Jump to content


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.

Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.


My PC behaves weird - everything terminates itself

  • This topic is locked This topic is locked
7 replies to this topic

#1 crystal07


  • Members
  • 26 posts
  • Gender:Female
  • Local time:09:42 AM

Posted 06 November 2010 - 06:08 PM

Hi everyone,

this is my first post, so first of all I'd like to say "hello" :hello:

Now to my problem. I am not sure, if I'm in the right forum, since I don't know what causes it. So I am starting here and hope, someone might be able to help me.

Since a few days my PC behaves extremely weird. I don't know if these are separated problems or a series of one problem. Anyway, it started with that every now and then my PC became very slow, so I couldn't almost move the mouse cursor, lasting a few seconds or minutes and then it went to normal again. I noticed that svchost.exe used a lot of CPU at these times.

Next I noticed that a few of my program folders (all portable programs) were simply vanished without any trace.

Then next suddenly a program I just had started to use - Sticky Passwords - (portable version) crashed, freezing my entire PC.

Next, Windows Media Player suddenly does not play wav files anymore and mp3 only if no other player is open. This may have been since longer, but since mostly I use Mediamonkey or Foobar, I just noticed it now.

The next weird thing was a sudden runtime error on closing MS Word. I am using an addon, Metatexis, which I need as translator, and the error was obviously caused due to a corrupted file - but the weird things is, nothing had happened that could have caused that, no crash, nothing. Anyway, reinstalling Metatexis solved it. But I think, the deeper cause is somewhere else.

Also, 2 or 3 times (for example when copying files) I got an error message saying, there are not enough ressources for this action, too many GDI-objects (??).

Now finally the worst. The periods of slowing down haven't come back, so no mouse cursor freezing anymore. Instead, after a few hours, and completely out of the blue, my Anvir taskmanager (that runs on my PC since almost 2 years without any problem ever) pops up piles of windows notifying me it found new startup items - however, there is not one new, but its all items that I have in autostart since "ages". If I close these windows, it starts to pop them up again (and lists all old items as new ones). It seems every startup item is suddenly removed and right away re-entered - I have no idea, what could cause that. Right after that each and every running application terminates itself and several display items get screwed up (like my desktop dock menues fall into parts, the labels on my firefox tabs vanish etc.), I can`t even start taskmanager or anything and all I can do is power off, or, if I'm lucky restart.

After restart everything is fine. This weird behavior happens after hours of running. So, after restart, usually everything is okay for 8 to 12 hours and suddenly the nightmare begins, no matter what I am just doing, if I work with MS Word, or just simply read a website.

I have checked Anvir's logfile but there is absolutely nothing that indicates what it causes. Except that 5-7 minutes before the Avira avwsc.exe was starting and terminating (which is strange too, since normally it shows as avwsc.exe (lower case), but since 3 days sometimes it shows in uppercase as well as AVWESC.EXE - but I can't find any second avwsc on my PC, besides the file in the Avira folder).

So far I did run the Dell utilities for checking hardware (memtest, CPU etc.) - no error found. Crystal Disk info - everything fine. Scandisk - no error found.
System file check - nothing replaced (I have even purged the dllcache prior to this just to be sure).
Scanned with Avira, Malwarebyte, Super Antimalware, Rootkit Revealer RUBotted, Norman Malware Cleaner - nothing found.
Hijackthis doesn't show anything unusual.

I am at the very end of my rope, starting to pull out my hair :(
and have no idea, where to start, to look or what to do else.
Close to despair...
I hope that anyone can help me and point me into the right direction.

My system: Dell Dimension 5150, Pentium 4 CPU 3.40 Ghz, 3 Gb RAM,
Windows XP pro, SP3, with all latest updates installed.
Security: Avira personal free, Windows firewall, Anvir security taskmanager.

Thank you in advance for any help
If you do not the expect the unexpected you will not find it, for it is not to be reached by search or trail. (Heraklit)
Miracles are Interactive Events that have a Beginning inside of You. At the Level of Desire You Create the Seeds of Miracles. Whatever you focus on, you will experience. Anything in this world is possible if you have a strong belief

BC AdBot (Login to Remove)


#2 boopme


    To Insanity and Beyond

  • Global Moderator
  • 72,725 posts
  • Gender:Male
  • Location:NJ USA
  • Local time:10:42 AM

Posted 06 November 2010 - 06:46 PM

Hello Sabine, I am going to move this to the Am I Infected forum for now.

I want to try this.

Please download the TDSS Rootkit Removing Tool (TDSSKiller.exe) and save it to your Desktop. <-Important!!!
Be sure to download TDSSKiller.exe (v2.4.0.0) from Kaspersky's website and not TDSSKiller.zip which appears to be an older version of the tool.
  • Double-click on TDSSKiller.exe to run the tool for known TDSS variants.
    Vista/Windows 7 users right-click and select Run As Administrator.
  • If TDSSKiller does not run, try renaming it.
  • To do this, right-click on TDSSKiller.exe, select Rename and give it a random name with the .com file extension (i.e. 123abc.com). If you do not see the file extension, please refer to How to change the file extension.
  • Click the Start Scan button.
  • Do not use the computer during the scan
  • If the scan completes with nothing found, click Close to exit.
  • If malicious objects are found, they will show in the Scan results - Select action for found objects and offer three options.
  • Ensure Cure (default) is selected, then click Continue > Reboot now to finish the cleaning process.
  • A log file named TDSSKiller_version_date_time_log.txt (i.e. TDSSKiller. will be created and saved to the root directory (usually Local Disk C:).
  • Copy and paste the contents of that file in your next reply.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#3 crystal07

  • Topic Starter

  • Members
  • 26 posts
  • Gender:Female
  • Local time:09:42 AM

Posted 06 November 2010 - 07:44 PM

Hello boopme,

Thank you so much for your fast reply and for moving my post.
I have right away downloaded the TDSS Rootkiller tool and scanned. It found nothing. Below is the log file.
I am going crazy...a few minutes ago it happened again, suddenly all firefox tabs labels, text on websites etc. vanished, everything froze and I could only press power off (PC did run about 12 hours smoothly). After rebooting another spooky thing: my object dock started without any icons and theme on it, on a wrong place and when I looked into the settings folder it appeared, that the setting files were replaced with fresh written files without any of my settings. This can't surely happen by itself!
What can we do next??

Thank you for your help!

TDSS log:
2010/11/07 01:15:48.0765 TDSS rootkit removing tool Nov 3 2010 10:11:43
2010/11/07 01:15:48.0765 ================================================================================
2010/11/07 01:15:48.0765 SystemInfo:
2010/11/07 01:15:48.0765
2010/11/07 01:15:48.0765 OS Version: 5.1.2600 ServicePack: 3.0
2010/11/07 01:15:48.0765 Product type: Workstation
2010/11/07 01:15:48.0765 ComputerName: METATRON
2010/11/07 01:15:48.0765 UserName: sabine
2010/11/07 01:15:48.0765 Windows directory: C:\WINDOWS
2010/11/07 01:15:48.0765 System windows directory: C:\WINDOWS
2010/11/07 01:15:48.0765 Processor architecture: Intel x86
2010/11/07 01:15:48.0765 Number of processors: 2
2010/11/07 01:15:48.0765 Page size: 0x1000
2010/11/07 01:15:48.0765 Boot type: Normal boot
2010/11/07 01:15:48.0765 ================================================================================
2010/11/07 01:15:49.0234 Initialize success
2010/11/07 01:15:56.0953 ================================================================================
2010/11/07 01:15:56.0953 Scan started
2010/11/07 01:15:56.0953 Mode: Manual;
2010/11/07 01:15:56.0953 ================================================================================
2010/11/07 01:15:57.0500 abp480n5 (6abb91494fe6c59089b9336452ab2ea3) C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS
2010/11/07 01:15:57.0625 ACPI (ac407f1a62c3a300b4f2b5a9f1d55b2c) C:\WINDOWS\system32\DRIVERS\ACPI.sys
2010/11/07 01:15:57.0734 ACPIEC (9e1ca3160dafb159ca14f83b1e317f75) C:\WINDOWS\system32\drivers\ACPIEC.sys
2010/11/07 01:15:57.0796 adpu160m (9a11864873da202c996558b2106b0bbc) C:\WINDOWS\system32\DRIVERS\adpu160m.sys
2010/11/07 01:15:57.0906 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
2010/11/07 01:15:58.0000 AFD (7e775010ef291da96ad17ca4b17137d7) C:\WINDOWS\System32\drivers\afd.sys
2010/11/07 01:15:58.0093 agp440 (08fd04aa961bdc77fb983f328334e3d7) C:\WINDOWS\system32\DRIVERS\agp440.sys
2010/11/07 01:15:58.0140 agpCPQ (03a7e0922acfe1b07d5db2eeb0773063) C:\WINDOWS\system32\DRIVERS\agpCPQ.sys
2010/11/07 01:15:58.0265 Aha154x (c23ea9b5f46c7f7910db3eab648ff013) C:\WINDOWS\system32\DRIVERS\aha154x.sys
2010/11/07 01:15:58.0359 aic78u2 (19dd0fb48b0c18892f70e2e7d61a1529) C:\WINDOWS\system32\DRIVERS\aic78u2.sys
2010/11/07 01:15:58.0421 aic78xx (b7fe594a7468aa0132deb03fb8e34326) C:\WINDOWS\system32\DRIVERS\aic78xx.sys
2010/11/07 01:15:58.0531 AliIde (1140ab9938809700b46bb88e46d72a96) C:\WINDOWS\system32\DRIVERS\aliide.sys
2010/11/07 01:15:58.0609 alim1541 (cb08aed0de2dd889a8a820cd8082d83c) C:\WINDOWS\system32\DRIVERS\alim1541.sys
2010/11/07 01:15:58.0687 amdagp (95b4fb835e28aa1336ceeb07fd5b9398) C:\WINDOWS\system32\DRIVERS\amdagp.sys
2010/11/07 01:15:58.0765 amsint (79f5add8d24bd6893f2903a3e2f3fad6) C:\WINDOWS\system32\DRIVERS\amsint.sys
2010/11/07 01:15:58.0859 AnyDVD (d1fc4ac47a26d5b666654258126540d9) C:\WINDOWS\system32\Drivers\AnyDVD.sys
2010/11/07 01:15:58.0937 asc (62d318e9a0c8fc9b780008e724283707) C:\WINDOWS\system32\DRIVERS\asc.sys
2010/11/07 01:15:59.0015 asc3350p (69eb0cc7714b32896ccbfd5edcbea447) C:\WINDOWS\system32\DRIVERS\asc3350p.sys
2010/11/07 01:15:59.0093 asc3550 (5d8de112aa0254b907861e9e9c31d597) C:\WINDOWS\system32\DRIVERS\asc3550.sys
2010/11/07 01:15:59.0296 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
2010/11/07 01:15:59.0375 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
2010/11/07 01:15:59.0640 ati2mtag (03621f7f968ff63713943405deb777f9) C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
2010/11/07 01:15:59.0765 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
2010/11/07 01:15:59.0890 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
2010/11/07 01:16:00.0015 avgntflt (1eb7d72a82f94f7e9496d363fce00b68) C:\WINDOWS\system32\DRIVERS\avgntflt.sys
2010/11/07 01:16:00.0093 avipbb (f8c56231ed5ecf7d1b46b0330880ccef) C:\WINDOWS\system32\DRIVERS\avipbb.sys
2010/11/07 01:16:00.0156 AVWEBCAM (08270114009e3e8891120c9ff651123b) C:\WINDOWS\system32\DRIVERS\avwebcam.sys
2010/11/07 01:16:00.0265 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
2010/11/07 01:16:00.0359 cbidf (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\DRIVERS\cbidf2k.sys
2010/11/07 01:16:00.0421 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
2010/11/07 01:16:00.0484 CCDECODE (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
2010/11/07 01:16:00.0546 cd20xrnt (f3ec03299634490e97bbce94cd2954c7) C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys
2010/11/07 01:16:00.0593 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
2010/11/07 01:16:00.0656 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
2010/11/07 01:16:00.0734 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
2010/11/07 01:16:00.0937 CmdIde (c687f81290303d90099b027a6474f99f) C:\WINDOWS\system32\DRIVERS\cmdide.sys
2010/11/07 01:16:01.0046 Cpqarray (3ee529119eed34cd212a215e8c40d4b6) C:\WINDOWS\system32\DRIVERS\cpqarray.sys
2010/11/07 01:16:01.0125 dac2w2k (e550e7418984b65a78299d248f0a7f36) C:\WINDOWS\system32\DRIVERS\dac2w2k.sys
2010/11/07 01:16:01.0203 dac960nt (683789caa3864eb46125ae86ff677d34) C:\WINDOWS\system32\DRIVERS\dac960nt.sys
2010/11/07 01:16:01.0281 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
2010/11/07 01:16:01.0390 DLABOIOM (e2d0de31442390c35e3163c87cb6a9eb) C:\WINDOWS\system32\DLA\DLABOIOM.SYS
2010/11/07 01:16:01.0453 DLACDBHM (d979bebcf7edcc9c9ee1857d1a68c67b) C:\WINDOWS\system32\Drivers\DLACDBHM.SYS
2010/11/07 01:16:01.0515 DLADResN (1fb7a7db89c16673a90d1f104455f38e) C:\WINDOWS\system32\DLA\DLADResN.SYS
2010/11/07 01:16:01.0609 DLAIFS_M (96e01d901cdc98c7817155cc057001bf) C:\WINDOWS\system32\DLA\DLAIFS_M.SYS
2010/11/07 01:16:01.0687 DLAOPIOM (0a60a39cc5e767980a31ca5d7238dfa9) C:\WINDOWS\system32\DLA\DLAOPIOM.SYS
2010/11/07 01:16:01.0765 DLAPoolM (9fe2b72558fc808357f427fd83314375) C:\WINDOWS\system32\DLA\DLAPoolM.SYS
2010/11/07 01:16:01.0828 DLARTL_N (7ee0852ae8907689df25049dcd2342e8) C:\WINDOWS\system32\Drivers\DLARTL_N.SYS
2010/11/07 01:16:01.0937 DLAUDFAM (f08e1dafac457893399e03430a6a1397) C:\WINDOWS\system32\DLA\DLAUDFAM.SYS
2010/11/07 01:16:02.0000 DLAUDF_M (e7d105ed1e694449d444a9933df8e060) C:\WINDOWS\system32\DLA\DLAUDF_M.SYS
2010/11/07 01:16:02.0140 dmboot (0dcfc8395a99fecbb1ef771cec7fe4ea) C:\WINDOWS\system32\drivers\dmboot.sys
2010/11/07 01:16:02.0484 dmio (53720ab12b48719d00e327da470a619a) C:\WINDOWS\system32\drivers\dmio.sys
2010/11/07 01:16:02.0531 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
2010/11/07 01:16:02.0640 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
2010/11/07 01:16:02.0781 dpti2o (40f3b93b4e5b0126f2f5c0a7a5e22660) C:\WINDOWS\system32\DRIVERS\dpti2o.sys
2010/11/07 01:16:02.0859 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
2010/11/07 01:16:02.0953 DRVMCDB (fd0f95981fef9073659d8ec58e40aa3c) C:\WINDOWS\system32\Drivers\DRVMCDB.SYS
2010/11/07 01:16:03.0031 DRVNDDM (b4869d320428cdc5ec4d7f5e808e99b5) C:\WINDOWS\system32\Drivers\DRVNDDM.SYS
2010/11/07 01:16:03.0140 dvd43llh (1fc1eed3ea0c3a0ecf8a95b97e1b4831) C:\WINDOWS\system32\DRIVERS\dvd43llh.sys
2010/11/07 01:16:03.0203 E100B (95974e66d3de4951d29e28e8bc0b644c) C:\WINDOWS\system32\DRIVERS\e100b325.sys
2010/11/07 01:16:03.0281 ElbyCDIO (178cc9403816c082d22a1d47fa1f9c85) C:\WINDOWS\system32\Drivers\ElbyCDIO.sys
2010/11/07 01:16:03.0343 ElbyDelay (df9957db3bfe5136aad3c2c101806c98) C:\WINDOWS\system32\Drivers\ElbyDelay.sys
2010/11/07 01:16:03.0421 epmntdrv (57cc1bf06c159dfbb989f5783c0e6a50) C:\WINDOWS\system32\epmntdrv.sys
2010/11/07 01:16:03.0515 EUBAKUP (6bf0e6a1b25e4673d90112909444118f) C:\WINDOWS\system32\drivers\eubakup.sys
2010/11/07 01:16:03.0593 EuDisk (374db457e96c70a7d2d7be31d67207f0) C:\WINDOWS\system32\DRIVERS\EuDisk.sys
2010/11/07 01:16:03.0640 EUDSKACS (53aa4c738eeb2f0a1fb8e751203e7c35) C:\WINDOWS\system32\drivers\eudskacs.sys
2010/11/07 01:16:03.0718 EUFS (767dc39302ca8263320fb642db9c9e9f) C:\WINDOWS\system32\drivers\eufs.sys
2010/11/07 01:16:03.0812 EuGdiDrv (5f779f5edab787f2d090c71a9051f365) C:\WINDOWS\system32\EuGdiDrv.sys
2010/11/07 01:16:03.0968 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
2010/11/07 01:16:04.0093 FCUSB (2e733250e7b08089405de0ac0b8dc17c) C:\WINDOWS\system32\Drivers\FCUSB.sys
2010/11/07 01:16:04.0156 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
2010/11/07 01:16:04.0281 Fips (b0678a548587c5f1967b0d70bacad6c1) C:\WINDOWS\system32\drivers\Fips.sys
2010/11/07 01:16:04.0421 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
2010/11/07 01:16:04.0515 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
2010/11/07 01:16:04.0656 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
2010/11/07 01:16:04.0734 Ftdisk (8f1955ce42e1484714b542f341647778) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
2010/11/07 01:16:04.0859 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
2010/11/07 01:16:04.0937 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
2010/11/07 01:16:05.0062 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
2010/11/07 01:16:05.0156 hotcore3 (ba513f884ab4bdc42dc132c37d311464) C:\WINDOWS\system32\DRIVERS\hotcore3.sys
2010/11/07 01:16:05.0234 hpn (b028377dea0546a5fcfba928a8aefae0) C:\WINDOWS\system32\DRIVERS\hpn.sys
2010/11/07 01:16:05.0328 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
2010/11/07 01:16:05.0406 i2omgmt (9368670bd426ebea5e8b18a62416ec28) C:\WINDOWS\system32\drivers\i2omgmt.sys
2010/11/07 01:16:05.0500 i2omp (f10863bf1ccc290babd1a09188ae49e0) C:\WINDOWS\system32\DRIVERS\i2omp.sys
2010/11/07 01:16:05.0562 i8042prt (e283b97cfbeb86c1d86baed5f7846a92) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
2010/11/07 01:16:05.0703 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
2010/11/07 01:16:05.0828 ini910u (4a40e045faee58631fd8d91afc620719) C:\WINDOWS\system32\DRIVERS\ini910u.sys
2010/11/07 01:16:05.0968 IntelIde (69c4e3c9e67a1f103b94e14fdd5f3213) C:\WINDOWS\system32\DRIVERS\intelide.sys
2010/11/07 01:16:06.0062 intelppm (4c7d2750158ed6e7ad642d97bffae351) C:\WINDOWS\system32\DRIVERS\intelppm.sys
2010/11/07 01:16:06.0156 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
2010/11/07 01:16:06.0265 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
2010/11/07 01:16:06.0343 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
2010/11/07 01:16:06.0421 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
2010/11/07 01:16:06.0484 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
2010/11/07 01:16:06.0609 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
2010/11/07 01:16:06.0703 isapnp (6dfb88f64135c525433e87648bda30de) C:\WINDOWS\system32\DRIVERS\isapnp.sys
2010/11/07 01:16:06.0781 ISDN_u (7f4283bc37b67ee09741a33df9efa959) C:\WINDOWS\system32\DRIVERS\ISDN_u.sys
2010/11/07 01:16:06.0890 Kbdclass (1704d8c4c8807b889e43c649b478a452) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
2010/11/07 01:16:06.0968 kbdhid (b6d6c117d771c98130497265f26d1882) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
2010/11/07 01:16:07.0062 KeyScrambler (53d9bd8bdf06d7e5fa2dab25afb659b0) C:\WINDOWS\system32\drivers\keyscrambler.sys
2010/11/07 01:16:07.0140 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
2010/11/07 01:16:07.0234 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
2010/11/07 01:16:07.0578 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
2010/11/07 01:16:07.0671 Modem (6fb74ebd4ec57a6f1781de3852cc3362) C:\WINDOWS\system32\drivers\Modem.sys
2010/11/07 01:16:07.0750 Mouclass (b24ce8005deab254c0251e15cb71d802) C:\WINDOWS\system32\DRIVERS\mouclass.sys
2010/11/07 01:16:07.0828 mouhid (66a6f73c74e1791464160a7065ce711a) C:\WINDOWS\system32\DRIVERS\mouhid.sys
2010/11/07 01:16:07.0953 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
2010/11/07 01:16:08.0031 mraid35x (3f4bb95e5a44f3be34824e8e7caf0737) C:\WINDOWS\system32\DRIVERS\mraid35x.sys
2010/11/07 01:16:08.0109 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
2010/11/07 01:16:08.0390 MRxSmb (f3aefb11abc521122b67095044169e98) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
2010/11/07 01:16:08.0546 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
2010/11/07 01:16:08.0656 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
2010/11/07 01:16:08.0765 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
2010/11/07 01:16:08.0828 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
2010/11/07 01:16:08.0937 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
2010/11/07 01:16:09.0000 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys
2010/11/07 01:16:09.0062 Mup (2f625d11385b1a94360bfc70aaefdee1) C:\WINDOWS\system32\drivers\Mup.sys
2010/11/07 01:16:09.0171 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
2010/11/07 01:16:09.0250 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
2010/11/07 01:16:09.0328 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
2010/11/07 01:16:09.0390 NdisTapi (1ab3d00c991ab086e69db84b6c0ed78f) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
2010/11/07 01:16:09.0468 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
2010/11/07 01:16:09.0546 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
2010/11/07 01:16:09.0609 NDProxy (6215023940cfd3702b46abc304e1d45a) C:\WINDOWS\system32\drivers\NDProxy.sys
2010/11/07 01:16:09.0671 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
2010/11/07 01:16:09.0781 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
2010/11/07 01:16:10.0093 NPF (b48dc6abcd3aeff8618350ccbdc6b09a) C:\WINDOWS\system32\drivers\npf.sys
2010/11/07 01:16:10.0156 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
2010/11/07 01:16:10.0328 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
2010/11/07 01:16:10.0421 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
2010/11/07 01:16:10.0546 nv (2b298519edbfcf451d43e0f1e8f1006d) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
2010/11/07 01:16:10.0765 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
2010/11/07 01:16:10.0828 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
2010/11/07 01:16:10.0968 OODrvled (911b1f6512d954edf468d536790465cf) C:\WINDOWS\system32\DRIVERS\OODrvled.sys
2010/11/07 01:16:11.0109 Parport (f84785660305b9b903fb3bca8ba29837) C:\WINDOWS\system32\DRIVERS\parport.sys
2010/11/07 01:16:11.0171 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
2010/11/07 01:16:11.0234 ParVdm (c2bf987829099a3eaa2ca6a0a90ecb4f) C:\WINDOWS\system32\drivers\ParVdm.sys
2010/11/07 01:16:11.0296 pavboot (210a628a0d7b3f45257850efbff27538) C:\WINDOWS\system32\drivers\pavboot.sys
2010/11/07 01:16:11.0375 PCI (387e8dedc343aa2d1efbc30580273acd) C:\WINDOWS\system32\DRIVERS\pci.sys
2010/11/07 01:16:11.0484 PCIIde (59ba86d9a61cbcf4df8e598c331f5b82) C:\WINDOWS\system32\DRIVERS\pciide.sys
2010/11/07 01:16:11.0593 Pcmcia (a2a966b77d61847d61a3051df87c8c97) C:\WINDOWS\system32\drivers\Pcmcia.sys
2010/11/07 01:16:12.0234 PenClass (4a108cc9cc0e0605e68cce7021479879) C:\WINDOWS\system32\drivers\PenClass.sys
2010/11/07 01:16:12.0312 perc2 (6c14b9c19ba84f73d3a86dba11133101) C:\WINDOWS\system32\DRIVERS\perc2.sys
2010/11/07 01:16:12.0375 perc2hib (f50f7c27f131afe7beba13e14a3b9416) C:\WINDOWS\system32\DRIVERS\perc2hib.sys
2010/11/07 01:16:12.0546 Point32 (08b11f5c60edca255b18cedef8efba2a) C:\WINDOWS\system32\DRIVERS\point32.sys
2010/11/07 01:16:12.0625 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
2010/11/07 01:16:12.0765 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
2010/11/07 01:16:12.0890 PSI (db2e4fc8afb22525d90818a30f53ec11) C:\WINDOWS\system32\DRIVERS\psi_mf.sys
2010/11/07 01:16:12.0953 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
2010/11/07 01:16:13.0062 PxHelp20 (153d02480a0a2f45785522e814c634b6) C:\WINDOWS\system32\Drivers\PxHelp20.sys
2010/11/07 01:16:13.0140 ql1080 (0a63fb54039eb5662433caba3b26dba7) C:\WINDOWS\system32\DRIVERS\ql1080.sys
2010/11/07 01:16:13.0218 Ql10wnt (6503449e1d43a0ff0201ad5cb1b8c706) C:\WINDOWS\system32\DRIVERS\ql10wnt.sys
2010/11/07 01:16:13.0296 ql12160 (156ed0ef20c15114ca097a34a30d8a01) C:\WINDOWS\system32\DRIVERS\ql12160.sys
2010/11/07 01:16:13.0343 ql1240 (70f016bebde6d29e864c1230a07cc5e6) C:\WINDOWS\system32\DRIVERS\ql1240.sys
2010/11/07 01:16:13.0421 ql1280 (907f0aeea6bc451011611e732bd31fcf) C:\WINDOWS\system32\DRIVERS\ql1280.sys
2010/11/07 01:16:13.0515 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
2010/11/07 01:16:13.0625 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
2010/11/07 01:16:13.0750 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
2010/11/07 01:16:13.0843 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
2010/11/07 01:16:13.0937 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
2010/11/07 01:16:14.0078 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
2010/11/07 01:16:14.0203 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
2010/11/07 01:16:14.0343 RDPWD (6728e45b66f93c08f11de2e316fc70dd) C:\WINDOWS\system32\drivers\RDPWD.sys
2010/11/07 01:16:14.0468 redbook (ed761d453856f795a7fe056e42c36365) C:\WINDOWS\system32\DRIVERS\redbook.sys
2010/11/07 01:16:14.0562 ROOTMODEM (d8b0b4ade32574b2d9c5cc34dc0dbbe7) C:\WINDOWS\system32\Drivers\RootMdm.sys
2010/11/07 01:16:14.0718 rspSanity (bcbf88fabf84f0f76fd7b11df65921fa) C:\WINDOWS\system32\DRIVERS\rspSanity32.sys
2010/11/07 01:16:14.0921 rvsport (5df8b5bce752d2273338ddf22c8bd08e) C:\WINDOWS\System32\drivers\rvsport.sys
2010/11/07 01:16:15.0234 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
2010/11/07 01:16:15.0343 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
2010/11/07 01:16:15.0406 Serial (cf24eb4f0412c82bcd1f4f35a025e31d) C:\WINDOWS\system32\DRIVERS\serial.sys
2010/11/07 01:16:15.0500 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
2010/11/07 01:16:15.0703 sisagp (6b33d0ebd30db32e27d1d78fe946a754) C:\WINDOWS\system32\DRIVERS\sisagp.sys
2010/11/07 01:16:15.0828 SLIP (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys
2010/11/07 01:16:15.0953 snapman (e78c98378a071ce4d48a7c514fa98fa1) C:\WINDOWS\system32\DRIVERS\snapman.sys
2010/11/07 01:16:16.0046 SndTAudio (a6d14196ee157de2b6cf87ac566923a4) C:\WINDOWS\system32\drivers\SndTAudio.sys
2010/11/07 01:16:16.0171 snpstd (7452187a8f1ac46ce4f21be616e8d5f3) C:\WINDOWS\system32\DRIVERS\snpstd.sys
2010/11/07 01:16:16.0312 Sparrow (83c0f71f86d3bdaf915685f3d568b20e) C:\WINDOWS\system32\DRIVERS\sparrow.sys
2010/11/07 01:16:16.0390 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
2010/11/07 01:16:16.0515 SQ931 (765cfd6913da7ffc61f7f92e885f4e5a) C:\WINDOWS\system32\Drivers\Capt931a.sys
2010/11/07 01:16:16.0593 sr (50fa898f8c032796d3b1b9951bb5a90f) C:\WINDOWS\system32\DRIVERS\sr.sys
2010/11/07 01:16:16.0734 SRS_SSCFilter (25ecea986742275ecb23a1cb6bc87a61) C:\WINDOWS\system32\drivers\srs_sscfilter_i386.sys
2010/11/07 01:16:16.0828 Srv (0f6aefad3641a657e18081f52d0c15af) C:\WINDOWS\system32\DRIVERS\srv.sys
2010/11/07 01:16:17.0015 ssmdrv (a36ee93698802cd899f98bfd553d8185) C:\WINDOWS\system32\DRIVERS\ssmdrv.sys
2010/11/07 01:16:17.0109 STHDA (2a2dc39623adef8ab3703ab9fac4b440) C:\WINDOWS\system32\drivers\sthda.sys
2010/11/07 01:16:17.0250 streamip (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
2010/11/07 01:16:17.0312 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
2010/11/07 01:16:17.0390 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
2010/11/07 01:16:17.0500 symc810 (1ff3217614018630d0a6758630fc698c) C:\WINDOWS\system32\DRIVERS\symc810.sys
2010/11/07 01:16:17.0562 symc8xx (070e001d95cf725186ef8b20335f933c) C:\WINDOWS\system32\DRIVERS\symc8xx.sys
2010/11/07 01:16:17.0640 sym_hi (80ac1c4abbe2df3b738bf15517a51f2c) C:\WINDOWS\system32\DRIVERS\sym_hi.sys
2010/11/07 01:16:17.0734 sym_u3 (bf4fab949a382a8e105f46ebb4937058) C:\WINDOWS\system32\DRIVERS\sym_u3.sys
2010/11/07 01:16:17.0796 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
2010/11/07 01:16:17.0921 tbhsd (c26c6dff638d9e51dc5cc60a7785d057) C:\WINDOWS\system32\drivers\tbhsd.sys
2010/11/07 01:16:18.0015 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
2010/11/07 01:16:18.0125 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
2010/11/07 01:16:18.0250 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
2010/11/07 01:16:18.0359 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
2010/11/07 01:16:18.0500 tifsfilter (7369f74dd9172c6527a8aceb010e28f1) C:\WINDOWS\system32\DRIVERS\tifsfilt.sys
2010/11/07 01:16:18.0609 timounter (53fec95b844c46489f6683dc0a606e01) C:\WINDOWS\system32\DRIVERS\timntr.sys
2010/11/07 01:16:18.0734 TMPassthru (690acb48dac04e44a3d5e7654ca3260d) C:\WINDOWS\system32\DRIVERS\TMPassthru.sys
2010/11/07 01:16:18.0812 TMPassthruMP (690acb48dac04e44a3d5e7654ca3260d) C:\WINDOWS\system32\DRIVERS\TMPassthru.sys
2010/11/07 01:16:18.0937 TosIde (d213a9247dc347f305a2d4cc9b951487) C:\WINDOWS\system32\DRIVERS\toside.sys
2010/11/07 01:16:19.0093 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
2010/11/07 01:16:19.0187 UimBus (5e86dbb68d49b3a0da99f76f1c2cab01) C:\WINDOWS\system32\DRIVERS\UimBus.sys
2010/11/07 01:16:19.0281 Uim_IM (05ca10764d2e1b5f822e966ff96d9f1f) C:\WINDOWS\system32\Drivers\Uim_IM.sys
2010/11/07 01:16:19.0343 ultra (1b698a51cd528d8da4ffaed66dfc51b9) C:\WINDOWS\system32\DRIVERS\ultra.sys
2010/11/07 01:16:19.0500 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
2010/11/07 01:16:19.0625 usbaudio (e919708db44ed8543a7c017953148330) C:\WINDOWS\system32\drivers\usbaudio.sys
2010/11/07 01:16:19.0765 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
2010/11/07 01:16:19.0859 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
2010/11/07 01:16:19.0968 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
2010/11/07 01:16:20.0093 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
2010/11/07 01:16:20.0140 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
2010/11/07 01:16:20.0218 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
2010/11/07 01:16:20.0312 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
2010/11/07 01:16:20.0421 VAD_DEV (cc861da7c724f1da4f5eaf4c734fac35) C:\WINDOWS\system32\drivers\vad.sys
2010/11/07 01:16:20.0500 VClone (2cc2660b3ec3434c88d2c808dd7937d4) C:\WINDOWS\system32\DRIVERS\VClone.sys
2010/11/07 01:16:20.0578 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
2010/11/07 01:16:20.0671 viaagp (754292ce5848b3738281b4f3607eaef4) C:\WINDOWS\system32\DRIVERS\viaagp.sys
2010/11/07 01:16:20.0765 ViaIde (3b3efcda263b8ac14fdf9cbdd0791b2e) C:\WINDOWS\system32\DRIVERS\viaide.sys
2010/11/07 01:16:20.0843 VolSnap (a5a712f4e880874a477af790b5186e1d) C:\WINDOWS\system32\drivers\VolSnap.sys
2010/11/07 01:16:21.0031 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
2010/11/07 01:16:21.0125 Wdf01000 (d918617b46457b9ac28027722e30f647) C:\WINDOWS\system32\Drivers\wdf01000.sys
2010/11/07 01:16:21.0281 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
2010/11/07 01:16:21.0375 WDMWANMP (11e61e335bb2894782b926e969645403) C:\WINDOWS\system32\DRIVERS\wdmwanmp.sys
2010/11/07 01:16:21.0656 WpdUsb (cf4def1bf66f06964dc0d91844239104) C:\WINDOWS\system32\Drivers\wpdusb.sys
2010/11/07 01:16:21.0781 WSTCODEC (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
2010/11/07 01:16:21.0859 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
2010/11/07 01:16:21.0953 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
2010/11/07 01:16:22.0203 ================================================================================
2010/11/07 01:16:22.0203 Scan finished
2010/11/07 01:16:22.0203 ================================================================================
2010/11/07 01:17:25.0750 Deinitialize success
If you do not the expect the unexpected you will not find it, for it is not to be reached by search or trail. (Heraklit)
Miracles are Interactive Events that have a Beginning inside of You. At the Level of Desire You Create the Seeds of Miracles. Whatever you focus on, you will experience. Anything in this world is possible if you have a strong belief

#4 boopme


    To Insanity and Beyond

  • Global Moderator
  • 72,725 posts
  • Gender:Male
  • Location:NJ USA
  • Local time:10:42 AM

Posted 06 November 2010 - 08:06 PM

We should get a deeper look something is definately wrong. Please go here....
Preparation Guide ,do steps 6 - 9.

Create a DDS log and post it in the new topic explained in step 9,which is here Virus, Trojan, Spyware, and Malware Removal Logs and not in this topic,thanks.
If Gmer won't run,skip it and move on.
Let me know if that went well.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#5 crystal07

  • Topic Starter

  • Members
  • 26 posts
  • Gender:Female
  • Local time:09:42 AM

Posted 06 November 2010 - 08:31 PM

So, will we hop over then to the other forum or just for the log files? Do I have to put the error description there again or just include a link refering to the one in this forum?

If you do not the expect the unexpected you will not find it, for it is not to be reached by search or trail. (Heraklit)
Miracles are Interactive Events that have a Beginning inside of You. At the Level of Desire You Create the Seeds of Miracles. Whatever you focus on, you will experience. Anything in this world is possible if you have a strong belief

#6 boopme


    To Insanity and Beyond

  • Global Moderator
  • 72,725 posts
  • Gender:Male
  • Location:NJ USA
  • Local time:10:42 AM

Posted 06 November 2010 - 08:56 PM

Yes, we need some stronger tools and the info off the DDS log you will make. Create a new topic there. To make it easier copy your first post or just copy this link to this post.

If you have trouble doing the other steps just skip and post the DDS log Sabine,this is the best approach.

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#7 crystal07

  • Topic Starter

  • Members
  • 26 posts
  • Gender:Female
  • Local time:09:42 AM

Posted 06 November 2010 - 10:30 PM

Thanks, boopme.
I have done everything so far (Gmer wanted to crash but fortunately I have "crash doctor" which could catch it and protect Gmer from crashing, so it could finish scanning).
I have opened the new thread in the malware section and posted the logs as instructed:


Thank you so much again,
If you do not the expect the unexpected you will not find it, for it is not to be reached by search or trail. (Heraklit)
Miracles are Interactive Events that have a Beginning inside of You. At the Level of Desire You Create the Seeds of Miracles. Whatever you focus on, you will experience. Anything in this world is possible if you have a strong belief

#8 Orange Blossom

Orange Blossom

    OBleepin Investigator

  • Moderator
  • 36,801 posts
  • Gender:Not Telling
  • Location:Bloomington, IN
  • Local time:10:42 AM

Posted 07 November 2010 - 02:06 PM


Now that you have posted a log here: http://www.bleepingcomputer.com/forums/topic359023.html you should NOT make further changes to your computer (install/uninstall programs, use special fix tools, delete files, edit the registry, etc) unless advised by a MRT Team member, nor should you ask for help elsewhere. Doing so can result in system changes which may not show in the log you already posted. Further, any modifications you make on your own may cause confusion for the helper assisting you and could complicate the malware removal process which would extend the time it takes to clean your computer.

From this point on the MRT Team should be the only members that you take advice from, until they have verified your log as clean.

Please be patient. It may take a while to get a response because the MRT Team members are EXTREMELY busy working logs posted before yours. They are volunteers who will help you out as soon as possible. Once you have made your post and are waiting, please DO NOT make another reply until it has been responded to by a member of the MRT Team. Generally the staff checks the forum for postings that have 0 replies as this makes it easier for them to identify those who have not been helped. If you post another response there will be 1 reply. A team member, looking for a new log to work may assume another MRT Team member is already assisting you and not open the thread to respond.

Please be patient. It may take several days to get a response but your log will be reviewed and answered as soon as possible. I advise checking your topic once a day for responses as the e-mail notification system is unreliable.

To avoid confusion, I am closing this topic. Good luck with your log.

Orange Blossom :cherry:
Help us help you. If HelpBot replies, you MUST follow step 1 in its reply so we know you need help.

Orange Blossom

An ounce of prevention is worth a pound of cure

SpywareBlaster, WinPatrol Plus, ESET Smart Security, Malwarebytes' Anti-Malware, NoScript Firefox ext., Norton noscript

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users