Answers to your tech questions
Computer forums for help with removing malicious software (malware) and improving computer security

Welcome Guest to What the Tech! ( Log In | Register ) We specialize in the removal of malicious software (malware), but here you'll find free help and support for all your tech questions. We invite you to ask questions, share experiences, and learn. Explore our message boards, or register now to post messages of your own. Please Start Here. Register today (registration removes advertising)

 
Reply to this topicStart new topic
> Missing Drivers
mamopoth
post Jun 23 2008, 09:39 AM
Post #1


New Member
*

Group: New Member
Posts: 7
Joined: 21-June 08
Member No.: 79,778
Operating System: Windows XPSP2



I really am at a loss! I have Windows Microsoft XPSP2 and have a HP Compaq Presario.

I ran Fixware Out, ATF-Cleaner and Combo-Fix. I then ran the Hijack This. I still have several drivers listed as "stopped disabled".
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 4:57:08 PM, on 6/20/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
C:\Program Files\Common Files\AOL\1212026350\ee\AOLSoftware.exe
C:\Program Files\ThreatFire\TFTray.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe
C:\Program Files\YourWare Solutions\FreeRAM XP Pro\FreeRAM XP Pro.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\ThreatFire\TFService.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\Program Files\UPHClean\uphclean.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\ALCXMNTR.EXE
C:\WINDOWS\system32\wuauclt.exe
c:\windows\system\hpsysdrv.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...&pf=desktop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
O2 - BHO: (no name) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - (no file)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
O3 - Toolbar: (no name) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - (no file)
O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1212026350\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [ThreatFire] C:\Program Files\ThreatFire\TFTray.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe"
O4 - HKCU\..\Run: [FreeRAM XP] "C:\Program Files\YourWare Solutions\FreeRAM XP Pro\FreeRAM XP Pro.exe" -win
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\CCleaner.exe" /AUTO
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_1_0
O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
O9 - Extra button: Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} (MUCatalogWebControl Class) - http://catalog.update.microsoft.com/v7/sit...b?1212527457421
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftu...b?1212074850656
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: ThreatFire - PC Tools - C:\Program Files\ThreatFire\TFService.exe

--
End of file - 7432 bytes

Name Description Version Type Status Start Path File Description
Abiosdsk Abiosdsk Kernel Driver Stopped Disabled
abp480n5 abp480n5 Kernel Driver Stopped Disabled
ACPIEC ACPIEC Kernel Driver Stopped Disabled
adpu160m adpu160m Kernel Driver Stopped Disabled
adpu160m adpu160m Kernel Driver Stopped Disabled
Aha154x Aha154x Kernel Driver Stopped Disabled
aic78u2 aic78u2 Kernel Driver Stopped Disabled
aic78xx aic78xx Kernel Driver Stopped Disabled
AliIde AliIde Kernel Driver Stopped Disabled
amsint amsint Kernel Driver Stopped Disabled
asc asc Kernel Driver Stopped Disabled
asc3350p asc3350p Kernel Driver Stopped Disabled
Asc3550 asc3550 Kernel Driver Stopped Disabled
Atdisk Atdisk Kernel Driver Stopped Disabled
cbidf2k cbidf2k Kernel Driver Stopped Disabled
cd20xrnt cd20xrnt Kernel Driver Stopped Disabled
CmdIde CmdIde Kernel Driver Stopped Disabled
Cpqarray Cpqarray Kernel Driver Stopped Disabled
dac960nt dac960nt Kernel Driver Stopped Disabled
dmboot dmboot Kernel Driver Stopped
dmio dmio Kernel Driver Stopped Disabled
dmload dmload Kernel Driver Stopped Disabled
dpti2o dpti2o Kernel Driver Stopped Disabled
Fastfat Fastfat File System Dvr Stopped Disabled
hpn hpn Kernel Driver Stopped Disabled
i2omp i2omp Kernel Driver Stopped Disabled
Ini910u ini910u Kernel Driver Stopped Disabled
intelppm Intel Processor Kernel Driver Stopped Disabled
mraid35x mraid35x Kernel Driver Stopped Disabled
ParVdm ParVdm Kernel Driver Stopped Disabled
Pcmcia Pcmcia Kernel Driver Stopped Disabled
perc2 perc2 Kernel Driver Stopped Disabled
Perc2hib perc2hib Kernel Driver Stopped Disabled
ql1080 ql1080 Kernel Driver Stopped Disabled
Ql10wnt Ql10wnt Kernel Drive Stopped Disabled
ql12160 ql12160 Kernel Driver Stopped Disabled
ql1240 ql1240 Kernel Driver Stopped Disabled
ql1280 ql1280 Kernel Driver Stopped Disabled
Simbad Simbad Kernel Driver Stopped Disabled
Sparrow Sparrow Kernel Driver Stopped Disabled
symc810 symc810 Kernel Driver Stopped Disabled
Symc8xx symc8xx Kernel Driver Stopped Disabled
sym_hi sym_hi Kernel Driver Stopped Disabled
sym_u3 sym_u3 Kernel Driver Stopped Disabled
TosIde TosIde Kernel Driver Stopped Disabled
Udfs Udfs File System Dvr Stopped Disabled
ultra ultra Kernel Driver Stopped Disabled

I have been trying for quite a while to fix this. The system did not come with recovery disks. I had to purchase them from HP. I have erased the hard drive and reinstalled the recovery disks at least three times. The drivers are always missing. I am just an ordinary person with no special computer capabilities. If you don't know what I can do, then I GIVE UP!.

Thank you,
mamopoth

********************************************************************************
***************************************************************
Group: Malware Team
Posts: 3,490
Joined: 9-December 06
From: Haggistown, Kiltland
Member No.: 65,226
Operating System: XP Pro
Kubuntu 8.04



Im quite certain this is not a malware issue. Can you start a topic here
http://forums.whatthetech.com/Microsoft_Windows_f119.html

The tech guys have a better idea about this kind of thing.

And you had best do this.

Click START then RUN
Now type Combofix /u in the runbox and click OK. Note the space between the x and the /u, it needs to be there.

Many thanks to Scottie for his time and trouble.

Hope you tech guys can help me.

mamopoth

Go to the top of the page
 
+Quote Post
DaChew
post Jun 23 2008, 10:57 AM
Post #2


Authentic Member
**

Group: Authentic Member
Posts: 244
Joined: 17-March 08
From: Millenium Falcon
Member No.: 77,666
Operating System: windows xp sp2



QUOTE
I still have several drivers listed as "stopped disabled".


why is this an issue?

What program is reporting these ones stopped?

Go to the top of the page
 
+Quote Post
mamopoth
post Jun 23 2008, 02:02 PM
Post #3


New Member
*

Group: New Member
Posts: 7
Joined: 21-June 08
Member No.: 79,778
Operating System: Windows XPSP2



This is the software program that I used to obtain this information.


Copyright © 2004-2008 Topala Software Solutions
* SIW - System Information for Windows - version 2008-04-02
Go to the top of the page
 
+Quote Post
DaChew
post Jun 23 2008, 06:23 PM
Post #4


Authentic Member
**

Group: Authentic Member
Posts: 244
Joined: 17-March 08
From: Millenium Falcon
Member No.: 77,666
Operating System: windows xp sp2



the 2 versions of everest I tried showed a similar list stopped and disabled


Pcmcia Pcmcia Kernel Driver Stopped Disabled

this would be an issue on a laptop but on a desktop it's nothing to worry about since we don't have pcmcia slots
Go to the top of the page
 
+Quote Post

Reply to this topicStart new topic
1 User(s) are reading this topic (1 Guests and 0 Anonymous Users)
0 Members:

 

Collapse

> Similar Topics

    Topic Title Replies Topic Starter Views Last Action
No New Posts   3 Laguna 99 9th November 2008 - 04:43 PM
Last post by: paws
No New Posts   3 111mike 141 8th November 2008 - 10:13 PM
Last post by: Digerati
No new   23 spaguy 406 6th November 2008 - 05:30 PM
Last post by: LDTate
No New Posts   3 Malu CLBS 521 31st October 2008 - 08:24 PM
Last post by: Malu CLBS

RSS Time is now: 1st December 2008 - 11:40 PM
Advertisements do not imply our endorsement of that product or service. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk.
Member site: Alliance of Security Analysis Professionals | UNITE Against Malware
© Geeks to Go, Inc. | All Rights Reserved | Privacy Policy