Antivirus Protection
 
Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
User Name:
Password:
Remember me
Go Back   Dev Shed ForumsSystem AdministrationAntivirus Protection

Reply
Add This Thread To:
  Del.icio.us   Digg   Google   Spurl   Blink   Furl   Simpy   Y! MyWeb 
Thread Tools Search this Thread Rate Thread Display Modes
 
Unread Dev Shed Forums Sponsor:
Stop making mediocre tutorials.The best tutorials are video! Camtasia Studio makes it easy to create engaging, buzz-building screen videos at any size, in any popular format. Download the free trial!
  #16  
Old March 23rd, 2008, 11:30 AM
kellte2 kellte2 is offline
Registered User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Mar 2008
Posts: 27 kellte2 User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 4 h 22 m 3 sec
Reputation Power: 0
Notes about this log:
1) "->" denotes an external command being executed, and "-> (number)" indicates
the return code from the previous command
2) Not all external command return codes are accurate, or useful
3) Sometimes commands return 0 (no error) even when they fail or crash
4) If an error occurs while registering an object, please send an email to:
dial-a-fix@DjLizard.net and include a copy of this log

DAF version: v0.60.0.24

--- System info ---
OS: Microsoft Windows XP Service Pack 2
IE version: 7.0.5730.11
MPC: 76487-016
CPU: Intel(R) Pentium(R) M processor 1500MHz (~1500MHz)
BIOS: 6/18/2007
Memory (approx): 766MB
Uptime: 0 hour(s)
Current directory: C:\Documents and Settings\Tom\Desktop\Dial-a-fix-v0.60.0.24
---

3/23/2008 12:25:18 PM -- Dial-a-fix : [v0.60.0.24] -- started
12:25:18 PM | Policy scan started
12:25:18 PM | Policy scan ended - no restrictive policies were found
--- Emptying temp folders ---
12:25:54 PM | Deleting C:\Documents and Settings\Tom\Local Settings\Temp...
12:25:54 PM | C:\Documents and Settings\Tom\Local Settings\Temp could not be completely emptied, please reboot and try again
12:25:54 PM | Deleting C:\WINDOWS\temp...
12:25:54 PM | C:\WINDOWS\temp has been re-created
12:25:54 PM | Deleting C:\DOCUME~1\Tom\LOCALS~1\Temp...
12:25:54 PM | C:\DOCUME~1\Tom\LOCALS~1\Temp could not be completely emptied, please reboot and try again
--- MSI ---
12:26:02 PM | Registered: C:\WINDOWS\system32\msi.dll
--- Windows Update ---
--- Registration: Windows Update/Automatic Update DLLs ---
12:26:10 PM | Unregistered: C:\WINDOWS\system32\msxml.dll
12:26:10 PM | Registered: C:\WINDOWS\system32\msxml.dll
12:26:10 PM | Unregistered: C:\WINDOWS\system32\msxml2.dll
12:26:10 PM | Registered: C:\WINDOWS\system32\msxml2.dll
12:26:12 PM | Unregistered: C:\WINDOWS\system32\msxml3.dll
12:26:13 PM | Registered: C:\WINDOWS\system32\msxml3.dll
12:26:13 PM | Unregistered: C:\WINDOWS\system32\msxml4.dll
12:26:13 PM | Registered: C:\WINDOWS\system32\msxml4.dll
12:26:13 PM | Unregistered: C:\WINDOWS\system32\qmgr.dll
12:26:13 PM | Registered: C:\WINDOWS\system32\qmgr.dll
12:26:13 PM | Unregistered: C:\WINDOWS\system32\qmgrprxy.dll
12:26:13 PM | Registered: C:\WINDOWS\system32\qmgrprxy.dll
12:26:13 PM | Unregistered: C:\WINDOWS\system32\muweb.dll
12:26:13 PM | Registered: C:\WINDOWS\system32\muweb.dll
12:26:14 PM | Unregistered: C:\WINDOWS\system32\winhttp.dll
12:26:14 PM | Registered: C:\WINDOWS\system32\winhttp.dll
12:26:14 PM | Registered: C:\WINDOWS\system32\wuapi.dll
12:26:14 PM | Unregistered: C:\WINDOWS\system32\wuaueng.dll
12:26:15 PM | Registered: C:\WINDOWS\system32\wuaueng.dll
12:26:16 PM | Unregistered: C:\WINDOWS\system32\wuaueng1.dll
12:26:16 PM | Registered: C:\WINDOWS\system32\wuaueng1.dll
12:26:16 PM | Unregistered: C:\WINDOWS\system32\wucltui.dll
12:26:16 PM | Registered: C:\WINDOWS\system32\wucltui.dll
12:26:16 PM | Unregistered: C:\WINDOWS\system32\wups.dll
12:26:16 PM | Registered: C:\WINDOWS\system32\wups.dll
12:26:16 PM | Unregistered: C:\WINDOWS\system32\wups2.dll
12:26:16 PM | Registered: C:\WINDOWS\system32\wups2.dll
12:26:16 PM | Unregistered: C:\WINDOWS\system32\wuweb.dll
12:26:16 PM | Registered: C:\WINDOWS\system32\wuweb.dll
12:26:16 PM | Registered: C:\WINDOWS\system32\ole32.dll
--- SSL/HTTPS/Cryptography ---
12:26:28 PM | Executed 'cmd.exe /c rmdir /q /s C:\WINDOWS\system32\Catroot2'
--- Registration: SSL/HTTPS/Cryptography ---
12:26:32 PM | Unregistered: C:\WINDOWS\system32\cryptdlg.dll
12:26:32 PM | Registered: C:\WINDOWS\system32\cryptdlg.dll
12:26:32 PM | Unregistered: C:\WINDOWS\system32\cryptui.dll
12:26:32 PM | Registered: C:\WINDOWS\system32\cryptui.dll
12:26:32 PM | Unregistered: C:\WINDOWS\system32\cryptext.dll
12:26:32 PM | Registered: C:\WINDOWS\system32\cryptext.dll
12:26:32 PM | Unregistered: C:\WINDOWS\system32\dssenh.dll
12:26:32 PM | Registered: C:\WINDOWS\system32\dssenh.dll
12:26:33 PM | Unregistered: C:\WINDOWS\system32\gpkcsp.dll
12:26:33 PM | Registered: C:\WINDOWS\system32\gpkcsp.dll
12:26:33 PM | Unregistered: C:\WINDOWS\system32\initpki.dll
12:27:29 PM | Registered: C:\WINDOWS\system32\initpki.dll
12:27:29 PM | Unregistered: C:\WINDOWS\system32\licdll.dll
12:27:29 PM | Registered: C:\WINDOWS\system32\licdll.dll
12:27:29 PM | Unregistered: C:\WINDOWS\system32\mssign32.dll
12:27:29 PM | Registered: C:\WINDOWS\system32\mssign32.dll
12:27:29 PM | Unregistered: C:\WINDOWS\system32\mssip32.dll
12:27:29 PM | Registered: C:\WINDOWS\system32\mssip32.dll
12:27:29 PM | Unregistered: C:\WINDOWS\system32\scardssp.dll
12:27:29 PM | Registered: C:\WINDOWS\system32\scardssp.dll
12:27:29 PM | Unregistered: C:\WINDOWS\system32\sccbase.dll
12:27:29 PM | Registered: C:\WINDOWS\system32\sccbase.dll
12:27:29 PM | Unregistered: C:\WINDOWS\system32\scecli.dll
12:27:30 PM | Registered: C:\WINDOWS\system32\scecli.dll
12:27:30 PM | Unregistered: C:\WINDOWS\system32\softpub.dll
12:27:30 PM | Registered: C:\WINDOWS\system32\softpub.dll
12:27:30 PM | Unregistered: C:\WINDOWS\system32\slbcsp.dll
12:27:30 PM | Registered: C:\WINDOWS\system32\slbcsp.dll
12:27:30 PM | Unregistered: C:\WINDOWS\system32\regwizc.dll
12:27:30 PM | Registered: C:\WINDOWS\system32\regwizc.dll
12:27:30 PM | Unregistered: C:\WINDOWS\system32\rsaenh.dll
12:27:30 PM | Registered: C:\WINDOWS\system32\rsaenh.dll
12:27:30 PM | Unregistered: C:\WINDOWS\system32\winhttp.dll
12:27:30 PM | Registered: C:\WINDOWS\system32\winhttp.dll
12:27:30 PM | Unregistered: C:\WINDOWS\system32\wintrust.dll
12:27:31 PM | Registered: C:\WINDOWS\system32\wintrust.dll
--- Registration: ActiveX controls/codecs ---
12:27:31 PM | Registered: C:\WINDOWS\system32\acelpdec.ax
12:27:31 PM | Registered: C:\WINDOWS\system32\actxprxy.dll
12:27:31 PM | Registered: C:\WINDOWS\system32\asctrls.ocx
12:27:31 PM | Registered: C:\WINDOWS\system32\daxctle.ocx
12:27:31 PM | Registered: C:\WINDOWS\system32\hhctrl.ocx
12:27:31 PM | Registered: C:\WINDOWS\system32\l3codecx.ax
12:27:31 PM | Registered: C:\WINDOWS\system32\licmgr10.dll
12:27:31 PM | Registered: C:\WINDOWS\system32\mpg4ds32.ax
12:27:33 PM | Registered: C:\WINDOWS\system32\msdxm.ocx
12:27:33 PM | Registered: C:\WINDOWS\system32\proctexe.ocx
12:27:33 PM | Registered: C:\WINDOWS\system32\tdc.ocx
12:27:33 PM | Registered: C:\WINDOWS\system32\wshom.ocx
--- Registration: Control Panel applets ---
12:27:35 PM | DllInstalled: C:\WINDOWS\system32\inetcpl.cpl
12:27:35 PM | DllInstalled: C:\WINDOWS\system32\nusrmgr.cpl
12:27:35 PM | Registered: C:\WINDOWS\system32\nusrmgr.cpl
--- Registration: Direct[X|Draw|Show|Media] ---
12:27:35 PM | Registered: C:\WINDOWS\system32\quartz.dll
12:27:36 PM | Registered: C:\WINDOWS\system32\danim.dll
12:27:36 PM | Registered: C:\WINDOWS\system32\dmscript.dll
12:27:36 PM | Registered: C:\WINDOWS\system32\dmstyle.dll
12:27:36 PM | Registered: C:\WINDOWS\system32\dxmasf.dll
12:27:36 PM | Registered: C:\WINDOWS\system32\dxtmsft.dll
12:27:36 PM | Registered: C:\WINDOWS\system32\dxtrans.dll
12:27:36 PM | Registered: C:\WINDOWS\system32\sbe.dll
--- Registration: Programming cores/runtimes ---
12:27:36 PM | Registered: C:\WINDOWS\system32\atl.dll
12:27:36 PM | Registered: C:\WINDOWS\system32\corpol.dll
12:27:36 PM | Registered: C:\WINDOWS\system32\jscript.dll
12:27:36 PM | Registered: C:\WINDOWS\system32\dispex.dll
12:27:36 PM | Registered: C:\WINDOWS\system32\scrrun.dll
12:27:36 PM | Registered: C:\WINDOWS\system32\scrobj.dll
12:27:37 PM | Registered: C:\WINDOWS\system32\vbscript.dll
12:27:37 PM | Registered: C:\WINDOWS\system32\wshext.dll
--- Registration: Explorer/IE/OE/shell/WMP ---
12:27:37 PM | Registered: C:\WINDOWS\system32\activeds.dll
12:27:37 PM | Registered: C:\WINDOWS\system32\audiodev.dll
12:27:37 PM | Registered: C:\WINDOWS\system32\browsewm.dll
12:27:37 PM | Registered: C:\WINDOWS\system32\cabview.dll
12:27:37 PM | Registered: C:\WINDOWS\system32\cdfview.dll
12:27:37 PM | Registered: C:\WINDOWS\system32\clbcatex.dll
12:27:38 PM | Registered: C:\WINDOWS\system32\clbcatq.dll
12:27:38 PM | Registered: C:\WINDOWS\system32\comcat.dll
12:27:38 PM | Registered: C:\WINDOWS\system32\cscui.dll
12:27:38 PM | Registered: C:\WINDOWS\system32\credui.dll
12:27:38 PM | Registered: C:\WINDOWS\system32\datime.dll
12:27:38 PM | Registered: C:\WINDOWS\system32\devmgr.dll
12:27:38 PM | Registered: C:\WINDOWS\system32\dfsshlex.dll
12:27:38 PM | Registered: C:\WINDOWS\system32\dmdlgs.dll
12:27:38 PM | Registered: C:\WINDOWS\system32\dmdskmgr.dll
12:27:38 PM | Registered: C:\WINDOWS\system32\dmloader.dll
12:27:38 PM | Registered: C:\WINDOWS\system32\dmocx.dll
12:27:38 PM | Registered: C:\WINDOWS\system32\dmview.ocx
12:27:38 PM | DllInstalled: C:\WINDOWS\system32\dsuiext.dll
12:27:38 PM | Registered: C:\WINDOWS\system32\dsuiext.dll
12:27:38 PM | DllInstalled: C:\WINDOWS\system32\dsquery.dll
12:27:38 PM | Registered: C:\WINDOWS\system32\dsquery.dll
12:27:39 PM | Registered: C:\WINDOWS\system32\dskquoui.dll
12:27:39 PM | Registered: C:\WINDOWS\system32\els.dll
12:27:39 PM | Registered: C:\WINDOWS\system32\es.dll
12:27:39 PM | Registered: C:\WINDOWS\system32\fontext.dll
12:27:39 PM | Registered: C:\WINDOWS\system32\hlink.dll
12:27:40 PM | Registered: C:\WINDOWS\system32\hnetcfg.dll
12:27:40 PM | Registered: C:\WINDOWS\system32\iedkcs32.dll
12:27:40 PM | Registered: C:\WINDOWS\system32\iepeers.dll
12:27:40 PM | Registered: C:\WINDOWS\system32\ils.dll
12:27:40 PM | Registered: C:\WINDOWS\system32\inetcfg.dll
12:27:40 PM | Registered: C:\WINDOWS\system32\inetcomm.dll
12:27:40 PM | Registered: C:\WINDOWS\system32\laprxy.dll
12:27:41 PM | Registered: C:\WINDOWS\system32\lmrt.dll
12:27:41 PM | Registered: C:\WINDOWS\system32\mlang.dll
12:27:41 PM | Registered: C:\WINDOWS\system32\mmcndmgr.dll
12:27:41 PM | Registered: C:\WINDOWS\system32\mmcshext.dll
12:27:42 PM | Registered: C:\WINDOWS\system32\mscoree.dll
12:27:42 PM | Registered: C:\WINDOWS\system32\mshtmled.dll
12:27:42 PM | Registered: C:\WINDOWS\system32\msoeacct.dll
12:27:42 PM | Registered: C:\WINDOWS\system32\msr2c.dll
12:27:42 PM | DllInstalled: C:\WINDOWS\system32\mydocs.dll
12:27:42 PM | Registered: C:\WINDOWS\system32\mydocs.dll
12:27:42 PM | Registered: C:\WINDOWS\system32\mstime.dll
12:27:42 PM | Registered: C:\WINDOWS\system32\netcfgx.dll
12:27:43 PM | DllInstalled: C:\WINDOWS\system32\netplwiz.dll
12:27:43 PM | Registered: C:\WINDOWS\system32\netplwiz.dll
12:27:43 PM | Registered: C:\WINDOWS\system32\netman.dll
12:27:43 PM | Registered: C:\WINDOWS\system32\netshell.dll
12:27:43 PM | Registered: C:\WINDOWS\system32\ntmsevt.dll
12:27:43 PM | Registered: C:\WINDOWS\system32\ntmsmgr.dll
12:27:43 PM | DllInstalled: C:\WINDOWS\system32\ntmssvc.dll
12:27:43 PM | Registered: C:\WINDOWS\system32\ntmssvc.dll
12:27:43 PM | DllInstalled: C:\WINDOWS\system32\occache.dll
12:27:43 PM | Registered: C:\WINDOWS\system32\occache.dll
12:27:44 PM | Registered: C:\WINDOWS\system32\ole32.dll
12:27:44 PM | Registered: C:\WINDOWS\system32\oleaut32.dll
12:27:44 PM | Registered: C:\WINDOWS\system32\oleacc.dll
12:27:44 PM | Registered: C:\WINDOWS\system32\olepro32.dll
12:27:44 PM | DllInstalled: C:\WINDOWS\system32\photowiz.dll
12:27:44 PM | Registered: C:\WINDOWS\system32\photowiz.dll
12:27:44 PM | Registered: C:\WINDOWS\system32\remotepg.dll
12:27:44 PM | Registered: C:\WINDOWS\system32\rpcrt4.dll
12:27:44 PM | Registered: C:\WINDOWS\system32\rshx32.dll
12:27:44 PM | Registered: C:\WINDOWS\system32\sendmail.dll
12:27:44 PM | Registered: C:\WINDOWS\system32\slayerxp.dll
12:27:44 PM | Registered: C:\WINDOWS\system32\shell32.dll
12:27:55 PM | DllInstalled: C:\WINDOWS\system32\shell32.dll
12:27:55 PM | Registered: C:\WINDOWS\system32\shmedia.dll
12:27:55 PM | DllInstalled: C:\WINDOWS\system32\shimgvw.dll
12:27:55 PM | Registered: C:\WINDOWS\system32\shimgvw.dll
12:27:55 PM | DllInstalled: C:\WINDOWS\system32\shsvcs.dll
12:27:56 PM | Registered: C:\WINDOWS\system32\shsvcs.dll
12:27:56 PM | Registered: C:\WINDOWS\system32\srclient.dll
12:27:56 PM | Unregistered: C:\WINDOWS\system32\stobject.dll
12:27:56 PM | Registered: C:\WINDOWS\system32\stobject.dll
12:27:56 PM | Registered: C:\WINDOWS\system32\twext.dll
12:27:57 PM | DllInstalled: C:\WINDOWS\system32\urlmon.dll
12:27:57 PM | Registered: C:\WINDOWS\system32\urlmon.dll
12:27:57 PM | Registered: C:\WINDOWS\system32\userenv.dll
12:27:57 PM | Registered: C:\WINDOWS\system32\winhttp.dll
12:27:57 PM | DllInstalled: C:\WINDOWS\system32\wininet.dll
12:27:57 PM | Registered: C:\WINDOWS\system32\zipfldr.dll
12:27:57 PM | Registered: C:\Program Files\Common Files\system\Ole DB\msdadc.dll
12:27:57 PM | Registered: C:\Program Files\Common Files\system\Ole DB\msdaenum.dll
12:27:57 PM | Registered: C:\Program Files\Common Files\system\Ole DB\msdaer.dll
12:27:57 PM | Registered: C:\Program Files\Common Files\system\Ole DB\msdaipp.dll
12:27:58 PM | Registered: C:\Program Files\Common Files\system\Ole DB\msdaora.dll
12:27:58 PM | Registered: C:\Program Files\Common Files\system\Ole DB\msdaosp.dll
12:27:58 PM | Registered: C:\Program Files\Common Files\system\Ole DB\msdaps.dll
12:27:58 PM | Registered: C:\Program Files\Common Files\system\Ole DB\msdasc.dll
12:27:58 PM | Registered: C:\Program Files\Common Files\system\Ole DB\msdasql.dll
12:27:58 PM | Registered: C:\Program Files\Common Files\system\Ole DB\msdatt.dll
12:27:58 PM | Registered: C:\Program Files\Common Files\system\Ole DB\msdaurl.dll
12:27:58 PM | Registered: C:\Program Files\Common Files\system\Ole DB\msdmeng.dll
12:27:59 PM | Registered: C:\Program Files\Common Files\system\Ole DB\msdmine.dll
12:27:59 PM | Registered: C:\Program Files\Common Files\system\Ole DB\msmdcb80.dll
12:27:59 PM | Registered: C:\Program Files\Common Files\system\Ole DB\msmdgd80.dll
12:28:00 PM | Registered: C:\Program Files\Common Files\system\Ole DB\msolap80.dll
12:28:00 PM | Registered: C:\Program Files\Common Files\system\Ole DB\msolui80.dll
12:28:00 PM | Registered: C:\Program Files\Common Files\system\Ole DB\msxactps.dll
12:28:00 PM | Registered: C:\Program Files\Common Files\system\Ole DB\oledb32.dll
12:28:00 PM | Registered: C:\Program Files\Common Files\system\Ole DB\oledb32r.dll
12:28:00 PM | Registered: C:\Program Files\Common Files\system\Ole DB\sqloledb.dll
12:28:00 PM | Registered: C:\Program Files\Common Files\system\Ole DB\sqlxmlx.dll

Reply With Quote
  #17  
Old March 23rd, 2008, 11:31 AM
Porthos's Avatar
Porthos Porthos is offline
Malware Warrior /AV forum Mod
Dev Shed Beginner (1000 - 1499 posts)
 
Join Date: Nov 2006
Location: San Antonio Tx
Posts: 1,033 Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level) 
Time spent in forums: 1 Week 1 Day 17 h 27 m 54 sec
Reputation Power: 363
Will IE work now?
__________________
O'Neill: "So, we basically saved your whole planet, right?"
Chancellor: "Yes."
O'Neill: "Are you, therefore, indebted to us in any modest way?"
Chancellor: "I suppose that is the case."
O'Neill: "So how 'bout the blueprints to build one of those ion cannons?"
Chancellor: "You have been told our policy. That has not changed."

Reply With Quote
  #18  
Old March 23rd, 2008, 11:39 AM
kellte2 kellte2 is offline
Registered User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Mar 2008
Posts: 27 kellte2 User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 4 h 22 m 3 sec
Reputation Power: 0
Unfortunately, no.

Reply With Quote
  #19  
Old March 23rd, 2008, 11:41 AM
Porthos's Avatar
Porthos Porthos is offline
Malware Warrior /AV forum Mod
Dev Shed Beginner (1000 - 1499 posts)
 
Join Date: Nov 2006
Location: San Antonio Tx
Posts: 1,033 Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level) 
Time spent in forums: 1 Week 1 Day 17 h 27 m 54 sec
Reputation Power: 363
Please make sure that "WORK OFFLINE" is not checked..

Open IE and goto the FILE menu and if it IS checked,uncheck it

Reply With Quote
  #20  
Old March 23rd, 2008, 11:43 AM
kellte2 kellte2 is offline
Registered User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Mar 2008
Posts: 27 kellte2 User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 4 h 22 m 3 sec
Reputation Power: 0
Quote:
Originally Posted by Porthos
Please make sure that "WORK OFFLINE" is not checked..

Open IE and goto the FILE menu and if it IS checked,uncheck it


It wasn't set to work offline.

Reply With Quote
  #21  
Old March 23rd, 2008, 11:46 AM
Porthos's Avatar
Porthos Porthos is offline
Malware Warrior /AV forum Mod
Dev Shed Beginner (1000 - 1499 posts)
 
Join Date: Nov 2006
Location: San Antonio Tx
Posts: 1,033 Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level) 
Time spent in forums: 1 Week 1 Day 17 h 27 m 54 sec
Reputation Power: 363
Download Winsockfix and run it. Lets see if that gets IE back online.

Winsockfix
Comments on this post
kellte2 agrees: GREAT USER

Reply With Quote
  #22  
Old March 23rd, 2008, 11:48 AM
kellte2 kellte2 is offline
Registered User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Mar 2008
Posts: 27 kellte2 User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 4 h 22 m 3 sec
Reputation Power: 0
Quote:
Originally Posted by Porthos
Download Winsockfix and run it. Lets see if that gets IE back online.

Winsockfix



Its telling me that its not a valid win32 application...


I renamed it as winsockix.exe and its running now...

Reply With Quote
  #23  
Old March 23rd, 2008, 11:49 AM
Porthos's Avatar
Porthos Porthos is offline
Malware Warrior /AV forum Mod
Dev Shed Beginner (1000 - 1499 posts)
 
Join Date: Nov 2006
Location: San Antonio Tx
Posts: 1,033 Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level) 
Time spent in forums: 1 Week 1 Day 17 h 27 m 54 sec
Reputation Power: 363
Quote:
Originally Posted by kellte2
Its telling me that its not a valid win32 application...




Lets try to dig deeper for infection.


Download Dr.Web CureIt! from HERE to your Desktop.

When you have done this, boot into safe mode (restart your computer and tap F8 continuously as it restarts)

Doubleclick the drweb-cureit.exe file and allow it to run the express scan. This is a short scan and will scan all files currently running in memory. If something is found, click the Yes button when it asks you if you want to cure it.

Once the short scan has finished, choose the drives that you want to scan. Click on Select all drives. A red dot shows which drives have been chosen. Click the green arrow > to the right and the scan will begin. At the first sign of infection, Select 'Yes to all' if it asks if you want to cure/move the file.

When the scan has finished, click the "Select all/Select none" toggle button on the lefthand side (next to where it says "Object". It will show a red tick if incurable files have been found) and then click the green cup icon below and select Move incurable. This will move any infected files to the %userprofile%\DoctorWeb\quarantine folder that can't be cured.

Next and this is important, from the main Dr.Web CureIt menu (top left), click File and choose save report list and save the report to your desktop. The report will be called DrWeb.csv and it can be opened in Notepad.

Close Cureit and restart your computer to completely remove any stubborn files. You may get a message saying "No operations performed with some objects in list. Exit program". If so, click "Yes".

Reply With Quote
  #24  
Old March 23rd, 2008, 11:56 AM
kellte2 kellte2 is offline
Registered User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Mar 2008
Posts: 27 kellte2 User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 4 h 22 m 3 sec
Reputation Power: 0
I'll get right on it. Be back when it's done.

Thanks for your patience.

Reply With Quote
  #25  
Old March 23rd, 2008, 12:11 PM
Porthos's Avatar
Porthos Porthos is offline
Malware Warrior /AV forum Mod
Dev Shed Beginner (1000 - 1499 posts)
 
Join Date: Nov 2006
Location: San Antonio Tx
Posts: 1,033 Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level)Porthos User rank is Major (30000 - 40000 Reputation Level) 
Time spent in forums: 1 Week 1 Day 17 h 27 m 54 sec
Reputation Power: 363
Going to run some easter errands. Be back later.

Reply With Quote
  #26  
Old March 23rd, 2008, 12:57 PM
kellte2 kellte2 is offline
Registered User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Mar 2008
Posts: 27 kellte2 User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 4 h 22 m 3 sec
Reputation Power: 0
Quote:
Originally Posted by Porthos
Going to run some easter errands. Be back later.


Sounds good, I'm going to do the same while this test runs. I'll post the results when its finished.

Reply With Quote
  #27  
Old March 23rd, 2008, 02:07 PM
kellte2 kellte2 is offline
Registered User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Mar 2008
Posts: 27 kellte2 User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 4 h 22 m 3 sec
Reputation Power: 0
setup.exe;C:\Documents and Settings\All Users\Application Data\AOL Downloads\SUD4054;Probably BACKDOOR.Trojan;Incurable.Moved.;
setup.exe;C:\Documents and Settings\All Users\Application Data\AOL Downloads\SUD4085;Probably BACKDOOR.Trojan;Incurable.Moved.;
A0055004.sys;C:\System Volume Information\_restore{455ACCFB-6FDD-459B-AE91-0F164141A875}\RP480;Win32.HLLM.Beagle;Deleted.;
A0055027.exe;C:\System Volume Information\_restore{455ACCFB-6FDD-459B-AE91-0F164141A875}\RP480;Win32.HLLM.Beagle;Deleted.;
A0056004.sys;C:\System Volume Information\_restore{455ACCFB-6FDD-459B-AE91-0F164141A875}\RP481;Win32.HLLM.Beagle;Deleted.;
A0057004.sys;C:\System Volume Information\_restore{455ACCFB-6FDD-459B-AE91-0F164141A875}\RP481;Win32.HLLM.Beagle;Deleted.;
A0057131.bat;C:\System Volume Information\_restore{455ACCFB-6FDD-459B-AE91-0F164141A875}\RP481;Probably BATCH.Virus;Incurable.Moved.;
A0057138.bat;C:\System Volume Information\_restore{455ACCFB-6FDD-459B-AE91-0F164141A875}\RP481;Probably SCRIPT.Virus;Incurable.Moved.;
A0057166.exe;C:\System Volume Information\_restore{455ACCFB-6FDD-459B-AE91-0F164141A875}\RP482;Trojan.PWS.Nerf;Deleted.;
A0057183.exe;C:\System Volume Information\_restore{455ACCFB-6FDD-459B-AE91-0F164141A875}\RP482;Win32.HLLM.Beagle;Deleted.;
A0057187.bat;C:\System Volume Information\_restore{455ACCFB-6FDD-459B-AE91-0F164141A875}\RP482;Probably BATCH.Virus;Incurable.Moved.;
A0057213.bat;C:\System Volume Information\_restore{455ACCFB-6FDD-459B-AE91-0F164141A875}\RP482;Probably SCRIPT.Virus;Incurable.Moved.;
A0057299.exe;C:\System Volume Information\_restore{455ACCFB-6FDD-459B-AE91-0F164141A875}\RP483;Probably BACKDOOR.Trojan;Incurable.Moved.;
A0057428.bat;C:\System Volume Information\_restore{455ACCFB-6FDD-459B-AE91-0F164141A875}\RP484;Probably BATCH.Virus;Incurable.Moved.;
A0057435.bat;C:\System Volume Information\_restore{455ACCFB-6FDD-459B-AE91-0F164141A875}\RP484;Probably SCRIPT.Virus;Incurable.Moved.;
A0059440.exe;C:\System Volume Information\_restore{455ACCFB-6FDD-459B-AE91-0F164141A875}\RP484;Probably BACKDOOR.Trojan;Incurable.Moved.;
A0059449.bat;C:\System Volume Information\_restore{455ACCFB-6FDD-459B-AE91-0F164141A875}\RP484;Probably BATCH.Virus;Incurable.Moved.;
A0059455.bat;C:\System Volume Information\_restore{455ACCFB-6FDD-459B-AE91-0F164141A875}\RP484;Probably SCRIPT.Virus;Incurable.Moved.;
A0059491.bat;C:\System Volume Information\_restore{455ACCFB-6FDD-459B-AE91-0F164141A875}\RP485;Probably BATCH.Virus;Incurable.Moved.;
A0059497.bat;C:\System Volume Information\_restore{455ACCFB-6FDD-459B-AE91-0F164141A875}\RP485;Probably SCRIPT.Virus;Incurable.Moved.;


-----------------------------
Still no IE or WZC...

Reply With Quote
  #28  
Old March 23rd, 2008, 02:31 PM
kellte2 kellte2 is offline
Registered User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Mar 2008
Posts: 27 kellte2 User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 4 h 22 m 3 sec
Reputation Power: 0
Last diagnostic run time: 03/23/08 15:25:24 WinSock Diagnostic
WinSock status

info \De