Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

CD not showing up in My Computer

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

CD not showing up in My Computer

Unread postby Patsy » November 1st, 2005, 1:18 pm

Computer is changing. Not recognizine my camera.. can't play cd music anymore. Found one virus with AVG... had to do with Quick Time Player. Ran AVG this am, and it says I am clean. Did Panda scan with no virus found. AdAware finds nothing.

Logfile of HijackThis v1.99.1
Scan saved at 11:09:38 AM, on 11/1/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\fxssvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\S3apphk.exe
C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\evntsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Silicon Image\SiISATARaid\SATARaid.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\Netscape\Netscape\Netscp.exe
C:\Documents and Settings\Owner\Desktop\HijackThis.exe

N3 - Netscape 7: user_pref("browser.startup.homepage", "http://www.chron.com/content/news/"); (C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\prefs.js)
N3 - Netscape 7: user_pref("browser.search.defaultengine", "engine://C%3A%5CProgram%20Files%5CNetscape%5CNetscape%5Csearchplugins%5CSBWeb_01.src"); (C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\prefs.js)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Freedom BHO - {56071E0D-C61B-11D3-B41C-00E02927A304} - C:\Program Files\Zero Knowledge\Freedom\FreeBHOR.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - c:\Program Files\Microsoft Money\System\mnyviewer.dll
O3 - Toolbar: &hp toolkit - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - C:\HP\EXPLOREBAR\HPTOOLKT.DLL
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
O4 - HKLM\..\Run: [S3apphk] S3apphk.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\evntsvc.exe -osboot
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [PinnacleDriverCheck] C:\WINDOWS\system32\PSDrvCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Microsoft Works Update Detection] c:\Program Files\Microsoft Works\WkDetect.exe
O4 - Global Startup: hp psc 1000 series.lnk.disabled
O4 - Global Startup: hpoddt01.exe.lnk.disabled
O4 - Global Startup: SATARaid.lnk = ?
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar4.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar4.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar4.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar4.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar4.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar4.dll/cmtrans.html
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - c:\Program Files\Microsoft Money\System\mnyviewer.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan ... asinst.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{A22A058E-FA03-4678-AFCE-F2E1C96D65A9}: NameServer = 209.63.0.6 207.173.86.6
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
Patsy
Regular Member
 
Posts: 28
Joined: June 13th, 2005, 9:54 am
Advertisement
Register to Remove

Unread postby LDTate » November 3rd, 2005, 8:39 pm

Patsy, please don't create more then one topic. It waste alot of time for our helpers. I will remove this post. Please refer to your log here
http://www.malwareremoval.com/forum/viewtopic.php?t=5016
User avatar
LDTate
WTT Teacher
WTT Teacher
 
Posts: 3920
Joined: February 18th, 2005, 8:38 pm
Location: Missouri, USA

Unread postby askey127 » November 3rd, 2005, 8:44 pm

Patsy,
Welcome to MWR.

I'll be helping you with your log.
Be back shortly.

askey127
User avatar
askey127
Admin/Teacher
Admin/Teacher
 
Posts: 14025
Joined: April 17th, 2005, 3:25 pm
Location: New Hampshire USA

Unread postby askey127 » November 3rd, 2005, 9:13 pm

Patsy,

Is your Internet provided by Electric Lightwave?
Does your PC have a floppy drive?
Nothing in your log stands out as a potential villain, but that doesn't mean there's nothing there.

You may want to print this out or save it to a Notepad file on your desktop, as you will not have Internet access to see this during the parts that are in Safe mode.
-----------------------------------------------------------
Let's do a hard drive check first.
Click on Start, Programs, Accessories, Command Prompt.
When the black DOS window appears, type chkdsk c:
When it finishes the 3-stage scan, notice if it finds any bad files or sectors.
If it finds anything defective, write down what it is, and include it in your reply.
Click the window "X" to exit the command window.
-----------------------------------------------------------
Download F-Secure's trial Blacklight program :
http://www.f-secure.com/blacklight/try.shtml
Print out the help page for guidance.
Ok the license.
Check scan through Windows Explorer
Click Scan
When animated graphics disappears, click Next
Note any files and their locations that appear in the output summary.
-----------------------------------------------------------
Please download, install, and update the free trial version of Ewido trojan scanner: from here : http://www.ewido.net/en/download/
There is an unofficial set of instructions in pdf format here : http://www.greyknight17.com/spy/Tutorials/ewidoQuickGuide.pdf
* Install ewido security suite
* When installing, under "Additional Options", Uncheck "Install background guard" and Uncheck "Install scan via context menu".
* Launch ewido, there should now be an icon on your desktop. Double-click it.
* The program will go to its main screen
* On the left hand side of the main screen click Update.
* Then click on Start Update.
The update will start and a progress bar will show the updates being installed.
If you are having problems with the updater, you can also use the same download link http://www.ewido.net/en/download/ to manually update ewido.
-----------------------------------------------------------
Start Your Computer in Safe Mode.
Reboot into Safe Mode by hitting the F8 key repeatedly as the machine boots, until a menu shows up. Choose Safe Mode from the list.
In some systems, this may be the F5 key, so try that if F8 doesn't work.
-----------------------------------------------------------
Close all open windows/programs/folders. Have Nothing else open while ewido performs its scan!.
It's extremely important not to open any windows while the scan is in progress.
Now Run Ewido
* Click on scanner
* Click on Settings
* Under "How to scan" all boxes should be selected
* Under "Possibly unwanted software" all boxes should be selected
* Under "What to scan" select scan every file
* Click OK
* Click on Complete system scan
* Let the program scan the machine
* If ewido finds anything, it will pop up a notification.
* Let it fix whatever it finds
Once the scan has completed, there will be a button located on the bottom of the screen named Save report.
* Click Save report
* Save the report to your desktop
* Exit ewido
When you compose your reply, paste the contents of the report into it..

So, to summarize, pls answer about the ISP, the floppy drive, include any defects found by chkdsk, anything found by F-Secure's Blacklight, and the entire Ewido report.

askey127
User avatar
askey127
Admin/Teacher
Admin/Teacher
 
Posts: 14025
Joined: April 17th, 2005, 3:25 pm
Location: New Hampshire USA

Unread postby Patsy » November 4th, 2005, 1:10 am

Askey,

Thank you so much for helping me. I think I was having withdrawal symptoms from not being able to play on my computer.

My server is EV1.net (Everyone Internet).
I do have a floppy drive... but haven't used it in quite a while.
-----------
Hard Drive Check
Microsoft Windows XP [Version 5.1.2600]
(C) Copyright 1985-2001 Microsoft Corp.

C:\Documents and Settings\Owner>chkdsk c:
The type of the file system is NTFS.
Volume label is HP_PAVILION.

WARNING! F parameter not specified.
Running CHKDSK in read-only mode.

CHKDSK is verifying files (stage 1 of 3)...
File verification completed.
CHKDSK is verifying indexes (stage 2 of 3)...
Index verification completed.
CHKDSK is recovering lost files.
CHKDSK is verifying security descriptors (stage 3 of 3)...
Security descriptor verification completed.
CHKDSK discovered free space marked as allocated in the
master file table (MFT) bitmap.
CHKDSK discovered free space marked as allocated in the volume bitmap.
Windows found problems with the file system.
Run CHKDSK with the /F (fix) option to correct these.

73052279 KB total disk space.
19964380 KB in 76541 files.
24024 KB in 4256 indexes.
0 KB in bad sectors.
149427 KB in use by the system.
65536 KB occupied by the log file.
52914448 KB available on disk.

4096 bytes in each allocation unit.
18263069 total allocation units on disk.
13228612 allocation units available on disk.
---------------------------------------------
Blacklight found nothing at all.
--------------------------------------------------


---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------

+ Created on: 10:41:43 PM, 11/3/2005
+ Report-Checksum: 13021DF6

+ Scan result:

:mozilla.13:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.16:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.17:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.18:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.27:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.28:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.29:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.30:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.58:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.60:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.61:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.62:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.63:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.64:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.65:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.66:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.67:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.68:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.83:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Burstbeacon : Cleaned with backup
:mozilla.84:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Trafic : Cleaned with backup
:mozilla.85:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.91:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.93:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.94:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.95:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.96:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.102:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.103:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.104:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.108:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.109:C:\Documents and Settings\Amy\Application Data\Mozilla\Profiles\default\vhvqiwch.slt\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
C:\Documents and Settings\Amy\Cookies\amy@2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Documents and Settings\Amy\Cookies\amy@ads.pointroll[1].txt -> Spyware.Cookie.Pointroll : Cleaned with backup
C:\Documents and Settings\Amy\Cookies\amy@advertising[2].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Documents and Settings\Amy\Cookies\amy@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\Documents and Settings\Amy\Cookies\amy@bluestreak[2].txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
C:\Documents and Settings\Amy\Cookies\amy@centrport[1].txt -> Spyware.Cookie.Centrport : Cleaned with backup
C:\Documents and Settings\Amy\Cookies\amy@citi.bridgetrack[2].txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
C:\Documents and Settings\Amy\Cookies\amy@counter11.sextracker[1].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
C:\Documents and Settings\Amy\Cookies\amy@counter14.sextracker[1].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
C:\Documents and Settings\Amy\Cookies\amy@data.coremetrics[1].txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
C:\Documents and Settings\Amy\Cookies\amy@doubleclick[2].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
C:\Documents and Settings\Amy\Cookies\amy@edge.ru4[1].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
C:\Documents and Settings\Amy\Cookies\amy@ehg-wachovia.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Documents and Settings\Amy\Cookies\amy@hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Documents and Settings\Amy\Cookies\amy@mediaplex[2].txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
C:\Documents and Settings\Amy\Cookies\amy@overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
C:\Documents and Settings\Amy\Cookies\amy@questionmarket[1].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\Documents and Settings\Amy\Cookies\amy@servedby.advertising[2].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Documents and Settings\Amy\Cookies\amy@serving-sys[1].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
C:\Documents and Settings\Amy\Cookies\amy@sextracker[1].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
C:\Documents and Settings\Amy\Cookies\amy@statse.webtrendslive[2].txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.8:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.9:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.10:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.11:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.12:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.13:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.16:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.17:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.18:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.19:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.20:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.21:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.22:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.23:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.24:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.25:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.27:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.28:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.29:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.30:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.33:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.34:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.40:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.43:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.44:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.52:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.55:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.60:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.63:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.64:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.65:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.73:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Pro-market : Cleaned with backup
:mozilla.74:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Pro-market : Cleaned with backup
:mozilla.76:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Pro-market : Cleaned with backup
:mozilla.92:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.93:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.97:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.98:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.101:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.114:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
:mozilla.115:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.122:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.123:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.124:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.130:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.131:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.132:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.140:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.141:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.155:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.156:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.157:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.158:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.159:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.160:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.161:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Euroclick : Cleaned with backup
:mozilla.162:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Euroclick : Cleaned with backup
:mozilla.163:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Euroclick : Cleaned with backup
:mozilla.177:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.178:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.179:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.181:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.182:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
:mozilla.183:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
:mozilla.184:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.207:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.222:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.223:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.224:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.225:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.226:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.227:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.235:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.236:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.237:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.238:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.239:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.254:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.255:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.273:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.280:C:\Documents and Settings\Owner\Application Data\Mozilla\Profiles\default\lhyj5c9v.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Documents and Settings\Owner\Cookies\owner@burstnet[1].txt -> Spyware.Cookie.Burstnet : Cleaned with backup
C:\Documents and Settings\Owner\Cookies\owner@com[1].txt -> Spyware.Cookie.Com : Cleaned with backup
C:\Documents and Settings\Owner\Cookies\owner@hypertracker[1].txt -> Spyware.Cookie.Hypertracker : Cleaned with backup
C:\Documents and Settings\Owner\Cookies\owner@paypopup[2].txt -> Spyware.Cookie.Paypopup : Cleaned with backup
C:\Documents and Settings\Owner\Cookies\owner@www.burstbeacon[1].txt -> Spyware.Cookie.Burstbeacon : Cleaned with backup
C:\Documents and Settings\Owner\Cookies\owner@www.burstnet[1].txt -> Spyware.Cookie.Burstnet : Cleaned with backup


::Report End
Patsy
Regular Member
 
Posts: 28
Joined: June 13th, 2005, 9:54 am

Unread postby askey127 » November 4th, 2005, 8:28 am

Patsy,

-----------------------------------------------------------
Run chkdsk so it fixes what it finds.
Click on Start, Programs, Accessories, Command Prompt.
When the black DOS window appears, type chkdsk c: /F
When it finishes the 3-stage scan, notice if it finds any new bad files or sectors.
If it finds anything defective, write down what it is, and include it in your reply.
Click the window "X" to exit the command window.
-----------------------------------------------------------
Download and install CCleaner from here.
Run CCleaner.
( Do not use the Issues block )
Click on the Options block on the left. Select Advanced.
Uncheck "Only delete files in Windows Temp folders older than 48 hours".
Click on the Cleaner block on the left. Choose the Windows tab.
Check everything Except Autocomplete Form History, and the Advanced part of the Menu.
Click the Run Cleaner button. This process could take a while.
When CCleaner shows how much has been removed, cleaning is finished. Click Exit.
-----------------------------------------------------------
Remove log items with HighjackThis. Start HijackThis.
Click Scan. When the Scan is complete, Check the following entry:
(I am assuming that you are unfamiliar with Lightwave in Vancouver as either your workplace or ISP)
O17 - HKLM\System\CCS\Services\Tcpip\..\{A22A058E-FA03-4678-AFCE-F2E1C96D65A9}: NameServer = 209.63.0.6 207.173.86.6
Make sure all other windows except HJT are closed, and Click Fix Checked.
-----------------------------------------------------------
Make a Memtest Floppy from here : http://www.memtest86.com/#install
scroll down the page to Download - Pre-Compiled Memtest86 v3.2 installable from Windows and DOS. Click to get the download.
Save the memt32.zip file to a folder on your PC.

Then find the memt32.zip file and unzip it. It will produce 4 files. Insert a floppy into the floppy drive and double-click install.bat.
This will write a floppy that appears to be blank, but will actually boot your machine and test RAM.

Leave the floppy in the machine and reboot.
If your PC will boot from the floppy, you will see the MemTest screen.
( If your machine won't boot from the floppy, you will have to change the BIOS boot sequence so it will. I will generate some general instructions if you need them).
Let it run the Memory test completely, at least through test sequence #4. It may take a while. The longer you run it, the more thorough the test. Note whether it finds any errors.
You hit Esc and remove the floppy to exit.
-----------------------------------------------------------
Download Silentrunners.zip from here and unzip it into a new folder on your desktop.
- Run the SilentRunners.vbs file.
- You will receive a prompt: "Do you want to skip supplementary searches?" - click NO
- If your antivirus has a script blocker, you will get a warning asking if you want to allow SilentRunners.vbs to run. This script is not malicious so please allow it.
- A text file will appear in the folder - if it's not done, let it run (it won't appear to be doing anything!)
- Once the "All Done!" prompt flashes up,
When you compose your reply, open the text file and copy & paste it in your next reply.
-----------------------------------------------------------
Post a New HJT Log
Reboot your computer. Start HijackThis. Click Do System Scan and Save a Log File.
When the Scan is complete, select the whole log (Ctrl-A), copy and paste the log contents in a reply.

To summarize, we'll be looking for any found items from chkdsk and Memtest, as well as logs from Silent Runners and HJT

askey127
User avatar
askey127
Admin/Teacher
Admin/Teacher
 
Posts: 14025
Joined: April 17th, 2005, 3:25 pm
Location: New Hampshire USA

Unread postby Patsy » November 4th, 2005, 10:34 am

Have run into a snag right off the bat.

I tell it Yes, to check on restart. After the programs checks the /F drive, the findings are so fast that I can't even read the first line.

Am I doing something wrong?
------------------------------------

Microsoft Windows XP [Version 5.1.2600]
(C) Copyright 1985-2001 Microsoft Corp.

C:\Documents and Settings\Owner>chkdsk c:/F
The type of the file system is NTFS.
Cannot lock current drive.

Chkdsk cannot run because the volume is in use by another
process. Would you like to schedule this volume to be
checked the next time the system restarts? (Y/N)
Patsy
Regular Member
 
Posts: 28
Joined: June 13th, 2005, 9:54 am

Unread postby askey127 » November 4th, 2005, 10:46 am

Patsy,
There's nothing wrong.
Yes, tell it to schedule to check the volume the next time the system starts.
That's because it can't do C: drive repairs while Windows is running, so it will do it first, during bootup.

After windows starts again you can run chkdsk c: without the /F and you will be able to tell if everything is now OK.

I should have warned you about that query. Sorry.
askey127
User avatar
askey127
Admin/Teacher
Admin/Teacher
 
Posts: 14025
Joined: April 17th, 2005, 3:25 pm
Location: New Hampshire USA

Unread postby Patsy » November 4th, 2005, 11:58 am

OK Askey. Now I understand the F says to fix C. I ran the c fix twice, and the printout still says something is wrong with file system.

I'm going to do the other steps now.

Thanks again.
------------------------------------------
Microsoft Windows XP [Version 5.1.2600]
(C) Copyright 1985-2001 Microsoft Corp.

C:\Documents and Settings\Owner>chkdsk c:
The type of the file system is NTFS.
Volume label is HP_PAVILION.

WARNING! F parameter not specified.
Running CHKDSK in read-only mode.

CHKDSK is verifying files (stage 1 of 3)...
File verification completed.
CHKDSK is verifying indexes (stage 2 of 3)...
Index verification completed.
CHKDSK is verifying security descriptors (stage 3 of 3)...
Security descriptor verification completed.
Correcting errors in the Volume Bitmap.
Windows found problems with the file system.
Run CHKDSK with the /F (fix) option to correct these.

73052279 KB total disk space.
19989380 KB in 76935 files.
24124 KB in 4268 indexes.
0 KB in bad sectors.
149843 KB in use by the system.
65536 KB occupied by the log file.
52888932 KB available on disk.

4096 bytes in each allocation unit.
18263069 total allocation units on disk.
13222233 allocation units available on disk.

C:\Documents and Settings\Owner>
Patsy
Regular Member
 
Posts: 28
Joined: June 13th, 2005, 9:54 am

Unread postby Patsy » November 4th, 2005, 7:13 pm

Well, more trouble... have fooled with it most of the day. I made the mem floppy, but machine won't boot. Says to remove and strike any key...

Please send me the directions to change the BIOS boot sequence.
Patsy
Regular Member
 
Posts: 28
Joined: June 13th, 2005, 9:54 am

Unread postby askey127 » November 4th, 2005, 8:44 pm

Patsy,

If it says remove and strike a key, then the boot sequence is OK.
It's the Memtest floppy disk that's NG.

With windows explorer, go to the folder that has install.bat, rawrite.exe and memtest.bin files.

Doubleclick install.bat.
It probably asks what is the drive letter for the floppy.(Can't quite remember) It may not want a colon after the letter.
edit - just type a with no colon. If your antivirus asks if it's OK to run a script, say Yes.
When you tell it, it should write to the floppy drive. Check for the light to come on if there is one.
askey
User avatar
askey127
Admin/Teacher
Admin/Teacher
 
Posts: 14025
Joined: April 17th, 2005, 3:25 pm
Location: New Hampshire USA

Unread postby Patsy » November 4th, 2005, 11:35 pm

Well, it's giving me a whipping. I redid the floppy disk.

Now, when I doubleclick"install" (mine doesn't have .bin on it), a little dos window asks me where to save it. I tell it "a." Then a little window opens at bottom of page and tells me a program is trying to run a script. I say OK, that's good.

Then I look and see the "a" drive winking and blinking at me like it's doing a good thing. So when the winking quits, I go to "start" and shut the machine down and tell it to restart. I notice it's very slow to start back up... but after a while my blue microsoft screen comes back on, and at this point I click on my account (my daughter has an account on my computer too) so that I can get back into my part of the computer. No sign of any mem test.

I have a whole box of little floppies, but they are old. When I look at them on computer, they seem to be empty; but when I try to copy files to them, a window opens and asks if I want to reformat them. I say yes and wait. Then the window tells me it can't finish reformatting them.

I'll go in the morning and get new floppies. Looks like one of these would be good enough to copy something/anything on to.... but no. Makes me think something wrong with the floppy drive.
Patsy
Regular Member
 
Posts: 28
Joined: June 13th, 2005, 9:54 am

Unread postby askey127 » November 5th, 2005, 7:32 am

Patsy,
I wanted to get the RAM test to be sure, but it looks like that's not in the cards.
I have been pretty certain that your PC problems are related to hardware, either the motherboard or Hard drive. My opinion, based on the pieces of information we have gathered, is that this is NOT related to malware of any kind.

The persistent errors from chkdsk are usually a symptom of impending hard drive failure or a bad IDE controller on the motherboard. The hard drive with its moving parts is usually the prime suspect rather than the motherboard.

However , in this case there is also a problem with the CD and floppy drives. This shifts the likelihood of a failure point to the motherboard.

My recommendation is that you bring the PC to a service center that can evaluate the system. Most of them have "Burn-in" software that can exercise all hardware parts of the PC and spot any problems. These things are machines after all, and sometimes fail. They can also look at things like the BIOS CMOS battery, and see if the BIOS settings are corrupted.

If there indeed proves to be a motherboard problem needing repair or replacement, the present hard drive may be usable as a primary or added drive.

I am agreeable to continue discussion of this, but I don't think we can expect much further progress based on software alone. We will be here whenever you feel you need help.

askey127
User avatar
askey127
Admin/Teacher
Admin/Teacher
 
Posts: 14025
Joined: April 17th, 2005, 3:25 pm
Location: New Hampshire USA

Unread postby Patsy » November 5th, 2005, 10:26 am

Oh no, I hope it's not the motherboard and the hard drive. I had the motherboard changed out about 2 months ago. The repairman said a power surge burned it. He charged me $200 for motherboard... will probably be too much if it's the hard drive too. Guess it may be time for a new computer.

I thank you for all your expert advice and pray our God will continue to bless this wonderful website.

Patsy
Patsy
Regular Member
 
Posts: 28
Joined: June 13th, 2005, 9:54 am

Unread postby LDTate » November 5th, 2005, 10:31 am

Oh no, I hope it's not the motherboard and the hard drive. I had the motherboard changed out about 2 months ago
.

Sorry about jumping in here, but did you get a warranty with the Mother Board?

Also you could try this link and look at the upper right side for Free Computer Checkup.
http://pcpitstop.ibforums.com/index.php
User avatar
LDTate
WTT Teacher
WTT Teacher
 
Posts: 3920
Joined: February 18th, 2005, 8:38 pm
Location: Missouri, USA
Advertisement
Register to Remove

Next

  • Similar Topics
    Replies
    Views
    Last post

Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 279 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware