1. Computer problem? Tech Support Guy is completely free -- paid for by advertisers and donations. Click here to join today! If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members.

Solved: Mprexe has caused an error in Kernel32.dll

Discussion in 'Earlier Versions of Windows' started by summer284, Jan 2, 2006.

Thread Status:
Not open for further replies.
Advertisement
  1. summer284

    summer284 Thread Starter

    Joined:
    Jan 2, 2006
    Messages:
    8
    I have Windows ME and when I start my computer I get the error message "Mprexe has caused an error in Kernel32.dll, Mprexe will now close"

    If I close my computer hangs and I have to reboot by Alt,Control, Delete. If I move message to corner of screen I can operate computer without a problem, but how do If fix so this message does not reappear at start up. I have ran AVG anti virus, spy sweeper, registery mechanic and nothing seems to work. Thanking you in advance
     
  2. valis

    valis Moderator

    Joined:
    Sep 24, 2004
    Messages:
    76,154
    googled it, and everything came back spyware related for windows me.....may want to post a hjt...see below....
    Please do this:

    * Click here to download HJTsetup.exe
    · Save HJTsetup.exe to your desktop.
    · Doubleclick on the HJTsetup.exe icon on your desktop.
    · By default it will install to C:\Program Files\Hijack This.
    · Continue to click Next in the setup dialogue boxes until you get to the Select Addition Tasks dialogue.
    · Put a check by Create a desktop icon then click Next again.
    · Continue to follow the rest of the prompts from there.
    · At the final dialogue box click Finish and it will launch Hijack This.
    · Click on the Do a system scan and save a logfile button. It will scan and the log should open in notepad.
    · Click on "Edit > Select All" then click on "Edit > Copy" to copy the entire contents of the log.
    · Come back here to this thread and Paste the log in your next reply.
    · DO NOT have Hijack This fix anything yet. Most of what it finds will be harmless or even required.
     
  3. summer284

    summer284 Thread Starter

    Joined:
    Jan 2, 2006
    Messages:
    8
    Here is the log from Hijack this:

    Logfile of HijackThis v1.99.1
    Scan saved at 12:37:06 AM, on 02/01/2006
    Platform: Windows ME (Win9x 4.90.3000)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

    Running processes:
    C:\WINDOWS\SYSTEM\KERNEL32.DLL
    C:\WINDOWS\SYSTEM\MSGSRV32.EXE
    C:\WINDOWS\SYSTEM\mmtask.tsk
    C:\WINDOWS\SYSTEM\MPREXE.EXE
    C:\WINDOWS\SYSTEM\PSTORES.EXE
    C:\WINDOWS\EXPLORER.EXE
    C:\WINDOWS\SYSTEM\SYSTRAY.EXE
    C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGCC.EXE
    C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGEMC.EXE
    C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGAMSVR.EXE
    C:\PROGRAM FILES\ZONE LABS\ZONEALARM\ZLCLIENT.EXE
    C:\WINDOWS\SYSTEM\WMIEXE.EXE
    C:\WINDOWS\SYSTEM\ZONELABS\VSMON.EXE
    C:\WINDOWS\SYSTEM\STIMON.EXE
    C:\HJT\HIJACKTHIS.EXE

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = c:\secure32.html
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.nba.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://rd.yahoo.com/customize/ymsgr/defaults/su/*http://www.yahoo.com
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.nba.com
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy:8080
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
    O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRAM FILES\YAHOO!\COMPANION\INSTALLS\CPN\YCOMP5_5_5_0.DLL
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHELPER.DLL
    O2 - BHO: Zero Popup - {2EF37A01-884F-11d5-AC99-B112050ECB4F} - C:\PROGRA~1\ZEROPO~1\ZERO-P~1.DLL
    O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRAM FILES\YAHOO!\COMPANION\INSTALLS\CPN\YCOMP5_5_5_0.DLL
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
    O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
    O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGCC.EXE /STARTUP
    O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGEMC.EXE
    O4 - HKLM\..\Run: [AVG7_AMSVR] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGAMSVR.EXE
    O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O9 - Extra button: AOL Instant Messenger (TM) - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\WINDOWS\SYSTEM\SHDOCVW.DLL
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\SYSTEM\MSJAVA.DLL
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\SYSTEM\MSJAVA.DLL
    O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRAM FILES\YAHOO!\MESSENGER\YPAGER.EXE
    O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRAM FILES\YAHOO!\MESSENGER\YPAGER.EXE
    O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\WINDOWS\SYSTEM\SHDOCVW.DLL
    O9 - Extra button: Shaw Help - {C74D011F-7BCC-441A-B871-AC7817CB9B90} - http://support.shaw.ca (file missing) (HKCU)
    O9 - Extra button: GooGle - {D7AEB2C9-9F00-4CD5-A173-AF67AA4F4877} - http://www.google.ca (file missing) (HKCU)
    O9 - Extra button: WebMail - {8DFCB8CA-10AD-4955-888F-A23211529E32} - https://webmail.shaw.ca (file missing) (HKCU)
    O9 - Extra button: eBay - {31F89B98-4F65-4866-8F3E-53DFD669AA46} - http://www.ebay.com (file missing) (HKCU)
    O9 - Extra button: SOD - {72583D76-270D-41B1-BA4A-1619E8DF2E58} - http://www.shawondemand.ca (file missing) (HKCU)
    O16 - DPF: {A17E30C4-A9BA-11D4-8673-60DB54C10000} (YahooYMailTo Class) - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/essentials/ymmapi.dll
    O16 - DPF: Yahoo! Cribbage - http://download.games.yahoo.com/games/clients/y/it0_x.cab
    O16 - DPF: Yahoo! Pyramids - http://download.games.yahoo.com/games/clients/y/pyt1_x.cab
    O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://fdl.msn.com/public/chat/msnchat45.cab
    O16 - DPF: Yahoo! Go - http://download.games.yahoo.com/games/clients/y/gt1_x.cab
    O16 - DPF: Tornado 21 - http://download.games.yahoo.com/games/clients/y/t21t0_x.cab
    O16 - DPF: Yahoo! Freecell Solitaire - http://yog55.games.scd.yahoo.com/yog/y/fs10_x.cab
    O16 - DPF: Yahoo! Klondike Solitaire - http://yog55.games.scd.yahoo.com/yog/y/ks12_x.cab
    O16 - DPF: Yahoo! Dice - http://download.games.yahoo.com/games/clients/y/dct2_x.cab
    O16 - DPF: Video Poker - http://download.games.yahoo.com/games/clients/y/vpt0_x.cab
    O16 - DPF: Yahoo! Towers 2.0 - http://download.games.yahoo.com/games/clients/y/ywt0_x.cab
    O16 - DPF: Yahoo! Exploder - http://download.games.yahoo.com/games/clients/y/vtk_x.cab
    O16 - DPF: ChatSpace Full Java Client 4.0.0.300 - http://63.102.226.240:8000/Java/cfs40300.cab
    O16 - DPF: {B942A249-D1E7-4C11-98AE-FCB76B08747F} (RealArcadeRdxIE Class) - http://games-dl.real.com/gameconsole/Bundler/CAB/RealArcadeRdxIE.cab
    O16 - DPF: {4F5E4276-C120-11D6-A1FD-00508B9D48EA} (dldisplay Class) - http://www.gamehouse.com/ghdlctl.cab
    O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab
    O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} - http://messenger.zone.msn.com/binary/msgrchkr.cab
    O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab
    O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab
    O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} - http://a840.g.akamai.net/7/840/537/2003120501/housecall.antivirus.com/housecall/xscan53.cab
    O16 - DPF: {01FE8D0A-51AD-459B-B62B-85E135128B32} (DD_v4.DDv4) - http://www.drivershq.com/DD_v4.CAB
    O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
    O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
    O16 - DPF: {DA758BB1-5F89-4465-975F-8D7179A4BCF3} (WheelofFortune Object) - http://messenger.zone.msn.com/binary/WoF.cab31267.cab
    O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab
     
  4. valis

    valis Moderator

    Joined:
    Sep 24, 2004
    Messages:
    76,154
    Please download WebRoot SpySweeper (It's a 2 week trial):

    http://www.webroot.com/consumer/products/spysweeper/index.html?acode=af1&rc=4129


    Click the Free Trial link under "Downloads/SpySweeper" to download the program.

    Install it. Once the program is installed, it will open.

    It will prompt you to update to the latest definitions, click Yes.
    Once the definitions are installed, click Options on the left side.
    Click the Sweep Options tab.

    Under What to Sweep please put a check next to the following:

    * Sweep Memory
    * Sweep Registry
    * Sweep Cookies
    * Sweep All User Accounts
    * Enable Direct Disk Sweeping
    * Sweep Contents of Compressed Files
    * Sweep for Rootkits

    Please UNCHECK Do not Sweep System Restore Folder.

    Click Sweep Now on the left side.

    Click the Start button.

    When it's done scanning, click the Next button.

    Make sure everything has a check next to it, then click the Next button.

    It will remove all of the items found.

    Click Session Log in the upper right corner, copy everything in that window.

    Click the Summary tab and click Finish.

    Perform an ActiveSCan:

    http://www.pandasoftware.com/activescan/

    Save the report to the desktop.

    Post a new HijackThis log, ActiveScan reports. and the contents of the Spysweeper session log you copied into your next reply.
     
  5. summer284

    summer284 Thread Starter

    Joined:
    Jan 2, 2006
    Messages:
    8
    I am trying to get all the info but my computer has been freezing badly all day. Bear with me and I will get it
     
  6. valis

    valis Moderator

    Joined:
    Sep 24, 2004
    Messages:
    76,154
  7. summer284

    summer284 Thread Starter

    Joined:
    Jan 2, 2006
    Messages:
    8
    This is my hijack this results. too long of reply to include all three results
    Spy sweeper and Active scan to follow


    Running processes:
    C:\WINDOWS\SYSTEM\KERNEL32.DLL
    C:\WINDOWS\SYSTEM\MSGSRV32.EXE
    C:\WINDOWS\SYSTEM\SPOOL32.EXE
    C:\WINDOWS\SYSTEM\MPREXE.EXE
    C:\WINDOWS\SYSTEM\PSTORES.EXE
    C:\WINDOWS\SYSTEM\mmtask.tsk
    C:\WINDOWS\EXPLORER.EXE
    C:\WINDOWS\SYSTEM\SYSTRAY.EXE
    C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGCC.EXE
    C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGEMC.EXE
    C:\PROGRAM FILES\GRISOFT\AVG FREE\AVGAMSVR.EXE
    C:\WINDOWS\SYSTEM\WMIEXE.EXE
    C:\WINDOWS\SYSTEM\STIMON.EXE
    C:\HJT\HIJACKTHIS.EXE

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = c:\secure32.html
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.nba.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://rd.yahoo.com/customize/ymsgr/defaults/su/*http://www.yahoo.com
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.nba.com
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy:8080
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
    O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRAM FILES\YAHOO!\COMPANION\INSTALLS\CPN\YCOMP5_5_5_0.DLL
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHELPER.DLL
    O2 - BHO: Zero Popup - {2EF37A01-884F-11d5-AC99-B112050ECB4F} - C:\PROGRA~1\ZEROPO~1\ZERO-P~1.DLL
    O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRAM FILES\YAHOO!\COMPANION\INSTALLS\CPN\YCOMP5_5_5_0.DLL
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\SYSTEM\MSDXM.OCX
    O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
    O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGCC.EXE /STARTUP
    O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGEMC.EXE
    O4 - HKLM\..\Run: [AVG7_AMSVR] C:\PROGRA~1\GRISOFT\AVGFRE~1\AVGAMSVR.EXE
    O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
    O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
    O9 - Extra button: AOL Instant Messenger (TM) - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\WINDOWS\SYSTEM\SHDOCVW.DLL
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\SYSTEM\MSJAVA.DLL
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\SYSTEM\MSJAVA.DLL
    O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRAM FILES\YAHOO!\MESSENGER\YPAGER.EXE
    O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRAM FILES\YAHOO!\MESSENGER\YPAGER.EXE
    O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\WINDOWS\SYSTEM\SHDOCVW.DLL
    O9 - Extra button: Shaw Help - {C74D011F-7BCC-441A-B871-AC7817CB9B90} - http://support.shaw.ca (file missing) (HKCU)
    O9 - Extra button: GooGle - {D7AEB2C9-9F00-4CD5-A173-AF67AA4F4877} - http://www.google.ca (file missing) (HKCU)
    O9 - Extra button: WebMail - {8DFCB8CA-10AD-4955-888F-A23211529E32} - https://webmail.shaw.ca (file missing) (HKCU)
    O9 - Extra button: eBay - {31F89B98-4F65-4866-8F3E-53DFD669AA46} - http://www.ebay.com (file missing) (HKCU)
    O9 - Extra button: SOD - {72583D76-270D-41B1-BA4A-1619E8DF2E58} - http://www.shawondemand.ca (file missing) (HKCU)
    O16 - DPF: {A17E30C4-A9BA-11D4-8673-60DB54C10000} (YahooYMailTo Class) - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/essentials/ymmapi.dll
    O16 - DPF: Yahoo! Cribbage - http://download.games.yahoo.com/games/clients/y/it0_x.cab
    O16 - DPF: Yahoo! Pyramids - http://download.games.yahoo.com/games/clients/y/pyt1_x.cab
    O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://fdl.msn.com/public/chat/msnchat45.cab
    O16 - DPF: Yahoo! Go - http://download.games.yahoo.com/games/clients/y/gt1_x.cab
    O16 - DPF: Tornado 21 - http://download.games.yahoo.com/games/clients/y/t21t0_x.cab
    O16 - DPF: Yahoo! Freecell Solitaire - http://yog55.games.scd.yahoo.com/yog/y/fs10_x.cab
    O16 - DPF: Yahoo! Klondike Solitaire - http://yog55.games.scd.yahoo.com/yog/y/ks12_x.cab
    O16 - DPF: Yahoo! Dice - http://download.games.yahoo.com/games/clients/y/dct2_x.cab
    O16 - DPF: Video Poker - http://download.games.yahoo.com/games/clients/y/vpt0_x.cab
    O16 - DPF: Yahoo! Towers 2.0 - http://download.games.yahoo.com/games/clients/y/ywt0_x.cab
    O16 - DPF: Yahoo! Exploder - http://download.games.yahoo.com/games/clients/y/vtk_x.cab
    O16 - DPF: ChatSpace Full Java Client 4.0.0.300 - http://63.102.226.240:8000/Java/cfs40300.cab
    O16 - DPF: {B942A249-D1E7-4C11-98AE-FCB76B08747F} (RealArcadeRdxIE Class) - http://games-dl.real.com/gameconsole/Bundler/CAB/RealArcadeRdxIE.cab
    O16 - DPF: {4F5E4276-C120-11D6-A1FD-00508B9D48EA} (dldisplay Class) - http://www.gamehouse.com/ghdlctl.cab
    O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab
    O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} - http://messenger.zone.msn.com/binary/msgrchkr.cab
    O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab
    O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab
    O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} - http://a840.g.akamai.net/7/840/537/2003120501/housecall.antivirus.com/housecall/xscan53.cab
    O16 - DPF: {01FE8D0A-51AD-459B-B62B-85E135128B32} (DD_v4.DDv4) - http://www.drivershq.com/DD_v4.CAB
    O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
    O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
    O16 - DPF: {DA758BB1-5F89-4465-975F-8D7179A4BCF3} (WheelofFortune Object) - http://messenger.zone.msn.com/binary/WoF.cab31267.cab
    O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab
    O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
     
  8. summer284

    summer284 Thread Starter

    Joined:
    Jan 2, 2006
    Messages:
    8
    Spy Sweeper

    ********
    2:17 PM: | Start of Session, January 2, 2006 |
    2:17 PM: Spy Sweeper started
    2:17 PM: Sweep initiated using definitions version 547
    2:17 PM: Starting Memory Sweep
    2:19 PM: Memory Sweep Complete, Elapsed Time: 00:01:30
    2:19 PM: Starting Registry Sweep
    2:22 PM: Registry Sweep Complete, Elapsed Time:00:03:09
    2:22 PM: Starting Cookie Sweep
    2:22 PM: Found Spy Cookie: statcounter cookie
    2:22 PM: [email protected][2].txt (ID = 3447)
    2:22 PM: Cookie Sweep Complete, Elapsed Time: 00:00:01
    2:22 PM: Starting File Sweep
    2:22 PM: Warning: Failed to open file "c:\windows\win386.swp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsb49d7ede-947e-4098-864c-1953e0b7643e.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsb88f72c0-b795-4f8f-af7f-acc2dc085af4.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs072e969e-f63f-4f59-99f8-d726d3f36c46.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs1c32fca9-45a0-4f40-b967-530c8f20bde7.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs96dff32d-795b-40bc-8ab1-8e270ca89ff1.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs9dbe0934-31c4-4c0e-9a73-2ff74d578d1a.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs2da3d5b6-1b10-4b63-8fdd-eb218cc55aff.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs467d56ca-1286-4b9f-9c51-3a4289407d20.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs1b941487-83d0-464d-b541-d4c952bac795.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs555d0212-486d-4584-b48c-2c50b9861021.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs14a7a7a6-bd36-4329-8d4e-87c7a10d9c3c.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs027aa3ee-12f4-43c7-9307-406d5dd147ac.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs45e64313-358b-43d2-a561-a2f79202bd52.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs5923cab6-fd3e-42e0-9540-63646b9af525.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs4922c23f-d232-4ad4-ab11-7b48a2685df6.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsd3983a7d-f90e-4098-ac13-9e4888cc3599.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsad716db6-48c6-4294-bacd-c90ed18f8208.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsce99a121-e7b9-4575-af95-e7cc845819f0.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs2ca50ec7-daa1-40cb-94ac-ec45777d9254.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsb9187dd0-b0a0-4027-a5c6-350f4636d974.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs9b17fcc6-2250-43dd-a3d3-ccb19236ac39.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsbfab0520-7186-4030-93a0-6bec2db2a8e2.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs5f63ff11-be24-4a52-a7cc-a15570ba73fb.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs9b2949a4-59e4-4ee4-81b0-c89fb6ffd1ce.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs9803b9d2-3fab-4642-b797-ad18f1c62026.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsb68a9293-5a17-4898-9934-012167eefaff.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscscfd2ca3f-4ff2-4cb8-8538-29d295196c95.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs5bc116e1-a904-464d-9fd4-07b698179c15.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs3a1a8571-f410-409b-b5ac-e69a1c957e60.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs56783698-6222-4d2b-b013-225dd9bf5eb1.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsf8db539d-46d6-471e-b383-3ec46ae481af.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs3030427f-30e2-4bc6-8568-517b973e02b3.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsf7567e4c-b0ca-42a6-af5b-3eb0e610d2cf.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsd83cf220-280c-4e2c-b22d-6e182ce0d59a.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs097c73de-ce08-4542-94aa-f1fda5bee229.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs142fc178-4ce2-4dbf-892b-e8d28f74371f.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs93c45942-e001-484d-bdbe-b8089516db21.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs588782d1-61d4-4f70-a232-2b13b5ad491f.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs6abdf135-6a21-44e3-8cc1-ac2af254d7d5.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs01e2fa81-f233-4f8e-8ddb-60887819902a.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsda036a11-8cdb-45b3-8fcd-eb909c39d25b.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsaa14a073-8e21-44b6-8412-bfe812d13001.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsf4ac3f10-3791-488a-8961-775818b604d0.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs5c097482-11b1-4d7a-b792-8143c5298d76.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs69b1e232-e1f0-4f10-a77d-03b658588389.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs268d7386-0c4b-46a6-b33e-df4f091a10ac.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs0130c4ce-f708-4fc0-8f87-4ddf4a45b358.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsa08e32ea-b079-44f5-877f-8982da7fefae.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsbe7b24e6-786a-44e2-8985-c431b92a5200.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsada4a886-019e-4763-8535-bf6bee868632.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs0fff26da-1184-4ca4-9ca3-767acd8f4c3c.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs9094acfc-67a1-4b3e-ae52-f5bf7a0adb0c.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsdcd49eb0-147d-4e90-92b2-2256cc83de75.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs2bf429b8-af49-4da2-bb45-ffee94c84e26.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs5a67f3e1-6481-47eb-83d6-4f651f6f70d6.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs777f7252-c6d0-40f6-a40b-67188c8a74c4.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs500e29c5-b7e1-4c5d-b1d1-b3b229f91e32.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsa31c5640-2ff4-4d10-8d0e-742094c9fa27.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsae3c4bef-e580-4ed2-99e5-4dc0d17c7f2c.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs8effde3d-e894-44c0-9a99-32a23cfff6d7.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsb29191f4-d248-47ec-9182-a12012b74395.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs04ce42cf-b97c-42db-a4ad-984949c9f6ac.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs40339b86-329e-4c14-9203-e180b03f5fe9.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs655875ca-1616-4019-be9c-eed9ed1a9991.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs9f56bb27-e02a-4439-a67b-ceebbde825ba.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs55ca5aa5-50ca-4ce1-81fb-15d0ed8d7209.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsb9ad7b33-91ba-40e7-a733-f4e8a680f87b.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs9f4e5e4b-e980-452e-bb73-62d629cd766e.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs2e6bff94-3e38-41dc-bd30-04d7abaa16f2.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs2a662efb-bc93-4682-964e-82b3638aa7c3.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsf51547d1-4aa8-4fd1-9abd-b30de9a6bd4e.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs1b5b4e94-e17a-452a-a6dd-7459e00ba6b0.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs796747fa-41b8-4ea8-9236-54f94ffb8ee0.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsa998b1f3-aa90-4601-8c61-9234c13b3ffd.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs374816f9-72ac-4ba4-81a7-b8fe90086bdf.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsed8236c8-0bf2-4966-8f07-72a7c19e88e5.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsf6f5840f-9c25-4157-b143-b432c703f0d9.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsfedbe0fb-cb4a-4cef-9b37-a2761e4287ad.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsf24f9666-4a13-4a09-b90d-95a91cb34597.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs67a0cbb5-eb7d-43ee-8f89-9dc048bd0904.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs066b08ba-cbc1-4dec-b7ee-77eb99ffba5f.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs824d33e0-6ae9-4dd0-89bc-3b19f435bd71.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs0fcefaff-979e-41af-bea0-f2825a9eb12b.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsa39cba79-2ab0-4375-8cbf-604aa16f654c.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsd24e8a9f-a13d-4df8-9478-3bfc0d98b456.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs3e170638-1b09-49b3-980d-51d35a364565.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs3cf11adf-c01b-4690-ae2f-61f7c5d0874b.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs4ef9fce4-fd0b-4fea-9aa2-2f0ed7922e53.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs62260edd-df6d-4f90-b898-5c208b515be6.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs6313f935-fe5b-41be-8950-7ee1fb7f86c6.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsa67e4489-ad69-4d6b-b212-2e685fab9f93.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsdf10e05d-85d1-49b7-8cab-d8fa5b75bdbc.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs0e7aed0b-f612-4e74-95af-d71dff5b8aca.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs660528a6-6467-4bc8-8b08-4f64a989421f.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs2e5df789-2de4-421f-97f4-cae95610347a.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs2487e687-8b94-4693-96e6-bac675804d38.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs8ee60e6c-c879-4382-ad0f-77f77591d263.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscsa2d12b43-7fc8-49f1-a17f-0c91238e7319.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscscd047d29-6bf0-41b1-a1f3-d91afdbb7522.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs9b52c813-69e9-4766-a125-9ea552c0189e.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs7d898400-3ec7-4739-9086-1419c74eee45.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs6bf4adcb-310f-43f4-826f-15047378c216.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs712d298a-769c-4b76-906b-45face01e109.tmp". The process cannot access the file because it is being used by another process
    2:24 PM: Warning: Failed to open file "c:\windows\application data\webroot\spy sweeper\temp\sscs4d48a45e-d14d-4887-8c3d-f2ee7b8a91df.tmp". The process cannot access the file because it is being used by another process
    2:38 PM: File Sweep Complete, Elapsed Time: 00:16:11
    2:38 PM: Full Sweep has completed. Elapsed time 00:20:55
    2:38 PM: Traces Found: 1
    2:51 PM: Removal process initiated
    2:51 PM: Quarantining All Traces: statcounter cookie
    2:51 PM: Removal process completed. Elapsed time 00:00:05
    3:19 PM: Processing Startup Alerts
    3:19 PM: Removed Startup entry: Panda_cleaner_240910
    3:28 PM: Processing Startup Alerts
    3:28 PM: Removed Startup entry: Panda_cleaner_240910
    ********
     
  9. valis

    valis Moderator

    Joined:
    Sep 24, 2004
    Messages:
    76,154
    try this too:

    Download the trial version of Ewido Security Suite here.

    * Install ewido.
    * During the installation, under "Additional Options" uncheck "Install background guard" and "Install scan via context menu".
    * Launch ewido
    * It will prompt you to update click the OK button and it will go to the main screen
    * On the left side of the main screen click update
    * Click on Start and let it update.
    * Click on scanner, let it do a full system scan (should take 45 minutes to an hour) then post the report here.
     
  10. summer284

    summer284 Thread Starter

    Joined:
    Jan 2, 2006
    Messages:
    8
    Developed for Windows 2000 and XP
     
  11. summer284

    summer284 Thread Starter

    Joined:
    Jan 2, 2006
    Messages:
    8
    Sorry, is this only for windows 2000 and XP. I have Windows ME
     
  12. valis

    valis Moderator

    Joined:
    Sep 24, 2004
    Messages:
    76,154
  13. summer284

    summer284 Thread Starter

    Joined:
    Jan 2, 2006
    Messages:
    8
    (y) (y) (y) :) :) :)
    I think its fixed. I ran everything today. AVG, Spysweeper, Active Scan, Adaware, SpyBot
    Trend House Doctors. My error message is gone when I log on and no more freezing.
    I'm not sure which one worked, but here is my log for adaware. Does it look clean to you. It said it found no adaware.

    Thank you very very very much and Happy New year


    Lavasoft Ad-aware Plus Build 158
    Logfile created on :January 2, 2006 10:09:47 PM
    Using reference-file :0R150 05.07.2003
    ______________________________________________________

    Ad-aware Settings
    =========================
    Set : Activate in-depth scan
    Set : Safe mode (always request confirmation)
    Set : Skip non executable files
    Set : Scan active processes
    Set : Scan registry
    Set : Deep scan registry
    Set : Scan my IE Favorites for banned URLs
    Set : Scan within archives


    Listing running processes
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    #:1 [kernel32.dll]
    FilePath : C:\WINDOWS\SYSTEM\
    ProcessID : 4279177449
    Threads : 4
    Priority : High
    FileSize : 524 KB
    FileVersion : 4.90.3000
    ProductVersion : 4.90.3000
    Copyright : Copyright (C) Microsoft Corp. 1991-2000
    CompanyName : Microsoft Corporation
    FileDescription : Win32 Kernel core component
    InternalName : KERNEL32
    OriginalFilename : KERNEL32.DLL
    ProductName : Microsoft(R) Windows(R) Millennium Operating System
    Created on : 01/01/1601
    Last accessed : 02/01/2006 6:00:00 AM
    Last modified : 08/06/2000 11:00:00 PM

    #:2 [msgsrv32.exe]
    FilePath : C:\WINDOWS\SYSTEM\
    ProcessID : 4294924357
    Threads : 1
    Priority : Normal
    FileSize : 11 KB
    FileVersion : 4.90.3000
    ProductVersion : 4.90.3000
    Copyright : Copyright (C) Microsoft Corp. 1992-1998
    CompanyName : Microsoft Corporation
    FileDescription : Windows 32-bit VxD Message Server
    InternalName : MSGSRV32
    OriginalFilename : MSGSRV32.EXE
    ProductName : Microsoft(R) Windows(R) Millennium Operating System
    Created on : 01/01/1601
    Last accessed : 02/01/2006 6:00:00 AM
    Last modified : 08/06/2000 11:00:00 PM

    #:3 [mmtask.tsk]
    FilePath : C:\WINDOWS\SYSTEM\
    ProcessID : 4294965329
    Threads : 1
    Priority : Normal
    FileSize : 1 KB
    FileVersion : 4.90.3000
    ProductVersion : 4.90.3000
    Copyright : Copyright Microsoft Corp. 1991-2000
    CompanyName : Microsoft Corporation
    FileDescription : Multimedia background task support module
    InternalName : mmtask.tsk
    OriginalFilename : mmtask.tsk
    ProductName : Microsoft Windows
    Created on : 01/01/1601
    Last accessed : 02/01/2006 6:00:00 AM
    Last modified : 08/06/2000 11:00:00 PM

    #:4 [mprexe.exe]
    FilePath : C:\WINDOWS\SYSTEM\
    ProcessID : 4294959637
    Threads : 2
    Priority : Normal
    FileSize : 28 KB
    FileVersion : 4.90.3000
    ProductVersion : 4.90.3000
    Copyright : Copyright (C) Microsoft Corp. 1993-2000
    CompanyName : Microsoft Corporation
    FileDescription : WIN32 Network Interface Service Process
    InternalName : MPREXE
    OriginalFilename : MPREXE.EXE
    ProductName : Microsoft(R) Windows(R) Millennium Operating System
    Created on : 01/01/1601
    Last accessed : 02/01/2006 6:00:00 AM
    Last modified : 08/06/2000 11:00:00 PM

    #:5 [vsmon.exe]
    FilePath : C:\WINDOWS\SYSTEM\ZONELABS\
    ProcessID : 4294952137
    Threads : 16
    Priority : Normal
    FileSize : 1653 KB
    FileVersion : 6.1.737.000
    ProductVersion : 6.1.737.000
    Copyright : Copyright 1998-2005, Zone Labs, LLC
    CompanyName : Zone Labs, LLC
    FileDescription : TrueVector Service
    InternalName : vsmon
    OriginalFilename : vsmon.exe
    ProductName : TrueVector Service
    Created on : 18/12/2005 5:03:07 PM
    Last accessed : 02/01/2006 6:00:00 AM
    Last modified : 15/11/2005 6:50:46 AM

    #:6 [explorer.exe]
    FilePath : C:\WINDOWS\
    ProcessID : 4294793765
    Threads : 22
    Priority : Normal
    FileSize : 220 KB
    FileVersion : 5.50.4134.100
    ProductVersion : 5.50.4134.100
    Copyright : Copyright (C) Microsoft Corp. 1981-2000
    CompanyName : Microsoft Corporation
    FileDescription : Windows Explorer
    InternalName : explorer
    OriginalFilename : EXPLORER.EXE
    ProductName : Microsoft(R) Windows (R) 2000 Operating System
    Created on : 08/06/2000 11:00:00 PM
    Last accessed : 02/01/2006 6:00:00 AM
    Last modified : 08/06/2000 11:00:00 PM

    #:7 [systray.exe]
    FilePath : C:\WINDOWS\SYSTEM\
    ProcessID : 4294736393
    Threads : 2
    Priority : Normal
    FileSize : 36 KB
    FileVersion : 4.90.3000
    ProductVersion : 4.90.3000
    Copyright : Copyright (C) Microsoft Corp. 1993-2000
    CompanyName : Microsoft Corporation
    FileDescription : System Tray Applet
    InternalName : SYSTRAY
    OriginalFilename : SYSTRAY.EXE
    ProductName : Microsoft(R) Windows(R) Millennium Operating System
    Created on : 01/01/1601
    Last accessed : 02/01/2006 6:00:00 AM
    Last modified : 08/06/2000 11:00:00 PM

    #:8 [avgcc.exe]
    FilePath : C:\PROGRAM FILES\GRISOFT\AVG FREE\
    ProcessID : 4294749141
    Threads : 5
    Priority : Normal
    FileSize : 348 KB
    FileVersion : 7,1,0,355
    ProductVersion : 7.1.0.355
    Copyright : Copyright 2005, GRISOFT, s.r.o.
    CompanyName : GRISOFT, s.r.o.
    FileDescription : AVG Control Center
    InternalName : AvgCC
    OriginalFilename : AvgCC.EXE
    ProductName : AVG Anti-Virus System
    Created on : 23/10/2005 12:44:12 AM
    Last accessed : 02/01/2006 6:00:00 AM
    Last modified : 23/10/2005 12:44:14 AM

    #:9 [avgemc.exe]
    FilePath : C:\PROGRAM FILES\GRISOFT\AVG FREE\
    ProcessID : 4294762181
    Threads : 6
    Priority : Normal
    FileSize : 274 KB
    FileVersion : 7,1,0,371
    ProductVersion : 7.1.0.371
    Copyright : Copyright 2005, GRISOFT, s.r.o.
    CompanyName : GRISOFT, s.r.o.
    FileDescription : AVG E-Mail Scanner
    InternalName : avgemc
    OriginalFilename : avgemc.exe
    ProductName : AVG Anti-Virus System
    Created on : 06/12/2005 4:05:33 PM
    Last accessed : 02/01/2006 6:00:00 AM
    Last modified : 06/12/2005 4:05:34 PM

    #:10 [avgamsvr.exe]
    FilePath : C:\PROGRAM FILES\GRISOFT\AVG FREE\
    ProcessID : 4294760905
    Threads : 7
    Priority : Normal
    FileSize : 329 KB
    FileVersion : 7,1,0,365
    ProductVersion : 7.1.0.365
    Copyright : Copyright 2005, GRISOFT, s.r.o.
    CompanyName : GRISOFT, s.r.o.
    FileDescription : AVG Alert Manager
    InternalName : avgamsvr
    OriginalFilename : avgamsvr.EXE
    ProductName : AVG Anti-Virus System
    Created on : 06/12/2005 4:05:33 PM
    Last accessed : 02/01/2006 6:00:00 AM
    Last modified : 06/12/2005 4:05:34 PM

    #:11 [zlclient.exe]
    FilePath : C:\PROGRAM FILES\ZONE LABS\ZONEALARM\
    ProcessID : 4294641477
    Threads : 6
    Priority : Normal
    FileSize : 737 KB
    FileVersion : 6.1.737.000
    ProductVersion : 6.1.737.000
    Copyright : Copyright 1998-2005, Zone Labs, LLC
    CompanyName : Zone Labs, LLC
    FileDescription : Zone Labs Client
    InternalName : zlclient
    OriginalFilename : zlclient.exe
    ProductName : Zone Labs Client
    Created on : 18/12/2005 5:03:32 PM
    Last accessed : 02/01/2006 6:00:00 AM
    Last modified : 15/11/2005 6:51:36 AM

    #:12 [wmiexe.exe]
    FilePath : C:\WINDOWS\SYSTEM\
    ProcessID : 4294702649
    Threads : 3
    Priority : Normal
    FileSize : 16 KB
    FileVersion : 4.90.2452.1
    ProductVersion : 4.90.2452.1
    Copyright : Copyright (C) Microsoft Corp. 1981-1999
    CompanyName : Microsoft Corporation
    FileDescription : WMI service exe housing
    InternalName : wmiexe
    OriginalFilename : wmiexe.exe
    ProductName : Microsoft(R) Windows(R) Millennium Operating System
    Created on : 01/01/1601
    Last accessed : 02/01/2006 6:00:00 AM
    Last modified : 08/06/2000 11:00:00 PM

    #:13 [ddhelp.exe]
    FilePath : C:\WINDOWS\SYSTEM\
    ProcessID : 4294491845
    Threads : 2
    Priority : Realtime
    FileSize : 32 KB
    FileVersion : 4.09.00.0900
    ProductVersion : 4.09.00.0900
    Copyright : Copyright Microsoft Corp. 1994-2002
    CompanyName : Microsoft Corporation
    FileDescription : Microsoft DirectX Helper
    InternalName : DDHelp.exe
    OriginalFilename : DDHelp.exe
    ProductName : Microsoft DirectX for Windows
    Created on : 23/11/2003 4:01:35 AM
    Last accessed : 02/01/2006 6:00:00 AM
    Last modified : 12/12/2002 6:14:32 AM

    #:14 [pstores.exe]
    FilePath : C:\WINDOWS\SYSTEM\
    ProcessID : 4294452549
    Threads : 3
    Priority : Normal
    FileSize : 82 KB
    FileVersion : 5.00.2133.2
    ProductVersion : 5.00.2133.2
    Copyright : Copyright (C) Microsoft Corp. 1981-1999
    CompanyName : Microsoft Corporation
    FileDescription : Protected storage server
    InternalName : Protected storage server
    OriginalFilename : Protected storage server
    ProductName : Microsoft(R) Windows (R) 2000 Operating System
    Created on : 01/01/1601
    Last accessed : 02/01/2006 6:00:00 AM
    Last modified : 08/06/2000 11:00:00 PM

    #:15 [stimon.exe]
    FilePath : C:\WINDOWS\SYSTEM\
    ProcessID : 4278518353
    Threads : 5
    Priority : Normal
    FileSize : 27 KB
    FileVersion : 4.90.3000.1
    ProductVersion : 4.90.3000.1
    Copyright : Copyright (C) Microsoft Corp. 1981-2000
    CompanyName : Microsoft Corporation
    FileDescription : Still Image Devices Monitor
    InternalName : STIMON
    OriginalFilename : STIMON.EXE
    ProductName : Microsoft(R) Windows(R) Millennium Operating System
    Created on : 01/01/1601
    Last accessed : 02/01/2006 6:00:00 AM
    Last modified : 08/06/2000 11:00:00 PM

    #:16 [ad-aware.exe]
    FilePath : C:\PROGRAM FILES\LAVASOFT\AD-AWARE 6\
    ProcessID : 4294573433
    Threads : 2
    Priority : Normal
    FileSize : 688 KB
    FileVersion : 6.0.1.158
    ProductVersion : 6.0.0.0
    Copyright : Copyright Lavasoft Sweden
    CompanyName : Lavasoft Sweden
    FileDescription : Ad-aware 6 core application
    InternalName : Ad-aware.exe
    OriginalFilename : Ad-aware.exe
    ProductName : Lavasoft Ad-aware Plus
    Created on : 04/12/2003 3:33:34 AM
    Last accessed : 02/01/2006 6:00:00 AM
    Last modified : 27/01/2003 4:44:14 PM

    Memory scan result :
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    New objects : 0
    Objects found so far: 0


    Started registry scan
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    Registry scan result :
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    New objects : 0
    Objects found so far: 0


    Started deep registry scan
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    Deep registry scan result :
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    New objects : 0
    Objects found so far: 0


    Deep scanning and examining files (C:)
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    Disk scan result for C:\
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    New objects : 0
    Objects found so far: 0

    10:38:28 PM Scan complete

    Summary of this scan
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    Total scanning time :00:28:40:600
    Objects scanned :67194
    Objects identified :0
    Objects ignored :0
    New objects :0
    :) :)
     
  14. valis

    valis Moderator

    Joined:
    Sep 24, 2004
    Messages:
    76,154
    cool......glad it worked....if you are satisfied, you can mark the thread solved under 'thread tools' at the top, and hope to see you around here still. :)

    Happy new year back atcha.

    v
     
  15. Sponsor

As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 733,556 other people just like you!

Thread Status:
Not open for further replies.

Short URL to this thread: https://techguy.org/430224

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice