Hi all,
I could really use some help with this issue I've been having. My computer has been acting kind of strange for at least a few weeks now - I've had some issues logging in (black screen, but with mouse cursor), my explorer.exe has been constantly stopping/restarting, my systray icons disappear, and my Windows toolbar has been messed up.
I stumbled across https://www.techspot.com/vb/topic152548.html, and figured I should make my own post because my issue could be slightly different. (I had discovered that I had a WIn32:Bamital-x Virus via avast).
I'm usually very good with my computer, so I'm not quite sure how I picked such a nasty bug up.
Any help would be greatly appreciated, thanks!
Edit: Whoops, didn't see new rule, sorry!
Attach.txt:
mbam-log-2010-10-18 (21-17-30).txt:
gmer.log:
I could really use some help with this issue I've been having. My computer has been acting kind of strange for at least a few weeks now - I've had some issues logging in (black screen, but with mouse cursor), my explorer.exe has been constantly stopping/restarting, my systray icons disappear, and my Windows toolbar has been messed up.
I stumbled across https://www.techspot.com/vb/topic152548.html, and figured I should make my own post because my issue could be slightly different. (I had discovered that I had a WIn32:Bamital-x Virus via avast).
I'm usually very good with my computer, so I'm not quite sure how I picked such a nasty bug up.
Any help would be greatly appreciated, thanks!
Edit: Whoops, didn't see new rule, sorry!
Attach.txt:
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
DDS (Ver_10-10-10.03)
Microsoft® Windows Vista™ Home Premium
Boot Device: \Device\HarddiskVolume3
Install Date: 7/28/2009 4:25:32 PM
System Uptime: 10/18/2010 8:58:19 PM (1 hours ago)
Motherboard: Dell Inc. | | 0K183D
Processor: Intel(R) Core(TM)2 Duo CPU P8600 @ 2.40GHz | Socket 479 | 1600/133mhz
==== Disk Partitions =========================
C: is FIXED (NTFS) - 451 GiB total, 355.392 GiB free.
D: is FIXED (NTFS) - 15 GiB total, 5.269 GiB free.
E: is CDROM ()
==== Disabled Device Manager Items =============
==== System Restore Points ===================
No restore point in system.
==== Installed Programs ======================
AAC Decoder
ABBYY FineReader 6.0 Sprint
Acrobat.com
Adobe AIR
Adobe Anchor Service CS3
Adobe Asset Services CS3
Adobe Bridge 1.0
Adobe Bridge CS3
Adobe Bridge Start Meeting
Adobe Camera Raw 4.0
Adobe CMaps
Adobe Color Common Settings
Adobe Color EU Extra Settings
Adobe Color JA Extra Settings
Adobe Color NA Recommended Settings
Adobe Common File Installer
Adobe Default Language CS3
Adobe Device Central CS3
Adobe Dreamweaver CS3
Adobe ExtendScript Toolkit 2
Adobe Extension Manager CS3
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Fonts All
Adobe Help Center 1.0
Adobe Help Viewer CS3
Adobe InDesign CS3
Adobe InDesign CS3 Icon Handler
Adobe Linguistics CS3
Adobe PDF Library Files
Adobe Photoshop CS2
Adobe Reader 9.4.0
Adobe Setup
Adobe Shockwave Player 11.5
Adobe SING CS3
Adobe Stock Photos 1.0
Adobe Stock Photos CS3
Adobe Type Support
Adobe Update Manager CS3
Adobe Version Cue CS3 Client
Adobe WinSoft Linguistics Plugin
Adobe XMP Panels CS3
Advanced Audio FX Engine
AIM 7
Apple Application Support
Apple Software Update
AutoUpdate
avast! Free Antivirus
CCleaner
Choice Guard
Cisco EAP-FAST Module
Cisco LEAP Module
Cisco PEAP Module
Citrix Presentation Server Client - Web Only
Compatibility Pack for the 2007 Office system
Complete Care Consumer Service Agreement
Consumer In-Home Service Agreement
Counter-Strike
Dell DataSafe Local Backup
Dell DataSafe Local Backup - Support Software
Dell DataSafe Online
Dell Driver Download Manager
Dell Getting Started Guide
Dell Remote Access
Dell Support Center (Support Software)
Dell Video Chat
Dell Webcam Central
DivX Codec
DivX Converter
DivX Player
DivX Plus DirectShow Filters
DivX Version Checker
DivX Web Player
Download Updater (AOL LLC)
FileZilla Client 3.3.4.1
H.264 Decoder
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
HTC BMP USB Driver
HTC Driver Installer
HTC Sync
ITECIR
Java Auto Updater
Java(TM) 6 Update 22
Junk Mail filter update
League of Legends
Live! Cam Avatar Creator
LiveUpdate 3.3 (Symantec Corporation)
Malwarebytes' Anti-Malware
McAfee SecurityCenter
Microsoft Default Manager
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office Access MUI (English) 2007
Microsoft Office Access Setup Metadata MUI (English) 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office PowerPoint Viewer 2007 (English)
Microsoft Office Professional 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Suite Activation Assistant
Microsoft Office Word MUI (English) 2007
Microsoft Search Enhancement Pack
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Sync Framework Runtime Native v1.0 (x86)
Microsoft Sync Framework Services Native v1.0 (x86)
Microsoft VC9 runtime libraries
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Works
MINITAB 14 Student
MKV Splitter
Mozilla Firefox (3.6.10)
MSVCRT
MSXML 4.0 SP2 (KB927978)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 4.0 SP3 Parser
MSXML 4.0 SP3 Parser (KB973685)
NVIDIA PhysX
PDF Settings
Pharos
PowerDVD DX
QuickTime
Roxio Creator Audio
Roxio Creator Copy
Roxio Creator Data
Roxio Creator DE
Roxio Creator Tools
Roxio Express Labeler 3
Roxio Update Manager
Security Update for 2007 Microsoft Office System (KB2288621)
Security Update for 2007 Microsoft Office System (KB2344875)
Security Update for 2007 Microsoft Office System (KB2345043)
Security Update for 2007 Microsoft Office System (KB969559)
Security Update for 2007 Microsoft Office System (KB976321)
Security Update for 2007 Microsoft Office System (KB982312)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2160841)
Security Update for Microsoft Office Access 2007 (KB979440)
Security Update for Microsoft Office Excel 2007 (KB2345035)
Security Update for Microsoft Office InfoPath 2007 (KB979441)
Security Update for Microsoft Office Outlook 2007 (KB2288953)
Security Update for Microsoft Office PowerPoint 2007 (KB982158)
Security Update for Microsoft Office Publisher 2007 (KB982124)
Security Update for Microsoft Office system 2007 (972581)
Security Update for Microsoft Office system 2007 (KB974234)
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)
Security Update for Microsoft Office Word 2007 (KB2344993)
Skype™ 4.2
Sound Blaster X-Fi MB
Spelling Dictionaries Support For Adobe Reader 9
StarCraft
StarCraft II
Steam
StreamTorrent 1.0
Team Fortress 2
Update for 2007 Microsoft Office System (KB2284654)
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office Access 2007 Help (KB963663)
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office Outlook 2007 Help (KB963677)
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Publisher 2007 Help (KB963667)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 Help (KB963665)
Update for Outlook 2007 Junk Email Filter (kb2410711)
VC80CRTRedist - 8.0.50727.4053
Veetle TV 0.9.18
Viewpoint Media Player
Visual C++ 2008 x86 Runtime - (v9.0.30729)
Visual C++ 2008 x86 Runtime - v9.0.30729.01
VZAccess Manager
Warcraft III
Windows 7 Upgrade Advisor
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live Mail
Windows Live Messenger
Windows Live Photo Gallery
Windows Live Sign-in Assistant
Windows Live Sync
Windows Live Toolbar
Windows Live Upload Tool
Windows Live Writer
Windows Media Player Firefox Plugin
WModem Driver Installer
==== Event Viewer Messages From Past Week ========
10/18/2010 9:57:24 AM, Error: Service Control Manager [7031] - The McAfee VirusScan Announcer service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
10/18/2010 9:57:24 AM, Error: Service Control Manager [7031] - The McAfee Services service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
10/18/2010 9:57:24 AM, Error: Service Control Manager [7031] - The McAfee Proxy Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
10/18/2010 9:57:24 AM, Error: Service Control Manager [7031] - The McAfee Personal Firewall Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
10/18/2010 9:57:24 AM, Error: Service Control Manager [7031] - The McAfee Network Agent service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
10/18/2010 9:57:24 AM, Error: Service Control Manager [7031] - The McAfee Anti-Spam Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
10/18/2010 9:53:25 PM, Error: netbt [4321] - The name "JAMIE-PC :0" could not be registered on the interface with IP address 192.168.1.108. The computer with the IP address 192.168.1.143 did not allow the name to be claimed by this computer.
10/18/2010 9:51:30 PM, Error: netbt [4321] - The name "CHRIS-PC :0" could not be registered on the interface with IP address 192.168.1.108. The computer with the IP address 192.168.1.6 did not allow the name to be claimed by this computer.
10/18/2010 9:41:51 AM, Error: Application Popup [1060] - \??\C:\Windows\TEMP\mc244AD.tmp has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
10/18/2010 9:39:01 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service MSIServer with arguments "" in order to run the server: {000C101C-0000-0000-C000-000000000046}
10/18/2010 9:00:20 PM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: ASPI32
10/18/2010 9:00:20 PM, Error: Service Control Manager [7000] - The Bonjour Service service failed to start due to the following error: The system cannot find the path specified.
10/18/2010 8:59:46 PM, Error: Application Popup [1060] - \??\C:\Windows\TEMP\mc24A77.tmp has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
10/18/2010 8:58:48 PM, Error: EventLog [6008] - The previous system shutdown at 8:57:52 PM on 10/18/2010 was unexpected.
10/18/2010 8:58:40 PM, Error: Application Popup [1060] - \SystemRoot\SysWow64\Drivers\ASPI32.SYS has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
10/18/2010 8:44:19 PM, Error: BTHUSB [17] - The local Bluetooth adapter has failed in an undetermined manner and will not be used. The driver has been unloaded.
10/18/2010 8:36:32 PM, Error: Application Popup [1060] - \??\C:\Windows\TEMP\mc222DB.tmp has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
10/18/2010 8:33:56 PM, Error: Service Control Manager [7034] - The TVersityMediaServer service terminated unexpectedly. It has done this 1 time(s).
10/18/2010 8:32:57 PM, Error: Service Control Manager [7034] - The Dock Login Service service terminated unexpectedly. It has done this 1 time(s).
10/18/2010 8:21:18 PM, Error: Service Control Manager [7034] - The Remote Access Media Server service terminated unexpectedly. It has done this 1 time(s).
10/18/2010 8:21:18 PM, Error: Service Control Manager [7034] - The Creative Audio Service service terminated unexpectedly. It has done this 1 time(s).
10/18/2010 7:17:58 PM, Error: bowser [8003] - The master browser has received a server announcement from the computer CHRIS-PC that believes that it is the master browser for the domain on transport NetBT_Tcpip_{E5B2CA60-4FB1-498C-8508-64E1E0D82B9E}. The master browser is stopping or an election is being forced.
10/18/2010 3:21:07 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service McNaiAnn with arguments "" in order to run the server: {DC7EF8E1-824F-4110-AB43-1604DA9B4F40}
10/18/2010 3:19:05 AM, Error: Service Control Manager [7001] - The PnP-X IP Bus Enumerator service depends on the Function Discovery Provider Host service which failed to start because of the following error: The dependency service or group failed to start.
10/18/2010 3:17:41 AM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: ASPI32 aswSP aswTdi eeCtrl spldr sptd SRTSP SRTSPX Wanarpv6
10/18/2010 3:17:41 AM, Error: Service Control Manager [7001] - The Windows Media Center Extender Service service depends on the Function Discovery Provider Host service which failed to start because of the following error: The dependency service or group failed to start.
10/18/2010 3:17:41 AM, Error: Service Control Manager [7001] - The Creative Audio Service service depends on the Windows Audio service which failed to start because of the following error: The dependency service or group failed to start.
10/18/2010 3:17:41 AM, Error: Service Control Manager [7001] - The Computer Browser service depends on the Server service which failed to start because of the following error: The dependency service or group failed to start.
10/18/2010 3:17:36 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
10/18/2010 3:17:32 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1068" attempting to start the service fdPHost with arguments "" in order to run the server: {145B4335-FE2A-4927-A040-7C35AD3180EF}
10/18/2010 3:17:31 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
10/18/2010 3:17:21 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC}
10/18/2010 3:17:16 AM, Error: Microsoft-Windows-WLAN-AutoConfig [10000] - WLAN Extensibility Module has failed to start. Module Path: C:\Windows\System32\bcmihvsrv64.dll Error Code: 21
10/18/2010 3:17:05 AM, Error: Microsoft-Windows-TerminalServices-LocalSessionManager [1048] - Terminal Service start failed. The relevant status code was This service cannot be started in Safe Mode .
10/18/2010 3:17:05 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service TermService with arguments "" in order to run the server: {F9A874B6-F8A8-4D73-B5A8-AB610816828B}
10/18/2010 3:16:45 AM, Error: EventLog [6008] - The previous system shutdown at 3:14:14 AM on 10/18/2010 was unexpected.
10/18/2010 3:16:02 AM, Error: sptd [4] - Driver detected an internal error in its data structures for .
10/18/2010 3:13:14 AM, Error: Application Popup [1060] - \??\C:\Windows\TEMP\mc22BE0.tmp has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
10/18/2010 2:40:57 AM, Error: Application Popup [1060] - \??\C:\Windows\TEMP\mc26FC2.tmp has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
10/18/2010 2:39:43 AM, Error: EventLog [6008] - The previous system shutdown at 2:37:11 AM on 10/18/2010 was unexpected.
10/18/2010 10:03:08 AM, Error: Application Popup [1060] - \??\C:\Windows\TEMP\mc23DF9.tmp has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
10/18/2010 1:59:01 AM, Error: ACPI [13] - : The embedded controller (EC) did not respond within the specified timeout period. This may indicate that there is an error in the EC hardware or firmware or that the BIOS is accessing the EC incorrectly. You should check with your computer manufacturer for an upgraded BIOS. In some situations, this error may cause the computer to function incorrectly.
10/18/2010 1:38:07 AM, Error: Application Popup [1060] - \??\C:\Windows\TEMP\mc2924.tmp has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
10/18/2010 1:37:18 AM, Error: EventLog [6008] - The previous system shutdown at 12:25:25 AM on 10/18/2010 was unexpected.
10/17/2010 4:52:04 AM, Error: Service Control Manager [7031] - The McShield service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 5000 milliseconds: Restart the service.
10/17/2010 4:51:58 AM, Error: Service Control Manager [7034] - The McAfee Scanner service terminated unexpectedly. It has done this 1 time(s).
10/17/2010 4:51:55 AM, Error: nvstor64 [5] - A parity error was detected on \Device\RaidPort0.
10/17/2010 3:53:56 PM, Error: Application Popup [1060] - \??\C:\Windows\TEMP\mc2ED79.tmp has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
10/17/2010 2:56:38 AM, Error: Application Popup [1060] - \??\C:\Windows\TEMP\mc2ECAE.tmp has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
10/17/2010 10:15:38 PM, Error: Application Popup [1060] - \??\C:\Windows\TEMP\mc25550.tmp has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
10/17/2010 10:14:26 PM, Error: EventLog [6008] - The previous system shutdown at 10:09:00 PM on 10/17/2010 was unexpected.
10/17/2010 1:57:38 PM, Error: Application Popup [1060] - \??\C:\Windows\TEMP\mc224CE.tmp has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
10/17/2010 1:56:44 PM, Error: EventLog [6008] - The previous system shutdown at 1:54:37 PM on 10/17/2010 was unexpected.
10/15/2010 9:21:20 PM, Error: Application Popup [1060] - \??\C:\Windows\TEMP\mc2D1DE.tmp has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
10/15/2010 9:18:18 PM, Error: Service Control Manager [7001] - The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: The dependency service or group failed to start.
10/15/2010 9:10:03 PM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: AFD ASPI32 DfsC eeCtrl mfehidk mfenlfk mfewfpk NetBIOS netbt nsiproxy PSched RasAcd rdbss Smb spldr sptd SRTSP SRTSPX Tcpip tdx Wanarpv6
10/15/2010 9:10:03 PM, Error: Service Control Manager [7001] - The Workstation service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start.
10/15/2010 9:10:03 PM, Error: Service Control Manager [7001] - The WebDav Client Redirector Driver service depends on the Redirected Buffering Sub Sysytem service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2010 9:10:03 PM, Error: Service Control Manager [7001] - The WebClient service depends on the WebDav Client Redirector Driver service which failed to start because of the following error: The dependency service or group failed to start.
10/15/2010 9:10:03 PM, Error: Service Control Manager [7001] - The TCP/IP Registry Compatibility service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2010 9:10:03 PM, Error: Service Control Manager [7001] - The TCP/IP NetBIOS Helper service depends on the Ancilliary Function Driver for Winsock service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2010 9:10:03 PM, Error: Service Control Manager [7001] - The SMB MiniRedirector Wrapper and Engine service depends on the Redirected Buffering Sub Sysytem service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2010 9:10:03 PM, Error: Service Control Manager [7001] - The SMB 2.0 MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: The dependency service or group failed to start.
10/15/2010 9:10:03 PM, Error: Service Control Manager [7001] - The SMB 1.x MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: The dependency service or group failed to start.
10/15/2010 9:10:03 PM, Error: Service Control Manager [7001] - The Remote Access Media Server service depends on the Ancilliary Function Driver for Winsock service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2010 9:10:03 PM, Error: Service Control Manager [7001] - The Network Store Interface Service service depends on the NSI proxy service service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2010 9:10:03 PM, Error: Service Control Manager [7001] - The Network Location Awareness service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2010 9:10:03 PM, Error: Service Control Manager [7001] - The McShield service depends on the McAfee Validation Trust Protection Service service which failed to start because of the following error: The dependency service or group failed to start.
10/15/2010 9:10:03 PM, Error: Service Control Manager [7001] - The McAfee Validation Trust Protection Service service depends on the McAfee Inc. mfehidk service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2010 9:10:03 PM, Error: Service Control Manager [7001] - The McAfee Proxy Service service depends on the McAfee Firewall Core Service service which failed to start because of the following error: The dependency service or group failed to start.
10/15/2010 9:10:03 PM, Error: Service Control Manager [7001] - The McAfee Personal Firewall Service service depends on the McAfee Firewall Core Service service which failed to start because of the following error: The dependency service or group failed to start.
10/15/2010 9:10:03 PM, Error: Service Control Manager [7001] - The McAfee Firewall Core Service service depends on the McAfee Validation Trust Protection Service service which failed to start because of the following error: The dependency service or group failed to start.
10/15/2010 9:10:03 PM, Error: Service Control Manager [7001] - The McAfee Anti-Spam Service service depends on the McAfee Firewall Core Service service which failed to start because of the following error: The dependency service or group failed to start.
10/15/2010 9:10:03 PM, Error: Service Control Manager [7001] - The DNS Client service depends on the NetIO Legacy TDI Support Driver service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2010 9:10:03 PM, Error: Service Control Manager [7001] - The DHCP Client service depends on the Ancilliary Function Driver for Winsock service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2010 9:10:03 PM, Error: Service Control Manager [7001] - The Bonjour Service service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2010 9:10:03 PM, Error: Service Control Manager [7001] - The Apple Mobile Device service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2010 9:09:28 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1068" attempting to start the service netprofm with arguments "" in order to run the server: {A47979D2-C419-11D9-A5B4-001185AD2B89}
10/15/2010 9:09:28 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1068" attempting to start the service netman with arguments "" in order to run the server: {BA126AD1-2166-11D1-B1D0-00805FC1270E}
10/15/2010 9:06:36 PM, Error: Application Popup [1060] - \??\C:\Windows\TEMP\mc2D355.tmp has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
10/15/2010 9:04:47 PM, Error: Application Popup [1060] - \??\C:\Windows\TEMP\mc281FB.tmp has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
10/13/2010 4:36:40 AM, Error: VDS Dynamic Provider [10] - The provider failed while storing notifications from the driver. The Virtual Disk Service should be restarted. hr=80042505
10/13/2010 4:35:36 AM, Error: Application Popup [1060] - \??\C:\Windows\TEMP\mc23F50.tmp has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
10/11/2010 9:46:51 PM, Error: netbt [4321] - The name "172-26-32-42 :0" could not be registered on the interface with IP address 172.26.34.81. The computer with the IP address 172.26.32.42 did not allow the name to be claimed by this computer.
10/11/2010 9:03:25 PM, Error: netbt [4321] - The name "172-26-32-94 :0" could not be registered on the interface with IP address 172.26.34.81. The computer with the IP address 172.26.32.94 did not allow the name to be claimed by this computer.
10/11/2010 8:11:49 PM, Error: netbt [4321] - The name "172-26-32-126 :0" could not be registered on the interface with IP address 172.26.34.81. The computer with the IP address 172.26.35.140 did not allow the name to be claimed by this computer.
10/11/2010 7:24:02 PM, Error: netbt [4321] - The name "172-26-32-27 :0" could not be registered on the interface with IP address 172.26.34.81. The computer with the IP address 172.26.32.27 did not allow the name to be claimed by this computer.
10/11/2010 6:58:36 PM, Error: netbt [4321] - The name "172-26-32-165 :0" could not be registered on the interface with IP address 172.26.34.81. The computer with the IP address 172.26.35.140 did not allow the name to be claimed by this computer.
10/11/2010 6:57:22 PM, Error: netbt [4321] - The name "172-26-32-58 :0" could not be registered on the interface with IP address 172.26.34.81. The computer with the IP address 172.26.35.140 did not allow the name to be claimed by this computer.
10/11/2010 6:36:34 PM, Error: netbt [4321] - The name "172-26-32-15 :0" could not be registered on the interface with IP address 172.26.34.81. The computer with the IP address 172.26.32.15 did not allow the name to be claimed by this computer.
10/11/2010 5:49:31 PM, Error: netbt [4321] - The name "172-26-32-222 :0" could not be registered on the interface with IP address 172.26.34.81. The computer with the IP address 172.26.32.222 did not allow the name to be claimed by this computer.
10/11/2010 4:58:19 PM, Error: Microsoft-Windows-Dhcp-Client [1002] - The IP address lease 192.168.1.108 for the Network Card with network address 00265E2DFAC2 has been denied by the DHCP server 128.122.253.103 (The DHCP Server sent a DHCPNACK message).
==== End Of File ===========================
mbam-log-2010-10-18 (21-17-30).txt:
Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org
Database version: 4876
Windows 6.0.6002 Service Pack 2
Internet Explorer 7.0.6002.18005
10/18/2010 9:17:30 PM
mbam-log-2010-10-18 (21-17-30).txt
Scan type: Quick scan
Objects scanned: 172672
Time elapsed: 11 minute(s), 49 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
gmer.log:
GMER 1.0.15.15472 - http://www.gmer.net
Rootkit scan 2010-10-18 21:51:21
Windows 6.0.6002 Service Pack 2
Running: 9k2650k5.exe
---- Registry - GMER 1.0.15 ----
Reg HKLM\SYSTEM\CurrentControlSet\Services\BthPort\Parameters\Keys\0
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s1 771343423
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@s2 285507792
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg@h0 1
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4A
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4A 0xD4 0xC3 0x97 0x02 ...
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4A 0
Reg HKLM\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4A 0x49 0x16 0xD1 0x2F ...
Reg HKLM\SYSTEM\ControlSet003\Services\BthPort\Parameters\Keys\00255
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF 0xD4 0xC3 0x97 0x02 ...
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF 0
Reg HKLM\SYSTEM\ControlSet003\Services\sptd\Cfg\14919EA49A8F3B4AA3CF 0x49 0x16 0xD1 0x2F ...
Reg HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\
Reg HKCU\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\ 0x6B 0x61 0x6C 0x67 ...
---- Files - GMER 1.0.15 ----
File C:\Users\Jordan\AppData\Local\Temp\siE0DE.tmp 0 bytes
---- EOF - GMER 1.0.15 ----