![]() |
|
#1
| |||
| |||
| Hello there, i have recently reinstall windows xp, for the 3rd time in a row now! Nothing seems to work, SP3 wont install, Iso's in Alcohol wont mount, my google search does not work. my windows firewall wont open. I have had no end of problems. Any advise would be greatly appreciated. Here's my log taken in safe mode... Quote:
|
|
#2
| ||||||||||||
| ||||||||||||
| I have just validated your post. New members must have their post approved by a moderator before they are shown on the forum to combat spamming. I deleted your other (similar) post. A member of the malware team will be along shortly.
__________________
__________________
serverguy My System: Eclipse
|
|
#3
| |||
| |||
| Windows uE? This version of Windows is an unofficial release of the OS that you can download from warez sites. I strongly recommend that you don't use it and that you follow the law and actually buy a legally licensed Windows disc. That said the computer is very infected but we can't help you with making an illegal copy of Windows work. |
|
#4
| |||
| |||
| Fair enough, thanks for looking anyway. |
|
#5
| |||
| |||
| Your likely being infected by the very download you are using. Warez can never be trusted. Also the infection you have is a variation of Virut. Virut spreads through every .exe, .dll and a other critical files on a computer. It's polymorphic, which means it spreads faster than any antivirus can contain it. 99.99% of the time the only solution is a reformat and reinstall. Virut is so aggressive it even re-infects infected files. It's a computer killer... |
|
#6
| |||
| |||
| I have now installed a genuine xp. I'd really appreciate your response on my issue. Since re-installing everything was fine until i plugged in my ethernet cable. I have my 500GB HD patitioned into C: = 40GB D: = 160GB. I have a lot of data in my D drive that i dont want to delete. Would this virus spread to all drives across my PC. As i have re-installed 6 times now and am on day 4 of mayhem. I'm writing this now on my mac, god bless its little soul! as my PC wont even lt me use the internet now. Also Hijackthis will not run either in normal or safe mode so i cannot show you my latest log. I have a lot of music and movies saved on my D drive and a lot of other stuff. Would i be right in thinking to backup movies, pics & avi's then remove everything else inc. DLL & EXE in the D Drive and re-install again? |
|
#7
| |||
| |||
| It depends on what kind of virus it is on what it's capable of. Download random's system information tool (RSIT) by random/random from and save it to your Desktop.
---------- 1. Download this diagnostics tool MGADiag.exe and save this to your Desktop. 2. Double-click on MGADiag.exe and click Continue 3. When the program has finished, click on Copy 4. Post the results in your next reply. |
|
#8
| |||
| |||
| It seems to get worse with every reboot. When running that RSIT.exe it gets halfway through the install and then i get... Autolt Error Line -1: Error: Subscript used with non-Array variable. I might re-install again just so i get the chance to run that before it all goes tits up. |
|
#9
| |||
| |||
| Be sure to reformat and reinstall. If not then the virus could still be present. If you need help start a new topic in the Windows forum. |
|
#10
| |||
| |||
| Logfile of random's system information tool 1.05 (written by random/random) Run by Rick at 2009-02-19 00:26:50 Microsoft Windows XP Professional Service Pack 3 System drive C: has 37 GB (91%) free of 40 GB Total RAM: 2047 MB (84% free) Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 00:26:52, on 19/02/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\Ati2evxx.exe C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\msiexec.exe C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe C:\WINDOWS\system32\ctfmon.exe C:\WINDOWS\system32\wuauclt.exe D:\RSIT.exe C:\Program Files\trend micro\HijackThis\Rick.exe O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe" /hide /waitservice O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: Eset HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe O23 - Service: Eset Service (ekrn) - ESET - C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe -- End of file - 2343 bytes ======Registry dump====== [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Curr entVersion\Run] "egui"=C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [2008-07-01 1447168] [HKEY_CURRENT_USER\Software\Microsoft\Windows\Curre ntVersion\Run] "CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360] ""= [] "StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2006-11-10 90112] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent] C:\WINDOWS\system32\Ati2evxx.dll [2007-02-02 110592] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Curr entVersion\Policies\System] "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_CURRENT_USER\Software\Microsoft\Windows\Curre ntVersion\Policies\explorer] "NoDriveTypeAutoRun"=145 [HKEY_LOCAL_MACHINE\system\currentcontrolset\servic es\sharedaccess\parameters\firewallpolicy\standard profile\authorizedapplications\list] "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "%windir%\system32\sessmgr.exe"="%windir%\system32 \sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" [HKEY_LOCAL_MACHINE\system\currentcontrolset\servic es\sharedaccess\parameters\firewallpolicy\domainpr ofile\authorizedapplications\list] "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "%windir%\system32\sessmgr.exe"="%windir%\system32 \sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" [HKEY_CURRENT_USER\software\microsoft\windows\curre ntversion\explorer\mountpoints2\{cbae1fde-fe15-11dd-8574-806d6172696f}] shell\AutoRun\command - F:\setup.exe ======List of files/folders created in the last 1 months====== 2009-02-19 00:23:45 ----D---- C:\Program Files\ESET 2009-02-19 00:23:45 ----D---- C:\Documents and Settings\All Users\Application Data\ESET 2009-02-19 00:22:29 ----N---- C:\WINDOWS\system32\ati2sgag.exe 2009-02-19 00:22:24 ----D---- C:\WINDOWS\LastGood 2009-02-19 00:22:18 ----D---- C:\Program Files\ATI Technologies 2009-02-19 00:22:13 ----HD---- C:\Program Files\InstallShield Installation Information 2009-02-19 00:22:03 ----D---- C:\Program Files\Common Files\InstallShield 2009-02-19 00:21:52 ----D---- C:\ATI 2009-02-19 00:19:48 ----D---- C:\Documents and Settings\All Users\Application Data\Office Genuine Advantage 2009-02-19 00:09:08 ----D---- C:\Program Files\trend micro 2009-02-19 00:09:07 ----D---- C:\rsit 2009-02-19 00:08:52 ----D---- C:\Documents and Settings\Rick\Application Data\Identities 2009-02-19 00:08:51 ----HD---- C:\Program Files\Uninstall Information 2009-02-19 00:08:41 ----ASH---- C:\Documents and Settings\Rick\Application Data\desktop.ini 2009-02-19 00:08:40 ----SD---- C:\Documents and Settings\Rick\Application Data\Microsoft 2009-02-19 00:08:12 ----D---- C:\WINDOWS\SoftwareDistribution 2009-02-19 00:08:10 ----SD---- C:\WINDOWS\system32\Microsoft 2009-02-19 00:08:10 ----D---- C:\WINDOWS\Prefetch 2009-02-19 00:08:10 ----A---- C:\WINDOWS\SchedLgU.Txt 2009-02-19 00:04:53 ----D---- C:\WINDOWS\system32\xircom 2009-02-19 00:04:53 ----D---- C:\Program Files\xerox 2009-02-19 00:04:53 ----D---- C:\Program Files\windows media player 2009-02-19 00:04:53 ----D---- C:\Program Files\microsoft frontpage 2009-02-19 00:04:40 ----N---- C:\WINDOWS\system32\spmsg.dll 2009-02-19 00:04:34 ----A---- C:\WINDOWS\control.ini 2009-02-19 00:04:34 ----A---- C:\AUTOEXEC.BAT 2009-02-19 00:04:32 ----A---- C:\WINDOWS\OEWABLog.txt 2009-02-19 00:04:28 ----A---- C:\WINDOWS\system32\mapi32.dll 2009-02-19 00:03:53 ----SD---- C:\WINDOWS\Downloaded Program Files 2009-02-19 00:03:53 ----RD---- C:\WINDOWS\Offline Web Pages 2009-02-19 00:03:53 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest 2009-02-19 00:03:49 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest 2009-02-19 00:03:46 ----HD---- C:\Program Files\WindowsUpdate 2009-02-19 00:03:32 ----D---- C:\WINDOWS\system32\DirectX 2009-02-19 00:03:32 ----A---- C:\WINDOWS\system32\atrace.dll 2009-02-19 00:03:30 ----A---- C:\WINDOWS\system32\desktop.ini 2009-02-19 00:03:30 ----A---- C:\WINDOWS\desktop.ini 2009-02-19 00:03:25 ----A---- C:\WINDOWS\system32\nmevtmsg.dll 2009-02-19 00:03:24 ----D---- C:\Program Files\Common Files\Services 2009-02-19 00:03:24 ----A---- C:\WINDOWS\system32\acctres.dll 2009-02-19 00:03:22 ----SD---- C:\WINDOWS\Tasks 2009-02-19 00:03:22 ----D---- C:\Program Files\Common Files\MSSoap 2009-02-19 00:03:22 ----A---- C:\WINDOWS\system32\icfgnt5.dll 2009-02-19 00:03:18 ----D---- C:\WINDOWS\srchasst 2009-02-19 00:03:17 ----D---- C:\WINDOWS\system32\Macromed 2009-02-19 00:03:17 ----A---- C:\WINDOWS\system32\wuweb.dll 2009-02-19 00:03:17 ----A---- C:\WINDOWS\system32\wucltui.dll 2009-02-19 00:03:17 ----A---- C:\WINDOWS\system32\wuauserv.dll 2009-02-19 00:03:17 ----A---- C:\WINDOWS\system32\wuaueng1.dll 2009-02-19 00:03:17 ----A---- C:\WINDOWS\system32\wuaueng.dll 2009-02-19 00:03:16 ----A---- C:\WINDOWS\system32\wups.dll 2009-02-19 00:03:16 ----A---- C:\WINDOWS\system32\wuauclt1.exe 2009-02-19 00:03:16 ----A---- C:\WINDOWS\system32\wuauclt.exe 2009-02-19 00:03:16 ----A---- C:\WINDOWS\system32\wuapi.dll 2009-02-19 00:03:16 ----A---- C:\WINDOWS\system32\qmgrprxy.dll 2009-02-19 00:03:16 ----A---- C:\WINDOWS\system32\qmgr.dll 2009-02-19 00:03:16 ----A---- C:\WINDOWS\system32\bitsprx4.dll 2009-02-19 00:03:16 ----A---- C:\WINDOWS\system32\bitsprx3.dll 2009-02-19 00:03:16 ----A---- C:\WINDOWS\system32\bitsprx2.dll 2009-02-19 00:03:12 ----SHD---- C:\Program Files\Movie Maker 2009-02-19 00:02:59 ----A---- C:\WINDOWS\system32\safrslv.dll 2009-02-19 00:02:59 ----A---- C:\WINDOWS\system32\safrdm.dll 2009-02-19 00:02:59 ----A---- C:\WINDOWS\system32\safrcdlg.dll 2009-02-19 00:02:59 ----A---- C:\WINDOWS\system32\racpldlg.dll 2009-02-19 00:02:55 ----D---- C:\WINDOWS\system32\Restore 2009-02-19 00:02:55 ----A---- C:\WINDOWS\system32\srrstr.dll 2009-02-19 00:02:55 ----A---- C:\WINDOWS\system32\fltMc.exe 2009-02-19 00:02:55 ----A---- C:\WINDOWS\system32\fltlib.dll 2009-02-19 00:02:54 ----A---- C:\WINDOWS\system32\srsvc.dll 2009-02-19 00:02:54 ----A---- C:\WINDOWS\system32\srclient.dll 2009-02-19 00:02:54 ----A---- C:\WINDOWS\system32\nmmkcert.dll 2009-02-19 00:02:54 ----A---- C:\WINDOWS\system32\mnmdd.dll 2009-02-19 00:02:54 ----A---- C:\WINDOWS\system32\isrdbg32.dll 2009-02-19 00:02:54 ----A---- C:\WINDOWS\system32\ils.dll 2009-02-19 00:02:53 ----A---- C:\WINDOWS\system32\msconf.dll 2009-02-19 00:02:53 ----A---- C:\WINDOWS\system32\mnmsrvc.exe 2009-02-19 00:02:51 ----D---- C:\Program Files\NetMeeting 2009-02-19 00:02:51 ----A---- C:\WINDOWS\system32\msoert2.dll 2009-02-19 00:02:51 ----A---- C:\WINDOWS\system32\msoeacct.dll 2009-02-19 00:02:50 ----A---- C:\WINDOWS\system32\inetres.dll 2009-02-19 00:02:50 ----A---- C:\WINDOWS\system32\inetcomm.dll 2009-02-19 00:02:48 ----D---- C:\Program Files\Outlook Express 2009-02-19 00:02:48 ----A---- C:\WINDOWS\system32\schedsvc.dll 2009-02-19 00:02:48 ----A---- C:\WINDOWS\system32\mstinit.exe 2009-02-19 00:02:48 ----A---- C:\WINDOWS\system32\mstask.dll 2009-02-19 00:02:48 ----A---- C:\WINDOWS\system32\icwphbk.dll 2009-02-19 00:02:48 ----A---- C:\WINDOWS\system32\icwdial.dll 2009-02-19 00:02:47 ----A---- C:\WINDOWS\system32\isign32.dll 2009-02-19 00:02:47 ----A---- C:\WINDOWS\system32\inetcfg.dll 2009-02-19 00:02:42 ----D---- C:\Program Files\Common Files\System 2009-02-19 00:02:41 ----D---- C:\Program Files\Internet Explorer 2009-02-19 00:02:19 ----D---- C:\Program Files\ComPlus Applications 2009-02-19 00:02:18 ----A---- C:\WINDOWS\vbaddin.ini 2009-02-19 00:02:18 ----A---- C:\WINDOWS\vb.ini 2009-02-19 00:02:14 ----D---- C:\WINDOWS\Registration 2009-02-19 00:02:09 ----D---- C:\Program Files\Online Services 2009-02-19 00:02:03 ----D---- C:\Program Files\Messenger 2009-02-19 00:02:00 ----D---- C:\Program Files\MSN Gaming Zone 2009-02-19 00:02:00 ----A---- C:\WINDOWS\system32\write.exe 2009-02-19 00:01:53 ----A---- C:\WINDOWS\system32\sndvol32.exe 2009-02-19 00:01:53 ----A---- C:\WINDOWS\system32\hticons.dll 2009-02-19 00:01:53 ----A---- C:\WINDOWS\system32\avwav.dll 2009-02-19 00:01:53 ----A---- C:\WINDOWS\system32\avtapi.dll 2009-02-19 00:01:53 ----A---- C:\WINDOWS\system32\avmeter.dll 2009-02-19 00:01:52 ----A---- C:\WINDOWS\system32\winchat.exe 2009-02-19 00:01:48 ----A---- C:\WINDOWS\system32\getuname.dll 2009-02-19 00:01:47 ----A---- C:\WINDOWS\system32\winmine.exe 2009-02-19 00:01:47 ----A---- C:\WINDOWS\system32\sol.exe 2009-02-19 00:01:47 ----A---- C:\WINDOWS\system32\mshearts.exe 2009-02-19 00:01:47 ----A---- C:\WINDOWS\system32\charmap.exe 2009-02-19 00:01:47 ----A---- C:\WINDOWS\system32\calc.exe 2009-02-19 00:01:46 ----A---- C:\WINDOWS\system32\usrlogon.cmd 2009-02-19 00:01:46 ----A---- C:\WINDOWS\system32\tsshutdn.exe 2009-02-19 00:01:46 ----A---- C:\WINDOWS\system32\tslabels.ini 2009-02-19 00:01:46 ----A---- C:\WINDOWS\system32\tskill.exe 2009-02-19 00:01:46 ----A---- C:\WINDOWS\system32\tsdiscon.exe 2009-02-19 00:01:46 ----A---- C:\WINDOWS\system32\tscon.exe 2009-02-19 00:01:46 ----A---- C:\WINDOWS\system32\shadow.exe 2009-02-19 00:01:46 ----A---- C:\WINDOWS\system32\rwinsta.exe 2009-02-19 00:01:46 ----A---- C:\WINDOWS\system32\reset.exe 2009-02-19 00:01:46 ----A---- C:\WINDOWS\system32\regini.exe 2009-02-19 00:01:46 ----A---- C:\WINDOWS\system32\freecell.exe 2009-02-19 00:01:45 ----A---- C:\WINDOWS\system32\rdpcfgex.dll 2009-02-19 00:01:45 ----A---- C:\WINDOWS\system32\qwinsta.exe 2009-02-19 00:01:45 ----A---- C:\WINDOWS\system32\qappsrv.exe 2009-02-19 00:01:45 ----A---- C:\WINDOWS\system32\msg.exe 2009-02-19 00:01:45 ----A---- C:\WINDOWS\system32\msdtcprf.ini 2009-02-19 00:01:45 ----A---- C:\WINDOWS\system32\logoff.exe 2009-02-19 00:01:45 ----A---- C:\WINDOWS\system32\cdmodem.dll 2009-02-19 00:01:41 ----A---- C:\WINDOWS\system32\wmimgmt.msc 2009-02-19 00:01:26 ----D---- C:\Program Files\MSN 2009-02-19 00:01:25 ----D---- C:\Program Files\Windows NT 2009-02-19 00:01:25 ----A---- C:\WINDOWS\system32\sndrec32.exe 2009-02-19 00:01:25 ----A---- C:\WINDOWS\system32\hypertrm.dll 2009-02-19 00:01:25 ----A---- C:\WINDOWS\system32\accwiz.exe 2009-02-19 00:01:24 ----A---- C:\WINDOWS\system32\spider.exe 2009-02-19 00:01:24 ----A---- C:\WINDOWS\system32\mspaint.exe 2009-02-19 00:01:24 ----A---- C:\WINDOWS\system32\clipbrd.exe 2009-02-19 00:01:23 ----D---- C:\WINDOWS\system32\en-US 2009-02-19 00:01:23 ----A---- C:\WINDOWS\system32\tsgqec.dll 2009-02-19 00:01:23 ----A---- C:\WINDOWS\system32\tscfgwmi.dll 2009-02-19 00:01:23 ----A---- C:\WINDOWS\system32\rhttpaa.dll 2009-02-19 00:01:22 ----A---- C:\WINDOWS\system32\mstscax.dll 2009-02-19 00:01:22 ----A---- C:\WINDOWS\system32\mstsc.exe 2009-02-19 00:01:22 ----A---- C:\WINDOWS\system32\aaclient.dll 2009-02-19 00:01:21 ----A---- C:\WINDOWS\system32\termsrv.dll 2009-02-19 00:01:21 ----A---- C:\WINDOWS\system32\sessmgr.exe 2009-02-19 00:01:21 ----A---- C:\WINDOWS\system32\remotepg.dll 2009-02-19 00:01:21 ----A---- C:\WINDOWS\system32\rdshost.exe 2009-02-19 00:01:21 ----A---- C:\WINDOWS\system32\rdsaddin.exe 2009-02-19 00:01:21 ----A---- C:\WINDOWS\system32\rdpwsx.dll 2009-02-19 00:01:21 ----A---- C:\WINDOWS\system32\rdpsnd.dll 2009-02-19 00:01:21 ----A---- C:\WINDOWS\system32\rdpclip.exe 2009-02-19 00:01:21 ----A---- C:\WINDOWS\system32\rdchost.dll 2009-02-19 00:01:21 ----A---- C:\WINDOWS\system32\qprocess.exe 2009-02-19 00:01:21 ----A---- C:\WINDOWS\system32\icaapi.dll 2009-02-19 00:01:21 ----A---- C:\WINDOWS\system32\cfgbkend.dll 2009-02-19 00:01:20 ----D---- C:\WINDOWS\system32\MsDtc 2009-02-19 00:01:20 ----A---- C:\WINDOWS\system32\xolehlp.dll 2009-02-19 00:01:20 ----A---- C:\WINDOWS\system32\mtxoci.dll 2009-02-19 00:01:20 ----A---- C:\WINDOWS\system32\msdtcuiu.dll 2009-02-19 00:01:20 ----A---- C:\WINDOWS\system32\msdtctm.dll 2009-02-19 00:01:20 ----A---- C:\WINDOWS\system32\msdtcprx.dll 2009-02-19 00:01:20 ----A---- C:\WINDOWS\system32\msdtclog.dll 2009-02-19 00:01:20 ----A---- C:\WINDOWS\system32\msdtc.exe 2009-02-19 00:01:19 ----D---- C:\WINDOWS\system32\Com 2009-02-19 00:01:19 ----A---- C:\WINDOWS\system32\mtxlegih.dll 2009-02-19 00:01:19 ----A---- C:\WINDOWS\system32\mtxex.dll 2009-02-19 00:01:19 ----A---- C:\WINDOWS\system32\mtxdm.dll 2009-02-19 00:01:19 ----A---- C:\WINDOWS\system32\dcomcnfg.exe 2009-02-19 00:01:19 ----A---- C:\WINDOWS\system32\comrepl.dll 2009-02-19 00:01:19 ----A---- C:\WINDOWS\system32\comaddin.dll 2009-02-19 00:01:19 ----A---- C:\WINDOWS\system32\colbact.dll 2009-02-19 00:01:18 ----A---- C:\WINDOWS\system32\stclient.dll 2009-02-19 00:01:18 ----A---- C:\WINDOWS\system32\clbcatex.dll 2009-02-19 00:01:18 ----A---- C:\WINDOWS\system32\catsrvut.dll 2009-02-19 00:01:18 ----A---- C:\WINDOWS\system32\catsrvps.dll 2009-02-19 00:01:18 ----A---- C:\WINDOWS\system32\catsrv.dll 2009-02-19 00:01:17 ----A---- C:\WINDOWS\system32\comuid.dll 2009-02-19 00:01:17 ----A---- C:\WINDOWS\system32\comsvcs.dll 2009-02-19 00:01:17 ----A---- C:\WINDOWS\system32\comsnap.dll 2009-02-19 00:01:17 ----A---- C:\WINDOWS\system32\clbcatq.dll 2009-02-19 00:01:11 ----A---- C:\WINDOWS\system32\servdeps.dll 2009-02-19 00:01:11 ----A---- C:\WINDOWS\system32\mmfutil.dll 2009-02-19 00:01:11 ----A---- C:\WINDOWS\system32\licwmi.dll 2009-02-19 00:01:11 ----A---- C:\WINDOWS\system32\cmprops.dll 2009-02-19 00:00:33 ----A---- C:\WINDOWS\system32\h323log.txt 2009-02-18 23:57:24 ----A---- C:\WINDOWS\system32\usbui.dll 2009-02-18 23:56:36 ----SHD---- C:\WINDOWS\Installer 2009-02-18 23:56:36 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI 2009-02-18 23:56:35 ----D---- C:\Program Files\Common Files\ODBC 2009-02-18 23:56:35 ----A---- C:\WINDOWS\ODBCINST.INI 2009-02-18 23:56:32 ----D---- C:\Program Files\Common Files\SpeechEngines 2009-02-18 23:56:31 ----RD---- C:\Program Files 2009-02-18 23:56:31 ----D---- C:\Program Files\Common Files\Microsoft Shared 2009-02-18 23:56:31 ----D---- C:\Program Files\Common Files 2009-02-18 23:56:29 ----RA---- C:\WINDOWS\system32\kbdtuq.dll 2009-02-18 23:56:29 ----RA---- C:\WINDOWS\system32\kbdtuf.dll 2009-02-18 23:56:29 ----RA---- C:\WINDOWS\system32\kbdazel.dll 2009-02-18 23:56:28 ----RA---- C:\WINDOWS\system32\kbdycc.dll 2009-02-18 23:56:28 ----RA---- C:\WINDOWS\system32\kbduzb.dll 2009-02-18 23:56:28 ----RA---- C:\WINDOWS\system32\kbdur.dll 2009-02-18 23:56:28 ----RA---- C:\WINDOWS\system32\kbdtat.dll 2009-02-18 23:56:28 ----RA---- C:\WINDOWS\system32\kbdru1.dll 2009-02-18 23:56:28 ----RA---- C:\WINDOWS\system32\kbdru.dll 2009-02-18 23:56:28 ----RA---- C:\WINDOWS\system32\kbdmon.dll 2009-02-18 23:56:28 ----RA---- C:\WINDOWS\system32\kbdkyr.dll 2009-02-18 23:56:28 ----RA---- C:\WINDOWS\system32\kbdkaz.dll 2009-02-18 23:56:28 ----RA---- C:\WINDOWS\system32\kbdbu.dll 2009-02-18 23:56:28 ----RA---- C:\WINDOWS\system32\kbdblr.dll 2009-02-18 23:56:28 ----RA---- C:\WINDOWS\system32\kbdaze.dll 2009-02-18 23:56:27 ----RA---- C:\WINDOWS\system32\kbdhept.dll 2009-02-18 23:56:27 ----RA---- C:\WINDOWS\system32\kbdhela3.dll 2009-02-18 23:56:27 ----RA---- C:\WINDOWS\system32\kbdhela2.dll 2009-02-18 23:56:27 ----RA---- C:\WINDOWS\system32\kbdhe319.dll 2009-02-18 23:56:27 ----RA---- C:\WINDOWS\system32\kbdhe220.dll 2009-02-18 23:56:27 ----RA---- C:\WINDOWS\system32\kbdhe.dll 2009-02-18 23:56:27 ----RA---- C:\WINDOWS\system32\kbdgkl.dll 2009-02-18 23:56:26 ----RA---- C:\WINDOWS\system32\kbdlv1.dll 2009-02-18 23:56:26 ----RA---- C:\WINDOWS\system32\kbdlv.dll 2009-02-18 23:56:26 ----RA---- C:\WINDOWS\system32\kbdlt1.dll 2009-02-18 23:56:26 ----RA---- C:\WINDOWS\system32\kbdlt.dll 2009-02-18 23:56:26 ----RA---- C:\WINDOWS\system32\kbdest.dll 2009-02-18 23:56:25 ----RA---- C:\WINDOWS\system32\kbdycl.dll 2009-02-18 23:56:25 ----RA---- C:\WINDOWS\system32\kbdsl1.dll 2009-02-18 23:56:25 ----RA---- C:\WINDOWS\system32\kbdsl.dll 2009-02-18 23:56:25 ----RA---- C:\WINDOWS\system32\kbdro.dll 2009-02-18 23:56:25 ----RA---- C:\WINDOWS\system32\kbdpl1.dll 2009-02-18 23:56:25 ----RA---- C:\WINDOWS\system32\kbdpl.dll 2009-02-18 23:56:25 ----RA---- C:\WINDOWS\system32\kbdhu1.dll 2009-02-18 23:56:25 ----RA---- C:\WINDOWS\system32\kbdhu.dll 2009-02-18 23:56:25 ----RA---- C:\WINDOWS\system32\kbdcz2.dll 2009-02-18 23:56:25 ----RA---- C:\WINDOWS\system32\kbdcz1.dll 2009-02-18 23:56:25 ----RA---- C:\WINDOWS\system32\kbdcz.dll 2009-02-18 23:56:25 ----RA---- C:\WINDOWS\system32\kbdcr.dll 2009-02-18 23:56:25 ----RA---- C:\WINDOWS\system32\KBDAL.DLL 2009-02-18 23:56:23 ----A---- C:\WINDOWS\system32\spxcoins.dll 2009-02-18 23:56:23 ----A---- C:\WINDOWS\system32\irclass.dll 2009-02-18 23:56:23 ----A---- C:\WINDOWS\system32\EqnClass.Dll 2009-02-18 23:56:23 ----A---- C:\WINDOWS\system32\dgsetup.dll 2009-02-18 23:56:23 ----A---- C:\WINDOWS\system32\dgrpsetu.dll 2009-02-18 23:56:21 ----N---- C:\WINDOWS\system32\CONFIG.TMP 2009-02-18 23:56:21 ----A---- C:\WINDOWS\TASKMAN.EXE 2009-02-18 23:56:21 ----A---- C:\WINDOWS\system32\batt.dll 2009-02-18 23:56:21 ----A---- C:\WINDOWS\NOTEPAD.EXE 2009-02-18 23:56:17 ----A---- C:\WINDOWS\system32\storprop.dll 2009-02-18 23:56:12 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini 2009-02-18 23:55:02 ----RA---- C:\WINDOWS\SET27.tmp 2009-02-18 23:54:30 ----RA---- C:\WINDOWS\SET8.tmp 2009-02-18 23:54:28 ----RA---- C:\WINDOWS\SET4.tmp 2009-02-18 23:54:26 ----RA---- C:\WINDOWS\SET3.tmp 2009-02-18 23:54:21 ----D---- C:\WINDOWS\system32\CatRoot2 2009-02-18 23:54:21 ----D---- C:\WINDOWS\system32\CatRoot 2009-02-18 23:54:16 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft 2009-02-18 23:54:01 ----A---- C:\WINDOWS\setuplog.txt 2009-02-18 23:53:58 ----SHD---- C:\System Volume Information 2009-02-18 23:53:58 ----D---- C:\Documents and Settings 2009-02-18 23:53:22 ----SH---- C:\boot.ini 2009-02-18 23:47:28 ----RSHDC---- C:\WINDOWS\system32\dllcache 2009-02-18 23:47:28 ----RSD---- C:\WINDOWS\Fonts 2009-02-18 23:47:28 ----RD---- C:\WINDOWS\Web 2009-02-18 23:47:28 ----HD---- C:\WINDOWS\inf 2009-02-18 23:47:28 ----D---- C:\WINDOWS\WinSxS 2009-02-18 23:47:28 ----D---- C:\WINDOWS\twain_32 2009-02-18 23:47:28 ----D---- C:\WINDOWS\Temp 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\wins 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\wbem 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\usmt 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\spool 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\ShellExt 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\Setup 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\scripting 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\ras 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\oobe 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\npp 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\mui 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\inetsrv 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\IME 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\icsxml 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\ias 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\export 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\en 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\drivers 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\dhcp 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\config 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\3com_dmi 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\3076 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\2052 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\1054 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\1042 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\1041 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\1037 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\1033 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\1031 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\1028 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32\1025 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system32 2009-02-18 23:47:28 ----D---- C:\WINDOWS\system 2009-02-18 23:47:28 ----D---- C:\WINDOWS\security 2009-02-18 23:47:28 ----D---- C:\WINDOWS\Resources 2009-02-18 23:47:28 ----D---- C:\WINDOWS\repair 2009-02-18 23:47:28 ----D---- C:\WINDOWS\Provisioning 2009-02-18 23:47:28 ----D---- C:\WINDOWS\PeerNet 2009-02-18 23:47:28 ----D---- C:\WINDOWS\pchealth 2009-02-18 23:47:28 ----D---- C:\WINDOWS\Network Diagnostic 2009-02-18 23:47:28 ----D---- C:\WINDOWS\mui 2009-02-18 23:47:28 ----D---- C:\WINDOWS\msapps 2009-02-18 23:47:28 ----D---- C:\WINDOWS\msagent 2009-02-18 23:47:28 ----D---- C:\WINDOWS\Media 2009-02-18 23:47:28 ----D---- C:\WINDOWS\L2Schemas 2009-02-18 23:47:28 ----D---- C:\WINDOWS\java 2009-02-18 23:47:28 ----D---- C:\WINDOWS\ime 2009-02-18 23:47:28 ----D---- C:\WINDOWS\Help 2009-02-18 23:47:28 ----D---- C:\WINDOWS\ehome 2009-02-18 23:47:28 ----D---- C:\WINDOWS\Driver Cache 2009-02-18 23:47:28 ----D---- C:\WINDOWS\Debug 2009-02-18 23:47:28 ----D---- C:\WINDOWS\Cursors 2009-02-18 23:47:28 ----D---- C:\WINDOWS\Connection Wizard 2009-02-18 23:47:28 ----D---- C:\WINDOWS\Config 2009-02-18 23:47:28 ----D---- C:\WINDOWS\AppPatch 2009-02-18 23:47:28 ----D---- C:\WINDOWS\addins 2009-02-18 23:47:28 ----D---- C:\WINDOWS ======List of files/folders modified in the last 1 months====== 2009-02-19 00:03:43 ----A---- C:\WINDOWS\win.ini 2009-02-18 23:59:36 ----A---- C:\WINDOWS\system.ini ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R1 easdrv;easdrv; C:\WINDOWS\system32\DRIVERS\easdrv.sys [2008-07-01 53256] R1 epfwtdir;epfwtdir; C:\WINDOWS\system32\DRIVERS\epfwtdir.sys [2008-07-01 34312] R1 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 36352] R2 eamon;EAMON; C:\WINDOWS\system32\DRIVERS\eamon.sys [2008-07-01 39944] R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2007-02-02 1975296] R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384] R3 hidusb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368] R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2008-04-14 12160] R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-14 30208] R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-14 59520] R3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368] R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-14 20608] S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys [] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2007-02-02 446464] R2 ekrn;Eset Service; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [2007-12-21 468224] S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2007-02-02 520192] S3 EhttpSrv;Eset HTTP Server; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [2008-07-01 19200] -----------------EOF----------------- |
![]() |
|
| Bookmarks |
Similar Threads | ||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Video File Presentation/ File Format for a Dvd Player? | jamblebee | Multimedia & Codecs | 2 | 6th Oct 2009 04:00 |
| HijackThis Log File - Help Please | Paul4763 | Virus, Spyware & Security | 1 | 10th Aug 2009 12:08 |
| How to Change Icons for Files?! Not File Types or Folders, Each Individual File. | 4D(Fordy(Ford) Ollie | Windows Operating Systems | 1 | 26th Jul 2009 05:10 |
| Hijackthis log | Sideways52 | Virus, Spyware & Security | 7 | 29th Nov 2008 23:47 |
| Can you change file format to windows media file? | confused21 | Windows Operating Systems | 1 | 17th Nov 2007 03:27 |
| Thread Tools | |
| |