blueflame Posted January 24, 2009 Posted January 24, 2009 I can not carry out windows updates and also my home page keeps setting itself to hotinfolink.com. The error 1058 is displayed. The log file is: Notes about this log: 1) "->" denotes an external command being executed, and "-> (number)" indicates the return code from the previous command 2) Not all external command return codes are accurate, or useful 3) Sometimes commands return 0 (no error) even when they fail or crash 4) If an error occurs while registering an object, please send an email to: dial-a-fix@DjLizard.net and include a copy of this log DAF version: v0.60.0.24 --- System info --- OS: Microsoft Windows XP Service Pack 3 IE version: 7.0.5730.13 MPC: 76487-OEM CPU: Intel® Pentium® 4 CPU 3.00GHz (~3000MHz) CPU: CPU is 64-bit or has 64-bit extensions CPU: 2 CPU cores present BIOS: 13/10/2005 Memory (approx): 510MB Uptime: 1 hour(s) Current directory: C:\Documents and Settings\Harmohinder\My Documents\Harmohinder's Documents\Temp\Dial-a-fix-v0.60.0.24 --- 24/01/2009 22:18:11 -- Dial-a-fix : [v0.60.0.24] -- started 22:18:11 | Policy scan started 22:18:11 | Policy scan ended - no restrictive policies were found --- Windows Update --- --- Registration: Windows Update/Automatic Update DLLs --- 22:18:22 | Unregistered: C:\WINDOWS\system32\msxml.dll 22:18:23 | Registered: C:\WINDOWS\system32\msxml.dll 22:18:25 | Unregistered: C:\WINDOWS\system32\msxml2.dll 22:18:26 | Registered: C:\WINDOWS\system32\msxml2.dll 22:18:47 | Unregistered: C:\WINDOWS\system32\msxml3.dll 22:18:52 | Registered: C:\WINDOWS\system32\msxml3.dll 22:18:53 | Unregistered: C:\WINDOWS\system32\msxml4.dll 22:18:55 | Registered: C:\WINDOWS\system32\msxml4.dll 22:18:55 | Unregistered: C:\WINDOWS\system32\qmgr.dll 22:18:56 | Registered: C:\WINDOWS\system32\qmgr.dll 22:18:56 | Unregistered: C:\WINDOWS\system32\qmgrprxy.dll 22:18:57 | Registered: C:\WINDOWS\system32\qmgrprxy.dll 22:18:57 | Unregistered: C:\WINDOWS\system32\muweb.dll 22:18:58 | Registered: C:\WINDOWS\system32\muweb.dll 22:18:58 | Unregistered: C:\WINDOWS\system32\winhttp.dll 22:18:58 | Registered: C:\WINDOWS\system32\winhttp.dll 22:19:00 | Registered: C:\WINDOWS\system32\wuapi.dll 22:19:00 | Unregistered: C:\WINDOWS\system32\wuaueng.dll 22:19:33 | Error during registration of C:\WINDOWS\system32\wuaueng.dll - version: 7.2.6001.788. The error returned is: The specified service has been marked for deletion. (-2147023824) 22:19:33 | Unregistered: C:\WINDOWS\system32\wuaueng1.dll 22:19:33 | Registered: C:\WINDOWS\system32\wuaueng1.dll 22:19:34 | Unregistered: C:\WINDOWS\system32\wucltui.dll 22:19:34 | Registered: C:\WINDOWS\system32\wucltui.dll 22:19:34 | Unregistered: C:\WINDOWS\system32\wups.dll 22:19:35 | Registered: C:\WINDOWS\system32\wups.dll 22:19:35 | Unregistered: C:\WINDOWS\system32\wups2.dll 22:19:35 | Registered: C:\WINDOWS\system32\wups2.dll 22:19:36 | Unregistered: C:\WINDOWS\system32\wuweb.dll 22:19:36 | Registered: C:\WINDOWS\system32\wuweb.dll 22:19:36 | Registered: C:\WINDOWS\system32\ole32.dll --- SSL/HTTPS/Cryptography --- 22:19:45 | Executed 'cmd.exe /c rmdir /q /s C:\WINDOWS\system32\Catroot2' --- Registration: SSL/HTTPS/Cryptography --- 22:19:47 | Unregistered: C:\WINDOWS\system32\cryptdlg.dll 22:19:47 | Registered: C:\WINDOWS\system32\cryptdlg.dll 22:19:47 | Unregistered: C:\WINDOWS\system32\cryptui.dll 22:19:47 | Registered: C:\WINDOWS\system32\cryptui.dll 22:19:50 | Unregistered: C:\WINDOWS\system32\cryptext.dll 22:19:51 | Registered: C:\WINDOWS\system32\cryptext.dll 22:19:51 | Unregistered: C:\WINDOWS\system32\dssenh.dll 22:19:51 | Registered: C:\WINDOWS\system32\dssenh.dll 22:19:51 | Unregistered: C:\WINDOWS\system32\gpkcsp.dll 22:19:51 | Registered: C:\WINDOWS\system32\gpkcsp.dll 22:19:56 | Unregistered: C:\WINDOWS\system32\initpki.dll 22:20:40 | Registered: C:\WINDOWS\system32\initpki.dll 22:20:41 | Unregistered: C:\WINDOWS\system32\licdll.dll 22:20:41 | Registered: C:\WINDOWS\system32\licdll.dll 22:20:41 | Unregistered: C:\WINDOWS\system32\mssign32.dll 22:20:41 | Registered: C:\WINDOWS\system32\mssign32.dll 22:20:42 | Unregistered: C:\WINDOWS\system32\mssip32.dll 22:20:42 | Registered: C:\WINDOWS\system32\mssip32.dll 22:20:47 | Unregistered: C:\WINDOWS\system32\scardssp.dll 22:20:48 | Registered: C:\WINDOWS\system32\scardssp.dll 22:20:48 | Unregistered: C:\WINDOWS\system32\sccbase.dll 22:20:48 | Registered: C:\WINDOWS\system32\sccbase.dll 22:20:48 | Unregistered: C:\WINDOWS\system32\scecli.dll 22:20:49 | Registered: C:\WINDOWS\system32\scecli.dll 22:20:49 | Unregistered: C:\WINDOWS\system32\softpub.dll 22:20:49 | Registered: C:\WINDOWS\system32\softpub.dll 22:20:50 | Unregistered: C:\WINDOWS\system32\slbcsp.dll 22:20:50 | Registered: C:\WINDOWS\system32\slbcsp.dll 22:20:51 | Unregistered: C:\WINDOWS\system32\regwizc.dll 22:20:51 | Registered: C:\WINDOWS\system32\regwizc.dll 22:20:51 | Unregistered: C:\WINDOWS\system32\rsaenh.dll 22:20:51 | Registered: C:\WINDOWS\system32\rsaenh.dll 22:20:51 | Unregistered: C:\WINDOWS\system32\winhttp.dll 22:20:51 | Registered: C:\WINDOWS\system32\winhttp.dll 22:20:51 | Unregistered: C:\WINDOWS\system32\wintrust.dll 22:20:53 | Registered: C:\WINDOWS\system32\wintrust.dll --- Registration: Programming cores/runtimes --- 22:20:53 | Registered: C:\WINDOWS\system32\atl.dll 22:20:53 | Registered: C:\WINDOWS\system32\corpol.dll 22:20:54 | Registered: C:\WINDOWS\system32\jscript.dll 22:20:55 | Registered: C:\WINDOWS\system32\dispex.dll 22:20:56 | Registered: C:\WINDOWS\system32\scrrun.dll 22:20:57 | Registered: C:\WINDOWS\system32\scrobj.dll 22:20:57 | Registered: C:\WINDOWS\system32\vbscript.dll 22:20:57 | Registered: C:\WINDOWS\system32\wshext.dll I would be grateful for your help Harry
Administrator Tarun Posted January 25, 2009 Administrator Posted January 25, 2009 Harry, it sounds like you're infected. Please download my Anti-Malware Toolkit and get the Professional package. Then follow the directions in the PC Cleanup guide. After that, please post a HijackThis log in the HijackThis forum.
Recommended Posts
Archived
This topic is now archived and is closed to further replies.