Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Google fail robot problem...


  • Please log in to reply
14 replies to this topic

#1 alpha4345

alpha4345

  • Members
  • 124 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Quebec, Canada
  • Local time:02:30 PM

Posted 09 July 2011 - 08:55 AM

Since my modem has been reset, one of my laptops cannot go anymore to google without having this error message:

404. That's an error.

The requested URL /cgi-bin/cgi?req=twz was not found on this server. That's all we know.

It's bizarre, because I never entered "/cgi-bin/cgi?req=twz" in the adress bar. Just: www.google.ca . I can confirm that this website is working on all other computers in the house.

Am I the only one who has this? How to solve this problem?

Thank you very much!

BC AdBot (Login to Remove)

 


#2 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:06:30 PM

Posted 09 July 2011 - 09:10 AM

Please download MiniToolBox, save it to your desktop and run it.

Checkmark following checkboxes:
  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List last 10 Event Viewer log
  • List Users, Partitions and Memory size.
  • List Minidump Files.
Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.

#3 alpha4345

alpha4345
  • Topic Starter

  • Members
  • 124 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Quebec, Canada
  • Local time:02:30 PM

Posted 09 July 2011 - 09:59 AM

I hope you speak french...




MiniToolBox by Farbar
Ran by Soniq (administrator) on 09-07-2011 at 10:52:45
Windows ™ Vista Home Premium Service Pack 2 (X64)

***************************************************************************


================= Flush DNS: ==============================================

Configuration IP de Windows

Cache de r‚solution DNS vid‚.

================= End of Flush DNS ========================================

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

========================= End of IE Proxy Settings ========================

"Reset IE Proxy Settings": Proxy Settings were reset.

=============== Hosts content: ============================================

# Copyright © 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost
::1 localhost

=============== End of Hosts ==============================================

================= IP Configuration: =======================================

# ----------------------------------
# Configuration du protocole IPv4
# ----------------------------------
pushd interface ipv4

reset
set global icmpredirects=enabled


popd
# Fin de la configuration du protocole IPv4



Configuration IP de Windows

Nom de l'h“te . . . . . . . . . . : PCSonia
Suffixe DNS principal . . . . . . :
Type de noeud. . . . . . . . . . : Hybride
Routage IP activ‚ . . . . . . . . : Non
Proxy WINS activ‚ . . . . . . . . : Non
Liste de recherche du suffixe DNS.: cablevision.qc.ca

Carte r‚seau sans fil Connexion r‚seau sans filÿ:

Suffixe DNS propre … la connexion. . . : cablevision.qc.ca
Description. . . . . . . . . . . . . . : Intel® WiFi Link 5100
Adresse physique . . . . . . . . . . . : 00-22-FB-13-83-0E
DHCP activ‚. . . . . . . . . . . . . . : Oui
Configuration automatique activ‚e. . . : Oui
Adresse IPv6 de liaison locale. . : fe80::615b:1797:1293:1b50%10(pr‚f‚r‚)
Adresse IPv4. . . . . . . . . . . : 192.168.11.7(pr‚f‚r‚)
Masque de sous-r‚seau. . . .ÿ. . . . . : 255.255.255.0
Bail obtenu. . . . . . . . .ÿ. . . . . : 9 juillet 2011 10:49:27
Bail expirant. . . . . . . . .ÿ. . . . : 11 juillet 2011 10:49:27
Passerelle par d‚faut. . . .ÿ. . . . . : 192.168.11.1
Serveur DHCP . . . . . . . . . . . . . : 192.168.11.1
IAID DHCPv6 . . . . . . . . . . . : 218112763
DUID de client DHCPv6. . . . . . . . : 00-01-00-01-12-33-28-29-00-22-FB-13-83-0E
Serveurs DNS. . . . . . . . . . . . . : 192.168.11.1
NetBIOS sur Tcpip. . . . . . . . . . . : Activ‚

Carte Tunnel Connexion au r‚seau local* 6 :

Statut du m‚dia. . . . . . . . . . . . : M‚dia d‚connect‚
Suffixe DNS propre … la connexion. . . : cablevision.qc.ca
Description. . . . . . . . . . . . . . : isatap.cablevision.qc.ca
Adresse physique . . . . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP activ‚. . . . . . . . . . . . . . : Non
Configuration automatique activ‚e. . . : Oui

Carte Tunnel Connexion au r‚seau local* 7 :

Suffixe DNS propre … la connexion. . . :
Description. . . . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
Adresse physique . . . . . . . . . . . : 02-00-54-55-4E-01
DHCP activ‚. . . . . . . . . . . . . . : Non
Configuration automatique activ‚e. . . : Oui
Adresse IPv6. . . . . . . . . . .ÿ: 2001:0:4137:9e76:1cf0:145f:e72b:f716(pr‚f‚r‚)
Adresse IPv6 de liaison locale. . : fe80::1cf0:145f:e72b:f716%11(pr‚f‚r‚)
Passerelle par d‚faut. . . .ÿ. . . . . : ::
NetBIOS sur TCPIP. . . . . . . . . . . : D‚sactiv‚
DNS request timed out.
timeout was 2 seconds.
Serveur : UnKnown
Address: 192.168.11.1

DNS request timed out.
timeout was 2 seconds.
Nom : google.com
Addresses: 74.125.93.99
74.125.93.103
74.125.93.104
74.125.93.105
74.125.93.106
74.125.93.147



Envoi d'une requˆte 'ping' sur google.com [74.125.93.147] avec 32 octets de donn‚esÿ:

R‚ponse de 74.125.93.147ÿ: octets=32 temps=61 ms TTL=48

R‚ponse de 74.125.93.147ÿ: octets=32 temps=53 ms TTL=48



Statistiques Ping pour 74.125.93.147:

Paquetsÿ: envoy‚s = 2, re‡us = 2, perdus = 0 (perte 0%),

Dur‚e approximative des boucles en millisecondes :

Minimum = 53ms, Maximum = 61ms, Moyenne = 57ms

Serveur : buffalo.setup
Address: 192.168.11.1

Nom : yahoo.com
Addresses: 72.30.2.43
98.137.149.56
209.191.122.70
67.195.160.76
69.147.125.65



Envoi d'une requˆte 'ping' sur yahoo.com [209.191.122.70] avec 32 octets de donn‚esÿ:

R‚ponse de 209.191.122.70ÿ: octets=32 temps=58 ms TTL=50

R‚ponse de 209.191.122.70ÿ: octets=32 temps=59 ms TTL=50



Statistiques Ping pour 209.191.122.70:

Paquetsÿ: envoy‚s = 2, re‡us = 2, perdus = 0 (perte 0%),

Dur‚e approximative des boucles en millisecondes :

Minimum = 58ms, Maximum = 59ms, Moyenne = 58ms



Envoi d'une requˆte 'Ping' 127.0.0.1 avec 32 octets de donn‚esÿ:

R‚ponse de 127.0.0.1ÿ: octets=32 temps<1ms TTL=128

R‚ponse de 127.0.0.1ÿ: octets=32 temps<1ms TTL=128



Statistiques Ping pour 127.0.0.1:

Paquetsÿ: envoy‚s = 2, re‡us = 2, perdus = 0 (perte 0%),

Dur‚e approximative des boucles en millisecondes :

Minimum = 0ms, Maximum = 0ms, Moyenne = 0ms

===========================================================================
Liste d'Interfaces
10 ...00 22 fb 13 83 0e ...... Intel® WiFi Link 5100
1 ........................... Software Loopback Interface 1
12 ...00 00 00 00 00 00 00 e0 isatap.cablevision.qc.ca
11 ...02 00 54 55 4e 01 ...... Teredo Tunneling Pseudo-Interface
===========================================================================

IPv4 Table de routage
===========================================================================
Itin‚raires actifsÿ:
Destination r‚seau Masque r‚seau Adr. passerelle Adr. interface M‚trique
0.0.0.0 0.0.0.0 192.168.11.1 192.168.11.7 25
127.0.0.0 255.0.0.0 On-link 127.0.0.1 306
127.0.0.1 255.255.255.255 On-link 127.0.0.1 306
127.255.255.255 255.255.255.255 On-link 127.0.0.1 306
192.168.11.0 255.255.255.0 On-link 192.168.11.7 281
192.168.11.7 255.255.255.255 On-link 192.168.11.7 281
192.168.11.255 255.255.255.255 On-link 192.168.11.7 281
224.0.0.0 240.0.0.0 On-link 127.0.0.1 306
224.0.0.0 240.0.0.0 On-link 192.168.11.7 281
255.255.255.255 255.255.255.255 On-link 127.0.0.1 306
255.255.255.255 255.255.255.255 On-link 192.168.11.7 281
===========================================================================
Itin‚raires persistantsÿ:
Aucun

IPv6 Table de routage
===========================================================================
Itin‚raires actifsÿ:
If Metric Network Destination Gateway
11 18 ::/0 On-link
1 306 ::1/128 On-link
11 18 2001::/32 On-link
11 266 2001:0:4137:9e76:1cf0:145f:e72b:f716/128
On-link
10 281 fe80::/64 On-link
11 266 fe80::/64 On-link
11 266 fe80::1cf0:145f:e72b:f716/128
On-link
10 281 fe80::615b:1797:1293:1b50/128
On-link
1 306 ff00::/8 On-link
11 266 ff00::/8 On-link
10 281 ff00::/8 On-link
===========================================================================
Itin‚raires persistantsÿ:
Aucun

================= End of IP Configuration =================================

========================= Event log errors: ===============================

Application errors:
==================
Error: (07/06/2011 08:17:30 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/30/2011 03:46:58 AM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabUn certificat requis n'est pas dans sa période de validité selon la vérification par rapport à l'horloge système en cours ou le tampon daté dans le fichier signé.

Error: (06/30/2011 03:46:58 AM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabUn certificat requis n'est pas dans sa période de validité selon la vérification par rapport à l'horloge système en cours ou le tampon daté dans le fichier signé.

Error: (06/30/2011 03:43:00 AM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabUn certificat requis n'est pas dans sa période de validité selon la vérification par rapport à l'horloge système en cours ou le tampon daté dans le fichier signé.

Error: (06/30/2011 03:42:59 AM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabUn certificat requis n'est pas dans sa période de validité selon la vérification par rapport à l'horloge système en cours ou le tampon daté dans le fichier signé.

Error: (06/30/2011 03:42:57 AM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabUn certificat requis n'est pas dans sa période de validité selon la vérification par rapport à l'horloge système en cours ou le tampon daté dans le fichier signé.

Error: (06/30/2011 03:42:56 AM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabUn certificat requis n'est pas dans sa période de validité selon la vérification par rapport à l'horloge système en cours ou le tampon daté dans le fichier signé.

Error: (06/30/2011 03:42:28 AM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabUn certificat requis n'est pas dans sa période de validité selon la vérification par rapport à l'horloge système en cours ou le tampon daté dans le fichier signé.

Error: (06/30/2011 03:42:27 AM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabUn certificat requis n'est pas dans sa période de validité selon la vérification par rapport à l'horloge système en cours ou le tampon daté dans le fichier signé.

Error: (06/30/2011 03:34:29 AM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cabUn certificat requis n'est pas dans sa période de validité selon la vérification par rapport à l'horloge système en cours ou le tampon daté dans le fichier signé.


System errors:
=============
Error: (07/08/2011 08:16:41 PM) (Source: ACPI) (User: )
Description:  : le contrôleur embarqué n’a pas répondu dans le délai imparti. Cette erreur peut indiquer que le matériel ou le microprogramme du contrôleur embarqué présente une erreur ou que le BIOS accède au contrôleur embarqué de manière incorrecte. Contactez le fabricant de votre ordinateur afin de savoir si un BIOS mis à niveau est disponible. Dans certains cas, cette erreur peut provoquer un fonctionnement incorrect de l’application.

Error: (07/08/2011 06:31:10 PM) (Source: DCOM) (User: Soniq)
Description: spécifiques à l'applicationLocalActivation{4991D34B-80A1-4291-83B6-3328366B9097}PCSoniaSoniqS-1-5-21-318713958-1445139876-1700714051-1000LocalHost (utilisation de LRPC)

Error: (07/08/2011 06:31:10 PM) (Source: DCOM) (User: Soniq)
Description: spécifiques à l'applicationLocalActivation{4991D34B-80A1-4291-83B6-3328366B9097}PCSoniaSoniqS-1-5-21-318713958-1445139876-1700714051-1000LocalHost (utilisation de LRPC)

Error: (07/07/2011 07:03:59 PM) (Source: bowser) (User: )
Description: Le maître explorateur a reçu une annonce de serveur de l'ordinateur ORDI3
qui pense qu'il est le maître explorateur sur le domaine pour le transport NetBT_Tcpip_{16B942F0-3EBD-43DD-A6F3-11D591884E25}.
Le maître explorateur s'arrête ou une élection est provoquée.

Error: (07/07/2011 11:47:24 AM) (Source: bowser) (User: )
Description: Le maître explorateur a reçu une annonce de serveur de l'ordinateur ORDI3
qui pense qu'il est le maître explorateur sur le domaine pour le transport NetBT_Tcpip_{16B942F0-3EBD-43DD-A6F3-11D591884E25}.
Le maître explorateur s'arrête ou une élection est provoquée.

Error: (07/06/2011 08:20:57 PM) (Source: Microsoft-Windows-LanguagePackSetup) (User: SYSTEM)
Description: 0x80070032

Error: (07/06/2011 08:17:15 PM) (Source: netbt) (User: )
Description: Le nom "WORKGROUP :1d" n'a pas pu être enregistré sur l'interface avec l'adresse IP 192.168.11.7.
L'ordinateur avec l'adresse IP 192.168.11.13 n'a pas permis que le nom soit réclamé par
cet ordinateur.

Error: (07/06/2011 08:16:34 PM) (Source: EventLog) (User: )
Description: L'arrêt système précédant à 20:11:27 le 2011-07-06 n'était pas prévu.

Error: (07/06/2011 11:31:16 AM) (Source: ACPI) (User: )
Description:  : le contrôleur embarqué n’a pas répondu dans le délai imparti. Cette erreur peut indiquer que le matériel ou le microprogramme du contrôleur embarqué présente une erreur ou que le BIOS accède au contrôleur embarqué de manière incorrecte. Contactez le fabricant de votre ordinateur afin de savoir si un BIOS mis à niveau est disponible. Dans certains cas, cette erreur peut provoquer un fonctionnement incorrect de l’application.

Error: (07/06/2011 11:31:11 AM) (Source: ACPI) (User: )
Description:  : le contrôleur embarqué n’a pas répondu dans le délai imparti. Cette erreur peut indiquer que le matériel ou le microprogramme du contrôleur embarqué présente une erreur ou que le BIOS accède au contrôleur embarqué de manière incorrecte. Contactez le fabricant de votre ordinateur afin de savoir si un BIOS mis à niveau est disponible. Dans certains cas, cette erreur peut provoquer un fonctionnement incorrect de l’application.


Microsoft Office Sessions:
=========================

========================= End of Event log errors =========================

========================= Memory info: ====================================

Percentage of memory in use: 56%
Total physical RAM: 4059.94 MB
Available physical RAM: 1755.6 MB
Total Pagefile: 8295.18 MB
Available Pagefile: 6189.44 MB
Total Virtual: 4095.88 MB
Available Virtual: 4012.78 MB

======================= Partitions: =======================================

1 Drive c: (OS) (Fixed) (Total:222.77 GB) (Free:117.65 GB) NTFS
2 Drive d: (RECOVERY) (Fixed) (Total:10 GB) (Free:2.98 GB) NTFS

================= Users: ==================================================

comptes d'utilisateurs de \\PCSONIA

-------------------------------------------------------------------------------
Administrateur Invit‚ Soniq
La commande s'est termin‚e correctement.

================= End of Users ============================================

=========================== Minidump Files ====================

C:\Windows\Minidump\Mini010311-01.dmp
C:\Windows\Minidump\Mini031711-01.dmp
C:\Windows\Minidump\Mini041611-01.dmp
C:\Windows\Minidump\Mini051310-01.dmp
C:\Windows\Minidump\Mini051910-01.dmp
C:\Windows\Minidump\Mini052610-01.dmp
C:\Windows\Minidump\Mini062210-01.dmp
C:\Windows\Minidump\Mini062410-01.dmp
C:\Windows\Minidump\Mini062410-02.dmp
C:\Windows\Minidump\Mini062410-03.dmp
C:\Windows\Minidump\Mini062410-04.dmp
C:\Windows\Minidump\Mini062410-05.dmp
C:\Windows\Minidump\Mini062410-06.dmp
C:\Windows\Minidump\Mini062410-07.dmp
C:\Windows\Minidump\Mini080410-01.dmp
C:\Windows\Minidump\Mini081110-01.dmp
C:\Windows\Minidump\Mini090610-01.dmp
C:\Windows\Minidump\Mini091610-01.dmp
C:\Windows\Minidump\Mini101010-01.dmp
C:\Windows\Minidump\Mini110610-01.dmp

=========================== End oF Minidump Files =============

Edited by alpha4345, 09 July 2011 - 10:00 AM.


#4 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:06:30 PM

Posted 09 July 2011 - 10:26 AM

We need to know more about your BSODs...

Download BlueScreenView (in Zip file)

No installation required.

Unzip downloaded file and double click on BlueScreenView.exe file to run the program and When scanning is done, go to Edit > Select All.

Then go to File > Save Selected Items, and save the report as BSOD.txt.

Open BSOD.txt in Notepad, copy all content, and paste it into your next reply.

Compliments of Broni

#5 alpha4345

alpha4345
  • Topic Starter

  • Members
  • 124 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Quebec, Canada
  • Local time:02:30 PM

Posted 09 July 2011 - 11:21 AM

==================================================
Dump File : Mini041611-01.dmp
Crash Time : 2011-04-16 19:28:05
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 00000000`00000008
Parameter 2 : 00000000`0000000c
Parameter 3 : 00000000`00000000
Parameter 4 : fffff800`01ea2ef1
Caused By Driver : USBD.SYS
Caused By Address : USBD.SYS+79e49f
File Description :
Product Name :
Company :
File Version :
Processor : x64
Crash Address : ntoskrnl.exe+5a490
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\Mini041611-01.dmp
Processors Count : 2
Major Version : 15
Minor Version : 6002
Dump File Size : 270 480
==================================================

==================================================
Dump File : Mini031711-01.dmp
Crash Time : 2011-03-17 06:20:58
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 00000000`00000008
Parameter 2 : 00000000`0000000c
Parameter 3 : 00000000`00000000
Parameter 4 : fffff800`01eb4ef1
Caused By Driver : USBD.SYS
Caused By Address : USBD.SYS+23349f
File Description :
Product Name :
Company :
File Version :
Processor : x64
Crash Address : ntoskrnl.exe+5a490
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\Mini031711-01.dmp
Processors Count : 2
Major Version : 15
Minor Version : 6002
Dump File Size : 270 480
==================================================

==================================================
Dump File : Mini010311-01.dmp
Crash Time : 2011-01-03 22:30:27
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 00000000`0000082b
Parameter 2 : 00000000`0000000c
Parameter 3 : 00000000`00000000
Parameter 4 : fffff800`01e6dd07
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+5a4d0
File Description :
Product Name :
Company :
File Version :
Processor : x64
Crash Address : ntoskrnl.exe+5a4d0
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\Mini010311-01.dmp
Processors Count : 2
Major Version : 15
Minor Version : 6002
Dump File Size : 270 480
==================================================

==================================================
Dump File : Mini110610-01.dmp
Crash Time : 2010-11-06 13:33:04
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 00000000`00000008
Parameter 2 : 00000000`0000000c
Parameter 3 : 00000000`00000000
Parameter 4 : fffff800`01ea2f11
Caused By Driver : OA001Ufd.sys
Caused By Address : OA001Ufd.sys+ff75f49f
File Description :
Product Name :
Company :
File Version :
Processor : x64
Crash Address : ntoskrnl.exe+5a4d0
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\Mini110610-01.dmp
Processors Count : 2
Major Version : 15
Minor Version : 6002
Dump File Size : 270 480
==================================================

==================================================
Dump File : Mini101010-01.dmp
Crash Time : 2010-10-10 12:53:45
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 00000000`00000008
Parameter 2 : 00000000`0000000c
Parameter 3 : 00000000`00000000
Parameter 4 : fffff800`01eb6f11
Caused By Driver : OA001Ufd.sys
Caused By Address : OA001Ufd.sys+82f49f
File Description :
Product Name :
Company :
File Version :
Processor : x64
Crash Address : ntoskrnl.exe+5a4d0
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\Mini101010-01.dmp
Processors Count : 2
Major Version : 15
Minor Version : 6002
Dump File Size : 270 480
==================================================

==================================================
Dump File : Mini091610-01.dmp
Crash Time : 2010-09-16 07:52:32
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 00000000`00000484
Parameter 2 : 00000000`0000000c
Parameter 3 : 00000000`00000001
Parameter 4 : fffff800`01ef1efd
Caused By Driver : OA001Ufd.sys
Caused By Address : OA001Ufd.sys+85c60
File Description :
Product Name :
Company :
File Version :
Processor : x64
Crash Address : ntoskrnl.exe+5a4d0
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\Mini091610-01.dmp
Processors Count : 2
Major Version : 15
Minor Version : 6002
Dump File Size : 270 480
==================================================

==================================================
Dump File : Mini090610-01.dmp
Crash Time : 2010-09-06 19:02:38
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 00000000`00000080
Parameter 2 : 00000000`0000000c
Parameter 3 : 00000000`00000001
Parameter 4 : fffff800`01ee4efd
Caused By Driver : OA001Ufd.sys
Caused By Address : OA001Ufd.sys+6b849f
File Description :
Product Name :
Company :
File Version :
Processor : x64
Crash Address : ntoskrnl.exe+5a4d0
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\Mini090610-01.dmp
Processors Count : 2
Major Version : 15
Minor Version : 6002
Dump File Size : 270 480
==================================================

==================================================
Dump File : Mini081110-01.dmp
Crash Time : 2010-08-11 21:53:40
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 00000000`00000008
Parameter 2 : 00000000`0000000c
Parameter 3 : 00000000`00000000
Parameter 4 : fffff800`01ea8f11
Caused By Driver : OA001Ufd.sys
Caused By Address : OA001Ufd.sys+50649f
File Description :
Product Name :
Company :
File Version :
Processor : x64
Crash Address : ntoskrnl.exe+5a4d0
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\Mini081110-01.dmp
Processors Count : 2
Major Version : 15
Minor Version : 6002
Dump File Size : 270 480
==================================================

==================================================
Dump File : Mini080410-01.dmp
Crash Time : 2010-08-04 12:21:51
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 00000000`00000008
Parameter 2 : 00000000`0000000c
Parameter 3 : 00000000`00000000
Parameter 4 : fffff800`01ea1f11
Caused By Driver : OA001Ufd.sys
Caused By Address : OA001Ufd.sys+ffc2c49f
File Description :
Product Name :
Company :
File Version :
Processor : x64
Crash Address : ntoskrnl.exe+5a4d0
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\Mini080410-01.dmp
Processors Count : 2
Major Version : 15
Minor Version : 6002
Dump File Size : 270 480
==================================================

==================================================
Dump File : Mini062410-07.dmp
Crash Time : 2010-06-24 08:51:40
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 00000000`00000008
Parameter 2 : 00000000`0000000c
Parameter 3 : 00000000`00000000
Parameter 4 : fffff800`01ef5f11
Caused By Driver : OA001Ufd.sys
Caused By Address : OA001Ufd.sys+45b49f
File Description :
Product Name :
Company :
File Version :
Processor : x64
Crash Address : ntoskrnl.exe+5a4d0
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\Mini062410-07.dmp
Processors Count : 2
Major Version : 15
Minor Version : 6002
Dump File Size : 270 480
==================================================

==================================================
Dump File : Mini062210-01.dmp
Crash Time : 2010-06-22 10:27:23
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 00000000`00000080
Parameter 2 : 00000000`0000000c
Parameter 3 : 00000000`00000001
Parameter 4 : fffff800`01ef2efd
Caused By Driver : OA001Ufd.sys
Caused By Address : OA001Ufd.sys+ffded49f
File Description :
Product Name :
Company :
File Version :
Processor : x64
Crash Address : ntoskrnl.exe+5a4d0
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\Mini062210-01.dmp
Processors Count : 2
Major Version : 15
Minor Version : 6002
Dump File Size : 270 480
==================================================

==================================================
Dump File : Mini052610-01.dmp
Crash Time : 2010-05-26 17:55:53
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 00000000`0000082b
Parameter 2 : 00000000`0000000c
Parameter 3 : 00000000`00000000
Parameter 4 : fffff800`01ebed07
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+5a4d0
File Description :
Product Name :
Company :
File Version :
Processor : x64
Crash Address : ntoskrnl.exe+5a4d0
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\Mini052610-01.dmp
Processors Count : 2
Major Version : 15
Minor Version : 6002
Dump File Size : 270 480
==================================================

==================================================
Dump File : Mini051910-01.dmp
Crash Time : 2010-05-19 09:40:13
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 00000000`656c6473
Parameter 2 : 00000000`0000000c
Parameter 3 : 00000000`00000000
Parameter 4 : fffff800`01e61d07
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+5a4d0
File Description :
Product Name :
Company :
File Version :
Processor : x64
Crash Address : ntoskrnl.exe+5a4d0
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\Mini051910-01.dmp
Processors Count : 2
Major Version : 15
Minor Version : 6002
Dump File Size : 270 480
==================================================

==================================================
Dump File : Mini051310-01.dmp
Crash Time : 2010-05-13 03:23:24
Bug Check String : IRQL_NOT_LESS_OR_EQUAL
Bug Check Code : 0x0000000a
Parameter 1 : 00000000`656c6473
Parameter 2 : 00000000`0000000c
Parameter 3 : 00000000`00000000
Parameter 4 : fffff800`01cc4d07
Caused By Driver : ntoskrnl.exe
Caused By Address : ntoskrnl.exe+5a4d0
File Description :
Product Name :
Company :
File Version :
Processor : x64
Crash Address : ntoskrnl.exe+5a4d0
Stack Address 1 :
Stack Address 2 :
Stack Address 3 :
Computer Name :
Full Path : C:\Windows\Minidump\Mini051310-01.dmp
Processors Count : 2
Major Version : 15
Minor Version : 6002
Dump File Size : 270 480
==================================================

#6 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:06:30 PM

Posted 09 July 2011 - 11:26 AM

Have you thought about updating your drivers?

#7 alpha4345

alpha4345
  • Topic Starter

  • Members
  • 124 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Quebec, Canada
  • Local time:02:30 PM

Posted 09 July 2011 - 11:48 AM

Uhm for drivers I don't know cuz this is not my computer. I'll ask to the guy who has the problem. Which drivers are you talking about?

#8 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:06:30 PM

Posted 09 July 2011 - 12:07 PM

the Drivers for the Chipset,

Now lets perform a scan:

Hello,

And welcome to BleepingComputer.com, before we can assist you with your question of: Am I infected? You will need to perform the following tasks and post the logs of each if you can.

Malwarebytes Anti-Malware

NOTEMalwarebytes is now offering a free trial of their program, if you want to accept it you will need to enter some billing information, so that at the end of the trial you would be charged the cost of the product. Please decline this offer, if you are unable to provide billing information. If you want to try it out, then provide the billing information.

Please download Malwarebytes Anti-Malware and save it to your desktop.
Download Link 1
Download Link 2MBAM may "make changes to your registry" as part of its disinfection routine. If using other security programs that detect registry changes (ie Spybot's Teatimer), they may interfere or alert you. Temporarily disable such programs or permit them to allow the changes.

  • Make sure you are connected to the Internet.
  • Double-click on mbam-setup.exe to install the application.
    For instructions with screenshots, please refer to the How to use Malwarebytes' Anti-Malware Guide.
  • When the installation begins, follow the prompts and do not make any changes to default settings.
  • When installation has finished, make sure you leave both of these checked:
    • Update Malwarebytes' Anti-Malware
    • Launch Malwarebytes' Anti-Malware
  • Then click Finish.
MBAM will automatically start and you will be asked to update the program before performing a scan.
  • If an update is found, the program will automatically update itself. Press the OK button to close that box and continue.
  • If you encounter any problems while downloading the definition updates, manually download them from here and just double-click on mbam-rules.exe to install.
On the Scanner tab:
  • Make sure the "Perform Full Scan" option is selected.
  • Then click on the Scan button.
  • If asked to select the drives to scan, leave all the drives selected and click on the Start Scan button.
  • The scan will begin and "Scan in progress" will show at the top. It may take some time to complete so please be patient.
  • When the scan is finished, a message box will say "The scan completed successfully. Click 'Show Results' to display all objects found".
  • Click OK to close the message box and continue with the removal process.
Back at the main Scanner screen:
  • Click on the Show Results button to see a list of any malware that was found.
  • Make sure that everything is checked, and click Remove Selected.
  • When removal is completed, a log report will open in Notepad.
  • The log is automatically saved and can be viewed by clicking the Logs tab in MBAM.
  • Copy and paste the contents of that report in your next reply. Be sure to post the complete log to include the top portion which shows MBAM's database version and your operating system.
  • Exit MBAM when done.
Note: If MBAM encounters a file that is difficult to remove, you will be asked to reboot your computer so MBAM can proceed with the disinfection process. If asked to restart the computer, please do so immediately. Failure to reboot normally (not into safe mode) will prevent MBAM from removing all the malware.


SUPERAntiSpyware:

Please download and scan with SUPERAntiSpyware Free

  • Double-click SUPERAntiSypware.exe and use the default settings for installation.
  • An icon will be created on your desktop. Double-click that icon to launch the program.
  • If it will not start, go to Start > All Prgrams > SUPERAntiSpyware and click on Alternate Start.
  • If asked to update the program definitions, click "Yes". If not, update the definitions before scanning by selecting "Check for Updates". (If you encounter any problems while downloading the updates, manually download them from here. Double-click on the hyperlink for Download Installer and save SASDEFINITIONS.EXE to your desktop. Then double-click on SASDEFINITIONS.EXE to install the definitions.)
  • In the Main Menu, click the Preferences... button.
  • Click the "General and Startup" tab, and under Start-up Options, make sure "Start SUPERAntiSpyware when Windows starts" box is unchecked.
  • Click the "Scanning Control" tab, and under Scanner Options, make sure the following are checked (leave all others unchecked):
    • Close browsers before scanning.
    • Scan for tracking cookies.

      Scan with SUPERAntiSpyware as follows:[list]
    • Launch the program and back on the main screen, under "Scan for Harmful Software" click Scan your computer.
    • On the left, make sure you check C:\Fixed Drive.
    • On the right, under "Complete Scan", choose Perform Complete Scan and click "Next".
    • After the scan is complete, a Scan Summary box will appear with potentially harmful items that were detected. Click "OK".
    • Make sure everything has a checkmark next to it and click "Next".
    • A notification will appear that "Quarantine and Removal is Complete". Click "OK" and then click the "Finish" button to return to the main menu.
    • If asked if you want to reboot, click "Yes" and reboot normally.
    • To retrieve the removal information after reboot, launch SUPERAntispyware again.[list]
    • Click Preferences, then click the Statistics/Logs tab.
    • Under Scanner Logs, double-click SUPERAntiSpyware Scan Log.
    • If there are several logs, click the current dated log and press View log. A text file will open in your default text editor.
    • Please copy and paste the Scan Log results in your next reply.
  • Click Close to exit the program.
If you have a problem downloading, installing or getting SAS to run, try downloading and using the SUPERAntiSpyware Portable Scanner instead. Save the randomly named file (i.e. SAS_1710895.COM) to a usb drive or CD and transfer to the infected computer. Then double-click on it to launch and scan. The file is randomly named to help keep malware from blocking the scanner.

Instructions:

Download and scan with SUPERAntiSpyware Free for Home Users
  • Double-click SUPERAntiSpyware.exe and use the default settings for installation.
  • An icon will be created on your desktop. Double-click that icon to launch the program.
  • If asked to update the program definitions, click "Yes". If not, update the definitions before scanning by selecting "Check for Updates". (If you encounter any problems while downloading the updates, manually download them from here. Double-click on the hyperlink for Download Installer and save SASDEFINITIONS.EXE to your desktop. Then double-click on SASDEFINITIONS.EXE to install the definitions.)
  • In the Main Menu, click the Preferences... button.
  • Click the Scanning Control tab.
  • Under Scanner Options make sure the following are checked (leave all others unchecked):
    • Close browsers before scanning.
    • Scan for tracking cookies.
    • Terminate memory threats before quarantining.
  • Click the "Close" button to leave the control center screen.
  • Back on the main screen, under "Scan for Harmful Software" click Scan your computer.
  • On the left, make sure you check C:\Fixed Drive.
  • On the right, under "Complete Scan", choose Perform Complete Scan.
  • Click "Next" to start the scan. Please be patient while it scans your computer.
  • After the scan is complete, a Scan Summary box will appear with potentially harmful items that were detected. Click "OK".
  • Make sure everything has a checkmark next to it and click "Next".
  • A notification will appear that "Quarantine and Removal is Complete". Click "OK" and then click the "Finish" button to return to the main menu.
  • If asked if you want to reboot, click "Yes".
  • To retrieve the removal information after reboot, launch SUPERAntispyware again.
    • Click Preferences, then click the Statistics/Logs tab.
    • Under Scanner Logs, double-click SUPERAntiSpyware Scan Log.
    • If there are several logs, click the current dated log and press View log. A text file will open in your default text editor.
    • Please copy and paste the Scan Log results in your next reply.
  • Click Close to exit the program.
If you have a problem downloading, installing or getting SAS to run, try downloading and using the SUPERAntiSpyware Portable Scanner instead. Save the randomly named file (i.e. SAS_1710895.COM) to a usb drive or CD and transfer to the infected computer. Then double-click on it to launch and scan. The file is randomly named to help keep malware from blocking the scanner.


Now GMER

GMER does not work in 64bit Mode!!!!!!

Please download GMER from one of the following locations and save it to your desktop:

  • Main Mirror
    This version will download a randomly named file (Recommended)
  • Zipped Mirror
    This version will download a zip file you will need to extract first. If you use this mirror, please extract the zip file to your desktop.
  • Disconnect from the Internet and close all running programs.
  • Temporarily disable any real-time active protection so your security programs will not conflict with gmer's driver.
  • Double-click on the randomly named GMER file (i.e. n7gmo46c.exe) and allow the gmer.sys driver to load if asked.
  • Note: If you downloaded the zipped version, extract the file to its own folder such as C:\gmer and then double-click on gmer.exe.

    Posted Image
  • GMER will open to the Rootkit/Malware tab and perform an automatic Full Scan when first run. (do not use the computer while the scan is in progress)
  • If you receive a WARNING!!! about rootkit activity and are asked to fully scan your system...click NO.
  • Now click the Scan button. If you see a rootkit warning window, click OK.
  • When the scan is finished, click the Save... button to save the scan results to your Desktop. Save the file as gmer.log.
  • Click the Copy button and paste the results into your next reply.
  • Exit GMER and be sure to re-enable your anti-virus, Firewall and any other security programs you had disabled.
-- If you encounter any problems, try running GMER in safe mode.
-- If GMER crashes or keeps resulting in a BSODs, uncheck Devices on the right side before scanning
.


All scans above should be performed in regular boot mode, and if that is not possible then I will post instructions in a follow up reply on how to get into Safe Mode to perform the scans. Also all scans should be COMPLETE and not quick unless specifically instructed to do so.

#9 alpha4345

alpha4345
  • Topic Starter

  • Members
  • 124 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Quebec, Canada
  • Local time:02:30 PM

Posted 09 July 2011 - 05:04 PM

Ok so I just finished the Malwarebite antimalware complete scan, here's the report: (Its in french again, but there was 4 threats found, I deleted all of them).

Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org

Version de la base de données: 7060

Windows 6.0.6002 Service Pack 2
Internet Explorer 9.0.8112.16421

2011-07-09 17:54:25
mbam-log-2011-07-09 (17-53-57).txt

Type d'examen: Examen complet (C:\|D:\|)
Elément(s) analysé(s): 441869
Temps écoulé: 3 heure(s), 3 minute(s), 7 seconde(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 2
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 2
Fichier(s) infecté(s): 0

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\ScanQuery (Adware.ScanQuery) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ScanQuery (Adware.ScanQuery) -> No action taken.

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
c:\program files (x86)\scanquery (Adware.ScanQuery) -> No action taken.
c:\programdata\scanquery (Adware.ScanQuery) -> No action taken.

Fichier(s) infecté(s):
(Aucun élément nuisible détecté)

#10 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:06:30 PM

Posted 09 July 2011 - 05:08 PM

Can you remove the detected items?

#11 alpha4345

alpha4345
  • Topic Starter

  • Members
  • 124 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Quebec, Canada
  • Local time:02:30 PM

Posted 09 July 2011 - 05:49 PM

yeh, it's done.

#12 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:06:30 PM

Posted 09 July 2011 - 05:57 PM

Run the others as well.

#13 alpha4345

alpha4345
  • Topic Starter

  • Members
  • 124 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Quebec, Canada
  • Local time:02:30 PM

Posted 09 July 2011 - 06:09 PM

Just done it. It says that nothing has been detected on my computer so the gmer.log file is empty...

#14 cryptodan

cryptodan

    Bleepin Madman


  • Members
  • 21,868 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Catonsville, Md
  • Local time:06:30 PM

Posted 09 July 2011 - 06:29 PM

Try this Temp File Cleaner and see if it can be resolved by clearing all temp files.

#15 alpha4345

alpha4345
  • Topic Starter

  • Members
  • 124 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Quebec, Canada
  • Local time:02:30 PM

Posted 10 July 2011 - 08:24 AM

Ok so I ran your temp file program, rebooted the laptop and it worked. Now I can access google a usual :)

Thank you very much for your help, we need more people like you on this website ;)




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users