Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Error: The application failed to initialise properly( 0xc0000034).


  • Please log in to reply
5 replies to this topic

#1 shivani17

shivani17

  • Members
  • 29 posts
  • OFFLINE
  •  
  • Local time:11:41 AM

Posted 10 December 2013 - 10:53 AM

Hello,
 
My laptop having xp has been attacked by virus. It does not open any file and gives the following error:
 
The application failed to initialise properly( 0xc0000034). Click on OK to terminate the program
 
Basically, the exe files are not executing. If a USB is inserted, it creates shortcuts in the USB drive and infects the data. I have followed all the steps given in the forum http://www.bleepingcomputer.com/forums/t/481495/virus-unable-to-run-any-exe-files/, but in vain. Please help me...

Edit: Moved topic from Windows XP to the more appropriate forum. ~ Animal

BC AdBot (Login to Remove)

 


#2 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,573 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:01:11 AM

Posted 10 December 2013 - 01:41 PM

Hello lets try to run RogueKiller
when saving it, change the extention of the RogueKiller tool from .exe to .com


Download RogueKiller from one of the following links and save it to your desktop:
  • Link 1
  • Link 2
    • Close all programs and disconnect any USB or external drives before running the tool.
    • Double-click RogueKiller.exe to run the tool (Vista or 7 users: Right-click and select Run As Administrator).
    • Once the Prescan has finished, click Scan.
    • Once the Status box shows "Scan Finished", just close the program. <--Don't fix anything!
    • Copy and paste the report that opens into your next reply.
      • The log can also be found on your desktop labeled (RKreport[X]_S_xxdatexx_xtimex)
      • The highest number of [X], is the most recent Scan

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#3 shivani17

shivani17
  • Topic Starter

  • Members
  • 29 posts
  • OFFLINE
  •  
  • Local time:11:41 AM

Posted 11 December 2013 - 03:48 AM

Hi,

 

As mentioned, I've already tried FixNCR.reg, rkill.com , RogueKiller, OTL, SystemLook.com, Farbar recovery scan tool as suggested in the thread- "http://www.bleepingcomputer.com/forums/t/481495/virus-unable-to-run-any-exe-files/" and obtained the same result, but still its not working. In the last step, when I visited http://support.microsoft.com/kb/950505 to fix the problem, it asked me to remove registry subkey- ".exe" and "secfile", But i couldn't find these in regedit...

 

One more thing, when I start my computer, I receive the following three messages:

 

 
GrooveMonitor.exe- application error
Reader_sl.exe-Application error
ONENOTEM>EXE-application error
 
Please help me..


#4 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,573 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:01:11 AM

Posted 11 December 2013 - 10:30 AM

OK, then we need a deeper look at your system.
 
Please follow this Preparation Guide, do steps 6,7 and 8 and post in a new topic.
Let me know if all went well.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#5 shivani17

shivani17
  • Topic Starter

  • Members
  • 29 posts
  • OFFLINE
  •  
  • Local time:11:41 AM

Posted 12 December 2013 - 12:51 AM

Followed the steps, posted the new log as well.
 
Attach.txt:
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 8/8/2012 2:17:18 PM
System Uptime: 12/12/2013 11:01:50 AM (0 hours ago)
.
Motherboard: LENOVO |  | 1952GM8
Processor: Intel® Core™ Duo CPU      T2300  @ 1.66GHz | None | 980/167mhz
Processor: Intel® Core™ Duo CPU      T2300  @ 1.66GHz | None | 980/167mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 20 GiB total, 1.131 GiB free.
D: is FIXED (NTFS) - 55 GiB total, 8.791 GiB free.
E: is CDROM ()
F: is Removable
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP45: 10/13/2013 12:02:02 PM - System Checkpoint
RP46: 11/30/2013 7:34:23 PM - System Checkpoint
RP47: 12/2/2013 6:22:06 PM - System Checkpoint
RP48: 12/10/2013 12:52:52 PM - Removed HP Photosmart Essential
RP49: 12/10/2013 12:57:18 PM - Removed HPSU306Stub
RP50: 12/10/2013 12:57:33 PM - Removed HP Update
.
==== Installed Programs ======================
.
Adobe Reader 9.3
Aladdin 1.0
Atmel TPM Driver Installer 3.0.3.15
Bonanza Deals (remove only)
BrowseSmart
Dealply
DealPly (remove only)
Google Chrome
Google Update Helper
High Definition Audio Driver Package - KB888111
Intel® Graphics Media Accelerator Driver
Intel® PRO Network Connections Drivers
Intel® PROSet/Wireless Software
Kundli for Windows (Professional Edition)
mCore
mDriver
Microsoft .NET Framework 2.0
Microsoft Kernel-Mode Driver Framework Feature Pack 1.7
Microsoft Office Access MUI (English) 2007
Microsoft Office Access Setup Metadata MUI (English) 2007
Microsoft Office Enterprise 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office Groove MUI (English) 2007
Microsoft Office Groove Setup Metadata MUI (English) 2007
Microsoft Office InfoPath MUI (English) 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Save as PDF or XPS Add-in for 2007 Microsoft Office programs
Microsoft Software Update for Web Folders  (English) 12
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
MiPony 2.0.2
mMHouse
mPfMgr
mProSafe
mWlsSafe
mXML
Productivity Center Supplement for ThinkPad
SoundMAX
ThinkPad FullScreen Magnifier
ThinkPad Keyboard Customizer Utility
ThinkPad Modem
ThinkPad Power Management Driver
ThinkPad Power Manager
ThinkPad Presentation Director
ThinkPad UltraNav Wizard
ThinkVantage Access Connections
TrackPoint Accessibility Features
WebFldrs XP
Windows Imaging Component
Windows Installer 3.1 (KB893803)
WinRAR 5.00 beta 3 (32-bit)
YTD Video Downloader 3.9.6
.
==== Event Viewer Messages From Past Week ========
.
12/8/2013 3:59:03 PM, error: PlugPlayManager [12]  - The device 'Intel® PRO/1000 PL Network Connection' (PCI\VEN_8086&DEV_109A&SUBSYS_200117AA&REV_00\4&192ac53f&0&00E0) disappeared from the system without first being prepared for removal.
12/7/2013 12:00:48 PM, error: Dhcp [1002]  - The IP address lease 192.168.1.2 for the Network Card with network address 001B776F12D2 has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).
12/7/2013 1:23:42 PM, error: ipnathlp [32003]  - The Network Address Translator (NAT) was unable to request an operation of the kernel-mode translation module. This may indicate misconfiguration, insufficient resources, or an internal error. The data is the error code.
12/11/2013 10:24:34 PM, error: PSched [14103]  - QoS [Adapter {0CCD6E74-E8D8-40CC-AB14-8E11E14965F2}]: The netcard driver failed the query for OID_GEN_LINK_SPEED.
12/11/2013 1:34:57 PM, error: Dhcp [1002]  - The IP address lease 192.168.1.3 for the Network Card with network address 001B776F12D2 has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).
12/10/2013 7:29:57 PM, error: Service Control Manager [7034]  - The IBM KCU Service service terminated unexpectedly.  It has done this 1 time(s).
12/10/2013 6:43:14 PM, error: DCOM [10005]  - DCOM got error "%1084" attempting to start the service StiSvc with arguments "" in order to run the server: {A1F4E726-8CF1-11D1-BF92-0060081ED811}
12/10/2013 6:32:20 PM, error: Service Control Manager [7026]  - The following boot-start or system-start driver(s) failed to load:  ANC Fips IBMTPCHK intelppm TPHKDRV TPPWRIF TSMAPIP
12/10/2013 2:55:21 PM, error: SideBySide [61]  - Syntax error in manifest or policy file "C:\DOCUME~1\test\LOCALS~1\Temp\205.3842903841185_Update.exe" on line 3. The required attribute name is missing from element assemblyIdentity.
12/10/2013 2:55:21 PM, error: SideBySide [59]  - Generate Activation Context failed for C:\DOCUME~1\test\LOCALS~1\Temp\205.3842903841185_Update.exe. Reference error message: The operation completed successfully. .
12/10/2013 2:55:21 PM, error: SideBySide [58]  - Syntax error in manifest or policy file "C:\DOCUME~1\test\LOCALS~1\Temp\205.3842903841185_Update.exe" on line 3.
12/10/2013 2:05:49 PM, error: DCOM [10005]  - DCOM got error "%1084" attempting to start the service netman with arguments "" in order to run the server: {BA126AE5-2166-11D1-B1D0-00805FC1270E}
12/10/2013 2:05:43 PM, error: DCOM [10005]  - DCOM got error "%1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
12/10/2013 2:05:12 PM, error: Service Control Manager [7026]  - The following boot-start or system-start driver(s) failed to load:  AFD ANC Fips IBMTPCHK intelppm IPSec MRxSmb NetBIOS NetBT RasAcd Rdbss Tcpip TPHKDRV TPPWRIF TSMAPIP
12/10/2013 2:05:12 PM, error: Service Control Manager [7001]  - The TCP/IP NetBIOS Helper service depends on the AFD service which failed to start because of the following error:  A device attached to the system is not functioning.
12/10/2013 2:05:12 PM, error: Service Control Manager [7001]  - The IPSEC Services service depends on the IPSEC driver service which failed to start because of the following error:  A device attached to the system is not functioning.
12/10/2013 2:05:12 PM, error: Service Control Manager [7001]  - The DNS Client service depends on the TCP/IP Protocol Driver service which failed to start because of the following error:  A device attached to the system is not functioning.
12/10/2013 2:05:12 PM, error: Service Control Manager [7001]  - The DHCP Client service depends on the NetBios over Tcpip service which failed to start because of the following error:  A device attached to the system is not functioning.
.
==== End Of File ===========================
 
 
dds.txt

DDS (Ver_2012-11-20.01) - NTFS_x86 
Internet Explorer: 6.0.2900.2180
Run by test at 11:10:38 on 2013-12-12
Microsoft Windows XP Professional  5.1.2600.2.1252.1.1033.18.3062.2316 [GMT 5.5:30]
.
.
============== Running Processes ================
.
C:\WINDOWS\system32\ibmpmsvc.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe
C:\Program Files\BonanzaDealsLive\Update\BonanzaDealsLive.exe
C:\Program Files\DealPlyLive\Update\DealPlyLive.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\TpKmpSVC.exe
C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\ThinkPad\ConnectUtilities\SvcGuiHlpr.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\Lenovo\PkgMgr\HOTKEY\TPHKMGR.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Lenovo\PkgMgr\HOTKEY\TPONSCR.exe
C:\Program Files\Lenovo\PkgMgr\HOTKEY_1\TpScrex.exe
C:\WINDOWS\system32\wscript.exe
C:\Documents and Settings\test\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\test\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\test\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\test\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\test\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\test\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\test\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\test\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\test\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\test\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k imgsvc
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://search.babylon.com/?affID=121136&tt=gc_&babsrc=HP_ss&mntrId=e858d13d000000000000001b776f12d2
uSearch Bar = hxxp://www.google.com/ie
uSearch Page = hxxp://www.google.com
mStart Page = hxxp://websearch.pu-result.info/?pid=708&r=2013/05/25&hid=664729697&lg=EN&cc=IN
mDefault_Search_URL = hxxp://www.google.com/ie
uProxyServer = proxy.wipro.com:8080
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
mSearchAssistant = hxxp://www.google.com/ie
BHO: SaveAs: {16BFF2F1-F3C8-6A33-368A-8926154C3276} - c:\documents and settings\all users\application data\saveas\510a4efd1d851.dll
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: SaveAs: {2DD3111E-F342-0635-7262-702ED8A97183} - c:\documents and settings\all users\application data\saveas\510a72c1a6daf.dll
BHO: {2EECD738-5844-4a99-B4B6-146BF802613B} - <orphaned>
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
BHO: {7825CFB6-490A-436B-9F26-4A7B5CFC01A9} - <orphaned>
BHO: SaveAs: {834C55AE-80C1-D939-C9AE-C24ED54CDB7C} - c:\documents and settings\all users\application data\saveas\5102d7d2be73b.dll
BHO: DealPly Shopping: {9cf699ca-2174-4ed8-bec1-ba82095edce0} - c:\program files\dealply\DealPlyIE.dll
BHO: Babylon IE plugin: {9CFACCB6-2F3F-4177-94EA-0D2B72D384C1} - 
BHO: Search-NewTab: {C2499082-B165-DB28-5E4E-36153F327C97} - c:\documents and settings\all users\application data\search-newtab\5102d882a2787.dll
BHO: Search-NewTab: {ED71B3C0-EFAC-98EF-8137-5F482BD96DCD} - c:\documents and settings\all users\application data\search-newtab\510a4f4a39b94.dll
BHO: BonanzaDeals: {fe063412-bea4-4d76-8ed3-183be6220d17} - c:\program files\bonanzadeals\BonanzaDealsIE.dll
uRun: [Google Update] "c:\documents and settings\test\local settings\application data\google\update\GoogleUpdate.exe" /c
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [83442] wscript.exe //B "c:\documents and settings\test\83442.vbe"
mRun: [PWRMGRTR] rundll32 c:\progra~1\thinkpad\utilit~1\PWRMGRTR.DLL,PwrMgrBkGndMonitor
mRun: [blog] rundll32 c:\progra~1\thinkpad\utilit~1\BatLogEx.DLL,StartBattLog
mRun: [TP4EX] tp4ex.exe
mRun: [igfxtray] c:\windows\system32\igfxtray.exe
mRun: [igfxhkcmd] c:\windows\system32\hkcmd.exe
mRun: [igfxpers] c:\windows\system32\igfxpers.exe
mRun: [TPHOTKEY] c:\progra~1\lenovo\pkgmgr\hotkey\TPHKMGR.exe
mRun: [TPKMAPHELPER] c:\program files\thinkpad\utilities\TpKmapAp.exe -helper
mRun: [SoundMAXPnP] c:\program files\analog devices\core\smax4pnp.exe
mRun: [SoundMAX] c:\program files\analog devices\soundmax\Smax4.exe /tray
mRun: [GrooveMonitor] "c:\program files\microsoft office\office12\GrooveMonitor.exe"
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [ROC_ROC_NT] "c:\program files\avg secure search\ROC_ROC_NT.exe" / /PROMPT /CMPID=ROC_NT
mRun: [Babylon Client] c:\program files\babylon\babylon-pro\Babylon.exe -AutoStart
mRun: [83442] wscript.exe //B "c:\documents and settings\test\83442.vbe"
StartupFolder: c:\documents and settings\test\start menu\programs\startup\83442.vbe
StartupFolder: c:\docume~1\test\startm~1\programs\startup\onenot~1.lnk - c:\program files\microsoft office\office12\ONENOTEM.EXE
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Explorer: NoDriveTypeAutoRun = dword:145
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000
IE: Translate this web page with Babylon - c:\program files\babylon\babylon-pro\utils\BabylonIEPI.dll/ActionTU.htm
IE: Translate with Babylon - c:\program files\babylon\babylon-pro\utils\BabylonIEPI.dll/Action.htm
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
IE: {F72841F0-4EF1-4df5-BCE5-B3AC8ACF5478} - c:\program files\babylon\babylon-pro\utils\BabylonIEPI.dll/ActionTU.htm
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
TCP: NameServer = 59.179.243.70 203.94.243.70
TCP: Interfaces\{8A0FD826-ABDF-44B1-93FE-D938F9F01EE5} : DHCPNameServer = 59.179.243.70 203.94.243.70
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll
Notify: ACNotify - ACNotify.dll
Notify: igfxcui - igfxdev.dll
Notify: tpfnf2 - notifyf2.dll
Notify: tphotkey - tphklock.dll
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
LSA: Notification Packages =  scecli ACGina
.
============= SERVICES / DRIVERS ===============
.
S2 bonanzadealslive;BonanzaDealsLive Service (bonanzadealslive);c:\program files\bonanzadealslive\update\BonanzaDealsLive.exe [2013-12-10 148976]
S2 dealplylive;DealPly Live Service (dealplylive);c:\program files\dealplylive\update\DealPlyLive.exe [2013-8-4 148000]
S3 bonanzadealslivem;BonanzaDealsLive Service (bonanzadealslivem);c:\program files\bonanzadealslive\update\BonanzaDealsLive.exe [2013-12-10 148976]
S3 dealplylivem;DealPly Live Service (dealplylivem);c:\program files\dealplylive\update\DealPlyLive.exe [2013-8-4 148000]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\drivers\ew_hwusbdev.sys --> c:\windows\system32\drivers\ew_hwusbdev.sys [?]
S3 ewusbnet;HUAWEI USB-NDIS miniport;c:\windows\system32\drivers\ewusbnet.sys --> c:\windows\system32\drivers\ewusbnet.sys [?]
S3 huawei_enumerator;huawei_enumerator;c:\windows\system32\drivers\ew_jubusenum.sys --> c:\windows\system32\drivers\ew_jubusenum.sys [?]
.
=============== Created Last 30 ================
.
2013-12-11 17:09:00 0 ---ha-w- c:\documents and settings\test\local settings\application data\BIT4A.tmp
2013-12-10 16:09:16 -------- d-----w- c:\documents and settings\test\application data\QuickScan
2013-12-10 14:44:44 -------- d-----w- C:\FRST
2013-12-10 09:27:01 -------- d-----w- c:\program files\SimilarSites
2013-12-10 09:26:54 -------- d-----w- c:\documents and settings\test\application data\SimilarSites
2013-12-10 09:26:52 -------- d-----w- c:\program files\BrowseSmart
2013-12-10 09:26:51 -------- d-----w- c:\program files\BonanzaDealsLive
2013-12-10 09:26:51 -------- d-----w- c:\documents and settings\test\local settings\application data\BonanzaDealsLive
2013-12-10 09:26:51 -------- d-----w- c:\documents and settings\all users\application data\BonanzaDealsLive
2013-12-10 09:26:32 -------- d-----w- c:\program files\BonanzaDeals
2013-12-10 09:25:30 -------- d-----w- c:\program files\MiPony
2013-12-10 09:03:55 -------- d-----w- c:\program files\common files\Bitdefender
2013-12-10 07:18:05 -------- d-----w- c:\windows\SxsCaPendDel
2013-12-10 07:09:45 73377 --sha-w- c:\documents and settings\test\83442.vbe
2013-12-07 06:58:35 -------- d-----w- C:\TC
.
==================== Find3M  ====================
.
.
============= FINISH: 11:11:04.42 ===============



#6 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,573 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:01:11 AM

Posted 12 December 2013 - 10:50 AM

Hello, I need you to do step 7 now....

Now click on the following link to open a new browser windows where you will create a new topic in the Virus, Trojan, Spyware, and Malware Removal Logs forum:

Post a new malware removal request
 
Thank you!
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users