InterviewSolution
| 1. |
Solve : Hijacked cookies.sqlite in Thunderbird? |
|
Answer» I ran that scan, and it crashed again:
MBRCheck, version 1.2.3 (c) 2010, AD Command-line: Windows Version:Windows 7 Home Premium Edition Windows Information:Service Pack 1 (build 7601), 32-bit Base Board Manufacturer:MICRO-STAR INTERNATIONAL CO.,LTD BIOS Manufacturer:American Megatrends Inc. System Manufacturer:MICRO-STAR INTERNATIONAL CO.,LTD System Product Name:MS-7360 Logical Drives Mask:0x00003c3d Kernel Drivers (total 160): 0x82C42000 \SystemRoot\system32\ntoskrnl.exe 0x82C0B000 \SystemRoot\system32\halmacpi.dll 0x80BAF000 \SystemRoot\system32\kdcom.dll 0x89404000 \SystemRoot\system32\mcupdate_GenuineIntel.dll 0x89489000 \SystemRoot\system32\PSHED.dll 0x8949A000 \SystemRoot\system32\BOOTVID.dll 0x894A2000 \SystemRoot\system32\CLFS.SYS 0x894E4000 \SystemRoot\system32\CI.dll 0x8958F000 \SystemRoot\system32\drivers\Wdf01000.sys 0x89600000 \SystemRoot\system32\drivers\WDFLDR.SYS 0x8960E000 \SystemRoot\system32\drivers\ACPI.sys 0x89656000 \SystemRoot\system32\drivers\WMILIB.SYS 0x8965F000 \SystemRoot\system32\drivers\msisadrv.sys 0x89667000 \SystemRoot\system32\drivers\pci.sys 0x89691000 \SystemRoot\system32\drivers\vdrvroot.sys 0x8969C000 \SystemRoot\System32\drivers\partmgr.sys 0x896AD000 \SystemRoot\system32\drivers\volmgr.sys 0x896BD000 \SystemRoot\System32\drivers\volmgrx.sys 0x89708000 \SystemRoot\system32\drivers\pciide.sys 0x8970F000 \SystemRoot\system32\drivers\PCIIDEX.SYS 0x8971D000 \SystemRoot\System32\drivers\mountmgr.sys 0x89733000 \SystemRoot\system32\drivers\atapi.sys 0x8973C000 \SystemRoot\system32\drivers\ataport.SYS 0x8975F000 \SystemRoot\system32\drivers\amdxata.sys 0x89768000 \SystemRoot\system32\drivers\fltmgr.sys 0x8979C000 \SystemRoot\system32\drivers\fileinfo.sys 0x89833000 \SystemRoot\System32\Drivers\Ntfs.sys 0x89962000 \SystemRoot\System32\Drivers\msrpc.sys 0x8998D000 \SystemRoot\System32\Drivers\ksecdd.sys 0x899A0000 \SystemRoot\System32\Drivers\cng.sys 0x899FD000 \SystemRoot\System32\drivers\pcw.sys 0x89A0B000 \SystemRoot\system32\drivers\eufs.sys 0x89A14000 \SystemRoot\System32\Drivers\Fs_Rec.sys 0x89A1D000 \SystemRoot\system32\drivers\ndis.sys 0x89AD4000 \SystemRoot\system32\drivers\NETIO.SYS 0x89B12000 \SystemRoot\System32\Drivers\ksecpkg.sys 0x89C1B000 \SystemRoot\System32\drivers\tcpip.sys 0x89D65000 \SystemRoot\System32\drivers\fwpkclnt.sys 0x89D96000 \SystemRoot\system32\drivers\volsnap.sys 0x89DD5000 \SystemRoot\System32\Drivers\spldr.sys 0x89DDD000 \SystemRoot\System32\drivers\rdyboost.sys 0x89E0A000 \SystemRoot\System32\Drivers\mup.sys 0x89E1A000 \SystemRoot\System32\drivers\hwpolicy.sys 0x89E22000 \SystemRoot\System32\DRIVERS\fvevol.sys 0x89E54000 \SystemRoot\system32\drivers\eubakup.sys 0x89E5F000 \SystemRoot\system32\DRIVERS\disk.sys 0x89E70000 \SystemRoot\system32\DRIVERS\CLASSPNP.SYS 0x89EC7000 \SystemRoot\system32\drivers\cdrom.sys 0x89EE6000 \SystemRoot\System32\Drivers\aswSnx.SYS 0x89F56000 \SystemRoot\System32\Drivers\Null.SYS 0x89F5D000 \SystemRoot\System32\Drivers\Beep.SYS 0x89F64000 \SystemRoot\System32\drivers\vga.sys 0x89F70000 \SystemRoot\System32\drivers\VIDEOPRT.SYS 0x89F91000 \SystemRoot\System32\drivers\watchdog.sys 0x89F9E000 \SystemRoot\System32\DRIVERS\RDPCDD.sys 0x89FA6000 \SystemRoot\system32\drivers\rdpencdd.sys 0x89FAE000 \SystemRoot\system32\drivers\rdprefmp.sys 0x89FB6000 \SystemRoot\System32\Drivers\Msfs.SYS 0x89FC1000 \SystemRoot\System32\Drivers\Npfs.SYS 0x89FCF000 \SystemRoot\system32\DRIVERS\tdx.sys 0x89FE6000 \SystemRoot\system32\DRIVERS\TDI.SYS 0x89FF2000 \SystemRoot\System32\Drivers\aswTdi.SYS 0x89B37000 \SystemRoot\System32\DRIVERS\netbt.sys 0x89B69000 \SystemRoot\system32\drivers\afd.sys 0x89C00000 \SystemRoot\System32\Drivers\aswRdr.SYS 0x89C05000 \SystemRoot\system32\DRIVERS\wfplwf.sys 0x89BC3000 \SystemRoot\system32\DRIVERS\pacer.sys 0x89C0C000 \SystemRoot\system32\DRIVERS\netbios.sys 0x89BE2000 \SystemRoot\system32\DRIVERS\serial.sys 0x89800000 \SystemRoot\system32\DRIVERS\wanarp.sys 0x89813000 \SystemRoot\system32\DRIVERS\VBoxUSBMon.sys 0x897AD000 \SystemRoot\system32\DRIVERS\VBoxDrv.sys 0x8981C000 \SystemRoot\system32\drivers\termdd.sys 0x897CA000 \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS 0x8C41E000 \SystemRoot\system32\DRIVERS\rdbss.sys 0x8C45F000 \SystemRoot\system32\drivers\nsiproxy.sys 0x8C469000 \SystemRoot\system32\drivers\mssmbios.sys 0x8C473000 \??\C:\Windows\system32\drivers\eudskacs.sys 0x8C47B000 \SystemRoot\System32\drivers\discache.sys 0x8C487000 \SystemRoot\System32\Drivers\dfsc.sys 0x8C49F000 \SystemRoot\system32\DRIVERS\blbdrive.sys 0x8C4AD000 \SystemRoot\System32\Drivers\aswSP.SYS 0x8C4F7000 \SystemRoot\system32\DRIVERS\tunnel.sys 0x8C518000 \SystemRoot\system32\DRIVERS\intelppm.sys 0x9142C000 \SystemRoot\system32\DRIVERS\nvlddmkm.sys 0x91E27000 \SystemRoot\System32\Drivers\nvBridge.kmd 0x91E29000 \SystemRoot\System32\drivers\dxgkrnl.sys 0x91EE0000 \SystemRoot\System32\drivers\dxgmms1.sys 0x91F19000 \SystemRoot\system32\drivers\usbuhci.sys 0x91F24000 \SystemRoot\system32\drivers\USBPORT.SYS 0x91F6F000 \SystemRoot\system32\drivers\usbehci.sys 0x91F7E000 \SystemRoot\system32\drivers\HDAudBus.sys 0x91F9D000 \SystemRoot\system32\DRIVERS\Rt86win7.sys 0x91FC2000 \SystemRoot\system32\DRIVERS\el90XND5.SYS 0x91FE8000 \SystemRoot\system32\DRIVERS\serenum.sys 0x91FF2000 \SystemRoot\system32\DRIVERS\fdc.sys 0x91400000 \SystemRoot\system32\drivers\i8042prt.sys 0x91418000 \SystemRoot\system32\drivers\kbdclass.sys 0x8C52A000 \SystemRoot\system32\drivers\mouclass.sys 0x8C537000 \SystemRoot\system32\drivers\CompositeBus.sys 0x8C544000 \SystemRoot\system32\DRIVERS\AgileVpn.sys 0x8C556000 \SystemRoot\system32\DRIVERS\HssDrv.sys 0x8C566000 \SystemRoot\system32\DRIVERS\rasl2tp.sys 0x8C57E000 \SystemRoot\system32\DRIVERS\ndistapi.sys 0x8C589000 \SystemRoot\system32\DRIVERS\ndiswan.sys 0x8C5AB000 \SystemRoot\system32\DRIVERS\raspppoe.sys 0x8C5C3000 \SystemRoot\system32\DRIVERS\raspptp.sys 0x8C5DA000 \SystemRoot\system32\DRIVERS\rassstp.sys 0x91425000 \SystemRoot\system32\DRIVERS\taphss.sys 0x8C5F1000 \SystemRoot\system32\DRIVERS\VBoxNetFlt.sys 0x91FFD000 \SystemRoot\system32\drivers\swenum.sys 0x8C60B000 \SystemRoot\system32\drivers\ks.sys 0x8C63F000 \SystemRoot\system32\DRIVERS\EuDisk.sys 0x8C670000 \SystemRoot\system32\drivers\umbus.sys 0x8C67E000 \SystemRoot\system32\drivers\usbhub.sys 0x8C6C2000 \SystemRoot\system32\DRIVERS\flpydisk.sys 0x8C6CC000 \SystemRoot\System32\Drivers\NDProxy.SYS 0x8C6DD000 \SystemRoot\system32\drivers\HdAudio.sys 0x8C72D000 \SystemRoot\system32\drivers\portcls.sys 0x8C75C000 \SystemRoot\system32\drivers\drmk.sys 0x8C775000 \SystemRoot\system32\drivers\usbccgp.sys 0x8C78C000 \SystemRoot\system32\drivers\USBD.SYS 0x8C78E000 \SystemRoot\System32\Drivers\usbvideo.sys 0x8C7B2000 \SystemRoot\system32\drivers\usbaudio.sys 0x8C7C6000 \SystemRoot\system32\drivers\USBSTOR.SYS 0x8C7DD000 \SystemRoot\System32\Drivers\crashdmp.sys 0x8C7EA000 \SystemRoot\System32\Drivers\dump_dumpata.sys 0x8C7F5000 \SystemRoot\System32\Drivers\dump_atapi.sys 0x8C400000 \SystemRoot\System32\Drivers\dump_dumpfve.sys 0x92D00000 \SystemRoot\System32\win32k.sys 0x8C411000 \SystemRoot\System32\drivers\Dxapi.sys 0x89E95000 \SystemRoot\system32\DRIVERS\monitor.sys 0x92F60000 \SystemRoot\System32\TSDDD.dll 0x92F90000 \SystemRoot\System32\cdd.dll 0x89EA0000 \SystemRoot\system32\drivers\luafv.sys 0x9902E000 \??\C:\Windows\system32\drivers\aswMonFlt.sys 0x99066000 \SystemRoot\System32\Drivers\aswFsBlk.SYS 0x99069000 \SystemRoot\system32\drivers\WudfPf.sys 0x99083000 \SystemRoot\system32\DRIVERS\lltdio.sys 0x99093000 \SystemRoot\system32\DRIVERS\rspndr.sys 0x990A6000 \SystemRoot\system32\drivers\HTTP.sys 0x9912B000 \SystemRoot\system32\DRIVERS\bowser.sys 0x99144000 \SystemRoot\System32\drivers\mpsdrv.sys 0x99156000 \SystemRoot\system32\DRIVERS\mrxsmb.sys 0x99179000 \SystemRoot\system32\DRIVERS\mrxsmb10.sys 0x991B4000 \SystemRoot\system32\DRIVERS\mrxsmb20.sys 0x991E7000 \SystemRoot\system32\drivers\peauth.sys 0x9927E000 \SystemRoot\System32\Drivers\secdrv.SYS 0x99288000 \SystemRoot\System32\DRIVERS\srvnet.sys 0x992A9000 \SystemRoot\System32\drivers\tcpipreg.sys 0x992B6000 \SystemRoot\System32\DRIVERS\srv2.sys 0x99306000 \SystemRoot\System32\DRIVERS\srv.sys 0x99358000 \SystemRoot\system32\DRIVERS\WUDFRd.sys 0x993E3000 \SystemRoot\system32\DRIVERS\asyncmac.sys 0x99000000 \SystemRoot\System32\Drivers\fastfat.SYS 0x99379000 \SystemRoot\system32\DRIVERS\cdfs.sys 0x77950000 \Windows\System32\ntdll.dll 0x47E60000 \Windows\System32\smss.exe 0x77B90000 \Windows\System32\apisetschema.dll 0x00D70000 \Windows\System32\autochk.exe Processes (total 61): 0 System Idle Process 4 System 320 C:\Windows\System32\smss.exe 428 csrss.exe 484 C:\Windows\System32\wininit.exe 496 csrss.exe 536 C:\Windows\System32\services.exe 568 C:\Windows\System32\lsass.exe 576 C:\Windows\System32\lsm.exe 696 C:\Windows\System32\winlogon.exe 724 C:\Windows\System32\svchost.exe 808 C:\Windows\System32\nvvsvc.exe 848 C:\Windows\System32\svchost.exe 956 C:\Windows\System32\svchost.exe 988 C:\Windows\System32\svchost.exe 1020 C:\Windows\System32\svchost.exe 1156 C:\Windows\System32\svchost.exe 1216 C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe 1240 C:\Windows\System32\nvvsvc.exe 1312 C:\Windows\System32\svchost.exe 1396 C:\Program Files\AVAST Software\Avast\AvastSvc.exe 1796 C:\Windows\System32\dwm.exe 1820 C:\Windows\explorer.exe 1984 C:\Windows\System32\spoolsv.exe 2016 C:\Windows\System32\svchost.exe 360 C:\Windows\System32\taskhost.exe 1016 C:\Program Files\a-squared Free\a2service.exe 1460 C:\Program Files\EASEUS\Todo Backup 2.0\bin\Agent.exe 660 C:\Program Files\Expat Shield\bin\openvpnas.exe 1784 C:\Program Files\Expat Shield\HssWPR\hsssrv.exe 2124 C:\Program Files\Expat Shield\bin\hsswd.exe 2156 C:\Program Files\MySQL\MySQL Server 5.0\bin\mysqld-nt.exe 2224 C:\Windows\System32\svchost.exe 2264 C:\Windows\System32\UAService7.exe 2664 C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe 3004 WUDFHost.exe 3448 C:\Program Files\AVAST Software\Avast\AvastUI.exe 3456 C:\Program Files\Common Files\Java\Java Update\jusched.exe 3464 C:\Program Files\Windows Sidebar\sidebar.exe 3472 C:\Program Files\Skype\Phone\Skype.exe 3516 C:\Program Files\uTorrent\uTorrent.exe 3544 C:\Program Files\eMule\emule.exe 3748 C:\Windows\System32\SearchIndexer.exe 4048 C:\Program Files\Windows Media Player\wmpnetwk.exe 4084 C:\Windows\System32\svchost.exe 2788 C:\Windows\System32\svchost.exe 4484 C:\Program Files\Expat Shield\bin\openvpntray.exe 5240 C:\Windows\System32\svchost.exe 5864 C:\Windows\System32\svchost.exe 3668 C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE 4412 C:\Windows\System32\audiodg.exe 5404 C:\Program Files\MediaMonkey\MediaMonkey.exe 5972 C:\Program Files\Windows Media Player\wmplayer.exe 5768 C:\Windows\System32\wuauclt.exe 4440 C:\Program Files\Mozilla Firefox\firefox.exe 4536 C:\Windows\System32\SearchProtocolHost.exe 6116 C:\Windows\System32\SearchFilterHost.exe 4140 C:\Windows\explorer.exe 5376 C:\Users\Stuart\Downloads\MBRCheck.exe 2928 C:\Windows\System32\conhost.exe 3276 C:\Windows\System32\dllhost.exe \\.\C: --> \\.\PhysicalDrive0 at offset 0x00000000`06500000 (NTFS) \\.\D: --> \\.\PhysicalDrive0 at offset 0x00000009`ca500000 \\.\E: --> \\.\PhysicalDrive0 at offset 0x0000000e`ac500000 (NTFS) PhysicalDrive0 Model Number: ST3500418AS, Rev: CC35 Size Device Name MBR Status -------------------------------------------- 465 GB \\.\PhysicalDrive0 Windows 7 MBR code detected SHA1: 4379A3D43019B46FA357F7DD6A53B45A3CA8FB7 9 Done!Those last scans were to check out the MBR which could have caused the problem with Kernal_Stack_Inpage_Error but it checked out ok. How's the computer RUNNING now?It's running, it does still freeze from time to time, but I can't spot a pattern as to why it's freezing - I could be using Skype, clicking on a Bookmark in Firefox, or MediaMonkey could be playing a song while I'm in the kitchen and the needle starting skipping, as it were. The only WAY out is Ctrl+Alt+Del and a bit of patience until it comes back. I haven't dared to use Thunderbird all week, but I finally opened it this morning, downloaded my mail etc, and on closing it got a Calendar error (could not write to the calendar) which I've not seen before, so there may still be something lurking. The alternative I guess is a hardware error, the PC's 3 years old, but the only indication I have of a failure is the on-board ethernet socket stopped working about 3 months ago, so I stuck a PCI card in and it's been fine since. Quote I could be using Skype, clicking on a Bookmark in Firefox, or MediaMonkey could be playing a song while I'm in the kitchen and the needle starting skipping, as it were.Did it just start doing that? I don't see any infections on your computer so I have to surmise that it's a software or hardware problemNo, it was doing that before I started this thread, that was the freezing I was talking about in my first post. Thank you SO much for your time and effort Dave, I'm gonna invest in a new mobo and perhaps reinstall 7, see if that irons out the creases. You're welcome. Sorry I couldn't be more helpful. I will lock this thread. If you need it re-opened, please send me a pm.Latest update, new motherboard and reinstalled W7 fresh and it's working fine. Obviously a hardware problem and not malware. Cheers! |
|