Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.


Topics - pete

Pages: [1] 2 3
1
Suggestions and Site Feedback / Not saving log in password Edge
« on: January 17, 2020, 01:03:22 PM »
Hi all

I downloaded Edge today I have saved my log in information on several web sites.
On this site it will not save password etc.
Saves okay in Firefox.

Cheers Pete

2
Hi Everyone

I have reset my win 10 Pro Desktop computer.  Version 1709 build 16299.192.
I also did a reset on Win 10 Home Laptop computer version 1709 build 16299.194

I attempted to set up outlook on both computers put in my email etc, and all it does is says loading profile, let it run for 10 minutes. See attachment.
I have never had this problem before.

I am using Microsoft Office 365 version 1712  Build 8827.2148

In  Microsoft viewer Event ID 29 I have this     (The Store C:\Users\name\AppData\Local\Microsoft\name@bigpond.ost [s being re-pushed to the index for the following reason: newly created store. )   

3
I have just bought a laptop, doing checks etc.

I ran a belarc advisor says I need update KB2467173 (Microsoft Visual c++ 2010 Redistributable Package April 12 2011
When I ran Windows update states I am up to date.

In Programs I have Visual c++ 2010 version 10.0.30319 32 / 64 bit installed.

Acer Aspire ES 15
Windows 10 Home version 1703  Build 15063.483   64 Bit.

I have a tendency to just ignore Belarc Advisor and trust Windows update is correct.

Any advice will be very much appreciated.
 

4
Suggestions and Site Feedback / Firefox your connection is not secure
« on: July 09, 2017, 09:40:07 AM »
When I try to log into Landzdown Forum I get this warning from Firefox  ( your connection is not secure)

I have no trouble using Google.

Using Windows 10 Pro 64 bit  version 1703  Build 15063-447
Firefox version 54.0.01

5
I have  Microsoft Visual C++ 2008 redistributable   Package 32 bit and 64 bit versions 9.0.30729.4148.
 I believe that they were installed after I installed Symantec VIP Access Desktop. My bank requires it now.
https://idprotect.vip.symantec.com/desktop/download.v

Ran Belarc advisor and came up with missing security update; MS11-025: Description of the security update for Visual C++ 2008 SP1 Redistributable Package: June 14, 2011
https://support.microsoft.com/en-au/kb/2538243

Ran Windows update and Secunia PSI 3.0.0.11005 both found no updates.
Not sure if I should install update or not?

Windows 10 Pro 64 bit 8 GB ram.

6
Analysis and Malware Removal / Losing free space on Harddrive
« on: November 22, 2014, 07:42:38 AM »
Over the last week, I have been losing free space on the hard drive.  I have no clue to why this is happening. :embarrassed:
Any assistance will be very much appreciated.

Results of screen317's Security Check version 0.99.90 
 Windows Vista Service Pack 2 x86 (UAC is enabled) 
 Internet Explorer 9 
 Internet Explorer 8 
``````````````Antivirus/Firewall Check:``````````````[/u]
 Windows Firewall Disabled! 
avast! Antivirus   
 Antivirus up to date!   
`````````Anti-malware/Other Utilities Check:`````````[/u]
 WinPatrol
 SpywareBlaster 5.0   
 SUPERAntiSpyware     
 Secunia PSI (2.0.0.4003)   
 CCleaner     
 Adobe Flash Player    15.0.0.223 
 Adobe Reader XI 
 Mozilla Firefox (33.1.1)
 Google Chrome (38.0.2125.122)
 Google Chrome (39.0.2171.65)
 Google Chrome (chrome.exe..)
 Google Chrome (debug.log..)
 Google Chrome (Dictionaries...)
 Google Chrome (old_chrome.exe..)
````````Process Check: objlist.exe by Laurent````````[/u] 
 WinPatrol winpatrol.exe
 Malwarebytes Anti-Malware mbamservice.exe 
 Malwarebytes Anti-Malware mbam.exe 
 Malwarebytes Anti-Malware mbamscheduler.exe   
 AVAST Software Avast AvastSvc.exe 
 AVAST Software Avast afwServ.exe 
 AVAST Software Avast avastui.exe 
 AVAST Software Avast ng vbox\AvastVBoxSVC.exe
 Ruiware WinPatrol WinPatrol.exe 
`````````````````System Health check`````````````````[/u]
 Total Fragmentation on Drive C: 4 % Defragment your hard drive soon! (Do NOT defrag if SSD!)
````````````````````End of Log``````````````````````[/u]

DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 9.0.8112.16592
Run by ad at 19:53:06 on 2014-11-22
Microsoft® Windows Vista™ Home Basic   6.0.6002.2.1252.61.1033.18.3036.1802 [GMT 10.5:30]
.
AV: avast! Antivirus *Enabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: avast! Antivirus *Enabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus *Enabled* {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\SLsvc.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Program Files\AVAST Software\Avast\afwServ.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\RtHDVCpl.exe
C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files\Ruiware\WinPatrol\WinPatrol.exe
C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Malwarebytes Anti-Malware\mbam.exe
C:\Program Files\NETGEAR\WNA3100\WifiSvc.exe
C:\Windows\System32\WUDFHost.exe
C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
C:\Windows\System32\mobsync.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\vssvc.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\System32\svchost.exe -k swprv
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxps://www.google.com.au/
BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
BHO: WOT Helper: {C920E44A-7F78-4E64-BDD7-A57026E7FEB7} - c:\program files\wot\WOT.dll
TB: WOT: {71576546-354D-41C9-AAE8-31F2EC22BF0D} - c:\program files\wot\WOT.dll
TB: WOT: {71576546-354D-41c9-AAE8-31F2EC22BF0D} - c:\program files\wot\WOT.dll
uRun: [WinPatrol] c:\program files\ruiware\winpatrol\winpatrol.exe -expressboot
uRun: [WMPNSCFG] c:\program files\windows media player\WMPNSCFG.exe
mRun: [Windows Defender] c:\program files\windows defender\MSASCui.exe -hide
mRun: [RtHDVCpl] RtHDVCpl.exe
mRun: [Skytel] Skytel.exe
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [InstallerLauncher] "c:\program files\common files\bitdefender\setupinformation\{6f57816a-791a-4159-a75f-cfd0c7ea4fbf}\setuplauncher.exe" /run:"c:\program files\common files\bitdefender\setupinformation\{6f57816a-791a-4159-a75f-cfd0c7ea4fbf}\Installer.exe"
mRun: [AvastUI.exe] "c:\program files\avast software\avast\AvastUI.exe" /nogui
mPolicies-Explorer: BindDirectlyToPropertySetStorage = dword:0
mPolicies-Explorer: NoDriveTypeAutoRun = dword:255
mPolicies-Explorer: NoDriveAutoRun = dword:67108863
mPolicies-Explorer: EnableShellExecuteHooks = dword:1
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: SoftwareSASGeneration = dword:1
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
TCP: NameServer = 10.0.0.138
TCP: Interfaces\{9B88DD4F-ECC9-41D8-A29A-88C43772E82F} : DHCPNameServer = 10.0.0.138
Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - c:\program files\belarc\belarcadvisor\system\BAVoilaX.dll
Handler: wot - {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} - c:\program files\wot\WOT.dll
Notify: igfxcui - igfxdev.dll
SEH: {4F07DA45-8170-4859-9B5F-037EF2970034} - <orphaned>
LSA: Security Packages =  kerberos msv1_0 schannel wdigest tspkg
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\39.0.2171.65\installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\ad\appdata\roaming\mozilla\firefox\profiles\oa4h18x0.default\
FF - prefs.js: browser.startup.homepage - hxxps://www.google.com.au/?gws_rd=ssl
FF - plugin: c:\program files\adobe\reader 11.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\google\update\1.3.25.11\npGoogleUpdate3.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_15_0_0_223.dll
.
============= SERVICES / DRIVERS ===============
.
R0 aswNdis;avast! Firewall NDIS Filter Service;c:\windows\system32\drivers\aswNdis.sys [2014-11-21 12112]
R0 aswNdis2;avast! Firewall NDIS Driver;c:\windows\system32\drivers\aswNdis2.sys [2014-11-21 253640]
R0 aswRvrt;avast! Revert;c:\windows\system32\drivers\aswRvrt.sys [2014-11-21 49944]
R0 aswVmm;avast! VM Monitor;c:\windows\system32\drivers\aswVmm.sys [2014-11-21 206248]
R0 SCMNdisP;General NDIS Protocol Driver;c:\windows\system32\drivers\SCMNdisP.sys [2014-1-23 21728]
R1 aswKbd;aswKbd;c:\windows\system32\drivers\aswKbd.sys [2014-11-21 26136]
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswsnx.sys [2014-11-21 787800]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswsp.sys [2014-11-21 423784]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2011-7-23 12880]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2011-7-13 67664]
R2 !SASCORE;SAS Core Service;c:\program files\superantispyware\SASCore.exe [2014-7-23 142648]
R2 aswHwid;avast! HardwareID;c:\windows\system32\drivers\aswHwid.sys [2014-11-21 24184]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2014-11-21 70384]
R2 avast! Antivirus;avast! Antivirus;c:\program files\avast software\avast\AvastSvc.exe [2014-11-21 50344]
R2 avast! Firewall;avast! Firewall;c:\program files\avast software\avast\afwServ.exe [2014-11-21 104416]
R2 FontCache;Windows Font Cache Service;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [2008-1-21 21504]
R2 MBAMScheduler;MBAMScheduler;c:\program files\malwarebytes anti-malware\mbamscheduler.exe [2014-10-25 1871160]
R2 MBAMService;MBAMService;c:\program files\malwarebytes anti-malware\mbamservice.exe [2014-10-25 968504]
R2 VBoxAswDrv;VBoxAsw Support Driver;c:\program files\avast software\avast\ng\vbox\VBoxAswDrv.sys [2014-11-21 218192]
R2 WSWNA3100;WSWNA3100;c:\program files\netgear\wna3100\WifiSvc.exe [2014-1-23 285152]
R3 AvastVBoxSvc;AvastVBox COM Service;c:\program files\avast software\avast\ng\vbox\AvastVBoxSVC.exe [2014-11-21 3192344]
R3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-4-3 223232]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2014-10-25 23256]
R3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\MBAMSwissArmy.sys [2014-10-25 114904]
R3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys [2014-10-25 51928]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2013-9-11 105144]
S3 NPF;Netgroup Packet Filter;c:\windows\system32\drivers\npf.sys [2014-1-23 50704]
S3 PSI;PSI;c:\windows\system32\drivers\psi_mf.sys [2010-9-1 15544]
S3 Secunia PSI Agent;Secunia PSI Agent;c:\program files\secunia\psi\psia.exe [2011-10-14 994360]
S3 SystemExplorerHelpService;System Explorer Service;c:\program files\system explorer\service\SystemExplorerService.exe [2014-1-21 567144]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2013-9-11 770168]
.
=============== Created Last 30 ================
.
2014-11-21 01:48:19   --------   d-----w-   c:\users\ad\appdata\roaming\AVAST Software
2014-11-21 01:46:54   206248   ----a-w-   c:\windows\system32\drivers\aswVmm.sys
2014-11-21 01:46:52   70384   ----a-w-   c:\windows\system32\drivers\aswMonFlt.sys
2014-11-21 01:46:52   49944   ----a-w-   c:\windows\system32\drivers\aswRvrt.sys
2014-11-21 01:46:51   24184   ----a-w-   c:\windows\system32\drivers\aswHwid.sys
2014-11-21 01:46:49   787800   ----a-w-   c:\windows\system32\drivers\aswsnx.sys
2014-11-21 01:46:48   26136   ----a-w-   c:\windows\system32\drivers\aswKbd.sys
2014-11-21 01:46:47   253640   ----a-w-   c:\windows\system32\drivers\aswNdis2.sys
2014-11-21 01:46:31   43152   ----a-w-   c:\windows\avastSS.scr
2014-11-21 01:45:32   12112   ----a-w-   c:\windows\system32\drivers\aswNdis.sys
2014-11-21 01:42:39   --------   d-----w-   c:\programdata\AVAST Software
2014-11-21 01:37:25   --------   d-----w-   c:\program files\AVAST Software
2014-11-19 11:12:27   499200   ----a-w-   c:\windows\system32\kerberos.dll
2014-11-15 11:01:44   --------   d-----w-   c:\program files\SUPERAntiSpyware
2014-11-12 08:12:18   146432   ----a-w-   c:\windows\system32\msaudite.dll
2014-11-12 08:12:15   619520   ----a-w-   c:\windows\system32\adtschema.dll
2014-11-12 08:12:10   449536   ----a-w-   c:\windows\system32\termsrv.dll
2014-11-12 08:12:09   1259008   ----a-w-   c:\windows\system32\lsasrv.dll
2014-11-12 08:11:52   2048   ----a-w-   c:\windows\system32\msxml3r.dll
2014-11-12 08:11:51   1249280   ----a-w-   c:\windows\system32\msxml3.dll
2014-11-12 08:11:24   278528   ----a-w-   c:\windows\system32\schannel.dll
2014-11-12 08:11:09   67072   ----a-w-   c:\windows\system32\packager.dll
2014-11-12 08:10:54   729600   ----a-w-   c:\windows\system32\IMJP10K.DLL
2014-11-12 08:10:39   396800   ----a-w-   c:\windows\system32\AudioEng.dll
2014-11-12 08:10:39   316928   ----a-w-   c:\windows\system32\audiosrv.dll
2014-11-12 08:10:39   274432   ----a-w-   c:\windows\system32\AUDIOKSE.dll
2014-11-12 08:10:39   170496   ----a-w-   c:\windows\system32\EncDump.dll
2014-11-12 08:10:24   564224   ----a-w-   c:\windows\system32\oleaut32.dll
2014-11-11 08:06:09   --------   d-----w-   c:\users\ad\appdata\roaming\SUPERAntiSpyware.com
2014-11-11 08:05:42   --------   d-----w-   c:\programdata\SUPERAntiSpyware.com
2014-11-08 09:28:07   --------   d-----w-   c:\windows\system32\vbox
2014-11-08 08:49:07   257228   ----a-w-   c:\programdata\1415436453.bdinstall.bin
2014-10-24 14:12:40   --------   d-----w-   c:\users\ad\appdata\roaming\WinPatrol
2014-10-24 14:09:35   --------   d-----w-   c:\program files\SpywareBlaster
2014-10-24 14:01:08   114904   ----a-w-   c:\windows\system32\drivers\MBAMSwissArmy.sys
2014-10-24 14:00:34   75480   ----a-w-   c:\windows\system32\drivers\mbamchameleon.sys
2014-10-24 14:00:34   51928   ----a-w-   c:\windows\system32\drivers\mwac.sys
2014-10-24 14:00:34   23256   ----a-w-   c:\windows\system32\drivers\mbam.sys
2014-10-24 14:00:33   --------   d-----w-   c:\program files\Malwarebytes Anti-Malware
.
==================== Find3M  ====================
.
2014-11-12 08:47:35   71344   ----a-w-   c:\windows\system32\FlashPlayerCPLApp.cpl
2014-11-12 08:47:35   701104   ----a-w-   c:\windows\system32\FlashPlayerApp.exe
2014-10-27 19:05:44   1810944   ----a-w-   c:\windows\system32\jscript9.dll
2014-10-27 18:59:06   1129472   ----a-w-   c:\windows\system32\wininet.dll
2014-10-27 18:58:19   1427968   ----a-w-   c:\windows\system32\inetcpl.cpl
2014-10-27 18:56:58   142848   ----a-w-   c:\windows\system32\ieUnatt.exe
2014-10-27 18:56:40   421376   ----a-w-   c:\windows\system32\vbscript.dll
2014-10-27 18:55:20   2382848   ----a-w-   c:\windows\system32\mshtml.tlb
2014-10-27 18:55:17   11776   ----a-w-   c:\windows\system32\mshta.exe
2014-10-12 23:34:54   2054656   ----a-w-   c:\windows\system32\win32k.sys
2014-09-04 23:27:58   143360   ----a-w-   c:\windows\system32\drivers\fastfat.sys
2014-04-24 12:35:21   11211264   ----a-w-   c:\program files\common files\lpuninstall.exe
2014-01-27 13:20:52   49940480   ----a-w-   c:\program files\GUTCB3B.tmp
.
============= FINISH: 19:53:42.23 ===============

.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft® Windows Vista™ Home Basic
Boot Device: \Device\HarddiskVolume1
Install Date: 6/05/2013 11:13:38 AM
System Uptime: 22/11/2014 7:35:37 PM (0 hours ago)
.
Motherboard: Acer |  | FG43D
Processor: Intel(R) Core(TM)2 Duo CPU     E7500  @ 2.93GHz | CPU 1 | 2936/267mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 149 GiB total, 69.806 GiB free.
E: is Removable
F: is Removable
.
==== Disabled Device Manager Items =============
.
Class GUID: {4d36e96b-e325-11ce-bfc1-08002be10318}
Description: Standard PS/2 Keyboard
Device ID: ACPI\PNP0303\4&32FB12B0&0
Manufacturer: (Standard keyboards)
Name: Standard PS/2 Keyboard
PNP Device ID: ACPI\PNP0303\4&32FB12B0&0
Service: i8042prt
.
Class GUID: {4d36e96f-e325-11ce-bfc1-08002be10318}
Description: Microsoft PS/2 Mouse
Device ID: ACPI\PNP0F03\4&32FB12B0&0
Manufacturer: Microsoft
Name: Microsoft PS/2 Mouse
PNP Device ID: ACPI\PNP0F03\4&32FB12B0&0
Service: i8042prt
.
==== System Restore Points ===================
.
.
==== Installed Programs ======================
.
Adobe Flash Player 15 ActiveX
Adobe Flash Player 15 Plugin
Adobe Reader XI (11.0.09)
Avast Internet Security
BigPond Broadband ADSL
CCleaner
Google Chrome
Google Update Helper
HashTab 5.1.0.23
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Intel(R) Graphics Media Accelerator Driver
Malwarebytes Anti-Malware version 2.0.3.1025
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4.5.1
Microsoft Age of Empires II
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
MozBackup 1.5.1
Mozilla Firefox 33.1.1 (x86 en-US)
Mozilla Maintenance Service
NETGEAR WNA3100 wireless USB 2.0 adapter
NirSoft BlueScreenView
Realtek High Definition Audio Driver
Secunia PSI (2.0.0.4003)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2604111)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2736416)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2840629)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2861697)
Security Update for Microsoft .NET Framework 4.5.1 (KB2894854v2)
Security Update for Microsoft .NET Framework 4.5.1 (KB2898869)
Security Update for Microsoft .NET Framework 4.5.1 (KB2901126)
Security Update for Microsoft .NET Framework 4.5.1 (KB2931368)
Security Update for Microsoft .NET Framework 4.5.1 (KB2972107)
Security Update for Microsoft .NET Framework 4.5.1 (KB2972216)
Security Update for Microsoft .NET Framework 4.5.1 (KB2978128)
Security Update for Microsoft .NET Framework 4.5.1 (KB2979578v2)
SIW 2013 Home Edition
SpywareBlaster 5.0
SUPERAntiSpyware
System Explorer 6.0.1
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Windows Driver Package - NETGEAR Inc. (RTLWUSB) Net  (03/27/2006 5.1213.06.0327)
WinPatrol
WOT for Internet Explorer
WPS Office (9.1.0.4758)
.
==== End Of File ===========================

cheers

7
I have reinstalled xp pro SP1 and updated with SP2, SP3 activated xp over the net.  Go to Microsoft update web page and it does not load have error 0x8024D001. Reinstalled 3 Times.

Tried Microsoft fixit 50777, did not change anything.
Downloaded Windows Update Agent 7.6.7600.256-257, this allowed the update page to load, but after initially working etc update web page, load active x. When you get to the part where you are asked to either pick Express or custom update, goes like it is checking for updates, the green bar is running, but nothing happens, let it run for 1 hour, same with auto updates, uses 99% of CPU but does not download anything.   

When i used double driver backup, i noticed 1 error iAlmColn.dll did not install.
Also in Event Viewer i get a lot of these
wuaueng.dll (3464) SUS20ClientDataStore: The database engine stopped the instance (0).

wuauclt (3464) The database engine stopped.

wuauclt (3140) The database engine 5.01.2600.5512 started.

wuaueng.dll (3140) SUS20ClientDataStore: The database engine started a new instance (0).

wuaueng.dll (3140) SUS20ClientDataStore: The database engine stopped the instance (0).

wuauclt (3140) The database engine stopped.

wuauclt (3380) The database engine 5.01.2600.5512 started.
They just repeat a lot.
 Now using old laptop to write this, only 256 mb ram slowwwwwwwww.
In Device Manager all is fine no yellow explanations marks.


I have reinstalled again, Xp Pro with SP3, Have IE6 , as i can't  update. Don't want to connect to the internet to much till i can update.
Have i GB ram.

8
Hi all

Not sure if right area to post, but here goes.
I installed pcwizard 2010 see link
http://http://www.cpuid.com/pcwizard.php

The program froze on me and i end task for pcwizntl.exe in Windows task manager in processes .
Now in services there are heaps of services left behind.
See Attachments:

I have re installed the program and re-uninstalled to no advantage.
They all refer to C:\Program Files\CPUID\PC Wizard 2010\Data\pcwizntl.exe -s, but there is nothing there as the folder is empty

I am at a total loss of what i can do to remove these.

I am using windows xpPro sp3  with all the windows updates
Computer seems to be working okay

Cheers

9
Analysis and Malware Removal / computer going to the web by itself
« on: March 17, 2009, 07:26:05 AM »
Hi

Using Windows xp home edition with SP3 and the latest updates.

Every so often i have noticed the icon in system tray showing traffic. I checked and sure enough something was downloading from the web. It has not down it for a couple of hours, but thought i will send a hijack log to be checked out.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 6:54:13 PM, on 3/17/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\WINDOWS\system32\RunDLL32.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Net Studio\USB_FW.exe
C:\Program Files\Common Files\Teleca Shared\CapabilityManager.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\UPHClean\uphclean.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: WOT Helper - {C920E44A-7F78-4E64-BDD7-A57026E7FEB7} - C:\Program Files\WOT\WOT.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: (no name) - {B99F805C-F0B1-48EA-8C8B-753BFCBED913} - (no file)
O3 - Toolbar: WOT - {71576546-354D-41c9-AAE8-31F2EC22BF0D} - C:\Program Files\WOT\WOT.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [EPSON Stylus TX200 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIEFP.EXE /FU "C:\DOCUME~1\Owner\LOCALS~1\Temp\E_S16D.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [USBFireWall] C:\Program Files\Net Studio\USB_FW.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: @C:\Program Files\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files\Messenger\Msgslang.dll,-61144 - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/EN-AU/a-UNO1/GAME_UNO1.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1218804096593
O16 - DPF: {F1D54B0B-B6EA-43B5-BD26-A79D3DBF47E3} (Multidownx Control) - http://bigpondmusic.com/activex/multidownx.cab
O17 - HKLM\System\CS1\Services\Tcpip\..\{41E23405-52DC-43B7-B745-D24B02E0A322}: NameServer = 139.134.5.51 139.134.2.190
O18 - Protocol: wot - {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} - C:\Program Files\WOT\WOT.dll
O20 - AppInit_DLLs:                                 
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - Unknown owner - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

--
End of file - 6514 bytes

10
Computer Problems, Questions and Solutions! / crypt32 error
« on: March 01, 2009, 02:23:06 AM »
Hi

For the last few days i have been getting this error between 5 to 10 minutes after a reboot as the computer is shut down every night.

Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: This operation returned because the timeout period expired.

Yesterday i got this error as well as the above

Failed auto update retrieval of third-party root list sequence number from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> with error: The specified server cannot perform the requested operation.

The only thing i have seemed to come across is to make sure you are connected to the web, which i am.
 With crypt 32 not updating, can anyone tell me if this is a security problem.

Windows xp home edition  with sp3 and all updates

Cheers

11
LandzDown Lounge / Horrfic Bushfires
« on: February 09, 2009, 03:32:16 AM »
I don't know if this has been on the news overseas or not.

In the state of Victoria, there has been several bushfires raging, at this stage 130 people, have lost there lives.
It is heartbreaking to see  all this loss of life, the terrible sadness. The relatives and friends must be devastated.

I myself was brought to tears seeing it on the news.
It is a sad day here.


http://www.smh.com.au/news/national/bushfires-ravage-victoria/2009/02/09/1234027894314.html

Cheers Pete

12
Hi

When using add & remove programs to uninstall a program I get multiple #7023 errors in system event log. Source is Service Control Manager. The description is: The application Management Service terminated with following error---The specified module could not be found.

I am not sure how long this has been happening,( approx 3 months?) but it does not seem to be causing any problems.

Just curious as i was told by a friend not to worry about it as he has the same thing happening on his computer.

I also read that there is a hotfix see link below, am not 100% sure if this is the right one. See link below

http://support.microsoft.com/kb/328213

Using Windows XP SP3

Cheers pete


13
Hi

I decided today to install Microsoft Windows Recovery Console, as i have seen it mentioned quite a few times in the Hijack log forum.

I inserted my Windows cd into cdrom drive.
Clicked on "RUN" in the start menu,
Pasted   d:\i386\winnt32.exe /cmdcons into the run box.
clicked okay.

Then i got this warning: :thud:

Setup cannot continue because the version on your computer is newer than the version on the cd.
To erase the newer version and install the older version, restart the computer, boot from this cd, and follow the instructions for a new installation.

Click okay to remove the above warning , and i then get the option to install Windows Recovery Console,

I clicked cancel at this stage as i chickened out, not sure if i would stuff up the computer.

I assumed i got this warning as i have SP3 installed.

I am using Windows XP Home Edition with SP3

On my Microsoft cd i have XP Home Edition with SP2

So is it okay to continue on and install the   Windows Recovery Console,  any assistance will be very much appreciated


Cheers Pete :Hammys pint:
PS note my Signature it is there for a reason :tease:

14
Hi all

Here is a hijack log as i ran Malwarebytes' Anti-Malware and it found some nasties
Thanks in advance for any advice


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:57:29 PM, on 12/30/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\WINDOWS\system32\RunDLL32.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIEFP.EXE
C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: WOT Helper - {C920E44A-7F78-4E64-BDD7-A57026E7FEB7} - C:\Program Files\WOT\WOT.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O3 - Toolbar: WOT - {71576546-354D-41c9-AAE8-31F2EC22BF0D} - C:\Program Files\WOT\WOT.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [EPSON Stylus TX200 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIEFP.EXE /FU "C:\DOCUME~1\Owner\LOCALS~1\Temp\E_S16D.tmp" /EF "HKCU"
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/EN-AU/a-UNO1/GAME_UNO1.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1218804096593
O16 - DPF: {F1D54B0B-B6EA-43B5-BD26-A79D3DBF47E3} (Multidownx Control) - http://bigpondmusic.com/activex/multidownx.cab
O17 - HKLM\System\CS1\Services\Tcpip\..\{41E23405-52DC-43B7-B745-D24B02E0A322}: NameServer = 139.134.5.51 139.134.2.190
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: wot - {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} - C:\Program Files\WOT\WOT.dll
O20 - AppInit_DLLs:                                  C:\WINDOWS\system32\guard32.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - Unknown owner - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: McAfee SiteAdvisor Service - Unknown owner - C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

--
End of file - 6884 bytes


Malwarebytes' Anti-Malware 1.31
Database version: 1573
Windows 5.1.2600 Service Pack 3

12/30/2008 6:23:50 PM
mbam-log-2008-12-30 (18-23-50).txt

Scan type: Full Scan (C:\|)
Objects scanned: 114675
Time elapsed: 42 minute(s), 22 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 4
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 1

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\affri (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Software Notifier (Rogue.Multiple) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\affri (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> Quarantined and deleted successfully.

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
C:\WINDOWS\system32\clkcnt.txt (Trojan.Vundo) -> Delete on reboot.

I also did the re boot asked for.

Cheers pete

15
Computer Problems, Questions and Solutions! / Language pack hotmail.
« on: October 08, 2008, 05:35:49 AM »
Hi

When my wife try's to log into hotmail she receives, a pop up asking her to install a language pack. Clicked cancel but all she had was a blank screen. Then attempted to install Language pack but after a about 20 seconds wanted XP disc.
I told her not to continue .

On computer have XP with Service Pack 3
On Disc        have XP with service Pack 2  ( not sure if this would cause a problem or not)

Then tried ticked pop up not to show any more, to no avail when she logs into hotmail, just shows a blank page.
I can log into hot mail with no problems.

Cheers

Pages: [1] 2 3