Welcome Guest to What the Tech! ( Log In | Register ) We specialize in the removal of malicious software (malware), but here you'll find free help and support for all your tech questions. We invite you to ask questions, share experiences, and learn. Explore our message boards, or register now to post messages of your own. Please Start Here. Register today (registration removes advertising)
![]() ![]() |
Jun 23 2008, 09:39 AM
Post
#1
|
|
|
New Member ![]() Group: New Member Posts: 7 Joined: 21-June 08 Member No.: 79,778 Operating System: Windows XPSP2 |
I really am at a loss! I have Windows Microsoft XPSP2 and have a HP Compaq Presario.
I ran Fixware Out, ATF-Cleaner and Combo-Fix. I then ran the Hijack This. I still have several drivers listed as "stopped disabled". Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 4:57:08 PM, on 6/20/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16674) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe C:\Program Files\Common Files\AOL\1212026350\ee\AOLSoftware.exe C:\Program Files\ThreatFire\TFTray.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe C:\Program Files\YourWare Solutions\FreeRAM XP Pro\FreeRAM XP Pro.exe C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\WINDOWS\system32\HPZipm12.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\ThreatFire\TFService.exe C:\WINDOWS\system32\wdfmgr.exe C:\Program Files\UPHClean\uphclean.exe C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\WINDOWS\System32\alg.exe C:\WINDOWS\ALCXMNTR.EXE C:\WINDOWS\system32\wuauclt.exe c:\windows\system\hpsysdrv.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe C:\WINDOWS\system32\wbem\wmiprvse.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...&pf=desktop R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll O2 - BHO: (no name) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - (no file) O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll O3 - Toolbar: (no name) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - (no file) O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1212026350\ee\AOLSoftware.exe O4 - HKLM\..\Run: [ThreatFire] C:\Program Files\ThreatFire\TFTray.exe O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe" O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" O4 - HKCU\..\Run: [FreeRAM XP] "C:\Program Files\YourWare Solutions\FreeRAM XP Pro\FreeRAM XP Pro.exe" -win O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_1_0 O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user') O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll O9 - Extra button: Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm O9 - Extra 'Tools' menuitem: Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} (MUCatalogWebControl Class) - http://catalog.update.microsoft.com/v7/sit...b?1212527457421 O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftu...b?1212074850656 O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: ThreatFire - PC Tools - C:\Program Files\ThreatFire\TFService.exe -- End of file - 7432 bytes Name Description Version Type Status Start Path File Description Abiosdsk Abiosdsk Kernel Driver Stopped Disabled abp480n5 abp480n5 Kernel Driver Stopped Disabled ACPIEC ACPIEC Kernel Driver Stopped Disabled adpu160m adpu160m Kernel Driver Stopped Disabled adpu160m adpu160m Kernel Driver Stopped Disabled Aha154x Aha154x Kernel Driver Stopped Disabled aic78u2 aic78u2 Kernel Driver Stopped Disabled aic78xx aic78xx Kernel Driver Stopped Disabled AliIde AliIde Kernel Driver Stopped Disabled amsint amsint Kernel Driver Stopped Disabled asc asc Kernel Driver Stopped Disabled asc3350p asc3350p Kernel Driver Stopped Disabled Asc3550 asc3550 Kernel Driver Stopped Disabled Atdisk Atdisk Kernel Driver Stopped Disabled cbidf2k cbidf2k Kernel Driver Stopped Disabled cd20xrnt cd20xrnt Kernel Driver Stopped Disabled CmdIde CmdIde Kernel Driver Stopped Disabled Cpqarray Cpqarray Kernel Driver Stopped Disabled dac960nt dac960nt Kernel Driver Stopped Disabled dmboot dmboot Kernel Driver Stopped dmio dmio Kernel Driver Stopped Disabled dmload dmload Kernel Driver Stopped Disabled dpti2o dpti2o Kernel Driver Stopped Disabled Fastfat Fastfat File System Dvr Stopped Disabled hpn hpn Kernel Driver Stopped Disabled i2omp i2omp Kernel Driver Stopped Disabled Ini910u ini910u Kernel Driver Stopped Disabled intelppm Intel Processor Kernel Driver Stopped Disabled mraid35x mraid35x Kernel Driver Stopped Disabled ParVdm ParVdm Kernel Driver Stopped Disabled Pcmcia Pcmcia Kernel Driver Stopped Disabled perc2 perc2 Kernel Driver Stopped Disabled Perc2hib perc2hib Kernel Driver Stopped Disabled ql1080 ql1080 Kernel Driver Stopped Disabled Ql10wnt Ql10wnt Kernel Drive Stopped Disabled ql12160 ql12160 Kernel Driver Stopped Disabled ql1240 ql1240 Kernel Driver Stopped Disabled ql1280 ql1280 Kernel Driver Stopped Disabled Simbad Simbad Kernel Driver Stopped Disabled Sparrow Sparrow Kernel Driver Stopped Disabled symc810 symc810 Kernel Driver Stopped Disabled Symc8xx symc8xx Kernel Driver Stopped Disabled sym_hi sym_hi Kernel Driver Stopped Disabled sym_u3 sym_u3 Kernel Driver Stopped Disabled TosIde TosIde Kernel Driver Stopped Disabled Udfs Udfs File System Dvr Stopped Disabled ultra ultra Kernel Driver Stopped Disabled I have been trying for quite a while to fix this. The system did not come with recovery disks. I had to purchase them from HP. I have erased the hard drive and reinstalled the recovery disks at least three times. The drivers are always missing. I am just an ordinary person with no special computer capabilities. If you don't know what I can do, then I GIVE UP!. Thank you, mamopoth ******************************************************************************** *************************************************************** Group: Malware Team Posts: 3,490 Joined: 9-December 06 From: Haggistown, Kiltland Member No.: 65,226 Operating System: XP Pro Kubuntu 8.04  Im quite certain this is not a malware issue. Can you start a topic here http://forums.whatthetech.com/Microsoft_Windows_f119.html The tech guys have a better idea about this kind of thing. And you had best do this. Click START then RUN Now type Combofix /u in the runbox and click OK. Note the space between the x and the /u, it needs to be there. Many thanks to Scottie for his time and trouble. Hope you tech guys can help me. mamopoth |
|
|
|
Jun 23 2008, 10:57 AM
Post
#2
|
|
|
Authentic Member ![]() ![]() Group: Authentic Member Posts: 244 Joined: 17-March 08 From: Millenium Falcon Member No.: 77,666 Operating System: windows xp sp2 |
QUOTE I still have several drivers listed as "stopped disabled". why is this an issue? What program is reporting these ones stopped? |
|
|
|
Jun 23 2008, 02:02 PM
Post
#3
|
|
|
New Member ![]() Group: New Member Posts: 7 Joined: 21-June 08 Member No.: 79,778 Operating System: Windows XPSP2 |
This is the software program that I used to obtain this information.
Copyright © 2004-2008 Topala Software Solutions * SIW - System Information for Windows - version 2008-04-02 |
|
|
|
Jun 23 2008, 06:23 PM
Post
#4
|
|
|
Authentic Member ![]() ![]() Group: Authentic Member Posts: 244 Joined: 17-March 08 From: Millenium Falcon Member No.: 77,666 Operating System: windows xp sp2 |
the 2 versions of everest I tried showed a similar list stopped and disabled
Pcmcia Pcmcia Kernel Driver Stopped Disabled this would be an issue on a laptop but on a desktop it's nothing to worry about since we don't have pcmcia slots |
|
|
|
![]() ![]() |
Similar Topics
| Topic Title | Replies | Topic Starter | Views | Last Action | |||
|---|---|---|---|---|---|---|---|
![]() |
3 | Laguna | 99 | 9th November 2008 - 04:43 PM Last post by: paws |
|||
![]() |
3 | 111mike | 141 | 8th November 2008 - 10:13 PM Last post by: Digerati |
|||
![]() |
23 | spaguy | 406 | 6th November 2008 - 05:30 PM Last post by: LDTate |
|||
![]() |
3 | Malu CLBS | 521 | 31st October 2008 - 08:24 PM Last post by: Malu CLBS |
|||
|
Time is now: 1st December 2008 - 11:40 PM |