Author Topic: weird problem when installing  (Read 1429 times)

Offline rolovis

  • Newbie
  • *
  • Posts: 38
  • Karma: +0/-0
    • View Profile
weird problem when installing
« Reply #20 on: April 13, 2009, 10:04:19 PM »
i used to have avg free, but it never found anything while spyware doctor did.  So i figured i didnt need it anymore, and deleted it.  I would need a free solution.

My spybot version is 1.6.0.30

Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
weird problem when installing
« Reply #21 on: April 13, 2009, 10:23:22 PM »
Can you do the following, Spybot is a bit out of date
SpywareDoctor does not replace an AntiVirus software

So let's try cleaning this machine up a bit, we'll take it from there
All this is going to take a bit of time, so I may not see how it all went till tomorrow

Close down all browser windows
Open Spybot>>click on the Immunize button on the left
Select UNDO from the top menu
Allow this to finish

Then close Spybot>>Access your Add and Remove programs and Remove Spybot
Reboot the computer afterwards

Back in Windows, Can you again Access your Add and Remove Programs and remove
SuperAntiSpyware free edition
Reboot the computer afterwards
Note: Since these are all free versions of software, you can reinstall any of them after we see what's conflcting with the install

Next: If SpywareDoctor is the free version, can you open it and remove any Immunization function you may be using
Then uninstall it also from Add and Remove Programs
Reboot one more time

Keep Malwarebytes installed for now, it has no Realtime protections running, so it won' t interfere

Go to START>>RUN>>
copy and paste the following

 [color=\"#FF0000\"]combofix /u[/color]
and press enter
This will uninstall ComboFix and it's components


Since I had you remove Immunization from Spybot, and possibly SpywareDoctor
Can you install this next free program, it doesn't run in the background, it just quietly protects
Much like Spybot's Immunization

I suggest that you add SpywareBlaster to your protection software
SpywareBlaster  by JavaCool  
At the link you can read more about it then continue with
Free Download on the right>>Continue Download at next page
Basically it
    *Will block bad ActiveX Controls
    *Block Malevolent cookies in Internet Explorer and Firefox
    *Restrict actions of potentially dangerous sites in Internet Explorer
Select Manual updating when installing
After installation, Check for updates
After updating, select "Protection Status" on the Left
Then select "Enable all Protection"
"Check for updates every couple of weeks"
after every update just simply click the "enable protection on all unprotected items"
or again, click on Protection Startus>>enable all protection

After you have done that,
Go here and download your Free version of Avira AntiVir
http://www.download.com/Avira-AntiVir-Pers...cdlpid=10322935
Save the installer to desktop

Install Avira AntiVir from desktop
Ensure that you have it check for Updates
The first time it updates may take awhile, but allow it time

NOTE: Avira will display a single big Ad on your computer
Don't be alarmed, just click OK at the bottom of the Ad to close it

A scan of your System should then start
If a scan does not start after updating, double click on the Avira icon by the clock (the red/white umbrella)
and select "Scan system now"

Quarantine or delete everything it finds
When the scan is finished
Reboot the computer

Back in Windows
Can you post all the following back please

 Please post the log from Avira
Open Avira again (Double click on the red Umbrella icon by the clock)
Click on REPORTS under Overview
Double click on the Scan report you just made
Then click on "Report File"

Post that report back here, In addition, can you again run RSIT.exe and post it's new log that opens

Note: If the scan comes clean, do NOT uninstall Avira, you need an AntiVirus software installed
After the above is done, we'll do a few steps to prepare your computer for the install of the game and see how it goes

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here


Offline rolovis

  • Newbie
  • *
  • Posts: 38
  • Karma: +0/-0
    • View Profile
weird problem when installing
« Reply #22 on: April 14, 2009, 01:12:22 AM »
Avira AntiVir Personal
Report file date: Tuesday, April 14, 2009  00:00

Scanning for 1348960 virus strains and unwanted programs.

Licensee        : Avira AntiVir Personal - FREE Antivirus
Serial number   : 0000149996-ADJIE-0000001
Platform        : Windows XP
Windows version : (Service Pack 2)  [5.1.2600]
Boot mode       : Normally booted
Username        : SYSTEM
Computer name   : ROLOVIS

Version information:
BUILD.DAT       : 9.0.0.387     17962 Bytes   3/24/2009 11:04:00
AVSCAN.EXE      : 9.0.3.3      464641 Bytes   2/24/2009 16:13:26
AVSCAN.DLL      : 9.0.3.0       40705 Bytes   2/27/2009 14:58:24
LUKE.DLL        : 9.0.3.2      209665 Bytes   2/20/2009 15:35:49
LUKERES.DLL     : 9.0.2.0       12033 Bytes   2/27/2009 14:58:52
ANTIVIR0.VDF    : 7.1.0.0    15603712 Bytes  10/27/2008 16:30:36
ANTIVIR1.VDF    : 7.1.2.12    3336192 Bytes   2/11/2009 00:33:26
ANTIVIR2.VDF    : 7.1.3.0     1330176 Bytes    4/1/2009 03:58:52
ANTIVIR3.VDF    : 7.1.3.44     193024 Bytes   4/13/2009 03:58:58
Engineversion   : 8.2.0.138
AEVDF.DLL       : 8.1.1.0      106868 Bytes   1/27/2009 21:36:42
AESCRIPT.DLL    : 8.1.1.73     373114 Bytes   4/14/2009 03:59:39
AESCN.DLL       : 8.1.1.10     127348 Bytes   4/14/2009 03:59:34
AERDL.DLL       : 8.1.1.3      438645 Bytes  10/29/2008 22:24:41
AEPACK.DLL      : 8.1.3.12     397687 Bytes   4/14/2009 03:59:33
AEOFFICE.DLL    : 8.1.0.36     196987 Bytes   2/27/2009 00:01:56
AEHEUR.DLL      : 8.1.0.114   1700214 Bytes   4/14/2009 03:59:27
AEHELP.DLL      : 8.1.2.2      119158 Bytes   2/27/2009 00:01:56
AEGEN.DLL       : 8.1.1.33     340340 Bytes   4/14/2009 03:59:06
AEEMU.DLL       : 8.1.0.9      393588 Bytes   10/9/2008 18:32:40
AECORE.DLL      : 8.1.6.7      176502 Bytes   4/14/2009 03:59:01
AEBB.DLL        : 8.1.0.3       53618 Bytes   10/9/2008 18:32:40
AVWINLL.DLL     : 9.0.0.3       18177 Bytes  12/12/2008 12:47:59
AVPREF.DLL      : 9.0.0.1       43777 Bytes   12/5/2008 14:32:15
AVREP.DLL       : 8.0.0.3      155905 Bytes   1/20/2009 18:34:28
AVREG.DLL       : 9.0.0.0       36609 Bytes   12/5/2008 14:32:09
AVARKT.DLL      : 9.0.0.1      292609 Bytes    2/9/2009 11:52:24
AVEVTLOG.DLL    : 9.0.0.7      167169 Bytes   1/30/2009 14:37:08
SQLITE3.DLL     : 3.6.1.0      326401 Bytes   1/28/2009 19:03:49
SMTPLIB.DLL     : 9.2.0.25      28417 Bytes    2/2/2009 12:21:33
NETNT.DLL       : 9.0.0.0       11521 Bytes   12/5/2008 14:32:10
RCIMAGE.DLL     : 9.0.0.21    2438401 Bytes    2/9/2009 15:45:45
RCTEXT.DLL      : 9.0.35.0      87297 Bytes   3/11/2009 19:55:12

Configuration settings for the scan:
Jobname.............................: Complete system scan
Configuration file..................: c:\program files\avira\antivir desktop\sysscan.avp
Logging.............................: low
Primary action......................: interactive
Secondary action....................: ignore
Scan master boot sector.............: on
Scan boot sector....................: on
Boot sectors........................: C:, D:,
Process scan........................: on
Scan registry.......................: on
Search for rootkits.................: on
Integrity checking of system files..: off
Scan all files......................: All files
Scan archives.......................: on
Recursion depth.....................: 20
Smart extensions....................: on
Macro heuristic.....................: on
File heuristic......................: medium

Start of the scan: Tuesday, April 14, 2009  00:00

Starting search for hidden objects.
'72615' objects were checked, '0' hidden objects were found.

The scan of running processes will be started
Scan process 'avscan.exe' - '1' Module(s) have been scanned
Scan process 'avcenter.exe' - '1' Module(s) have been scanned
Scan process 'notepad.exe' - '1' Module(s) have been scanned
Scan process 'avgnt.exe' - '1' Module(s) have been scanned
Scan process 'sched.exe' - '1' Module(s) have been scanned
Scan process 'avguard.exe' - '1' Module(s) have been scanned
Scan process 'wuauclt.exe' - '1' Module(s) have been scanned
Scan process 'firefox.exe' - '1' Module(s) have been scanned
Scan process 'alg.exe' - '1' Module(s) have been scanned
Scan process 'dllhost.exe' - '1' Module(s) have been scanned
Scan process 'mcrdsvc.exe' - '1' Module(s) have been scanned
Scan process 'ventrilo_srv.exe' - '1' Module(s) have been scanned
Scan process 'ventrilo_svc.exe' - '1' Module(s) have been scanned
Scan process 'wdfmgr.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'nvsvc32.exe' - '1' Module(s) have been scanned
Scan process 'LSSrvc.exe' - '1' Module(s) have been scanned
Scan process 'jqs.exe' - '1' Module(s) have been scanned
Scan process 'ehSched.exe' - '1' Module(s) have been scanned
Scan process 'ehrecvr.exe' - '1' Module(s) have been scanned
Scan process 'arservice.exe' - '1' Module(s) have been scanned
Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
Scan process 'explorer.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'svchost.exe' - '1' Module(s) have been scanned
Scan process 'lsass.exe' - '1' Module(s) have been scanned
Scan process 'services.exe' - '1' Module(s) have been scanned
Scan process 'winlogon.exe' - '1' Module(s) have been scanned
Scan process 'csrss.exe' - '1' Module(s) have been scanned
Scan process 'smss.exe' - '1' Module(s) have been scanned
33 processes with 33 modules were scanned

Starting master boot sector scan:

Start scanning boot sectors:

Starting to scan executable files (registry).
The registry was scanned ( '55' files ).


Starting the file scan:

Begin scan in 'C:\' <PRESARIO>
C:\hiberfil.sys
    [WARNING]   The file could not be opened!
    [NOTE]      This file is a Windows system file.
    [NOTE]      This file cannot be opened for scanning.
C:\pagefile.sys
    [WARNING]   The file could not be opened!
    [NOTE]      This file is a Windows system file.
    [NOTE]      This file cannot be opened for scanning.
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WildTangent110.zip
    [DETECTION] Contains suspicious code GEN/PwdZIP
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WildTangent140.zip
    [DETECTION] Contains suspicious code GEN/PwdZIP
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WildTangent18.zip
    [DETECTION] Contains suspicious code GEN/PwdZIP
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WildTangent48.zip
    [DETECTION] Contains suspicious code GEN/PwdZIP
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinAgentbm3.zip
    [DETECTION] Contains suspicious code GEN/PwdZIP
C:\Documents and Settings\Compaq_Administrator\Desktop\new downloads\ca_setup.exe
    [DETECTION] Contains recognition pattern of the DR/PSW.Cain.284.47 dropper
C:\Program Files\Adobe\Reader 8.0\Setup Files\{AC76BA86-7AD7-1033-7B44-A81200000003}\Data1.cab
 
  • Archive type: CAB (Microsoft)

    --> JSByteCodeWin.bin
      [WARNING]   The file could not be written!
    --> usa86.lex
      [WARNING]   No further files can be extracted from this archive. The archive will be closed
    [WARNING]   No further files can be extracted from this archive. The archive will be closed
C:\Program Files\Mozilla Firefox\components\nsBrowserOpt.dll-
    [DETECTION] Contains recognition pattern of the ADSPY/AdRotator.B adware or spyware
C:\WINDOWS\system32\g42.exe
 
  • Archive type: NSIS

    --> ProgramFilesDir/[TempDir]/[UnknownDir].dll
      [DETECTION] Is the TR/BHO.Gen Trojan
Begin scan in 'D:\' <PRESARIO_RP>

Beginning disinfection:
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WildTangent110.zip
    [DETECTION] Contains suspicious code GEN/PwdZIP
    [NOTE]      The detection was classified as suspicious.
    [NOTE]      The file was moved to '4a5028b8.qua'!
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WildTangent140.zip
    [DETECTION] Contains suspicious code GEN/PwdZIP
    [NOTE]      The detection was classified as suspicious.
    [NOTE]      The file was moved to '4a5028b9.qua'!
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WildTangent18.zip
    [DETECTION] Contains suspicious code GEN/PwdZIP
    [NOTE]      The detection was classified as suspicious.
    [NOTE]      The file was moved to '4b2ec01a.qua'!
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WildTangent48.zip
    [DETECTION] Contains suspicious code GEN/PwdZIP
    [NOTE]      The detection was classified as suspicious.
    [NOTE]      The file was moved to '4b2bf9f2.qua'!
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\WinAgentbm3.zip
    [DETECTION] Contains suspicious code GEN/PwdZIP
    [NOTE]      The detection was classified as suspicious.
    [NOTE]      The file was moved to '4a5228b9.qua'!
C:\Documents and Settings\Compaq_Administrator\Desktop\new downloads\ca_setup.exe
    [DETECTION] Contains recognition pattern of the DR/PSW.Cain.284.47 dropper
    [NOTE]      The file was moved to '4a4328b1.qua'!
C:\Program Files\Mozilla Firefox\components\nsBrowserOpt.dll-
    [DETECTION] Contains recognition pattern of the ADSPY/AdRotator.B adware or spyware
    [NOTE]      The file was moved to '4a2628c4.qua'!
C:\WINDOWS\system32\g42.exe
    [NOTE]      The file was moved to '4a162885.qua'!


End of the scan: Tuesday, April 14, 2009  02:08
Used time:  1:06:05 Hour(s)

The scan has been done completely.

  10694 Scanned directories
 558875 Files were scanned
      3 Viruses and/or unwanted programs were found
      5 Files were classified as suspicious
      0 files were deleted
      0 Viruses and unwanted programs were repaired
      8 Files were moved to quarantine
      0 Files were renamed
      2 Files cannot be scanned
 558865 Files not concerned
  17387 Archives were scanned
      5 Warnings
     10 Notes
  72615 Objects were scanned with rootkit scan
      0 Hidden objects were found




It says some stuff about spybot, but i deleted it like you asked. http://images.thetechguide.com/forum/public/style_emoticons/<#EMO_DIR#>/blink.gif\' class=\'bbc_emoticon\' alt=\':blink:\' />


Logfile of random's system information tool 1.06 (written by random/random)
Run by Compaq_Administrator at 2009-04-14 02:11:42
Microsoft Windows XP Professional Service Pack 2
System drive C: has 25 GB (17%) free of 144 GB
Total RAM: 1982 MB (75% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2:11:53 AM, on 4/14/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\arservice.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\VentSrv\ventrilo_svc.exe
C:\Program Files\VentSrv\ventrilo_srv.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Compaq_Administrator\Desktop\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Compaq_Administrator.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...&pf=desktop
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = wowhead.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...&pf=desktop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
O1 - Hosts: 72.240.213.164 DeadlyWoW.no-ip.org
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O3 - Toolbar: Veoh Web Player Video Finder - {0FBB9689-D3D7-4f7a-A2E2-585B10099BFC} - C:\Program Files\Veoh Networks\VeohWebPlayer\VeohIEToolbar.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user')
O4 - .DEFAULT User Startup: PinMcLnk.lnk = C:\hp\bin\cloaker.exe (User 'Default user')
O9 - Extra button: Internet Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Internet Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {040F4385-8DAD-4306-94BF-B8291D841FAE} (USBAPTester Class) - http://www.nintendo.com/consumer/systems/w...a/usbaptest.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O17 - HKLM\System\CCS\Services\Tcpip\..\{598840DD-12DD-4877-9BFA-85AA3FEA0404}: NameServer = 208.67.222.222,208.67.220.220
O23 - Service: Avira AntiVir Scheduler (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdcoreservice) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
O23 - Service: Ventrilo - Unknown owner - C:\Program Files\VentSrv\ventrilo_svc.exe

--
End of file - 5521 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Google Software Updater.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2006-08-31 322368]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll [2009-03-24 668656]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{0FBB9689-D3D7-4f7a-A2E2-585B10099BFC} - Veoh Web Player Video Finder - C:\Program Files\Veoh Networks\VeohWebPlayer\VeohIEToolbar.dll [2008-10-09 463872]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2008-10-07 13574144]
"avgnt"=C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [2009-03-02 209153]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdauxservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdcoreservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\nm.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sdauxservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\sdcoreservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"InstallVisualStyle"=C:\WINDOWS\Resources\Themes\Royale\Royale.msstyles
"InstallTheme"=C:\WINDOWS\Resources\Themes\Royale.theme

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0
"NoDriveAutoRun"=67108863
"NoDriveTypeAutoRun"=323

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=
"NoDrives"=
"NoDriveAutoRun"=
"HonorAutoRunSetting"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\DISC\DISCover.exe"="C:\Program Files\DISC\DISCover.exe:*:Enabled:DISCover Drop & Play System"
"C:\Program Files\DISC\DiscStreamHub.exe"="C:\Program Files\DISC\DiscStreamHub.exe:*:Enabled:DISCover Stream Hub"
"C:\Program Files\DISC\myFTP.exe"="C:\Program Files\DISC\myFTP.exe:*:Enabled:DISCover FTP"
"C:\Program Files\Compaq Connections\5577497\Program\Compaq Connections.exe"="C:\Program Files\Compaq Connections\5577497\Program\Compaq Connections.exe:*:Enabled:Compaq Connections"
"C:\Program Files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe"="C:\Program Files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe:*:Enabled:Veoh Web Player "
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\WINDOWS\arservice.exe"="C:\WINDOWS\arservice.exe:*:Enabled:arservice"
"C:\Python26\pythonw.exe"="C:\Python26\pythonw.exe:*:Enabled:pythonw"
"C:\WINDOWS\pchealth\helpctr\binaries\HelpCtr.exe"="C:\WINDOWS\pchealth\helpctr\binaries\HelpCtr.exe:*:Enabled:Remote Assistance - Windows Messenger and Voice"
"C:\Program Files\Mozilla Firefox\firefox.exe"="C:\Program Files\Mozilla Firefox\firefox.exe:*:Enabled:Firefox"
"C:\Program Files\World of Warcraft\Repair.exe"="C:\Program Files\World of Warcraft\Repair.exe:*:Enabled:Blizzard Repair Utility"
"C:\Documents and Settings\Compaq_Administrator\Desktop\New Folder (3)\arcemu-logonserver.exe"="C:\Documents and Settings\Compaq_Administrator\Desktop\New Folder (3)\arcemu-logonserver.exe:*:Enabled:arcemu-logonserver"
"C:\Documents and Settings\Compaq_Administrator\Desktop\New Folder (3)\arcemu-world.exe"="C:\Documents and Settings\Compaq_Administrator\Desktop\New Folder (3)\arcemu-world.exe:*:Enabled:arcemu-world"
"C:\Program Files\Warcraft III\Frozen Throne.exe"="C:\Program Files\Warcraft III\Frozen Throne.exe:*:Enabled:Warcraft III - The Frozen Throne"
"C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Compaq Connections\5577497\Program\Compaq Connections.exe"="C:\Program Files\Compaq Connections\5577497\Program\Compaq Connections.exe:*:Enabled:Compaq Connections"
"C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d11b0dae-902b-11dd-b416-806d6172696f}]
shell\AutoRun\command - E:\Autorun.exe


======List of files/folders created in the last 1 months======

2009-04-13 23:49:02 ----D---- C:\WINDOWS\LastGood
2009-04-13 23:48:57 ----D---- C:\Program Files\Avira
2009-04-13 23:48:57 ----D---- C:\Documents and Settings\All Users\Application Data\Avira
2009-04-13 23:42:28 ----D---- C:\Program Files\SpywareBlaster
2009-04-13 23:39:58 ----D---- C:\ComboFix
2009-04-13 22:22:57 ----A---- C:\ComboFix.txt
2009-04-12 22:01:59 ----D---- C:\rsit
2009-04-09 21:04:38 ----D---- C:\Documents and Settings\Compaq_Administrator\Application Data\VSRevoGroup
2009-04-09 19:53:30 ----D---- C:\Disk2
2009-04-09 19:53:28 ----D---- C:\Disk3
2009-04-09 19:53:27 ----D---- C:\Disk6
2009-04-09 19:53:19 ----D---- C:\Disk4
2009-04-09 19:53:17 ----D---- C:\Disk5
2009-04-09 18:19:16 ----D---- C:\Program Files\Common Files\EasyInfo
2009-03-31 06:13:25 ----D---- C:\Program Files\Paint.NET
2009-03-30 19:57:43 ----HD---- C:\BJPrinter
2009-03-30 19:53:46 ----HD---- C:\Documents and Settings\All Users\Application Data\CanonBJ
2009-03-27 00:17:03 ----DC---- C:\WINDOWS\system32\DRVSTORE
2009-03-27 00:16:55 ----D---- C:\Program Files\MSN Messenger
2009-03-19 03:21:48 ----D---- C:\Program Files\Text-Reader programs

======List of files/folders modified in the last 1 months======

2009-04-14 02:09:32 ----D---- C:\Program Files\Mozilla Firefox
2009-04-14 02:08:17 ----D---- C:\WINDOWS\system32
2009-04-14 00:12:51 ----D---- C:\WINDOWS\temp
2009-04-13 23:58:22 ----D---- C:\WINDOWS\Prefetch
2009-04-13 23:49:10 ----D---- C:\WINDOWS\system32\drivers
2009-04-13 23:49:10 ----AD---- C:\WINDOWS
2009-04-13 23:49:09 ----HD---- C:\WINDOWS\inf
2009-04-13 23:49:07 ----D---- C:\WINDOWS\system32\CatRoot2
2009-04-13 23:48:57 ----D---- C:\Program Files
2009-04-13 23:47:47 ----SHD---- C:\WINDOWS\Installer
2009-04-13 23:47:46 ----D---- C:\WINDOWS\WinSxS
2009-04-13 23:47:46 ----D---- C:\Config.Msi
2009-04-13 23:40:38 ----SHD---- C:\System Volume Information
2009-04-13 23:40:38 ----D---- C:\WINDOWS\system32\Restore
2009-04-13 23:40:02 ----D---- C:\WINDOWS\ERDNT
2009-04-13 23:37:43 ----SD---- C:\WINDOWS\Tasks
2009-04-13 23:37:42 ----D---- C:\WINDOWS\Registration
2009-04-13 23:36:19 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-04-13 23:35:59 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2009-04-13 23:35:58 ----D---- C:\Documents and Settings\Compaq_Administrator\Application Data\SUPERAntiSpyware.com
2009-04-13 23:35:51 ----D---- C:\Program Files\SUPERAntiSpyware
2009-04-13 23:34:01 ----D---- C:\Program Files\Spybot - Search & Destroy
2009-04-13 23:32:10 ----D---- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2009-04-13 22:21:23 ----A---- C:\WINDOWS\system.ini
2009-04-13 22:20:41 ----D---- C:\WINDOWS\AppPatch
2009-04-13 22:20:33 ----D---- C:\Program Files\Common Files
2009-04-13 19:51:04 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2009-04-13 14:13:14 ----D---- C:\Documents and Settings\All Users\Application Data\Google Updater
2009-04-12 20:47:45 ----D---- C:\WINDOWS\Debug
2009-04-12 19:38:23 ----D---- C:\Program Files\Common Files\Blizzard Entertainment
2009-04-09 18:58:28 ----D---- C:\WINDOWS\system32\LogFiles
2009-04-08 16:58:33 ----D---- C:\Program Files\World of Warcraft
2009-04-06 17:30:15 ----SD---- C:\WINDOWS\Downloaded Program Files
2009-04-06 14:27:29 ----D---- C:\Program Files\Warcraft III
2009-04-06 03:15:51 ----D---- C:\Documents and Settings\Compaq_Administrator\Application Data\Adobe
2009-04-01 23:21:19 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2009-04-01 23:21:01 ----D---- C:\Program Files\Spyware Doctor
2009-03-31 17:55:19 ----D---- C:\Documents and Settings\Compaq_Administrator\Application Data\FrostWire
2009-03-31 06:14:01 ----RSD---- C:\WINDOWS\assembly
2009-03-30 20:06:40 ----D---- C:\Documents and Settings\Compaq_Administrator\Application Data\Hamachi
2009-03-30 19:53:55 ----D---- C:\WINDOWS\system32\FxsTmp
2009-03-27 00:17:48 ----SD---- C:\Documents and Settings\Compaq_Administrator\Application Data\Microsoft
2009-03-27 00:17:17 ----D---- C:\Program Files\Common Files\Microsoft Shared
2009-03-27 00:16:59 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2009-03-25 21:33:11 ----A---- C:\WINDOWS\win.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 AmdK8;AMD Processor Driver; C:\WINDOWS\system32\DRIVERS\AmdK8.sys [2005-03-09 36352]
R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir Desktop\avgio.sys []
R1 avipbb;avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [2009-02-13 95576]
R1 ssmdrv;ssmdrv; C:\WINDOWS\system32\DRIVERS\ssmdrv.sys [2009-02-13 28376]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-10 12032]
R2 avgntflt;avgntflt; C:\WINDOWS\system32\DRIVERS\avgntflt.sys [2009-02-13 55640]
R2 mdmxsdk;mdmxsdk; C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys [2005-10-05 12544]
R3 aracpi;aracpi; C:\WINDOWS\system32\DRIVERS\aracpi.sys [2005-08-03 22784]
R3 arhidfltr;MS Ar HID Filter Driver; C:\WINDOWS\system32\DRIVERS\arhidfltr.sys [2005-08-03 19200]
R3 arkbcfltr;Microsoft PS2 Keyboard Filter; C:\WINDOWS\system32\DRIVERS\arkbcfltr.sys [2005-08-03 5376]
R3 armoucfltr;Microsoft PS2 Mouse Filter; C:\WINDOWS\system32\DRIVERS\armoucfltr.sys [2005-08-03 4992]
R3 ARPolicy;ARPolicy; C:\WINDOWS\system32\DRIVERS\arpolicy.sys [2005-08-03 10112]
R3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2008-10-03 25280]
R3 HDAudBus;Microsoft UAA Bus Driver for High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2005-01-08 138752]
R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600]
R3 HSX_DP;HSX_DP; C:\WINDOWS\system32\DRIVERS\HSX_DP.sys [2005-12-06 936448]
R3 HSXHWBS2;HSXHWBS2; C:\WINDOWS\system32\DRIVERS\HSXHWBS2.sys [2005-12-06 241664]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RtkHDAud.sys [2008-09-24 4818432]
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-18 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-10-07 6133856]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2006-03-03 34176]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2006-03-03 13056]
R3 usbaudio;USB Audio Driver (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2004-08-04 59264]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-04 31616]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2005-03-31 27008]
R3 usbhub;USB2 Enabled Hub; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-10 57600]
R3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2004-08-04 17024]
R3 winachsx;winachsx; C:\WINDOWS\system32\DRIVERS\HSX_CNXT.sys [2005-12-06 670208]
S1 kbdhid;Keyboard HID Driver; C:\WINDOWS\system32\DRIVERS\kbdhid.sys [2004-08-03 14848]
S3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2004-08-10 60800]
S3 catchme;catchme; \??\C:\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\catchme.sys []
S3 IKFileSec;File Security Driver; C:\WINDOWS\system32\drivers\ikfilesec.sys [2008-12-10 40840]
S3 IKSysFlt;System Filter Driver; C:\WINDOWS\system32\drivers\iksysflt.sys [2008-12-10 66952]
S3 IKSysSec;System Security Driver; C:\WINDOWS\system32\drivers\iksyssec.sys [2008-12-10 81288]
S3 MA311;NETGEAR Wireless LAN Driver; C:\WINDOWS\system32\DRIVERS\ma311n51.sys [2002-05-01 54784]
S3 MHNDRV;MHN driver; C:\WINDOWS\system32\DRIVERS\mhndrv.sys [2004-08-10 11008]
S3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2004-08-10 61824]
S3 nm;Network Monitor Driver; C:\WINDOWS\system32\DRIVERS\NMnt.sys [2004-08-10 40320]
S3 NPF;NetGroup Packet Filter Driver; C:\WINDOWS\system32\drivers\npf.sys [2007-11-06 34064]
S3 PCANDIS5;PCANDIS5 Protocol Driver; \??\C:\PROGRA~1\MA311P~1\PCANDIS5.SYS []
S3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
S3 samhid;samhid; C:\WINDOWS\system32\drivers\samhid.sys [2006-01-07 7548]
S3 SYMIDSCO;SYMIDSCO; \??\C:\PROGRA~1\COMMON~1\SYMANT~1\SymcData\idsdefs\20050901.036\symidsco.sys []
S3 usbstor;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-10 26496]
S3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2004-08-10 20480]
S3 WpdUsb;WpdUsb; C:\WINDOWS\System32\Drivers\wpdusb.sys [2006-03-03 18944]
S4 intelppm;Intel Processor Driver; C:\WINDOWS\system32\DRIVERS\intelppm.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AntiVirSchedulerService;Avira AntiVir Scheduler; C:\Program Files\Avira\AntiVir Desktop\sched.exe [2009-03-05 108289]
R2 AntiVirService;Avira AntiVir Guard; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [2009-03-02 185089]
R2 ARSVC;ARSVC; C:\WINDOWS\arservice.exe [2005-08-03 58880]
R2 ehRecvr;Media Center Receiver Service; C:\WINDOWS\eHome\ehRecvr.exe [2005-12-15 237568]
R2 ehSched;Media Center Scheduler Service; C:\WINDOWS\eHome\ehSched.exe [2005-08-06 102912]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2008-11-12 152984]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-08-18 61440]
R2 McrdSvc;Media Center Extender Service; C:\WINDOWS\ehome\mcrdsvc.exe [2005-08-06 99328]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2008-10-07 163908]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2005-08-04 38912]
R2 Ventrilo;Ventrilo; C:\Program Files\VentSrv\ventrilo_svc.exe [2005-07-13 65536]
S2 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-03-24 183280]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]
S3 Fax;Fax; C:\WINDOWS\system32\fxssvc.exe [2004-08-10 267776]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2007-10-09 36864]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2007-10-11 864256]
S3 MHN;MHN; C:\WINDOWS\System32\svchost.exe [2004-08-10 14336]
S3 rpcapd;Remote Packet Capture Protocol v.0 (experimental); C:\Program Files\WinPcap\rpcapd.exe [2007-11-06 92792]
S3 sdAuxService;PC Tools Auxiliary Service; C:\Program Files\Spyware Doctor\pctsAuxs.exe [2008-06-13 356920]
S3 sdcoreservice;PC Tools Security Service; C:\Program Files\Spyware Doctor\pctsSvc.exe [2008-12-10 1079176]
S3 usnjsvc;Messenger Sharing Folders USN Journal Reader service; C:\Program Files\MSN Messenger\usnsvc.exe [2007-01-19 97136]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2007-10-11 122880]

-----------------EOF-----------------

Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
weird problem when installing
« Reply #23 on: April 16, 2009, 10:15:52 PM »
I suggest, if you haven't done so already
Do all the Pre-installation before trying to install the game again

Here's what EA suggests
Disk Cleanup is a program that scans your hard drive, finds temporary and otherwise unnecessary files and gives you the option of removing them from your hard drive. This clears up hard drive space and helps prevent file conflicts.

To use Disk Cleanup:

   1. Click on the Start button.
   2. Click on All Programs.
   3. Click on Accessories.
   4. Click on System Tools.
   5. Click on Disk Cleanup.
   6. It will take a few minutes to scan the drive; wait for this process to complete.
   7. Click on the boxes of items that you would like to delete/empty.
          * Typically one would choose:
                o Temporary Internet Files
                o Recycle Bin
                o Temporary Files
                o Temporary Offline Files
   8. Click on OK once you have finished choosing.
   9. A message while appear asking you to confirm your choices; click Yes to continue.
  10. The deletion process may take a few minutes to complete.

If you have reason to believe that there may be an error on the hard drive, or just want to check the integrity of the hard disk, you can run a check program to find and resolve any issues on the hard drive.

    * For Windows XP/Windows 2000:
         1. Open My Computer.
         2. Right-click on the hard drive you would like to scan and choose Properties.
         3. Click on the Tools tab.
         4. Click on the Check Now button in the Error-Checking box.
         5. Check the options that you would like to use and click on the Start button. (I suggest you tick both options, you will be prompted to reboot the computer, do so
         6. The scan may take a number of minutes to complete. It will alert you of any errors or repaired sectors.
         7. When the ‘Disk Check Complete’ message appears, click OK to finish the process.


The Disk Defragmenter program reorganizes the data on your hard disk to better utilize space and make the hard drive more efficient. After extended use; installing, uninstalling, and reinstalling; adding and removing files; etc. the data on a hard drive can be all over the place and your hard drive has to work harder (and therefore slower) to access and save information. Using the Defragmenter groups all like and related files for faster access and groups all free space together for efficiency. This is especially helpful when installing new programs.

   1. Click on the Start button.
   2. Go to Programs.
   3. Go to Accessories.
   4. Go to System Tools.
   5. Click on Disk Defragmenter.
   6. From here you may choose a drive to defragment or analyze your drives to detect if a defragmentation is recommended.
   7. Defragmentation can take a long time depending on the size and state of the drive. It is best just to leave the Defragmenter running and not to use the computer during this process.

My note: good time again to reboot the computer

Let me know how the above went, then time to install the game

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here


Offline rolovis

  • Newbie
  • *
  • Posts: 38
  • Karma: +0/-0
    • View Profile
weird problem when installing
« Reply #24 on: April 16, 2009, 11:55:30 PM »
Game installed with no problems!  Dont know what did it, but it did it!  Thanks again man!

Offline guestolo

  • Site Donator
  • Administrator
  • Hero Member
  • *****
  • Posts: 16034
  • Karma: +1/-0
    • View Profile
    • http://
weird problem when installing
« Reply #25 on: April 17, 2009, 10:00:58 PM »
Good work, I'll lock this topic as your problems appear resolved
Take care rolovis  http://images.thetechguide.com/forum/public/style_emoticons/<#EMO_DIR#>/smile.gif\' class=\'bbc_emoticon\' alt=\':)\' />

Do you want to post your own logs from FRST?

Follow the instructions posted http://www.thetechguide.com/forum/index.php/topic/22942-please-read-how-to-post-logs-from-frst/\'>Click Here