Author Topic: [Inactive] antivirus suddenly quit working  (Read 1555 times)

0 Members and 1 Guest are viewing this topic.

Offline trueyes

  • Bronze Member
  • Posts: 6
[Inactive] antivirus suddenly quit working
« on: November 11, 2012, 07:52:37 pm »
I have a windows error message.It says, "WebProxy.exe has encountered a problem and needs to close. We are sorry for the inconvenience."  The antivirus part of my panda is not working, I want to make sure it is not a malware issue. I would reinstall panda but I realize this may not resolve any underlying issues. Thanks for your help.




DDS (Ver_2012-11-07.01) - NTFS_x86
Internet Explorer: 8.0.6001.18702  BrowserJavaVersion: 1.6.0_17
Run by Keith at 19:25:09 on 2012-11-11
Microsoft Windows XP Home Edition  5.1.2600.3.1252.1.1033.18.1918.1268 [GMT -6:00]
.
AV: Panda Global Protection 2011 *Disabled/Updated* {8BF935E7-731F-4115-B7A5-789FF5087595}
FW: Panda Personal Firewall 2011 *Disabled*
.
============== Running Processes ================
.
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\Program Files\Panda Security\Panda Global Protection 2011\TPSrv.exe
C:\WINDOWS\SYSTEM32\Ati2evxx.exe
C:\WINDOWS\System32\wudfhost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\SCardSvr.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Panda Security\Panda Global Protection 2011\PsCtrls.exe
C:\Program Files\Panda Security\Panda Global Protection 2011\PavFnSvr.exe
C:\Program Files\Common Files\Panda Security\PavShld\pavprsrv.exe
C:\Program Files\CyberPower PowerPanel Personal Edition\ppped.exe
c:\program files\panda security\panda global protection 2011\firewall\PSHOST.EXE
C:\Program Files\Panda Security\Panda Global Protection 2011\PsImSvc.exe
C:\Program Files\Panda Security\Panda Global Protection 2011\PskSvc.exe
C:\Program Files\Panda Security\Panda Global Protection 2011\pavsrvx86.exe
C:\Program Files\Panda Security\Panda Global Protection 2011\AVENGINE.EXE
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files\Verizon Wireless\VZAccess Manager\VZAccess Manager.exe
C:\Program Files\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe
C:\Program Files\Panda Security\Panda Global Protection 2011\PavBckPT.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k imgsvc
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com/
BHO: {0555CD16-5826-4E3E-85E3-CDC2603EAE34} - <orphaned>
BHO: AcroIEHlprObj Class: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\program files\adobe\acrobat 7.0\activex\AcroIEHelper.dll
BHO: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - c:\program files\google\googletoolbarnotifier\5.2.4204.1700\swg.dll
BHO: JQSIEStartDetectorImpl Class: {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [ISUSPM] "c:\program files\common files\installshield\updateservice\ISUSPM.exe" -scheduler
mRun: [APVXDWIN] "c:\program files\panda security\panda global protection 2011\APVXDWIN.EXE" /s
mRun: [SCANINICIO] "c:\program files\panda security\panda global protection 2011\Inicio.exe"
dRun: [DWQueuedReporting] "c:\progra~1\common~1\micros~1\dw\dwtrig20.exe" -t
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Explorer: NoDriveTypeAutoRun = dword:145
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://go.microsoft.com/fwlink/?linkid=39204
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0004-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_04-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
TCP: Interfaces\{D3046A2A-D6A3-4BCA-B083-85E58E9264D7} : NameServer = 198.224.152.119 198.224.154.135
Notify: AtiExtEvent - Ati2evxx.dll
Notify: avldr - avldr.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: Microsoft AntiMalware ShellExecuteHook - {091EB208-39DD-417D-A5DD-7E2C2D8FB9CB} - c:\program files\windows defender\MpShHook.dll
LSA: Notification Packages = Error!
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\keith\application data\mozilla\firefox\profiles\1z775otv.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2354614&SearchSource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - Bing
FF - prefs.js: browser.startup.homepage - hxxp://en-US.start3.mozilla.com/firefox?client=firefox-a&rls=org.mozilla:en-US:official
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2354614&q=
FF - component: c:\documents and settings\keith\application data\mozilla\firefox\profiles\1z775otv.default\extensions\{9dbb9aeb-5a16-4989-a66f-c0f1c909d647}\components\FFExternalAlert.dll
FF - component: c:\documents and settings\keith\application data\mozilla\firefox\profiles\1z775otv.default\extensions\{9dbb9aeb-5a16-4989-a66f-c0f1c909d647}\components\RadioWMPCore.dll
FF - plugin: c:\program files\common files\research in motion\bbwebsllauncher\NPWebSLLauncher.dll
FF - plugin: c:\program files\google\google earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\google\google updater\2.4.2432.1652\npCIDetect14.dll
FF - plugin: c:\program files\google\update\1.3.21.123\npGoogleUpdate3.dll
FF - plugin: c:\program files\microsoft silverlight\5.1.10411.0\npctrlui.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_4_402_287.dll
FF - ExtSQL: !HIDDEN! 2009-09-03 00:15; {20a82645-c095-46ed-80e3-08825760534b}; c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\DotNetAssistantExtension
.
---- FIREFOX POLICIES ----
FF - user.js: general.useragent.extra.brc - BRI/1
.
============= SERVICES / DRIVERS ===============
.
R0 pavboot;Panda boot driver;c:\windows\system32\drivers\pavboot.sys [2011-2-27 26696]
R1 APPFLT;App Filter Plugin;c:\windows\system32\drivers\APPFLT.SYS [2011-2-27 76296]
R1 DSAFLT;DSA Filter Plugin;c:\windows\system32\drivers\dsaflt.sys [2011-2-27 53256]
R1 FNETMON;NetMon Filter Plugin;c:\windows\system32\drivers\fnetmon.sys [2011-2-27 22024]
R1 IDSFLT;Ids Filter Plugin;c:\windows\system32\drivers\idsflt.sys [2011-2-27 193800]
R1 NETFLTDI;Panda Net Driver [TDI Layer];c:\windows\system32\drivers\NETFLTDI.SYS [2011-2-27 159112]
R1 ShldDrv;Panda File Shield Driver;c:\windows\system32\drivers\ShlDrv51.sys [2011-2-27 37896]
R1 WNMFLT;Wifi Monitor Filter Plugin;c:\windows\system32\drivers\wnmflt.sys [2011-2-27 46856]
R2 AmFSM;AmFSM;c:\windows\system32\drivers\amm8651.sys [2011-2-27 59080]
R2 MBAMScheduler;MBAMScheduler;c:\program files\malwarebytes' anti-malware\mbamscheduler.exe [2012-9-11 399432]
R2 Panda Software Controller;Panda Software Controller;c:\program files\panda security\panda global protection 2011\PsCtrlS.exe [2011-2-27 173312]
R2 PAVFNSVR;Panda Function Service;c:\program files\panda security\panda global protection 2011\PavFnSvr.exe [2011-2-27 202048]
R2 PavProc;Panda Process Protection Driver;c:\windows\system32\drivers\PavProc.sys [2011-2-27 163336]
R2 PavPrSrv;Panda Process Protection Service;c:\program files\common files\panda security\pavshld\PavPrSrv.exe [2011-2-27 62768]
R2 PAVSRV;Panda On-Access Anti-Malware Service;c:\program files\panda security\panda global protection 2011\pavsrvx86.exe [2011-2-27 314176]
R2 PskSvcRetail;Panda PSK service;c:\program files\panda security\panda global protection 2011\psksvc.exe [2011-2-27 28992]
R2 WinDefend;Windows Defender;c:\program files\windows defender\MsMpEng.exe [2006-11-3 13592]
R3 AvFlt;Antivirus Filter Driver;c:\windows\system32\drivers\av5flt.sys --> c:\windows\system32\drivers\av5flt.sys [?]
R3 ComFiltr;Panda Anti-Dialer;c:\windows\system32\drivers\COMFiltr.sys [2011-2-27 13880]
R3 NETIMFLT01060042;PANDA NDIS IM Filter Miniport v1.6.0.42;c:\windows\system32\drivers\neti1642.sys [2011-2-27 199688]
R3 PavSRK.sys;PavSRK.sys;\??\c:\windows\system32\pavsrk.sys --> c:\windows\system32\PavSRK.sys [?]
R3 PavTPK.sys;PavTPK.sys;\??\c:\windows\system32\pavtpk.sys --> c:\windows\system32\PavTPK.sys [?]
S0 gcvp;gcvp;c:\windows\system32\drivers\jchaq.sys --> c:\windows\system32\drivers\jchaq.sys [?]
S0 pfhat;pfhat;c:\windows\system32\drivers\gkmtm.sys --> c:\windows\system32\drivers\gkmtm.sys [?]
S2 gupdate1c9c840ccd702f8;Google Update Service (gupdate1c9c840ccd702f8);c:\program files\google\update\GoogleUpdate.exe [2009-4-28 133104]
S2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2011-2-27 676936]
S3 DfuUsb;DfuUsb;c:\windows\system32\drivers\DFUUsb.sys [2007-11-8 10880]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2011-2-27 22856]
S3 MHIKEY10;MHIKEY10;c:\windows\system32\drivers\MHIKEY10.sys [2012-1-30 51072]
S3 RkPavproc1;RkPavproc1;\??\c:\windows\system32\drivers\rkpavproc1.sys --> c:\windows\system32\drivers\RkPavproc1.sys [?]
S3 RkPavproc2;RkPavproc2;\??\c:\windows\system32\drivers\rkpavproc2.sys --> c:\windows\system32\drivers\RkPavproc2.sys [?]
S3 SynasUSB;SynasUSB;c:\windows\system32\drivers\synasUSB.sys [2010-2-26 18432]
.
=============== Created Last 30 ================
.
2012-11-11 15:23:05   6918632   ----a-w-   c:\documents and settings\all users\application data\microsoft\windows defender\definition updates\{14d2734a-bbce-428f-b154-972b23814da1}\mpengine.dll
2012-11-11 15:03:07   --------   d-----w-   c:\windows\system32\wbem\repository\FS
2012-11-11 15:03:07   --------   d-----w-   c:\windows\system32\wbem\Repository
2012-11-10 23:54:23   --------   d-----w-   c:\windows\system32\wbem\Logs(2)
.
==================== Find3M  ====================
.
2012-11-12 00:28:19   13880   ----a-w-   c:\windows\system32\drivers\COMFiltr.sys
2012-10-15 16:49:06   73656   ----a-w-   c:\windows\system32\FlashPlayerCPLApp.cpl
2012-10-15 16:49:06   696760   ----a-w-   c:\windows\system32\FlashPlayerApp.exe
2012-09-30 00:54:26   22856   ----a-w-   c:\windows\system32\drivers\mbam.sys
2012-08-28 15:14:53   916992   ----a-w-   c:\windows\system32\wininet.dll
2012-08-28 15:14:53   43520   ----a-w-   c:\windows\system32\licmgr10.dll
2012-08-28 15:14:52   1469440   ----a-w-   c:\windows\system32\inetcpl.cpl
2012-08-28 12:07:15   385024   ----a-w-   c:\windows\system32\html.iec
2012-08-24 13:53:22   177664   ----a-w-   c:\windows\system32\wintrust.dll
2012-08-21 13:33:26   2148864   ----a-w-   c:\windows\system32\ntoskrnl.exe
2012-08-21 12:58:09   2027520   ----a-w-   c:\windows\system32\ntkrnlpa.exe
.
============= FINISH: 19:25:22.09 ===============


.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-07.01)
.
Microsoft Windows XP Home Edition
Boot Device: \Device\HarddiskVolume1
Install Date: 3/26/2009 4:40:35 AM
System Uptime: 11/11/2012 6:25:17 PM (1 hours ago)
.
Motherboard: Gigabyte Technology Co., Ltd. |  | GA-MA74GM-S2
Processor: AMD Phenom(tm) 8450 Triple-Core Processor | Socket M2 | 2104/200mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 298 GiB total, 274.666 GiB free.
D: is CDROM (CDFS)
E: is Removable
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP936: 8/14/2012 11:42:54 PM - Software Distribution Service 3.0
RP937: 8/14/2012 11:46:32 PM - Software Distribution Service 3.0
RP938: 8/18/2012 12:01:26 AM - Software Distribution Service 3.0
RP939: 8/20/2012 9:17:20 PM - System Checkpoint
RP940: 8/21/2012 8:36:16 AM - Software Distribution Service 3.0
RP941: 8/22/2012 2:12:50 PM - System Checkpoint
RP942: 8/24/2012 9:15:21 PM - Software Distribution Service 3.0
RP943: 8/25/2012 3:53:33 PM - SpeedyPC Pro Backup
RP944: 8/25/2012 4:02:02 PM - SpeedyPC Pro Backup
RP945: 8/25/2012 4:17:28 PM - SpeedyPC Pro Backup
RP946: 8/25/2012 4:18:49 PM - SpeedyPC Pro Backup
RP947: 8/25/2012 4:20:57 PM - SpeedyPC Pro Backup
RP948: 8/25/2012 9:25:58 PM - SpeedyPC Pro Backup
RP949: 8/25/2012 9:26:30 PM - SpeedyPC Pro Backup
RP950: 8/25/2012 9:27:10 PM - SpeedyPC Pro Backup
RP951: 8/25/2012 9:27:41 PM - SpeedyPC Pro Backup
RP952: 8/27/2012 6:55:37 AM - System Checkpoint
RP953: 8/27/2012 3:40:11 PM - SpeedyPC Pro Backup
RP954: 8/27/2012 3:40:44 PM - SpeedyPC Pro Backup
RP955: 8/27/2012 3:41:30 PM - SpeedyPC Pro Backup
RP956: 8/27/2012 3:42:04 PM - SpeedyPC Pro Backup
RP957: 8/27/2012 3:47:27 PM - SpeedyPC Pro Backup
RP958: 8/27/2012 3:48:04 PM - SpeedyPC Pro Backup
RP959: 8/27/2012 3:52:20 PM - SpeedyPC Pro Backup
RP960: 8/28/2012 12:12:15 PM - Software Distribution Service 3.0
RP961: 8/31/2012 11:58:12 PM - Software Distribution Service 3.0
RP962: 9/2/2012 10:43:49 AM - System Checkpoint
RP963: 9/3/2012 11:10:51 AM - System Checkpoint
RP964: 9/4/2012 6:37:19 AM - Software Distribution Service 3.0
RP965: 9/6/2012 4:25:03 PM - Software Distribution Service 3.0
RP966: 9/9/2012 11:46:05 AM - Software Distribution Service 3.0
RP967: 9/9/2012 2:54:58 PM - SpeedyPC Pro Backup
RP968: 9/9/2012 3:00:21 PM - SpeedyPC Pro Backup
RP969: 9/9/2012 3:00:55 PM - SpeedyPC Pro Backup
RP970: 9/10/2012 3:30:21 PM - SpeedyPC Pro Backup
RP971: 9/10/2012 3:30:59 PM - SpeedyPC Pro Backup
RP972: 9/10/2012 3:31:36 PM - SpeedyPC Pro Backup
RP973: 9/11/2012 8:43:48 AM - Software Distribution Service 3.0
RP974: 9/11/2012 10:04:04 AM - SpeedyPC Pro Backup
RP975: 9/11/2012 10:05:04 AM - SpeedyPC Pro Backup
RP976: 9/11/2012 10:05:43 AM - SpeedyPC Pro Backup
RP977: 9/11/2012 10:06:22 AM - SpeedyPC Pro Backup
RP978: 9/12/2012 6:14:50 PM - System Checkpoint
RP979: 9/12/2012 6:28:09 PM - Software Distribution Service 3.0
RP980: 9/14/2012 5:41:35 PM - System Checkpoint
RP981: 9/14/2012 11:29:01 PM - Software Distribution Service 3.0
RP982: 9/16/2012 6:12:48 AM - System Checkpoint
RP983: 9/16/2012 7:06:14 AM - SpeedyPC Pro Backup
RP984: 9/16/2012 7:07:53 AM - SpeedyPC Pro Backup
RP985: 9/17/2012 8:27:36 AM - System Checkpoint
RP986: 9/18/2012 6:49:28 AM - Software Distribution Service 3.0
RP987: 9/20/2012 2:41:13 PM - System Checkpoint
RP988: 9/23/2012 6:12:59 AM - Software Distribution Service 3.0
RP989: 9/23/2012 6:18:12 AM - Software Distribution Service 3.0
RP990: 9/23/2012 10:41:33 AM - SpeedyPC Pro Backup
RP991: 9/23/2012 10:42:25 AM - SpeedyPC Pro Backup
RP992: 9/23/2012 10:42:58 AM - SpeedyPC Pro Backup
RP993: 9/23/2012 12:44:04 PM - SpeedyPC Pro Backup
RP994: 9/24/2012 1:17:57 PM - System Checkpoint
RP995: 9/25/2012 6:37:53 AM - Software Distribution Service 3.0
RP996: 9/26/2012 3:59:22 PM - System Checkpoint
RP997: 9/30/2012 9:41:07 AM - Software Distribution Service 3.0
RP998: 9/30/2012 10:33:50 AM - SpeedyPC Pro Backup
RP999: 9/30/2012 10:35:03 AM - SpeedyPC Pro Backup
RP1000: 9/30/2012 10:35:42 AM - SpeedyPC Pro Backup
RP1001: 10/1/2012 11:20:42 AM - System Checkpoint
RP1002: 10/2/2012 7:02:22 AM - Software Distribution Service 3.0
RP1003: 10/4/2012 4:54:55 PM - System Checkpoint
RP1004: 10/6/2012 7:50:47 AM - Software Distribution Service 3.0
RP1005: 10/7/2012 8:11:20 AM - System Checkpoint
RP1006: 10/8/2012 1:56:51 PM - System Checkpoint
RP1007: 10/12/2012 3:41:17 PM - Software Distribution Service 3.0
RP1008: 10/12/2012 3:44:36 PM - Software Distribution Service 3.0
RP1009: 10/15/2012 4:43:09 AM - System Checkpoint
RP1010: 10/15/2012 6:46:25 AM - SpeedyPC Pro Backup
RP1011: 10/15/2012 6:47:14 AM - SpeedyPC Pro Backup
RP1012: 10/15/2012 6:47:53 AM - SpeedyPC Pro Backup
RP1013: 10/15/2012 7:29:03 AM - SpeedyPC Pro Backup
RP1014: 10/15/2012 7:29:37 AM - SpeedyPC Pro Backup
RP1015: 10/20/2012 6:41:13 AM - Software Distribution Service 3.0
RP1016: 10/21/2012 6:25:53 AM - SpeedyPC Pro Backup
RP1017: 10/21/2012 6:26:33 AM - SpeedyPC Pro Backup
RP1018: 10/21/2012 6:27:03 AM - SpeedyPC Pro Backup
RP1019: 10/21/2012 7:14:35 AM - SpeedyPC Pro Backup
RP1020: 10/23/2012 10:06:12 AM - System Checkpoint
RP1021: 10/23/2012 2:10:10 PM - Software Distribution Service 3.0
RP1022: 10/24/2012 3:50:13 PM - System Checkpoint
RP1023: 10/26/2012 3:22:44 PM - System Checkpoint
RP1024: 10/28/2012 11:04:15 AM - Software Distribution Service 3.0
RP1025: 10/29/2012 9:04:05 AM - SpeedyPC Pro Backup
RP1026: 10/29/2012 9:05:39 AM - SpeedyPC Pro Backup
RP1027: 10/29/2012 9:06:46 AM - SpeedyPC Pro Backup
RP1028: 10/29/2012 9:07:36 AM - SpeedyPC Pro Backup
RP1029: 10/29/2012 9:12:13 AM - SpeedyPC Pro Backup
RP1030: 10/29/2012 9:13:54 AM - SpeedyPC Pro Backup
RP1031: 10/29/2012 9:14:33 AM - SpeedyPC Pro Backup
RP1032: 10/30/2012 8:08:47 AM - Software Distribution Service 3.0
RP1033: 11/2/2012 3:33:50 PM - System Checkpoint
RP1034: 11/2/2012 3:48:35 PM - Software Distribution Service 3.0
RP1035: 11/4/2012 8:59:18 AM - System Checkpoint
RP1036: 11/5/2012 9:25:07 AM - System Checkpoint
RP1037: 11/6/2012 5:07:50 AM - Software Distribution Service 3.0
RP1038: 11/10/2012 4:13:13 PM - Software Distribution Service 3.0
RP1039: 11/10/2012 5:45:50 PM - SpeedyPC Pro Backup
RP1040: 11/10/2012 5:50:57 PM - SpeedyPC Pro Backup
RP1041: 11/10/2012 5:52:20 PM - SpeedyPC Pro Backup
RP1042: 11/10/2012 5:52:56 PM - SpeedyPC Pro Backup
RP1043: 11/11/2012 4:50:31 AM - SpeedyPC Pro Backup
RP1044: 11/11/2012 9:02:04 AM - Restore Operation
RP1045: 11/11/2012 9:23:01 AM - Software Distribution Service 3.0
RP1046: 11/11/2012 6:50:01 PM - SpeedyPC Pro Backup
RP1047: 11/11/2012 6:50:48 PM - SpeedyPC Pro Backup
RP1048: 11/11/2012 6:51:28 PM - SpeedyPC Pro Backup
.
==== Installed Programs ======================
.
Actron Scanning Suite
Adobe Flash Player 10 ActiveX
Adobe Flash Player 11 Plugin
Adobe Reader 7.0
Ahead Nero OEM
Amazon Kindle
AMD Processor Driver
ATI - Software Uninstall Utility
ATI Catalyst Control Center
ATI Display Driver
ATI Parental Control & Encoder
AVS DVD Player version 1.6.1
Bing Rewards Client Installer
BlackBerry Desktop Software 6.1
BlackBerry Device Software Updater
BlackBerry USB Drivers
C751 Verizon Tool Launcher
CASIO USB Driver V1.5.1.0423
Catalyst Control Center Core Implementation
Catalyst Control Center Graphics Full Existing
Catalyst Control Center Graphics Full New
Catalyst Control Center Graphics Light
Catalyst Control Center Localization Chinese Standard
Catalyst Control Center Localization Chinese Traditional
Catalyst Control Center Localization Czech
Catalyst Control Center Localization Danish
Catalyst Control Center Localization Dutch
Catalyst Control Center Localization Finnish
Catalyst Control Center Localization French
Catalyst Control Center Localization German
Catalyst Control Center Localization Greek
Catalyst Control Center Localization Hungarian
Catalyst Control Center Localization Italian
Catalyst Control Center Localization Japanese
Catalyst Control Center Localization Korean
Catalyst Control Center Localization Norwegian
Catalyst Control Center Localization Polish
Catalyst Control Center Localization Portuguese
Catalyst Control Center Localization Russian
Catalyst Control Center Localization Spanish
Catalyst Control Center Localization Swedish
Catalyst Control Center Localization Thai
Catalyst Control Center Localization Turkish
ccc-core-preinstall
ccc-core-static
ccc-utility
CCC Help Chinese Standard
CCC Help Chinese Traditional
CCC Help Czech
CCC Help Danish
CCC Help Dutch
CCC Help English
CCC Help Finnish
CCC Help French
CCC Help German
CCC Help Greek
CCC Help Hungarian
CCC Help Italian
CCC Help Japanese
CCC Help Korean
CCC Help Norwegian
CCC Help Polish
CCC Help Portuguese
CCC Help Russian
CCC Help Spanish
CCC Help Swedish
CCC Help Thai
CCC Help Turkish
CCleaner
CyberPower PowerPanel Personal Edition 1.2.1
End User Upgrade Tool Monitor
G'zOne C751Upgrader
Google Chrome
Google Earth
Google Update Helper
Google Updater
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows XP (KB2756822)
Hotfix for Windows XP (KB954550-v5)
HP Officejet Pro 8600 Basic Device Software
HP Officejet Pro 8600 Help
HP Officejet Pro 8600 Product Improvement Study
HP Update
I.R.I.S. OCR
InterActual Player
Java(TM) 6 Update 17
Java(TM) 6 Update 4
Lexicon Alpha ASIO (remove only)
Lexicon Pantheon VST Plug-in (remove only)
Malwarebytes Anti-Malware version 1.65.1.1000
Mavis Beacon Teaches Typing 18
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Security Update (KB2656353)
Microsoft .NET Framework 1.1 Security Update (KB2656370)
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft Kernel-Mode Driver Framework Feature Pack 1.9
Microsoft National Language Support Downlevel APIs
Microsoft Silverlight
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
MITCalc-Beam 1.16b
Mozilla Firefox 10.0.2 (x86 en-US)
MSN
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
OpenOffice.org 2.4
Panda Global Protection 2010
Panda Global Protection 2011
Panda Secure Vault 5
Punch! Home and Landscape
Punch! Home and Lanscape
REALTEK GbE & FE Ethernet PCI-E NIC Driver
Realtek High Definition Audio Driver
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2604111)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2657424)
Security Update for Windows Internet Explorer 7 (KB938127-v2)
Security Update for Windows Internet Explorer 7 (KB956390)
Security Update for Windows Internet Explorer 7 (KB961260)
Security Update for Windows Internet Explorer 7 (KB963027)
Security Update for Windows Internet Explorer 7 (KB969897)
Security Update for Windows Internet Explorer 7 (KB972260)
Security Update for Windows Internet Explorer 8 (KB2183461)
Security Update for Windows Internet Explorer 8 (KB2360131)
Security Update for Windows Internet Explorer 8 (KB2416400)
Security Update for Windows Internet Explorer 8 (KB2482017)
Security Update for Windows Internet Explorer 8 (KB2497640)
Security Update for Windows Internet Explorer 8 (KB2510531)
Security Update for Windows Internet Explorer 8 (KB2530548)
Security Update for Windows Internet Explorer 8 (KB2544521)
Security Update for Windows Internet Explorer 8 (KB2559049)
Security Update for Windows Internet Explorer 8 (KB2586448)
Security Update for Windows Internet Explorer 8 (KB2618444)
Security Update for Windows Internet Explorer 8 (KB2647516)
Security Update for Windows Internet Explorer 8 (KB2675157)
Security Update for Windows Internet Explorer 8 (KB2699988)
Security Update for Windows Internet Explorer 8 (KB2722913)
Security Update for Windows Internet Explorer 8 (KB2744842)
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Internet Explorer 8 (KB981332)
Security Update for Windows XP (KB2653956)
Security Update for Windows XP (KB2655992)
Security Update for Windows XP (KB2659262)
Security Update for Windows XP (KB2676562)
Security Update for Windows XP (KB2685939)
Security Update for Windows XP (KB2686509)
Security Update for Windows XP (KB2691442)
Security Update for Windows XP (KB2695962)
Security Update for Windows XP (KB2698365)
Security Update for Windows XP (KB2705219)
Security Update for Windows XP (KB2707511)
Security Update for Windows XP (KB2709162)
Security Update for Windows XP (KB2712808)
Security Update for Windows XP (KB2718523)
Security Update for Windows XP (KB2719985)
Security Update for Windows XP (KB2723135)
Security Update for Windows XP (KB2724197)
Security Update for Windows XP (KB2731847)
Skins
SpeedyPC Pro
Steinberg Cubase LE 4
Syncrosoft License Control
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Windows Internet Explorer 8 (KB976662)
Update for Windows XP (KB2661254-v2)
Update for Windows XP (KB2718704)
Update for Windows XP (KB2736233)
Update for Windows XP (KB2749655)
USIM Editor 1.0.33.70
VZAccess Manager for RIM
WebFldrs XP
Windows Defender
Windows Driver Package - FTDI CDM Driver Package (03/13/2008 2.04.06)
Windows Driver Package - SPX Service Solutions, Inc (spxusb) Ports  (13/04/2009 1.03)
Windows Driver Package - SPX Service Solutions, Inc (usbser) Ports  (10/02/06 )
Windows Genuine Advantage Validation Tool (KB892130)
Windows Internet Explorer 8
Windows Media Format 11 runtime
Windows Media Player 11
.
==== Event Viewer Messages From Past Week ========
.
11/7/2012 3:33:03 PM, error: sr [1]  - The System Restore filter encountered the unexpected error '0xC0000243' while processing the file 'NetAdapt.cfg' on the volume 'HarddiskVolume1'.  It has stopped monitoring the volume.
11/11/2012 9:04:24 AM, error: WinDefend [2004]  - Windows Defender has encountered an error trying to load signatures and will attempt reverting back to a known-good set of signatures.    Signatures Attempted: Current    Error Code: 0x8050a001    Error description: The program can't find definition files that help detect unwanted software. Check for updates to the definition files, and then try again. For information on installing updates, see Help and Support.     Signatures loading: Backup    Loading signature version: 1.139.1429.0    Loading engine version: 1.1.8904.0
11/11/2012 8:35:35 AM, error: Service Control Manager [7026]  - The following boot-start or system-start driver(s) failed to load:  AmdPPM APPFLT DSAFLT Fips FNETMON IDSFLT pavboot ShldDrv WNMFLT
11/11/2012 8:34:33 AM, error: DCOM [10005]  - DCOM got error "%1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
11/11/2012 5:59:10 PM, error: Service Control Manager [7026]  - The following boot-start or system-start driver(s) failed to load:  AFD AmdPPM APPFLT DSAFLT Fips FNETMON IDSFLT IPSec MRxSmb NetBIOS NetBT NETFLTDI pavboot RasAcd Rdbss ShldDrv Tcpip WNMFLT
11/11/2012 5:59:10 PM, error: Service Control Manager [7001]  - The TCP/IP NetBIOS Helper service depends on the AFD service which failed to start because of the following error:  A device attached to the system is not functioning.
11/11/2012 5:59:10 PM, error: Service Control Manager [7001]  - The IPSEC Services service depends on the IPSEC driver service which failed to start because of the following error:  A device attached to the system is not functioning.
11/11/2012 5:59:10 PM, error: Service Control Manager [7001]  - The DNS Client service depends on the TCP/IP Protocol Driver service which failed to start because of the following error:  A device attached to the system is not functioning.
11/11/2012 5:59:10 PM, error: Service Control Manager [7001]  - The DHCP Client service depends on the NetBios over Tcpip service which failed to start because of the following error:  A device attached to the system is not functioning.
11/11/2012 5:59:08 PM, error: DCOM [10005]  - DCOM got error "%1084" attempting to start the service netman with arguments "" in order to run the server: {BA126AE5-2166-11D1-B1D0-00805FC1270E}
11/10/2012 5:42:02 PM, error: Service Control Manager [7034]  - The MBAMScheduler service terminated unexpectedly.  It has done this 1 time(s).
.
==== End Of File ===========================
« Last Edit: November 11, 2012, 08:03:50 pm by Hoov »



Online Hoov

  • Malware Removal Mentors
  • Global Moderator
  • Diamond Member
  • Posts: 25170
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
Re: [In Progress] antivirus suddenly quit working
« Reply #1 on: November 11, 2012, 08:06:43 pm »
Hello, welcome to SpywareHammer.

I go by Hoov, and I will be helping you with your problem. I must ask you to do a few things for me.

First, tell me everything that you have done, if anything, to try and fix this problem.Also tell me any other problems you are having, no matter how small or long you have been dealing with them.

Second, please only use 1 forum to help clear up your problem. Posting on more than 1 and following instructions from more than 1 forum will cause those helping you to pull out thier hair.

Third, follow my instructions - If you can't for some reason, or if you don't understand something, please tell me. If you deviate from my instructions, tell me, it may make a difference on where we go.

Fourth, Have faith. I will do all I can to get your computer working, and if I can't - someone else here will know something else to try.

Fifth, if we start this fix, I need you to stick with me until the end. Just because your computer is running better does not mean it is fixed.

Before we start trying to fix your computer, you need to make sure your data is backed up. Also let me know of any software you have running that encrypts your harddrive.

One last thing, I need you to tell me if this computer belongs to a school or to a company or orginization of some kind. If it does, please let me know. Also tell me if there is an IT department responsible for this computer.

Now onto trying to fix your computer.


Please update Malwarebytes' Anti-Malware and then run a quick scan with it. If it finds anything, fix it and then post the log. If it does not find anything, post that log instead.

Are you having any other problems? Have you tried restarting your computer?

Consumer Security

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!

Offline trueyes

  • Bronze Member
  • Posts: 6
Re: [In Progress] antivirus suddenly quit working
« Reply #2 on: November 13, 2012, 06:15:08 pm »
Alright, first thing's first. I have tried to restart the computer. That did not help. I still got the error. Second, panda was at the time, up to date, and i did a full scan in safe mode and it found nothing.  I also updated malwarebytes and ran the quick scan like you recommended however I don't think that was in safe mode. Regardless, it found no issues. I'll post the results at the bottom. And the only other thing I noticed was that I still got the error message when in safe mode. And since doing all of that, I am now getting another windows error message that says upgrader.exe and it is one that asks me if I want to send and error report just like the other message I'm getting. I have no software running that encrypts the hdd. And this is a my dad's pc and he gave it to me to do all of this cause he's a super slow typer.

Malwarebytes Anti-Malware (PRO) 1.65.1.1000
www.malwarebytes.org

Database version: v2012.11.12.07

Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Keith :: JACOBY-DESKTOP [administrator]

Protection: Enabled

11/12/2012 5:09:49 PM
mbam-log-2012-11-12 (17-09-49).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 207585
Time elapsed: 4 minute(s), 8 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)

Online Hoov

  • Malware Removal Mentors
  • Global Moderator
  • Diamond Member
  • Posts: 25170
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
Re: [In Progress] antivirus suddenly quit working
« Reply #3 on: November 13, 2012, 08:09:12 pm »
upgrader.exe is part of Panda. So it does seem as if you have a problem with Panda. As both of your warnings seem to be Panda related, I think a reinstall of Panda is the first step. Follow the instructions on this page to uninstall it. Then reboot the computer and reinstall Panda.

Once you have done that, reboot the computer and note the time that you reboot it this time. Then please send me a copy of your event viewer logs. The instructions are below. If they are to big to attach, let me know and I will send you a PM with a link to send them to me.



I need you to go to the administration tools in XP. They are in the Control Panel. Open the Admin tools, then open the event viewer. Over on the left hand side and click on System. Then up at the top click on Action and then click on Save Events As, type in system as the file name,  make sure file type EVT is selected, and then navigate so it will save the file to your desktop, then click save. Over on the left hand side and click on Application. Then up at the top click on Action and then click on Save Events As, type in application as the file name,  make sure file type EVT is selected, and then navigate so it will save the file to your desktop, then click save. Zip them both up into a single zip file, post them back here in your next reply as attachments.

Consumer Security

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!

Offline trueyes

  • Bronze Member
  • Posts: 6
Re: [In Progress] antivirus suddenly quit working
« Reply #4 on: November 14, 2012, 05:25:51 pm »
here's the zipped system and app logs.

Online Hoov

  • Malware Removal Mentors
  • Global Moderator
  • Diamond Member
  • Posts: 25170
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
Re: [In Progress] antivirus suddenly quit working
« Reply #5 on: November 14, 2012, 06:59:21 pm »
How is the computer running? There is something on your computer called Snap.Do, do you use it? Also there is something called Sentinal that is having problems. Do you know what that is?

Consumer Security

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!

Offline trueyes

  • Bronze Member
  • Posts: 6
Re: [In Progress] antivirus suddenly quit working
« Reply #6 on: November 15, 2012, 04:34:36 pm »
Snap.do didn't come up until I uninstalled panda 2011 and downloaded and installed panda 2013. I activated the new panda with my current subscription key. I figured it was just one of those add ons that programs try to put on when you install them, I thought I said no to all of them but I must have missed one, it appears to just to be a new homescreen in firefox. But I really don't know what it is. And the other item you're referring to...sentinal...that i have no idea what it is.

Offline trueyes

  • Bronze Member
  • Posts: 6
Re: [In Progress] antivirus suddenly quit working
« Reply #7 on: November 15, 2012, 04:42:32 pm »
Oh and also the computer seems to be running fine and I haven't gotten any errors yet.

Online Hoov

  • Malware Removal Mentors
  • Global Moderator
  • Diamond Member
  • Posts: 25170
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
Re: [In Progress] antivirus suddenly quit working
« Reply #8 on: November 15, 2012, 06:26:28 pm »
Go to the control panel and then to the add / remove programs and see if snap.do is listed. If it is, uninstall it.

Download http://spywarehammer.com/Tools/HijackThis.exe and install it. Once it is running click the Open the Misc Tools Section Then click the Generate Startuplist log button. DO NOT check the two boxes next to the button. When you get a log, post the results here.

Consumer Security

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!

Offline trueyes

  • Bronze Member
  • Posts: 6
Re: [In Progress] antivirus suddenly quit working
« Reply #9 on: November 19, 2012, 06:08:56 pm »
StartupList report, 11/19/2012, 6:07:53 PM
StartupList version: 1.52.2
Started from : C:\Documents and Settings\Keith\Desktop\HijackThis.EXE
Detected: Windows XP SP3 (WinNT 5.01.2600)
Detected: Internet Explorer v8.00 (8.00.6001.18702)
* Using default options
==================================================

Running processes:

C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Panda Security\Panda Global Protection 2013\TPSrv.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRAM FILES\PANDA SECURITY\PANDA GLOBAL PROTECTION 2013\WebProxy.exe
C:\WINDOWS\SYSTEM32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files\Panda Security\Panda Global Protection 2013\PsCtrls.exe
C:\Program Files\Panda Security\Panda Global Protection 2013\PavFnSvr.exe
C:\Program Files\Common Files\Panda Security\PavShld\pavprsrv.exe
C:\Program Files\CyberPower PowerPanel Personal Edition\ppped.exe
c:\program files\panda security\panda global protection 2013\firewall\PSHOST.EXE
C:\Program Files\Panda Security\Panda Global Protection 2013\PsImSvc.exe
C:\Program Files\Panda Security\Panda Global Protection 2013\PskSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Panda Security\Panda Global Protection 2013\pavsrvx86.exe
C:\Program Files\Panda Security\Panda Global Protection 2013\AVENGINE.EXE
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Panda Security\Panda Global Protection 2013\ApVxdWin.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files\Panda Security\Panda Global Protection 2013\SRVLOAD.EXE
C:\Program Files\Panda Security\Panda Global Protection 2013\PavBckPT.exe
C:\Program Files\Verizon Wireless\VZAccess Manager\VZAccess Manager.exe
C:\Program Files\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe
C:\Documents and Settings\Keith\Local Settings\Application Data\CrossLoop\CrossLoopService.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\Keith\Desktop\HijackThis.exe

--------------------------------------------------

Checking Windows NT UserInit:

[HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon]
UserInit = c:\windows\system32\userinit.exe,

--------------------------------------------------

Autorun entries from Registry:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run

(Default) =
APVXDWIN = "C:\Program Files\Panda Security\Panda Global Protection 2013\APVXDWIN.EXE" /s
SCANINICIO = "C:\Program Files\Panda Security\Panda Global Protection 2013\Inicio.exe"

--------------------------------------------------

Autorun entries from Registry:
HKCU\Software\Microsoft\Windows\CurrentVersion\Run

ctfmon.exe = C:\WINDOWS\system32\ctfmon.exe
ISUSPM = "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler

--------------------------------------------------

Shell & screensaver key from C:\WINDOWS\SYSTEM.INI:

Shell=*INI section not found*
SCRNSAVE.EXE=*INI section not found*
drivers=*INI section not found*

Shell & screensaver key from Registry:

Shell=Explorer.exe
SCRNSAVE.EXE=C:\WINDOWS\System32\logon.scr
drivers=*Registry value not found*

Policies Shell key:

HKCU\..\Policies: Shell=*Registry key not found*
HKLM\..\Policies: Shell=*Registry value not found*

--------------------------------------------------


Enumerating Browser Helper Objects:

(no name) - (no file) - {0555CD16-5826-4E3E-85E3-CDC2603EAE34}
(no name) - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}
(no name) - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D}
JQSIEStartDetectorImpl - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll - {E7E6F031-17CE-4C07-BC86-EABFE594F69C}

--------------------------------------------------

Enumerating Task Scheduler jobs:

Basic clean-up.job
Google Software Updater.job
GoogleUpdateTaskMachineCore.job
GoogleUpdateTaskMachineUA.job
MP Scheduled Scan.job
SpeedyPC Pro.job
SpeedyPC Registration3.job
SpeedyPC Update Version3.job

--------------------------------------------------

Enumerating Download Program Files:

[Windows Genuine Advantage Validation Tool]
InProcServer32 = C:\WINDOWS\system32\LegitCheckControl.DLL
CODEBASE = http://go.microsoft.com/fwlink/?linkid=39204

--------------------------------------------------

Enumerating Windows NT logon/logoff scripts:
*No scripts set to run*

Windows NT checkdisk command:
BootExecute = autocheck autochk *

Windows NT 'Wininit.ini':
PendingFileRenameOperations: C:\DOCUME~1\Keith\LOCALS~1\Temp\{27DB7DC9-1AFA-4C5C-84AC-5DA60B58CA25}\fpb.tmp||C:\DOCUME~1\Keith\LOCALS~1\Temp\{27DB7DC9-1AFA-4C5C-84AC-5DA60B58CA25}


--------------------------------------------------

Enumerating ShellServiceObjectDelayLoad items:

PostBootReminder: C:\WINDOWS\system32\SHELL32.dll
CDBurn: C:\WINDOWS\system32\SHELL32.dll
WebCheck: C:\WINDOWS\system32\webcheck.dll
WPDShServiceObj: C:\WINDOWS\system32\WPDShServiceObj.dll
UPnPMonitor: C:\WINDOWS\system32\upnpui.dll
SysTray: C:\WINDOWS\system32\stobject.dll

--------------------------------------------------
End of report, 6,469 bytes
Report generated in 0.063 seconds

Command line options:
   /verbose  - to add additional info on each section
   /complete - to include empty sections and unsuspicious data
   /full     - to include several rarely-important sections
   /force9x  - to include Win9x-only startups even if running on WinNT
   /forcent  - to include WinNT-only startups even if running on Win9x
   /forceall - to include all Win9x and WinNT startups, regardless of platform
   /history  - to list version history only

Online Hoov

  • Malware Removal Mentors
  • Global Moderator
  • Diamond Member
  • Posts: 25170
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
Re: [In Progress] antivirus suddenly quit working
« Reply #10 on: November 19, 2012, 07:23:10 pm »
That does not show everything. 

Please download RunScanner
  • Save it to a folder you create such as C:\Runscanner (this assumes Windows is installed on your C: drive).
  • Launch Runscanner by double-clicking runscanner.exe within the C:\Runscanner folder.
  • Vista users must also click Continue to open Runscanner when prompted by User Account Control (UAC)
  • Check Beginner Mode
  • Click Scan computer
  • Your will see a "Runscanner scan in progress" window displayed while Runscanner scans your system
  • At the conclusion of the scan, save the run file called runscanner.run to your documents folder or directly to the Runscanner folder. This is the file you will need to upload.
  • A runscanner.log file will automatically open in Notepad. Just close the Notepad window because, it is ONLY the runscanner.run file that we are interested in.
  • Next, zip up the runscanner.run file that you just saved.
  • I want you to upload the zipped runscanner.run file as an attachment in your next reply
  • To do that choose "Additional Options" under "Post Reply"
  • Browse to the zipped RUN file location and then click the "Post" button to attach the file.
  • I will review the run file, and then upload it back to you with items marked for deletion.
  • Please await my directions and the returned RUN file, and do not delete anything in the interim

Consumer Security

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!

Online Hoov

  • Malware Removal Mentors
  • Global Moderator
  • Diamond Member
  • Posts: 25170
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
Re: [In Progress] antivirus suddenly quit working
« Reply #11 on: December 13, 2012, 09:44:56 pm »
This thread is being closed due to inactivity. If you need it reopened send me a PM. This applies to the originator only. Anyone else please start a new thread.


Consumer Security

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!