Setting up WiFi Network

Discussion in 'Virus, Spyware and Malware Removal' started by chomolongma, Jan 20, 2012.


Thread Status:
Not open for further replies.
  1. chomolongma Bronze Member

    I've Donated!
    Bronze
    Message Count:
    78
    Likes Received:
    0
    My System
    Loading...
    Please disregard the last post. I saw your post immediately after I posted mine. Thank you.

  2. chomolongma Bronze Member

    I've Donated!
    Bronze
    Message Count:
    78
    Likes Received:
    0
    My System
    Loading...
    What is CF? And How can I run it?
  3. Crush Administrator & Security Team Leader

    Manager
    PCHF Staff
    Message Count:
    39,884
    Likes Received:
    3,657
    My System
    Loading...
    ComboFix - Post 25
  4. Google Advertisement

  5. chomolongma Bronze Member

    I've Donated!
    Bronze
    Message Count:
    78
    Likes Received:
    0
    My System
    Loading...
    Hi, Crush:

    I ran COMBOFIX once again as per your advice. Unfortunately the result was exactly the same that I had explained in my previous post. When CF comes to Auto Scan page, it does not start scanning although I see the cursor blinking on and on. The cursor is visible for about five minutes and after that it disappears completely leaving the Auto Scan page alone.

    I gave CF the entire night to scan my computer without the presence of the cursor thinking that its disappearance might be a normal process while the scan is undergoing silently behind the scene.

    When I woke up in the morning, the autoscan page was still there without the cursor. There were no messages or instructions what to do next. So I shut off the computer, restarted, and went on surfing the Net.

    What gives?
  6. Belahzur Freedom Fighter

    PCHF Staff
    Message Count:
    6,774
    Likes Received:
    883
    My System
    Loading...
    Hello.
    I want to check something.

    Download MBRCheck to your desktop.
    • Double click MBRCheck.exe to run (Vista and Windows 7 users, right click and select Run as Administrator).
    • It will show a black screen with some data on it.
    • A report called MBRcheckxxxx.txt will be on your desktop
    • Open this report and post its content in your next reply.
  7. chomolongma Bronze Member

    I've Donated!
    Bronze
    Message Count:
    78
    Likes Received:
    0
    My System
    Loading...
    MBRCheck, version 1.2.3
    (c) 2010, AD

    Command-line:
    Windows Version: Windows XP Professional
    Windows Information: Service Pack 3 (build 2600)
    Logical Drives Mask: 0x0000000c

    Kernel Drivers (total 151):
    0x804D7000 \WINDOWS\system32\ntoskrnl.exe
    0x806EF000 \WINDOWS\system32\hal.dll
    0xF8BB5000 \WINDOWS\system32\KDCOM.DLL
    0xF8AC5000 \WINDOWS\system32\BOOTVID.dll
    0xF8666000 ACPI.sys
    0xF8BB7000 \WINDOWS\system32\DRIVERS\WMILIB.SYS
    0xF8655000 pci.sys
    0xF86B5000 isapnp.sys
    0xF86C5000 ohci1394.sys
    0xF86D5000 \WINDOWS\system32\DRIVERS\1394BUS.SYS
    0xF8AC9000 compbatt.sys
    0xF8ACD000 \WINDOWS\system32\DRIVERS\BATTC.SYS
    0xF8C7D000 pciide.sys
    0xF8935000 \WINDOWS\system32\DRIVERS\PCIIDEX.SYS
    0xF8BB9000 intelide.sys
    0xF8637000 pcmcia.sys
    0xF86E5000 MountMgr.sys
    0xF8618000 ftdisk.sys
    0xF8AD1000 ACPIEC.sys
    0xF8C7E000 \WINDOWS\system32\DRIVERS\OPRGHDLR.SYS
    0xF893D000 PartMgr.sys
    0xF86F5000 VolSnap.sys
    0xF8600000 atapi.sys
    0xF8705000 disk.sys
    0xF8715000 \WINDOWS\system32\DRIVERS\CLASSPNP.SYS
    0xF85E0000 fltmgr.sys
    0xF85CE000 sr.sys
    0xF8725000 PxHelp20.sys
    0xF85B7000 KSecDD.sys
    0xF85A4000 WudfPf.sys
    0xF8517000 Ntfs.sys
    0xF84EA000 NDIS.sys
    0xF84CE000 Apsx86.sys
    0xF8945000 ApsHM86.sys
    0xF84B4000 Mup.sys
    0xF8735000 agp440.sys
    0xF8785000 \SystemRoot\system32\DRIVERS\intelppm.sys
    0xF7E99000 \SystemRoot\system32\DRIVERS\ati2mtag.sys
    0xF7E85000 \SystemRoot\system32\DRIVERS\VIDEOPRT.SYS
    0xF8A15000 \SystemRoot\system32\DRIVERS\usbuhci.sys
    0xF7E61000 \SystemRoot\system32\DRIVERS\USBPORT.SYS
    0xF8A1D000 \SystemRoot\system32\DRIVERS\usbehci.sys
    0xF8795000 \SystemRoot\system32\DRIVERS\nic1394.sys
    0xF7E39000 \SystemRoot\system32\DRIVERS\e1000325.sys
    0xF87A5000 \SystemRoot\system32\DRIVERS\i8042prt.sys
    0xF8A25000 \SystemRoot\system32\DRIVERS\kbdclass.sys
    0xF7DF8000 \SystemRoot\system32\DRIVERS\SynTP.sys
    0xF8BF5000 \SystemRoot\system32\DRIVERS\USBD.SYS
    0xF8A2D000 \SystemRoot\system32\DRIVERS\mouclass.sys
    0xF8A35000 \SystemRoot\system32\DRIVERS\fdc.sys
    0xF87B5000 \SystemRoot\system32\DRIVERS\serial.sys
    0xF8BAD000 \SystemRoot\system32\DRIVERS\serenum.sys
    0xF7DE4000 \SystemRoot\system32\DRIVERS\parport.sys
    0xF8A3D000 \SystemRoot\system32\DRIVERS\nscirda.sys
    0xF8BB1000 \SystemRoot\system32\DRIVERS\irenum.sys
    0xF847B000 \SystemRoot\system32\DRIVERS\CmBatt.sys
    0xF8477000 \SystemRoot\system32\DRIVERS\ibmpmdrv.sys
    0xF87C5000 \SystemRoot\system32\DRIVERS\imapi.sys
    0xF87D5000 \SystemRoot\system32\DRIVERS\cdrom.sys
    0xF87E5000 \SystemRoot\system32\DRIVERS\redbook.sys
    0xF7DC1000 \SystemRoot\system32\DRIVERS\ks.sys
    0xF7D8B000 \SystemRoot\system32\drivers\smwdm.sys
    0xF7D67000 \SystemRoot\system32\drivers\portcls.sys
    0xF87F5000 \SystemRoot\system32\drivers\drmk.sys
    0xF7D47000 \SystemRoot\system32\drivers\aeaudio.sys
    0xF7C22000 \SystemRoot\system32\DRIVERS\AGRSM.sys
    0xF8A45000 \SystemRoot\System32\Drivers\Modem.SYS
    0xF8A4D000 \SystemRoot\system32\DRIVERS\tvtpktfilter.sys
    0xF8D28000 \SystemRoot\system32\DRIVERS\audstub.sys
    0xF8A55000 \SystemRoot\system32\DRIVERS\rasirda.sys
    0xF8A5D000 \SystemRoot\system32\DRIVERS\TDI.SYS
    0xF8805000 \SystemRoot\system32\DRIVERS\rasl2tp.sys
    0xF845F000 \SystemRoot\system32\DRIVERS\ndistapi.sys
    0xF7BE3000 \SystemRoot\system32\DRIVERS\ndiswan.sys
    0xF8815000 \SystemRoot\system32\DRIVERS\raspppoe.sys
    0xF8825000 \SystemRoot\system32\DRIVERS\raspptp.sys
    0xF7BD2000 \SystemRoot\system32\DRIVERS\psched.sys
    0xF8835000 \SystemRoot\system32\DRIVERS\msgpc.sys
    0xF8A65000 \SystemRoot\system32\DRIVERS\ptilink.sys
    0xF8A6D000 \SystemRoot\system32\DRIVERS\raspti.sys
    0xF7BA7000 \SystemRoot\system32\DRIVERS\odysseyIM4.sys
    0xF7B77000 \SystemRoot\system32\DRIVERS\rdpdr.sys
    0xF8845000 \SystemRoot\system32\DRIVERS\termdd.sys
    0xF8A75000 \SystemRoot\system32\DRIVERS\psadd.sys
    0xF8A7D000 \SystemRoot\system32\DRIVERS\Tvti2c.sys
    0xF8BF9000 \SystemRoot\system32\DRIVERS\swenum.sys
    0xF7B19000 \SystemRoot\system32\DRIVERS\update.sys
    0xF8443000 \SystemRoot\system32\DRIVERS\mssmbios.sys
    0xF8885000 \SystemRoot\System32\Drivers\NDProxy.SYS
    0xF88B5000 \SystemRoot\system32\DRIVERS\usbhub.sys
    0xF8BFF000 \SystemRoot\System32\Drivers\Fs_Rec.SYS
    0xF8D77000 \SystemRoot\System32\Drivers\Null.SYS
    0xF8C01000 \SystemRoot\System32\Drivers\Beep.SYS
    0xF8A9D000 \SystemRoot\System32\drivers\vga.sys
    0xF8C03000 \SystemRoot\System32\Drivers\mnmdd.SYS
    0xF8C05000 \SystemRoot\System32\DRIVERS\RDPCDD.sys
    0xF8AA5000 \SystemRoot\System32\Drivers\Msfs.SYS
    0xF8AAD000 \SystemRoot\System32\Drivers\Npfs.SYS
    0xF8BA1000 \SystemRoot\system32\DRIVERS\rasacd.sys
    0xBA6BA000 \SystemRoot\system32\DRIVERS\ipsec.sys
    0xBA661000 \SystemRoot\system32\DRIVERS\tcpip.sys
    0xBA639000 \SystemRoot\system32\DRIVERS\netbt.sys
    0xF8BA9000 \SystemRoot\System32\drivers\ws2ifsl.sys
    0xBA617000 \SystemRoot\System32\drivers\afd.sys
    0xF88E5000 \SystemRoot\system32\DRIVERS\netbios.sys
    0xF8AB5000 \SystemRoot\System32\drivers\TSMAPIP.SYS
    0xF8ABD000 \SystemRoot\system32\DRIVERS\TPHKDRV.sys
    0xF895D000 \SystemRoot\System32\drivers\TDSMAPI.SYS
    0xF8965000 \SystemRoot\System32\drivers\Smapint.sys
    0xBA5CC000 \SystemRoot\system32\DRIVERS\rdbss.sys
    0xBA534000 \SystemRoot\system32\DRIVERS\mrxsmb.sys
    0xF8C07000 \??\C:\WINDOWS\system32\Drivers\IBMBLDID.sys
    0xF88F5000 \SystemRoot\System32\Drivers\Fips.SYS
    0xBA50E000 \SystemRoot\system32\DRIVERS\ipnat.sys
    0xF8905000 \SystemRoot\system32\DRIVERS\wanarp.sys
    0xF8915000 \SystemRoot\system32\DRIVERS\arp1394.sys
    0xF7BFE000 \SystemRoot\system32\DRIVERS\hidusb.sys
    0xF8925000 \SystemRoot\system32\DRIVERS\HIDCLASS.SYS
    0xF896D000 \SystemRoot\system32\DRIVERS\HIDPARSE.SYS
    0xF7BFA000 \SystemRoot\system32\DRIVERS\mouhid.sys
    0xF844B000 \SystemRoot\System32\drivers\ANC.SYS
    0xF7FCE000 \SystemRoot\System32\Drivers\Cdfs.SYS
    0xBA4F6000 \SystemRoot\System32\Drivers\dump_atapi.sys
    0xF8C6B000 \SystemRoot\System32\Drivers\dump_WMILIB.SYS
    0xBF800000 \SystemRoot\System32\win32k.sys
    0xBA7FC000 \SystemRoot\System32\drivers\Dxapi.sys
    0xF89BD000 \SystemRoot\System32\watchdog.sys
    0xBF000000 \SystemRoot\System32\drivers\dxg.sys
    0xF8D16000 \SystemRoot\System32\drivers\dxgthk.sys
    0xBF012000 \SystemRoot\System32\ati2dvag.dll
    0xBF04E000 \SystemRoot\System32\ati2cqag.dll
    0xBF080000 \SystemRoot\System32\atikvmag.dll
    0xBF0B2000 \SystemRoot\System32\ati3duag.dll
    0xBF2E6000 \SystemRoot\System32\ativvaxx.dll
    0xBF37A000 \SystemRoot\System32\ATMFD.DLL
    0xF7FFE000 \SystemRoot\system32\DRIVERS\tvtfilter.sys
    0xB8198000 \SystemRoot\system32\DRIVERS\irda.sys
    0xF8A95000 \SystemRoot\system32\DRIVERS\elagopro.sys
    0xB82C2000 \SystemRoot\system32\DRIVERS\ndisuio.sys
    0xB7F13000 \SystemRoot\system32\DRIVERS\mrxdav.sys
    0xF89C5000 \SystemRoot\System32\drivers\BrPar.sys
    0xF8C2D000 \SystemRoot\System32\Drivers\ParVdm.SYS
    0xF8C31000 \SystemRoot\system32\DRIVERS\elaunidr.sys
    0xB7D53000 \SystemRoot\system32\DRIVERS\srv.sys
    0xF8C1F000 \??\C:\WINDOWS\System32\drivers\pmemnt.sys
    0xB7726000 \SystemRoot\system32\drivers\wdmaud.sys
    0xB7E5B000 \SystemRoot\system32\drivers\sysaudio.sys
    0xB740F000 \SystemRoot\System32\Drivers\HTTP.sys
    0xB6FFF000 \??\C:\WINDOWS\system32\PCANDIS5.SYS
    0xB6F4B000 \??\C:\WINDOWS\system32\CBTNDIS5.SYS
    0x7C900000 \WINDOWS\system32\ntdll.dll

    Processes (total 73):
    0 System Idle Process
    4 System
    1756 C:\WINDOWS\system32\smss.exe
    540 csrss.exe
    588 C:\WINDOWS\system32\winlogon.exe
    712 C:\WINDOWS\system32\services.exe
    728 C:\WINDOWS\system32\lsass.exe
    1048 C:\WINDOWS\system32\ibmpmsvc.exe
    1072 C:\WINDOWS\system32\ati2evxx.exe
    1084 C:\WINDOWS\system32\svchost.exe
    1280 svchost.exe
    1468 C:\WINDOWS\system32\svchost.exe
    1508 C:\WINDOWS\system32\svchost.exe
    1920 svchost.exe
    360 svchost.exe
    784 C:\WINDOWS\system32\brsvc01a.exe
    840 C:\WINDOWS\system32\spoolsv.exe
    852 C:\WINDOWS\system32\brss01a.exe
    1236 svchost.exe
    1308 C:\Program Files\ThinkPad\ConnectUtilities\AcPrfMgrSvc.exe
    1400 C:\Program Files\comcasttb\ComcastSpywareScan\ComcastAntiSpyService.exe
    1500 C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
    1608 C:\Program Files\Bonjour\mDNSResponder.exe
    280 C:\Program Files\Verizon\IHA_MessageCenter\Bin\Verizon_IHAMessageCenter.exe
    1868 C:\Program Files\CA\PPRT\bin\ITMRTSVC.exe
    1968 C:\Program Files\Linksys\Wireless-G Notebook Adapter\NICServ.exe
    408 C:\Program Files\OpenCase\OpenCASE Media Agent\MediaAgent.exe
    1356 C:\Documents and Settings\Sharad\Application Data\Picasa\IE\PicasaUpdater.exe
    1680 C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
    1784 C:\WINDOWS\system32\svchost.exe
    1808 C:\Program Files\Common Files\Lenovo\tvt_reg_monitor_svc.exe
    1936 C:\WINDOWS\system32\TPHDEXLG.exe
    2012 C:\Program Files\Lenovo\Rescue and Recovery\rrpservice.exe
    1960 C:\Program Files\Lenovo\Rescue and Recovery\rrservice.exe
    476 C:\Program Files\Common Files\Lenovo\Scheduler\tvtsched.exe
    620 C:\Program Files\Lenovo\Rescue and Recovery\ADM\IUService.exe
    984 C:\Program Files\Lenovo\System Update\SUService.exe
    1232 C:\Program Files\ThinkPad\ConnectUtilities\AcSvc.exe
    2784 C:\Program Files\Common Files\Lenovo\Logger\logmon.exe
    3992 wmiprvse.exe
    1616 alg.exe
    3568 C:\Program Files\ThinkPad\ConnectUtilities\SvcGuiHlpr.exe
    3904 C:\WINDOWS\system32\wscntfy.exe
    3936 C:\WINDOWS\system32\ati2evxx.exe
    356 C:\WINDOWS\explorer.exe
    3132 C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
    3156 C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    3184 C:\Program Files\Common Files\Lenovo\Scheduler\scheduler_proxy.exe
    3420 C:\PROGRA~1\ThinkPad\UTILIT~1\EZEJMNAP.EXE
    3596 C:\Program Files\ThinkPad\ConnectUtilities\ACWLIcon.exe
    3620 C:\WINDOWS\system32\TpShocks.exe
    3648 C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
    3820 C:\WINDOWS\AGRSMMSG.exe
    3912 C:\Program Files\Lenovo\HOTKEY\TPOSDSVC.exe
    3924 C:\Program Files\Lenovo\Message Center Plus\MCPLaunch.exe
    3988 C:\Program Files\OpenCase\OpenCASE Media Agent\PandoBinaries\NBCPandoREST.exe
    2620 C:\WINDOWS\system32\ctfmon.exe
    2664 C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe
    2732 C:\Program Files\Linksys EasyLink Advisor\LinksysAgent.exe
    2748 C:\Program Files\Lenovo\ZOOM\TpScrex.exe
    2884 C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe
    2996 C:\Program Files\NETGEAR\WG111 Configuration Utility\WG111.exe
    3012 C:\Program Files\Common Files\Sonic Shared\CineTray.exe
    3240 C:\Program Files\Linksys\Wireless-G Notebook Adapter\Gcc.exe
    3532 C:\Program Files\Linksys\Wireless-G Notebook Adapter\OdHost.exe
    2004 C:\Documents and Settings\Sharad\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
    2844 C:\Documents and Settings\Sharad\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
    3024 C:\Documents and Settings\Sharad\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
    1380 C:\Documents and Settings\Sharad\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
    3640 C:\Documents and Settings\Sharad\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
    4064 C:\Documents and Settings\Sharad\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
    1448 C:\Documents and Settings\Sharad\My Documents\Downloads\MBRCheck.exe
    1348 C:\Documents and Settings\Sharad\My Documents\Downloads\MBRCheck.exe

    \\.\C: --> \\.\PhysicalDrive0 at offset 0x00000000`00007e00 (NTFS)

    PhysicalDrive0 Model Number: IC25N040ATMR04-0, Rev: MO2OAD4A

    Size Device Name MBR Status
    --------------------------------------------
    37 GB \\.\PhysicalDrive0 Unknown MBR code
    SHA1: 268D600EAFEDA60573519CF6EA7B2A11106990F6


    Found non-standard or infected MBR.
    Enter 'Y' and hit ENTER for more options, or 'N' to exit:
    Options:
    [1] Dump the MBR of a physical disk to file.
    [2] Restore the MBR of a physical disk with a standard boot code.
    [3] Exit.

    Enter your choice:

    Done!
  8. Belahzur Freedom Fighter

    PCHF Staff
    Message Count:
    6,774
    Likes Received:
    883
    My System
    Loading...
    Hello.
    Do you have your XP disc?
  9. chomolongma Bronze Member

    I've Donated!
    Bronze
    Message Count:
    78
    Likes Received:
    0
    My System
    Loading...
    Sorry, I do not have my XP disc. I bought it from somebody pre-loaded.
  10. Belahzur Freedom Fighter

    PCHF Staff
    Message Count:
    6,774
    Likes Received:
    883
    My System
    Loading...
    You will need to get one if we can't use CF.
  11. chomolongma Bronze Member

    I've Donated!
    Bronze
    Message Count:
    78
    Likes Received:
    0
    My System
    Loading...
    Thank you, Belahzur! I apologize for taking so long to reply.

    As for getting a free copy of XP, I tried but couldn't get it. As for buying, I'm not gonna do it. So is my problem back to square one?

    I was not told if the failure of CF on my computer was due to a virus or due to the fact that I had not disabled the "Constant Guard" and Anti-Spyware program (those are the two icons I see on the toolbar of COMCAST XFINITY. At the time of running the CF, there were no other anti-spyware or malware removal programs on my computer.

    Yesterday also I tried for three hours to set up the network. A friend of mine was good enough to give me an unused Linsky's Broadband Router with a CD. The first time, I was able to configure the router properly with the help of the CD that came along with it. but when I got to the Internet connection, it failed miserably. Theat's when I wrote to you.

    The second time, which was yesterday, I uninstalled Linsky's program from the system and tried to reinstall it. But the CD didn't run automatically as it had the first time. I had to manually install it. However, when I click the program it gives me only a tutorial with which I cannot do much.

    Having failed to figure out what the problem is, I have decided to postpone my wireless network adventure to a future date. So Please allow me to exit this thread with the verdict "case closed" so that I can start a new thread on other areas. Can I do so?
  12. DCiAdmin Administrator & Tech Team Leader

    Manager
    PCHF Staff
    Message Count:
    24,413
    Likes Received:
    3,344
    My System
    Loading...
    Chromolonga,

    We can certainly close this so you might move onto other support needs, BUT....

    So many things will come back to your Operating System being fouled and needing a reinstallation.

    Any chance that you have friends, family members or coworkers that might have an OEM XP disk that you could use to reinstall or repair your system?
  13. chomolongma Bronze Member

    I've Donated!
    Bronze
    Message Count:
    78
    Likes Received:
    0
    My System
    Loading...
    Hi:

    Sorry I took some time. So far I have not been able to get a copy of XP disc. Ever since I uninstalled AVG 2012 (it made my laptop very slow and made me wait about two/three minutes before letting my Google Chrome come to life), and installed Microsoft Security Essentials, my computer is behaving more warmly. SE is very gentle and does not interefere with my browsing much.

    It was very hard to uninstall AVG 2012. In the middle of uninstall, it would pop out a message saying there was an error and hence the uninstalling cannot be completed. I tried two times and both times it was the same message. At the third time, it very meekly asked me to at least keep their AVG Link Scanner. When I did, the uninstall was complete. So now I have both the SE and AVG Link scanner which do not conflict with each other.

    As for the wi-fi network fiasco, I have decided that I do not need it for the present time.

    When can I close this thread and start a new one?
  14. DCiAdmin Administrator & Tech Team Leader

    Manager
    PCHF Staff
    Message Count:
    24,413
    Likes Received:
    3,344
    My System
    Loading...
    At the member's request, this thread is now closed. If the problem re-occurs, please start a new thread and if it has a bearing on your original thread then please state this and a member of staff will supply the link to the original post.

Setting up WiFi Network

Thread Status:
Not open for further replies.