Jump to content
Squidolin

[RESOLVED] Dial-A-Fix hanging up...

Recommended Posts

Hello there, I was recomended by someone to see if DAF could solve my problems. I am using v0.60.0.24. It was suggested I just hit the Double Check Mark and go through everything, but the program seems to hang when it is "Stopping CRYPTSVC..."

I wait for a seemingly long time, then just exit the program anyway.

Thanks for your time

Share this post


Link to post
Share on other sites

Tried again, and here's the log...

I noticed the instruction to reboot and try again because "11:29:30 AM | C:\Documents and Settings\Me\Local Settings\Temp could not be completely emptied, please reboot and try again", so I did that too.

Notes about this log:

1) "->" denotes an external command being executed, and "-> (number)" indicates

the return code from the previous command

2) Not all external command return codes are accurate, or useful

3) Sometimes commands return 0 (no error) even when they fail or crash

4) If an error occurs while registering an object, please send an email to:

dial-a-fix@DjLizard.net and include a copy of this log

DAF version: v0.60.0.24

--- System info ---

OS: Microsoft Windows XP Service Pack 2

IE version: 7.0.5730.11

MPC: 76477-007

CPU: Intel® Pentium® 4 CPU 3.00GHz (~2980MHz)

CPU: 2 CPU cores present

BIOS: 29/09/2004

Memory (approx): 1023MB

Uptime: 0 hour(s)

Current directory: C:\Documents and Settings\Me\Desktop\Dial-a-fix-v0.60.0.24

---

22/07/2007 11:29:27 AM -- Dial-a-fix : [v0.60.0.24] -- started

11:29:27 AM | Policy scan started

11:29:27 AM | Policy scan ended - no restrictive policies were found

--- Emptying temp folders ---

11:29:30 AM | Deleting C:\Documents and Settings\Me\Local Settings\Temp...

11:29:30 AM | C:\Documents and Settings\Me\Local Settings\Temp could not be completely emptied, please reboot and try again

11:29:30 AM | Deleting C:\WINDOWS\temp...

11:29:30 AM | C:\WINDOWS\temp has been re-created

11:29:30 AM | Deleting C:\DOCUME~1\Me\LOCALS~1\Temp...

11:29:30 AM | C:\DOCUME~1\Me\LOCALS~1\Temp could not be completely emptied, please reboot and try again

--- MSI ---

11:29:47 AM | Registered: C:\WINDOWS\system32\msi.dll

--- Windows Update ---

--- Registration: Windows Update/Automatic Update DLLs ---

11:29:57 AM | Unregistered: C:\WINDOWS\system32\msxml.dll

11:29:57 AM | Registered: C:\WINDOWS\system32\msxml.dll

11:29:57 AM | Unregistered: C:\WINDOWS\system32\msxml2.dll

11:29:57 AM | Registered: C:\WINDOWS\system32\msxml2.dll

11:30:00 AM | Unregistered: C:\WINDOWS\system32\msxml3.dll

11:30:00 AM | Registered: C:\WINDOWS\system32\msxml3.dll

11:30:01 AM | Unregistered: C:\WINDOWS\system32\msxml4.dll

11:30:01 AM | Registered: C:\WINDOWS\system32\msxml4.dll

11:30:01 AM | Unregistered: C:\WINDOWS\system32\qmgr.dll

11:30:01 AM | Registered: C:\WINDOWS\system32\qmgr.dll

11:30:01 AM | Unregistered: C:\WINDOWS\system32\qmgrprxy.dll

11:30:01 AM | Registered: C:\WINDOWS\system32\qmgrprxy.dll

11:30:01 AM | Unregistered: C:\WINDOWS\system32\winhttp.dll

11:30:01 AM | Registered: C:\WINDOWS\system32\winhttp.dll

11:30:02 AM | Registered: C:\WINDOWS\system32\wuapi.dll

11:30:02 AM | Unregistered: C:\WINDOWS\system32\wuaueng.dll

11:30:03 AM | Registered: C:\WINDOWS\system32\wuaueng.dll

11:30:03 AM | Unregistered: C:\WINDOWS\system32\wuaueng1.dll

11:30:03 AM | Registered: C:\WINDOWS\system32\wuaueng1.dll

11:30:03 AM | Unregistered: C:\WINDOWS\system32\wucltui.dll

11:30:03 AM | Registered: C:\WINDOWS\system32\wucltui.dll

11:30:03 AM | Unregistered: C:\WINDOWS\system32\wups.dll

11:30:03 AM | Registered: C:\WINDOWS\system32\wups.dll

11:30:03 AM | Unregistered: C:\WINDOWS\system32\wups2.dll

11:30:03 AM | Registered: C:\WINDOWS\system32\wups2.dll

11:30:04 AM | Unregistered: C:\WINDOWS\system32\wuweb.dll

11:30:04 AM | Registered: C:\WINDOWS\system32\wuweb.dll

11:30:04 AM | Registered: C:\WINDOWS\system32\ole32.dll

--- SSL/HTTPS/Cryptography ---

Share this post


Link to post
Share on other sites

Yes I have. I am continuously getting "The instruction at "0x00401613" referenced memory at "0x00006678". The memory could not be "read". Click on OK to terminate the program" <-- that particular error is from opening Windows Explorer (explorer.exe), but I get this error a lot, especially when I try to update anything from the internet, i.e. Windows and my Antivirus software etc.

Share this post


Link to post
Share on other sites

You may want to post a HijackThis log in our HijackThis forum. You can download the latest version from the Download section here on Lunarsoft.

We'll see where to go from there. :hello:

PS: Happy Birthday!

Share this post


Link to post
Share on other sites

I went through all of the procedures you list in the forum for the AntiMalware-Full. 9 hours later, here's what happened...

I get a message when I boot up ...

"Error loading C:\WINDOWS|system32\sotnoeqf.dll. The specific module could not be found."

Plus, I got error messages during HijackThis, which I've never had befor when I ran that program. I listed those errors with my log in the HijackThis Thread.

http://lunarsoft.net/forum/index.php?showtopic=2172

Share this post


Link to post
Share on other sites

Squidolin, I'll correspond with you in your HijackThis thread about errors you get from here on, until Dial-a-fix runs smoothly. :D

As for the loading error, you removed some malware. This line to be exact:

O4 - HKLM\..\Run: [icq.com] rundll32.exe "C:\WINDOWS\system32\sotnoeqf.dll",forkonce

You had a few infections, but don't worry; we'll get you cleaned up thoroughly. :hello:

Share this post


Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...

×
×
  • Create New...