Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Constant memory usage, popups & passwords?


  • This topic is locked This topic is locked
8 replies to this topic

#1 pennyt

pennyt

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:07:52 PM

Posted 18 April 2009 - 03:14 PM

Hi, you all have been so helpful in the past so I am coming once again for help with another PC. This is my family member's computer and there are numerous problems: upon starting up the computer, I get several error messages reading 'The instruction at "0x005406b7" referenced memory at "0x005306b7". The memory could not be "written". Click on OK to terminate the program, Click on CANCEL to debug the program'. I have to click CANCEL about 10 times to get it to go away, then asks me for a windows password (?!) which I just leave blank and click OK to start up Windows. I get several popup ads when Windows finally loads, and error messages including a RUNDLL error (Error loading c:\windows\system32\hayupjie.dll) and "Data Execution Prevention: To help protect your computer, Windows has closed this program: Windows Logon UI". Once I am able to close all those (which takes about 30 minutes) the computer seems to be constantly trying to use memory, I can't bring up the task manager, and neither IE nor Firefox will let me browse the web (occasionally I can see my homepage but it takes forever to load, and I can't visit any other sites). I tried running Spybot S&D but once it finally gets going, it locks up soon after and I have to re-start.

I'm transferring these logs from the infected computer to my laptop in order to post them, since I can't access this site from the problem system.

Thanks!


DDS (Ver_09-03-16.01) - NTFSx86
Run by Ron at 15:57:31.67 on Sat 04/18/2009
Internet Explorer: 7.0.5730.11 BrowserJavaVersion: 1.6.0_03
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.447.55 [GMT -4:00]


============== Running Processes ===============

C:\WINDOWS\system32\svchost -k DcomLaunch
C:\WINDOWS\system32\svchost -k rpcss
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\System32\svchost.exe -k LocalService
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\TXkgTmFtZQ\command.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\System32\svchost.exe -k imgsvc
C:\Program Files\Viewpoint\Common\ViewpointService.exe
c:\WINDOWS\system32\ZuneBusEnum.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\TEMP\BN4.tmp
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\userinit.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\VIAudioi\SBADeck\ADeck.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\system32\VTTimer.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\VTtrayp.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe
C:\Program Files\Java\jre1.6.0_04\bin\jusched.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb12.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\Program Files\Zune\ZuneLauncher.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\System32\reader_s.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Messenger\MSMSGS.EXE
C:\Program Files\AIM6\aim6.exe
C:\Program Files\Linksys EasyLink Advisor\LinksysAgent.exe
C:\PROGRA~1\COMMON~1\wufm\wufmm.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
c:\program files\aol\aim toolbar 5.0\AolTbServer.exe
C:\Documents and Settings\Ron\reader_s.exe
C:\PROGRA~1\COMMON~1\wufm\wufma.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\OpenOffice.org 2.4\program\soffice.exe
C:\Program Files\OpenOffice.org 2.4\program\soffice.BIN
C:\Program Files\AIM6\aolsoftware.exe
C:\Program Files\Java\jre1.6.0_04\bin\jucheck.exe
c:\program files\aol\aim toolbar 5.0\AolTbServer.exe
C:\DOCUME~1\Ron\LOCALS~1\Temp\430522846.exe
C:\Documents and Settings\Ron\Desktop\dds.scr
C:\WINDOWS\System32\wbem\wmiprvse.exe

============== Pseudo HJT Report ===============

uStart Page = hxxp://www.yahoo.com/
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyOverride = *.local
uURLSearchHooks: AOLTBSearch Class: {ea756889-2338-43db-8f07-d1ca6fb9c90d} - c:\program files\aol\aim toolbar 5.0\aoltb.dll
mURLSearchHooks: AOLTBSearch Class: {ea756889-2338-43db-8f07-d1ca6fb9c90d} - c:\program files\aol\aim toolbar 5.0\aoltb.dll
mWinlogon: Taskman=c:\recycler\s-1-5-21-6175724065-1384861439-021236056-3706\hd1.exe
BHO: {81be2f54-ae08-44f8-90f5-43e998ebb4e6} - c:\windows\system32\kidogego.dll
BHO: c:\windows\system32\zfgh83jg3.dll: {d5bf49a0-94f3-42bd-f434-3604812c8955} - c:\windows\system32\zfgh83jg3.dll
BHO: c:\windows\system32\sdfgerfgf3f.dll: {e2ba40a2-74f3-42bd-f434-2604812c8953} - c:\windows\system32\sdfgerfgf3f.dll
TB: &Google: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\googletoolbar1.dll
TB: AIM Toolbar: {de9c389f-3316-41a7-809b-aa305ed9d922} - c:\program files\aol\aim toolbar 5.0\aoltb.dll
EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
uRun: [MSMSGS] "c:\program files\messenger\MSMSGS.EXE" /background
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [Aim6] "c:\program files\aim6\aim6.exe" /d locale=en-US ee://aol/imApp
uRun: [EasyLinkAdvisor] "c:\program files\linksys easylink advisor\LinksysAgent.exe" /startup
uRun: [SfKg6w] c:\documents and settings\ron\application data\microsoft\windows\rayiou.exe
uRun: [wufm] c:\progra~1\common~1\wufm\wufmm.exe
uRun: [SpybotSD TeaTimer] c:\program files\spybot - search & destroy\TeaTimer.exe
uRun: [AdobeUpdater] c:\program files\common files\adobe\updater5\AdobeUpdater.exe
uRun: [Buzz Lightyear Downloader] "c:\program files\buzz lightyear downloader\Buzz Lightyear Downloader.exe" -r
uRun: [reader_s] c:\documents and settings\ron\reader_s.exe
uRun: [Diagnostic Manager] c:\docume~1\ron\locals~1\temp\430522846.exe
uRunOnce: [SpybotDeletingB3667] command /c del "c:\windows\b116.exe_old"
uRunOnce: [SpybotDeletingD4588] cmd /c del "c:\windows\b116.exe_old"
mRun: [AudioDeck] c:\program files\viaudioi\sbadeck\ADeck.exe 1
mRun: [VTTimer] VTTimer.exe
mRun: [VTTrayp] VTtrayp.exe
mRun: [RemoteControl] "c:\program files\cyberlink\powerdvd\PDVDServ.exe"
mRun: [Adobe Photo Downloader] "c:\program files\adobe\photoshop album starter edition\3.2\apps\apdproxy.exe"
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 8.0\reader\Reader_sl.exe"
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [SunJavaUpdateSched] "c:\program files\java\jre1.6.0_04\bin\jusched.exe"
mRun: [HPDJ Taskbar Utility] c:\windows\system32\spool\drivers\w32x86\3\hpztsb12.exe
mRun: [HP Software Update] "c:\program files\hp\hp software update\HPWuSchd2.exe"
mRun: [Zune Launcher] "c:\program files\zune\ZuneLauncher.exe"
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [reader_s] c:\windows\system32\reader_s.exe
mRun: [Ykehojiyedoha] rundll32.exe "c:\windows\asesokaradewil.dll",e
mRun: [CPM8b1fee74] Rundll32.exe "c:\windows\system32\gavewuwu.dll",a
mRun: [882cdde8] rundll32.exe "c:\windows\system32\wotetejo.dll",b
mRun: [turapamobu] Rundll32.exe "c:\windows\system32\hayupije.dll",s
mRunOnce: [SpybotDeletingC4750] cmd /c del "c:\program files\router\UnInstall.exe"
dRun: [swg] c:\program files\google\googletoolbarnotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
dRun: [<NO NAME>] c:\windows\temp\oymlep1b.exe
dRun: [Windows Resurections] c:\windows\temp\oymlep1b.exe
dRun: [Diagnostic Manager] c:\windows\temp\2505795372.exe
dRun: [reader_s] c:\documents and settings\ron\reader_s.exe
StartupFolder: c:\docume~1\ron\startm~1\programs\startup\magicd~1.lnk - c:\program files\magicdisc\MagicDisc.exe
StartupFolder: c:\docume~1\ron\startm~1\programs\startup\openof~1.lnk - c:\program files\openoffice.org 2.4\program\quickstart.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\hpdigi~1.lnk - c:\program files\hp\digital imaging\bin\hpqtra08.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\kodake~1.lnk - c:\program files\kodak\kodak easyshare software\bin\EasyShare.exe
uPolicies-explorer: NoFolderOptions = 1 (0x1)
uPolicies-system: DisableRegistryTools = 1 (0x1)
mPolicies-explorer: NoSetActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
dPolicies-explorer: NoSetActiveDesktop = 1 (0x1)
dPolicies-explorer: NoFolderOptions = 1 (0x1)
dPolicies-system: DisableRegistryTools = 1 (0x1)
IE: &AOL Toolbar Search - c:\program files\aol\aim toolbar 5.0\resources\en-us\local\search.html
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0004-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0_04\bin\ssv.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~2\office12\ONBttnIE.dll
IE: {3369AF0D-62E9-4bda-8103-B4C75499B578} - {DE9C389F-3316-41A7-809B-AA305ED9D922} - c:\program files\aol\aim toolbar 5.0\aoltb.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office12\REFIEBAR.DLL
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\program files\spybot - search & destroy\SDHelper.dll
LSP: c:\windows\temp\ntdll64.dll
DPF: DirectAnimation Java Classes - file://c:\windows\java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://c:\windows\java\classes\xmldso.cab
DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} - hxxp://a1540.g.akamai.net/7/1540/52/20070711/qtinstall.info.apple.com/qtactivex/qtplugin.cab
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1189385001296
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_04-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0004-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_04-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_04-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
AppInit_DLLs: c:\windows\system32\moveyiku.dll c:\windows\system32\kejilebu.dll c:\windows\system32\tanabiza.dll c:\progra~1\thunmail\testabd.dll c:\windows\system32\gavewuwu.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SSODL: SSODL - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\tanabiza.dll
STS: c:\windows\system32\sdfgerfgf3f.dll: {e2ba40a2-74f3-42bd-f434-2604812c8953} - c:\windows\system32\sdfgerfgf3f.dll
STS: c:\windows\system32\zfgh83jg3.dll: {d5bf49a0-94f3-42bd-f434-3604812c8955} - c:\windows\system32\zfgh83jg3.dll
STS: STS: {ec43e3fd-5c60-46a6-97d7-e0b85dbdd6c4} - c:\windows\system32\tanabiza.dll
SEH: {446624E1-B767-4443-AA6E-0F355CAFD21B} - No File
LSA: Authentication Packages = msv1_0 c:\windows\system32\pmkhf.dll
LSA: Notification Packages = scecli c:\windows\system32\moveyiku.dll c:\windows\system32\kejilebu.dll mspmuag.dll

================= FIREFOX ===================

FF - ProfilePath - c:\docume~1\ron\applic~1\mozilla\firefox\profiles\h3rrpvuv.default\
FF - prefs.js: browser.search.selectedEngine - Yahoo
FF - prefs.js: browser.startup.homepage - hxxp://www.yahoo.com/
FF - plugin: c:\program files\google\google updater\2.4.1536.6592\npCIDetect13.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npbittorrent.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npViewpoint.dll
FF - plugin: c:\program files\viewpoint\viewpoint experience technology\npViewpoint.dll
FF - HiddenExtension: XUL Cache: {3208802E-1C80-4B31-86FE-11879ADDD53D} - c:\documents and settings\ron\local settings\application data\{3208802E-1C80-4B31-86FE-11879ADDD53D}
FF - HiddenExtension: XUL Cache: {1E5494D2-BC4E-4B65-9DD9-813C4C489738} - c:\windows\system32\config\systemprofile\local settings\application data\{1e5494d2-bc4e-4b65-9dd9-813c4c489738}\

============= SERVICES / DRIVERS ===============

R0 gxuyijay;gxuyijay;c:\windows\system32\drivers\gxuyijay.sys [2002-8-29 23424]
R2 cmdService;Command Service;c:\windows\txkgtmftzq\command.exe [2008-2-14 293888]
R2 ias;Ias;c:\windows\system32\svchost.exe -k netsvcs [2002-8-29 14336]
R2 Viewpoint Manager Service;Viewpoint Manager Service;c:\program files\viewpoint\common\ViewpointService.exe [2008-1-19 45132]
S3 at1394;at1394;c:\windows\system32\at1394.sys [2002-8-29 2304]
S3 restore;restore;\??\c:\windows\system32\drivers\restore.sys --> c:\windows\system32\drivers\restore.sys [?]
S3 SetupNTGLM7X;SetupNTGLM7X;\??\e:\ntglm7x.sys --> e:\NTGLM7X.sys [?]

=============== Created Last 30 ================

2009-04-18 14:24 0 a------- c:\windows\system32\atmtd.dll.tmp
2009-04-18 07:57 1,409,571 ---sh--- c:\windows\system32\ojetetow.ini
2009-04-18 07:34 1,409,571 ---sh--- c:\windows\system32\onenilom.ini
2009-04-17 18:40 1,409,558 ---sh--- c:\windows\system32\odonetoy.ini
2009-04-17 05:26 124,928 a------- c:\windows\system32\ntdll64.exe
2009-04-17 04:56 468 a------- c:\windows\system32\win32hlp.cnf
2009-04-17 04:56 1,400 a------- c:\windows\system32\ahtn.htm
2009-04-17 04:55 4,785 a------- c:\windows\system32\warning.gif
2009-04-17 04:55 124,928 ac------ c:\windows\system32\dllcache\userinit.exe
2009-04-17 04:55 1 a------- c:\windows\system32\uniq.tll
2009-04-17 04:54 51,712 a------- c:\windows\system32\frmwrk32.exe
2009-04-17 04:54 31,744 a------- c:\windows\system32\B8.tmp
2009-04-17 04:54 1 a------- c:\windows\system32\B7.tmp
2009-04-17 04:54 88 a------- c:\windows\system32\B6.tmp
2009-04-16 23:43 0 a------- C:\13.tmp
2009-04-16 23:43 0 a------- C:\12.tmp
2009-04-16 23:43 0 a------- C:\11.tmp
2009-04-16 23:43 0 a------- C:\10.tmp
2009-04-16 23:43 0 a------- C:\F.tmp
2009-04-16 23:43 0 a------- C:\E.tmp
2009-04-16 23:43 38 a------- C:\C.tmp
2009-04-16 23:43 38 a------- C:\9.tmp
2009-04-16 23:43 0 a------- C:\B.tmp
2009-04-16 23:43 0 a------- C:\A.tmp
2009-04-16 23:42 52,736 a------- C:\6.tmp
2009-04-16 23:42 23,040 a------- C:\5.tmp
2009-04-16 23:42 182,912 ac------ c:\windows\system32\dllcache\ndis.sys
2009-04-16 22:19 56,706 a------- c:\windows\system32\5.tmp
2009-04-16 22:19 168 a------- c:\windows\system32\4.tmp
2009-04-16 21:56 <DIR> --d----- c:\program files\LanqiEngine
2009-04-16 21:56 735,232 a------- c:\windows\system32\AdvOcr.dll
2009-04-16 21:40 15,000 a------- c:\windows\system32\zfgh83jg3.dll
2009-04-16 17:38 94,208 a------- c:\windows\system32\TRSOCR.dll
2009-04-16 17:37 3 a------- c:\windows\system32\bversion.dll
2009-04-16 17:37 95 a------- c:\windows\system32\TRSOCR.ini
2009-04-16 17:35 32,137,216 a------- c:\windows\system32\TRSOCR.dat
2009-04-16 17:34 565,248 a------- c:\windows\system32\IPHACTION.dll
2009-04-16 15:25 0 a------- c:\windows\system32\IpSvchostF.dll
2009-04-16 15:25 61,440 a------- c:\windows\system32\tcpd.exe
2009-04-16 15:25 21,504 a------- c:\windows\system32\AUTMGR.EXE
2009-04-16 15:25 231,936 a------- c:\windows\system32\w.exe
2009-04-16 15:25 211,968 a------- c:\windows\system32\tpszxyd.sys
2009-04-16 15:25 194,048 a------- c:\windows\system32\afisicx.exe
2009-04-16 15:25 36,864 a------- c:\windows\system32\dpcxool64.sys
2009-04-16 15:25 8 a------- c:\windows\system32\comsa32.sys
2009-04-16 15:24 984,576 a------- c:\windows\system32\kernel32_check.dll
2009-04-16 15:24 172,032 a------- c:\windows\system32\tcpcon.dll
2009-04-16 15:24 10,240 a------- c:\windows\system32\Packer.dll
2009-04-16 15:24 25 a------- c:\windows\system32\tcpd.dll
2009-04-16 15:24 9 a------- c:\windows\system32\iphy.dll
2009-04-16 15:24 3 a------- c:\windows\system32\fhpatch.dll
2009-04-16 15:24 0 a------- c:\windows\system32\fiplock.dll
2009-04-16 15:23 <DIR> --d----- c:\windows\system32\3361
2009-04-16 15:23 108,336 a------- c:\windows\system32\MSWINSCK.OCX
2009-04-16 15:23 <DIR> --d----- c:\windows\dhcp
2009-04-16 15:23 <DIR> --dshr-- c:\program files\ThunMail
2009-04-16 15:23 120,302 a------- c:\windows\system32\drivers\d3ab40de.sys
2009-04-16 15:23 50,176 a------- c:\documents and settings\ron\reader_s.exe
2009-04-16 15:23 50,688 a------- c:\windows\system32\reader_s.exe
2009-04-16 15:23 55,296 a------- C:\rnvx.exe
2009-04-16 15:22 2 a------- C:\-2010325689
2009-04-16 15:22 15,000 a------- c:\windows\system32\sdfgerfgf3f.dll
2009-04-16 15:22 155,136 a------- C:\swww.exe
2009-04-16 15:22 68,096 a------- C:\tbbek.exe
2009-04-16 07:46 1,410,023 ---sh--- c:\windows\system32\ivifuhit.ini
2009-04-15 15:22 1,417,623 ---sh--- c:\windows\system32\ojolehel.ini
2009-04-14 11:00 1,417,623 ---sh--- c:\windows\system32\eloyuyav.ini
2009-04-14 10:24 1,408,899 ---sh--- c:\windows\system32\ameluvag.ini
2009-04-13 22:19 1,405,924 ---sh--- c:\windows\system32\ejedufev.ini
2009-04-13 10:34 <DIR> --d----- C:\spoolerlogs
2009-04-13 10:12 1,405,935 ---sh--- c:\windows\system32\owidibuj.ini
2009-04-13 09:37 1,405,935 ---sh--- c:\windows\system32\azujuwed.ini
2009-04-12 21:17 1,403,888 ---sh--- c:\windows\system32\ikadumuk.ini
2009-04-12 21:16 97,280 a------- c:\windows\system32\ci.dll

==================== Find3M ====================

2009-04-18 08:19 81,408 a--sh--- c:\windows\system32\lutuhafa.dll
2009-04-18 08:19 89,600 a--sh--- c:\windows\system32\vuwevoje.dll
2009-04-18 08:19 82,944 a--sh--- c:\windows\system32\bavawapa.exe
2009-04-18 07:57 81,408 a--sh--- c:\windows\system32\wotetejo.dll
2009-04-18 07:57 89,600 a--sh--- c:\windows\system32\siyizene.dll
2009-04-18 07:57 82,944 a--sh--- c:\windows\system32\modopodu.exe
2009-04-18 07:34 81,408 -------- c:\windows\system32\molineno.dll
2009-04-18 07:34 89,600 a--sh--- c:\windows\system32\vumelujo.dll
2009-04-18 07:34 82,944 a--sh--- c:\windows\system32\muwobiyu.exe
2009-04-18 07:12 89,600 a--sh--- c:\windows\system32\loburako.dll
2009-04-18 07:12 81,408 a--sh--- c:\windows\system32\pilopume.dll
2009-04-18 06:49 81,408 a--sh--- c:\windows\system32\pufikere.dll
2009-04-18 06:49 89,600 a--sh--- c:\windows\system32\puyovuda.dll
2009-04-18 06:49 82,944 a--sh--- c:\windows\system32\farotugo.exe
2009-04-17 18:31 82,944 a--sh--- c:\windows\system32\susopaya.exe
2009-04-17 18:31 89,600 a--sh--- c:\windows\system32\gavewuwu.dll
2009-04-17 18:31 81,408 -------- c:\windows\system32\yotenodo.dll
2009-04-17 07:55 90,112 a------- c:\windows\DUMP3827.tmp
2009-04-17 04:55 124,928 a------- c:\windows\system32\userinit.exe
2009-04-17 03:22 133,120 a--sh--- c:\windows\system32\jirohowu.dll
2009-04-17 03:22 81,408 a--sh--- c:\windows\system32\jigesigu.dll
2009-04-16 23:42 182,912 a------- c:\windows\system32\drivers\ndis.sys
2009-04-16 15:22 88,576 a--sh--- c:\windows\system32\tanabiza.dll
2009-04-16 15:22 81,408 a--sh--- c:\windows\system32\zazuporo.dll
2009-04-16 03:22 89,600 a--sh--- c:\windows\system32\yuhazuzi.dll.vir
2009-04-16 03:22 80,896 -------- c:\windows\system32\tihufivi.dll
2009-04-15 15:22 89,088 a--sh--- c:\windows\system32\nojelawo.dll
2009-04-15 15:22 80,896 a--sh--- c:\windows\system32\lehelojo.dll
2009-04-15 03:21 88,576 a--sh--- c:\windows\system32\vasidifu.dll
2009-04-14 15:21 88,576 a--sh--- c:\windows\system32\sazukojo.dll
2009-04-14 11:00 51,200 a--sh--- c:\windows\system32\muwigofi.dll
2009-04-14 11:00 88,576 a--sh--- c:\windows\system32\muhajewo.dll
2009-04-14 11:00 81,920 -------- c:\windows\system32\vayuyole.dll
2009-04-14 10:24 50,688 a--sh--- c:\windows\system32\rokavuya.dll
2009-04-14 10:24 89,088 a--sh--- c:\windows\system32\vefiniwi.dll
2009-04-14 10:24 81,408 -------- c:\windows\system32\gavulema.dll
2009-04-13 22:19 50,688 a--sh--- c:\windows\system32\boyowugo.dll
2009-04-13 22:19 78,848 a--sh--- c:\windows\system32\funadeja.exe
2009-04-13 22:19 89,088 a--sh--- c:\windows\system32\higudolo.dll
2009-04-13 22:19 81,408 -------- c:\windows\system32\vefudeje.dll
2009-04-13 10:13 50,688 a--sh--- c:\windows\system32\yufadade.dll
2009-04-13 10:12 81,408 -------- c:\windows\system32\jubidiwo.dll
2009-04-13 10:12 89,088 a--sh--- c:\windows\system32\puhafewu.dll
2009-04-13 09:37 50,688 a--sh--- c:\windows\system32\zehekilo.dll
2009-04-13 09:37 89,088 a--sh--- c:\windows\system32\burazahe.dll
2009-04-13 09:37 81,408 -------- c:\windows\system32\dewujuza.dll
2009-04-13 09:37 78,848 a--sh--- c:\windows\system32\fuledipu.exe
2009-04-12 21:16 147,456 a--sh--- c:\windows\system32\bisevona.exe
2009-04-12 21:16 78,848 a--sh--- c:\windows\system32\tijayefe.exe
2009-04-12 21:16 81,408 -------- c:\windows\system32\kumudaki.dll
2009-04-12 21:16 88,576 a--sh--- c:\windows\system32\tiyupotu.dll
2009-02-09 06:19 1,846,272 a------- c:\windows\system32\win32k.sys
2008-09-10 13:20 87,608 a------- c:\docume~1\ron\applic~1\inst.exe
2008-09-10 13:20 47,360 a------- c:\docume~1\ron\applic~1\pcouffin.sys
2008-02-15 22:50 313,264 a--sh--- c:\windows\system32\ehkmp.ini2
2008-02-25 15:41 237,501 a--sh--- c:\windows\system32\fhkmp.ini2
2009-01-14 11:11 51,200 a--sh--- c:\windows\system32\fulepuli.dll
2009-01-13 09:48 50,688 a--sh--- c:\windows\system32\hekonala.dll
2009-01-13 22:31 50,688 a--sh--- c:\windows\system32\hekunupi.dll
2009-01-13 22:31 0 a--sh--- c:\windows\system32\hiwihipu.dll
2009-01-14 11:11 51,200 a--sh--- c:\windows\system32\kejilebu.dll
2009-01-14 10:35 50,688 a--sh--- c:\windows\system32\labuzoku.dll
2009-01-13 22:31 50,688 a--sh--- c:\windows\system32\lekupeyi.dll
2009-01-14 10:35 50,688 a--sh--- c:\windows\system32\lifobuju.dll
2009-01-13 10:24 0 a--sh--- c:\windows\system32\notetiki.dll
2009-01-13 09:48 50,688 a--sh--- c:\windows\system32\nuyafeku.dll
2008-02-17 14:01 8,142 a--sh--- c:\windows\system32\rqtwa.ini2
2008-02-17 10:43 294,899 a--sh--- c:\windows\system32\rttss.ini2
2009-01-13 10:24 0 a--sh--- c:\windows\system32\tajozejo.dll
2009-01-13 10:24 0 a--sh--- c:\windows\system32\vegibuno.dll
2009-01-14 11:11 51,200 a--sh--- c:\windows\system32\vuzibede.dll
2009-01-14 10:35 50,688 a--sh--- c:\windows\system32\yudenoze.dll

============= FINISH: 15:59:32.68 ===============

Attached Files



BC AdBot (Login to Remove)

 


#2 miekiemoes

miekiemoes

    Malware Killer Dog


  • Malware Response Team
  • 19,420 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Belgium
  • Local time:01:52 AM

Posted 18 April 2009 - 05:14 PM

Hi,

I have bad news for you :thumbup2:

I see you're dealing with Virut on top of the other nasty malware you are dealing with. I see some malware is already present for years which doesnt suprise me since you don't even have an Antivirus installed.
I'm having a hard time to find legitimate entries in your log, because 90% of it is malware.
Anyway, in your case, it's unfortunately a lost case - Game over situation and a format and reinstall is the fastest and especially the safest solution.

You may want to read this why:
Virut and other File infectors - Throwing in the Towel?

So, I suggest you to start backup all of your valuable data/documents/pictures/movies/songs/etc.. Do NOT backup any applications/installers and Do NOT backup any .exe/.scr/.htm/.html/.xml/.zip/.rar files...
This because these files may be infected as well. If you back them up and replace them afterwards, it will infect your computer again.


Read here for instructions how to format and reinstall Windows: http://web.mit.edu/ist/products/winxp/adva...all-format.html

Edited by miekiemoes, 18 April 2009 - 05:15 PM.

AntispywareScanners---Antivirus Scanners---Firewalls---Online Scanners---Prevention---Help! My computer is slow---My Blog---Follow me on Twitter.
My help is ALWAYS FREE, but if you want to donate to help me continue my fight against malware -- click here!
Asking for help via Private Message or Mail will be ignored - So If you need help, post your problem in the forum.

#3 pennyt

pennyt
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:07:52 PM

Posted 18 April 2009 - 06:58 PM

Hi miekiemoes, thank you for the response. I believe you were the one who helped me with my laptop issue several months ago, and that computer is still working great -- thanks again.

Anyhow, I sort of expected that that was going to be the solution, but I figured I'd check here first in case it was something simple. As you mentioned this system hasn't been well-maintained in the past (several people use it for different purposes) and so I am not terribly surprised. Hopefully we can prevent it from getting this bad in the future.

Thanks again

PT

Edited by pennyt, 18 April 2009 - 06:58 PM.


#4 miekiemoes

miekiemoes

    Malware Killer Dog


  • Malware Response Team
  • 19,420 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Belgium
  • Local time:01:52 AM

Posted 19 April 2009 - 03:51 AM

Hi,

Hopefully we can prevent it from getting this bad in the future.

Yes, prevention is the best cure. :thumbup2:

Please read my Prevention page with lots of info and tips how to prevent this in the future. (Or let the people read it, who are responsible for this computer)

Extra note: Make sure your programs are up to date - because older versions may contain Security Leaks. To find out what programs need to be updated, please run the Secunia Software Inspector Scan.

Happy Surfing again!
AntispywareScanners---Antivirus Scanners---Firewalls---Online Scanners---Prevention---Help! My computer is slow---My Blog---Follow me on Twitter.
My help is ALWAYS FREE, but if you want to donate to help me continue my fight against malware -- click here!
Asking for help via Private Message or Mail will be ignored - So If you need help, post your problem in the forum.

#5 pennyt

pennyt
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:07:52 PM

Posted 23 April 2009 - 08:56 AM

OK, I've just finished a complete re-install of XP. The only files I saved from the 'old' system were picture files and documents. However, it still seems to be running slowly. I notice this particularly when I'm browsing the web, regardless of if I'm using IE or Firefox....when I scroll, the page is very choppy, almost like it 'refreshes' every time a new page comes up. I'm not sure if this is a video driver issue or something like that, or if I'm infected again. Here are new scans:


DDS (Ver_09-03-16.01) - NTFSx86
Run by Owner at 9:50:28.39 on Thu 04/23/2009
Internet Explorer: 6.0.2800.1106
Microsoft Windows XP Home Edition 5.1.2600.1.1252.1.1033.18.447.122 [GMT -4:00]


============== Running Processes ===============

C:\WINDOWS\system32\svchost -k rpcss
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\System32\sstray.exe
C:\WINDOWS\zHotkey.exe
C:\Program Files\Digital Media Reader\shwiconem.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\BigFix\BigFix.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\System32\HPZipm12.exe
C:\WINDOWS\System32\svchost.exe -k imgsvc
C:\Program Files\Norton AntiVirus\SAVScan.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Owner\Desktop\dds.scr

============== Pseudo HJT Report ===============

uStart Page = hxxp://www.yahoo.com/
uSearch Bar = hxxp://www.google.com/ie
mDefault_Page_URL = hxxp://www.emachines.com
BHO: AcroIEHlprObj Class: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 6.0\reader\activex\AcroIEHelper.dll
BHO: {549B5CA7-4A86-11D7-A4DF-000874180BB3} - No File
BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre1.6.0_07\bin\ssv.dll
BHO: CNavExtBho Class: {bdf3e430-b101-42ad-a544-fadc6b084872} - c:\program files\norton antivirus\NavShExt.dll
BHO: {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - No File
TB: Norton AntiVirus: {42cdd1bf-3ffb-4238-8ad1-7859df00b1d6} - c:\program files\norton antivirus\NavShExt.dll
TB: {4982D40A-C53B-4615-B15B-B5B5E98D167C} - No File
EB: Real.com: {fe54fa40-d68c-11d2-98fa-00c0f0318afe} - c:\windows\system32\Shdocvw.dll
EB: Media Band: {32683183-48a0-441b-a342-7c2a440a9478} - %SystemRoot%\System32\browseui.dll
uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
mRun: [AOLDialer] c:\program files\common files\aol\acs\AOLDial.exe
mRun: [AOL Spyware Protection] "c:\progra~1\common~1\aol\aolspy~1\AOLSP Scheduler.exe"
mRun: [ccApp] "c:\program files\common files\symantec shared\ccApp.exe"
mRun: [NAV CfgWiz] c:\program files\common files\symantec shared\CfgWiz.exe /GUID NAV /CMDLINE "REBOOT"
mRun: [NeroFilterCheck] c:\windows\system32\NeroCheck.exe
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [nwiz] nwiz.exe /install
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [nForce Tray Options] sstray.exe /r
mRun: [<NO NAME>]
mRun: [CHotkey] zHotkey.exe
mRun: [ShowWnd] ShowWnd.exe
mRun: [SunKistEM] c:\program files\digital media reader\shwiconem.exe
mRun: [HP Software Update] "c:\program files\hp\hp software update\HPWuSchd2.exe"
mRun: [SunJavaUpdateSched] "c:\program files\java\jre1.6.0_07\bin\jusched.exe"
StartupFolder: c:\docume~1\owner\startm~1\programs\startup\openof~1.lnk - c:\program files\openoffice.org 3\program\quickstart.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\bigfix.lnk - c:\program files\bigfix\BigFix.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\hpdigi~1.lnk - c:\program files\hp\digital imaging\bin\hpqtra08.exe
IE: &AOL Toolbar search - c:\program files\aol toolbar\toolbar.dll/SEARCH.HTML
IE: {c95fe080-8f5d-11d2-a20b-00aa003c157a} - %SystemRoot%\web\related.htm
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0_07\bin\ssv.dll
IE: {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - {FE54FA40-D68C-11d2-98FA-00C0F0318AFE} - c:\windows\system32\Shdocvw.dll
DPF: {215B8138-A3CF-44C5-803F-8226143CFC0A} - hxxp://housecall65.trendmicro.com/housecall/applet/html/native/x86/win32/activex/hcImpl.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} - hxxp://ax.emsisoft.com/asquared.cab
DPF: {CAFEEFAC-0014-0002-0000-ABCDEFFEDCBA} - hxxp://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload.adobe.com/pub/shockwave/cabs/flash/swflash.cab

================= FIREFOX ===================

FF - ProfilePath - c:\docume~1\owner\applic~1\mozilla\firefox\profiles\nd7gfgls.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.yahoo.com
FF - plugin: c:\program files\viewpoint\viewpoint experience technology\npViewpoint.dll

============= SERVICES / DRIVERS ===============

R2 ccEvtMgr;Symantec Event Manager;c:\program files\common files\symantec shared\ccEvtMgr.exe [2003-8-14 255136]
R2 ccSetMgr;Symantec Settings Manager;c:\program files\common files\symantec shared\ccSetMgr.exe [2003-8-14 234656]
R2 navapsvc;Norton AntiVirus Auto Protect Service;c:\program files\norton antivirus\navapsvc.exe [2003-8-17 158376]
R2 SAVRTPEL;SAVRTPEL;c:\program files\norton antivirus\Savrtpel.sys [2003-8-6 35008]
R3 NAVENG;NAVENG;c:\progra~1\common~1\symant~1\virusd~1\20040805.006\NAVENG.Sys [2003-1-3 68168]
R3 NAVEX15;NAVEX15;c:\progra~1\common~1\symant~1\virusd~1\20040805.006\NavEx15.Sys [2003-1-3 617288]
R3 SAVRT;SAVRT;c:\program files\norton antivirus\savrt.sys [2003-8-6 300736]
R3 SAVScan;SAVScan;c:\program files\norton antivirus\SAVScan.exe [2003-8-9 193816]
S2 SBService;ScriptBlocking Service;c:\progra~1\common~1\symant~1\script~1\SBServ.exe [2003-6-24 66784]
S3 ccPwdSvc;Symantec Password Validation;c:\program files\common files\symantec shared\ccPwdSvc.exe [2003-8-14 87200]

=============== Created Last 30 ================

2009-04-23 09:48 <DIR> --ds---- c:\documents and settings\owner\UserData
2009-04-21 20:42 <DIR> --d----- c:\docume~1\owner\applic~1\OpenOffice.org
2009-04-21 20:37 27,165 a------- c:\windows\system32\drivers\fetnd5.sys
2009-04-21 20:37 4,864 a------- c:\windows\system32\drivers\viaide.sys
2009-04-21 20:05 <DIR> --d----- c:\program files\JRE
2009-04-21 20:05 <DIR> --d----- c:\program files\OpenOffice.org 3
2009-04-21 20:05 73,728 a------- c:\windows\system32\javacpl.cpl
2009-04-21 18:14 <DIR> --d----- c:\documents and settings\owner\.housecall6.6
2009-04-21 17:43 <DIR> --d----- c:\program files\common files\HP
2009-04-21 17:42 <DIR> --d----- c:\program files\common files\Hewlett-Packard
2009-04-21 17:41 14,208 ac------ c:\windows\system32\dllcache\usbscan.sys
2009-04-21 17:41 14,208 a------- c:\windows\system32\drivers\usbscan.sys
2009-04-21 17:41 278,584 a------- c:\windows\system32\HPZidr12.dll
2009-04-21 17:41 204,800 a------- c:\windows\system32\HPZipr12.dll
2009-04-21 17:41 94,208 a------- c:\windows\system32\HPZipt12.dll
2009-04-21 17:41 69,632 a------- c:\windows\system32\HPZipm12.exe
2009-04-21 17:41 61,440 a------- c:\windows\system32\HPZinw12.exe
2009-04-21 17:41 57,344 a------- c:\windows\system32\HPZisn12.dll
2009-04-21 17:40 <DIR> --d----- c:\program files\HP
2009-04-21 17:38 68,491 -------- c:\windows\hpoins05.dat.temp
2009-04-21 17:38 19,696 -------- c:\windows\hpomdl05.dat.temp
2009-04-21 17:36 24,960 ac------ c:\windows\system32\dllcache\usbprint.sys
2009-04-21 17:36 24,960 a------- c:\windows\system32\drivers\usbprint.sys
2009-04-21 17:27 69,442 a------- c:\windows\hpoins05.dat
2009-04-21 17:27 19,696 -------- c:\windows\hpomdl05.dat
2009-04-21 17:20 <DIR> --d----- c:\temp\HP_WebRelease
2009-04-21 17:20 <DIR> --d----- C:\temp
2009-04-21 16:54 <DIR> --d----- c:\windows\system32\SoftwareDistribution
2009-04-21 16:53 213,528 a------- c:\windows\system32\wuaucpl.cpl
2009-04-21 16:53 186,136 a------- c:\windows\system32\wuaueng1.dll
2009-04-21 16:53 167,704 a------- c:\windows\system32\wuauclt1.exe
2009-04-21 16:47 57,856 ac------ c:\windows\system32\dllcache\drmk.sys
2009-04-21 16:47 57,856 a------- c:\windows\system32\drivers\drmk.sys
2009-04-21 16:47 134,272 ac------ c:\windows\system32\dllcache\portcls.sys
2009-04-21 16:47 134,272 a------- c:\windows\system32\drivers\portcls.sys
2009-04-21 16:47 22,016 a------- c:\windows\system32\wdmaud.drv
2009-04-21 16:47 <DIR> --d----- C:\WUTemp
2009-04-21 16:47 182,880 a------- c:\windows\system32\iuenginenew.dll
2009-04-21 16:47 12,598 a------- c:\windows\system32\wpa.bak

==================== Find3M ====================


============= FINISH: 9:50:42.28 ===============


-thanks!

Attached Files



#6 miekiemoes

miekiemoes

    Malware Killer Dog


  • Malware Response Team
  • 19,420 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Belgium
  • Local time:01:52 AM

Posted 23 April 2009 - 09:36 AM

I notice this particularly when I'm browsing the web, regardless of if I'm using IE or Firefox....when I scroll, the page is very choppy, almost like it 'refreshes' every time a new page comes up.

You need to install the drivers of your videocard; because that explains it :thumbup2:
Your log looks OK btw. :)
AntispywareScanners---Antivirus Scanners---Firewalls---Online Scanners---Prevention---Help! My computer is slow---My Blog---Follow me on Twitter.
My help is ALWAYS FREE, but if you want to donate to help me continue my fight against malware -- click here!
Asking for help via Private Message or Mail will be ignored - So If you need help, post your problem in the forum.

#7 pennyt

pennyt
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:07:52 PM

Posted 23 April 2009 - 05:05 PM

Great, thanks. Now I just have to figure out how to install those drivers, haha.

Edit: got it. Everything seems to be good for now. Thanks again.

Edited by pennyt, 23 April 2009 - 05:26 PM.


#8 miekiemoes

miekiemoes

    Malware Killer Dog


  • Malware Response Team
  • 19,420 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Belgium
  • Local time:01:52 AM

Posted 24 April 2009 - 02:03 AM

Edit: got it. Everything seems to be good for now. Thanks again.

Good to hear :thumbup2:
AntispywareScanners---Antivirus Scanners---Firewalls---Online Scanners---Prevention---Help! My computer is slow---My Blog---Follow me on Twitter.
My help is ALWAYS FREE, but if you want to donate to help me continue my fight against malware -- click here!
Asking for help via Private Message or Mail will be ignored - So If you need help, post your problem in the forum.

#9 miekiemoes

miekiemoes

    Malware Killer Dog


  • Malware Response Team
  • 19,420 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Belgium
  • Local time:01:52 AM

Posted 26 April 2009 - 09:28 AM

Since this issue appears resolved ... this Topic is closed.
If you need this topic reopened for continuations of existing problems, please request this by sending me a PM with the address of the thread. This applies only to the original topic starter.

Everyone else please begin a New Topic.
AntispywareScanners---Antivirus Scanners---Firewalls---Online Scanners---Prevention---Help! My computer is slow---My Blog---Follow me on Twitter.
My help is ALWAYS FREE, but if you want to donate to help me continue my fight against malware -- click here!
Asking for help via Private Message or Mail will be ignored - So If you need help, post your problem in the forum.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users