This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

[Resolved] [Resolved] Unable to open Computer Properties

13 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

I restarted the computer, ran the XP install disk, ignored the first prompt to repair (Using Command Prompt) and used the SECOND repair screen which, to my knowledge, delete's all the required files for windows to operate and then replaces them all with the versions that are on the disk. I was using IE8 before the repair and i've now been given the old IE6 from the CD and my product key is now invalid
OK, That is quite a bit different than running System File Checker which were the instructions I gave. It would seem that you have done a repair install using a different installation disk. I would call Microsoft and explain the situation, give them your original product key, things should be OK did it repair all the issues with the computer?
i've downloaded a "Windows XP Key Changer" which lets you change the Product key (it does NOT bypass validation) i then tried using that along with my genuine product key which has fixed that issue. i can show you the Validation if you wish. also, Yes, it did resolve the "Unable to open computer properties" problems. Thanks for your assistance. Duey this thread can now be closed
Well, as long as you were able to use your legit key in the end, that's what counts. Is anything left from the prior install, or has this over-install removed all the tools / logs etc. I'm thinking there may still be some tool clean up for me to do, and /or if you wanted to run a fresh DDS log and Attach.txt, I could make certain there is no malware remaining from this.
Yes. It wasn't a full re-install (delete EVERYTHING and start from fresh) it deleted all system files and replaced them. I will run DDS now for you :)
DDS.TXT

DDS (Ver_10-03-17.01) - NTFSx86
Run by [removed] at 14:25:45.48 on 29/04/2010
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_18
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1919.1193 [GMT 1:00]

AV: AntiVir Desktop *On-access scanning enabled* (Updated) {AD166499-45F9-482A-A743-FDD3350758C7}
FW: COMODO Firewall *enabled* {043803A3-4F86-4ef6-AFC5-F6E02A79969B}

============== Running Processes ===============

C:\Program Files\COMODO\COMODO livePCsupport\CLPSLS.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
svchost.exe
svchost.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\brss01a.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Breakaway\breakaway.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\HPZipm12.exe
C:\WINDOWS\system32\tcpsvcs.exe
C:\WINDOWS\System32\snmp.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Breakaway\breakaway.exe
C:\WINDOWS\system32\mqsvc.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\mqtgsvc.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\osk.exe
C:\WINDOWS\system32\MSSWCHX.EXE
C:\Program Files\Windows Live\Mail\wlmail.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Documents and Settings\Mum\My Documents\Downloads\dds.scr

============== Pseudo HJT Report ===============

uInternet Settings,ProxyOverride = *.local
BHO: {02478D38-C3F9-4efb-9B51-7695ECA05670} - No File
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg9\avgssie.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: IEDownloadCatcher.DownloadManager: {aecb3c96-189c-35f9-9c0b-a3832b3c1839} - mscoree.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File
mRun: [High Definition Audio Property Page Shortcut] HDAShCut.exe
mRun: [SkyTel] SkyTel.EXE
mRun: [nwiz] nwiz.exe /installquiet
mRun: [Breakaway] "c:\program files\breakaway\breakaway.exe" force
mRun: [SynTPLpr] c:\program files\synaptics\syntp\SynTPLpr.exe
mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [Windows Defender] "c:\program files\windows defender\MSASCui.exe" -hide
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [MsmqIntCert] regsvr32 /s mqrt.dll
mRun: [RTHDCPL] RTHDCPL.EXE
mRun: [Alcmtr] ALCMTR.EXE
mRun: [avgnt] "c:\program files\avira\antivir desktop\avgnt.exe" /min
mRun: [COMODO Internet Security] "c:\program files\comodo\comodo internet security\cfp.exe" -h
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
dRun: [DWQueuedReporting] "c:\progra~1\common~1\micros~1\dw\dwtrig20.exe" -t
dRunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe
IE: Download with Faster Downloader - c:\program files\psykonikcorp\faster downloader\dl.htm
IE: E&xport to Microsoft Excel - c:\progra~1\micros~4\office11\EXCEL.EXE/3000
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~4\office11\REFIEBAR.DLL
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://go.microsoft.com/fwlink/?linkid=39204
DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} - hxxp://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1266036412781
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
DPF: {A27C56D2-3F58-4ABB-AA31-1168EDA6636F} - hxxp://utilities.pcpitstop.com/Nirvana/controls/pcmatic.cab
DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} - hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
TCP: {5952FBA8-3A7E-4D84-AD2A-86D1E9102708} = 156.154.70.22,156.154.71.22
TCP: {5F828250-240F-438D-9AE9-D0C2007E76E0} = 156.154.70.22,156.154.71.22
TCP: {960FD7CA-C8F6-4F8E-A042-CBE1BEE26A7E} = 156.154.70.22,156.154.71.22
AppInit_DLLs: c:\windows\system32\guard32.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: Microsoft AntiMalware ShellExecuteHook: {091eb208-39dd-417d-a5dd-7e2c2d8fb9cb} - c:\progra~1\wifd1f~1\MpShHook.dll

================= FIREFOX ===================

FF - ProfilePath - c:\docume~1\mum\applic~1\mozilla\firefox\profiles\c1qwdl02.default\
FF - prefs.js: network.proxy.type - 4
FF - plugin: c:\documents and settings\mum\application data\mozilla\firefox\profiles\c1qwdl02.default\extensions\{e2883e8f-472f-4fb0-9522-ac9bf37916a7}\plugins\np_gp.dll
FF - plugin: c:\program files\microsoft\office live\npOLW.dll
FF - plugin: c:\windows\system32\c2mp\npdivx32.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\dotnetassistantextension\
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}

—- FIREFOX POLICIES —-
FF - user.js: yahoo.homepage.dontask - truec:\program files\mozilla firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\mozilla firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\mozilla firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pr
ef", true);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);

============= SERVICES / DRIVERS ===============

R1 avgio;avgio;c:\program files\avira\antivir desktop\avgio.sys [2010-4-29 11608]
R1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\system32\drivers\cmdGuard.sys [2010-4-9 225344]
R1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\drivers\cmdhlp.sys [2010-4-9 25240]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\avira\antivir desktop\sched.exe [2010-4-29 135336]
R2 AntiVirService;Avira AntiVir Guard;c:\program files\avira\antivir desktop\avguard.exe [2010-4-29 267432]
R2 avgntflt;avgntflt;c:\windows\system32\drivers\avgntflt.sys [2010-3-19 60936]
R2 CLPSLS;COMODO livePCsupport Service;c:\program files\comodo\comodo livepcsupport\CLPSLS.exe [2010-2-19 148744]
R2 cmdAgent;COMODO Internet Security Helper Service;c:\program files\comodo\comodo internet security\cmdagent.exe [2010-4-9 1769216]
R2 WinDefend;Windows Defender;c:\program files\windows defender\MsMpEng.exe [2006-11-3 13592]
R3 EuMusDesignVirtualAudioCableWdm_lcs;Breakaway Pipeline (WDM);c:\windows\system32\drivers\vaclcskd.sys [2008-8-27 48872]
R3 genmcmnUSB;USB Scroll Mouse Driver;c:\windows\system32\drivers\gflmouhid.sys [2004-4-19 6656]
R3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter;c:\windows\system32\drivers\RTL8192su.sys [2010-2-24 598400]
S3 cpuz131;cpuz131;\??\c:\docume~1\mum\locals~1\temp\cpuz131\cpuz_x32.sys –> c:\docume~1\mum\locals~1\temp\cpuz131\cpuz_x32.sys [?]
S3 cpuz132;cpuz132;\??\c:\docume~1\mum\locals~1\temp\cpuz132\cpuz132_x32.sys –> c:\docume~1\mum\locals~1\temp\cpuz132\cpuz132_x32.sys [?]

=============== Created Last 30 ================

2010-04-29 02:03:51 594432 -c—-w- c:\windows\system32\dllcache\msfeeds.dll
2010-04-29 02:03:51 55296 -c—-w- c:\windows\system32\dllcache\msfeedsbs.dll
2010-04-29 02:03:51 247808 -c—-w- c:\windows\system32\dllcache\ieproxy.dll
2010-04-29 02:03:51 1985536 -c—-w- c:\windows\system32\dllcache\iertutil.dll
2010-04-29 02:03:51 12800 -c—-w- c:\windows\system32\dllcache\xpshims.dll
2010-04-29 02:03:51 11070976 -c—-w- c:\windows\system32\dllcache\ieframe.dll
2010-04-29 00:40:46 0 d—–w- c:\program files\MSXML 6.0
2010-04-29 00:22:17 0 d—–w- c:\docume~1\alluse~1\applic~1\Comodo
2010-04-29 00:17:59 773 -c—-w- c:\windows\system32\dllcache\cnth.gif
2010-04-29 00:17:59 773 -c—-w- c:\windows\system32\dllcache\cnt.gif
2010-04-29 00:17:59 772 -c—-w- c:\windows\system32\dllcache\cntd.gif
2010-04-29 00:17:59 760 -c—-w- c:\windows\system32\dllcache\cloapph.gif
2010-04-29 00:17:59 717 -c—-w- c:\windows\system32\dllcache\cloapp.gif
2010-04-29 00:17:58 999 -c—-w- c:\windows\system32\dllcache\bktrh.gif
2010-04-29 00:17:38 0 d—–w- c:\docume~1\mum\applic~1\Avira
2010-04-29 00:11:56 32000 —-a-w- c:\windows\system32\drivers\tap0901.sys
2010-04-29 00:11:09 0 d—–w- c:\docume~1\alluse~1\applic~1\Comodo Downloader
2010-04-29 00:06:07 0 d—–w- c:\program files\Avira
2010-04-29 00:06:07 0 d—–w- c:\docume~1\alluse~1\applic~1\Avira
2010-04-28 23:45:33 215552 -c—-w- c:\windows\system32\dllcache\wordpad.exe
2010-04-28 23:40:40 272128 -c—-w- c:\windows\system32\dllcache\bthport.sys
2010-04-28 23:40:21 353792 -c—-w- c:\windows\system32\dllcache\srv.sys
2010-04-28 23:36:53 203136 -c—-w- c:\windows\system32\dllcache\rmcast.sys
2010-04-28 23:36:42 1315328 -c—-w- c:\windows\system32\dllcache\msoe.dll
2010-04-28 23:36:18 691712 -c—-w- c:\windows\system32\dllcache\inetcomm.dll
2010-04-28 23:32:35 337408 -c—-w- c:\windows\system32\dllcache\netapi32.dll
2010-04-28 23:32:17 177664 -c—-w- c:\windows\system32\dllcache\wintrust.dll
2010-04-28 23:31:48 455680 -c—-w- c:\windows\system32\dllcache\mrxsmb.sys
2010-04-28 23:31:39 86016 -c–a-w- c:\windows\system32\dllcache\cabview.dll
2010-04-28 23:06:56 0 d—–w- C:\!KillBox
2010-04-28 23:03:58 0 d—–w- C:\MyBootCD
2010-04-28 21:00:59 30208 -c–a-w- c:\windows\system32\dllcache\sm87w.dll
2010-04-28 20:59:48 92416 -c–a-w- c:\windows\system32\dllcache\mga.sys
2010-04-28 20:58:40 18944 -c–a-w- c:\windows\system32\dllcache\cprofile.exe
2010-04-28 20:57:55 7168 -c–a-w- c:\windows\system32\dllcache\wamregps.dll
2010-04-28 20:57:31 7680 -c–a-w- c:\windows\system32\dllcache\inetmgr.exe
2010-04-28 20:57:31 19968 -c–a-w- c:\windows\system32\dllcache\inetsloc.dll
2010-04-28 20:57:31 169984 -c–a-w- c:\windows\system32\dllcache\iisui.dll
2010-04-28 20:57:30 5632 -c–a-w- c:\windows\system32\dllcache\iisrstap.dll
2010-04-28 20:57:30 14336 -c–a-w- c:\windows\system32\dllcache\iisreset.exe
2010-04-28 20:57:29 6144 -c–a-w- c:\windows\system32\dllcache\ftpsapi2.dll
2010-04-28 20:57:24 94720 -c–a-w- c:\windows\system32\dllcache\certmap.ocx
2010-04-28 20:54:53 488 —ha-r- c:\windows\system32\logonui.exe.manifest
2010-04-28 20:54:39 749 —ha-r- c:\windows\WindowsShell.Manifest
2010-04-28 20:54:39 749 —ha-r- c:\windows\system32\wuaucpl.cpl.manifest
2010-04-28 20:54:39 749 —ha-r- c:\windows\system32\sapi.cpl.manifest
2010-04-28 20:54:39 749 —ha-r- c:\windows\system32\nwc.cpl.manifest
2010-04-28 20:54:39 749 —ha-r- c:\windows\system32\ncpa.cpl.manifest
2010-04-28 20:40:50 28160 —-a-w- c:\windows\system32\irmon.dll
2010-04-28 20:40:49 151552 —-a-w- c:\windows\system32\irftp.exe
2010-04-28 20:40:48 8192 —-a-w- c:\windows\system32\wshirda.dll
2010-04-28 19:23:02 24661 -c–a-w- c:\windows\system32\dllcache\spxcoins.dll
2010-04-28 19:23:02 24661 —-a-w- c:\windows\system32\spxcoins.dll
2010-04-28 19:23:02 13312 -c–a-w- c:\windows\system32\dllcache\irclass.dll
2010-04-28 19:23:02 13312 —-a-w- c:\windows\system32\irclass.dll
2010-04-28 19:22:48 8574 -c–a-w- c:\windows\system32\dllcache\IASNT4.CAT
2010-04-28 19:22:48 797189 -c–a-w- c:\windows\system32\dllcache\NT5IIS.CAT
2010-04-28 19:22:48 7382 -c–a-w- c:\windows\system32\dllcache\OEMBIOS.CAT
2010-04-28 19:22:48 399645 -c–a-w- c:\windows\system32\dllcache\MAPIMIG.CAT
2010-04-28 19:22:48 37484 -c–a-w- c:\windows\system32\dllcache\MW770.CAT
2010-04-28 19:22:48 13472 -c–a-w- c:\windows\system32\dllcache\HPCRDP.CAT
2010-04-28 19:22:47 1042903 -c–a-w- c:\windows\system32\dllcache\SP2.CAT
2010-04-28 19:22:38 13753 —-a-r- c:\windows\SET51.tmp
2010-04-28 19:22:35 1086058 —-a-r- c:\windows\SET45.tmp
2010-04-28 19:22:30 1042903 —-a-r- c:\windows\SET42.tmp
2010-04-28 12:41:27 16384 -c–a-w- c:\windows\system32\dllcache\isignup.exe
2010-04-28 12:37:03 0 —-a-w- c:\windows\system32\mapisvc.inf
2010-04-28 12:22:56 7334 -c–a-w- c:\windows\system32\dllcache\wmerrenu.cat
2010-04-28 12:22:51 13753 —-a-r- c:\windows\SETB3.tmp
2010-04-28 12:22:46 1086058 —-a-r- c:\windows\SETA7.tmp
2010-04-28 12:22:42 1042903 —-a-r- c:\windows\SETA4.tmp
2010-04-27 23:17:36 0 d-sha-r- C:\cmdcons
2010-04-27 23:16:30 98816 —-a-w- c:\windows\sed.exe
2010-04-27 23:16:30 77312 —-a-w- c:\windows\MBR.exe
2010-04-27 23:16:30 256512 —-a-w- c:\windows\PEV.exe
2010-04-27 23:16:30 161792 —-a-w- c:\windows\SWREG.exe
2010-04-27 16:16:31 501070 —-a-w- c:\windows\setupapi.old
2010-04-25 01:14:10 587 —-a-w- c:\windows\system32\runrefog.lnk
2010-04-25 01:14:10 587 —-a-w- c:\windows\system32\runkgb.lnk
2010-04-25 00:08:39 221184 —-a-w- c:\windows\system32\wmpns.dll
2010-04-21 13:02:02 0 d-sh–w- c:\documents and settings\mum\IECompatCache
2010-04-21 13:00:57 0 d-sh–w- c:\documents and settings\mum\PrivacIE
2010-04-21 11:31:35 0 d-sh–w- c:\documents and settings\mum\IETldCache
2010-04-21 02:07:01 0 d—–w- c:\windows\ie8updates
2010-04-21 02:05:59 0 dc-h–w- c:\windows\ie8
2010-04-21 01:50:04 0 d—–w- c:\program files\Windows Desktop Search
2010-04-13 02:39:27 0 d—–w- c:\windows\system32\Adobe
2010-04-09 00:26:12 277240 —-a-w- c:\windows\system32\guard32.dll
2010-04-09 00:25:46 25240 —-a-w- c:\windows\system32\drivers\cmdhlp.sys
2010-04-09 00:25:46 225344 —-a-w- c:\windows\system32\drivers\cmdGuard.sys
2010-04-09 00:25:44 15464 —-a-w- c:\windows\system32\drivers\cmderd.sys
2010-04-08 19:15:44 5632 —-a-w- c:\windows\system32\ptpusb.dll
2010-04-08 19:15:42 159232 —-a-w- c:\windows\system32\ptpusd.dll
2010-04-08 19:15:36 15104 —-a-w- c:\windows\system32\drivers\usbscan.sys
2010-04-06 03:09:53 0 d—–w- c:\program files\iPod
2010-04-06 03:09:47 0 d—–w- c:\program files\iTunes
2010-04-06 03:09:47 0 d—–w- c:\docume~1\alluse~1\applic~1\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
2010-04-06 03:02:34 0 d—–w- c:\program files\Bonjour
2010-04-01 11:53:54 348160 —-a-w- c:\windows\system32\msvcr71.dll
2010-04-01 11:53:52 499712 —-a-w- c:\windows\system32\msvcp71.dll

==================== Find3M ====================

2010-04-28 20:52:17 24232 —-a-w- c:\windows\system32\emptyregdb.dat
2010-03-29 14:24:58 38224 —-a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-03-29 14:24:46 20824 —-a-w- c:\windows\system32\drivers\mbam.sys
2010-03-24 00:56:37 4212 —ha-w- c:\windows\system32\zllictbl.dat
2010-03-19 10:12:44 1474832 —-a-w- c:\windows\system32\drivers\sfi.dat
2010-03-01 02:59:17 38428 —ha-w- c:\windows\system32\mlfcache.dat
2010-02-25 06:24:37 916480 —-a-w- c:\windows\system32\wininet.dll
2010-02-24 09:16:06 181632 ——w- c:\windows\system32\MpSigStub.exe
2010-02-18 02:11:45 411368 —-a-w- c:\windows\system32\deploytk.dll
2010-02-16 14:08:49 2146304 —-a-w- c:\windows\system32\ntoskrnl.exe
2010-02-16 13:25:04 2024448 —-a-w- c:\windows\system32\ntkrnlpa.exe
2010-02-12 10:46:14 91424 —-a-w- c:\windows\system32\dnssd.dll
2010-02-12 10:46:14 107808 —-a-w- c:\windows\system32\dns-sd.exe
2010-02-12 10:03:03 293376 —-a-w- c:\windows\system32\browserchoice.exe
2010-02-12 04:33:11 100864 —-a-w- c:\windows\system32\6to4svc.dll
2008-04-14 05:42:30 60416 –sha-w- c:\windows\servicepackfiles\i386\msimn.exe

============= FINISH: 14:26:41.14 ===============








Attach.txt

UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT

DDS (Ver_10-03-17.01)

Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 4/28/2010 10:02:18 PM
System Uptime: 4/29/2010 3:26:50 AM (11 hours ago)

Motherboard: PACKARD BELL BV | | EasyNote SW51
Processor: AMD Turion™ 64 X2 Mobile Technology TL-50 | S1 | 1603/200mhz

==== Disk Partitions =========================

C: is FIXED (NTFS) - 112 GiB total, 82.305 GiB free.
D: is Removable
E: is Removable
F: is Removable
G: is CDROM ()
H: is Removable
I: is Removable

==== Disabled Device Manager Items =============

==== System Restore Points ===================

RP1: 4/28/2010 10:42:56 PM - System Checkpoint
RP2: 4/29/2010 12:22:33 AM - Software Distribution Service 3.0
RP3: 4/29/2010 12:37:27 AM - Removed AVG Free 9.0
RP4: 4/29/2010 12:38:32 AM - Installed AVG Free 9.0
RP5: 4/29/2010 1:06:07 AM - Avira AntiVir Personal - 29/04/2010 01:05
RP6: 4/29/2010 1:13:18 AM - Installed COMODO Internet Security
RP7: 4/29/2010 1:26:51 AM - Software Distribution Service 3.0
RP8: 4/29/2010 1:48:29 AM - Software Distribution Service 3.0
RP9: 4/29/2010 2:58:53 AM - Software Distribution Service 3.0
RP10: 4/29/2010 2:59:56 AM - Software Distribution Service 3.0
RP11: 4/29/2010 3:05:24 AM - Revo Uninstaller's restore point - VistaMizer 3.6.0.0

==== Installed Programs ======================

Acrobat.com
Adobe AIR
Adobe Download Manager
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Reader 9.3.2
Adobe Shockwave Player 11.5
Apple Application Support
Apple Mobile Device Support
Apple Software Update
AusLogics Disk Defrag
Avira AntiVir Personal - Free Antivirus
Bonjour
Breakaway for Windows
CCleaner
COMODO Internet Security
COMODO livePCsupport
Faster Downloader
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Microsoft Visual Basic 2008 Express Edition with SP1 - ENU (KB945282)
Hotfix for Microsoft Visual Basic 2008 Express Edition with SP1 - ENU (KB946040)
Hotfix for Microsoft Visual Basic 2008 Express Edition with SP1 - ENU (KB946308)
Hotfix for Microsoft Visual Basic 2008 Express Edition with SP1 - ENU (KB946344)
Hotfix for Microsoft Visual Basic 2008 Express Edition with SP1 - ENU (KB947540)
Hotfix for Microsoft Visual Basic 2008 Express Edition with SP1 - ENU (KB947789)
Hotfix for Microsoft Visual Basic 2008 Express Edition with SP1 - ENU (KB948127)
Hotfix for Microsoft Visual Basic 2008 Express Edition with SP1 - ENU (KB951708)
Hotfix for Windows XP (KB952287)
Hotfix for Windows XP (KB961118)
iTunes
Java Auto Updater
Java™ 6 Update 18
Junk Mail filter update
Malwarebytes' Anti-Malware
Maxtor Manager
Media Player Codec Pack 3.9.1
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Security Update (KB953297)
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft Application Error Reporting
Microsoft Choice Guard
Microsoft Office Live Add-in 1.4
Microsoft Office Professional Edition 2003
Microsoft Primary Interoperability Assemblies 2005
Microsoft Silverlight
Microsoft SQL Server 2008 Management Objects
Microsoft SQL Server Compact 3.5 SP1 Design Tools English
Microsoft SQL Server Compact 3.5 SP1 English
Microsoft Visual Basic 2008 Express Edition with SP1 - ENU
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Windows SDK for Visual Studio 2008 SP1 Express Tools for .NET Framework - enu
Microsoft Windows SDK for Visual Studio 2008 SP1 Express Tools for Win32
Mozilla Firefox (3.6.3)
MSVCRT
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 6 Service Pack 2 (KB973686)
MyPhoneExplorer
Next Generation Visualisations
NT Registry Analyzer
NVIDIA Drivers
QuickTime
Realtek High Definition Audio Driver
Revo Uninstaller 1.87
Security Update for Windows Media Player (KB973540)
Security Update for Windows Media Player (KB979402)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956844)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958869)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB969059)
Security Update for Windows XP (KB969947)
Security Update for Windows XP (KB970238)
Security Update for Windows XP (KB971468)
Security Update for Windows XP (KB971657)
Security Update for Windows XP (KB972270)
Security Update for Windows XP (KB973354)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973869)
Security Update for Windows XP (KB973904)
Security Update for Windows XP (KB974112)
Security Update for Windows XP (KB974318)
Security Update for Windows XP (KB974392)
Security Update for Windows XP (KB974571)
Security Update for Windows XP (KB975025)
Security Update for Windows XP (KB975467)
Security Update for Windows XP (KB975560)
Security Update for Windows XP (KB975561)
Security Update for Windows XP (KB975713)
Security Update for Windows XP (KB977816)
Security Update for Windows XP (KB977914)
Security Update for Windows XP (KB978037)
Security Update for Windows XP (KB978338)
Security Update for Windows XP (KB978601)
Security Update for Windows XP (KB978706)
Security Update for Windows XP (KB979309)
Security Update for Windows XP (KB979683)
Security Update for Windows XP (KB980232)
Segoe UI
SereneScreen Marine Aquarium 3
SpywareBlaster 4.2
SQL Server System CLR Types
Synaptics Pointing Device Driver
System Requirements Lab
Tweak N' Tune 1.1.0
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Windows Internet Explorer 8 (KB980182)
Update for Windows XP (KB955759)
Update for Windows XP (KB961503)
Update for Windows XP (KB967715)
Update for Windows XP (KB968389)
Update for Windows XP (KB973687)
Update for Windows XP (KB973815)
Update for Windows XP (KB980182)
VideoLAN VLC media player 0.8.6d
WebFldrs XP
Windows Defender
Windows Genuine Advantage Notifications (KB905474)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Internet Explorer 8
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live ID Sign-in Assistant
Windows Live Mail
Windows Live Messenger
Windows Live Upload Tool
Windows Media Format 11 runtime
Windows Media Player 11
Windows Media Player 9 Series Winter Fun Pack
Windows PowerShell™ 1.0
Windows XP Service Pack 3
WinRAR archiver
YouTube Downloader 2.5.3
ZyDAS IEEE 802.11 b+g Wireless LAN - USB

==== Event Viewer Messages From Past Week ========

4/29/2010 1:53:12 AM, error: Server [2505] - The server could not bind to the transport \Device\NetBT_Tcpip_{5F828250-240F-438D-9AE9-D0C2007E76E0} because another computer on the network has the same name. The server could not start.
4/29/2010 1:04:56 AM, error: SideBySide [59] - Resolve Partial Assembly failed for Microsoft.VC90.CRT. Reference error message: The referenced assembly is not installed on your system. .
4/29/2010 1:04:56 AM, error: SideBySide [59] - Generate Activation Context failed for C:\DOCUME~1\Mum\LOCALS~1\Temp\RarSFX0\redist.dll. Reference error message: The operation completed successfully. .
4/29/2010 1:04:56 AM, error: SideBySide [32] - Dependent Assembly Microsoft.VC90.CRT could not be found and Last Error was The referenced assembly is not installed on your system.
4/28/2010 9:56:32 PM, error: SideBySide [59] - Resolve Partial Assembly failed for Microsoft.VC80.CRT. Reference error message: The referenced assembly is not installed on your system. .
4/28/2010 9:56:32 PM, error: SideBySide [32] - Dependent Assembly Microsoft.VC80.CRT could not be found and Last Error was The referenced assembly is not installed on your system.
4/28/2010 9:56:11 PM, error: DCOM [10005] - DCOM got error "%1058" attempting to start the service SENS with arguments "" in order to run the server: {D3938AB0-5B9D-11D1-8DD2-00AA004ABD5E}
4/28/2010 12:33:17 AM, error: Service Control Manager [7016] - The BrSplService service has reported an invalid current state 0.
4/28/2010 12:18:47 PM, information: Windows File Protection [64018] - Windows File Protection file scan was cancelled by user interaction, user name is Mum.
4/28/2010 12:18:47 PM, information: Windows File Protection [64005] - The protected system file c:\program files\windows media player\mplayer2.exe was not restored to its original, valid version because the Windows File Protection restoration process was cancelled by user interaction, user name is Mum. The file version of the bad file is 6.4.9.1126.
4/28/2010 12:18:04 PM, information: Windows File Protection [64020] - Windows File Protection scan found that the system file c:\program files\windows media player\mplayer2.exe has a bad signature. This file was restored to the original version to maintain system stability. The file version of the system file is 6.4.9.1126.
4/28/2010 12:18:02 PM, information: Windows File Protection [64020] - Windows File Protection scan found that the system file c:\windows\system32\winlogon.exe has a bad signature. This file was restored to the original version to maintain system stability. The file version of the system file is 5.1.2600.5512.
4/28/2010 12:18:02 PM, information: Windows File Protection [64004] - The protected system file c:\windows\system32\winlogon.exe could not be restored to its original, valid version. The file version of the bad file is 5.1.2600.5512 The specific error code is 0x800b0100 [No signature was present in the subject. ].
4/28/2010 12:17:58 PM, information: Windows File Protection [64004] - The protected system file c:\windows\system32\sysocmgr.exe could not be restored to its original, valid version. The file version of the bad file is 5.1.2600.5512 The specific error code is 0x800b0100 [No signature was present in the subject. ].
4/28/2010 12:17:57 PM, information: Windows File Protection [64020] - Windows File Protection scan found that the system file c:\windows\system32\sysocmgr.exe has a bad signature. This file was restored to the original version to maintain system stability. The file version of the system file is 5.1.2600.5512.
4/28/2010 12:17:55 PM, information: Windows File Protection [64020] - Windows File Protection scan found that the system file c:\windows\system32\setupapi.dll has a bad signature. This file was restored to the original version to maintain system stability. The file version of the system file is 5.1.2600.5512.
4/28/2010 12:17:55 PM, information: Windows File Protection [64004] - The protected system file c:\windows\system32\setupapi.dll could not be restored to its original, valid version. The file version of the bad file is 5.1.2600.5512 The specific error code is 0x800b0100 [No signature was present in the subject. ].
4/28/2010 12:17:54 PM, information: Windows File Protection [64020] - Windows File Protection scan found that the system file c:\windows\system32\scrobj.dll has a bad signature. This file was restored to the original version to maintain system stability. The file version of the system file is 5.7.0.18066.
4/28/2010 12:17:54 PM, information: Windows File Protection [64004] - The protected system file c:\windows\system32\scrobj.dll could not be restored to its original, valid version. The file version of the bad file is 5.7.0.18066 The specific error code is 0x800b0100 [No signature was present in the subject. ].
4/28/2010 12:17:49 PM, information: Windows File Protection [64004] - The protected system file c:\windows\system32\ole32.dll could not be restored to its original, valid version. The file version of the bad file is 5.1.2600.5512 The specific error code is 0x800b0100 [No signature was present in the subject. ].
4/28/2010 12:17:48 PM, information: Windows File Protection [64020] - Windows File Protection scan found that the system file c:\windows\system32\ole32.dll has a bad signature. This file was restored to the original version to maintain system stability. The file version of the system file is 5.1.2600.5512.
4/28/2010 12:17:43 PM, information: Windows File Protection [64020] - Windows File Protection scan found that the system file c:\windows\system32\itss.dll has a bad signature. This file was restored to the original version to maintain system stability. The file version of the system file is 5.2.3790.4186.
4/28/2010 12:17:43 PM, information: Windows File Protection [64004] - The protected system file c:\windows\system32\itss.dll could not be restored to its original, valid version. The file version of the bad file is 5.2.3790.4186 The specific error code is 0x800b0100 [No signature was present in the subject. ].
4/28/2010 12:17:28 PM, information: Windows File Protection [64020] - Windows File Protection scan found that the system file c:\windows\system32\cryptui.dll has a bad signature. This file was restored to the original version to maintain system stability. The file version of the system file is 5.131.2600.5512.
4/28/2010 12:17:28 PM, information: Windows File Protection [64004] - The protected system file c:\windows\system32\cryptui.dll could not be restored to its original, valid version. The file version of the bad file is 5.131.2600.5512 The specific error code is 0x800b0100 [No signature was present in the subject. ].
4/28/2010 12:17:28 PM, information: Windows File Protection [64004] - The protected system file c:\windows\system32\compatui.dll could not be restored to its original, valid version. The file version of the bad file is 1.0.0.1 The specific error code is 0x800b0100 [No signature was present in the subject. ].
4/28/2010 12:17:27 PM, information: Windows File Protection [64020] - Windows File Protection scan found that the system file c:\windows\system32\compatui.dll has a bad signature. This file was restored to the original version to maintain system stability. The file version of the system file is 1.0.0.1.
4/28/2010 12:17:27 PM, information: Windows File Protection [64020] - Windows File Protection scan found that the system file c:\windows\system32\comdlg32.dll has a bad signature. This file was restored to the original version to maintain system stability. The file version of the system file is 6.0.2900.5512.
4/28/2010 12:17:27 PM, information: Windows File Protection [64004] - The protected system file c:\windows\system32\comdlg32.dll could not be restored to its original, valid version. The file version of the bad file is 6.0.2900.5512 The specific error code is 0x800b0100 [No signature was present in the subject. ].
4/28/2010 12:17:27 PM, information: Windows File Protection [64004] - The protected system file c:\windows\system32\comctl32.dll could not be restored to its original, valid version. The file version of the bad file is 5.82.2900.5512 The specific error code is 0x800b0100 [No signature was present in the subject. ].
4/28/2010 12:17:26 PM, information: Windows File Protection [64020] - Windows File Protection scan found that the system file c:\windows\system32\comctl32.dll has a bad signature. This file was restored to the original version to maintain system stability. The file version of the system file is 5.82.2900.5512.
4/28/2010 12:17:25 PM, information: Windows File Protection [64021] - The system file c:\windows\system32\inetsrv\certmap.ocx could not be copied into the DLL cache. The specific error code is 0x000004c7 [The operation was canceled by the user. ]. This file is necessary to maintain system stability.
4/28/2010 12:15:29 PM, information: Windows File Protection [64020] - Windows File Protection scan found that the system file c:\windows\system32\ahui.exe has a bad signature. This file was restored to the original version to maintain system stability. The file version of the system file is 5.1.2600.5512.
4/28/2010 12:15:29 PM, information: Windows File Protection [64004] - The protected system file c:\windows\system32\ahui.exe could not be restored to its original, valid version. The file version of the bad file is 5.1.2600.5512 The specific error code is 0x800b0100 [No signature was present in the subject. ].
4/28/2010 12:15:24 PM, information: Windows File Protection [64016] - Windows File Protection file scan was started.
4/28/2010 1:56:48 PM, error: DCOM [10016] - The application-specific permission settings do not grant Local Launch permission for the COM Server application with CLSID {D851F103-8C90-4321-AFF0-58BA5BD421C2} to the user NT AUTHORITY\SYSTEM SID (S-1-5-18). This security permission can be modified using the Component Services administrative tool.
4/28/2010 1:52:32 PM, error: Setup [60055] - Windows Setup encountered non-fatal errors during installation. Please check the setuperr.log found in your Windows directory for more information.
4/27/2010 3:56:03 AM, error: Service Control Manager [7011] - Timeout (30000 milliseconds) waiting for a transaction response from the avg9wd service.
4/27/2010 3:46:25 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service StiSvc with arguments "" in order to run the server: {A1F4E726-8CF1-11D1-BF92-0060081ED811}
4/27/2010 3:31:56 AM, error: Service Control Manager [7011] - Timeout (30000 milliseconds) waiting for a transaction response from the NVSvc service.
4/27/2010 2:19:28 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: AmdPPM AvgLdx86 AvgMfx86 Fips
4/27/2010 2:19:28 PM, error: Service Control Manager [7001] - The Message Queuing Triggers service depends on the Message Queuing service which failed to start because of the following error: The dependency service or group failed to start.
4/27/2010 2:19:28 PM, error: Service Control Manager [7001] - The Message Queuing service depends on the Distributed Transaction Coordinator service which failed to start because of the following error: The dependency service or group failed to start.
4/27/2010 2:19:06 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
4/26/2010 11:51:12 PM, error: DCOM [10005] - DCOM got error "%1058" attempting to start the service WSearch with arguments "" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
4/26/2010 1:06:41 PM, error: W32Time [17] - Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15 minutes. The error was: A socket operation was attempted to an unreachable host. (0x80072751)

==== End Of File ===========================
Hi,

log looks good,

If there are no other outstanding issues, then there is just housekeeping to do:

Please do the following:


[external image: Posted Image] Your Java is out of date.
Java™ 6 Update 18 can be updated from the Java control panel Start > Control Panel (Classic View) > Java (looks like a coffee cup) > Update Tab > Update Now.

An update should begin; > follow the prompts.


Follow these steps to uninstall Combofix

  • Click START then RUN
  • Now copy/paste Combofix /uninstall into the runbox and click OK. Note the space between the ..X and the /U, it needs to be there.

[external image: Posted Image]




NEXT

Now to remove the rest of the tools that we have used in fixing your machine:
  • Make sure you have an Internet Connection.
  • Download OTC to your desktop and run it
  • A list of tool components used in the Cleanup of malware will be downloaded.
  • If your Firewall or Real Time protection attempts to block OTC to reach the Internet, please allow the application to do so.
  • Click Yes to begin the Cleanup process and remove these components, including this application.
  • You will be asked to reboot the machine to finish the Cleanup process. If you are asked to reboot the machine choose Yes.

If any logs/tools remain on your desktop > right click and delete them.


NEXT


Below I have included a number of recommendations for how to protect your computer against malware infections.

  • It is good security practice to change your passwords to all your online accounts on a fairly regular basis, this is especially true after an infection. Refer to this Microsoft article
    Strong passwords: How to create and use them

    Then consider a password keeper, to keep all your passwords safe.

  • Keep Windows updated by regularly checking their website at :
    http://windowsupdate.microsoft.com/
    This will ensure your computer has always the latest security updates available installed on your computer.

  • Make Internet Explorer more secure
    • Click Start > Run
    • Type Inetcpl.cpl & click OK
    • Click on the Security tab
    • Click Reset all zones to default level
    • Make sure the Internet Zone is selected & Click Custom level
    • In the ActiveX section, set the first two options ("Download signed and unsigned ActiveX controls) to "Prompt", and ("Initialize and Script ActiveX controls not marked as safe") to "Disable".
    • Next Click OK, then Apply button and then OK to exit the Internet Properties page.

  • ATF Cleaner - Cleans temporary files from IE and Windows, empties the recycle bin and more. Great tool to help speed up your computer and knock out those nasties that like to reside in the temp folders.


    WOT, Web of Trust, warns you about risky websites that try to scam visitors, deliver malware or send spam. Protect your computer against online threats by using WOT as your front-line layer of protection when browsing or searching in unfamiliar territory. WOT's color-coded icons show you ratings for 21 million websites, helping you avoid the dangerous sites:
    • Green to go
    • Yellow for caution
    • Red to stop
    WOT has an addon available for both Firefox, IE and chrome.


  • Keep a backup of your important files - Now, more than ever, it's especially important to protect your digital files and memories. This article is full of good information on alternatives for home backup solutions.

  • ERUNT (Emergency Recovery Utility NT) allows you to keep a complete backup of your registry and restore it when needed. The standard registry backup options that come with Windows back up most of the registry but not all of it. ERUNT however creates a complete backup set, including the Security hive and user related sections. ERUNT is easy to use and since it creates a full backup, there are no options or choices other than to select the location of the backup files. The backup set includes a small executable that will launch the registry restore if needed.

  • In light of your recent issue, I'm sure you'd like to avoid any future infections. Please take a look at these well written articles:
    Think Prevention.
    PC Safety and Security–What Do I Need?.


**Be very wary with any security software that is advertised in popups or in other ways. They are not only usually of no use, but often have malware in them.


Thank you for your patience, and performing all of the procedures requested.

Please respond one last time so we can consider the thread resolved and close it, thank-you.
Thanks for your help CatByte. the only outstanding issues are that if i use the full editor, i cannot type (or even click) into the message box but i can on quick reply. (Quote From First Post)Also, i'm trying to pair my phone with my laptop via bluetooth (Which works ok) then trying to add an outgoing port. (Bluetooth Devices > COM Ports > Add > Outgoing (Computer Initiates Connection) i then select my newly paired phone and the "Serial Port (SSP)" service click ok and then it says "Access is Denied." I've tried this on my Admin account and the root admin account and both are exactly the same. Other than that, everything is fine and it's only this forum that it occurs
Hi, I'm afraid I don't have an answer for you for that. I suggest you post a new topic in out tech forums, our expert techs may very well have a solution for you. good luck stay safe ~CB

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI