HJT Log

Status
Not open for further replies.
-- Find3M Report ---------------------------------------------------------------

2008-05-19 17:38:38 0 d-------- C:\Documents and Settings\Danielle\Application Data\AVG7
2008-05-18 01:17:07 14848 --a------ C:\WINDOWS\system32\lsass.exe <Not Verified; Microsoft Corporation; Microsoft® Windows® Operating System>
2008-05-18 01:17:06 110592 --a------ C:\WINDOWS\system32\services.exe <Not Verified; Microsoft Corporation; Microsoft® Windows® Operating System>
2008-05-18 01:17:04 506368 --a------ C:\WINDOWS\system32\winlogon.exe <Not Verified; Microsoft Corporation; Microsoft® Windows® Operating System>
2008-05-18 01:17:00 17408 --a------ C:\WINDOWS\system32\svchost.exe <Not Verified; Microsoft Corporation; Microsoft® Windows® Operating System>
2008-05-18 01:15:30 160256 --a------ C:\WINDOWS\system32\blackster.scr <Not Verified; Peter's Productions; Bugs!>
2008-05-06 11:02:25 0 d-------- C:\Program Files\Dell
2008-05-06 10:55:56 0 d-------- C:\Program Files\HP
2008-05-06 10:55:55 0 d-------- C:\Program Files\Hewlett-Packard
2008-05-06 10:52:23 0 d--h----- C:\Program Files\InstallShield Installation Information
2008-05-06 10:49:14 0 d-------- C:\Program Files\Common Files
2008-05-06 10:46:17 0 d-------- C:\Program Files\Microsoft Works
2008-05-06 10:45:01 0 d-------- C:\Program Files\Common Files\InstallShield
2008-05-06 10:40:14 0 d-------- C:\Program Files\Common Files\Real
2008-05-05 14:31:57 0 d-------- C:\Program Files\Common Files\AOL
2008-05-05 14:31:57 0 d-------- C:\Documents and Settings\Danielle\Application Data\AOL
2008-05-05 14:30:25 0 d-------- C:\Program Files\AOL Toolbar
2008-05-05 14:29:18 0 d-------- C:\Program Files\ComcastToolbar
2008-05-05 13:42:53 0 d-------- C:\Documents and Settings\Danielle\Application Data\Lavasoft
2008-05-05 12:13:10 0 d-------- C:\Program Files\support.com
2008-05-05 12:12:41 0 d-------- C:\Program Files\AntiVirusPro
2008-05-05 11:21:10 0 d--h----- C:\Program Files\WindowsUpdate
2008-05-05 11:17:49 10 --a------ C:\WINDOWS\system32\kr_done1
2008-04-21 01:12:14 0 d-------- C:\Program Files\Common Files\Scanner
2008-04-21 01:10:07 14336 --a------ C:\WINDOWS\system32\~.exe
2008-04-21 01:08:23 14336 --a------ C:\XMk.exe
2008-04-19 23:57:31 14336 --a------ C:\yXh.exe
2008-04-19 23:31:47 0 d-------- C:\Program Files\webHancer
2008-04-19 23:31:28 4 --a------ C:\WINDOWS\system32\winfrun32.bin
2008-04-10 14:13:02 0 d-------- C:\Documents and Settings\Danielle\Application Data\Apple Computer
2008-03-27 05:15:05 0 d-------- C:\Program Files\Apple Software Update


-- Registry Dump ---------------------------------------------------------------

*Note* empty entries & legit default entries are not shown


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CARPService"="carpserv.exe" [10/17/2002 01:54 PM C:\WINDOWS\system32\carpserv.exe]
"SynTPLpr"="C:\Program Files\Synaptics\SynTP\SynTPLpr.exe" [10/11/2002 02:30 PM]
"SynTPEnh"="C:\Program Files\Synaptics\SynTP\SynTPEnh.exe" [10/11/2002 02:29 PM]
"IgfxTray"="C:\WINDOWS\system32\igfxtray.exe" [01/24/2003 10:17 AM]
"HotKeysCmds"="C:\WINDOWS\system32\hkcmd.exe" [01/24/2003 10:05 AM]
"REGSHAVE"="C:\Program Files\REGSHAVE\REGSHAVE.exe" [02/05/2002 12:32 AM]
"HostManager"="C:\Program Files\Common Files\AOL\1163994898\EE\AOLHostManager.exe" [11/03/2004 04:03 PM]
"TrojanScanner"="C:\Program Files\Trojan Remover\Trjscan.exe" [03/14/2008 04:24 PM]
"avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [05/15/2008 06:19 PM]
"ntuser"="C:\WINDOWS\system32\drivers\spools.exe" [04/21/2008 01:10 AM]
"autoload"="C:\Documents and Settings\Danielle\cftmon.exe" [04/21/2008 01:10 AM]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"MSMSGS"="C:\Program Files\Messenger\msmsgs.exe" [10/13/2004 11:24 AM]
"ntuser"="C:\WINDOWS\system32\drivers\spools.exe" [04/21/2008 01:10 AM]
"autoload"="C:\Documents and Settings\Danielle\cftmon.exe" [04/21/2008 01:10 AM]

[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"autoload"=C:\Documents and Settings\LocalService\cftmon.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableTaskMgr"=0 (0x0)

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\bhm16.sys]
@="Driver"




-- End of Deckard's System Scanner: finished at 2008-05-22 14:16:48 ------------




Extra text file:

Deckard's System Scanner v20071014.68
Extra logfile - please post this as an attachment with your post.
--------------------------------------------------------------------------------

-- System Information ----------------------------------------------------------

Unable to create WMI object.

Architecture: X86; Language: English

Percentage of Memory in Use: 51%
Physical Memory (total/avail): 253.98 MiB / 124.38 MiB
Pagefile Memory (total/avail): 624.77 MiB / 538.22 MiB
Virtual Memory (total/avail): 2047.88 MiB / 1961.02 MiB

C: is Fixed (NTFS) - 18.62 GiB total, 13.19 GiB free.
D: is CDROM (No Media)
E: is Removable (FAT32)


-- Security Center -------------------------------------------------------------

AUOptions is scheduled to auto-install.
Windows Internal Firewall is enabled.

FirstRunDisabled is set.

Unable to create WMI object.

-- Environment Variables -------------------------------------------------------

ALLUSERSPROFILE=C:\Documents and Settings\All Users
APPDATA=C:\Documents and Settings\Danielle\Application Data
CLIENTNAME=Console
CommonProgramFiles=C:\Program Files\Common Files
COMPUTERNAME=DANIELLE-D5C43E
ComSpec=C:\WINDOWS\system32\cmd.exe
FP_NO_HOST_CHECK=NO
HOMEDRIVE=C:
HOMEPATH=\Documents and Settings\Danielle
LOGONSERVER=\\DANIELLE-D5C43E
NUMBER_OF_PROCESSORS=1
OS=Windows_NT
Path=C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
PROCESSOR_ARCHITECTURE=x86
PROCESSOR_IDENTIFIER=x86 Family 15 Model 2 Stepping 7, GenuineIntel
PROCESSOR_LEVEL=15
PROCESSOR_REVISION=0207
ProgramFiles=C:\Program Files
PROMPT=$P$G
SESSIONNAME=Console
SystemDrive=C:
SystemRoot=C:\WINDOWS
TEMP=C:\DOCUME~1\Danielle\LOCALS~1\Temp
TMP=C:\DOCUME~1\Danielle\LOCALS~1\Temp
USERDOMAIN=DANIELLE-D5C43E
USERNAME=Danielle
USERPROFILE=C:\Documents and Settings\Danielle
windir=C:\WINDOWS


-- User Profiles ---------------------------------------------------------------

Danielle (admin)
Administrator (admin)


-- Add/Remove Programs ---------------------------------------------------------

--> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Adobe Flash Player ActiveX --> C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Apple Mobile Device Support --> MsiExec.exe /I{44734179-8A79-4DEE-BB08-73037F065543}
Apple Software Update --> MsiExec.exe /I{B74F042E-E1B9-4A5B-8D46-387BB172F0A4}
avast! Antivirus --> C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup
Broadcom 440x Driver Installer --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{52504CE6-E909-4113-B232-4AFEC6543A61} /l1033
CCleaner (remove only) --> "C:\Program Files\CCleaner\uninst.exe"
Conexant D480 MDC V.92 Modem --> C:\Program Files\CONEXANT\CNXT_MODEM_PCI_VEN_8086&DEV_24x6&SUBSYS_542214F1\HXFSETUP.EXE -U -Idel5422k.inf
Dell ResourceCD --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D78653C3-A8FF-415F-92E6-D774E634FF2D}\setup.exe"
FUJIFILM USB Driver --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5490882C-6961-11D5-BAE5-00E0188E010B}\SETUP.EXE"
HijackThis 2.0.2 --> "C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Intel(R) Extreme Graphics Driver --> RUNDLL32.EXE C:\WINDOWS\system32\ialmrem.dll,UninstallW2KIGfx PCI\VEN_8086&DEV_2562&SUBSYS_01491028
PCSafe Adware Filter --> C:\Program Files\AdwareFilter\AdwareFilter-uninst.exe
SigmaTel AC97 Audio Drivers --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7959721D-8268-4565-9E0E-C41A9F4848A9}\setup.exe" -l0x9 -nodialog -uninstall
Synaptics TouchPad --> rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
Trojan Remover 6.6.8 --> "C:\Program Files\Trojan Remover\unins000.exe"
Viewpoint Media Player --> C:\Program Files\Viewpoint\Viewpoint Experience Technology\mtsAxInstaller.exe /u


-- Application Event Log -------------------------------------------------------

Event Record #/Type1999 / Warning
Event Submitted/Written: 05/19/2008 05:58:38 PM
Event ID/Source: 1015 / MsiInstaller
Event Description:
Failed to connect to server. Error: 0x800706BA

Event Record #/Type1996 / Warning
Event Submitted/Written: 05/19/2008 05:43:21 PM
Event ID/Source: 1015 / MsiInstaller
Event Description:
Failed to connect to server. Error: 0x800706BA

Event Record #/Type1994 / Error
Event Submitted/Written: 05/18/2008 01:15:40 AM
Event ID/Source: 1000 / Application Error
Event Description:
Faulting application hpdj00.exe, version 2.323.0.0, faulting module unknown, version 0.0.0.0, fault address 0x0012e72c.
Processing media-specific event for [hpdj00.exe!ws!]

Event Record #/Type1954 / Error
Event Submitted/Written: 05/05/2008 03:13:15 PM
Event ID/Source: 1002 / Application Hang
Event Description:
Hanging application realplay.exe, version 6.0.9.584, hang module hungapp, version 0.0.0.0, hang address 0x00000000.

Event Record #/Type1926 / Error
Event Submitted/Written: 05/05/2008 02:24:44 PM
Event ID/Source: 1002 / Application Hang
Event Description:
Hanging application realplay.exe, version 6.0.9.584, hang module hungapp, version 0.0.0.0, hang address 0x00000000.



-- Security Event Log ----------------------------------------------------------

No Errors/Warnings found.


-- System Event Log ------------------------------------------------------------

Event Record #/Type6395 / Warning
Event Submitted/Written: 05/20/2008 05:26:23 PM
Event ID/Source: 4 / bcm4sbxp
Event Description:
Broadcom 440x 10/100 Integrated Controller: The network link is down. Check to make sure the network cable is properly connected.

Event Record #/Type6357 / Error
Event Submitted/Written: 05/18/2008 01:16:00 AM
Event ID/Source: 7000 / Service Control Manager
Event Description:
The AVG7 Alert Manager Server service failed to start due to the following error:
%%1053

Event Record #/Type6356 / Error
Event Submitted/Written: 05/18/2008 01:16:00 AM
Event ID/Source: 7009 / Service Control Manager
Event Description:
Timeout (30000 milliseconds) waiting for the AVG7 Alert Manager Server service to connect.

Event Record #/Type6355 / Error
Event Submitted/Written: 05/18/2008 01:16:00 AM
Event ID/Source: 7000 / Service Control Manager
Event Description:
The Task Scheduler service failed to start due to the following error:
%%1053

Event Record #/Type6354 / Error
Event Submitted/Written: 05/18/2008 01:16:00 AM
Event ID/Source: 7009 / Service Control Manager
Event Description:
Timeout (30000 milliseconds) waiting for the Task Scheduler service to connect.



-- End of Deckard's System Scanner: finished at 2008-05-22 14:16:48 ------------



---------------------------------------------------
Vundofix will not run. Says that the RPC Service is not running. This is the exact error message that it gives me:

Run-time error '-2147023174 (800706ba)':
System Error &H800706BA (-2147023174). the RPC Server is unavailable.
 
Well, nevermind... I'm going to just reformat the computer, its becoming more trouble than its worth. Thanks for the help anyway, Techpro, appreciate it.
 
Status
Not open for further replies.
Back
Top Bottom