|
Answer» Let's TRY this again.
SAS, MBAM, HJT are basically inop. Might be able to start a scan or update, and then they close out. Either don't get results from scan or cannot SAVE them without the PROGRAM closing out.
Eset is updated and scan run, but still have issues. Java is updated and all old Javas have been deleted.
Some errors include: [emailprotected]:windows\system\32\oledlg.dll Installer error 1321 Lots of insufficient privaleges when trying to install new anti-? SOFTWARE. I'm not sure what else to do and I'm not sure what else information I can give you.
About the only results I can give is from rootrepeal. Don't know if it will help or not, but it is pasted below.
Thanks in advance for any help. Maybe we can find whoever wrote this and send the to Afghanistan or Iran or something.
ROOTREPEAL (c) AD, 2007-2009 ================================================== Scan Start Time:2009/11/24 06:12 Program Version:Version 1.3.5.0 Windows Version:Windows XP SP3 ==================================================
Drivers ------------------- Name: 1394BUS.SYS Image Path: C:\WINDOWS\System32\DRIVERS\1394BUS.SYS Address: 0xF784E000Size: 57344File Visible: -Signed: - Status: -
Name: 3xHybrid.sys Image Path: C:\WINDOWS\system32\DRIVERS\3xHybrid.sys Address: 0xF679B000Size: 907136File Visible: -Signed: - Status: -
Name: ACPI.sys Image Path: ACPI.sys Address: 0xF77DF000Size: 187776File Visible: -Signed: - Status: -
Name: ACPI_HAL Image Path: \Driver\ACPI_HAL Address: 0x804D7000Size: 2189056File Visible: -Signed: - Status: -
Name: afd.sys Image Path: C:\WINDOWS\System32\drivers\afd.sys Address: 0xF5493000Size: 138496File Visible: -Signed: - Status: -
Name: ALCXWDM.SYS Image Path: C:\WINDOWS\system32\drivers\ALCXWDM.SYS Address: 0xF689D000Size: 4122368File Visible: -Signed: - Status: -
Name: arp1394.sys Image Path: C:\WINDOWS\System32\DRIVERS\arp1394.sys Address: 0xF7A6E000Size: 60800File Visible: -Signed: - Status: -
Name: atapi.sys Image Path: atapi.sys Address: 0xF7797000Size: 96512File Visible: -Signed: - Status: -
Name: audstub.sys Image Path: C:\WINDOWS\System32\DRIVERS\audstub.sys Address: 0xF7ECB000Size: 3072File Visible: -Signed: - Status: -
Name: BdaSup.SYS Image Path: C:\WINDOWS\system32\DRIVERS\BdaSup.SYS Address: 0xF7652000Size: 12288File Visible: -Signed: - Status: -
Name: Beep.SYS Image Path: C:\WINDOWS\System32\Drivers\Beep.SYS Address: 0xF7D5E000Size: 4224File Visible: -Signed: - Status: -
Name: BOOTVID.dll Image Path: C:\WINDOWS\system32\BOOTVID.dll Address: 0xF7C3E000Size: 12288File Visible: -Signed: - Status: -
Name: Cdfs.SYS Image Path: C:\WINDOWS\System32\Drivers\Cdfs.SYS Address: 0xF78EE000Size: 63744File Visible: -Signed: - Status: -
Name: cdrom.sys Image Path: C:\WINDOWS\System32\DRIVERS\cdrom.sys Address: 0xF794E000Size: 62976File Visible: -Signed: - Status: -
Name: CLASSPNP.SYS Image Path: C:\WINDOWS\System32\DRIVERS\CLASSPNP.SYS Address: 0xF788E000Size: 53248File Visible: -Signed: - Status: -
Name: disk.sys Image Path: disk.sys Address: 0xF787E000Size: 36352File Visible: -Signed: - Status: -
Name: DLKRTS.SYS Image Path: C:\WINDOWS\system32\DRIVERS\DLKRTS.SYS Address: 0xF798E000Size: 45568File Visible: -Signed: - Status: -
Name: drmk.sys Image Path: C:\WINDOWS\system32\drivers\drmk.sys Address: 0xF797E000Size: 61440File Visible: -Signed: - Status: -
Name: Dxapi.sys Image Path: C:\WINDOWS\System32\drivers\Dxapi.sys Address: 0xF7D1A000Size: 12288File Visible: -Signed: - Status: -
Name: dxg.sys Image Path: C:\WINDOWS\System32\drivers\dxg.sys Address: 0xBF000000Size: 73728File Visible: -Signed: - Status: -
Name: dxgthk.sys Image Path: C:\WINDOWS\System32\drivers\dxgthk.sys Address: 0xF7F2B000Size: 4096File Visible: -Signed: - Status: -
Name: eamon.sys Image Path: C:\WINDOWS\system32\DRIVERS\eamon.sys Address: 0xF2873000Size: 315392File Visible: -Signed: - Status: -
Name: easdrv.sys Image Path: C:\WINDOWS\system32\DRIVERS\easdrv.sys Address: 0xF7A8E000Size: 61440File Visible: -Signed: - Status: -
Name: epfwtdir.sys Image Path: C:\WINDOWS\system32\DRIVERS\epfwtdir.sys Address: 0xF7A2E000Size: 49152File Visible: -Signed: - Status: -
Name: Fastfat.SYS Image Path: C:\WINDOWS\System32\Drivers\Fastfat.SYS Address: 0xF411C000Size: 143744File Visible: -Signed: - Status: -
Name: fdc.sys Image Path: C:\WINDOWS\System32\DRIVERS\fdc.sys Address: 0xF7ACE000Size: 27392File Visible: -Signed: - Status: -
Name: Fips.SYS Image Path: C:\WINDOWS\System32\Drivers\Fips.SYS Address: 0xF7A7E000Size: 44544File Visible: -Signed: - Status: -
Name: flpydisk.sys Image Path: C:\WINDOWS\System32\DRIVERS\flpydisk.sys Address: 0xF7AFE000Size: 20480File Visible: -Signed: - Status: -
Name: fltmgr.sys Image Path: fltmgr.sys Address: 0xF7777000Size: 129792File Visible: -Signed: - Status: -
Name: Fs_Rec.SYS Image Path: C:\WINDOWS\System32\Drivers\Fs_Rec.SYS Address: 0xF7D5C000Size: 7936File Visible: -Signed: - Status: -
Name: ftdisk.sys Image Path: ftdisk.sys Address: 0xF77AF000Size: 125056File Visible: -Signed: - Status: -
Name: gameenum.sys Image Path: C:\WINDOWS\System32\DRIVERS\gameenum.sys Address: 0xF764A000Size: 10624File Visible: -Signed: - Status: -
Name: GEARAspiWDM.sys Image Path: C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys Address: 0xF796E000Size: 40960File Visible: -Signed: - Status: -
Name: hal.dll Image Path: C:\WINDOWS\system32\hal.dll Address: 0x806EE000Size: 131840File Visible: -Signed: - Status: -
Name: HIDCLASS.SYS Image Path: C:\WINDOWS\System32\DRIVERS\HIDCLASS.SYS Address: 0xF7229000Size: 36864File Visible: -Signed: - Status: -
Name: HIDPARSE.SYS Image Path: C:\WINDOWS\System32\DRIVERS\HIDPARSE.SYS Address: 0xF7B0E000Size: 28672File Visible: -Signed: - Status: -
Name: hidusb.sys Image Path: C:\WINDOWS\System32\DRIVERS\hidusb.sys Address: 0xF7CEE000Size: 10368File Visible: -Signed: - Status: -
Name: HTTP.sys Image Path: C:\WINDOWS\System32\Drivers\HTTP.sys Address: 0xF138D000Size: 264832File Visible: -Signed: - Status: -
Name: imapi.sys Image Path: C:\WINDOWS\System32\DRIVERS\imapi.sys Address: 0xF793E000Size: 42112File Visible: -Signed: - Status: -
Name: intelppm.sys Image Path: C:\WINDOWS\System32\DRIVERS\intelppm.sys Address: 0xF792E000Size: 36352File Visible: -Signed: - Status: -
Name: ipnat.sys Image Path: C:\WINDOWS\System32\DRIVERS\ipnat.sys Address: 0xF53A8000Size: 152832File Visible: -Signed: - Status: -
Name: ipsec.sys Image Path: C:\WINDOWS\System32\DRIVERS\ipsec.sys Address: 0xF5536000Size: 75264File Visible: -Signed: - Status: -
Name: isapnp.sys Image Path: isapnp.sys Address: 0xF782E000Size: 37248File Visible: -Signed: - Status: -
Name: kbdclass.sys Image Path: C:\WINDOWS\System32\DRIVERS\kbdclass.sys Address: 0xF7AEE000Size: 24576File Visible: -Signed: - Status: -
Name: kbdhid.sys Image Path: C:\WINDOWS\System32\DRIVERS\kbdhid.sys Address: 0xF7CFE000Size: 14592File Visible: -Signed: - Status: -
Name: KDCOM.DLL Image Path: C:\WINDOWS\system32\KDCOM.DLL Address: 0xF7D2E000Size: 8192File Visible: -Signed: - Status: -
Name: kmixer.sys Image Path: C:\WINDOWS\system32\drivers\kmixer.sys Address: 0xF1107000Size: 172416File Visible: -Signed: - Status: -
Name: KMW_Lib.sys Image Path: C:\WINDOWS\system32\DRIVERS\KMW_Lib.sys Address: 0xF7D64000Size: 8192File Visible: -Signed: - Status: -
Name: KMW_SYS.sys Image Path: C:\WINDOWS\system32\DRIVERS\KMW_SYS.sys Address: 0xF52CE000Size: 92032File Visible: -Signed: - Status: -
Name: KMW_USB.sys Image Path: C:\WINDOWS\system32\DRIVERS\KMW_USB.sys Address: 0xF7CF2000Size: 10496File Visible: -Signed: - Status: -
Name: ks.sys Image Path: C:\WINDOWS\System32\DRIVERS\ks.sys Address: 0xF6C8C000Size: 143360File Visible: -Signed: - Status: -
Name: KSecDD.sys Image Path: KSecDD.sys Address: 0xF774E000Size: 92288File Visible: -Signed: - Status: -
Name: mcdbus.sys Image Path: C:\WINDOWS\system32\DRIVERS\mcdbus.sys Address: 0xF6707000Size: 116736File Visible: -Signed: - Status: -
Name: mnmdd.SYS Image Path: C:\WINDOWS\System32\Drivers\mnmdd.SYS Address: 0xF7D60000Size: 4224File Visible: -Signed: - Status: -
Name: mouclass.sys Image Path: C:\WINDOWS\System32\DRIVERS\mouclass.sys Address: 0xF7AF6000Size: 23040File Visible: -Signed: - Status: -
Name: mouhid.sys Image Path: C:\WINDOWS\System32\DRIVERS\mouhid.sys Address: 0xF7D02000Size: 12160File Visible: -Signed: - Status: -
Name: MountMgr.sys Image Path: MountMgr.sys Address: 0xF785E000Size: 42368File Visible: -Signed: - Status: -
Name: mrxdav.sys Image Path: C:\WINDOWS\System32\DRIVERS\mrxdav.sys Address: 0xF2A72000Size: 180608File Visible: -Signed: - Status: -
Name: mrxsmb.sys Image Path: C:\WINDOWS\System32\DRIVERS\mrxsmb.sys Address: 0xF530D000Size: 455296File Visible: -Signed: - Status: -
Name: Msfs.SYS Image Path: C:\WINDOWS\System32\Drivers\Msfs.SYS Address: 0xF7B1E000Size: 19072File Visible: -Signed: - Status: -
Name: msgpc.sys Image Path: C:\WINDOWS\System32\DRIVERS\msgpc.sys Address: 0xF79DE000Size: 35072File Visible: -Signed: - Status: -
Name: msmpu401.sys Image Path: C:\WINDOWS\system32\drivers\msmpu401.sys Address: 0xF7ECA000Size: 2944File Visible: -Signed: - Status: -
Name: mssmbios.sys Image Path: C:\WINDOWS\System32\DRIVERS\mssmbios.sys Address: 0xF7636000Size: 15488File Visible: -Signed: - Status: -
Name: Mup.sys Image Path: Mup.sys Address: 0xF767A000Size: 105344File Visible: -Signed: - Status: -
Name: NDIS.sys Image Path: NDIS.sys Address: 0xF7694000Size: 182656File Visible: -Signed: - Status: -
Name: ndistapi.sys Image Path: C:\WINDOWS\System32\DRIVERS\ndistapi.sys Address: 0xF7646000Size: 10112File Visible: -Signed: - Status: -
Name: ndisuio.sys Image Path: C:\WINDOWS\System32\DRIVERS\ndisuio.sys Address: 0xF40B8000Size: 14592File Visible: -Signed: - Status: -
Name: ndiswan.sys Image Path: C:\WINDOWS\System32\DRIVERS\ndiswan.sys Address: 0xF6770000Size: 91520File Visible: -Signed: - Status: -
Name: NDProxy.SYS Image Path: C:\WINDOWS\System32\Drivers\NDProxy.SYS Address: 0xF79FE000Size: 40576File Visible: -Signed: - Status: -
Name: netbios.sys Image Path: C:\WINDOWS\System32\DRIVERS\netbios.sys Address: 0xF7A3E000Size: 34688File Visible: -Signed: - Status: -
Name: netbt.sys Image Path: C:\WINDOWS\System32\DRIVERS\netbt.sys Address: 0xF54B5000Size: 162816File Visible: -Signed: - Status: -
Name: nic1394.sys Image Path: C:\WINDOWS\System32\DRIVERS\nic1394.sys Address: 0xF78DE000Size: 61824File Visible: -Signed: - Status: -
Name: Npfs.SYS Image Path: C:\WINDOWS\System32\Drivers\Npfs.SYS Address: 0xF7B26000Size: 30848File Visible: -Signed: - Status: -
Name: Ntfs.sys Image Path: Ntfs.sys Address: 0xF76C1000Size: 574976File Visible: -Signed: - Status: -
Name: ntoskrnl.exe Image Path: C:\WINDOWS\system32\ntoskrnl.exe Address: 0x804D7000Size: 2189056File Visible: -Signed: - Status: -
Name: Null.SYS Image Path: C:\WINDOWS\System32\Drivers\Null.SYS Address: 0xF7E38000Size: 2944File Visible: -Signed: - Status: -
Name: nv4_disp.dll Image Path: C:\WINDOWS\System32\nv4_disp.dll Address: 0xBF012000Size: 4276224File Visible: -Signed: - Status: -
Name: nv4_mini.sys Image Path: C:\WINDOWS\System32\DRIVERS\nv4_mini.sys Address: 0xF6CE7000Size: 1897408File Visible: -Signed: - Status: -
Name: ohci1394.sys Image Path: ohci1394.sys Address: 0xF783E000Size: 61696File Visible: -Signed: - Status: -
Name: parport.sys Image Path: C:\WINDOWS\System32\DRIVERS\parport.sys Address: 0xF6787000Size: 80128File Visible: -Signed: - Status: -
Name: PartMgr.sys Image Path: PartMgr.sys Address: 0xF7AB6000Size: 19712File Visible: -Signed: - Status: -
Name: ParVdm.SYS Image Path: C:\WINDOWS\System32\Drivers\ParVdm.SYS Address: 0xF7DE4000Size: 6784File Visible: -Signed: - Status: -
Name: pci.sys Image Path: pci.sys Address: 0xF77CE000Size: 68224File Visible: -Signed: - Status: -
Name: pciide.sys Image Path: pciide.sys Address: 0xF7DF6000Size: 3328File Visible: -Signed: - Status: -
Name: PCIIDEX.SYS Image Path: C:\WINDOWS\System32\DRIVERS\PCIIDEX.SYS Address: 0xF7AAE000Size: 28672File Visible: -Signed: - Status: -
Name: PnpManager Image Path: \Driver\PnpManager Address: 0x804D7000Size: 2189056File Visible: -Signed: - Status: -
Name: portcls.sys Image Path: C:\WINDOWS\system32\drivers\portcls.sys Address: 0xF6879000Size: 147456File Visible: -Signed: - Status: -
Name: psched.sys Image Path: C:\WINDOWS\System32\DRIVERS\psched.sys Address: 0xF675F000Size: 69120File Visible: -Signed: - Status: -
Name: ptilink.sys Image Path: C:\WINDOWS\System32\DRIVERS\ptilink.sys Address: 0xF7ADE000Size: 17792File Visible: -Signed: - Status: -
Name: PxHelp20.sys Image Path: PxHelp20.sys Address: 0xF789E000Size: 35712File Visible: -Signed: - Status: -
Name: rasacd.sys Image Path: C:\WINDOWS\System32\DRIVERS\rasacd.sys Address: 0xF7CCE000Size: 8832File Visible: -Signed: - Status: -
Name: rasl2tp.sys Image Path: C:\WINDOWS\System32\DRIVERS\rasl2tp.sys Address: 0xF79AE000Size: 51328File Visible: -Signed: - Status: -
Name: raspppoe.sys Image Path: C:\WINDOWS\System32\DRIVERS\raspppoe.sys Address: 0xF79BE000Size: 41472File Visible: -Signed: - Status: -
Name: raspptp.sys Image Path: C:\WINDOWS\System32\DRIVERS\raspptp.sys Address: 0xF79CE000Size: 48384File Visible: -Signed: - Status: -
Name: raspti.sys Image Path: C:\WINDOWS\System32\DRIVERS\raspti.sys Address: 0xF7AE6000Size: 16512File Visible: -Signed: - Status: -
Name: RAW Image Path: \FileSystem\RAW Address: 0x804D7000Size: 2189056File Visible: -Signed: - Status: -
Name: rdbss.sys Image Path: C:\WINDOWS\System32\DRIVERS\rdbss.sys Address: 0xF537D000Size: 175744File Visible: -Signed: - Status: -
Name: RDPCDD.sys Image Path: C:\WINDOWS\System32\DRIVERS\RDPCDD.sys Address: 0xF7D62000Size: 4224File Visible: -Signed: - Status: -
Name: redbook.sys Image Path: C:\WINDOWS\System32\DRIVERS\redbook.sys Address: 0xF795E000Size: 57600File Visible: -Signed: - Status: -
Name: rootrepeal.sys Image Path: C:\WINDOWS\system32\drivers\rootrepeal.sys Address: 0xF0EB7000Size: 49152File Visible: NoSigned: - Status: -
Name: SASDIFSV.SYS Image Path: C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS Address: 0xF7B2E000Size: 24576File Visible: -Signed: - Status: -
Name: SASKUTIL.sys Image Path: C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys Address: 0xF53CE000Size: 151552File Visible: -Signed: - Status: -
Name: SCSIPORT.SYS Image Path: C:\WINDOWS\system32\DRIVERS\SCSIPORT.SYS Address: 0xF66EF000Size: 98304File Visible: -Signed: - Status: -
Name: serenum.sys Image Path: C:\WINDOWS\System32\DRIVERS\serenum.sys Address: 0xF764E000Size: 15744File Visible: -Signed: - Status: -
Name: serial.sys Image Path: C:\WINDOWS\System32\DRIVERS\serial.sys Address: 0xF799E000Size: 64512File Visible: -Signed: - Status: -
Name: sisagp.sys Image Path: sisagp.sys Address: 0xF78AE000Size: 40960File Visible: -Signed: - Status: -
Name: sr.sys Image Path: sr.sys Address: 0xF7765000Size: 73472File Visible: -Signed: - Status: -
Name: srv.sys Image Path: C:\WINDOWS\System32\DRIVERS\srv.sys Address: 0xF17B6000Size: 333952File Visible: -Signed: - Status: -
Name: swenum.sys Image Path: C:\WINDOWS\System32\DRIVERS\swenum.sys Address: 0xF7D54000Size: 4352File Visible: -Signed: - Status: -
Name: sysaudio.sys Image Path: C:\WINDOWS\system32\drivers\sysaudio.sys Address: 0xF4380000Size: 60800File Visible: -Signed: - Status: -
Name: tcpip.sys Image Path: C:\WINDOWS\System32\DRIVERS\tcpip.sys Address: 0xF54DD000Size: 361600File Visible: -Signed: - Status: -
Name: TDI.SYS Image Path: C:\WINDOWS\System32\DRIVERS\TDI.SYS Address: 0xF7AD6000Size: 20480File Visible: -Signed: - Status: -
Name: termdd.sys Image Path: C:\WINDOWS\System32\DRIVERS\termdd.sys Address: 0xF79EE000Size: 40704File Visible: -Signed: - Status: -
Name: tmcomm.sys Image Path: C:\WINDOWS\system32\drivers\tmcomm.sys Address: 0xF0CF9000Size: 180224File Visible: -Signed: - Status: -
Name: update.sys Image Path: C:\WINDOWS\System32\DRIVERS\update.sys Address: 0xF6691000Size: 384768File Visible: -Signed: - Status: -
Name: usbccgp.sys Image Path: C:\WINDOWS\System32\DRIVERS\usbccgp.sys Address: 0xF7B36000Size: 32128File Visible: -Signed: - Status: -
Name: USBD.SYS Image Path: C:\WINDOWS\System32\DRIVERS\USBD.SYS Address: 0xF7D5A000Size: 8192File Visible: -Signed: - Status: -
Name: usbhub.sys Image Path: C:\WINDOWS\System32\DRIVERS\usbhub.sys Address: 0xF7A0E000Size: 59520File Visible: -Signed: - Status: -
Name: usbohci.sys Image Path: C:\WINDOWS\System32\DRIVERS\usbohci.sys Address: 0xF7C36000Size: 17152File Visible: -Signed: - Status: -
Name: USBPORT.SYS Image Path: C:\WINDOWS\System32\DRIVERS\USBPORT.SYS Address: 0xF6CAF000Size: 147456File Visible: -Signed: - Status: -
Name: usbscan.sys Image Path: C:\WINDOWS\system32\DRIVERS\usbscan.sys Address: 0xF7CDE000Size: 15104File Visible: -Signed: - Status: -
Name: USBSTOR.SYS Image Path: C:\WINDOWS\System32\DRIVERS\USBSTOR.SYS Address: 0xF7B3E000Size: 26368File Visible: -Signed: - Status: -
Name: vga.sys Image Path: C:\WINDOWS\System32\drivers\vga.sys Address: 0xF7B16000Size: 20992File Visible: -Signed: - Status: -
Name: VIDEOPRT.SYS Image Path: C:\WINDOWS\System32\DRIVERS\VIDEOPRT.SYS Address: 0xF6CD3000Size: 81920File Visible: -Signed: - Status: -
Name: VolSnap.sys Image Path: VolSnap.sys Address: 0xF786E000Size: 52352File Visible: -Signed: - Status: -
Name: wanarp.sys Image Path: C:\WINDOWS\System32\DRIVERS\wanarp.sys Address: 0xF7A5E000Size: 34560File Visible: -Signed: - Status: -
Name: watchdog.sys Image Path: C:\WINDOWS\System32\watchdog.sys Address: 0xF7B56000Size: 20480File Visible: -Signed: - Status: -
Name: wdmaud.sys Image Path: C:\WINDOWS\system32\drivers\wdmaud.sys Address: 0xF2D97000Size: 83072File Visible: -Signed: - Status: -
Name: Win32k Image Path: \Driver\Win32k Address: 0xBF800000Size: 1847296File Visible: -Signed: - Status: -
Name: win32k.sys Image Path: C:\WINDOWS\System32\win32k.sys Address: 0xBF800000Size: 1847296File Visible: -Signed: - Status: -
Name: win32k.sys:1 Image Path: C:\WINDOWS\win32k.sys:1 Address: 0xF7B6E000Size: 20480File Visible: NoSigned: - Status: -
Name: win32k.sys:2 Image Path: C:\WINDOWS\win32k.sys:2 Address: 0xF5403000Size: 61440File Visible: NoSigned: - Status: -
Name: WMILIB.SYS Image Path: C:\WINDOWS\System32\DRIVERS\WMILIB.SYS Address: 0xF7D30000Size: 8192File Visible: -Signed: - Status: -
Name: WMIxWDM Image Path: \Driver\WMIxWDM Address: 0x804D7000Size: 2189056File Visible: -Signed: - Status: -
|