Author Topic: After running boot scan pc freezes  (Read 19541 times)

0 Members and 1 Guest are viewing this topic.

dlgh01

  • Guest
Re: After running boot scan pc freezes
« Reply #15 on: April 20, 2007, 12:52:32 AM »
[Win32 Services - Non-Microsoft Only]
(Adobe LM Service) Adobe LM Service [Win32_Own | On_Demand | Stopped] -> %CommonProgramFiles%\Adobe Systems Shared\Service\Adobelmsvc.exe -> Adobe Systems [Ver = 2.67.010 | Size = 72704 bytes | Modified Date = 26/11/2006 14:18:06 | Attr =    ]
(aswUpdSv) avast! iAVS4 Control Service [Win32_Own | Auto | Running] -> %ProgramFiles%\Alwil Software\Avast4\aswUpdSv.exe -> ALWIL Software [Ver = 4, 7, 951, 0 | Size = 16512 bytes | Modified Date = 14/04/2007 08:37:44 | Attr =    ]
(avast! Antivirus) avast! Antivirus [Win32_Own | Auto | Running] -> %ProgramFiles%\Alwil Software\Avast4\ashServ.exe -> ALWIL Software [Ver = 4, 7, 981, 0 | Size = 132736 bytes | Modified Date = 14/04/2007 08:48:22 | Attr =    ]
(avast! Mail Scanner) avast! Mail Scanner [Win32_Own | On_Demand | Running] -> %ProgramFiles%\Alwil Software\Avast4\ashMaiSv.exe -> ALWIL Software [Ver = 4, 7, 981, 0 | Size = 243328 bytes | Modified Date = 14/04/2007 08:48:04 | Attr =    ]
(avast! Web Scanner) avast! Web Scanner [Win32_Own | On_Demand | Running] -> %ProgramFiles%\Alwil Software\Avast4\ashWebSv.exe -> ALWIL Software [Ver = 4, 7, 981, 0 | Size = 345728 bytes | Modified Date = 14/04/2007 08:47:18 | Attr =    ]
(Bonjour Service) ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## [Win32_Own | Auto | Running] -> %ProgramFiles%\Bonjour\mDNSResponder.exe -> Apple Computer, Inc. [Ver = 1,0,3,1 | Size = 229376 bytes | Modified Date = 28/02/2006 13:42:38 | Attr =    ]
(dmadmin) Logical Disk Manager Administrative Service [Win32_Shared | On_Demand | Stopped] -> %System32%\dmadmin.exe -> Microsoft Corp., Veritas Software [Ver = 2600.2180.503.0 | Size = 224768 bytes | Modified Date = 10/08/2004 20:00:00 | Attr =    ]
(FLEXnet Licensing Service) FLEXnet Licensing Service [Win32_Own | On_Demand | Stopped] -> %CommonProgramFiles%\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe -> Macrovision Europe Ltd. [Ver = 11.03.005 | Size = 654848 bytes | Modified Date = 03/02/2007 11:41:30 | Attr =    ]
(IDriverT) InstallDriver Table Manager [Win32_Own | On_Demand | Stopped] -> %CommonProgramFiles%\InstallShield\Driver\11\Intel 32\IDriverT.exe -> Macrovision Corporation [Ver = 11.00.28844 | Size = 69632 bytes | Modified Date = 04/04/2005 00:41:10 | Attr =    ]
(iPod Service) iPod Service [Win32_Own | On_Demand | Running] -> %ProgramFiles%\iPod\bin\iPodService.exe -> Apple Inc. [Ver = 7.1.1.5 | Size = 500800 bytes | Modified Date = 14/03/2007 19:05:42 | Attr =    ]
(NVSvc) NVIDIA Display Driver Service [Win32_Own | Auto | Running] -> %System32%\nvsvc32.exe -> NVIDIA Corporation [Ver = 6.14.10.8466 | Size = 143426 bytes | Modified Date = 28/04/2006 00:47:00 | Attr =    ]
(PREVXAgent) Prevx Agent [Win32_Own | Auto | Running] -> %ProgramFiles%\Prevx1\PXAgent.exe -> Prevx [Ver = 2.0.12.1 | Size = 139264 bytes | Modified Date = 27/03/2007 11:17:20 | Attr =    ]
(x10nets) X10 Device Network Service [Win32_Own | Auto | Running] -> %CommonProgramFiles%\X10\Common\X10nets.exe -> X10 [Ver = 1, 0, 0, 1 | Size = 20480 bytes | Modified Date = 12/11/2001 13:31:48 | Attr =    ]

[Registry - Non-Microsoft Only]
< Run [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
 ->  -> File not found
Adobe Photo Downloader -> %ProgramFiles%\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe -> Adobe Systems Incorporated [Ver = 3.0.0.49815 | Size = 57344 bytes | Modified Date = 07/06/2005 00:46:24 | Attr =    ]
avast! -> %ProgramFiles%\Alwil Software\Avast4\ashDisp.exe -> ALWIL Software [Ver = 4, 7, 981, 0 | Size = 75392 bytes | Modified Date = 14/04/2007 08:48:28 | Attr =    ]
HDAudDeck -> %ProgramFiles%\VIAudioi\HDADeck\HDeck.exe -> VIA Technologies, Inc. [Ver = 1, 4, 3, 0 | Size = 684032 bytes | Modified Date = 17/07/2006 15:36:18 | Attr =    ]
HP Component Manager -> %ProgramFiles%\HP\hpcoretech\hpcmpmgr.exe -> Hewlett-Packard Company [Ver = 2.1.1.0 | Size = 241664 bytes | Modified Date = 22/12/2003 08:38:42 | Attr =    ]
HP Software Update -> %ProgramFiles%\Hewlett-Packard\HP Software Update\HPWuSchd2.exe -> Hewlett-Packard Company [Ver = 3, 0, 38, 1 | Size = 49152 bytes | Modified Date = 18/02/2004 18:55:28 | Attr =    ]
HPDJ Taskbar Utility -> %System32%\spool\drivers\w32x86\3\hpztsb10.exe -> HP [Ver = 2.323.0.0 | Size = 172032 bytes | Modified Date = 04/03/2004 15:46:24 | Attr =    ]
iTunesHelper -> %ProgramFiles%\iTunes\iTunesHelper.exe -> Apple Inc. [Ver = 7.1.1.5 | Size = 257088 bytes | Modified Date = 14/03/2007 19:05:48 | Attr =    ]
LogitechVideoRepair -> %ProgramFiles%\Logitech\Video\ISStart.exe -> Logitech Inc. [Ver = 8.4.6.1012 | Size = 458752 bytes | Modified Date = 18/01/2005 18:47:30 | Attr =    ]
LogitechVideoTray -> %ProgramFiles%\Logitech\Video\LogiTray.exe -> Logitech Inc. [Ver = 8.4.6.1012 | Size = 217088 bytes | Modified Date = 18/01/2005 18:37:30 | Attr =    ]
LVCOMSX -> %System32%\LVCOMSX.EXE -> Logitech Inc. [Ver = 8.4.1.1092 | Size = 221184 bytes | Modified Date = 08/10/2004 12:52:32 | Attr =    ]
NeroFilterCheck -> %System32%\NeroCheck.exe -> Ahead Software Gmbh [Ver = 1, 0, 0, 2 | Size = 155648 bytes | Modified Date = 09/07/2001 11:50:42 | Attr =    ]
NvCplDaemon -> %System32%\nvcpl.dll [RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup] -> NVIDIA Corporation [Ver = 6.14.10.8466 | Size = 7573504 bytes | Modified Date = 28/04/2006 00:47:00 | Attr =    ]
nwiz -> %System32%\nwiz.exe ->  [Ver =  | Size = 1519616 bytes | Modified Date = 28/04/2006 00:47:00 | Attr =    ]
PrevxOne -> %ProgramFiles%\Prevx1\PXConsole.exe -> Prevx [Ver = 1.0.0.1 | Size = 1548288 bytes | Modified Date = 27/03/2007 11:16:46 | Attr =    ]
PRISMSVR.EXE -> %ProgramFiles%\Thomson SpeedTouch\SpeedTouch 121g Wireless USB Monitor\PRISMSVR.exe -> Conexant Systems, Inc. [Ver = 1.01.24  | Size = 295001 bytes | Modified Date = 02/07/2004 16:27:26 | Attr =    ]
QuickTime Task -> %ProgramFiles%\QuickTime\qttask.exe -> Apple Computer, Inc. [Ver = 7.1.5 | Size = 282624 bytes | Modified Date = 16/02/2007 11:54:04 | Attr =    ]
Recguard -> %SystemRoot%\SMINST\Recguard.exe ->  [Ver = 1, 0, 0, 1 | Size = 212992 bytes | Modified Date = 13/09/2002 14:42:26 | Attr =    ]
Sony Ericsson PC Suite -> %ProgramFiles%\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe -> Sony Ericsson Mobile Communications AB [Ver = 1.1.1.3 | Size = 159744 bytes | Modified Date = 26/10/2005 18:17:24 | Attr = R  ]
SunJavaUpdateSched -> %ProgramFiles%\Java\jre1.5.0_11\bin\jusched.exe -> Sun Microsystems, Inc. [Ver = 5.0.110.3 | Size = 75520 bytes | Modified Date = 15/12/2006 03:23:28 | Attr =    ]
< OptionalComponents [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\
IMAIL -> Installed = 1 ->
MAPI -> Installed = 1 ->
MSFS -> Installed = 1 ->
< Run [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
LDM -> %ProgramFiles%\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe -> Logitech Inc. [Ver = 2.52.21.16 | Size = 67128 bytes | Modified Date = 14/03/2007 15:51:08 | Attr =    ]
LogitechSoftwareUpdate -> %ProgramFiles%\Logitech\Video\ManifestEngine.exe -> Logitech Inc. [Ver = 8.4.6.1012 | Size = 196608 bytes | Modified Date = 18/01/2005 18:07:54 | Attr =    ]
Steam ->  -> File not found
< Common Startup > -> C:\Documents and Settings\All Users\Start Menu\Programs\Startup
%AllUsersStartup%\Adobe Reader Speed Launch.lnk -> %ProgramFiles%\Adobe\Acrobat 7.0\Reader\reader_sl.exe -> Adobe Systems Incorporated [Ver = 7.0.5.2005092300 | Size = 29696 bytes | Modified Date = 23/09/2005 22:05:26 | Attr =    ]
%AllUsersStartup%\Logitech Desktop Messenger.lnk -> %ProgramFiles%\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe -> Logitech Inc. [Ver = 2.52.21.16 | Size = 67128 bytes | Modified Date = 14/03/2007 15:51:08 | Attr =    ]
%AllUsersStartup%\SpeedTouch 121g Wireless USB Monitor.lnk -> %ProgramFiles%\Thomson SpeedTouch\SpeedTouch 121g Wireless USB Monitor\st121g.exe ->  [Ver = 1.0.1.15 | Size = 303104 bytes | Modified Date = 23/09/2004 18:36:28 | Attr =    ]
< User Startup > -> C:\Documents and Settings\Dave\Start Menu\Programs\Startup
%UserStartup%\Adobe Gamma.lnk -> %CommonProgramFiles%\Adobe\Calibration\Adobe Gamma Loader.exe -> Adobe Systems, Inc. [Ver = 1, 0, 0, 1 | Size = 113664 bytes | Modified Date = 16/03/2005 20:16:50 | Attr =    ]
< SSODL [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad
{fbeb8a05-beee-4442-804e-409d6c4515e9} [HKLM] -> Reg Data - Key not found [CDBurn] -> File not found
< SecurityProviders [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\\SecurityProviders
< Winlogon settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
< Winlogon settings [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon
< HOSTS File > (734 bytes) -> C:\WINDOWS\System32\drivers\etc\Hosts
127.0.0.1       localhost ->  ->
< Internet Explorer Settings > ->

dlgh01

  • Guest
Re: After running boot scan pc freezes
« Reply #16 on: April 20, 2007, 12:54:13 AM »
HKLM: Default_Page_URL -> http://go.microsoft.com/fwlink/?LinkId=69157 ->
HKLM: Main\\Default_Search_URL -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
HKLM: Local Page -> %SystemRoot%\system32\blank.htm ->
HKLM: Search Page -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
HKLM: Start Page -> about:blank ->
HKLM: CustomizeSearch -> http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm ->
HKLM: SearchAssistant -> http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm ->
HKCU: Local Page -> C:\WINDOWS\system32\blank.htm ->
HKCU: Search Page -> http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch ->
HKCU: Start Page -> http://www.orange.co.uk/ ->
HKCU: ProxyEnable -> 0 ->
HKCU: ProxyOverride -> localhost;*.local ->
< Trusted Sites > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\
msn.com [ - ] ->  ->
< BHO's > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} [HKLM] -> %ProgramFiles%\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [Adobe PDF Reader Link Helper] -> Adobe Systems Incorporated [Ver = 7.0.9.2006121800 | Size = 59032 bytes | Modified Date = 18/12/2006 04:16:42 | Attr =    ]
{53707962-6F74-2D53-2644-206D7942484F} [HKLM] -> %ProgramFiles%\Spybot - Search & Destroy\SDHelper.dll [] -> Safer Networking Limited [Ver = 1, 4, 0, 0 | Size = 853672 bytes | Modified Date = 31/05/2005 01:04:00 | Attr =    ]
{55EA1964-F5E4-4D6A-B9B2-125B37655FCB} [HKLM] -> %AllUsersAppData%\Prevx\pxbho.dll [URLDetector Class] -> Prevx Ltd. [Ver = 1.0.0.3 | Size = 90112 bytes | Modified Date = 10/01/2006 12:09:54 | Attr =    ]
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} [HKLM] -> %ProgramFiles%\Java\jre1.5.0_11\bin\ssv.dll [SSVHelper Class] -> Sun Microsystems, Inc. [Ver = 5.0.110.3 | Size = 440056 bytes | Modified Date = 15/12/2006 03:23:24 | Attr =    ]
{7E853D72-626A-48EC-A868-BA8D5E23E045} [HKLM] -> Reg Data - Key not found [Reg Data - Key not found] -> File not found
< Internet Explorer Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} [HKLM] -> %ProgramFiles%\Java\jre1.5.0_11\bin\npjpi150_11.dll [MenuText: Sun Java Console] -> Sun Microsystems, Inc. [Ver = 5.0.110.3 | Size = 75528 bytes | Modified Date = 15/12/2006 03:23:26 | Attr =    ]
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} [HKCU] -> %ProgramFiles%\Java\jre1.5.0_11\bin\ssv.dll [MenuText: Sun Java Console] -> Sun Microsystems, Inc. [Ver = 5.0.110.3 | Size = 440056 bytes | Modified Date = 15/12/2006 03:23:24 | Attr =    ]
{2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} -> Reg Data - Value does not exist [ButtonText: Create Mobile Favorite] -> File not found
{e2e2dd38-d088-4134-82b7-f2ba38496583} [HKLM] -> Reg Data - Key not found [MenuText: @xpsp3res.dll,-20001] -> File not found
< Internet Explorer Menu Extensions [HKCU] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\
Add to AMV Convert Tool... -> %ProgramFiles%\MP3 Player Utilities 3.74\AMVConverter\grab.htm -> File not found
Add to Windows &Live Favorites -> http:\favorites.live.com\quickadd.asp -> File not found
MediaManager tool grab multimedia file -> %ProgramFiles%\MP3 Player Utilities 3.74\MediaManager\grab.htm -> File not found
< DNS Name Servers [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\
{2CB9EDCE-DCA5-4D39-BBD0-7079D872B3A7} ->    (Windows Mobile-based Device) ->
{31EF8F98-25B8-4E30-8649-5467D67D9CAB} ->    () ->
{3B5B4465-9378-416F-BDAF-67C6A2CA340F} ->    (Windows Mobile-based Device) ->
{61A2D5FB-973A-4877-8914-A6147AA00DFD} ->    (VIA Compatable Fast Ethernet Adapter) ->
{90EB2CBD-2951-469A-895F-6E68A4DF39DD} ->    (1394 Net Adapter) ->
{9CDDC518-C244-449F-A856-4DC56CD31995} ->    (Windows Mobile-based Device) ->
{CB6E166C-0905-4F7C-B45E-5873ABFB6DDC} ->    (SpeedTouch 121g Wireless USB Adapter) ->
< Winsock2 Catalogs [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\
NameSpace_Catalog5\Catalog_Entries\000000000004 [mdnsNSP] -> %ProgramFiles%\Bonjour\mdnsNSP.dll -> Apple Computer, Inc. [Ver = 1,0,3,1 | Size = 94208 bytes | Modified Date = 28/02/2006 13:42:30 | Attr =    ]
< Protocol Handlers [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\
bwfile-8876480 -> %ProgramFiles%\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll -> Logitech Inc. [Ver = Version 8.1.1 (Build 50R) | Size = 28711 bytes | Modified Date = 14/03/2007 15:51:08 | Attr =    ]
cetihpz -> %ProgramFiles%\HP\hpcoretech\comp\hpuiprot.dll -> Hewlett-Packard Company [Ver = 2.1.4 | Size = 81920 bytes | Modified Date = 22/12/2003 08:38:40 | Attr =    ]
ipp -> Reg Data - Key not found -> File not found
msdaipp -> Reg Data - Key not found -> File not found
< Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\
{00B71CFB-6864-4346-A978-C0A14556272C} -> Checkers Class - CodeBase = http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab ->
{02BCC737-B171-4746-94C9-0D8A0B2C0089} -> Microsoft Office Template and Media Control - CodeBase = http://office.microsoft.com/templates/ieawsdc.cab ->
{166B1BCA-3F9C-11CF-8075-444553540000} -> Shockwave ActiveX Control - CodeBase = http://fpdownload.macromedia.com/pub/shockwave/cabs/director/sw.cab ->
{39B0684F-D7BF-4743-B050-FDC3F48F7E3B} -> FilePlanet Download Control Class - CodeBase = http://www.fileplanet.com/fpdlmgr/cabs/FPDC_2.3.1.99.cab ->
{4F1E5B1A-2A80-42CA-8532-2D05CB959537} -> MSN Photo Upload Tool - CodeBase = http://by123fd.bay123.hotmail.msn.com/resources/MsnPUpld.cab ->
{6E32070A-766D-4EE6-879C-DC1FA91D2FC3} -> MUWebControl Class - CodeBase = http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1152538098733 ->
{8AD9C840-044E-11D1-B3E9-00805F499D93} -> Java Plug-in 1.5.0_11 - CodeBase = http://java.sun.com/update/1.5.0/jinstall-1_5_0_11-windows-i586.cab ->
{8E0D4DE5-3180-4024-A327-4DFAD1796A8D} -> MessengerStatsClient Class - CodeBase = http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab ->
{AF2E62B6-F9E1-4D4F-A10A-9DC8E6DCBCC0} -> VideoEgg ActiveX Loader - CodeBase = http://update.videoegg.com/Install/Windows/Initial/VideoEggPublisher.exe ->
{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBA} -> Java Plug-in 1.5.0_07 - CodeBase = http://java.sun.com/update/1.5.0/jinstall-1_5_0_07-windows-i586.cab ->
{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA} -> Java Plug-in 1.5.0_09 - CodeBase = http://java.sun.com/update/1.5.0/jinstall-1_5_0_09-windows-i586.cab ->
{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} -> Java Plug-in 1.5.0_10 - CodeBase = http://java.sun.com/update/1.5.0/jinstall-1_5_0_10-windows-i586.cab ->
{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA} -> Java Plug-in 1.5.0_11 - CodeBase = http://java.sun.com/update/1.5.0/jinstall-1_5_0_11-windows-i586.cab ->
{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} -> Java Plug-in 1.5.0_11 - CodeBase = http://java.sun.com/update/1.5.0/jinstall-1_5_0_11-windows-i586.cab ->
{D27CDB6E-AE6D-11CF-96B8-444553540000} ->  - CodeBase = http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab ->


dlgh01

  • Guest
Re: After running boot scan pc freezes
« Reply #17 on: April 20, 2007, 12:54:57 AM »

[Files/Folders - Created Within 30 days]
Config.Msi -> %SystemDrive%\Config.Msi ->  [Folder | Created Date = 30/03/2007 19:47:56 | Attr =  HS]
QooBox -> %SystemDrive%\QooBox ->  [Folder | Created Date = 19/04/2007 22:05:25 | Attr =    ]
_OTMoveIt -> %SystemDrive%\_OTMoveIt ->  [Folder | Created Date = 19/04/2007 22:39:55 | Attr =    ]
$NtUninstallKB925902$ -> %SystemRoot%\$NtUninstallKB925902$ ->  [Folder | Created Date = 04/04/2007 10:24:20 | Attr =  H ]
$NtUninstallKB930178$ -> %SystemRoot%\$NtUninstallKB930178$ ->  [Folder | Created Date = 11/04/2007 08:25:07 | Attr =  H ]
$NtUninstallKB931261$ -> %SystemRoot%\$NtUninstallKB931261$ ->  [Folder | Created Date = 11/04/2007 08:25:15 | Attr =  H ]
$NtUninstallKB931784$ -> %SystemRoot%\$NtUninstallKB931784$ ->  [Folder | Created Date = 11/04/2007 08:25:26 | Attr =  H ]
$NtUninstallKB932168$ -> %SystemRoot%\$NtUninstallKB932168$ ->  [Folder | Created Date = 11/04/2007 08:24:55 | Attr =  H ]
iPlayer.INI -> %SystemRoot%\iPlayer.INI ->  [Ver =  | Size = 0 bytes | Created Date = 09/04/2007 17:15:45 | Attr =    ]
actskin4.ocx -> %System32%\actskin4.ocx ->  [Ver = 4, 2, 7, 3 | Size = 380928 bytes | Created Date = 17/04/2007 21:25:48 | Attr =    ]
aswBoot.exe -> %System32%\aswBoot.exe -> ALWIL Software [Ver = 4, 7, 981, 0 | Size = 712832 bytes | Created Date = 17/04/2007 21:25:48 | Attr =    ]
AVASTSS.scr -> %System32%\AVASTSS.scr -> ALWIL Software [Ver = 4, 7, 981, 0 | Size = 90112 bytes | Created Date = 17/04/2007 21:25:48 | Attr =    ]
ilnmp.ini -> %System32%\ilnmp.ini ->  [Ver =  | Size = 465010 bytes | Created Date = 16/04/2007 20:34:15 | Attr =  HS]
java.exe -> %System32%\java.exe -> Sun Microsystems, Inc. [Ver = 5.0.110.3 | Size = 49248 bytes | Created Date = 25/03/2007 11:02:04 | Attr =    ]
javaw.exe -> %System32%\javaw.exe -> Sun Microsystems, Inc. [Ver = 5.0.110.3 | Size = 53346 bytes | Created Date = 25/03/2007 11:02:04 | Attr =    ]
javaws.exe -> %System32%\javaws.exe -> Sun Microsystems, Inc. [Ver = 5.0.110.3 | Size = 127078 bytes | Created Date = 25/03/2007 11:02:04 | Attr =    ]
jxxlepkr.ini -> %System32%\jxxlepkr.ini ->  [Ver =  | Size = 1653717 bytes | Created Date = 04/04/2007 16:33:49 | Attr =  HS]
jxxlepkr.tmp -> %System32%\jxxlepkr.tmp ->  [Ver =  | Size = 1653726 bytes | Created Date = 11/04/2007 19:49:35 | Attr =  HS]
mcrh.tmp -> %System32%\mcrh.tmp ->  [Ver =  | Size = 143 bytes | Created Date = 05/04/2007 10:51:05 | Attr =    ]
pxinst.dll -> %System32%\pxinst.dll -> Prevx Limited, http://www.prevx1.com/ [Ver = 3.1.0.8363 built by: WinDDK | Size = 7680 bytes | Created Date = 17/04/2007 22:05:59 | Attr =    ]
aavmker4.sys -> %System32%\drivers\aavmker4.sys -> ALWIL Software [Ver = 4.7.981.0 | Size = 26888 bytes | Created Date = 17/04/2007 21:26:03 | Attr =    ]
aswmon.sys -> %System32%\drivers\aswmon.sys -> ALWIL Software [Ver = 4.7.981.0 | Size = 85952 bytes | Created Date = 17/04/2007 21:25:53 | Attr =    ]
aswmon2.sys -> %System32%\drivers\aswmon2.sys -> ALWIL Software [Ver = 4.7.981.0 | Size = 94552 bytes | Created Date = 17/04/2007 21:25:53 | Attr =    ]
aswRdr.sys -> %System32%\drivers\aswRdr.sys -> ALWIL Software [Ver = 4.7.981.0 | Size = 23416 bytes | Created Date = 17/04/2007 21:26:04 | Attr =    ]
aswTdi.sys -> %System32%\drivers\aswTdi.sys -> ALWIL Software [Ver = 4.7.981.0 | Size = 43176 bytes | Created Date = 17/04/2007 21:26:04 | Attr =    ]
pxcom.sys -> %System32%\drivers\pxcom.sys -> Prevx Limited, http://www.prevx1.com/ [Ver = 3.1.0.8363 built by: WinDDK | Size = 8192 bytes | Created Date = 17/04/2007 22:05:57 | Attr =    ]
PxEmu.sys -> %System32%\drivers\PxEmu.sys -> Prevx Limited, http://www.prevx1.com/ [Ver = 3.1.0.8363 built by: WinDDK | Size = 101120 bytes | Created Date = 17/04/2007 22:06:00 | Attr =    ]
pxfsf.sys -> %System32%\drivers\pxfsf.sys -> Prevx Limited, http://www.prevx1.com/ [Ver = 3.1.0.8363 built by: WinDDK | Size = 290816 bytes | Created Date = 17/04/2007 22:05:58 | Attr =    ]
PxRD.sys -> %System32%\drivers\PxRD.sys ->  [Ver =  | Size = 13952 bytes | Created Date = 17/04/2007 22:04:59 | Attr =    ]
pxtdi.sys -> %System32%\drivers\pxtdi.sys -> Prevx Limited, http://www.prevx1.com/ [Ver = 3.1.0.8363 built by: WinDDK | Size = 19200 bytes | Created Date = 17/04/2007 22:05:58 | Attr =    ]

[Files/Folders - Modified Within 30 days]
Config.Msi -> %SystemDrive%\Config.Msi ->  [Folder | Modified Date = 13/04/2007 10:45:50 | Attr =  HS]
hiberfil.sys -> %SystemDrive%\hiberfil.sys ->  [Ver =  | Size = 1072156672 bytes | Modified Date = 19/04/2007 21:54:02 | Attr =  HS]
Program Files -> %ProgramFiles% ->  [Folder | Modified Date = 19/04/2007 22:31:30 | Attr = R  ]
QooBox -> %SystemDrive%\QooBox ->  [Folder | Modified Date = 19/04/2007 23:05:26 | Attr =    ]
WINDOWS -> %SystemRoot% ->  [Folder | Modified Date = 19/04/2007 23:39:58 | Attr =    ]
_OTMoveIt -> %SystemDrive%\_OTMoveIt ->  [Folder | Modified Date = 19/04/2007 23:39:56 | Attr =    ]
$hf_mig$ -> %SystemRoot%\$hf_mig$ ->  [Folder | Modified Date = 11/04/2007 09:22:42 | Attr =  H ]
$NtUninstallKB925902$ -> %SystemRoot%\$NtUninstallKB925902$ ->  [Folder | Modified Date = 04/04/2007 11:24:22 | Attr =  H ]
$NtUninstallKB930178$ -> %SystemRoot%\$NtUninstallKB930178$ ->  [Folder | Modified Date = 11/04/2007 09:25:10 | Attr =  H ]
$NtUninstallKB931261$ -> %SystemRoot%\$NtUninstallKB931261$ ->  [Folder | Modified Date = 11/04/2007 09:25:18 | Attr =  H ]
$NtUninstallKB931784$ -> %SystemRoot%\$NtUninstallKB931784$ ->  [Folder | Modified Date = 11/04/2007 09:25:28 | Attr =  H ]
$NtUninstallKB932168$ -> %SystemRoot%\$NtUninstallKB932168$ ->  [Folder | Modified Date = 11/04/2007 09:24:58 | Attr =  H ]
assembly -> %SystemRoot%\assembly ->  [Folder | Modified Date = 06/04/2007 19:06:28 | Attr = R S]
bootstat.dat -> %SystemRoot%\bootstat.dat ->  [Ver =  | Size = 2048 bytes | Modified Date = 19/04/2007 21:54:06 | Attr =   S]
Fonts -> %SystemRoot%\Fonts ->  [Folder | Modified Date = 31/03/2007 22:53:20 | Attr = R S]
Help -> %SystemRoot%\Help ->  [Folder | Modified Date = 26/03/2007 20:26:10 | Attr =    ]
imsins.BAK -> %SystemRoot%\imsins.BAK ->  [Ver =  | Size = 1374 bytes | Modified Date = 11/04/2007 09:25:22 | Attr =    ]
inf -> %SystemRoot%\inf ->  [Folder | Modified Date = 17/04/2007 23:06:02 | Attr =  H ]
Installer -> %SystemRoot%\Installer ->  [Folder | Modified Date = 13/04/2007 10:45:56 | Attr =  HS]
iPlayer.INI -> %SystemRoot%\iPlayer.INI ->  [Ver =  | Size = 0 bytes | Modified Date = 09/04/2007 18:15:46 | Attr =    ]
Microsoft.NET -> %SystemRoot%\Microsoft.NET ->  [Folder | Modified Date = 26/03/2007 22:12:10 | Attr =    ]
Minidump -> %SystemRoot%\Minidump ->  [Folder | Modified Date = 12/04/2007 10:33:34 | Attr =    ]
msagent -> %SystemRoot%\msagent ->  [Folder | Modified Date = 11/04/2007 11:31:50 | Attr =    ]
NeroDigital.ini -> %SystemRoot%\NeroDigital.ini ->  [Ver =  | Size = 116 bytes | Modified Date = 21/03/2007 17:02:04 | Attr =    ]
Prefetch -> %SystemRoot%\Prefetch ->  [Folder | Modified Date = 19/04/2007 23:43:40 | Attr =    ]

dlgh01

  • Guest
Re: After running boot scan pc freezes
« Reply #18 on: April 20, 2007, 12:55:57 AM »
Registration -> %SystemRoot%\Registration ->  [Folder | Modified Date = 19/04/2007 21:55:36 | Attr =    ]
system -> %SystemRoot%\system ->  [Folder | Modified Date = 17/04/2007 19:57:40 | Attr =    ]
system32 -> %System32% ->  [Folder | Modified Date = 19/04/2007 23:39:58 | Attr =    ]
Tasks -> %SystemRoot%\Tasks ->  [Folder | Modified Date = 05/04/2007 12:18:36 | Attr =   S]
Temp -> %SystemRoot%\Temp ->  [Folder | Modified Date = 19/04/2007 23:07:30 | Attr =    ]
WinSxS -> %SystemRoot%\WinSxS ->  [Folder | Modified Date = 26/03/2007 20:21:06 | Attr =    ]
AppleSoftwareUpdate.job -> %SystemRoot%\tasks\AppleSoftwareUpdate.job ->  [Ver =  | Size = 284 bytes | Modified Date = 17/04/2007 17:03:02 | Attr =    ]
SA.DAT -> %SystemRoot%\tasks\SA.DAT ->  [Ver =  | Size = 6 bytes | Modified Date = 19/04/2007 21:54:20 | Attr =  H ]
aswBoot.exe -> %System32%\aswBoot.exe -> ALWIL Software [Ver = 4, 7, 981, 0 | Size = 712832 bytes | Modified Date = 10/04/2007 12:18:32 | Attr =    ]
AVASTSS.scr -> %System32%\AVASTSS.scr -> ALWIL Software [Ver = 4, 7, 981, 0 | Size = 90112 bytes | Modified Date = 14/04/2007 08:42:44 | Attr =    ]
CatRoot -> %System32%\CatRoot ->  [Folder | Modified Date = 23/03/2007 09:21:18 | Attr =    ]
CatRoot2 -> %System32%\CatRoot2 ->  [Folder | Modified Date = 19/04/2007 21:55:40 | Attr =    ]
config -> %System32%\config ->  [Folder | Modified Date = 17/04/2007 20:35:16 | Attr =    ]
CONFIG.NT -> %System32%\CONFIG.NT ->  [Ver =  | Size = 2626 bytes | Modified Date = 17/04/2007 23:11:48 | Attr =    ]
DirectX -> %System32%\DirectX ->  [Folder | Modified Date = 06/04/2007 19:06:30 | Attr =    ]
dllcache -> %System32%\dllcache ->  [Folder | Modified Date = 11/04/2007 11:31:50 | Attr = RHS]
drivers -> %System32%\drivers ->  [Folder | Modified Date = 19/04/2007 23:01:24 | Attr =    ]
DRVSTORE -> %System32%\DRVSTORE ->  [Folder | Modified Date = 30/03/2007 21:41:28 | Attr =    ]
FNTCACHE.DAT -> %System32%\FNTCACHE.DAT ->  [Ver =  | Size = 1526312 bytes | Modified Date = 04/04/2007 17:28:04 | Attr =    ]
ilnmp.ini -> %System32%\ilnmp.ini ->  [Ver =  | Size = 465010 bytes | Modified Date = 17/04/2007 23:19:46 | Attr =  HS]
jxxlepkr.ini -> %System32%\jxxlepkr.ini ->  [Ver =  | Size = 1653717 bytes | Modified Date = 11/04/2007 20:45:40 | Attr =  HS]
jxxlepkr.tmp -> %System32%\jxxlepkr.tmp ->  [Ver =  | Size = 1653726 bytes | Modified Date = 11/04/2007 20:49:36 | Attr =  HS]
mcrh.tmp -> %System32%\mcrh.tmp ->  [Ver =  | Size = 143 bytes | Modified Date = 17/04/2007 16:19:20 | Attr =    ]
nvapps.xml -> %System32%\nvapps.xml ->  [Ver =  | Size = 51048 bytes | Modified Date = 19/04/2007 21:55:02 | Attr =    ]
perfc009.dat -> %System32%\perfc009.dat ->  [Ver =  | Size = 63132 bytes | Modified Date = 03/04/2007 10:04:36 | Attr =    ]
perfh009.dat -> %System32%\perfh009.dat ->  [Ver =  | Size = 402714 bytes | Modified Date = 03/04/2007 10:04:36 | Attr =    ]
PerfStringBackup.INI -> %System32%\PerfStringBackup.INI ->  [Ver =  | Size = 473400 bytes | Modified Date = 03/04/2007 10:04:34 | Attr =    ]
pxinst.dll -> %System32%\pxinst.dll -> Prevx Limited, http://www.prevx1.com/ [Ver = 3.1.0.8363 built by: WinDDK | Size = 7680 bytes | Modified Date = 26/03/2007 16:23:02 | Attr =    ]
wpa.dbl -> %System32%\wpa.dbl ->  [Ver =  | Size = 1158 bytes | Modified Date = 19/04/2007 21:55:36 | Attr =    ]
aavmker4.sys -> %System32%\drivers\aavmker4.sys -> ALWIL Software [Ver = 4.7.981.0 | Size = 26888 bytes | Modified Date = 14/04/2007 08:43:32 | Attr =    ]
aswmon.sys -> %System32%\drivers\aswmon.sys -> ALWIL Software [Ver = 4.7.981.0 | Size = 85952 bytes | Modified Date = 14/04/2007 08:47:46 | Attr =    ]
aswmon2.sys -> %System32%\drivers\aswmon2.sys -> ALWIL Software [Ver = 4.7.981.0 | Size = 94552 bytes | Modified Date = 14/04/2007 08:47:32 | Attr =    ]
aswRdr.sys -> %System32%\drivers\aswRdr.sys -> ALWIL Software [Ver = 4.7.981.0 | Size = 23416 bytes | Modified Date = 14/04/2007 08:45:36 | Attr =    ]
aswTdi.sys -> %System32%\drivers\aswTdi.sys -> ALWIL Software [Ver = 4.7.981.0 | Size = 43176 bytes | Modified Date = 14/04/2007 08:44:52 | Attr =    ]
etc -> %System32%\drivers\etc ->  [Folder | Modified Date = 06/04/2007 18:58:22 | Attr =    ]
pxcom.sys -> %System32%\drivers\pxcom.sys -> Prevx Limited, http://www.prevx1.com/ [Ver = 3.1.0.8363 built by: WinDDK | Size = 8192 bytes | Modified Date = 26/03/2007 16:22:58 | Attr =    ]
PxEmu.sys -> %System32%\drivers\PxEmu.sys -> Prevx Limited, http://www.prevx1.com/ [Ver = 3.1.0.8363 built by: WinDDK | Size = 101120 bytes | Modified Date = 26/03/2007 16:23:02 | Attr =    ]
pxfsf.sys -> %System32%\drivers\pxfsf.sys -> Prevx Limited, http://www.prevx1.com/ [Ver = 3.1.0.8363 built by: WinDDK | Size = 290816 bytes | Modified Date = 26/03/2007 16:22:58 | Attr =    ]
pxtdi.sys -> %System32%\drivers\pxtdi.sys -> Prevx Limited, http://www.prevx1.com/ [Ver = 3.1.0.8363 built by: WinDDK | Size = 19200 bytes | Modified Date = 26/03/2007 16:23:00 | Attr =    ]

[File String Scan - Non-Microsoft Only]
Umonitor ,  -> %SystemRoot%\pxinstall_log.txt ->  [Ver =  | Size = 309094 bytes | Modified Date = 17/04/2007 23:07:24 | Attr =    ]
UPX! , UPX0 ,  -> %System32%\aswBoot.exe -> ALWIL Software [Ver = 4, 7, 981, 0 | Size = 712832 bytes | Modified Date = 10/04/2007 12:18:32 | Attr =    ]
PEC2 ,  -> %System32%\dfrg.msc ->  [Ver =  | Size = 41397 bytes | Modified Date = 10/08/2004 20:00:00 | Attr =    ]
PEC2 , PECompact2 ,  -> %System32%\DivX.dll -> DivXNetworks [Ver = 6,0,0,1571 | Size = 692736 bytes | Modified Date = 02/09/2005 00:39:44 | Attr =    ]
Thawte Consulting ,  -> %System32%\mfimgvwr.ocx -> MyFamily.com, Inc. [Ver = 2.0.0.1 | Size = 181752 bytes | Modified Date = 09/04/2005 10:44:18 | Attr =    ]
PEC2 ,  -> %System32%\oembios.bin ->  [Ver =  | Size = 13107200 bytes | Modified Date = 11/09/2001 00:15:36 | Attr =    ]
Thawte Consulting ,  -> %System32%\SmartUI2.ocx -> Xceed Software Inc        (450) 442-2626        support@xceedsoft.com        www.xceedsoft.com [Ver = 2.00.6553 | Size = 870152 bytes | Modified Date = 15/03/2007 12:22:38 | Attr =    ]
winsync ,  -> %System32%\wbdbase.deu ->  [Ver =  | Size = 1309184 bytes | Modified Date = 10/08/2004 20:00:00 | Attr =    ]
Thawte Consulting ,  -> %System32%\XceedCry.dll -> Xceed Software Inc        (450) 442-2626        support@xceedsoft.com        www.xceedsoft.com [Ver = 1.1.6461.0 | Size = 526184 bytes | Modified Date = 15/03/2007 12:19:58 | Attr =    ]
Thawte Consulting ,  -> %System32%\XceedZip.dll -> Xceed Software Inc        (450) 442-2626        support@xceedsoft.com        www.xceedsoft.com [Ver = 6.0.6621.0 | Size = 497496 bytes | Modified Date = 15/03/2007 12:23:16 | Attr =    ]
PEC2 ,  -> %System32%\dllcache\oembios.bin ->  [Ver =  | Size = 13107200 bytes | Modified Date = 11/09/2001 00:15:36 | Attr =    ]
PEC2 ,  -> %System32%\drivers\VcommMgr.sys -> IVT Corporation [Ver = 2.20 | Size = 82148 bytes | Modified Date = 25/03/2005 18:18:48 | Attr =    ]

< End of report >

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: After running boot scan pc freezes
« Reply #19 on: April 20, 2007, 12:56:38 AM »
Got it running an anlysis now

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: After running boot scan pc freezes
« Reply #20 on: April 20, 2007, 01:04:09 AM »
Final stretch

Start WinPFind3U. Copy/Paste the information in the quotebox below into the pane where it says "Paste fix here" and then click the Run Fix button.

Quote
[Registry - Non-Microsoft Only]
< Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\
YN -> {CAFEEFAC-0015-0000-0007-ABCDEFFEDCBA} -> Java Plug-in 1.5.0_07 - CodeBase = http://java.sun.com/update/1.5.0/jinstall-1_5_0_07-windows-i586.cab
YN -> {CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA} -> Java Plug-in 1.5.0_09 - CodeBase = http://java.sun.com/update/1.5.0/jinstall-1_5_0_09-windows-i586.cab
[Files/Folders - Created Within 30 days]
NY -> jxxlepkr.ini -> %System32%\jxxlepkr.ini
NY -> jxxlepkr.tmp -> %System32%\jxxlepkr.tmp
NY -> mcrh.tmp -> %System32%\mcrh.tmp
[Files/Folders - Modified Within 30 days]
NY -> imsins.BAK -> %SystemRoot%\imsins.BAK
NY -> ilnmp.ini -> %System32%\ilnmp.ini
NY -> jxxlepkr.ini -> %System32%\jxxlepkr.ini
NY -> jxxlepkr.tmp -> %System32%\jxxlepkr.tmp


The fix should only take a very short time. When the fix is completed a message box will popup telling you that it is finished. CLick the Ok button and Notepad will open with a log of actions taken during the fix. Post that information back here along with a new WinPFind3u scan.

I will review the information when it comes back in.

Also let me know of any problems you encountered performing the steps above or any continuing problems you are still having with the computer.

dlgh01

  • Guest
Re: After running boot scan pc freezes
« Reply #21 on: April 20, 2007, 01:06:45 AM »
[Registry - Non-Microsoft Only]
Starting removal of ActiveX control {CAFEEFAC-0015-0000-0007-ABCDEFFEDCBA}
 not found.
C:\Program Files\Java\jre1.5.0_07\bin\npjpi150_07.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBA} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBA} deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBA} deleted successfully.
Removal of ActiveX control {CAFEEFAC-0015-0000-0007-ABCDEFFEDCBA} complete!
Starting removal of ActiveX control {CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}
 not found.
C:\Program Files\Java\jre1.5.0_09\bin\npjpi150_09.dll moved successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA} deleted successfully.
Registry key HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA} deleted successfully.
Removal of ActiveX control {CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA} complete!
[Files/Folders - Created Within 30 days]
C:\WINDOWS\SYSTEM32\jxxlepkr.ini moved successfully.
C:\WINDOWS\SYSTEM32\jxxlepkr.tmp moved successfully.
C:\WINDOWS\SYSTEM32\mcrh.tmp moved successfully.
[Files/Folders - Modified Within 30 days]
C:\WINDOWS\imsins.BAK moved successfully.
C:\WINDOWS\SYSTEM32\ilnmp.ini moved successfully.
File C:\WINDOWS\SYSTEM32\jxxlepkr.ini not found!
File C:\WINDOWS\SYSTEM32\jxxlepkr.tmp not found!
File  not found!
File  not found!
< End of log >
Created on 04/20/2007 00:05:31

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: After running boot scan pc freezes
« Reply #22 on: April 20, 2007, 01:09:21 AM »
If there are no further problems evident I think we can call you done

Now to get you off to a good start we will re-set your restore points so that all the bad stuff is gone for good. Then if you need to restore at some stage you will be clean. There are several ways to reset your your restore point but this is my method:

1. Select Start > All Programs > Accessories > System tools > System Restore.
2. On the dialogue box that appears select Create a Restore Point
3. Click NEXT
4. Enter a name e.g. Clean
5. Click CREATE

You now have a clean restore point, to get rid of the bad ones:

1. Select Start > All Programs > Accessories > System tools > Disk Cleanup.
2. In the Drop down box that appears select your main drive e.g. C
3. Click OK
4. The System will do some calculation and the display a dialogue box with TABS
5. Select the More Options Tab.
6. At the bottom will be a system restore box with a CLEANUP button click this
7. Accept the Warning and select OK again, the program will close and you are done

Time for bed G'night

dlgh01

  • Guest
Re: After running boot scan pc freezes
« Reply #23 on: April 20, 2007, 01:12:20 AM »
many thanks for your help. I assume Avast will stop this re ocurring

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: After running boot scan pc freezes
« Reply #24 on: April 20, 2007, 01:14:31 AM »
OOps I forgot you may now delete the tools downloaded  ;D 

Unfortunately this was a Malware problem I would recommend
Download and then run SuperAntispyware as your antispy protection

Offline Lisandro

  • Avast team
  • Certainly Bot
  • *
  • Posts: 67194
Re: After running boot scan pc freezes
« Reply #25 on: April 20, 2007, 02:57:15 AM »
Download and then run SuperAntispyware as your antispy protection
Essexboy, do you think that Superantispyware have a good detection rate?
Will it worth to run instead of AVGas or a-squared?
Thanks.
The best things in life are free.

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: After running boot scan pc freezes
« Reply #26 on: April 20, 2007, 08:07:34 PM »
They are actually much of a muchness they both have their weak spots but SAS is easier to read and also kills a bit more of the registry entries, plus it runs on Vista with no problem 

Offline Lisandro

  • Avast team
  • Certainly Bot
  • *
  • Posts: 67194
Re: After running boot scan pc freezes
« Reply #27 on: April 20, 2007, 09:26:55 PM »
They are actually much of a muchness they both have their weak spots but SAS is easier to read and also kills a bit more of the registry entries, plus it runs on Vista with no problem 
Seems that detection is weaker but cleansing is better, am I right?
The best things in life are free.

Offline essexboy

  • Malware removal instructor
  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 40589
  • Dragons by Sasha
    • Malware fixes
Re: After running boot scan pc freezes
« Reply #28 on: April 20, 2007, 11:02:47 PM »
In a word not really because AVG has some blind spots that SAS picks up and vice versa, but the cleaning on SAS is a lot more thorough.  So in preference I would tend to go for SAS at the moment.  However, I no longer recommend AdAware or Spybot as they are no longer near the top of the pile for detection or cleaning 

Offline Lisandro

  • Avast team
  • Certainly Bot
  • *
  • Posts: 67194
Re: After running boot scan pc freezes
« Reply #29 on: April 21, 2007, 07:49:37 PM »
However, I no longer recommend AdAware or Spybot as they are no longer near the top of the pile for detection or cleaning 
I feel exactly the same.
The best things in life are free.