ComputerForum.com ComputerForum.com  
Go Back   Computer Forum > Computer Software > Computer Security

Reply
 
LinkBack Thread Tools Display Modes
Old 07-05-2006, 06:56 AM   #1 (permalink)
Gold Member
 
striker's Avatar
 
Join Date: Mar 2006
Location: Florida
Posts: 452
Unhappy I have a big problem????

On my comp there is this window that keeps popping up.

Mcshield.exe - Application Error

and it says that the exception unknown software exception (0xe0070001) occurred in the application at location 0x7c81eb33. and when click ok or cancel it restarts my comp. I evan used my ad-aware and spybot and it dosen't take it away. Do I have a virus, and how do I fix this problem?
__________________
http://www.youtube.com/watch?v=YcWXL8jpFGs

Quote:
Originally Posted by HALO 2
"There are those who said this day will never come. What are they to say now?"
http://i218.photobucket.com/albums/c...rtanX7/EMS.jpg
striker is offline   Reply With Quote


Old 07-05-2006, 07:02 AM   #2 (permalink)
Gold Member
 
Join Date: Dec 2004
Posts: 400
Default

See this:
http://www.file.net/process/mcshield.exe.html
sho95 is offline   Reply With Quote
Old 07-05-2006, 07:06 AM   #3 (permalink)
Diamond Member
 
jp198780's Avatar
 
Join Date: Mar 2006
Location: Deptford, New Jersey
Age: 18
Posts: 4,095
Default

run a HJT, and either post it here.
__________________
My computer:Amd x2 4400+@2.30ghz
2gb ram
160gb 7200rpm hard drive
EVGA 9600gt ssc(512MB)
xp pro
jp198780 is offline   Reply With Quote
Old 07-05-2006, 07:17 AM   #4 (permalink)
Gold Member
 
striker's Avatar
 
Join Date: Mar 2006
Location: Florida
Posts: 452
Default

what is a HJT?
__________________
http://www.youtube.com/watch?v=YcWXL8jpFGs

Quote:
Originally Posted by HALO 2
"There are those who said this day will never come. What are they to say now?"
http://i218.photobucket.com/albums/c...rtanX7/EMS.jpg
striker is offline   Reply With Quote
Old 07-05-2006, 07:26 AM   #5 (permalink)
Diamond Member
 
jp198780's Avatar
 
Join Date: Mar 2006
Location: Deptford, New Jersey
Age: 18
Posts: 4,095
Default

HiJackThis, sorry, thought you knew what it was, download it from here: http://rds.yahoo.com/_ylt=A0geuovaTK...nload3155.html, save it 2 your Desktop, double-click it on your Desktop, go through the Setup, click on the 1st option, Run a Full System SCan? something like that, the 1st option, a log of the scan will pop-up in Notepad when it's done, copy/paste it in here.
__________________
My computer:Amd x2 4400+@2.30ghz
2gb ram
160gb 7200rpm hard drive
EVGA 9600gt ssc(512MB)
xp pro
jp198780 is offline   Reply With Quote


Old 07-05-2006, 07:51 AM   #6 (permalink)
Gold Member
 
striker's Avatar
 
Join Date: Mar 2006
Location: Florida
Posts: 452
Default

I can't copy/paste it?
__________________
http://www.youtube.com/watch?v=YcWXL8jpFGs

Quote:
Originally Posted by HALO 2
"There are those who said this day will never come. What are they to say now?"
http://i218.photobucket.com/albums/c...rtanX7/EMS.jpg
striker is offline   Reply With Quote
Old 07-05-2006, 08:00 AM   #7 (permalink)
Diamond Member
 
jp198780's Avatar
 
Join Date: Mar 2006
Location: Deptford, New Jersey
Age: 18
Posts: 4,095
Default

did it make a log?
__________________
My computer:Amd x2 4400+@2.30ghz
2gb ram
160gb 7200rpm hard drive
EVGA 9600gt ssc(512MB)
xp pro
jp198780 is offline   Reply With Quote
Old 07-05-2006, 08:01 AM   #8 (permalink)
Gold Member
 
striker's Avatar
 
Join Date: Mar 2006
Location: Florida
Posts: 452
Default

I got it.

Logfile of HijackThis v1.99.1
Scan saved at 2:01:00 AM, on 7/5/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Network Associates\VirusScan\Avsynmgr.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Program Files\Network Associates\VirusScan\VsStat.exe
C:\Program Files\Network Associates\VirusScan\Webscanx.exe
C:\Program Files\Network Associates\VirusScan\Avconsol.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\soundman.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\dwwin.exe
C:\Program Files\Registry Mechanic\regmech.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Secondary Account\Desktop\HijackThis.exe

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: CCHelper - {0CF0B8EE-6596-11D5-A98E-0003470BB48E} - C:\Program Files\Panicware\Pop-Up Stopper Basic\CCHelper.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Pa&nicware Pop-Up Stopper Basic - {B1E741E7-1E77-40D4-9FD8-51949B9CCBD0} - C:\Program Files\Panicware\Pop-Up Stopper Basic\psbasic.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [SoundMan] soundman.exe
O4 - HKLM\..\Run: [RoxioEngineUtility] "C:\Program Files\Common Files\Roxio Shared\System\EngUtil.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .bcf: C:\Program Files\Internet Explorer\Plugins\NPBelv32.dll
O16 - DPF: {37A273C2-5129-11D5-BF37-00A0CCE8754B} (TTestGenXInstallObject) - http://www.mathxl.com/wizmodules/tes...enXInstall.cab
O16 - DPF: {4FE89055-5300-469E-AFAD-DEB3181EDE76} (PearsonAsstX Control) - http://www.mathxl.com/applets/PearsonInstallAsst.cab
O16 - DPF: {BE833F39-1E0C-468C-BA70-25AAEE55775E} (System Requirements Lab) - http://www.systemrequirementslab.com/sysreqlab.cab
O16 - DPF: {F04A8AE2-A59D-11D2-8792-00C04F8EF29D} (Hotmail Attachments Control) - http://by17fd.bay17.hotmail.msn.com/...x/HMAtchmt.ocx
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: comack - C:\WINDOWS\SYSTEM32\comack.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVSync Manager (AvSynMgr) - Unknown owner - C:\Program Files\Network Associates\VirusScan\Avsynmgr.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: McShield - Unknown owner - C:\Program Files\Common Files\Network Associates\McShield\Mcshield.exe
O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
__________________
http://www.youtube.com/watch?v=YcWXL8jpFGs

Quote:
Originally Posted by HALO 2
"There are those who said this day will never come. What are they to say now?"
http://i218.photobucket.com/albums/c...rtanX7/EMS.jpg
striker is offline   Reply With Quote
Old 07-05-2006, 08:31 AM   #9 (permalink)
Diamond Member
 
jp198780's Avatar
 
Join Date: Mar 2006
Location: Deptford, New Jersey
Age: 18
Posts: 4,095
Default

alright, im not good with HJT logs, but Buzz1927 (something like that ia), soo im out, he should get 2 this tommorrow, if not bump it.
__________________
My computer:Amd x2 4400+@2.30ghz
2gb ram
160gb 7200rpm hard drive
EVGA 9600gt ssc(512MB)
xp pro
jp198780 is offline   Reply With Quote
Old 07-05-2006, 08:45 AM   #10 (permalink)
Gold Member
 
striker's Avatar
 
Join Date: Mar 2006
Location: Florida
Posts: 452
Default

thanks
__________________
http://www.youtube.com/watch?v=YcWXL8jpFGs

Quote:
Originally Posted by HALO 2
"There are those who said this day will never come. What are they to say now?"
http://i218.photobucket.com/albums/c...rtanX7/EMS.jpg
striker is offline   Reply With Quote
Reply

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

All times are GMT +1. The time now is 07:20 AM.


Powered by: vBulletin Version 3.7.4
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.2.0 ©2008, Crawlability, Inc.
Copyright © 2002-2008 Computer Forum and Web Design Forum