There's no such thing as a stupid question, but they're the easiest to answer.
JoinTour
Login
Search
General Security
Tag Cloud
access acer asus bios bsod computer crash desktop driver drivers error ethernet excel freeze gaming hard drive hardware hdmi internet laptop lcd malware memory modem monitor motherboard network printer problem ram registry repair router slow software sound toshiba trojan usb video virus vista wifi windows windows 7 windows 7 32 bit windows 7 64 bit windows xp wireless xbox
Search
Search for:
Tech Support Guy Forums > Security & Malware Removal > General Security >
Windows Security Center MIA

Reply  
Thread Tools
QuantumLegacy's Avatar
Junior Member with 23 posts.
 
Join Date: Oct 2009
Experience: Beginner
03-Nov-2009, 08:16 AM #1
Windows Security Center MIA
The Information:

http://www.microsoft.com/windows/win...ty-center.aspx

As the website says, it comes pre-installed on your computer. I had it, then during my Fake Security Center Fiasco, the real one vanished. It seems to have been uninstalled or something and I can not find a link to re-download it. It just kind of vanished and when I start my computer the bubble pops up in my taskbar saying something is wrong. When I double click, it pops up saying Security Center is unavailable. Same thing happens when I try to access it from the Control Panel, which is how I know it's not the Malware I had.

The Problem/Question:
Windows Security Center is Gone. I want/need it back, perhaps?
flavallee's Avatar
Computer Specs
Trusted Advisor with 40,831 posts.
 
Join Date: May 2002
Location: Brandon/Valrico, Florida
Experience: Advanced
03-Nov-2009, 10:07 AM #2
Go here and click the green icon to download HijackThis 2.0.2.

Close all open windows, then install it in its default location: C:\Program Files\Trend Micro\HijackThis.

Run a scan with it - which will take 30 seconds or less.

Save the resulting log in Notepad.

Return here, then copy-and-paste the entire log here.

-----------------------------------------------------------------
QuantumLegacy's Avatar
Junior Member with 23 posts.
 
Join Date: Oct 2009
Experience: Beginner
04-Nov-2009, 05:18 PM #3
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 5:25:16 PM, on 10/17/2009
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v7.00 (7.00.6002.18005)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\hp\support\hpsysdrv.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\McAfee.com\Agent\mcagent.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\McAfee\MBK\McAfeeDataBackup.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\ehome\ehmsas.exe
C:\Users\user\AppData\Local\Temp\wscsvc32.exe
C:\Program Files\windows defender\MSASCui.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\DAP\DAP.EXE
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TY...esario&pf=cndt
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TY...esario&pf=cndt
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TY...esario&pf=cndt
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: livetvbar Toolbar - {ad55c869-668e-457c-b270-0cfb2f61116f} - C:\Program Files\livetvbar\tbliv0.dll
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: SBCONVERT - {31B27F2D-6BC6-451B-B3D2-4EAB36B2FC3B} - C:\Program Files\SpeedBit Video Downloader\Toolbar\tbcore3.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\PROGRA~1\mcafee\VIRUSS~1\scriptsn.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: livetvbar Toolbar - {ad55c869-668e-457c-b270-0cfb2f61116f} - C:\Program Files\livetvbar\tbliv0.dll
O2 - BHO: Microsoft Live Search Toolbar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files\MSN\Toolbar\3.0.0541.0\msneshellx.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: GrabberObj Class - {FF7C3CF0-4B15-11D1-ABED-709549C10000} - C:\PROGRA~1\SPEEDB~1\Toolbar\grabber.dll
O3 - Toolbar: Microsoft Live Search Toolbar - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - c:\Program Files\MSN\Toolbar\3.0.0541.0\msneshellx.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: SpeedBit Video Downloader - {0329E7D6-6F54-462D-93F6-F5C3118BADF2} - C:\Program Files\SpeedBit Video Downloader\Toolbar\tbcore3.dll
O3 - Toolbar: livetvbar Toolbar - {ad55c869-668e-457c-b270-0cfb2f61116f} - C:\Program Files\livetvbar\tbliv0.dll
O4 - HKLM\..\Run: [Windows Defender] C:\Windows\system32\KB123386.EXE
O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [UpdateP2GoShortCut] "c:\Program Files\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "c:\Program Files\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [UpdatePDIRShortCut] "c:\Program Files\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe" "c:\Program Files\CyberLink\PowerDirector" UpdateWithCreateOnce "SOFTWARE\CyberLink\PowerDirector\7.0"
O4 - HKLM\..\Run: [UpdatePSTShortCut] "c:\Program Files\CyberLink\CyberLink DVD Suite Deluxe\MUITransfer\MUIStartMenu.exe" "c:\Program Files\CyberLink\CyberLink DVD Suite Deluxe" UpdateWithCreateOnce "Software\CyberLink\PowerStarter"
O4 - HKLM\..\Run: [HP Software Update] c:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [mcagent_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [McAfee Backup] "C:\Program Files\McAfee\MBK\McAfeeDataBackup.exe"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [DelayShred] c:\PROGRA~1\mcafee\mshr\ShrCL.EXE /P7 /q C:\Users\user\AppData\Local\MICROS~1\Windows\TEMPOR~1\Content.IE5\P9XRSZD4\ RIGHTP~1.SH! C:\Users\user\AppData\Local\MICROS~1\Windows\TEMPOR~1\Content.IE5\L9YHEXSC\ ADS9_7~1.SH! C:\Users\user\AppData\Local\MICROS~1\Windows\TEMPOR~1\Content.IE5\L9YHEXSC\ RIGHTP~1.SH! C:\Users\user\AppData\Local\MICROS~1\Windows\TEMPOR~1\Content.IE5\0ANCBKG1\ ADS9_1~1.SH! C:\Users\user\AppData\Local\MICROS~1\Windows\TEMPOR~1\Content.IE5\4S06LUWC\ VIDEOA~1.SH! (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [DelayShred] c:\PROGRA~1\mcafee\mshr\ShrCL.EXE /P7 /q C:\Users\user\AppData\Local\MICROS~1\Windows\TEMPOR~1\Content.IE5\P9XRSZD4\ RIGHTP~1.SH! C:\Users\user\AppData\Local\MICROS~1\Windows\TEMPOR~1\Content.IE5\L9YHEXSC\ ADS9_7~1.SH! C:\Users\user\AppData\Local\MICROS~1\Windows\TEMPOR~1\Content.IE5\L9YHEXSC\ RIGHTP~1.SH! C:\Users\user\AppData\Local\MICROS~1\Windows\TEMPOR~1\Content.IE5\0ANCBKG1\ ADS9_1~1.SH! C:\Users\user\AppData\Local\MICROS~1\Windows\TEMPOR~1\Content.IE5\4S06LUWC\ VIDEOA~1.SH! (User 'Default user')
O4 - Global Startup: PictureMover.lnk = C:\Program Files\PictureMover\Bin\PictureMover.exe
O8 - Extra context menu item: &Clean Traces - C:\Program Files\DAP\Privacy Package\dapcleanerie.htm
O8 - Extra context menu item: &Download with &DAP - C:\Program Files\DAP\dapextie.htm
O8 - Extra context menu item: Download &all with DAP - C:\Program Files\DAP\dapextie2.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files\HP Games\My HP Game Console\GameConsoleService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: MBackMonitor - McAfee - C:\Program Files\McAfee\MBK\MBackMonitor.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: VideoAcceleratorService - Speedbit Ltd. - C:\PROGRA~1\SPEEDB~2\VideoAcceleratorService.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe

--
End of file - 10839 bytes
flavallee's Avatar
Computer Specs
Trusted Advisor with 40,831 posts.
 
Join Date: May 2002
Location: Brandon/Valrico, Florida
Experience: Advanced
04-Nov-2009, 06:08 PM #4
Click Start - Run, type in SERVICES.MSC and then click OK.

When the services window appears, expand it so you can see the list more clearly.

Scroll down the list and look for:

Security Accounts Manager

Security Center


They both should be set on Automatic.

If they're not, double-click each one, change "Startup Type" to Automatic, then click Apply - OK.

Close the services window and then restart your computer.

-----------------------------------------------------------------

You appear to have SUPERAntiSpyware installed, but if it's an older version and not version 4.29.0.1004, go here and click the green icon to download it.

Also go here and click the green icon to download Malwarebytes Anti-Malware 1.41.

Close all open windows, then install Malwarebytes(and SUPERAntiSpyware if needed).

Make sure to update the definition files during the install process.

Restart your computer afterwards.

Don't run a scan with either of them yet.

-----------------------------------------------------------------

Advise me when the above is done.

-----------------------------------------------------------------
QuantumLegacy's Avatar
Junior Member with 23 posts.
 
Join Date: Oct 2009
Experience: Beginner
06-Nov-2009, 06:45 PM #5
You were right. Security Center was set to Disabled. Damn Viruses. I already had the Latest SUPERAntiSpyware and the latest Malwarebytes Anti-Malware 1.41. Okay now I'm restarting and Awaiting any further instructions before scanning.
flavallee's Avatar
Computer Specs
Trusted Advisor with 40,831 posts.
 
Join Date: May 2002
Location: Brandon/Valrico, Florida
Experience: Advanced
06-Nov-2009, 07:31 PM #6
Start MBAM and run a "quick scan" with it.

When the scan is finished, select and allow it to fix EVERYTHING it found. Restart if prompted to.

Start SAS and run a "quick scan" with it.

When the scan is finished, select and allow it to fix EVERYTHING it found. Restart if prompted to.

Start MBAM and go to Logs(tab).

Select the scan log entry and then click Open.

When the scan log appears in Notepad, copy-and-paste it here.

Start SAS and go to Preferences - Statistics/Logs(tab).

Select the scan log entry and then click View Log.

When the scan log appears in Notepad, copy-and-paste it here.

(Note: Don't use your computer while it's scanning, and make sure to fix EVERYTHING that's found. That's important!)

-------------------------------------------------------------
QuantumLegacy's Avatar
Junior Member with 23 posts.
 
Join Date: Oct 2009
Experience: Beginner
06-Nov-2009, 10:05 PM #7
Malwarebytes' Anti-Malware 1.41
Database version: 3020
Windows 6.0.6002 Service Pack 2

11/6/2009 7:51:37 PM
mbam-log-2009-11-06 (19-51-37).txt

Scan type: Quick Scan
Objects scanned: 91043
Time elapsed: 4 minute(s), 31 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)

SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 11/06/2009 at 07:58 PM

Application Version : 4.29.1004

Core Rules Database Version : 4240
Trace Rules Database Version: 2136

Scan type : Quick Scan
Total Scan Time : 00:06:09

Memory items scanned : 569
Memory threats detected : 0
Registry items scanned : 567
Registry threats detected : 0
File items scanned : 2013
File threats detected : 5

Adware.Tracking Cookie
C:\Users\user\AppData\Roaming\Microsoft\Windows\Cookies\user@content.yieldm anager[3].txt
C:\Users\user\AppData\Roaming\Microsoft\Windows\Cookies\user@ad.yieldmanage r[1].txt
C:\Users\user\AppData\Roaming\Microsoft\Windows\Cookies\user@tribalfusion[2].txt
C:\Users\user\AppData\Roaming\Microsoft\Windows\Cookies\user@content.yieldm anager[2].txt
C:\Users\user\AppData\Roaming\Microsoft\Windows\Cookies\user@atdmt[1].txt


Thank you. I was sure that the Rouge.Antispyware that had infected my computer was eliminated from my computer. I was just confused at why my security center was off and I obviously didn't know that command before. In short, thank you for your help. : )
flavallee's Avatar
Computer Specs
Trusted Advisor with 40,831 posts.
 
Join Date: May 2002
Location: Brandon/Valrico, Florida
Experience: Advanced
07-Nov-2009, 08:18 AM #8
The database in Malwarebytes is outdated. Get it up-to-date, then run another quick scan, then fix everything that's found(if any), then post that new scan log here.

----------------------------------------------------------------

The database in SUPERAntiSpyware is okay. The scan found a few adware tracking cookies, which is normal.

----------------------------------------------------------------
Reply

THIS THREAD HAS EXPIRED.
Are you having the same problem? We have volunteers ready to answer your question, but first you'll have to join for free. Need help getting started? Check out our Welcome Guide.

Search Tech Support Guy

Find the solution to your
computer problem!




Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
WELCOME TO TECH SUPPORT GUY! Are you looking for the solution to your computer problem? Join our site today to ask your question -- for free! Our site is run completely by volunteers who want to help you solve your computer problems. See our Welcome Guide to get started.
Thread Tools



Facebook Facebook Twitter Twitter TechGuy.tv TechGuy.tv Mobile TSG Mobile
You Are Using:
Server ID
Advertisements do not imply our endorsement of that product or service.
All times are GMT -4. The time now is 10:22 AM.
Copyright © 1996 - 2011 TechGuy, Inc. All rights reserved.

Powered by Cermak Technologies, Inc.