Taskman.exe doesn't work.. Please help
Touch Forum Moderator Date Joined Jun 2004 Total Posts : 13599 Posted 1-7-2008 9:59 (GMT +1) Hi Atryom
Please download Combofix:
and save to the desktop.
Close all other browser windows.
Important-> Temporarily disable your anti-virus , script blocking and any anti-malware real-time protection before performing a scan. They can interfere with ComboFix or remove some of its embedded files which may cause " unpredictable results" . Go to start --> run and copy/paste in the following:"%userprofile%\desktop\combofix.exe" /killall When finished, it will produce a logfile located at C:\ComboFix.txt.
Post the contents of that log in your next reply with a new hijackthis log. Note: Do not mouseclick combofix's window while it is running. That may cause your system to stall/hang.
Do NOT post your problem in someone elses thread.
Back to Top
Atryom New Member Date Joined Jan 2008 Total Posts : 12 Posted 1-9-2008 1:00 (GMT +1) ComboFix 08-01-04.1 - Owner 2008-01-08 18:51:28.2 - NTFSx86 Running from: C:\Documents and Settings\Owner\desktop\daniel's music n stuff\combofix.exe Command switches used :: /killall . ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) . . ---- Previous Run ------- . C:\backup\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\CnsMin.zip C:\onoes.exe C:\Program Files\outlook C:\Program Files\outlook\outlook.exe C:\Program Files\outlook\p.zip C:\Program Files\outlook\v.tmp C:\WINDOWS\system32\bszip.dll C:\WINDOWS\system32\cmd.com C:\WINDOWS\system32\netstat.com C:\WINDOWS\system32\ping.com C:\WINDOWS\system32\regedit.com C:\WINDOWS\system32\taskkill.com C:\WINDOWS\system32\tasklist.com C:\WINDOWS\system32\tracert.com . ((((((((((((((((((((((((( Files Created from 2007-12-08 to 2008-01-08 ))))))))))))))))))))))))))))))) . 2008-01-07 04:28 . 2000-08-31 08:00 51,200 --a------ C:\WINDOWS\NirCmd.exe 2008-01-03 02:36 . 2008-01-03 02:39 <DIR> d-------- C:\Program Files\Winamp 2008-01-03 02:36 . 2008-01-03 02:44 <DIR> d-------- C:\Documents and Settings\Owner\Application Data\Winamp 2007-12-31 05:29 . 2007-12-31 05:29 <DIR> d-------- C:\Program Files\NCH Swift Sound 2007-12-31 05:29 . 2007-12-31 05:29 <DIR> d-------- C:\Program Files\NCH Software 2007-12-31 05:29 . 2007-12-31 05:29 <DIR> d-------- C:\Documents and Settings\Owner\Application Data\Recordpad 2007-12-31 05:29 . 2007-12-31 05:29 <DIR> d-------- C:\Documents and Settings\Owner\Application Data\NCH Swift Sound 2007-12-31 05:29 . 2007-12-31 05:29 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\NCH Swift Sound 2007-12-31 00:04 . 2007-12-31 00:04 <DIR> d-------- C:\Documents and Settings\Owner\Incomplete 2007-12-30 01:40 . 2007-12-30 01:40 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Yahoo! 2007-12-30 01:38 . 2007-12-30 01:39 <DIR> d-------- C:\Program Files\Yahoo! 2007-12-29 02:48 . 2007-12-29 02:48 268 --ah----- C:\sqmdata07.sqm 2007-12-29 02:48 . 2007-12-29 02:48 244 --ah----- C:\sqmnoopt07.sqm 2007-12-26 15:35 . 2007-12-26 15:35 <DIR> d-------- C:\Program Files\GoldWave 2007-12-26 01:56 . 2007-12-31 00:06 <DIR> d-------- C:\Documents and Settings\Owner\Application Data\FrostWire 2007-12-26 01:55 . 2007-12-26 01:56 <DIR> d-------- C:\Program Files\FrostWire 2007-12-26 01:55 . 2007-12-26 01:55 <DIR> d-------- C:\Program Files\AskSBar 2007-12-26 01:30 . 2007-12-26 01:30 <DIR> d-------- C:\Program Files\SpacialAudio 2007-12-26 01:23 . 2007-12-26 01:23 <DIR> d-------- C:\Program Files\MySQL 2007-12-25 02:56 . 2007-12-25 02:56 <DIR> d-------- C:\Documents and Settings\Owner\Application Data\Ableton 2007-12-25 02:56 . 2007-12-25 02:56 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Ableton 2007-12-25 01:01 . 2007-12-25 01:03 <DIR> d-------- C:\Program Files\Windows Live Safety Center 2007-12-24 13:56 . 2007-12-24 13:56 <DIR> d-------- C:\Program Files\SystemRequirementsLab 2007-12-24 13:56 . 2007-12-24 13:56 <DIR> d-------- C:\Documents and Settings\Owner\Application Data\SystemRequirementsLab 2007-12-21 00:50 . 2007-12-21 00:50 <DIR> d-------- C:\Program Files\VstPlugins 2007-12-21 00:50 . 2002-07-07 17:14 1,294,336 --a------ C:\WINDOWS\system32\vorbis.acm 2007-12-21 00:50 . 2005-04-12 10:21 225,280 --a------ C:\WINDOWS\system32\rewire.dll 2007-12-21 00:49 . 2007-12-21 00:50 <DIR> d-------- C:\Program Files\Image-Line 2007-12-19 23:18 . 2007-12-19 23:18 244 --ah----- C:\sqmnoopt04.sqm 2007-12-19 23:18 . 2007-12-19 23:18 232 --ah----- C:\sqmdata04.sqm 2007-12-15 19:51 . 2007-12-15 19:51 <DIR> d--hs---- C:\WINDOWS\ftpcache 2007-12-14 00:27 . 2007-12-14 00:27 268 --ah----- C:\sqmdata06.sqm 2007-12-14 00:27 . 2007-12-14 00:27 244 --ah----- C:\sqmnoopt06.sqm 2007-12-13 21:55 . 2007-12-13 21:55 619 --a------ C:\WINDOWS\eReg.dat 2007-12-13 16:51 . 2007-12-13 16:51 244 --ah----- C:\sqmnoopt05.sqm 2007-12-13 16:51 . 2007-12-13 16:51 232 --ah----- C:\sqmdata05.sqm 2007-12-12 17:24 . 2007-12-12 17:24 <DIR> d-------- C:\Program Files\Common Files\Adobe Systems Shared 2007-12-12 17:24 . 2007-12-12 17:24 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Adobe Systems 2007-12-12 13:25 . 2007-12-12 13:25 <DIR> d-------- C:\Program Files\Common Files\SWF Studio 2007-12-11 14:44 . 2007-12-11 14:44 156,992 --a------ C:\WINDOWS\system32\DivXCodecVersionChecker.exe . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2008-01-06 22:58 --------- d-----w C:\Program Files\Common Files\Symantec Shared 2008-01-04 20:00 --------- d-----w C:\Program Files\Norton Security Scan 2008-01-04 01:54 --------- d-----w C:\Documents and Settings\Owner\Application Data\Image Zone Express 2007-12-26 04:27 --------- d-----w C:\Program Files\DivX 2007-12-26 04:14 --------- d-----w C:\Documents and Settings\Owner\Application Data\LimeWire 2007-12-16 01:00 --------- d--h--w C:\Program Files\InstallShield Installation Information 2007-12-14 02:48 --------- d-----w C:\Program Files\EA GAMES 2007-12-12 22:25 --------- d-----w C:\Program Files\Common Files\Adobe 2007-12-01 08:01 --------- d-----w C:\Program Files\Microsoft CAPICOM 2.1.0.2 2007-11-30 04:35 --------- d-----w C:\Program Files\Windows Live 2007-11-30 04:34 --------- dcsh--w C:\Program Files\Common Files\WindowsLiveInstaller 2007-11-30 04:28 --------- d-----w C:\Documents and Settings\All Users\Application Data\WLInstaller 2007-11-28 05:16 --------- d-----w C:\Program Files\MUSHclient 2007-11-24 17:53 --------- d-----w C:\Documents and Settings\Owner\Application Data\HP 2007-11-17 05:45 --------- d-----w C:\Program Files\Macromedia 2007-11-17 05:45 --------- d-----w C:\Program Files\Common Files\Macromedia 2007-11-17 05:43 --------- d-----w C:\Program Files\Common Files\InstallShield 2007-11-15 18:53 --------- d-----w C:\Documents and Settings\Owner\Application Data\DivX 2007-11-13 10:25 20,480 ----a-w C:\WINDOWS\system32\drivers\secdrv.sys . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{0579B4B1-0293-4d73-B02D-5EBB0BA0F0A2}] 2007-12-26 01:55 66912 --a------ C:\Program Files\AskSBar\SrchAstt\1.bin\A2SRCHAS.DLL [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA}] 2007-12-26 01:55 267592 --a------ C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar] {F0D4B239-DA4B-4DAF-81E4-DFEE4931A4AA} [HKEY_CLASSES_ROOT\clsid\{f0d4b239-da4b-4daf-81e4-dfee4931a4aa}] [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser] "{F0D4B239-DA4B-4DAF-81E4-DFEE4931A4AA}"= C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL [2007-12-26 01:55 267592] [HKEY_CLASSES_ROOT\clsid\{f0d4b239-da4b-4daf-81e4-dfee4931a4aa}] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 07:00 15360] "Aim6"="" [] "MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.exe" [2007-10-18 11:34 5724184] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "SoundMAXPnP"="C:\Program Files\Analog Devices\Core\smax4pnp.exe" [2004-10-14 13:42 1404928] "igfxtray"="C:\WINDOWS\system32\igfxtray.exe" [2005-09-20 08:35 94208] "igfxhkcmd"="C:\WINDOWS\system32\hkcmd.exe" [2005-09-20 08:32 77824] "igfxpers"="C:\WINDOWS\system32\igfxpers.exe" [2005-09-20 08:36 114688] "HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [2005-05-11 22:12 49152] "LogitechCommunicationsManager"="C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe" [2007-02-08 00:12 488984] "LogitechQuickCamRibbon"="C:\Program Files\Logitech\QuickCam10\QuickCam10.exe" [2007-02-08 00:13 774168] "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe" [2007-07-12 03:00 132496] "QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2007-06-29 05:24 286720] "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2007-09-26 13:42 267064] "Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2007-10-10 19:51 39792] "Recordpad"="C:\Program Files\NCH Swift Sound\Recordpad\recordpad.exe" [2007-12-31 05:29 577540] C:\Documents and Settings\All Users\Start Menu\Programs\Startup\ Digital Line Detect.lnk - C:\Program Files\Digital Line Detect\DLG.exe [2005-08-15 05:20:41] HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [2005-05-11 22:23:26] Kodak EasyShare software.lnk - C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe [2003-06-25 05:25:38] KODAK Software Updater.lnk - C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\backWeb-7288971.exe [2003-06-08 16:48:18] S3 USB-100;Realtek RTL8150 USB 10/100 Fast Ethernet Adapter;C:\WINDOWS\system32\DRIVERS\RTL8150.SYS [2006-05-10 14:22] . Contents of the 'Scheduled Tasks' folder "2008-01-02 23:20:01 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job" - C:\Program Files\Apple Software Update\SoftwareUpdate.exe "2008-01-04 20:59:07 C:\WINDOWS\Tasks\Norton Security Scan.job" - C:\Program Files\Norton Security Scan\Nss.exe . ************************************************************************** catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-01-08 18:56:28 Windows 5.1.2600 Service Pack 2 NTFS scanning hidden processes ... scanning hidden autostart entries ... scanning hidden files ... scan completed successfully hidden files: 0 ************************************************************************** . Completion time: 2008-01-08 18:59:53 - machine was rebooted [Owner] ComboFix-quarantined-files.txt 2008-01-08 23:59:50 . 2007-12-12 08:07:44 --- E O F --- Back to Top
Atryom New Member Date Joined Jan 2008 Total Posts : 12 Posted 1-10-2008 10:05 (GMT +1) Everything seems fine. Taskman works, as well as command prompt. Thanks. Back to Top
Touch Forum Moderator Date Joined Jun 2004 Total Posts : 13599 Posted 1-10-2008 11:26 (GMT +1) That´s good news
Please read Tony Klein's excellent article about how to prevent against spyware/hijackers in the future
Since your problem appears to be resolved, this thread will now be closed.
If you need this topic reopened, please PM a Moderator and we will reopen it for you
Do NOT post your problem in someone elses thread.
Back to Top
Forum Information Currently it is Thursday, November 20, 2008 10:13 PM (GMT +1) There are a total of 63.946 posts in 15.823 threads. In the last 3 days there were 33 new threads and 163 reply posts. View Active Threads Who's Online This forum has 27180 registered members. Please welcome our newest member, kpapetersson . 42 Guest(s), 1 Registered Member(s) are currently online. Details kpapetersson 5 Latest Threads