Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

computer compromised

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

computer compromised

Unread postby frusterated » April 9th, 2012, 1:05 pm

Hi,
I have reason to believe that someone has remote access to my computer. Is there a place that my computer would keep a log of this to let me know exactly who it is, where they are getting in and when my computer has been remotely accessed. I want to be able to verify that this is indeed happening and put a stop to this.

My questions for you are: How do I stop someone from remotely accessing my computer? And how do I remove or protect my computer from this happening again?

Thank you,
Frusterated


Here are my logs:
.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 7.0.5730.13
Run by Barry at 12:12:16 on 2012-04-09
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.1014.485 [GMT -4:00]
.
AV: avast! Antivirus *Enabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
FW: Outpost Firewall *Disabled*
FW: *Disabled*
FW: COMODO Firewall *Enabled*
.
============== Running Processes ===============
.
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
svchost.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\Program Files\Apache Software Foundation\Apache2.2\bin\httpd.exe
C:\Program Files\Apache Software Foundation\Apache2.2\bin\httpd.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\WINDOWS\system32\dldwcoms.exe
C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Motive\McciCMService.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\SMART Technologies\SMART Board Drivers\SMARTBoardService.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\PROGRAM FILES\DELL V505\DLDWMON.EXE
C:\PROGRAM FILES\DELL V505\DLDWMsdMon.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\Program Files\Internet Explorer\iexplore.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.cnn.com
uSearch Page = hxxp://www.google.ca
uSearch Bar = hxxp://www.google.ca
uDefault_Page_URL = www.google.ca
mSearchAssistant = hxxp://www.google.ca/hws/sb/dell-row-re ... channel=ca
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - c:\program files\real\realplayer\rpbrowserrecordplugin.dll
BHO: DriveLetterAccess: {5ca3d70e-1895-11cf-8e15-001234567890} - c:\windows\system32\dla\DLASHX_W.DLL
BHO: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - c:\program files\alwil software\avast5\aswWebRepIE.dll
BHO: CBrowserHelperObject Object: {ca6319c0-31b7-401e-a518-a07c3db8f777} - c:\program files\bae\BAE.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - c:\program files\alwil software\avast5\aswWebRepIE.dll
EB: Real.com: {fe54fa40-d68c-11d2-98fa-00c0f0318afe} - c:\windows\system32\Shdocvw.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [SigmatelSysTrayApp] stsystra.exe
mRun: [IAAnotif] c:\program files\intel\intel matrix storage manager\Iaanotif.exe
mRun: [DLA] c:\windows\system32\dla\DLACTRLW.EXE
mRun: [ISUSPM Startup] c:\progra~1\common~1\instal~1\update~1\ISUSPM.exe -startup
mRun: [ISUSScheduler] "c:\program files\common files\installshield\updateservice\issch.exe" -start
mRun: [MSKDetectorExe] c:\program files\mcafee\spamkiller\MSKDetct.exe /uninstall
mRun: [WinPatrol] c:\program files\billp studios\winpatrol\winpatrol.exe -expressboot
mRun: [OutpostMonitor] c:\progra~1\agnitum\outpos~1\op_mon.exe /tray /noservice
mRun: [OutpostFeedBack] "c:\program files\agnitum\outpost firewall\feedback.exe" /dump:os_startup
mRun: [PMX Daemon] ICO.EXE
mRun: [avast5] c:\progra~1\alwils~1\avast5\avastUI.exe /nogui
mRun: [COMODO Internet Security] "c:\program files\comodo\comodo internet security\cfp.exe" -h
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\digita~1.lnk - c:\program files\digital line detect\DLG.exe
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
DPF: Microsoft XML Parser for Java - file://c:\windows\java\classes\xmldso.cab
DPF: {15B782AF-55D8-11D1-B477-006097098764} - hxxp://download.macromedia.com/pub/shoc ... swax70.cab
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shoc ... tor/sw.cab
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/ ... ontrol.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupda ... 0224397546
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://update.microsoft.com/microsoftup ... 0226166093
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {C7DEDA04-2FFF-4B81-AE66-0A0E0EF4AD2F} - hxxp://rexall.lifepics.com/net/Uploader ... ader57.cab
DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/s ... wflash.cab
TCP: DhcpNameServer = 192.168.2.1 192.168.2.1
TCP: Interfaces\{DF02F204-3D87-4A1E-B3D0-6AEA24B0D0F3} : DhcpNameServer = 192.168.2.1 192.168.2.1
Handler: x-excid - {9D6CC632-1337-4a33-9214-2DA092E776F4} - c:\windows\downloaded program files\mimectl.dll
Notify: igfxcui - igfxdev.dll
AppInit_DLLs: c:\progra~1\agnitum\outpos~1\wl_hook.dll c:\windows\system32\guard32.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\barry\application data\mozilla\firefox\profiles\zmp8f5hg.default\
FF - prefs.js: browser.startup.homepage - hxxp://blekko.com?source=c3348dd4&t ... 9A63810A3F
FF - plugin: c:\program files\common files\motive\npMotive.dll
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: avast! WebRep: wrc@avast.com - c:\program files\alwil software\avast5\webrep\FF
.
============= SERVICES / DRIVERS ===============
.
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2011-3-1 612184]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2010-2-24 337880]
R1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\system32\drivers\cmdGuard.sys [2012-1-17 494968]
R1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\drivers\cmdhlp.sys [2011-12-19 31704]
R1 SandBox;SandBox;c:\windows\system32\drivers\SandBox.sys [2009-9-12 704384]
R1 SBRE;SBRE;c:\windows\system32\drivers\SBREDrv.sys [2011-3-8 98392]
R2 Apache2.2;Apache2.2;c:\program files\apache software foundation\apache2.2\bin\httpd.exe [2009-8-6 24645]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2010-2-24 20696]
R2 avast! Antivirus;avast! Antivirus;c:\program files\alwil software\avast5\AvastSvc.exe [2010-2-24 44768]
R2 cmdAgent;COMODO Internet Security Helper Service;c:\program files\comodo\comodo internet security\cmdagent.exe [2011-12-19 1983232]
R2 dldw_device;dldw_device;c:\windows\system32\dldwcoms.exe -service --> c:\windows\system32\dldwcoms.exe -service [?]
S2 dldwCATSCustConnectService;dldwCATSCustConnectService;c:\windows\system32\spool\drivers\w32x86\3\dldwserv.exe [2009-8-25 99568]
S3 afw;Agnitum firewall driver;c:\windows\system32\drivers\afw.sys [2009-9-12 31128]
S3 afwcore;afwcore;c:\windows\system32\drivers\afwcore.sys [2009-9-12 257432]
S4 SMART SNMP Agent Service;SMART SNMP Agent Service;c:\program files\smart technologies\smart board drivers\SMARTSNMPAgent.exe [2009-7-23 1048576]
S4 SMART Web Server;SMART Web Server;c:\program files\smart technologies\smart board drivers\WebServer.exe [2009-7-23 1245184]
.
=============== Created Last 30 ================
.
2012-03-30 00:27:55 -------- d-----w- c:\documents and settings\all users\application data\Advanced Chemistry Development
.
==================== Find3M ====================
.
2012-03-11 21:13:45 31704 ----a-w- c:\windows\system32\drivers\cmdhlp.sys
2012-03-11 21:13:44 494968 ----a-w- c:\windows\system32\drivers\cmdGuard.sys
2012-03-11 21:13:43 18056 ----a-w- c:\windows\system32\drivers\cmderd.sys
2012-03-11 21:13:19 33984 ----a-w- c:\windows\system32\cmdcsr.dll
2012-03-11 21:13:18 301224 ----a-w- c:\windows\system32\guard32.dll
2012-03-06 23:15:19 41184 ----a-w- c:\windows\avastSS.scr
2012-03-06 23:03:51 612184 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2012-02-09 02:49:13 1700352 ----a-w- c:\windows\system32\gdiplus.dll
2012-02-03 09:22:18 1860096 ----a-w- c:\windows\system32\win32k.sys
2012-01-11 19:06:47 3072 ------w- c:\windows\system32\iacenc.dll
.
============= FINISH: 12:16:43.48 ===============

.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-08-26.01)
.
Microsoft Windows XP Home Edition
Boot Device: \Device\HarddiskVolume2
Install Date: 8/11/2009 9:11:44 PM
System Uptime: 4/9/2012 9:00:38 AM (3 hours ago)
.
Motherboard: Dell Inc. | | 0WG864
Processor: Intel(R) Pentium(R) 4 CPU 3.06GHz | Microprocessor | 3059/533mhz
.
==== Disk Partitions =========================
.
A: is Removable
C: is FIXED (NTFS) - 146 GiB total, 96.283 GiB free.
D: is CDROM (UDF)
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP1858: 1/10/2012 10:34:28 PM - System Checkpoint
RP1859: 1/11/2012 11:36:14 AM - Software Distribution Service 3.0
RP1860: 1/11/2012 10:21:01 PM - Software Distribution Service 3.0
RP1861: 1/12/2012 11:14:56 PM - System Checkpoint
RP1862: 1/14/2012 10:01:44 AM - System Checkpoint
RP1863: 1/15/2012 2:22:55 PM - System Checkpoint
RP1864: 1/16/2012 5:10:18 PM - System Checkpoint
RP1865: 1/17/2012 8:17:41 PM - System Checkpoint
RP1866: 1/19/2012 11:57:31 AM - System Checkpoint
RP1867: 1/20/2012 8:24:29 PM - System Checkpoint
RP1868: 1/21/2012 8:25:45 PM - System Checkpoint
RP1869: 1/22/2012 8:33:45 PM - System Checkpoint
RP1870: 1/25/2012 10:01:54 AM - System Checkpoint
RP1871: 1/25/2012 10:04:01 PM - Software Distribution Service 3.0
RP1872: 1/27/2012 5:49:34 PM - System Checkpoint
RP1873: 1/29/2012 12:03:18 PM - System Checkpoint
RP1874: 1/30/2012 4:09:38 PM - System Checkpoint
RP1875: 2/1/2012 8:35:53 PM - System Checkpoint
RP1876: 2/2/2012 8:58:39 PM - System Checkpoint
RP1877: 2/2/2012 11:16:06 PM - Removed SUPERAntiSpyware Free Edition
RP1878: 2/4/2012 4:25:29 PM - System Checkpoint
RP1879: 2/5/2012 8:46:54 PM - System Checkpoint
RP1880: 2/6/2012 8:59:00 PM - System Checkpoint
RP1881: 2/7/2012 9:23:03 PM - System Checkpoint
RP1882: 2/8/2012 9:12:08 PM - Agnitum Outpost Firewall Restore Point: uninstall
RP1883: 2/8/2012 9:30:05 PM - Agnitum Outpost Firewall Restore Point: install
RP1884: 2/9/2012 5:12:29 PM - Software Distribution Service 3.0
RP1885: 2/10/2012 7:26:28 PM - System Checkpoint
RP1886: 2/11/2012 11:44:41 PM - System Checkpoint
RP1887: 2/13/2012 11:07:32 AM - System Checkpoint
RP1888: 2/14/2012 11:29:28 AM - System Checkpoint
RP1889: 2/15/2012 7:12:44 PM - System Checkpoint
RP1890: 2/15/2012 7:22:03 PM - Software Distribution Service 3.0
RP1891: 2/16/2012 8:48:23 PM - System Checkpoint
RP1892: 2/17/2012 10:07:05 PM - System Checkpoint
RP1893: 2/19/2012 11:01:07 AM - System Checkpoint
RP1894: 2/20/2012 11:11:40 AM - System Checkpoint
RP1895: 2/21/2012 5:18:31 PM - System Checkpoint
RP1896: 2/22/2012 8:13:55 PM - System Checkpoint
RP1897: 2/23/2012 9:10:25 PM - System Checkpoint
RP1898: 2/25/2012 5:04:07 PM - System Checkpoint
RP1899: 2/26/2012 7:45:44 PM - System Checkpoint
RP1900: 2/27/2012 7:58:38 PM - System Checkpoint
RP1901: 2/29/2012 9:02:52 AM - System Checkpoint
RP1902: 3/1/2012 9:46:50 AM - System Checkpoint
RP1903: 3/2/2012 3:22:48 PM - System Checkpoint
RP1904: 3/3/2012 4:31:46 PM - System Checkpoint
RP1905: 3/4/2012 4:53:02 PM - System Checkpoint
RP1906: 3/5/2012 8:26:06 PM - System Checkpoint
RP1907: 3/7/2012 8:47:04 AM - System Checkpoint
RP1908: 3/8/2012 8:56:31 AM - System Checkpoint
RP1909: 3/12/2012 8:49:41 PM - System Checkpoint
RP1910: 3/13/2012 1:26:36 PM - Software Distribution Service 3.0
RP1911: 3/13/2012 5:47:45 PM - Software Distribution Service 3.0
RP1912: 3/14/2012 6:37:20 PM - System Checkpoint
RP1913: 3/15/2012 6:47:06 PM - System Checkpoint
RP1914: 3/16/2012 7:29:08 PM - System Checkpoint
RP1915: 3/18/2012 7:03:30 PM - System Checkpoint
RP1916: 3/19/2012 7:39:13 PM - System Checkpoint
RP1917: 3/20/2012 8:11:38 PM - System Checkpoint
RP1918: 3/21/2012 9:35:20 PM - System Checkpoint
RP1919: 3/23/2012 9:18:40 AM - System Checkpoint
RP1920: 3/24/2012 1:01:46 PM - System Checkpoint
RP1921: 3/25/2012 7:15:02 PM - System Checkpoint
RP1922: 3/26/2012 8:18:46 PM - System Checkpoint
RP1923: 3/28/2012 9:15:33 AM - System Checkpoint
RP1924: 3/29/2012 9:16:06 AM - System Checkpoint
RP1925: 3/29/2012 8:38:28 PM - Removed Google Earth.
RP1926: 3/30/2012 8:55:57 PM - System Checkpoint
RP1927: 3/31/2012 9:32:15 PM - System Checkpoint
RP1928: 4/2/2012 8:54:55 AM - System Checkpoint
RP1929: 4/3/2012 9:19:19 AM - System Checkpoint
RP1930: 4/4/2012 5:10:46 PM - System Checkpoint
RP1931: 4/5/2012 8:03:47 PM - System Checkpoint
RP1932: 4/6/2012 8:49:55 PM - System Checkpoint
RP1933: 4/9/2012 10:27:06 AM - System Checkpoint
.
==== Installed Programs ======================
.
ABBYY FineReader 6.0 Sprint
Adobe Flash Player 10 Plugin
Adobe Flash Player 11 ActiveX
Adobe Reader 9.4.1
Adobe Shockwave Player 11.5
Any Video Converter 3.2.3
Apache HTTP Server 2.2.13
avast! Free Antivirus
Bell Internet Check-up
COMODO Internet Security
Compatibility Pack for the 2007 Office system
Conexant D850 56K V.9x DFVc Modem
Dell Driver Reset Tool
Dell Support 3.2.1
Dell System Restore
Dell V505
Digital Line Detect
ExamView Assessment Suite
FileZilla (remove only)
High Definition Audio Driver Package - KB835221
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows XP (KB2158563)
Hotfix for Windows XP (KB2443685)
Hotfix for Windows XP (KB2570791)
Hotfix for Windows XP (KB2633952)
Hotfix for Windows XP (KB952287)
Hotfix for Windows XP (KB954550-v5)
Hotfix for Windows XP (KB961118)
Hotfix for Windows XP (KB970653-v3)
Hotfix for Windows XP (KB976098-v2)
Hotfix for Windows XP (KB979306)
Hotfix for Windows XP (KB981793)
Intel(R) Graphics Media Accelerator Driver
Intel(R) Matrix Storage Manager
Intel(R) PRO Network Connections
J2SE Runtime Environment 5.0 Update 6
Java Auto Updater
Java(TM) 6 Update 18
MCU
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Security Update (KB2656353)
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft National Language Support Downlevel APIs
Microsoft Office Basic Edition 2003
Microsoft Office File Validation Add-In
Microsoft Office PowerPoint Viewer 2007 (English)
Microsoft Outlook Web Access S/MIME
Microsoft Plus! Digital Media Edition Installer
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Modem Helper
Mozilla Firefox (3.6.3)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 4.0 SP2 Parser and SDK
NetWaiting
Notebook Software
Notepad++
OLYMPUS Master 2
Paint.NET v3.5.8
Photo Story 3 for Windows
QuickTime
RealPlayer
Roxio DLA
Roxio MyDVD LE
Roxio RecordNow Audio
Roxio RecordNow Copy
Roxio RecordNow Data
SearchAssist
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2657424)
Security Update for Microsoft Windows (KB2564958)
Security Update for Step By Step Interactive Training (KB923723)
Security Update for Windows Internet Explorer 7 (KB2183461)
Security Update for Windows Internet Explorer 7 (KB2360131)
Security Update for Windows Internet Explorer 7 (KB2416400)
Security Update for Windows Internet Explorer 7 (KB2482017)
Security Update for Windows Internet Explorer 7 (KB2497640)
Security Update for Windows Internet Explorer 7 (KB2530548)
Security Update for Windows Internet Explorer 7 (KB2544521)
Security Update for Windows Internet Explorer 7 (KB2559049)
Security Update for Windows Internet Explorer 7 (KB2586448)
Security Update for Windows Internet Explorer 7 (KB2618444)
Security Update for Windows Internet Explorer 7 (KB2647516)
Security Update for Windows Internet Explorer 7 (KB938127-v2)
Security Update for Windows Internet Explorer 7 (KB972260)
Security Update for Windows Internet Explorer 7 (KB974455)
Security Update for Windows Internet Explorer 7 (KB976325)
Security Update for Windows Internet Explorer 7 (KB978207)
Security Update for Windows Internet Explorer 7 (KB982381)
Security Update for Windows Media Player (KB2378111)
Security Update for Windows Media Player (KB911564)
Security Update for Windows Media Player (KB952069)
Security Update for Windows Media Player (KB954155)
Security Update for Windows Media Player (KB968816)
Security Update for Windows Media Player (KB973540)
Security Update for Windows Media Player (KB975558)
Security Update for Windows Media Player (KB978695)
Security Update for Windows Media Player 10 (KB936782)
Security Update for Windows XP (KB2079403)
Security Update for Windows XP (KB2115168)
Security Update for Windows XP (KB2121546)
Security Update for Windows XP (KB2160329)
Security Update for Windows XP (KB2229593)
Security Update for Windows XP (KB2259922)
Security Update for Windows XP (KB2279986)
Security Update for Windows XP (KB2286198)
Security Update for Windows XP (KB2296011)
Security Update for Windows XP (KB2296199)
Security Update for Windows XP (KB2347290)
Security Update for Windows XP (KB2360937)
Security Update for Windows XP (KB2387149)
Security Update for Windows XP (KB2393802)
Security Update for Windows XP (KB2412687)
Security Update for Windows XP (KB2419632)
Security Update for Windows XP (KB2423089)
Security Update for Windows XP (KB2436673)
Security Update for Windows XP (KB2440591)
Security Update for Windows XP (KB2443105)
Security Update for Windows XP (KB2476490)
Security Update for Windows XP (KB2476687)
Security Update for Windows XP (KB2478960)
Security Update for Windows XP (KB2478971)
Security Update for Windows XP (KB2479628)
Security Update for Windows XP (KB2479943)
Security Update for Windows XP (KB2481109)
Security Update for Windows XP (KB2483185)
Security Update for Windows XP (KB2485376)
Security Update for Windows XP (KB2485663)
Security Update for Windows XP (KB2491683)
Security Update for Windows XP (KB2503658)
Security Update for Windows XP (KB2503665)
Security Update for Windows XP (KB2506212)
Security Update for Windows XP (KB2506223)
Security Update for Windows XP (KB2507618)
Security Update for Windows XP (KB2507938)
Security Update for Windows XP (KB2508272)
Security Update for Windows XP (KB2508429)
Security Update for Windows XP (KB2509553)
Security Update for Windows XP (KB2510581)
Security Update for Windows XP (KB2511455)
Security Update for Windows XP (KB2524375)
Security Update for Windows XP (KB2535512)
Security Update for Windows XP (KB2536276-v2)
Security Update for Windows XP (KB2536276)
Security Update for Windows XP (KB2544893-v2)
Security Update for Windows XP (KB2544893)
Security Update for Windows XP (KB2555917)
Security Update for Windows XP (KB2562937)
Security Update for Windows XP (KB2566454)
Security Update for Windows XP (KB2567053)
Security Update for Windows XP (KB2567680)
Security Update for Windows XP (KB2570222)
Security Update for Windows XP (KB2570947)
Security Update for Windows XP (KB2584146)
Security Update for Windows XP (KB2585542)
Security Update for Windows XP (KB2592799)
Security Update for Windows XP (KB2598479)
Security Update for Windows XP (KB2603381)
Security Update for Windows XP (KB2618451)
Security Update for Windows XP (KB2619339)
Security Update for Windows XP (KB2620712)
Security Update for Windows XP (KB2621440)
Security Update for Windows XP (KB2624667)
Security Update for Windows XP (KB2631813)
Security Update for Windows XP (KB2633171)
Security Update for Windows XP (KB2639417)
Security Update for Windows XP (KB2641653)
Security Update for Windows XP (KB2646524)
Security Update for Windows XP (KB2647518)
Security Update for Windows XP (KB2660465)
Security Update for Windows XP (KB2661637)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB923689)
Security Update for Windows XP (KB938464-v2)
Security Update for Windows XP (KB941569)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB954459)
Security Update for Windows XP (KB954600)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956744)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956844)
Security Update for Windows XP (KB957097)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958687)
Security Update for Windows XP (KB958869)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Security Update for Windows XP (KB961371-v2)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB968537)
Security Update for Windows XP (KB969059)
Security Update for Windows XP (KB969947)
Security Update for Windows XP (KB970238)
Security Update for Windows XP (KB970430)
Security Update for Windows XP (KB971468)
Security Update for Windows XP (KB971486)
Security Update for Windows XP (KB971557)
Security Update for Windows XP (KB971633)
Security Update for Windows XP (KB971657)
Security Update for Windows XP (KB971961)
Security Update for Windows XP (KB972260)
Security Update for Windows XP (KB972270)
Security Update for Windows XP (KB973346)
Security Update for Windows XP (KB973354)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973525)
Security Update for Windows XP (KB973869)
Security Update for Windows XP (KB973904)
Security Update for Windows XP (KB974112)
Security Update for Windows XP (KB974318)
Security Update for Windows XP (KB974392)
Security Update for Windows XP (KB974571)
Security Update for Windows XP (KB975025)
Security Update for Windows XP (KB975467)
Security Update for Windows XP (KB975560)
Security Update for Windows XP (KB975561)
Security Update for Windows XP (KB975562)
Security Update for Windows XP (KB975713)
Security Update for Windows XP (KB977165)
Security Update for Windows XP (KB977816)
Security Update for Windows XP (KB977914)
Security Update for Windows XP (KB978037)
Security Update for Windows XP (KB978251)
Security Update for Windows XP (KB978262)
Security Update for Windows XP (KB978338)
Security Update for Windows XP (KB978542)
Security Update for Windows XP (KB978601)
Security Update for Windows XP (KB978706)
Security Update for Windows XP (KB979309)
Security Update for Windows XP (KB979482)
Security Update for Windows XP (KB979559)
Security Update for Windows XP (KB979683)
Security Update for Windows XP (KB979687)
Security Update for Windows XP (KB980195)
Security Update for Windows XP (KB980218)
Security Update for Windows XP (KB980232)
Security Update for Windows XP (KB980436)
Security Update for Windows XP (KB981322)
Security Update for Windows XP (KB981349)
Security Update for Windows XP (KB981852)
Security Update for Windows XP (KB981957)
Security Update for Windows XP (KB981997)
Security Update for Windows XP (KB982132)
Security Update for Windows XP (KB982214)
Security Update for Windows XP (KB982665)
Security Update for Windows XP (KB982802)
SMART Board Drivers
Sonic Activation Module
Sonic Update Manager
SpywareBlaster 4.5
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Windows Internet Explorer 7 (KB976749)
Update for Windows Internet Explorer 7 (KB980182)
Update for Windows XP (KB2141007)
Update for Windows XP (KB2345886)
Update for Windows XP (KB2467659)
Update for Windows XP (KB2541763)
Update for Windows XP (KB2607712)
Update for Windows XP (KB2616676)
Update for Windows XP (KB2641690)
Update for Windows XP (KB951978)
Update for Windows XP (KB955759)
Update for Windows XP (KB955839)
Update for Windows XP (KB967715)
Update for Windows XP (KB968389)
Update for Windows XP (KB971029)
Update for Windows XP (KB971737)
Update for Windows XP (KB973687)
Update for Windows XP (KB973815)
URL Assistant
Web Album Generator 1.8.2
WebFldrs XP
Windows Genuine Advantage Validation Tool (KB892130)
Windows Installer 3.1 (KB893803)
Windows Internet Explorer 7
Windows Media Format Runtime
Windows Media Player 10
Windows XP Service Pack 3
WinPatrol 2009
.
==== Event Viewer Messages From Past Week ========
.
4/6/2012 8:58:20 AM, error: Dhcp [1002] - The IP address lease 192.168.2.16 for the Network Card with network address 001676E34C19 has been denied by the DHCP server 192.168.2.1 (The DHCP Server sent a DHCPNACK message).
4/6/2012 8:27:15 PM, error: Dhcp [1002] - The IP address lease 192.168.2.19 for the Network Card with network address 001676E34C19 has been denied by the DHCP server 192.168.2.1 (The DHCP Server sent a DHCPNACK message).
4/6/2012 4:04:50 PM, error: Dhcp [1002] - The IP address lease 192.168.2.18 for the Network Card with network address 001676E34C19 has been denied by the DHCP server 192.168.2.1 (The DHCP Server sent a DHCPNACK message).
4/6/2012 2:05:45 PM, error: Dhcp [1002] - The IP address lease 192.168.2.17 for the Network Card with network address 001676E34C19 has been denied by the DHCP server 192.168.2.1 (The DHCP Server sent a DHCPNACK message).
4/6/2012 12:16:27 AM, error: Dhcp [1002] - The IP address lease 192.168.2.15 for the Network Card with network address 001676E34C19 has been denied by the DHCP server 192.168.2.1 (The DHCP Server sent a DHCPNACK message).
4/5/2012 8:20:08 AM, error: Dhcp [1002] - The IP address lease 192.168.2.12 for the Network Card with network address 001676E34C19 has been denied by the DHCP server 192.168.2.1 (The DHCP Server sent a DHCPNACK message).
4/5/2012 2:23:13 PM, error: Dhcp [1002] - The IP address lease 192.168.2.14 for the Network Card with network address 001676E34C19 has been denied by the DHCP server 192.168.2.1 (The DHCP Server sent a DHCPNACK message).
4/5/2012 10:47:36 AM, error: Dhcp [1002] - The IP address lease 192.168.2.13 for the Network Card with network address 001676E34C19 has been denied by the DHCP server 192.168.2.1 (The DHCP Server sent a DHCPNACK message).
4/4/2012 8:10:35 PM, error: Dhcp [1002] - The IP address lease 192.168.2.10 for the Network Card with network address 001676E34C19 has been denied by the DHCP server 192.168.2.1 (The DHCP Server sent a DHCPNACK message).
4/4/2012 4:22:38 PM, error: Dhcp [1002] - The IP address lease 192.168.2.11 for the Network Card with network address 001676E34C19 has been denied by the DHCP server 192.168.2.1 (The DHCP Server sent a DHCPNACK message).
4/3/2012 9:04:00 PM, error: Service Control Manager [7022] - The Fax service hung on starting.
4/3/2012 9:01:37 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the dldwCATSCustConnectService service to connect.
4/3/2012 9:01:37 PM, error: Service Control Manager [7000] - The dldwCATSCustConnectService service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
4/3/2012 3:16:19 PM, error: RemoteAccess [20106] - Unable to add the interface {DF10A70B-7540-489B-83E8-116BA017FFE8} with the Router Manager for the IP protocol. The following error occurred: Cannot complete this function.
4/2/2012 5:38:26 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the Fax service to connect.
4/2/2012 5:38:26 PM, error: Service Control Manager [7000] - The Fax service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
.
==== End Of File ===========================
frusterated
Regular Member
 
Posts: 56
Joined: May 28th, 2009, 8:36 pm
Advertisement
Register to Remove

Re: computer compromised

Unread postby askey127 » April 9th, 2012, 1:58 pm

Duplicate post moved to archive - askey127
User avatar
askey127
Admin/Teacher
Admin/Teacher
 
Posts: 13903
Joined: April 17th, 2005, 3:25 pm
Location: New Hampshire USA


  • Similar Topics
    Replies
    Views
    Last post

Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 57 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware