Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Infected with something


  • This topic is locked This topic is locked
2 replies to this topic

#1 spongebob squarepant

spongebob squarepant

  • Members
  • 1 posts
  • OFFLINE
  •  
  • Local time:09:24 PM

Posted 26 August 2009 - 08:00 PM

Hello, my computer is suspected to be infected with something. My firefox browser occasionally closes down automatically, lags quite often, and is unable to save any data that I had after I close the program. Ex: Changed home page, but returns to previous home page after closing and then re-opening the browser.
Thank you for your time.
Here is my DDS and my RootRepeal.


DDS (Ver_09-07-30.01) - NTFSx86
Run by Ryan Peng at 6:56:02.85 on Wed 08/26/2009
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_15
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.447.67 [GMT -4:00]

AV: Norton AntiVirus *On-access scanning enabled* (Updated) {B5510F6F-87E1-47F7-A411-360BC453007C}

============== Running Processes ===============

C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Norton SystemWorks\Norton Ghost\GhostStartTrayApp.exe
C:\WINDOWS\system32\VTTimer.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\ALCXMNTR.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\AIM6\aim6.exe
svchost.exe
C:\Program Files\Norton SystemWorks\Norton Ghost\GhostStartService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\AIM6\aolsoftware.exe
C:\WINDOWS\system32\taskmgr.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Ryan Peng\Desktop\dds.scr

============== Pseudo HJT Report ===============

uStart Page = hxxp://www.yahoo.com/
uInternet Connection Wizard,ShellNext = iexplore
uURLSearchHooks: AOLSearchHook Class: {54eb34ea-e6be-4cfd-9f4f-c4a0c2eafa22} - c:\program files\aim search\AOLSearch.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: AOLSearchHook Class: {54eb34ea-e6be-4cfd-9f4f-c4a0c2eafa22} - c:\program files\aim search\AOLSearch.dll
BHO: CNavExtBho Class: {bdf3e430-b101-42ad-a544-fadc6b084872} - c:\program files\norton systemworks\norton antivirus\NavShExt.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: Norton AntiVirus: {42cdd1bf-3ffb-4238-8ad1-7859df00b1d6} - c:\program files\norton systemworks\norton antivirus\NavShExt.dll
uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [Aim6] "c:\program files\aim6\aim6.exe" /d locale=en-US ee://aol/imApp
mRun: [ccApp] c:\program files\common files\symantec shared\ccApp.exe
mRun: [ccRegVfy] c:\program files\common files\symantec shared\ccRegVfy.exe
mRun: [GhostStartTrayApp] c:\program files\norton systemworks\norton ghost\GhostStartTrayApp.exe
mRun: [VTTimer] VTTimer.exe
mRun: [AGRSMMSG] AGRSMMSG.exe
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [AlcxMonitor] ALCXMNTR.EXE
mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\micros~1.lnk - c:\program files\microsoft office\office10\OSA.EXE
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office10\EXCEL.EXE/3000
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - c:\program files\common files\microsoft shared\web folders\PKMCDO.DLL

================= FIREFOX ===================

FF - ProfilePath -
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}

============= SERVICES / DRIVERS ===============


=============== Created Last 30 ================

2009-08-26 05:55 <DIR> --dsh--- C:\found.005
2009-08-13 00:47 128,512 -c------ c:\windows\system32\dllcache\dhtmled.ocx
2009-08-13 00:47 1,315,328 -c------ c:\windows\system32\dllcache\msoe.dll
2009-08-05 05:01 204,800 -c------ c:\windows\system32\dllcache\mswebdvd.dll

==================== Find3M ====================

2009-08-05 05:01 204,800 a------- c:\windows\system32\mswebdvd.dll
2009-08-04 15:41 34 a------- c:\documents and settings\ryan peng\jagex_runescape_preferences.dat
2009-07-25 05:23 411,368 a------- c:\windows\system32\deploytk.dll
2009-07-17 15:01 58,880 a------- c:\windows\system32\atl.dll
2009-07-12 12:21 233,472 a------- c:\windows\system32\wmpdxm.dll
2009-07-03 13:09 915,456 a------- c:\windows\system32\wininet.dll
2009-06-16 10:36 119,808 a------- c:\windows\system32\t2embed.dll
2009-06-16 10:36 81,920 a------- c:\windows\system32\fontsub.dll
2009-06-12 08:31 80,896 a------- c:\windows\system32\tlntsess.exe
2009-06-12 08:31 76,288 a------- c:\windows\system32\telnet.exe
2009-06-10 10:13 84,992 a------- c:\windows\system32\avifil32.dll
2009-06-10 09:19 2,066,432 a------- c:\windows\system32\mstscax.dll
2009-06-10 02:14 132,096 a------- c:\windows\system32\wkssvc.dll
2009-06-03 15:09 1,291,264 a------- c:\windows\system32\quartz.dll
2009-03-26 22:56 20,328 a------- c:\docume~1\ryanpe~1\applic~1\GDIPFONTCACHEV1.DAT
2008-09-13 21:18 32 a--sh--- c:\windows\{11A60782-DE24-4393-B8E9-0B352A6599B7}.dat
2008-09-13 21:18 32 a--sh--- c:\windows\{3D9E1EC0-77B4-4255-A0FC-D1DEF31EABC2}.dat
2008-09-13 21:17 32 a--sh--- c:\windows\{4841323B-019B-4A80-8C9A-55C3696DBCD0}.dat
2008-09-13 21:17 32 a--sh--- c:\windows\{883AB560-DC39-4A8D-86D0-F22E395FCE9C}.dat
2008-09-13 21:15 32 a--sh--- c:\windows\{A7931775-F98C-45E1-9BA3-D4AA899D817A}.dat
2008-09-13 21:17 32 a--sh--- c:\windows\{BBC63B66-D7C1-4B38-B0BF-55929D531AA3}.dat
2008-09-13 21:19 32 a--sh--- c:\windows\{F96D2A95-FE59-48A8-9D66-A365D74512B2}.dat
2008-09-13 21:15 32 a--sh--- c:\windows\system32\{2864BA5A-27F5-441E-A264-EA6269F42168}.dat
2008-09-13 21:19 32 a--sh--- c:\windows\system32\{4A16394F-A771-4327-866A-B2D4EA7D42D4}.dat
2008-09-13 21:18 32 a--sh--- c:\windows\system32\{76274FC8-82C8-47A7-A015-EB3BCC6BAB99}.dat
2008-09-13 21:17 32 a--sh--- c:\windows\system32\{B1703BFE-2F32-496E-B634-91B9101581D8}.dat
2008-09-13 21:17 32 a--sh--- c:\windows\system32\{CE468556-67F1-47C3-A7CE-29CAB7E6F14B}.dat
2008-09-13 21:18 32 a--sh--- c:\windows\system32\{D001BABC-61E1-4193-ADDF-5A8A30340BEC}.dat
2008-09-13 21:17 32 a--sh--- c:\windows\system32\{FEA95F91-DA59-4561-9CCF-52B1D0C55B49}.dat
2009-03-26 01:14 32,768 a--sh--- c:\windows\system32\config\systemprofile\local settings\history\history.ie5\mshist012009032620090327\index.dat

============= FINISH: 6:56:55.84 ===============

UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT

DDS (Ver_09-07-30.01)

Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 9/13/2008 9:06:22 PM
System Uptime: 8/26/2009 5:55:39 AM (1 hours ago)

Motherboard: ASUSTek Computer INC. | | Kelut
Processor: AMD Athlon™ XP 2900+ | Socket A | 2000/200mhz

==== Disk Partitions =========================

C: is FIXED (NTFS) - 75 GiB total, 65.018 GiB free.
D: is CDROM ()
E: is CDROM ()
F: is Removable
G: is Removable
H: is Removable
I: is Removable

==== Disabled Device Manager Items =============

Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: ALI M5603C
Device ID: USB\VID_0402&PID_5603\5&12966489&0&4
Manufacturer:
Name: ALI M5603C
PNP Device ID: USB\VID_0402&PID_5603\5&12966489&0&4
Service:

==== System Restore Points ===================

RP225: 5/28/2009 2:14:00 PM - System Checkpoint
RP226: 5/29/2009 7:39:59 PM - System Checkpoint
RP227: 5/30/2009 8:26:59 PM - System Checkpoint
RP228: 6/1/2009 12:40:30 AM - System Checkpoint
RP229: 6/2/2009 12:28:49 PM - System Checkpoint
RP230: 6/3/2009 1:47:30 PM - System Checkpoint
RP231: 6/4/2009 5:57:33 PM - System Checkpoint
RP232: 6/5/2009 5:59:29 PM - System Checkpoint
RP233: 6/6/2009 8:21:02 PM - System Checkpoint
RP234: 6/7/2009 5:08:40 PM - Software Distribution Service 3.0
RP235: 6/8/2009 7:55:12 PM - System Checkpoint
RP236: 6/10/2009 7:07:07 PM - System Checkpoint
RP237: 6/11/2009 12:19:35 AM - Software Distribution Service 3.0
RP238: 6/12/2009 12:46:28 PM - Installed Java™ 6 Update 14
RP239: 6/15/2009 7:21:27 PM - System Checkpoint
RP240: 6/17/2009 11:09:07 AM - System Checkpoint
RP241: 6/19/2009 4:03:35 PM - System Checkpoint
RP242: 6/20/2009 4:28:10 PM - System Checkpoint
RP243: 6/22/2009 2:22:56 PM - System Checkpoint
RP244: 6/23/2009 6:50:56 PM - System Checkpoint
RP245: 6/24/2009 7:46:24 PM - System Checkpoint
RP246: 6/26/2009 6:29:06 AM - System Checkpoint
RP247: 6/27/2009 8:13:45 PM - System Checkpoint
RP248: 6/29/2009 4:17:43 PM - System Checkpoint
RP249: 6/30/2009 8:44:38 PM - System Checkpoint
RP250: 7/1/2009 8:47:56 PM - System Checkpoint
RP251: 7/2/2009 8:56:43 PM - System Checkpoint
RP252: 7/3/2009 9:01:15 PM - System Checkpoint
RP253: 7/4/2009 9:41:46 PM - System Checkpoint
RP254: 7/5/2009 10:36:17 PM - System Checkpoint
RP255: 7/7/2009 4:34:37 PM - System Checkpoint
RP256: 7/8/2009 8:03:04 PM - System Checkpoint
RP257: 7/9/2009 8:39:27 PM - System Checkpoint
RP258: 7/10/2009 8:44:34 PM - System Checkpoint
RP259: 7/12/2009 8:06:00 PM - System Checkpoint
RP260: 7/14/2009 3:29:26 PM - System Checkpoint
RP261: 7/15/2009 3:43:39 PM - System Checkpoint
RP262: 7/16/2009 12:30:30 PM - Software Distribution Service 3.0
RP263: 7/17/2009 12:41:25 PM - System Checkpoint
RP264: 7/18/2009 5:01:11 PM - System Checkpoint
RP265: 7/20/2009 3:08:28 PM - System Checkpoint
RP266: 7/22/2009 3:13:24 PM - System Checkpoint
RP267: 7/25/2009 9:16:02 AM - System Checkpoint
RP268: 7/29/2009 2:11:27 AM - Software Distribution Service 3.0
RP269: 7/31/2009 1:53:14 AM - System Checkpoint
RP270: 8/6/2009 3:30:40 PM - System Checkpoint
RP271: 8/7/2009 4:52:41 PM - System Checkpoint
RP272: 8/8/2009 6:42:00 AM - Installed Java™ 6 Update 15
RP273: 8/11/2009 5:30:40 PM - System Checkpoint
RP274: 8/12/2009 6:13:50 PM - System Checkpoint
RP275: 8/13/2009 7:01:53 PM - Software Distribution Service 3.0
RP276: 8/19/2009 6:25:18 AM - System Checkpoint
RP277: 8/20/2009 4:57:00 PM - System Checkpoint
RP278: 8/22/2009 1:38:23 PM - System Checkpoint
RP279: 8/24/2009 6:46:54 PM - System Checkpoint
RP280: 8/25/2009 7:05:08 PM - System Checkpoint
RP281: 8/26/2009 5:57:22 AM - Software Distribution Service 3.0

==== Installed Programs ======================

Acrobat.com
Adobe AIR
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Reader 9.1.3
Adobe Shockwave Player 11.5
Agere Systems PCI Soft Modem
AIM 6
Aim Plugin for QQ Games
AIM Search
Download Updater (AOL LLC)
Hotfix for Windows XP (KB952287)
Hotfix for Windows XP (KB970653-v3)
HP Deskjet 3840 Series
Java™ 6 Update 15
LiveReg (Symantec Corporation)
LiveUpdate 1.80 (Symantec Corporation)
Microsoft Global IME for Office XP (Simplified Chinese)
Microsoft Global IME for Office XP (Traditional Chinese)
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft National Language Support Downlevel APIs
Microsoft Office XP Professional with FrontPage
Microsoft VC9 runtime libraries
Mozilla Firefox (3.0.3)
Norton CleanSweep
Norton Speed Disk 7.0 for Windows NT
Norton SystemWorks 2003
Norton Utilities 2003 for Windows
Norton WMI Update
Pando Media Booster
Realtek AC'97 Audio
S3 S3Display
S3 S3Gamma2
S3 S3Info2
S3 S3Overlay
Security Update for Windows Internet Explorer 7 (KB938127-v2)
Security Update for Windows Internet Explorer 7 (KB938127)
Security Update for Windows Internet Explorer 7 (KB953838)
Security Update for Windows Internet Explorer 7 (KB956390)
Security Update for Windows Internet Explorer 7 (KB958215)
Security Update for Windows Internet Explorer 7 (KB960714)
Security Update for Windows Internet Explorer 7 (KB961260)
Security Update for Windows Internet Explorer 7 (KB963027)
Security Update for Windows Internet Explorer 8 (KB969897)
Security Update for Windows Internet Explorer 8 (KB972260)
Security Update for Windows Media Player (KB952069)
Security Update for Windows Media Player (KB973540)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB923789)
Security Update for Windows XP (KB938464-v2)
Security Update for Windows XP (KB938464)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951698)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB953838)
Security Update for Windows XP (KB953839)
Security Update for Windows XP (KB954211)
Security Update for Windows XP (KB954459)
Security Update for Windows XP (KB954600)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956391)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956744)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956841)
Security Update for Windows XP (KB957095)
Security Update for Windows XP (KB957097)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958687)
Security Update for Windows XP (KB958690)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960715)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Security Update for Windows XP (KB961371)
Security Update for Windows XP (KB961373)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB968537)
Security Update for Windows XP (KB969898)
Security Update for Windows XP (KB970238)
Security Update for Windows XP (KB971557)
Security Update for Windows XP (KB971633)
Security Update for Windows XP (KB971657)
Security Update for Windows XP (KB973346)
Security Update for Windows XP (KB973354)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973869)
Spelling Dictionaries Support For Adobe Reader 9
Update for Windows Internet Explorer 8 (KB971180)
Update for Windows XP (KB951072-v2)
Update for Windows XP (KB951978)
Update for Windows XP (KB955839)
Update for Windows XP (KB967715)
Update for Windows XP (KB973815)
VIA Rhine-Family Fast Ethernet Adapter
VIA/S3G Display Driver
Viewpoint Media Player
Web Games Player Plugin
WebFldrs XP
Windows Genuine Advantage Notifications (KB905474)
Windows Internet Explorer 7
Windows Internet Explorer 8
Windows XP Service Pack 3

==== End Of File ===========================
ROOTREPEAL © AD, 2007-2009
==================================================
Scan Start Time: 2009/08/26 20:44
Program Version: Version 1.3.5.0
Windows Version: Windows XP SP3
==================================================

Drivers
-------------------
Name: dump_atapi.sys
Image Path: C:\WINDOWS\System32\Drivers\dump_atapi.sys
Address: 0xF55E0000 Size: 98304 File Visible: No Signed: -
Status: -

Name: dump_WMILIB.SYS
Image Path: C:\WINDOWS\System32\Drivers\dump_WMILIB.SYS
Address: 0xF7A51000 Size: 8192 File Visible: No Signed: -
Status: -

Name: rootrepeal.sys
Image Path: C:\WINDOWS\system32\drivers\rootrepeal.sys
Address: 0xF04F1000 Size: 49152 File Visible: No Signed: -
Status: -

Hidden/Locked Files
-------------------
Path: C:\RECYCLER\NPROTECT
Status: Invisible to the Windows API!

Path: C:\System Volume Information\_restore{6BAA8AE0-A2DD-4B92-B4BA-E39BB8201A16}\RP262\change.log.3
Status: Visible to the Windows API, but not on disk.

Path: c:\documents and settings\ryan peng\local settings\temp\etilqs_7ddcalbqzpul9lshhlda
Status: Allocation size mismatch (API: 32768, Raw: 0)

Path: c:\documents and settings\ryan peng\local settings\application data\mozilla\firefox\profiles\qtf3oy4a.default\cache\_cache_001_
Status: Size mismatch (API: 778659, Raw: 776831)

Path: C:\Documents and Settings\Ryan Peng\Local Settings\Application Data\Mozilla\Firefox\Profiles\qtf3oy4a.default\Cache\2685B869d01
Status: Visible to the Windows API, but not on disk.

==EOF==

BC AdBot (Login to Remove)

 


#2 Blade

Blade

    Strong in the Bleepforce


  • Site Admin
  • 12,704 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:US
  • Local time:09:24 PM

Posted 10 September 2009 - 11:20 AM

Hello and welcome to Bleeping Computer

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.

If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine.

If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.

Upon completing the steps below another staff member will review and take the steps necessary with you to get your machine back in working order clean and free of malware.

If you have already posted a DDS log, please do so again, as your situation may have changed.
Use the 'Add Reply' and add the new log to this thread.


Thanks and again sorry for the delay.

We need to see some information about what is happening in your machine. Please perform the following scan:
  • Download DDS by sUBs from one of the following links. Save it to your desktop.
  • Double click on the DDS icon, allow it to run.
  • A small box will open, with an explaination about the tool. No input is needed, the scan is running.
  • Notepad will open with the results.
  • Follow the instructions that pop up for posting the results.
  • Close the program window, and delete the program from your desktop.
Please note: You may have to disable any script protection running if the scan fails to run. After downloading the tool, disconnect from the internet and disable all antivirus protection. Run the scan, enable your A/V and reconnect to the internet.

Information on A/V control HERE

Posted Image

If I am helping you, it has been 48 hours since your last post, and I have yet to reply to your topic, please send me a PM
Become a BleepingComputer fan: Facebook
Follow us on Twitter!
Circle us on Google+


#3 Orange Blossom

Orange Blossom

    OBleepin Investigator


  • Moderator
  • 36,947 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Location:Bloomington, IN
  • Local time:09:24 PM

Posted 15 September 2009 - 06:59 PM

Due to the lack of feedback, this Topic is now closed.

In case you still have problems, please send me a Private message to reopen this topic within the next 5 days. Beyond that point, please start a new topic.

Orange Blossom :thumbup2:
Help us help you. If HelpBot replies, you MUST follow step 1 in its reply so we know you need help.

Orange Blossom

An ounce of prevention is worth a pound of cure

SpywareBlaster, WinPatrol Plus, ESET Smart Security, Malwarebytes' Anti-Malware, NoScript Firefox ext., Norton noscript




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users