Alex428 said:
5:26:49 PM explorer.exe:1984 QUERY INFORMATION E:\ SUCCESS Attributes: DHSA
5:26:49 PM explorer.exe:1984 QUERY
INFORMATION E:\RECYCLER\S-1-5-21-329068152-1935655697-725345543-1003\De138.lnk SUCCESS Attributes: A
5:26:49
PM explorer.exe:1984 READ E:\RECYCLER\S-1-5-21-329068152-1935655697-725345543-1003\INFO2 SUCCESS Offset: 24820 Length: 800
5:26:49 PM explorer.exe:1984 QUERY INFORMATION E:\ SUCCESS Attributes: DHSA
5:26:49 PM explorer.exe:1984 QUERY
INFORMATION E:\RECYCLER\S-1-5-21-329068152-1935655697-725345543-1003\De139.avi SUCCESS Attributes: A
5:26:49
PM explorer.exe:1984 READ E:\RECYCLER\S-1-5-21-329068152-1935655697-725345543-1003\INFO2 END OF FILE Offset: 25620 Length: 800
5:26:49
PM explorer.exe:1984 CLOSE E:\RECYCLER\S-1-5-21-329068152-1935655697-725345543-1003\INFO2 SUCCESS
5:26:49 PM explorer.exe:1984 QUERY INFORMATION E:\ SUCCESS Attributes: DHSA
5:26:49 PM explorer.exe:1984 OPEN F:\ SUCCESS Options: Open Directory
Access: 00100001
5:26:49 PM explorer.exe:1984 QUERY
INFORMATION F:\ SUCCESS FileNameInformation
5:26:49 PM explorer.exe:1984 QUERY
INFORMATION F:\ SUCCESS FileFsVolumeInformation
5:26:49 PM explorer.exe:1984 CLOSE F:\ SUCCESS
5:26:49 PM explorer.exe:1984 QUERY INFORMATION F:\ SUCCESS Attributes: DHSA
5:26:49
PM explorer.exe:1984 OPEN F:\RECYCLER\S-1-5-21-329068152-1935655697-725345543-1003\INFO2 SUCCESS Options: OpenIf Access: 0012019F
5:26:49
PM explorer.exe:1984 OPEN F:\RECYCLER\S-1-5-21-329068152-1935655697-725345543-1003\INFO2 SUCCESS Options: Open Access: 00100001
5:26:49 PM explorer.exe:1984 QUERY
INFORMATION F:\RECYCLER\S-1-5-21-329068152-1935655697-725345543-1003\INFO2 SUCCESS FileInternalInformation
5:26:49
PM explorer.exe:1984 CLOSE F:\RECYCLER\S-1-5-21-329068152-1935655697-725345543-1003\INFO2 SUCCESS
5:26:49 PM explorer.exe:1984 READ
F:\RECYCLER\S-1-5-21-329068152-1935655697-725345543-1003\INFO2 SUCCESS Offset: 0 Length: 20
5:26:49 PM explorer.exe:1984 QUERY INFORMATION F:\ SUCCESS Attributes: DHSA
5:26:49
PM explorer.exe:1984 OPEN F:\RECYCLER\S-1-5-21-329068152-1935655697-725345543-1003\ SUCCESS Options: Open Directory Access: 00100001
5:26:49
PM explorer.exe:1984 DIRECTORY F:\RECYCLER\S-1-5-21-329068152-1935655697-725345543-1003\ SUCCESS FileBothDirectoryInformation: D*"*
5:26:49
PM explorer.exe:1984 DIRECTORY F:\RECYCLER\S-1-5-21-329068152-1935655697-725345543-1003\ SUCCESS FileBothDirectoryInformation
5:26:49
PM explorer.exe:1984 OPEN F:\RECYCLER\S-1-5-21-329068152-1935655697-725345543-1003\Df89 IS DIRECTORY Options: Open Access: 00100080
5:26:49
PM explorer.exe:1984 OPEN F:\RECYCLER\S-1-5-21-329068152-1935655697-725345543-1003\Df89\ SUCCESS Options: Open Access: 00100080
5:26:49
PM explorer.exe:1984 CLOSE F:\RECYCLER\S-1-5-21-329068152-1935655697-725345543-1003\Df89\ SUCCESS
5:26:49
PM explorer.exe:1984 OPEN F:\RECYCLER\S-1-5-21-329068152-1935655697-725345543-1003\Df89 SUCCESS Options: Open Access: 00100080
5:26:49
PM explorer.exe:1984 CLOSE F:\RECYCLER\S-1-5-21-329068152-1935655697-725345543-1003\Df89 SUCCESS
5:26:49
PM explorer.exe:1984 OPEN F:\RECYCLER\S-1-5-21-329068152-1935655697-725345543-1003\Df89 SUCCESS Options: Open Access: 00100080
5:26:49
PM explorer.exe:1984 CLOSE F:\RECYCLER\S-1-5-21-329068152-1935655697-725345543-1003\Df89 SUCCESS
5:26:49
PM explorer.exe:1984 OPEN F:\RECYCLER\S-1-5-21-329068152-1935655697-725345543-1003\Df89\ SUCCESS Options: Open Access: 00100080
5:26:49
PM explorer.exe:1984 CLOSE
What Anti-Virus you have installed on your computer and other protection
software?.
TRy to run a scan and make sure all clean as it is too late here in the UK,
but keep an eye may somebody have look on this and give an answer.
Run a scan from here online:
http://www3.ca.com/securityadvisor/virusinfo/scan.aspx
Download Avast Cleaner from here:
http://www.avast.com/eng/avast-virus-cleaner.html
Lots of tools to download and disinfect your machine:
http://www.bitdefender.co.uk/site/Downloads/browseFreeRemovalTool/
Try to download the AVG on your Desktop then Disconnect from the Internet
and uninstall McAfee Reboot then try to install AVG.
Here is the Link for the AVG:
http://free.grisoft.com/doc/5390/lng/us/tpl/v5
For Malwares download both these software:
http://www.lavasoft.com/products/ad-aware_se_personal.php
http://www.safer-networking.org ; for Spybot S&D
4= Open a Run Command and type in:
regedit.exe click [K]
On the Registry Editor locate these Keys:
[-]HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run = look
here for the running processes and write them down and post them here or to
the HijackThis forum).
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce= look in the Right
pane/Window for something like this "*.EXE"
Download the Hijackthis and send the report to one of many
forums for analysis and troubleshooting:
When all else fails, HijackThis v1.99.1
(
http://aumha.org/downloads/hijackthis.zip) is the preferred tool to use.
It will help you to both identify and remove any hijackware/spyware. Post
your log to
http://aumha.net/viewforum.php?f=30,
http://castlecops.com/forum67.html,
http://forums.subratam.org/index.php?showforum=7, or other appropriate
forums for expert analysis, not here.
Does your Norton Up and current for updates and subscriptions?.
HTH.
nass
===
www.nasstec.co.uk