TechSpot

Combofix problems - suggested by MajorGeeks

Inactive
By mrssammann
May 25, 2010
  1. My computer was running slowly. I was gettng several errors so I was going to run HJT log and see if I could get some help. The MajorGeeks sight said I had to download several programs and run them in a specific order before I posted anything or no one would help me. Follwed the instructions to the letter and now my computer is screwed. Half my programs won't run. My IBM Applix Client viewr will not install. I get repeated stack errors. My volume controls won't open and several sites that I use for work will not reinstall the proper clients to function. I have all the logs and this is the MajorGeeks site that told me to run all that crap. The list of stuff they had me run is in the link. I would be so grateful if anyone with expertise could help me. The IT guys at my office cannot figure it out. Thank you!!

    http://forums.majorgeeks.com/showthread.php?t=35407

    Combofix Log
    2010-05-18 01:38:17 . 2010-05-18 01:38:17 1,258 -c--a-w- C:\Qoobox\Quarantine\Registry_backups\AddRemove-{ACAC1200-0BBE-499A-A9E9-5F334DBC8E89}.reg.dat
    2010-05-18 01:38:17 . 2010-05-18 01:38:17 1,334 -c--a-w- C:\Qoobox\Quarantine\Registry_backups\AddRemove-{8CAC1200-0BBE-499A-A9E9-5F334DBC8E89}.reg.dat
    2010-05-18 01:37:50 . 2010-05-18 01:37:50 582 -c--a-w- C:\Qoobox\Quarantine\Registry_backups\SafeBoot-Symantec Antvirus.reg.dat
    2010-05-18 01:37:29 . 2010-05-18 01:37:29 171 -c--a-w- C:\Qoobox\Quarantine\Registry_backups\WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440}.reg.dat
    2010-05-18 01:35:24 . 2010-05-18 01:35:24 8,470 -c--a-w- C:\Qoobox\Quarantine\Registry_backups\tcpip.reg
    2010-05-18 01:25:01 . 2010-05-18 01:25:01 51 -c--a-w- C:\Qoobox\Quarantine\catchme.log
    2010-02-01 19:43:57 . 2010-02-01 19:43:58 60,744 -c--a-w- C:\Qoobox\Quarantine\C\Documents and Settings\melanie\g2mdlhlpx.exe.vir
    2009-12-18 00:51:27 . 2007-11-17 05:30:02 285,256 ----a-w- C:\Qoobox\Quarantine\C\Program Files\Win32\solfs.sys.vir
    2009-12-18 00:51:27 . 2007-11-17 05:30:00 38,344 ----a-w- C:\Qoobox\Quarantine\C\Program Files\Win32\soldisk.sys.vir
    2009-09-16 00:37:14 . 2009-09-16 00:37:14 67,584 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{ACAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EvLog.dll.vir
    2009-09-16 00:37:14 . 2009-09-16 00:37:14 121,344 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{ACAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EvCub.edp.vir
    2009-09-16 00:37:14 . 2009-09-16 00:37:14 300,544 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{ACAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EvODBOBase.dll.vir
    2009-09-16 00:37:14 . 2009-09-16 00:37:14 857,600 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{ACAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EvMDXBase.dll.vir
    2009-09-16 00:37:14 . 2009-09-16 00:37:14 926,208 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{ACAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EvCore.dll.vir
    2009-09-16 00:37:14 . 2009-09-16 00:37:14 201,728 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{ACAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EvRemove6En.exe.vir
    2009-09-16 00:37:14 . 2009-09-16 00:37:14 591,552 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{ACAC1200-0BBE-499A-A9E9-5F334DBC8E89}\olch2du7.dll.vir
    2009-09-16 00:37:14 . 2009-09-16 00:37:14 219,136 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{ACAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EVCM90.dll.vir
    2009-09-16 00:37:14 . 2009-09-16 00:37:14 543,232 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{ACAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EVCP90.dll.vir
    2009-09-16 00:37:14 . 2009-09-16 00:37:14 613,888 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{ACAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EVCR90.dll.vir
    2009-09-16 00:37:14 . 2009-09-16 00:37:14 1,100,800 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{ACAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EVMFC90U.dll.vir
    2009-09-16 00:37:13 . 2009-09-16 00:37:14 8,072,048 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{ACAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EvCtrl6En.ocx.vir
    2009-06-23 01:43:32 . 2009-06-23 01:43:32 32,768 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{8CAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EvStd.efl.vir
    2009-06-23 01:43:32 . 2009-06-23 01:43:32 73,728 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{8CAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EvLog.dll.vir
    2009-06-23 01:43:32 . 2009-06-23 01:43:32 102,400 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{8CAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EvCub.edp.vir
    2009-06-23 01:43:32 . 2009-06-23 01:43:32 241,664 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{8CAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EvODBOBase.dll.vir
    2009-06-23 01:43:32 . 2009-06-23 01:43:32 622,592 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{8CAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EvMDXBase.dll.vir
    2009-06-23 01:43:32 . 2009-06-23 01:43:32 716,800 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{8CAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EvCore.dll.vir
    2009-06-23 01:43:32 . 2009-06-23 01:43:32 208,896 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{8CAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EvRemove6En.exe.vir
    2009-06-23 01:43:32 . 2009-06-23 01:43:32 591,552 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{8CAC1200-0BBE-499A-A9E9-5F334DBC8E89}\olch2du7.dll.vir
    2009-06-23 01:43:32 . 2009-06-23 01:43:32 479,232 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{8CAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EVCM80.dll.vir
    2009-06-23 01:43:32 . 2009-06-23 01:43:32 548,864 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{8CAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EVCP80.dll.vir
    2009-06-23 01:43:32 . 2009-06-23 01:43:32 622,592 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{8CAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EVCR80.dll.vir
    2009-06-23 01:43:32 . 2009-06-23 01:43:32 1,079,808 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{8CAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EVMFC80U.dll.vir
    2009-06-23 01:43:32 . 2009-06-23 01:43:32 296,304 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{8CAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EvCtrl6En.exe.vir
    2009-06-23 01:43:31 . 2009-06-23 01:43:32 6,182,256 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\Downloaded Program Files\{8CAC1200-0BBE-499A-A9E9-5F334DBC8E89}\EvCtrl6En.ocx.vir
    2009-06-07 09:10:52 . 2009-02-22 23:49:32 171,520 ----a-w- C:\Qoobox\Quarantine\C\WINDOWS\system32\st326147.dll.vir


    HJT
    Logfile of Trend Micro HijackThis v2.0.4
    Scan saved at 4:32:30 PM, on 5/25/2010
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v8.00 (8.00.6001.18702)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Symantec\Symantec Endpoint Protection\Smc.exe
    C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    C:\WINDOWS\System32\WLTRYSVC.EXE
    C:\WINDOWS\System32\bcmwltry.exe
    C:\WINDOWS\system32\spoolsv.exe
    c:\drivers\audio\r211990\stacsv.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\WINDOWS\system32\FortiSslvpnDaemon.exe
    C:\Program Files\Common Files\Motive\McciCMService.exe
    C:\lotus\notes\ntmulti.exe
    C:\WINDOWS\system32\DRIVERS\o2flash.exe
    C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
    C:\Program Files\Dell Support Center\bin\sprtsvc.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Symantec\Symantec Endpoint Protection\Rtvscan.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Symantec\Symantec Endpoint Protection\SmcGui.exe
    C:\Program Files\IDT\WDM\sttray.exe
    C:\WINDOWS\system32\AESTFltr.exe
    C:\WINDOWS\system32\hkcmd.exe
    C:\WINDOWS\system32\igfxpers.exe
    C:\WINDOWS\system32\WLTRAY.exe
    C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
    C:\WINDOWS\system32\igfxsrvc.exe
    C:\Program Files\Dell Support Center\bin\sprtcmd.exe
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\WINDOWS\PixArt\PAC207\Monitor.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
    C:\Program Files\Java\jre6\bin\javaws.exe
    C:\Program Files\Java\jre6\bin\javaw.exe
    C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\agent.exe
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\Program Files\Symantec\Symantec Endpoint Protection\SavUI.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Windows Live\Toolbar\wltuser.exe
    C:\lotus\notes\NLNOTES.EXE
    C:\lotus\notes\ntaskldr.EXE
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\WINDOWS\system32\msiexec.exe
    C:\Program Files\Trend Micro\HijackThis\HiJackThis.exe
    C:\Program Files\Common Files\Symantec Shared\COH\coh32.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/USSMB/1
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.live.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = http://g.msn.com/USSMB/1
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
    O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
    O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
    O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
    O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
    O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll
    O4 - HKLM\..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe
    O4 - HKLM\..\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
    O4 - HKLM\..\Run: [AESTFltr] %SystemRoot%\system32\AESTFltr.exe /NoDlg
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
    O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe
    O4 - HKLM\..\Run: [dscactivate] "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe"
    O4 - HKLM\..\Run: [PDVDDXSrv] "C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe"
    O4 - HKLM\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    O4 - HKLM\..\Run: [Monitor] C:\WINDOWS\PixArt\PAC207\Monitor.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [Mobile Connectivity Suite] "C:\Program Files\HTC\HTC Sync\Application Launcher\Application Launcher.exe" /startoptions
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
    O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
    O4 - HKCU\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [Messenger (Yahoo!)] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
    O4 - HKCU\..\RunOnce: [JavaInstallRetry] "C:\Documents and Settings\melanie\Application Data\Sun\Java\JRERunOnce.exe" RUNONCE=1 SPONSORS=0
    O4 - HKCU\..\RunOnce: [RegistryBooster] "C:\Program Files\Uniblue\RegistryBooster\launcher.exe" delay 20000
    O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
    O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
    O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
    O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab
    O16 - DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} (Facebook Photo Uploader 5 Control) - http://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab
    O16 - DPF: {8CAC1200-0BBE-499A-A9E9-5F334DBC8E89} (Executive Viewer Client 9.2 (English)) - http://pjweb10.papanet.info/franchise_oars/EvCtrl6En.cab
    O16 - DPF: {ACAC1200-0BBE-499A-A9E9-5F334DBC8E89} (IBM Cognos TM1 Executive Viewer Client 9.4 (English)) - http://pjweb10.papanet.info/franchise_oars/EvCtrl6En.cab
    O16 - DPF: {B0882EB7-81A5-4A11-8D45-71888F973933} (fortisslvpn Class) - https://74.164.214.11:10443/sslvpn.cab
    O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
    O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
    O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
    O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: FortiSslvpnDaemon - Fortinet Inc. - C:\WINDOWS\system32\FortiSslvpnDaemon.exe
    O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
    O23 - Service: McciCMService - Alcatel-Lucent - C:\Program Files\Common Files\Motive\McciCMService.exe
    O23 - Service: Multi-user Cleanup Service - IBM Corp - C:\lotus\notes\ntmulti.exe
    O23 - Service: O2FLASH - O2Micro International - C:\WINDOWS\system32\DRIVERS\o2flash.exe
    O23 - Service: Desktop Connector Service (SevenConnectionService) - Unknown owner - C:\Program Files\Sprint Mobile Email\Desktop Connector\ConnectionService.exe (file missing)
    O23 - Service: Symantec Management Client (SmcService) - Symantec Corporation - C:\Program Files\Symantec\Symantec Endpoint Protection\Smc.exe
    O23 - Service: Symantec Network Access Control (SNAC) - Symantec Corporation - C:\Program Files\Symantec\Symantec Endpoint Protection\SNAC.EXE
    O23 - Service: SupportSoft Sprocket Service (dellsupportcenter) (sprtsvc_dellsupportcenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe
    O23 - Service: Audio Service (STacSV) - IDT, Inc. - c:\drivers\audio\r211990\stacsv.exe
    O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
    O23 - Service: Symantec Endpoint Protection (Symantec AntiVirus) - Symantec Corporation - C:\Program Files\Symantec\Symantec Endpoint Protection\Rtvscan.exe
    O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE

    --
    End of file - 12869 bytes
     
  2. Broni

    Broni Malware Annihilator Posts: 47,022   +255

    See, if you can use system restore to some date before you ran all those fixes.
    Combofix shouldn't be run without supervision.
     
  3. mrssammann

    mrssammann TS Rookie Topic Starter

    Did a system restore to a point prior to running the Combo fix and I still have the same problems.
     
  4. Broni

    Broni Malware Annihilator Posts: 47,022   +255

Topic Status:
Not open for further replies.


Add New Comment

TechSpot Members
Login or sign up for free,
it takes about 30 seconds.
You may also...


Get complete access to the TechSpot community. Join thousands of technology enthusiasts that contribute and share knowledge in our forum. Get a private inbox, upload your own photo gallery and more.