Mourning the loss of our friend, WhitPhil.
There's no such thing as a stupid question, but they're the easiest to answer.
JoinTour
Login
Search
 
Archive: Hardware
Tag Cloud
access audio black screen blue screen boot bsod connection crash dell desktop drivers dvd email error excel excel 2003 firefox hard drive hardware hijackthis internet keyboard laptop malware monitor motherboard network networking outlook problem ram recovery router safe mode screen slow sound spyware tdlwsp.dll trojan vba video virus vista vundo windows windows 7 windows vista windows xp wireless
Search
Search for:
Tech Support Guy Forums > Software & Hardware > Hardware > Archive: Hardware >
Solved: No Sound Missing Plug & Play Software Enumerator

Tip: Click here to scan for System Errors and Optimize PC performance
[ Sponsored Link ]

Closed Thread
 
Thread Tools
Relzuz's Avatar
Senior Member with 166 posts.
 
Join Date: Apr 2007
Location: Finland
Experience: Intermediate
08-Apr-2007, 05:37 AM #31
I have been searching for answere from internet. The advises dosen't work....... All is all right, just i cant choose my Soundcard as primary, and it says that i dont have file 4e.tmp
dvk01's Avatar
Moderator with 27,656 posts.
 
Join Date: Dec 2002
Location: Loughton, Essex, UK
08-Apr-2007, 06:03 AM #32
Download SDFix and save it to your Desktop.

Double click SDFix.exe and it will extract the files to %systemdrive%
(Drive that contains the Windows Directory, typically C:\SDFix)

Please then reboot your computer in Safe Mode by doing the following :
  • Restart your computer
  • After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually;
  • Instead of Windows loading as normal, the Advanced Options Menu should appear;
  • Select the first option, to run Windows in Safe Mode, then press Enter.
  • Choose your usual account.
  • Open the extracted SDFix folder and double click RunThis.bat to start the script.
  • Type Y to begin the cleanup process.
  • It will remove any Trojan Services and Registry Entries that it finds then prompt you to press any key to Reboot.
  • Press any Key and it will restart the PC.
  • When the PC restarts the Fixtool will run again and complete the removal process then display Finished, press any key to end the script and load your desktop icons.
  • Once the desktop icons load the SDFix report will open on screen and also save into the SDFix folder as Report.txt
    (Report.txt will also be copied to Clipboard ready for posting back on the forum).
  • Finally paste the contents of the Report.txt back on the forum with a new HijackThis log
__________________
Derek Microsoft MVP/Windows - Security Thespykiller | Security & Privacy
I am helping you, please help me by donating to help keep the Hedgehog Rescue Centre running
Relzuz's Avatar
Senior Member with 166 posts.
 
Join Date: Apr 2007
Location: Finland
Experience: Intermediate
08-Apr-2007, 06:36 AM #33
SDfix report and HijackThis log
Original files attached


SDFix: Version 1.77

Run by Ren‚ S†gbom - su 08.04.2007 - 13:21:30,01

Microsoft Windows XP [versio 5.1.2600]

Running From: C:\SDFix

Safe Mode:
Checking Services:

Name:
PDM
winsvcmon

ImagePath:
C:\WINDOWS\system32\4E.tmp
C:\WINDOWS\System32\winsvcmon.exe

PDM - Deleted
winsvcmon - Deleted



Restoring Windows Registry Values
Restoring Windows Default Hosts File


Rebooting...

Normal Mode:
Checking Files:

Below files will be copied to Backups folder then removed:

C:\WINDOWS\system32\.exe - Deleted
C:\Documents and Settings\Ren‚ S†gbom\Local Settings\Temp\MST80.tmp - Deleted
C:\WINDOWS\SoftwareDistribution\AuthCabs\7971f918-a847-4430-9279-4a52d1efe18d\MST80.tmp - Deleted
C:\WINDOWS\system32\.exe - Deleted
C:\WINDOWS\system32\1.tmp - Deleted
C:\WINDOWS\system32\2.tmp - Deleted
C:\WINDOWS\system32\2.tmp - Deleted
C:\WINDOWS\system32\1.tmp - Deleted



ADS Check:

Checking if ADS is attached to system32 Folder
C:\WINDOWS\system32
No streams found.

Checking if ADS is attached to svchost.exe
C:\WINDOWS\system32\svchost.exe
No streams found.



Final Check:

Remaining Services:
------------------



Authorized Application Key Export:

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameter s\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\\Program Files\\Common Files\\System\\MSIWA32.exe"="C:\\Program Files\\Common Files\\System\\MSIWA32.exe:*:Enabled:Integrated Windows Authentication"
"C:\\WINDOWS\\system32\\4E.tmp"="C:\\WINDOWS\\system32\\4E.tmp:*:Enabled:Mi crosoft (R) Windows Protocol Deployment Manager"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enable d:@xpsp2res.dll,-22019"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"


[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameter s\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enable d:@xpsp2res.dll,-22019"
"C:\\Program Files\\MSN Messenger\\msnmsgr.exe"="C:\\Program Files\\MSN Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
"C:\\Program Files\\MSN Messenger\\livecall.exe"="C:\\Program Files\\MSN Messenger\\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"


Remaining Files:
---------------

Backups Folder: - C:\SDFix\backups\backups.zip

Checking For Files with Hidden Attributes:

C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\03a895b62c429db91b5940d438ce6891\download\BIT56.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\090527afad97cdf98c4c66d5de9c9d10\BIT2E.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\0cce13ec544707789475f05dfaa8d0cc\download\BIT4D.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\1033b90066ae07b2f96ab361feb2676d\BIT34.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\17851d36112163931acfa28af48c8ad0\BIT41.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\1c7e82e6a4a98d7309da77fde0846df0\BIT32.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\1e08f88a29cbd24af20346ffd6b9f7a8\download\BIT4F.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\202be197fb206981eaae3984d0a19444\BIT27.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\2c9a5ccff748018e595941e1f5ac90d1\BIT25.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\383ffbfad46fcab6e8897d866df3378f\BIT37.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\39e260f541d2848892f8c6c3aeaefc86\BIT3C.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\3ae9a995605f1d896504b082a66514e1\download\BIT76.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\40c33b1b6b6b9b1b5a2c0a519ff54552\BIT3F.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\448ce64f42870dc316b5e40b9ce7327b\download\BIT4E.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\4a49f159a136b7c35e991b8feb5fccc9\download\BIT5B.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\4ae7b7488f2519148ba95fd809209ffe\download\BIT58.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\4fd71f738af510b6780bc96e325f066e\BIT40.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\5514e65b633fea538ae256458d4950b8\BIT28.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\5f3167d0b3258a70247d25e50ae22a53\download\BIT7D.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\6173c515e9b4956141acca5c585d7fb0\download\BIT7E.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\66d521c5e5847cd035d2aefd0ebf72f9\BIT24.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\6aa9036d2fdc6aa14344d7aa1e5e2647\download\BIT47.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\6c8fd3ac6e54ae8505d606b191a3e0a1\BIT26.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\6f8a060ad49ea75c47e1509f061beaf8\download\BIT46.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\76ad4e455538984f7b40e0031440aa45\BIT43.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\7b6e99f6b0628ab5037e0c7698be9ad7\BIT35.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\8217c58707f0ce5177776d2850c9ae77\BIT2D.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\837182c399ce551ebd80e1c1ebf08e66\BIT31.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\88a0e45b27ce7c5333dee03aee3cb017\BIT23.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\8cf09ae1a09d36e8076dbfc9aa6dd55f\BIT3E.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\9174609d8b691cd36e32eb813fb5ccac\download\BIT5E.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\9764149b651bb42f8cd63d8d33120dda\BIT3B.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\9901f2bed932843cf397c5c9728ad209\download\BIT49.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\b29c37b166abce30c687d23dd3479ae1\BIT3A.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\b7e638232972c3d180fb63842a1b133c\BIT38.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\b86a750ec5cf242b13c765191cccd175\BIT39.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\b87f9a0c385a1c58e4d4efdf365279c0\BIT2F.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\c924f05d9d3f1615aab41fb5aa7b003d\download\BIT4B.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\ce25b7821b513ae02f3ecae28a7ead4d\download\BIT48.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\d32e6a64ec28df61afba70da6e6ce185\download\BIT55.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\d52a1ee461282437a4be543368146bf5\download\BIT4A.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\db3398291bb6ae204a27367ba3251397\download\BIT6D.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\dfc149d9d9d5529907a4de50932827ab\download\BIT7B.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\e3c26b8545e44dfbe4d1cda1895f0ccb\BIT42.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\e43bfa5a1b6abee8722745eb481b8f49\download\BIT70.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\e4706a48712a139551b1efc858d9a38e\download\BIT50.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\e742ac4a329ce7dbd15066394d5a1fb4\download\BIT7F.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\f054d1ebd2e0012260f6a8a4a313ecac\download\BIT74.tmp
C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\f4b8fcab7aa3b72f5ff244bcf0262981\BIT36.tmp

Finished


Logfile of HijackThis v1.99.1
Scan saved at 13:32:41, on 8.4.2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\ZoneLabs\avsys\ScanningProcess.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\ZoneLabs\avsys\ScanningProcess.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\slserv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\CAP3RSK.EXE
C:\WINDOWS\system32\wuauclt.exe
\?\C:\WINDOWS\system32\WBEM\WMIADAP.EXE
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Ahead\InCD\InCD.exe
C:\Program Files\Google\Gmail Notifier\gnotify.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\CAP3LAK.EXE
C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\CAP3SWK.EXE
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE
C:\PROGRA~1\ZONELA~1\ZONEAL~1\MAILFR~1\mantispm.exe
C:\Program Files\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://shell.windows.com/fileassoc/f...D=040b&Ext=tmp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [CAP3ON] C:\WINDOWS\System32\spool\drivers\w32x86\3\CAP3ONN.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] C:\Program Files\Google\Gmail Notifier\gnotify.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - Global Startup: Canon LASER SHOT LBP-1120 - Tilaikkuna.LNK = C:\WINDOWS\system32\spool\drivers\w32x86\3\CAP3LAK.EXE
O4 - Global Startup: Logitech SetPoint.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsu...?1175894433843
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsof...?1175899833281
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InCD Helper (InCDsrv) - Ahead Software AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: Integrated Windows Authentication - Unknown owner - C:\Program Files\Common Files\System\MSIWA32.exe (file missing)
O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe





Original files attached
Attached Files
File Type: log hijackthis.log (6.1 KB, 98 views)
File Type: txt report.txt (7.6 KB, 88 views)
dvk01's Avatar
Moderator with 27,656 posts.
 
Join Date: Dec 2002
Location: Loughton, Essex, UK
08-Apr-2007, 06:44 AM #34
still one there that sdfix doesn't recognize yet

1. Please download The Avenger by Swandog46 to your Desktop.
  • Click on Avenger.zip to open the file
  • Extract avenger.exe to your desktop

2. Copy all the text contained in the quote box below including the " Files to delete:" line, to your Clipboard by highlighting it and pressing (Ctrl+C):

Quote:
Files to delete:
C:\Program Files\Common Files\System\MSIWA32.exe

Drivers to unload:
Integrated Windows Authentication

Note: the above code was created specifically for this user. If you are not this user, do NOT follow these directions as they could damage the workings of your system.


3. Now, start The Avenger program by clicking on its icon on your desktop.
  • Under "Script file to execute" choose "Input Script Manually".
  • Now click on the Magnifying Glass icon which will open a new window titled "View/edit script"
  • Paste the text copied to clipboard into this window by pressing (Ctrl+V).
  • Click Done
  • Now click on the Green Light to begin execution of the script
  • Answer "Yes" twice when prompted.
4. The Avenger will automatically do the following:
  • It will Restart your computer. ( In cases where the code to execute contains "Drivers to Unload", The Avenger will actually restart your system twice.)
  • On reboot, it will briefly open a black command window on your desktop, this is normal.
  • After the restart, it creates a log file that should open with the results of Avenger’s actions. This log file will be located at C:\avenger.txt
  • The Avenger will also have backed up all the files, etc., that you asked it to delete, and will have zipped them and moved the zip archives to C:\avenger\backup.zip.
5. Please copy/paste the content of c:\avenger.txt into your reply.

when it has rebooted for the second time


please go to http://www.thespykiller.co.uk/index.php?board=1.0 and upload these files so I can examine them and distribute them to antivirus companies.
Just press new topic, fill in the needed details and just give a link to your post here & then press the browse button and then navigate to & select the files on your computer, If there is more than 1 file then press the more attachments button for each extra file and browse and select etc and then when all the files are listed in the windows press send to upload the files ( do not post HJT logs there as they will not get dealt with)

Files to submit:

C:\avenger\backup.zip

then tell us how things are and if sound is back
__________________
Derek Microsoft MVP/Windows - Security Thespykiller | Security & Privacy
I am helping you, please help me by donating to help keep the Hedgehog Rescue Centre running
Relzuz's Avatar
Senior Member with 166 posts.
 
Join Date: Apr 2007
Location: Finland
Experience: Intermediate
08-Apr-2007, 07:02 AM #35
Submitted to that other forum
Backup.zip submitted to that other forum & the link here.

Avneger:

Logfile of The Avenger version 1, by Swandog46
Running from registry key:
\Registry\Machine\System\CurrentControlSet\Services\cgnroqgm

*******************

Script file located at: \??\C:\ggwgvnvy.txt
Script file opened successfully.

Script file read successfully

Backups directory opened successfully at C:\Avenger

*******************

Beginning to process script file:



File C:\Program Files\Common Files\System\MSIWA32.exe not found!
Deletion of file C:\Program Files\Common Files\System\MSIWA32.exe failed!

Could not process line:
C:\Program Files\Common Files\System\MSIWA32.exe
Status: 0xc0000034

Driver Integrated Windows Authentication unloaded successfully.

Completed script processing.

*******************

Finished! Terminate.
dvk01's Avatar
Moderator with 27,656 posts.
 
Join Date: Dec 2002
Location: Loughton, Essex, UK
08-Apr-2007, 07:30 AM #36
the file was already gone so can't have been responsible for your problems but there were others that sdfix dealt with

it might be that now they have been removed you might get sound but I think you will need to uninstall the hardware involved and let windows rediscover the drivers again
__________________
Derek Microsoft MVP/Windows - Security Thespykiller | Security & Privacy
I am helping you, please help me by donating to help keep the Hedgehog Rescue Centre running
Relzuz's Avatar
Senior Member with 166 posts.
 
Join Date: Apr 2007
Location: Finland
Experience: Intermediate
08-Apr-2007, 07:34 AM #37
??
And thats means what in english. I have to unistall all drivers or shall i reinstall windows. I didin't fully undrestood what you meaned.
Relzuz's Avatar
Senior Member with 166 posts.
 
Join Date: Apr 2007
Location: Finland
Experience: Intermediate
08-Apr-2007, 08:45 AM #38
Holy mouse. I dont get that 4e.tmp error enymoore, but still no sound.
~Candy~'s Avatar
Former Administrator with 104,744 posts.
 
Join Date: Jan 2001
Experience: Advanced
08-Apr-2007, 09:41 AM #39
Reinstall soundcard program from the motherboard cd disk again. There is an actual program that gets installed as well. REMOVE EVERYTHING under sound in the control panel first.
Relzuz's Avatar
Senior Member with 166 posts.
 
Join Date: Apr 2007
Location: Finland
Experience: Intermediate
08-Apr-2007, 09:50 AM #40
I dont have the motherboard CD
Relzuz's Avatar
Senior Member with 166 posts.
 
Join Date: Apr 2007
Location: Finland
Experience: Intermediate
08-Apr-2007, 10:15 AM #41
I installed whole crap from a fujitsu CD what included Windows XP with SP1. Motherboard thingys and so on...
Relzuz's Avatar
Senior Member with 166 posts.
 
Join Date: Apr 2007
Location: Finland
Experience: Intermediate
08-Apr-2007, 10:50 AM #42
I give up. Just to buy a new PC
Blackmirror's Avatar
Computer Specs
Distinguished Member with 28,047 posts.
 
Join Date: Dec 2006
Location: uk
Experience: Chocoholic
08-Apr-2007, 10:58 AM #43
Dont give up
download everest from here http://www.majorgeeks.com/download4181.html

and post back details of your motherboard please
ozrom1e's Avatar
Computer Specs
Distinguished Member with 11,853 posts.
 
Join Date: May 2006
Experience: Advanced
08-Apr-2007, 11:01 AM #44
Quote:
Originally Posted by Relzuz
I dont have the motherboard CD
If you go to thew computer manufacturer or the motherboard manufacturers web site you should be able to locate the proper software disk for your model computer and download it and then burn the data to a CD-R disk then install the appropriate drivers and programs.
Relzuz's Avatar
Senior Member with 166 posts.
 
Join Date: Apr 2007
Location: Finland
Experience: Intermediate
08-Apr-2007, 12:48 PM #45
I'm amateur
Dude, I have searched it for long, i have a rare motherboard. Only made for fujitsu siemens. Asus P4GE-FSC
I have found nothing. If you find something i would be glad!
Closed Thread Bookmark and Share

THIS THREAD HAS EXPIRED.
Are you having the same problem? We have volunteers ready to answer your question, but first you'll have to join for free. Need help getting started? Check out our Welcome Guide.

Smart Search

Find your solution!



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
WELCOME TO TECH SUPPORT GUY! Are you looking for the solution to your computer problem? Join our site today to ask your question -- for free! Our site is run completely by volunteers who want to help you solve your computer problems. See our Welcome Guide to get started.

Thread Tools


You Are Using:
Server ID
Advertisements do not imply our endorsement of that product or service.
All times are GMT -5. The time now is 04:21 PM.
Copyright © 1996 - 2009 TechGuy, Inc. All rights reserved.
Powered by vBulletin, Copyright © 2000 - 2009, Jelsoft Enterprises Ltd.
Powered by Cermak Technologies, Inc.