Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Pop-Ups on Explorer I can't get rid off.


  • Please log in to reply
16 replies to this topic

#1 Horse Box

Horse Box

  • Members
  • 65 posts
  • OFFLINE
  •  
  • Local time:02:56 PM

Posted 12 March 2013 - 06:01 PM

Hello all,
 
I am using Explorer and all the thime now a pop up "Ad" saying I have 1 message, click now to see it, also I have a pop up web site wanting me to take a survey.  I have run AVG and SuperAntiSpyware but they can't detect it.
 
Can some one help me to eliminate this?
 
 
Many thanks
 
 
Horse Box

Edited by bloopie, 13 March 2013 - 05:41 PM.
Mod Edit: Moved topic from AV to Aii. ~bloopie

Nie ma satso

BC AdBot (Login to Remove)

 


#2 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:12:56 AM

Posted 12 March 2013 - 06:49 PM

Hi -

I'd like you to scan your machine with ESET OnlineScan
1.Hold down Control and click HERE to open ESET OnlineScan in a new window.
2.Click the ESET Online Scanner button.

 

3 .NOTE :.For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)


1.Click on esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop.
2.Double click on the ESET Online Scanner icon on your desktop.

 

4.Check "YES, I accept the Terms of Use."
 5.Click the Start button.
 6.Accept any security warnings from your browser.
 7.Under scan settings, check "Scan Archives" and "Remove found threats"
8.Click Advanced settings and select the following:
Scan potentially unwanted applications
Scan for potentially unsafe applications
Enable Anti-Stealth technology

 9.ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this will take some time to download the program for a first time, and then download updated data base (3 hours is not unusual)
10.When the scan completes, click List Threats
11.Click Export, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
12.Click the Back button.
13.Click the Finish button

 

 

Download and install Malwarebytes Anti-Malware Free -
Double Click mbam-setup.exe to install the application.

  • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select "Perform Quick Scan", then click Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy&Paste the entire report in your next reply.

If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process,if asked to restart the computer,please do so immediatly.

 

 

Thank You -


Edited by noknojon, 12 March 2013 - 07:01 PM.


#3 Horse Box

Horse Box
  • Topic Starter

  • Members
  • 65 posts
  • OFFLINE
  •  
  • Local time:02:56 PM

Posted 13 March 2013 - 04:58 PM

I tried downloading ESET but encountered a problem looking for proxy, but i did run Malware and it found nothing even though this pop up keeps appearing..  any suggestions

 

Horse Box


Nie ma satso

#4 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:12:56 AM

Posted 13 March 2013 - 05:32 PM

Hi -
Did you try to disable your own installed Antivirus while you were doing this, as they can clash ??
How To Temporarily Disable Your Anti-virus

 

Download Security Check by Screen317 from Here
* Save it to your Desktop.
* Double-click SecurityCheck.exe
* Follow the onscreen instructions inside of the black box.
* A Notepad document should open automatically called checkup.txt; please post the contents of that document.
Note: If a security program requests permission to access the Internet, allow it to do so.

 

Thank You -



#5 Horse Box

Horse Box
  • Topic Starter

  • Members
  • 65 posts
  • OFFLINE
  •  
  • Local time:02:56 PM

Posted 14 March 2013 - 02:34 PM

I ran the security check, find below its result:-

 

 Results of screen317's Security Check version 0.99.61 
 Windows XP Service Pack 3 x86 (UAC is disabled!) 
 Internet Explorer 8 
``````````````Antivirus/Firewall Check:``````````````
 Windows Security Center service is not running! This report may not be accurate!
PC Cleaner Pro  
 Antivirus up to date! (On Access scanning disabled!)
`````````Anti-malware/Other Utilities Check:`````````
 SUPERAntiSpyware    
 Malwarebytes Anti-Malware version 1.70.0.1100 
 AVG PC Tuneup 2011 
 Java™ 6 Update 29 
 Java version out of Date!
 Adobe Flash Player  11.6.602.180 
 Adobe Reader 7 Adobe Reader out of Date!
````````Process Check: objlist.exe by Laurent```````` 
 AVG avgwdsvc.exe
 AVG avgtray.exe
 AVG avgrsx.exe
 AVG avgnsx.exe
 AVG avgemc.exe
`````````````````System Health check`````````````````
 Total Fragmentation on Drive C:: 13% Defragment your hard drive soon! (Do NOT defrag if SSD!)
````````````````````End of Log``````````````````````

 

Thank you

 

Horse Box


Nie ma satso

#6 Horse Box

Horse Box
  • Topic Starter

  • Members
  • 65 posts
  • OFFLINE
  •  
  • Local time:02:56 PM

Posted 14 March 2013 - 04:06 PM

Hi result of ESET scan

 

C:\Documents and Settings\Finbarr\Application Data\AVG\Rescue\PC Tuneup 2011\130123183011015.rsc a variant of Java/Exploit.CVE-2012-0507.FQ trojan deleted - quarantined
C:\Program Files\FriendsChecker\Chrome\Chrome.crx Win32/ExFriendAlert.A application deleted - quarantined

 

Horse Box


Nie ma satso

#7 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:12:56 AM

Posted 14 March 2013 - 04:17 PM

As I was about to post I saw you did get the scan to run - Well Done -

 

PC Cleaner Pro falls under the general category of a registry cleaner for computer systems that are running under the Microsoft Windows Operating System platform. This should be removed, and a Free Antivirus needs to be installed.

Please see under Antivirus Choices for directions on removal -


According to the scan, you have no Antivirus program installed at this time -
It is extremely dangerous to go online without an Antivirus program.
Without one, you are extremely likely to get infected. I can't tell you which one is the best because determining that is generally not feasible; however, I can give you my strong recommendations for programs that I have tested and that I trust.
All of the following are excellent free (not free trials of) antiviruses. Be sure to only install one.
Microsoft Security Essentials (what I currently use)
Avira AntiVir
avast!
AVG


In order to uninstall PC Cleaner Pro, follow these steps:
1) Restart the computer into Safe Mode
2) Press 'Start'
3) Go to 'Control Panel'
4) Find and open 'Add/Remove Programs'
5) Look for PC Cleaner Pro and click on it, then select Remove or Delete - This program may cause Pop-Ups -

You will see an 'Uninstall button' on the bottom right side of the PC Cleaner's "Call us" popup. Press it and complete the uninstall instructions
6) Restart the computer into Normal Mode.
Now recheck that it is not listed in Programs -

 

Java™ 6 Update 29  - Java version out of Date! Currently Java is Version7 Update17
Look in Control Panel for a Java icon, Open it, The second tab is Update -
Tell me if no Icon is there and I can list how to update it - Uninstall all older versions of Java -

 

Total Fragmentation on Drive C:: 13% Defragment your hard drive soon! (Do NOT defrag if SSD!)
One way to Auto Defragment your Hard Drive:
•Please copy and paste the following text in the Code box exactly as written into notepad (not wordpad or any other text editor):

defrag "%systemdrive%"
del /f /q %0

•Once you've done that click on File and select Save As...
•In the Save dialogue box click on the drop down menu next to Save as type and select All Files
•Name the file defrag.bat (the .bat extension is very important)
•Save the file to your desktop and double click it to run it if running Windows XP.

 

Please let me know if you have any problems, so I can add the next steps -

 

Thank You -

 

Edited for spelling only -


Edited by noknojon, 14 March 2013 - 04:21 PM.


#8 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:12:56 AM

Posted 15 March 2013 - 03:00 AM

Hello -

As you posted the infections Java/Exploit.CVE-2012-0507.FQ trojan and Win32/ExFriendAlert.A application, I did check both, and found that one is outdated Java related, and the second is now a banned program -

 

I have decided to post these next instructions rather than wait, as you may be busy, or only have limited computer time -

First -

This file is not by BleepingComputer. It was privately created by AdvancedSetup, a Forum Administrator  from Malwarebytes Forum, as PC Cleaner Pro has been considered a very hard program to be removed PC Cleaner Pro Nuke.exe. Click Run and follow all instructions.

 

Next -
For alternate Java install, please visit => http://www.java.com/inc/BrowserRedirect1.jsp
You will be offered an ASK Toolbar during download, please untick this as it is not part of Java -

 

Click on the Free Java Download button - It should list Version7 Update17 -

Click on Agree and Start Free Download button >
Click Run > Run > Click Install - Untick the "ASK Toolbar" option here, and complete the Java Update -

 

Also do the following: - Empty the Java cache

 

Next -
When finished Java - Download AdWare Cleaner and install it
Close all open programs and browsers as the program will reboot your computer
NOTE: You may need to disable your Antivirus while this runs. Information on A/V control (temp disable) HERE, if needed
XP users Double click on the program to run it
Select DELETE
Confirm each time with OK
Your computer will Reboot and a notepad text will show the results
Please post that back here

 

Last -
Remove temporary and junk files
To clean out your temporary internet files and temp files.
Download TFC by OldTimer from HERE to your desktop.
Double-click TFC.exe to run it.
NOTE - TFC will close all programs when run, so make sure you have saved all your work before you begin.* Click the Start button to begin the cleaning process.
* Depending on how often you clean temp files, run time should be anywhere from a few seconds to several minutes.
* Please let TFC run uninterrupted until it is finished.Once TFC is finished it should restart your computer. If it does not, please manually Reboot the computer yourself to ensure a complete cleaning.

 

Please confirm if any of these options has worked, and how your computer is running now -

 

Thank You -

EDIT to add -

Please note that AVG PC Tuneup 2011 is not an Antivirus program. It is just another Registry Cleaner/Optimiser program.


Edited by noknojon, 15 March 2013 - 03:12 AM.


#9 Horse Box

Horse Box
  • Topic Starter

  • Members
  • 65 posts
  • OFFLINE
  •  
  • Local time:02:56 PM

Posted 15 March 2013 - 06:26 PM

I have tried to run Cleaner Pro nuke.exe but the error message "Not a valid Win32 program" keeps appearing.

 

I have installed Java 7 Update17,no probs.

The Java icon is not visable in the control.

 I have limited time on the PC and will try to get the other programs run.

 

P.S. I tried to start the computer in Safe Mode but halt at an AVG file then I get a blue screen saying I need to check for a virus, but if I load the Windows normal I have no probs, just thought I should mention this.

 

Horse Box


Nie ma satso

#10 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:12:56 AM

Posted 15 March 2013 - 08:59 PM

Hi -

No problems with your answer, but you must try and remove PC Cleaner Pro, as it will be one of your problems.

AVG PC Tuneup 2011 is not AVG Antivirus program, but just a repair program, and can be removed -

 

Please try to be sure to install any free Antivirus program like the ones listed above ASAP.

This is another reason why you are not able to clean your computer fully -

 

Thank You -



#11 Horse Box

Horse Box
  • Topic Starter

  • Members
  • 65 posts
  • OFFLINE
  •  
  • Local time:02:56 PM

Posted 18 March 2013 - 05:12 AM

I have AVG 2013 running on the sytem but I cannot seem to further any of the other instructions you have given.

 

PC Cleaner Pro, I cannot run the clean program

I can't empty the Java cache as I connot locate the Java Control Panel, its simply not where it should be.

I have installed Java 7

I do not want to do Adware cleaner as i have not emptied the Java cache as instructed.

I have looked into removing PC Cleaner Pro manually and discovered its looks quite complicated way above my ability unfortunately.

 

Is there anything else I can do to remove PC Cleaner Pro

 

Horse box


Nie ma satso

#12 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:12:56 AM

Posted 18 March 2013 - 05:49 AM

Hi -

Often you must disable your Antivirus to run many programs - Information on A/V control (temporary disable) HERE if needed

 

Please try the disable Antivirus option while removing the program, and follow directions at Post #8 -

 

Thank You -



#13 noknojon

noknojon

  • Banned
  • 10,871 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:12:56 AM

Posted 18 March 2013 - 07:03 AM

Please download MiniToolBox, Save it to your desktop
Close any Firefox browsers you may have open -
Double click the icon to launch the program
Make sure the following options are checked:

  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Devices (Problem only)
  • List Users, Partitions and Memory size.
    Click Go and once the scan is completed a Result.txt Notepad document will open on your desktop
    Please copy and paste the contents in your reply



#14 Horse Box

Horse Box
  • Topic Starter

  • Members
  • 65 posts
  • OFFLINE
  •  
  • Local time:02:56 PM

Posted 18 March 2013 - 05:49 PM

MiniToolBox by Farbar  Version:05-03-2013
Ran by Finbarr (administrator) on 18-03-2013 at 22:47:06
Running from "C:\Documents and Settings\Desktop"
Microsoft Windows XP Service Pack 3 (X86)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================


Windows IP Configuration

 

Successfully flushed the DNS Resolver Cache.


========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.
========================= Hosts content: =================================


127.0.0.1       localhost

========================= IP Configuration: ================================

Intel® 82562V 10/100 Network Connection = Local Area Connection (Connected)


# ----------------------------------
# Interface IP Configuration        
# ----------------------------------
pushd interface ip


# Interface IP Configuration for "Local Area Connection"

set address name="Local Area Connection" source=dhcp
set dns name="Local Area Connection" source=dhcp register=PRIMARY
set wins name="Local Area Connection" source=dhcp


popd
# End of interface IP configuration

 


Windows IP Configuration

 

        Host Name . . . . . . . . . . . . : D890PL2J

        Primary Dns Suffix  . . . . . . . :

        Node Type . . . . . . . . . . . . : Hybrid

        IP Routing Enabled. . . . . . . . : No

        WINS Proxy Enabled. . . . . . . . : No

        DNS Suffix Search List. . . . . . : Home

 

Ethernet adapter Local Area Connection:

 

        Connection-specific DNS Suffix  . : Home

        Description . . . . . . . . . . . : Intel® 82562V 10/100 Network Connection

        Physical Address. . . . . . . . . : 00-16-76-C3-52-0D

        Dhcp Enabled. . . . . . . . . . . : Yes

        Autoconfiguration Enabled . . . . : Yes

        IP Address. . . . . . . . . . . . : 192.168.0.2

        Subnet Mask . . . . . . . . . . . : 255.255.255.0

        Default Gateway . . . . . . . . . : 192.168.0.1

        DHCP Server . . . . . . . . . . . : 192.168.0.1

        DNS Servers . . . . . . . . . . . : 192.168.0.1

        Lease Obtained. . . . . . . . . . : 18 March 2013 22:05:16

        Lease Expires . . . . . . . . . . : 19 March 2013 22:05:16

Server:  MyRouter.Home
Address:  192.168.0.1

Name:    google.com
Addresses:  173.194.41.110, 173.194.41.96, 173.194.41.97, 173.194.41.98
   173.194.41.99, 173.194.41.100, 173.194.41.101, 173.194.41.102, 173.194.41.103
   173.194.41.104, 173.194.41.105

 

Pinging google.com [173.194.41.110] with 32 bytes of data:

 

Reply from 173.194.41.110: bytes=32 time=58ms TTL=58

Reply from 173.194.41.110: bytes=32 time=59ms TTL=58

 

Ping statistics for 173.194.41.110:

    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

    Minimum = 58ms, Maximum = 59ms, Average = 58ms

Server:  MyRouter.Home
Address:  192.168.0.1

Name:    yahoo.com
Addresses:  98.139.183.24, 206.190.36.45, 98.138.253.109

 

Pinging yahoo.com [98.139.183.24] with 32 bytes of data:

 

Reply from 98.139.183.24: bytes=32 time=311ms TTL=50

Reply from 98.139.183.24: bytes=32 time=343ms TTL=50

 

Ping statistics for 98.139.183.24:

    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

    Minimum = 311ms, Maximum = 343ms, Average = 327ms

 

Pinging 127.0.0.1 with 32 bytes of data:

 

Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

 

Ping statistics for 127.0.0.1:

    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

    Minimum = 0ms, Maximum = 0ms, Average = 0ms

===========================================================================
Interface List
0x1 ........................... MS TCP Loopback interface
0x2 ...00 16 76 c3 52 0d ...... Intel® 82562V 10/100 Network Connection - Packet Scheduler Miniport
===========================================================================
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0      192.168.0.1     192.168.0.2   20
        127.0.0.0        255.0.0.0        127.0.0.1       127.0.0.1   1
      192.168.0.0    255.255.255.0      192.168.0.2     192.168.0.2   20
      192.168.0.2  255.255.255.255        127.0.0.1       127.0.0.1   20
    192.168.0.255  255.255.255.255      192.168.0.2     192.168.0.2   20
        224.0.0.0        240.0.0.0      192.168.0.2     192.168.0.2   20
  255.255.255.255  255.255.255.255      192.168.0.2     192.168.0.2   1
Default Gateway:       192.168.0.1
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\System32\mswsock.dll [245248] (Microsoft Corporation)
Catalog5 02 C:\Windows\System32\winrnr.dll [16896] (Microsoft Corporation)
Catalog5 03 C:\Windows\System32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 01 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 02 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 03 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 04 C:\Windows\system32\rsvpsp.dll [92672] (Microsoft Corporation)
Catalog9 05 C:\Windows\system32\rsvpsp.dll [92672] (Microsoft Corporation)
Catalog9 06 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 07 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 08 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 09 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 10 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 11 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 12 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 13 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (03/18/2013 10:06:38 AM) (Source: ESENT) (User: )
Description: Catalog Database (1056) Unable to write a shadowed header for file C:\WINDOWS\system32\CatRoot2\edb.chk. Error -1032.

Error: (03/18/2013 10:06:38 AM) (Source: ESENT) (User: )
Description: svchost (1056) An attempt to open the file "C:\WINDOWS\system32\CatRoot2\edb.chk" for read / write access failed with system error 32 (0x00000020): "The process cannot access the file because it is being used by another process. ".  The open file operation will fail with error -1032 (0xfffffbf8).

Error: (03/18/2013 10:06:07 AM) (Source: ESENT) (User: )
Description: Catalog Database (1056) Unable to write a shadowed header for file C:\WINDOWS\system32\CatRoot2\edb.chk. Error -1032.

Error: (03/18/2013 10:06:07 AM) (Source: ESENT) (User: )
Description: svchost (1056) An attempt to open the file "C:\WINDOWS\system32\CatRoot2\edb.chk" for read / write access failed with system error 32 (0x00000020): "The process cannot access the file because it is being used by another process. ".  The open file operation will fail with error -1032 (0xfffffbf8).

Error: (03/18/2013 10:05:36 AM) (Source: ESENT) (User: )
Description: Catalog Database (1056) Unable to write a shadowed header for file C:\WINDOWS\system32\CatRoot2\edb.chk. Error -1032.

Error: (03/18/2013 10:05:36 AM) (Source: ESENT) (User: )
Description: svchost (1056) An attempt to open the file "C:\WINDOWS\system32\CatRoot2\edb.chk" for read / write access failed with system error 32 (0x00000020): "The process cannot access the file because it is being used by another process. ".  The open file operation will fail with error -1032 (0xfffffbf8).

Error: (03/18/2013 10:05:05 AM) (Source: ESENT) (User: )
Description: Catalog Database (1056) Unable to write a shadowed header for file C:\WINDOWS\system32\CatRoot2\edb.chk. Error -1032.

Error: (03/18/2013 10:05:05 AM) (Source: ESENT) (User: )
Description: svchost (1056) An attempt to open the file "C:\WINDOWS\system32\CatRoot2\edb.chk" for read / write access failed with system error 32 (0x00000020): "The process cannot access the file because it is being used by another process. ".  The open file operation will fail with error -1032 (0xfffffbf8).

Error: (03/18/2013 10:04:34 AM) (Source: ESENT) (User: )
Description: Catalog Database (1056) Unable to write a shadowed header for file C:\WINDOWS\system32\CatRoot2\edb.chk. Error -1032.

Error: (03/18/2013 10:04:34 AM) (Source: ESENT) (User: )
Description: svchost (1056) An attempt to open the file "C:\WINDOWS\system32\CatRoot2\edb.chk" for read / write access failed with system error 32 (0x00000020): "The process cannot access the file because it is being used by another process. ".  The open file operation will fail with error -1032 (0xfffffbf8).


System errors:
=============
Error: (03/18/2013 10:07:06 PM) (Source: Service Control Manager) (User: )
Description: The NVIDIA Display Driver Service service terminated unexpectedly.  It has done this 1 time(s).

Error: (03/18/2013 10:07:06 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service terminated with the following error:
%%1060

Error: (03/18/2013 10:07:06 PM) (Source: Service Control Manager) (User: )
Description: The ScRegSetValueExW call failed for FailureActions with the following error:
%%5

Error: (03/18/2013 09:50:46 AM) (Source: Service Control Manager) (User: )
Description: The AVG Firewall service terminated with service-specific error 3758162007 (0xE0010057).

Error: (03/18/2013 09:48:07 AM) (Source: Service Control Manager) (User: )
Description: The AVG Firewall service terminated with service-specific error 3758162007 (0xE0010057).

Error: (03/17/2013 09:16:30 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service terminated with the following error:
%%1060

Error: (03/15/2013 11:29:12 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service terminated with the following error:
%%1060

Error: (03/15/2013 10:35:49 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service terminated with the following error:
%%1060

Error: (03/15/2013 10:35:49 PM) (Source: Service Control Manager) (User: )
Description: The ScRegSetValueExW call failed for FailureActions with the following error:
%%5

Error: (03/14/2013 10:36:50 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service terminated with the following error:
%%1060


Microsoft Office Sessions:
=========================
Error: (03/18/2013 10:06:38 AM) (Source: ESENT)(User: )
Description: Catalog Database1056C:\WINDOWS\system32\CatRoot2\edb.chk-1032

Error: (03/18/2013 10:06:38 AM) (Source: ESENT)(User: )
Description: svchost1056C:\WINDOWS\system32\CatRoot2\edb.chk-1032 (0xfffffbf8)32 (0x00000020)The process cannot access the file because it is being used by another process.

Error: (03/18/2013 10:06:07 AM) (Source: ESENT)(User: )
Description: Catalog Database1056C:\WINDOWS\system32\CatRoot2\edb.chk-1032

Error: (03/18/2013 10:06:07 AM) (Source: ESENT)(User: )
Description: svchost1056C:\WINDOWS\system32\CatRoot2\edb.chk-1032 (0xfffffbf8)32 (0x00000020)The process cannot access the file because it is being used by another process.

Error: (03/18/2013 10:05:36 AM) (Source: ESENT)(User: )
Description: Catalog Database1056C:\WINDOWS\system32\CatRoot2\edb.chk-1032

Error: (03/18/2013 10:05:36 AM) (Source: ESENT)(User: )
Description: svchost1056C:\WINDOWS\system32\CatRoot2\edb.chk-1032 (0xfffffbf8)32 (0x00000020)The process cannot access the file because it is being used by another process.

Error: (03/18/2013 10:05:05 AM) (Source: ESENT)(User: )
Description: Catalog Database1056C:\WINDOWS\system32\CatRoot2\edb.chk-1032

Error: (03/18/2013 10:05:05 AM) (Source: ESENT)(User: )
Description: svchost1056C:\WINDOWS\system32\CatRoot2\edb.chk-1032 (0xfffffbf8)32 (0x00000020)The process cannot access the file because it is being used by another process.

Error: (03/18/2013 10:04:34 AM) (Source: ESENT)(User: )
Description: Catalog Database1056C:\WINDOWS\system32\CatRoot2\edb.chk-1032

Error: (03/18/2013 10:04:34 AM) (Source: ESENT)(User: )
Description: svchost1056C:\WINDOWS\system32\CatRoot2\edb.chk-1032 (0xfffffbf8)32 (0x00000020)The process cannot access the file because it is being used by another process.


=========================== Installed Programs ============================

2570 (Version: 50.0.214.000)
2570_Help (Version: 50.0.214.000)
2570Trb (Version: 50.0.214.000)
32 bit Windows Card Reader Driver (Version: 1.1.0.0)
Adobe Flash Player 11 ActiveX (Version: 11.6.602.180)
Adobe Flash Player 11 Plugin (Version: 11.6.602.180)
Adobe Reader 7.0.8 (Version: 7.0.8)
AiO_Scan_CDA (Version: 50.0.214.000)
AiOSoftwareNPI (Version: 50.0.214.000)
Andrea VoiceCenter
Apple Application Support (Version: 2.3)
Apple Mobile Device Support (Version: 5.2.0.6)
Apple Software Update (Version: 2.1.3.127)
AVG 2013 (Version: 13.0.3157)
AVG 2013 (Version: 13.0.3267)
AVG 2013 (Version: 2013.0.3267)
AVG PC Tuneup 2011 (Version: 10.0.0.26)
BufferChm (Version: 53.0.13.000)
Corel Paint Shop Pro Photo XI (Version: 11.00.0000)
Corel Snapfire Plus (Version: 1.00.0000)
CP_AtenaShokunin1Config (Version: 53.0.13.000)
CP_CalendarTemplates1 (Version: 53.0.13.000)
CP_Package_Basic1 (Version: 53.0.13.000)
CP_Package_Variety1 (Version: 53.0.13.000)
CP_Package_Variety2 (Version: 53.0.13.000)
CP_Package_Variety3 (Version: 53.0.13.000)
CP_Panorama1Config (Version: 53.0.13.000)
Creative Audio Pack
Creative MediaSource 5 (Version: 5.00)
CueTour (Version: 53.0.13.000)
CustomerResearchQFolder (Version: 1.00.0000)
Dell CinePlayer (Version: 3.0)
Dell Driver Reset Tool (Version: 1.02.0000)
Dell Network Assistant (Version: 3.0.0.0)
Dell Support 3.2.1 (Version: 5.5.2087)
Dell Support Center (Version: 3.2.6032.125)
Dell System Detect (Version: 3.3.2.1)
Dell System Restore (Version: 2.00.0000)
Destinations (Version: 53.0.13.000)
DeviceFunctionQFolder (Version: 1.00.0000)
DeviceManagementQFolder (Version: 1.00.0000)
DocProc (Version: 5.2.0.0)
DocumentViewer (Version: 53.0.13.000)
DocumentViewerQFolder (Version: 1.00.0000)
ESET Online Scanner v3
ESPNMotion (Version: 2.1.6.0011)
eSupportQFolder (Version: 1.00.0000)
Everio MediaBrowser (Version: 2.01.109)
Fax_CDA (Version: 50.0.214.000)
FullDPAppQFolder (Version: 1.00.0000)
GemMaster Mystic
Google Update Helper (Version: 1.3.21.135)
Hewlett-Packard ACLM.NET v1.1.0.0 (Version: 1.00.0000)
HP Document Viewer 5.3 (Version: 5.3)
HP Extended Capabilities 5.3 (Version: 5.3)
HP Image Zone 5.3 (Version: 5.3)
HP Image Zone Express (Version: 1.5.1.29)
HP Imaging Device Functions 5.3 (Version: 5.3)
HP Photosmart, Officejet and Deskjet 7.0.A
HP Product Assistant (Version: 100.000.001.000)
HP Product Detection (Version: 11.14.0001)
HP PSC & OfficeJet 5.3.A
HP Solution Center & Imaging Support Tools 5.3 (Version: 5.3)
HP Update (Version: 5.003.001.001)
HPProductAssistant (Version: 53.0.13.000)
InstantShareAlert (Version: 1.00.0000)
InstantShareDevices (Version: 53.0.13.000)
Intel® Matrix Storage Manager
Intel® PRO Network Connections (Version: )
iTunes (Version: 10.6.3.25)
Java 7 Update 17 (Version: 7.0.170)
Java Auto Updater (Version: 2.1.9.0)
JourneySoftwarePromo (Version: 1.10.0000)
Malwarebytes Anti-Malware version 1.70.0.1100 (Version: 1.70.0.1100)
MCU (Version: 1.00.0000)
Metin2
Microsoft .NET Framework 1.1 (Version: 1.1.4322)
Microsoft .NET Framework 1.1 Security Update (KB2698023)
Microsoft .NET Framework 1.1 Security Update (KB2742597)
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 2.0 Service Pack 2 (Version: 2.2.30729)
Microsoft .NET Framework 3.0 Service Pack 2 (Version: 3.2.30729)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.59193)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Works (Version: 08.05.0818)
MSVC80_x86_v2 (Version: 1.0.3.0)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
NewCopy_CDA (Version: 50.0.214.000)
NVIDIA Drivers
Otto
PanoStandAlone (Version: 53.0.13.000)
PhotoGallery (Version: 53.0.13.000)
ProductContextNPI (Version: 50.0.214.000)
QuickTime (Version: 7.73.80.64)
RandMap (Version: 53.0.13.000)
Readme (Version: 50.0.214.000)
RealDownloader (Version: 1.3.0)
RealNetworks - Microsoft Visual C++ 2008 Runtime (Version: 9.0)
RealNetworks - Microsoft Visual C++ 2010 Runtime (Version: 10.0)
RealPlayer (Version: 16.0.0)
RealUpgrade 1.1 (Version: 1.1.0)
Roxio DLA (Version: 5.2.0)
Roxio MyDVD LE (Version: 6.1.6)
Roxio RecordNow Audio (Version: 2.0.4)
Roxio RecordNow Copy (Version: 2.0.4)
Roxio RecordNow Data (Version: 2.0.4)
Scan (Version: 5.2.0.0)
ScannerCopy (Version: 5.2.0.0)
SearchAssist
SkinsHP1 (Version: 53.0.13.000)
SolutionCenter (Version: 50.0.152.000)
Sonic Activation Module (Version: 1.0)
Sonic Advanced Decoder
Sonic Encoders (Version: 1.00)
Sonic Update Manager (Version: 3.0.0)
Sonic_PrimoSDK (Version: 53.0.13.000)
Sound Blaster ADVANCED MB Drivers
Sound Blaster Audigy ADVANCED MB (Version: 1.0)
Sound Blaster Audigy ADVANCED MB Product Registration
Status (Version: 53.0.13.000)
TrayApp (Version: 53.0.13.000)
Unload (Version: 5.0.0)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Windows Internet Explorer 8 (KB976662) (Version: 1)
URL Assistant
WebFldrs XP (Version: 9.50.7523)
WebReg (Version: 53.0.13.000)
Windows Driver Package - Leapfrog (Leapfrog-USBLAN) Net  (09/10/2009 02.03.05.012) (Version: 09/10/2009 02.03.05.012)
Windows Media Format 11 runtime
Windows Media Player 10 Hotfix [See EmeraldQFE2 for more information]
Windows PowerShell™ 1.0 (Version: 2)
Windows XP Service Pack 3 (Version: 20080414.031525)
Yahoo! Software Update
Yahoo! Toolbar

========================= Devices: ================================

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


========================= Memory info: ===================================

Percentage of memory in use: 25%
Total physical RAM: 3069.84 MB
Available physical RAM: 2292.21 MB
Total Pagefile: 5954.78 MB
Available Pagefile: 5240.3 MB
Total Virtual: 2047.88 MB
Available Virtual: 1969.82 MB

========================= Partitions: =====================================

1 Drive c: () (Fixed) (Total:169.93 GB) (Free:145.13 GB) NTFS
2 Drive d: (Backup) (Fixed) (Total:58.19 GB) (Free:58.11 GB) NTFS
9 Drive k: () (Removable) (Total:3.73 GB) (Free:2.83 GB) FAT32

========================= Users: ========================================

User accounts for \\D890PL2J

Administrator                              Guest                   
HelpAssistant                                 SUPPORT_388945a0        


**** End of log ****

 

 

Mini Tool Box as requested also i installed Adware but AVG even disabled quarantined it.

 

Horse Box


Edited by Horse Box, 18 March 2013 - 05:55 PM.

Nie ma satso

#15 Horse Box

Horse Box
  • Topic Starter

  • Members
  • 65 posts
  • OFFLINE
  •  
  • Local time:02:56 PM

Posted 18 March 2013 - 06:00 PM

I have ran the defrag instruction but the file looks caught in a loop flashing the notepad address to the desktop in a dos windows.

 

Horse Box


Nie ma satso




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users