1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

something weird going on when i enter info. i think it's redirected

Discussion in 'Windows - Virus and spyware problems' started by Chloe01, Mar 11, 2007.

  1. Chloe01

    Chloe01 Member

    Joined:
    Mar 11, 2007
    Messages:
    2
    Likes Received:
    0
    Trophy Points:
    11
    i am running windows xp sp2 iexplorer 5.01 ver.6 however whenever i use AVG to scan it skips the scan master boot and it always says no version info in the NETNT.DLL -No information. I always have 1 warning when i scan but no detections. I'm not sure but it seems my internet also clicks over and over after i search, type an address,etc. however i am only clicking it 1 time or selecting enter on my keyboard. i also believe in task maager i am low on virtual space and volume info.






    AntiVir PersonalEdition Classic
    Report file date: Saturday, March 10, 2007 09:53

    Scanning for 699620 virus strains and unwanted programs.


    Version information:
    BUILD.DAT : 217 12749 Bytes 12/5/2006 17:00:00
    AVSCAN.EXE : 7.0.3.5 208936 Bytes 3/9/2007 10:23:23
    AVSCAN.DLL : 7.0.3.1 35880 Bytes 12/6/2006 01:00:22
    LUKE.DLL : 7.0.3.2 143400 Bytes 11/1/2006 01:07:46
    LUKERES.DLL : 7.0.2.0 9256 Bytes 12/6/2006 01:00:22
    ANTIVIR0.VDF : 6.35.0.1 7371264 Bytes 5/31/2006 00:30:06
    ANTIVIR1.VDF : 6.37.1.151 4303360 Bytes 2/23/2007 10:23:24
    ANTIVIR2.VDF : 6.38.0.29 250880 Bytes 3/9/2007 10:20:22
    ANTIVIR3.VDF : 6.38.0.32 5632 Bytes 3/9/2007 10:20:22
    AVEWIN32.DLL : 7.3.1.41 2355712 Bytes 3/9/2007 10:23:25
    AVPREF.DLL : 7.0.2.0 23592 Bytes 11/3/2006 19:53:44
    AVREP.DLL : 6.38.0.6 1179688 Bytes 3/9/2007 10:23:24
    AVRPBASE.DLL : 7.0.0.0 2162728 Bytes 3/30/2006 17:43:31
    AVPACK32.DLL : 7.2.1.6 368680 Bytes 3/9/2007 10:23:25
    AVREG.DLL : 7.0.1.2 30760 Bytes 3/9/2007 10:23:23
    NETNT.DLL : No Information!
    RCIMAGE.DLL : 7.0.1.3 2097192 Bytes 11/8/2006 21:26:26
    RCTEXT.DLL : 7.0.12.1 77864 Bytes 12/6/2006 01:00:21

    Configuration settings for the scan:
    Jobname..........................: Local Hard Disks
    Configuration file...............: C:\Program Files\AntiVir PersonalEdition Classic\alldiscs.avp
    Logging..........................: low
    Primary action...................: interactive
    Secondary action.................: ignore
    Scan master boot sector..........: off
    Scan boot sector.................: on
    Boot sectors.....................: E:,
    Scan memory......................: on
    Process scan.....................: on
    Scan registry....................: on
    Scan all files...................: Intelligent file selection
    Scan archives....................: on
    Recursion depth..................: 20
    Smart extensions.................: on
    Macro heuristic..................: on
    File heuristic...................: medium
    Expanded search settings.........: 0x00001000

    Start of the scan: Saturday, March 10, 2007 09:53

    The scan of running processes will be started
    Scan process 'avscan.exe' - '1' Modules have been scanned
    Scan process 'avcenter.exe' - '1' Modules have been scanned
    Scan process 'igfxpers.exe' - '1' Modules have been scanned
    Scan process 'avgnt.exe' - '1' Modules have been scanned
    Scan process 'hkcmd.exe' - '1' Modules have been scanned
    Scan process 'igfxtray.exe' - '1' Modules have been scanned
    Scan process 'PRONoMgr.exe' - '1' Modules have been scanned
    Scan process 'explorer.exe' - '1' Modules have been scanned
    Scan process 'alg.exe' - '1' Modules have been scanned
    Scan process 'svchost.exe' - '1' Modules have been scanned
    Scan process 'avguard.exe' - '1' Modules have been scanned
    Scan process 'sched.exe' - '1' Modules have been scanned
    Scan process 'spoolsv.exe' - '1' Modules have been scanned
    Scan process 'svchost.exe' - '1' Modules have been scanned
    Scan process 'svchost.exe' - '1' Modules have been scanned
    Scan process 'svchost.exe' - '1' Modules have been scanned
    Scan process 'svchost.exe' - '1' Modules have been scanned
    Scan process 'svchost.exe' - '1' Modules have been scanned
    Scan process 'lsass.exe' - '1' Modules have been scanned
    Scan process 'services.exe' - '1' Modules have been scanned
    Scan process 'winlogon.exe' - '1' Modules have been scanned
    Scan process 'csrss.exe' - '1' Modules have been scanned
    Scan process 'smss.exe' - '1' Modules have been scanned
    23 processes with 23 modules were scanned

    Start scanning boot sectors:
    Boot sector 'C:\'
    [NOTE] No virus was found!
    Boot sector 'E:\'
    [NOTE] In the drive 'E:\' no data medium is inserted!

    Starting to scan the registry.
    The registry was scanned ( 8 files ).


    Starting the file scan:

    Begin scan in 'C:\'
    C:\pagefile.sys
    [WARNING] The file could not be opened!
    Begin scan in 'E:\'
    The path E:\ could not be found!
    The system cannot find the file specified.



    End of the scan: Saturday, March 10, 2007 10:15
    Used time: 22:01 min

    The scan has been done completely.

    2280 Scanning directories
    130340 Files were scanned
    0 viruses and/or unwanted programs were found
    0 files were deleted
    0 files were repaired
    0 files were moved to quarantine
    0 files were renamed
    1 Files cannot be scanned
    130340 Files not concerned
    778 Archives were scanned
    1 Warnings
    0 Notes



    By the way-- Drive E is my dualboot to Linux ....
     
  2. Chloe01

    Chloe01 Member

    Joined:
    Mar 11, 2007
    Messages:
    2
    Likes Received:
    0
    Trophy Points:
    11
    forgot to add my hijackThis scan results


    Logfile of HijackThis v1.99.1
    Scan saved at 7:39:12 AM, on 3/11/2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
    C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Intel\NCS\PROSet\PRONoMgr.exe
    C:\WINDOWS\system32\igfxtray.exe
    C:\WINDOWS\system32\hkcmd.exe
    C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe
    C:\WINDOWS\system32\igfxpers.exe
    C:\Program Files\Windows Media Player\WMPNSCFG.exe
    C:\WINDOWS\system32\igfxsrvc.exe
    C:\Documents and Settings\Inet\Desktop\HijackThis Extr\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gatewaybiz.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.gatewaybiz.com
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gatewaybiz.com
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O4 - HKLM\..\Run: [PRONoMgr.exe] C:\Program Files\Intel\NCS\PROSet\PRONoMgr.exe
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [avgnt] "C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe" /min
    O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
    O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
    O8 - Extra context menu item: Add to &Windows Live Favorites - http://favorites.live.com/quickadd.aspx
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
    O16 - DPF: {03B39B10-9AB9-4DBB-8189-7F76E0CE5F3F} (FavImport Class) - https://favorites.live.com/cab/ImportAx.cab?v=13,0,0831,02
    O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=58813
    O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://support.gateway.com/support/profiler/PCPitStop.CAB
    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://ilovethadough.spaces.live.com//PhotoUpload/MsnPUpld.cab
    O16 - DPF: {55027008-315F-4F45-BBC3-8BE119764741} (Slide Image Uploader Control) - http://www.slide.com/uploader/SlideImageUploader.cab
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1172554031553
    O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1172560160453
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
    O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
    O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
    O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - AVIRA GmbH - C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
    O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
     
  3. KotaGuy

    KotaGuy Regular member

    Joined:
    Feb 14, 2007
    Messages:
    485
    Likes Received:
    0
    Trophy Points:
    26
    Your logs are clean.

    Though this one....

    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

    Is orphaned and can be safely fixed.

    That warning you are seeing is because the scanner cannot open/access the Pagefile(C:\Pagefile.sys). That is because it is in use by Windows... totally normal.
     
    Last edited: Mar 11, 2007

Share This Page