This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

Computer is very slow

13 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

My computer is running very slow and at times, when I open Internet Explorer I have several new windows pop up. My husband tried cleaning my computer once before but suggests that this time I leave it to the professionals. I have attached the results of my Hijack This scan.

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 3:39:42 PM, on 24/07/2011
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16982)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Java\jre1.6.0\bin\jusched.exe
C:\Windows\System32\WLTRAY.EXE
C:\Windows\sttray.exe
C:\Program Files\Roxio\Drag-to-Disc\DrgToDsc.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe
C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe
C:\Program Files\DivX\DivX Update\DivXUpdate.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Windows\ehome\ehmsas.exe
C:\Windows\system32\wuauclt.exe
C:\PROGRA~1\MICROS~3\Office12\OUTLOOK.EXE
C:\Windows\explorer.exe
C:\Program Files\Internet Explorer\ieuser.exe
C:\Users\Trudy\Downloads\HiJackThis.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Trudy\Desktop\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ca/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www1.ca.dell.com/content/default.as…;l=en&s=gen
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer provided by Dell
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Increase performance and video formats for your HTML5 - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\ievkbd.dll
O2 - BHO: Use the DivX Plus Web Player to watch web videos with less interruptions and smoother playback on supported sites - {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll
O3 - Toolbar: Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "c:\Program Files\Java\jre1.6.0\bin\jusched.exe"
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\Windows\system32\WLTRAY.exe
O4 - HKLM\..\Run: [SigmatelSysTrayApp] sttray.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Program Files\Roxio\Drag-to-Disc\DrgToDsc.exe"
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\MediaDirect\PCMService.exe"
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe"
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [IJNetworkScanUtility] C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe
O4 - HKLM\..\Run: [DivXUpdate] "C:\Program Files\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O4 - Global Startup: QuickSet.lnk = ?
O8 - Extra context menu item: Add to Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\ie_banner_deny.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
O9 - Extra button: &Virtual keyboard - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: URLs c&heck - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: SigmaTel Audio Service (STacSV) - SigmaTel, Inc. - C:\Program Files\SigmaTel\C-Major Audio\WDM\STacSV.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\Windows\System32\WLTRYSVC.EXE
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

–
End of file - 8618 bytes




Thanks for your help.
Hi and Welcome!! :) My name is Jeff. I would be more than happy to take a look at your log and help you with solving any malware problems you might have. Logs can take a while to research, so please be patient and know that I am working hard to get you a clean and functional system back in your hands. I'd be grateful if you would note the following:
  • I will be working on your Malware issues, this may or may not, solve other issues you have with your machine.
  • The fixes are specific to your problem and should only be used for the issues on this machine.
  • Please continue to review my answers until I tell you your machine appears to be clear. Absence of symptoms does not mean that everything is clear.
  • It's often worth reading through these instructions and printing them for ease of reference.
  • If you don't know or understand something, please don't hesitate to say or ask!! It's better to be sure and safe than sorry.
  • Please reply to this thread. Do not start a new topic.

Please be advised, as I am still in training, all my replies to you will be checked for accuracy by one of our experts to ensure that I am giving you the best possible advise, this will be a team effort.
This may cause a delay, but I will do my best to keep it as short as possible. Please bear with me, I will post back to you as soon as I can.


IMPORTANT NOTE : Please do not delete, download or install anything unless instructed to do so.
DO NOT use any TOOLS such as Combofix or HijackThis fixes without supervision. Doing so could make your system inoperable and could require a full reinstall of your Operating System and losing all your programs and data.


Vista and Windows 7 users:

These tools MUST be run from the executable. (.exe) every time you run them
with Admin Rights (Right click, choose "Run as Administrator")


Stay with this topic until I give you the all clean post.

Having said that….Let's get going!! :thumbup:
Hi Trudy White,

Please download DDS from either of these links

LINK 1
LINK 2

and save it to your desktop.
  • Disable any script blocking protection
  • Double click dds to run the tool.
  • When done, two DDS.txt's will open.
  • Save both reports to your desktop.
—————————————————
Please include the contents of the following in your next reply:

DDS.txt

Attach.txt
———-

Please download aswMBR to your desktop.

  • Double click the aswMBR icon to run it.
    Vista and Windows 7 users right click the icon and choose "Run as administrator".
  • Click the Scan button to start scan.
  • When it finishes, press the save log button, save the logfile to your desktop and post its contents in your next reply.

[external image: Posted Image]
Click the image to enlarge it
———-


In your next reply please post both logs created by DDS and the log created by aswMBR.exe
Here you go . DDS (Ver_2011-06-23.01) - NTFSx86 Internet Explorer: 7.0.6000.16982 Run by [removed] at 18:50:39 on 2011-07-26 Microsoft® Windows Vista™ Home Premium 6.0.6000.0.1252.2.1033.18.2038.1025 [GMT -4:00] . . ============== Running Processes =============== . C:\Windows\system32\wininit.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k rpcss C:\Windows\System32\svchost.exe -k secsvcs C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\SLsvc.exe C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\System32\WLTRYSVC.EXE C:\Windows\System32\bcmwltry.exe C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Program Files\SigmaTel\C-Major Audio\WDM\STacSV.exe C:\Windows\system32\svchost.exe -k imgsvc C:\Windows\System32\svchost.exe -k WerSvcGroup C:\Windows\system32\SearchIndexer.exe C:\Windows\system32\DRIVERS\xaudio.exe C:\Windows\system32\taskeng.exe C:\Windows\system32\taskeng.exe C:\Windows\system32\Dwm.exe C:\Program Files\Windows Defender\MSASCui.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Windows\System32\igfxtray.exe C:\Windows\System32\hkcmd.exe C:\Windows\System32\igfxpers.exe C:\Program Files\Java\jre1.6.0\bin\jusched.exe C:\Windows\System32\WLTRAY.EXE C:\Windows\sttray.exe C:\Program Files\Roxio\Drag-to-Disc\DrgToDsc.exe C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE C:\Program Files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe C:\Program Files\DivX\DivX Update\DivXUpdate.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Program Files\DellSupport\DSAgnt.exe C:\Windows\ehome\ehtray.exe C:\Program Files\Windows Media Player\wmpnscfg.exe C:\Program Files\Digital Line Detect\DLG.exe C:\Program Files\Dell\QuickSet\quickset.exe C:\Windows\ehome\ehmsas.exe C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Windows\system32\wuauclt.exe C:\PROGRA~1\MICROS~3\Office12\OUTLOOK.EXE C:\Windows\explorer.exe C:\Users\Trudy\Downloads\HiJackThis.exe C:\Program Files\Internet Explorer\IEUser.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtblfs.exe C:\Windows\system32\Macromed\Flash\FlashUtil10p_ActiveX.exe C:\Windows\system32\conime.exe C:\Windows\servicing\TrustedInstaller.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\system32\DllHost.exe C:\Windows\system32\DllHost.exe . ============== Pseudo HJT Report =============== . uStart Page = hxxp://www.google.ca/ uWindow Title = Internet Explorer provided by Dell mDefault_Page_URL = hxxp://www1.ca.dell.com/content/default.aspx?c=ca&l=en&s=gen BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 7.0\activex\AcroIEHelper.dll BHO: DivX Plus Web Player HTML5 : {326e768d-4182-46fd-9c16-1449a49795f4} - c:\program files\divx\divx plus web player\npdivx32.dll BHO: Canon Easy-WebPrint EX BHO: {3785d0ad-bfff-47f6-bf5b-a587c162fed9} - c:\program files\canon\easy-webprint ex\ewpexbho.dll BHO: IEVkbdBHO Class: {59273ab4-e7d3-40f9-a1a8-6fa9cca1862c} - c:\program files\kaspersky lab\kaspersky internet security 2010\ievkbd.dll BHO: DivX HiQ: {593ddec6-7468-4cdd-90e1-42dadaa222e9} - c:\program files\divx\divx plus web player\npdivx32.dll BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre1.6.0\bin\ssv.dll BHO: FilterBHO Class: {e33cf602-d945-461a-83f0-819f76a199f8} - c:\program files\kaspersky lab\kaspersky internet security 2010\klwtbbho.dll TB: Canon Easy-WebPrint EX: {759d9886-0c6f-4498-bab6-4a5f47c6c72f} - c:\program files\canon\easy-webprint ex\ewpexhlp.dll EB: Canon Easy-WebPrint EX: {21347690-ec41-4f9a-8887-1f4aee672439} - c:\program files\canon\easy-webprint ex\ewpexhlp.dll uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun uRun: [DellSupport] "c:\program files\dellsupport\DSAgnt.exe" /startup uRun: [ehTray.exe] c:\windows\ehome\ehTray.exe uRun: [WMPNSCFG] c:\program files\windows media player\WMPNSCFG.exe mRun: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe mRun: [IgfxTray] c:\windows\system32\igfxtray.exe mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe mRun: [Persistence] c:\windows\system32\igfxpers.exe mRun: [SunJavaUpdateSched] "c:\program files\java\jre1.6.0\bin\jusched.exe" mRun: [Broadcom Wireless Manager UI] c:\windows\system32\WLTRAY.exe mRun: [SigmatelSysTrayApp] sttray.exe mRun: [ISUSScheduler] "c:\program files\common files\installshield\updateservice\issch.exe" -start mRun: [] mRun: [RoxWatchTray] "c:\program files\common files\roxio shared\9.0\sharedcom\RoxWatchTray9.exe" mRun: [RoxioDragToDisc] "c:\program files\roxio\drag-to-disc\DrgToDsc.exe" mRun: [PCMService] "c:\program files\dell\mediadirect\PCMService.exe" mRun: [AVP] "c:\program files\kaspersky lab\kaspersky internet security 2010\avp.exe" mRun: [CanonMyPrinter] c:\program files\canon\myprinter\BJMyPrt.exe /logon mRun: [CanonSolutionMenu] c:\program files\canon\solutionmenu\CNSLMAIN.exe /logon mRun: [IJNetworkScanUtility] c:\program files\canon\canon ij network scan utility\CNMNSUT.exe mRun: [DivXUpdate] "c:\program files\divx\divx update\DivXUpdate.exe" /CHECKNOW StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\adober~1.lnk - c:\program files\adobe\acrobat 7.0\reader\reader_sl.exe StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\digita~1.lnk - c:\program files\digital line detect\DLG.exe StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\quickset.lnk - c:\windows\installer\{53a01cc6-14b0-4512-a2e7-10d39bf83dc4}\NewShortcut2_53A01CC614B04512A2E710D39BF83DC4.exe IE: Add to Anti-Banner - c:\program files\kaspersky lab\kaspersky internet security 2010\ie_banner_deny.htm IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office11\EXCEL.EXE/3000 IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0\bin\npjpi160.dll IE: {4248FE82-7FCB-46AC-B270-339F08212110} - {4248FE82-7FCB-46AC-B270-339F08212110} - c:\program files\kaspersky lab\kaspersky internet security 2010\klwtbbho.dll IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~3\office12\REFIEBAR.DLL IE: {CCF151D8-D089-449F-A5A4-D9909053F20F} - {CCF151D8-D089-449F-A5A4-D9909053F20F} - c:\program files\kaspersky lab\kaspersky internet security 2010\klwtbbho.dll DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab TCP: DhcpNameServer = 192.168.1.1 TCP: Interfaces\{2625CA1A-1F3E-4DF1-AA8E-020B34BD9116} : DhcpNameServer = 192.168.1.1 TCP: Interfaces\{77CFCE99-12F4-4BD7-9CBC-1D09CFB3EFAE} : DhcpNameServer = [removed] 10.101.101.254 [removed] [removed] 10.101.101.100 Notify: igfxcui - igfxdev.dll Notify: klogon - c:\windows\system32\klogon.dll AppInit_DLLs: c:\progra~1\kasper~1\kasper~1\mzvkbd3.dll,c:\progra~1\kasper~1\kasper~1\kloehk.dll . ============= SERVICES / DRIVERS =============== . R0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\system32\drivers\klbg.sys [2009-10-14 36880] R1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\drivers\klim6.sys [2009-9-14 21520] R2 AVP;Kaspersky Internet Security;c:\program files\kaspersky lab\kaspersky internet security 2010\avp.exe [2009-10-20 340520] R3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\drivers\klmouflt.sys [2009-10-2 19472] S3 IDSvix86;Symantec Intrusion Prevention Driver;c:\progra~2\symantec\defini~1\symcdata\idsdefs\20061025.029\IDSvix86.sys [2007-2-5 202872] . =============== Created Last 30 ================ . 2011-07-22 13:17:24 6881616 —-a-w- c:\programdata\microsoft\windows defender\definition updates\{d700bfa4-2260-4531-b5c2-846fb97207c5}\mpengine.dll 2011-07-13 20:54:09 ——– d—–w- c:\users\trudy\appdata\roaming\Catalina Marketing Corp 2011-07-13 20:53:59 489672 —-a-w- c:\users\trudy\appdata\roaming\microsoft\windows\start menu\programs\catalina marketing corp\UninstallCouponActivator.exe . ==================== Find3M ==================== . 2011-05-24 23:14:10 222080 ——w- c:\windows\system32\MpSigStub.exe 2011-05-08 21:59:24 378368 —-a-w- c:\windows\system32\winhttp.dll 2011-05-08 21:57:40 268800 —-a-w- c:\windows\system32\es.dll 2011-05-08 21:55:11 36864 —-a-w- c:\windows\system32\drivers\en-us\http.sys.mui 2011-05-08 21:47:08 441856 —-a-w- c:\windows\system32\win32spl.dll 2011-05-08 21:47:08 37376 —-a-w- c:\windows\system32\printcom.dll 2011-05-08 21:46:47 2031104 —-a-w- c:\windows\system32\win32k.sys 2011-05-08 21:40:57 97800 —-a-w- c:\windows\system32\infocardapi.dll 2011-05-08 21:40:57 622080 —-a-w- c:\windows\system32\icardagt.exe 2011-05-08 21:40:57 37384 —-a-w- c:\windows\system32\infocardcpl.cpl 2011-05-08 21:40:57 11264 —-a-w- c:\windows\system32\icardres.dll 2011-05-08 21:40:49 105016 —-a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll 2011-05-08 21:40:47 326160 —-a-w- c:\windows\system32\PresentationHost.exe 2011-05-08 21:40:46 781344 —-a-w- c:\windows\system32\PresentationNative_v0300.dll 2011-05-08 21:40:46 43544 —-a-w- c:\windows\system32\PresentationHostProxy.dll 2011-05-08 18:21:48 14848 —-a-w- c:\windows\system32\wshrm.dll 2011-05-08 18:21:48 113664 —-a-w- c:\windows\system32\drivers\rmcast.sys 2011-05-08 18:19:44 8147968 —-a-w- c:\windows\system32\wmploc.DLL 2011-05-08 18:19:42 7680 —-a-w- c:\windows\system32\spwmp.dll 2011-05-08 18:19:41 4096 —-a-w- c:\windows\system32\msdxm.ocx 2011-05-08 18:19:41 4096 —-a-w- c:\windows\system32\dxmasf.dll 2011-05-08 18:19:34 43520 —-a-w- c:\windows\system32\msdxm.tlb 2011-05-08 18:19:34 313344 —-a-w- c:\windows\system32\wmpdxm.dll 2011-05-08 18:19:34 18432 —-a-w- c:\windows\system32\amcompat.tlb 2011-05-08 18:17:41 11776 —-a-w- c:\windows\system32\sbunattend.exe 2011-05-08 18:15:30 83968 —-a-w- c:\windows\system32\dnsrslvr.dll 2011-05-08 18:15:30 24576 —-a-w- c:\windows\system32\dnscacheugc.exe 2011-05-08 01:21:51 34304 —-a-w- c:\windows\system32\atmlib.dll 2011-05-08 01:21:51 289792 —-a-w- c:\windows\system32\atmfd.dll 2011-05-08 01:21:51 24064 —-a-w- c:\windows\system32\lpk.dll 2011-05-08 01:21:51 156672 —-a-w- c:\windows\system32\t2embed.dll 2011-05-08 01:21:50 72704 —-a-w- c:\windows\system32\fontsub.dll 2011-05-08 01:21:50 10240 —-a-w- c:\windows\system32\dciman32.dll 2011-05-08 01:18:49 72704 —-a-w- c:\windows\system32\admparse.dll 2011-05-08 01:18:48 52736 —-a-w- c:\windows\apppatch\iebrshim.dll 2011-05-08 01:18:47 832512 —-a-w- c:\windows\system32\wininet.dll 2011-05-08 01:18:37 78336 —-a-w- c:\windows\system32\ieencode.dll 2011-05-08 01:18:37 48128 —-a-w- c:\windows\system32\mshtmler.dll 2011-05-08 01:18:37 389120 —-a-w- c:\windows\system32\html.iec 2011-05-08 01:18:35 1383424 —-a-w- c:\windows\system32\mshtml.tlb 2011-05-08 01:18:29 1830912 —-a-w- c:\windows\system32\inetcpl.cpl 2011-05-08 01:18:27 26624 —-a-w- c:\windows\system32\ieUnatt.exe 2011-05-08 01:18:23 56320 —-a-w- c:\windows\system32\iesetup.dll 2011-05-08 01:14:38 61440 —-a-w- c:\windows\system32\winipsec.dll 2011-05-08 01:14:38 361984 —-a-w- c:\windows\system32\IPSECSVC.DLL 2011-05-08 01:14:38 28672 —-a-w- c:\windows\system32\FwRemoteSvr.dll 2011-05-08 01:14:38 272896 —-a-w- c:\windows\system32\polstore.dll 2011-05-08 01:12:54 84992 —-a-w- c:\windows\system32\drivers\srvnet.sys 2011-05-08 01:12:54 306688 —-a-w- c:\windows\system32\drivers\srv.sys 2011-05-08 01:11:09 39424 —-a-w- c:\windows\system32\ACCTRES.dll 2011-05-08 01:11:09 205824 —-a-w- c:\windows\system32\msoeacct.dll 2011-05-08 01:11:08 87040 —-a-w- c:\windows\system32\msoert2.dll 2011-05-08 01:09:03 9728 —-a-w- c:\windows\system32\TCPSVCS.EXE 2011-05-08 01:09:03 8704 —-a-w- c:\windows\system32\HOSTNAME.EXE 2011-05-08 01:09:03 15360 —-a-w- c:\windows\system32\netevent.dll 2011-05-08 01:09:03 11264 —-a-w- c:\windows\system32\MRINFO.EXE 2011-05-08 01:09:03 103936 —-a-w- c:\windows\system32\netiohlp.dll 2011-05-08 01:09:03 10240 —-a-w- c:\windows\system32\finger.exe 2011-05-08 01:09:02 27136 —-a-w- c:\windows\system32\NETSTAT.EXE 2011-05-08 01:09:02 19968 —-a-w- c:\windows\system32\ARP.EXE 2011-05-08 01:09:02 17920 —-a-w- c:\windows\system32\ROUTE.EXE 2011-05-08 01:06:34 194560 —-a-w- c:\windows\system32\WebClnt.dll 2011-05-08 01:06:34 110080 —-a-w- c:\windows\system32\drivers\mrxdav.sys 2011-05-08 01:04:56 123904 —-a-w- c:\windows\system32\L2SecHC.dll 2011-05-08 01:04:55 67584 —-a-w- c:\windows\system32\wlanhlp.dll 2011-05-08 01:04:55 502272 —-a-w- c:\windows\system32\wlansvc.dll 2011-05-08 01:04:55 47104 —-a-w- c:\windows\system32\wlanapi.dll 2011-05-08 01:04:55 290816 —-a-w- c:\windows\system32\wlanmsm.dll 2011-05-08 01:04:54 297984 —-a-w- c:\windows\system32\wlansec.dll 2011-05-08 01:02:55 2048 —-a-w- c:\windows\system32\msxml3r.dll 2011-05-08 01:02:55 1260032 —-a-w- c:\windows\system32\msxml3.dll 2011-05-08 01:02:53 2048 —-a-w- c:\windows\system32\msxml6r.dll 2011-05-08 01:02:53 1406464 —-a-w- c:\windows\system32\msxml6.dll 2011-05-08 01:00:52 216576 —-a-w- c:\windows\system32\msv1_0.dll 2011-05-08 00:57:13 58368 —-a-w- c:\windows\system32\drivers\mrxsmb20.sys 2011-05-08 00:57:13 211968 —-a-w- c:\windows\system32\drivers\mrxsmb10.sys 2011-05-08 00:57:13 102400 —-a-w- c:\windows\system32\drivers\mrxsmb.sys 2011-05-08 00:55:37 49664 —-a-w- c:\windows\system32\csrsrv.dll 2011-05-08 00:55:36 376320 —-a-w- c:\windows\system32\winsrv.dll 2011-05-08 00:53:59 98816 —-a-w- c:\windows\system32\mfps.dll 2011-05-08 00:53:59 52736 —-a-w- c:\windows\system32\rrinstaller.exe 2011-05-08 00:53:59 2855424 —-a-w- c:\windows\system32\mf.dll 2011-05-08 00:53:59 2048 —-a-w- c:\windows\system32\mferror.dll 2011-05-08 00:53:58 24576 —-a-w- c:\windows\system32\mfpmp.exe 2011-05-08 00:52:04 3502480 —-a-w- c:\windows\system32\ntkrnlpa.exe 2011-05-08 00:52:04 3468168 —-a-w- c:\windows\system32\ntoskrnl.exe 2011-05-08 00:46:51 434176 —-a-w- c:\windows\system32\vbscript.dll 2011-05-08 00:45:15 71680 —-a-w- c:\windows\system32\atl.dll 2011-05-08 00:43:37 297472 —-a-w- c:\windows\system32\gdi32.dll 2011-05-08 00:37:12 374456 —-a-w- c:\windows\system32\mcupdate_GenuineIntel.dll 2011-05-08 00:35:47 500736 —-a-w- c:\windows\system32\msdtcprx.dll 2011-05-08 00:35:47 30208 —-a-w- c:\windows\system32\xolehlp.dll 2011-05-08 00:34:07 156160 —-a-w- c:\windows\system32\wkssvc.dll 2011-05-08 00:31:58 36352 —-a-w- c:\windows\system32\tsgqec.dll 2011-05-08 00:31:58 116736 —-a-w- c:\windows\system32\aaclient.dll 2011-05-08 00:31:57 1871872 —-a-w- c:\windows\system32\mstscax.dll 2011-05-08 00:30:03 303616 —-a-w- c:\windows\system32\wmpeffects.dll 2011-05-08 00:26:55 414208 —-a-w- c:\windows\system32\msscp.dll 2011-05-08 00:24:54 392192 —-a-w- c:\windows\system32\FirewallAPI.dll 2011-05-08 00:24:53 63488 —-a-w- c:\windows\system32\drivers\mpsdrv.sys . ============= FINISH: 18:52:16.24 =============== . UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG. IF REQUESTED, ZIP IT UP & ATTACH IT . DDS (Ver_2011-06-23.01) . Microsoft® Windows Vista™ Home Premium Boot Device: \Device\HarddiskVolume3 Install Date: 05/02/2007 5:56:17 AM System Uptime: 26/07/2011 9:18:39 AM (9 hours ago) . Motherboard: Dell Inc. | | 0FF049 Processor: Intel® Core™2 CPU T5200 @ 1.60GHz | Microprocessor | 1333/133mhz . ==== Disk Partitions ========================= . C: is FIXED (NTFS) - 100 GiB total, 58.325 GiB free. D: is FIXED (NTFS) - 10 GiB total, 5.487 GiB free. E: is CDROM () . ==== Disabled Device Manager Items ============= . ==== System Restore Points =================== . RP78: 25/06/2011 4:10:11 PM - Scheduled Checkpoint RP79: 28/06/2011 5:57:03 AM - Windows Update RP81: 13/07/2011 3:15:13 PM - Windows Update RP82: 14/07/2011 3:00:19 AM - Windows Update RP83: 14/07/2011 7:06:59 PM - Scheduled Checkpoint RP84: 15/07/2011 9:22:16 PM - Windows Update RP85: 16/07/2011 11:31:27 PM - Scheduled Checkpoint RP86: 17/07/2011 7:25:13 PM - Scheduled Checkpoint RP87: 18/07/2011 12:32:28 PM - Scheduled Checkpoint RP88: 20/07/2011 12:37:19 PM - Windows Update RP89: 21/07/2011 7:58:37 PM - Scheduled Checkpoint RP90: 22/07/2011 9:16:08 AM - Windows Update RP91: 23/07/2011 6:14:08 PM - Scheduled Checkpoint RP92: 24/07/2011 3:22:57 PM - Scheduled Checkpoint RP93: 26/07/2011 6:51:01 PM - Windows Update . ==== Installed Programs ====================== . . Update for Microsoft Office 2007 (KB2508958) Adobe Flash Player 10 ActiveX Adobe Reader 7.0.8 Canon Easy-WebPrint EX Canon IJ Network Scan Utility Canon IJ Network Tool Canon Inkjet Printer/Scanner/Fax Extended Survey Program Canon MP Navigator EX 3.1 Canon MX870 series MP Drivers Canon Speed Dial Utility Canon Utilities Easy-PhotoPrint EX Canon Utilities My Printer Canon Utilities Solution Menu Conexant HDA D110 MDC V.92 Modem Dell Wireless WLAN Card DellSupport Digital Line Detect DivX Setup Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) Intel® Graphics Media Accelerator Driver Java™ SE Runtime Environment 6 Kaspersky Internet Security 2010 MediaDirect Microsoft .NET Framework 3.5 SP1 Microsoft Office 2007 Service Pack 2 (SP2) Microsoft Office Access MUI (English) 2007 Microsoft Office Access Setup Metadata MUI (English) 2007 Microsoft Office Excel MUI (English) 2007 Microsoft Office Outlook MUI (English) 2007 Microsoft Office PowerPoint MUI (English) 2007 Microsoft Office Professional 2007 Microsoft Office Proof (English) 2007 Microsoft Office Proof (French) 2007 Microsoft Office Proof (Spanish) 2007 Microsoft Office Proofing (English) 2007 Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2) Microsoft Office Publisher MUI (English) 2007 Microsoft Office Shared MUI (English) 2007 Microsoft Office Shared Setup Metadata MUI (English) 2007 Microsoft Office Word MUI (English) 2007 Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 Microsoft Visual C++ 2005 Redistributable Microsoft Works Modem Diagnostic Tool MSXML 4.0 SP2 (KB954430) MSXML 4.0 SP2 (KB973688) NetWaiting Norton Internet Security QuickSet Roxio Creator Audio Roxio Creator BDAV Plugin Roxio Creator Copy Roxio Creator Data Roxio Creator DE Roxio Creator Tools Roxio Drag-to-Disc Roxio Express Labeler Roxio MyDVD DE Roxio Update Manager Security Update for 2007 Microsoft Office System (KB2288621) Security Update for 2007 Microsoft Office System (KB2288931) Security Update for 2007 Microsoft Office System (KB2345043) Security Update for 2007 Microsoft Office System (KB2509488) Security Update for 2007 Microsoft Office System (KB969559) Security Update for 2007 Microsoft Office System (KB976321) Security Update for CAPICOM (KB931906) Security Update for Microsoft Office 2007 System (KB2541012) Security Update for Microsoft Office Access 2007 (KB979440) Security Update for Microsoft Office Excel 2007 (KB2541007) Security Update for Microsoft Office InfoPath 2007 (KB979441) Security Update for Microsoft Office PowerPoint 2007 (KB2535818) Security Update for Microsoft Office PowerPoint Viewer 2007 (KB2464623) Security Update for Microsoft Office Publisher 2007 (KB2284697) Security Update for Microsoft Office system 2007 (972581) Security Update for Microsoft Office system 2007 (KB974234) Security Update for Microsoft Office Visio Viewer 2007 (KB973709) Security Update for Microsoft Office Word 2007 (KB2344993) SigmaTel Audio Sonic Activation Module Synaptics Pointing Device Driver Update for 2007 Microsoft Office System (KB967642) Update for Microsoft .NET Framework 3.5 SP1 (KB963707) Update for Microsoft Office 2007 System (KB2539530) Update for Microsoft Office Outlook 2007 (KB2509470) Update for Outlook 2007 Junk Email Filter (KB2553975) User's Guides VC80CRTRedist - 8.0.50727.4053 . ==== Event Viewer Messages From Past Week ======== . 24/07/2011 8:34:25 AM, Error: Microsoft-Windows-Dhcp-Client [1002] - The IP address lease 192.168.1.19 for the Network Card with network address 001A923E5159 has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message). 24/07/2011 6:42:50 PM, Error: Microsoft-Windows-Dhcp-Client [1002] - The IP address lease 192.168.1.26 for the Network Card with network address 001A923E5159 has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message). 24/07/2011 4:46:03 PM, Error: Microsoft-Windows-Dhcp-Client [1002] - The IP address lease 192.168.1.25 for the Network Card with network address 001A923E5159 has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message). 24/07/2011 3:25:51 PM, Error: Microsoft-Windows-Dhcp-Client [1002] - The IP address lease 192.168.1.22 for the Network Card with network address 001A923E5159 has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message). 23/07/2011 6:16:34 PM, Error: Microsoft-Windows-Dhcp-Client [1002] - The IP address lease 192.168.1.14 for the Network Card with network address 001A923E5159 has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message). 23/07/2011 3:27:25 PM, Error: Microsoft-Windows-Dhcp-Client [1002] - The IP address lease 192.168.1.11 for the Network Card with network address 001A923E5159 has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message). 23/07/2011 12:28:07 PM, Error: Microsoft-Windows-Dhcp-Client [1002] - The IP address lease 192.168.1.7 for the Network Card with network address 001A923E5159 has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message). 23/07/2011 10:13:08 PM, Error: Microsoft-Windows-Dhcp-Client [1002] - The IP address lease 192.168.1.17 for the Network Card with network address 001A923E5159 has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message). 22/07/2011 8:01:25 PM, Error: Microsoft-Windows-Dhcp-Client [1002] - The IP address lease 192.168.1.6 for the Network Card with network address 001A923E5159 has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message). 22/07/2011 7:33:56 AM, Error: BROWSER [8007] - The browser was unable to update the service status bits. The data is the error. 22/07/2011 7:31:31 AM, Error: Microsoft-Windows-DistributedCOM [10016] - The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID {9BA05972-F6A8-11CF-A442-00A0C90A8F39} to the user Trudy-PC\Trudy SID (S-1-5-21-2471471591-1450635228-1381345588-1001) from address LocalHost (Using LRPC). This security permission can be modified using the Component Services administrative tool. 22/07/2011 6:37:04 PM, Error: Microsoft-Windows-Dhcp-Client [1002] - The IP address lease 192.168.1.5 for the Network Card with network address 001A923E5159 has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message). 22/07/2011 12:23:46 PM, Error: Microsoft-Windows-Dhcp-Client [1002] - The IP address lease 192.168.1.119 for the Network Card with network address 001A923E5159 has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message). 21/07/2011 12:29:39 PM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the STacSV service. . ==== End Of File =========================== aswMBR version 0.9.8.977 Copyright© 2011 AVAST Software Run date: 2011-07-26 18:48:18 —————————– 18:48:18.537 OS Version: Windows 6.0.6000 18:48:18.537 Number of processors: 2 586 0xF06 18:48:18.537 ComputerName: TRUDY-PC UserName: Trudy 18:48:20.253 Initialize success 18:48:38.781 The log file has been saved successfully to "C:\Users\Trudy\Desktop\aswMBR.txt"
Hi Trudy White, It looks like your log for aswMBR was cut off. See if you still have the log on your desktop and post that into your next reply. If not please re-run aswMBR using my previous instructions and post that log into your next reply. :)
Sorry, I see where I went wrong. Here is the actual result. aswMBR version 0.9.8.977 Copyright© 2011 AVAST Software Run date: 2011-07-28 17:38:23 —————————– 17:38:23.888 OS Version: Windows 6.0.6000 17:38:23.888 Number of processors: 2 586 0xF06 17:38:23.888 ComputerName: TRUDY-PC UserName: Trudy 17:38:24.980 Initialize success 17:38:43.847 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-0 17:38:43.847 Disk 0 Vendor: SAMSUNG_HM120JI YF100-15 Size: 114473MB BusType: 3 17:38:43.894 Disk 0 MBR read successfully 17:38:43.894 Disk 0 MBR scan 17:38:43.910 Disk 0 Windows VISTA default MBR code 17:38:43.925 Disk 0 scanning sectors +234438656 17:38:44.050 Disk 0 scanning C:\Windows\system32\drivers 17:38:54.252 Service scanning 17:38:55.329 Service ACPI C:\Windows\system32\drivers\acpi.sys **LOCKED** 32 17:38:55.344 Service adp94xx C:\Windows\system32\drivers\adp94xx.sys **LOCKED** 32 17:38:55.360 Service adpahci C:\Windows\system32\drivers\adpahci.sys **LOCKED** 32 17:38:55.391 Service adpu160m C:\Windows\system32\drivers\adpu160m.sys **LOCKED** 32 17:38:55.391 Service adpu320 C:\Windows\system32\drivers\adpu320.sys **LOCKED** 32 17:38:55.407 Service AFD C:\Windows\system32\drivers\afd.sys **LOCKED** 32 17:38:55.937 Service agp440 C:\Windows\system32\drivers\agp440.sys **LOCKED** 32 17:38:55.953 Service aic78xx C:\Windows\system32\drivers\djsvs.sys **LOCKED** 32 17:38:55.968 Service aliide C:\Windows\system32\drivers\aliide.sys **LOCKED** 32 17:38:55.984 Service amdagp C:\Windows\system32\drivers\amdagp.sys **LOCKED** 32 17:38:56.000 Service amdide C:\Windows\system32\drivers\amdide.sys **LOCKED** 32 17:38:56.015 Service AmdK7 C:\Windows\system32\drivers\amdk7.sys **LOCKED** 32 17:38:56.031 Service AmdK8 C:\Windows\system32\drivers\amdk8.sys **LOCKED** 32 17:38:56.062 Service arc C:\Windows\system32\drivers\arc.sys **LOCKED** 32 17:38:56.078 Service arcsas C:\Windows\system32\drivers\arcsas.sys **LOCKED** 32 17:38:56.093 Service AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys **LOCKED** 32 17:38:56.109 Service atapi C:\Windows\system32\drivers\atapi.sys **LOCKED** 32 17:38:56.124 Service BCM43XX C:\Windows\system32\DRIVERS\bcmwl6.sys **LOCKED** 32 17:38:56.140 Service bcm4sbxp C:\Windows\system32\DRIVERS\bcm4sbxp.sys **LOCKED** 32 17:38:56.140 Service Beep C:\Windows\System32\Drivers\Beep.sys **LOCKED** 32 17:38:56.156 Service BrFiltLo C:\Windows\system32\drivers\brfiltlo.sys **LOCKED** 32 17:38:56.171 Service BrFiltUp C:\Windows\system32\drivers\brfiltup.sys **LOCKED** 32 17:38:56.187 Service Brserid C:\Windows\system32\drivers\brserid.sys **LOCKED** 32 17:38:56.187 Service BrSerWdm C:\Windows\system32\drivers\brserwdm.sys **LOCKED** 32 17:38:56.202 Service BrUsbMdm C:\Windows\system32\drivers\brusbmdm.sys **LOCKED** 32 17:38:56.218 Service BrUsbSer C:\Windows\system32\drivers\brusbser.sys **LOCKED** 32 17:38:56.218 Service BTHMODEM C:\Windows\system32\drivers\bthmodem.sys **LOCKED** 32 17:38:56.234 Service cdrom C:\Windows\system32\DRIVERS\cdrom.sys **LOCKED** 32 17:38:56.249 Service circlass C:\Windows\system32\drivers\circlass.sys **LOCKED** 32 17:38:56.265 Service CLFS C:\Windows\System32\CLFS.sys **LOCKED** 32 17:38:56.280 Service CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys **LOCKED** 32 17:38:56.280 Service cmdide C:\Windows\system32\drivers\cmdide.sys **LOCKED** 32 17:38:56.296 Service Compbatt C:\Windows\system32\DRIVERS\compbatt.sys **LOCKED** 32 17:38:56.312 Service crcdisk C:\Windows\system32\drivers\crcdisk.sys **LOCKED** 32 17:38:56.312 Service Crusoe C:\Windows\system32\drivers\crusoe.sys **LOCKED** 32 17:38:56.343 Service disk C:\Windows\system32\drivers\disk.sys **LOCKED** 32 17:38:56.358 Service drmkaud C:\Windows\system32\drivers\drmkaud.sys **LOCKED** 32 17:38:56.374 Service DRVMCDB C:\Windows\System32\Drivers\DRVMCDB.SYS **LOCKED** 32 17:38:56.390 Service DSproct C:\Program Files\DellSupport\GTAction\triggers\DSproct.sys **LOCKED** 32 17:38:56.405 Service dsunidrv C:\Program Files\DellSupport\Drivers\dsunidrv.sys **LOCKED** 32 17:38:56.436 Service DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys **LOCKED** 32 17:38:56.436 Service e1express C:\Windows\system32\DRIVERS\e1e6032.sys **LOCKED** 32 17:38:56.452 Service E1G60 C:\Windows\system32\DRIVERS\E1G60I32.sys **LOCKED** 32 17:38:56.577 Service Ecache C:\Windows\System32\drivers\ecache.sys **LOCKED** 32 17:38:56.608 Service elxstor C:\Windows\system32\drivers\elxstor.sys **LOCKED** 32 17:38:56.686 Service fdc C:\Windows\system32\DRIVERS\fdc.sys **LOCKED** 32 17:38:56.717 Service flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys **LOCKED** 32 17:38:56.733 Service gagp30kx C:\Windows\system32\drivers\gagp30kx.sys **LOCKED** 32 17:38:56.764 Service HdAudAddService C:\Windows\system32\drivers\HdAudio.sys **LOCKED** 32 17:38:56.780 Service HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys **LOCKED** 32 17:38:56.795 Service HidBth C:\Windows\system32\drivers\hidbth.sys **LOCKED** 32 17:38:56.826 Service HidIr C:\Windows\system32\drivers\hidir.sys **LOCKED** 32 17:38:56.842 Service HidUsb C:\Windows\system32\DRIVERS\hidusb.sys **LOCKED** 32 17:38:56.858 Service HpCISSs C:\Windows\system32\drivers\hpcisss.sys **LOCKED** 32 17:38:56.858 Service HSF_DPV C:\Windows\system32\DRIVERS\HSX_DPV.sys **LOCKED** 32 17:38:56.873 Service HSXHWAZL C:\Windows\system32\DRIVERS\HSXHWAZL.sys **LOCKED** 32 17:38:56.873 Service HTTP C:\Windows\system32\drivers\HTTP.sys **LOCKED** 32 17:38:56.889 Service i2omp C:\Windows\system32\drivers\i2omp.sys **LOCKED** 32 17:38:56.904 Service i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys **LOCKED** 32 17:38:56.920 Service iaStorV C:\Windows\system32\drivers\iastorv.sys **LOCKED** 32 17:38:56.920 Service IDSvix86 C:\PROGRA~2\Symantec\DEFINI~1\SymcData\idsdefs\20061025.029\IDSvix86.sys **LOCKED** 32 17:38:56.936 Service igfx C:\Windows\system32\DRIVERS\igdkmd32.sys **LOCKED** 32 17:38:56.951 Service iirsp C:\Windows\system32\drivers\iirsp.sys **LOCKED** 32 17:38:56.967 Service intelide C:\Windows\system32\drivers\intelide.sys **LOCKED** 32 17:38:56.982 Service intelppm C:\Windows\system32\DRIVERS\intelppm.sys **LOCKED** 32 17:38:56.982 Service IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys **LOCKED** 32 17:38:56.998 Service IPMIDRV C:\Windows\system32\drivers\ipmidrv.sys **LOCKED** 32 17:38:57.014 Service IPNAT C:\Windows\system32\DRIVERS\ipnat.sys **LOCKED** 32 17:38:57.014 Service IRENUM C:\Windows\system32\drivers\irenum.sys **LOCKED** 32 17:38:57.029 Service isapnp C:\Windows\system32\drivers\isapnp.sys **LOCKED** 32 17:38:57.045 Service iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys **LOCKED** 32 17:38:57.045 Service iteatapi C:\Windows\system32\drivers\iteatapi.sys **LOCKED** 32 17:38:57.060 Service iteraid C:\Windows\system32\drivers\iteraid.sys **LOCKED** 32 17:38:57.076 Service kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys **LOCKED** 32 17:38:57.076 Service kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys **LOCKED** 32 17:38:57.092 Service kl1 C:\Windows\system32\DRIVERS\kl1.sys **LOCKED** 32 17:38:57.107 Service klbg C:\Windows\system32\drivers\klbg.sys **LOCKED** 32 17:38:57.138 Service KLIM6 C:\Windows\system32\DRIVERS\klim6.sys **LOCKED** 32 17:38:57.138 Service klmouflt C:\Windows\system32\DRIVERS\klmouflt.sys **LOCKED** 32 17:38:57.154 Service KSecDD C:\Windows\System32\Drivers\ksecdd.sys **LOCKED** 32 17:38:57.170 Service lltdio C:\Windows\system32\DRIVERS\lltdio.sys **LOCKED** 32 17:38:57.185 Service LSI_FC C:\Windows\system32\drivers\lsi_fc.sys **LOCKED** 32 17:38:57.216 Service LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys **LOCKED** 32 17:38:57.216 Service LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys **LOCKED** 32 17:38:57.232 Service mdmxsdk C:\Windows\system32\DRIVERS\mdmxsdk.sys **LOCKED** 32 17:38:57.248 Service megasas C:\Windows\system32\drivers\megasas.sys **LOCKED** 32 17:38:57.263 Service Modem C:\Windows\system32\drivers\modem.sys **LOCKED** 32 17:38:57.279 Service monitor C:\Windows\system32\DRIVERS\monitor.sys **LOCKED** 32 17:38:57.279 Service mouclass C:\Windows\system32\DRIVERS\mouclass.sys **LOCKED** 32 17:38:57.294 Service mouhid C:\Windows\system32\DRIVERS\mouhid.sys **LOCKED** 32 17:38:57.310 Service MountMgr C:\Windows\System32\drivers\mountmgr.sys **LOCKED** 32 17:38:57.310 Service mpio C:\Windows\system32\drivers\mpio.sys **LOCKED** 32 17:38:57.326 Service mpsdrv C:\Windows\System32\drivers\mpsdrv.sys **LOCKED** 32 17:38:57.341 Service Mraid35x C:\Windows\system32\drivers\mraid35x.sys **LOCKED** 32 17:38:57.357 Service msahci C:\Windows\system32\drivers\msahci.sys **LOCKED** 32 17:38:57.372 Service msdsm C:\Windows\system32\drivers\msdsm.sys **LOCKED** 32 17:38:57.388 Service msisadrv C:\Windows\system32\drivers\msisadrv.sys **LOCKED** 32 17:38:57.404 Service MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys **LOCKED** 32 17:38:57.404 Service MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys **LOCKED** 32 17:38:57.419 Service MSPQM C:\Windows\system32\drivers\MSPQM.sys **LOCKED** 32 17:38:57.435 Service MsRPC C:\Windows\System32\Drivers\MsRPC.sys **LOCKED** 32 17:38:57.435 Service mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys **LOCKED** 32 17:38:57.450 Service MSTEE C:\Windows\system32\drivers\MSTEE.sys **LOCKED** 32 17:38:57.466 Service NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys **LOCKED** 32 17:38:57.482 Service NDIS C:\Windows\system32\drivers\ndis.sys **LOCKED** 32 17:38:57.482 Service NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys **LOCKED** 32 17:38:57.497 Service Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys **LOCKED** 32 17:38:57.497 Service NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys **LOCKED** 32 17:38:57.513 Service NDProxy C:\Windows\System32\Drivers\NDProxy.sys **LOCKED** 32 17:38:57.528 Service netbt C:\Windows\System32\DRIVERS\netbt.sys **LOCKED** 32 17:38:57.544 Service nfrd960 C:\Windows\system32\drivers\nfrd960.sys **LOCKED** 32 17:38:57.560 Service nsiproxy C:\Windows\system32\drivers\nsiproxy.sys **LOCKED** 32 17:38:57.575 Service ntrigdigi C:\Windows\system32\drivers\ntrigdigi.sys **LOCKED** 32 17:38:57.591 Service NuidFltr C:\Windows\system32\DRIVERS\NuidFltr.sys **LOCKED** 32 17:38:57.591 Service Null C:\Windows\System32\Drivers\Null.sys **LOCKED** 32 17:38:57.606 Service nvraid C:\Windows\system32\drivers\nvraid.sys **LOCKED** 32 17:38:57.622 Service nvstor C:\Windows\system32\drivers\nvstor.sys **LOCKED** 32 17:38:57.622 Service nv_agp C:\Windows\system32\drivers\nv_agp.sys **LOCKED** 32 17:38:57.638 Service ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys **LOCKED** 32 17:38:57.653 Service Parport C:\Windows\system32\drivers\parport.sys **LOCKED** 32 17:38:57.669 Service partmgr C:\Windows\System32\drivers\partmgr.sys **LOCKED** 32 17:38:57.684 Service Parvdm C:\Windows\system32\drivers\parvdm.sys **LOCKED** 32 17:38:57.700 Service pci C:\Windows\system32\drivers\pci.sys **LOCKED** 32 17:38:57.700 Service pciide C:\Windows\system32\DRIVERS\pciide.sys **LOCKED** 32 17:38:57.716 Service pcmcia C:\Windows\system32\drivers\pcmcia.sys **LOCKED** 32 17:38:57.731 Service PEAUTH C:\Windows\system32\drivers\peauth.sys **LOCKED** 32 17:38:57.762 Service PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys **LOCKED** 32 17:38:57.778 Service Processor C:\Windows\system32\drivers\processr.sys **LOCKED** 32 17:38:57.794 Service PSched C:\Windows\system32\DRIVERS\pacer.sys **LOCKED** 32 17:38:57.794 Service PxHelp20 C:\Windows\System32\Drivers\PxHelp20.sys **LOCKED** 32 17:38:57.809 Service ql2300 C:\Windows\system32\drivers\ql2300.sys **LOCKED** 32 17:38:57.809 Service ql40xx C:\Windows\system32\drivers\ql40xx.sys **LOCKED** 32 17:38:57.825 Service QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys **LOCKED** 32 17:38:57.840 Service R300 C:\Windows\system32\DRIVERS\atikmdag.sys **LOCKED** 32 17:38:57.856 Service RasAcd C:\Windows\System32\DRIVERS\rasacd.sys **LOCKED** 32 17:38:57.856 Service Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys **LOCKED** 32 17:38:57.872 Service RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys **LOCKED** 32 17:38:57.887 Service RDPCDD C:\Windows\System32\DRIVERS\RDPCDD.sys **LOCKED** 32 17:38:57.887 Service rdpdr C:\Windows\system32\drivers\rdpdr.sys **LOCKED** 32 17:38:57.903 Service RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys **LOCKED** 32 17:38:57.918 Service RDPWD C:\Windows\System32\Drivers\RDPWD.sys **LOCKED** 32 17:38:57.965 Service rimmptsk C:\Windows\system32\DRIVERS\rimmptsk.sys **LOCKED** 32 17:38:57.981 Service rimsptsk C:\Windows\system32\DRIVERS\rimsptsk.sys **LOCKED** 32 17:38:57.996 Service rismxdp C:\Windows\system32\DRIVERS\rixdptsk.sys **LOCKED** 32 17:38:58.012 Service rspndr C:\Windows\system32\DRIVERS\rspndr.sys **LOCKED** 32 17:38:58.028 Service sbp2port C:\Windows\system32\drivers\sbp2port.sys **LOCKED** 32 17:38:58.043 Service sdbus C:\Windows\system32\DRIVERS\sdbus.sys **LOCKED** 32 17:38:58.074 Service secdrv C:\Windows\System32\Drivers\secdrv.sys **LOCKED** 32 17:38:58.090 Service Serenum C:\Windows\system32\drivers\serenum.sys **LOCKED** 32 17:38:58.106 Service Serial C:\Windows\system32\drivers\serial.sys **LOCKED** 32 17:38:58.106 Service sermouse C:\Windows\system32\drivers\sermouse.sys **LOCKED** 32 17:38:58.121 Service sffdisk C:\Windows\system32\drivers\sffdisk.sys **LOCKED** 32 17:38:58.137 Service sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys **LOCKED** 32 17:38:58.152 Service sffp_sd C:\Windows\system32\drivers\sffp_sd.sys **LOCKED** 32 17:38:58.152 Service sfloppy C:\Windows\system32\drivers\sfloppy.sys **LOCKED** 32 17:38:58.168 Service sisagp C:\Windows\system32\drivers\sisagp.sys **LOCKED** 32 17:38:58.184 Service SiSRaid2 C:\Windows\system32\drivers\sisraid2.sys **LOCKED** 32 17:38:58.199 Service SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys **LOCKED** 32 17:38:58.215 Service Smb C:\Windows\system32\DRIVERS\smb.sys **LOCKED** 32 17:38:58.230 Service spldr C:\Windows\System32\Drivers\spldr.sys **LOCKED** 32 17:38:58.246 Service STHDA C:\Windows\system32\drivers\stwrt.sys **LOCKED** 32 17:38:58.262 Service swenum C:\Windows\system32\DRIVERS\swenum.sys **LOCKED** 32 17:38:58.277 Service Symc8xx C:\Windows\system32\drivers\symc8xx.sys **LOCKED** 32 17:38:58.293 Service SymEvent C:\Windows\system32\Drivers\SYMEVENT.SYS **LOCKED** 32 17:38:58.308 Service Sym_hi C:\Windows\system32\drivers\sym_hi.sys **LOCKED** 32 17:38:58.324 Service Sym_u3 C:\Windows\system32\drivers\sym_u3.sys **LOCKED** 32 17:38:58.340 Service SynTP C:\Windows\system32\DRIVERS\SynTP.sys **LOCKED** 32 17:38:58.355 Service Tcpip C:\Windows\System32\drivers\tcpip.sys **LOCKED** 32 17:38:58.371 Service Tcpip6 C:\Windows\system32\DRIVERS\tcpip.sys **LOCKED** 32 17:38:58.371 Service tcpipreg C:\Windows\System32\drivers\tcpipreg.sys **LOCKED** 32 17:38:58.386 Service TDPIPE C:\Windows\system32\drivers\tdpipe.sys **LOCKED** 32 17:38:58.402 Service TDTCP C:\Windows\system32\drivers\tdtcp.sys **LOCKED** 32 17:38:58.402 Service tdx C:\Windows\system32\DRIVERS\tdx.sys **LOCKED** 32 17:38:58.418 Service TermDD C:\Windows\system32\DRIVERS\termdd.sys **LOCKED** 32 17:38:58.433 Service tssecsrv C:\Windows\System32\DRIVERS\tssecsrv.sys **LOCKED** 32 17:38:58.449 Service tunmp C:\Windows\system32\DRIVERS\tunmp.sys **LOCKED** 32 17:38:58.464 Service tunnel C:\Windows\system32\DRIVERS\tunnel.sys **LOCKED** 32 17:38:58.464 Service uagp35 C:\Windows\system32\drivers\uagp35.sys **LOCKED** 32 17:38:58.480 Service uliagpkx C:\Windows\system32\drivers\uliagpkx.sys **LOCKED** 32 17:38:58.496 Service uliahci C:\Windows\system32\drivers\uliahci.sys **LOCKED** 32 17:38:58.511 Service UlSata C:\Windows\system32\drivers\ulsata.sys **LOCKED** 32 17:38:58.511 Service ulsata2 C:\Windows\system32\drivers\ulsata2.sys **LOCKED** 32 17:38:58.527 Service umbus C:\Windows\system32\DRIVERS\umbus.sys **LOCKED** 32 17:38:58.542 Service usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys **LOCKED** 32 17:38:58.558 Service usbcir C:\Windows\system32\drivers\usbcir.sys **LOCKED** 32 17:38:58.574 Service usbehci C:\Windows\system32\DRIVERS\usbehci.sys **LOCKED** 32 17:38:58.574 Service usbhub C:\Windows\system32\DRIVERS\usbhub.sys **LOCKED** 32 17:38:58.589 Service usbohci C:\Windows\system32\drivers\usbohci.sys **LOCKED** 32 17:38:58.605 Service usbprint C:\Windows\system32\drivers\usbprint.sys **LOCKED** 32 17:38:58.605 Service USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS **LOCKED** 32 17:38:58.620 Service usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys **LOCKED** 32 17:38:58.636 Service vga C:\Windows\system32\DRIVERS\vgapnp.sys **LOCKED** 32 17:38:58.636 Service VgaSave C:\Windows\System32\drivers\vga.sys **LOCKED** 32 17:38:58.652 Service viaagp C:\Windows\system32\drivers\viaagp.sys **LOCKED** 32 17:38:58.667 Service ViaC7 C:\Windows\system32\drivers\viac7.sys **LOCKED** 32 17:38:58.667 Service viaide C:\Windows\system32\drivers\viaide.sys **LOCKED** 32 17:38:58.683 Service volmgr C:\Windows\system32\drivers\volmgr.sys **LOCKED** 32 17:38:58.698 Service volmgrx C:\Windows\System32\drivers\volmgrx.sys **LOCKED** 32 17:38:58.698 Service volsnap C:\Windows\system32\drivers\volsnap.sys **LOCKED** 32 17:38:58.714 Service vsmraid C:\Windows\system32\drivers\vsmraid.sys **LOCKED** 32 17:38:58.730 Service WacomPen C:\Windows\system32\drivers\wacompen.sys **LOCKED** 32 17:38:58.745 Service Wanarp C:\Windows\system32\DRIVERS\wanarp.sys **LOCKED** 32 17:38:58.761 Service Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys **LOCKED** 32 17:38:58.776 Service Wd C:\Windows\system32\drivers\wd.sys **LOCKED** 32 17:38:58.792 Service Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys **LOCKED** 32 17:38:58.808 Service winachsf C:\Windows\system32\DRIVERS\HSX_CNXT.sys **LOCKED** 32 17:38:58.839 Service WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys **LOCKED** 32 17:38:58.854 Service WpdUsb C:\Windows\system32\DRIVERS\wpdusb.sys **LOCKED** 32 17:38:58.870 Service ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys **LOCKED** 32 17:38:58.886 Service WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys **LOCKED** 32 17:38:58.901 Service XAudio C:\Windows\system32\DRIVERS\xaudio.sys **LOCKED** 32 17:38:59.478 Modules scanning 17:39:09.603 Disk 0 trace - called modules: 17:39:09.634 ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys hal.dll ataport.SYS intelide.sys PCIIDEX.SYS atapi.sys 17:39:09.634 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x852b9488] 17:39:09.650 3 ntkrnlpa.exe[820b07e2] -> nt!IofCallDriver -> [0x84bd34e0] 17:39:09.650 5 acpi.sys[8046932a] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-0[0x84bbdbb0] 17:39:09.665 Scan finished successfully 17:40:01.732 Disk 0 MBR has been saved successfully to "C:\Users\Trudy\Desktop\What the Tech\MBR.dat" 17:40:01.748 The log file has been saved successfully to "C:\Users\Trudy\Desktop\What the Tech\aswMBR.txt"
Hi Trudy White,

Download Combofix from either of the links below, and save it to your desktop.
Link 1
Link 2

**Note: It is important that it is saved directly to your desktop**

——————————————————————–

IMPORTANT - Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools. If you have difficulty properly disabling your protective programs, refer to this link here

——————————————————————–

Double click on ComboFix.exe & follow the prompts.
  • When finished, it will produce a report for you.
  • Please post the C:\ComboFix.txt for further review.
ComboFix 11-07-29.03 - Trudy 29/07/2011 18:56:01.1.2 - x86
Microsoft® Windows Vista™ Home Premium 6.0.6000.0.1252.2.1033.18.2038.1131 [GMT -4:00]
Running from: c:\users\[removed]\Desktop\ComboFix.exe
.
.
((((((((((((((((((((((((( Files Created from 2011-06-28 to 2011-07-29 )))))))))))))))))))))))))))))))
.
.
2011-07-29 22:52 . 2011-07-29 22:52 ——– d—–w- C:\32788R22FWJFW
2011-07-28 21:34 . 2011-07-28 21:34 ——– d—–w- c:\users\Trudy\AppData\Roaming\CyberLink
2011-07-26 22:51 . 2011-07-13 03:39 6881616 —-a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{8737042C-286B-40AD-920A-FFE367E24CC6}\mpengine.dll
2011-07-13 20:54 . 2011-07-13 20:54 ——– d—–w- c:\users\Trudy\AppData\Roaming\Catalina Marketing Corp
2011-07-13 20:53 . 2011-07-13 20:56 489672 —-a-w- c:\users\Trudy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Catalina Marketing Corp\UninstallCouponActivator.exe
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-05-24 23:14 . 2011-05-07 22:17 222080 ——w- c:\windows\system32\MpSigStub.exe
2011-05-08 21:59 . 2011-05-08 21:59 378368 —-a-w- c:\windows\system32\winhttp.dll
2011-05-08 21:57 . 2011-05-08 21:57 268800 —-a-w- c:\windows\system32\es.dll
2011-05-08 21:55 . 2011-05-08 21:55 36864 —-a-w- c:\windows\system32\drivers\en-US\http.sys.mui
2011-05-08 21:47 . 2011-05-08 21:47 441856 —-a-w- c:\windows\system32\win32spl.dll
2011-05-08 21:47 . 2011-05-08 21:47 37376 —-a-w- c:\windows\system32\printcom.dll
2011-05-08 21:46 . 2011-05-08 21:46 2031104 —-a-w- c:\windows\system32\win32k.sys
2011-05-08 21:40 . 2011-05-08 21:40 97800 —-a-w- c:\windows\system32\infocardapi.dll
2011-05-08 21:40 . 2011-05-08 21:40 622080 —-a-w- c:\windows\system32\icardagt.exe
2011-05-08 21:40 . 2011-05-08 21:40 37384 —-a-w- c:\windows\system32\infocardcpl.cpl
2011-05-08 21:40 . 2011-05-08 21:40 11264 —-a-w- c:\windows\system32\icardres.dll
2011-05-08 21:40 . 2011-05-08 21:40 105016 —-a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2011-05-08 21:40 . 2011-05-08 21:40 326160 —-a-w- c:\windows\system32\PresentationHost.exe
2011-05-08 21:40 . 2011-05-08 21:40 781344 —-a-w- c:\windows\system32\PresentationNative_v0300.dll
2011-05-08 21:40 . 2011-05-08 21:40 43544 —-a-w- c:\windows\system32\PresentationHostProxy.dll
2011-05-08 18:21 . 2011-05-08 18:21 14848 —-a-w- c:\windows\system32\wshrm.dll
2011-05-08 18:21 . 2011-05-08 18:21 113664 —-a-w- c:\windows\system32\drivers\rmcast.sys
2011-05-08 18:19 . 2011-05-08 18:19 8147968 —-a-w- c:\windows\system32\wmploc.DLL
2011-05-08 18:19 . 2011-05-08 18:19 7680 —-a-w- c:\windows\system32\spwmp.dll
2011-05-08 18:19 . 2011-05-08 18:19 4096 —-a-w- c:\windows\system32\msdxm.ocx
2011-05-08 18:19 . 2011-05-08 18:19 4096 —-a-w- c:\windows\system32\dxmasf.dll
2011-05-08 18:19 . 2011-05-08 18:19 43520 —-a-w- c:\windows\system32\msdxm.tlb
2011-05-08 18:19 . 2011-05-08 18:19 313344 —-a-w- c:\windows\system32\wmpdxm.dll
2011-05-08 18:19 . 2011-05-08 18:19 18432 —-a-w- c:\windows\system32\amcompat.tlb
2011-05-08 18:17 . 2011-05-08 18:17 11776 —-a-w- c:\windows\system32\sbunattend.exe
2011-05-08 18:15 . 2011-05-08 18:15 83968 —-a-w- c:\windows\system32\dnsrslvr.dll
2011-05-08 18:15 . 2011-05-08 18:15 24576 —-a-w- c:\windows\system32\dnscacheugc.exe
2011-05-08 01:21 . 2011-05-08 01:21 34304 —-a-w- c:\windows\system32\atmlib.dll
2011-05-08 01:21 . 2011-05-08 01:21 289792 —-a-w- c:\windows\system32\atmfd.dll
2011-05-08 01:21 . 2011-05-08 01:21 24064 —-a-w- c:\windows\system32\lpk.dll
2011-05-08 01:21 . 2011-05-08 01:21 156672 —-a-w- c:\windows\system32\t2embed.dll
2011-05-08 01:21 . 2011-05-08 01:21 72704 —-a-w- c:\windows\system32\fontsub.dll
2011-05-08 01:21 . 2011-05-08 01:21 10240 —-a-w- c:\windows\system32\dciman32.dll
2011-05-08 01:18 . 2011-05-08 01:18 72704 —-a-w- c:\windows\system32\admparse.dll
2011-05-08 01:18 . 2011-05-08 01:18 52736 —-a-w- c:\windows\apppatch\iebrshim.dll
2011-05-08 01:18 . 2011-05-08 01:18 832512 —-a-w- c:\windows\system32\wininet.dll
2011-05-08 01:18 . 2011-05-08 01:18 78336 —-a-w- c:\windows\system32\ieencode.dll
2011-05-08 01:18 . 2011-05-08 01:18 48128 —-a-w- c:\windows\system32\mshtmler.dll
2011-05-08 01:18 . 2011-05-08 01:18 389120 —-a-w- c:\windows\system32\html.iec
2011-05-08 01:18 . 2011-05-08 01:18 1383424 —-a-w- c:\windows\system32\mshtml.tlb
2011-05-08 01:18 . 2011-05-08 01:18 1830912 —-a-w- c:\windows\system32\inetcpl.cpl
2011-05-08 01:18 . 2011-05-08 01:18 26624 —-a-w- c:\windows\system32\ieUnatt.exe
2011-05-08 01:18 . 2011-05-08 01:18 56320 —-a-w- c:\windows\system32\iesetup.dll
2011-05-08 01:14 . 2011-05-08 01:14 61440 —-a-w- c:\windows\system32\winipsec.dll
2011-05-08 01:14 . 2011-05-08 01:14 361984 —-a-w- c:\windows\system32\IPSECSVC.DLL
2011-05-08 01:14 . 2011-05-08 01:14 28672 —-a-w- c:\windows\system32\FwRemoteSvr.dll
2011-05-08 01:14 . 2011-05-08 01:14 272896 —-a-w- c:\windows\system32\polstore.dll
2011-05-08 01:12 . 2011-05-08 01:12 84992 —-a-w- c:\windows\system32\drivers\srvnet.sys
2011-05-08 01:12 . 2011-05-08 01:12 306688 —-a-w- c:\windows\system32\drivers\srv.sys
2011-05-08 01:11 . 2011-05-08 01:11 39424 —-a-w- c:\windows\system32\ACCTRES.dll
2011-05-08 01:11 . 2011-05-08 01:11 205824 —-a-w- c:\windows\system32\msoeacct.dll
2011-05-08 01:11 . 2011-05-08 01:11 87040 —-a-w- c:\windows\system32\msoert2.dll
2011-05-08 01:09 . 2011-05-08 01:09 9728 —-a-w- c:\windows\system32\TCPSVCS.EXE
2011-05-08 01:09 . 2011-05-08 01:09 8704 —-a-w- c:\windows\system32\HOSTNAME.EXE
2011-05-08 01:09 . 2011-05-08 01:09 15360 —-a-w- c:\windows\system32\netevent.dll
2011-05-08 01:09 . 2011-05-08 01:09 11264 —-a-w- c:\windows\system32\MRINFO.EXE
2011-05-08 01:09 . 2011-05-08 01:09 103936 —-a-w- c:\windows\system32\netiohlp.dll
2011-05-08 01:09 . 2011-05-08 01:09 10240 —-a-w- c:\windows\system32\finger.exe
2011-05-08 01:09 . 2011-05-08 01:09 27136 —-a-w- c:\windows\system32\NETSTAT.EXE
2011-05-08 01:09 . 2011-05-08 01:09 19968 —-a-w- c:\windows\system32\ARP.EXE
2011-05-08 01:09 . 2011-05-08 01:09 17920 —-a-w- c:\windows\system32\ROUTE.EXE
2011-05-08 01:06 . 2011-05-08 01:06 194560 —-a-w- c:\windows\system32\WebClnt.dll
2011-05-08 01:06 . 2011-05-08 01:06 110080 —-a-w- c:\windows\system32\drivers\mrxdav.sys
2011-05-08 01:04 . 2011-05-08 01:04 123904 —-a-w- c:\windows\system32\L2SecHC.dll
2011-05-08 01:04 . 2011-05-08 01:04 67584 —-a-w- c:\windows\system32\wlanhlp.dll
2011-05-08 01:04 . 2011-05-08 01:04 502272 —-a-w- c:\windows\system32\wlansvc.dll
2011-05-08 01:04 . 2011-05-08 01:04 47104 —-a-w- c:\windows\system32\wlanapi.dll
2011-05-08 01:04 . 2011-05-08 01:04 290816 —-a-w- c:\windows\system32\wlanmsm.dll
2011-05-08 01:04 . 2011-05-08 01:04 297984 —-a-w- c:\windows\system32\wlansec.dll
2011-05-08 01:02 . 2011-05-08 01:02 2048 —-a-w- c:\windows\system32\msxml3r.dll
2011-05-08 01:02 . 2011-05-08 01:02 1260032 —-a-w- c:\windows\system32\msxml3.dll
2011-05-08 01:02 . 2011-05-08 01:02 2048 —-a-w- c:\windows\system32\msxml6r.dll
2011-05-08 01:02 . 2011-05-08 01:02 1406464 —-a-w- c:\windows\system32\msxml6.dll
2011-05-08 01:00 . 2011-05-08 01:00 216576 —-a-w- c:\windows\system32\msv1_0.dll
2011-05-08 00:57 . 2011-05-08 00:57 58368 —-a-w- c:\windows\system32\drivers\mrxsmb20.sys
2011-05-08 00:57 . 2011-05-08 00:57 211968 —-a-w- c:\windows\system32\drivers\mrxsmb10.sys
2011-05-08 00:57 . 2011-05-08 00:57 102400 —-a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-05-08 00:55 . 2011-05-08 00:55 49664 —-a-w- c:\windows\system32\csrsrv.dll
2011-05-08 00:55 . 2011-05-08 00:55 376320 —-a-w- c:\windows\system32\winsrv.dll
2011-05-08 00:53 . 2011-05-08 00:53 98816 —-a-w- c:\windows\system32\mfps.dll
2011-05-08 00:53 . 2011-05-08 00:53 52736 —-a-w- c:\windows\system32\rrinstaller.exe
2011-05-08 00:53 . 2011-05-08 00:53 2855424 —-a-w- c:\windows\system32\mf.dll
2011-05-08 00:53 . 2011-05-08 00:53 2048 —-a-w- c:\windows\system32\mferror.dll
2011-05-08 00:53 . 2011-05-08 00:53 24576 —-a-w- c:\windows\system32\mfpmp.exe
2011-05-08 00:52 . 2011-05-08 00:52 3502480 —-a-w- c:\windows\system32\ntkrnlpa.exe
2011-05-08 00:52 . 2011-05-08 00:52 3468168 —-a-w- c:\windows\system32\ntoskrnl.exe
2011-05-08 00:46 . 2011-05-08 00:46 434176 —-a-w- c:\windows\system32\vbscript.dll
2011-05-08 00:45 . 2011-05-08 00:45 71680 —-a-w- c:\windows\system32\atl.dll
2011-05-08 00:43 . 2011-05-08 00:43 297472 —-a-w- c:\windows\system32\gdi32.dll
2011-05-08 00:37 . 2011-05-08 00:37 374456 —-a-w- c:\windows\system32\mcupdate_GenuineIntel.dll
2011-05-08 00:35 . 2011-05-08 00:35 500736 —-a-w- c:\windows\system32\msdtcprx.dll
2011-05-08 00:35 . 2011-05-08 00:35 30208 —-a-w- c:\windows\system32\xolehlp.dll
2011-05-08 00:34 . 2011-05-08 00:34 156160 —-a-w- c:\windows\system32\wkssvc.dll
2011-05-08 00:31 . 2011-05-08 00:31 36352 —-a-w- c:\windows\system32\tsgqec.dll
2011-05-08 00:31 . 2011-05-08 00:31 116736 —-a-w- c:\windows\system32\aaclient.dll
2011-05-08 00:31 . 2011-05-08 00:31 1871872 —-a-w- c:\windows\system32\mstscax.dll
2011-05-08 00:30 . 2011-05-08 00:30 303616 —-a-w- c:\windows\system32\wmpeffects.dll
2011-05-08 00:26 . 2011-05-08 00:26 414208 —-a-w- c:\windows\system32\msscp.dll
2011-05-08 00:24 . 2011-05-08 00:24 392192 —-a-w- c:\windows\system32\FirewallAPI.dll
2011-05-08 00:24 . 2011-05-08 00:24 63488 —-a-w- c:\windows\system32\drivers\mpsdrv.sys
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2011-05-08 1232896]
"DellSupport"="c:\program files\DellSupport\DSAgnt.exe" [2006-11-12 446976]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2006-11-02 125440]
"WMPNSCFG"="c:\program files\Windows Media Player\WMPNSCFG.exe" [2006-11-02 201728]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2006-11-17 815104]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2006-11-15 98304]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2006-11-15 106496]
"Persistence"="c:\windows\system32\igfxpers.exe" [2006-11-15 81920]
"SunJavaUpdateSched"="c:\program files\Java\jre1.6.0\bin\jusched.exe" [2007-02-05 77824]
"Broadcom Wireless Manager UI"="c:\windows\system32\WLTRAY.exe" [2006-11-27 1540096]
"SigmatelSysTrayApp"="sttray.exe" [2006-12-01 303104]
"ISUSScheduler"="c:\program files\Common Files\InstallShield\UpdateService\issch.exe" [2006-10-03 81920]
"RoxWatchTray"="c:\program files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe" [2006-11-05 221184]
"RoxioDragToDisc"="c:\program files\Roxio\Drag-to-Disc\DrgToDsc.exe" [2006-08-17 1116920]
"PCMService"="c:\program files\Dell\MediaDirect\PCMService.exe" [2006-10-13 184320]
"AVP"="c:\program files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe" [2011-05-07 340520]
"CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2009-11-01 2508104]
"CanonSolutionMenu"="c:\program files\Canon\SolutionMenu\CNSLMAIN.exe" [2009-09-03 767312]
"IJNetworkScanUtility"="c:\program files\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe" [2009-09-28 140640]
"DivXUpdate"="c:\program files\DivX\DivX Update\DivXUpdate.exe" [2011-03-21 1230704]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - c:\program files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2005-9-24 29696]
Digital Line Detect.lnk - c:\program files\Digital Line Detect\DLG.exe [2007-2-5 50688]
QuickSet.lnk - c:\windows\Installer\{53A01CC6-14B0-4512-A2E7-10D39BF83DC4}\NewShortcut2_53A01CC614B04512A2E710D39BF83DC4.exe [2007-2-5 45056]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=c:\progra~1\KASPER~1\KASPER~1\mzvkbd3.dll c:\progra~1\KASPER~1\KASPER~1\kloehk.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"mixer"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
R3 IDSvix86;Symantec Intrusion Prevention Driver;c:\progra~2\Symantec\DEFINI~1\SymcData\idsdefs\20061025.029\IDSvix86.sys [2006-12-03 202872]
S0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\system32\drivers\klbg.sys [2009-10-15 36880]
S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys [2009-09-14 21520]
S3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\DRIVERS\klmouflt.sys [2009-10-02 19472]
.
.
— Other Services/Drivers In Memory —
.
*NewlyCreated* - ASWMBR
*Deregistered* - aswMBR
.
.
——- Supplementary Scan ——-
.
uStart Page = hxxp://www.google.ca/
IE: Add to Anti-Banner - c:\program files\Kaspersky Lab\Kaspersky Internet Security 2010\ie_banner_deny.htm
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.1.1
.
- - - - ORPHANS REMOVED - - - -
.
AddRemove-HDMI - c:\windows\system32\igxpun.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-07-29 19:07
Windows 6.0.6000 NTFS
.
scanning hidden processes …
.
scanning hidden autostart entries …
.
scanning hidden files …
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
——————— LOCKED REGISTRY KEYS ———————
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
Completion time: 2011-07-29 19:11:49
ComboFix-quarantined-files.txt 2011-07-29 23:11
.
Pre-Run: 63,668,068,352 bytes free
Post-Run: 64,032,493,568 bytes free
.
Current=1 Default=1 Failed=0 LastKnownGood=6 Sets=1,2,3,4,5,6
- - End Of File - - FA8D679EE1A3AA782A7C92445983649D
Hi Trudy White,

Please download Malwarebytes' Anti-Malware to your desktop.

  • Double-click mbam-setup.exe and follow the prompts to install the program.
  • At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select Perform quick scan, then click Scan as shown below.

    [external image: Posted Image]
  • When the scan is complete, click OK, then Show Results to view the results.
  • Be sure that everything is checked, and click Remove Selected.
  • When completed, a log will open in Notepad. Please save it to a convenient location and post the results.


The log can also be found here:
C:\Documents and Settings\\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-date (time).txt
———-

ESET Online Scanner
I'd like us to scan your machine with ESET Online Scan

Note: It is recommended to disable on-board anti-virus program and anti-spyware programs while performing scans so there are no conflicts and it will speed up scan time.
Please don't go surfing while your resident protection is disabled!
Once the scan is finished remember to re-enable your anti-virus along with your anti-spyware programs.



  • Hold down Control and click on the following link to open ESET OnlineScan in a new window.
    ESET OnlineScan
  • Click the [external image: Posted Image] button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
    • Click on [external image: Posted Image] to download the ESET Smart Installer. Save it to your desktop.
    • Double click on the [external image: Posted Image] icon on your desktop.
  • Check [external image: Posted Image]
  • Click the Start button.
  • Accept any security warnings from your browser.
  • Check [external image: Posted Image]
  • Make sure that the option "Remove found threats" is Unchecked
  • Push the Start button.
  • ESET will then download updates for itself, install itself, and begin
    scanning your computer. Please be patient as this can take some time.
  • When the scan completes, push [external image: Posted Image]
  • Push [external image: Posted Image], and save the file to your desktop using a unique name, such as
    ESETScan. Include the contents of this report in your next reply.
  • Push the Back button.
  • Push Finish
http://www.eset.com/onlinescan/
———-

In your next reply please post the logs created by Malwarebytes and ESET Online Scanner. :)
Malwarebytes' Anti-Malware 1.51.1.1800 www.malwarebytes.org Database version: 7328 Windows 6.0.6000 Internet Explorer 7.0.6000.16982 30/07/2011 3:55:38 PM mbam-log-2011-07-30 (15-55-38).txt Scan type: Quick scan Objects scanned: 171592 Time elapsed: 5 minute(s), 30 second(s) Memory Processes Infected: 0 Memory Modules Infected: 0 Registry Keys Infected: 0 Registry Values Infected: 0 Registry Data Items Infected: 0 Folders Infected: 0 Files Infected: 0 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: (No malicious items detected) Registry Keys Infected: (No malicious items detected) Registry Values Infected: (No malicious items detected) Registry Data Items Infected: (No malicious items detected) Folders Infected: (No malicious items detected) Files Infected: (No malicious items detected) The ESET online scanner found no threats.
Hi Trudy White,

I notice that you are running Internet Explorer 7 presently. The current version is IE 9, but I would recommend updating to IE8 until some of the bugs get worked out of Internet Explorer 9. Keeping Internet Explorer will help to reduce the security vulnerabilities on your system and help to prevent future infections. You can find the Internet Explorer 8 download here.
———-

Please download JavaRa to your desktop and unzip it to its own
folder
  • Run JavaRa.exe (double-click for XP/right-click and Run as Administrator for Vista), pick the language of your choice and click Select. Then
    click Remove Older Versions.
  • Accept any prompts.
  • Open JavaRa.exe (double-click for XP/right-click and Run as Administrator for Vista) again and select Search For Updates.
  • Select Update Using Sun Java's Website then click Search and click on the Open Webpage button. Download and install the latest
    Java Runtime Environment (JRE) version for your computer.
———-

You have an older version of Adobe Reader. You can download the current version HERE

You may want to consider Foxit Reader instead. It may be a bit lighter on resources.

Visit their support forum
Foxit Forum

In either case you should uninstall Adobe Reader 7.0.8 first. Be sure to move any PDF documents to another folder first though.
———-

Please run DDS once more so that we can check your system once more. Please post the logs created into your next reply.
———-

Please run aswMBR.exe once more as well so that we can take one more look with this tool as well.
———-

How is your system running now? Are there any outstanding issues still?
———-

In your next reply please let me know how your system is running, post both of the logs created by DDS and post the log by aswMBR.exe. :)

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI