Author Topic: Virus... please help  (Read 73438 times)

0 Members and 2 Guests are viewing this topic.

Offline Lisandro

  • Avast team
  • Certainly Bot
  • *
  • Posts: 67183
Re: Virus... please help
« Reply #90 on: November 06, 2007, 07:03:35 PM »
I never read this log... but we have nothing to lose...
The best things in life are free.

tryan21

  • Guest
Re: Virus... please help
« Reply #91 on: November 06, 2007, 07:23:42 PM »
Here is the log from when I tried to install update KB886185

[KB886185.log]
9.163: ================================================================================
9.163: 2007/02/28 11:13:03.371 (local)
9.163: C:\WINDOWS\SoftwareDistribution\Download\35d340428a8f32f0a91986e753c6e613\update\update.exe (version 5.5.33.0)
9.163: Failed To Enable SE_SHUTDOWN_PRIVILEGE
9.233: Service Pack started with following command line: -q /Z -ER /ParentInfo:673aa638f3f9a74b9f323194ada04dab
21.360: DoInstallation: CleanPFR failed: 0x2
21.440: SetProductTypes: InfProductBuildType=BuildType.Sel
21.461: SetAltOsLoaderPath: No section uses DirId 65701; done.
22.272: DoInstallation: FetchSourceURL for c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\update_SP2GDR.inf failed
22.272: CreateUninstall = 1,Directory = C:\WINDOWS\$NtUninstallKB886185$
22.482: LoadFileQueues: SetupGetSourceFileLocation for halacpi.dll failed: 0xe0000102
24.375: BuildCabinetManifest: update.url absent
24.435: Starting AnalyzeComponents
24.435: AnalyzePhaseZero used 0 ticks
24.435: No c:\windows\INF\updtblk.inf file.
24.455: OEM file scan used 20 ticks
24.685: AnalyzePhaseOne: used 250 ticks
24.685: AnalyzeComponents: Hotpatch analysis disabled; skipping.
24.685: AnalyzeComponents: Hotpatching is disabled.
24.685: FindFirstFile c:\windows\$hf_mig$\*.*
24.765: KB886185 Setup encountered an error:  The  update.ver file is not correct.
24.785: KB886185 Setup encountered an error:  The  update.ver file is not correct.
24.805: KB886185 Setup encountered an error:  The  update.ver file is not correct.
24.825: KB886185 Setup encountered an error:  The  update.ver file is not correct.
24.845: KB886185 Setup encountered an error:  The  update.ver file is not correct.
24.865: KB886185 Setup encountered an error:  The  update.ver file is not correct.
24.885: KB886185 Setup encountered an error:  The  update.ver file is not correct.
25.196: KB886185 Setup encountered an error:  The  update.ver file is not correct.
25.627: KB886185 Setup encountered an error:  The  update.ver file is not correct.
25.647: KB886185 Setup encountered an error:  The  update.ver file is not correct.
25.667: KB886185 Setup encountered an error:  The  update.ver file is not correct.
25.687: KB886185 Setup encountered an error:  The  update.ver file is not correct.
25.707: KB886185 Setup encountered an error:  The  update.ver file is not correct.
25.727: KB886185 Setup encountered an error:  The  update.ver file is not correct.
26.007: KB886185 Setup encountered an error:  The  update.ver file is not correct.
26.027: KB886185 Setup encountered an error:  The  update.ver file is not correct.
26.047: KB886185 Setup encountered an error:  The  update.ver file is not correct.
26.087: KB886185 Setup encountered an error:  The  update.ver file is not correct.
26.087: KB886185 Setup encountered an error:  The  update.ver file is not correct.
26.107: KB886185 Setup encountered an error:  The  update.ver file is not correct.
26.127: KB886185 Setup encountered an error:  The  update.ver file is not correct.
26.167: KB886185 Setup encountered an error:  The  update.ver file is not correct.
26.197: KB886185 Setup encountered an error:  The  update.ver file is not correct.
26.217: KB886185 Setup encountered an error:  The  update.ver file is not correct.
26.237: KB886185 Setup encountered an error:  The  update.ver file is not correct.
26.257: KB886185 Setup encountered an error:  The  update.ver file is not correct.
26.277: KB886185 Setup encountered an error:  The  update.ver file is not correct.
26.297: KB886185 Setup encountered an error:  The  update.ver file is not correct.
26.317: KB886185 Setup encountered an error:  The  update.ver file is not correct.
26.608: KB886185 Setup encountered an error:  The  update.ver file is not correct.
26.888: KB886185 Setup encountered an error:  The  update.ver file is not correct.
26.908: KB886185 Setup encountered an error:  The  update.ver file is not correct.
26.928: KB886185 Setup encountered an error:  The  update.ver file is not correct.
26.948: KB886185 Setup encountered an error:  The  update.ver file is not correct.
26.968: KB886185 Setup encountered an error:  The  update.ver file is not correct.
26.968: KB886185 Setup encountered an error:  The  update.ver file is not correct.
26.988: KB886185 Setup encountered an error:  The  update.ver file is not correct.
27.008: KB886185 Setup encountered an error:  The  update.ver file is not correct.
27.008: KB886185 Setup encountered an error:  The  update.ver file is not correct.
27.029: KB886185 Setup encountered an error:  The  update.ver file is not correct.

tryan21

  • Guest
Re: Virus... please help
« Reply #92 on: November 06, 2007, 07:24:17 PM »
27.049: AnalyzeForBranching used 20 ticks.
27.239: AnalyzePhaseTwo used 190 ticks
27.239: AnalyzePhaseThree used 0 ticks
27.239: AnalyzePhaseFive used 0 ticks
27.239: AnalyzePhaseSix used 0 ticks
27.259: AnalyzeComponents used 2824 ticks
27.259: Downloading 0 files
27.259: bPatchMode = FALSE
27.259: Inventory complete: ReturnStatus=0, 4967 ticks
27.279: Num Ticks for invent : 5007
33.538: Allocation size of drive C: is 4096 bytes, free space = 26350620672 bytes
34.039: AnalyzeDiskUsage:  Skipping EstimateDiskUsageForUninstall.
34.039: Drive C: free 25129MB req: 8MB w/uninstall: NOT CALCULATED.
34.039: CabinetBuild complete
34.039: Num Ticks for Cabinet build : 6760
34.349: LoadFileQueues: SetupGetSourceFileLocation for halacpi.dll failed: 0xe0000102
36.021: Num Ticks for Backup : 1982
36.562: Num Ticks for creating uninst inf : 541
36.592: Registering Uninstall Program for -> KB886185, KB886185 , 0x0
36.602: LoadFileQueues: SetupGetSourceFileLocation for halacpi.dll failed: 0xe0000102
36.963: System Restore Point set.
37.163: PFE2: Not avoiding Per File Exceptions.
38.315: GetCatVersion:  Failed to retrieve version information from C:\WINDOWS\system32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\KB886185.cat with error 0x57
38.916: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\update_SP2QFE.inf -> c:\windows\$hf_mig$\KB886185\update\update_SP2QFE.inf.
39.036: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\spuninst.exe -> c:\windows\$hf_mig$\KB886185\spuninst.exe.
39.106: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\spmsg.dll -> c:\windows\$hf_mig$\KB886185\spmsg.dll.
39.266: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\spcustom.dll -> c:\windows\$hf_mig$\KB886185\update\spcustom.dll.
39.276: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\KB886185.CAT -> c:\windows\$hf_mig$\KB886185\update\KB886185.CAT.
39.607: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\update.exe -> c:\windows\$hf_mig$\KB886185\update\update.exe.
39.677: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\update.ver -> c:\windows\$hf_mig$\KB886185\update\update.ver.
39.737: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\updatebr.inf -> c:\windows\$hf_mig$\KB886185\update\updatebr.inf.
39.807: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\eula.txt -> c:\windows\$hf_mig$\KB886185\update\eula.txt.
39.837: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\branches.inf -> c:\windows\$hf_mig$\KB886185\update\branches.inf.
41.139: Copied file:  C:\WINDOWS\system32\DRIVERS\ipnat.sys
41.239: Copied file:  C:\WINDOWS\system32\DllCache\ipnat.sys
42.050: Copied file:  c:\windows\$hf_mig$\KB886185\SP2QFE\ipnat.sys
42.641: Num Ticks for Copying files : 6079

tryan21

  • Guest
Re: Virus... please help
« Reply #93 on: November 06, 2007, 07:25:21 PM »
42.671: Num Ticks for Reg update and deleting 0 size files : 30   
91.081: UpdateSpUpdSvcInf: Source [ProcessesToRunAfterReboot] section is empty; nothing to do.
91.081: IsRebootRequiredForFileQueue: c:\windows\system32\drivers\ipnat.sys was no-delay replaced; reboot is required.
91.081: DoInstallation: A reboot is required to complete the installation of one or more files.
91.301: RebootNecessary = 1,WizardInput = 1 , DontReboot = 1, ForceRestart = 0
3.786: ================================================================================
3.806: 2007/10/26 09:28:35.188 (local)
3.806: C:\WINDOWS\SoftwareDistribution\Download\35d340428a8f32f0a91986e753c6e613\update\update.exe (version 5.5.33.0)
3.806: Failed To Enable SE_SHUTDOWN_PRIVILEGE
3.906: Service Pack started with following command line: -q /Z -ER /ParentInfo:6bdf785f735fe34badc9e5919ff2a5a4
15.683: ---- Old Information In The Registry ------
15.683: Source:C:\WINDOWS\system32\SET4.tmp (5.2.3790.2847)
15.693: Destination:C:\WINDOWS\system32\hhctrl.ocx (5.2.3790.1166)
15.693: Source:C:\WINDOWS\system32\_000012_.tmp.dll (5.1.2600.2096)
15.693: Destination:
15.703: Source:C:\WINDOWS\system32\SETB.tmp (5.1.2600.2622)
15.703: Destination:C:\WINDOWS\system32\winsrv.dll (5.1.2600.2096)
15.703: Source:C:\WINDOWS\system32\SETC.tmp (5.1.2600.2622)
15.713: Destination:C:\WINDOWS\system32\user32.dll (5.1.2600.2096)
15.713: Source:C:\WINDOWS\system32\SETD.tmp (5.1.2600.2622)
15.713: Destination:C:\WINDOWS\system32\authz.dll (5.1.2600.2096)
15.713: Source:C:\WINDOWS\system32\_000008_.tmp.dll (5.1.2600.0)
15.713: Destination:
15.723: Source:C:\WINDOWS\system32\SET28.tmp (5.1.2600.2665)
15.723: Destination:C:\WINDOWS\system32\rpcss.dll (5.1.2600.2096)
15.723: Source:C:\WINDOWS\system32\SET29.tmp (5.1.2600.2665)
15.733: Destination:C:\WINDOWS\system32\olecli32.dll (5.1.2600.0)
15.733: Source:C:\WINDOWS\system32\SET2A.tmp (5.1.2600.2665)
15.733: Destination:C:\WINDOWS\system32\ole32.dll (5.1.2600.2096)
15.733: Source:C:\WINDOWS\system32\_000005_.tmp.dll (5.1.2600.2096)
15.733: Destination:
15.743: Source:C:\WINDOWS\system32\SET3D.tmp (2001.12.4414.311)
15.743: Destination:C:\WINDOWS\system32\mtxoci.dll (2001.12.4414.254)
15.743: Source:C:\WINDOWS\system32\SET3E.tmp (2001.12.4414.311)
15.753: Destination:C:\WINDOWS\system32\mtxclu.dll (2001.12.4414.254)
15.753: Source:C:\WINDOWS\system32\SET51.tmp (5.1.2600.2744)
15.753: Destination:C:\WINDOWS\system32\umpnpmgr.dll (5.1.2600.2096)
15.763: Source:C:\WINDOWS\system32\SET55.tmp (6.0.2900.2869)
15.763: Destination:C:\WINDOWS\system32\shell32.dll (6.0.2900.2096)
15.763: ---- New Information In The Registry ------
15.763: Source:C:\WINDOWS\system32\SET4.tmp (5.2.3790.2847)
15.773: Destination:C:\WINDOWS\system32\hhctrl.ocx (5.2.3790.1166)
15.773: Source:C:\WINDOWS\system32\_000012_.tmp.dll (5.1.2600.2096)
15.773: Destination:
15.773: Source:C:\WINDOWS\system32\SETB.tmp (5.1.2600.2622)
15.783: Destination:C:\WINDOWS\system32\winsrv.dll (5.1.2600.2096)
15.783: Source:C:\WINDOWS\system32\SETC.tmp (5.1.2600.2622)
15.783: Destination:C:\WINDOWS\system32\user32.dll (5.1.2600.2096)
15.783: Source:C:\WINDOWS\system32\SETD.tmp (5.1.2600.2622)
15.783: Destination:C:\WINDOWS\system32\authz.dll (5.1.2600.2096)
15.783: Source:C:\WINDOWS\system32\_000008_.tmp.dll (5.1.2600.0)
15.783: Destination:
15.793: Source:C:\WINDOWS\system32\SET28.tmp (5.1.2600.2665)
15.793: Destination:C:\WINDOWS\system32\rpcss.dll (5.1.2600.2096)
15.793: Source:C:\WINDOWS\system32\SET29.tmp (5.1.2600.2665)
15.793: Destination:C:\WINDOWS\system32\olecli32.dll (5.1.2600.0)
15.793: Source:C:\WINDOWS\system32\SET2A.tmp (5.1.2600.2665)
15.793: Destination:C:\WINDOWS\system32\ole32.dll (5.1.2600.2096)
15.803: Source:C:\WINDOWS\system32\_000005_.tmp.dll (5.1.2600.2096)
15.803: Destination:
15.803: Source:C:\WINDOWS\system32\SET3D.tmp (2001.12.4414.311)
15.803: Destination:C:\WINDOWS\system32\mtxoci.dll (2001.12.4414.254)
15.803: Source:C:\WINDOWS\system32\SET3E.tmp (2001.12.4414.311)
15.803: Destination:C:\WINDOWS\system32\mtxclu.dll (2001.12.4414.254)
15.803: Source:C:\WINDOWS\system32\SET51.tmp (5.1.2600.2744)
15.803: Destination:C:\WINDOWS\system32\umpnpmgr.dll (5.1.2600.2096)
15.813: Source:C:\WINDOWS\system32\SET55.tmp (6.0.2900.2869)
15.813: Destination:C:\WINDOWS\system32\shell32.dll (6.0.2900.2096)
15.823: SetProductTypes: InfProductBuildType=BuildType.Sel
15.833: SetAltOsLoaderPath: No section uses DirId 65701; done.
15.883: DoInstallation: FetchSourceURL for c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\update_SP2GDR.inf failed
15.883: CreateUninstall = 1,Directory = C:\WINDOWS\$NtUninstallKB886185$
16.103: LoadFileQueues: SetupGetSourceFileLocation for halacpi.dll failed: 0xe0000102
16.784: BuildCabinetManifest: update.url absent

tryan21

  • Guest
Re: Virus... please help
« Reply #94 on: November 06, 2007, 07:25:55 PM »
16.784: Starting AnalyzeComponents
16.784: AnalyzePhaseZero used 0 ticks
16.784: No c:\windows\INF\updtblk.inf file.
16.784: OEM file scan used 0 ticks
16.844: AnalyzePhaseOne: used 60 ticks
16.844: AnalyzeComponents: Hotpatch analysis disabled; skipping.
16.844: AnalyzeComponents: Hotpatching is disabled.
16.844: FindFirstFile c:\windows\$hf_mig$\*.*
16.844: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.844: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.844: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.844: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.844: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.844: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.864: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.864: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.874: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.884: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.894: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.894: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.915: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.915: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.915: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.915: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.915: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.915: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.915: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.935: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.935: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.935: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.935: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.935: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.945: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.945: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.955: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.955: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.955: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.955: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.955: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.955: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.955: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.965: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.965: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.965: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.965: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.965: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.965: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.965: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.975: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.975: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.975: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.975: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.975: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.975: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.975: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.975: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.975: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.985: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.985: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.985: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.995: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.995: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.995: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.995: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.995: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.995: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.995: KB886185 Setup encountered an error:  The  update.ver file is not correct.
16.995: KB886185 Setup encountered an error:  The  update.ver file is not correct.
17.005: KB886185 Setup encountered an error:  The  update.ver file is not correct.
17.005: KB886185 Setup encountered an error:  The  update.ver file is not correct.
17.005: KB886185 Setup encountered an error:  The  update.ver file is not correct.
17.015: AnalyzeForBranching used 10 ticks.
17.305: AnalyzePhaseTwo used 290 ticks
17.305: AnalyzePhaseThree used 0 ticks
17.305: AnalyzePhaseFive used 0 ticks
17.305: AnalyzePhaseSix used 0 ticks
17.305: AnalyzeComponents used 521 ticks
17.305: Downloading 0 files
17.305: bPatchMode = FALSE
17.305: Inventory complete: ReturnStatus=0, 1422 ticks
17.305: Num Ticks for invent : 1422
17.956: Allocation size of drive C: is 4096 bytes, free space = 12784857088 bytes
17.956: Free space of directory c:\windows adjusted to 12784791552
18.577: AnalyzeDiskUsage:  Skipping EstimateDiskUsageForUninstall.
18.577: Drive C: free 12192MB req: 8MB w/uninstall: NOT CALCULATED.

tryan21

  • Guest
Re: Virus... please help
« Reply #95 on: November 06, 2007, 07:26:27 PM »
18.577: CabinetBuild complete
18.577: Num Ticks for Cabinet build : 1272
18.647: LoadFileQueues: SetupGetSourceFileLocation for halacpi.dll failed: 0xe0000102
19.418: Num Ticks for Backup : 841
20.460: Num Ticks for creating uninst inf : 1042
20.470: Registering Uninstall Program for -> KB886185, KB886185 , 0x0
20.470: LoadFileQueues: SetupGetSourceFileLocation for halacpi.dll failed: 0xe0000102
21.081: System Restore Point set.
21.151: PFE2: Not avoiding Per File Exceptions.
22.252: GetCatVersion:  Failed to retrieve version information from C:\WINDOWS\system32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\KB886185.cat with error 0x57
22.773: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\update_SP2QFE.inf -> c:\windows\$hf_mig$\KB886185\update\update_SP2QFE.inf.
22.843: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\spuninst.exe -> c:\windows\$hf_mig$\KB886185\spuninst.exe.
22.883: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\spmsg.dll -> c:\windows\$hf_mig$\KB886185\spmsg.dll.
23.264: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\spcustom.dll -> c:\windows\$hf_mig$\KB886185\update\spcustom.dll.
23.274: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\KB886185.CAT -> c:\windows\$hf_mig$\KB886185\update\KB886185.CAT.
23.454: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\update.exe -> c:\windows\$hf_mig$\KB886185\update\update.exe.
23.464: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\update.ver -> c:\windows\$hf_mig$\KB886185\update\update.ver.
23.564: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\updatebr.inf -> c:\windows\$hf_mig$\KB886185\update\updatebr.inf.
23.604: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\eula.txt -> c:\windows\$hf_mig$\KB886185\update\eula.txt.
23.664: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\branches.inf -> c:\windows\$hf_mig$\KB886185\update\branches.inf.
24.816: Copied file:  C:\WINDOWS\system32\DRIVERS\ipnat.sys
24.836: Copied file:  C:\WINDOWS\system32\DllCache\ipnat.sys
25.377: Copied file:  c:\windows\$hf_mig$\KB886185\SP2QFE\ipnat.sys
26.018: Num Ticks for Copying files : 5558
26.028: Num Ticks for Reg update and deleting 0 size files : 10   
26.158: ---- Old Information In The Registry ------
26.168: Source:C:\WINDOWS\system32\SET4.tmp (5.2.3790.2847)
26.168: Destination:C:\WINDOWS\system32\hhctrl.ocx (5.2.3790.1166)
26.168: Source:C:\WINDOWS\system32\_000012_.tmp.dll (5.1.2600.2096)
26.168: Destination:
26.178: Source:C:\WINDOWS\system32\SETB.tmp (5.1.2600.2622)
26.178: Destination:C:\WINDOWS\system32\winsrv.dll (5.1.2600.2096)
26.188: Source:C:\WINDOWS\system32\SETC.tmp (5.1.2600.2622)
26.188: Destination:C:\WINDOWS\system32\user32.dll (5.1.2600.2096)
26.198: Source:C:\WINDOWS\system32\SETD.tmp (5.1.2600.2622)
26.198: Destination:C:\WINDOWS\system32\authz.dll (5.1.2600.2096)
26.198: Source:C:\WINDOWS\system32\_000008_.tmp.dll (5.1.2600.0)
26.198: Destination:
26.198: Source:C:\WINDOWS\system32\SET28.tmp (5.1.2600.2665)
26.238: Destination:C:\WINDOWS\system32\rpcss.dll (5.1.2600.2096)
26.238: Source:C:\WINDOWS\system32\SET29.tmp (5.1.2600.2665)
26.238: Destination:C:\WINDOWS\system32\olecli32.dll (5.1.2600.0)
26.248: Source:C:\WINDOWS\system32\SET2A.tmp (5.1.2600.2665)
26.248: Destination:C:\WINDOWS\system32\ole32.dll (5.1.2600.2096)
26.248: Source:C:\WINDOWS\system32\_000005_.tmp.dll (5.1.2600.2096)
26.248: Destination:
26.258: Source:C:\WINDOWS\system32\SET3D.tmp (2001.12.4414.311)
26.258: Destination:C:\WINDOWS\system32\mtxoci.dll (2001.12.4414.254)
26.268: Source:C:\WINDOWS\system32\SET3E.tmp (2001.12.4414.311)
26.268: Destination:C:\WINDOWS\system32\mtxclu.dll (2001.12.4414.254)
26.278: Source:C:\WINDOWS\system32\SET51.tmp (5.1.2600.2744)
26.278: Destination:C:\WINDOWS\system32\umpnpmgr.dll (5.1.2600.2096)
26.288: Source:C:\WINDOWS\system32\SET55.tmp (6.0.2900.2869)
26.288: Destination:C:\WINDOWS\system32\shell32.dll (6.0.2900.2096)
26.288: ---- New Information In The Registry ------
26.288: Source:C:\WINDOWS\system32\SET4.tmp (5.2.3790.2847)
26.288: Destination:C:\WINDOWS\system32\hhctrl.ocx (5.2.3790.1166)
26.298: Source:C:\WINDOWS\system32\_000012_.tmp.dll (5.1.2600.2096)
26.298: Destination:
26.298: Source:C:\WINDOWS\system32\SETB.tmp (5.1.2600.2622)
26.298: Destination:C:\WINDOWS\system32\winsrv.dll (5.1.2600.2096)
26.298: Source:C:\WINDOWS\system32\SETC.tmp (5.1.2600.2622)
26.298: Destination:C:\WINDOWS\system32\user32.dll (5.1.2600.2096)
26.308: Source:C:\WINDOWS\system32\SETD.tmp (5.1.2600.2622)
26.308: Destination:C:\WINDOWS\system32\authz.dll (5.1.2600.2096)
26.308: Source:C:\WINDOWS\system32\_000008_.tmp.dll (5.1.2600.0)
26.308: Destination:
26.308: Source:C:\WINDOWS\system32\SET28.tmp (5.1.2600.2665)
26.308: Destination:C:\WINDOWS\system32\rpcss.dll (5.1.2600.2096)
26.308: Source:C:\WINDOWS\system32\SET29.tmp (5.1.2600.2665)
26.318: Destination:C:\WINDOWS\system32\olecli32.dll (5.1.2600.0)
26.318: Source:C:\WINDOWS\system32\SET2A.tmp (5.1.2600.2665)
26.328: Destination:C:\WINDOWS\system32\ole32.dll (5.1.2600.2096)
26.328: Source:C:\WINDOWS\system32\_000005_.tmp.dll (5.1.2600.2096)
26.328: Destination:
26.328: Source:C:\WINDOWS\system32\SET3D.tmp (2001.12.4414.311)
26.328: Destination:C:\WINDOWS\system32\mtxoci.dll (2001.12.4414.254)
26.328: Source:C:\WINDOWS\system32\SET3E.tmp (2001.12.4414.311)
26.328: Destination:C:\WINDOWS\system32\mtxclu.dll (2001.12.4414.254)

tryan21

  • Guest
Re: Virus... please help
« Reply #96 on: November 06, 2007, 07:27:00 PM »
26.338: Source:C:\WINDOWS\system32\SET51.tmp (5.1.2600.2744)
26.338: Destination:C:\WINDOWS\system32\umpnpmgr.dll (5.1.2600.2096)
26.338: Source:C:\WINDOWS\system32\SET55.tmp (6.0.2900.2869)
26.338: Destination:C:\WINDOWS\system32\shell32.dll (6.0.2900.2096)
34.670: UpdateSpUpdSvcInf: Source [ProcessesToRunAfterReboot] section is empty; nothing to do.
34.670: IsRebootRequiredForFileQueue: c:\windows\system32\drivers\ipnat.sys was no-delay replaced; reboot is required.
34.670: DoInstallation: A reboot is required to complete the installation of one or more files.
34.760: RebootNecessary = 1,WizardInput = 1 , DontReboot = 1, ForceRestart = 0
3.184: ================================================================================
3.204: 2007/10/28 12:18:27.940 (local)
3.204: C:\WINDOWS\SoftwareDistribution\Download\35d340428a8f32f0a91986e753c6e613\update\update.exe (version 5.5.33.0)
3.204: Failed To Enable SE_SHUTDOWN_PRIVILEGE
3.254: Service Pack started with following command line: -q /Z -ER /ParentInfo:029e2bd9fa2ed4449720d7beb2855d44
9.764: ---- Old Information In The Registry ------
9.764: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\nse3E.tmp\nsProcess.dll
9.764: Destination:
9.764: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\nse3E.tmp\
9.764: Destination:
9.774: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\_iu14D2N.tmp (51.43.0.0)
9.774: Destination:
9.774: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\A~NSISu_.exe
9.774: Destination:
9.774: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\~nsu.tmp\Au_.exe (2007.7.12.2)
9.774: Destination:
9.774: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\~nsu.tmp
9.774: Destination:
9.774: Source:C:\Program Files\alot\bin\alot.dll (1.0.1.0)
9.774: Destination:
9.774: Source:C:\Program Files\alot\bin\
9.774: Destination:
9.774: Source:C:\Program Files\alot\
9.774: Destination:
9.774: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\~nsu.tmp\Au_.exe (2007.7.12.2)
9.774: Destination:
9.784: Source:C:\Program Files\Yahoo!\Common\yiesrvc.dll (2006.10.31.3)
9.784: Destination:
9.784: Source:C:\Program Files\Yahoo!\Common\YIeTagBm.dll (2006.7.28.1)
9.784: Destination:
9.784: Source:C:\Program Files\Yahoo!\Common\YShortcut.dll (2006.8.15.1)
9.784: Destination:
9.784: Source:C:\PROGRA~1\Yahoo!\Common\YINSTH~1.DLL (2007.3.15.1)
9.784: Destination:
9.784: Source:C:\WINDOWS\system32\_000013_.tmp.dll (5.1.2600.2096)
9.784: Destination:
9.794: Source:C:\WINDOWS\system32\SET174.tmp (5.1.2600.2622)
9.794: Destination:C:\WINDOWS\system32\winsrv.dll (5.1.2600.2096)
9.804: Source:C:\WINDOWS\system32\SET175.tmp (5.1.2600.2622)
9.804: Destination:C:\WINDOWS\system32\user32.dll (5.1.2600.2096)
9.804: Source:C:\WINDOWS\system32\SET176.tmp (5.1.2600.2622)
9.804: Destination:C:\WINDOWS\system32\authz.dll (5.1.2600.2096)
9.804: Source:C:\WINDOWS\system32\_000009_.tmp.dll (5.1.2600.0)
9.804: Destination:
9.814: Source:C:\WINDOWS\system32\SET191.tmp (5.1.2600.2665)
9.814: Destination:C:\WINDOWS\system32\rpcss.dll (5.1.2600.2096)
9.824: Source:C:\WINDOWS\system32\SET192.tmp (5.1.2600.2665)
9.824: Destination:C:\WINDOWS\system32\olecli32.dll (5.1.2600.0)
9.824: Source:C:\WINDOWS\system32\SET193.tmp (5.1.2600.2665)
9.824: Destination:C:\WINDOWS\system32\ole32.dll (5.1.2600.2096)
9.834: Source:C:\WINDOWS\system32\_000006_.tmp.dll (5.1.2600.2096)
9.834: Destination:
9.834: Source:C:\WINDOWS\system32\SET1AD.tmp (2001.12.4414.311)
9.834: Destination:C:\WINDOWS\system32\mtxoci.dll (2001.12.4414.254)
9.844: Source:C:\WINDOWS\system32\SET1AE.tmp (2001.12.4414.311)
9.844: Destination:C:\WINDOWS\system32\mtxclu.dll (2001.12.4414.254)
9.854: Source:C:\WINDOWS\system32\SET1C1.tmp (5.1.2600.2744)
9.854: Destination:C:\WINDOWS\system32\umpnpmgr.dll (5.1.2600.2096)
9.864: Source:C:\WINDOWS\system32\SET1C5.tmp (6.0.2900.2869)
9.864: Destination:C:\WINDOWS\system32\shell32.dll (6.0.2900.2096)
9.864: ---- New Information In The Registry ------
9.864: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\nse3E.tmp\nsProcess.dll

tryan21

  • Guest
Re: Virus... please help
« Reply #97 on: November 06, 2007, 07:27:29 PM »
9.864: Destination:
9.864: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\nse3E.tmp\
9.864: Destination:
9.864: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\_iu14D2N.tmp (51.43.0.0)
9.864: Destination:
9.874: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\A~NSISu_.exe
9.874: Destination:
9.874: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\~nsu.tmp\Au_.exe (2007.7.12.2)
9.874: Destination:
9.874: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\~nsu.tmp
9.874: Destination:
9.874: Source:C:\Program Files\alot\bin\alot.dll (1.0.1.0)
9.874: Destination:
9.874: Source:C:\Program Files\alot\bin\
9.874: Destination:
9.874: Source:C:\Program Files\alot\
9.874: Destination:
9.874: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\~nsu.tmp\Au_.exe (2007.7.12.2)
9.874: Destination:
9.874: Source:C:\Program Files\Yahoo!\Common\yiesrvc.dll (2006.10.31.3)
9.874: Destination:
9.884: Source:C:\Program Files\Yahoo!\Common\YIeTagBm.dll (2006.7.28.1)
9.884: Destination:
9.884: Source:C:\Program Files\Yahoo!\Common\YShortcut.dll (2006.8.15.1)
9.884: Destination:
9.884: Source:C:\PROGRA~1\Yahoo!\Common\YINSTH~1.DLL (2007.3.15.1)
9.884: Destination:
9.884: Source:C:\WINDOWS\system32\_000013_.tmp.dll (5.1.2600.2096)
9.884: Destination:
9.884: Source:C:\WINDOWS\system32\SET174.tmp (5.1.2600.2622)
9.894: Destination:C:\WINDOWS\system32\winsrv.dll (5.1.2600.2096)
9.894: Source:C:\WINDOWS\system32\SET175.tmp (5.1.2600.2622)
9.894: Destination:C:\WINDOWS\system32\user32.dll (5.1.2600.2096)
9.894: Source:C:\WINDOWS\system32\SET176.tmp (5.1.2600.2622)
9.894: Destination:C:\WINDOWS\system32\authz.dll (5.1.2600.2096)
9.904: Source:C:\WINDOWS\system32\_000009_.tmp.dll (5.1.2600.0)
9.904: Destination:
9.904: Source:C:\WINDOWS\system32\SET191.tmp (5.1.2600.2665)
9.904: Destination:C:\WINDOWS\system32\rpcss.dll (5.1.2600.2096)
9.904: Source:C:\WINDOWS\system32\SET192.tmp (5.1.2600.2665)
9.904: Destination:C:\WINDOWS\system32\olecli32.dll (5.1.2600.0)
9.904: Source:C:\WINDOWS\system32\SET193.tmp (5.1.2600.2665)
9.904: Destination:C:\WINDOWS\system32\ole32.dll (5.1.2600.2096)
9.914: Source:C:\WINDOWS\system32\_000006_.tmp.dll (5.1.2600.2096)
9.914: Destination:
9.914: Source:C:\WINDOWS\system32\SET1AD.tmp (2001.12.4414.311)
9.914: Destination:C:\WINDOWS\system32\mtxoci.dll (2001.12.4414.254)
9.914: Source:C:\WINDOWS\system32\SET1AE.tmp (2001.12.4414.311)
9.914: Destination:C:\WINDOWS\system32\mtxclu.dll (2001.12.4414.254)
9.914: Source:C:\WINDOWS\system32\SET1C1.tmp (5.1.2600.2744)
9.924: Destination:C:\WINDOWS\system32\umpnpmgr.dll (5.1.2600.2096)
9.924: Source:C:\WINDOWS\system32\SET1C5.tmp (6.0.2900.2869)
9.924: Destination:C:\WINDOWS\system32\shell32.dll (6.0.2900.2096)
9.944: SetProductTypes: InfProductBuildType=BuildType.Sel
9.944: SetAltOsLoaderPath: No section uses DirId 65701; done.
9.984: DoInstallation: FetchSourceURL for c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\update_SP2GDR.inf failed
9.984: CreateUninstall = 1,Directory = C:\WINDOWS\$NtUninstallKB886185$
10.064: LoadFileQueues: SetupGetSourceFileLocation for halacpi.dll failed: 0xe0000102
10.345: BuildCabinetManifest: update.url absent
10.345: Starting AnalyzeComponents
10.345: AnalyzePhaseZero used 0 ticks
10.345: No c:\windows\INF\updtblk.inf file.
10.345: OEM file scan used 0 ticks
10.405: AnalyzePhaseOne: used 60 ticks
10.405: AnalyzeComponents: Hotpatch analysis disabled; skipping.
10.405: AnalyzeComponents: Hotpatching is disabled.
10.405: FindFirstFile c:\windows\$hf_mig$\*.*

tryan21

  • Guest
Re: Virus... please help
« Reply #98 on: November 06, 2007, 07:28:01 PM »
10.405: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.415: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.415: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.415: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.415: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.415: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.425: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.425: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.425: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.435: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.435: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.445: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.445: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.445: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.445: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.445: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.445: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.455: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.455: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.465: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.465: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.465: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.465: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.475: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.475: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.485: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.485: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.485: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.485: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.485: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.495: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.495: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.495: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.495: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.495: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.505: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.505: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.505: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.505: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.505: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.505: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.505: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.515: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.515: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.515: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.515: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.515: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.515: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.515: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.515: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.515: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.525: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.525: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.525: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.525: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.525: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.535: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.535: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.535: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.535: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.535: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.535: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.535: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.545: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.545: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.545: KB886185 Setup encountered an error:  The  update.ver file is not correct.
10.555: AnalyzeForBranching used 10 ticks.
10.635: AnalyzePhaseTwo used 80 ticks
10.635: AnalyzePhaseThree used 0 ticks
10.635: AnalyzePhaseFive used 0 ticks
10.635: AnalyzePhaseSix used 0 ticks
10.635: AnalyzeComponents used 290 ticks
10.635: Downloading 0 files
10.635: bPatchMode = FALSE
10.635: Inventory complete: ReturnStatus=0, 651 ticks
10.635: Num Ticks for invent : 651
11.096: Allocation size of drive C: is 4096 bytes, free space = 15110766592 bytes
11.296: AnalyzeDiskUsage:  Skipping EstimateDiskUsageForUninstall.
11.296: Drive C: free 14410MB req: 8MB w/uninstall: NOT CALCULATED.
11.296: CabinetBuild complete
11.296: Num Ticks for Cabinet build : 661
11.356: LoadFileQueues: SetupGetSourceFileLocation for halacpi.dll failed: 0xe0000102
11.997: Num Ticks for Backup : 701

tryan21

  • Guest
Re: Virus... please help
« Reply #99 on: November 06, 2007, 07:28:32 PM »
12.458: Num Ticks for creating uninst inf : 461
12.488: Registering Uninstall Program for -> KB886185, KB886185 , 0x0
12.488: LoadFileQueues: SetupGetSourceFileLocation for halacpi.dll failed: 0xe0000102
12.558: System Restore Point set.
12.608: PFE2: Not avoiding Per File Exceptions.
13.649: GetCatVersion:  Failed to retrieve version information from C:\WINDOWS\system32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\KB886185.cat with error 0x57
14.050: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\update_SP2QFE.inf -> c:\windows\$hf_mig$\KB886185\update\update_SP2QFE.inf.
14.120: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\spuninst.exe -> c:\windows\$hf_mig$\KB886185\spuninst.exe.
14.160: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\spmsg.dll -> c:\windows\$hf_mig$\KB886185\spmsg.dll.
14.290: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\spcustom.dll -> c:\windows\$hf_mig$\KB886185\update\spcustom.dll.
14.320: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\KB886185.CAT -> c:\windows\$hf_mig$\KB886185\update\KB886185.CAT.
14.501: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\update.exe -> c:\windows\$hf_mig$\KB886185\update\update.exe.
14.511: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\update.ver -> c:\windows\$hf_mig$\KB886185\update\update.ver.
14.521: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\updatebr.inf -> c:\windows\$hf_mig$\KB886185\update\updatebr.inf.
14.551: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\eula.txt -> c:\windows\$hf_mig$\KB886185\update\eula.txt.
14.561: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\branches.inf -> c:\windows\$hf_mig$\KB886185\update\branches.inf.
15.081: Copied file:  C:\WINDOWS\system32\DRIVERS\ipnat.sys
15.121: Copied file:  C:\WINDOWS\system32\DllCache\ipnat.sys
15.392: Copied file:  c:\windows\$hf_mig$\KB886185\SP2QFE\ipnat.sys
15.612: Num Ticks for Copying files : 3154
15.662: Num Ticks for Reg update and deleting 0 size files : 50   
15.712: ---- Old Information In The Registry ------
15.722: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\nse3E.tmp\nsProcess.dll
15.722: Destination:
15.722: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\nse3E.tmp\
15.722: Destination:
15.722: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\_iu14D2N.tmp (51.43.0.0)
15.722: Destination:
15.722: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\A~NSISu_.exe
15.722: Destination:
15.722: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\~nsu.tmp\Au_.exe (2007.7.12.2)
15.722: Destination:
15.722: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\~nsu.tmp
15.722: Destination:
15.732: Source:C:\Program Files\alot\bin\alot.dll (1.0.1.0)
15.732: Destination:
15.732: Source:C:\Program Files\alot\bin\
15.732: Destination:
15.732: Source:C:\Program Files\alot\
15.732: Destination:
15.732: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\~nsu.tmp\Au_.exe (2007.7.12.2)
15.732: Destination:
15.732: Source:C:\Program Files\Yahoo!\Common\yiesrvc.dll (2006.10.31.3)
15.732: Destination:
15.732: Source:C:\Program Files\Yahoo!\Common\YIeTagBm.dll (2006.7.28.1)
15.732: Destination:
15.732: Source:C:\Program Files\Yahoo!\Common\YShortcut.dll (2006.8.15.1)
15.732: Destination:
15.742: Source:C:\PROGRA~1\Yahoo!\Common\YINSTH~1.DLL (2007.3.15.1)
15.742: Destination:
15.742: Source:C:\WINDOWS\system32\_000013_.tmp.dll (5.1.2600.2096)
15.742: Destination:
15.742: Source:C:\WINDOWS\system32\SET174.tmp (5.1.2600.2622)
15.752: Destination:C:\WINDOWS\system32\winsrv.dll (5.1.2600.2096)
15.752: Source:C:\WINDOWS\system32\SET175.tmp (5.1.2600.2622)
15.752: Destination:C:\WINDOWS\system32\user32.dll (5.1.2600.2096)
15.762: Source:C:\WINDOWS\system32\SET176.tmp (5.1.2600.2622)
15.762: Destination:C:\WINDOWS\system32\authz.dll (5.1.2600.2096)
15.762: Source:C:\WINDOWS\system32\_000009_.tmp.dll (5.1.2600.0)
15.762: Destination:
15.762: Source:C:\WINDOWS\system32\SET191.tmp (5.1.2600.2665)
15.772: Destination:C:\WINDOWS\system32\rpcss.dll (5.1.2600.2096)
15.772: Source:C:\WINDOWS\system32\SET192.tmp (5.1.2600.2665)
15.772: Destination:C:\WINDOWS\system32\olecli32.dll (5.1.2600.0)
15.782: Source:C:\WINDOWS\system32\SET193.tmp (5.1.2600.2665)
15.782: Destination:C:\WINDOWS\system32\ole32.dll (5.1.2600.2096)
15.782: Source:C:\WINDOWS\system32\_000006_.tmp.dll (5.1.2600.2096)
15.782: Destination:
15.792: Source:C:\WINDOWS\system32\SET1AD.tmp (2001.12.4414.311)
15.792: Destination:C:\WINDOWS\system32\mtxoci.dll (2001.12.4414.254)
15.792: Source:C:\WINDOWS\system32\SET1AE.tmp (2001.12.4414.311)
15.792: Destination:C:\WINDOWS\system32\mtxclu.dll (2001.12.4414.254)
15.802: Source:C:\WINDOWS\system32\SET1C1.tmp (5.1.2600.2744)
15.802: Destination:C:\WINDOWS\system32\umpnpmgr.dll (5.1.2600.2096)
15.812: Source:C:\WINDOWS\system32\SET1C5.tmp (6.0.2900.2869)
15.812: Destination:C:\WINDOWS\system32\shell32.dll (6.0.2900.2096)

tryan21

  • Guest
Re: Virus... please help
« Reply #100 on: November 06, 2007, 07:29:04 PM »
15.812: ---- New Information In The Registry ------
15.812: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\nse3E.tmp\nsProcess.dll
15.812: Destination:
15.812: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\nse3E.tmp\
15.812: Destination:
15.812: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\_iu14D2N.tmp (51.43.0.0)
15.812: Destination:
15.822: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\A~NSISu_.exe
15.822: Destination:
15.822: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\~nsu.tmp\Au_.exe (2007.7.12.2)
15.822: Destination:
15.822: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\~nsu.tmp
15.822: Destination:
15.822: Source:C:\Program Files\alot\bin\alot.dll (1.0.1.0)
15.822: Destination:
15.822: Source:C:\Program Files\alot\bin\
15.822: Destination:
15.822: Source:C:\Program Files\alot\
15.822: Destination:
15.822: Source:C:\DOCUME~1\TARA&P~1\LOCALS~1\Temp\~nsu.tmp\Au_.exe (2007.7.12.2)
15.822: Destination:
15.822: Source:C:\Program Files\Yahoo!\Common\yiesrvc.dll (2006.10.31.3)
15.822: Destination:
15.832: Source:C:\Program Files\Yahoo!\Common\YIeTagBm.dll (2006.7.28.1)
15.832: Destination:
15.832: Source:C:\Program Files\Yahoo!\Common\YShortcut.dll (2006.8.15.1)
15.832: Destination:
15.832: Source:C:\PROGRA~1\Yahoo!\Common\YINSTH~1.DLL (2007.3.15.1)
15.832: Destination:
15.832: Source:C:\WINDOWS\system32\_000013_.tmp.dll (5.1.2600.2096)
15.832: Destination:
15.832: Source:C:\WINDOWS\system32\SET174.tmp (5.1.2600.2622)
15.832: Destination:C:\WINDOWS\system32\winsrv.dll (5.1.2600.2096)
15.842: Source:C:\WINDOWS\system32\SET175.tmp (5.1.2600.2622)
15.842: Destination:C:\WINDOWS\system32\user32.dll (5.1.2600.2096)
15.842: Source:C:\WINDOWS\system32\SET176.tmp (5.1.2600.2622)
15.842: Destination:C:\WINDOWS\system32\authz.dll (5.1.2600.2096)
15.842: Source:C:\WINDOWS\system32\_000009_.tmp.dll (5.1.2600.0)
15.842: Destination:
15.852: Source:C:\WINDOWS\system32\SET191.tmp (5.1.2600.2665)
15.852: Destination:C:\WINDOWS\system32\rpcss.dll (5.1.2600.2096)
15.852: Source:C:\WINDOWS\system32\SET192.tmp (5.1.2600.2665)
15.862: Destination:C:\WINDOWS\system32\olecli32.dll (5.1.2600.0)
15.862: Source:C:\WINDOWS\system32\SET193.tmp (5.1.2600.2665)
15.862: Destination:C:\WINDOWS\system32\ole32.dll (5.1.2600.2096)
15.862: Source:C:\WINDOWS\system32\_000006_.tmp.dll (5.1.2600.2096)
15.862: Destination:
15.862: Source:C:\WINDOWS\system32\SET1AD.tmp (2001.12.4414.311)
15.873: Destination:C:\WINDOWS\system32\mtxoci.dll (2001.12.4414.254)
15.873: Source:C:\WINDOWS\system32\SET1AE.tmp (2001.12.4414.311)
15.873: Destination:C:\WINDOWS\system32\mtxclu.dll (2001.12.4414.254)
15.873: Source:C:\WINDOWS\system32\SET1C1.tmp (5.1.2600.2744)
15.873: Destination:C:\WINDOWS\system32\umpnpmgr.dll (5.1.2600.2096)
15.873: Source:C:\WINDOWS\system32\SET1C5.tmp (6.0.2900.2869)
15.883: Destination:C:\WINDOWS\system32\shell32.dll (6.0.2900.2096)
18.657: UpdateSpUpdSvcInf: Source [ProcessesToRunAfterReboot] section is empty; nothing to do.
18.657: IsRebootRequiredForFileQueue: c:\windows\system32\drivers\ipnat.sys was no-delay replaced; reboot is required.
18.657: DoInstallation: A reboot is required to complete the installation of one or more files.
19.007: RebootNecessary = 1,WizardInput = 1 , DontReboot = 1, ForceRestart = 0
15.983: ================================================================================
16.003: 2007/11/01 16:11:50.535 (local)
16.003: C:\WINDOWS\SoftwareDistribution\Download\35d340428a8f32f0a91986e753c6e613\update\update.exe (version 5.5.33.0)
16.003: Failed To Enable SE_SHUTDOWN_PRIVILEGE
16.023: Service Pack started with following command line: -q /Z -ER /ParentInfo:eca8a1994017774283100644797c6cbf
20.349: ---- Old Information In The Registry ------
20.429: Source:C:\WINDOWS\system32\SETC.tmp (2001.12.4414.311)
20.429: Destination:C:\WINDOWS\system32\mtxoci.dll (2001.12.4414.254)
20.439: Source:C:\WINDOWS\system32\SETD.tmp (2001.12.4414.311)
20.439: Destination:C:\WINDOWS\system32\mtxclu.dll (2001.12.4414.254)
20.439: ---- New Information In The Registry ------
20.439: Source:C:\WINDOWS\system32\SETC.tmp (2001.12.4414.311)
20.439: Destination:C:\WINDOWS\system32\mtxoci.dll (2001.12.4414.254)
20.439: Source:C:\WINDOWS\system32\SETD.tmp (2001.12.4414.311)
20.449: Destination:C:\WINDOWS\system32\mtxclu.dll (2001.12.4414.254)
20.489: SetProductTypes: InfProductBuildType=BuildType.Sel
20.489: SetAltOsLoaderPath: No section uses DirId 65701; done.
20.759: DoInstallation: FetchSourceURL for c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\update_SP2GDR.inf failed
20.759: CreateUninstall = 1,Directory = C:\WINDOWS\$NtUninstallKB886185$
20.809: LoadFileQueues: SetupGetSourceFileLocation for halacpi.dll failed: 0xe0000102
21.330: BuildCabinetManifest: update.url absent
21.330: Starting AnalyzeComponents
21.330: AnalyzePhaseZero used 0 ticks
21.330: No c:\windows\INF\updtblk.inf file.
21.330: OEM file scan used 0 ticks
21.390: AnalyzePhaseOne: used 60 ticks
21.390: AnalyzeComponents: Hotpatch analysis disabled; skipping.
21.390: AnalyzeComponents: Hotpatching is disabled.
21.390: FindFirstFile c:\windows\$hf_mig$\*.*

tryan21

  • Guest
Re: Virus... please help
« Reply #101 on: November 06, 2007, 07:29:33 PM »
21.400: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.400: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.400: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.400: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.400: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.400: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.410: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.410: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.410: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.410: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.410: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.430: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.430: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.430: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.440: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.440: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.440: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.440: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.450: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.450: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.450: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.450: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.450: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.460: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.460: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.460: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.460: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.470: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.470: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.480: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.480: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.480: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.480: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.480: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.480: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.490: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.490: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.490: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.490: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.490: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.490: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.510: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.520: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.520: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.520: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.531: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.531: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.531: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.531: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.531: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.531: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.531: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.541: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.541: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.541: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.541: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.541: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.541: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.541: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.551: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.551: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.551: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.551: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.551: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.551: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.551: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.551: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.561: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.561: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.571: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.571: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.571: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.571: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.571: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.571: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.571: KB886185 Setup encountered an error:  The  update.ver file is not correct.
21.601: AnalyzeForBranching used 30 ticks.
21.721: AnalyzePhaseTwo used 120 ticks
21.721: AnalyzePhaseThree used 0 ticks
21.721: AnalyzePhaseFive used 0 ticks
21.721: AnalyzePhaseSix used 0 ticks
21.721: AnalyzeComponents used 391 ticks
21.721: Downloading 0 files
21.721: bPatchMode = FALSE

tryan21

  • Guest
Re: Virus... please help
« Reply #102 on: November 06, 2007, 07:31:22 PM »
21.721: Inventory complete: ReturnStatus=0, 962 ticks
21.731: Num Ticks for invent : 972
22.392: Allocation size of drive C: is 4096 bytes, free space = 23228149760 bytes
22.392: Free space of directory c:\windows adjusted to 23228084224
22.622: AnalyzeDiskUsage:  Skipping EstimateDiskUsageForUninstall.
22.622: Drive C: free 22152MB req: 8MB w/uninstall: NOT CALCULATED.
22.622: CabinetBuild complete
22.622: Num Ticks for Cabinet build : 891
22.722: LoadFileQueues: SetupGetSourceFileLocation for halacpi.dll failed: 0xe0000102
23.964: Num Ticks for Backup : 1342
24.475: Num Ticks for creating uninst inf : 511
24.555: Registering Uninstall Program for -> KB886185, KB886185 , 0x0
24.565: LoadFileQueues: SetupGetSourceFileLocation for halacpi.dll failed: 0xe0000102
25.026: System Restore Point set.
25.096: PFE2: Not avoiding Per File Exceptions.
26.177: GetCatVersion:  Failed to retrieve version information from C:\WINDOWS\system32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\KB886185.cat with error 0x57
26.408: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\update_SP2QFE.inf -> c:\windows\$hf_mig$\KB886185\update\update_SP2QFE.inf.
26.528: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\spuninst.exe -> c:\windows\$hf_mig$\KB886185\spuninst.exe.
26.568: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\spmsg.dll -> c:\windows\$hf_mig$\KB886185\spmsg.dll.
26.698: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\spcustom.dll -> c:\windows\$hf_mig$\KB886185\update\spcustom.dll.
26.738: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\KB886185.CAT -> c:\windows\$hf_mig$\KB886185\update\KB886185.CAT.
27.048: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\update.exe -> c:\windows\$hf_mig$\KB886185\update\update.exe.
27.078: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\update.ver -> c:\windows\$hf_mig$\KB886185\update\update.ver.
27.109: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\updatebr.inf -> c:\windows\$hf_mig$\KB886185\update\updatebr.inf.
27.149: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\eula.txt -> c:\windows\$hf_mig$\KB886185\update\eula.txt.
27.169: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\branches.inf -> c:\windows\$hf_mig$\KB886185\update\branches.inf.
27.769: Copied file:  C:\WINDOWS\system32\DRIVERS\ipnat.sys
27.820: Copied file:  C:\WINDOWS\system32\DllCache\ipnat.sys
28.460: Copied file:  c:\windows\$hf_mig$\KB886185\SP2QFE\ipnat.sys
28.861: Num Ticks for Copying files : 4386
28.921: Num Ticks for Reg update and deleting 0 size files : 60   
29.001: ---- Old Information In The Registry ------
29.001: Source:C:\WINDOWS\system32\SETC.tmp (2001.12.4414.311)
29.001: Destination:C:\WINDOWS\system32\mtxoci.dll (2001.12.4414.254)
29.011: Source:C:\WINDOWS\system32\SETD.tmp (2001.12.4414.311)
29.011: Destination:C:\WINDOWS\system32\mtxclu.dll (2001.12.4414.254)
29.021: ---- New Information In The Registry ------
29.021: Source:C:\WINDOWS\system32\SETC.tmp (2001.12.4414.311)
29.021: Destination:C:\WINDOWS\system32\mtxoci.dll (2001.12.4414.254)
29.021: Source:C:\WINDOWS\system32\SETD.tmp (2001.12.4414.311)
29.021: Destination:C:\WINDOWS\system32\mtxclu.dll (2001.12.4414.254)
37.994: UpdateSpUpdSvcInf: Source [ProcessesToRunAfterReboot] section is empty; nothing to do.
37.994: IsRebootRequiredForFileQueue: c:\windows\system32\drivers\ipnat.sys was no-delay replaced; reboot is required.
37.994: DoInstallation: A reboot is required to complete the installation of one or more files.
38.164: RebootNecessary = 1,WizardInput = 1 , DontReboot = 1, ForceRestart = 0
10.275: ================================================================================
10.335: 2007/11/06 10:12:51.373 (local)
10.335: C:\WINDOWS\SoftwareDistribution\Download\35d340428a8f32f0a91986e753c6e613\update\update.exe (version 5.5.33.0)
10.335: Failed To Enable SE_SHUTDOWN_PRIVILEGE
10.435: Service Pack started with following command line: -q /Z -ER /ParentInfo:7701dd94aa0ff044bda8cffbfa03bb44
28.321: DoInstallation: CleanPFR failed: 0x2
28.431: SetProductTypes: InfProductBuildType=BuildType.Sel
28.451: SetAltOsLoaderPath: No section uses DirId 65701; done.
29.092: DoInstallation: FetchSourceURL for c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\update_SP2GDR.inf failed
29.092: CreateUninstall = 1,Directory = C:\WINDOWS\$NtUninstallKB886185$
29.132: LoadFileQueues: SetupGetSourceFileLocation for halacpi.dll failed: 0xe0000102
29.612: BuildCabinetManifest: update.url absent
29.612: Starting AnalyzeComponents
29.612: AnalyzePhaseZero used 0 ticks
29.612: No c:\windows\INF\updtblk.inf file.
29.612: OEM file scan used 0 ticks
29.672: AnalyzePhaseOne: used 60 ticks
29.672: AnalyzeComponents: Hotpatch analysis disabled; skipping.
29.672: AnalyzeComponents: Hotpatching is disabled.
29.672: FindFirstFile c:\windows\$hf_mig$\*.*

tryan21

  • Guest
Re: Virus... please help
« Reply #103 on: November 06, 2007, 07:31:51 PM »
29.723: KB886185 Setup encountered an error:  The  update.ver file is not correct.
29.773: KB886185 Setup encountered an error:  The  update.ver file is not correct.
29.793: KB886185 Setup encountered an error:  The  update.ver file is not correct.
29.833: KB886185 Setup encountered an error:  The  update.ver file is not correct.
29.913: KB886185 Setup encountered an error:  The  update.ver file is not correct.
29.943: KB886185 Setup encountered an error:  The  update.ver file is not correct.
29.973: KB886185 Setup encountered an error:  The  update.ver file is not correct.
30.013: KB886185 Setup encountered an error:  The  update.ver file is not correct.
30.063: KB886185 Setup encountered an error:  The  update.ver file is not correct.
30.123: KB886185 Setup encountered an error:  The  update.ver file is not correct.
30.153: KB886185 Setup encountered an error:  The  update.ver file is not correct.
30.303: KB886185 Setup encountered an error:  The  update.ver file is not correct.
30.323: KB886185 Setup encountered an error:  The  update.ver file is not correct.
30.353: KB886185 Setup encountered an error:  The  update.ver file is not correct.
30.444: KB886185 Setup encountered an error:  The  update.ver file is not correct.
30.484: KB886185 Setup encountered an error:  The  update.ver file is not correct.
30.504: KB886185 Setup encountered an error:  The  update.ver file is not correct.
30.554: KB886185 Setup encountered an error:  The  update.ver file is not correct.
30.594: KB886185 Setup encountered an error:  The  update.ver file is not correct.
30.644: KB886185 Setup encountered an error:  The  update.ver file is not correct.
30.694: KB886185 Setup encountered an error:  The  update.ver file is not correct.
30.724: KB886185 Setup encountered an error:  The  update.ver file is not correct.
30.774: KB886185 Setup encountered an error:  The  update.ver file is not correct.
30.854: KB886185 Setup encountered an error:  The  update.ver file is not correct.
30.994: KB886185 Setup encountered an error:  The  update.ver file is not correct.
31.115: KB886185 Setup encountered an error:  The  update.ver file is not correct.
31.155: KB886185 Setup encountered an error:  The  update.ver file is not correct.
31.325: KB886185 Setup encountered an error:  The  update.ver file is not correct.
31.345: KB886185 Setup encountered an error:  The  update.ver file is not correct.
31.375: KB886185 Setup encountered an error:  The  update.ver file is not correct.
31.415: KB886185 Setup encountered an error:  The  update.ver file is not correct.
31.485: KB886185 Setup encountered an error:  The  update.ver file is not correct.
31.555: KB886185 Setup encountered an error:  The  update.ver file is not correct.
31.635: KB886185 Setup encountered an error:  The  update.ver file is not correct.
31.685: KB886185 Setup encountered an error:  The  update.ver file is not correct.
31.695: KB886185 Setup encountered an error:  The  update.ver file is not correct.
31.715: KB886185 Setup encountered an error:  The  update.ver file is not correct.
31.765: KB886185 Setup encountered an error:  The  update.ver file is not correct.
31.806: KB886185 Setup encountered an error:  The  update.ver file is not correct.
31.846: KB886185 Setup encountered an error:  The  update.ver file is not correct.
31.876: KB886185 Setup encountered an error:  The  update.ver file is not correct.
32.026: KB886185 Setup encountered an error:  The  update.ver file is not correct.
32.156: KB886185 Setup encountered an error:  The  update.ver file is not correct.
32.326: KB886185 Setup encountered an error:  The  update.ver file is not correct.
32.346: KB886185 Setup encountered an error:  The  update.ver file is not correct.
32.356: KB886185 Setup encountered an error:  The  update.ver file is not correct.
32.406: KB886185 Setup encountered an error:  The  update.ver file is not correct.
32.436: KB886185 Setup encountered an error:  The  update.ver file is not correct.
32.446: KB886185 Setup encountered an error:  The  update.ver file is not correct.
32.466: KB886185 Setup encountered an error:  The  update.ver file is not correct.
32.527: KB886185 Setup encountered an error:  The  update.ver file is not correct.
32.567: KB886185 Setup encountered an error:  The  update.ver file is not correct.
32.617: KB886185 Setup encountered an error:  The  update.ver file is not correct.
32.647: KB886185 Setup encountered an error:  The  update.ver file is not correct.
32.697: KB886185 Setup encountered an error:  The  update.ver file is not correct.
32.737: KB886185 Setup encountered an error:  The  update.ver file is not correct.
32.807: KB886185 Setup encountered an error:  The  update.ver file is not correct.
32.847: KB886185 Setup encountered an error:  The  update.ver file is not correct.
32.857: KB886185 Setup encountered an error:  The  update.ver file is not correct.
32.927: KB886185 Setup encountered an error:  The  update.ver file is not correct.
32.997: KB886185 Setup encountered an error:  The  update.ver file is not correct.
33.027: KB886185 Setup encountered an error:  The  update.ver file is not correct.
33.097: KB886185 Setup encountered an error:  The  update.ver file is not correct.
33.127: KB886185 Setup encountered an error:  The  update.ver file is not correct.
33.258: KB886185 Setup encountered an error:  The  update.ver file is not correct.
33.298: KB886185 Setup encountered an error:  The  update.ver file is not correct.
33.368: KB886185 Setup encountered an error:  The  update.ver file is not correct.
33.478: KB886185 Setup encountered an error:  The  update.ver file is not correct.
33.638: KB886185 Setup encountered an error:  The  update.ver file is not correct.
33.798: KB886185 Setup encountered an error:  The  update.ver file is not correct.
33.959: KB886185 Setup encountered an error:  The  update.ver file is not correct.
34.109: KB886185 Setup encountered an error:  The  update.ver file is not correct.
34.289: KB886185 Setup encountered an error:  The  update.ver file is not correct.
34.519: KB886185 Setup encountered an error:  The  update.ver file is not correct.
34.680: KB886185 Setup encountered an error:  The  update.ver file is not correct.
34.920: KB886185 Setup encountered an error:  The  update.ver file is not correct.
35.120: KB886185 Setup encountered an error:  The  update.ver file is not correct.
35.260: AnalyzeForBranching used 140 ticks.

tryan21

  • Guest
Re: Virus... please help
« Reply #104 on: November 06, 2007, 07:32:18 PM »
35.641: AnalyzePhaseTwo used 381 ticks
35.641: AnalyzePhaseThree used 0 ticks
35.641: AnalyzePhaseFive used 0 ticks
35.641: AnalyzePhaseSix used 0 ticks
35.641: AnalyzeComponents used 6029 ticks
35.641: Downloading 0 files
35.641: bPatchMode = FALSE
35.641: Inventory complete: ReturnStatus=0, 6549 ticks
35.641: Num Ticks for invent : 6549
40.949: Allocation size of drive C: is 4096 bytes, free space = 22872649728 bytes
40.949: Free space of directory c:\windows adjusted to 22872584192
41.469: AnalyzeDiskUsage:  Skipping EstimateDiskUsageForUninstall.
41.469: Drive C: free 21812MB req: 8MB w/uninstall: NOT CALCULATED.
41.469: CabinetBuild complete
41.469: Num Ticks for Cabinet build : 5828
41.620: LoadFileQueues: SetupGetSourceFileLocation for halacpi.dll failed: 0xe0000102
43.292: Num Ticks for Backup : 1823
44.243: Num Ticks for creating uninst inf : 951
44.384: Registering Uninstall Program for -> KB886185, KB886185 , 0x0
44.384: LoadFileQueues: SetupGetSourceFileLocation for halacpi.dll failed: 0xe0000102
44.594: System Restore Point set.
44.824: PFE2: Not avoiding Per File Exceptions.
45.876: GetCatVersion:  Failed to retrieve version information from C:\WINDOWS\system32\CatRoot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\KB886185.cat with error 0x57
46.497: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\update_SP2QFE.inf -> c:\windows\$hf_mig$\KB886185\update\update_SP2QFE.inf.
46.637: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\spuninst.exe -> c:\windows\$hf_mig$\KB886185\spuninst.exe.
46.807: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\spmsg.dll -> c:\windows\$hf_mig$\KB886185\spmsg.dll.
47.138: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\spcustom.dll -> c:\windows\$hf_mig$\KB886185\update\spcustom.dll.
47.158: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\KB886185.CAT -> c:\windows\$hf_mig$\KB886185\update\KB886185.CAT.
47.368: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\update.exe -> c:\windows\$hf_mig$\KB886185\update\update.exe.
47.378: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\update.ver -> c:\windows\$hf_mig$\KB886185\update\update.ver.
47.408: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\updatebr.inf -> c:\windows\$hf_mig$\KB886185\update\updatebr.inf.
47.438: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\eula.txt -> c:\windows\$hf_mig$\KB886185\update\eula.txt.
47.468: ProcessSetupContentSection: PROCESS_SETUP_CONTENT_OP_INSTALL: Copied c:\windows\softwaredistribution\download\35d340428a8f32f0a91986e753c6e613\update\branches.inf -> c:\windows\$hf_mig$\KB886185\update\branches.inf.
48.339: Copied file:  C:\WINDOWS\system32\DRIVERS\ipnat.sys
48.449: Copied file:  C:\WINDOWS\system32\DllCache\ipnat.sys
49.000: Copied file:  c:\windows\$hf_mig$\KB886185\SP2QFE\ipnat.sys
49.541: Num Ticks for Copying files : 5298
49.661: Num Ticks for Reg update and deleting 0 size files : 120   
73.746: UpdateSpUpdSvcInf: Source [ProcessesToRunAfterReboot] section is empty; nothing to do.
73.746: IsRebootRequiredForFileQueue: c:\windows\system32\drivers\ipnat.sys was no-delay replaced; reboot is required.
73.746: DoInstallation: A reboot is required to complete the installation of one or more files.
74.036: RebootNecessary = 1,WizardInput = 1 , DontReboot = 1, ForceRestart = 0