Unsolved
This post is more than 5 years old
8 Posts
0
1553
December 14th, 2009 23:00
web links get redirected to random sites
When I do a google search using IE8 and click a link, I get redirected to random sites. I've been reading other posts to try and fix the problem myself, but my inexperience gets me lost on what to do. I use McAfee on my computer, but I did download a variety of other spyware/malware programs too. I read that not all spyware programs catch the same viruses and spyware. I have used Spybot, Malwarebytes and Ad-Aware to find viruses. Spybot and Malwarebytes did find some trojans (Not too sure which ones), but they have been quarantined and removed. I still have problems with my links, specifically on google. I did contact Dell Live Chat for help. The agent opened my "Start up" items and highlighted an item that had blank spaces. She said the program has not been identified and it is either a virus or spyware. She wasn't trained in removing the virus and couldn't help me. Now, I'm not too sure what to do. The program was blank under Startup Item and Command, but the Location read "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run." How do I fix this?
Pleas, can anyone provide any advice? I did download Trend Micro HijackThis and ran a log. I'm not sure if this will help, but here it is:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:54:53 PM, on 12/14/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
c:\program files\common files\mcafee\mna\mcnasvc.exe
c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\Program Files\McAfee\MSK\MskSrver.exe
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\Dell Support Center\bin\sprtsvc.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe
C:\WINDOWS\system32\Rundll32.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Dell Photo AIO Printer 944\dlcdmon.exe
C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Dell Support Center\bin\sprtcmd.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe
C:\DOCUME~1\PRINCE~1\LOCALS~1\Temp\clclean.0001
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
C:\Program Files\Lavasoft\Ad-Aware\Ad-Aware.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\Program Files\Intel\Wireless\Bin\Dot1XCfg.exe
C:\WINDOWS\system32\dlcdcoms.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
c:\PROGRA~1\mcafee\msc\mcshell.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
c:\PROGRA~1\mcafee\VIRUSS~1\mcvsshld.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: McAfee Phishing Filter - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\PROGRA~1\mcafee\msk\mskapbho.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe /r
O4 - HKLM\..\Run: [MBMon] Rundll32 CTMBHA.DLL,MBMon
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [VoiceCenter] "C:\Program Files\Creative\VoiceCenter\AndreaVC.exe" /tray
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] "c:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [DLCDCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCDtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [dlcdmon.exe] "C:\Program Files\Dell Photo AIO Printer 944\dlcdmon.exe"
O4 - HKLM\..\Run: [MemoryCardManager] E
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [dscactivate] "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe"
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
O4 - HKLM\..\Run: [mcagent_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [SetDefaultMIDI] MIDIDef.exe
O4 - HKCU\..\Run: [Creative Detector] "C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe" /R
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -scheduler
O4 - HKCU\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-21-2401169230-1305447109-3420265349-500\..\Run: [ModemOnHold] C:\Program Files\NetWaiting\netWaiting.exe (User 'Administrator')
O4 - HKUS\S-1-5-21-2401169230-1305447109-3420265349-500\..\Run: [SetDefaultMIDI] MIDIDef.exe (User 'Administrator')
O4 - HKUS\S-1-5-21-2401169230-1305447109-3420265349-500\..\Run: [Creative Detector] "C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe" /R (User 'Administrator')
O4 - HKUS\S-1-5-21-2401169230-1305447109-3420265349-500\..\Run: [Creative MediaSource Go] "C:\Program Files\Creative\MediaSource\Go\CTCMSGo.exe" /SCB (User 'Administrator')
O4 - HKUS\S-1-5-21-2401169230-1305447109-3420265349-500\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'Administrator')
O4 - HKUS\S-1-5-21-2401169230-1305447109-3420265349-500\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup (User 'Administrator')
O4 - HKUS\S-1-5-18\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'Default user')
O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase8942.cab
O16 - DPF: {74C861A1-D548-4916-BC8A-FDE92EDFF62C} - http://mediaplayer.walmart.com/installer/install.cab
O16 - DPF: {94B82441-A413-4E43-8422-D49930E69764} (TLIEFlashObj Class) - https://rtc1.webresponse.one.microsoft.com/media/xp/TLIEFlash.CAB
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
O20 - Winlogon Notify: GoToAssist - C:\Program Files\Citrix\GoToAssist\514\G2AWinLogon.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Creative Labs Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: dlcd_device - - C:\WINDOWS\system32\dlcdcoms.exe
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files\WildTangent\Apps\Dell Game Console\GameConsoleService.exe
O23 - Service: GoToAssist - Citrix Online, a division of Citrix Systems, Inc. - C:\Program Files\Citrix\GoToAssist\514\g2aservice.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: McAfee SiteAdvisor Service - Unknown owner - C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\program files\common files\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee SpamKiller Service (MSK80Service) - McAfee, Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: SupportSoft Sprocket Service (dellsupportcenter) (sprtsvc_dellsupportcenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe
O23 - Service: Intel(R) PROSet/Wireless SSO Service (WLANKEEPER) - Intel(R) Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
O24 - Desktop Component 0: (no name) - file:///C:/DOCUME~1/PRINCE~1/LOCALS~1/Temp/msohtml1/01/clip_image002.gif
--
End of file - 16619 bytes


bamajim
10.4K Posts
0
December 15th, 2009 18:00
1. Go HERE and download File Lister.
Rt Click ->> Extract all ->> And extract it to your Desktop
Additional help on extracting zip files can be found HERE
Open the File Lister Folder.
Note: Leave the FileLister.vbe file in the folder and run it from there.
Rt Click FileLister.vbe ->>Select Open Then Open to confirm.
As the program runs, it will appear that nothing is happening.
When the program is fnished it will produce a log for you C:\Files.txt
Copy and paste the contents of that log in your reply.
h2oaly
8 Posts
0
December 16th, 2009 11:00
Hi Bamajim,
Here is the File Lister log:
++++++++++++++++++++++++++++++++++
+ File Lister Version 1.1.2 +
+ +
+ By bamajim / SpywareHammer.com +
++++++++++++++++++++++++++++++++++
Report ran on --->>> 12/16/2009 11:10:56 AM
====== Running Processes ======
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
c:\program files\common files\mcafee\mna\mcnasvc.exe
c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\Program Files\McAfee\MSK\MskSrver.exe
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\Dell Support Center\bin\sprtsvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe
C:\WINDOWS\system32\Rundll32.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Dell Photo AIO Printer 944\dlcdmon.exe
C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\Dell Support Center\bin\sprtcmd.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe
C:\DOCUME~1\PRINCE~1\LOCALS~1\Temp\clclean.0001
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
C:\WINDOWS\system32\dlcdcoms.exe
C:\Program Files\Intel\Wireless\Bin\Dot1XCfg.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\Program Files\Intel\Wireless\Bin\iFrmewrk.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\WINDOWS\System32\WScript.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\WinZip\WINZIP32.EXE
====== BHO's ======
BHO: (NO NAME) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
BHO: McAfee Phishing Filter - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\PROGRA~1\mcafee\msk\mskapbho.dll
BHO: (NO NAME) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
BHO: (NO NAME) - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll
BHO: (NO NAME) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
BHO: (NO NAME) - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~1\mcafee\SITEAD~1\mcieplg.dll
BHO: (NO NAME) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
====== HKLM\~\Run Keys ======
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
[ehTray] = C:\WINDOWS\ehome\ehtray.exe
[NvCplDaemon] = RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
[nwiz] = nwiz.exe /installquiet
[SynTPEnh] = C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
[SigmatelSysTrayApp] = stsystra.exe
[CTSysVol] = C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe /r
[MBMon] = Rundll32 CTMBHA.DLL,MBMon
[UpdReg] = C:\WINDOWS\UpdReg.EXE
[VoiceCenter] = "C:\Program Files\Creative\VoiceCenter\AndreaVC.exe" /tray
[DVDLauncher] = "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
[ISUSPM Startup] = "c:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
[ISUSScheduler] = "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
[DLCDCATS] = rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCDtime.dll,_RunDLLEntry@16
[dlcdmon.exe] = "C:\Program Files\Dell Photo AIO Printer 944\dlcdmon.exe"
[MemoryCardManager] = E
[Acrobat Assistant 7.0] = "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
[dla] = C:\WINDOWS\system32\dla\tfswctrl.exe
[AOLDialer] = C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
[dscactivate] = "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe"
[IntelZeroConfig] = "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
[IntelWireless] = "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
[DellSupportCenter] = "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
[mcagent_exe] = "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
[AppleSyncNotifier] = C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
[QuickTime Task] = "C:\Program Files\QuickTime\qttask.exe" -atboottime
[iTunesHelper] = "C:\Program Files\iTunes\iTunesHelper.exe"
[SunJavaUpdateSched] = "C:\Program Files\Java\jre6\bin\jusched.exe"
====== HKCU\~\Run Keys ======
[SetDefaultMIDI] = MIDIDef.exe
[Creative Detector] = "C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe" /R
[ctfmon.exe] = C:\WINDOWS\system32\ctfmon.exe
[DellSupport] = "C:\Program Files\DellSupport\DSAgnt.exe" /startup
[ISUSPM] = "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -scheduler
[DellSupportCenter] = "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
[SpybotSD TeaTimer] = C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
====== DNS Info (List may be empty) ======
HKEY_LOCAL_MACHINE\CCS\~\{170871DC-86ED-474A-88D7-1D9BC2D57CFB}\ NameServer=
HKEY_LOCAL_MACHINE\CCS\~\{2F9FBC39-C724-4E7B-AEFD-EDFE1FAC9BF8}\ NameServer=
HKEY_LOCAL_MACHINE\CCS\~\{4810EE97-8285-4C79-9608-DCCBD8FE70C5}\ NameServer=
HKEY_LOCAL_MACHINE\CCS\~\{7D151E76-4B47-4663-99CF-601883E22777}\ NameServer=
HKEY_LOCAL_MACHINE\CCS\~\{899BB4B9-810D-48E3-A95A-2486DCF7D81E}\ NameServer=
HKEY_LOCAL_MACHINE\CS001\~\{170871DC-86ED-474A-88D7-1D9BC2D57CFB}\ NameServer=
HKEY_LOCAL_MACHINE\CS001\~\{2F9FBC39-C724-4E7B-AEFD-EDFE1FAC9BF8}\ NameServer=
HKEY_LOCAL_MACHINE\CS001\~\{4810EE97-8285-4C79-9608-DCCBD8FE70C5}\ NameServer=
HKEY_LOCAL_MACHINE\CS001\~\{7D151E76-4B47-4663-99CF-601883E22777}\ NameServer=
HKEY_LOCAL_MACHINE\CS001\~\{899BB4B9-810D-48E3-A95A-2486DCF7D81E}\ NameServer=
HKEY_LOCAL_MACHINE\CS002\~\{170871DC-86ED-474A-88D7-1D9BC2D57CFB}\ NameServer=
HKEY_LOCAL_MACHINE\CS002\~\{2F9FBC39-C724-4E7B-AEFD-EDFE1FAC9BF8}\ NameServer=
HKEY_LOCAL_MACHINE\CS002\~\{4810EE97-8285-4C79-9608-DCCBD8FE70C5}\ NameServer=
HKEY_LOCAL_MACHINE\CS002\~\{7D151E76-4B47-4663-99CF-601883E22777}\ NameServer=
HKEY_LOCAL_MACHINE\CS002\~\{899BB4B9-810D-48E3-A95A-2486DCF7D81E}\ NameServer=
====== Folders and Files from "%\" and "%\Windows" Created Last 60 Days ======
12/16/2009 10:39:46 AM 1024 32 C:\aaw7boot.log
12/16/2009 11:10:56 AM 8437 32 C:\Files.txt
11/16/2009 1:43:20 AM 2473571 C:\WINDOWS\$NtUninstallKB969947$
11/16/2009 1:43:20 AM 626403 C:\WINDOWS\$NtUninstallKB969947$\spuninst
12/8/2009 11:12:45 PM 993419 C:\WINDOWS\$NtUninstallKB970430$
12/8/2009 11:12:45 PM 628235 C:\WINDOWS\$NtUninstallKB970430$\spuninst
12/8/2009 11:09:55 PM 980813 C:\WINDOWS\$NtUninstallKB971737$
12/8/2009 11:09:55 PM 626509 C:\WINDOWS\$NtUninstallKB971737$\spuninst
11/25/2009 1:43:00 AM 3041574 C:\WINDOWS\$NtUninstallKB973687$
11/25/2009 1:43:00 AM 626982 C:\WINDOWS\$NtUninstallKB973687$\spuninst
12/8/2009 11:10:27 PM 2039891 C:\WINDOWS\$NtUninstallKB973904$
12/8/2009 11:10:27 PM 629288 C:\WINDOWS\$NtUninstallKB973904$\spuninst
12/8/2009 11:12:04 PM 857027 C:\WINDOWS\$NtUninstallKB974318$
12/8/2009 11:12:04 PM 627139 C:\WINDOWS\$NtUninstallKB974318$\spuninst
12/8/2009 11:10:16 PM 896824 C:\WINDOWS\$NtUninstallKB974392$
12/8/2009 11:10:16 PM 626488 C:\WINDOWS\$NtUninstallKB974392$\spuninst
11/25/2009 1:43:22 AM 832614 C:\WINDOWS\$NtUninstallKB976098-v2$
11/25/2009 1:43:22 AM 643174 C:\WINDOWS\$NtUninstallKB976098-v2$\spuninst
11/19/2009 7:36:18 PM 37 0 C:\WINDOWS\ipixActivex.ini
11/13/2009 8:55:12 AM 21829 0 C:\WINDOWS\KB969947.log
12/8/2009 10:21:10 AM 20450 0 C:\WINDOWS\KB970430.log
12/8/2009 10:19:56 AM 14053 0 C:\WINDOWS\KB971737.log
11/25/2009 1:41:19 AM 9476 0 C:\WINDOWS\KB973687.log
12/8/2009 11:10:23 PM 9426 0 C:\WINDOWS\KB973904.log
12/8/2009 10:20:51 AM 18884 0 C:\WINDOWS\KB974318.log
12/8/2009 10:20:32 AM 14051 0 C:\WINDOWS\KB974392.log
11/25/2009 1:43:20 AM 5048 0 C:\WINDOWS\KB976098-v2.log
12/8/2009 11:10:40 PM 15296 0 C:\WINDOWS\KB976325-IE8.log
11/4/2009 6:35:18 PM 8854 0 C:\WINDOWS\KB976749-IE8.log
12/9/2009 2:00:05 PM 2 0 C:\WINDOWS\msoffice.ini
11/25/2009 1:39:47 AM 318714 0 C:\WINDOWS\msxml4-KB973688-enu.LOG
11/3/2009 5:37:43 PM 145184 0 C:\WINDOWS\system32\java.exe
11/3/2009 5:37:43 PM 145184 0 C:\WINDOWS\system32\javaw.exe
11/3/2009 5:37:43 PM 149280 0 C:\WINDOWS\system32\javaws.exe
11/3/2009 5:37:03 PM 3414 0 C:\WINDOWS\system32\jupdate-1.6.0_17-b04.log
12/15/2009 12:53:55 AM 15880 0 C:\WINDOWS\system32\lsdelete.exe
10/25/2009 4:49:09 PM 5632 0 C:\WINDOWS\system32\ptpusb.dll
10/25/2009 4:49:03 PM 159232 0 C:\WINDOWS\system32\ptpusd.dll
====== "\Administrator\Startup" Last 60 Days======
====== "\All Users\Startup" Last 60 Days======
====== "\Program Files" Last 60 Days======
12/14/2009 9:10:05 PM 3510860 C:\Program Files\Citrix
11/1/2009 11:11:08 AM 1582699 C:\Program Files\iPod
11/1/2009 11:10:45 AM 112681025 C:\Program Files\iTunes
12/14/2009 1:06:09 AM 4208432 C:\Program Files\Malwarebytes' Anti-Malware
12/15/2009 2:37:02 PM 17561583 C:\Program Files\Memeo
10/25/2009 5:27:54 PM 79277715 C:\Program Files\QuickTime
12/14/2009 12:19:51 AM 55567665 C:\Program Files\Spybot - Search & Destroy
12/14/2009 4:37:13 PM 411871 C:\Program Files\Trend Micro
12/14/2009 5:51:57 PM 54137342 C:\Program Files\Windows Live Safety Center
======"Drivers" Modified Last 60 Days======
8/3/2004 8:00:14 PM 265728 0 C:\WINDOWS\system32\drivers\http.sys
12/14/2009 5:07:24 PM 64288 0 C:\WINDOWS\system32\drivers\Lbd.sys
12/14/2009 1:06:09 AM 19160 0 C:\WINDOWS\system32\drivers\mbam.sys
12/14/2009 1:06:12 AM 38224 0 C:\WINDOWS\system32\drivers\mbamswissarmy.sys
====== Files Deleted under "%Temp%" ======
18 Files deleted
======"All Users\Application Data" Last 60 Days======
12/14/2009 5:00:14 PM 167854638 C:\Documents and Settings\All Users\Application Data\Lavasoft
12/14/2009 5:00:14 PM 167854638 C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware
12/14/2009 5:05:07 PM 0 C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware\Crashdumps
12/14/2009 5:00:14 PM 112543634 C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs
12/14/2009 5:00:14 PM 0 C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware\Defs\Extended
12/14/2009 5:05:30 PM 68874 C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware\Logs
12/14/2009 5:08:13 PM 287 C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware\MiniMessage
12/14/2009 5:07:01 PM 71568 C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware\Quarantine
12/15/2009 12:53:52 AM 2093 C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware\Statistics
12/14/2009 5:07:01 PM 0 C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware\ThreatWork Alliance
12/14/2009 5:07:01 PM 0 C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware\ThreatWork Alliance\Submit
12/14/2009 5:05:17 PM 54871551 C:\Documents and Settings\All Users\Application Data\Lavasoft\Ad-Aware\Update
12/14/2009 5:07:01 PM 0 C:\Documents and Settings\All Users\Application Data\Lavasoft\License
12/14/2009 1:06:10 AM 3508836 C:\Documents and Settings\All Users\Application Data\Malwarebytes
12/14/2009 1:06:10 AM 3508836 C:\Documents and Settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware
12/14/2009 12:19:51 AM 47599193 C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
12/14/2009 12:20:23 AM 44339336 C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Backups
12/14/2009 12:19:51 AM 144 C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Excludes
12/14/2009 12:20:23 AM 179758 C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Logs
12/14/2009 12:20:23 AM 3009540 C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery
12/14/2009 12:20:23 AM 0 C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Snapshots
12/14/2009 12:20:23 AM 29772 C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Snapshots2
10/25/2009 5:32:01 PM 541387 C:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
10/25/2009 5:33:28 PM 541387 C:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}\x86
11/1/2009 11:12:33 AM 133968 C:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}\x86\x86
12/14/2009 5:02:37 PM 23822537 C:\Documents and Settings\All Users\Application Data\{BC9FCCF7-E686-494B-8C9B-55C9A39A7CA9}
====== HKLM\~\ShellServiceObjectDelayLoad======
PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - %SystemRoot%\system32\SHELL32.dll
CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - %SystemRoot%\system32\SHELL32.dll
WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll
SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
====== HKLM\~\SharedTaskScheduler======
Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - %SystemRoot%\system32\browseui.dll
Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - %SystemRoot%\system32\browseui.dll
======HKLM\~\msconfig\startupreg======
HKLM\Software\microsoft\shared tools\msconfig\startupreg\
====== Services ( Services that are Whitelisted are not shown) ======
APPDRV (APPDRV)- C:\WINDOWS\system32\DRIVERS\APPDRV.SYS - System/Running
ASCTRM (ASCTRM)- C:\WINDOWS\system32\drivers\ASCTRM.sys - Auto/Running
bcm4sbxp (Broadcom 440x 10/100 Integrated Controller XP Driver)- C:\WINDOWS\system32\DRIVERS\bcm4sbxp.sys - Manual/Running
ctsfm2k (Creative SoundFont Management Device Driver)- C:\WINDOWS\system32\DRIVERS\ctsfm2k.sys - Manual/Running
CTUSFSYN (Creative SoundFont Synthesizer)- C:\WINDOWS\system32\drivers\ctusfsyn.sys - Manual/Running
drvmcdb (drvmcdb)- C:\WINDOWS\system32\drivers\drvmcdb.sys - Boot/Running
drvnddm (drvnddm)- C:\WINDOWS\system32\drivers\drvnddm.sys - Auto/Running
DSproct (DSproct)- \??\C:\Program Files\DellSupport\GTAction\triggers\DSproct.sys - Manual/Running
dsunidrv (DellSupport UniDriver)- C:\WINDOWS\system32\DRIVERS\dsunidrv.sys - Auto/Running
E100B (Intel(R) PRO Adapter Driver)- C:\WINDOWS\system32\DRIVERS\e100b325.sys - Manual/Stopped
HSF_DPV (HSF_DPV)- C:\WINDOWS\system32\DRIVERS\HSX_DPV.sys - Manual/Running
HSXHWAZL (HSXHWAZL)- C:\WINDOWS\system32\DRIVERS\HSXHWAZL.sys - Manual/Running
Lbd (Lbd)- C:\WINDOWS\system32\DRIVERS\Lbd.sys - Boot/Running
MHNDRV (MHN driver)- C:\WINDOWS\system32\DRIVERS\mhndrv.sys - Manual/Stopped
monfilt (monfilt)- C:\WINDOWS\system32\drivers\monfilt.sys - Manual/Running
mrtRate (mrtRate)- C:\WINDOWS\system32\drivers\mrtRate.sys - Disabled/Stopped
NETw3x32 (Intel(R) PRO/Wireless 3945ABG Adapter Driver for Windows XP 32 Bit)- C:\WINDOWS\system32\DRIVERS\NETw3x32.sys - Manual/Stopped
NETw4x32 (Intel(R) Wireless WiFi Link Adapter Driver for Windows XP 32 Bit)- C:\WINDOWS\system32\DRIVERS\NETw4x32.sys - Manual/Running
omci (OMCI WDM Device Driver)- C:\WINDOWS\system32\DRIVERS\omci.sys - System/Running
ossrv (Creative OS Services Driver)- C:\WINDOWS\system32\DRIVERS\ctoss2k.sys - Manual/Running
PfModNT (PfModNT)- \??\C:\WINDOWS\system32\drivers\PfModNT.sys - Auto/Running
rimmptsk (rimmptsk)- C:\WINDOWS\system32\DRIVERS\rimmptsk.sys - Manual/Running
rimsptsk (rimsptsk)- C:\WINDOWS\system32\DRIVERS\rimsptsk.sys - Manual/Running
rismxdp (Ricoh xD-Picture Card Driver)- C:\WINDOWS\system32\DRIVERS\rixdptsk.sys - Manual/Running
s24trans (WLAN Transport)- C:\WINDOWS\system32\DRIVERS\s24trans.sys - Auto/Running
sdbus (sdbus)- C:\WINDOWS\system32\DRIVERS\sdbus.sys - Manual/Running
sffdisk (SFF Storage Class Driver)- C:\WINDOWS\system32\DRIVERS\sffdisk.sys - Manual/Stopped
sffp_sd (SFF Storage Protocol Driver for SDBus)- C:\WINDOWS\system32\DRIVERS\sffp_sd.sys - Manual/Stopped
sscdbhk5 (sscdbhk5)- C:\WINDOWS\system32\drivers\sscdbhk5.sys - System/Running
ssrtln (ssrtln)- C:\WINDOWS\system32\drivers\ssrtln.sys - System/Running
STHDA (SigmaTel High Definition Audio CODEC)- C:\WINDOWS\system32\drivers\sthda.sys - Manual/Running
SynTP (Synaptics TouchPad Driver)- C:\WINDOWS\system32\DRIVERS\SynTP.sys - Manual/Running
tfsnboio (tfsnboio)- C:\WINDOWS\system32\dla\tfsnboio.sys - Auto/Running
tfsncofs (tfsncofs)- C:\WINDOWS\system32\dla\tfsncofs.sys - Auto/Running
tfsndrct (tfsndrct)- C:\WINDOWS\system32\dla\tfsndrct.sys - Auto/Running
tfsndres (tfsndres)- C:\WINDOWS\system32\dla\tfsndres.sys - Auto/Running
tfsnifs (tfsnifs)- C:\WINDOWS\system32\dla\tfsnifs.sys - Auto/Running
tfsnopio (tfsnopio)- C:\WINDOWS\system32\dla\tfsnopio.sys - Auto/Running
tfsnpool (tfsnpool)- C:\WINDOWS\system32\dla\tfsnpool.sys - Auto/Running
tfsnudf (tfsnudf)- C:\WINDOWS\system32\dla\tfsnudf.sys - Auto/Running
tfsnudfa (tfsnudfa)- C:\WINDOWS\system32\dla\tfsnudfa.sys - Auto/Running
UIUSys (Conexant Setup API)- C:\WINDOWS\system32\DRIVERS\UIUSYS.SYS - Manual/Stopped
USBAAPL (Apple Mobile USB Driver)- C:\WINDOWS\system32\Drivers\usbaapl.sys - Manual/Stopped
w39n51 (Intel(R) PRO/Wireless 3945ABG Adapter Driver)- C:\WINDOWS\system32\DRIVERS\w39n51.sys - Manual/Stopped
wanatw (WAN Miniport (ATW))- C:\WINDOWS\system32\DRIVERS\wanatw4.sys - Manual/Stopped
WmiAcpi (Microsoft Windows Management Interface for ACPI)- C:\WINDOWS\system32\DRIVERS\wmiacpi.sys - System/Running
====== Uninstall List ======
GemMaster Mystic
Ad-Aware
Adobe Acrobat Professional 7.0
Otto
Otto
Conexant HDA D110 MDC V.92 Modem
Conexant HDA D110 MDC V.92 Modem
Coupon Printer for Windows
Coupon Printer for Windows
Coupon Printer for Windows
Coupon Printer for Windows
Coupon Printer for Windows
Coupon Printer for Windows
Coupon Printer for Windows
Coupon Printer for Windows
Coupon Printer for Windows
DAO 3.5
DAO 3.5
Dell Digital Jukebox Driver
Dell Digital Jukebox Driver
Dell Photo AIO Printer 944
Dell Photo AIO Printer 944
Dell Photo AIO Printer 944
Windows Media Player 10 Hotfix [See EmeraldQFE2 for more information]
Windows Media Player 10 Hotfix [See EmeraldQFE2 for more information]
GoToAssist 8.0.0.514
HijackThis 2.0.2
Microsoft Internationalized Domain Names Mitigation APIs
Windows Internet Explorer 8
InterActual Player
Jasc Paint Shop Pro Studio GDI+ Patch
Jasc Paint Shop Pro Studio.01 , Dell Edition Patch
High Definition Audio Driver Package - KB835221
Update Rollup 2 for Windows XP Media Center Edition 2005
Hotfix for Windows Media Player 10 (KB903157)
Windows XP Media Center Edition 2005 KB908246
Security Update for Windows Media Player 10 (KB911565)
Update for Windows Media Player 10 (KB913800)
Security Update for Windows Media Player 10 (KB917734)
Security Update for Windows XP (KB923561)
Windows XP Media Center Edition 2005 KB925766
Update for Windows Media Player 10 (KB926251)
Security Update for Windows Internet Explorer 7 (KB928090)
Hotfix for Windows Media Format 11 SDK (KB929399)
Security Update for Windows Internet Explorer 7 (KB929969)
Security Update for Windows Internet Explorer 7 (KB931768)
Security Update for Windows Internet Explorer 7 (KB933566)
Security Update for Windows Media Player 10 (KB936782)
Security Update for Windows Media Player 11 (KB936782)
Security Update for Windows Internet Explorer 7 (KB937143)
Security Update for Windows Internet Explorer 7 (KB938127)
Security Update for Windows XP (KB938464)
Security Update for Windows Internet Explorer 7 (KB939653)
Hotfix for Windows Media Player 11 (KB939683)
Security Update for Windows XP (KB941569)
Security Update for Windows Internet Explorer 7 (KB942615)
Security Update for Windows Internet Explorer 7 (KB944533)
Security Update for Windows XP (KB946648)
Hotfix for Windows Internet Explorer 7 (KB947864)
Hotfix 2050 for SQL Server 2000 ENU (KB948110)
Security Update for Windows Internet Explorer 7 (KB950759)
Security Update for Windows XP (KB950760)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Update for Windows XP (KB951072-v2)
Security Update for Windows XP (KB951376)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951698)
Security Update for Windows XP (KB951748)
Update for Windows XP (KB951978)
Security Update for Windows XP (KB952004)
Security Update for Windows Media Player (KB952069)
Hotfix for Windows XP (KB952287)
Security Update for Windows XP (KB952954)
Microsoft .NET Framework 1.0 Hotfix (KB953295)
Security Update for Windows Internet Explorer 7 (KB953838)
Security Update for Windows XP (KB953839)
Security Update for Windows Media Player 11 (KB954154)
Security Update for Windows Media Player (KB954155)
Security Update for Windows XP (KB954211)
Security Update for Windows XP (KB954459)
Security Update for Windows XP (KB954600)
Security Update for Windows XP (KB955069)
Update for Windows XP (KB955839)
Security Update for Windows Internet Explorer 7 (KB956390)
Security Update for Windows XP (KB956391)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956744)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956841)
Security Update for Windows XP (KB956844)
Security Update for Windows XP (KB957095)
Security Update for Windows XP (KB957097)
Security Update for Windows Internet Explorer 7 (KB958215)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958687)
Security Update for Windows XP (KB958690)
Security Update for Windows XP (KB958869)
Security Update for Windows XP (KB959426)
Critical Update for Windows Media Player 11 (KB959772)
Hotfix 2055 for SQL Server 2000 ENU (KB960082)
Security Update for Windows XP (KB960225)
Security Update for Windows Internet Explorer 7 (KB960714)
Security Update for Windows XP (KB960715)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Hotfix for Windows XP (KB961118)
Security Update for Windows Internet Explorer 7 (KB961260)
Security Update for Windows XP (KB961371)
Security Update for Windows XP (KB961373)
Security Update for Windows XP (KB961501)
Security Update for Windows Internet Explorer 7 (KB963027)
Update for Windows XP (KB967715)
Update for Windows XP (KB968389)
Security Update for Windows XP (KB968537)
Security Update for Windows Media Player (KB968816)
Security Update for Windows XP (KB969059)
Security Update for Windows Internet Explorer 7 (KB969897)
Security Update for Windows Internet Explorer 8 (KB969897)
Security Update for Windows XP (KB969898)
Security Update for Windows XP (KB969947)
Security Update for Windows XP (KB970238)
Security Update for Windows XP (KB970430)
Hotfix for Windows XP (KB970653-v3)
Security Update for Windows XP (KB971486)
Security Update for Windows XP (KB971557)
Security Update for Windows XP (KB971633)
Security Update for Windows XP (KB971657)
Update for Windows XP (KB971737)
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Internet Explorer 8 (KB972260)
Security Update for Windows XP (KB973346)
Security Update for Windows XP (KB973354)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973525)
Security Update for Windows Media Player (KB973540)
Update for Windows XP (KB973687)
Windows XP Media Center Edition 2005 KB973768
Update for Windows XP (KB973815)
Security Update for Windows XP (KB973869)
Security Update for Windows XP (KB973904)
Security Update for Windows XP (KB974112)
Security Update for Windows XP (KB974318)
Security Update for Windows XP (KB974392)
Security Update for Windows Internet Explorer 8 (KB974455)
Security Update for Windows XP (KB974571)
Security Update for Windows XP (KB975025)
Security Update for Windows XP (KB975467)
Hotfix for Windows XP (KB976098-v2)
Security Update for Windows Internet Explorer 8 (KB976325)
Update for Windows Internet Explorer 8 (KB976749)
Microsoft .NET Framework 1.1 Security Update (KB953297)
Malwarebytes' Anti-Malware
McAfee Uninstaller
Microsoft .NET Framework 1.1
Microsoft .NET Framework 3.5 SP1
McAfee SecurityCenter
Microsoft Compression Client Pack 1.0 for Windows XP
MSN Entertainment Download Troubleshooter
MSN Music Assistant
MSN
Microsoft National Language Support Downlevel APIs
NVIDIA Drivers
Winamp Remote
Winamp Remote
Picasa 2
PrimoPDF
Intel(R) PROSet/Wireless Software
RealPlayer Basic
Sound Blaster ADVANCED MB Drivers
Sound Blaster ADVANCED MB Drivers
Sound Blaster ADVANCED MB Drivers
Sound Blaster Audigy ADVANCED MB Product Registration
Sound Blaster Audigy ADVANCED MB Product Registration
Sound Blaster Audigy ADVANCED MB Product Registration
Sound Blaster Audigy ADVANCED MB Product Registration
Synaptics Pointing Device Driver
Viewpoint Media Player
WebCyberCoach 3.2 Dell
WildTangent Games
Winamp
Windows Live OneCare safety scanner
Windows Media Format 11 runtime
Windows Media Player 11
Windows XP Service Pack 3
Windows Media Format 11 runtime
Windows Media Player 11
World of Warcraft
Microsoft User-Mode Driver Framework Feature Pack 1.0
mSSO
Bonjour
Sonic RecordNow Data
MSXML 6.0 Parser (KB933579)
MSXML 6.0 Parser (KB933579)
SimCity™ Societies
mLogView
Microsoft Plus! Photo Story 2 LE
Qualxserve Service Agreement
Qualxserve Service Agreement
Sonic DLA
Corel Paint Shop Pro X
Ventrilo Server
Sonic MyDVD LE
mProSafe
mProSafe
Java(TM) 6 Update 17
Broadcom Management Programs
Creative MediaSource
Sonic Update Manager
Java(TM) 6 Update 3
Java(TM) 6 Update 5
Java(TM) 6 Update 7
Java(TM) 6 Update 7
Windows Media Player 10
Windows Media Player 10
NetZeroInstallers
Winzip 8
MSXML 4.0 SP2 (KB927978)
MobileMe Control Panel
mIWA
NetWaiting
DreamWeaver MX
Jasc Paint Shop Photo Album 5
ELIcon
mHlpDell
Adobe Photoshop CS
Adobe Photoshop CS
DellConnect
Sound Blaster Audigy ADVANCED MB
Sound Blaster Audigy ADVANCED MB
Sound Blaster Audigy ADVANCED MB
AOLIcon
Roxio Backup MyPC
mWMI
PowerDVD 5.7
Apple Software Update
Digital Content Portal
Microsoft Plus! Digital Media Edition Installer
Microsoft Plus! Digital Media Edition Installer
Java 2 Runtime Environment, SE v1.4.2_03
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Ventrilo Client
Jasc Paint Shop Pro Studio, Dell Editon
Jasc Paint Shop Pro Studio, Dell Editon
Myst Masterpiece Edition
DellSupport
Modem Helper
mSCfg
MSXML 4.0 SP2 (KB954430)
PrimoPDF Redistribution Package
PrimoPDF Redistribution Package
Corel Photo Album 6
mPfMgr
Andrea VoiceCenter
Compatibility Pack for the 2007 Office system
mPfWiz
Microsoft Office Small Business Edition 2003
Microsoft Office Small Business Edition 2003
mZConfig
Sonic Encoders
mDriver
Microsoft .NET Framework 3.0 Service Pack 2
QuickTime
EducateU
Ad-Aware SE Plus
Ad-Aware SE Plus
MSXML 4.0 SP2 (KB925672)
Apple Mobile Device Support
Adobe Acrobat 7.0.1 and Reader 7.0.1 Update
Documentation & Support Launcher
Sonic RecordNow Copy
Spybot - Search & Destroy
Apple Application Support
Games, Music, & Photos Launcher
Microsoft Office Outlook 2003 with Business Contact Manager Update
MSXML 4.0 SP2 (KB936181)
Microsoft .NET Framework 2.0 Service Pack 2
QuickSet
Microsoft .NET Framework 1.1
Microsoft .NET Framework 3.5 SP1
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
iTunes
MCU
MCU
AnswerWorks 5.0 English Runtime
AnswerWorks 5.0 English Runtime
Ad-Aware
Microsoft SQL Server Desktop Engine (MICROSOFTSMLBIZ)
Dell Support Center (Support Software)
Data Lifeguard Diagnostic for Windows
Safari
Digital Line Detect
mCore
Consumer Complete Care Services Agreement
Adobe Illustrator CS
SPORE™ Creature Creator Trial Edition
Quicken 2009
Quicken 2009
mMHouse
Visual C++ 2008 x86 Runtime - (v9.0.30729)
Visual C++ 2008 x86 Runtime - v9.0.30729.01
mDrWiFi
MSXML 4.0 SP2 (KB973688)
mWlsSafe
======== Other Info ========
TOTAL PHYSICAL RAM: 1072 MB
Boot Info
[boot loader]
timeout=30
default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS
[operating systems]
multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Windows XP Media Center Edition" /noexecute=optin /fastdetect
OS Type: Microsoft Windows XP Professional
Build: 5.1.2600
Service Pack: 3.0
====== Files with Hidden Attributes======
C:\hiberfil.sys
C:\IO.SYS
C:\MSDOS.SYS
C:\pagefile.sys
C:\NTDETECT.COM
C:\Documents and Settings\Administrator\NTUSER.DAT
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat
C:\Documents and Settings\Default User\NTUSER.DAT
C:\Documents and Settings\Default User\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat
C:\Documents and Settings\LocalService\NTUSER.DAT
C:\Documents and Settings\LocalService\IETldCache\index.dat
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\MSHist012006113020061201\index.dat
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\MSHist012007040820070409\index.dat
C:\Documents and Settings\NetworkService\NTUSER.DAT
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat
C:\Documents and Settings\Princess Alyson\NTUSER.DAT
C:\Documents and Settings\Princess Alyson\Application Data\Microsoft\Office\Recent\index.dat
C:\Documents and Settings\Princess Alyson\IECompatCache\index.dat
C:\Documents and Settings\Princess Alyson\IETldCache\index.dat
C:\Documents and Settings\Princess Alyson\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat
C:\Documents and Settings\Princess Alyson\Local Settings\Application Data\Microsoft\Internet Explorer\DOMStore\index.dat
C:\Documents and Settings\Princess Alyson\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat
C:\Documents and Settings\Princess Alyson\Local Settings\History\History.IE5\MSHist012009121420091215\index.dat
C:\Documents and Settings\Princess Alyson\Local Settings\History\History.IE5\MSHist012009121520091216\index.dat
C:\Documents and Settings\Princess Alyson\Local Settings\History\History.IE5\MSHist012009121620091217\index.dat
==End of Report==
Thank you for your help!
bamajim
10.4K Posts
0
December 16th, 2009 11:00
You are most welcome.
Do you use a router?
Using Windows explorer, see if you find c:\windows\ntbtlog.txt - If it exists, delete the file.
h2oaly
8 Posts
0
December 16th, 2009 12:00
Bamajim,
I think I messed up on my last post, so I thought I would put another reply to make sure you got the notification.
bamajim
10.4K Posts
0
December 16th, 2009 12:00
Yes proceed on with the rest of the instructions and post the results
h2oaly
8 Posts
0
December 16th, 2009 12:00
Bamajim,
When I checked the /BOOTLOG box, this message popped up "An Access Denied error was returned while attempting to change a service. You may need to log on using an Administrator account to make the specified changes." I pressed "OK" and the box remained checked. It did prompt me to restart, which I will do and I'll post the content of the file.
h2oaly
8 Posts
0
December 16th, 2009 12:00
Bamajim,
I do use a wireless router. I wasn't able to find c:\windows\ntbtlog.txt. Should I still run msconfig, check the /BOOTLOG box and reboot the PC?
h2oaly
8 Posts
0
December 16th, 2009 13:00
Bamajim,
I restarted the computer and received this message "You have used the System Configuration Utility to make changes to the way Windows starts. The System Configuration Utility is currently in Diagnostic or Selective Startup mode, causing this message to be displayed and the utility to run every time Windows starts. Choose the Normal Startup mode on the Gneeral tab to start Windows normally and undo the changes you made suing the System Configuration Utility."
I checked for the file and it wasn't in c:\windows. I must be doing something wrong.
bamajim
10.4K Posts
0
December 16th, 2009 13:00
O.K. That looks good.
Some Malware set redirect triggers in routers by way of DNS manipulation.
The only way to fix this is to do a hard reset on the router.
On most routers the reset button is on the back, but the location could be different depending on the model. On most models the button is in a hole and does not protrude out. So you may have to use an ink pen tip (or something similar ) to depress the reset button.
So Disconnect from the internet and do a hard reset on the router. Depress the reset button for 15 seconds.
Reboot and see if that resolves your redirection issue.
h2oaly
8 Posts
0
December 16th, 2009 13:00
I found the log. Here it is:
Loaded driver \SystemRoot\system32\drivers\kmixer.sys
Service Pack 312 16 2009 13:17:55.375
Loaded driver \WINDOWS\system32\ntkrnlpa.exe
Loaded driver \WINDOWS\system32\hal.dll
Loaded driver \WINDOWS\system32\KDCOM.DLL
Loaded driver \WINDOWS\system32\BOOTVID.dll
Loaded driver ACPI.sys
Loaded driver \WINDOWS\system32\DRIVERS\WMILIB.SYS
Loaded driver pci.sys
Loaded driver isapnp.sys
Loaded driver compbatt.sys
Loaded driver \WINDOWS\system32\DRIVERS\BATTC.SYS
Loaded driver pciide.sys
Loaded driver \WINDOWS\system32\DRIVERS\PCIIDEX.SYS
Loaded driver MountMgr.sys
Loaded driver ftdisk.sys
Loaded driver dmio.sys
Loaded driver PartMgr.sys
Loaded driver VolSnap.sys
Loaded driver atapi.sys
Loaded driver disk.sys
Loaded driver \WINDOWS\system32\DRIVERS\CLASSPNP.SYS
Loaded driver fltmgr.sys
Loaded driver Lbd.sys
Loaded driver drvmcdb.sys
Loaded driver PxHelp20.sys
Loaded driver KSecDD.sys
Loaded driver Ntfs.sys
Loaded driver NDIS.sys
Loaded driver ohci1394.sys
Loaded driver \WINDOWS\system32\DRIVERS\1394BUS.SYS
Loaded driver Mup.sys
Loaded driver \SystemRoot\system32\DRIVERS\nic1394.sys
Loaded driver \SystemRoot\system32\DRIVERS\intelppm.sys
Loaded driver \SystemRoot\system32\DRIVERS\wmiacpi.sys
Loaded driver \SystemRoot\system32\DRIVERS\CmBatt.sys
Loaded driver \SystemRoot\system32\DRIVERS\nv4_mini.sys
Loaded driver \SystemRoot\system32\DRIVERS\HDAudBus.sys
Loaded driver \SystemRoot\system32\DRIVERS\NETw4x32.sys
Loaded driver \SystemRoot\system32\DRIVERS\usbuhci.sys
Loaded driver \SystemRoot\system32\DRIVERS\usbehci.sys
Loaded driver \SystemRoot\system32\DRIVERS\bcm4sbxp.sys
Loaded driver \SystemRoot\system32\DRIVERS\sdbus.sys
Loaded driver \SystemRoot\system32\DRIVERS\rimmptsk.sys
Loaded driver \SystemRoot\system32\DRIVERS\rimsptsk.sys
Loaded driver \SystemRoot\system32\DRIVERS\rixdptsk.sys
Loaded driver \SystemRoot\system32\DRIVERS\i8042prt.sys
Loaded driver \SystemRoot\system32\DRIVERS\SynTP.sys
Loaded driver \SystemRoot\system32\DRIVERS\mouclass.sys
Loaded driver \SystemRoot\system32\DRIVERS\kbdclass.sys
Loaded driver \SystemRoot\system32\DRIVERS\imapi.sys
Loaded driver \SystemRoot\system32\drivers\sscdbhk5.sys
Loaded driver \SystemRoot\system32\DRIVERS\cdrom.sys
Loaded driver \SystemRoot\system32\DRIVERS\redbook.sys
Loaded driver \SystemRoot\System32\Drivers\GEARAspiWDM.sys
Loaded driver \SystemRoot\system32\DRIVERS\audstub.sys
Loaded driver \SystemRoot\system32\DRIVERS\rasl2tp.sys
Loaded driver \SystemRoot\system32\DRIVERS\ndistapi.sys
Loaded driver \SystemRoot\system32\DRIVERS\ndiswan.sys
Loaded driver \SystemRoot\system32\DRIVERS\raspppoe.sys
Loaded driver \SystemRoot\system32\DRIVERS\raspptp.sys
Loaded driver \SystemRoot\system32\DRIVERS\msgpc.sys
Loaded driver \SystemRoot\system32\DRIVERS\psched.sys
Loaded driver \SystemRoot\system32\DRIVERS\ptilink.sys
Loaded driver \SystemRoot\system32\DRIVERS\raspti.sys
Loaded driver \SystemRoot\system32\DRIVERS\rdpdr.sys
Loaded driver \SystemRoot\system32\DRIVERS\termdd.sys
Loaded driver \SystemRoot\system32\DRIVERS\swenum.sys
Loaded driver \SystemRoot\system32\DRIVERS\update.sys
Loaded driver \SystemRoot\system32\DRIVERS\mssmbios.sys
Loaded driver \SystemRoot\system32\DRIVERS\omci.sys
Loaded driver \SystemRoot\System32\Drivers\NDProxy.SYS
Did not load driver \SystemRoot\System32\Drivers\NDProxy.SYS
Loaded driver \SystemRoot\system32\drivers\sthda.sys
Loaded driver \SystemRoot\system32\drivers\monfilt.sys
Loaded driver \SystemRoot\system32\DRIVERS\HSXHWAZL.sys
Loaded driver \SystemRoot\system32\DRIVERS\HSX_DPV.sys
Loaded driver \SystemRoot\system32\DRIVERS\HSX_CNXT.sys
Loaded driver \SystemRoot\System32\Drivers\Modem.SYS
Loaded driver \SystemRoot\system32\DRIVERS\usbhub.sys
Did not load driver \SystemRoot\System32\Drivers\lbrtfdc.SYS
Did not load driver \SystemRoot\System32\Drivers\Sfloppy.SYS
Loaded driver \SystemRoot\system32\DRIVERS\usbccgp.sys
Loaded driver \SystemRoot\system32\DRIVERS\hidusb.sys
Loaded driver \SystemRoot\system32\DRIVERS\mouhid.sys
Loaded driver \SystemRoot\System32\Drivers\i2omgmt.SYS
Did not load driver \SystemRoot\System32\Drivers\Changer.SYS
Did not load driver \SystemRoot\System32\Drivers\Cdaudio.SYS
Loaded driver \SystemRoot\System32\Drivers\Fs_Rec.SYS
Loaded driver \SystemRoot\System32\Drivers\Null.SYS
Loaded driver \SystemRoot\System32\Drivers\Beep.SYS
Loaded driver \SystemRoot\system32\drivers\ssrtln.sys
Loaded driver \SystemRoot\System32\drivers\vga.sys
Loaded driver \SystemRoot\System32\Drivers\mnmdd.SYS
Loaded driver \SystemRoot\System32\DRIVERS\RDPCDD.sys
Loaded driver \SystemRoot\System32\Drivers\Msfs.SYS
Loaded driver \SystemRoot\System32\Drivers\Npfs.SYS
Loaded driver \SystemRoot\system32\DRIVERS\rasacd.sys
Loaded driver \SystemRoot\system32\DRIVERS\ipsec.sys
Loaded driver \SystemRoot\system32\DRIVERS\tcpip.sys
Loaded driver \SystemRoot\system32\DRIVERS\ipnat.sys
Loaded driver \SystemRoot\system32\DRIVERS\wanarp.sys
Loaded driver \SystemRoot\System32\DRIVERS\ipfltdrv.sys
Loaded driver \SystemRoot\system32\DRIVERS\arp1394.sys
Loaded driver \SystemRoot\System32\Drivers\Mpfp.sys
Loaded driver \SystemRoot\system32\DRIVERS\netbt.sys
Loaded driver \SystemRoot\System32\drivers\ws2ifsl.sys
Loaded driver \SystemRoot\System32\drivers\afd.sys
Loaded driver \SystemRoot\system32\DRIVERS\netbios.sys
Did not load driver \SystemRoot\system32\DRIVERS\serial.sys
Did not load driver \SystemRoot\System32\Drivers\PCIDump.SYS
Loaded driver \SystemRoot\system32\DRIVERS\rdbss.sys
Loaded driver \SystemRoot\system32\DRIVERS\mrxsmb.sys
Loaded driver \SystemRoot\system32\drivers\mfehidk.sys
Loaded driver \SystemRoot\System32\Drivers\Fips.SYS
Loaded driver \SystemRoot\SYSTEM32\DRIVERS\APPDRV.SYS
Loaded driver \SystemRoot\System32\Drivers\Cdfs.SYS
Loaded driver \SystemRoot\system32\drivers\drvnddm.sys
Loaded driver \SystemRoot\system32\dla\tfsndres.sys
Loaded driver \SystemRoot\system32\dla\tfsnifs.sys
Loaded driver \SystemRoot\system32\dla\tfsnopio.sys
Loaded driver \SystemRoot\system32\dla\tfsnpool.sys
Loaded driver \SystemRoot\system32\dla\tfsnboio.sys
Loaded driver \SystemRoot\system32\dla\tfsncofs.sys
Loaded driver \SystemRoot\system32\dla\tfsndrct.sys
Loaded driver \SystemRoot\system32\dla\tfsnudf.sys
Loaded driver \SystemRoot\system32\dla\tfsnudfa.sys
Loaded driver \SystemRoot\system32\DRIVERS\AegisP.sys
Loaded driver \SystemRoot\system32\DRIVERS\ndisuio.sys
Loaded driver \SystemRoot\system32\DRIVERS\s24trans.sys
Did not load driver \SystemRoot\system32\DRIVERS\rdbss.sys
Did not load driver \SystemRoot\system32\DRIVERS\mrxsmb.sys
Loaded driver \SystemRoot\system32\DRIVERS\mrxdav.sys
Loaded driver \SystemRoot\System32\Drivers\ASCTRM.SYS
Loaded driver \SystemRoot\system32\DRIVERS\dsunidrv.sys
Loaded driver \SystemRoot\System32\Drivers\HTTP.sys
Loaded driver \SystemRoot\system32\DRIVERS\srv.sys
Loaded driver \SystemRoot\system32\DRIVERS\mdmxsdk.sys
Loaded driver \SystemRoot\system32\drivers\mfebopk.sys
Loaded driver \SystemRoot\system32\drivers\mfeavfk.sys
Loaded driver \SystemRoot\system32\drivers\wdmaud.sys
Loaded driver \SystemRoot\system32\drivers\sysaudio.sys
Loaded driver \SystemRoot\system32\drivers\splitter.sys
Loaded driver \SystemRoot\system32\drivers\aec.sys
Loaded driver \SystemRoot\system32\drivers\swmidi.sys
Loaded driver \SystemRoot\system32\drivers\DMusic.sys
Loaded driver \SystemRoot\system32\drivers\kmixer.sys
Loaded driver \SystemRoot\system32\drivers\drmkaud.sys
Loaded driver \SystemRoot\system32\DRIVERS\ctoss2k.sys
Loaded driver \SystemRoot\system32\DRIVERS\ctsfm2k.sys
Loaded driver \SystemRoot\system32\drivers\ctusfsyn.sys
Loaded driver \??\C:\WINDOWS\system32\drivers\PfModNT.sys
Did not load driver \SystemRoot\system32\DRIVERS\ipnat.sys
Loaded driver \SystemRoot\system32\drivers\mfesmfk.sys
Loaded driver \SystemRoot\system32\drivers\kmixer.sys
Loaded driver \??\C:\Program Files\DellSupport\GTAction\triggers\DSproct.sys
h2oaly
8 Posts
0
December 16th, 2009 15:00
Bamajim,
I rebooted the router, but then I couldn't connect to the router. It wasn't showing up on my list of wireless internet options. I tried rebooting it again, but it didn't work. I contacted my internet provider and something's not working with it. I was able to get a different internet and a tech will be coming out tomorrow to secure and fix my router. With the connection I have right now, I tested out the redirection problem and it still happens. Is there anything else I can do?