Welcome guest. Before posting on our computer help forum, you must register. Click here it's easy and free.

Author Topic: Application Cannot Be Executed Error Message  (Read 4240 times)

0 Members and 1 Guest are viewing this topic.

Amyn8r

    Topic Starter


    Starter

    Application Cannot Be Executed Error Message
    « on: July 29, 2010, 05:52:39 PM »
    I am having the same problem as the person in this thread: http://www.computerhope.com/forum/index.php?topic=95177.0

    I have tried opening MalwareBytes AND SUPERAntiSpyware, but as soon as the program pops up it abruptly closes and a little error-message bubble pops up from my toolbar saying the above title, effectively making it nearly impossible to scan for anything. I know I have several viruses thanks to a free scan (including a trojan or too and many, MANY cookie trackers as well as spyware), but the full program (Antivir, I think it's called) that would remove the viruses is way out of my budget.

    Also, a while back my computer's hard drive disc began squealing so I sent it into HP (the maker of my computer) for repairs. When it returned it began over-heating very rapidly and then shutting down without warning. After this, another virus infected my computer when my mother opened up an infected e-mail on my computer. My computer-savvy friend fixed it as much as he could, but the virus still deleted my Task Manager somehow. Is there anyway to correct these problems?

    Haelp? D:

    Thanks for your time!

    SuperDave

    • Malware Removal Specialist
    • Moderator


    • Genius
    • Thanked: 1020
    • Certifications: List
    • Experience: Expert
    • OS: Windows 10
    Re: Application Cannot Be Executed Error Message
    « Reply #1 on: July 29, 2010, 06:50:56 PM »
    Hello and welcome to Computer Hope Forum. My name is Dave. I will be helping you out with your particular problem on your computer. I am working under the guidance of one of the specialist of this forum so it may take a bit longer to process your logs.

    1. I will be working on your Malware issues. This may or may not solve other issues you have with your machine.
    2. The fixes are specific to your problem and should only be used for this issue on this machine.
    3. If you don't know or understand something, please don't hesitate to ask.
    4. Please DO NOT run any other tools or scans while I am helping you.
    5. It is important that you reply to this thread. Do not start a new topic.
    6. Your security programs may give warnings for some of the tools I will ask you to use. Be assured, any links I give are safe.
    7. Absence of symptoms does not mean that everything is clear.

    Please download and run the below tool named Rkill (courtesy of BleepingComputer.com) which may help allow other programs to run.
    Save Rkill to your desktop.

    There are 4 different versions. If one of them won't run then download and try to run the other one.
     
    Vista and Win7 users need to right click Rkill and choose Run as Administrator
     

    You only need to get one of these to run, not all of them. You may get warnings from your antivirus about this tool, ignore them or shutdown your antivirus.

    Rkill.exe
    Rkill.com
    Rkill.scr
    Rkill.pif

    Once you've gotten one of them to run then try to immediately run the following.
     
    Now download and Run exeHelper.

    Please download exeHelper from Raktor to your desktop.Double-click on exeHelper.com to run the fix. A black window should pop up, press any key to close once the fix is completed. A log file named log.txt will be created in the directory where you ran exeHelper.com Attach the log.txt file to your next message.

    Note: If the window shows a message that says "Error deleting file", please re-run the program before posting a log - and post the two logs together (they will both be in the one file).

    ====================================

    SUPERAntiSpyware

    If you already have SUPERAntiSpyware be sure to check for updates before scanning!


    Download SuperAntispyware Free Edition (SAS)
    * Double-click the icon on your desktop to run the installer.
    * When asked to Update the program definitions, click Yes
    * If you encounter any problems while downloading the updates, manually download and unzip them from here
    * Next click the Preferences button.

    •Under Start-Up Options uncheck Start SUPERAntiSpyware when Windows starts
    * Click the Scanning Control tab.
    * Under Scanner Options make sure only the following are checked:

    •Close browsers before scanning
    •Scan for tracking cookies
    •Terminate memory threats before quarantining
    Please leave the others unchecked

    •Click the Close button to leave the control center screen.

    * On the main screen click Scan your computer
    * On the left check the box for the drive you are scanning.
    * On the right choose Perform Complete Scan
    * Click Next to start the scan. Please be patient while it scans your computer.
    * After the scan is complete a summary box will appear. Click OK
    * Make sure everything in the white box has a check next to it, then click Next
    * It will quarantine what it found and if it asks if you want to reboot, click Yes

    •To retrieve the removal information please do the following:
    •After reboot, double-click the SUPERAntiSpyware icon on your desktop.
    •Click Preferences. Click the Statistics/Logs tab.

    •Under Scanner Logs, double-click SUPERAntiSpyware Scan Log.

    •It will open in your default text editor (preferably Notepad).
    •Save the notepad file to your desktop by clicking (in notepad) File > Save As...

    * Save the log somewhere you can easily find it. (normally the desktop)
    * Click close and close again to exit the program.
    *Copy and Paste the log in your post.

    ======================================

    Please download Malwarebytes Anti-Malware from here.

    Double Click mbam-setup.exe to install the application.
    • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes Anti-Malware, then click Finish.
    • If an update is found, it will download and install the latest version.
    • Once the program has loaded, select "Perform Full Scan", then click Scan.
    • The scan may take some time to finish,so please be patient.
    • When the scan is complete, click OK, then Show Results to view the results.
    • Make sure that everything is checked, and click Remove Selected.
    • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Extra Note)
    • Please save the log to a location you will remember.
    • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
    • Copy and paste the entire report in your next reply.
    Extra Note:

    If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process. If asked to restart the computer, please do so immediately.

    =======================================

    Please download: HiJackThis to your Desktop.
    • Double Click the HijackThis icon, located on your Desktop.
    • By Default, it will install to: C:\Program Files\Trend Micro\HijackThis
    • Accept the license agreement.
    • Click the Open the Misc Tools section button.
    • Place a checkmark beside Calculate MD5 of files if possible. Then, click Back.
    • Click Do a System Scan and Save a Logfile. Or, if you see a white screen, click Scan.
    • Please post the log in your next reply.
    ===================================

    Download Security Check by screen317 from one of the following links and save it to your desktop.

    Link 1
    Link 2

    * Unzip SecurityCheck.zip and a folder named Security Check should appear.
    * Open the Security Check folder and double-click Security Check.bat
    * Follow the on-screen instructions inside of the black box.
    * A Notepad document should open automatically called checkup.txt
    * Post the contents of that document in your next reply.

    Note: If a security program requests permission from dig.exe to access the Internet, allow it to do so.

    Once completed, exit HijackThis.
    Windows 8 and Windows 10 dual boot with two SSD's

    Amyn8r

      Topic Starter


      Starter

      Re: Application Cannot Be Executed Error Message
      « Reply #2 on: August 01, 2010, 07:36:52 PM »
      Okay it's all a lot to process for someone like me. I followed the instructions up to the first red colored "Note".
      Here's the log for exehelper:
      exeHelper by Raktor
      Build 20100414
      Run at 15:29:10 on 07/29/10
      Now searching...
      Checking for numerical processes...
      Checking for sysguard processes...
      Checking for bad processes...
      Checking for bad files...
      Checking for bad registry entries...
      Resetting filetype association for .exe
      Resetting filetype association for .com
      Resetting userinit and shell values...
      Resetting policies...
      --Finished--

      exeHelper by Raktor
      Build 20100414
      exeHelper by Raktor
      Build 20100414
      Run at 01:59:02 on 08/01/10
      Now searching...
      Checking for numerical processes...
      Checking for sysguard processes...
      Checking for bad processes...
      Checking for bad files...
      Checking for bad registry entries...
      Resetting filetype association for .exe
      Resetting filetype association for .com
      Resetting userinit and shell values...
      Resetting policies...
      --Finished--

      exeHelper by Raktor
      Build 20100414
      Run at 21:42:51 on 08/01/10
      Now searching...
      Checking for numerical processes...
      Checking for sysguard processes...
      Checking for bad processes...
      Checking for bad files...
      Checking for bad registry entries...
      Resetting filetype association for .exe
      Resetting filetype association for .com
      Resetting userinit and shell values...
      Resetting policies...
      --Finished--

      And the log for rkill
      This log file is located at C:\rkill.log.
      Please post this only if requested to by the person helping you.
      Otherwise you can close this log when you wish.
      Ran as Amyn8r on 08/01/2010 at 21:42:03.


      Processes terminated by Rkill or while it was running:


      C:\Users\Amyn8r\AppData\Local\jocpmnspc\lsyowtntssd.exe
      C:\Windows\system32\DllHost.exe
      C:\Windows\system32\DllHost.exe
      C:\Users\Amyn8r\Desktop\rkill(2).exe


      Rkill completed on 08/01/2010  at 21:42:08.


      What exactly do I do next if I have SUPERantispyware? When I try to check for updates the virus stops SUPERantispyware from connecting to the internet.

      Amyn8r

        Topic Starter


        Starter

        Re: Application Cannot Be Executed Error Message
        « Reply #3 on: August 01, 2010, 09:25:01 PM »
        Here's the log for mbam:
        Malwarebytes' Anti-Malware 1.46
        www.malwarebytes.org

        Database version: 4378

        Windows 6.0.6002 Service Pack 2
        Internet Explorer 8.0.6001.18928

        8/1/2010 10:03:00 PM
        mbam-log-2010-08-01 (22-03-00).txt

        Scan type: Quick scan
        Objects scanned: 134726
        Time elapsed: 6 minute(s), 52 second(s)

        Memory Processes Infected: 0
        Memory Modules Infected: 0
        Registry Keys Infected: 1
        Registry Values Infected: 1
        Registry Data Items Infected: 0
        Folders Infected: 0
        Files Infected: 2

        Memory Processes Infected:
        (No malicious items detected)

        Memory Modules Infected:
        (No malicious items detected)

        Registry Keys Infected:
        HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main\{F9197A7E-CE10-458e-85F8-5B0CE6DF2BBE} (Trojan.Agent) -> Quarantined and deleted successfully.

        Registry Values Infected:
        HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\bckvufcm (Rogue.AntivirusSuite.Gen) -> Quarantined and deleted successfully.

        Registry Data Items Infected:
        (No malicious items detected)

        Folders Infected:
        (No malicious items detected)

        Files Infected:
        C:\Users\Amyn8r\AppData\Local\Temp\dc14e477.exe (Rootkit.TDSS) -> Quarantined and deleted successfully.
        C:\Users\Amyn8r\AppData\Local\jocpmnspc\lsyowtntssd.exe (Rogue.AntivirusSuite.Gen) -> Quarantined and deleted successfully.

        Amyn8r

          Topic Starter


          Starter

          Re: Application Cannot Be Executed Error Message
          « Reply #4 on: August 02, 2010, 11:00:22 PM »
          Hijackthis log:

          Logfile of Trend Micro HijackThis v2.0.2
          Scan saved at 12:30:01 AM, on 8/3/2010
          Platform: Windows Vista SP2 (WinNT 6.00.1906)
          MSIE: Internet Explorer v8.00 (8.00.6001.18928)
          Boot mode: Normal

          Running processes:
          C:\Windows\system32\Dwm.exe
          C:\Windows\system32\taskeng.exe
          C:\Windows\Explorer.EXE
          C:\Program Files\Apoint2K\Apoint.exe
          C:\Program Files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe
          C:\Program Files\Windows Defender\MSASCui.exe
          C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
          C:\Program Files\Common Files\Java\Java Update\jusched.exe
          C:\Windows\System32\igfxpers.exe
          C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
          C:\Program Files\Turbine\Turbine Download Manager\TurbineDownloadManagerIcon.exe
          C:\Program Files\iTunes\iTunesHelper.exe
          C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
          C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
          C:\Program Files\Windows Sidebar\sidebar.exe
          C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
          C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
          C:\Windows\system32\wbem\unsecapp.exe
          C:\Program Files\Apoint2K\Apntex.exe
          C:\Program Files\Windows Media Player\wmpnscfg.exe
          C:\Program Files\Brother\Brmfcmon\BrMfimon.exe
          C:\Windows\system32\wuauclt.exe
          C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
          C:\Program Files\Mozilla Firefox\firefox.exe
          C:\Windows\system32\SearchProtocolHost.exe
          C:\Windows\system32\SearchFilterHost.exe

          R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=81&bd=Pavilion&pf=laptop
          R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=81&bd=Pavilion&pf=laptop
          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
          R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=81&bd=Pavilion&pf=laptop
          R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
          R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
          R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:5643
          R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
          R3 - URLSearchHook: AIM Toolbar Search Class - {03402f96-3dc7-4285-bc50-9e81fefafe43} - C:\Program Files\AIM Toolbar\aimtb.dll
          O1 - Hosts: ::1 localhost
          O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
          O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (filesize 62080 bytes, MD5 C11F6A1F61481E24BE3FDC06EA6F7D2A)
          O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
          O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (filesize 408448 bytes, MD5 B7899C3E21B299D7A3C0DA96CAE340BD)
          O2 - BHO: AIM Toolbar Loader - {b0cda128-b425-4eef-a174-61a11ac5dbf8} - C:\Program Files\AIM Toolbar\aimtb.dll (filesize 1328464 bytes, MD5 3FC896D6094C63FD918DDFABCA0BD3B6)
          O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (filesize 41760 bytes, MD5 1B9245C09E475DC5AA522CAE5809E659)
          O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (filesize 542016 bytes, MD5 4A8A49921534B030B27F16FC68FBA1DC)
          O3 - Toolbar: AIM Toolbar - {61539ecd-cc67-4437-a03c-9aaccbd14326} - C:\Program Files\AIM Toolbar\aimtb.dll (filesize 1328464 bytes, MD5 3FC896D6094C63FD918DDFABCA0BD3B6)
          O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exeC:\Program Files\Apoint2K\Apoint.exe
          O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exeC:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
          O4 - HKLM\..\Run: [OnScreenDisplay] C:\Program Files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exeC:\Program Files\Hewlett-Packard\HP QuickTouch\HPKBDAPP.exe
          O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
          O4 - HKLM\..\Run: [hpqSRMon] C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exeC:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe
          O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" (filesize 40048 bytes, MD5 66D4456C920E21BD2188F8CC33680DF5)
          O4 - HKLM\..\Run: [WAWifiMessage] C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exeC:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
          O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe" (filesize 248040 bytes, MD5 52DB6CDAC5BC7A1FC884E97C41C91213)
          O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exeC:\Windows\system32\igfxtray.exe
          O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exeC:\Windows\system32\igfxpers.exe
          O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exeC:\Program Files\HP\HP Software Update\HPWuSchd2.exe
          O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript (filesize 1090952 bytes, MD5 D594EA4AC1C0E4675EF2F0063950ABEF)
          O4 - HKLM\..\Run: [Turbine Download Manager Tray Icon] "C:\Program Files\Turbine\Turbine Download Manager\TurbineDownloadManagerIcon.exe" (filesize 472568 bytes, MD5 AD8A8306017BB9275006963058635C98)
          O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime (filesize 421888 bytes, MD5 ED7A6D40B20DC34BE06F4AE196AE7D50)
          O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" (filesize 290088 bytes, MD5 E6A4E341E4304B34AA280D3E73818C90)
          O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot (filesize 210472 bytes, MD5 846965AE55A2662B1576C0F392DD1D6E)
          O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe" (filesize 29984 bytes, MD5 27249F2A900032F3C2DFAB8DE8F16399)
          O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe" (filesize 46368 bytes, MD5 BE72C212B14FC8F872A70C6C311D0529)
          O4 - HKLM\..\Run: [PPort11reminder] "C:\Program Files\ScanSoft\PaperPort\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\11\Config\Ereg\Ereg.ini" (filesize 328992 bytes, MD5 A4A66195EB0ECD574A32AAA92DC0A7BD)
          O4 - HKLM\..\Run: [BrMfcWnd] C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN (filesize 1150976 bytes, MD5 70A5FB08BBE2AE2B6A4D17F6F9F2E479)
          O4 - HKLM\..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun (filesize 114688 bytes, MD5 16CAB7B5861C26C5637D1A27602E168B)
          O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun (filesize 1233920 bytes, MD5 9E35FF7F943AE0FB89192BFE058B7FD4)
          O4 - HKCU\..\Run: [EA Core] "C:\Program Files\Electronic Arts\EADM\Core.exe" -silent
          O4 - HKCU\..\Run: [Pando Media Booster] C:\Program Files\Pando Networks\Media Booster\PMB.exeC:\Program Files\Pando Networks\Media Booster\PMB.exe
          O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exeC:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
          O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
          O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
          O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
          O4 - Global Startup: Event Reminder.lnk = C:\Program Files\The Print Shop 23\Remind.exe (filesize 344064 bytes, MD5 568BE29053E08B80F4234A96F74685C5)
          O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe (filesize 214360 bytes, MD5 D9335549EAE48B14FB66EFCB6FFAE736)
          O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
          O9 - Extra button: HP Smart Select - {58ECB495-38F0-49cb-A538-10282ABF65E7} - (no file)
          O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL (filesize 63840 bytes, MD5 22BDC1E6E606C9BAE68141D7099309AB)
          O9 - Extra button: HP Smart Select - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (filesize 542016 bytes, MD5 4A8A49921534B030B27F16FC68FBA1DC)
          O13 - Gopher Prefix:
          O17 - HKLM\System\CCS\Services\Tcpip\..\{5919A601-4987-488D-8930-A55B114F6312}: NameServer = 4.2.2.2,4.2.2.1
          O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exeC:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
          O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exeC:\Program Files\Bonjour\mDNSResponder.exe
          O23 - Service: Com4Qlb - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exeC:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe
          O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files\HP Games\My HP Game Console\GameConsoleService.exeC:\Program Files\HP Games\My HP Game Console\GameConsoleService.exe
          O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exec:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
          O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exeC:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
          O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exeC:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
          O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exeC:\Program Files\iPod\bin\iPodService.exe
          O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exeC:\Program Files\Common Files\LightScribe\LSSrvc.exe
          O23 - Service: Turbine Message Service - Live (LiveTurbineMessageService) - Turbine, Inc. - C:\Program Files\Turbine\Turbine Download Manager\TurbineMessageService.exeC:\Program Files\Turbine\Turbine Download Manager\TurbineMessageService.exe
          O23 - Service: Turbine Network Service - Live (LiveTurbineNetworkService) - Turbine, Inc. - C:\Program Files\Turbine\Turbine Download Manager\TurbineNetworkService.exeC:\Program Files\Turbine\Turbine Download Manager\TurbineNetworkService.exe
          O23 - Service: QuickPlay Background Capture Service (QBCS) (QPCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\QPCapSvc.exeC:\Program Files\HP\QuickPlay\Kernel\TV\QPCapSvc.exe
          O23 - Service: QuickPlay Task Scheduler (QTS) (QPSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\QPSched.exeC:\Program Files\HP\QuickPlay\Kernel\TV\QPSched.exe
          O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exeC:\Program Files\CyberLink\Shared Files\RichVideo.exe
          O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exeC:\Windows\system32\DRIVERS\xaudio.exe

          --
          End of file - 12083 bytes

          SuperDave

          • Malware Removal Specialist
          • Moderator


          • Genius
          • Thanked: 1020
          • Certifications: List
          • Experience: Expert
          • OS: Windows 10
          Re: Application Cannot Be Executed Error Message
          « Reply #5 on: August 03, 2010, 05:47:46 PM »
          Quote
          Okay it's all a lot to process for someone like me.
          Don't worry about it. Just take a few deep breathes, stay cool and follow the instructions. If there's anything you don't understand, please ask me.

          Quote
          What exactly do I do next if I have SUPERantispyware? When I try to check for updates the virus stops SUPERantispyware from connecting to the internet.
          Just run it without the updates. We can run it again later.

          Open HijackThis and select Do a system scan only

          Place a check mark next to the following entries: (if there)

          R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
          R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
          R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:5643
          R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
          O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
          O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
          O4 - HKLM\..\Run: [Malwarebytes Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript (filesize 1090952 bytes, MD5 D594EA4AC1C0E4675EF2F0063950ABEF)


          Important: Close all open windows except for HijackThis and then click Fix checked.

          Once completed, exit HijackThis.

          ================================

          Download Security Check by screen317 from one of the following links and save it to your desktop.

          Link 1
          Link 2

          * Unzip SecurityCheck.zip and a folder named Security Check should appear.
          * Open the Security Check folder and double-click Security Check.bat
          * Follow the on-screen instructions inside of the black box.
          * A Notepad document should open automatically called checkup.txt
          * Post the contents of that document in your next reply.

          Note: If a security program requests permission from dig.exe to access the Internet, allow it to do so.

          =================================

          Download ComboFix by sUBs from one of the below links.  Be sure to save it to the Desktop.

          link # 1
          Link # 2

          Close any open web browsers (Firefox, Internet Explorer, etc) before starting ComboFix.

          Temporarily disable your anti-virus, and any anti-spyware real-time protection before performing a scan. Click this link to see a list of security programs that should be disabled and how to disable them.

          Right-click combofix.exe and select Run as Administrator and follow the prompts.
          When finished, ComboFix will produce a log for you.
          Post the ComboFix log and a new HijackThis log in your next reply.

          NOTE: Do not mouseclick ComboFix's window while it is running. That may cause it to stall.

          Remember to re-enable your anti-virus and anti-spyware protection when ComboFix is complete.
          Windows 8 and Windows 10 dual boot with two SSD's