Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

HD Space Disapearing


  • Please log in to reply
15 replies to this topic

#1 Dark Horse

Dark Horse

  • Members
  • 25 posts
  • OFFLINE
  •  
  • Local time:01:53 PM

Posted 28 January 2013 - 03:15 PM

Ok im running a
Dell Inspiron 9300
Win XP Home SP2
2.0Gig Processor
2.0Gig Ram

Recently ive noticed my harddrive keeps loosing space, I mean Gigs at a time. In morning I'll have 7gig free and at night I'll only have 3gig free. Also im having high cpu usage. The file using it is a SVCHost.exe. Right now im running Avast to find any problem.

Any help will be appretiated.

Jeff

BC AdBot (Login to Remove)

 


#2 Broni

Broni

    The Coolest BC Computer


  • BC Advisor
  • 42,754 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Daly City, CA
  • Local time:10:53 AM

Posted 28 January 2013 - 08:28 PM

Welcome aboard Posted Image

Download Security Check from HERE, and save it to your Desktop.

* Double-click SecurityCheck.exe
* Follow the onscreen instructions inside of the black box.
* A Notepad document should open automatically called checkup.txt; please post the contents of that document.

=============================================================================

Please download Farbar Service Scanner (FSS) and run it on the computer with the issue.
  • Make sure the following options are checked:
    • Internet Services
    • Windows Firewall
    • System Restore
    • Security Center/Action Center
    • Windows Update
    • Windows Defender
  • Press "Scan".
  • It will create a log (FSS.txt) in the same directory the tool is run.
  • Please copy and paste the log to your reply.

====================================================================================

Please download MiniToolBox and run it.

Checkmark following boxes:
  • Report IE Proxy Settings
  • Report FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Devices (do NOT change any settings here)
  • List Users, Partitions and Memory size
Click Go and post the result.

=============================================================================

Download Malwarebytes' Anti-Malware (aka MBAM): https://www.bleepingcomputer.com/download/malwarebytes-anti-malware/ to your desktop.

* Double-click mbam-setup.exe and follow the prompts to install the program.
* At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
* If an update is found, it will download and install the latest version.
* Once the program has loaded, select Perform quick scan, then click Scan.
* When the scan is complete, click OK, then Show Results to view the results.
* Be sure that everything is checked, and click Remove Selected.
* When completed, a log will open in Notepad.
* Post the log back here.

Be sure to restart the computer.

The log can also be found here:
C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-date.txt
Or at C:\Program Files\Malwarebytes' Anti-Malware\Logs\log-date.txt

=============================================================================

Download aswMBR to your desktop.
Double click the aswMBR.exe to run it.
If you see this question: Would you like to download latest Avast! virus definitions?" say "Yes".
Click the "Scan" button to start scan.
On completion of the scan click "Save log", save it to your desktop and post in your next reply.

NOTE. aswMBR will create MBR.dat file on your desktop. This is a copy of your MBR. Do NOT delete it.

My Website

My help doesn't cost a penny, but if you'd like to consider a donation, click DONATE

 


#3 Dark Horse

Dark Horse
  • Topic Starter

  • Members
  • 25 posts
  • OFFLINE
  •  
  • Local time:01:53 PM

Posted 29 January 2013 - 08:30 PM

Ok im working on the list above. Ive just had a major set back. Avast finished and found 340+ infected files. I moved all to chest and closed. i thought all was good. it then asked to do a restart and scan before starup so i said ok. It was running slow so i exited it anfter it moved more files to chest. when it finally started my whole desktop was gone and started saying loading personal settings. A lot of desktop icons and backround is gone. all of my book marks or favorites in firefox and explorer are gone also. I tried to do a system restore to before avast and nothing changed so i reverted it back. Oh what now, did i loose everything?

Edited by Dark Horse, 29 January 2013 - 08:54 PM.


#4 Dark Horse

Dark Horse
  • Topic Starter

  • Members
  • 25 posts
  • OFFLINE
  •  
  • Local time:01:53 PM

Posted 29 January 2013 - 08:36 PM

Security Check:

Results of screen317's Security Check version 0.99.57
Windows XP Service Pack 2 x86
Out of date service pack!!
Internet Explorer 8
``````````````Antivirus/Firewall Check:``````````````
Windows Security Center service is not running! This report may not be accurate!
avast! Free Antivirus
ZoneAlarm
`````````Anti-malware/Other Utilities Check:`````````
Windows Defender Signatures
Lavasoft VX2 Cleaner
Max Registry Cleaner
Adobe Flash Player 11.5.502.146
Adobe Reader 6 Adobe Reader out of Date!
Mozilla Firefox (3.6.24) Firefox out of Date!
````````Process Check: objlist.exe by Laurent````````
AVAST Software Avast AvastSvc.exe
AVAST Software Avast avastUI.exe
Zone Labs ZoneAlarm zlclient.exe
`````````````````System Health check`````````````````
Total Fragmentation on Drive C:: 19% Defragment your hard drive soon! (Do NOT defrag if SSD!)
````````````````````End of Log``````````````````````

FSS :

Farbar Service Scanner Version: 16-01-2013
Ran by Imprezzive (administrator) on 29-01-2013 at 20:34:25
Running from "C:\Documents and Settings\Imprezzive.IMPREZA-RS\Desktop"
Microsoft Windows XP Service Pack 2 (X86)
Boot Mode: Normal
****************************************************************

Internet Services:
============

Connection Status:
==============
Localhost is accessible.
LAN connected.
Attempt to access Google IP returned error. Google IP is offline
Google.com is accessible.
Yahoo IP is accessible.
Yahoo.com is accessible.


Windows Firewall:
=============
sharedaccess Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of sharedaccess. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of sharedaccess. The value does not exist.
Unable to retrieve ServiceDll of sharedaccess. The value does not exist.
Checking LEGACY_sharedaccess: ATTENTION!=====> Unable to open LEGACY_sharedaccess\0000 registry key. The key does not exist.


Firewall Disabled Policy:
==================


System Restore:
============

System Restore Disabled Policy:
========================


Security Center:
============
wscsvc Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to open wscsvc registry key. The service key does not exist.
Checking ImagePath: ATTENTION!=====> Unable to open wscsvc registry key. The service key does not exist.
Checking ServiceDll: ATTENTION!=====> Unable to open wscsvc registry key. The service key does not exist.
Checking LEGACY_wscsvc: ATTENTION!=====> Unable to open LEGACY_wscsvc\0000 registry key. The key does not exist.


Windows Update:
============
wuauserv Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to open wuauserv registry key. The service key does not exist.
Checking ImagePath: ATTENTION!=====> Unable to open wuauserv registry key. The service key does not exist.
Checking ServiceDll: ATTENTION!=====> Unable to open wuauserv registry key. The service key does not exist.
Checking LEGACY_wuauserv: ATTENTION!=====> Unable to open LEGACY_wuauserv\0000 registry key. The key does not exist.

BITS Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to open BITS registry key. The service key does not exist.
Checking ImagePath: ATTENTION!=====> Unable to open BITS registry key. The service key does not exist.
Checking ServiceDll: ATTENTION!=====> Unable to open BITS registry key. The service key does not exist.
Checking LEGACY_BITS: ATTENTION!=====> Unable to open LEGACY_BITS\0000 registry key. The key does not exist.


Windows Autoupdate Disabled Policy:
============================


File Check:
========
C:\WINDOWS\system32\dhcpcsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\afd.sys
[2004-08-04 07:00] - [2008-08-14 04:51] - 0138368 ____A (Microsoft Corporation) 55E6E1C51B6D30E54335750955453702

C:\WINDOWS\system32\Drivers\netbt.sys
[2004-08-04 07:00] - [2004-08-04 07:00] - 0162816 ____A (Microsoft Corporation) 0C80E410CD2F47134407EE7DD19CC86B

C:\WINDOWS\system32\Drivers\tcpip.sys
[2004-08-04 07:00] - [2008-06-20 05:45] - 0360320 ____A (Microsoft Corporation) 2A5554FC5B1E04E131230E3CE035C3F9

C:\WINDOWS\system32\Drivers\ipsec.sys
[2004-08-04 07:00] - [2004-08-04 07:00] - 0074752 ____A (Microsoft Corporation) 64537AA5C003A6AFEEE1DF819062D0D1

C:\WINDOWS\system32\dnsrslvr.dll
[2004-08-04 07:00] - [2004-08-04 07:00] - 0045568 ____A (Microsoft Corporation) 7379DE06FD196E396A00AA97B990C00D

C:\WINDOWS\system32\ipnathlp.dll
[2004-08-04 07:00] - [2004-08-04 07:00] - 0331264 ____A (Microsoft Corporation) 36CC8C01B5E50163037BEF56CB96DEFF

C:\WINDOWS\system32\netman.dll
[2004-08-04 07:00] - [2004-08-04 07:00] - 0198144 ____A (Microsoft Corporation) DAB9E6C7105D2EF49876FE92C524F565

C:\WINDOWS\system32\wbem\WMIsvc.dll
[2004-08-10 13:01] - [2004-08-04 05:00] - 0144896 ____A (Microsoft Corporation) F399242A80C4066FD155EFA4CF96658E

C:\WINDOWS\system32\srsvc.dll
[2004-08-10 13:02] - [2004-08-04 05:00] - 0170496 ____A (Microsoft Corporation) 92BDF74F12D6CBEC43C94D4B7F804838

C:\WINDOWS\system32\Drivers\sr.sys
[2004-08-10 13:02] - [2004-08-04 05:00] - 0073472 ____A (Microsoft Corporation) E41B6D037D6CD08461470AF04500DC24

C:\WINDOWS\system32\wscsvc.dll
[2004-08-04 07:00] - [2004-08-04 07:00] - 0081408 ____A (Microsoft Corporation) 4D59DAA66C60858CDF4F67A900F42D4A

C:\WINDOWS\system32\wbem\WMIsvc.dll
[2004-08-10 13:01] - [2004-08-04 05:00] - 0144896 ____A (Microsoft Corporation) F399242A80C4066FD155EFA4CF96658E

C:\WINDOWS\system32\wuauserv.dll
[2004-08-10 13:02] - [2004-08-04 05:00] - 0006656 ____A (Microsoft Corporation) 13D72740963CBA12D9FF76A7F218BCD8

C:\WINDOWS\system32\qmgr.dll
[2004-08-10 13:02] - [2004-08-04 05:00] - 0382464 ____A (Microsoft Corporation) 2C69EC7E5A311334D10DD95F338FCCEA

C:\WINDOWS\system32\es.dll
[2004-08-04 07:00] - [2008-07-07 15:32] - 0253952 ____A (Microsoft Corporation) 60D1A6342238378BFB7545C81EE3606C

C:\WINDOWS\system32\cryptsvc.dll
[2004-08-04 07:00] - [2004-08-04 07:00] - 0060416 ____A (Microsoft Corporation) 10654F9DDCEA9C46CFB77554231BE73B

C:\WINDOWS\system32\svchost.exe
[2004-08-04 07:00] - [2004-08-04 07:00] - 0014336 ____A (Microsoft Corporation) 8F078AE4ED187AAABC0A305146DE6716

C:\WINDOWS\system32\rpcss.dll
[2004-08-04 07:00] - [2009-02-09 05:20] - 0399360 ____A (Microsoft Corporation) 01095FEBF33BEEA00C2A0730B9B3EC28

C:\WINDOWS\system32\services.exe
[2004-08-04 07:00] - [2009-02-06 12:14] - 0110592 ____A (Microsoft Corporation) 37561F8D4160D62DA86D24AE41FAE8DE


Extra List:
=======
AegisP(9) aswTdi(11) Gpc(6) IPSec(4) IWCA(10) NetBT(5) PSched(7) s24trans(8) Tcpip(3)
0x0B000000040000000100000002000000030000000B00000005000000060000000700000008000000090000000A000000
IpSec Tag value is correct.

**** End of log ****

#5 Dark Horse

Dark Horse
  • Topic Starter

  • Members
  • 25 posts
  • OFFLINE
  •  
  • Local time:01:53 PM

Posted 29 January 2013 - 08:38 PM

Mini Tool Box :

MiniToolBox by Farbar Version:10-01-2013
Ran by Imprezzive (administrator) on 29-01-2013 at 20:37:40
Running from "C:\Documents and Settings\Imprezzive.IMPREZA-RS\Desktop"
Microsoft Windows XP Service Pack 2 (X86)
Boot Mode: Normal
***************************************************************************

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

========================= FF Proxy Settings: ==============================

========================= Hosts content: =================================

127.0.0.1 localhost
127.0.0.1 idenupdate.motorola.com

========================= IP Configuration: ================================

Broadcom 440x 10/100 Integrated Controller = Local Area Connection (Disconnected)
Intel® PRO/Wireless 2200BG Network Connection = Wireless Network Connection (Connected)
1394 Net Adapter = 1394 Connection (Connected)


# ----------------------------------
# Interface IP Configuration
# ----------------------------------
pushd interface ip


# Interface IP Configuration for "Wireless Network Connection"

set address name="Wireless Network Connection" source=static addr=192.168.1.100 mask=255.255.255.0
set address name="Wireless Network Connection" gateway=192.168.1.1 gwmetric=0
set dns name="Wireless Network Connection" source=static addr=24.229.54.220 register=PRIMARY
add dns name="Wireless Network Connection" addr=207.44.96.129 index=2
set wins name="Wireless Network Connection" source=static addr=none


popd
# End of interface IP configuration




Windows IP Configuration



Host Name . . . . . . . . . . . . : Impreza-RS

Primary Dns Suffix . . . . . . . :

Node Type . . . . . . . . . . . . : Hybrid

IP Routing Enabled. . . . . . . . : No

WINS Proxy Enabled. . . . . . . . : No



Ethernet adapter Wireless Network Connection:



Connection-specific DNS Suffix . :

Description . . . . . . . . . . . : Intel® PRO/Wireless 2200BG Network Connection

Physical Address. . . . . . . . . : 00-13-CE-21-46-0F

Dhcp Enabled. . . . . . . . . . . : No

IP Address. . . . . . . . . . . . : 192.168.1.100

Subnet Mask . . . . . . . . . . . : 255.255.255.0

Default Gateway . . . . . . . . . : 192.168.1.1

DNS Servers . . . . . . . . . . . : 24.229.54.220

207.44.96.129

DNS request timed out.
timeout was 2 seconds.
Server: dns2.ptd.net
Address: 207.44.96.129

Name: google.com
Addresses: 74.125.226.231, 74.125.226.232, 74.125.226.233, 74.125.226.238
74.125.226.224, 74.125.226.225, 74.125.226.226, 74.125.226.227, 74.125.226.228
74.125.226.229, 74.125.226.230



Pinging google.com [74.125.226.227] with 32 bytes of data:



Reply from 74.125.226.227: bytes=32 time=24ms TTL=58

Reply from 74.125.226.227: bytes=32 time=24ms TTL=58



Ping statistics for 74.125.226.227:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 24ms, Maximum = 24ms, Average = 24ms

DNS request timed out.
timeout was 2 seconds.
Server: dns2.ptd.net
Address: 207.44.96.129

Name: yahoo.com
Addresses: 98.138.253.109, 98.139.183.24, 206.190.36.45



Pinging yahoo.com [206.190.36.45] with 32 bytes of data:



Reply from 206.190.36.45: bytes=32 time=84ms TTL=54

Reply from 206.190.36.45: bytes=32 time=171ms TTL=54



Ping statistics for 206.190.36.45:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 84ms, Maximum = 171ms, Average = 127ms



Pinging 127.0.0.1 with 32 bytes of data:



Reply from 127.0.0.1: bytes=32 time<1ms TTL=64

Reply from 127.0.0.1: bytes=32 time<1ms TTL=64



Ping statistics for 127.0.0.1:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 0ms, Maximum = 0ms, Average = 0ms

===========================================================================
Interface List
0x1 ........................... MS TCP Loopback interface
0x2 ...00 13 ce 21 46 0f ...... Intel® PRO/Wireless 2200BG Network Connection - Packet Scheduler Miniport
===========================================================================
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.1.1 192.168.1.100 25
127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1 1
169.254.0.0 255.255.0.0 192.168.1.100 192.168.1.100 20
192.168.1.0 255.255.255.0 192.168.1.100 192.168.1.100 25
192.168.1.100 255.255.255.255 127.0.0.1 127.0.0.1 25
192.168.1.255 255.255.255.255 192.168.1.100 192.168.1.100 25
224.0.0.0 240.0.0.0 192.168.1.100 192.168.1.100 25
255.255.255.255 255.255.255.255 192.168.1.100 192.168.1.100 1
Default Gateway: 192.168.1.1
===========================================================================
Persistent Routes:
None
========================= Winsock entries =====================================

Catalog5 01 mswsock.dll [File Not found] ()
ATTENTION: The LibraryPath should be "%SystemRoot%\System32\mswsock.dll"

Catalog5 02 C:\Windows\System32\winrnr.dll [16896] (Microsoft Corporation)
Catalog5 03 mswsock.dll [File Not found] ()
ATTENTION: The LibraryPath should be "%SystemRoot%\System32\mswsock.dll"

Catalog5 04 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Catalog9 01 mswsock.dll [File not found] ()
Catalog9 02 mswsock.dll [File not found] ()
Catalog9 03 mswsock.dll [File not found] ()
Catalog9 04 mswsock.dll [File not found] ()
Catalog9 05 mswsock.dll [File not found] ()
Catalog9 06 mswsock.dll [File not found] ()
Catalog9 07 mswsock.dll [File not found] ()
Catalog9 08 mswsock.dll [File not found] ()
Catalog9 09 mswsock.dll [File not found] ()
Catalog9 10 mswsock.dll [File not found] ()
Catalog9 11 mswsock.dll [File not found] ()
Catalog9 12 mswsock.dll [File not found] ()
Catalog9 13 mswsock.dll [File not found] ()
Catalog9 14 mswsock.dll [File not found] ()
Catalog9 15 mswsock.dll [File not found] ()
Catalog9 16 mswsock.dll [File not found] ()
Catalog9 17 mswsock.dll [File not found] ()
Catalog9 18 mswsock.dll [File not found] ()
Catalog9 19 mswsock.dll [File not found] ()
Catalog9 20 mswsock.dll [File not found] ()
Catalog9 21 mswsock.dll [File not found] ()

========================= Event log errors: ===============================

Application errors:
==================
Error: (01/29/2013 08:24:02 PM) (Source: MsiInstaller) (User: IMPREZA-RS)
Description: Product: Jasc Paint Shop Pro Studio, Dell Editon -- Error 1706.No valid source could be found for product Jasc Paint Shop Pro Studio, Dell Editon. The Windows Installer cannot continue.

Error: (01/29/2013 08:08:55 PM) (Source: MsiInstaller) (User: IMPREZA-RS)
Description: Product: Jasc Paint Shop Pro Studio, Dell Editon -- Error 1706.No valid source could be found for product Jasc Paint Shop Pro Studio, Dell Editon. The Windows Installer cannot continue.

Error: (01/29/2013 08:01:44 PM) (Source: MsiInstaller) (User: IMPREZA-RS)
Description: Product: Jasc Paint Shop Pro Studio, Dell Editon -- Error 1706.No valid source could be found for product Jasc Paint Shop Pro Studio, Dell Editon. The Windows Installer cannot continue.

Error: (01/29/2013 08:01:19 PM) (Source: MsiInstaller) (User: IMPREZA-RS)
Description: Product: Jasc Paint Shop Pro Studio, Dell Editon -- Error 1706.No valid source could be found for product Jasc Paint Shop Pro Studio, Dell Editon. The Windows Installer cannot continue.

Error: (01/28/2013 11:54:55 AM) (Source: Application Error) (User: )
Description: Faulting application explorer.exe, version 6.0.2900.2180, faulting module , version 0.0.0.0, fault address 0x00000000.
Processing media-specific event for [explorer.exe!ws!]

Error: (01/28/2013 11:51:39 AM) (Source: Application Error) (User: )
Description: Faulting application explorer.exe, version 6.0.2900.2180, faulting module , version 0.0.0.0, fault address 0x00000000.
Processing media-specific event for [explorer.exe!ws!]

Error: (01/28/2013 11:51:02 AM) (Source: Application Error) (User: )
Description: Faulting application explorer.exe, version 6.0.2900.2180, faulting module , version 0.0.0.0, fault address 0x00000000.
Processing media-specific event for [explorer.exe!ws!]

Error: (01/28/2013 09:28:10 AM) (Source: MsiInstaller) (User: IMPREZA-RS)
Description: Product: Microsoft Office Professional Edition 2003 -- Error 25091. Setup failed to change the source.

Error: (01/28/2013 08:44:18 AM) (Source: MsiInstaller) (User: IMPREZA-RS)
Description: Product: Microsoft Office Professional Edition 2003 -- Error 1311. Source file not found(cabinet): C:\MSOCache\All Users\90000409-6000-11D3-8CFE-0150048383C9\YI561401.CAB. Verify that the file exists and that you can access it.

Error: (01/28/2013 08:44:10 AM) (Source: MsiInstaller) (User: IMPREZA-RS)
Description: Product: Microsoft Office Professional Edition 2003 -- Error 1311. Source file not found(cabinet): C:\MSOCache\All Users\90000409-6000-11D3-8CFE-0150048383C9\YI561401.CAB. Verify that the file exists and that you can access it.


System errors:
=============
Error: (01/29/2013 08:25:16 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service terminated with the following error:
%%1460

Error: (01/29/2013 08:20:32 PM) (Source: Service Control Manager) (User: )
Description: The lxdiCATSCustConnectService service failed to start due to the following error:
%%1053

Error: (01/29/2013 08:20:32 PM) (Source: Service Control Manager) (User: )
Description: Timeout (30000 milliseconds) waiting for the lxdiCATSCustConnectService service to connect.

Error: (01/29/2013 08:11:24 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service terminated with the following error:
%%1460

Error: (01/29/2013 08:06:42 PM) (Source: Service Control Manager) (User: )
Description: The lxdiCATSCustConnectService service failed to start due to the following error:
%%1053

Error: (01/29/2013 08:06:42 PM) (Source: Service Control Manager) (User: )
Description: Timeout (30000 milliseconds) waiting for the lxdiCATSCustConnectService service to connect.

Error: (01/29/2013 08:03:36 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service terminated with the following error:
%%1460

Error: (01/29/2013 07:58:42 PM) (Source: Service Control Manager) (User: )
Description: The lxdiCATSCustConnectService service failed to start due to the following error:
%%1053

Error: (01/29/2013 07:58:42 PM) (Source: Service Control Manager) (User: )
Description: Timeout (30000 milliseconds) waiting for the lxdiCATSCustConnectService service to connect.

Error: (01/28/2013 00:19:27 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service terminated with the following error:
%%1460


Microsoft Office Sessions:
=========================
Error: (01/29/2013 08:24:02 PM) (Source: MsiInstaller)(User: IMPREZA-RS)
Description: Product: Jasc Paint Shop Pro Studio, Dell Editon -- Error 1706.No valid source could be found for product Jasc Paint Shop Pro Studio, Dell Editon. The Windows Installer cannot continue.(NULL)(NULL)(NULL)

Error: (01/29/2013 08:08:55 PM) (Source: MsiInstaller)(User: IMPREZA-RS)
Description: Product: Jasc Paint Shop Pro Studio, Dell Editon -- Error 1706.No valid source could be found for product Jasc Paint Shop Pro Studio, Dell Editon. The Windows Installer cannot continue.(NULL)(NULL)(NULL)

Error: (01/29/2013 08:01:44 PM) (Source: MsiInstaller)(User: IMPREZA-RS)
Description: Product: Jasc Paint Shop Pro Studio, Dell Editon -- Error 1706.No valid source could be found for product Jasc Paint Shop Pro Studio, Dell Editon. The Windows Installer cannot continue.(NULL)(NULL)(NULL)

Error: (01/29/2013 08:01:19 PM) (Source: MsiInstaller)(User: IMPREZA-RS)
Description: Product: Jasc Paint Shop Pro Studio, Dell Editon -- Error 1706.No valid source could be found for product Jasc Paint Shop Pro Studio, Dell Editon. The Windows Installer cannot continue.(NULL)(NULL)(NULL)

Error: (01/28/2013 11:54:55 AM) (Source: Application Error)(User: )
Description: explorer.exe6.0.2900.21800.0.0.000000000

Error: (01/28/2013 11:51:39 AM) (Source: Application Error)(User: )
Description: explorer.exe6.0.2900.21800.0.0.000000000

Error: (01/28/2013 11:51:02 AM) (Source: Application Error)(User: )
Description: explorer.exe6.0.2900.21800.0.0.000000000

Error: (01/28/2013 09:28:10 AM) (Source: MsiInstaller)(User: IMPREZA-RS)
Description: Product: Microsoft Office Professional Edition 2003 -- Error 25091. Setup failed to change the source.(NULL)(NULL)(NULL)

Error: (01/28/2013 08:44:18 AM) (Source: MsiInstaller)(User: IMPREZA-RS)
Description: Product: Microsoft Office Professional Edition 2003 -- Error 1311. Source file not found(cabinet): C:\MSOCache\All Users\90000409-6000-11D3-8CFE-0150048383C9\YI561401.CAB. Verify that the file exists and that you can access it.(NULL)(NULL)(NULL)

Error: (01/28/2013 08:44:10 AM) (Source: MsiInstaller)(User: IMPREZA-RS)
Description: Product: Microsoft Office Professional Edition 2003 -- Error 1311. Source file not found(cabinet): C:\MSOCache\All Users\90000409-6000-11D3-8CFE-0150048383C9\YI561401.CAB. Verify that the file exists and that you can access it.(NULL)(NULL)(NULL)


=========================== Installed Programs ============================

1Click DVD Copy 4.2.9.1
7-Zip 9.20
ABBYY FineReader 6.0 Sprint (Version: 6.00.1990.41618)
Access Remote PC 4.7.2
ACDSee 32
Adobe Acrobat - Reader 6.0.2 Update (Version: 6.0.2)
Adobe Download Manager (Version: 1.6.2.63)
Adobe Flash Player 11 ActiveX (Version: 11.4.402.287)
Adobe Flash Player 11 Plugin (Version: 11.5.502.146)
Adobe Photoshop 7.0 (Version: 7.0)
Adobe Reader 6.0.1 (Version: 006.000.001)
Adobe Shockwave Player (Version: 10.1.4.20)
Advanced SystemCare Ultimate 6 (Version: 6.0.0)
ALPS Touch Pad Driver
Any Video Converter 3.2.0
AnyDVD
AOLIcon (Version: 1.00.0000)
Apple Application Support (Version: 2.1.7)
Apple Mobile Device Support (Version: 4.0.0.97)
Apple Software Update (Version: 2.1.3.127)
ArcSoft Panorama Maker 4
ATI Control Panel (Version: 6.14.10.5125)
ATI Display Driver (Version: 8.063.2.1-041203a-019751C-Dell)
avast! Free Antivirus (Version: 7.0.1474.0)
AviSynth 2.5
AXIS Media Control
Beyond TV DVD Burning Foundation (Version: 1.0.4)
Bonjour (Version: 3.0.0.10)
Broadcom Management Programs 2 (Version: 7.82.01)
CamUniversal (Version: 2.6)
Canon Digital Camera USB WIA Driver
Codec Pack - All In 1 6.0.2.7
Codec Pack Ultimate
Conexant D110 MDC V.9x Modem
CopyToDVD (Version: 3.1.1)
D-i-v-X AVI Codec Pack Pro 2.4.0
Dell Media Experience
Dell Picture Studio v3.0 (Version: 3.0.0)
Dell ResourceCD
Dell Support 3.1 (Version: 5.1.760)
Dell System Restore (Version: 2.00.0000)
DVD Decrypter (Remove Only)
DVDXCopy Xpress 3.2.1
Dyno2003 Advanced Engine Simulation v.4.05 (Version: 4.05.0000)
EASEUS Partition Master 7.1.1 Professional
Easy Loudspeaker Calculator
FinePixViewer Ver.4.0
FLV Player 2.0, build 24 (Version: 2.0, build 24)
Foxit Reader (Version: 3.1.4.1125)
Free Studio version 5.6.3.706 (Version: 5.6.3.706)
FUJIFILM USB Driver
Hard Disk Scrubber v2.1
HD Tune 2.55
HP PhotoSmart Photo Printing Software
HyperCam 2
ImageMixer VCD for FinePix
Intel® PROSet/Wireless Software (Version: 9.00.0000)
Internal Network Card Power Management (Version: 1.7.0)
Internet Explorer Default Page (Version: 1.00.03)
iTunes (Version: 10.5.1.42)
Jasc Paint Shop Pro Studio, Dell Editon (Version: 1.01.0000)
K-Lite Codec Pack 2.26 Standard (Version: 2.26)
Lavasoft VX2 Cleaner
Lexmark 3500-4500 Series
Lexmark Fax Solutions
Lexmark Toolbar
LTspice IV
Macromedia Flash Player (Version: 7.0.19.0)
Max Registry Cleaner (Version: 6.0.0.033)
mCore (Version: 1.19.0000)
mDrWiFi (Version: 1.19.0000)
mHlpDell (Version: 1.19.0000)
Microsoft .NET Framework 1.1 (Version: 1.1.4322)
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 2.0 Service Pack 2 (Version: 2.2.30729)
Microsoft .NET Framework 3.0 Service Pack 2 (Version: 3.2.30729)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft Office Professional Edition 2003 (Version: 11.0.5614.0)
Microsoft Plus! Digital Media Edition Installer (Version: 1.1.0.3514)
Microsoft Plus! for Windows XP (Version: 1.00.00.0554)
Microsoft Plus! Photo Story 2 LE (Version: 1.1.0.3463)
Microsoft Silverlight (Version: 5.1.10411.0)
Microsoft Streets and Trips 2002 (Version: 9.00.17.0200)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Works 2002 Setup Launcher
mIWA (Version: 1.19.0000)
mIWCA (Version: 1.19.0000)
mLogView (Version: 1.19.0000)
mMHouse (Version: 1.19.0000)
MobileMe Control Panel (Version: 3.1.6.0)
Modem Helper (Version: 2.41)
Mozilla Firefox (3.6.24) (Version: 3.6.24 (en-US))
mPfMgr (Version: 1.19.0000)
mPfWiz (Version: 1.19.0000)
mProSafe (Version: 9.00.0000)
mSSO (Version: 1.19.0000)
MSXML 4.0 SP2 (KB927978) (Version: 4.20.9841.0)
MSXML 4.0 SP2 (KB936181) (Version: 4.20.9848.0)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
MSXML 6 Service Pack 2 (KB973686) (Version: 6.20.2003.0)
mToolkit (Version: 1.19.0000)
mWlsSafe (Version: 9.00.0000)
mXML (Version: 1.19.0000)
mZConfig (Version: 1.19.0000)
Nero Media Player
Nero OEM
Netscape
NetWaiting (Version: 2.5.16)
NEXTPIMP Media Center BETA RC2.1 (Version: BETA RC2.1)
Nikon Message Center (Version: 0.92.000)
Nikon Transfer (Version: 1.0.2)
PowerDVD 5.5
QuickSet (Version: 4.7.0)
QuickTime (Version: 7.72.80.56)
RAW FILE CONVERTER LE
RealPlayer Basic
SmartyUDCsw 1.1.4 (Version: 1.1.4.0)
Sothink Movie DVD Maker (Version: 3.6)
Speex Voice Audio CODEC
TreeSize Free V2.7 (Version: 2.7)
UltimateZip 2.6 (Version: 2.6)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Windows Internet Explorer 8 (KB976662) (Version: 1)
Update for Windows XP (KB925720) (Version: 1)
Update for Windows XP (KB955759) (Version: 1)
Update for Windows XP (KB967715) (Version: 1)
Update for Windows XP (KB968389) (Version: 1)
Update for Windows XP (KB971737) (Version: 1)
Update for Windows XP (KB973687) (Version: 1)
Update for Windows XP (KB973815) (Version: 1)
Viewpoint Media Player
Visual C++ 2008 x86 Runtime - (v9.0.30729) (Version: 9.0.30729)
Visual C++ 2008 x86 Runtime - v9.0.30729.01 (Version: 9.0.30729.01)
Visual Studio 2005 Redist Package (Version: 1.0.0)
WebFldrs XP (Version: 9.50.7523)
Winamp (remove only)
Windows Defender Signatures (Version: 1.20.0.0)
Windows Installer 3.1 (KB893803) (Version: 3.1)
Windows Internet Explorer 8 (Version: 20090308.140743)
Windows Media Format 11 runtime
Windows Media Format Runtime
Windows Media Player 10
Windows Media Player 10 (Version: 9.00.3636)
Windows Media Player 11
WinRAR archiver
Works Suite OS Pack (Version: 1.0.0.0000)
Works Synchronization (Version: 1.0.0.0000)
XP Codec Pack
Xvid 1.2.1 final uninstall (Version: 1.2)
ZoneAlarm (Version: 7.0.483.000)

========================= Devices: ================================

Name: Broadcom 440x 10/100 Integrated Controller
Description: Broadcom 440x 10/100 Integrated Controller
Class Guid: {4D36E972-E325-11CE-BFC1-08002BE10318}
Manufacturer: Broadcom
Service: bcm4sbxp
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


========================= Memory info: ===================================

Percentage of memory in use: 33%
Total physical RAM: 2047.4 MB
Available physical RAM: 1370.34 MB
Total Pagefile: 3940.13 MB
Available Pagefile: 3390.95 MB
Total Virtual: 2047.88 MB
Available Virtual: 1970.85 MB

========================= Partitions: =====================================

1 Drive c: () (Fixed) (Total:70.9 GB) (Free:9.64 GB) NTFS
3 Drive j: () (Fixed) (Total:223.56 GB) (Free:212.71 GB) NTFS

========================= Users: ========================================

User accounts for \\IMPREZA-RS

Administrator Guest HelpAssistant
Imprezzive SUPPORT_388945a0


**** End of log ****

#6 Dark Horse

Dark Horse
  • Topic Starter

  • Members
  • 25 posts
  • OFFLINE
  •  
  • Local time:01:53 PM

Posted 29 January 2013 - 08:53 PM

aswMBR :

aswMBR version 0.9.9.1707 Copyright© 2011 AVAST Software
Run date: 2013-01-29 20:42:57
-----------------------------
20:42:57.250 OS Version: Windows 5.1.2600 Service Pack 2
20:42:57.250 Number of processors: 1 586 0xD08
20:42:57.250 ComputerName: IMPREZA-RS UserName: Imprezzive
20:42:59.796 Initialize success
20:43:00.781 AVAST engine defs: 13012903
20:43:08.640 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3
20:43:08.640 Disk 0 Vendor: WDC_WD3200BEVE-00A0HT0 11.01A11 Size: 305245MB BusType: 3
20:43:08.671 Disk 0 MBR read successfully
20:43:08.671 Disk 0 MBR scan
20:43:08.687 Disk 0 Windows XP default MBR code
20:43:08.687 Disk 0 Partition 1 00 06 FAT16 Dell 4.1 54 MB offset 63
20:43:08.703 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 72606 MB offset 112455
20:43:08.734 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 228926 MB offset 148810095
20:43:08.734 Disk 0 scanning sectors +617651055
20:43:08.781 Disk 0 scanning C:\WINDOWS\system32\drivers
20:43:20.703 Service scanning
20:43:36.609 Service vsdatant C:\WINDOWS\System32\vsdatant.sys **LOCKED** 32
20:43:39.093 Modules scanning
20:43:50.593 Disk 0 trace - called modules:
20:43:50.609 ntkrnlpa.exe CLASSPNP.SYS disk.sys atapi.sys hal.dll pciide.sys
20:43:50.609 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8a60cab8]
20:43:50.625 3 CLASSPNP.SYS[ba10905b] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-3[0x8a5adb00]
20:43:52.015 AVAST engine scan C:\WINDOWS
20:43:58.281 AVAST engine scan C:\WINDOWS\system32
20:46:56.750 File: C:\WINDOWS\assembly\GAC\Desktop.ini **INFECTED** Win32:Sirefef-PL [Rtk]
20:47:35.078 AVAST engine scan C:\WINDOWS\system32\drivers
20:47:59.609 AVAST engine scan C:\Documents and Settings\Imprezzive.IMPREZA-RS
20:48:30.125 AVAST engine scan C:\Documents and Settings\All Users
20:51:42.500 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\Imprezzive.IMPREZA-RS\Desktop\MBR.dat"
20:51:42.531 The log file has been saved successfully to "C:\Documents and Settings\Imprezzive.IMPREZA-RS\Desktop\aswMBR.txt"


aswMBR version 0.9.9.1707 Copyright© 2011 AVAST Software
Run date: 2013-01-29 20:42:57
-----------------------------
20:42:57.250 OS Version: Windows 5.1.2600 Service Pack 2
20:42:57.250 Number of processors: 1 586 0xD08
20:42:57.250 ComputerName: IMPREZA-RS UserName: Imprezzive
20:42:59.796 Initialize success
20:43:00.781 AVAST engine defs: 13012903
20:43:08.640 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3
20:43:08.640 Disk 0 Vendor: WDC_WD3200BEVE-00A0HT0 11.01A11 Size: 305245MB BusType: 3
20:43:08.671 Disk 0 MBR read successfully
20:43:08.671 Disk 0 MBR scan
20:43:08.687 Disk 0 Windows XP default MBR code
20:43:08.687 Disk 0 Partition 1 00 06 FAT16 Dell 4.1 54 MB offset 63
20:43:08.703 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 72606 MB offset 112455
20:43:08.734 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 228926 MB offset 148810095
20:43:08.734 Disk 0 scanning sectors +617651055
20:43:08.781 Disk 0 scanning C:\WINDOWS\system32\drivers
20:43:20.703 Service scanning
20:43:36.609 Service vsdatant C:\WINDOWS\System32\vsdatant.sys **LOCKED** 32
20:43:39.093 Modules scanning
20:43:50.593 Disk 0 trace - called modules:
20:43:50.609 ntkrnlpa.exe CLASSPNP.SYS disk.sys atapi.sys hal.dll pciide.sys
20:43:50.609 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x8a60cab8]
20:43:50.625 3 CLASSPNP.SYS[ba10905b] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-3[0x8a5adb00]
20:43:52.015 AVAST engine scan C:\WINDOWS
20:43:58.281 AVAST engine scan C:\WINDOWS\system32
20:46:56.750 File: C:\WINDOWS\assembly\GAC\Desktop.ini **INFECTED** Win32:Sirefef-PL [Rtk]
20:47:35.078 AVAST engine scan C:\WINDOWS\system32\drivers
20:47:59.609 AVAST engine scan C:\Documents and Settings\Imprezzive.IMPREZA-RS
20:48:30.125 AVAST engine scan C:\Documents and Settings\All Users
20:51:42.500 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\Imprezzive.IMPREZA-RS\Desktop\MBR.dat"
20:51:42.531 The log file has been saved successfully to "C:\Documents and Settings\Imprezzive.IMPREZA-RS\Desktop\aswMBR.txt"
20:52:38.468 Scan finished successfully
20:52:46.093 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\Imprezzive.IMPREZA-RS\Desktop\MBR.dat"
20:52:46.125 The log file has been saved successfully to "C:\Documents and Settings\Imprezzive.IMPREZA-RS\Desktop\aswMBR.txt"

#7 Broni

Broni

    The Coolest BC Computer


  • BC Advisor
  • 42,754 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Daly City, CA
  • Local time:10:53 AM

Posted 29 January 2013 - 08:59 PM

You're infected with ZeroAccess rootkit.
It'll require elevated help.

Please follow the instructions in ==>This Guide<== starting at Step 6. If you cannot complete a step, skip it and continue.

Once the proper logs are created, then make a NEW TOPIC and post it ==>HERE<== Please include a description of your computer issues, what you have done to resolve them, and a link to this topic.

If you can produce at least some of the logs, then please create the new topic and explain what happens when you try to create the log(s) that you couldn't get. If you cannot produce any of the logs, then still post the topic and explain that you followed the Prep. Guide, were unable to create the logs, and describe what happens when you try to create the logs.

It would be helpful if you post a note here once you have completed the steps in the guide and have started your topic in malware removal. Good luck and be patient.

If HelpBot replies to your topic, PLEASE follow Step One so it will report your topic to the team members.

My Website

My help doesn't cost a penny, but if you'd like to consider a donation, click DONATE

 


#8 Dark Horse

Dark Horse
  • Topic Starter

  • Members
  • 25 posts
  • OFFLINE
  •  
  • Local time:01:53 PM

Posted 29 January 2013 - 09:08 PM

Malware Bytes i had trouble downloading from your link, i downloaded it from download.com. Program is still running now.

Will i be able to get my desktop and files back?

I just found in my document and settings folder it made multiple folders with similar names so its loading off the wrong folder. How do i get it back to the right one?

Sorry im a mess and this laptop is a mess and im just getting frustrated!

Edited by Dark Horse, 29 January 2013 - 10:22 PM.


#9 Broni

Broni

    The Coolest BC Computer


  • BC Advisor
  • 42,754 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Daly City, CA
  • Local time:10:53 AM

Posted 29 January 2013 - 10:02 PM

You have to follow my previous reply.

My Website

My help doesn't cost a penny, but if you'd like to consider a donation, click DONATE

 


#10 Dark Horse

Dark Horse
  • Topic Starter

  • Members
  • 25 posts
  • OFFLINE
  •  
  • Local time:01:53 PM

Posted 30 January 2013 - 05:45 AM

9hrs later malwarebytes is still running. 0 objects detected so far. 534288 objects scanned.

Sorry im still waiting for malwarebytes to finish. all others have been finished and posted.

20hrs later malwarebytes is still running. 0 objects detected so far. 1111050 objects scanned.

Edited by Dark Horse, 30 January 2013 - 04:53 PM.


#11 Broni

Broni

    The Coolest BC Computer


  • BC Advisor
  • 42,754 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Daly City, CA
  • Local time:10:53 AM

Posted 30 January 2013 - 07:55 PM

Keep me posted....

My Website

My help doesn't cost a penny, but if you'd like to consider a donation, click DONATE

 


#12 Dark Horse

Dark Horse
  • Topic Starter

  • Members
  • 25 posts
  • OFFLINE
  •  
  • Local time:01:53 PM

Posted 31 January 2013 - 06:20 AM

Scan finally ended this is what we got.

This was view log before delete

Malwarebytes Anti-Malware 1.70.0.1100
www.malwarebytes.org

Database version: v2013.01.29.11

Windows XP Service Pack 2 x86 NTFS
Internet Explorer 8.0.6001.18702
Imprezzive :: IMPREZA-RS [administrator]

1/29/2013 8:49:25 PM
MBAM-log-2013-01-31 (06-07-15).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 1696249
Time elapsed: 1 day(s), 4 hour(s), 57 minute(s), 7 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 2
HKLM\SOFTWARE\xpre (Trojan.Downloader) -> No action taken.
HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON\NOTIFY\mdhcp32 (Trojan.Winlogon) -> No action taken.

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 3
HKLM\SOFTWARE\Microsoft\Security Center|AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKLM\SOFTWARE\Microsoft\Security Center|FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.
HKLM\SOFTWARE\Microsoft\Security Center|UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> No action taken.

Folders Detected: 4
C:\Program Files\FLV Direct Player (Adware.BHO.FL) -> No action taken.
C:\Program Files\FLV Direct Player\Skin (Adware.BHO.FL) -> No action taken.
C:\Program Files\FLV Direct Player\Skin\DirectFLV (Adware.BHO.FL) -> No action taken.
C:\Documents and Settings\All Users\Start Menu\Programs\FLV Direct Player (Adware.FLVPlayer) -> No action taken.

Files Detected: 10
C:\Program Files\FLV Direct Player\downloading.swf (Adware.BHO.FL) -> No action taken.
C:\Program Files\FLV Direct Player\player.swf (Adware.BHO.FL) -> No action taken.
C:\Program Files\FLV Direct Player\preload.swf (Adware.BHO.FL) -> No action taken.
C:\Program Files\FLV Direct Player\Skin\DirectFLV\Button.bmp (Adware.BHO.FL) -> No action taken.
C:\Program Files\FLV Direct Player\Skin\DirectFLV\Logo.bmp (Adware.BHO.FL) -> No action taken.
C:\Program Files\FLV Direct Player\Skin\DirectFLV\skin.xml (Adware.BHO.FL) -> No action taken.
C:\Program Files\FLV Direct Player\Skin\DirectFLV\SysCloseButton.bmp (Adware.BHO.FL) -> No action taken.
C:\Program Files\FLV Direct Player\Skin\DirectFLV\SysMaxButton.bmp (Adware.BHO.FL) -> No action taken.
C:\Program Files\FLV Direct Player\Skin\DirectFLV\SysMinButton.bmp (Adware.BHO.FL) -> No action taken.
C:\Program Files\FLV Direct Player\Skin\DirectFLV\Window.bmp (Adware.BHO.FL) -> No action taken.

(end)


I have started the post in the other section like you asked.

#13 Broni

Broni

    The Coolest BC Computer


  • BC Advisor
  • 42,754 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Daly City, CA
  • Local time:10:53 AM

Posted 31 January 2013 - 06:36 PM

Posted Image

My Website

My help doesn't cost a penny, but if you'd like to consider a donation, click DONATE

 


#14 Dark Horse

Dark Horse
  • Topic Starter

  • Members
  • 25 posts
  • OFFLINE
  •  
  • Local time:01:53 PM

Posted 31 January 2013 - 07:02 PM

thanks for your help. ill let you know how the next tech make out.

#15 Dark Horse

Dark Horse
  • Topic Starter

  • Members
  • 25 posts
  • OFFLINE
  •  
  • Local time:01:53 PM

Posted 04 February 2013 - 04:46 PM

well my hd went from 8-9gig to 42gig. im not sure which program did it, im thinking the combofix.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users