This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

Virus i think

7 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

I ran a full a upgrade on my computer, purchased a completely new internal hard drive. Formatted it and kept my back up for any files that i wanted to keep from the previous install on an external HD.

Now this issue just keeps coming back to haunt me every time. In this case, after i completely repartitioned my internal drive and formatted it. Then i started transferring some files from the external to the internal drive that i had backed up.

My previous install was an absolute mess, and actually caused problems with one particular external hard drive on my computer. In fact some how it was such a serous issue, that the drive failed on me and i had to replace a new one. This is now my 2nd drive that has had problems. Now that i started transferring files. I noticed my "icons" on all my HDD's in my computer are changed to "unknown file type". Some how when i transferred files yet again from my external. Thats when it happened. It not only locked my drive out some how so i can;'t access it but it also corrupted my drive. I formatted it and it still refreshes each time. if this is a virus issue. I want to completely eradicate any remnants of this infection once and for all. Some how ever time i back up files, i also end up with the virus still on my external hard drive some where. In any case, the one external HD that i have has a folder titled "PC back up" which is where i put all my important data files on after i reformatted. So after running scans with maleware btyes it actually picked up a few infections in that folder alone. I just can't seem to get rid of this virus no matter what i do. Even if i successfully delete it from this computer as i have done in the past many times with professional help on this forums. Some how, there is an application of some sorts in those files thats keeps launching the virus over again. It just keeps coming back on my machine.

Another issue. I installed Windows life messenger and it comes up with an error that says "can not locate crt.dll" what ever that is. I have tried downloading it over and over again and from the original MSN website. But it still has that error. I am wondering if its just a problem with there application. Anyways not to make things confusing.

So if you want to get caught up on what i been going through. Follow this link.


http://forums.whatthetech.com/index.php?showtopic=118153

http://forums.whatthetech.com/index.php?showtopic=118328


Hoepfully these therads don't confuse you. the 2nd one is the most recent thread after i had my computer fixed for the most part and the hard ware issues taken care of, The last part of that thread is where is started having HD issues again and now here i am for the third time. Trying to resolve this issue.

There have two back to back threads that i have been working closely with doug and another person terri, in solving alot of the issues i had on my computer when i had my previous windows install. As well as other hardware related issue's which i eventually fixed.

I figured this third issue would be best for the maleware team to figure out.
Hi jeff matthews,

:welcome:

My name is Tomk. I would be glad to take a look at your log and help you with solving any malware problems. Logs can take a while to research, so please be patient and I'd be grateful if you would note the following:

  • I will be working on your Malware issues, this may or may not, solve other issues you have with your machine.
  • The fixes are specific to your problem and should only be used for the issues on this machine.
  • Please continue to review my answers until I tell you your machine appears to be clear. Absence of symptoms does not mean that everything is clear.
  • It's often worth reading through these instructions and printing them for ease of reference.
  • If you don't know or understand something, please don't hesitate to say or ask!! It's better to be sure and safe than sorry.
  • Please reply to this thread. Do not start a new topic.

I need a log to be able to see anything.

Please download DDS by sUBs from one of the following links and save it to your desktop.
    • DDS.scr
    • DDS.pif
  • Disable any script blocking protection (How to Disable your Security Programs)
  • Double click DDS icon to run the tool (may take up to 3 minutes to run)
  • When done, DDS.txt will open.
  • After a few moments, attach.txt will open in a second window.
  • Save both reports to your desktop.
—————————————————
  • Post the contents of the DDS.txt report in your next reply
  • Attach the Attach.txt report to your post by scroling down to the Attachments area and then clicking Browse. Browse to where you saved the file, and click Open and the click UPLOAD.
DDS (Ver_11-03-05.01) - NTFSx86
Run by [removed] at 10:41:30.27 on Fri 05/06/2011
Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_25
Microsoft Windows 7 Ultimate 6.1.7600.0.1252.1.1033.18.2551.997 [GMT -7:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {108DAC43-C256-20B7-BB05-914135DA5160}
SP: Microsoft Security Essentials *Enabled/Updated* {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k hpdevmgmt
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\System32\svchost.exe -k HPZ12
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\svchost.exe -k HPService
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Windows\Explorer.EXE
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Nero\Nero 10\Nero BackItUp\NBAgent.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\HP\HP Software Update\hpwuschd2.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqbam08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Program Files\Nero\Update\NASvc.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\DllHost.exe
C:\Program Files\Real\RealPlayer\update\realsched.exe
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\msiexec.exe
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Users\Jeff\Desktop\dds.scr
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
BHO: HP Print Enhancer: {0347c33e-8762-4905-bf09-768834316c61} - c:\program files\hp\digital imaging\smart web printing\hpswp_printenhancer.dll
BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - c:\programdata\real\realplayer\browserrecordplugin\ie\rpbrowserrecordplugin.dll
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SEPsearchhelperie.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Windows Live Messenger Companion Helper: {9fdde16b-836f-4806-ab1f-1455cbeff289} - c:\program files\windows live\companion\companioncore.dll
BHO: Bing Bar BHO: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\program files\msn toolbar\platform\6.3.2322.0\npwinext.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: HP Smart BHO Class: {ffffffff-cf4e-4f2b-bdc2-0e72e116a856} - c:\program files\hp\digital imaging\smart web printing\hpswp_BHO.dll
TB: @c:\program files\msn toolbar\platform\6.3.2322.0\npwinext.dll,-100: {8dcb7100-df86-4384-8842-8fa844297b3f} - c:\program files\msn toolbar\platform\6.3.2322.0\npwinext.dll
EB: HP Smart Web Printing: {555d4d79-4bd2-4094-a395-cfc534424a05} - c:\program files\hp\digital imaging\smart web printing\hpswp_bho.dll
uRun: [LightScribe Control Panel] c:\program files\common files\lightscribe\LightScribeControlPanel.exe -hidden
uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
uRun: [Mal Updater 2] c:\program files\mal updater 2\MalUpdater.exe
mRun: [MSC] "c:\program files\microsoft security client\msseces.exe" -hide -runkey
mRun: [NBAgent] "c:\program files\nero\nero 10\nero backitup\NBAgent.exe" /WinStart
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [TkBellExe] "c:\program files\real\realplayer\update\realsched.exe" -osboot
mRun: [Malwarebytes' Anti-Malware (reboot)] "c:\program files\malwarebytes' anti-malware\mbam.exe" /runcleanupscript
mRun: [hpqSRMon] c:\program files\hp\digital imaging\bin\hpqSRMon.exe
mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe
mRun: []
StartupFolder: c:\users\jeff\appdata\roaming\micros~1\windows\startm~1\programs\startup\openof~1.lnk - c:\program files\openoffice.org 3\program\quickstart.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\hpdigi~1.lnk - c:\program files\hp\digital imaging\bin\hpqtra08.exe
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
mPolicies-system: EnableLinkedConnections = 1 (0x1)
IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - c:\program files\windows live\companion\companioncore.dll
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
IE: {DDE87865-83C5-48c4-8357-2F5B1AA84522} - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - c:\program files\hp\digital imaging\smart web printing\hpswp_BHO.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - c:\program files\windows live\photo gallery\AlbumDownloadProtocolHandler.dll
mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "c:\program files\common files\lightscribe\LSRunOnce.exe"
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\jeff\appdata\roaming\mozilla\firefox\profiles\ch5zmo76.default\
FF - prefs.js: network.proxy.type - 0
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\microsoft silverlight\4.0.60310.0\npctrlui.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
FF - plugin: c:\programdata\real\realplayer\browserrecordplugin\mozillaplugins\nprpchromebrowserrecordext.dll
FF - plugin: c:\programdata\real\realplayer\browserrecordplugin\mozillaplugins\nprphtml5videoshim.dll
.
============= SERVICES / DRIVERS ===============
.
R1 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2010-10-24 165264]
R1 MpKslb7ca917c;MpKslb7ca917c;c:\programdata\microsoft\microsoft antimalware\definition updates\{183704fa-7e8a-4a55-8965-0771fb4287e0}\MpKslb7ca917c.sys [2011-5-2 28752]
R2 NAUpdate;Nero Update;c:\program files\nero\update\NASvc.exe [2011-3-29 598312]
R3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\system32\drivers\MpNWMon.sys [2010-10-24 43392]
R3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\drivers\NisDrvWFP.sys [2010-10-24 54144]
R3 NisSrv;Microsoft Network Inspection;c:\program files\microsoft security client\antimalware\NisSrv.exe [2010-11-11 206360]
R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\drivers\yk62x86.sys [2009-7-13 311296]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
S3 fssfltr;fssfltr;c:\windows\system32\drivers\fssfltr.sys [2011-4-28 39272]
S3 fsssvc;Windows Live Family Safety Service;c:\program files\windows live\family safety\fsssvc.exe [2010-9-23 1493352]
S3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\wat\WatAdminSvc.exe [2011-4-29 1343400]
S4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\windows live\mesh\wlcrasvc.exe [2010-9-22 51040]
.
=============== Created Last 30 ================
.
2011-05-03 01:14:34 ——– d—–w- c:\users\jeff\appdata\local\{F67A9513-F66C-43F5-92CE-9E1DB0259ADB}
2011-05-03 01:13:55 28752 —-a-w- c:\progra~2\microsoft\microsoft antimalware\definition updates\{183704fa-7e8a-4a55-8965-0771fb4287e0}\MpKslb7ca917c.sys
2011-05-02 08:24:36 ——– d—–w- C:\Anime
2011-05-02 08:21:49 ——– d—–w- c:\users\jeff\appdata\roaming\Mal Updater
2011-05-02 08:21:35 ——– d—–w- c:\program files\Mal Updater 2
2011-05-02 08:15:02 ——– d—–w- c:\users\jeff\appdata\local\{55B87F8F-35F1-4075-A63F-ABFCE4404A44}
2011-05-02 08:11:19 ——– d—–w- c:\program files\DVDFab 8
2011-05-02 08:01:21 ——– d—–w- c:\users\jeff\appdata\roaming\OpenOffice.org
2011-05-02 07:59:40 ——– d—–w- c:\program files\JRE
2011-05-02 07:59:13 ——– d—–w- c:\program files\OpenOffice.org 3
2011-05-01 10:44:02 7071056 —-a-w- c:\progra~2\microsoft\microsoft antimalware\definition updates\{183704fa-7e8a-4a55-8965-0771fb4287e0}\mpengine.dll
2011-04-30 23:22:47 ——– d—–w- c:\progra~2\WEBREG
2011-04-30 23:16:01 ——– d—–w- c:\users\jeff\appdata\local\HP
2011-04-30 23:15:19 321536 —-a-w- c:\windows\system32\spool\prtprocs\w32x86\hpzpp696.dll
2011-04-30 22:56:17 ——– d—–w- c:\users\jeff\appdata\roaming\HpUpdate
2011-04-30 22:56:14 ——– d—–w- c:\program files\Coupons
2011-04-30 22:52:55 ——– d—–w- c:\program files\common files\HP
2011-04-30 22:52:35 ——– d—–w- c:\program files\common files\Hewlett-Packard
2011-04-30 22:51:35 118272 —-a-w- c:\windows\system32\hpz3l696.dll
2011-04-30 22:51:14 ——– d—–w- c:\program files\HP
2011-04-30 22:50:26 261432 —-a-w- c:\windows\system32\hpzids01.dll
2011-04-30 22:50:24 966656 —-a-w- c:\windows\system32\hpost_p02a.dll
2011-04-30 22:50:24 737280 —-a-w- c:\windows\system32\hposwia_p02a.dll
2011-04-30 22:50:23 307200 —-a-w- c:\windows\system32\hposc_p02a.dll
2011-04-30 22:15:36 ——– d—–w- c:\users\jeff\appdata\roaming\Windows Live Writer
2011-04-30 22:15:36 ——– d—–w- c:\users\jeff\appdata\local\Windows Live Writer
2011-04-30 16:39:43 ——– d—–w- c:\users\jeff\appdata\local\{B4E96D64-0788-4367-BE75-5E04249DE109}
2011-04-29 18:31:21 ——– d—–w- c:\windows\system32\Wat
2011-04-29 15:56:52 7071056 —-a-w- c:\progra~2\microsoft\microsoft antimalware\definition updates\backup\mpengine.dll
2011-04-29 10:13:11 257024 —-a-w- c:\windows\system32\msv1_0.dll
2011-04-29 10:11:03 99176 —-a-w- c:\windows\system32\PresentationHostProxy.dll
2011-04-29 10:11:03 49472 —-a-w- c:\windows\system32\netfxperf.dll
2011-04-29 10:11:03 297808 —-a-w- c:\windows\system32\mscoree.dll
2011-04-29 10:11:03 295264 —-a-w- c:\windows\system32\PresentationHost.exe
2011-04-29 10:11:03 1130824 —-a-w- c:\windows\system32\dfshim.dll
2011-04-29 10:02:06 190976 —-a-w- c:\windows\system32\drivers\ks.sys
2011-04-29 10:01:22 ——– d—–w- c:\program files\MSXML 4.0
2011-04-29 10:00:52 276992 —-a-w- c:\windows\system32\wcncsvc.dll
2011-04-28 17:16:24 ——– d—–w- c:\users\jeff\appdata\local\{96992E14-4E64-41A9-AA7F-019279337BF7}
2011-04-28 17:16:07 ——– d—–w- c:\users\jeff\Tracing
2011-04-28 17:02:38 ——– d—–w- c:\windows\en
2011-04-28 16:59:14 39272 —-a-w- c:\windows\system32\drivers\fssfltr.sys
2011-04-28 16:56:07 ——– d—–w- c:\users\jeff\appdata\local\MPlayer
2011-04-28 16:50:53 ——– d—–w- c:\program files\Microsoft SQL Server Compact Edition
2011-04-28 16:32:42 ——– d—–w- c:\windows\PCHEALTH
2011-04-28 15:22:56 ——– d—–w- c:\program files\Microsoft
2011-04-28 15:22:55 ——– d—–w- c:\program files\MSN Toolbar
2011-04-28 15:22:47 ——– d—–w- c:\program files\Bing Bar Installer
2011-04-28 15:22:46 469256 —-a-w- c:\program files\common files\windows live\.cache\1f9e2ab51cc05b807\InstallManager_WLE_WLE.exe
2011-04-28 15:19:11 ——– d—–w- c:\program files\uTorrent
2011-04-28 15:18:24 ——– d—–w- c:\users\jeff\appdata\roaming\uTorrent
2011-04-28 15:17:25 69464 —-a-w- c:\windows\system32\XAPOFX1_3.dll
2011-04-28 15:17:25 515416 —-a-w- c:\windows\system32\XAudio2_5.dll
2011-04-28 15:17:25 453456 —-a-w- c:\windows\system32\d3dx10_42.dll
2011-04-28 15:17:17 15712 —-a-w- c:\program files\common files\windows live\.cache\5c8db1871cc05b706\MeshBetaRemover.exe
2011-04-28 15:17:13 94040 —-a-w- c:\program files\common files\windows live\.cache\59beb6621cc05b705\DSETUP.dll
2011-04-28 15:17:13 525656 —-a-w- c:\program files\common files\windows live\.cache\59beb6621cc05b705\DXSETUP.exe
2011-04-28 15:17:13 1691480 —-a-w- c:\program files\common files\windows live\.cache\59beb6621cc05b705\dsetup32.dll
2011-04-28 15:16:40 3426072 —-a-w- c:\windows\system32\d3dx9_32.dll
2011-04-28 15:16:29 94040 —-a-w- c:\program files\common files\windows live\.cache\3f1b322e1cc05b704\DSETUP.dll
2011-04-28 15:16:29 525656 —-a-w- c:\program files\common files\windows live\.cache\3f1b322e1cc05b704\DXSETUP.exe
2011-04-28 15:16:29 1691480 —-a-w- c:\program files\common files\windows live\.cache\3f1b322e1cc05b704\dsetup32.dll
2011-04-28 15:08:45 2983424 —-a-w- c:\windows\system32\UIRibbon.dll
2011-04-28 15:08:45 1164800 —-a-w- c:\windows\system32\UIRibbonRes.dll
2011-04-28 15:07:32 3181568 —-a-w- c:\windows\system32\mf.dll
2011-04-28 15:07:32 196608 —-a-w- c:\windows\system32\mfreadwrite.dll
2011-04-28 15:07:31 1619456 —-a-w- c:\windows\system32\WMVDECOD.DLL
2011-04-28 15:07:09 ——– d—–w- c:\users\jeff\appdata\roaming\PMS
2011-04-28 15:06:50 ——– d—–w- c:\program files\PS3 Media Server
2011-04-28 15:06:15 ——– d—–w- c:\users\jeff\appdata\local\Windows Live
2011-04-28 15:06:13 ——– d—–w- c:\program files\common files\Windows Live
2011-04-28 14:54:46 ——– d—–w- c:\program files\DVD Shrink
2011-04-28 14:49:51 ——– d—–w- c:\program files\common files\xing shared
2011-04-28 14:47:58 ——– dcsh–w- c:\program files\common files\WindowsLiveInstaller
2011-04-28 14:46:16 ——– d—–w- c:\users\jeff\appdata\roaming\CometPlayer
2011-04-28 14:44:34 ——– d—–w- c:\program files\DVD Decrypter
2011-04-28 14:43:59 ——– d—–w- c:\program files\VideoLAN
2011-04-28 14:43:10 ——– d—–w- c:\progra~2\boost_interprocess
2011-04-28 14:43:05 ——– d—–w- c:\users\jeff\appdata\roaming\TigerPlayer
2011-04-28 14:42:32 ——– d—–w- c:\program files\MpcStar
2011-04-28 14:33:14 ——– d—–w- c:\users\jeff\appdata\roaming\Malwarebytes
2011-04-28 14:33:09 38224 —-a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-04-28 14:33:08 ——– d—–w- c:\progra~2\Malwarebytes
2011-04-28 14:33:05 20952 —-a-w- c:\windows\system32\drivers\mbam.sys
2011-04-28 14:33:02 ——– d—–w- c:\program files\Malwarebytes' Anti-Malware
2011-04-28 14:32:23 472808 —-a-w- c:\windows\system32\deployJava1.dll
2011-04-28 14:11:16 ——– d—–w- c:\progra~2\Nero
2011-04-28 14:10:16 ——– d—–w- c:\program files\Nero
2011-04-28 14:05:54 1974616 —-a-w- c:\windows\system32\D3DCompiler_42.dll
2011-04-28 14:05:26 1892184 —-a-w- c:\windows\system32\D3DX9_42.dll
2011-04-28 14:04:54 4379984 —-a-w- c:\windows\system32\D3DX9_40.dll
2011-04-28 14:04:27 3727720 —-a-w- c:\windows\system32\d3dx9_35.dll
2011-04-28 14:04:04 3497832 —-a-w- c:\windows\system32\d3dx9_34.dll
2011-04-28 13:56:52 ——– d—–w- c:\users\jeff\appdata\local\Adobe
2011-04-28 13:50:08 417792 —-a-w- c:\windows\system32\msdri.dll
2011-04-28 13:50:08 204288 —-a-w- c:\windows\system32\MSNP.ax
2011-04-28 13:50:07 465408 —-a-w- c:\windows\system32\psisdecd.dll
2011-04-28 13:48:47 28672 —-a-w- c:\windows\system32\dnscacheugc.exe
2011-04-28 13:48:47 132608 —-a-w- c:\windows\system32\dnsrslvr.dll
2011-04-28 13:48:39 34304 —-a-w- c:\windows\system32\atmlib.dll
2011-04-28 13:48:39 294912 —-a-w- c:\windows\system32\atmfd.dll
2011-04-28 13:48:19 439632 ——w- c:\progra~2\microsoft\microsoft antimalware\definition updates\{42b072bb-4a7f-4d7b-9027-357faf4a87d4}\gapaengine.dll
2011-04-28 13:46:00 516096 —-a-w- c:\program files\windows mail\wab.exe
2011-04-28 13:44:50 37376 —-a-w- c:\windows\system32\rtutils.dll
2011-04-28 13:44:49 1619968 —-a-w- c:\program files\windows mail\msoe.dll
2011-04-28 13:44:45 541184 —-a-w- c:\windows\system32\kerberos.dll
2011-04-28 13:44:38 507568 —-a-w- c:\windows\system32\winload.exe
2011-04-28 13:44:38 442920 —-a-w- c:\windows\system32\winresume.exe
2011-04-28 13:44:38 1320960 —-a-w- c:\windows\system32\CertEnroll.dll
2011-04-28 13:43:47 67584 —-a-w- c:\windows\system32\asycfilt.dll
2011-04-28 13:43:46 530432 —-a-w- c:\windows\system32\comctl32.dll
2011-04-28 13:43:00 954752 —-a-w- c:\windows\system32\mfc40.dll
2011-04-28 13:42:59 954288 —-a-w- c:\windows\system32\mfc40u.dll
2011-04-28 13:42:02 164864 —-a-w- c:\program files\windows media player\wmplayer.exe
2011-04-28 13:42:01 12625408 —-a-w- c:\windows\system32\wmploc.DLL
2011-04-28 13:41:56 26504 —-a-w- c:\windows\system32\drivers\Diskdump.sys
2011-04-28 13:41:55 2331136 —-a-w- c:\windows\system32\win32k.sys
2011-04-28 13:41:51 191488 —-a-w- c:\windows\system32\FXSCOVER.exe
2011-04-28 13:41:50 70656 —-a-w- c:\windows\system32\fontsub.dll
2011-04-28 13:41:48 442880 —-a-w- c:\windows\system32\XpsPrint.dll
2011-04-28 13:41:41 292864 —-a-w- c:\windows\system32\apphelp.dll
2011-04-28 13:41:37 288256 —-a-w- c:\windows\system32\XpsGdiConverter.dll
2011-04-28 13:38:55 1164288 —-a-w- c:\windows\system32\mfc42u.dll
2011-04-28 13:38:55 1137664 —-a-w- c:\windows\system32\mfc42.dll
2011-04-28 13:38:54 91648 —-a-w- c:\windows\system32\avifil32.dll
2011-04-28 13:38:54 84480 —-a-w- c:\windows\system32\mciavi32.dll
2011-04-28 13:38:54 50176 —-a-w- c:\windows\system32\iyuv_32.dll
2011-04-28 13:38:54 31744 —-a-w- c:\windows\system32\msvidc32.dll
2011-04-28 13:38:54 22016 —-a-w- c:\windows\system32\msyuv.dll
2011-04-28 13:38:54 13312 —-a-w- c:\windows\system32\msrle32.dll
2011-04-28 13:38:54 1328640 —-a-w- c:\windows\system32\quartz.dll
2011-04-28 13:38:54 12288 —-a-w- c:\windows\system32\tsbyuv.dll
2011-04-28 13:32:29 642048 —-a-w- c:\windows\system32\CPFilters.dll
2011-04-28 13:32:28 850432 —-a-w- c:\windows\system32\sbe.dll
2011-04-28 13:32:28 534528 —-a-w- c:\windows\system32\EncDec.dll
2011-04-28 13:32:28 199680 —-a-w- c:\windows\system32\mpg2splt.ax
2011-04-28 13:32:20 2614784 —-a-w- c:\windows\explorer.exe
2011-04-28 13:32:17 314368 —-a-w- c:\windows\system32\webio.dll
2011-04-28 13:32:12 2690560 —-a-w- c:\windows\system32\mstscax.dll
2011-04-28 13:32:11 1034240 —-a-w- c:\windows\system32\mstsc.exe
2011-04-28 13:31:49 740864 —-a-w- c:\windows\system32\inetcomm.dll
2011-04-28 13:30:57 168448 —-a-w- c:\windows\system32\srvsvc.dll
2011-04-28 13:30:48 3957120 —-a-w- c:\windows\system32\ntkrnlpa.exe
2011-04-28 13:30:48 3901824 —-a-w- c:\windows\system32\ntoskrnl.exe
2011-04-28 13:30:47 1289536 —-a-w- c:\windows\system32\ntdll.dll
2011-04-28 13:29:44 204288 —-a-w- c:\windows\system32\upnp.dll
2011-04-28 13:29:43 80384 —-a-w- c:\windows\system32\davclnt.dll
2011-04-28 13:29:43 73728 —-a-w- c:\windows\system32\wscsvc.dll
2011-04-28 13:29:43 51200 —-a-w- c:\windows\system32\wscapi.dll
2011-04-28 13:29:43 350720 —-a-w- c:\windows\system32\winhttp.dll
2011-04-28 13:29:43 204800 —-a-w- c:\windows\system32\WebClnt.dll
2011-04-28 13:29:43 14336 —-a-w- c:\windows\system32\slwga.dll
2011-04-28 13:29:43 1389568 —-a-w- c:\windows\system32\msxml6.dll
2011-04-28 13:29:43 1236992 —-a-w- c:\windows\system32\msxml3.dll
2011-04-28 13:29:06 738816 —-a-w- c:\windows\system32\wmpmde.dll
2011-04-28 13:29:06 101760 —-a-w- c:\windows\system32\consent.exe
2011-04-28 13:29:01 571904 —-a-w- c:\windows\system32\oleaut32.dll
2011-04-28 13:25:37 ——– d-sh–w- c:\windows\Installer
2011-04-28 13:25:36 ——– d—–w- c:\program files\Microsoft Security Client
2011-04-28 13:25:17 240008 —-a-w- c:\windows\system32\drivers\netio.sys
2011-04-27 16:35:00 ——– d—–w- c:\windows\Panther
2011-04-27 16:20:50 7071056 —-a-w- c:\progra~2\microsoft\windows defender\definition updates\{f0560bda-1332-4d68-9683-83bfae9dd33e}\mpengine.dll
2011-04-27 16:20:50 222080 ——w- c:\windows\system32\MpSigStub.exe
2011-04-27 15:51:45 ——– d—–w- c:\program files\SpeedFan
2011-04-27 15:47:40 ——– d—–w- c:\windows\system32\wbem\Performance
2011-04-27 15:44:14 172032 —-a-w- c:\windows\system32\wintrust.dll
2011-04-27 15:44:14 132608 —-a-w- c:\windows\system32\cabview.dll
.
==================== Find3M ====================
.
2011-04-28 14:49:21 499712 —-a-w- c:\windows\system32\msvcp71.dll
2011-04-28 14:49:21 348160 —-a-w- c:\windows\system32\msvcr71.dll
2011-03-11 05:39:35 1686016 —-a-w- c:\windows\system32\esent.dll
2011-03-11 05:37:34 74240 —-a-w- c:\windows\system32\fsutil.exe
2011-02-24 05:32:44 981504 —-a-w- c:\windows\system32\wininet.dll
2011-02-24 05:30:16 44544 —-a-w- c:\windows\system32\licmgr10.dll
2011-02-24 04:23:48 386048 —-a-w- c:\windows\system32\html.iec
2011-02-24 03:50:26 1638912 —-a-w- c:\windows\system32\mshtml.tlb
2011-02-18 05:36:26 428032 —-a-w- c:\windows\system32\vbscript.dll
2011-02-18 05:33:29 31232 —-a-w- c:\windows\system32\prevhost.exe
.
============= FINISH: 10:41:57.25 ===============




I also want to note that my hard drives seem to not be giving me access to do anything hardly. Like just a few min ago i tried updating adobe reader, and then a windows update came up. Both failed and said you don't have privilege to perform this task. Some how when i formatted my computer, all my hard drives, including external hard drives are locking me out some how and i can't seem to see why its doing that. But its not giving me access to use any tools or perform any updates or anything. I also try right clicking on the application and clicking "run as administrator". Still it says failed, error and then it says you don't have access. So hopefully i can sort that out as well. Cause that a serous thing if my computer is not allowing me to update.

Attachments:

jeff matthews,

You may need your operating system disk for this:

Click on Start

Select All Programs and Accessories

Right Click Command Prompt and select Run as Administrator

Type sfc /scannow and hit enter.

If your system needs to replace a file, it will ask for your operating system disk.


Let me know how it goes.
hmm all it did, was flash a window really fast. Then it disappeared. Nothing else happend. Also just to clear things up with you. I have windows 7. Not windows XP.
I think so. I couldn't really tell. it was really fast. it just flashed on the screen in a second. I think one of the major issues with these infections, is that the source of it is on my external, since that had my old back up. So we need to work on not only cleaning my windows on my pc, but also completely deleting the infection on my external or any application that is associated with it. That way i won't ever infect my self like this again.
At this point… you aren't showing any infections. However, you are showing controller errors which is what I believe is the reason your computer thinks that 3 of your hard drives are dying.

I've never heard of SFC running that fast.. but let's see what it found.

Open the elevated command prompt again (get to Command Prompt right click on it and select run as administrator) and enter the following:
findstr /c:"[SR]" %windir%\Logs\CBS\CBS.log >%userprofile%\Desktop\sfcdetails.txt

This will put a file on your desktop called sfcedetails.txt. Double click on it to open it and then copy/paste the information here.
wow really? I never would of guessed. So you mean all this time i thought my externals were dying, they actually weren't? My goodness, come to think of it, i just returned another one of my externals and got a brand new one and its doing the same exact thing. It is refreshing, and i just got it. It is brand new. It flashed a screen really quick. Same thing. Umm do you want me to in cert this into the "run command" or the black "CMD window" I tried typing it in the black CMD window, but it won't execute the command. Then i tried copying and pasting it into the rum command. It just opened up a window really quick and then closed. There is no log file though. Are you giving me instructions for windows 7. Remember that is the OS i have. Windows 7 32-bit Ultimate edition to be exact.
Ok i think you mean the black CMD window. That explains why this has not been working. I been using the "run command".



Ok SFC scan finished it said "Windows Resource Protection did not find any integrity Violations"

I entered the command in the above post. Here is the contents, ill post them.






2011-05-07 04:20:43, Info CSI 00000009 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:20:43, Info CSI 0000000a [SR] Beginning Verify and Repair transaction
2011-05-07 04:20:46, Info CSI 0000000c [SR] Verify complete
2011-05-07 04:20:46, Info CSI 0000000d [SR] Verifying 100 (0x00000064) components
2011-05-07 04:20:46, Info CSI 0000000e [SR] Beginning Verify and Repair transaction
2011-05-07 04:20:48, Info CSI 00000010 [SR] Verify complete
2011-05-07 04:20:48, Info CSI 00000011 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:20:48, Info CSI 00000012 [SR] Beginning Verify and Repair transaction
2011-05-07 04:20:49, Info CSI 00000014 [SR] Verify complete
2011-05-07 04:20:50, Info CSI 00000015 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:20:50, Info CSI 00000016 [SR] Beginning Verify and Repair transaction
2011-05-07 04:20:51, Info CSI 00000018 [SR] Verify complete
2011-05-07 04:20:51, Info CSI 00000019 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:20:51, Info CSI 0000001a [SR] Beginning Verify and Repair transaction
2011-05-07 04:20:52, Info CSI 0000001c [SR] Verify complete
2011-05-07 04:20:52, Info CSI 0000001d [SR] Verifying 100 (0x00000064) components
2011-05-07 04:20:52, Info CSI 0000001e [SR] Beginning Verify and Repair transaction
2011-05-07 04:20:54, Info CSI 00000020 [SR] Verify complete
2011-05-07 04:20:54, Info CSI 00000021 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:20:54, Info CSI 00000022 [SR] Beginning Verify and Repair transaction
2011-05-07 04:20:55, Info CSI 00000024 [SR] Verify complete
2011-05-07 04:20:56, Info CSI 00000025 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:20:56, Info CSI 00000026 [SR] Beginning Verify and Repair transaction
2011-05-07 04:20:57, Info CSI 00000028 [SR] Verify complete
2011-05-07 04:20:57, Info CSI 00000029 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:20:57, Info CSI 0000002a [SR] Beginning Verify and Repair transaction
2011-05-07 04:20:59, Info CSI 0000002c [SR] Verify complete
2011-05-07 04:20:59, Info CSI 0000002d [SR] Verifying 100 (0x00000064) components
2011-05-07 04:20:59, Info CSI 0000002e [SR] Beginning Verify and Repair transaction
2011-05-07 04:21:00, Info CSI 00000030 [SR] Verify complete
2011-05-07 04:21:00, Info CSI 00000031 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:21:00, Info CSI 00000032 [SR] Beginning Verify and Repair transaction
2011-05-07 04:21:02, Info CSI 00000034 [SR] Verify complete
2011-05-07 04:21:02, Info CSI 00000035 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:21:02, Info CSI 00000036 [SR] Beginning Verify and Repair transaction
2011-05-07 04:21:05, Info CSI 00000038 [SR] Verify complete
2011-05-07 04:21:05, Info CSI 00000039 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:21:05, Info CSI 0000003a [SR] Beginning Verify and Repair transaction
2011-05-07 04:21:08, Info CSI 0000003e [SR] Verify complete
2011-05-07 04:21:09, Info CSI 0000003f [SR] Verifying 100 (0x00000064) components
2011-05-07 04:21:09, Info CSI 00000040 [SR] Beginning Verify and Repair transaction
2011-05-07 04:21:10, Info CSI 00000043 [SR] Verify complete
2011-05-07 04:21:11, Info CSI 00000044 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:21:11, Info CSI 00000045 [SR] Beginning Verify and Repair transaction
2011-05-07 04:21:13, Info CSI 00000048 [SR] Verify complete
2011-05-07 04:21:13, Info CSI 00000049 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:21:13, Info CSI 0000004a [SR] Beginning Verify and Repair transaction
2011-05-07 04:21:16, Info CSI 0000004e [SR] Verify complete
2011-05-07 04:21:16, Info CSI 0000004f [SR] Verifying 100 (0x00000064) components
2011-05-07 04:21:16, Info CSI 00000050 [SR] Beginning Verify and Repair transaction
2011-05-07 04:21:20, Info CSI 0000005a [SR] Verify complete
2011-05-07 04:21:21, Info CSI 0000005b [SR] Verifying 100 (0x00000064) components
2011-05-07 04:21:21, Info CSI 0000005c [SR] Beginning Verify and Repair transaction
2011-05-07 04:21:24, Info CSI 0000005e [SR] Verify complete
2011-05-07 04:21:24, Info CSI 0000005f [SR] Verifying 100 (0x00000064) components
2011-05-07 04:21:24, Info CSI 00000060 [SR] Beginning Verify and Repair transaction
2011-05-07 04:21:26, Info CSI 00000062 [SR] Verify complete
2011-05-07 04:21:27, Info CSI 00000063 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:21:27, Info CSI 00000064 [SR] Beginning Verify and Repair transaction
2011-05-07 04:21:30, Info CSI 00000066 [SR] Verify complete
2011-05-07 04:21:30, Info CSI 00000067 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:21:30, Info CSI 00000068 [SR] Beginning Verify and Repair transaction
2011-05-07 04:21:32, Info CSI 0000006a [SR] Verify complete
2011-05-07 04:21:32, Info CSI 0000006b [SR] Verifying 100 (0x00000064) components
2011-05-07 04:21:32, Info CSI 0000006c [SR] Beginning Verify and Repair transaction
2011-05-07 04:21:36, Info CSI 0000006e [SR] Verify complete
2011-05-07 04:21:37, Info CSI 0000006f [SR] Verifying 100 (0x00000064) components
2011-05-07 04:21:37, Info CSI 00000070 [SR] Beginning Verify and Repair transaction
2011-05-07 04:21:42, Info CSI 00000074 [SR] Verify complete
2011-05-07 04:21:42, Info CSI 00000075 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:21:42, Info CSI 00000076 [SR] Beginning Verify and Repair transaction
2011-05-07 04:21:47, Info CSI 00000078 [SR] Verify complete
2011-05-07 04:21:47, Info CSI 00000079 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:21:47, Info CSI 0000007a [SR] Beginning Verify and Repair transaction
2011-05-07 04:21:56, Info CSI 0000007c [SR] Verify complete
2011-05-07 04:21:56, Info CSI 0000007d [SR] Verifying 100 (0x00000064) components
2011-05-07 04:21:56, Info CSI 0000007e [SR] Beginning Verify and Repair transaction
2011-05-07 04:22:02, Info CSI 00000080 [SR] Verify complete
2011-05-07 04:22:02, Info CSI 00000081 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:22:02, Info CSI 00000082 [SR] Beginning Verify and Repair transaction
2011-05-07 04:22:04, Info CSI 00000084 [SR] Verify complete
2011-05-07 04:22:04, Info CSI 00000085 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:22:04, Info CSI 00000086 [SR] Beginning Verify and Repair transaction
2011-05-07 04:22:05, Info CSI 00000088 [SR] Verify complete
2011-05-07 04:22:05, Info CSI 00000089 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:22:05, Info CSI 0000008a [SR] Beginning Verify and Repair transaction
2011-05-07 04:22:06, Info CSI 0000008c [SR] Verify complete
2011-05-07 04:22:06, Info CSI 0000008d [SR] Verifying 100 (0x00000064) components
2011-05-07 04:22:06, Info CSI 0000008e [SR] Beginning Verify and Repair transaction
2011-05-07 04:22:11, Info CSI 000000a1 [SR] Verify complete
2011-05-07 04:22:11, Info CSI 000000a2 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:22:11, Info CSI 000000a3 [SR] Beginning Verify and Repair transaction
2011-05-07 04:22:14, Info CSI 000000b0 [SR] Verify complete
2011-05-07 04:22:14, Info CSI 000000b1 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:22:14, Info CSI 000000b2 [SR] Beginning Verify and Repair transaction
2011-05-07 04:22:15, Info CSI 000000b4 [SR] Verify complete
2011-05-07 04:22:15, Info CSI 000000b5 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:22:15, Info CSI 000000b6 [SR] Beginning Verify and Repair transaction
2011-05-07 04:22:17, Info CSI 000000b8 [SR] Verify complete
2011-05-07 04:22:18, Info CSI 000000b9 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:22:18, Info CSI 000000ba [SR] Beginning Verify and Repair transaction
2011-05-07 04:22:20, Info CSI 000000bc [SR] Verify complete
2011-05-07 04:22:20, Info CSI 000000bd [SR] Verifying 100 (0x00000064) components
2011-05-07 04:22:20, Info CSI 000000be [SR] Beginning Verify and Repair transaction
2011-05-07 04:22:24, Info CSI 000000c0 [SR] Verify complete
2011-05-07 04:22:24, Info CSI 000000c1 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:22:24, Info CSI 000000c2 [SR] Beginning Verify and Repair transaction
2011-05-07 04:22:28, Info CSI 000000c4 [SR] Verify complete
2011-05-07 04:22:29, Info CSI 000000c5 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:22:29, Info CSI 000000c6 [SR] Beginning Verify and Repair transaction
2011-05-07 04:22:29, Info CSI 000000c8 [SR] Verify complete
2011-05-07 04:22:30, Info CSI 000000c9 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:22:30, Info CSI 000000ca [SR] Beginning Verify and Repair transaction
2011-05-07 04:22:31, Info CSI 000000cc [SR] Verify complete
2011-05-07 04:22:31, Info CSI 000000cd [SR] Verifying 100 (0x00000064) components
2011-05-07 04:22:31, Info CSI 000000ce [SR] Beginning Verify and Repair transaction
2011-05-07 04:22:34, Info CSI 000000d0 [SR] Verify complete
2011-05-07 04:22:34, Info CSI 000000d1 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:22:34, Info CSI 000000d2 [SR] Beginning Verify and Repair transaction
2011-05-07 04:22:38, Info CSI 000000d4 [SR] Verify complete
2011-05-07 04:22:38, Info CSI 000000d5 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:22:38, Info CSI 000000d6 [SR] Beginning Verify and Repair transaction
2011-05-07 04:22:41, Info CSI 000000d8 [SR] Verify complete
2011-05-07 04:22:41, Info CSI 000000d9 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:22:41, Info CSI 000000da [SR] Beginning Verify and Repair transaction
2011-05-07 04:22:49, Info CSI 000000fa [SR] Verify complete
2011-05-07 04:22:49, Info CSI 000000fb [SR] Verifying 100 (0x00000064) components
2011-05-07 04:22:49, Info CSI 000000fc [SR] Beginning Verify and Repair transaction
2011-05-07 04:22:53, Info CSI 00000104 [SR] Verify complete
2011-05-07 04:22:53, Info CSI 00000105 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:22:53, Info CSI 00000106 [SR] Beginning Verify and Repair transaction
2011-05-07 04:22:57, Info CSI 00000108 [SR] Verify complete
2011-05-07 04:22:57, Info CSI 00000109 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:22:57, Info CSI 0000010a [SR] Beginning Verify and Repair transaction
2011-05-07 04:23:12, Info CSI 0000010c [SR] Verify complete
2011-05-07 04:23:12, Info CSI 0000010d [SR] Verifying 100 (0x00000064) components
2011-05-07 04:23:12, Info CSI 0000010e [SR] Beginning Verify and Repair transaction
2011-05-07 04:23:21, Info CSI 00000111 [SR] Verify complete
2011-05-07 04:23:21, Info CSI 00000112 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:23:21, Info CSI 00000113 [SR] Beginning Verify and Repair transaction
2011-05-07 04:23:25, Info CSI 00000115 [SR] Verify complete
2011-05-07 04:23:25, Info CSI 00000116 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:23:25, Info CSI 00000117 [SR] Beginning Verify and Repair transaction
2011-05-07 04:23:28, Info CSI 00000119 [SR] Verify complete
2011-05-07 04:23:28, Info CSI 0000011a [SR] Verifying 100 (0x00000064) components
2011-05-07 04:23:28, Info CSI 0000011b [SR] Beginning Verify and Repair transaction
2011-05-07 04:23:31, Info CSI 0000011d [SR] Verify complete
2011-05-07 04:23:31, Info CSI 0000011e [SR] Verifying 100 (0x00000064) components
2011-05-07 04:23:31, Info CSI 0000011f [SR] Beginning Verify and Repair transaction
2011-05-07 04:23:34, Info CSI 00000122 [SR] Verify complete
2011-05-07 04:23:34, Info CSI 00000123 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:23:34, Info CSI 00000124 [SR] Beginning Verify and Repair transaction
2011-05-07 04:23:35, Info CSI 00000126 [SR] Verify complete
2011-05-07 04:23:36, Info CSI 00000127 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:23:36, Info CSI 00000128 [SR] Beginning Verify and Repair transaction
2011-05-07 04:23:47, Info CSI 0000012a [SR] Verify complete
2011-05-07 04:23:47, Info CSI 0000012b [SR] Verifying 100 (0x00000064) components
2011-05-07 04:23:47, Info CSI 0000012c [SR] Beginning Verify and Repair transaction
2011-05-07 04:23:53, Info CSI 0000012f [SR] Verify complete
2011-05-07 04:23:54, Info CSI 00000130 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:23:54, Info CSI 00000131 [SR] Beginning Verify and Repair transaction
2011-05-07 04:23:58, Info CSI 00000133 [SR] Verify complete
2011-05-07 04:23:58, Info CSI 00000134 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:23:58, Info CSI 00000135 [SR] Beginning Verify and Repair transaction
2011-05-07 04:24:01, Info CSI 00000137 [SR] Verify complete
2011-05-07 04:24:01, Info CSI 00000138 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:24:01, Info CSI 00000139 [SR] Beginning Verify and Repair transaction
2011-05-07 04:24:07, Info CSI 0000013c [SR] Verify complete
2011-05-07 04:24:08, Info CSI 0000013d [SR] Verifying 100 (0x00000064) components
2011-05-07 04:24:08, Info CSI 0000013e [SR] Beginning Verify and Repair transaction
2011-05-07 04:24:12, Info CSI 00000140 [SR] Verify complete
2011-05-07 04:24:12, Info CSI 00000141 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:24:12, Info CSI 00000142 [SR] Beginning Verify and Repair transaction
2011-05-07 04:24:15, Info CSI 00000144 [SR] Verify complete
2011-05-07 04:24:15, Info CSI 00000145 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:24:15, Info CSI 00000146 [SR] Beginning Verify and Repair transaction
2011-05-07 04:24:19, Info CSI 00000148 [SR] Verify complete
2011-05-07 04:24:20, Info CSI 00000149 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:24:20, Info CSI 0000014a [SR] Beginning Verify and Repair transaction
2011-05-07 04:24:22, Info CSI 0000014d [SR] Verify complete
2011-05-07 04:24:22, Info CSI 0000014e [SR] Verifying 100 (0x00000064) components
2011-05-07 04:24:22, Info CSI 0000014f [SR] Beginning Verify and Repair transaction
2011-05-07 04:24:26, Info CSI 00000151 [SR] Verify complete
2011-05-07 04:24:27, Info CSI 00000152 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:24:27, Info CSI 00000153 [SR] Beginning Verify and Repair transaction
2011-05-07 04:24:29, Info CSI 00000155 [SR] Verify complete
2011-05-07 04:24:29, Info CSI 00000156 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:24:29, Info CSI 00000157 [SR] Beginning Verify and Repair transaction
2011-05-07 04:24:33, Info CSI 00000159 [SR] Verify complete
2011-05-07 04:24:33, Info CSI 0000015a [SR] Verifying 100 (0x00000064) components
2011-05-07 04:24:33, Info CSI 0000015b [SR] Beginning Verify and Repair transaction
2011-05-07 04:24:36, Info CSI 0000015e [SR] Verify complete
2011-05-07 04:24:37, Info CSI 0000015f [SR] Verifying 100 (0x00000064) components
2011-05-07 04:24:37, Info CSI 00000160 [SR] Beginning Verify and Repair transaction
2011-05-07 04:24:40, Info CSI 00000162 [SR] Verify complete
2011-05-07 04:24:40, Info CSI 00000163 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:24:40, Info CSI 00000164 [SR] Beginning Verify and Repair transaction
2011-05-07 04:24:45, Info CSI 00000166 [SR] Verify complete
2011-05-07 04:24:45, Info CSI 00000167 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:24:45, Info CSI 00000168 [SR] Beginning Verify and Repair transaction
2011-05-07 04:24:49, Info CSI 0000016a [SR] Verify complete
2011-05-07 04:24:49, Info CSI 0000016b [SR] Verifying 100 (0x00000064) components
2011-05-07 04:24:49, Info CSI 0000016c [SR] Beginning Verify and Repair transaction
2011-05-07 04:24:53, Info CSI 0000016e [SR] Verify complete
2011-05-07 04:24:53, Info CSI 0000016f [SR] Verifying 100 (0x00000064) components
2011-05-07 04:24:53, Info CSI 00000170 [SR] Beginning Verify and Repair transaction
2011-05-07 04:24:54, Info CSI 00000172 [SR] Verify complete
2011-05-07 04:24:54, Info CSI 00000173 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:24:54, Info CSI 00000174 [SR] Beginning Verify and Repair transaction
2011-05-07 04:24:57, Info CSI 00000176 [SR] Verify complete
2011-05-07 04:24:57, Info CSI 00000177 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:24:57, Info CSI 00000178 [SR] Beginning Verify and Repair transaction
2011-05-07 04:24:59, Info CSI 0000017a [SR] Verify complete
2011-05-07 04:24:59, Info CSI 0000017b [SR] Verifying 100 (0x00000064) components
2011-05-07 04:24:59, Info CSI 0000017c [SR] Beginning Verify and Repair transaction
2011-05-07 04:25:02, Info CSI 0000017e [SR] Verify complete
2011-05-07 04:25:02, Info CSI 0000017f [SR] Verifying 100 (0x00000064) components
2011-05-07 04:25:02, Info CSI 00000180 [SR] Beginning Verify and Repair transaction
2011-05-07 04:25:04, Info CSI 00000182 [SR] Verify complete
2011-05-07 04:25:04, Info CSI 00000183 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:25:04, Info CSI 00000184 [SR] Beginning Verify and Repair transaction
2011-05-07 04:25:06, Info CSI 00000186 [SR] Verify complete
2011-05-07 04:25:07, Info CSI 00000187 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:25:07, Info CSI 00000188 [SR] Beginning Verify and Repair transaction
2011-05-07 04:25:13, Info CSI 0000018a [SR] Verify complete
2011-05-07 04:25:14, Info CSI 0000018b [SR] Verifying 100 (0x00000064) components
2011-05-07 04:25:14, Info CSI 0000018c [SR] Beginning Verify and Repair transaction
2011-05-07 04:25:22, Info CSI 0000018e [SR] Verify complete
2011-05-07 04:25:22, Info CSI 0000018f [SR] Verifying 100 (0x00000064) components
2011-05-07 04:25:22, Info CSI 00000190 [SR] Beginning Verify and Repair transaction
2011-05-07 04:25:25, Info CSI 00000192 [SR] Verify complete
2011-05-07 04:25:25, Info CSI 00000193 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:25:25, Info CSI 00000194 [SR] Beginning Verify and Repair transaction
2011-05-07 04:25:27, Info CSI 00000196 [SR] Verify complete
2011-05-07 04:25:27, Info CSI 00000197 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:25:27, Info CSI 00000198 [SR] Beginning Verify and Repair transaction
2011-05-07 04:25:28, Info CSI 0000019a [SR] Verify complete
2011-05-07 04:25:28, Info CSI 0000019b [SR] Verifying 100 (0x00000064) components
2011-05-07 04:25:28, Info CSI 0000019c [SR] Beginning Verify and Repair transaction
2011-05-07 04:25:30, Info CSI 0000019e [SR] Verify complete
2011-05-07 04:25:31, Info CSI 0000019f [SR] Verifying 100 (0x00000064) components
2011-05-07 04:25:31, Info CSI 000001a0 [SR] Beginning Verify and Repair transaction
2011-05-07 04:25:34, Info CSI 000001a2 [SR] Verify complete
2011-05-07 04:25:34, Info CSI 000001a3 [SR] Verifying 100 (0x00000064) components
2011-05-07 04:25:34, Info CSI 000001a4 [SR] Beginning Verify and Repair transaction
2011-05-07 04:25:38, Info CSI 000001a6 [SR] Verify complete
2011-05-07 04:25:38, Info CSI 000001a7 [SR] Verifying 13 (0x0000000d) components
2011-05-07 04:25:38, Info CSI 000001a8 [SR] Beginning Verify and Repair transaction
2011-05-07 04:25:39, Info CSI 000001aa [SR] Verify complete
2011-05-07 04:25:39, Info CSI 000001ab [SR] Repairing 0 components
2011-05-07 04:25:39, Info CSI 000001ac [SR] Beginning Verify and Repair transaction
2011-05-07 04:25:39, Info CSI 000001ae [SR] Repair complete
This is very strange though having an issue like this when i just installed a brand new copy of windows 7 on a brand new internal hard drive.
I noticed also when my HD refreshed. It says "do you want nero back up to use this drive" i guess i should uninstall that application since i wont be using it.
jeff matthews,

Well, as you can see (and as you expected) it doesn't appear to be a software problem. It also isn't a malware problem. At this point, either you have 3 hard drives failing at the same time (which seems unlikely), or you have some other hardware problem. The most likely causes would seem to be:
  • Bad cables
  • improperly installed cables
  • Incorrect settings
  • bad drivers
  • Or, the controller could be bad.

What ever it is, I'm not the one who is going to be able to help you solve this. I just don't know enough about Tech stuff. You'll be better served by the Tech Team over in the Hardware Forum.

Does this make sense to you?

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI