Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

chk dsk

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

chk dsk

Unread postby t-risk7 » June 6th, 2013, 12:56 pm

*Problem on my other computer* Cannot get DDS logs. Description of problem follows:

When I got up this morning I could not connect to the internet. I could not load or run mbam, nor could I run MSsecurity essentials.
I have win patrol plus and scotty was 'crapping' all over my computer with stuff to approve or reject.
I restarted and the problem persisted.
My wife tried to use the computer and when she handed it to me it had a blue screen that said shut down or you may lose files.
At this time I pulled the battery in case some one had somehow gotten remote access.
I put battery back in and turned it back on.
At this time a blue screen came up with the words

chk dsk

It then began scanning files and then indexes. At this point I again removed the battery since I don't know what chk dsk is. I am hesitant to reboot the other computer until I know more about chk dsk.
Thank you for your help.
t-risk7
Regular Member
 
Posts: 118
Joined: July 7th, 2010, 12:27 pm
Advertisement
Register to Remove

Re: chk dsk

Unread postby Gary R » June 8th, 2013, 12:08 pm

Chkdsk is a built in utility that comes with Windows, it checks your hard drive for damaged sectors and tries to repair them. It is deployed automatically if your computer detects corruption of the hard drive, or if it is shut down suddenly without going through it's normal closing procedure.

Please re-start your computer, and allow chkdsk to complete its scan (this may take quite a while). If it detects any damaged sectors on your hard drive, and asks if you want to repair them, answer yes (Y) and follow any on screen prompts.

If you're then able to boot your computer, please let me know. Also let me know what Operating System you're using (XP, Vista, Windows 7, Windows 8) as that will determine what recovery options are available to us.
User avatar
Gary R
Administrator
Administrator
 
Posts: 21868
Joined: June 28th, 2005, 11:36 am
Location: Yorkshire

Re: chk dsk

Unread postby t-risk7 » June 8th, 2013, 7:39 pm

Ok. I'll do that now.

I am using xp.

I will let you know when I'm done.
thanks
t-risk7
Regular Member
 
Posts: 118
Joined: July 7th, 2010, 12:27 pm

Re: chk dsk

Unread postby t-risk7 » June 8th, 2013, 7:58 pm

Ran chk dsk. It said it had to fix a file.
I am rebooted and looking at my main screen. I am still on the other computer. I did not know if you wanted me to try to get a dds log or not yet.
Thank you.
t-risk7
Regular Member
 
Posts: 118
Joined: July 7th, 2010, 12:27 pm

Re: chk dsk

Unread postby Gary R » June 9th, 2013, 4:46 am

By all means, if you can get DDS to run now, then run a scan and post me the logs, if not then please let me know.
User avatar
Gary R
Administrator
Administrator
 
Posts: 21868
Joined: June 28th, 2005, 11:36 am
Location: Yorkshire

Re: chk dsk

Unread postby t-risk7 » June 9th, 2013, 6:45 am

Ok. Will do.
Let you know when done.
t-risk7
Regular Member
 
Posts: 118
Joined: July 7th, 2010, 12:27 pm

Re: chk dsk

Unread postby t-risk7 » June 9th, 2013, 7:00 am

Here they are

dds:
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_33
Run by Administrator at 6:53:12 on 2013-06-09
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.2038.1264 [GMT -4:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095}
.
============== Running Processes ================
.
c:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\Program Files\Intel\WiFi\bin\S24EvMon.exe
C:\Program Files\Common Files\Microsoft Shared\Ink\KeyboardSurrogate.exe
C:\WINDOWS\SYSTEM32\WISPTIS.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\EtmService.exe
C:\Program Files\Intel\WiFi\bin\EvtEng.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
C:\Program Files\Panasonic\pcinfo\PCInfoPi.exe
C:\Program Files\Panasonic\pcinfo\PCInfoSV.exe
C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Microsoft Shared\Ink\TCServer.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\Program Files\Common Files\Microsoft Shared\Ink\TabTip.exe
C:\Program Files\Panasonic\WSwitch\WSwitch.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
C:\Program Files\Panasonic\Hotkey Appendix\HKEYAPP.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\FIDTPU\WIN2K\FTMSFLTU.EXE
C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe
C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
C:\Windows\System32\drivers\ABlocker\AoboBlocker.exe
C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\RButton.exe
C:\WINDOWS\system32\wbem\unsecapp.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\SearchProtocolHost.exe
C:\WINDOWS\system32\SearchFilterHost.exe
c:\Program Files\Microsoft Security Client\MpCmdRun.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k imgsvc
.
============== Pseudo HJT Report ===============
.
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [TabletWizard] c:\windows\help\SplshWrp.exe
mRun: [TabletTip] "c:\program files\common files\microsoft shared\ink\tabtip.exe" /resume
mRun: [PRunOnce] c:\util\prunonce\PRunOnce.exe
mRun: [WSwitch] c:\program files\panasonic\wswitch\WSwitch.exe
mRun: [SynTPStart] c:\program files\synaptics\syntp\SynTPStart.exe
mRun: [SoundMAXPnP] c:\program files\analog devices\core\smax4pnp.exe
mRun: [SoundMAX] "c:\program files\analog devices\soundmax\Smax4.exe" /tray
mRun: [setfan] "c:\program files\panasonic\setfan\setfan.exe" /resetting
mRun: [Panasonic Hotkey Manager] c:\program files\panasonic\hotkey appendix\HKEYAPP.EXE
mRun: [PCinfo] c:\program files\panasonic\pcinfo\PcInfoUt.exe
mRun: [FTMSFLT(USB)] c:\program files\fidtpu\win2k\FTMSFLTU.EXE
mRun: [IntelZeroConfig] "c:\program files\intel\wifi\bin\ZCfgSvc.exe"
mRun: [IntelWireless] "c:\program files\common files\intel\wirelesscommon\iFrmewrk.exe" /tf Intel Wireless Tray
mRun: [AoboBlocker] c:\windows\system32\drivers\ablocker\AoboBlocker.exe
mRun: [WinPatrol] c:\program files\billp studios\winpatrol\winpatrol.exe -expressboot
mRun: [MSC] "c:\program files\microsoft security client\msseces.exe" -hide -runkey
dRun: [DWQueuedReporting] "c:\progra~1\common~1\micros~1\dw\dwtrig20.exe" -t
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Windows\System: Allow-LogonScript-NetbiosDisabled = dword:1
mPolicies-Explorer: NoDriveTypeAutoRun = dword:145
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/ ... ontrol.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://windowsupdate.microsoft.com/wind ... 5420198620
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://www.update.microsoft.com/microso ... 4084504132
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
TCP: NameServer = 192.168.10.1
TCP: Interfaces\{72FE4DBF-BC5B-4BC4-ADB3-83779BDE3093} : DHCPNameServer = 192.168.10.1
Notify: igfxcui - igfxdev.dll
Notify: loginkey - c:\program files\common files\microsoft shared\ink\loginkey.dll
Notify: TabBtnWL - TabBtnWL.dll
Notify: tpgwlnotify - tpgwlnot.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - c:\program files\windows desktop search\MSNLNamespaceMgr.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\administrator\application data\mozilla\firefox\profiles\t6zbhib0.default\
FF - prefs.js: browser.startup.homepage - hxxp://crossfit.com/
FF - plugin: c:\program files\foxit software\foxit reader\plugins\npFoxitReaderPlugin.dll
FF - plugin: c:\program files\google\update\1.3.21.124\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre6\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\microsoft silverlight\5.1.20125.0\npctrlui.dll
FF - plugin: c:\program files\microsoft\office live\npOLW.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_6_602_180.dll
FF - plugin: c:\windows\system32\npdeployJava1.dll
FF - plugin: c:\windows\system32\npptools.dll
.
============= SERVICES / DRIVERS ===============
.
R0 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2011-4-18 195296]
R2 ETMService;Intel(R) Extended Thermal Model Service Application;c:\windows\system32\etmservice.exe [2007-11-6 217088]
R2 PcInfoPi;Panasonic PC Information Viewer Service 2;c:\program files\panasonic\pcinfo\PCInfoPi.exe [2007-11-6 54664]
R2 PcInfoSV;Panasonic PC Information Viewer;c:\program files\panasonic\pcinfo\PCInfoSV.exe [2007-11-6 185736]
R2 SDKEY;Panasonic SD Misc. Function Driver;c:\program files\panasonic\sdkey\SDKEY.sys [2007-11-6 13704]
R3 Etm;Etm;c:\windows\system32\drivers\EtmDrvMgr.sys [2007-11-6 40448]
R3 EtmCpu;EtmCpu;c:\windows\system32\drivers\EtmDevCpu.sys [2007-11-6 19712]
R3 EtmFan;EtmFan;c:\windows\system32\drivers\EtmDevFan.sys [2007-11-6 9600]
R3 EtmGmchMem;EtmGmchMem;c:\windows\system32\drivers\EtmDevGmch.sys [2007-11-6 36480]
R3 EtmTempSense;EtmTempSense;c:\windows\system32\drivers\EtmTempSense.sys [2007-11-6 12288]
R3 FIDTPU;Fujitsu Touch Panel (USB);c:\windows\system32\drivers\FIDTPU.sys [2007-11-6 27031]
R3 IFXTPM;IFXTPM;c:\windows\system32\drivers\ifxtpm.sys [2007-11-6 36352]
R3 NewMisc;Panasonic Misc Driver;c:\windows\system32\drivers\newmisc.sys [2007-11-6 42624]
S3 BrYNSvc;BrYNSvc;c:\program files\browny02\BrYNSvc.exe [2012-1-25 245760]
S3 WinRM;Windows Remote Management (WS-Management);c:\windows\system32\svchost.exe -k WINRM [2007-11-6 14336]
.
=============== File Associations ===============
.
FileExt: .vbe: VBEFile=c:\program files\analogx\script defender\sdefend.exe %1 %*
FileExt: .vbs: VBSFile=c:\program files\analogx\script defender\sdefend.exe %1 %*
FileExt: .js: JSFile=c:\program files\analogx\script defender\sdefend.exe %1 %*
FileExt: .jse: JSEFile=c:\program files\analogx\script defender\sdefend.exe %1 %*
FileExt: .wsf: WSFFile=c:\program files\analogx\script defender\sdefend.exe %1 %*
.
=============== Created Last 30 ================
.
2013-06-08 23:57:05 7016152 ----a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{74944f5b-0e16-4a10-b6fe-5b7091463ab4}\mpengine.dll
2013-06-06 12:02:16 7016152 ------w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\backup\mpengine.dll
2013-05-26 19:02:39 5632 ----a-w- c:\windows\system32\ptpusb.dll
2013-05-26 19:02:39 15104 -c--a-w- c:\windows\system32\dllcache\usbscan.sys
2013-05-26 19:02:39 15104 ----a-w- c:\windows\system32\drivers\usbscan.sys
2013-05-26 19:02:37 159232 ----a-w- c:\windows\system32\ptpusd.dll
.
==================== Find3M ====================
.
2013-05-02 15:28:50 238872 ------w- c:\windows\system32\MpSigStub.exe
2013-04-16 22:17:15 920064 ----a-w- c:\windows\system32\wininet.dll
2013-04-16 22:17:14 43520 ------w- c:\windows\system32\licmgr10.dll
2013-04-16 22:17:14 1469440 ------w- c:\windows\system32\inetcpl.cpl
2013-04-12 23:28:55 385024 ------w- c:\windows\system32\html.iec
2013-04-10 01:31:19 1876352 ----a-w- c:\windows\system32\win32k.sys
2013-04-04 18:50:32 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-03-14 12:13:40 73432 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-03-14 12:13:40 693976 -c--a-w- c:\windows\system32\FlashPlayerApp.exe
.
============= FINISH: 6:54:12.23 ===============


attach log:

.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 12/20/2011 7:51:02 PM
System Uptime: 6/9/2013 6:45:28 AM (0 hours ago)
.
Motherboard: Matsushita Electric Industrial Co.,Ltd. | | CFT7W-1
Processor: Intel(R) Core(TM)2 Duo CPU U7500 @ 1.06GHz | IC1 | 786/133mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 75 GiB total, 53.01 GiB free.
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP500: 3/11/2013 9:24:31 AM - Software Distribution Service 3.0
RP501: 3/12/2013 1:11:30 PM - System Checkpoint
RP502: 3/12/2013 4:53:02 PM - Software Distribution Service 3.0
RP503: 3/13/2013 5:49:28 PM - Software Distribution Service 3.0
RP504: 3/13/2013 8:32:29 PM - Software Distribution Service 3.0
RP505: 3/14/2013 10:41:32 PM - System Checkpoint
RP506: 3/15/2013 8:23:42 AM - Software Distribution Service 3.0
RP507: 3/16/2013 8:51:10 AM - Software Distribution Service 3.0
RP508: 3/17/2013 7:54:21 AM - Software Distribution Service 3.0
RP509: 3/18/2013 11:29:19 AM - System Checkpoint
RP510: 3/18/2013 2:16:43 PM - Software Distribution Service 3.0
RP511: 3/19/2013 2:17:01 PM - Software Distribution Service 3.0
RP512: 3/20/2013 2:15:59 PM - Software Distribution Service 3.0
RP513: 3/21/2013 2:34:34 PM - Software Distribution Service 3.0
RP514: 3/22/2013 3:01:30 PM - System Checkpoint
RP515: 3/22/2013 4:10:32 PM - Software Distribution Service 3.0
RP516: 3/23/2013 4:16:08 PM - System Checkpoint
RP517: 3/23/2013 7:07:25 PM - Software Distribution Service 3.0
RP518: 3/24/2013 11:36:57 PM - Software Distribution Service 3.0
RP519: 3/26/2013 12:32:19 AM - System Checkpoint
RP520: 3/26/2013 2:15:45 PM - Software Distribution Service 3.0
RP521: 3/27/2013 2:05:33 PM - Software Distribution Service 3.0
RP522: 3/28/2013 2:05:42 PM - Software Distribution Service 3.0
RP523: 3/29/2013 2:05:44 PM - Software Distribution Service 3.0
RP524: 3/30/2013 8:38:57 PM - Software Distribution Service 3.0
RP525: 3/31/2013 8:20:00 AM - Software Distribution Service 3.0
RP526: 4/1/2013 12:57:18 PM - System Checkpoint
RP527: 4/2/2013 8:08:15 AM - Software Distribution Service 3.0
RP528: 4/3/2013 9:51:52 AM - System Checkpoint
RP529: 4/3/2013 9:52:28 AM - Software Distribution Service 3.0
RP530: 4/4/2013 11:25:01 AM - Software Distribution Service 3.0
RP531: 4/5/2013 11:43:42 AM - System Checkpoint
RP532: 4/5/2013 10:47:59 PM - Software Distribution Service 3.0
RP533: 4/6/2013 11:28:50 PM - System Checkpoint
RP534: 4/7/2013 7:04:48 AM - Software Distribution Service 3.0
RP535: 4/8/2013 7:15:37 AM - Software Distribution Service 3.0
RP536: 4/9/2013 7:42:17 AM - Software Distribution Service 3.0
RP537: 4/10/2013 8:17:28 AM - Software Distribution Service 3.0
RP538: 4/10/2013 12:21:18 PM - Software Distribution Service 3.0
RP539: 4/11/2013 8:49:47 AM - Software Distribution Service 3.0
RP540: 4/12/2013 9:41:33 AM - System Checkpoint
RP541: 4/12/2013 3:56:27 PM - Software Distribution Service 3.0
RP542: 4/13/2013 4:03:38 PM - Software Distribution Service 3.0
RP543: 4/14/2013 4:58:12 PM - Software Distribution Service 3.0
RP544: 4/15/2013 9:18:57 PM - Software Distribution Service 3.0
RP545: 4/16/2013 11:31:22 PM - Software Distribution Service 3.0
RP546: 4/17/2013 11:59:34 PM - System Checkpoint
RP547: 4/18/2013 10:06:43 PM - Software Distribution Service 3.0
RP548: 4/19/2013 10:56:28 PM - System Checkpoint
RP549: 4/20/2013 7:48:07 AM - Software Distribution Service 3.0
RP550: 4/21/2013 10:04:29 AM - System Checkpoint
RP551: 4/21/2013 11:35:33 AM - Software Distribution Service 3.0
RP552: 4/22/2013 3:11:41 PM - Software Distribution Service 3.0
RP553: 4/23/2013 3:27:31 PM - System Checkpoint
RP554: 4/24/2013 9:56:05 AM - Software Distribution Service 3.0
RP555: 4/25/2013 10:17:23 AM - System Checkpoint
RP556: 4/25/2013 1:46:14 PM - Software Distribution Service 3.0
RP557: 4/26/2013 6:51:33 PM - Software Distribution Service 3.0
RP558: 4/27/2013 8:28:22 PM - System Checkpoint
RP559: 4/28/2013 7:42:34 AM - Software Distribution Service 3.0
RP560: 4/28/2013 8:55:45 AM - Software Distribution Service 3.0
RP561: 4/29/2013 1:46:12 PM - Software Distribution Service 3.0
RP562: 4/30/2013 2:37:27 PM - System Checkpoint
RP563: 4/30/2013 9:59:49 PM - Software Distribution Service 3.0
RP564: 5/1/2013 11:09:39 PM - System Checkpoint
RP565: 5/2/2013 1:58:31 AM - Software Distribution Service 3.0
RP566: 5/3/2013 2:02:11 AM - Software Distribution Service 3.0
RP567: 5/3/2013 9:40:51 PM - Software Distribution Service 3.0
RP568: 5/4/2013 10:07:52 PM - Software Distribution Service 3.0
RP569: 5/5/2013 10:06:59 PM - Software Distribution Service 3.0
RP570: 5/6/2013 10:56:41 PM - System Checkpoint
RP571: 5/7/2013 8:42:14 AM - Software Distribution Service 3.0
RP572: 5/8/2013 8:31:36 AM - Software Distribution Service 3.0
RP573: 5/9/2013 9:07:26 AM - System Checkpoint
RP574: 5/9/2013 10:49:12 PM - Software Distribution Service 3.0
RP575: 5/10/2013 10:52:05 PM - System Checkpoint
RP576: 5/11/2013 5:24:19 AM - Software Distribution Service 3.0
RP577: 5/12/2013 9:18:53 AM - System Checkpoint
RP578: 5/12/2013 3:48:54 PM - Software Distribution Service 3.0
RP579: 5/13/2013 3:52:55 PM - System Checkpoint
RP580: 5/14/2013 12:15:06 PM - Software Distribution Service 3.0
RP581: 5/15/2013 12:16:49 PM - Software Distribution Service 3.0
RP582: 5/15/2013 11:46:39 PM - Software Distribution Service 3.0
RP583: 5/16/2013 12:47:35 PM - Software Distribution Service 3.0
RP584: 5/17/2013 12:32:43 PM - Printer Driver Foxit Reader PDF Printer Driver Installed
RP585: 5/17/2013 2:26:55 PM - Software Distribution Service 3.0
RP586: 5/18/2013 9:54:26 PM - Software Distribution Service 3.0
RP587: 5/19/2013 8:13:31 AM - Software Distribution Service 3.0
RP588: 5/20/2013 9:01:01 AM - System Checkpoint
RP589: 5/20/2013 9:39:47 AM - Software Distribution Service 3.0
RP590: 5/20/2013 10:08:53 PM - Software Distribution Service 3.0
RP591: 5/21/2013 10:12:23 PM - Software Distribution Service 3.0
RP592: 5/22/2013 9:27:40 PM - Software Distribution Service 3.0
RP593: 5/23/2013 9:28:46 PM - Software Distribution Service 3.0
RP594: 5/24/2013 9:29:50 PM - Software Distribution Service 3.0
RP595: 5/25/2013 9:47:36 PM - Software Distribution Service 3.0
RP596: 5/26/2013 10:22:07 PM - System Checkpoint
RP597: 5/27/2013 8:22:44 AM - Software Distribution Service 3.0
RP598: 5/28/2013 9:15:43 AM - System Checkpoint
RP599: 5/28/2013 5:23:49 PM - Software Distribution Service 3.0
RP600: 5/29/2013 5:23:47 PM - Software Distribution Service 3.0
RP601: 5/30/2013 5:23:46 PM - Software Distribution Service 3.0
RP602: 5/31/2013 5:25:41 PM - Software Distribution Service 3.0
RP603: 6/2/2013 1:31:50 AM - Software Distribution Service 3.0
RP604: 6/2/2013 8:17:43 AM - Software Distribution Service 3.0
RP605: 6/3/2013 11:10:39 AM - System Checkpoint
RP606: 6/3/2013 11:22:21 AM - Software Distribution Service 3.0
RP607: 6/4/2013 11:12:45 AM - Software Distribution Service 3.0
RP608: 6/5/2013 11:12:38 AM - Software Distribution Service 3.0
RP609: 6/6/2013 8:02:09 AM - Software Distribution Service 3.0
RP610: 6/8/2013 7:57:00 PM - Software Distribution Service 3.0
.
==== Installed Programs ======================
.
Adobe Flash Player 11 ActiveX
Adobe Flash Player 11 Plugin
Amazon Kindle
AnalogX Script Defender
Battery Recalibration
Bluetooth Stack for Windows by Toshiba
Brother MFL-Pro Suite MFC-J265W
Compatibility Pack for the 2007 Office system
Display Rotation Tool
DMI Viewer
Economy Mode(ECO) Setting Utility
Fan Control Utility
Foxit Reader
Fujitsu Touch Panel (USB)
Glary Utilities 2.32.0.1126
Google Chrome
Google Update Helper
HDAUDIO Soft Data Fax Modem with SmartCP
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows XP (KB2756822)
Hotfix for Windows XP (KB2779562)
Hotfix for Windows XP (KB954550-v5)
Hotfix for Windows XP (KB954708)
Hotkey Appendix
Hotkey Settings
Icon Enlarger
Intel PROSet Wireless
Intel(R) Extended Thermal Model
Intel(R) Graphics Media Accelerator Driver
Intel(R) Matrix Storage Manager
Intel(R) PROSet/Wireless WiFi Software
Java Auto Updater
Java(TM) 6 Update 33
LAN Power-Saving Utility
Loupe Utility
Malwarebytes Anti-Malware version 1.75.0.1300
Marvell Miniport Driver
Microsoft .NET Framework 1.0 Hotfix (KB2604042)
Microsoft .NET Framework 1.0 Hotfix (KB2656378)
Microsoft .NET Framework 1.0 Security Update (KB2698035)
Microsoft .NET Framework 1.0 Security Update (KB2742607)
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Security Update (KB2698023)
Microsoft .NET Framework 1.1 Security Update (KB2742597)
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft Application Error Reporting
Microsoft Base Smart Card Cryptographic Service Provider Package
Microsoft Choice Guard
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Kernel-Mode Driver Framework Feature Pack 1.1
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Access MUI (English) 2007
Microsoft Office Access Setup Metadata MUI (English) 2007
Microsoft Office Enterprise 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office File Validation Add-In
Microsoft Office Groove MUI (English) 2007
Microsoft Office Groove Setup Metadata MUI (English) 2007
Microsoft Office InfoPath MUI (English) 2007
Microsoft Office Live Add-in 1.5
Microsoft Office OneNote MUI (English) 2007
Microsoft Office Outlook Connector
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Security Client
Microsoft Security Essentials
Microsoft Silverlight
Microsoft Software Update for Web Folders (English) 12
Microsoft User-Mode Driver Framework Feature Pack 1.0
Mozilla Firefox 17.0.1 (x86 en-US)
Mozilla Maintenance Service
MSXML 4.0 SP2 (KB927978)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 6.0 Parser (KB933579)
Panasonic Common Components
PC Information Popup
PC Information Viewer
Power Saving Utility
SD Utility
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2604111)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2657424)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2736416)
Security Update for Microsoft Office 2007 suites (KB2596615) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596672) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596785) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2687311) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2687439) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2687441) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2687499) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760416) 32-Bit Edition
Security Update for Microsoft Office Excel 2007 (KB2687307) 32-Bit Edition
Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition
Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition
Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition
Security Update for Microsoft Office Publisher 2007 (KB2597971) 32-Bit Edition
Security Update for Microsoft Office Word 2007 (KB2760421) 32-Bit Edition
Security Update for Windows Internet Explorer 8 (KB2510531)
Security Update for Windows Internet Explorer 8 (KB2544521)
Security Update for Windows Internet Explorer 8 (KB2559049)
Security Update for Windows Internet Explorer 8 (KB2618444)
Security Update for Windows Internet Explorer 8 (KB2647516)
Security Update for Windows Internet Explorer 8 (KB2675157)
Security Update for Windows Internet Explorer 8 (KB2699988)
Security Update for Windows Internet Explorer 8 (KB2722913)
Security Update for Windows Internet Explorer 8 (KB2744842)
Security Update for Windows Internet Explorer 8 (KB2761465)
Security Update for Windows Internet Explorer 8 (KB2792100)
Security Update for Windows Internet Explorer 8 (KB2797052)
Security Update for Windows Internet Explorer 8 (KB2799329)
Security Update for Windows Internet Explorer 8 (KB2809289)
Security Update for Windows Internet Explorer 8 (KB2817183)
Security Update for Windows Internet Explorer 8 (KB2829530)
Security Update for Windows Internet Explorer 8 (KB2847204)
Security Update for Windows Internet Explorer 8 (KB982381)
Security Update for Windows Media Player (KB911564)
Security Update for Windows XP (KB2584146)
Security Update for Windows XP (KB2585542)
Security Update for Windows XP (KB2598479)
Security Update for Windows XP (KB2603381)
Security Update for Windows XP (KB2621440)
Security Update for Windows XP (KB2631813)
Security Update for Windows XP (KB2641653)
Security Update for Windows XP (KB2646524)
Security Update for Windows XP (KB2647518)
Security Update for Windows XP (KB2653956)
Security Update for Windows XP (KB2655992)
Security Update for Windows XP (KB2659262)
Security Update for Windows XP (KB2660465)
Security Update for Windows XP (KB2660649)
Security Update for Windows XP (KB2661637)
Security Update for Windows XP (KB2676562)
Security Update for Windows XP (KB2685939)
Security Update for Windows XP (KB2686509)
Security Update for Windows XP (KB2691442)
Security Update for Windows XP (KB2695962)
Security Update for Windows XP (KB2698365)
Security Update for Windows XP (KB2705219)
Security Update for Windows XP (KB2707511)
Security Update for Windows XP (KB2709162)
Security Update for Windows XP (KB2712808)
Security Update for Windows XP (KB2718523)
Security Update for Windows XP (KB2719985)
Security Update for Windows XP (KB2723135)
Security Update for Windows XP (KB2724197)
Security Update for Windows XP (KB2727528)
Security Update for Windows XP (KB2731847)
Security Update for Windows XP (KB2753842-v2)
Security Update for Windows XP (KB2753842)
Security Update for Windows XP (KB2757638)
Security Update for Windows XP (KB2758857)
Security Update for Windows XP (KB2761226)
Security Update for Windows XP (KB2770660)
Security Update for Windows XP (KB2778344)
Security Update for Windows XP (KB2779030)
Security Update for Windows XP (KB2780091)
Security Update for Windows XP (KB2799494)
Security Update for Windows XP (KB2802968)
Security Update for Windows XP (KB2807986)
Security Update for Windows XP (KB2808735)
Security Update for Windows XP (KB2813170)
Security Update for Windows XP (KB2813345)
Security Update for Windows XP (KB2820197)
Security Update for Windows XP (KB2820917)
Security Update for Windows XP (KB2829361)
Security Update for Windows XP (KB923789)
SoundMAX
Synaptics Pointing Device Driver
Touch Pad Utility
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596802) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition
Update for Microsoft Office Access 2007 Help (KB963663)
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office Infopath 2007 Help (KB963662)
Update for Microsoft Office OneNote 2007 Help (KB963670)
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition
Update for Microsoft Office Outlook 2007 Help (KB963677)
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2817359) 32-Bit Edition
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Publisher 2007 Help (KB963667)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 Help (KB963665)
Update for Windows Internet Explorer 8 (KB2447568)
Update for Windows Internet Explorer 8 (KB2598845)
Update for Windows XP (KB2661254-v2)
Update for Windows XP (KB2718704)
Update for Windows XP (KB2736233)
Update for Windows XP (KB2749655)
WebFldrs XP
Windows Genuine Advantage Validation Tool (KB892130)
Windows Internet Explorer 8
Windows Live Sign-in Assistant
Windows Live Sync
Windows Live Upload Tool
Windows Management Framework Core
Windows Media Format 11 runtime
Windows Media Player 11
Windows Search 4.0
Windows XP Service Pack 3
WinPatrol
Wireless Switch Utility
.
==== Event Viewer Messages From Past Week ========
.
6/8/2013 7:46:41 PM, error: Dhcp [1002] - The IP address lease 192.168.10.102 for the Network Card with network address 001DE090E839 has been denied by the DHCP server 192.168.10.1 (The DHCP Server sent a DHCPNACK message).
6/8/2013 7:46:34 PM, error: System Error [1003] - Error code 00000077, parameter1 00000001, parameter2 00000000, parameter3 00000000, parameter4 9cdd4ca0.
6/6/2013 7:52:26 AM, error: DCOM [10016] - The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID {A4199E55-EBB9-49E5-AF1A-7A5408B2E206} to the user NT AUTHORITY\NETWORK SERVICE SID (S-1-5-20). This security permission can be modified using the Component Services administrative tool.
6/2/2013 1:21:08 AM, error: Dhcp [1001] - Your computer was not assigned an address from the network (by the DHCP Server) for the Network Card with network address 001DE090E839. The following error occurred: The operation was canceled by the user. . Your computer will continue to try and obtain an address on its own from the network address (DHCP) server.
.
==== End Of File ===========================


Thanks
t-risk7
Regular Member
 
Posts: 118
Joined: July 7th, 2010, 12:27 pm

Re: chk dsk

Unread postby Gary R » June 9th, 2013, 9:47 am

There's nothing of any significance showing in your DDS logs, and no real clues to what may have caused your problems, so I'd like to run some more scans and see if anything turns up.

First

Please download Farbar Service Scanner ... by Farbar and save it to your Desktop.
  • Double click FSS.exe to run it. (Vista - W7 users: Please right click on FSS.exe and select Run As Administrator).
  • Select the following options ....
    • Internet Services
    • Windows Firewall
    • System Restore
    • Security Center
    • Windows Update
    • Windows Defender
  • Press the Scan button.
  • When finished, a text file named FSS.txt will be created on your desktop.
  • Copy/Paste the contents in your reply please.

Next

Please download MiniToolBox to your Desktop.

  • Double click MiniToolBox.exe to launch the program.
  • Checkmark the following checkboxes:
    • Report IE Proxy Settings
    • Report FF Proxy Settings
    • List content of Hosts
    • List IP configuration
    • List last 10 Event Viewer Errors
    • List Users Partitions and Memory size.
    • List Minidump Files
  • Click Go to start the scan.
  • When finished a log Result.txt will open.
  • Please post it in your next reply.

Summary of the logs I need from you in your next post:
  • FSS.txt
  • Result.txt


Please post each log separately to prevent it being cut off by the forum post size limiter. Check each after you've posted it to make sure it's all present, if any log is cut off you'll have to post it in sections.
User avatar
Gary R
Administrator
Administrator
 
Posts: 21868
Joined: June 28th, 2005, 11:36 am
Location: Yorkshire

Re: chk dsk

Unread postby t-risk7 » June 9th, 2013, 1:21 pm

Here is the fss scan:

Farbar Service Scanner Version: 31-05-2013 01
Ran by Administrator (administrator) on 09-06-2013 at 13:20:24
Running from "C:\Documents and Settings\Administrator\My Documents\Downloads"
Microsoft Windows XP Service Pack 3 (X86)
Boot Mode: Normal
****************************************************************

Internet Services:
============
Dnscache Service is not running. Checking service configuration:
The start type of Dnscache service is set to Demand. The default start type is Auto.
The ImagePath of Dnscache service is OK.
The ServiceDll of Dnscache service is OK.


Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo IP is accessible.
Yahoo.com is accessible.


Windows Firewall:
=============

Firewall Disabled Policy:
==================


System Restore:
============

System Restore Disabled Policy:
========================


Security Center:
============


Windows Update:
============

Windows Autoupdate Disabled Policy:
============================


File Check:
========
C:\WINDOWS\system32\dhcpcsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\afd.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\netbt.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\tcpip.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\ipsec.sys => MD5 is legit
C:\WINDOWS\system32\dnsrslvr.dll => MD5 is legit
C:\WINDOWS\system32\ipnathlp.dll => MD5 is legit
C:\WINDOWS\system32\netman.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\srsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\sr.sys => MD5 is legit
C:\WINDOWS\system32\wscsvc.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\wuauserv.dll => MD5 is legit
C:\WINDOWS\system32\qmgr.dll => MD5 is legit
C:\WINDOWS\system32\es.dll => MD5 is legit
C:\WINDOWS\system32\cryptsvc.dll => MD5 is legit
C:\WINDOWS\system32\svchost.exe => MD5 is legit
C:\WINDOWS\system32\rpcss.dll => MD5 is legit
C:\WINDOWS\system32\services.exe => MD5 is legit

Extra List:
=======
Gpc(6) IPSec(4) NetBT(5) PSched(7) Tcpip(3)
0x09000000040000000100000002000000030000000500000006000000070000000800000009000000
IpSec Tag value is correct.

**** End of log ****
t-risk7
Regular Member
 
Posts: 118
Joined: July 7th, 2010, 12:27 pm

Re: chk dsk

Unread postby t-risk7 » June 9th, 2013, 1:28 pm

Here is minitoolbox:

MiniToolBox by Farbar Version:21-04-2013
Ran by Administrator (administrator) on 09-06-2013 at 13:25:31
Running from "C:\Documents and Settings\Administrator\My Documents\Downloads"
Microsoft Windows XP Service Pack 3 (X86)
Boot Mode: Normal
***************************************************************************

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

========================= FF Proxy Settings: ==============================

Hosts file not detected in the default directory
========================= IP Configuration: ================================

Intel(R) Wireless WiFi Link 4965AG = Wireless Network Connection (Connected)
Marvell Yukon 88E8055 PCI-E Gigabit Ethernet Controller = Local Area Connection (Media disconnected)


# ----------------------------------
# Interface IP Configuration
# ----------------------------------
pushd interface ip


# Interface IP Configuration for "Local Area Connection"

set address name="Local Area Connection" source=dhcp
set dns name="Local Area Connection" source=dhcp register=PRIMARY
set wins name="Local Area Connection" source=dhcp

# Interface IP Configuration for "Wireless Network Connection"

set address name="Wireless Network Connection" source=dhcp
set dns name="Wireless Network Connection" source=dhcp register=PRIMARY
set wins name="Wireless Network Connection" source=dhcp


popd
# End of interface IP configuration




Windows IP Configuration



Host Name . . . . . . . . . . . . : HOME-0255181F01

Primary Dns Suffix . . . . . . . :

Node Type . . . . . . . . . . . . : Hybrid

IP Routing Enabled. . . . . . . . : No

WINS Proxy Enabled. . . . . . . . : No

DNS Suffix Search List. . . . . . : woh.rr.com



Ethernet adapter Local Area Connection:



Media State . . . . . . . . . . . : Media disconnected

Description . . . . . . . . . . . : Marvell Yukon 88E8055 PCI-E Gigabit Ethernet Controller

Physical Address. . . . . . . . . : 00-0B-97-51-93-EE



Ethernet adapter Wireless Network Connection:



Connection-specific DNS Suffix . : woh.rr.com

Description . . . . . . . . . . . : Intel(R) Wireless WiFi Link 4965AG

Physical Address. . . . . . . . . : 00-1D-E0-90-E8-39

Dhcp Enabled. . . . . . . . . . . : Yes

Autoconfiguration Enabled . . . . : Yes

IP Address. . . . . . . . . . . . : 192.168.10.103

Subnet Mask . . . . . . . . . . . : 255.255.255.0

Default Gateway . . . . . . . . . : 192.168.10.1

DHCP Server . . . . . . . . . . . : 192.168.10.1

DNS Servers . . . . . . . . . . . : 192.168.10.1

Lease Obtained. . . . . . . . . . : Sunday, June 09, 2013 1:14:42 PM

Lease Expires . . . . . . . . . . : Sunday, June 16, 2013 1:14:42 PM

Server: TEW-651BR
Address: 192.168.10.1

Name: google.com
Addresses: 74.125.225.38, 74.125.225.39, 74.125.225.40, 74.125.225.41
74.125.225.46, 74.125.225.32, 74.125.225.33, 74.125.225.34, 74.125.225.35
74.125.225.36, 74.125.225.37



Pinging google.com [74.125.225.37] with 32 bytes of data:



Reply from 74.125.225.37: bytes=32 time=34ms TTL=54

Reply from 74.125.225.37: bytes=32 time=35ms TTL=54



Ping statistics for 74.125.225.37:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 34ms, Maximum = 35ms, Average = 34ms

Server: TEW-651BR
Address: 192.168.10.1

Name: yahoo.com
Addresses: 98.138.253.109, 206.190.36.45, 98.139.183.24



Pinging yahoo.com [98.139.183.24] with 32 bytes of data:



Reply from 98.139.183.24: bytes=32 time=73ms TTL=47

Reply from 98.139.183.24: bytes=32 time=171ms TTL=47



Ping statistics for 98.139.183.24:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 73ms, Maximum = 171ms, Average = 122ms



Pinging 127.0.0.1 with 32 bytes of data:



Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Reply from 127.0.0.1: bytes=32 time<1ms TTL=128



Ping statistics for 127.0.0.1:

Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Approximate round trip times in milli-seconds:

Minimum = 0ms, Maximum = 0ms, Average = 0ms

===========================================================================
Interface List
0x1 ........................... MS TCP Loopback interface
0x2 ...00 0b 97 51 93 ee ...... Marvell Yukon 88E8055 PCI-E Gigabit Ethernet Controller - Packet Scheduler Miniport
0x3 ...00 1d e0 90 e8 39 ...... Intel(R) Wireless WiFi Link 4965AG - Packet Scheduler Miniport
===========================================================================
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.10.1 192.168.10.103 25
127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1 1
192.168.10.0 255.255.255.0 192.168.10.103 192.168.10.103 25
192.168.10.103 255.255.255.255 127.0.0.1 127.0.0.1 25
192.168.10.255 255.255.255.255 192.168.10.103 192.168.10.103 25
224.0.0.0 240.0.0.0 192.168.10.103 192.168.10.103 25
255.255.255.255 255.255.255.255 192.168.10.103 2 1
255.255.255.255 255.255.255.255 192.168.10.103 192.168.10.103 1
Default Gateway: 192.168.10.1
===========================================================================
Persistent Routes:
None

========================= Event log errors: ===============================

Application errors:
==================
Error: (06/06/2013 08:00:48 AM) (Source: Application Hang) (User: )
Description: Hanging application WinPatrolEx.exe, version 26.0.2013.0, hang module hungapp, version 0.0.0.0, hang address 0x00000000.

Error: (06/05/2013 09:12:54 AM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 microsoft security essentials (edb4fa23-53b8-4afa-8c5d-99752cca7094), P2 4.2.223.0, P3 timeout, P4 1.1.9506.0, P5 fixed, P6 2 _ 2048, P7 5 _ not boot, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.

Error: (06/05/2013 09:08:47 AM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 microsoft security essentials (edb4fa23-53b8-4afa-8c5d-99752cca7094), P2 4.2.223.0, P3 timeout, P4 1.1.9506.0, P5 fixed, P6 2 _ 2048, P7 5 _ not boot, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.

Error: (06/05/2013 09:04:28 AM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 microsoft security essentials (edb4fa23-53b8-4afa-8c5d-99752cca7094), P2 4.2.223.0, P3 timeout, P4 1.1.9506.0, P5 fixed, P6 2 _ 2048, P7 5 _ not boot, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.

Error: (06/05/2013 08:59:32 AM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 microsoft security essentials (edb4fa23-53b8-4afa-8c5d-99752cca7094), P2 4.2.223.0, P3 timeout, P4 1.1.9506.0, P5 fixed, P6 2 _ 2048, P7 5 _ not boot, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.

Error: (06/05/2013 08:55:38 AM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 microsoft security essentials (edb4fa23-53b8-4afa-8c5d-99752cca7094), P2 4.2.223.0, P3 timeout, P4 1.1.9506.0, P5 fixed, P6 2 _ 2048, P7 5 _ not boot, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.

Error: (06/05/2013 08:51:05 AM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 microsoft security essentials (edb4fa23-53b8-4afa-8c5d-99752cca7094), P2 4.2.223.0, P3 timeout, P4 1.1.9506.0, P5 fixed, P6 2 _ 2048, P7 5 _ not boot, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.

Error: (06/04/2013 00:38:06 PM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 microsoft security essentials (edb4fa23-53b8-4afa-8c5d-99752cca7094), P2 4.2.223.0, P3 timeout, P4 1.1.9506.0, P5 fixed, P6 2 _ 2048, P7 5 _ not boot, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.

Error: (06/04/2013 00:34:01 PM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 microsoft security essentials (edb4fa23-53b8-4afa-8c5d-99752cca7094), P2 4.2.223.0, P3 timeout, P4 1.1.9506.0, P5 fixed, P6 2 _ 2048, P7 5 _ not boot, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.

Error: (06/04/2013 00:29:37 PM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 microsoft security essentials (edb4fa23-53b8-4afa-8c5d-99752cca7094), P2 4.2.223.0, P3 timeout, P4 1.1.9506.0, P5 fixed, P6 2 _ 2048, P7 5 _ not boot, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.


System errors:
=============
Error: (06/09/2013 01:14:14 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID
{A4199E55-EBB9-49E5-AF1A-7A5408B2E206}
to the user NT AUTHORITY\NETWORK SERVICE SID (S-1-5-20). This security permission can be modified using the Component Services administrative tool.

Error: (06/09/2013 01:14:14 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID
{A4199E55-EBB9-49E5-AF1A-7A5408B2E206}
to the user NT AUTHORITY\NETWORK SERVICE SID (S-1-5-20). This security permission can be modified using the Component Services administrative tool.

Error: (06/09/2013 01:14:14 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID
{A4199E55-EBB9-49E5-AF1A-7A5408B2E206}
to the user NT AUTHORITY\NETWORK SERVICE SID (S-1-5-20). This security permission can be modified using the Component Services administrative tool.

Error: (06/09/2013 06:46:17 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID
{A4199E55-EBB9-49E5-AF1A-7A5408B2E206}
to the user NT AUTHORITY\NETWORK SERVICE SID (S-1-5-20). This security permission can be modified using the Component Services administrative tool.

Error: (06/09/2013 06:46:17 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID
{A4199E55-EBB9-49E5-AF1A-7A5408B2E206}
to the user NT AUTHORITY\NETWORK SERVICE SID (S-1-5-20). This security permission can be modified using the Component Services administrative tool.

Error: (06/09/2013 06:46:17 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID
{A4199E55-EBB9-49E5-AF1A-7A5408B2E206}
to the user NT AUTHORITY\NETWORK SERVICE SID (S-1-5-20). This security permission can be modified using the Component Services administrative tool.

Error: (06/08/2013 07:46:41 PM) (Source: Dhcp) (User: )
Description: The IP address lease 192.168.10.102 for the Network Card with network address 001DE090E839 has been
denied by the DHCP server 192.168.10.1 (The DHCP Server sent a DHCPNACK message).

Error: (06/08/2013 07:46:34 PM) (Source: System Error) (User: )
Description: Error code 00000077, parameter1 00000001, parameter2 00000000, parameter3 00000000, parameter4 9cdd4ca0.

Error: (06/08/2013 07:46:23 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID
{A4199E55-EBB9-49E5-AF1A-7A5408B2E206}
to the user NT AUTHORITY\NETWORK SERVICE SID (S-1-5-20). This security permission can be modified using the Component Services administrative tool.

Error: (06/08/2013 07:46:23 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID
{A4199E55-EBB9-49E5-AF1A-7A5408B2E206}
to the user NT AUTHORITY\NETWORK SERVICE SID (S-1-5-20). This security permission can be modified using the Component Services administrative tool.


Microsoft Office Sessions:
=========================

========================= Memory info: ===================================

Percentage of memory in use: 34%
Total physical RAM: 2038.29 MB
Available physical RAM: 1343.1 MB
Total Pagefile: 3929.99 MB
Available Pagefile: 3315.91 MB
Total Virtual: 2047.88 MB
Available Virtual: 1960 MB

========================= Partitions: =====================================

1 Drive c: () (Fixed) (Total:74.53 GB) (Free:53.01 GB) NTFS

========================= Users: ========================================

User accounts for \\HOME-0255181F01

Administrator ASPNET Guest
HelpAssistant SUPPORT_388945a0

========================= Minidump Files ==================================

C:\WINDOWS\Minidump\Mini021012-01.dmp
C:\WINDOWS\Minidump\Mini060813-01.dmp

**** End of log ****
t-risk7
Regular Member
 
Posts: 118
Joined: July 7th, 2010, 12:27 pm

Re: chk dsk

Unread postby Gary R » June 10th, 2013, 2:04 am

Looking over your logs, back soon.
User avatar
Gary R
Administrator
Administrator
 
Posts: 21868
Joined: June 28th, 2005, 11:36 am
Location: Yorkshire

Re: chk dsk

Unread postby Gary R » June 10th, 2013, 4:09 am

According to your logs you appear to have been having problems with Microsoft Security Essentials just lately, and there is a recent infection that targets it, so I'd like to run another scan to see if it's present on your computer.

  • Download FRST to your Desktop.
  • Double click Frst.exe to launch it.
  • FRST will start to run.
    • When the tool opens click Yes to disclaimer.
    • Press the Scan button.
    • When finished scanning 2 logs will open on your Desktop, FRST.txt and Addition.txt
    • Please post them in your next reply.

Next

Your computer created a Crash Dump file when you had your recent Blue Screen issue, which I'd like to have a look at.

  • Please go to C:\Windows\Minidump where you'll find a file Mini060813-01.dmp
  • Please attach it to your next reply.

Please note, the forum software will not permit .dmp files to be attached, so you'll need to rename the file to Mini060813-01.txt to be able to attach it.





.
User avatar
Gary R
Administrator
Administrator
 
Posts: 21868
Joined: June 28th, 2005, 11:36 am
Location: Yorkshire

Re: chk dsk

Unread postby t-risk7 » June 10th, 2013, 5:36 pm

FRST text

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 10-06-2013 03
Ran by Administrator (administrator) on 10-06-2013 17:32:34
Running from C:\Documents and Settings\Administrator\My Documents\Downloads
Microsoft Windows XP Service Pack 3 (X86) OS Language: English(US)
Internet Explorer Version 8
Boot Mode: Normal

==================== Processes (Whitelisted) ===================

(Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\S24EvMon.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Ink\KeyboardSurrogate.exe
(Microsoft Corporation) C:\WINDOWS\SYSTEM32\WISPTIS.EXE
(Intel Corporation) C:\WINDOWS\system32\EtmService.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Sun Microsystems, Inc.) C:\Program Files\Java\jre6\bin\jqs.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
(Matsushita Electric Industrial Co., Ltd.) C:\Program Files\Panasonic\pcinfo\PCInfoPi.exe
(Matsushita Electric Industrial Co., Ltd.) C:\Program Files\Panasonic\pcinfo\PCInfoSV.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(TOSHIBA CORPORATION) c:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Ink\TCServer.exe
(Intel Corporation) C:\WINDOWS\system32\igfxtray.exe
(Intel Corporation) C:\WINDOWS\system32\hkcmd.exe
(Intel Corporation) C:\WINDOWS\system32\igfxpers.exe
(Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Ink\TabTip.exe
(Matsushita Electric Industrial Co., Ltd.) C:\Program Files\Panasonic\WSwitch\WSwitch.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\Core\smax4pnp.exe
(Analog Devices, Inc.) C:\Program Files\Analog Devices\SoundMAX\Smax4.exe
(Matsushita Electric Industrial Co., Ltd.) C:\Program Files\Panasonic\Hotkey Appendix\HKEYAPP.EXE
(Fujitsu Component Limited) C:\Program Files\FIDTPU\WIN2K\FTMSFLTU.EXE
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
(Aobo) C:\Windows\System32\drivers\ABlocker\AoboBlocker.exe
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(BillP Studios) C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Fujitsu Component Ltd.) C:\WINDOWS\system32\RButton.exe
(Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe
(Farbar) C:\Documents and Settings\Administrator\My Documents\Downloads\FSS.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [TabletWizard] C:\WINDOWS\help\SplshWrp.exe [16384 2008-04-13] (Microsoft Corporation)
HKLM\...\Run: [TabletTip] "C:\Program Files\Common Files\microsoft shared\ink\tabtip.exe" /resume [271872 2008-04-13] (Microsoft Corporation)
HKLM\...\Run: [PRunOnce] C:\util\prunonce\PRunOnce.exe [110592 2004-08-06] (Matsushita Electric Industrial Co., Ltd)
HKLM\...\Run: [WSwitch] C:\Program Files\Panasonic\WSwitch\WSwitch.exe [734600 2007-08-23] (Matsushita Electric Industrial Co., Ltd.)
HKLM\...\Run: [SynTPStart] C:\Program Files\Synaptics\SynTP\SynTPStart.exe [204800 2007-07-27] (Synaptics, Inc.)
HKLM\...\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe [868352 2007-03-16] (Analog Devices, Inc.)
HKLM\...\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\Smax4.exe" /tray [839680 2007-05-15] (Analog Devices, Inc.)
HKLM\...\Run: [setfan] "C:\Program Files\Panasonic\setfan\setfan.exe" /resetting [443784 2007-08-09] (Matsushita Electric Industrial Co., Ltd.)
HKLM\...\Run: [Panasonic Hotkey Manager] C:\Program Files\Panasonic\Hotkey Appendix\HKEYAPP.EXE [976264 2007-08-23] (Matsushita Electric Industrial Co., Ltd.)
HKLM\...\Run: [PCinfo] C:\Program Files\Panasonic\pcinfo\PcInfoUt.exe [91528 2007-08-09] (Matsushita Electric Industrial Co., Ltd.)
HKLM\...\Run: [FTMSFLT(USB)] C:\Program Files\FIDTPU\WIN2K\FTMSFLTU.EXE [82063 2011-12-16] (Fujitsu Component Limited)
HKLM\...\Run: [IntelZeroConfig] "C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe" [1372160 2009-05-21] (Intel(R) Corporation)
HKLM\...\Run: [IntelWireless] "C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel Wireless Tray [1202448 2009-05-21] (Intel(R) Corporation)
HKLM\...\Run: [AoboBlocker] C:\Windows\System32\drivers\ABlocker\AoboBlocker.exe [1133568 2011-03-21] (Aobo)
HKLM\...\Run: [WinPatrol] C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe -expressboot [363752 2012-12-09] (BillP Studios)
HKLM\...\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey [947152 2013-01-27] (Microsoft Corporation)
Winlogon\Notify\loginkey: C:\Program Files\Common Files\Microsoft Shared\Ink\loginkey.dll [X]
Winlogon\Notify\TabBtnWL: TabBtnWL.dll (Microsoft Corporation)
Winlogon\Notify\tpgwlnotify: tpgwlnot.dll (Microsoft Corporation)
HKCU\...\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background [x]
MountPoints2: {3f1c68f0-da20-11e0-8c77-000b9751937b} - D:\LaunchU3.exe -a
MountPoints2: {f2c2be6e-da1a-11e0-8c75-000b9751937b} - D:\LaunchU3.exe -a
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM SearchScopes: DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://download.microsoft.com/download/ ... ontrol.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} http://windowsupdate.microsoft.com/wind ... 5420198620
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
Handler: ipp - No CLSID Value -
Handler: msdaipp - No CLSID Value -
ShellExecuteHooks: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll [304128 2009-05-24] (Microsoft Corporation)

Hosts file not detected in the default directory
Tcpip\Parameters: [DhcpNameServer] 192.168.10.1

FireFox:
========
FF ProfilePath: C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\t6zbhib0.default
FF Homepage: hxxp://crossfit.com/
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_6_602_180.dll ()
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin: @java.com/DTPlugin,version=1.6.0_33 - C:\WINDOWS\system32\npdeployJava1.dll (Sun Microsystems, Inc.)
FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.21.124\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.21.124\npGoogleUpdate3.dll (Google Inc.)

Chrome:
=======
CHR HomePage: hxxp://crossfit.com/
CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}sourceid=chrome&ie={inputEncoding}
CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&hl={language}&q={searchTerms}&sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Remoting Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\23.0.1271.97\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\23.0.1271.97\pdf.dll ()
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\23.0.1271.97\gcswf32.dll No File
CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npdrmv2.dll (Microsoft Corporation)
CHR Plugin: (Microsoft\u00AE DRM) - C:\Program Files\Windows Media Player\npwmsdrm.dll (Microsoft Corporation)
CHR Plugin: (Windows Media Player Plug-in Dynamic Link Library) - C:\Program Files\Windows Media Player\npdsplay.dll (Microsoft Corporation (written by Digital Renaissance Inc.))
CHR Plugin: (Google Update) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Update\1.3.21.111\npGoogleUpdate3.dll No File
CHR Plugin: (Foxit Reader Plugin for Mozilla) - C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
CHR Plugin: (Java(TM) Platform SE 6 U31) - C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
CHR Plugin: (Microsoft Office Live Plug-in for Firefox) - C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\4.1.10111.0\npctrl.dll No File
CHR Plugin: (Windows Presentation Foundation) - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
CHR Extension: (Angry Birds) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\aknpkdffaafgjchaibgeefbgmgeghloj\1.5.0.7_0
CHR Extension: (YouTube) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Google Search) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Tetris) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\ffibboppfopdopclepficiljbchadcoo\0.0.0.1_0
CHR Extension: (Gmail) - C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1

========================== Services (Whitelisted) =================

S3 BrYNSvc; C:\Program Files\Browny02\BrYNSvc.exe [245760 2010-01-25] (Brother Industries, Ltd.)
R2 ETMService; C:\WINDOWS\system32\EtmService.exe [217088 2007-09-19] (Intel Corporation)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [20456 2013-01-27] (Microsoft Corporation)
R2 PcInfoPi; C:\Program Files\Panasonic\pcinfo\PCInfoPi.exe [54664 2007-08-26] (Matsushita Electric Industrial Co., Ltd.)
R2 PcInfoSV; C:\Program Files\Panasonic\pcinfo\PCInfoSV.exe [185736 2007-08-26] (Matsushita Electric Industrial Co., Ltd.)
R2 S24EventMonitor; C:\Program Files\Intel\WiFi\bin\S24EvMon.exe [909312 2009-05-21] (Intel(R) Corporation)
S4 HidServ; %SystemRoot%\System32\hidserv.dll [x]
R2 JavaQuickStarterService; "C:\Program Files\Java\jre6\bin\jqs.exe" -service -config "C:\Program Files\Java\jre6\lib\deploy\jqs\jqs.conf" [x]

==================== Drivers (Whitelisted) ====================

S3 BrScnUsb; C:\Windows\System32\DRIVERS\BrScnUsb.sys [15295 2004-10-14] (Brother Industries Ltd.)
R3 Etm; C:\Windows\System32\DRIVERS\EtmDrvMgr.sys [40448 2007-09-19] (Intel Corporation)
R3 EtmCpu; C:\Windows\System32\DRIVERS\EtmDevCpu.sys [19712 2007-09-19] (Intel Corporation)
R3 EtmFan; C:\Windows\System32\DRIVERS\EtmDevFan.sys [9600 2007-09-19] (Intel Corporation)
R3 EtmGmchMem; C:\Windows\System32\DRIVERS\EtmDevGmch.sys [36480 2007-09-19] (Intel Corporation)
R3 EtmTempSense; C:\Windows\System32\DRIVERS\EtmTempSense.sys [12288 2007-09-19] (Intel Corporation)
R3 FIDTPU; C:\Windows\System32\DRIVERS\FIDTPU.sys [27031 2011-12-16] (Fujitsu Component Limited)
R3 HDAudBus; C:\Windows\System32\DRIVERS\HDAudBus.sys [144384 2008-04-13] (Windows (R) Server 2003 DDK provider)
R3 HOTKEY; C:\Windows\System32\DRIVERS\hotkey.sys [19840 2006-11-14] (Matsushita Electric Industrial Co., Ltd.)
R3 HSFHWAZL; C:\Windows\System32\DRIVERS\HSFHWAZL.sys [209664 2006-12-22] (Conexant Systems, Inc.)
R3 HSF_DPV; C:\Windows\System32\DRIVERS\HSF_DPV.sys [988800 2006-12-22] (Conexant Systems, Inc.)
R3 IFXTPM; C:\Windows\System32\DRIVERS\IFXTPM.SYS [36352 2005-10-21] (Infineon Technologies AG)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [195296 2013-01-20] (Microsoft Corporation)
S3 NETw4x32; C:\Windows\System32\DRIVERS\NETw4x32.sys [2211456 2007-08-08] (Intel Corporation)
R3 NETw5x32; C:\Windows\System32\DRIVERS\NETw5x32.sys [4203392 2009-05-28] (Intel Corporation)
R3 NewMisc; C:\Windows\System32\DRIVERS\newmisc.sys [42624 2007-03-02] (Matsushita Electric Industrial Co., Ltd.)
R2 s24trans; C:\Windows\System32\DRIVERS\s24trans.sys [11904 2008-08-13] (Intel Corporation)
R2 SDKEY; C:\Program Files\Panasonic\SDKEY\SDKEY.SYS [13704 2007-07-05] (Matsushita Electric Industrial Co., Ltd.)
R3 yukonwxp; C:\Windows\System32\DRIVERS\yk51x86.sys [265856 2007-08-15] (Marvell)
S4 Abiosdsk; No ImagePath
S4 abp480n5; No ImagePath
S4 adpu160m; No ImagePath
S4 Aha154x; No ImagePath
S4 aic78u2; No ImagePath
S4 aic78xx; No ImagePath
S4 AliIde; No ImagePath
S4 amsint; No ImagePath
S4 asc; No ImagePath
S4 asc3350p; No ImagePath
S4 asc3550; No ImagePath
S4 Atdisk; No ImagePath
S4 cd20xrnt; No ImagePath
S1 Changer; No ImagePath
S4 CmdIde; No ImagePath
S4 Cpqarray; No ImagePath
U4 dac2w2k; No ImagePath
S4 dac960nt; No ImagePath
S4 dpti2o; No ImagePath
S4 hpn; No ImagePath
S1 i2omgmt; No ImagePath
S4 i2omp; No ImagePath
S4 ini910u; No ImagePath
S4 IntelIde; No ImagePath
S1 lbrtfdc; No ImagePath
R1 MpKsl68d72050; \??\c:\Documents and Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{74944F5B-0E16-4A10-B6FE-5B7091463AB4}\MpKsl68d72050.sys [x]
S4 mraid35x; No ImagePath
S1 PCIDump; No ImagePath
S3 PDCOMP; No ImagePath
S3 PDFRAME; No ImagePath
S3 PDRELI; No ImagePath
S3 PDRFRAME; No ImagePath
S4 perc2; No ImagePath
S4 perc2hib; No ImagePath
S4 ql1080; No ImagePath
S4 Ql10wnt; No ImagePath
S4 ql12160; No ImagePath
S4 ql1240; No ImagePath
S4 ql1280; No ImagePath
S4 Simbad; No ImagePath
S4 Sparrow; No ImagePath
S4 symc810; No ImagePath
S4 symc8xx; No ImagePath
S4 sym_hi; No ImagePath
S4 sym_u3; No ImagePath
S4 TosIde; No ImagePath
S4 ultra; No ImagePath
S4 ViaIde; No ImagePath
S3 WDICA; No ImagePath
U1 WS2IFSL;

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-06-10 17:32 - 2013-06-10 17:32 - 00000000 ____D C:\FRST
2013-06-09 06:54 - 2013-06-09 06:56 - 00018940 ____A C:\Documents and Settings\Administrator\Desktop\attach.txt
2013-06-09 06:54 - 2013-06-09 06:55 - 00010226 ____A C:\Documents and Settings\Administrator\Desktop\dds.txt
2013-06-08 19:46 - 2013-06-08 19:46 - 00090112 ____A C:\Windows\Minidump\Mini060813-01.dmp
2013-06-06 08:01 - 2013-06-09 13:24 - 00000384 ___AH C:\Windows\Tasks\Microsoft Antimalware Scheduled Scan.job
2013-05-30 07:28 - 2013-05-30 07:29 - 00000000 ____D C:\Documents and Settings\Administrator\Desktop\Neck Article CF Journal
2013-05-26 15:02 - 2008-04-13 20:12 - 00159232 ____A (Microsoft Corporation) C:\Windows\System32\ptpusd.dll
2013-05-26 15:02 - 2008-04-13 14:45 - 00015104 ___AC (Microsoft Corporation) C:\Windows\System32\dllcache\usbscan.sys
2013-05-26 15:02 - 2008-04-13 14:45 - 00015104 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\usbscan.sys
2013-05-26 15:02 - 2001-08-17 22:36 - 00005632 ____A (Microsoft Corporation) C:\Windows\System32\ptpusb.dll
2013-05-17 12:32 - 2013-05-17 12:32 - 00000000 ____D C:\Documents and Settings\LocalService\Application Data\Foxit Software
2013-05-17 12:31 - 2013-05-17 12:31 - 00001703 ____A C:\Documents and Settings\All Users\Desktop\Foxit Reader.lnk
2013-05-15 23:57 - 2013-05-15 23:57 - 00011299 ____A C:\Windows\KB2829530-IE8.log
2013-05-15 23:52 - 2013-05-15 23:52 - 00005460 ____A C:\Windows\KB2847204-IE8.log
2013-05-15 23:51 - 2013-05-15 23:51 - 00006512 ____A C:\Windows\KB2820197.log
2013-05-15 23:51 - 2013-05-15 23:51 - 00000000 __HDC C:\Windows\$NtUninstallKB2820197$
2013-05-15 23:47 - 2013-05-15 23:47 - 00000000 __HDC C:\Windows\$NtUninstallKB2829361$
2013-05-15 05:06 - 2013-05-15 23:47 - 00009915 ____A C:\Windows\KB2829361.log

==================== One Month Modified Files and Folders ========

2013-06-10 17:32 - 2013-06-10 17:32 - 00000000 ____D C:\FRST
2013-06-10 12:40 - 2007-11-06 20:52 - 01859103 ____A C:\Windows\WindowsUpdate.log
2013-06-09 13:24 - 2013-06-06 08:01 - 00000384 ___AH C:\Windows\Tasks\Microsoft Antimalware Scheduled Scan.job
2013-06-09 13:13 - 2011-12-18 15:00 - 00000159 ____A C:\Windows\wiadebug.log
2013-06-09 13:13 - 2011-12-18 15:00 - 00000048 ____A C:\Windows\wiaservc.log
2013-06-09 13:13 - 2007-11-06 20:58 - 00000062 __ASH C:\Documents and Settings\NetworkService\Local Settings\desktop.ini
2013-06-09 13:13 - 2007-11-06 20:58 - 00000062 __ASH C:\Documents and Settings\LocalService\Local Settings\desktop.ini
2013-06-09 13:13 - 2007-11-06 20:58 - 00000062 __ASH C:\Documents and Settings\Administrator\Local Settings\desktop.ini
2013-06-09 13:13 - 2007-11-06 20:58 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2013-06-09 06:56 - 2013-06-09 06:54 - 00018940 ____A C:\Documents and Settings\Administrator\Desktop\attach.txt
2013-06-09 06:55 - 2013-06-09 06:54 - 00010226 ____A C:\Documents and Settings\Administrator\Desktop\dds.txt
2013-06-08 21:06 - 2007-11-06 20:58 - 00032594 ____A C:\Windows\SchedLgU.Txt
2013-06-08 21:06 - 2007-11-06 20:58 - 00000178 ___SH C:\Documents and Settings\Administrator\ntuser.ini
2013-06-08 19:48 - 2012-12-07 05:54 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-06-08 19:46 - 2013-06-08 19:46 - 00090112 ____A C:\Windows\Minidump\Mini060813-01.dmp
2013-06-08 19:46 - 2012-02-10 18:36 - 00000000 ____D C:\Windows\Minidump
2013-06-08 19:46 - 2007-11-06 12:20 - 00004706 ____A C:\Windows\System32\wpa.dbl
2013-06-06 07:46 - 2012-01-10 20:37 - 00000000 ____D C:\Documents and Settings\Administrator\Application Data\WinPatrol
2013-06-05 20:48 - 2012-01-16 12:58 - 00005619 ___AC C:\Windows\wmsetup.log
2013-05-30 07:29 - 2013-05-30 07:28 - 00000000 ____D C:\Documents and Settings\Administrator\Desktop\Neck Article CF Journal
2013-05-26 15:02 - 2011-12-16 23:10 - 00342550 ____A C:\Windows\setupapi.log
2013-05-17 12:32 - 2013-05-17 12:32 - 00000000 ____D C:\Documents and Settings\LocalService\Application Data\Foxit Software
2013-05-17 12:32 - 2012-03-16 13:05 - 00000000 ____D C:\Documents and Settings\Administrator\Application Data\Foxit Software
2013-05-17 12:31 - 2013-05-17 12:31 - 00001703 ____A C:\Documents and Settings\All Users\Desktop\Foxit Reader.lnk
2013-05-17 12:31 - 2012-03-16 12:52 - 00000000 ____D C:\Program Files\Foxit Software
2013-05-16 03:16 - 2007-11-06 12:46 - 00267800 ____A C:\Windows\System32\FNTCACHE.DAT
2013-05-16 00:00 - 2007-11-06 20:50 - 00000000 ____D C:\Windows\Microsoft.Net
2013-05-15 23:58 - 2011-12-16 21:46 - 00000000 ____D C:\Documents and Settings\All Users\Application Data\Microsoft Help
2013-05-15 23:57 - 2013-05-15 23:57 - 00011299 ____A C:\Windows\KB2829530-IE8.log
2013-05-15 23:57 - 2012-01-12 19:15 - 00036313 ____A C:\Windows\updspapi.log
2013-05-15 23:57 - 2011-12-18 14:59 - 00455083 ____A C:\Windows\FaxSetup.log
2013-05-15 23:57 - 2011-12-18 14:59 - 00215788 ____A C:\Windows\ocgen.log
2013-05-15 23:57 - 2011-12-18 14:59 - 00150724 ____A C:\Windows\comsetup.log
2013-05-15 23:57 - 2011-12-18 14:59 - 00137968 ____A C:\Windows\msmqinst.log
2013-05-15 23:57 - 2011-12-18 14:59 - 00091111 ____A C:\Windows\ntdtcsetup.log
2013-05-15 23:57 - 2011-12-18 14:59 - 00079059 ____A C:\Windows\netfxocm.log
2013-05-15 23:57 - 2011-12-18 14:59 - 00031025 ____A C:\Windows\MedCtrOC.log
2013-05-15 23:57 - 2011-12-18 14:59 - 00024877 ____A C:\Windows\ocmsn.log
2013-05-15 23:57 - 2011-12-18 14:59 - 00022664 ____A C:\Windows\tabletoc.log
2013-05-15 23:57 - 2011-12-18 14:59 - 00022557 ____A C:\Windows\msgsocm.log
2013-05-15 23:57 - 2011-12-18 14:59 - 00001374 ____A C:\Windows\imsins.log
2013-05-15 23:57 - 2011-12-16 23:10 - 00488989 ____A C:\Windows\iis6.log
2013-05-15 23:57 - 2011-12-16 23:10 - 00211253 ____A C:\Windows\tsoc.log
2013-05-15 23:56 - 2007-11-06 12:47 - 00535886 ____A C:\Windows\System32\PerfStringBackup.INI
2013-05-15 23:52 - 2013-05-15 23:52 - 00005460 ____A C:\Windows\KB2847204-IE8.log
2013-05-15 23:52 - 2011-12-18 14:59 - 00001374 ____A C:\Windows\imsins.BAK
2013-05-15 23:52 - 2011-09-07 16:09 - 00000000 ____D C:\Windows\ie8updates
2013-05-15 23:51 - 2013-05-15 23:51 - 00006512 ____A C:\Windows\KB2820197.log
2013-05-15 23:51 - 2013-05-15 23:51 - 00000000 __HDC C:\Windows\$NtUninstallKB2820197$
2013-05-15 23:51 - 2007-11-06 21:03 - 00000000 ___HD C:\Windows\$hf_mig$
2013-05-15 23:47 - 2013-05-15 23:47 - 00000000 __HDC C:\Windows\$NtUninstallKB2829361$
2013-05-15 23:47 - 2013-05-15 05:06 - 00009915 ____A C:\Windows\KB2829361.log
2013-05-15 23:47 - 2011-09-07 16:06 - 72607752 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe

==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

==================== End Of Log ============================
t-risk7
Regular Member
 
Posts: 118
Joined: July 7th, 2010, 12:27 pm

Re: chk dsk

Unread postby t-risk7 » June 10th, 2013, 5:37 pm

Addition log:

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 10-06-2013 03
Ran by Administrator at 2013-06-10 17:33:59 Run:
Running from C:\Documents and Settings\Administrator\My Documents\Downloads
Boot Mode: Normal
==========================================================


==================== Installed Programs =======================

Adobe Flash Player 11 ActiveX (Version: 11.2.202.228)
Adobe Flash Player 11 Plugin (Version: 11.6.602.180)
Amazon Kindle
AnalogX Script Defender
Battery Recalibration (Version: V2.00L15 M00)
Bluetooth Stack for Windows by Toshiba (Version: v5.10.14(P))
Brother MFL-Pro Suite MFC-J265W (Version: 1.0.3.0)
Compatibility Pack for the 2007 Office system (Version: 12.0.6612.1000)
Display Rotation Tool
DMI Viewer
Economy Mode(ECO) Setting Utility (Version: V2.00L11 M00)
Fan Control Utility (Version: V1.01L10 M00)
Foxit Reader (Version: 6.0.2.413)
Fujitsu Touch Panel (USB)
Glary Utilities 2.32.0.1126 (Version: 2.32.0.1126)
Google Chrome (Version: 23.0.1271.97)
Google Update Helper (Version: 1.3.21.123)
HDAUDIO Soft Data Fax Modem with SmartCP
Hotkey Appendix (Version: V7.00L15 M00)
Hotkey Settings (Version: V2.00L11 M00)
Icon Enlarger
Intel PROSet Wireless
Intel(R) Extended Thermal Model
Intel(R) Graphics Media Accelerator Driver
Intel(R) Matrix Storage Manager
Intel(R) PROSet/Wireless WiFi Software (Version: 12.04.3000)
Java Auto Updater (Version: 2.0.7.1)
Java(TM) 6 Update 33 (Version: 6.0.330)
LAN Power-Saving Utility (Version: V2.00L12 M02)
Loupe Utility (Version: V2.00L12 M00)
Malwarebytes Anti-Malware version 1.75.0.1300 (Version: 1.75.0.1300)
Marvell Miniport Driver (Version: 10.22.4.3)
Microsoft .NET Framework 1.0 Hotfix (KB2604042)
Microsoft .NET Framework 1.0 Hotfix (KB2656378)
Microsoft .NET Framework 1.0 Security Update (KB2698035)
Microsoft .NET Framework 1.0 Security Update (KB2742607)
Microsoft .NET Framework 1.1 (Version: 1.1.4322)
Microsoft .NET Framework 1.1 Security Update (KB2698023)
Microsoft .NET Framework 1.1 Security Update (KB2742597)
Microsoft .NET Framework 2.0 Service Pack 2 (Version: 2.2.30729)
Microsoft .NET Framework 3.0 Service Pack 2 (Version: 3.2.30729)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft Application Error Reporting (Version: 12.0.6012.5000)
Microsoft Base Smart Card Cryptographic Service Provider Package
Microsoft Choice Guard (Version: 2.0.48.0)
Microsoft Compression Client Pack 1.0 for Windows XP (Version: 1)
Microsoft Kernel-Mode Driver Framework Feature Pack 1.1
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Access MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Access Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Enterprise 2007 (Version: 12.0.6612.1000)
Microsoft Office Excel MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office File Validation Add-In (Version: 14.0.5130.5003)
Microsoft Office Groove MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Groove Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office InfoPath MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Live Add-in 1.5 (Version: 2.0.4024.1)
Microsoft Office OneNote MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Outlook Connector (Version: 12.0.6423.1000)
Microsoft Office Outlook MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office PowerPoint MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (French) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (Spanish) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proofing (English) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Publisher MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Word MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Security Client (Version: 4.2.0223.1)
Microsoft Security Essentials (Version: 4.2.223.1)
Microsoft Silverlight (Version: 5.1.20125.0)
Microsoft Software Update for Web Folders (English) 12 (Version: 12.0.6612.1000)
Microsoft User-Mode Driver Framework Feature Pack 1.0
Mozilla Firefox 17.0.1 (x86 en-US) (Version: 17.0.1)
Mozilla Maintenance Service (Version: 17.0.1)
MSXML 4.0 SP2 (KB927978) (Version: 4.20.9841.0)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
MSXML 6.0 Parser (KB933579) (Version: 6.10.1200.0)
Panasonic Common Components (Version: 1.00.1100)
PC Information Popup (Version: V1.00L11 M01)
PC Information Viewer (Version: V5.00L13 M00)
Power Saving Utility (Version: V3.01L10 M03)
SD Utility
SoundMAX (Version: 5.10.01.6260)
Synaptics Pointing Device Driver (Version: 10.0.9.0)
Touch Pad Utility (Version: V4.00L14 M00)
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596802) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition
Update for Microsoft Office Access 2007 Help (KB963663)
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office Infopath 2007 Help (KB963662)
Update for Microsoft Office OneNote 2007 Help (KB963670)
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition
Update for Microsoft Office Outlook 2007 Help (KB963677)
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2817359) 32-Bit Edition
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Publisher 2007 Help (KB963667)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 Help (KB963665)
Update for Windows Internet Explorer 8 (KB2447568) (Version: 1)
Update for Windows Internet Explorer 8 (KB2598845) (Version: 1)
Update for Windows XP (KB2661254-v2) (Version: 2)
Update for Windows XP (KB2718704) (Version: 1)
Update for Windows XP (KB2736233) (Version: 1)
Update for Windows XP (KB2749655) (Version: 1)
WebFldrs XP (Version: 9.50.7523)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Internet Explorer 8 (Version: 20090308.140743)
Windows Live Sign-in Assistant (Version: 5.000.818.5)
Windows Live Sync (Version: 14.0.8117.416)
Windows Live Upload Tool (Version: 14.0.8014.1029)
Windows Management Framework Core
Windows Media Format 11 runtime
Windows Media Player 11
Windows Search 4.0 (Version: 04.00.6001.503)
Windows XP Service Pack 3 (Version: 20080414.031525)
WinPatrol (Version: 26.0.2013.0)
Wireless Switch Utility (Version: V3.03L12 M00)

==================== Restore Points =========================

12-03-2013 20:53:02 Software Distribution Service 3.0
13-03-2013 21:49:28 Software Distribution Service 3.0
14-03-2013 00:32:29 Software Distribution Service 3.0
15-03-2013 02:41:32 System Checkpoint
15-03-2013 12:23:42 Software Distribution Service 3.0
16-03-2013 12:51:10 Software Distribution Service 3.0
17-03-2013 11:54:21 Software Distribution Service 3.0
18-03-2013 15:29:19 System Checkpoint
18-03-2013 18:16:43 Software Distribution Service 3.0
19-03-2013 18:17:01 Software Distribution Service 3.0
20-03-2013 18:15:59 Software Distribution Service 3.0
21-03-2013 18:34:34 Software Distribution Service 3.0
22-03-2013 19:01:30 System Checkpoint
22-03-2013 20:10:32 Software Distribution Service 3.0
23-03-2013 20:16:08 System Checkpoint
23-03-2013 23:07:25 Software Distribution Service 3.0
25-03-2013 03:36:57 Software Distribution Service 3.0
26-03-2013 04:32:19 System Checkpoint
26-03-2013 18:15:45 Software Distribution Service 3.0
27-03-2013 18:05:33 Software Distribution Service 3.0
28-03-2013 18:05:42 Software Distribution Service 3.0
29-03-2013 18:05:44 Software Distribution Service 3.0
31-03-2013 00:38:57 Software Distribution Service 3.0
31-03-2013 12:20:00 Software Distribution Service 3.0
01-04-2013 16:57:18 System Checkpoint
02-04-2013 12:08:15 Software Distribution Service 3.0
03-04-2013 13:51:52 System Checkpoint
03-04-2013 13:52:28 Software Distribution Service 3.0
04-04-2013 15:25:01 Software Distribution Service 3.0
05-04-2013 15:43:42 System Checkpoint
06-04-2013 02:47:59 Software Distribution Service 3.0
07-04-2013 03:28:50 System Checkpoint
07-04-2013 11:04:48 Software Distribution Service 3.0
08-04-2013 11:15:37 Software Distribution Service 3.0
09-04-2013 11:42:17 Software Distribution Service 3.0
10-04-2013 12:17:28 Software Distribution Service 3.0
10-04-2013 16:21:18 Software Distribution Service 3.0
11-04-2013 12:49:47 Software Distribution Service 3.0
12-04-2013 13:41:33 System Checkpoint
12-04-2013 19:56:27 Software Distribution Service 3.0
13-04-2013 20:03:38 Software Distribution Service 3.0
14-04-2013 20:58:12 Software Distribution Service 3.0
16-04-2013 01:18:57 Software Distribution Service 3.0
17-04-2013 03:31:22 Software Distribution Service 3.0
18-04-2013 03:59:34 System Checkpoint
19-04-2013 02:06:43 Software Distribution Service 3.0
20-04-2013 02:56:28 System Checkpoint
20-04-2013 11:48:07 Software Distribution Service 3.0
21-04-2013 14:04:29 System Checkpoint
21-04-2013 15:35:33 Software Distribution Service 3.0
22-04-2013 19:11:41 Software Distribution Service 3.0
23-04-2013 19:27:31 System Checkpoint
24-04-2013 13:56:05 Software Distribution Service 3.0
25-04-2013 14:17:23 System Checkpoint
25-04-2013 17:46:14 Software Distribution Service 3.0
26-04-2013 22:51:33 Software Distribution Service 3.0
28-04-2013 00:28:22 System Checkpoint
28-04-2013 11:42:34 Software Distribution Service 3.0
28-04-2013 12:55:45 Software Distribution Service 3.0
29-04-2013 17:46:12 Software Distribution Service 3.0
30-04-2013 18:37:27 System Checkpoint
01-05-2013 01:59:49 Software Distribution Service 3.0
02-05-2013 03:09:39 System Checkpoint
02-05-2013 05:58:31 Software Distribution Service 3.0
03-05-2013 06:02:11 Software Distribution Service 3.0
04-05-2013 01:40:51 Software Distribution Service 3.0
05-05-2013 02:07:52 Software Distribution Service 3.0
06-05-2013 02:06:59 Software Distribution Service 3.0
07-05-2013 02:56:41 System Checkpoint
07-05-2013 12:42:14 Software Distribution Service 3.0
08-05-2013 12:31:36 Software Distribution Service 3.0
09-05-2013 13:07:26 System Checkpoint
10-05-2013 02:49:12 Software Distribution Service 3.0
11-05-2013 02:52:05 System Checkpoint
11-05-2013 09:24:19 Software Distribution Service 3.0
12-05-2013 13:18:53 System Checkpoint
12-05-2013 19:48:54 Software Distribution Service 3.0
13-05-2013 19:52:55 System Checkpoint
14-05-2013 16:15:06 Software Distribution Service 3.0
15-05-2013 16:16:49 Software Distribution Service 3.0
16-05-2013 03:46:39 Software Distribution Service 3.0
16-05-2013 16:47:35 Software Distribution Service 3.0
17-05-2013 16:32:43 Printer Driver Foxit Reader PDF Printer Driver Installed
17-05-2013 18:26:55 Software Distribution Service 3.0
19-05-2013 01:54:26 Software Distribution Service 3.0
19-05-2013 12:13:31 Software Distribution Service 3.0
20-05-2013 13:01:01 System Checkpoint
20-05-2013 13:39:47 Software Distribution Service 3.0
21-05-2013 02:08:53 Software Distribution Service 3.0
22-05-2013 02:12:23 Software Distribution Service 3.0
23-05-2013 01:27:40 Software Distribution Service 3.0
24-05-2013 01:28:46 Software Distribution Service 3.0
25-05-2013 01:29:50 Software Distribution Service 3.0
26-05-2013 01:47:36 Software Distribution Service 3.0
27-05-2013 02:22:07 System Checkpoint
27-05-2013 12:22:44 Software Distribution Service 3.0
28-05-2013 13:15:43 System Checkpoint
28-05-2013 21:23:49 Software Distribution Service 3.0
29-05-2013 21:23:47 Software Distribution Service 3.0
30-05-2013 21:23:46 Software Distribution Service 3.0
31-05-2013 21:25:41 Software Distribution Service 3.0
02-06-2013 05:31:50 Software Distribution Service 3.0
02-06-2013 12:17:43 Software Distribution Service 3.0
03-06-2013 15:10:39 System Checkpoint
03-06-2013 15:22:21 Software Distribution Service 3.0
04-06-2013 15:12:45 Software Distribution Service 3.0
05-06-2013 15:12:38 Software Distribution Service 3.0
06-06-2013 12:02:09 Software Distribution Service 3.0
08-06-2013 23:57:00 Software Distribution Service 3.0
10-06-2013 00:17:29 System Checkpoint
10-06-2013 11:44:13 Software Distribution Service 3.0

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (06/06/2013 08:00:48 AM) (Source: Application Hang) (User: )
Description: Hanging application WinPatrolEx.exe, version 26.0.2013.0, hang module hungapp, version 0.0.0.0, hang address 0x00000000.

Error: (06/05/2013 09:12:54 AM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 microsoft security essentials (edb4fa23-53b8-4afa-8c5d-99752cca7094), P2 4.2.223.0, P3 timeout, P4 1.1.9506.0, P5 fixed, P6 2 _ 2048, P7 5 _ not boot, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.

Error: (06/05/2013 09:08:47 AM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 microsoft security essentials (edb4fa23-53b8-4afa-8c5d-99752cca7094), P2 4.2.223.0, P3 timeout, P4 1.1.9506.0, P5 fixed, P6 2 _ 2048, P7 5 _ not boot, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.

Error: (06/05/2013 09:04:28 AM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 microsoft security essentials (edb4fa23-53b8-4afa-8c5d-99752cca7094), P2 4.2.223.0, P3 timeout, P4 1.1.9506.0, P5 fixed, P6 2 _ 2048, P7 5 _ not boot, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.

Error: (06/05/2013 08:59:32 AM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 microsoft security essentials (edb4fa23-53b8-4afa-8c5d-99752cca7094), P2 4.2.223.0, P3 timeout, P4 1.1.9506.0, P5 fixed, P6 2 _ 2048, P7 5 _ not boot, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.

Error: (06/05/2013 08:55:38 AM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 microsoft security essentials (edb4fa23-53b8-4afa-8c5d-99752cca7094), P2 4.2.223.0, P3 timeout, P4 1.1.9506.0, P5 fixed, P6 2 _ 2048, P7 5 _ not boot, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.

Error: (06/05/2013 08:51:05 AM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 microsoft security essentials (edb4fa23-53b8-4afa-8c5d-99752cca7094), P2 4.2.223.0, P3 timeout, P4 1.1.9506.0, P5 fixed, P6 2 _ 2048, P7 5 _ not boot, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.

Error: (06/04/2013 00:38:06 PM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 microsoft security essentials (edb4fa23-53b8-4afa-8c5d-99752cca7094), P2 4.2.223.0, P3 timeout, P4 1.1.9506.0, P5 fixed, P6 2 _ 2048, P7 5 _ not boot, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.

Error: (06/04/2013 00:34:01 PM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 microsoft security essentials (edb4fa23-53b8-4afa-8c5d-99752cca7094), P2 4.2.223.0, P3 timeout, P4 1.1.9506.0, P5 fixed, P6 2 _ 2048, P7 5 _ not boot, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.

Error: (06/04/2013 00:29:37 PM) (Source: MPSampleSubmission) (User: )
Description: EventType mptelemetry, P1 microsoft security essentials (edb4fa23-53b8-4afa-8c5d-99752cca7094), P2 4.2.223.0, P3 timeout, P4 1.1.9506.0, P5 fixed, P6 2 _ 2048, P7 5 _ not boot, P8 NIL, P9 mptelemetry0, P10 mptelemetry1.


System errors:
=============
Error: (06/09/2013 01:14:14 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID
{A4199E55-EBB9-49E5-AF1A-7A5408B2E206}
to the user NT AUTHORITY\NETWORK SERVICE SID (S-1-5-20). This security permission can be modified using the Component Services administrative tool.

Error: (06/09/2013 01:14:14 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID
{A4199E55-EBB9-49E5-AF1A-7A5408B2E206}
to the user NT AUTHORITY\NETWORK SERVICE SID (S-1-5-20). This security permission can be modified using the Component Services administrative tool.

Error: (06/09/2013 01:14:14 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID
{A4199E55-EBB9-49E5-AF1A-7A5408B2E206}
to the user NT AUTHORITY\NETWORK SERVICE SID (S-1-5-20). This security permission can be modified using the Component Services administrative tool.

Error: (06/09/2013 06:46:17 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID
{A4199E55-EBB9-49E5-AF1A-7A5408B2E206}
to the user NT AUTHORITY\NETWORK SERVICE SID (S-1-5-20). This security permission can be modified using the Component Services administrative tool.

Error: (06/09/2013 06:46:17 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID
{A4199E55-EBB9-49E5-AF1A-7A5408B2E206}
to the user NT AUTHORITY\NETWORK SERVICE SID (S-1-5-20). This security permission can be modified using the Component Services administrative tool.

Error: (06/09/2013 06:46:17 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID
{A4199E55-EBB9-49E5-AF1A-7A5408B2E206}
to the user NT AUTHORITY\NETWORK SERVICE SID (S-1-5-20). This security permission can be modified using the Component Services administrative tool.

Error: (06/08/2013 07:46:41 PM) (Source: Dhcp) (User: )
Description: The IP address lease 192.168.10.102 for the Network Card with network address 001DE090E839 has been
denied by the DHCP server 192.168.10.1 (The DHCP Server sent a DHCPNACK message).

Error: (06/08/2013 07:46:34 PM) (Source: System Error) (User: )
Description: Error code 00000077, parameter1 00000001, parameter2 00000000, parameter3 00000000, parameter4 9cdd4ca0.

Error: (06/08/2013 07:46:23 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID
{A4199E55-EBB9-49E5-AF1A-7A5408B2E206}
to the user NT AUTHORITY\NETWORK SERVICE SID (S-1-5-20). This security permission can be modified using the Component Services administrative tool.

Error: (06/08/2013 07:46:23 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID
{A4199E55-EBB9-49E5-AF1A-7A5408B2E206}
to the user NT AUTHORITY\NETWORK SERVICE SID (S-1-5-20). This security permission can be modified using the Component Services administrative tool.


Microsoft Office Sessions:
=========================

==================== Memory info ===========================

Percentage of memory in use: 46%
Total physical RAM: 2038.29 MB
Available physical RAM: 1091.88 MB
Total Pagefile: 3929.99 MB
Available Pagefile: 3169.82 MB
Total Virtual: 2047.88 MB
Available Virtual: 1944.62 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:74.53 GB) (Free:52.87 GB) NTFS ==>[Drive with boot components (Windows XP)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows XP) (Size: 75 GB) (Disk ID: F1CAD950)
Partition 1: (Active) - (Size=75 GB) - (Type=07 NTFS)

==================== End Of Log ============================
t-risk7
Regular Member
 
Posts: 118
Joined: July 7th, 2010, 12:27 pm

Re: chk dsk

Unread postby t-risk7 » June 10th, 2013, 5:46 pm

here is minidump
You do not have the required permissions to view the files attached to this post.
t-risk7
Regular Member
 
Posts: 118
Joined: July 7th, 2010, 12:27 pm
Advertisement
Register to Remove

Next

Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 60 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware