Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

What keeps changing my desktop/website colors??!!


  • Please log in to reply
23 replies to this topic

#1 Allison Scruggs

Allison Scruggs

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:09:00 PM

Posted 18 April 2012 - 06:34 PM

Not sure when this all started but it has been quite some time now, approx. 5-6 mo. The first symptom I noticed was that my desktop color would change to blue, I would go into the display properties & change it back, (my saved setting as will sometimes be listed as "(modified)". Then I noticed my website pages would change color usually to white. My computer constantly freezes &/or gets hang-ups. I can hardly do anything at all. I've used unhijack me/rkill/kapersky/avast/panda/webroot/avira
to no avail. I am finding no luck in researching those symptoms online either so if y ou can help it would greatly appreciated. I am not very computer literate so if you post instructions for me please be clear & bear with me.

Thanks bunches,
Allison


BC AdBot (Login to Remove)

 


#2 Broni

Broni

    The Coolest BC Computer


  • BC Advisor
  • 42,708 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Daly City, CA
  • Local time:08:00 PM

Posted 18 April 2012 - 07:07 PM

Welcome aboard Posted Image

Download and install System Information for Windows
Run the program.
After it scans your computer, navigate to Hardware>Sensors and post all info from there.

Posted Image

My Website

p4433470.gif

My help doesn't cost a penny, but if you'd like to consider a donation, click p22001735.gif


 


#3 Allison Scruggs

Allison Scruggs
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:09:00 PM

Posted 18 April 2012 - 07:50 PM

Sensor Value Min Max
FAMILY-2F06A72B
ST380011A
Temperatures
Assembly 38 C (100 F) 38 C (100 F) 38 C (100 F)

I hope this is what you were asking for.



#4 Broni

Broni

    The Coolest BC Computer


  • BC Advisor
  • 42,708 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Daly City, CA
  • Local time:08:00 PM

Posted 18 April 2012 - 07:58 PM

That looks good.

Download Security Check from HERE, and save it to your Desktop.

* Double-click SecurityCheck.exe
* Follow the onscreen instructions inside of the black box.
* A Notepad document should open automatically called checkup.txt; please post the contents of that document.

=============================================================================

Please download Farbar Service Scanner (FSS) and run it on the computer with the issue.
  • Make sure the following options are checked:
    • Internet Services
    • Windows Firewall
    • System Restore
    • Security Center/Action Center
    • Windows Update
    • Windows Defender
  • Press "Scan".
  • It will create a log (FSS.txt) in the same directory the tool is run.
  • Please copy and paste the log to your reply.

====================================================================================

Please download MiniToolBox and run it.

Checkmark following boxes:
  • Report IE Proxy Settings
  • Report FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Devices (do NOT change any settings here)
  • List Users, Partitions and Memory size
Click Go and post the result.

=============================================================================

Download Malwarebytes' Anti-Malware (aka MBAM): https://www.bleepingcomputer.com/download/malwarebytes-anti-malware/ to your desktop.

* Double-click mbam-setup.exe and follow the prompts to install the program.
* At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
* If an update is found, it will download and install the latest version.
* Once the program has loaded, select Perform quick scan, then click Scan.
* When the scan is complete, click OK, then Show Results to view the results.
* Be sure that everything is checked, and click Remove Selected.
* When completed, a log will open in Notepad.
* Post the log back here.

Be sure to restart the computer.

The log can also be found here:
C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-date.txt
Or at C:\Program Files\Malwarebytes' Anti-Malware\Logs\log-date.txt

=============================================================================

Download aswMBR to your desktop.
Double click the aswMBR.exe to run it.
If you see this question: Would you like to download latest Avast! virus definitions?" say "Yes".
Click the "Scan" button to start scan.
On completion of the scan click "Save log", save it to your desktop and post in your next reply.

NOTE. aswMBR will create MBR.dat file on your desktop. This is a copy of your MBR. Do NOT delete it.

My Website

p4433470.gif

My help doesn't cost a penny, but if you'd like to consider a donation, click p22001735.gif


 


#5 Allison Scruggs

Allison Scruggs
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:09:00 PM

Posted 18 April 2012 - 08:07 PM

Results of screen317's Security Check version 0.99.24
Windows XP Service Pack 3 x86
Internet Explorer 8
``````````````````````````````
Antivirus/Firewall Check:

Windows Firewall Enabled!
Panda Cloud Antivirus
Antivirus up to date!
```````````````````````````````
Anti-malware/Other Utilities Check:

Spybot - Search & Destroy
Toolbar Cleaner 1.0
Java™ 6 Update 31
Out of date Java installed!
````````````````````````````````
Process Check:
objlist.exe by Laurent

Panda Security Panda Cloud Antivirus PSUNMain.exe
Panda Security Panda Cloud Antivirus PSANHost.exe
``````````End of Log````````````

#6 Allison Scruggs

Allison Scruggs
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:09:00 PM

Posted 18 April 2012 - 08:10 PM

Farbar Service Scanner Version: 16-04-2012
Ran by Administrator (administrator) on 18-04-2012 at 19:09:10
Running from "C:\Documents and Settings\Administrator.FAMILY-2F06A72B\Desktop"
Microsoft Windows XP Professional Service Pack 3 (X86)
Boot Mode: Normal
****************************************************************

Internet Services:
============

Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Yahoo IP is accessible.


Windows Firewall:
=============

Firewall Disabled Policy:
==================


System Restore:
============

System Restore Disabled Policy:
========================


Security Center:
============

Windows Update:
============

Windows Autoupdate Disabled Policy:
============================


File Check:
========
C:\WINDOWS\system32\dhcpcsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\afd.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\netbt.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\tcpip.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\ipsec.sys => MD5 is legit
C:\WINDOWS\system32\dnsrslvr.dll => MD5 is legit
C:\WINDOWS\system32\ipnathlp.dll => MD5 is legit
C:\WINDOWS\system32\netman.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\srsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\sr.sys => MD5 is legit
C:\WINDOWS\system32\wscsvc.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\wuauserv.dll
[2011-03-05 13:09] - [2007-09-19 22:49] - 0025944 ___AC (Microsoft Corporation) D29AD7484B98279ED21877DE051A180F

C:\WINDOWS\system32\qmgr.dll => MD5 is legit
C:\WINDOWS\system32\es.dll => MD5 is legit
C:\WINDOWS\system32\cryptsvc.dll => MD5 is legit
C:\WINDOWS\system32\svchost.exe => MD5 is legit
C:\WINDOWS\system32\rpcss.dll => MD5 is legit
C:\WINDOWS\system32\services.exe => MD5 is legit

Extra List:
=======
Gpc(3) IPSec(5) NetBT(6) PSched(7) Tcpip(4)
0x09000000050000000100000002000000030000000400000009000000060000000700000008000000
IpSec Tag value is correct.

**** End of log ****



#7 Allison Scruggs

Allison Scruggs
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:09:00 PM

Posted 18 April 2012 - 08:12 PM

MiniToolBox by Farbar Version: 18-01-2012
Ran by Administrator (administrator) on 18-04-2012 at 19:11:44
Microsoft Windows XP Professional Service Pack 3 (X86)
Boot Mode: Normal
***************************************************************************

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.
========================= Hosts content: =================================


127.0.0.1 localhost

========================= IP Configuration: ================================

Intel® PRO/100 VE Network Connection = Local Area Connection 4 (Connected)


# ----------------------------------
# Interface IP Configuration
# ----------------------------------
pushd interface ip


# Interface IP Configuration for "Local Area Connection 4"

set address name="Local Area Connection 4" source=dhcp
set dns name="Local Area Connection 4" source=dhcp register=PRIMARY
set wins name="Local Area Connection 4" source=dhcp


popd
# End of interface IP configuration




Windows IP Configuration



Host Name . . . . . . . . . . . . : family-2f06a72b

Primary Dns Suffix . . . . . . . :

Node Type . . . . . . . . . . . . : Unknown

IP Routing Enabled. . . . . . . . : No

WINS Proxy Enabled. . . . . . . . : No

DNS Suffix Search List. . . . . . : domain.actdsltmp



Ethernet adapter Local Area Connection 4:



Connection-specific DNS Suffix . : domain.actdsltmp

Description . . . . . . . . . . . : Intel® PRO/100 VE Network Connection

Physical Address. . . . . . . . . : 00-11-11-7B-7F-35

Dhcp Enabled. . . . . . . . . . . : Yes

Autoconfiguration Enabled . . . . : Yes

IP Address. . . . . . . . . . . . : 192.168.0.4

Subnet Mask . . . . . . . . . . . : 255.255.255.0

Default Gateway . . . . . . . . . : 192.168.0.1

DHCP Server . . . . . . . . . . . : 192.168.0.1

DNS Servers . . . . . . . . . . . : 192.168.0.1

205.171.3.25

Lease Obtained. . . . . . . . . . : Wednesday, April 18, 2012 4:44:45 PM

Lease Expires . . . . . . . . . . : Wednesday, April 25, 2012 4:44:45 PM

Server: qwestmodem.domain.actdsltmp
Address: 192.168.0.1

Name: google.com
Addresses: 173.194.33.34, 173.194.33.35, 173.194.33.36, 173.194.33.37
173.194.33.38, 173.194.33.39, 173.194.33.40, 173.194.33.41, 173.194.33.46
173.194.33.32, 173.194.33.33



Pinging google.com [173.194.33.32] with 32 bytes of data:



Reply from 173.194.33.32: bytes=32 time=54ms TTL=55

Reply from 173.194.33.32: bytes=32 time=54ms TTL=57



Ping statistics for 173.194.33.32:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 54ms, Maximum = 54ms, Average = 54ms

Server: qwestmodem.domain.actdsltmp
Address: 192.168.0.1

Name: yahoo.com
Addresses: 209.191.122.70, 72.30.38.140, 98.139.183.24



Pinging yahoo.com [72.30.38.140] with 32 bytes of data:



Reply from 72.30.38.140: bytes=32 time=123ms TTL=54

Reply from 72.30.38.140: bytes=32 time=83ms TTL=54



Ping statistics for 72.30.38.140:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 83ms, Maximum = 123ms, Average = 103ms

Server: qwestmodem.domain.actdsltmp
Address: 192.168.0.1

DNS request timed out.
timeout was 2 seconds.


Pinging bleepingcomputer.com [208.43.87.2] with 32 bytes of data:



Reply from 208.43.87.2: Destination host unreachable.

Reply from 208.43.87.2: Destination host unreachable.



Ping statistics for 208.43.87.2:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 0ms, Maximum = 0ms, Average = 0ms



Pinging 127.0.0.1 with 32 bytes of data:



Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Reply from 127.0.0.1: bytes=32 time<1ms TTL=128



Ping statistics for 127.0.0.1:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 0ms, Maximum = 0ms, Average = 0ms

===========================================================================
Interface List
0x1 ........................... MS TCP Loopback interface
0x2 ...00 11 11 7b 7f 35 ...... Intel® PRO/100 VE Network Connection - Packet Scheduler Miniport
===========================================================================
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.0.1 192.168.0.4 20
127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1 1
192.168.0.0 255.255.255.0 192.168.0.4 192.168.0.4 20
192.168.0.4 255.255.255.255 127.0.0.1 127.0.0.1 20
192.168.0.255 255.255.255.255 192.168.0.4 192.168.0.4 20
224.0.0.0 240.0.0.0 192.168.0.4 192.168.0.4 20
255.255.255.255 255.255.255.255 192.168.0.4 192.168.0.4 1
Default Gateway: 192.168.0.1
===========================================================================
Persistent Routes:
None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\System32\mswsock.dll [245248] (Microsoft Corporation)
Catalog5 02 C:\Windows\System32\winrnr.dll [16896] (Microsoft Corporation)
Catalog5 03 C:\Windows\System32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 01 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 02 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 03 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 04 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 05 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 06 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 07 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 08 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 09 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 10 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 11 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 12 C:\Windows\system32\rsvpsp.dll [92672] (Microsoft Corporation)
Catalog9 13 C:\Windows\system32\rsvpsp.dll [92672] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (04/17/2012 02:48:58 AM) (Source: .NET Runtime Optimization Service) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Failed to compile: C:\Program Files\Driver Tool\Driver Tool\DriverTool.exe . Error code = 0x80131047

Error: (04/17/2012 02:26:29 AM) (Source: LoadPerf) (User: )
Description: The performance counter name string value in the registry is incorrectly
formatted. The bogus string is 11486, the bogus index value is the first
DWORD in Data section while the last valid index values are the second and
third DWORD in Data section.

Error: (04/17/2012 02:26:27 AM) (Source: LoadPerf) (User: )
Description: Unloading the performance counter strings for service aspnet_state (ASP.NET State Service) failed. The
Error code is the first DWORD in Data section.

Error: (04/17/2012 02:26:27 AM) (Source: LoadPerf) (User: )
Description: The performance counter name string value in the registry is incorrectly
formatted. The bogus string is 11486, the bogus index value is the first
DWORD in Data section while the last valid index values are the second and
third DWORD in Data section.

Error: (04/17/2012 02:26:20 AM) (Source: LoadPerf) (User: )
Description: Unloading the performance counter strings for service ASP.NET_2.0.50727 (ASP.NET_2.0.50727) failed. The
Error code is the first DWORD in Data section.

Error: (04/17/2012 02:26:20 AM) (Source: LoadPerf) (User: )
Description: The performance counter name string value in the registry is incorrectly
formatted. The bogus string is 11486, the bogus index value is the first
DWORD in Data section while the last valid index values are the second and
third DWORD in Data section.

Error: (04/11/2012 04:53:51 AM) (Source: .NET Runtime Optimization Service) (User: )
Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Failed to compile: C:\Program Files\Driver Tool\Driver Tool\DriverTool.exe . Error code = 0x80131047

Error: (04/09/2012 10:04:56 PM) (Source: Application Error) (User: )
Description: Faulting application iexplore.exe, version 8.0.6001.18702, faulting module mshtml.dll, version 8.0.6001.19190, fault address 0x000710a6.
Processing media-specific event for [iexplore.exe!ws!]

Error: (04/02/2012 01:12:48 AM) (Source: MsiInstaller) (User: Administrator)Administrator
Description: Product: ESET NOD32 Antivirus -- Error 1404. Could not delete key \Software\ESET\ESET Security. System error . Verify that you have sufficient access to that key, or contact your support personnel.

Error: (04/02/2012 01:12:47 AM) (Source: MsiInstaller) (User: Administrator)Administrator
Description: Product: ESET NOD32 Antivirus -- Error 1404. Could not delete key \Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ekrn.exe. System error . Verify that you have sufficient access to that key, or contact your support personnel.


System errors:
=============
Error: (04/18/2012 04:45:31 PM) (Source: Service Control Manager) (User: )
Description: The Windows Media Player Network Sharing Service service depends on the HTTP SSL service which failed to start because of the following error:
%%1058

Error: (04/18/2012 04:45:29 PM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
TfFsMon
TfSysMon

Error: (04/18/2012 09:14:26 AM) (Source: Service Control Manager) (User: )
Description: The Windows Media Player Network Sharing Service service depends on the HTTP SSL service which failed to start because of the following error:
%%1058

Error: (04/18/2012 09:14:25 AM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
TfFsMon
TfSysMon

Error: (04/18/2012 08:06:55 AM) (Source: Service Control Manager) (User: )
Description: Detected circular dependencies demand starting Windows Media Player Network Sharing Service.

Error: (04/18/2012 08:06:55 AM) (Source: Service Control Manager) (User: )
Description: The Windows Media Player Network Sharing Service service depends on the HTTP SSL service which failed to start because of the following error:
%%1058

Error: (04/18/2012 08:06:55 AM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
TfFsMon
TfSysMon

Error: (04/18/2012 07:48:26 AM) (Source: Service Control Manager) (User: )
Description: Detected circular dependencies demand starting Windows Media Player Network Sharing Service.

Error: (04/18/2012 07:48:25 AM) (Source: Service Control Manager) (User: )
Description: The Windows Media Player Network Sharing Service service depends on the HTTP SSL service which failed to start because of the following error:
%%1058

Error: (04/18/2012 07:48:25 AM) (Source: Service Control Manager) (User: )
Description: The following boot-start or system-start driver(s) failed to load:
TfFsMon
TfSysMon


Microsoft Office Sessions:
=========================
Error: (04/17/2012 02:48:58 AM) (Source: .NET Runtime Optimization Service)(User: )
Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Failed to compile: C:\Program Files\Driver Tool\Driver Tool\DriverTool.exe . Error code = 0x80131047
C:\Program Files\Driver Tool\Driver Tool\DriverTool.exe

Error: (04/17/2012 02:26:29 AM) (Source: LoadPerf)(User: )
Description: 11486

Error: (04/17/2012 02:26:27 AM) (Source: LoadPerf)(User: )
Description: aspnet_stateASP.NET State Service

Error: (04/17/2012 02:26:27 AM) (Source: LoadPerf)(User: )
Description: 11486

Error: (04/17/2012 02:26:20 AM) (Source: LoadPerf)(User: )
Description: ASP.NET_2.0.50727ASP.NET_2.0.50727

Error: (04/17/2012 02:26:20 AM) (Source: LoadPerf)(User: )
Description: 11486

Error: (04/11/2012 04:53:51 AM) (Source: .NET Runtime Optimization Service)(User: )
Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Failed to compile: C:\Program Files\Driver Tool\Driver Tool\DriverTool.exe . Error code = 0x80131047
C:\Program Files\Driver Tool\Driver Tool\DriverTool.exe

Error: (04/09/2012 10:04:56 PM) (Source: Application Error)(User: )
Description: iexplore.exe8.0.6001.18702mshtml.dll8.0.6001.19190000710a6

Error: (04/02/2012 01:12:48 AM) (Source: MsiInstaller)(User: Administrator)Administrator
Description: Product: ESET NOD32 Antivirus -- Error 1404. Could not delete key \Software\ESET\ESET Security. System error . Verify that you have sufficient access to that key, or contact your support personnel. (NULL)(NULL)(NULL)

Error: (04/02/2012 01:12:47 AM) (Source: MsiInstaller)(User: Administrator)Administrator
Description: Product: ESET NOD32 Antivirus -- Error 1404. Could not delete key \Software\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ekrn.exe. System error . Verify that you have sufficient access to that key, or contact your support personnel. (NULL)(NULL)(NULL)


=========================== Installed Programs ============================

Adobe Flash Player 11 ActiveX (Version: 11.1.102.55)
Advanced SystemCare 5 (Version: 5.1.0)
AviDecode
DivX Setup (Version: 2.6.1.5)
Google Update Helper (Version: 1.3.21.111)
Intel® Extreme Graphics 2 Driver (Version: 6.14.10.4396)
Intel® PRO Network Connections Drivers
Java Auto Updater (Version: 2.0.7.1)
Java™ 6 Update 31 (Version: 6.0.310)
JetBoost (Version: 1.0)
K-Lite Mega Codec Pack 6.4.0 (Version: 6.4.0)
Microsoft .NET Framework 2.0 Service Pack 2 (Version: 2.2.30729)
Microsoft .NET Framework 3.0 Service Pack 2 (Version: 3.2.30729)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (Version: 9.0.30729.5570)
Mignet Assistant Service
MSXML 6 Service Pack 2 (KB973686) (Version: 6.20.2003.0)
Panda ActiveScan 2.0 (Version: 01.04.01.0014)
Panda Cloud Antivirus (Version: 1.05.02.0000)
Panda Cloud Antivirus (Version: 1.5.2)
Panda Security Toolbar (Version: 3.0.0.6)
Panda Security URL Filtering (Version: 2.0.0.13)
RealNetworks - Microsoft Visual C++ 2008 Runtime (Version: 9.0)
RealPlayer
RealUpgrade 1.1 (Version: 1.1.0)
SIW version 2011.10.29 (Version: 2011.10.29)
Smart Defrag 2 (Version: 2.2)
Software Update for Web Folders (Version: 9.60.6715.0)
Spybot - Search & Destroy (Version: 1.6.2)
Streamripper (Remove only)
Toolbar Cleaner 1.0
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Microsoft Windows (KB971513)
Update for Windows Internet Explorer 8 (KB2447568) (Version: 1)
Update for Windows Internet Explorer 8 (KB2598845) (Version: 1)
Update for Windows Internet Explorer 8 (KB2632503) (Version: 1)
Update for Windows Internet Explorer 8 (KB976662) (Version: 1)
Update for Windows XP (KB2141007) (Version: 1)
Update for Windows XP (KB2345886) (Version: 1)
Update for Windows XP (KB2492386) (Version: 1)
Update for Windows XP (KB2541763) (Version: 1)
Update for Windows XP (KB2607712) (Version: 1)
Update for Windows XP (KB2616676) (Version: 1)
Update for Windows XP (KB2641690) (Version: 1)
Update for Windows XP (KB951978) (Version: 1)
Update for Windows XP (KB955759) (Version: 1)
Update for Windows XP (KB967715) (Version: 1)
Update for Windows XP (KB968389) (Version: 1)
Update for Windows XP (KB971029) (Version: 1)
Update for Windows XP (KB971737) (Version: 1)
Update for Windows XP (KB973687) (Version: 1)
Update for Windows XP (KB973815) (Version: 1)
VC80CRTRedist - 8.0.50727.6195 (Version: 1.2.0)
WebFldrs XP (Version: 9.50.7523)
Windows Driver Package - FTDI CDM Driver Package (10/22/2009 2.06.00) (Version: 10/22/2009 2.06.00)
Windows Genuine Advantage Notifications (KB905474) (Version: 1.9.0040.0)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Genuine Advantage Validation Tool (KB892130) (Version: 1.7.0069.2)
Windows Internet Explorer 8 (Version: 20090308.140743)
Windows Management Framework Core
Windows XP Service Pack 3 (Version: 20080414.031525)
Xvid 1.2.2 final uninstall (Version: 1.2)

========================= Devices: ================================

Name:
Description:
Class Guid: {6BDD1FC6-810F-11D0-BEC7-08002BE2092F}
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


========================= Memory info: ===================================

Percentage of memory in use: 71%
Total physical RAM: 509.98 MB
Available physical RAM: 145.96 MB
Total Pagefile: 1248.64 MB
Available Pagefile: 707.24 MB
Total Virtual: 2047.88 MB
Available Virtual: 1969.1 MB

========================= Partitions: =====================================

2 Drive c: () (Fixed) (Total:74.5 GB) (Free:45.25 GB) NTFS

========================= Users: ========================================

User accounts for \\FAMILY-2F06A72B

Administrator Guest HelpAssistant
SUPPORT_388945a0


**** End of log ****




#8 Allison Scruggs

Allison Scruggs
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:09:00 PM

Posted 18 April 2012 - 08:55 PM

I did everything including this step below but no notpad file opened. I tried to locate it where you specified & couldn't, what do you suggest? The only log files I can find are not today but last years...
Be sure that everything is checked, and click Remove Selected.

#9 Broni

Broni

    The Coolest BC Computer


  • BC Advisor
  • 42,708 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Daly City, CA
  • Local time:08:00 PM

Posted 18 April 2012 - 09:22 PM

Re-run MBAM one more time.

I still need aswMBR log.

My Website

p4433470.gif

My help doesn't cost a penny, but if you'd like to consider a donation, click p22001735.gif


 


#10 Allison Scruggs

Allison Scruggs
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:09:00 PM

Posted 18 April 2012 - 09:24 PM

ran it again, here you go:

2012/04/18 20:07:06 -0600 FAMILY-2F06A72B Administrator MESSAGE Starting protection
2012/04/18 20:07:21 -0600 FAMILY-2F06A72B Administrator MESSAGE Protection started successfully
2012/04/18 20:07:24 -0600 FAMILY-2F06A72B Administrator MESSAGE Starting IP protection
2012/04/18 20:07:31 -0600 FAMILY-2F06A72B Administrator MESSAGE IP Protection started successfully
2012/04/18 20:07:31 -0600 FAMILY-2F06A72B Administrator MESSAGE Stopping IP protection
2012/04/18 20:07:31 -0600 FAMILY-2F06A72B Administrator MESSAGE IP Protection stopped

#11 Broni

Broni

    The Coolest BC Computer


  • BC Advisor
  • 42,708 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Daly City, CA
  • Local time:08:00 PM

Posted 18 April 2012 - 09:26 PM

That's not MBAM log.

My Website

p4433470.gif

My help doesn't cost a penny, but if you'd like to consider a donation, click p22001735.gif


 


#12 Allison Scruggs

Allison Scruggs
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:09:00 PM

Posted 18 April 2012 - 09:45 PM

aswMBR version 0.9.9.1665 Copyright© 2011 AVAST Software
Run date: 2012-04-18 20:26:18
-----------------------------
20:26:18.171 OS Version: Windows 5.1.2600 Service Pack 3
20:26:18.171 Number of processors: 1 586 0x304
20:26:18.171 ComputerName: FAMILY-2F06A72B UserName: Administrator
20:26:19.890 Initialize success
20:32:24.609 AVAST engine defs: 12041802
20:32:44.312 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3
20:32:44.312 Disk 0 Vendor: ST380011A 8.16 Size: 76293MB BusType: 3
20:32:44.375 Disk 0 MBR read successfully
20:32:44.375 Disk 0 MBR scan
20:32:44.484 Disk 0 Windows XP default MBR code
20:32:44.500 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 76285 MB offset 63
20:32:44.500 Disk 0 scanning sectors +156232125
20:32:44.750 Disk 0 scanning C:\WINDOWS\system32\drivers
20:32:58.656 Service scanning
20:33:24.781 Modules scanning
20:33:41.062 Disk 0 trace - called modules:
20:33:41.093 ntoskrnl.exe CLASSPNP.SYS disk.sys atapi.sys hal.dll intelide.sys PCIIDEX.SYS
20:33:41.093 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x82367ab8]
20:33:41.609 3 CLASSPNP.SYS[f8578fd7] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-3[0x823a8b00]
20:33:42.406 AVAST engine scan C:\WINDOWS
20:33:48.875 AVAST engine scan C:\WINDOWS\system32
20:36:24.718 AVAST engine scan C:\WINDOWS\system32\drivers
20:36:39.890 AVAST engine scan C:\Documents and Settings\Administrator.FAMILY-2F06A72B
20:40:53.328 AVAST engine scan C:\Documents and Settings\All Users.WINDOWS
20:41:30.812 Scan finished successfully
20:43:40.890 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\Administrator.FAMILY-2F06A72B\Desktop\MBR.dat"
20:43:40.906 The log file has been saved successfully to "C:\Documents and Settings\Administrator.FAMILY-2F06A72B\Desktop\aswMBR.txt"






#13 Broni

Broni

    The Coolest BC Computer


  • BC Advisor
  • 42,708 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Daly City, CA
  • Local time:08:00 PM

Posted 18 April 2012 - 10:00 PM

I still need Malwarebytes log.

My Website

p4433470.gif

My help doesn't cost a penny, but if you'd like to consider a donation, click p22001735.gif


 


#14 Allison Scruggs

Allison Scruggs
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:09:00 PM

Posted 18 April 2012 - 10:18 PM

That's not MBAM log
When I double click the 1 with today's date that is what I get...what do I need to do?

#15 Broni

Broni

    The Coolest BC Computer


  • BC Advisor
  • 42,708 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:Daly City, CA
  • Local time:08:00 PM

Posted 18 April 2012 - 10:57 PM

Re-run it.

My Website

p4433470.gif

My help doesn't cost a penny, but if you'd like to consider a donation, click p22001735.gif


 





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users