Thanks, but I was able to get up with a computer tech guy who got me on the right path. Thanks anyway.
deonnanicole 5 Posting Whiz in Training
deonnanicole 5 Posting Whiz in Training
Thanks, but I was able to get up with a computer tech guy who got me on the right path. Thanks anyway.
I've been having some computer problems. It started a few weeks ago when my monitor would go all crazy and I'd have to manually turn the computer off. It would do that occasionally, and then Monday it wouldn't do anything. When I turn the computer on, it either gives me a screen that is all crazy with letters and stuff, or nothing but a blue screen. Someone suggested that they are pretty sure from what I described to them that it's the graphics/video card. I have an HP Pavilion a1600n, running Microsoft Windows XP Media Center Edition 2005, AMD Athlon 64 x2 Dual-core processor, 1024 MB memory, 200 GB hard drive, and with NVIDIA GeForce 6150 LE graphics. I contacted HP to try to find out what kind of card I need, and they told me I need a PCI Express x16 graphics card. They also said something about needing to upgrade or replace my power source or supply unit. Is this absolutely necessary? I feel like sometimes places like that take advantage of the fact that you don't know exactly what they are talking about, and I've always gotten great advice here. What kind of graphics card would you suggest that is compatible with my computer? Thanks!
I'll run those scans after I get my son off to school. Yes, I should have made the discs as soon as I got the computer. One of those things I kept saying I had to do and just never did unfortunately. I do have a family member who has XP on his computer.....but he is in NC so I will see about that when I go home for the holiday in a few weeks. I'll post those results as soon as I run the scan. Thanks!
Ok, I did that...I think there were 2 or 3 that did not run or weren't found, the rest were fine. I've never used Firefox or any other browser besides IE. I know I have the firefox browser on my pc, and the one time I tried to use it, I waited forever and it never loaded. Another question.....I can only make one copy of my recovery discs from my computer.....if I do that now, are they going to be of any use if I ever have to use them? Also, I use AVG free antivirus.....would I be better off to buy one, rather than just depending on the free one? I was looking at McAfee when I was shopping yesterday, and the price on it was good. I've had Norton before but honestly did not really like it.
Hmmm....ok. At the moment I don't really know of anyone who has one I can easily get my hands on, but I'll see what I can do. It's strange how that debug error only comes up on certain sites, like Daniweb.
Ok, I did as you suggested in the last post, with the exception of the sfc/scannow thing. I have been bad and never created my recovery discs like I was supposed to. One of those things where I kept saying I was going to and never did. :( Creating them now would be useless, correct, since I am having PC problems?
Ok I haven't been in and deleted that last thing, but last night when I was logging off, that debug error came up again. :( I'm not having anymore popups, but still that error. Any ideas?
So far the little bit that I've been on the computer today, it's worked fine. The only thing I couldn't do in your past post was delete this: C:\WINDOWS\EHOME\BAK I couldn't find it. Everything else I did. I'll see how things go over the next day or two, and if all is well we can mark this as solved. Thanks so much for the help! :)
Here is the hijackthis log...
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 9:55:43 PM, on 10/26/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16544)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\arservice.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\bgsvcgen.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\MySpace\IM\MySpaceIM.exe
C:\Program Files\FinePixViewer\QuickDCF2.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\HP\Digital Imaging\bin\hpohmr08.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\HP\Digital Imaging\bin\hpotdd01.exe
C:\Program Files\Updates from HP\9972322\Program\Updates from HP.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkCalRem.exe
C:\Program Files\HP\Digital Imaging\bin\hpoevm08.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\HP\Digital Imaging\Bin\hpoSTS08.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\HP\KBD\KBD.EXE
c:\windows\system\hpsysdrv.exe
C:\Program Files\DISC\DISCover.exe
C:\Program Files\DISC\DiscUpdMgr.exe
C:\Program Files\DISC\DiscStreamHub.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE
C:\Program Files\MSN Messenger\usnsvc.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Grisoft\AVG Free\avgcc.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\HP_Administrator\My Documents\My Pictures\avgantispy\hijackthis\imabunny.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=64&bd=PAVILION&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iesearch&locale=EN_US&c=64&bd=PAVILION&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet …
Find AWF report by noahdfear ©2006
Version 1.40
Option 3 run successfully
The current date is: Fri 10/26/2007
The current time is: 21:48:04.53
bak folders found
~~~~~~~~~~~
Directory of C:\PROGRA~1\MSNMES~1\BAK
0 File(s) 0 bytes
Directory of C:\PROGRA~1\PICASA2\BAK
0 File(s) 0 bytes
Directory of C:\WINDOWS\EHOME\BAK
0 File(s) 0 bytes
Directory of C:\PROGRA~1\YAHOO!\MESSEN~1\BAK
0 File(s) 0 bytes
Duplicate files of bak directory contents
~~~~~~~~~~~~~~~~~~~~~~~
end of report
As you can see, no files found. I am going to run the last option now, and post a hijackthis log either tonight or tomorrow morning if I have time before family from out of town gets here. If not, I will post it tomorrow night. Thanks!
Here is what I got after doing that, and running option one again.
Find AWF report by noahdfear ©2006
Version 1.40
The current date is: Fri 10/26/2007
The current time is: 10:40:34.32
bak folders found
~~~~~~~~~~~
Directory of C:\PROGRA~1\HPDIGI~1\BAK
04/13/2006 12:05 PM 90,112 DMAScheduler.exe
1 File(s) 90,112 bytes
Directory of C:\PROGRA~1\MSNMES~1\BAK
0 File(s) 0 bytes
Directory of C:\PROGRA~1\PICASA2\BAK
0 File(s) 0 bytes
Directory of C:\PROGRA~1\REGSHAVE\BAK
02/04/2002 10:32 PM 53,248 REGSHAVE.EXE
1 File(s) 53,248 bytes
Directory of C:\PROGRA~1\WIFD1F~1\BAK
11/03/2006 07:20 PM 866,584 MSASCui.exe
1 File(s) 866,584 bytes
Directory of C:\WINDOWS\CREATOR\BAK
12/14/2004 05:23 AM 663,552 Remind_XP.exe
1 File(s) 663,552 bytes
Directory of C:\WINDOWS\EHOME\BAK
0 File(s) 0 bytes
Directory of C:\WINDOWS\SMINST\BAK
07/23/2005 01:14 AM 237,568 RECGUARD.EXE
1 File(s) 237,568 bytes
Directory of C:\PROGRA~1\GRISOFT\AVGFRE~1\BAK
09/14/2007 09:38 AM 421,888 avgcc.exe
1 File(s) 421,888 bytes
Directory of C:\PROGRA~1\HEWLET~1\HPBOOT~1\BAK
02/16/2006 01:34 AM 249,856 HPBootOp.exe
1 File(s) 249,856 bytes
Directory of C:\PROGRA~1\HP\HPSOFT~1\BAK
02/16/2005 11:11 PM 49,152 HPWuSchd2.exe
1 File(s) 49,152 bytes
Directory of C:\PROGRA~1\YAHOO!\MESSEN~1\BAK
0 File(s) 0 bytes
Directory of C:\PROGRA~1\YAHOO!\SEARCH~1\BAK
06/08/2007 10:59 AM 224,248 SearchProtection.exe
1 File(s) 224,248 bytes
Directory of C:\PROGRA~1\COMMON~1\REAL\UPDATE~1\BAK
07/31/2006 07:16 PM 180,269 realsched.exe
1 File(s) 180,269 bytes
Directory of C:\PROGRA~1\JAVA\JRE16~2.0_0\BIN\BAK
07/12/2007 04:00 AM 132,496 jusched.exe
1 File(s) 132,496 bytes
…
Ok, when I do that and double click on it, it opens for just a second and then closes again.....am I doing something wrong? Thanks again!
DeOnna
Find AWF report by noahdfear ©2006
Version 1.40
Option 2 run successfully
The current date is: Fri 10/26/2007
The current time is: 9:37:44.73
bak folders found
~~~~~~~~~~~
Directory of C:\PROGRA~1\HPDIGI~1\BAK
04/13/2006 12:05 PM 90,112 DMAScheduler.exe
1 File(s) 90,112 bytes
Directory of C:\PROGRA~1\MSNMES~1\BAK
0 File(s) 0 bytes
Directory of C:\PROGRA~1\PICASA2\BAK
06/15/2007 07:15 PM 366,400 PicasaMediaDetector.exe
1 File(s) 366,400 bytes
Directory of C:\PROGRA~1\REGSHAVE\BAK
02/04/2002 10:32 PM 53,248 REGSHAVE.EXE
1 File(s) 53,248 bytes
Directory of C:\PROGRA~1\WIFD1F~1\BAK
11/03/2006 07:20 PM 866,584 MSASCui.exe
1 File(s) 866,584 bytes
Directory of C:\WINDOWS\CREATOR\BAK
12/14/2004 05:23 AM 663,552 Remind_XP.exe
1 File(s) 663,552 bytes
Directory of C:\WINDOWS\EHOME\BAK
09/30/2005 12:01 AM 67,584 ehtray.exe
1 File(s) 67,584 bytes
Directory of C:\WINDOWS\SMINST\BAK
07/23/2005 01:14 AM 237,568 RECGUARD.EXE
1 File(s) 237,568 bytes
Directory of C:\PROGRA~1\GRISOFT\AVGFRE~1\BAK
09/14/2007 09:38 AM 421,888 avgcc.exe
1 File(s) 421,888 bytes
Directory of C:\PROGRA~1\HEWLET~1\HPBOOT~1\BAK
02/16/2006 01:34 AM 249,856 HPBootOp.exe
1 File(s) 249,856 bytes
Directory of C:\PROGRA~1\HP\HPSOFT~1\BAK
02/16/2005 11:11 PM 49,152 HPWuSchd2.exe
1 File(s) 49,152 bytes
Directory of C:\PROGRA~1\YAHOO!\MESSEN~1\BAK
0 File(s) 0 bytes
Directory of C:\PROGRA~1\YAHOO!\SEARCH~1\BAK
06/08/2007 10:59 AM 224,248 SearchProtection.exe
1 File(s) 224,248 bytes
Directory of C:\PROGRA~1\COMMON~1\REAL\UPDATE~1\BAK
07/31/2006 07:16 PM 180,269 realsched.exe
1 File(s) 180,269 bytes
Directory of C:\PROGRA~1\JAVA\JRE16~2.0_0\BIN\BAK
07/12/2007 04:00 AM 132,496 jusched.exe
1 File(s) 132,496 bytes
Here you go.....
Find AWF report by noahdfear ©2006
Version 1.40
Option 2 run successfully
The current date is: Fri 10/26/2007
The current time is: 8:43:31.29
bak folders found
~~~~~~~~~~~
Directory of C:\PROGRA~1\HPDIGI~1\BAK
04/13/2006 12:05 PM 90,112 DMAScheduler.exe
1 File(s) 90,112 bytes
Directory of C:\PROGRA~1\MSNMES~1\BAK
0 File(s) 0 bytes
Directory of C:\PROGRA~1\PICASA2\BAK
06/15/2007 07:15 PM 366,400 PicasaMediaDetector.exe
1 File(s) 366,400 bytes
Directory of C:\PROGRA~1\REGSHAVE\BAK
02/04/2002 10:32 PM 53,248 REGSHAVE.EXE
1 File(s) 53,248 bytes
Directory of C:\PROGRA~1\WIFD1F~1\BAK
11/03/2006 07:20 PM 866,584 MSASCui.exe
1 File(s) 866,584 bytes
Directory of C:\WINDOWS\CREATOR\BAK
12/14/2004 05:23 AM 663,552 Remind_XP.exe
1 File(s) 663,552 bytes
Directory of C:\WINDOWS\EHOME\BAK
09/30/2005 12:01 AM 67,584 ehtray.exe
1 File(s) 67,584 bytes
Directory of C:\WINDOWS\SMINST\BAK
07/23/2005 01:14 AM 237,568 RECGUARD.EXE
1 File(s) 237,568 bytes
Directory of C:\PROGRA~1\GRISOFT\AVGFRE~1\BAK
09/14/2007 09:38 AM 421,888 avgcc.exe
1 File(s) 421,888 bytes
Directory of C:\PROGRA~1\HEWLET~1\HPBOOT~1\BAK
02/16/2006 01:34 AM 249,856 HPBootOp.exe
1 File(s) 249,856 bytes
Directory of C:\PROGRA~1\HP\HPSOFT~1\BAK
02/16/2005 11:11 PM 49,152 HPWuSchd2.exe
1 File(s) 49,152 bytes
Directory of C:\PROGRA~1\YAHOO!\MESSEN~1\BAK
0 File(s) 0 bytes
Directory of C:\PROGRA~1\YAHOO!\SEARCH~1\BAK
06/08/2007 10:59 AM 224,248 SearchProtection.exe
1 File(s) 224,248 bytes
Directory of C:\PROGRA~1\COMMON~1\REAL\UPDATE~1\BAK
07/31/2006 07:16 PM 180,269 realsched.exe
1 File(s) 180,269 bytes
Directory of C:\PROGRA~1\JAVA\JRE16~2.0_0\BIN\BAK
07/12/2007 04:00 AM 132,496 …
First, the AVG log:
---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------
+ Created at: 11:51:06 AM 10/25/2007
+ Scan result:
C:\System Volume Information\_restore{106CF321-99A3-4E3A-9103-1BD027606A99}\RP408\A0042404.exe -> Hijacker.Small : Cleaned.
C:\Documents and Settings\HP_Administrator\Cookies\hp_administrator@2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\HP_Administrator\Cookies\hp_administrator@ads.addynamix[2].txt -> TrackingCookie.Addynamix : Cleaned.
C:\Documents and Settings\HP_Administrator\Cookies\hp_administrator@rotator.adjuggler[2].txt -> TrackingCookie.Adjuggler : Cleaned.
C:\Documents and Settings\HP_Administrator\Cookies\hp_administrator@www.burstbeacon[1].txt -> TrackingCookie.Burstbeacon : Cleaned.
C:\Documents and Settings\HP_Administrator\Cookies\hp_administrator@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : Cleaned.
C:\Documents and Settings\HP_Administrator\Cookies\hp_administrator@sales.liveperson[2].txt -> TrackingCookie.Liveperson : Cleaned.
C:\Documents and Settings\HP_Administrator\Cookies\hp_administrator@perf.overture[1].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\HP_Administrator\Cookies\hp_administrator@ads.pointroll[2].txt -> TrackingCookie.Pointroll : Cleaned.
C:\Documents and Settings\HP_Administrator\Cookies\hp_administrator@questionmarket[2].txt -> TrackingCookie.Questionmarket : Cleaned.
C:\Documents and Settings\HP_Administrator\Cookies\hp_administrator@realmedia[1].txt -> TrackingCookie.Realmedia : Cleaned.
C:\Documents and Settings\HP_Administrator\Cookies\hp_administrator@revsci[1].txt -> TrackingCookie.Revsci : Cleaned.
C:\Documents and Settings\HP_Administrator\Cookies\hp_administrator@edge.ru4[1].txt -> TrackingCookie.Ru4 : Cleaned.
C:\Documents and Settings\HP_Administrator\Cookies\hp_administrator@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\HP_Administrator\Cookies\hp_administrator@serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\HP_Administrator\Cookies\hp_administrator@anad.tacoda[2].txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\HP_Administrator\Cookies\hp_administrator@trafficmp[1].txt -> TrackingCookie.Trafficmp : Cleaned.
C:\Documents and Settings\HP_Administrator\Cookies\hp_administrator@tribalfusion[2].txt -> TrackingCookie.Tribalfusion : Cleaned.
::Report end
Here is the other logfile you wanted:
Find AWF report by noahdfear ©2006
Version 1.40
Option 2 run successfully
The current date is: Thu 10/25/2007
The current time is: 11:00:17.53
bak folders found
~~~~~~~~~~~
Directory of C:\PROGRA~1\HPDIGI~1\BAK
04/13/2006 12:05 PM 90,112 DMAScheduler.exe
1 File(s) 90,112 bytes
Directory of C:\PROGRA~1\MSNMES~1\BAK
0 File(s) 0 bytes
Directory of C:\PROGRA~1\PICASA2\BAK
06/15/2007 07:15 PM 366,400 PicasaMediaDetector.exe
1 File(s) 366,400 bytes
Directory of C:\PROGRA~1\REGSHAVE\BAK
02/04/2002 10:32 PM 53,248 REGSHAVE.EXE
1 File(s) 53,248 bytes
Directory of C:\PROGRA~1\WIFD1F~1\BAK
11/03/2006 07:20 PM 866,584 MSASCui.exe
1 File(s) 866,584 bytes
Directory of C:\WINDOWS\CREATOR\BAK
12/14/2004 05:23 AM 663,552 Remind_XP.exe
1 File(s) 663,552 bytes
Directory …
Here you go...
Find AWF report by noahdfear ©2006
Version 1.40
The current date is: Thu 10/25/2007
The current time is: 8:31:59.84
bak folders found
~~~~~~~~~~~
Directory of C:\PROGRA~1\HPDIGI~1\BAK
04/13/2006 12:05 PM 90,112 DMAScheduler.exe
1 File(s) 90,112 bytes
Directory of C:\PROGRA~1\MSNMES~1\BAK
0 File(s) 0 bytes
Directory of C:\PROGRA~1\PICASA2\BAK
06/15/2007 07:15 PM 366,400 PicasaMediaDetector.exe
1 File(s) 366,400 bytes
Directory of C:\PROGRA~1\REGSHAVE\BAK
02/04/2002 10:32 PM 53,248 REGSHAVE.EXE
1 File(s) 53,248 bytes
Directory of C:\PROGRA~1\WIFD1F~1\BAK
11/03/2006 07:20 PM 866,584 MSASCui.exe
1 File(s) 866,584 bytes
Directory of C:\WINDOWS\CREATOR\BAK
12/14/2004 05:23 AM 663,552 Remind_XP.exe
1 File(s) 663,552 bytes
Directory of C:\WINDOWS\EHOME\BAK
09/30/2005 12:01 AM 67,584 ehtray.exe
1 File(s) 67,584 bytes
Directory of C:\WINDOWS\SMINST\BAK
07/23/2005 01:14 AM 237,568 RECGUARD.EXE
1 File(s) 237,568 bytes
Directory of C:\PROGRA~1\GRISOFT\AVGFRE~1\BAK
09/14/2007 09:38 AM 421,888 avgcc.exe
1 File(s) 421,888 bytes
Directory of C:\PROGRA~1\HEWLET~1\HPBOOT~1\BAK
02/16/2006 01:34 AM 249,856 HPBootOp.exe
1 File(s) 249,856 bytes
Directory of C:\PROGRA~1\HP\HPSOFT~1\BAK
02/16/2005 11:11 PM 49,152 HPWuSchd2.exe
1 File(s) 49,152 bytes
Directory of C:\PROGRA~1\YAHOO!\MESSEN~1\BAK
0 File(s) 0 bytes
Directory of C:\PROGRA~1\YAHOO!\SEARCH~1\BAK
06/08/2007 10:59 AM 224,248 SearchProtection.exe
1 File(s) 224,248 bytes
Directory of C:\PROGRA~1\COMMON~1\REAL\UPDATE~1\BAK
07/31/2006 07:16 PM 180,269 realsched.exe
1 File(s) 180,269 bytes
Directory of C:\PROGRA~1\JAVA\JRE16~2.0_0\BIN\BAK
07/12/2007 04:00 AM 132,496 jusched.exe
1 File(s) 132,496 …
So sorry...lol. For some reason I thought it was the AVG anti-spyware that I had posted. Oops. :S Off to follow the last of your instructions and I will post that log here when done. Thanks again.
DeOnna
Ok here are the logfiles.....CCleaner first:
=== Verbose logging started: 11/15/2006 22:08:21 Build type: SHIP UNICODE 3.01.4000.2435 Calling process: C:\WINDOWS\system32\msiexec.exe ===
MSI (c) (FC:88) [22:08:21:046]: Resetting cached policy values
MSI (c) (FC:88) [22:08:21:046]: Machine policy value 'Debug' is 0
MSI (c) (FC:88) [22:08:21:046]: ******* RunEngine:
******* Product: c:\59eb719a0cb67cf60067\msxml.msi
******* Action:
******* CommandLine: **********
MSI (c) (FC:88) [22:08:21:046]: Client-side and UI is none or basic: Running entire install on the server.
MSI (c) (FC:88) [22:08:21:046]: Grabbed execution mutex.
MSI (c) (FC:88) [22:08:21:203]: Cloaking enabled.
MSI (c) (FC:88) [22:08:21:203]: Attempting to enable all disabled priveleges before calling Install on Server
MSI (c) (FC:88) [22:08:21:218]: Incrementing counter to disable shutdown. Counter after increment: 0
MSI (s) (F0:C0) [22:08:21:234]: Grabbed execution mutex.
MSI (s) (F0:2C) [22:08:21:234]: Resetting cached policy values
MSI (s) (F0:2C) [22:08:21:234]: Machine policy value 'Debug' is 0
MSI (s) (F0:2C) [22:08:21:234]: ******* RunEngine:
******* Product: c:\59eb719a0cb67cf60067\msxml.msi
******* Action:
******* CommandLine: **********
MSI (s) (F0:2C) [22:08:21:250]: Machine policy value 'DisableUserInstalls' is 0
MSI (s) (F0:2C) [22:08:21:281]: File will have security applied from OpCode.
MSI (s) (F0:2C) [22:08:21:359]: SOFTWARE RESTRICTION POLICY: Verifying package --> 'c:\59eb719a0cb67cf60067\msxml.msi' against software restriction policy
MSI (s) (F0:2C) [22:08:21:359]: SOFTWARE RESTRICTION POLICY: c:\59eb719a0cb67cf60067\msxml.msi has a digital signature
MSI (s) (F0:2C) [22:08:22:046]: SOFTWARE RESTRICTION POLICY: c:\59eb719a0cb67cf60067\msxml.msi is permitted to run at the 'unrestricted' authorization level.
MSI (s) (F0:2C) [22:08:22:046]: End dialog not enabled
MSI (s) (F0:2C) [22:08:22:046]: Original package ==> c:\59eb719a0cb67cf60067\msxml.msi
MSI (s) (F0:2C) [22:08:22:046]: Package we're running from ==> c:\WINDOWS\Installer\1459a2f.msi
MSI (s) (F0:2C) [22:08:22:078]: APPCOMPAT: looking for appcompat database …
Ok hopefully I will get done typing this before the window closes again. I thought everything was fine until I came here and the window keeps closing on its own. I will follow the instructions you gave me first thing in the morning and post again. Thanks so much! And sorry for the delay in responding. :)
I also wanted to add that this has been coming up too:
Debug Assertion Failed
Program: C:\Program Files\Internet Explorer\iexplore.exe
File: dbgheap.C
Expression: _CrtIsValidHeapPointer(pUser Data)
Then it gives me the choices of abort, retry, or ignore.
The past couple of days I've been having problems with blank pop-ups on my computer. When I try to use task manager to close them (since right clicking on them won't let me), they keep popping right back up again. Also have had my windows, if I have two or three minimized, wanting to close on their own. I have ran Adaware and Spybot and let them fix what they found, and my AVG hasn't picked anything up at all. Any ideas or suggestions? Thanks! ~DeOnna
Ok, after running Adaware and Spybot, here is the hijackthis log my mom got when she scanned the computer.
Logfile of HijackThis v1.99.1
Scan saved at 7:19:37 PM, on 5/20/07
Platform: Windows 98 SE (Win9x 4.10.2222B)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\MSTASK.EXE
c:\windows\SYSTEM\KB891711\KB891711.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\SYSTEM\KB918547\KB918547.EXE
C:\WINDOWS\SYSTEM\HIDSERV.EXE
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\TASKMON.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\PROGRAM FILES\NETROPA\ONE-TOUCH MULTIMEDIA KEYBOARD\MMKEYBD.EXE
C:\WINDOWS\SYSTEM\HPSYSDRV.EXE
C:\WINDOWS\SYSTEM\USBMMKBD.EXE
C:\WINDOWS\LOADQM.EXE
C:\PROGRAM FILES\COMMON FILES\REAL\UPDATE_OB\REALSCHED.EXE
C:\WINDOWS\SYSTEM\STIMON.EXE
C:\PROGRAM FILES\DIGSTREAM\DIGSTREAM.EXE
C:\PROGRAM FILES\ESPNRUNTIME\DIGSERVICES.EXE
C:\PROGRAM FILES\NETROPA\ONE-TOUCH MULTIMEDIA KEYBOARD\KEYBDMGR.EXE
C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGCC.EXE
C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGEMC.EXE
C:\PROGRAM FILES\NETROPA\ONSCREEN DISPLAY\OSD.EXE
C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGAMSVR.EXE
C:\WINDOWS\SYSTEM\QTTASK.EXE
C:\WINDOWS\RunDLL.exe
C:\PROGRAM FILES\MSN MESSENGER\MSNMSGR.EXE
C:\PROGRAM FILES\MYSPACE\IM\MYSPACEIM.EXE
C:\WINDOWS\SYSTEM\DDHELP.EXE
C:\PROGRAM FILES\NETROPA\ONE-TOUCH MULTIMEDIA KEYBOARD\MMUSBKB2.EXE
C:\WINDOWS\SYSTEM\WMIEXE.EXE
C:\PROGRAM FILES\YAHOO!\MESSENGER\YMSGR_TRAY.EXE
C:\MY DOCUMENTS\HIJACKTHIS\HIJACKTHIS.EXE
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/?rs=1
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRAM FILES\YAHOO!\COMPANION\INSTALLS\CPN1\YT.DLL
O2 …
Will do.....she's in NC (I'm in VA), so I am going to email the link to that thread to her and get her to run HijackThis and send me the log and I will post it. Thanks.
DeOnna
I think my mom has gotten a virus or spyware of some kind on her computer. You know how when you are typing in a web address for a page that you have gone to before, it will automatically pop up after you type in the first couple of letters? Well, she was going to her myspace page, and when she typed "m", some web address for something along the lines of myprofile.com comes up and it is porn. Needless to say my mom at her age does not need to be looking at that type of thing...lol. She has tried clearing her history, temporary internet files, and all of that kind of thing, and it is still there when you type a web address that begins with the letter "m." I told her to go ahead and run Adaware and Spybot. I haven't heard back from her yet, but if that doesn't take care of it, what else can you recommend? She is running AVG free antivirus also (which has picked up nothing on the daily scans it does). Thanks in advance for any help you can give us.
DeOnna
I got 9 out of 10....you can tell I grew up in the 80's....lol!!
Ok.....thanks! Don't be surprised to see me again if I have any questions when I attempt to do this (I really need to go take some computer classes, lol). I'll try that sometime within the next week or two and see how it goes. Thanks again! :)
DeOnna
I hope I am posting in the right forum...if not, I apologize ahead of time. I just bought a new computer. My old computer did not have a cd burner on it, just your normal cd-rom drive and what I call a "floppy drive." The new computer only has the cd drive...no floppy drive. I want to be able to get all of my photos I saved on my old computer to my new one, and someone told me I could do this with a USB cord, where I would connect the old computer to the new one and transfer that I wanted from the old pc to the new one. What kind of cord is this, and where would I get one? And is this going to be the easiest way to get all of my pictures back? Thanks!
DeOnna
I am 5'7, and so is my husband. :)
That is very true....that thought honestly didn't cross my mind...although from the way the coworker has been acting, as far as avoiding my neighbor and not wanting to return phone calls, it makes me suspicious. Just because if it were me, and someone had pulled that on me and then I sold my computer to someone else and then found out, I would have no reason to hide my face and not answer the phone calls......hopefully he didn't get ripped off like my neighbor did.
Just wanted to let you know we found out some interesting things about this computer that she bought from a coworker that probably has a lot to do with the problems with it. The coworker said they had just done a $150 upgrade to XP Pro....well, come to find out, it was illegally installed!! And the computer is full of spyware. Right now it's at a computer shop having the original Windows 98 reinstalled, and hopefully that will reinstall the modem; and it's being cleaned of all the spyware. You would expect something like this from a stranger, but not from a coworker that you see and work with everyday and you mistake to be a "friend." Hopefully when she gets it back today it will be fixed and ready to go. Thanks again. :)
There are two sockets on the back of the computer, and the previous owner said when his family first got internet, they had dialup. They had high speed dsl before they sold it. Is it possible that whoever set up their high speed service uninstalled the modem? Also, we tried going out and buying a modem. Installed it, and the computer still doesn't detect a modem....yet it shows up in the programs that are installed. I uninstalled and installed again, but it didn't help. Any other ideas? Thanks! :)
2000 Nissan Frontier XE Crew Cab
Hi. My neighbor just bought a computer from a coworker. It is a 2000 Gateway, that just last year had an upgrade to Windows XP Professional. She wanted to get dialup internet for now, so I called for her to get things set up. We found out by going into the control panel that there is no dialup modem. According to the books that came with the computer, there was a modem when they got it new. Could it be that when the previous owners had DSL that the dialup modem software was uninstalled? She has both backup discs and a restoration disc. Will either of these have what we need to reinstall the modem so she can get her dialup internet going? Sorry if I posted in the wrong section. ;) Thanks guys! :)
DeOnna
I have been gone a few days and just read this thread this morning. I don't hang out in that particular forum where this all started, so at first I was just going to keep my thoughts to myself. But after reading Dani's post where she quoted Narue on her reasons for leaving, I wanted to anyway.....Personally, I never had any interaction with Narue. I did read some of her posts over the time that I have been a member here. I think a lot of it has to do with Narue's personal style....me being the type of person I am, there have been posts of her's where initially I would have been bothered, but that is just because I am on the opposite end of the spectrum than she is as far as personality goes. But I think what we need to remember is that this is a forum with LOTS of different personalities....and they all add a little something to the board. It's like a previous poster said....it keeps things interesting. It is a shame to lose such a great member, but going by what she said, she has some good things going for her at the moment, and I think we should all be happy for her and only wish her the best. :)
My brother got a Dell probably a little over a year ago and has had problems with it also. I was on the verge of getting a Dell laptop but his problems convinced me otherwise. So I would agree with the others....might want to go with something besides a Dell. :)
I asked him what the alert said the name of it was, and he said he did not remember it showing a name, just that it had been detected and could not be deleted. He uses McAffee for his antivirus. Is there any way I can find out the name through the security center for his antivirus?
My brother asked me, and I had no idea, so I thought I would ask you guys and see if you could tell me....what is a "pup?" He said he got a message from his antivirus saying a pup had been detected and could not be deleted. If this is a stupid question, I'm sorry. ;) Trying to learn a little as I go. :)
Unless someone moves it, you are going to want to post your log in the Viruses/Spyware forum. This forum is for community introductions, and is less likely to get the attention it deserves. :)
Happy Birthday! :)
Hi. If you haven't already done so, post your hijackthis log in the Viruses and Spyware forum. This forum is for introductions only, and you are less likely to get the help you need here. Good luck! :)
I don't do a great deal of shopping online, but I do like Amazon. My online shopping experience with them has been great, and I would not hesitate to shop from Amazon again. :)
Congratulations to your cousin and his wife, and your whole family. I am very close to my family too, and I know how special it is when there's a new baby born into the family. :) I have a cousin who is expecting her second child in December, so we're all looking forward to having a new baby in our family too. :)
Send him this way....we have a crazy squirrel here that is way too aggressive and chases my son and new puppy....he can take this one out too if he wants....LOL!! :)
Hi. This forum is for introductions only. If you haven't already done so, take a look at this thread, and go from there. Good luck!
http://www.daniweb.com/techtalkforums/announcement165-44.html
Hi and welcome to Daniweb. Take a look at this announcement, and maybe that will get you started on finding the best place to place your question, as this forum is for introductions only. Good luck!
http://www.daniweb.com/techtalkforums/announcement165-44.html
To me it seems pretty simple...there is absolutely no need for name calling. While some people may not mind being called a "bozo" or an "idiot", others, myself being included, would certainly take offense to being called that or anything else that is demeaning. I don't understand why such a big deal is being made....simply go by the rules of no name calling, state what you believe or whatever your opinion is on the topic, and be done with it. Like another poster stated earlier, when you take to name calling and the such, it does nothing at all for helping your statement or you opinion on something.
Hi and welcome to Daniweb! :) If you haven't done so already, take a look at this thread:
http://www.daniweb.com/techtalkforums/announcement165-44.html
That should get you started on the right path to getting help with your problem if you haven't already. Good luck! :)
Hi and welcome to Daniweb. :) You could start off by downloading these programs and scanning your computer with them and letting them fix any problems they find:
Adaware: http://www.lavasoftusa.com
Spybot Search and Destroy: http://www.safer-networking.org/en/index.html
After scanning with those two and fixing whatever problems are found, download Hijackthis. Making sure all other browser windows are closed, scan with hijackthis. Do not fix anything yet. Copy and paste the results here so one of the experts can take a look at it. Also be sure to save hijackthis in its own permanent folder when you download it, not a temporary one. That should get you started until someone else takes a look at your thread. :) Good luck!
**The links are kind of old...they are ones I wrote down when I was fixing my computer...if by some chance they don't work let me know.**
Hi tonyb130...you need to start your own thread instead of tagging your question onto someone else's. When you piggback threads, attention is diverted from the original poster's problem, and at the same time you are less likely to get the attention you need and deserve to help you solve your problem. So start your own thread here in the Viruses forum, describe your problem, giving as many details as possible, and include your hijackthis log. :)