoxTestOGL.exe [2984BB5F24AA4460BB2E8680489B24C4]. Type: 4 (24655)

Tue 2013-05-14 06:34:15.0761 Monitoring process C:\Program Files\Oracle\VirtualBox\VBoxTestOGL.exe [2984BB5F24AA4460BB2E8680489B24C4]. Type: 8 (24655)

Tue 2013-05-14 06:37:35.0339 Monitoring process C:\Program Files\Oracle\VirtualBox\VBoxTestOGL.exe [2984BB5F24AA4460BB2E8680489B24C4]. Type: 4 (24655)

Tue 2013-05-14 06:37:35.0341 Monitoring process C:\Program Files\Oracle\VirtualBox\VBoxTestOGL.exe [2984BB5F24AA4460BB2E8680489B24C4]. Type: 8 (24655)

Tue 2013-05-14 06:43:15.0416 Monitoring process C:\Program Files\Oracle\VirtualBox\VBoxTestOGL.exe [2984BB5F24AA4460BB2E8680489B24C4]. Type: 4 (24655)

Tue 2013-05-14 06:43:15.0418 Monitoring process C:\Program Files\Oracle\VirtualBox\VBoxTestOGL.exe [2984BB5F24AA4460BB2E8680489B24C4]. Type: 8 (24655)

Tue 2013-05-14 06:53:47.0191 Scan Started: L:\| [iD: 268 - Flags: 256/4]

Tue 2013-05-14 06:54:10.0469 Scan Started: L:\| [iD: 269 - Flags: 256/4]

Tue 2013-05-14 06:54:16.0619 Scan Started: M:\| [iD: 270 - Flags: 256/4]

Tue 2013-05-14 06:54:47.0576 Scan Results: Files Scanned: 344, Duration: 30s, Malicious Files: 0

Tue 2013-05-14 06:54:47.0592 Scan Finished: [iD: 270 - Seq: 66912886]

Tue 2013-05-14 06:56:56.0297 Scan Started: M:\| [iD: 271 - Flags: 256/4]

Tue 2013-05-14 06:56:57.0139 Scan Results: Files Scanned: 344, Duration: 1s, Malicious Files: 0

Tue 2013-05-14 06:56:57.0222 Scan Finished: [iD: 271 - Seq: 66913016]

Tue 2013-05-14 06:57:05.0938 Scan Started: M:\| [iD: 272 - Flags: 256/4]

Tue 2013-05-14 06:57:06.0910 Scan Results: Files Scanned: 344, Duration: 1s, Malicious Files: 0

Tue 2013-05-14 06:57:06.0920 Scan Finished: [iD: 272 - Seq: 66913026]

Tue 2013-05-14 06:57:15.0305 Scan Started: M:\a5685719590c94e0b6f1b1598eb9| [iD: 273 - Flags: 256/4]

Tue 2013-05-14 06:57:15.0851 Scan Results: Files Scanned: 4, Duration: 1s, Malicious Files: 0

Tue 2013-05-14 06:57:15.0861 Scan Finished: [iD: 273 - Seq: 66913035]

Tue 2013-05-14 08:08:59.0977 Infection detected: l:\users\aisha\appdata\local\temp\low\0.013458229213684114.exe [MD5: 4A11611CBB5842A64BB78C5B7DD88A83] [3/00080000] [Trojan:Win32/Wantvi.I]

Tue 2013-05-14 08:08:59.0980 Infection detected: l:\users\aisha\appdata\local\temp\low\0.8046394988047528.exe [MD5: 7D54EB0D5DE3398D91B41C5560E39674] [3/00080000] [Trojan:Win32/Wantvi.I]

Tue 2013-05-14 08:08:59.0982 Infection detected: l:\users\aisha\appdata\local\temp\low\0.13544101843665834.exe [MD5: 26389FD253F5441AAC269729D585DA1C] [3/00080000] [Trojan:Win32/Wantvi.I]

Tue 2013-05-14 08:08:59.0984 Infection detected: l:\program files\2wire\sst\package\mccicoreinstaller_dsr.exe [MD5: 03F10FD62F33C3E61D8A78A0ED344DEB] [3/00080000] [W32.Malware.Gen]

Tue 2013-05-14 08:09:00.0056 Infection detected: l:\users\aisha\appdata\local\temp\low\0.013458229213684114.exe [MD5: 4A11611CBB5842A64BB78C5B7DD88A83] [3/00080000] [Trojan:Win32/Wantvi.I]

Tue 2013-05-14 08:09:00.0057 Infection detected: l:\users\aisha\appdata\local\temp\low\0.8046394988047528.exe [MD5: 7D54EB0D5DE3398D91B41C5560E39674] [3/00080000] [Trojan:Win32/Wantvi.I]

Tue 2013-05-14 08:09:00.0058 Infection detected: l:\users\aisha\appdata\local\temp\low\0.13544101843665834.exe [MD5: 26389FD253F5441AAC269729D585DA1C] [3/00080000] [Trojan:Win32/Wantvi.I]

Tue 2013-05-14 08:09:00.0059 Infection detected: l:\program files\2wire\sst\package\mccicoreinstaller_dsr.exe [MD5: 03F10FD62F33C3E61D8A78A0ED344DEB] [3/00080000] [W32.Malware.Gen]

Tue 2013-05-14 08:09:00.0297 Scan Results: Files Scanned: 242101, Duration: 1h 15m, Malicious Files: 4

Tue 2013-05-14 08:09:00.0373 Scan Results: Files Scanned: 242101, Duration: 1h 14m, Malicious Files: 4

Tue 2013-05-14 08:09:00.0383 Scan Finished: [iD: 268 - Seq: 66912845]

Tue 2013-05-14 08:09:00.0577 Scan Finished: [iD: 269 - Seq: 66912850]

Tue 2013-05-14 11:03:01.0650 Scan Started: [iD: 274 - Flags: 1575/16]

Tue 2013-05-14 11:04:24.0751 >>> Service started [v8.0.2.127]

Tue 2013-05-14 11:04:24.0751 Terminated abruptly in the last session

Tue 2013-05-14 11:04:24.0754 Connecting to 11 - 11

Tue 2013-05-14 11:04:24.0989 Scan Started: [iD: 264 - Flags: 551/0]

Tue 2013-05-14 11:04:24.0996 Monitoring process C:\Program Files (x86)\Backblaze\bzserv.exe [92C202D175C1877BA27908315DC4F7AD]. Type: 4 (28164)

Tue 2013-05-14 11:04:24.0997 Scan Started: [iD: 265 - Flags: 551/0]

Tue 2013-05-14 11:04:25.0003 Monitoring process C:\Program Files (x86)\Backblaze\bzbui.exe [C9D872DD8DF8E9AD3B8968B73D9C1FDC]. Type: 4 (28170)

Tue 2013-05-14 11:04:56.0401 Connected to B4

Tue 2013-05-14 11:05:46.0497 Scan Results: Files Scanned: 47226, Duration: 1m 21s, Malicious Files: 0

Tue 2013-05-14 11:05:46.0522 Scan Finished: [iD: 265 - Seq: 66927894]

Tue 2013-05-14 11:05:46.0568 Scan Results: Files Scanned: 47234, Duration: 1m 21s, Malicious Files: 0

Tue 2013-05-14 11:05:46.0592 Scan Finished: [iD: 264 - Seq: 66927894]

Tue 2013-05-14 16:23:32.0164 Scan Started: L:\| [iD: 266 - Flags: 256/132]

Tue 2013-05-14 17:29:47.0685 Infection detected: l:\users\aisha\appdata\local\temp\low\0.013458229213684114.exe [MD5: 4A11611CBB5842A64BB78C5B7DD88A83] [3/00080000] [Trojan:Win32/Wantvi.I]

Tue 2013-05-14 17:29:47.0694 Infection detected: l:\users\aisha\appdata\local\temp\low\0.8046394988047528.exe [MD5: 7D54EB0D5DE3398D91B41C5560E39674] [3/00080000] [Trojan:Win32/Wantvi.I]

Tue 2013-05-14 17:29:47.0699 Infection detected: l:\users\aisha\appdata\local\temp\low\0.13544101843665834.exe [MD5: 26389FD253F5441AAC269729D585DA1C] [3/00080000] [W32.Pdf.Exploit]

Tue 2013-05-14 17:29:47.0702 Infection detected: l:\program files\2wire\sst\package\mccicoreinstaller_dsr.exe [MD5: 03F10FD62F33C3E61D8A78A0ED344DEB] [3/00080000] [W32.Malware.Gen]

Tue 2013-05-14 17:29:48.0124 Scan Results: Files Scanned: 242101, Duration: 1h 6m, Malicious Files: 4

Tue 2013-05-14 17:29:48.0496 Scan Finished: [iD: 266 - Seq: 66947026]

Tue 2013-05-14 17:55:28.0539 Determination flags modified: l:\users\aisha\appdata\local\temp\low\0.013458229213684114.exe - MD5: 4A11611CBB5842A64BB78C5B7DD88A83, Size: 48128 bytes, Flags: 00000020

Tue 2013-05-14 17:55:28.0540 Determination flags modified: l:\users\aisha\appdata\local\temp\low\0.8046394988047528.exe - MD5: 7D54EB0D5DE3398D91B41C5560E39674, Size: 48128 bytes, Flags: 00000020

Tue 2013-05-14 17:55:28.0540 Determination flags modified: l:\users\aisha\appdata\local\temp\low\0.13544101843665834.exe - MD5: 26389FD253F5441AAC269729D585DA1C, Size: 49152 bytes, Flags: 00000020

Tue 2013-05-14 17:55:28.0541 Determination flags modified: l:\program files\2wire\sst\package\mccicoreinstaller_dsr.exe - MD5: 03F10FD62F33C3E61D8A78A0ED344DEB, Size: 1788387 bytes, Flags: 00000020

Tue 2013-05-14 17:55:33.0148 Performing cleanup entry: 1

Tue 2013-05-14 17:55:33.0148 Performing cleanup entry: 2

Tue 2013-05-14 17:55:33.0148 Performing cleanup entry: 3

Tue 2013-05-14 17:55:33.0148 Performing cleanup entry: 4

Tue 2013-05-14 17:55:34.0649 Scan Started: L:\| [iD: 267 - Flags: 256/132]

Tue 2013-05-14 19:00:44.0377 Scan Results: Files Scanned: 242097, Duration: 1h 5m, Malicious Files: 0

Tue 2013-05-14 19:00:44.0618 Scan Finished: [iD: 267 - Seq: 66952538]

Wed 2013-05-15 03:00:58.0930 Begin passive write scan (30 file(s))

Wed 2013-05-15 03:00:59.0503 End passive write scan (30 file(s))

Wed 2013-05-15 03:03:26.0277 Begin passive write scan (2 file(s))

Wed 2013-05-15 03:03:26.0497 End passive write scan (2 file(s))

Wed 2013-05-15 03:54:58.0901 Scan Started: [iD: 268 - Flags: 551/16]

Wed 2013-05-15 03:57:08.0016 Scan Results: Files Scanned: 62490, Duration: 2m 9s, Malicious Files: 0

Wed 2013-05-15 03:57:08.0089 Scan Finished: [iD: 268 - Seq: 66988544]

Wed 2013-05-15 07:21:56.0497 Begin passive write scan (51 file(s))

Wed 2013-05-15 07:21:58.0369 End passive write scan (51 file(s))

Wed 2013-05-15 07:21:58.0790 System shutting down.

Wed 2013-05-15 07:22:01.0863 Configuration Saved: CSCS0F08F0C1F3185A808B99C3BA7897A474,00011,00021,00031,00041,00051,00061,00070,00081,00091,000A1,000B1,000C1,000D0,000E1,000F0,001015,00113,00120,00130,00140,00151,00161,00170,00181,00191,001A0,001B0,001C1,001D0,001E0,001F1,00201,00211,00221,00231,00240,00251,00260,00270,00281,00291,002A0,002B1,002C1,002D0,002E1,002F1,00301,00311,00321,00331,00341,00351,00361,00371,00381,00390,003A1,003B1,003C2,003D1,003E1,003F1,00401,00411,00421,00430,00441,00451,00461,00471,00481,00491,004A1,004B1,004C1,004D1,004E1,004F1,00501,00511,00521,00530,00541,00551,00561,00571,00581,00591,005A1,005B1,005C0,005D0,005E1,005F0,00601,00612,00621,00631,00641,00653,00662,00672,00681,00692,006A1,006B1,006C1,006D2,006E1,006F1,00701,00711,00721,00731,00741,00753,00761,00771,00781,00791,007A0,007B0,007C0,007D0,007E0,007F0,00800,00810,00820,00830,00840,00850,00861,00870,00880,00890,008A0,008B0,008C0,008D0,008E0,008F0,00900,00910,00920,00930,00940,00950,00960,00970,00980,00990,009A0,009B0,009C0,009D0,009E0,009F0,00A00,00A10,00A20,00A30,00A40,00A50,00A60,00A70,00A80,00A90,00AA0,00AB0,00AC0,00AD0,00AE0,00AF0,00B00,00B10,00B20,00B30,00B40,00B50,00B60,00B70,00B80,00B90,00BA0,00BB0,00BC0,00BD0,00BE0,

Wed 2013-05-15 07:22:01.0863 <<< Service shut down successfully. Uptime: 1217 minute(s)

Wed 2013-05-15 07:23:05.0434 >>> Service started [v8.0.2.127]

Wed 2013-05-15 07:23:09.0004 Monitoring process C:\Program Files (x86)\Backblaze\bzserv.exe [92C202D175C1877BA27908315DC4F7AD]. Type: 4 (28164)

Wed 2013-05-15 07:23:09.0014 Monitoring process C:\Program Files (x86)\Backblaze\bzserv.exe [92C202D175C1877BA27908315DC4F7AD]. Type: 8 (28164)

Wed 2013-05-15 07:23:41.0366 Connecting to 11 - 11

Wed 2013-05-15 07:25:20.0426 Begin passive write scan (1 file(s))

Wed 2013-05-15 07:25:20.0660 End passive write scan (1 file(s))

Wed 2013-05-15 09:10:30.0762 User process connected successfully from PID 860, Session 1

Wed 2013-05-15 09:10:33.0321 Monitoring process C:\Program Files (x86)\Backblaze\bzbui.exe [C9D872DD8DF8E9AD3B8968B73D9C1FDC]. Type: 4 (28170)

Wed 2013-05-15 09:10:33.0414 Monitoring process C:\Program Files (x86)\Backblaze\bzbui.exe [C9D872DD8DF8E9AD3B8968B73D9C1FDC]. Type: 8 (28170)

Wed 2013-05-15 09:10:37.0479 Begin passive write scan (1 file(s))

Wed 2013-05-15 09:10:37.0728 End passive write scan (1 file(s))

Wed 2013-05-15 09:10:52.0923 Begin passive write scan (1 file(s))

Wed 2013-05-15 09:10:53.0172 End passive write scan (1 file(s))

Wed 2013-05-15 09:11:05.0278 Begin passive write scan (1 file(s))

Wed 2013-05-15 09:11:05.0543 End passive write scan (1 file(s))

Wed 2013-05-15 09:11:11.0939 Scan Started: [iD: 269 - Flags: 551/0]

Wed 2013-05-15 09:12:24.0152 Connected to B4

Wed 2013-05-15 09:13:01.0997 Scan Results: Files Scanned: 57187, Duration: 1m 49s, Malicious Files: 0

Wed 2013-05-15 09:13:02.0029 Scan Finished: [iD: 269 - Seq: 67007552]

Wed 2013-05-15 11:03:00.0372 Scan Started: [iD: 270 - Flags: 1575/0]

Wed 2013-05-15 11:04:25.0377 Scan Results: Files Scanned: 47245, Duration: 1m 24s, Malicious Files: 0

Wed 2013-05-15 11:04:25.0408 Scan Finished: [iD: 270 - Seq: 67014267]

Wed 2013-05-15 18:23:43.0785 Scan Started: J:\|L:\|M:\|N:\| [iD: 271 - Flags: 256/4]

Wed 2013-05-15 18:26:48.0512 Begin passive write scan (4 file(s))

Wed 2013-05-15 18:26:49.0142 End passive write scan (4 file(s))

Wed 2013-05-15 21:56:05.0116 Scan Results: Files Scanned: 889330, Duration: 3h 32m, Malicious Files: 0

Wed 2013-05-15 21:56:06.0686 Scan Finished: [iD: 271 - Seq: 67041658]

Thu 2013-05-16 07:23:19.0642 SLevel updated to CA0UJ0Z1BB000000NB000181OV00102ARH0004EDSC000287MM000CEA

Thu 2013-05-16 11:03:00.0064 Scan Started: [iD: 272 - Flags: 1575/0]

Thu 2013-05-16 11:04:39.0592 Scan Results: Files Scanned: 50109, Duration: 1m 39s, Malicious Files: 0

Thu 2013-05-16 11:04:39.0623 Scan Finished: [iD: 272 - Seq: 67100672]

Thu 2013-05-16 20:26:58.0391 Scan Started: L:\Users\Aisha\Desktop\AISHA-PC_scan1.mht| [iD: 273 - Flags: 256/4]

Thu 2013-05-16 20:26:58.0621 Scan Results: Files Scanned: 1, Duration: 1s, Malicious Files: 0

Thu 2013-05-16 20:26:58.0631 Scan Finished: [iD: 273 - Seq: 273]

Thu 2013-05-16 20:27:07.0886 Saved updated configuration

Thu 2013-05-16 20:28:27.0016 >>> Service started [v8.0.2.127]

Thu 2013-05-16 20:28:27.0016 Terminated abruptly in the last session

Thu 2013-05-16 20:28:27.0016 Connecting to 11 - 11

Thu 2013-05-16 20:28:27.0016 Connecting to 11 - 11

Thu 2013-05-16 20:28:27.0251 Scan Started: [iD: 269 - Flags: 551/0]

Thu 2013-05-16 20:28:27.0251 Monitoring process C:\Program Files (x86)\Backblaze\bzserv.exe [92C202D175C1877BA27908315DC4F7AD]. Type: 4 (28164)

Thu 2013-05-16 20:28:27.0256 Scan Started: [iD: 270 - Flags: 551/0]

Thu 2013-05-16 20:28:27.0261 Monitoring process C:\Program Files (x86)\Backblaze\bzbui.exe [C9D872DD8DF8E9AD3B8968B73D9C1FDC]. Type: 4 (28170)

Thu 2013-05-16 20:29:14.0682 Connected to B4

Thu 2013-05-16 20:30:23.0259 Scan Results: Files Scanned: 51702, Duration: 1m 55s, Malicious Files: 0

Thu 2013-05-16 20:30:23.0279 Scan Results: Files Scanned: 51700, Duration: 1m 56s, Malicious Files: 0

Thu 2013-05-16 20:30:23.0314 Scan Finished: [iD: 270 - Seq: 67134561]

Thu 2013-05-16 20:30:23.0314 Scan Finished: [iD: 269 - Seq: 67134561]

Thu 2013-05-16 20:55:39.0811 Begin passive write scan (1 file(s))

Thu 2013-05-16 20:55:40.0453 End passive write scan (1 file(s))

Thu 2013-05-16 21:23:42.0870 System shutting down.

Thu 2013-05-16 21:23:44.0835 Configuration Saved: CSCS0F08F0C1F3185A808B99C3BA7897A474,00011,00021,00031,00041,00051,00061,00070,00081,00091,000A1,000B1,000C1,000D0,000E1,000F0,001015,00113,00120,00130,00140,00151,00161,00170,00181,00191,001A0,001B0,001C1,001D0,001E0,001F1,00201,00211,00221,00231,00240,00251,00260,00270,00281,00291,002A0,002B1,002C1,002D0,002E1,002F1,00301,00311,00321,00331,00341,00351,00361,00371,00381,00390,003A1,003B1,003C2,003D1,003E1,003F1,00401,00411,00421,00430,00441,00451,00461,00471,00481,00491,004A1,004B1,004C1,004D1,004E1,004F1,00501,00511,00521,00530,00541,00551,00561,00571,00581,00591,005A1,005B1,005C0,005D0,005E1,005F0,00601,00612,00621,00631,00641,00653,00662,00672,00681,00692,006A1,006B1,006C1,006D2,006E1,006F1,00701,00711,00721,00731,00741,00753,00761,00771,00781,00791,007A0,007B0,007C0,007D0,007E0,007F0,00800,00810,00820,00830,00840,00850,00861,00870,00880,00890,008A0,008B0,008C0,008D0,008E0,008F0,00900,00910,00920,00930,00940,00950,00960,00970,00980,00990,009A0,009B0,009C0,009D0,009E0,009F0,00A00,00A10,00A20,00A30,00A40,00A50,00A60,00A70,00A80,00A90,00AA0,00AB0,00AC0,00AD0,00AE0,00AF0,00B00,00B10,00B20,00B30,00B40,00B50,00B60,00B70,00B80,00B90,00BA0,00BB0,00BC0,00BD0,00BE0,

Thu 2013-05-16 21:23:44.0835 <<< Service shut down successfully. Uptime: 55 minute(s)

Thu 2013-05-16 21:24:32.0866 >>> Service started [v8.0.2.127]

Thu 2013-05-16 21:24:36.0366 Monitoring process C:\Program Files (x86)\Backblaze\bzserv.exe [92C202D175C1877BA27908315DC4F7AD]. Type: 4 (28164)

Thu 2013-05-16 21:24:36.0986 Monitoring process C:\Program Files (x86)\Backblaze\bzserv.exe [92C202D175C1877BA27908315DC4F7AD]. Type: 8 (28164)

Thu 2013-05-16 21:26:36.0391 Monitoring process C:\Program Files (x86)\Backblaze\bzbui.exe [C9D872DD8DF8E9AD3B8968B73D9C1FDC]. Type: 4 (28170)

Thu 2013-05-16 21:26:36.0578 Monitoring process C:\Program Files (x86)\Backblaze\bzbui.exe [C9D872DD8DF8E9AD3B8968B73D9C1FDC]. Type: 8 (28170)

Thu 2013-05-16 21:26:38.0034 User process connected successfully from PID 856, Session 1

Thu 2013-05-16 21:27:19.0504 Connecting to 11 - 11

Thu 2013-05-16 21:27:20.0346 Begin passive write scan (2 file(s))

Thu 2013-05-16 21:27:20.0580 End passive write scan (2 file(s))

Thu 2013-05-16 21:27:39.0452 System shutting down.

Thu 2013-05-16 21:27:40.0560 Configuration Saved: CSCS0F08F0C1F3185A808B99C3BA7897A474,00011,00021,00031,00041,00051,00061,00070,00081,00091,000A1,000B1,000C1,000D0,000E1,000F0,001015,00113,00120,00130,00140,00151,00161,00170,00181,00191,001A0,001B0,001C1,001D0,001E0,001F1,00201,00211,00221,00231,00240,00251,00260,00270,00281,00291,002A0,002B1,002C1,002D0,002E1,002F1,00301,00311,00321,00331,00341,00351,00361,00371,00381,00390,003A1,003B1,003C2,003D1,003E1,003F1,00401,00411,00421,00430,00441,00451,00461,00471,00481,00491,004A1,004B1,004C1,004D1,004E1,004F1,00501,00511,00521,00530,00541,00551,00561,00571,00581,00591,005A1,005B1,005C0,005D0,005E1,005F0,00601,00612,00621,00631,00641,00653,00662,00672,00681,00692,006A1,006B1,006C1,006D2,006E1,006F1,00701,00711,00721,00731,00741,00753,00761,00771,00781,00791,007A0,007B0,007C0,007D0,007E0,007F0,00800,00810,00820,00830,00840,00850,00861,00870,00880,00890,008A0,008B0,008C0,008D0,008E0,008F0,00900,00910,00920,00930,00940,00950,00960,00970,00980,00990,009A0,009B0,009C0,009D0,009E0,009F0,00A00,00A10,00A20,00A30,00A40,00A50,00A60,00A70,00A80,00A90,00AA0,00AB0,00AC0,00AD0,00AE0,00AF0,00B00,00B10,00B20,00B30,00B40,00B50,00B60,00B70,00B80,00B90,00BA0,00BB0,00BC0,00BD0,00BE0,

Thu 2013-05-16 21:27:40.0560 <<< Service shut down successfully. Uptime: 3 minute(s)

Thu 2013-05-16 21:33:12.0618 >>> Service started [v8.0.2.127]

Thu 2013-05-16 21:33:15.0532 Monitoring process C:\Program Files (x86)\Backblaze\bzserv.exe [92C202D175C1877BA27908315DC4F7AD]. Type: 4 (28164)

Thu 2013-05-16 21:33:15.0542 Monitoring process C:\Program Files (x86)\Backblaze\bzserv.exe [92C202D175C1877BA27908315DC4F7AD]. Type: 8 (28164)

Thu 2013-05-16 21:33:21.0919 User process connected successfully from PID 812, Session 1

Thu 2013-05-16 21:33:24.0119 Monitoring process C:\Program Files (x86)\Backblaze\bzbui.exe [C9D872DD8DF8E9AD3B8968B73D9C1FDC]. Type: 4 (28170)

Thu 2013-05-16 21:33:24.0119 Monitoring process C:\Program Files (x86)\Backblaze\bzbui.exe [C9D872DD8DF8E9AD3B8968B73D9C1FDC]. Type: 8 (28170)

Thu 2013-05-16 21:33:48.0413 Connecting to 11 - 11

Thu 2013-05-16 21:33:48.0647 Begin passive write scan (2 file(s))

Thu 2013-05-16 21:33:48.0881 End passive write scan (2 file(s))

Thu 2013-05-16 21:53:23.0246 Begin passive write scan (1 file(s))

Thu 2013-05-16 21:53:23.0933 End passive write scan (1 file(s))

Thu 2013-05-16 21:53:29.0424 Begin passive write scan (1 file(s))

Thu 2013-05-16 21:53:32.0513 End passive write scan (1 file(s))

Thu 2013-05-16 21:55:42.0218 Begin passive write scan (27 file(s))

Thu 2013-05-16 21:55:42.0904 End passive write scan (27 file(s))

Thu 2013-05-16 21:57:21.0030 Begin passive write scan (1 file(s))

Thu 2013-05-16 21:57:22.0028 End passive write scan (1 file(s))

Thu 2013-05-16 21:59:05.0892 Begin passive write scan (1 file(s))

Thu 2013-05-16 21:59:06.0931 End passive write scan (1 file(s))

Thu 2013-05-16 22:00:38.0923 Begin passive write scan (28 file(s))

Thu 2013-05-16 22:00:39.0661 End passive write scan (28 file(s))

Thu 2013-05-16 22:00:41.0924 Begin passive write scan (49 file(s))

Thu 2013-05-16 22:00:42.0563 End passive write scan (49 file(s))

Thu 2013-05-16 22:01:02.0932 Begin passive write scan (2 file(s))

Thu 2013-05-16 22:01:03.0155 End passive write scan (2 file(s))

Thu 2013-05-16 22:01:05.0933 Begin passive write scan (1 file(s))

Thu 2013-05-16 22:01:06.0172 End passive write scan (1 file(s))

Thu 2013-05-16 22:01:37.0549 Monitoring process C:\Users\asergent\AppData\Local\Temp\InstHelper.exe [59B9DED2AC7B0AE80EF7DF0C3AE530FA]. Type: 3 (30289)

Thu 2013-05-16 22:01:37.0549 Monitoring process C:\Users\asergent\AppData\Local\Temp\InstHelper.exe [59B9DED2AC7B0AE80EF7DF0C3AE530FA]. Type: 4 (30289)

Thu 2013-05-16 22:01:37.0578 Monitoring process C:\Users\asergent\AppData\Local\Temp\InstHelper.exe [59B9DED2AC7B0AE80EF7DF0C3AE530FA]. Type: 8 (30289)

Thu 2013-05-16 22:01:39.0013 Begin passive write scan (1 file(s))

Thu 2013-05-16 22:01:39.0654 End passive write scan (1 file(s))

Thu 2013-05-16 22:28:21.0362 Blocked process from accessing protected data: C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [Type: 1]

Fri 2013-05-17 04:38:00.0732 Saved the product log to J:\Music\Aiesha's log file for webroot.log

Link to post
Share on other sites

  • Root Admin

Hello and Welcome to Malwarebytes,

I would suggest following the advice from the topic here Available Assistance for Possibly Infected Computers and having one of the Experts assist you with looking into your issue.

If they're unable to assist you and you cannot get the system restored you can purchase an install DVD and install a new fresh copy of Windows 7 which is much better than Vista anyways.

Microsoft Windows 7 Professional SP1 32-bit - OEM $139.99

Good luck

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.