Computer Support Forum

Unreachable dll's !! Cant remove them! (dds logs)

Question: Unreachable dll's !! Cant remove them! (dds logs)

I also just noticed that the Action Security Center keeps telling me I have no antivirus or firewall active when I do....i hope i do.... :-(
DDS (Ver_2012-11-20.01) - NTFS_AMD64 
Internet Explorer: 11.0.9600.16521
Run by Verner at 10:37:23 on 2014-04-02
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.1.1033.18.1788.562 [GMT -5:00]
AV: McAfee Anti-Virus and Anti-Spyware *Disabled/Updated* {ADA629C7-7F48-5689-624A-3B76997E0892}
SP: McAfee Anti-Virus and Anti-Spyware *Disabled/Updated* {16C7C823-5972-5907-58FA-0004E2F9422F}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Spybot - Search and Destroy *Enabled/Updated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
FW: McAfee Firewall *Disabled* {959DA8E2-3527-57D1-4915-924367AD4FE9}
============== Running Processes ===============
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\System32\svchost.exe -k HPZ12
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
============== Pseudo HJT Report ===============
uStart Page = hxxp://
uSearch Bar = hxxp://
uSearch Page = hxxp://
uDefault_Search_URL = hxxp://
uSearchAssistant = hxxp://
mWinlogon: Userinit = userinit.exe
BHO: HP Print Enhancer: {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: McAfee SiteAdvisor BHO: {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
BHO: HP Smart BHO Class: {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
TB: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
EB: HP Smart Web Printing: {555D4D79-4BD2-4094-A395-CFC534424A05} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_bho.dll
EB: HP Smart Web Printing: {555D4D79-4BD2-4094-A395-CFC534424A05} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_bho.dll
uRun: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
mRun: [SDTray] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe"
mRun: [mcpltui_exe] "C:\Program Files\\Agent\mcagent.exe" /runkey
mRun: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
dRunOnce: [SPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"" /build:7601
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: Add to Google Photos Screensa&ver - C:\Windows\System32\GPhotos.scr/200
IE: {DDE87865-83C5-48c4-8357-2F5B1AA84522} - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
INFO: HKLM has more than 50 listed domains.
   If you wish to scan all of them, select the 'Force scan all domains' option.
TCP: NameServer =
TCP: Interfaces\{27A7D5CD-4C65-48D1-8E12-722F5038518A} : DHCPNameServer =
TCP: Interfaces\{27A7D5CD-4C65-48D1-8E12-722F5038518A}\2375942554234393 : DHCPNameServer =
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\MSC\McSnIePl.dll
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
Notify: SDWinLogon - SDWinLogon.dll
SSODL: WebCheck - <orphaned>
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\33.0.1750.154\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
x64-BHO: McAfee SiteAdvisor BHO: {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll
x64-BHO: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
x64-TB: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll
x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
x64-Run: [QuickSet] C:\Program Files\Dell\QuickSet\QuickSet.exe
INFO: x64-HKLM has more than 50 listed domains.
   If you wish to scan all of them, select the 'Force scan all domains' option.
x64-DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://
x64-DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - hxxp://
x64-Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\MSC\McSnIePl64.dll
x64-Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll
x64-Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll
x64-Notify: GoToAssist - C:\Program Files (x86)\Citrix\GoToAssist\514\G2AWinLogon_x64.dll
x64-SSODL: WebCheck - <orphaned>
============= SERVICES / DRIVERS ===============
R0 amd_sata;amd_sata;C:\Windows\System32\drivers\amd_sata.sys [2011-1-15 73856]
R0 amd_xata;amd_xata;C:\Windows\System32\drivers\amd_xata.sys [2011-1-15 28800]
R0 PxHlpa64;PxHlpa64;C:\Windows\System32\drivers\PxHlpa64.sys [2011-1-15 55280]
R1 MOBKFilter;MOBKFilter;C:\Windows\System32\drivers\MOBK.sys [2014-3-19 66040]
R1 SASDIFSV;SASDIFSV;C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys [2011-7-22 14928]
R1 SASKUTIL;SASKUTIL;C:\Program Files\SUPERAntiSpyware\saskutil64.sys [2011-7-12 12368]
R2 !SASCORE;SAS Core Service;C:\Program Files\SUPERAntiSpyware\SASCore64.exe [2013-10-10 144152]
R2 McMPFSvc;McAfee Personal Firewall Service;C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2014-3-19 328928]
R2 mfeavfk;McAfee Inc. mfeavfk;C:\Windows\System32\drivers\mfeavfk.sys [2014-1-27 311600]
R2 mfecore;McAfee Anti-Malware Core;C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [2014-3-19 1025712]
R2 mfefire;McAfee Firewall Core Service;C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe [2014-3-19 219752]
R2 mfehidk;McAfee Inc. mfehidk;C:\Windows\System32\drivers\mfehidk.sys [2013-12-5 783864]
R2 mfevtp;McAfee Validation Trust Protection Service;C:\Windows\System32\mfevtps.exe [2014-3-19 185792]
R2 mfewfpk;McAfee Inc. mfewfpk;C:\Windows\System32\drivers\mfewfpk.sys [2014-1-27 344688]
R2 SDScannerService;Spybot-S&D 2 Scanner Service;C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2014-3-20 3921880]
R2 SDWSCService;Spybot-S&D 2 Security Center Service;C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [2014-3-20 171416]
R3 cfwids;McAfee Inc. cfwids;C:\Windows\System32\drivers\cfwids.sys [2014-1-27 70592]
R3 CtClsFlt;Creative Camera Class Upper Filter Driver;C:\Windows\System32\drivers\CtClsFlt.sys [2011-1-15 172704]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\Windows\System32\drivers\L1C62x64.sys [2011-1-15 76912]
R3 mfefirek;McAfee Inc. mfefirek;C:\Windows\System32\drivers\mfefirek.sys [2014-1-27 520696]
R3 mfencbdc;McAfee Inc. mfencbdc;C:\Windows\System32\drivers\mfencbdc.sys [2014-1-21 422712]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-9-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-9-11 124088]
S2 SDUpdateService;Spybot-S&D 2 Updating Service;C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2014-3-20 1042272]
S3 HipShieldK;McAfee Inc. HipShieldK;C:\Windows\System32\drivers\HipShieldK.sys [2014-3-19 197704]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\ieetwcollector.exe [2014-3-28 111616]
S3 MBAMSwissArmy;MBAMSwissArmy;C:\Windows\System32\drivers\MBAMSwissArmy.sys [2014-4-1 119512]
S3 mfencrk;McAfee Inc. mfencrk;C:\Windows\System32\drivers\mfencrk.sys [2014-1-21 96592]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2014-3-27 19456]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\System32\drivers\RtsUStor.sys [2011-1-15 232480]
S3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2009-6-10 187392]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2014-3-27 56832]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2014-3-21 1255736]
S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;C:\Windows\System32\drivers\yk62x64.sys [2009-6-10 389120]
S4 AERTFilters;Andrea RT Filters Service;C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2011-1-15 98208]
S4 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2011-1-15 202752]
S4 DockLoginService;Dock Login Service;C:\Program Files\Dell\DellDock\DockLogin.exe [2009-6-9 155648]
S4 HomeNetSvc;McAfee Home Network;C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2014-3-19 328928]
S4 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2014-3-19 328928]
S4 McAPExe;McAfee AP Service;C:\Program Files\McAfee\MSC\McAPExe.exe [2014-3-19 178528]
S4 McNaiAnn;McAfee VirusScan Announcer;C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2014-3-19 328928]
S4 mcpltsvc;McAfee Platform Services;C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2014-3-19 328928]
S4 McProxy;McAfee Proxy Service;C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [2014-3-19 328928]
S4 MOBKbackup;McAfee Online Backup;C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe [2010-4-13 231224]
S4 NOBU;Dell DataSafe Online;C:\Program Files (x86)\Dell\Dell Datasafe Online\NOBuAgent.exe [2010-8-25 2823000]
S4 SftService;SoftThinks Agent Service;C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe [2011-1-15 689472]
=============== Created Last 30 ================
2014-04-02 12:11:22 -------- d-----w- C:\SUPERDelete
2014-04-02 03:08:58 -------- d-----w- C:\ProgramData\Samsung
2014-04-02 02:20:05 -------- d-----w- C:\Users\Verner\AppData\Roaming\Samsung
2014-04-02 02:19:59 144664 ----a-w- C:\Windows\SysWow64\secman.dll
2014-04-02 01:59:14 -------- d-----w- C:\Users\Verner\AppData\Roaming\
2014-04-02 01:57:46 -------- d-----w- C:\ProgramData\
2014-04-02 01:57:46 -------- d-----w- C:\Program Files\SUPERAntiSpyware
2014-04-02 00:32:51 119512 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys
2014-04-02 00:31:39 -------- d-----w- C:\ProgramData\Malwarebytes
2014-04-01 08:27:42 10521840 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{295981EE-41EC-4454-9594-64CAB42900A5}\mpengine.dll
2014-04-01 02:36:48 -------- d-----w- C:\Program Files (x86)\Samsung
2014-04-01 02:34:23 -------- d-----w- C:\Users\Verner\AppData\Local\Downloaded Installations
2014-04-01 01:36:14 -------- d-----w- C:\Program Files (x86)\ESET
2014-03-31 23:36:14 -------- d-----w- C:\Windows\ERUNT
2014-03-31 23:14:52 -------- d-----w- C:\AdwCleaner
2014-03-31 08:03:09 -------- d-----r- C:\Program Files (x86)\Skype
2014-03-31 05:05:10 10521840 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll
2014-03-30 23:55:33 -------- d-----w- C:\FRST
2014-03-30 00:35:46 -------- d-----w- C:\ProgramData\SecTaskMan
2014-03-30 00:35:14 -------- d-----w- C:\Program Files (x86)\Security Task Manager
2014-03-29 00:22:56 454656 ----a-w- C:\Windows\SysWow64\vbscript.dll
2014-03-29 00:22:55 548864 ----a-w- C:\Windows\System32\vbscript.dll
2014-03-28 23:05:48 -------- d-----w- C:\Program Files (x86)\MSXML 4.0
2014-03-28 23:00:13 6574592 ----a-w- C:\Windows\System32\mstscax.dll
2014-03-28 23:00:13 5694464 ----a-w- C:\Windows\SysWow64\mstscax.dll
2014-03-28 15:05:20 -------- d-----w- C:\Users\Verner\AppData\Local\Diagnostics
2014-03-28 13:47:15 -------- d-----w- C:\Windows\pss
2014-03-28 02:10:42 -------- d-----w- C:\Users\Verner\AppData\Roaming\LavasoftStatistics
2014-03-28 01:23:58 -------- d-----w- C:\Windows\Migration
2014-03-28 01:13:10 -------- d-----w- C:\Users\Verner\AppData\Roaming\SecureSearch
2014-03-28 01:05:37 -------- d-----w- C:\Program Files\Common Files\Lavasoft
2014-03-28 00:57:08 256904 ----a-w- C:\Windows\SysWow64\drivers\tmcomm.sys
2014-03-28 00:52:13 15360 ----a-w- C:\Windows\System32\RdpGroupPolicyExtension.dll
2014-03-28 00:51:33 19456 ----a-w- C:\Windows\System32\drivers\rdpvideominiport.sys
2014-03-28 00:50:41 192000 ----a-w- C:\Windows\SysWow64\rdpendp_winip.dll
2014-03-28 00:50:36 243200 ----a-w- C:\Windows\System32\rdpudd.dll
2014-03-28 00:50:34 228864 ----a-w- C:\Windows\System32\rdpendp_winip.dll
2014-03-28 00:50:28 3174912 ----a-w- C:\Windows\System32\rdpcorets.dll
2014-03-28 00:38:36 514560 ----a-w- C:\Windows\SysWow64\qdvd.dll
2014-03-28 00:38:34 366592 ----a-w- C:\Windows\System32\qdvd.dll
2014-03-28 00:37:33 1030144 ----a-w- C:\Windows\System32\TSWorkspace.dll
2014-03-28 00:37:31 792576 ----a-w- C:\Windows\SysWow64\TSWorkspace.dll
2014-03-27 23:58:46 -------- d-----w- C:\ProgramData\WEBREG
2014-03-27 23:55:49 -------- d-----w- C:\Users\Verner\AppData\Local\HP
2014-03-27 23:48:21 -------- d-----w- C:\Program Files (x86)\Yahoo!
2014-03-27 23:39:22 -------- d-----w- C:\Windows\SysWow64\spool
2014-03-27 23:36:51 -------- d-----w- C:\Program Files (x86)\Common Files\Hewlett-Packard
2014-03-27 23:36:11 -------- d-----w- C:\Program Files (x86)\Common Files\HP
2014-03-27 23:30:57 -------- d-----w- C:\Program Files (x86)\HP
2014-03-27 23:26:59 -------- d-----w- C:\Program Files\HP
2014-03-27 23:25:27 642360 ----a-w- C:\Windows\System32\hpzids40.dll
2014-03-27 22:38:27 465920 ----a-w- C:\Windows\System32\WMPhoto.dll
2014-03-27 22:38:27 417792 ----a-w- C:\Windows\SysWow64\WMPhoto.dll
2014-03-27 22:38:25 2871808 ----a-w- C:\Windows\explorer.exe
2014-03-27 22:38:24 2616320 ----a-w- C:\Windows\SysWow64\explorer.exe
2014-03-27 22:38:21 2565120 ----a-w- C:\Windows\System32\d3d10warp.dll
2014-03-27 22:38:21 1987584 ----a-w- C:\Windows\SysWow64\d3d10warp.dll
2014-03-27 22:38:20 3928064 ----a-w- C:\Windows\System32\d2d1.dll
2014-03-27 22:38:20 3419136 ----a-w- C:\Windows\SysWow64\d2d1.dll
2014-03-27 22:36:05 1424384 ----a-w- C:\Windows\System32\WindowsCodecs.dll
2014-03-27 22:36:04 1230336 ----a-w- C:\Windows\SysWow64\WindowsCodecs.dll
2014-03-27 22:35:12 559104 ----a-w- C:\Windows\System32\spoolsv.exe
2014-03-27 22:35:11 67072 ----a-w- C:\Windows\splwow64.exe
2014-03-27 20:54:06 -------- d-----w- C:\Users\Verner\AppData\Local\ElevatedDiagnostics
2014-03-26 00:55:20 167424 ----a-w- C:\Program Files\Windows Media Player\wmplayer.exe
2014-03-26 00:55:20 164864 ----a-w- C:\Program Files (x86)\Windows Media Player\wmplayer.exe
2014-03-26 00:55:19 12625920 ----a-w- C:\Windows\System32\wmploc.DLL
2014-03-26 00:55:18 12625408 ----a-w- C:\Windows\SysWow64\wmploc.DLL
2014-03-24 21:28:12 1192448 ----a-w- C:\Windows\System32\certutil.exe
2014-03-24 21:28:11 903168 ----a-w- C:\Windows\SysWow64\certutil.exe
2014-03-24 21:28:05 52224 ----a-w- C:\Windows\System32\certenc.dll
2014-03-24 21:28:05 43008 ----a-w- C:\Windows\SysWow64\certenc.dll
2014-03-24 21:26:31 335360 ----a-w- C:\Windows\System32\msieftp.dll
2014-03-24 21:26:30 301568 ----a-w- C:\Windows\SysWow64\msieftp.dll
2014-03-24 21:26:28 48640 ----a-w- C:\Windows\System32\wwanprotdim.dll
2014-03-24 21:26:28 228864 ----a-w- C:\Windows\System32\wwansvc.dll
2014-03-24 21:26:17 633856 ----a-w- C:\Windows\System32\comctl32.dll
2014-03-24 21:26:15 530432 ----a-w- C:\Windows\SysWow64\comctl32.dll
2014-03-24 21:25:04 226816 ----a-w- C:\Windows\System32\dhcpcore6.dll
2014-03-24 21:25:02 55296 ----a-w- C:\Windows\System32\dhcpcsvc6.dll
2014-03-24 21:25:02 44032 ----a-w- C:\Windows\SysWow64\dhcpcsvc6.dll
2014-03-24 21:25:02 193536 ----a-w- C:\Windows\SysWow64\dhcpcore6.dll
2014-03-24 21:24:11 224256 ----a-w- C:\Windows\System32\wintrust.dll
2014-03-24 21:24:11 175104 ----a-w- C:\Windows\SysWow64\wintrust.dll
2014-03-24 21:22:31 111448 ----a-w- C:\Windows\System32\consent.exe
2014-03-24 21:22:29 70144 ----a-w- C:\Windows\System32\appinfo.dll
2014-03-24 21:20:25 1474048 ----a-w- C:\Windows\System32\crypt32.dll
2014-03-24 21:20:24 1168384 ----a-w- C:\Windows\SysWow64\crypt32.dll
2014-03-24 21:20:23 184320 ----a-w- C:\Windows\System32\cryptsvc.dll
2014-03-24 21:20:22 139776 ----a-w- C:\Windows\System32\cryptnet.dll
2014-03-24 21:20:21 140288 ----a-w- C:\Windows\SysWow64\cryptsvc.dll
2014-03-24 21:20:19 103936 ----a-w- C:\Windows\SysWow64\cryptnet.dll
2014-03-24 21:20:00 484864 ----a-w- C:\Windows\System32\wer.dll
2014-03-24 21:20:00 381440 ----a-w- C:\Windows\SysWow64\wer.dll
2014-03-24 21:19:58 81408 ----a-w- C:\Windows\System32\imagehlp.dll
2014-03-24 21:19:58 159232 ----a-w- C:\Windows\SysWow64\imagehlp.dll
2014-03-24 21:19:00 2048 ----a-w- C:\Windows\SysWow64\tzres.dll
2014-03-24 21:19:00 2048 ----a-w- C:\Windows\System32\tzres.dll
2014-03-24 21:18:01 1882112 ----a-w- C:\Windows\System32\msxml3.dll
2014-03-24 21:18:00 2048 ----a-w- C:\Windows\SysWow64\msxml3r.dll
2014-03-24 21:18:00 2048 ----a-w- C:\Windows\System32\msxml3r.dll
2014-03-24 21:18:00 1237504 ----a-w- C:\Windows\SysWow64\msxml3.dll
2014-03-24 21:16:16 497152 ----a-w- C:\Windows\System32\drivers\afd.sys
2014-03-24 21:16:14 230400 ----a-w- C:\Windows\System32\drivers\portcls.sys
2014-03-24 21:16:14 116736 ----a-w- C:\Windows\System32\drivers\drmk.sys
2014-03-24 21:16:12 3156480 ----a-w- C:\Windows\System32\win32k.sys
2014-03-24 21:16:10 155584 ----a-w- C:\Windows\System32\drivers\ataport.sys
2014-03-24 21:16:00 1011712 ----a-w- C:\Program Files\Windows Defender\MpSvc.dll
2014-03-24 21:15:58 571904 ----a-w- C:\Program Files\Windows Defender\MpClient.dll
2014-03-24 21:15:57 392704 ----a-w- C:\Program Files (x86)\Windows Defender\MpClient.dll
2014-03-24 21:15:56 314880 ----a-w- C:\Program Files\Windows Defender\MpCommu.dll
2014-03-24 21:15:54 54784 ----a-w- C:\Program Files (x86)\Windows Defender\MpOAV.dll
2014-03-24 21:15:53 9216 ----a-w- C:\Program Files (x86)\Windows Defender\MpAsDesc.dll
2014-03-24 21:15:52 4608 ----a-w- C:\Program Files (x86)\Windows Defender\MsMpLics.dll
2014-03-24 21:15:16 1930752 ----a-w- C:\Windows\System32\authui.dll
2014-03-24 21:15:14 1796096 ----a-w- C:\Windows\SysWow64\authui.dll
2014-03-24 21:15:13 197120 ----a-w- C:\Windows\System32\credui.dll
2014-03-24 21:15:13 190464 ----a-w- C:\Windows\System32\SmartcardCredentialProvider.dll
2014-03-24 21:15:12 152576 ----a-w- C:\Windows\SysWow64\SmartcardCredentialProvider.dll
2014-03-24 21:15:11 168960 ----a-w- C:\Windows\SysWow64\credui.dll
2014-03-24 21:14:22 41472 ----a-w- C:\Windows\System32\lpk.dll
2014-03-24 21:14:22 368128 ----a-w- C:\Windows\System32\atmfd.dll
2014-03-24 21:14:22 295424 ----a-w- C:\Windows\SysWow64\atmfd.dll
2014-03-24 21:14:22 14336 ----a-w- C:\Windows\System32\dciman32.dll
2014-03-24 21:14:21 70656 ----a-w- C:\Windows\SysWow64\fontsub.dll
2014-03-24 21:14:21 25600 ----a-w- C:\Windows\SysWow64\lpk.dll
2014-03-24 21:14:21 10240 ----a-w- C:\Windows\SysWow64\dciman32.dll
2014-03-24 21:14:21 100864 ----a-w- C:\Windows\System32\fontsub.dll
2014-03-24 21:14:19 46080 ----a-w- C:\Windows\System32\atmlib.dll
2014-03-24 21:14:18 34304 ----a-w- C:\Windows\SysWow64\atmlib.dll
2014-03-24 21:12:53 658432 ----a-w- C:\Windows\System32\RMActivate_isv.exe
2014-03-24 21:11:59 99840 ----a-w- C:\Windows\System32\drivers\usbccgp.sys
2014-03-24 21:11:59 53248 ----a-w- C:\Windows\System32\drivers\usbehci.sys
2014-03-24 21:11:58 325120 ----a-w- C:\Windows\System32\drivers\usbport.sys
2014-03-24 21:11:57 7808 ----a-w- C:\Windows\System32\drivers\usbd.sys
2014-03-24 21:11:57 343040 ----a-w- C:\Windows\System32\drivers\usbhub.sys
2014-03-24 21:11:57 30720 ----a-w- C:\Windows\System32\drivers\usbuhci.sys
2014-03-24 21:11:56 25600 ----a-w- C:\Windows\System32\drivers\usbohci.sys
2014-03-24 21:11:44 1887232 ----a-w- C:\Windows\System32\d3d11.dll
2014-03-24 21:11:44 1505280 ----a-w- C:\Windows\SysWow64\d3d11.dll
2014-03-24 21:09:24 1217024 ----a-w- C:\Windows\System32\rpcrt4.dll
2014-03-24 21:09:23 663552 ----a-w- C:\Windows\SysWow64\rpcrt4.dll
2014-03-24 21:08:21 185344 ----a-w- C:\Windows\System32\drivers\usbvideo.sys
2014-03-24 21:08:21 100864 ----a-w- C:\Windows\System32\drivers\usbcir.sys
2014-03-24 21:07:20 216576 ----a-w- C:\Windows\System32\ncsi.dll
2014-03-24 21:07:19 156672 ----a-w- C:\Windows\SysWow64\ncsi.dll
2014-03-24 21:07:18 569344 ----a-w- C:\Windows\System32\iphlpsvc.dll
2014-03-24 21:07:18 246272 ----a-w- C:\Windows\System32\netcorehc.dll
2014-03-24 21:07:17 303104 ----a-w- C:\Windows\System32\nlasvc.dll
2014-03-24 21:07:14 175104 ----a-w- C:\Windows\SysWow64\netcorehc.dll
2014-03-24 21:07:12 52224 ----a-w- C:\Windows\SysWow64\nlaapi.dll
2014-03-24 21:07:07 45568 ----a-w- C:\Windows\System32\drivers\tcpipreg.sys
2014-03-24 21:07:06 70656 ----a-w- C:\Windows\System32\nlaapi.dll
2014-03-24 21:07:05 18944 ----a-w- C:\Windows\SysWow64\netevent.dll
2014-03-24 21:07:05 18944 ----a-w- C:\Windows\System32\netevent.dll
2014-03-24 21:05:49 76800 ----a-w- C:\Windows\System32\drivers\hidclass.sys
2014-03-24 21:05:49 42496 ----a-w- C:\Windows\System32\drivers\usbscan.sys
2014-03-24 21:05:48 32896 ----a-w- C:\Windows\System32\drivers\hidparse.sys
2014-03-24 21:05:39 259584 ----a-w- C:\Windows\System32\WebClnt.dll
2014-03-24 21:05:38 81920 ----a-w- C:\Windows\SysWow64\davclnt.dll
2014-03-24 21:05:38 205824 ----a-w- C:\Windows\SysWow64\WebClnt.dll
2014-03-24 21:05:38 102400 ----a-w- C:\Windows\System32\davclnt.dll
2014-03-24 21:05:37 140800 ----a-w- C:\Windows\System32\drivers\mrxdav.sys
2014-03-24 21:05:02 245760 ----a-w- C:\Windows\System32\OxpsConverter.exe
2014-03-24 21:02:15 39936 ----a-w- C:\Windows\System32\drivers\tssecsrv.sys
2014-03-24 21:02:09 327168 ----a-w- C:\Windows\System32\mswsock.dll
2014-03-24 21:02:07 231424 ----a-w- C:\Windows\SysWow64\mswsock.dll
2014-03-24 20:55:42 1903552 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2014-03-24 20:55:41 376768 ----a-w- C:\Windows\System32\drivers\netio.sys
2014-03-24 20:52:07 404480 ----a-w- C:\Windows\System32\gdi32.dll
2014-03-24 20:52:07 311808 ----a-w- C:\Windows\SysWow64\gdi32.dll
2014-03-24 20:52:03 751104 ----a-w- C:\Windows\System32\win32spl.dll
2014-03-24 20:52:02 492544 ----a-w- C:\Windows\SysWow64\win32spl.dll
2014-03-24 20:51:56 68608 ----a-w- C:\Windows\System32\taskhost.exe
2014-03-24 20:51:55 624128 ----a-w- C:\Windows\System32\qedit.dll
2014-03-24 20:51:55 509440 ----a-w- C:\Windows\SysWow64\qedit.dll
2014-03-24 20:51:09 30720 ----a-w- C:\Windows\System32\cryptdlg.dll
2014-03-24 20:51:08 24576 ----a-w- C:\Windows\SysWow64\cryptdlg.dll
2014-03-24 20:50:36 1732608 ----a-w- C:\Program Files\Windows Journal\NBDoc.DLL
2014-03-24 20:50:36 1393152 ----a-w- C:\Program Files\Windows Journal\JNTFiltr.dll
2014-03-24 20:50:36 1367040 ----a-w- C:\Program Files\Common Files\Microsoft Shared\ink\journal.dll
2014-03-24 20:50:35 936448 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\ink\journal.dll
2014-03-24 20:50:35 1402880 ----a-w- C:\Program Files\Windows Journal\JNWDRV.dll
2014-03-24 20:46:10 859648 ----a-w- C:\Windows\System32\IKEEXT.DLL
2014-03-24 20:46:10 830464 ----a-w- C:\Windows\System32\nshwfp.dll
2014-03-24 20:46:10 324096 ----a-w- C:\Windows\System32\FWPUCLNT.DLL
2014-03-24 20:46:09 656896 ----a-w- C:\Windows\SysWow64\nshwfp.dll
2014-03-24 20:46:09 216576 ----a-w- C:\Windows\SysWow64\FWPUCLNT.DLL
2014-03-24 20:45:39 461312 ----a-w- C:\Windows\System32\scavengeui.dll
2014-03-21 16:25:06 -------- d-----w- C:\Windows\System32\SPReview
2014-03-21 16:23:28 -------- d-----w- C:\Windows\System32\EventProviders
2014-03-21 16:10:17 -------- d-sh--w- C:\Windows\System32\%APPDATA%
2014-03-21 15:50:20 48976 ----a-w- C:\Windows\System32\netfxperf.dll
2014-03-21 15:50:20 1942856 ----a-w- C:\Windows\System32\dfshim.dll
2014-03-21 15:48:59 263168 ----a-w- C:\Windows\System32\spwizui.dll
2014-03-21 15:47:59 1525248 ----a-w- C:\Program Files\Windows Media Player\wmpnetwk.exe
2014-03-21 15:46:57 481280 ----a-w- C:\Windows\System32\wmpps.dll
2014-03-21 15:45:59 263168 ----a-w- C:\Windows\System32\vpnike.dll
2014-03-21 15:44:59 228352 ----a-w- C:\Windows\SysWow64\stobject.dll
2014-03-21 15:43:59 611840 ----a-w- C:\Windows\System32\wpd_ci.dll
2014-03-21 15:42:59 233984 ----a-w- C:\Windows\System32\defaultlocationcpl.dll
2014-03-21 15:41:59 537600 ----a-w- C:\Windows\SysWow64\ActionCenterCPL.dll
2014-03-21 15:40:59 516096 ----a-w- C:\Program Files (x86)\Windows Mail\wab.exe
2014-03-21 15:39:59 94208 ----a-w- C:\Program Files (x86)\Common Files\System\msadc\msadcf.dll
2014-03-21 15:38:59 7680 ----a-w- C:\Windows\SysWow64\kbdlk41a.dll
2014-03-21 15:37:52 6144 ----a-w- C:\Windows\System32\drivers\en-US\IPMIDrv.sys.mui
2014-03-21 15:37:52 4608 ----a-w- C:\Windows\System32\drivers\en-US\kbdclass.sys.mui
2014-03-21 15:37:26 189952 ----a-w- C:\Windows\SysWow64\wdscore.dll
2014-03-21 15:37:25 399872 ----a-w- C:\Windows\System32\dpx.dll
2014-03-21 15:36:36 189952 ----a-w- C:\Windows\SysWow64\sqmapi.dll
2014-03-21 15:34:01 606208 ----a-w- C:\Windows\SysWow64\wbem\fastprox.dll
2014-03-21 15:34:01 363008 ----a-w- C:\Windows\SysWow64\wbemcomn.dll
2014-03-21 15:34:01 189952 ----a-w- C:\Program Files (x86)\Windows Portable Devices\sqmapi.dll
2014-03-21 15:22:45 244736 ----a-w- C:\Program Files\Windows Portable Devices\sqmapi.dll
2014-03-21 15:22:44 529408 ----a-w- C:\Windows\System32\wbemcomn.dll
2014-03-21 15:22:16 244736 ----a-w- C:\Windows\System32\sqmapi.dll
2014-03-21 14:34:55 2565632 ----a-w- C:\Windows\System32\esent.dll
2014-03-21 14:34:52 1699328 ----a-w- C:\Windows\SysWow64\esent.dll
2014-03-21 14:34:49 166272 ----a-w- C:\Windows\System32\drivers\nvstor.sys
2014-03-21 14:34:47 148352 ----a-w- C:\Windows\System32\drivers\nvraid.sys
2014-03-21 14:34:46 107904 ----a-w- C:\Windows\System32\drivers\amdsata.sys
2014-03-21 14:34:43 189824 ----a-w- C:\Windows\System32\drivers\storport.sys
2014-03-21 14:34:42 27008 ----a-w- C:\Windows\System32\drivers\amdxata.sys
2014-03-21 14:34:41 410496 ----a-w- C:\Windows\System32\drivers\iaStorV.sys
2014-03-21 14:34:37 96768 ----a-w- C:\Windows\System32\fsutil.exe
2014-03-21 14:34:36 74240 ----a-w- C:\Windows\SysWow64\fsutil.exe
2014-03-21 13:34:33 -------- d-----w- C:\Windows\SysWow64\Wat
2014-03-21 13:34:33 -------- d-----w- C:\Windows\System32\Wat
2014-03-21 12:21:50 9728 ----a-w- C:\Windows\System32\Wdfres.dll
2014-03-21 12:21:50 54376 ----a-w- C:\Windows\System32\drivers\WdfLdr.sys
2014-03-21 12:21:50 2560 ----a-w- C:\Windows\System32\drivers\en-US\wdf01000.sys.mui
2014-03-21 11:42:22 -------- d-----w- C:\Windows\System32\MRT
2014-03-21 11:39:09 87040 ----a-w- C:\Windows\System32\drivers\WUDFPf.sys
2014-03-21 11:39:09 198656 ----a-w- C:\Windows\System32\drivers\WUDFRd.sys
2014-03-21 11:39:08 84992 ----a-w- C:\Windows\System32\WUDFSvc.dll
2014-03-21 11:39:08 194048 ----a-w- C:\Windows\System32\WUDFPlatform.dll
2014-03-21 11:39:06 744448 ----a-w- C:\Windows\System32\WUDFx.dll
2014-03-21 11:39:06 45056 ----a-w- C:\Windows\System32\WUDFCoinstaller.dll
2014-03-21 11:39:06 229888 ----a-w- C:\Windows\System32\WUDFHost.exe
2014-03-21 11:28:42 1359872 ----a-w- C:\Windows\System32\mfc42u.dll
2014-03-21 11:28:36 1395712 ----a-w- C:\Windows\System32\mfc42.dll
2014-03-21 11:28:32 1137664 ----a-w- C:\Windows\SysWow64\mfc42.dll
2014-03-21 11:28:28 1164288 ----a-w- C:\Windows\SysWow64\mfc42u.dll
2014-03-21 10:26:43 362496 ----a-w- C:\Windows\System32\wow64win.dll
2014-03-21 10:26:36 16384 ----a-w- C:\Windows\System32\ntvdm64.dll
2014-03-21 10:26:36 13312 ----a-w- C:\Windows\System32\wow64cpu.dll
2014-03-21 10:21:02 961024 ----a-w- C:\Windows\System32\CPFilters.dll
2014-03-21 10:21:02 642048 ----a-w- C:\Windows\SysWow64\CPFilters.dll
2014-03-21 10:21:00 259072 ----a-w- C:\Windows\System32\
2014-03-21 10:21:00 1118720 ----a-w- C:\Windows\System32\sbe.dll
2014-03-21 10:20:59 850944 ----a-w- C:\Windows\SysWow64\sbe.dll
2014-03-21 10:20:58 199680 ----a-w- C:\Windows\SysWow64\
2014-03-21 10:19:12 1328128 ----a-w- C:\Windows\SysWow64\quartz.dll
2014-03-21 10:19:11 1572864 ----a-w- C:\Windows\System32\quartz.dll
2014-03-21 10:18:56 509952 ----a-w- C:\Windows\System32\ntshrui.dll
2014-03-21 10:18:55 442880 ----a-w- C:\Windows\SysWow64\ntshrui.dll
2014-03-21 10:17:50 27520 ----a-w- C:\Windows\System32\drivers\Diskdump.sys
2014-03-21 10:17:44 33792 ----a-w- C:\Windows\System32\profprov.dll
2014-03-21 10:17:44 209920 ----a-w- C:\Windows\System32\profsvc.dll
2014-03-21 10:17:39 183296 ----a-w- C:\Windows\System32\dnsrslvr.dll
2014-03-21 10:17:38 30208 ----a-w- C:\Windows\System32\dnscacheugc.exe
2014-03-21 10:17:37 28672 ----a-w- C:\Windows\SysWow64\dnscacheugc.exe
2014-03-21 10:12:35 478208 ----a-w- C:\Windows\System32\dpnet.dll
2014-03-21 10:12:35 376832 ----a-w- C:\Windows\SysWow64\dpnet.dll
2014-03-21 10:12:34 3072 ----a-w- C:\Windows\System32\dpnaddr.dll
2014-03-21 10:12:34 2560 ----a-w- C:\Windows\SysWow64\dpnaddr.dll
2014-03-21 10:10:03 800768 ----a-w- C:\Windows\System32\usp10.dll
2014-03-21 10:10:02 626688 ----a-w- C:\Windows\SysWow64\usp10.dll
2014-03-21 10:07:17 613888 ----a-w- C:\Windows\System32\psisdecd.dll
2014-03-21 10:07:17 108032 ----a-w- C:\Windows\System32\
2014-03-21 10:07:16 75776 ----a-w- C:\Windows\SysWow64\
2014-03-21 10:07:15 465408 ----a-w- C:\Windows\SysWow64\psisdecd.dll
2014-03-21 10:07:15 288256 ----a-w- C:\Windows\System32\
2014-03-21 10:07:14 104960 ----a-w- C:\Windows\System32\
2014-03-21 10:07:13 204288 ----a-w- C:\Windows\SysWow64\
2014-03-21 10:07:12 72704 ----a-w- C:\Windows\SysWow64\
2014-03-21 10:07:11 75776 ----a-w- C:\Windows\System32\
2014-03-21 10:07:10 59904 ----a-w- C:\Windows\SysWow64\
2014-03-21 10:06:52 210944 ----a-w- C:\Windows\System32\drivers\rdpwd.sys
2014-03-21 10:06:47 723456 ----a-w- C:\Windows\System32\EncDec.dll
2014-03-21 10:06:46 534528 ----a-w- C:\Windows\SysWow64\EncDec.dll
2014-03-21 10:06:19 90624 ----a-w- C:\Windows\System32\drivers\bowser.sys
2014-03-21 10:03:34 75120 ----a-w- C:\Windows\System32\drivers\partmgr.sys
2014-03-21 10:03:28 715776 ----a-w- C:\Windows\System32\kerberos.dll
2014-03-21 10:03:28 542208 ----a-w- C:\Windows\SysWow64\kerberos.dll
2014-03-21 10:03:19 3216384 ----a-w- C:\Windows\System32\msi.dll
2014-03-21 10:03:18 2342400 ----a-w- C:\Windows\SysWow64\msi.dll
2014-03-21 09:56:35 95744 ----a-w- C:\Windows\System32\synceng.dll
2014-03-21 09:56:35 78336 ----a-w- C:\Windows\SysWow64\synceng.dll
2014-03-21 09:56:17 605552 ----a-w- C:\Windows\System32\winload.exe
2014-03-21 09:56:15 642944 ----a-w- C:\Windows\System32\winload.efi
2014-03-21 09:56:13 518672 ----a-w- C:\Windows\System32\winresume.exe
2014-03-21 09:56:12 566208 ----a-w- C:\Windows\System32\winresume.efi
2014-03-21 09:56:10 20352 ----a-w- C:\Windows\System32\kdusb.dll
2014-03-21 09:56:10 19328 ----a-w- C:\Windows\System32\kd1394.dll
2014-03-21 09:56:09 63488 ----a-w- C:\Windows\System32\setbcdlocale.dll
2014-03-21 09:56:09 17792 ----a-w- C:\Windows\System32\kdcom.dll
2014-03-21 09:53:48 404480 ----a-w- C:\Windows\System32\umpnpmgr.dll
2014-03-21 09:53:48 207872 ----a-w- C:\Windows\System32\cfgmgr32.dll
2014-03-21 09:53:48 145920 ----a-w- C:\Windows\SysWow64\cfgmgr32.dll
2014-03-21 09:53:47 252928 ----a-w- C:\Windows\SysWow64\drvinst.exe
2014-03-21 09:53:46 64512 ----a-w- C:\Windows\SysWow64\devobj.dll
2014-03-21 09:53:46 44544 ----a-w- C:\Windows\SysWow64\devrtl.dll
2014-03-21 09:46:59 976896 ----a-w- C:\Windows\System32\inetcomm.dll
2014-03-21 09:46:57 741376 ----a-w- C:\Windows\SysWow64\inetcomm.dll
2014-03-21 09:46:18 136704 ----a-w- C:\Windows\System32\browser.dll
2014-03-21 09:46:12 59392 ----a-w- C:\Windows\System32\browcli.dll
2014-03-21 09:46:06 41984 ----a-w- C:\Windows\SysWow64\browcli.dll
2014-03-21 09:45:17 31232 ----a-w- C:\Windows\SysWow64\prevhost.exe
2014-03-21 09:45:17 31232 ----a-w- C:\Windows\System32\prevhost.exe
2014-03-21 09:45:08 223752 ----a-w- C:\Windows\System32\drivers\fvevol.sys
2014-03-21 09:45:02 503808 ----a-w- C:\Windows\System32\srcore.dll
2014-03-21 09:45:01 43008 ----a-w- C:\Windows\SysWow64\srclient.dll
2014-03-21 09:45:01 296960 ----a-w- C:\Windows\System32\rstrui.exe
2014-03-21 09:44:54 974336 ----a-w- C:\Windows\System32\WFS.exe
2014-03-21 09:44:54 267776 ----a-w- C:\Windows\System32\FXSCOVER.exe
2014-03-21 09:44:47 956928 ----a-w- C:\Windows\System32\localspl.dll
2014-03-21 09:44:46 39424 ----a-w- C:\Windows\System32\Spool\prtprocs\x64\winprint.dll
2014-03-21 09:44:37 634880 ----a-w- C:\Windows\System32\msvcrt.dll
2014-03-21 09:44:33 690688 ----a-w- C:\Windows\SysWow64\msvcrt.dll
2014-03-21 09:43:58 861696 ----a-w- C:\Windows\System32\oleaut32.dll
2014-03-21 09:43:57 331776 ----a-w- C:\Windows\System32\oleacc.dll
2014-03-21 09:43:56 233472 ----a-w- C:\Windows\SysWow64\oleacc.dll
2014-03-21 09:43:55 571904 ----a-w- C:\Windows\SysWow64\oleaut32.dll
2014-03-21 08:48:34 2164224 ----a-w- C:\Program Files\Windows Journal\Journal.exe
2014-03-21 08:15:08 106496 ----a-w- C:\Windows\System32\odbccu32.dll
2014-03-21 08:15:07 106496 ----a-w- C:\Windows\System32\odbccr32.dll
2014-03-21 08:15:06 126976 ----a-w- C:\Program Files\Common Files\System\Ole DB\msdaosp.dll
2014-03-21 08:15:05 163840 ----a-w- C:\Windows\System32\odbccp32.dll
2014-03-21 08:15:04 212992 ----a-w- C:\Windows\System32\odbctrac.dll
2014-03-21 08:15:03 319488 ----a-w- C:\Windows\SysWow64\odbcjt32.dll
2014-03-21 08:15:02 122880 ----a-w- C:\Windows\SysWow64\odbccp32.dll
2014-03-21 08:15:01 81920 ----a-w- C:\Windows\SysWow64\odbccr32.dll
2014-03-21 08:15:00 94208 ----a-w- C:\Program Files (x86)\Common Files\System\Ole DB\msdaosp.dll
2014-03-21 08:15:00 86016 ----a-w- C:\Windows\SysWow64\odbccu32.dll
2014-03-21 08:14:59 163840 ----a-w- C:\Windows\SysWow64\odbctrac.dll
2014-03-21 08:14:41 886784 ----a-w- C:\Program Files\Common Files\System\wab32.dll
2014-03-21 08:14:40 708608 ----a-w- C:\Program Files (x86)\Common Files\System\wab32.dll
2014-03-21 08:13:11 142336 ----a-w- C:\Windows\System32\poqexec.exe
2014-03-21 08:13:10 123904 ----a-w- C:\Windows\SysWow64\poqexec.exe
2014-03-21 08:12:20 23408 ----a-w- C:\Windows\System32\drivers\fs_rec.sys
2014-03-21 08:11:49 5120 ----a-w- C:\Windows\System32\wmi.dll
2014-03-21 08:11:48 5120 ----a-w- C:\Windows\SysWow64\wmi.dll
2014-03-21 05:54:13 2315776 ----a-w- C:\Windows\System32\tquery.dll
2014-03-21 05:54:09 2223616 ----a-w- C:\Windows\System32\mssrch.dll
2014-03-21 05:54:04 1549312 ----a-w- C:\Windows\SysWow64\tquery.dll
2014-03-21 05:54:03 1401344 ----a-w- C:\Windows\SysWow64\mssrch.dll
2014-03-21 05:54:00 591872 ----a-w- C:\Windows\System32\SearchIndexer.exe
2014-03-21 05:51:41 288768 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys
2014-03-21 05:51:40 158208 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys
2014-03-21 05:51:39 128000 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys
2014-03-21 05:51:32 395776 ----a-w- C:\Windows\System32\webio.dll
2014-03-21 05:51:31 314880 ----a-w- C:\Windows\SysWow64\webio.dll
2014-03-21 05:47:55 1656680 ----a-w- C:\Windows\System32\drivers\ntfs.sys
2014-03-21 05:47:34 515584 ----a-w- C:\Windows\System32\timedate.cpl
2014-03-21 05:47:32 478720 ----a-w- C:\Windows\SysWow64\timedate.cpl
2014-03-21 05:40:12 9216 ----a-w- C:\Windows\System32\rdrmemptylst.exe
2014-03-21 05:40:12 77312 ----a-w- C:\Windows\System32\rdpwsx.dll
2014-03-21 05:40:12 149504 ----a-w- C:\Windows\System32\rdpcorekmts.dll
2014-03-21 05:40:08 19968 ----a-w- C:\Windows\System32\drivers\usb8023.sys
2014-03-21 03:38:05 77312 ----a-w- C:\Windows\System32\packager.dll
2014-03-21 03:38:04 67072 ----a-w- C:\Windows\SysWow64\packager.dll
2014-03-20 05:38:51 -------- d-----w- C:\Program Files (x86)\Your Uninstaller! 7
2014-03-20 05:38:41 -------- d-----w- C:\Users\Verner\AppData\Roaming\URSoft
2014-03-20 05:00:43 21040 ----a-w- C:\Windows\System32\sdnclean64.exe
2014-03-20 05:00:35 -------- d-----w- C:\ProgramData\Spybot - Search & Destroy
2014-03-20 05:00:20 -------- d-----w- C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-03-20 04:59:53 -------- d-----w- C:\Users\Verner\AppData\Local\Programs
2014-03-20 04:57:19 -------- d-----w- C:\Program Files\CCleaner
2014-03-20 04:03:33 270496 ------w- C:\Windows\System32\MpSigStub.exe
2014-03-20 04:02:01 -------- d-----w- C:\Program Files (x86)\McAfeeMOBK
2014-03-20 04:01:48 66040 ----a-w- C:\Windows\System32\drivers\MOBK.sys
2014-03-20 04:01:48 197704 ----a-w- C:\Windows\System32\drivers\HipShieldK.sys
2014-03-20 04:01:40 -------- d-----w- C:\Program Files (x86)\McAfee Online Backup
2014-03-20 04:00:50 -------- d-----w- C:\Program Files (x86)\
2014-03-20 03:59:44 -------- d-----w- C:\Program Files\
2014-03-20 03:59:43 -------- d-----w- C:\Program Files\McAfee
2014-03-20 03:59:41 -------- d-----w- C:\Program Files (x86)\McAfee
2014-03-20 03:46:06 185792 ----a-w- C:\Windows\System32\mfevtps.exe
2014-03-20 03:46:01 -------- d-----w- C:\Program Files\Common Files\McAfee
2014-03-20 03:05:51 -------- d-----w- C:\Users\Verner\AppData\Local\Google
2014-03-20 03:05:30 -------- d-----w- C:\Users\Verner\AppData\Local\Apps
2014-03-20 03:05:29 -------- d-----w- C:\Users\Verner\AppData\Local\Deployment
2014-03-20 02:30:13 -------- d-----w- C:\Users\Verner\My Backup Files
2014-03-20 02:14:33 101376 ----a-w- C:\Windows\System32\Spool\prtprocs\x64\HPZPPWN7.DLL
2014-03-20 02:13:32 -------- d-----w- C:\Users\Verner\AppData\Roaming\Dell
2014-03-20 02:13:11 -------- d-----w- C:\Users\Verner\AppData\Local\ATI
2014-03-20 02:12:07 -------- d-sh--w- C:\$RECYCLE.BIN
2014-03-20 02:11:55 -------- d-----w- C:\Users\Verner\AppData\Local\Stardock_Corporation
2014-03-20 02:11:49 -------- d-----w- C:\Users\Verner\AppData\Local\SoftThinks
2014-03-20 02:11:16 826880 ----a-w- C:\Windows\SysWow64\rdpcore.dll
2014-03-20 02:11:16 23552 ----a-w- C:\Windows\System32\drivers\tdtcp.sys
2014-03-20 02:11:16 1031680 ----a-w- C:\Windows\System32\rdpcore.dll
2014-03-20 02:11:02 -------- d-----w- C:\Users\Verner\AppData\Local\VirtualStore
2014-03-20 02:06:16 2622464 ----a-w- C:\Windows\System32\wucltux.dll
2014-03-20 02:06:07 99840 ----a-w- C:\Windows\System32\wudriver.dll
2014-03-20 02:05:38 36864 ----a-w- C:\Windows\System32\wuapp.exe
2014-03-20 02:05:38 186752 ----a-w- C:\Windows\System32\wuwebv.dll
2014-03-20 02:03:50 -------- d-sh--we C:\Documents and Settings
2014-03-19 03:35:24 -------- d-----w- C:\Windows\SMINST
2014-03-11 20:07:42 4550656 ----a-w- C:\Windows\SysWow64\GPhotos.scr
==================== Find3M  ====================
2014-03-25 23:44:37 9728 ---ha-w- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-03-21 17:55:21 175616 ----a-w- C:\Windows\System32\msclmd.dll
2014-03-21 17:55:21 152576 ----a-w- C:\Windows\SysWow64\msclmd.dll
2014-03-01 05:17:02 2724864 ----a-w- C:\Windows\System32\mshtml.tlb
2014-03-01 05:16:26 4096 ----a-w- C:\Windows\System32\ieetwcollectorres.dll
2014-03-01 04:52:55 66048 ----a-w- C:\Windows\System32\iesetup.dll
2014-03-01 04:51:59 48640 ----a-w- C:\Windows\System32\ieetwproxystub.dll
2014-03-01 04:33:52 139264 ----a-w- C:\Windows\System32\ieUnatt.exe
2014-03-01 04:33:34 111616 ----a-w- C:\Windows\System32\ieetwcollector.exe
2014-03-01 04:32:59 708608 ----a-w- C:\Windows\System32\jscript9diag.dll
2014-03-01 04:23:49 940032 ----a-w- C:\Windows\System32\MsSpellCheckingFacility.exe
2014-03-01 04:11:20 2724864 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2014-03-01 03:54:33 5768704 ----a-w- C:\Windows\System32\jscript9.dll
2014-03-01 03:52:43 61952 ----a-w- C:\Windows\SysWow64\iesetup.dll
2014-03-01 03:51:53 51200 ----a-w- C:\Windows\SysWow64\ieetwproxystub.dll
2014-03-01 03:38:26 112128 ----a-w- C:\Windows\SysWow64\ieUnatt.exe
2014-03-01 03:37:35 553472 ----a-w- C:\Windows\SysWow64\jscript9diag.dll
2014-03-01 03:35:11 2041856 ----a-w- C:\Windows\System32\inetcpl.cpl
2014-03-01 03:14:15 4244480 ----a-w- C:\Windows\SysWow64\jscript9.dll
2014-03-01 03:10:28 2334208 ----a-w- C:\Windows\System32\wininet.dll
2014-03-01 03:00:08 1964032 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
2014-03-01 02:32:16 1820160 ----a-w- C:\Windows\SysWow64\wininet.dll
2014-01-27 13:43:26 70592 ----a-w- C:\Windows\System32\drivers\cfwids.sys
2014-01-27 13:37:32 344688 ----a-w- C:\Windows\System32\drivers\mfewfpk.sys
2014-01-27 13:33:26 783864 ----a-w- C:\Windows\System32\drivers\mfehidk.sys
2014-01-27 13:31:34 520696 ----a-w- C:\Windows\System32\drivers\mfefirek.sys
2014-01-27 13:30:06 311600 ----a-w- C:\Windows\System32\drivers\mfeavfk.sys
2014-01-27 13:29:22 180272 ----a-w- C:\Windows\System32\drivers\mfeapfk.sys
2014-01-21 08:50:46 11336 ----a-w- C:\Windows\System32\drivers\mfeclnrk.sys
2014-01-21 08:50:24 96592 ----a-w- C:\Windows\System32\drivers\mfencrk.sys
2014-01-21 08:50:02 422712 ----a-w- C:\Windows\System32\drivers\mfencbdc.sys
============= FINISH: 10:39:31.24 ===============

Relevance 100%
Preferred Solution: Unreachable dll's !! Cant remove them! (dds logs)

I recommend downloading and running Reimage. It's a computer repair tool that has been proven to identify and fix many Windows problems with a high level of success.

I've used it in the past to identify and fix everything from blue screens (BSOD's), ActiveX errors, corrupt files and processes, dll/exe/sys errors, recover lost memory, Windows update problems, defragging, malware removal etc.

You can download it direct from this link (This link will automatically start a download of Reimage that you can save to your computer.)

Answer: Unreachable dll's !! Cant remove them! (dds logs) pc is really dragging, didnt mean to double can delete the 2nd one, i couldnt find a way to....

27 more replies
Relevance 87.33%

I also just noticed that the Action Security Center keeps telling me I have no antivirus or firewall active when I do....i hope i do.... :-(
DDS (Ver_2012-11-20.01) - NTFS_AMD64 
Internet Explorer: 11.0.9600.16521
Run by Verner at 10:37:23 on 2014-04-02
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.1.1033.18.1788.562 [GMT -5:00]
AV: McAfee Anti-Virus and Anti-Spyware *Disabled/Updated* {ADA629C7-7F48-5689-624A-3B76997E0892}
SP: McAfee Anti-Virus and Anti-Spyware *Disabled/Updated* {16C7C823-5972-5907-58FA-0004E2F9422F}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Spybot - Search and Destroy *Enabled/Updated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
FW: McAfee Firewall *Disabled* {959DA8E2-3527-57D1-4915-924367AD4FE9}
============== Running Processes ===============
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\SysWO... Read more

Answer:Unreachable dll's !! Cant remove them! (dds logs)

Good evening.

Unreachable dll's !! Cant remove them!

What dlls and why do you want to remove them?

Action Security Center keeps telling me I have no antivirus or firewall active when I do....i hope i do.... :-(

DDS sees McAfee, so so far so good, but it reports it as Disabled so you might like to check if it is in fact active.

2 more replies
Relevance 46.33%

below are my logs from HijackThis, StartupList, and CWShredder. They were all taken in safe mode with networking. i would like to know anything i might should remove, and prefrabely a why, but if you are pressed for time it is not that neccasary, also anything else i should do with this system that you can see from the logs would be appreciated. if you need any other info i will be happy to oblige if i can. thnks for any help.

HijackThis log:

Logfile of HijackThis v1.97.7
Scan saved at 4:40:00 AM, on 4/11/2004
Platform: Windows 2000 SP4 (WinNT 5.00.2195)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\Documents and Settings\Mark Johnson\Desktop\HijackThis.exe

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = about:blank
O2 - BHO: Ipswitch.WsftpBrowserHelper - {601ED020-FB6C-11D3-87D8-0050DA59922B} - C:\Program Files\WS_FTP Pro\wsbho2K0.dll
O4 - HKLM\..\Run: [NeroCheck] C:\WINNT\system32\NeroCheck.exe
O4 - HKLM\..\Run: [InCD] C:\Program Files\ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [bxxs5] RunDLL32.EXE C:\WINNT\bxxs5.dll,DllRun
O4 - HKLM\..\Run: [luhmh] C:\WINN... Read more

Answer:Logs, what do i need to remove?

10 more replies
Relevance 45.92%

trying to solve the trojeans I discovered i have, I went through anumber of threads and followed inxs for others in similar position as myself. To no avail, - am still infected.
I hate to bother, but if you could check all the logs I have, maybe somebody could advise how to solve the issue.
Also, all the downloads I have done don?t show in my Control Panel, how do I uninstall them all??
I thank you for your time in advance, trying to help me, here goes:

OS Version: Microsoft Windows 7 Starter , Service Pack 1, 32 bit
Processor: Intel(R) Atom(TM) CPU N270 @ 1.60GHz, x86 Family 6 Model 28 Stepping 2
Processor Count: 2
RAM: 2039 Mb
Graphics Card: Mobile Intel(R) 945 Express Chipset Family, 2 Mb
Hard Drives: C: Total - 226827 MB, Free - 162570 MB; D: Total - 11441 MB, Free - 11316 MB;
Motherboard: Hewlett-Packard, 308F, KBC Version 02.10,
Antivirus: AVG Anti-Virus Free Edition 2011, Updated and Enabled

Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\HP\HPBTWD.exe
C:\Program Files\Hewlett-Packard\HP QuickSync\QuickSync.exe
C:\Program Files\HP\HP Software Update\hpwuschd2.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Google\Quick Search Box\... Read more

Answer:many logs; still cannot remove trojans :(

ComboFix 11-08-16.04 - mcpe 16/08/2011 16:42:13.4.2 - x86
Microsoft Windows 7 Starter 6.1.7601.1.1252.54.3082.18.2039.1011 [GMT -3:00]
Running from: c:\users\mcpe\Desktop\gotchaa.exe
AV: AVG Anti-Virus Free Edition 2011 *Disabled/Updated* {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}
SP: AVG Anti-Virus Free Edition 2011 *Disabled/Updated* {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
((((((((((((((((((((((((( Files Created from 2011-07-16 to 2011-08-16 )))))))))))))))))))))))))))))))
2011-08-16 20:10 . 2011-08-16 20:10 -------- d-----w- c:\users\Default\AppData\Local\temp
2011-08-16 19:19 . 2011-08-16 19:37 -------- d-----w- C:\gotchaa
2011-08-13 02:20 . 2011-08-13 02:20 100864 ----a-w- C:\kwdirpod.sys
2011-08-12 21:18 . 2011-08-12 21:18 388096 ----a-r- c:\users\mcpe\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2011-08-12 21:18 . 2011-08-12 21:18 -------- d-----w- c:\program files\Trend Micro
2011-08-12 19:44 . 2011-08-12 19:44 -------- d-----w- c:\users\mcpe\AppData\Roaming\TrojanHunter
2011-08-12 14:48 . 2011-08-12 20:18 -------- d-----w- c:\program files\TrojanHunter 5.3
2011-08-12 01:08 . 2011-08-12 20:19 -------- d-----w- c:\users\mcpe\AppData\Roaming\Sammsoft
2011-08-11 16:24 . 2011-06-21 05:34 1290624 ----a-w- c:\windows\system32\drivers\tcpip.sys
2011-08-11 16:24 . 2011-06-15 08:55 86016 ----a-w- c:\windows\system32\odbccu32.dll
2011-08-11 16:24 . 2011... Read more

19 more replies
Relevance 45.92%

Hi,SuperAntiSpyware shows that I have a Vundo variant... It tells me to reboot to remove it but its always still there... It slows me down while I am working... Also, I tried to run Kapersky online scanner and IE got hijacked before it could ever finish...attached is the output from Deckerd's system scanner...thanks in advance,joshDeckard's System Scanner v20071014.68Run by Josh on 2008-04-27 08:22:22Computer is in Normal Mode.---------------------------------------------------------------------------------- HijackThis (run as Josh.exe) ------------------------------------------------Logfile of Trend Micro HijackThis v2.0.2Scan saved at 8:22:48 AM, on 4/27/2008Platform: Windows Vista (WinNT 6.00.1904)MSIE: Internet Explorer v7.00 (7.00.6000.16643)Boot mode: NormalRunning processes:C:\Program Files\McAfee\MPS\mpsevh.exeC:\Windows\system32\Dwm.exeC:\Windows\Explorer.EXEc:\PROGRA~1\\agent\mcagent.exeC:\Windows\system32\taskeng.exeC:\Program Files\Synaptics\SynTP\SynTPEnh.exeC:\Windows\sttray.exeC:\Windows\System32\WLTRAY.EXEC:\Program Files\Common Files\InstallShield\UpdateService\issch.exeC:\Program Files\Winamp\winampa.exeC:\Program Files\Adobe\Acrobat 8.0\Acrobat\acrotray.exeC:\Program Files\PowerISO\PWRISOVM.EXEC:\Program Files\Java\jre1.6.0_03 ... Read more

Answer:Hjt Logs... Cant Remove Vundo

Hello Jotamon and welcome to BleepingComputer,1. * Clean your Cache and Cookies in IE:Close all instances of Outlook Express and Internet Explorer Go to Control Panel > Internet Options > General tabUnder Browsing History, click Delete. Click Delete Files, Delete cookies and Delete historyClick Close below.* Clean your Cache and Cookies in Firefox (In case you also have Firefox installed):Go to Tools > Options.Click Privacy in the menu..Click the Clear now button below.. A new window will popup what to clear.Select all and click the Clear button again.Click OK to close the Options window* Clean other Temporary files + Recycle bin Go to start > run and type: cleanmgr and click ok. Let it scan your system for files to remove. Make sure Temporary Files, Temporary Internet Files, and Recycle Bin are the only things checked.Press OK to remove them.2. Please download Malwarebytes' Anti-Malware from Here or HereDoubleclick mbam-setup.exe to install the application.Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.If an update is found, it will download and install the latest version.Once the program has loaded, select "Perform Quick Scan", then click Scan.The scan may take some time to finish,so please be patient.When the scan is complete, click OK, then Show Results to view the results.Make sure that everything is checked, and click Remove Selected.When disinfection is completed... Read more

2 more replies
Relevance 45.92%

I'm pretty sure i now how i got his (Stupid me) but i can't seem to get rid of it!  Can anyone pleaqse assist? 
1) Reinstalled my OS a week or so ago (done yearly)
2) Ran Malwarebytes-Anti Malware and Spybot S&D, neither removed this.
3) I get tons of pop ups and everything in my browser gets redirected.
4) Lastpass and Meraki are there on purpose.
DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 11.0.9600.16428  BrowserJavaVersion: 10.51.2
Run by hex at 11:09:18 on 2014-01-26
Microsoft Windows 7 Ultimate   6.1.7601.1.1252.1.1033.18.4086.1869 [GMT -5:00]
AV: Microsoft Security Essentials *Enabled/Updated* {641105E6-77ED-3F35-A304-765193BCB75F}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Microsoft Security Essentials *Enabled/Updated* {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
============== Running Processes ===============
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
c:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\... Read more

Answer:jdj.openmace pop ups - Cannot remove Please help (DDS and HJT logs)

Good evening.
Please download AdwCleaner by Xplode from here and save it to your Desktop.
Close all open programs, including browsers.
Double click adwcleaner.exe to begin.
Click on Search and, once complete, let me have the contents of the text that opens.
A copy of the text file will be saved to C:\AdwCleaner[R*].txt - make sure you post the file with the biggest "R" number.

2 more replies
Relevance 45.1%

I completed the read me/run me malware guide and it did remove most of the problems I had. Theres just one that does not want to come out. Its the C:\Windows\System32\Drivers\pjacra.sys. The issue started March 12 2010when I was doing a google search(Not porn, a lounge/restaurant). Now everytime I look up anything in google I get a redirect. Logs are from today. Please help me.

Answer:Cant Remove One Last Threat (Logs Attached)

Heres the MGlogs file.

4 more replies
Relevance 45.1%

A few months ago I downloaded a free file for converting a PDF file to an image. Well, it had some malware/adware in it and I got burned.

It seems I removed most of it using a combo of PestPatrol/AVG Anti-Spyware/Search & Destroy/CCleaner/Combofix.
But still have one that gets buy all the scans.

It's called AdRotatorF. I use Firefox and when I first open the Firefox browser it usually crashes.
If I run PestPatrol and remove AdRotatorF, then it's fine. (PestPatrol is the only thing I've found that removes it)

However, if I close Firefox and open it again it installs
another instance of AdRotatorF and crashes - then I have to run PestPatrol to remove it and then I can use Firefox again.

I also get Adssite Ads pop-up sometimes which I think is part of Ad Rotator F

Thank you for your assistance.

Answer:Help remove Ad Rotator F(logs attached)

PestPatrol log...

6 more replies
Relevance 45.1%

Hello Good People !My computer is infected, i think it happened when someone in the house tried to download music from a questionable site. THANK YOU for helping !hear are the essential logs:# AdwCleaner v2.306 - Logfile created 08/19/2013 at 12:46:19# Updated 19/07/2013 by Xplode# Operating system : Microsoft Windows XP Service Pack 2 (32 bits)# User : rob - MUSIC# Boot Mode : Normal# Running from : C:\Documents and Settings\rob\My Documents\Downloads\adwcleaner.exe# Option [Delete]***** [Services] *****Stopped & Deleted : WebCake Desktop Updater***** [Files / Folders] *****File Deleted : C:\Documents and Settings\rob\Application Data\Mozilla\Firefox\Profiles\rl75rg0e.default\searchplugins\Babylon.xmlFile Deleted : C:\Documents and Settings\rob\Application Data\Mozilla\Firefox\Profiles\rl75rg0e.default\searchplugins\BrowserDefender.xmlFile Deleted : C:\Documents and Settings\rob\Application Data\Mozilla\Firefox\Profiles\rl75rg0e.default\searchplugins\delta.xmlFile Deleted : C:\WINDOWS\Tasks\Plus-HD-2.2-codedownloader.jobFile Deleted : C:\WINDOWS\Tasks\Plus-HD-2.2-enabler.jobFile Deleted : C:\WINDOWS\Tasks\Plus-HD-2.2-firefoxinstaller.jobFile Deleted : C:\WINDOWS\Tasks\Plus-HD-2.2-updater.jobFile Disinfected : C:\Documents and Settings\All Users\Start Menu\Programs\Mozilla Firefox.lnkFile Disinfected : C:\Documents and Settings\rob\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnkFile Disinfected : C:\Documents and Settings\rob... Read more

Answer:Please Help me remove spyware (logs included)

Hello and welcome to Computer Hope Forum. My name is Dave. I will be helping you out with your particular problem on your computer. 1. I will be working on your Malware issues. This may or may not solve other issues you have with your machine.2. The fixes are specific to your problem and should only be used for this issue on this machine.3. If you don't know or understand something, please don't hesitate to ask.4. Please DO NOT run any other tools or scans while I am helping you.5. It is important that you reply to this thread. Do not start a new topic.6. Your security programs may give warnings for some of the tools I will ask you to use. Be assured, any links I give are safe.7. Absence of symptoms does not mean that everything is clear.If you can't access the internet with your infected computer you will have to download and transfer any programs to the computer you're using now and transfer them to the infected computer with a CD-RW or a USB storage device. I prefer a CD because a storage device can get infected. If you use a storage device hold the shift key down while inserting the USB storage device for about 10 secs. You will also have to transfer the logs you receive back to the good computer using the same method until we can get the computer back on-line. *************************************************************************Why have you not installed SP3?Update Your Java (JRE)Old versions of Java have vulnerabilities that malware can use to in... Read more

3 more replies
Relevance 45.1%

Well I have succumb to malware, in particular, Antivermins 2.1. It, like the others before me pops up an icon saying i need to purchase the software to rid myself of the problem. I already used Counterspy, AVG, and Spybot, AND Avast, who all detected the problem, prior to reading your threads. I found this site when all programs said it was removed and it stays around on my computer. I ran all the scans as told on the "Read & Run Me First" thread. The only issue i ran into was that i had to go to normal boot mode to run the bitdefender and panda scans. I have attached the logs below and I really hope there is a way to solve this. Also, is the spyware actually gone now and the icon just needs to be removed or is system restore still restoring my system to keep the spyware? Until I get a response from you Im leaving my computer on, that way I can get a confirmed clean bill of health and then turn off the system restore and reboot. Please hurry, I know you are very busy, and I appreciate you providing your help free, its just that I am a design student and if my computer is down or slow, none of the high graphic programs like blender, photoshop, and illustrator will run. Thank you in advance, leadster618

Answer:Trying to Remove AntiVermins2.1 logs attached! Please help!

here are the other logs, panda scan said something was wrong but now the other scans say i'm clean, should i try reinstalling the other spyware scanners and see if they pick it up again? I forgot to ask that on my first post... thanks again, leadster618

20 more replies
Relevance 45.1%

Somebody please tell me what to delete to remove WinAntiVir!!!Thanks,TeoHERE ARE MY HIJACKTHIS LOGS:SmitFraudFix v2.167Scan done at 13:47:23,95, 2007.04.13.Run from C:\Documents and Settings\Teo\Asztal\SmitfraudFixOS: Microsoft Windows XP [verzi˘sz m: 5.1.2600] - Windows_NTThe filesystem type is NTFSFix run in safe mode???????????????????????? SharedTaskScheduler Before SmitFraudFix!!!Attention, following keys are not inevitably infected!!!SrchSTS.exe by S!RiSearch SharedTaskScheduler's .dll???????????????????????? Killing process???????????????????????? hosts127.0.0.1 localhost???????????????????????? Generic Renos FixGenericRenosFix by S!Ri???????????????????????? Deleting infected files???????????????????????? DNSHKLM\SYSTEM\CCS\Services\Tcpip\..\{6588A202-465B-4619-AFC6-A1165A60B82C}: DhcpNameServer=\SYSTEM\CCS\Services\Tcpip\..\{EFC92F18-8E56-4666-864D-EA5E0CC4E26D}: DhcpNameServer=\SYSTEM\CS1\Services\Tcpip\..\{6588A202-465B-4619-AFC6-A1165A60B82C}: DhcpNameServer=\SYSTEM\CS1\Services\Tcpip\..\{EFC92F18-8E56-4666-864D-EA5E0CC4E26D}: DhcpNameServer=\SYSTEM\CS2\Services\Tcpip\..\{6588A202-465B-4619-AFC6-A1165A60B82C}: DhcpNameServer=\SYSTEM\CS2\Services\Tcpi... Read more

Answer:Winantivir Remove Help! Here Are My Hijack Logs

Welcome to the BleepingComputer HijackThis forum teo_stiletto_hun Please go to:C:\Program Files\Hijackthis\HijackThis.exeRight click on Hijackthis.exe and select 'Rename', rename it to abc.batDouble click on abc.bat(which is still Hijackthis.exe),post that log into your next reply please.

16 more replies
Relevance 45.1%

Hey,I posted this on the "Am I infected? What do I do?" board, but none of the rootkit removal programs are helping. Referred from here: ~ OBI tried Sophos Anti-toolkit & removed a ystas.... .sys file & rebooted & did another scan with Sophos which showed all the Unknown hidden files gone, except for one exe file in C:\WINDOWS\I386\AUTOFMT.EXE.Thing is after that I scanned with GMER & DDS & they show the same ystas.... files still there.I also can not run RootkitRepeal, it worked the day I downloaded it, but now it just gets stuck on the initializing box & after 15 minutes of that & slowing my PC to a crawl, a window appears & tells me that "Virtual memory Minimum is too low".The only way to turn off my system after that is to unplug my PC cord. I'm not sure if it is because of the Trojan or because of some conflicting file or whatnot?MY system is an XP SP3, with all the latest updates. My PC is a HP Pavilion a510n Desktop. I'm using a D-Link DIR-655 router right now as well if it matters. I have also ran CCleaner, TweakNow RegCleaner, Eusing Free Registry Cleaner, Ad-Aware, SUPERantispyware & Malwarebytes' Anti-Malware. I have also set my PC to not hide any file extension & to view hidden files in my tools option.My DDS log:DDS (Ver_09-07-30.01) - NTFSx86
Run by Owner at 17:38:17.12 on Sat 08/08/2009
Internet Explorer: 7.0.5730.... Read more

Answer:DDS log & GMER logs for some Trojans I can't remove?

Hello and welcome to Bleeping ComputerWe apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine. If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.Upon completing the steps below another staff member will review and take the steps necessary with you to get your machine back in working order clean and free of malware.If you have already posted a DDS log, please do so again, as your situation may have changed.Use the 'Add Reply' and add the new log to this thread.Thanks and again sorry for the delay.We need to see some information about what is happening in your machine. Please perform the following scan:Download DDS by sUBs from one of the following links. Save it to your desktop.DDS.scrDDS.pifDouble click on the DDS icon, allow it to run.A small box will open, with an explaination about the tool. No input is needed, the scan is running.Notepad will open with the results.Foll... Read more

27 more replies
Relevance 44.69%

I was redirected from this thread
I just wanna get checked if i am infected by a spyware/keylogger
Other than that I don't have any issues at all. I think just a slightly slow windows loading during reboot.
What are your thoughts about the farbar scanner logs?
FRST.txt is too large

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 05-05-2015
Ran by Josh at 2015-05-05 18:30:12
Running from C:\Users\Josh\Downloads
Boot Mode: Normal
==================== Accounts: =============================
Administrator (S-1-5-21-2666909568-1860212623-153042478-500 - Administrator - Disabled)
Guest (S-1-5-21-2666909568-1860212623-153042478-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2666909568-1860212623-153042478-1003 - Limited - Enabled)
Josh (S-1-5-21-2666909568-1860212623-153042478-1001 - Administrator - Enabled) => C:\Users\Josh
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adwa... Read more

Answer:want to remove possible Malware/spyware (farbar logs)

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 05-05-2015
Ran by Josh (administrator) on CRASHOVERRIDE on 05-05-2015 18:29:35
Running from C:\Users\Josh\Downloads
Loaded Profiles: Josh (Available profiles: Josh)
Platform: Windows 8.1 (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Windows ® Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
() C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe
() C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe
(Microsoft Corporation) C:\P... Read more

6 more replies
Relevance 44.69%

Tony and the rest of you wizards,

I asked before if a lot of the things you see and tell people to remove from a HijackThis logs are things you learned by repetition and was told yes. Is there any way to start a FAQ type thread that we could get Mike to stick to the top of the forum that would basically list "if you see this, delete it" type things.

I understand you couldn't do it for all items, but with all the threads that I see you all try to answer it just seems it might save you some time.

Just a thought from someone who is trying to learn, but still afraid to help since it isn't my computer I could be messing up.

Answer:List of things to remove in HijackThis Logs

good idea terry........although there is an abundance of wickedness in those logs and we couldnt possibly list them all,there are a few.....quite a few repetitious entries that maybe could be listed.

lets see what TK and Rog have to say

3 more replies
Relevance 44.69%

Hi, I am currently using Webroot Spy Sweeper and I have ran various full scans, quarantined, and "deleted" virtumonde but it keep showing up every time I scan. Can anyone help?

Thanks in advance

Answer:Can't Completely Remove Virtumonde (Continued with logs)

Re: Can't Completely Remove Virtumonde (With Attachments)

Welcome to Major Geeks!

Did you happen to notice the below sticky thread?


Please follow the instructions in the below link and attach the requested logs when you finish these instructions.

READ & RUN ME FIRST. Malware Removal Guide

26 more replies
Relevance 44.69%


To my shock today when I booted up my computer I received this message:

A quick Google led me to this excellent forum. I have followed the common instructions on a few thread, did a Combifix and an SAS scan along with HijackThis. Here are the logs, I'd appreciate it if someone could help me remove this trojan.

Hijack This Log:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 01:08:00, on 29/07/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Comodo\Firewall\cmdagent.exe
C:\Program Files\Microsoft SQL Server\MSSQL$ACT7\Binn\sqlservr.exe
C:\Program Files\Microsoft SQL Server\MSSQL$PROVIDUSSTD\Binn\sqlservr.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\Program Files\Common Files\Syma... Read more

More replies
Relevance 44.69%

This started because I'm unable to access Internet Options in any way. No Spybot, and Internet Options is not available in Control Panel either, it shows the icon, however the name is blank and when clicked it gives the same result as trying the Start:Run:inetcpl.cpl trick.I am also unable to right click anywhere in IE, (I believe this is 8, unable to access the drop down menus either!) Anyways, back to Internet Options, I went to restore the inetcpl.cpl file... guess what: it's gone. So is the backup location and the entire win\sys32\dllcache directory!!!  So at this point I got nervous.  I tried SFC /scannow and it says my CD is the wrong version of xp pro.I found viruses using AVG yet they kept coming back. I came here, downloaded the step by step process and followed it.So here I am (on a different pc, as I'm unable to post the logs from the sick one), very afraid! ADDED: 09-10-07: I did try the Java update, it allows internet access, even followed the link to update Java, but the "Download Java" button just causes a quick blink of the screen and then nothing.  This thing gives me the heebiejeebies LOL! I am not trying to bump my post, I do see that people who posted after me have replies but maybe this is a tough one? Even a little hint as to which direction to go would be appreciated.  I will continue to do the Self Help scanner, It did find a malicious process in the HJT log - the facebookphotouploader  thing in b... Read more

Answer:Don't know how to remove this bug. I've done research! SASW, MBAM & HJT logs!

Booted to WinXP Pro CD. Ran CHKDSK /R - this restored the inetcpl.cpl file and several others that were missing when I tried to uninstall IE8.Found a post on another site stating that there are multiple inetcpl.cpl files on a search and that the smaller ones actually work... so I searched.inetcpl.cpl = 350 kb or 353 kb both bring up Internet Options just fine. These are located in the c\win\IE7 dir and c\win\sftwr distro\cf8ec... folder respectively.inetcpl.cpl = 1,788 kb cause the flash and nada.  Incidently if I copy the 350 kb ver into win\sys32 then the shortcut from Control Panel works... if I click one of the others it overwrites the 350 in Sys32...(and, incidently the source file inetcpl.cpl.mui are both 1,244 kb)So, IE7 works, yet there's this file that seems to be somehow evading all attempts to overcome.  I am not going to re-install IE8 on possibility that it is more vulnerable.*shrug* I stumped.  I will try the self-help some more... 10-12-09  Still no response or contact other than some newbie flipping crap.Since 20+ posts above me have responses, I get the hint.g'luck all,Maj out.

2 more replies
Relevance 44.69%

Greetings, I'm fairly knew to the scene and need assistance in removing 2 pains:

I have collected the HiJackThis, SmitFraudFix, Spybot, Killbox, and Ewido applications. I have run scans with SB/Ewido in Safe Mode and also ran the ActiveScan online application.

If there is any additional information that is needed to help assist me, please let me know and I will do the best I can. Thanks for anyone who can lend support.

Answer:Help remove downloader.generic.zoy/zie - HJT+other logs inside

13 more replies
Relevance 44.28%

I previously posted this topic (in the wrong section). I was advised to run the scans and post the logs in this section (I think). I'm trying to help a friend fix his laptop which has been infected for the better part of 2 years. I've ran multiple scans including aswMBR, TDSSkiller, and MalwareByte. MalwareBytes seems to find rootkits after every restart. Not sure what to do about the problem. I thought this would be an easy fix, such as formatting and restoring from a factory image. The logs are below. The DDS gave to separate logs which are first before the gmer. Thanks, Joe

DDS Logs-
DDS (Ver_2011-08-26.01)
Microsoft? Windows Vista? Home Premium
Boot Device: \Device\HarddiskVolume3
Install Date: 6/29/2009 5:10:12 AM
System Uptime: 7/27/2012 9:10:25 PM (1 hours ago)
Motherboard: Dell Inc. | | 0G848F
Processor: Celeron® Dual-Core CPU T3000 @ 1.80GHz | Microprocessor | 897/200mhz
==== Disk Partitions =========================
C: is FIXED (NTFS) - 218 GiB total, 176.696 GiB free.
E: is FIXED (NTFS) - 15 GiB total, 4.169 GiB free.
F: is CDROM ()
==== Disabled Device Manager Items =============
==== System Restore Points ===================
==== Installed Programs ======================
Update for Microsoft Office 2007 (KB2508958)
32 Bit HP CIO Components Installer
Adobe AIR
Adobe Flash Player 10 ActiveX
Adobe Flash Pla... Read more

Answer:DSS and gmer logs, Can't remove VIrus-Rootkit-Malware

Here's the GMER log. Attached
Just opened it and decide to copy and paste it too. Thanks, Joe

PS. Just wanted to add that when I hit F8 when booting up and go to the advance boot menu and click on "Repair My Computer". It takes me to "Other User" unknown password and say something about specific domain. I've read a lot about this and I don't think there is a known fix. I'm thinking somehow it's related to the virus. Probably a corrupt E: where the recovery partition is located. I didn't scan E: in the GMER scan, only scanned C:.

Rootkit scan 2012-07-27 23:26:11
Windows 6.0.6001 Service Pack 1 Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 ST925031 rev.0003
Running: gmer.exe; Driver: C:\Users\AARONA~1\AppData\Local\Temp\uwlyrpow.sys
---- Kernel code sections - GMER 1.0.15 ----

? System32\drivers\ltffsxf.sys The system cannot find the path specified. !
? C:\Users\AARONA~1\AppData\Local\Temp\mbr.sys The system cannot find the file specified. !

---- User code sections - GMER 1.0.15 ----

? C:\Windows\system32\services.exe[648] C:\Windows\system32\smss.exe image checksum mismatch; time/date stamp mismatch; unknown module: MSWSO... Read more

3 more replies
Relevance 44.28%

Hi all!

My computer was infected with the browser hijacking virus.
The cable internet tech that was at my house today suggested I try ComboFix.

After running ComboFix, the computer seems to be performing much better, but I don't know how to read the log file to tell if the virus has been completely removed. was listed as a site to submit log reports for help on the ComboFix website.
I had already run ComboFix before I came to the forum and saw the notice to NOT run ComboFix unless I was asked to by an assistant. (OOPS)

I would greatly appreciate a review of the log file and any other recommendations you may have at your earliest convenience.
Thanks so much in advance for any help you may be able to offer.


Here it is:
ComboFix 12-02-02.02 - Katie Roberts 02/02/2012 21:39:23.1.1 - x86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.1023.748 [GMT -8:00]
Running from: c:\documents and settings\Katie Roberts\Desktop\ComboFix.exe
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
c:\documents and settings\All Users\mshtune.exe
c:\documents and settings\Katie Roberts\Application Data\fsdiag.exe
c:\documents and settings\Katie Roberts\Application Data\Hanyra\rohade.exe
c:\documents and settings\Katie Roberts\My Documents\~WRL1390.t... Read more

Answer:ComboFix logs - trying to remove browser hijacker

Hi Nate!My secret agent name on the forums is SweetTech (you can call me Agent ST for short), it's a pleasure to meet you. I would be glad to take a look at your log and help you with solving any malware problems.If you have since resolved the issues you were originally experiencing, or have received help elsewhere, please inform me so that this topic can be closed. If you have not, please adhere to the guidelines below and then follow instructions as outlined further below:Logs from malware removal programs (OTL is one of them) can take some time to analyze. I need you to be patient while I analyze any logs you post. Please remember, I am a volunteer, and I do have a life outside of these forums.
Please make sure to carefully read any instruction that I give you. Attention to detail is important! Since I cannot see or directly interact with your computer I am dependent on you to "be my eyes" and provide as much information as you can regarding the current state of your computer.
If you're not sure, or if something unexpected happens, do NOT continue! Stop and ask!
In Windows Vista and Windows 7, all tools need to be started by right clicking and selecting Run as Administrator!
If I instruct you to download a specific tool in which you already have, please delete the copy that you have and re-download the tool. The reason I ask you to do this is because these tools are updated fairly regularly.
Do... Read more

30 more replies
Relevance 44.28%

AVG detected what appeared to be a generic Trojan on my machine, and since getting rid of it (not longer detected by various scanners) I am still having a bunch of tracking cookies installed and a popup window that appears every time I launch firefox.

Thanks for your help with this!

HiJack This Log:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:21:43 AM, on 5/10/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16827)
Boot mode: Normal

Running processes:
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\iaantmon.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Mediafour\MacDrive 7\MacDriveService.exe
C:\Program Files\Dell Support Center\bin\sprtsvc.exe
C:\Program Files\Intel\IntelDH\Intel(R) Quick Resume Technology\ELService.exe
C:\... Read more

Answer:Trojan detected - popups and now I can't remove (AVG & HiJack logs)


Please folks, I would love some help with this. If you don't see anything, please let me know that too. Thanks.

3 more replies
Relevance 44.28%

I've been reading a lot on Bleeping, have tried several online scans, with no success.
Running Windows 10 Pro
I am unable to remove the proxy from Internet Options-
It syas "some settings are controlled by the administrator" and gray's out the button.
I have changed the Proxy Registry to Disable but after reboot it comes back.
Also, Chrome onmibox redirects when a search item is typed.
Any help is greatly appreciated!
See logs:

More replies
Relevance 44.28%

First of all - I understand and respect that there is a lot of pressure on you guys working to help people here, and that there is a waiting time. And I do not think that I'm more important than anyone else. However, I'm at the moment helping a friend with her computer, her husband has installed surveillance programs. and he's coming back from a trip this afternoon, so I hope someone could answer me quickly. MBAM found and removed "Refog keylogger" - does that mean that only the program components itself has been removed? Or would the logs/content be removed as well? If not, how can I locate them?Thank you very much! In case you need them, I'm including the log from MBAM and a DDS log from after the MBAM scanning. I'm sorry that I haven't done this like stated in the preparation guide, because I wasn't aware of this forum before I ran the scans.Malwarebytes' Anti-Malware 1.46www.malwarebytes.orgDatabaseversjon: 4345Windows 6.0.6000Internet Explorer 7.0.6000.1703725.07.2010 14:35:41mbam-log-2010-07-25 (14-35-41).txtSkanntype: Hurtigs?kObjekter skannet: 126334Tid tilbakelagt: 12 minutt(er), 45 sekund(er)Minneprosesser infisert: 0Minnemoduler infisert: 0Registern?kler infisert: 0Registerverdier infisert: 0Registerfiler infisert: 0Mapper infisert: 12Filer infisert 109Minneprosesser infisert:(Ingen skadelige objekter funnet)Minnemoduler infisert:(Ingen skadelige objekter funnet)Registern?kler infisert:(Ingen skadelige objekter funnet)R... Read more

Answer:Urgent: does MBAM remove keylogger logs, or only the programs itself?

Hello , And to the Bleeping Computer Malware Removal Forum. My name is Elise and I'll be glad to help you with your computer problems.I will be working on your malware issues, this may or may not solve other issues you may have with your machine.Please note that whatever repairs we make, are for fixing your computer problems only and by no means should be used on another computer.The cleaning process is not instant. Logs can take some time to research, so please be patient with me. I know that you need your computer working as quickly as possible, and I will work hard to help see that happen. Please reply using the Add/Reply button in the lower right hand corner of your screen. Do not start a new topic. The logs that you post should be pasted directly into the reply. Only attach them if requested or if they do not fit into the post.Unfortunately, if I do not hear back from you within 5 days, I will be forced to close your topic. If you still need help after I have closed your topic, send me or a moderator a personal message with the address of the thread or feel free to create a new one.You may want to keep the link to this topic in your favorites. Alternatively, you can click the button at the top bar of this topic and Track this Topic, where you can choose email notifications. The topics you are tracking are shown here.-----------------------------------------------------------If you have since resolved the original problem you were having, we would appreciate you let... Read more

2 more replies
Relevance 44.28%

Hi everyone,I just found out about this forum. I believe I have a computer virus infecting my C drive (WinXP SP2). I thought that initial indications pointed to the sasser worm such as lsass.exe overrun and resulting shutdown. Using tools from Microsoft and Symantec did not find the worm and did not stop the infection. The next symptom was that the computer would not reboot, hanging in a windows boot screen with the message ?Configuring Network Connections?.I was able to use an older HDD also with winXP-SP2 as the primary drive to boot from thus having my infected drive map to the F drive as the slave physical drive. Attempts at fixing this infection are run from the current C drive with the network unplugged. This is the state I am in now. The current C drive, the uninfected one ( I still hope) already had AVG version 7.5 installed which recognized the infected files on the F drive as soon as I used windows explorer to examine that drive. AVG identified a file in f:\documents and settings\owner folder named owner.exe as the culprit but could not remove it or heal it. I tried A squared (free) but could not find this file. I could not use explorer to open the f:\documents and settings\owner folder directly, always getting an access denied message. I was able to rename the owner folder to owner1 and then was able to explore inside, but AVG still could not remove the file. I tried using various unremovable file removal tools to no avail. Then, while I was watching AVG, a registr... Read more

Answer:Unable to remove virus on WinXP. Logs included. Thanks everyone!

Download DDS by sUBs and save it to your desktop. Alternate DDS download linkVista users right click on dds and select Run as administrator (you will receive a UAC prompt, please allow it)* XP users Double click on dds to run it.* If your antivirus or firewall try to block DDS then please allow it to run.* When finished DDS will open two (2) logs.1) DDS.txt2) Attach.txt* Save both logs to your desktop.* Please copy and paste the entire contents of both logs in your next reply.Note: DDS will instruct you to post the Attach.txt log as an attachment.Please just post it as you would any other log by copy and pasting it into the reply.

12 more replies
Relevance 44.28%

I really want to learn how to remove them properly (and maybe lend a helping hand to someone in the future).

How would I go about learning?


Answer:How can i learn to remove virus and use hijack this logs and combo-fix?

The usual way is to join a malware university site on the internet,and you go from there,but be aware it takes quite a while to learn ...its best if you look for Cookiegal one of the admin,click on her name and send her a private message or email,telling her what you want to do and she will then advise you on how to proceed ...

2 more replies
Relevance 44.28%

I read the Please read first and was unable to fix the problem. I have run Avast and it clears 4 viruses but they keep coming back. I don't have a lot of experience with Vista so I really need help. There are several "virus/spyware highway"  toolbars that need to be removed anlong with an infected game that was put on here by a friend. I am using another computer to post with since I can't get a page to open on the Laptop. Any help will be greatly appreciated.. I noticed that some important updates had not been installed or they had been blocked. They are being updated now since I figured out how to get an internet page to open.Logfile of Trend Micro HijackThis v2.0.2Scan saved at 9:03:52 PM, on 6/11/2009Platform: Windows Vista  (WinNT 6.00.1904)MSIE: Internet Explorer v7.00 (7.00.6000.16830)Boot mode: NormalRunning processes:C:\Windows\system32\Dwm.exeC:\Windows\Explorer.EXEC:\Windows\RtHDVCpl.exeC:\Program Files\Synaptics\SynTP\SynTPEnh.exeC:\Program Files\ltmoh\ltmoh.exeC:\Program Files\TOSHIBA\ConfigFree\NDSTray.exeC:\Program Files\ATI Technologies\ATI.ACE\CLI.EXEC:\Program Files\McAfee\MPS\mpsevh.exeC:\Windows\system32\taskeng.exec:\PROGRA~1\\agent\mcagent.exeC:\Program Files\TOSHIBA\Utilities\KeNotify.exeC:\Program Files\Google\Google Desktop Search\GoogleDesktop.exeC:\TOSHIBA\IVP\ISM\pinger.exeC:\Program Files\TOSHIBA\Power Saver\TPwrMain.exeC:\Program Files\TOSHIBA\SmoothView\SmoothView.exeC:\Program Files\TOSHIBA\FlashCards\TCr... Read more

Answer:Help me remove viruses from Vista, updated logs enclosed

Based off your log it appears you have multiple anti-virus scanners on the computer, McAfee and Avast. This can cause a lot of issues therefore I'd suggest uninstalling McAfee from add/remove programs in control panel first. This could be the cause of why the viruses detected by Avast are not getting removed, because they could be in a McAfee vault.Also while in Add/Remove programs look for and uninstall "crawler" or "crawler toolbar" as it's adware and can cause problems.after above removed reboot computer.Finally, I'd also suggest installing and running malware bytes on this computer after above steps have been done. you continue to run into issues, feel free to post an updated log after the above steps have been done.

14 more replies
Relevance 43.87%

Please help me How to Remove  Virus,Trojan and Malware on my computer.


Answer:How to Remove Virus, Trojan, Spyware, and Malware Removal Logs

Hi there,my name is Marius and I will assist you with your malware related problems.Before we move on, please read the following points carefully.First, read my instructions completely. If there is anything that you do not understand kindly ask before proceeding.Perform everything in the correct order. Sometimes one step requires the previous one.If you have any problems while following my instructions, Stop there and tell me the exact nature of your problem.Do not run any other scans without instruction or add/remove software unless I tell you to do so. This would change the output of our tools and could be confusing for me.Post all logfiles as a reply rather than as an attachment unless I specifically ask you. If you can not post all logfiles in one reply, feel free to use more posts.If I don't hear from you within 3 days from this initial or any subsequent post, then this thread will be closed.Stay with me. I will give you some advice about prevention after the cleanup process. Absence of symptoms does not always mean the computer is clean.My first language is not english. So please do not use slang or idioms. It could be hard for me to read. Thanks for your understanding.     HijackThis is not the preferred initial scanning tool in this forum. With today's malware, a more comprehensive set of logs is required to determine the presence of malware.    Scan with FRST in normal modePlease download Farbar's Recovery Scan Tool to you... Read more

2 more replies
Relevance 43.46%

1. Application 0000000080 running

2. You are trying to end a non-responsive programe

3.You have just recovered from an error please click either send or don't send error report click for more information

Answer:Solved: Error problems ( the logs show as much as 55 errors how do I remove for free).

8 more replies
Relevance 42.64%
Question: NAS unreachable


I have a NAS, accessible via locally. The problem is : I can't see it under Windows. In Linux I can see it under network tab

I try to access it with \\ in My Computer but doesn't work too

Any ideas ?

Thanks in advance

Answer:NAS unreachable

Hi nathan30

Did this just recently start?

Is this a new device or new install?

Is your computer connected wirelessly and is the network set to private? (not public).

Could you fill out system specs please.

28 more replies
Relevance 42.23%
Question: Server unreachable

I cannot get online whenever I try I get the following message in a software Update box. The server is unreachable. Retry the request. When I access network connections, the broadband connection symbol has a x over it, and there is this message. This connection is not available because there is a problem with your modem is network adapter. Can anyone offer any solution please

Answer:Server unreachable

Try to update the driver

4 more replies
Relevance 42.23%

build a 2k3 server, updated it and everything near my desk plugged into the exact same port on my switch, was able to RDP into as many times as I wanted, transfered some files to it, speed was good, everything is dandy. shut it down and put it into its place inside my closet, plug in the ethernet cable into the exact same port....

attempt to RDP and......

tried 3 different ports on my switch, same result, flushed the DNS, restarted the switch, same result....

wtf?? my last option is to take one of my LCDs to the closet and see whats up (LAST resort)

Answer:host unreachable... wtf???

probably something dumb...

that kinda crap happens to me all the time....

may as well bring the monitor over, usually you'll waste more time trying to figure it out

5 more replies
Relevance 42.23%

Problem: cannot access All 4 computers on my home network cannot access I do not get porn I just time out.

What I've done so far:
numerous anti-spyware programs have been run including spybotS&D and HijackThis (both before I found your forums), AdwareSE.
called both and (my provider) with no luck, both say everything is fine on their end.

I have followed the FAQ with two problems:

-I mistakenly exited out of Counterspy without the log.
-Bitdefender crashed just as it was going to show the "detected problems" Explorer was the named culprit. I do remember mostly trojans found in email (trash box, Eudora Pro) that were deleted.

I do have the other 4 log files. I hope you can help, I have a website at that needs attending to. is unreachable

logs continued.

14 more replies
Relevance 42.23%

We started experiencing an issue with some customers unable to browse out to the internet.  Manually setting their proxy server to the address works, but not when we use the http:\\proxy.pac. In the auto configuration script area
 on a working machine entering the http:\\proxy.pac in the address bar prompts for you to download/open the pac.  On the non working machine it ALSO cant reach the destination.  If *I* log on to the machine it works as intended.  We are
using preferences to push these settings and over 22,000 machines are working correctly.  But recently a number of people have started to experience this issue, and we are perplexed.  thoughts?

More replies
Relevance 42.23%

Since the automatic upgrade was pushed to our PC's we can't reach We can reach all other web sites.
Is there a workaround, I tried to restore to a date last week, but it didn't fix the problem.

More replies
Relevance 42.23%

Everytime I open a new browser I also get another window pop up with adverts, also certain websites are unreachable, I have scanned with AVG and adware and they keep finding things but removing them, this has been done in safe mode as well.... Below is the log from hijackthis.. PLEASE HELP...

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:08:47, on 09/07/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0013)
Boot mode: Normal

Running processes:
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\Program Files\Common Files\Portrait Displays\Shared\DTSRVC.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
C:\Program Files\ThinkPad\Utilities\TpKmapMn.exe
C:\Progra... Read more

Answer:Ad Pop ups and certain sites unreachable - Please help!!!


Please note that all instructions given are customised for this computer only, the tools used may cause damage if used on a computer with different infections.

If you think you have similar problems, please post a log in the HJT forum and wait for help.

Hello and welcome to the forums

My name is Katana and I will be helping you to remove any infection(s) that you may have.

Please observe these rules while we work:
1. If you don't know, stop and ask! Don't keep going on.
2. Please reply to this thread. Do not start a new topic.
3. Please continue to respond until I give you the "All Clear"
(Just because you can't see a problem doesn't mean it isn't there)

If you can do those three things, everything should go smoothly :D

Please Note, your security programs may give warnings for some of the tools I will ask you to use.
Be assured, any links I give are safe


I apologize for the delay in responding, but as you can probably see the forums are quite busy.
Unfortunately there are far more people needing help than there are helpers.

If you still require help please post a fresh HJT log

Installed Programs

Please could you give me a list of the programs that are installed.Start HijackThis
Click on the Misc Tools button
Click on the Open Uninstall Manager button.
You will see a list with the programs installed in your computer.
Cl... Read more

1 more replies
Relevance 42.23%

I have the same issue with my computer network connection. And the error message says Destination net unreachable

Can you guys pleae help out on this. I need this very urgently.

Answer:Destination net unreachable

Even though it appears you're having the same problem, please start a new thread when you have a new issue. It's very difficult to keep two problems straight and who's working on what in a single thread.

I've created a new thread for your issue here.

Note: You will need to post complete details of your configuration and your specific issue in this new thread for us to help you.

Thanks for your cooperation.

2 more replies
Relevance 42.23%

Did a trace to help solve some possible instability in my connection. After 6 hops I got the title of the thread. Not sure how to translate it. It may be an MTU size issue? Would appreciate any insights. Thanks


Tracing route to []
over a maximum of 30 hops:

1 <1 ms <1 ms <1 ms esr9850.esr9850 []
2 7 ms 8 ms 11 ms
3 9 ms 9 ms 10 ms
4 9 ms 7 ms 7 ms
5 62 ms 73 ms 28 ms []
6 [] reports: Destination net unrea

Trace complete.

Answer:Destination net unreachable?

The router at that point has no idea how to get there.

9 more replies
Relevance 42.23%

i have bought a second hand laptop microstar medion 2020,i am trying to connect to my existing router thompson 576,i have a belkin pci card and all seems ok,until i try to connect to aol but the followin error comes updns server unavailable24-01-08-033,it is searching for my ip address?? can any one help me i am so near yet so far from connection.i know there is a lot of computer literate people out there can anyone HELP

Answer:dns server unreachable (aol)

what operating system are you using?

2 more replies
Relevance 42.23%

Hi,When I ping one IP
Sometimes the below error:
What is difference between?
 Destination net unreachable.
 Destination Host unreachable.

Answer: Destination net unreachable.

Here are answers to your problems
For problém diagnostics you will need to analyze output from ipconfig /all, from routing tables when you work behind local network and network analyzer for detailed analysis of packet exchane (Wireshark will do the trick)

2 more replies
Relevance 42.23%

can anyone help? i am trying to get to a website and keep getting this message Warning: mysql_connect(): Too many connections in /home/movies/public_html/store/includes/functions/database.php on line 19Unable to connect to database server! the site is dvd5movies .com

Answer:unreachable website

Warning: mysql_connect(): Too many connections in /home/movies/public_html/store/includes/functions/database.php on line 19Unable to connect to database server!The site must be down.

3 more replies
Relevance 42.23%
Question: Unreachable host

Hi Everyone,

For some reason, I cannot get my digital display sign to play well with my pc. I have had tech help, help from the installer, and trouble shooting myself, etc.

If the following makes any sense to anyone, feel free to share the knowledge. Thanks in advance!

Tracing route to over a maximum of 30 hops

1 <1 ms <1 ms <1 ms CISCOF1948 []

2 25 ms 25 ms 25 ms []

3 [] reports: Destination net unreachable.

Trace complete.

Pinging with 32 bytes of data:

Reply from Destination host unreachable.

Reply from Destination net unreachable.

Reply from Destination net unreachable.

Reply from Destination net unreachable.

Ping statistics for

Packets: Sent = 4, Received = 4, Lost = 0 (0% loss),

Its greek to me!

Answer:Unreachable host

6 more replies
Relevance 42.23%


I'm not sure what it might be but one day I noticed that about a dozen of websites I open regularly became unavailable. "The connection has timed out."

nslookup works OK and I get IP address resolved, I also tried tracert, it goes through 5-10 hops and then times out. I can still open some web sites but not all of them. I can open all web sites via online proxy so they are all up and running.

I have ADSL modem connected to my laptop, no routers, the modem doesn't have any static routing tables, so as far as I understand it, the list of hosts I see in tracert output depends on my ISP router.

The ISP is able to open all "problem" web sites on their side, but I can't get any help from them as they say that since tracert goes beyond their network it's not their problem and it's my computer actually blocking some of web sites.

I'm not aware of any software on my laptop which could possibly do that as well as I don't have any routing/proxy programs installed, so it seems that it might be a virus or some malicious software.

So what do I do? Try to find a virus or can it be a system issue?

Answer:some web sites became unreachable

Hi I'm new to this site but I'd like to help you.

Try downloading a alternate browser (I reccomend Google Chrome). This will make sure the problem isn't in your browser at least. Also can you ping any of those sites you can't get to?

2 more replies
Relevance 42.23%

that was shown when i ping,.
my internet connection is working properly,.
sometimes when i ping i get,.
reply from bytes =23 time=192ms TTL=46
after 5 to 10 mins.
i get destination net unreachable.,.
can u please help me,.
tnx in advance,.,

Answer:Destination net unreachable

13 more replies
Relevance 42.23%

I have a number of XP and W7 PCs in a domain with internet connection, all working fine.

I've wired my Linux laptop to the network, DHCP, and it can talk to other devices on the network. But I can't get connected to any site outside the network - ping to any external address gives " Destination Net Unreachable" is the correct address for the router, and any Windows machine can ping to any address via that same router.

Any ideas please?

More replies
Relevance 42.23%

2 nights ago I purchased a Linksys WPC54GS for my laptop so that I could access the Free Wireless Internet at the motel I was staying at in Ohio, and it worked great. Now I am in a hotel in CA that has free Wireless Internet access also, and my computer says I'm connected, but when I try to access the internet I get "Host is unreachable or DNS server culd not resolve the DNS name." Can anyone tell me what to do to get online?

Answer:Host is unreachable

Go down to the front desk and ask them for their network settings/codes etc. See if they can help you since its their network.

2 more replies
Relevance 41.41%

Please can someone help me!I using edimax router to connect to aol, but keep on getting the DNS server unreachable or unavailable (24-01-08-033) error message. until recently it was working perfectly, then this error, i reloaded the software and now when i go to the sign on screen i have to use existing member as username,but it still doess not let me sign on!!My laptop which is connected wirelessly is able to connect nearly always via aol using my normal sign on name.please please can someone help me!!!

Answer:DNS server unreachable or unavailable 24-01-08-033

Check all your IP settings and acount details.If that doesn't work try turning off the router for a few minutes.

1 more replies
Relevance 41.41%

Please can I get some help on in this been on it for a few days, and I cannot just seem to find how to fix it. Thanks all.
class Calculator2 {

double salary = 51000;
double base = 120000;
double commission = .13;

public double calculateTotalComission(double annualSales) {
return 123;

public double calculateTotalCompensation(double annualSales) { .....<<<< Illegal start of expression, unreach statement, and no return statement.
double totalPay = salary + (annualSales * commission);
return totalPay;
if(annualSales> 120000) { ...... <<<<Unreachable Statement
commission = 0.13 * 1.25;
System.out.println("Great job on exceeding your sales goal and acquiring the sales incentive!");
} else if (annualSales >= 96000) {
commission = 0.13;
System.out.println("You did not meet your sales goal but will acquire the sales incentive!");
} else if (annualSales < 96000) {
System.out.println("You did not acquire your sales incentive or meet your sales goal!");

Answer:Two (Unreachable Statement Errors) Please

Oh and this is Java. Sorry

2 more replies
Relevance 41.41%

Trying to link new Laptop to USB AOL Broadband Cable Modem, Error message DNS Server unavailable etc, AOL cofirmed modem working have disabled Norton Anti Virus & Firewall but still no Joy, any ideas. Still waiting on response from Dell Technical Support.

Answer:DNS Server Unreachable or unavailable

Have a look in Internet Options/Connections/LAN Settings and make sure "Automatically detect settings" has a tick.

3 more replies
Relevance 41.41%

My friend took his computer to Best Buy who ran the restore on it with his main files on a second drive. The drive is now ganked, but I'm working to recover the files if possible.

In Disk Management (XP Pro), I can see that there's a 37GB volume with 20Gb free (looks like his missing files). There's a second volume on the disk that's only 47 MB and it's Active (so I can access it, but there's nothing to speak of there).

The point is that if I click on the 37Gb volume, I can't seem to do anything with it. The only menu option available when I right click it is "Help". If I click the disk itself, I have the option to convert to a dynamic disk, but I don't want to do that without knowing what will happen to the data on there.

When I dig through the properties, I can see data on the 47MB disk, but not the 37 GB. Does anyone know what to do with this!!!?

Answer:Unreachable Volume on Disk, What to do?

Oh, and the 37 GB says this:

37.22 GB NTFS
Healthy (EISA Configuration)

2 more replies
Relevance 41.41%

I've been trying to connect a newly aquired machine to my network with no luck what-so-ever. Initially I installed Windows XP professional with SP2 onto the machine only to be hit with the infamous "Limited or no connectivity" issue. Upon researching this error, I came across various solutions including the Microsoft SP2 Patch KB884020 with no luck. I still cannot get this machine to connect to the network. Everything I've tried is listed below.

Replaced the Hub twice
Tried with no Service packs, and with 1 seperately, and service packs 1 and 2
I've tried the winsock XP fix after reading it may be a corrupt IP table
I've run a registry fix i found on some forums (i have a feeling thats the same as the winsock XP fix though)
I've flushed out my DNS
I've tried 3 different network adapters, an nForce Motherboard mounted one. a Realtek one, and a Sitecom one
Manually assigned an IP address in the range which DHCP would assign

All of the above has failed. It is only this machine which fails. I've got numerous other machines on my network which are all recieving dynamic IPs from DHCP perfectly every time yet this PC hasn't recieved an IP once.

I read that if you can ping the computer's local IP, and ping its loopback address successfully, it's not a corrupt IP table, but bad network drivers. However having tried 3 different network adapters with CD drivers from purchase, and drivers obtained on the inter... Read more

Answer:Unreachable network/No assigning of IPs

Replace the network cable?

Instead of trying everything possible you should approach this step by step. Use a static IP when testing at all times.

Do you get an ethernet link? (LEDs)
Do ARP requests succeed?
Big pings?
What about duplex and speed settings?

3 more replies
Relevance 41.41%


I have frequent internet connection lately after buying a new wireless router after the old one got broken.. I tried pinging the google to know whether i am still connected or losing my internet..

After few minutes there will be a Request Timeout followed by Reply from (My WAN IP) : Destination Host Unreachable

Linksys E900 300mbps

Microsoft Windows XP [Version 5.1.2600]
(C) Copyright 1985-2001 Microsoft Corp.

C:\Documents and Settings\Admin>ipconfig/all

Windows IP Configuration

Host Name . . . . . . . . . . . . : win-xp-sp3-2010
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Unknown
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No

Ethernet adapter Local Area Connection:

Media State . . . . . . . . . . . : Media disconnected
Description . . . . . . . . . . . : Realtek PCIe FE Family Controller
Physical Address. . . . . . . . . : 00-25-22-DE-9E-4B

Ethernet adapter Wireless Network Connection:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : TP-LINK 150Mbps Mini Wireless N USB
Physical Address. . . . . . . . . : 90-F6-52-E1-2D-FC
Dhcp Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
IP Address. . . . . . . . . . . . :
Subnet Mask . . . . . . . . . . . :
Default Gateway . . . . . . . . . : 192.168... Read more

Answer:Destination Host Unreachable

Lets take it in a few steps. Try pinging your gateway to see if we get errors. If not, then ping your DNS servers ( & Then try pinging What are your results?

9 more replies
Relevance 41.41%

I can get to any website I try except Windows update.

I have moved the HDD to another PC and run MS Security Essentials, BitDefender & F-Secure scans. Then back to its own case where I ran Anti-Malware & SuperAntiSpyware. HijackThis also ran but still no Windows Update.

I have tried running IE in Safe mode - same problem. I did a repair install of XP - problem persists. I ran a batch file to delete the update database and reregister DLLs. Reinstalled IE 8. Still unable to reach Windows update in IE or FireFox. WinsockXPfix didn't help and an nslookup of reveals

DNS request timed out.
timeout was 2 seconds.
*** Can't find server name for address Timed out
*** Default servers are not available

All other websites on this PC come up fine, as does Windowsupdate on another PC on the same LAN. My Hosts. file contains just localhost


More replies
Relevance 41.41%

I'm trying to set up a network between two computers to run a track meet. I've followed the directions according to the instructions, setting up the TCP/IPv4 correctly on both computers. When I ping the 2nd computer I get a destination host unreachable message. How do I fix this?

Answer:Destination Host Unreachable

mcarrow said:

How do I fix this?Click to expand...

First step is to trouble shoot to determine the cause.

If you want help from somebody you need to describe your network and computers (with respect to the network).

2 more replies
Relevance 41.41%


I have no clue what the error message 'unreachable statement' is supposed to mean, but i keep getting it and cannot get rid of it without deleting these 2 statements. The error is given for the red line...


protected void findtarg(int x)
int i;
int j;
tpx = 0;
tpy = 0;
if(getNk(idxy[i][j]) == targ)
tpx = i;
tpy = j;

[B][COLOR="Red"]if(x == 0 && tpx > 0)[/COLOR][/B]
tpv = true;
mM = true;
mvl = true;
mM = false;
gst = 3;
if(x > 0 && tpx > 0)
Any ideas?

Answer:Solved: Unreachable statement?


should be


3 more replies
Relevance 41.41%

I have a NAS device with an LED link that displays it has a connection. However, when I attempt to ping the device I am getting an error saying "Destination host is unreachable". What is confusing to me is that the results say that all packets sent were received, 0% loss. Does anyone have a suggestion as to what I am doing wrong? Thank you in advance.

Pinging with 32 bytes of data:
Reply from Destination host unreachable.
Reply from Destination host unreachable.
Reply from Destination host unreachable.
Reply from Destination host unreachable.

Ping statistics for
Packets: Sent = 4, Received = 4, Lost = 0 (0% loss),

C:\>tracert rpncnas01

Tracing route to []
over a maximum of 30 hops:

1 [] reports: Destination host unreachable.

Trace complete.

C:\>pathping rpncnas01

Tracing route to []
over a maximum of 30 hops:
0 []
1 [] reports: Destination host unreachable.

Computing statistics for 25 seconds...
Source to Here This Node/Link
Hop RTT Lost/Sent = Pct Lost/Sent = Pct Address
0 []

100/ 100 =100% |
1 --- ... Read more

Answer:Destination host unreachable

How is it connected by Wireless or hard line.

Can you ping it by the host name?

4 more replies
Relevance 41.41%

I have searched everything and tried everything. Have an HP Desktop Pavilion. Purchased a MFC 8950dw Printer. One Desktop in the office Acer M3470 connected without Disks, system works beautifully. We have a Linksys wireless router. On the HP Pavilion nothing works. Continue to get "destination host unreachable". Here are the specks. Any help other than what's already been offered? I removed all firewall trying to make that work.

Answer:destination host unreachable

You need to tell us what the problem is, not what error you get. What are you trying to do? What are you pinging? Is the HP Pavillion connected to the router via WiFi or cable? Can it connect to the Internet?
Any other pertinent information would help.

1 more replies
Relevance 41.41%


I am using an old laptop as a server for Plex and Subsonic, I login to it via RDP. Often the plex server becomes unreachable. Also at times I can't login via RDP for a few minutes with an error that the host is unreachable, this issue sorts itself after a few minutes and I can then log in again.

I'm wondering could this be due to hard disk spin down as all other power setting are set to stay awake.

This is on a Windows 7 setup, thanks.

Answer:Laptop Server Becomes Unreachable

Apparently this is not due to hard disk spin down as I have set it to never spin down and still experiencing problems.

Any one with any ideas on why I may be having these issues please let me know your thoughts.

1 more replies
Relevance 41.41%

Dear Friends,
We have connected four computers with one server machine. All four machines connected through one switch. out of four computers, three computers are not pinging with the server sometimes. so, I uninstalled the network driver and installed. but, now also that three computers are not pinging with server. but, the same time pinging with any other computer, it is pinging.

So, Anyone can help for this I can solve this....

thanks in advance.....

Answer:Destination Host Unreachable

8 more replies
Relevance 41.41%

Hi all, new guy here with weird problem. I can not access website. Everytime I try I get timeout (this applies to all machines on my network). However when I bypass the router and hook up directly to the modem I can get the website. Here's what I did so far:

My Internet connection is working fine (called Comcast and it was reset from their side).
I called Crutchfield and they confirmed their website is up (Comcast guy accessed it too).
I reset my modem and router.
I reset the router to factory defaults.
I reinstalled the router firmware.
I doublechecked that access control is disabled on the router, and no entries in web filter

I am stumped, can somebody help? Thanks.

I am running:
Toshiba - DOCSIS 2.0 Cable Modem - PCX2600
D-Link DGL-4300 router
Windows 7 RC x64
All connections Cat6 cable website unreachable

12 more replies
Relevance 41.41%

All of a sudden can't connect via Modem to the Internet. Not on Broadband but seem to be getting BB related error message: DNS server unreachable or unavailable >(24-01-08-033)" Anyone got a fix for this? Nellie!

Answer:DNS server unreachable or unavailable

Try click here

5 more replies
Relevance 41.41%

Need some help with this.. I have made absoultely NO network changes anytime recently but I can no longer connect to eMule.. Me and my GF are both on a wireless Network and has gbeen working fine.. Hers can connect to servers and to KAD, but mine will say its connected to a server but will neve rupload/download, and it says the port is unreachable.. I configged mine to be the same as hers and its still not working.. I cannot connect to KAD at all.. Can one of the networking specialists help me out..

Answer:eMules - Port Unreachable

Did yours work at one time? You say you've changed nothing? Maybe your isp has started blocking the port that your runnin emule on. Try changing the port to something else and configuring your network accordingly.

5 more replies
Relevance 41.41%

My question is:-
i have a server which do not accept the ping request and throws destination host unreachable when i try to ping it from some of my client machines.  i have done so far is :-
 nothing is working.  please help..

thanks in advance for a working reply.

More replies
Relevance 41.41%

When I try to change my power options on my laptop I get an error message:
*An exception occurred while trying to run "C:\WINDOWS\system32\shell.dll, Control_RunDLL "C:\WINDOWS\system32\powercfg.cpl", Power Options"

My HiJackThis log is:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:47:52 PM, on 10/22/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment P... Read more

Answer:power options unreachable


1 more replies
Relevance 41.41%


I have installed 4 AP through a switch to my NAT connection for internet.
The AP are Linksys WAP54G set on static IP no security settings.
Now my problem is that the laptops are not getting correct IP
but if i set it manually everything works fine.
Can someone tell me why i'm not getting an IP from DHCP.

Answer:Solved: DHCP unreachable

6 more replies
Relevance 41.41%

I'm getting this message when I tracert No other website is having problems being accessed from my network, only sourceforge. A ping responds with:
Reply from Destination port unreachable.

A tracert responds with 15 successful hops, and then:
16 [] reports: Destination protocol unreachable.

I cant figure out where the problem is originating. I created a static route to allow all traffic to this address on my 1710 router. My SDSL modem is able to ping and tracert successfully. Ping and tracert from my Cisco 1710 router gives the unreachable error.
Network setup is:
LAN -------> Cisco 1710 --------> Efficient SDSL 5851

Any help is appreciated.


Answer:Destination Protocol Unreachable

10 more replies
Relevance 41.41%

Hi, I'm having a bit of trouble since last week. I have hosting my web site and my laptop can't seem to connect to the web site anymore. Everytime I try, I get an error msg: Gateway time out--- Server Unreachable.. sometimes when I repair the wireless connection I can get access, but sometimes I can't.

I've tried scanning with with Nortons antivirus and scanned with spybot and also with Adware. I'm lost in the dark right now. My Desk top computer can access the web site though.

Can someone help me please.

Answer:Error msg: server unreachable

This is what I got when I just tried that site;

"This page is used to test the proper operation of the Apache HTTP server after it has been installed. If you can read this page, it means that the Apache HTTP server installed at this site is working properly.
If you are a member of the general public:

The fact that you are seeing this page indicates that the website you just visited is either experiencing problems, or is undergoing routine maintenance."

Checking the URL with a server identification tool produced the information that it is online, but returns a "HTTP 1.0 403 Forbidden", which seems to confirm the information above.

The IP address for that domain is Sometimes, using the IP address instead of the URL works better, although I don't expect it will make much difference in this particular case.

3 more replies
Relevance 41%

hi all, i have my xbox and my router all on the same router, my subnet is the same and they are on the same network , im trying to media share from my windows 7 to my xbox 360, when i ping my xbox ip i get this:


Pinging with 32 bytes of data:
Reply from Destination host unreachable.
Reply from Destination host unreachable.
Reply from Destination host unreachable.
Reply from Destination host unreachable.

Ping statistics for
Packets: Sent = 4, Received = 4, Lost = 0 (0% loss),


i have turned on every file sharing option i can find ( i think ) i tryed this without my firewall on, same thing. please help me this is doing my head in!

Thanks very much


Answer:ping; Destination host unreachable

Is there a default gateway option that you can put in for the xbox?

9 more replies
Relevance 41%

I am having problems on my laptop using things like Cortana across user accounts. The wheel spins and spins when I click on Cortana. I think the problem stems from the fact edge and IE11 cannot load or go into things like account settings. It's only this causing the issue, all other sites work apart from these critical MS sites. I've tried changing DNS settings to alternates like google but nothing works to fix this. Any advice would be greatly appreciated? On my other desktop PC I have no issues. All language settings and packs are correctly set as UK. Am at a total loss. I tried a restore point but that was no better. I've had this issue crop up intermittently ever since getting the laptop. Sometimes it works ok but after a while the issue will re-occur without rhyme or reason. I notice under family setitngs 'Can't connect to family settings, your user data may not be upto date' sometimes comes up too. It's as if the laptop is having trouble connecting to MS server some of the time unreachable via edge and IE11

The machine seems to be having real problems signing into MS. For example if I launch films and TV I see lower left 'Can't sign in'. I think there is something amiss logging into the MS account causing all the issues. Store is slow and unable to update apps, always an error message after ages of acquiring license. I don't really want to have to try and create a new user acc given everything I have setup/installed

Is there a way of signing out of the MS account and signing back in because something is seriously screwed up


2 more replies
Relevance 41%

I am running a website on Windows 8.1 with IIS and all morning I could access the website. By afternoon I could not access the website. I did not make any changes. I ping the website and my computer IP address and I get: Reply from Destination host unreachable. I am new to networking. Can anyone give me any help as to how to go about fixing this?

Answer:Reply from Destination host unreachable

12 more replies
Relevance 41%


I recently upgraded my computer to Windws XP 64, and my "my documents" folder on my previous setup is no unavailabe. I have alot of data that i would like to keep, is there anyway that I can retrieve this data.

Once I click on the folder in the Documents and Settings folder an error window appears with 'Access denied'.

I would very much appreaciate it if someone could recommend some software to retrieve my data, or suggest omeway of bypassing this restriction.

Many thanks in advance


Answer:Unreachable Folder After A Windows Reinstallation.

Is it no longer available because it is lock or because it appears to be missing?

3 more replies
Relevance 41%

What does "Unreachable Read Error" means in Nero Express, damn annoying when 95% complete and it stops, thanks EOS.

More replies
Relevance 41%

From a PC (called PC1 later on; running W10), I do not see other PCs or multimedia boxes connected on my local network.
Using \\192.xx.yy.zz doesn?t work.
From a W10 tablet PC (called PCt later on), I see other connected devices: Dune HD and PC1. From PCt I can even navigate into PC1 directories.

In PC1 Network and Sharing Center, I cannot enable file sharing.
When clicking on the button to activate it and then saving the changes, I notice, when reopening the parameters window, that it hasn?t been changed. It remains disabled.

The "computer browser" Service will not start because of dependencies (1068 error).
The "workstation" Service will not start because of dependencies (1068 error). This service is required to "computer browser"

Thanks in advance for your help.

Answer:Devices on my local network unreachable

Have you set up a Home Group? In my experience that's the easiest way to get proper sharing setup.

3 more replies
Relevance 41%

how should i do it ?
i have level one router if its matter .

(this is for utorrent, recently im not able to upload properly )

Answer:Port is unreachable even when the Firewall is off . need to open it

Check that the port is forwarded to your local IP on the router web setup. You need your PC to have static local IP and the firewall needs to allow incoming connection on that port. uTorrent must be configured to use a fixed port (any number will do).

9 more replies
Relevance 41%

Is there a way of monitoring this queue?

I have some emails that are showing in the tracking viewer of having the wrong email address and therefore failed. I've read up that there is an 'unreachable queue' but I can't see where it is to view it and whether I can move or force the items to deliver that are in there.

Can anyone advise please?

More replies
Relevance 41%

From a PC (called PC1 later on; running W10), I do not see other PCs or multimedia boxes connected on my local network.
Using \\192.xx.yy.zz doesn?t work.
From a W10 tablet PC (called PCt later on), I see other connected devices: Dune HD and PC1. From PCt I can even navigate into PC1 directories.

In PC1 Network and Sharing Center, I cannot enable file sharing.
When clicking on the button to activate it and then saving the changes, I notice, when reopening the parameters window, that it hasn?t been changed. It remains disabled.

The "computer browser" Service will not start because of dependencies (1068 error).
The "workstation" Service will not start because of dependencies (1068 error). This service is required to "computer browser"

Thanks in advance for your help.

Answer:Devices on my local network unreachable

Have you set up a Home Group? In my experience that's the easiest way to get proper sharing setup.

0 more replies
Relevance 41%


I was trying to recover some lost files with recovery software, I came across something unpleasant - my partitions contain 'Found' folder that contains 'Found.NNNN' N for numbers, folders that contain files previously deleted with their filenames also remaining. I want these files cleared, the thing is, unlike $RECYCLE.BIN that can be accessed if you unhide system folders and such, these folders do not exist and yet recovery software finds them.

Can you tell me what application can erase these folders and files so that they do not appear under the recovery software? Eraser does not detect the folder as existent. It is something like ROOT\Folder\ but I don't know which erasing program can find and delete the whole folder.

Answer:Need to delete content in unreachable folder

These things are usually made by CHKDSK.

If you have a lot of them, I'd suspect a failing hard drive.

11 more replies
Relevance 41%

To put it simply, I'm just trying to successfully ping machines attached to a hub for now. Here is the setup:

5 Port ethernet Hub
Computer connected to port 1
Linux machine connected to port 2
Linux machine connected to port 3

Both linux machines have (different) static IP addresses. None of this is connected to any outside network, internet, etc. I don't know what I'm doing wrong with this setup because I can't successfully ping the Linux machines from my computer and I'm not sure what the issue is.

Answer:Ping-Destination Host unreachable?

Are the assigned ip address to each machine on the same subnet?

for example if I set the following ip addresses

1 - with a subnet of
2 - with a subnet of
3 - with a subnet of

so each computer is on the 192.168.1 network.
In this example each computer would be able to ping each other.

if each computer was configured on different networks like the following:

1 - with a subnet of
2 - with a subnet of
3 - with a subnet of

In this case each computer is on a different network 192.168.1, 192.168.2, and 192.168.3, so in this example the only way for those computers to talk to each other is if a router was in place on each network. Without a router you would get network unreachable or something to that effect.

2 more replies
Relevance 41%

Hello everyone.

After recently having a problem re-registering a company's Domain name that had expired without them even knowing about it and waiting for the public DNS records to propogate, their office can now receive emails etc from people outside their LAN but can now no longer send emails from within to outside the LAN. It seems their Exchange server is queuing up all outgoing emails and is giving a error message to senders saying "host unreachable"

Any Exchange Gurus that can help out here?

Didn't change any settings on any of the servers, just registered their domain name and waited for the ISP's DNS records to finish propogating. Do I have reset something like the internal DNS server?


Answer:Exchange5.5 host unreachable problem

7 more replies
Relevance 41%

Linux IPv6 Destination Unreachable problem

Please help! I am quite new to network programming and so I tested out a sample client-Server application. The TCP or UDP client is either setup as either IPv6 or IPv4, depending on the server address type input by the user on a command line. The server has 4 sockets, one each for TCP/IPv6, TCP/IPv4, UDP/IPv6, UDP/IPv4. There is no router on this network, and the two platforms are on the same link

The client is able to communicate with the server in following combinations:

1) Client TCP IPv4, Server IPv4
2) Client UDP IPv4, Server IPv4
3) Client TCP IPv6, Server IPv4 using IPv6 mapped IPv4 address
4) Client UDP IPv6, Server IPv4 using IPv6 mapped IPv4 address
5) Client TCP IPv6, Server IPv6 both on same plaforms
6) Client UDP IPv6, Server IPv6 both on same plaforms

However, the following does not work is client and server are on diffent platforms
1) Client TCP IPv6, Server IPv6
2) Client UDP IPv6, Server IPv6

However, the application has a problem connecting. The tracedump6 shows the ICMPv6 message indicating “Destination unreachable”, “Unreachable address”.

The ping6 command from client to server platform works fine. I am at a deadend.

Following are some of the information for debugging. Will appreciate any help I can get in fixing this problem.

>>>>>>>>>>>>>>ifconfig on server platform >>>>>>>>>>>>>>>>>>>>&... Read more

Answer:Linux IPv6 - Destination unreachable

9 more replies
Relevance 41%

This is driving me nuts! I have no problems at all with connecting via the WWW and Firefox/IE. However, any attempt to use FTP results in a time-out. The FTP client site said to try pinging but I find that ping times out as well. Could someone please help a clueless non-techie? I have no idea how to even begin troubleshooting this.

Thanks a bunch.

Answer:Solved: FTP & Ping Unreachable - But I CAN Browse WWW

8 more replies
Relevance 41%

I am having problems on my laptop using things like Cortana across user accounts. The wheel spins and spins when I click on Cortana. I think the problem stems from the fact edge and IE11 cannot load or go into things like account settings. It's only this causing the issue, all other sites work apart from these critical MS sites. I've tried changing DNS settings to alternates like google but nothing works to fix this. Any advice would be greatly appreciated? On my other desktop PC I have no issues. All language settings and packs are correctly set as UK. Am at a total loss. I tried a restore point but that was no better. I've had this issue crop up intermittently ever since getting the laptop. Sometimes it works ok but after a while the issue will re-occur without rhyme or reason. I notice under family setitngs 'Can't connect to family settings, your user data may not be upto date' sometimes comes up too. It's as if the laptop is having trouble connecting to MS server some of the time unreachable via edge and IE11

The machine seems to be having real problems signing into MS. For example if I launch films and TV I see lower left 'Can't sign in'. I think there is something amiss logging into the MS account causing all the issues. Store is slow and unable to update apps, always an error message after ages of acquiring license. I don't really want to have to try and create a new user acc given everything I have setup/installed

Is there a way of signing out of the MS account and signing back in because something is seriously screwed up


1 more replies
Relevance 41%

I have had a Power Supply failure and it caused problems with computer.

I restored a prior image to the Operating system.

Decided to back up a lot of files to USB 2 Portable Drive. Worked well first day.

Next day XP did not start well so restarted with Safe Mode.

I think I may have unset the USB Drivers.

On connecting the USB Portable Dive the PX System would not connect to the drive.

Microsoft displayed a message " Unable to write $Msft.. (could not get all the name).

Since then I cannot access the USB Portable drive as windows says "The file or directory is corrupted and runreachable."

Can anyone recommend software to use to recover the USB Portable Drive?


Answer:USB Portable Drive - corrupted or unreachable

I take it this is an external hard drive? And does the USB port recognize other devices, like a flash drive?

I would disconnect and unplug the device, reboot everything. If this doesn't work, can you check the device with another computer?

Need to narrow down if it is the device or your machine.:wave:wave:wave

3 more replies
Relevance 41%

The nic is fine, I can ping the nic. Am unable to ping the outside world, I am not using a router, I am using XPPro. Have run Ad-Aware & deleated what it found, have deleated winsock2 & replaced it with a good copy. Have run CW Shredded, nothing found. I have had this problem on several computers & ended up formating the HD & installing a new copy of XPPro to resolve the problem. I have connected my laptop and am able to get out fine, this is a software problem & not equipment. Any help will be greatly appricated


More replies
Relevance 41%


Since half a year I'm using a simple Sweex RPO001 router for my homenetwork to which 3 computers are connected. Untill last week I haven't encountered any major difficulties. Three days ago my daughter's computers couldn't detect a connection to the internet althought her MSN was normally working. The other computers were normally functioning. At first I simply tried to solve the problem by disconnecting and rebooting both my modem en router. In the past this proved sufficiently to solve similar problems. The result was that none of the computers were able to gain access to the internet. I logged into the router to check it's status and found out that the router was unable to reach the gateway. Repeatedly refreshing, resetting and reconfiguring the router with the wizard didn't have any effect. When I directly connect a computer with the modem it directly detects the LAN of my provider. I have surfed the internet to find a solution but till now I haven't been succesfull. I hope someone has a helpful suggestion

Answer:Unreachable gateway Sweex router

I already solved the problem myself. Probably in one way or the other the firmware got damaged because after replacing the firmware with a downloaded copy and resetting en reconfiguring the router the problem was gone.

1 more replies
Relevance 41%

Hi guys I'm new here hope you can help :)
- have seen a similar thread in windows, probably should have been in networking section I apologize.
My internet provider has Wi-fi networks across the city, our tenement house has a receiver.
I am connected to router via cable. With very varied frequency I am getting random packet loss - up to 5% which makes e.g. gaming annoying.
It does so for all websites I tried.

At times there is no packet loss for even 5 minutes, sometimes every 20seconds or so I get "request timed out" followed by " destination unreachable"

- Is the issue on providers' site, or between my PC and the router?
-Any solutions to fix this?

Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corporation. All rights reserved.

C:\Users\VaclavDusek>ipconfig /all

Windows IP Configuration

Host Name . . . . . . . . . . . . : VaclavDusek-PC
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No

Ethernet adapter Local Area Connection:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Marvell Yukon 88E8071 PCI-E Gigabit Ether
net Controller
Physical Address. . . . . . . . . : 90-FB-A6-2A-99-9F
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::acc2:aaf7:f753... Read more

Answer:Destination Unreachable - 1-5% packet loss

Just to add the ISP got pretty bad reviews about unstability etc.
- just need to know if this is likely on the provider's side

19 more replies
Relevance 41%

Just happen to read my last attack notice
It gave a source IP address
Destination port: N/A
Attack type: ICMP Destination Unreachable

There were four entries of this in 2 minutes, in my firewall log. Any ideas what this is?


Answer:ICMP Destination Unreachable warning

These are usually just ping entries. Some applications and sites use them just to check on the validity of connections. It's possible someone was scanning ports, but that really depends on the pattern, and more sophisticted scanners use a scattered pattern that is not so easily detected by firewalls.

In any case, it was blocked. In some cases, you may find that you need to allow some ICMP traffic for applications to work correctly.

1 more replies
Relevance 41%

I keep having an issue with one specific site and the problem is incredibly odd. Every weekend for the last 3 weeks, starting at about 11am on saturday and going through the weekend until monday, the site in question will be totally unreachable from any PC on my network. I can reach it from my phone on VZW LTE, but not from the WLAN. If I ping the site I get an error "Destination Net Unreachable". If I run a tracert I go about 15-18 hops before getting the same error. If I plug the PC directly into the modem, the website is reachable. That definitely indicates a router-side problem. The thing is, the router's configuration hasn't been touched in months, if not years, and the problem is recent. the router in question is a DIR-655, and there is no QOS, no parental controls, nothing that has been manually set up that would obviously be causing this issue. The setup is as barebones as it gets. Again, it is one specific website (, everything else works 100% fine. Any ideas?

More replies
Relevance 41%

Dear all

Not sure if Networking is the right category for this, but here goes...

We have several Windows Server 2003 boxes in a remote hosting centre that we connect to via Remote Desktop Connection from our offices. At the end of each working day, it's usual practice simply to close the RDC window, and in the morning we can reconnect to the same session and quickly resume working. But on a regular basis, one of the boxes (let's call it W2) becomes unreachable by morning, as in, it's unpingable and to all intents and purposes no longer on the internet.

To resolve this we can use Terminal Services Manager on one of the other remote boxes (let's call it W3) to connect to the problem box and reset the session. But we can only do this from W3 - none of the other remote machines can see W2 at this point in time. When the session has been reset, W2 once again becomes reachable remotely.

The Event Log shows up various suggestions but none of them are conclusive. About a week ago I had this, with a Source of "TermDD", which I thought looked promising:

Event ID 50
The RDP protocol component X.224 detected an error in the protocol stream and has disconnected the client.
But I've not had it since and the strage behaviour has continued.

I've also had messages with a Source of "W32Time" that go like this and suggest the moment at which the disconnect occurs:

The time provider NtpClient is currently receiving valid time data ... Read more

Answer:Remote Windows server becomes unreachable

Is bumping frowned upon around here? Apologies if so...

1 more replies
Relevance 41%

I have done with network of 8 networks then 4 LAN's as departments.
First I have done successfully the connect from LAN 1 to LAN 2 and I can ping all hosts from LAN 1 to LAN 2 in both network and vice versa using RIP routing.
Second when I need to do same thing but I need LAN 3 to reach all LAN's and Facing Destination host unreachable problem.

what I should be do.
I hope you can help me to find where my mistake to solve it.

Thank you very much.

Answer:Solved: Destination host unreachable.

Given that you are using RIP (an old routing protocol not used in current production environments), and the name of the file you attached is "assignment2", I think it's safe to assume this is a school assignment.

Unfortunately we cannot provide assistance with school assignments here.

I have asked for an administrator/moderator to stop by your thread.

2 more replies
Relevance 41%

ive configured my pc to aol broadband, ive connected laptop to router with erthenat cable as "stated in manual", the icon in bottom right of screen says siganl strength excellent , wireless connected, but as soon as i unplug the erthenet cable the internet goes off please helpmy router is thomson speedtouch 576

More replies
Relevance 40.59%

I've recently realised that I am unable to access a few websites, including Microsoft and most anti-virus sites such as Norton, Microtrend, Kaspersky etc.
However, I believe this issue has been prevalent for sometime and have no knowledge of what may have caused it.
I receive the error message 'Server not found' while using Firefox, and have confirmed the same problem with IE.
I'm aware of lingering viruses on my system such as wc2.virut but I am not requesting help with this, merely mentioning for additional information.

Here is my HiJackThis log:

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:25:55 PM, on 14/03/2011
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.17023)
Boot mode: Normal

Running processes:
C:\Program Files\Common Files\Microsoft Shared\Ink\KeyboardSurrogate.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:&#... Read more

Answer:Microsoft & Anti-Virus Websites Unreachable

Hello and welcome to the forums!My secret agent name on the forums is SweetTech (you can call me ST for short), it's a pleasure to meet you. I am very sorry for the delay in responding, but as you can see we are at the moment being flooded with logs which, when paired with the never-ending shortage of helpers, resulted in the delayed responding to your thread.I would be glad to take a look at your log and help you with solving any malware problems.If you have since resolved the issues you were originally experiencing, or have received help elsewhere, please inform me so that this topic can be closed. If you have not, please adhere to the guidelines below and then follow instructions as outlined further below:Logs from malware removal programs (OTL is one of them) can take some time to analyze. I need you to be patient while I analyze any logs you post. Please remember, I am a volunteer, and I do have a life outside of these forums.Please make sure to carefully read any instruction that I give you. Attention to detail is important! Since I cannot see or directly interact with your computer I am dependent on you to "be my eyes" and provide as much information as you can regarding the current state of your computer.If you're not sure, or if something unexpected happens, do NOT continue! Stop and ask!In Windows Vista and Windows 7, all tools need to be started by right clicking and selecting Run as Administrator!These instru... Read more

12 more replies