1. Computer problem? Tech Support Guy is completely free -- paid for by advertisers and donations. Click here to join today! If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members.

Can't Install an AV, Anti-Spyware, & Browser Redirects

Discussion in 'Virus & Other Malware Removal' started by Cabinetmaster, Jul 16, 2011.

Thread Status:
Not open for further replies.
Advertisement
  1. Cabinetmaster

    Cabinetmaster Thread Starter

    Joined:
    Jul 16, 2011
    Messages:
    4
    Hey Guys,

    I purchased this computer second hand, thought it was fairly wiped and clean. I may have contributed to some or all of the problems also, so without pointing the finger, nevertheless, the problems remain.

    I can't run or install ANY anti-virus, anti-spyware program at all and unfortunately, I was in the process of installing an AV when I discovered these problems.
    My browser redirects alot of times and when I click on a search result from Google it goes to a "Scour" page or some other search page instead of my search result I wanted.

    I appologize for the lack of information. I have done every procedure that was instructed on the "Read this first" just couldn't get some of them to run because of my problems.

    Here are my problems:

    • Can't run HT it states that there is a problem with the Host file.
    • ----advises me to change the host file and save it as 'Host.' (with quotes) I tried but the system states that I don't have permission to save in that directory. I was Logged as Admin privileges.
    • Also, as stated above, My browser redirects when I click on a search result.

    The problem with this, and ALL programs is: I get a pop up box that states, I don't have permission to save the file in the particular location. I am logged as ADMIN priv.

    I don't get a txt log file nor can I run HT a second time. If anyone can help me get an HJT Log or GME file, I will be glad to follow directions. It just seems like I get locked out of the software or the process gets killed in the middle of the scan.

    I was successful in running DDS and did receive the dds and the Attach files, which I will post:


    DDS
    DDS (Ver_2011-07-14.01) - NTFS_x86
    Internet Explorer: 9.0.8112.16421
    Run by User1 at 17:47:04 on 2011-07-16
    #Option MBR scan is disabled.
    Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.2814.1943 [GMT -5:00]
    .
    SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    .
    ============== Running Processes ================
    .
    C:\Windows\system32\wininit.exe
    C:\Windows\system32\lsm.exe
    \\.\globalroot\Device\svchost.exe\svchost.exe
    C:\Windows\System32\spoolsv.exe
    C:\Windows\system32\taskhost.exe
    C:\Windows\system32\sppsvc.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\Program Files\DivX\DivX Update\DivXUpdate.exe
    C:\Program Files\PowerISO\PWRISOVM.EXE
    C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
    C:\Windows\System32\StikyNot.exe
    C:\Windows\system32\SearchIndexer.exe
    C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
    C:\Program Files\Windows Media Player\wmpnetwk.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Windows\system32\rundll32.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Windows\regedit.exe
    C:\Program Files\Google\Chrome\Application\chrome.exe
    C:\Windows\system32\notepad.exe
    C:\Windows\System32\slui.exe
    C:\Windows\servicing\TrustedInstaller.exe
    C:\Windows\system32\conhost.exe
    C:\Windows\system32\wbem\wmiprvse.exe
    C:\Windows\system32\svchost.exe -k DcomLaunch
    C:\Windows\system32\svchost.exe -k RPCSS
    C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
    C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
    C:\Windows\system32\svchost.exe -k netsvcs
    C:\Windows\system32\svchost.exe -k LocalService
    C:\Windows\system32\svchost.exe -k NetworkService
    C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
    C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
    C:\Windows\System32\svchost.exe -k LocalServicePeerNet
    C:\Windows\System32\svchost.exe -k secsvcs
    C:\Windows\system32\svchost.exe -k SDRSVC
    .
    ============== Pseudo HJT Report ===============
    .

    ATTACH
    .
    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT
    .
    DDS (Ver_2011-07-14.01)
    .
    Microsoft Windows 7 Home Premium
    Boot Device: \Device\HarddiskVolume1
    Install Date: 5/6/2011 8:58:34 AM
    System Uptime: 7/16/2011 11:20:27 AM (6 hours ago)
    .
    Motherboard: TOSHIBA | | Portable PC
    Processor: AMD Sempron(tm) SI-42 | Socket M2/S1G1 | 2100/1800mhz
    .
    ==== Disk Partitions =========================
    .
    C: is FIXED (NTFS) - 233 GiB total, 131.691 GiB free.
    D: is CDROM ()
    E: is CDROM ()
    .
    ==== Disabled Device Manager Items =============
    .
    Class GUID:
    Description:
    Device ID: ACPI\TOS1901\2&DABA3FF&1
    Manufacturer:
    Name:
    PNP Device ID: ACPI\TOS1901\2&DABA3FF&1
    Service:
    .
    ==== System Restore Points ===================
    .
    RP33: 7/15/2011 3:11:09 PM - Installed SpyHunter
    RP34: 7/15/2011 9:10:29 PM - Installed SpyHunter
    .
    ==== Installed Programs ======================
    .
    µTorrent
    AC3Filter (remove only)
    Adobe Flash Player 10 ActiveX
    DivX Setup
    FLV Player 2.0 (build 25)
    Foxit PhantomPDF
    Google Chrome
    Google Earth
    Google Update Helper
    Microsoft .NET Framework 4 Client Profile
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
    Nero 7 Essentials
    PowerISO
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
    Synaptics Pointing Device Driver
    Trojan Remover 6.8.2
    TubeSucker
    VC80CRTRedist - 8.0.50727.4053
    VLC media player 1.1.10
    WBFS Manager 3.0
    Windows Essentials Media Codec Pack 2.3d
    WinRAR archiver
    Xvid 1.1.3 final uninstall
    .
    ==== Event Viewer Messages From Past Week ========
    .
    7/16/2011 4:54:08 PM, Error: atikmdag [43029] - Display is not active
    7/15/2011 8:19:04 PM, Error: atikmdag [52236] - CPLIB :: General - Invalid Parameter
    7/15/2011 8:11:13 PM, Error: Service Control Manager [7000] - The PC Tools Security Service service failed to start due to the following error: Access is denied.
    7/15/2011 8:11:13 PM, Error: Service Control Manager [7000] - The PC Tools Auxiliary Service service failed to start due to the following error: Access is denied.
    7/15/2011 8:08:57 PM, Error: Service Control Manager [7001] - The Computer Browser service depends on the Server service which failed to start because of the following error: The dependency service or group failed to start.
    7/15/2011 8:06:49 PM, Error: Service Control Manager [7001] - The HomeGroup Provider service depends on the Function Discovery Provider Host service which failed to start because of the following error: The dependency service or group failed to start.
    7/15/2011 8:02:42 PM, Error: Service Control Manager [7034] - The PC Tools Auxiliary Service service terminated unexpectedly. It has done this 1 time(s).
    7/15/2011 8:00:25 PM, Error: Service Control Manager [7034] - The PC Tools Security Service service terminated unexpectedly. It has done this 1 time(s).
    7/15/2011 7:56:36 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service MSIServer with arguments "" in order to run the server: {000C101C-0000-0000-C000-000000000046}
    7/15/2011 7:46:24 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
    7/15/2011 7:46:24 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
    7/15/2011 7:46:22 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
    7/15/2011 7:46:16 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC}
    7/15/2011 7:46:10 PM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: discache SCDEmu spldr Wanarpv6
    7/15/2011 3:38:51 AM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the FDResPub service.
    7/15/2011 2:33:05 AM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000050 (0x8f287115, 0x00000008, 0x8f287115, 0x00000000). A dump was saved in: C:\Windows\MEMORY.DMP. Report Id: 071511-19905-01.
    7/15/2011 2:11:40 PM, Error: volsnap [36] - The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit.
    7/14/2011 9:31:34 AM, Error: Service Control Manager [7031] - The Kaspersky Anti-Virus Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 10000 milliseconds: Restart the service.
    7/14/2011 8:55:44 AM, Error: Service Control Manager [7031] - The Kaspersky PURE service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 0 milliseconds: Restart the service.
    7/14/2011 8:55:44 AM, Error: Service Control Manager [7000] - The Kaspersky PURE service failed to start due to the following error: Access is denied.
    7/14/2011 8:01:16 PM, Error: Service Control Manager [7000] - The Kaspersky Anti-Virus Service service failed to start due to the following error: Access is denied.
    7/14/2011 7:58:03 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service wuauserv with arguments "" in order to run the server: {E60687F7-01A1-40AA-86AC-DB1CBF673334}
    7/14/2011 7:26:01 PM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: discache KLIF SCDEmu spldr Wanarpv6
    7/14/2011 7:25:59 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x0000000a (0xae116a00, 0x00000002, 0x00000000, 0x82aa2e45). A dump was saved in: C:\Windows\MEMORY.DMP. Report Id: 071411-18642-01.
    7/12/2011 12:52:06 PM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Wlansvc service.
    .
    ==== End Of File ===========================

    Thanks for any Help,
     
  2. Cabinetmaster

    Cabinetmaster Thread Starter

    Joined:
    Jul 16, 2011
    Messages:
    4
    ^^^^BUMP^^^^

    I'm patient, just following instructions. I know the Tech's are busy with problems that were already in progress.
     
  3. Cabinetmaster

    Cabinetmaster Thread Starter

    Joined:
    Jul 16, 2011
    Messages:
    4
    ^^^^BUMP !!!^^^^

    And Again....LOL

    My Scans will probably have to be re-done now. It's all good though.
     
  4. Cabinetmaster

    Cabinetmaster Thread Starter

    Joined:
    Jul 16, 2011
    Messages:
    4
    I understand waiting in line but, REALLY???!!!

    Alright well ^^^^^^BUMP^^^^^

    AGAIN, FOR A 3rd time

    Wait at least 48 hours before posting if you haven't rec'd Help------------How about 10 days......and Counting.(n)
     
As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 733,556 other people just like you!

Loading...
Thread Status:
Not open for further replies.

Short URL to this thread: https://techguy.org/1007720

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice