also @ TechSpot: Microsoft officially announces Xbox One: here's what we know so far

Possible rootkit and others?

Discussion in 'Virus and Malware Removal' started by DO6470, Dec 9, 2012.

Post New Reply
  1. Broni Malware Annihilator Posts: 39,324   +175

    See if you can run Windows updates now.
  2. DO6470 Newcomer, in training Posts: 24

    Also, forgot to mention, I keep getting a prompt for installing Viewpoint Media PLayer.
    Seems to be related to open AOL.
    I have been responding no.
    Any thoughts?
  3. Broni Malware Annihilator Posts: 39,324   +175

    You don't want it.
    Did you read my previous reply?
  4. DO6470 Newcomer, in training Posts: 24

  5. Broni Malware Annihilator Posts: 39,324   +175

  6. DO6470 Newcomer, in training Posts: 24

    Same error. [Error number: 0x80244019] When I google it I get responses saying that XP service pack 3 is no longer available through that link. Perhaps there is another link I can try?
     
  7. Broni Malware Annihilator Posts: 39,324   +175

  8. DO6470 Newcomer, in training Posts: 24

    That worked.
    Still have the script error on Outlook
    Most shortcuts still not working

    Here is the latest FSS log:

    Farbar Service Scanner Version: 10-12-2012 Ran by dolsen (administrator) on 12-12-2012 at 00:33:42 Running from "C:\Documents and Settings\dolsen\Desktop" Microsoft Windows XP Service Pack 3 (X86) Boot Mode: Normal **************************************************************** Internet Services: ============ Connection Status: ============== Localhost is accessible. LAN connected. Google IP is accessible. Google.com is accessible. Yahoo IP is accessible. Yahoo.com is accessible. Windows Firewall: ============= Firewall Disabled Policy: ================== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall"=DWORD:0 System Restore: ============ System Restore Disabled Policy: ======================== Security Center: ============ wscsvc Service is not running. Checking service configuration: The start type of wscsvc service is OK. The ImagePath of wscsvc service is OK. The ServiceDll of wscsvc service is OK. Windows Update: ============ Windows Autoupdate Disabled Policy: ============================ File Check: ======== C:\WINDOWS\system32\dhcpcsvc.dll => MD5 is legit C:\WINDOWS\system32\Drivers\afd.sys => MD5 is legit C:\WINDOWS\system32\Drivers\netbt.sys => MD5 is legit C:\WINDOWS\system32\Drivers\tcpip.sys => MD5 is legit C:\WINDOWS\system32\Drivers\ipsec.sys => MD5 is legit C:\WINDOWS\system32\dnsrslvr.dll => MD5 is legit C:\WINDOWS\system32\ipnathlp.dll => MD5 is legit C:\WINDOWS\system32\netman.dll => MD5 is legit C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit C:\WINDOWS\system32\srsvc.dll => MD5 is legit C:\WINDOWS\system32\Drivers\sr.sys => MD5 is legit C:\WINDOWS\system32\wscsvc.dll => MD5 is legit C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit C:\WINDOWS\system32\wuauserv.dll => MD5 is legit C:\WINDOWS\system32\qmgr.dll => MD5 is legit C:\WINDOWS\system32\es.dll => MD5 is legit C:\WINDOWS\system32\cryptsvc.dll => MD5 is legit C:\WINDOWS\system32\svchost.exe => MD5 is legit C:\WINDOWS\system32\rpcss.dll => MD5 is legit C:\WINDOWS\system32\services.exe => MD5 is legit Extra List: ======= Gpc(6) IPSec(4) NetBT(5) PSched(7) SbFw(9) SBFWIMCLMP(10) SbTis(11) SYMTDI(8) Tcpip(3) Tcpip6(12) 0x0C00000004000000010000000200000003000000080000000900000006000000070000000B0000000A000000050000000C000000 IpSec Tag value is correct. **** End of log ****
  9. Broni Malware Annihilator Posts: 39,324   +175

    Are we talking about Outlook or Outlook Express?

    Which shortcuts? Desktop shortcuts?

    Can you access and run Windows updates now?
  10. DO6470 Newcomer, in training Posts: 24

    Microsoft Office Outlook 2003
    Desktop Shortcuts and task bar short cuts
    IE and Outlook shortcuts seem to work but no others

    Windows is updating now
  11. DO6470 Newcomer, in training Posts: 24

    261 MB of updates !

    Should I install them all?
  12. Broni Malware Annihilator Posts: 39,324   +175

    Yes, you have to install all updates. Always.

    You may need to reinstall Office.

    As for shortcuts you may need to create new ones.
  13. DO6470 Newcomer, in training Posts: 24

  14. Broni Malware Annihilator Posts: 39,324   +175

    You can give it a shot but if it doesn't work reinstalling Office would be the fastest fix.
  15. DO6470 Newcomer, in training Posts: 24

    Updates complete.

    Received the following error:

    EventType : visualstudio7x80update P1 : msiexec.exe P2 : 1.0.1705.5046
    P3 : kb2656370 P4 : 1033 P5 : 643 P6 : f P7 : install
    P8 : x86 P9 : 5.1.2600.2.3.0.256 P10 : 0

    This error report includes: information regarding the condition of NDP1.1sp1-KB2656370-X86 when
    the problem occured, the operating system version and computer hardware in use, and the Internet Protocol (IP) address of your computer.


    Should I run any other checks before attempting to fix Outlook?

    On the start/ all programs tab, pretty much none of the shortcuts work either as well as the destop ones.
    Tried recreating a couple on the desktop and they do not work.

    Thanks again for your help.
  16. DO6470 Newcomer, in training Posts: 24

    The updates that would not install are as follows:

    Security Update for Microsoft .NET Framework 1.1 SP1 on Windows XP, Windows Vista, and Windows Server 2008 x86 (KB2656370)
    Security Update for Microsoft .NET Framework 1.1 SP1 on Windows XP, Windows Vista, and Windows Server 2008 x86 (KB2698023)
  17. Broni Malware Annihilator Posts: 39,324   +175

  18. DO6470 Newcomer, in training Posts: 24

    Shortcuts Fixed!

    When trying to either update it says it cannot find the folder containing the installation package netfx.msi.
    I did an entire search on the drive and could not find that file.
    Seems like Im missing some sort of installation package for Microdoft.NET framework.
  19. Broni Malware Annihilator Posts: 39,324   +175

    Let's try cleaning up your .NET framework...

    Download, unzip, and run the dotnetfx_cleanup_tool. It will remove the .NET framework from your computer so that we can reinstall it later.

    After running this cleanup tool, it should ask you to reboot. Please do so.

    Next, download and install dotnetfx35.exe. This will reinstall the .NET framework onto your computer. Note: this is a large file, and could take some time to download depending on the speed of your internet connection.

    After another reboot, download and install dotnetfx35setup.exe. This will update the .NET framework to version 3 SP1.

    If you need any more updates for the .NET framework, Windows Update should find it for you (assuming updates are set to automatically download and install).
  20. DO6470 Newcomer, in training Posts: 24

    All updates complete.