Author Topic: [Resolved] Hoov here is the log  (Read 16463 times)

0 Members and 1 Guest are viewing this topic.

Offline capricorn33

  • Bronze Member
  • Posts: 258
[Resolved] Hoov here is the log
« on: September 13, 2009, 05:04:49 pm »
i keep getting bug problems with java little reports on desktop, also i get error reports all the time, today comp. said i had a virus ran malware and found nothing, ran avira and it said 2 warnings couldnt open 2 files cuz they are windows files.and i have had blue screen before like about 3 days ago and i star up comp. and it goes away.here is log Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 4:12:15 PM, on 9/13/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Qwest\Quickcare\bin\sprtcmd.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Dell Photo Printer 720\dlbcserv.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\supportsoft\bin\sprtlisten.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\MSN\Toolbar\3.0.1203.0\msntask.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O1 - Hosts: 74.125.45.100 4-open-davinci.com
O1 - Hosts: 74.125.45.100 securitysoftwarepayments.com
O1 - Hosts: 74.125.45.100 privatesecuredpayments.com
O1 - Hosts: 74.125.45.100 secure.privatesecuredpayments.com
O1 - Hosts: 74.125.45.100 getantivirusplusnow.com
O1 - Hosts: 74.125.45.100 secure-plus-payments.com
O1 - Hosts: 74.125.45.100 www.getantivirusplusnow.com
O1 - Hosts: 74.125.45.100 www.secure-plus-payments.com
O1 - Hosts: 74.125.45.100 www.getavplusnow.com
O1 - Hosts: 74.125.45.100 www.securesoftwarebill.com
O1 - Hosts: 74.125.45.100 secure.paysecuresystem.com
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll
O2 - BHO: MSN Toolbar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\MSN\Toolbar\3.0.1203.0\msneshellx.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
O3 - Toolbar: MSN Toolbar - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - C:\Program Files\MSN\Toolbar\3.0.1203.0\msneshellx.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [QuickCare] C:\Program Files\Qwest\Quickcare\bin\sprtcmd.exe /P QuickCare
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [Google Quick Search Box] "C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe"  /autorun
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [Uniblue RegistryBooster 2009] C:\Program Files\Uniblue\RegistryBooster\RegistryBooster.exe /S
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - Global Startup: dlbcserv.lnk = C:\Program Files\Dell Photo Printer 720\dlbcserv.exe
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1252812933093
O16 - DPF: {A4110378-789B-455F-AE86-3A1BFC402853} (ZPA_SHVL Object) - http://zone.msn.com/bingame/zpagames/zpa_shvl.cab55579.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://cdn2.zone.msn.com/binFramework/v10/ZPAFramework.cab102118.cab
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: SupportSoft Listener Service (sprtlisten) - SupportSoft, Inc. - C:\Program Files\Common Files\supportsoft\bin\sprtlisten.exe
O23 - Service: SupportSoft RemoteAssist - SupportSoft, Inc. - C:\Program Files\Common Files\supportsoft\bin\ssrc.exe

--
End of file - 7116 bytes
« Last Edit: September 15, 2009, 02:31:07 pm by Hoov »



Offline capricorn33

  • Bronze Member
  • Posts: 258
Re: Hoov here is the log
« Reply #1 on: September 13, 2009, 05:07:41 pm »
also wanted to read what hijack this said as i was downloading it or running scan i mean, it said " for some reason system denied write access to host file  it says if any hijack domains are in this file hijack this may not be able to fix this.  also in add/remove i dont see java the upgrade u and i did 2 weeks ago but when i try and download the latest version it says i have it. ok will wait to here from you

Offline Hoov

  • Malware Removal Mentors
  • Global Moderator
  • Diamond Member
  • Posts: 25207
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
Re: Hoov here is the log
« Reply #2 on: September 14, 2009, 08:28:35 am »
The first thing I would like to try is to clear the java cache.

To clear the Java Runtime Environment (JRE) cache:
  • Click Start > Control Panel.
  • Double-click the Java icon in the control panel.


-The Java Control Panel appears.

  • Click Settings under Temporary Internet Files.


-The Temporary Files Settings dialog box appears.

  • Click Delete Files.


-The Delete Temporary Files dialog box appears.

-There are three options on this window to clear the cache.
  • Delete Files
  • View Applications
  • View Applets
  • Click OK on Delete Temporary Files window.


-Note: This deletes all the Downloaded Applications and Applets from the cache.

  • Click OK on Temporary Files Settings window.
  • Close the Java Control Panel
You can view those instructions along with graphics Here

Also I would like to get a picture of all the problems your computer is having, so if you could attach the event viewer logs, it would help.

I need you to go to the administration tools in XP. They are in the Control Panel. Open the Admin tools, then open the event viewer. Over on the left hand side and click on System. Then up at the top click on Action and then click on Save Events As, type in system as the file name,  make sure file type EVT is selected, and then navigate so it will save the file to your desktop, then click save. Over on the left hand side and click on Application. Then up at the top click on Action and then click on Save Events As, type in application as the file name,  make sure file type EVT is selected, and then navigate so it will save the file to your desktop, then click save. Zip them both up into a single zip file, post them back here in your next reply as attachments.

Consumer Security

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!

Offline capricorn33

  • Bronze Member
  • Posts: 258
Re: Hoov here is the log
« Reply #3 on: September 14, 2009, 03:16:19 pm »
ok  i will do this it is 2 pm i have to take my daughter to work but here is the java things i g#
# A fatal error has been detected by the Java Runtime Environment:
#
#  EXCEPTION_ACCESS_VIOLATION (0xc0000005) at pc=0x0091d891, pid=2016, tid=2940
#
# JRE version: 6.0_16-b01
# Java VM: Java HotSpot(TM) Client VM (14.2-b01 mixed mode, sharing windows-x86 )
# Problematic frame:
# j  sun.nio.ch.FileChannelImpl.position(J)Ljava/nio/channels/FileChannel;+118
#
# If you would like to submit a bug report, please visit:
#   http://java.sun.com/webapps/bugreport/crash.jsp
#

---------------  T H R E A D  ---------------

Current thread (0x03149c00):  JavaThread "thread applet-com.pogo.game.client2.peaks.PeaksApplet-3" [_thread_in_Java, id=2940, stack(0x03ab0000,0x03b00000)]

siginfo: ExceptionCode=0xc0000005, reading address 0x014b8f10

Registers:
EAX=0x00000001, EBX=0x0000009e, ECX=0x00000001, EDX=0xffffffff
ESP=0x03afebe0, EBP=0x03afec0c, ESI=0x2ab91dd8, EDI=0x03afec3c
EIP=0x0091d891, EFLAGS=0x00210206

Top of Stack: (sp=0x03afebe0)
0x03afebe0:   229fb4d8 03149c05 229fb540 03afebe4
0x03afebf0:   2ab91dce 03afec3c 2b4ca320 00000000
0x03afec00:   2b4caeb0 00000000 03afec34 03afec68
0x03afec10:   00912f07 00000000 00000061 00000000
0x03afec20:   229fb4d8 ffffffff 0004db4c 00000000
0x03afec30:   229fb540 0004db4c 00000000 229fb4d8
0x03afec40:   03149c05 229f55c8 03afec40 2aa9f1f9
0x03afec50:   03afec8c 2b3356a8 00000000 2b336cb8

Instructions: (pc=0x0091d891)
0x0091d881:   01 00 00 14 41 9f 6d 9e 00 00 00 00 00 00 00 58
0x0091d891:   85 c0 0f 8f 4b 01 00 00 8b 4d f4 8b 56 01 0f ca


Stack: [0x03ab0000,0x03b00000],  sp=0x03afebe0,  free space=314k
Native frames: (J=compiled Java code, j=interpreted, Vv=VM code, C=native code)
j  sun.nio.ch.FileChannelImpl.position(J)Ljava/nio/channels/FileChannel;+118
j  sun.font.TrueTypeFont.getTableBuffer(I)Ljava/nio/ByteBuffer;+113
j  sun.font.TrueTypeFont.initNames()V+9
j  sun.font.TrueTypeFont.init(I)V+319
j  sun.font.TrueTypeFont.<init>(Ljava/lang/String;Ljava/lang/Object;IZ)V+45
j  sun.font.FontManager.registerFontFile(Ljava/lang/String;[Ljava/lang/String;IZI)Lsun/font/PhysicalFont;+75
j  sun.font.FontManager.registerFonts([Ljava/lang/String;[[Ljava/lang/String;IIZIZ)V+50
j  sun.java2d.SunGraphicsEnvironment.addDirFonts(Ljava/lang/String;Ljava/io/File;Ljava/io/FilenameFilter;IZIZZ)V+401
j  sun.java2d.SunGraphicsEnvironment.registerFontsInDir(Ljava/lang/String;ZIZZ)V+34
j  sun.java2d.SunGraphicsEnvironment.registerFontsOnPath(Ljava/lang/String;ZIZZ)V+33
j  sun.java2d.SunGraphicsEnvironment.access$600(Lsun/java2d/SunGraphicsEnvironment;Ljava/lang/String;ZIZZ)V+8
j  sun.java2d.SunGraphicsEnvironment$4.run()Ljava/lang/Object;+53
v  ~StubRoutines::call_stub
V  [jvm.dll+0xecf9c]
V  [jvm.dll+0x1741e1]
V  [jvm.dll+0xed01d]
V  [jvm.dll+0x11c2bf]
C  [java.dll+0x1015]
j  sun.java2d.SunGraphicsEnvironment.loadFontFiles()V+42
j  sun.font.FontManager.findFont2D(Ljava/lang/String;II)Lsun/font/Font2D;+897
j  sun.font.FontManager.findFont2D(Ljava/lang/String;II)Lsun/font/Font2D;+852
j  java.awt.Font.getFont2D()Lsun/font/Font2D;+75
v  ~StubRoutines::call_stub
V  [jvm.dll+0xecf9c]
V  [jvm.dll+0x1741e1]
V  [jvm.dll+0xed01d]
V  [jvm.dll+0xf5e2f]
V  [jvm.dll+0xf7714]
C  [fontmanager.dll+0x25b76]
j  sun.font.FontDesignMetrics.initMatrixAndMetrics()V+4
j  sun.font.FontDesignMetrics.<init>(Ljava/awt/Font;Ljava/awt/font/FontRenderContext;)V+62
j  sun.font.FontDesignMetrics.getMetrics(Ljava/awt/Font;Ljava/awt/font/FontRenderContext;)Lsun/font/FontDesignMetrics;+141
j  sun.java2d.SunGraphics2D.getFontMetrics()Ljava/awt/FontMetrics;+21
j  com.pogo.ui2.awt.t.b(Ljava/awt/Graphics;)V+49
j  com.pogo.ui2.awt.t.a()V+32
j  com.pogo.ui2.awt.t.addNotify()V+5
j  java.awt.Container.addImpl(Ljava/awt/Component;Ljava/lang/Object;I)V+194
j  java.awt.Container.add(Ljava/awt/Component;)Ljava/awt/Component;+4
j  com.pogo.game.client2.a.a(Ljava/awt/Container;Ljava/awt/Color;Ljava/lang/String;Ljava/lang/String;)Lcom/pogo/ui2/awt/t;+62
j  com.pogo.game.client2.a.a(Ljava/awt/Container;Ljava/awt/Color;)Lcom/pogo/ui2/awt/t;+18
j  com.pogo.game.client2.a.d(Ljava/awt/Container;)Lcom/pogo/ui2/awt/t;+18
j  com.pogo.game.client2.o.init()V+159
j  sun.plugin2.applet.Plugin2Manager$AppletExecutionRunnable.run()V+916
j  java.lang.Thread.run()V+11
v  ~StubRoutines::call_stub
V  [jvm.dll+0xecf9c]
V  [jvm.dll+0x1741e1]
V  [jvm.dll+0xed167]
V  [jvm.dll+0xed1dd]
V  [jvm.dll+0x116290]
V  [jvm.dll+0x1d0424]
V  [jvm.dll+0x173e5c]
C  [msvcr71.dll+0x9565]
C  [kernel32.dll+0xb729]


---------------  P R O C E S S  ---------------

Java Threads: ( => current thread )
  0x03cb2400 JavaThread "Direct Clip" daemon [_thread_blocked, id=2992, stack(0x045a0000,0x045f0000)]
  0x03c7b800 JavaThread "Thread-23" daemon [_thread_blocked, id=3636, stack(0x043b0000,0x04400000)]
  0x0317a000 JavaThread "Thread-22" daemon [_thread_blocked, id=3124, stack(0x04360000,0x043b0000)]
  0x032cf800 JavaThread "Thread-21" daemon [_thread_blocked, id=1028, stack(0x04310000,0x04360000)]
  0x03cb8400 JavaThread "Java Sound Event Dispatcher" daemon [_thread_blocked, id=2380, stack(0x042c0000,0x04310000)]
  0x03149000 JavaThread "Thread-19" [_thread_blocked, id=1324, stack(0x03b50000,0x03ba0000)]
=>0x03149c00 JavaThread "thread applet-com.pogo.game.client2.peaks.PeaksApplet-3" [_thread_in_Java, id=2940, stack(0x03ab0000,0x03b00000)]
  0x031ab000 JavaThread "AWT-EventQueue-4" [_thread_blocked, id=2624, stack(0x03a10000,0x03a60000)]
  0x0311e400 JavaThread "Applet 9 LiveConnect Worker Thread" [_thread_blocked, id=3532, stack(0x03520000,0x03570000)]
  0x031abc00 JavaThread "Thread-18" [_thread_blocked, id=1756, stack(0x039c0000,0x03a10000)]
  0x03154800 JavaThread "Keep-Alive-Timer" daemon [_thread_blocked, id=3524, stack(0x03c00000,0x03c50000)]
  0x0313e800 JavaThread "ConsoleWriterThread" daemon [_thread_blocked, id=3500, stack(0x03b00000,0x03b50000)]
  0x0312ec00 JavaThread "Windows Tray Icon Thread" [_thread_in_native, id=2680, stack(0x03a60000,0x03ab0000)]
  0x0312e800 JavaThread "TimerQueue" daemon [_thread_blocked, id=1864, stack(0x03480000,0x034d0000)]
  0x030fa800 JavaThread "Browser Side Object Cleanup Thread" [_thread_blocked, id=812, stack(0x037a0000,0x037f0000)]
  0x030f4c00 JavaThread "AWT-EventQueue-1" [_thread_blocked, id=3704, stack(0x03620000,0x03670000)]
  0x030f2400 JavaThread "CacheCleanUpThread" daemon [_thread_blocked, id=3048, stack(0x035c0000,0x03610000)]
  0x030dcc00 JavaThread "CacheMemoryCleanUpThread" daemon [_thread_blocked, id=1820, stack(0x03020000,0x03070000)]
  0x030ddc00 JavaThread "AWT-EventQueue-0" [_thread_blocked, id=3072, stack(0x03570000,0x035c0000)]
  0x030d8c00 JavaThread "Java Plug-In Heartbeat Thread" [_thread_blocked, id=612, stack(0x034d0000,0x03520000)]
  0x030d6000 JavaThread "AWT-Windows" daemon [_thread_in_native, id=600, stack(0x033c0000,0x03410000)]
  0x030d4800 JavaThread "AWT-Shutdown" [_thread_blocked, id=3272, stack(0x03370000,0x033c0000)]
  0x030d3800 JavaThread "Java2D Disposer" daemon [_thread_blocked, id=2020, stack(0x03320000,0x03370000)]
  0x02b46800 JavaThread "Java Plug-In Pipe Worker Thread (Client-Side)" daemon [_thread_in_native, id=2884, stack(0x03080000,0x030d0000)]
  0x02b47c00 JavaThread "traceMsgQueueThread" daemon [_thread_blocked, id=3512, stack(0x02fd0000,0x03020000)]
  0x02ad5800 JavaThread "Timer-0" [_thread_blocked, id=2004, stack(0x02f80000,0x02fd0000)]
  0x02ab9800 JavaThread "Low Memory Detector" daemon [_thread_blocked, id=1488, stack(0x02d30000,0x02d80000)]
  0x02ab3000 JavaThread "CompilerThread0" daemon [_thread_blocked, id=3456, stack(0x02ce0000,0x02d30000)]
  0x02ab1800 JavaThread "Attach Listener" daemon [_thread_blocked, id=540, stack(0x02c90000,0x02ce0000)]
  0x02ab0400 JavaThread "Signal Dispatcher" daemon [_thread_blocked, id=1568, stack(0x02c40000,0x02c90000)]
  0x02a71c00 JavaThread "Finalizer" daemon [_thread_blocked, id=1232, stack(0x02bf0000,0x02c40000)]
  0x02a6d000 JavaThread "Reference Handler" daemon [_thread_blocked, id=3132, stack(0x02ba0000,0x02bf0000)]
  0x002b6c00 JavaThread "main" [_thread_blocked, id=2648, stack(0x008c0000,0x00910000)]

Other Threads:
  0x02a6b800 VMThread [stack: 0x02b50000,0x02ba0000] [id=3176]
  0x02acd000 WatcherThread [stack: 0x02d80000,0x02dd0000] [id=1680]

VM state:not at safepoint (normal execution)

VM Mutex/Monitor currently owned by a thread: None

Heap
 def new generation   total 960K, used 504K [0x22990000, 0x22a90000, 0x22e70000)
  eden space 896K,  49% used [0x22990000, 0x229fe378, 0x22a70000)
  from space 64K, 100% used [0x22a70000, 0x22a80000, 0x22a80000)
  to   space 64K,   0% used [0x22a80000, 0x22a80000, 0x22a90000)
 tenured generation   total 4096K, used 2284K [0x22e70000, 0x23270000, 0x26990000)
   the space 4096K,  55% used [0x22e70000, 0x230ab388, 0x230ab400, 0x23270000)
 compacting perm gen  total 12288K, used 3480K [0x26990000, 0x27590000, 0x2a990000)
   the space 12288K,  28% used [0x26990000, 0x26cf61d8, 0x26cf6200, 0x27590000)
    ro space 8192K,  63% used [0x2a990000, 0x2aea9920, 0x2aea9a00, 0x2b190000)
    rw space 12288K,  53% used [0x2b190000, 0x2b804dd0, 0x2b804e00, 0x2bd90000)

Dynamic libraries:
0x00400000 - 0x00424000    C:\Program Files\Java\jre6\bin\java.exe
0x7c900000 - 0x7c9b2000    C:\WINDOWS\system32\ntdll.dll
0x7c800000 - 0x7c8f6000    C:\WINDOWS\system32\kernel32.dll
0x77dd0000 - 0x77e6b000    C:\WINDOWS\system32\ADVAPI32.dll
0x77e70000 - 0x77f02000    C:\WINDOWS\system32\RPCRT4.dll
0x77fe0000 - 0x77ff1000    C:\WINDOWS\system32\Secur32.dll
0x7c340000 - 0x7c396000    C:\Program Files\Java\jre6\bin\msvcr71.dll
0x6d800000 - 0x6da8b000    C:\Program Files\Java\jre6\bin\client\jvm.dll
0x7e410000 - 0x7e4a1000    C:\WINDOWS\system32\USER32.dll
0x77f10000 - 0x77f59000    C:\WINDOWS\system32\GDI32.dll
0x76b40000 - 0x76b6d000    C:\WINDOWS\system32\WINMM.dll
0x76390000 - 0x763ad000    C:\WINDOWS\system32\IMM32.DLL
0x6d7b0000 - 0x6d7bc000    C:\Program Files\Java\jre6\bin\verify.dll
0x6d330000 - 0x6d34f000    C:\Program Files\Java\jre6\bin\java.dll
0x6d290000 - 0x6d298000    C:\Program Files\Java\jre6\bin\hpi.dll
0x76bf0000 - 0x76bfb000    C:\WINDOWS\system32\PSAPI.DLL
0x6d7f0000 - 0x6d7ff000    C:\Program Files\Java\jre6\bin\zip.dll
0x6d430000 - 0x6d436000    C:\Program Files\Java\jre6\bin\jp2native.dll
0x6d1d0000 - 0x6d1e3000    C:\Program Files\Java\jre6\bin\deploy.dll
0x77a80000 - 0x77b15000    C:\WINDOWS\system32\CRYPT32.dll
0x77b20000 - 0x77b32000    C:\WINDOWS\system32\MSASN1.dll
0x77c10000 - 0x77c68000    C:\WINDOWS\system32\msvcrt.dll
0x7c9c0000 - 0x7d1d7000    C:\WINDOWS\system32\SHELL32.dll
0x77f60000 - 0x77fd6000    C:\WINDOWS\system32\SHLWAPI.dll
0x774e0000 - 0x7761d000    C:\WINDOWS\system32\ole32.dll
0x77120000 - 0x771ab000    C:\WINDOWS\system32\OLEAUT32.dll
0x3d930000 - 0x3da16000    C:\WINDOWS\system32\WININET.dll
0x02dd0000 - 0x02dd9000    C:\WINDOWS\system32\Normaliz.dll
0x78130000 - 0x78262000    C:\WINDOWS\system32\urlmon.dll
0x3dfd0000 - 0x3e1b8000    C:\WINDOWS\system32\iertutil.dll
0x773d0000 - 0x774d3000    C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll
0x6d6b0000 - 0x6d6f3000    C:\Program Files\Java\jre6\bin\regutils.dll
0x77c00000 - 0x77c08000    C:\WINDOWS\system32\VERSION.dll
0x7d1e0000 - 0x7d49c000    C:\WINDOWS\system32\msi.dll
0x6d610000 - 0x6d623000    C:\Program Files\Java\jre6\bin\net.dll
0x71ab0000 - 0x71ac7000    C:\WINDOWS\system32\WS2_32.dll
0x71aa0000 - 0x71aa8000    C:\WINDOWS\system32\WS2HELP.dll
0x6d630000 - 0x6d639000    C:\Program Files\Java\jre6\bin\nio.dll
0x6d000000 - 0x6d14a000    C:\Program Files\Java\jre6\bin\awt.dll
0x73000000 - 0x73026000    C:\WINDOWS\system32\WINSPOOL.DRV
0x5ad70000 - 0x5ada8000    C:\WINDOWS\system32\uxtheme.dll
0x74720000 - 0x7476c000    C:\WINDOWS\system32\MSCTF.dll
0x62980000 - 0x6299c000    C:\Program Files\Qwest\Quickcare\bin\sprthook.dll
0x74c80000 - 0x74cac000    C:\WINDOWS\system32\OLEACC.dll
0x76080000 - 0x760e5000    C:\WINDOWS\system32\MSVCP60.dll
0x755c0000 - 0x755ee000    C:\WINDOWS\system32\msctfime.ime
0x6d230000 - 0x6d284000    C:\Program Files\Java\jre6\bin\fontmanager.dll
0x71a50000 - 0x71a8f000    C:\WINDOWS\System32\mswsock.dll
0x76f20000 - 0x76f47000    C:\WINDOWS\system32\DNSAPI.dll
0x76fb0000 - 0x76fb8000    C:\WINDOWS\System32\winrnr.dll
0x76f60000 - 0x76f8c000    C:\WINDOWS\system32\WLDAP32.dll
0x76fc0000 - 0x76fc6000    C:\WINDOWS\system32\rasadhlp.dll
0x662b0000 - 0x66308000    C:\WINDOWS\system32\hnetcfg.dll
0x71a90000 - 0x71a98000    C:\WINDOWS\System32\wshtcpip.dll
0x6d520000 - 0x6d544000    C:\Program Files\Java\jre6\bin\jsound.dll
0x6d550000 - 0x6d558000    C:\Program Files\Java\jre6\bin\jsoundds.dll
0x73f10000 - 0x73f6c000    C:\WINDOWS\system32\DSOUND.dll
0x76c30000 - 0x76c5e000    C:\WINDOWS\system32\WINTRUST.dll
0x76c90000 - 0x76cb8000    C:\WINDOWS\system32\IMAGEHLP.dll
0x72d20000 - 0x72d29000    C:\WINDOWS\system32\wdmaud.drv
0x72d10000 - 0x72d18000    C:\WINDOWS\system32\msacm32.drv
0x77be0000 - 0x77bf5000    C:\WINDOWS\system32\MSACM32.dll
0x77bd0000 - 0x77bd7000    C:\WINDOWS\system32\midimap.dll
0x73ee0000 - 0x73ee4000    C:\WINDOWS\system32\KsUser.dll

VM Arguments:
jvm_args: -D__jvm_launched=6149758482 -Xbootclasspath/a:C:\PROGRA~1\Java\jre6\lib\deploy.jar;C:\PROGRA~1\Java\jre6\lib\javaws.jar;C:\PROGRA~1\Java\jre6\lib\plugin.jar
java_command: sun.plugin2.main.client.PluginMain write_pipe_name=jpi2_pid3288_pipe15,read_pipe_name=jpi2_pid3288_pipe14
Launcher Type: SUN_STANDARD

Environment Variables:
PATH=C:\Program Files\Internet Explorer;;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem
USERNAME=silvia
OS=Windows_NT
PROCESSOR_IDENTIFIER=x86 Family 15 Model 2 Stepping 9, GenuineIntel



---------------  S Y S T E M  ---------------

OS: Windows XP Build 2600 Service Pack 3

CPU:total 1 (1 cores per cpu, 1 threads per core) family 15 model 2 stepping 9, cmov, cx8, fxsr, mmx, sse, sse2

Memory: 4k page, physical 2095104k(1511472k free), swap 2335412k(1800612k free)

vm_info: Java HotSpot(TM) Client VM (14.2-b01) for windows-x86 JRE (1.6.0_16-b01), built on Jul 31 2009 11:26:58 by "java_re" with MS VC++ 7.1

time: Sun Sep 13 02:37:58 2009
elapsed time: 9 seconds

et on my desk top i did clean out cache.

Offline Hoov

  • Malware Removal Mentors
  • Global Moderator
  • Diamond Member
  • Posts: 25207
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
Re: Hoov here is the log
« Reply #4 on: September 14, 2009, 04:57:10 pm »
OK, download the entire JRE offline installer (This file is much larger than the online installer,about 16MB in size) , and then once its downloaded run the installer and then reboot windows and try clearing the cache again. Let me know what happens.

Consumer Security

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!

Offline capricorn33

  • Bronze Member
  • Posts: 258
Re: Hoov here is the log
« Reply #5 on: September 14, 2009, 06:19:24 pm »
hoov i  tried to install it and it says it is installed yet i dont see it in add/remove or anywhere,  also i went to my c drive and looked there in windows files there is java folders yet they are all empty,  then i went to program files   one says j2re1.4.2_03  and the other folder says jre6   When i open the first one this is from 2005 and it seems to be run by IE in that year 2005  the JRE6 folder was downloaded
09-03-09 this says it is there yet it isnt in my add/remove folder?

Offline capricorn33

  • Bronze Member
  • Posts: 258
Re: Hoov here is the log
« Reply #6 on: September 14, 2009, 06:25:35 pm »
when i tried to install it again it says this has already been installed would you like to reinstall it? and i hit yes, then it tells me that this action is only valid for products currently installed, so somewhere windows dosent think it is in here and yet it seems to say it is so that is a big conflicked. 

Offline Hoov

  • Malware Removal Mentors
  • Global Moderator
  • Diamond Member
  • Posts: 25207
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
Re: Hoov here is the log
« Reply #7 on: September 14, 2009, 06:47:06 pm »
Try rebooting to safe mode and installing it there. Let me know if it does the same thing.

Consumer Security

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!

Offline capricorn33

  • Bronze Member
  • Posts: 258
Re: Hoov here is the log
« Reply #8 on: September 14, 2009, 11:59:42 pm »
ok  i am going to redownload it onto my desktop as soon as i go into safemode regular or safemode networking and hit explorer, as it opens and i type anything the mouse stops working so i am going to try and download it to desk top and go from there and try. would like to through this out the window

Offline capricorn33

  • Bronze Member
  • Posts: 258
Re: Hoov here is the log
« Reply #9 on: September 15, 2009, 12:18:09 am »
 >:(     well of course i cant do that either, it isnt on the desk top in safemode and i cant do anything with the mouse or keyboard once i cick on explorer,  this is so odd.  I will tell you this,  there was a day that i deleted it, well tried to delete the latest java like i told ya, becaues it kept doing what i said leaving these little errors on my desktop what i think i can do i go to system restore and try and see if it is on one of the dates and if so should i go back to the day i did have it installed??  would that be a good idea or bad? i used an uninstaller of some kind because it wouldnt delete in add/remove and i dont remember the name of the uninstaller.  I feel so bad  to ask you to fix my mistake. sorry,  I will wait for your reply

Offline capricorn33

  • Bronze Member
  • Posts: 258
Re: Hoov here is the log
« Reply #10 on: September 15, 2009, 12:23:23 am »
OK Hoov
on around the 9th according to system restore, by the way i didnt restore i just looked at dates and read what was done on those days. anyway it says that i use windows installer, that is what i used to delete java the latest one,  I was going to redownload it and see if that was going to fix this java problem but what happened was this, A big mess. now i cant install it at all    Again i will wait for your reply

Offline Hoov

  • Malware Removal Mentors
  • Global Moderator
  • Diamond Member
  • Posts: 25207
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
Re: Hoov here is the log
« Reply #11 on: September 15, 2009, 02:30:40 pm »
Can you get me the event viewer logs?

Consumer Security

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!

Offline capricorn33

  • Bronze Member
  • Posts: 258
Re: [In Progress] Hoov here is the log
« Reply #12 on: September 15, 2009, 05:18:55 pm »
what do you mean???  sorry not comp lit. viewer log? from what

Offline Hoov

  • Malware Removal Mentors
  • Global Moderator
  • Diamond Member
  • Posts: 25207
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
Re: [In Progress] Hoov here is the log
« Reply #13 on: September 15, 2009, 06:26:13 pm »
These are the ones I asked about just before you took your Daughter to work yesterday.


I need you to go to the administration tools in XP. They are in the Control Panel. Open the Admin tools, then open the event viewer. Over on the left hand side and click on System. Then up at the top click on Action and then click on Save Events As, type in system as the file name,  make sure file type EVT is selected, and then navigate so it will save the file to your desktop, then click save. Over on the left hand side and click on Application. Then up at the top click on Action and then click on Save Events As, type in application as the file name,  make sure file type EVT is selected, and then navigate so it will save the file to your desktop, then click save. Zip them both up into a single zip file, post them back here in your next reply as attachments.

Consumer Security

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!

Offline capricorn33

  • Bronze Member
  • Posts: 258
Re: [In Progress] Hoov here is the log
« Reply #14 on: September 15, 2009, 07:52:33 pm »
ok Hoov,i am not good with all this , i do have them in a zip folder one says application, the other says system as you asked, how do i get them in here to post? please dont laugh but do i open them or what?  thanks