| Windows 7: Dumping physical memory to disk |
27 Jan 2012
|
#21 | | |
So this is what happened, Revo didn’t find MSE, but i remembered that the MSE setup file was still on the laptop, so i deleted it, from the recycle bin as well and voila, Avira is on and checking
Regarding the updates left, should I install them? The other two were successful
Dell site: I tried switching browsers, I closed all Mozilla tabs, I killed the process in Task Manager, opened new for both Yes and No, same with IE, I’ll just have to wait and see if the Trojan is still there, perhaps he got scared and ran off…screenshot
Sidenote and background while I got you on the other end: what this whole situation started with, I think, was that after closing the lid of the laptop and leaving it like that let’s say over night, sometimes, in the morning, I used to get the message Windows has recovered from an unexpected error, would you like to send a report bla bla and all applications were closed, he practically shut down.
In addition, windows explorer froze from time to time and then the message was something like Windows explorer has to be restarted or the like, I can’t remember and don’t have a screenshot either. The thing is I got the message with the explorer thing again today, so maybe there is more to it. I haven’t gotten it ever since the bluescreen so I thought everything would be ok again. Any remarks? Ideas?
Update: Avira finished scanning, that setup file from the other day seems to be deleted, two others were found infected instead:
'C:\Windows\System32\config\systemprofile\AppData\Local\niaxama.dll' infected with 'TR/Trash.Gen' [trojan]
'C:\Windows\System32\config\systemprofile\AppData\Local\niaxama.dll' infected with 'TR/Spy.Gen' [trojan]
they were both quarantined, can i delete them from the respective folders? i mean they are in system 32 so....
Last edited by GretyM; 27 Jan 2012 at 08:07 AM..
| My System Specs |
| System Manufacturer/Model Number DELL Inspiron Mini 1012 OS Win 7 Starter CPU Intel(R) Atom(TM) CPU N450 @ 1.66GHz Motherboard Dell Inc. 0P9MDV Memory 1,00 GB Graphics Card (1) Intel(R) Graphics Media Accelerator 3150 (2) Intel(R) Sound Card Realtek High Definition Audio Screen Resolution 1024 x 600 x 32 bits (4294967296 colors) @ 60 Hz Hard Drives (1) Intel(R) Graphics Media Accelerator 3150 (2) Intel(R) Graphics Media Accelerator 3150 |
27 Jan 2012
|
#22 | | Win 7 Home Premium 64bit Ver 6.1.7600 Build 7601 - SP1 Central Pa. |
Yes try the updates. report back how it went.
Dell site: I'm leaning towards the last reason "service tag is not in right fomat, if there are spaces or hyphens do not include them, just put the string of numbers/letters in box.
On sidenote: are you in the habit of closing all apps/programs before you close the lid or do you leave some open?
On the Avira scan: Just let Avira do what it was designed to do, and remove them for you. It will probably ask you to reboot, even if it doesn't you go ahead and reboot. | My System Specs | | Computer type PC/Desktop System Manufacturer/Model Number Gateway DX4831e (Mid-Tower Desktop) OS Win 7 Home Premium 64bit Ver 6.1.7600 Build 7601 - SP1 CPU Intel i3 530 2.93GHz, 2933MHz 2 Cores 4 Logical Processors Motherboard Gateway H57M01 133 megahertz Memory 6GB of 1,333MHz DDR3 SDRAM Graphics Card 32MB Intel Graphics Media Accelerator HD IGChip Sound Card Realtek High Definition Audio Monitor(s) Displays Gateway HX2000 20inch TFT active matrix TN Screen Resolution 1600 x 900 x 59 hertz Keyboard MS 'Natural' Standard PS/2 Enhanced 101-102 Key Mouse Gateway USB wired optical PSU 300watts. Case Mid-Tower Desktop Cooling Stock from Gateway Hard Drives WDC WD10EADS-00M2B0 [HDD] (1000.20 GB) -- drive 0,
HL-DT-ST DVDRAM GH41N [CD-ROM dr]
HP Photosmart Plus B210a e_series AIO Printer
Four card readers, and Four USB 2.0 Internet Speed Verizon FIOS 24.57Mbps Down - 5.68Mbps up Antivirus MSE Browser IE9.0.8112.16421-Upd ver 9.0.13, FireFox 19.2, Opera 12.14 Other Info BIOS: American Megatrends Inc. P01-A0 11/17/2009
System Specs by Belarc.
Join Date March 27th 2010 at 10:44:15 AM. |
27 Jan 2012
|
#23 | | |
well the posts are getting shorter, so that must be a good thing
updates were successful
no hyphens spaces in service tag
i leave everything open, sounds like it's a bad habit....
so the files in quarantine will be deleted? aha....ok | My System Specs | | System Manufacturer/Model Number DELL Inspiron Mini 1012 OS Win 7 Starter CPU Intel(R) Atom(TM) CPU N450 @ 1.66GHz Motherboard Dell Inc. 0P9MDV Memory 1,00 GB Graphics Card (1) Intel(R) Graphics Media Accelerator 3150 (2) Intel(R) Sound Card Realtek High Definition Audio Screen Resolution 1024 x 600 x 32 bits (4294967296 colors) @ 60 Hz Hard Drives (1) Intel(R) Graphics Media Accelerator 3150 (2) Intel(R) Graphics Media Accelerator 3150 |
27 Jan 2012
|
#24 | | Win 7 Home Premium 64bit Ver 6.1.7600 Build 7601 - SP1 Central Pa. |

Quote: Originally Posted by GretyM well the posts are getting shorter, so that must be a good thing  Caught me at a bad time, I just woke up, and saw you were still in-forum, so I rushed a reply out. 
I can make them longer if you like. 
Quote: Originally Posted by GretyM updates were successful Good! 
Quote: Originally Posted by GretyM no hyphens spaces in service tag We'll have to look into that. See below. ↓ 
Quote: Originally Posted by GretyM i leave everything open, sounds like it's a bad habit.... Ahh, yeah!
Sleep, and hibernation is still a sore spot with 7's power management.
It is supposed to return you to where you left off, but usually has problems.
My machine (see specs) gives me the same reaction if I leave programs open. 
Quote: Originally Posted by GretyM so the files in quarantine will be deleted? aha....ok They should be.
The usual procedure is: - To let the program run a scan.
- When it is finished It will tell you one of two things, your machine is okay/clean or it found something that is contrary to its database.
- It should give you the option to look at the files or send them to quarantine with the option to remove them.
- You pick remove, it removes them, and then asks you to reboot because if you don't they will still reside on your machine, and rather than forget it is better to reboot.
I do not have Avira so the above is a variation on a theme.
Some information on Avira: Avira Documentations Pick what pertains to you.
You should double check your wi-fi security.
That trojan Avira found: Encyclopedia entry: TrojanProxy:Win32/Sefbov.E - Microsoft Malware Protection Center Is an email bot designed to turn your 1012 into a zombie sender.  Warning Be very careful when you are out using any hotspots, including the University!
From above: 
Quote: Originally Posted by GretyM no hyphens spaces in service tag See Laptops section. Does it look similar? What is a Service Tag and How Do I Locate It?
Try using this, you will need to use IE instead of FF or else it will give you a warning: Dell - Support | My System Specs | | Computer type PC/Desktop System Manufacturer/Model Number Gateway DX4831e (Mid-Tower Desktop) OS Win 7 Home Premium 64bit Ver 6.1.7600 Build 7601 - SP1 CPU Intel i3 530 2.93GHz, 2933MHz 2 Cores 4 Logical Processors Motherboard Gateway H57M01 133 megahertz Memory 6GB of 1,333MHz DDR3 SDRAM Graphics Card 32MB Intel Graphics Media Accelerator HD IGChip Sound Card Realtek High Definition Audio Monitor(s) Displays Gateway HX2000 20inch TFT active matrix TN Screen Resolution 1600 x 900 x 59 hertz Keyboard MS 'Natural' Standard PS/2 Enhanced 101-102 Key Mouse Gateway USB wired optical PSU 300watts. Case Mid-Tower Desktop Cooling Stock from Gateway Hard Drives WDC WD10EADS-00M2B0 [HDD] (1000.20 GB) -- drive 0,
HL-DT-ST DVDRAM GH41N [CD-ROM dr]
HP Photosmart Plus B210a e_series AIO Printer
Four card readers, and Four USB 2.0 Internet Speed Verizon FIOS 24.57Mbps Down - 5.68Mbps up Antivirus MSE Browser IE9.0.8112.16421-Upd ver 9.0.13, FireFox 19.2, Opera 12.14 Other Info BIOS: American Megatrends Inc. P01-A0 11/17/2009
System Specs by Belarc.
Join Date March 27th 2010 at 10:44:15 AM. |
27 Jan 2012
|
#25 | | |
 ) whatever helps get my laptop in good shape
yes, i know my service tag as i've had past problems with it and had to report to Dell, mine is a 7 Alpha-numeric code
well i thought that is the good thing about laptops you just close/open the lid and have all the applications where you left them...sheesh, people with no computer knowledge...
i hope i get rid of all the viruses with Avira now, my firewall is on so i thought that should be enough
haha, the Dell site can't find my service tag and asks me to enter it manually but there is no field for that...i think we can agree that this will not work  ) check out the screenshot | My System Specs | | System Manufacturer/Model Number DELL Inspiron Mini 1012 OS Win 7 Starter CPU Intel(R) Atom(TM) CPU N450 @ 1.66GHz Motherboard Dell Inc. 0P9MDV Memory 1,00 GB Graphics Card (1) Intel(R) Graphics Media Accelerator 3150 (2) Intel(R) Sound Card Realtek High Definition Audio Screen Resolution 1024 x 600 x 32 bits (4294967296 colors) @ 60 Hz Hard Drives (1) Intel(R) Graphics Media Accelerator 3150 (2) Intel(R) Graphics Media Accelerator 3150 |
27 Jan 2012
|
#26 | | Win 7 Home Premium 64bit Ver 6.1.7600 Build 7601 - SP1 Central Pa. |

Quote: Originally Posted by GretyM  ) whatever helps get my laptop in good shape
yes, i know my service tag as i've had past problems with it and had to report to Dell, mine is a 7 Alpha-numeric code How did your communication with Dell turn out, were they able to help? 
Quote: Originally Posted by GretyM well i thought that is the good thing about laptops you just close/open the lid and have all the applications where you left them...sheesh, people with no computer knowledge... Now that I have a new reason, let me look into the power management situation, maybe I can help the both of us. 
Quote: Originally Posted by GretyM i hope i get rid of all the viruses with Avira now, my firewall is on so i thought that should be enough Download, and install this: SpywareBlaster® | Prevent spyware and malware. Free download. , and or WinPatrol
They are extra layers of protection. 
Quote: Originally Posted by GretyM haha, the Dell site can't find my service tag and asks me to enter it manually but there is no field for that...i think we can agree that this will not work  ) check out the screenshot Try Belarc Advisor - Free Personal PC Audit or Speccy - System Information - Free Download . They might be able to scrub that number out of the Dell files. | My System Specs | | Computer type PC/Desktop System Manufacturer/Model Number Gateway DX4831e (Mid-Tower Desktop) OS Win 7 Home Premium 64bit Ver 6.1.7600 Build 7601 - SP1 CPU Intel i3 530 2.93GHz, 2933MHz 2 Cores 4 Logical Processors Motherboard Gateway H57M01 133 megahertz Memory 6GB of 1,333MHz DDR3 SDRAM Graphics Card 32MB Intel Graphics Media Accelerator HD IGChip Sound Card Realtek High Definition Audio Monitor(s) Displays Gateway HX2000 20inch TFT active matrix TN Screen Resolution 1600 x 900 x 59 hertz Keyboard MS 'Natural' Standard PS/2 Enhanced 101-102 Key Mouse Gateway USB wired optical PSU 300watts. Case Mid-Tower Desktop Cooling Stock from Gateway Hard Drives WDC WD10EADS-00M2B0 [HDD] (1000.20 GB) -- drive 0,
HL-DT-ST DVDRAM GH41N [CD-ROM dr]
HP Photosmart Plus B210a e_series AIO Printer
Four card readers, and Four USB 2.0 Internet Speed Verizon FIOS 24.57Mbps Down - 5.68Mbps up Antivirus MSE Browser IE9.0.8112.16421-Upd ver 9.0.13, FireFox 19.2, Opera 12.14 Other Info BIOS: American Megatrends Inc. P01-A0 11/17/2009
System Specs by Belarc.
Join Date March 27th 2010 at 10:44:15 AM. |
27 Jan 2012
|
#27 | | |
Well, the Dell guy was very nice and helpful, my problem wasn’t really a one to be solved I guess (from time to time, for a matter of a few days, my display would just revert colors, I mean what was supposed to be black was green, what was white was pink and so on, and it was not reproducible, so after emailing back and forth the problem was gone and hasn’t appeared since, but I guess they could have helped somehow)
Let me know on the power management situation
I chose winpatrol cos the dog is so cute and Speccy, looks cooler – women huh? | My System Specs | | System Manufacturer/Model Number DELL Inspiron Mini 1012 OS Win 7 Starter CPU Intel(R) Atom(TM) CPU N450 @ 1.66GHz Motherboard Dell Inc. 0P9MDV Memory 1,00 GB Graphics Card (1) Intel(R) Graphics Media Accelerator 3150 (2) Intel(R) Sound Card Realtek High Definition Audio Screen Resolution 1024 x 600 x 32 bits (4294967296 colors) @ 60 Hz Hard Drives (1) Intel(R) Graphics Media Accelerator 3150 (2) Intel(R) Graphics Media Accelerator 3150 |
27 Jan 2012
|
#28 | | Win 7 Home Premium 64bit Ver 6.1.7600 Build 7601 - SP1 Central Pa. |

Quote: Originally Posted by GretyM Well, the Dell guy was very nice and helpful, my problem wasn’t really a one to be solved I guess (from time to time, for a matter of a few days, my display would just revert colors, I mean what was supposed to be black was green, what was white was pink and so on, and it was not reproducible, so after emailing back and forth the problem was gone and hasn’t appeared since, but I guess they could have helped somehow) Sounds like one of those "By Proxy" arraignments. 
Quote: Originally Posted by GretyM Let me know on the power management situation Sure will! Hopefully in the near future. "All I wanted to do was to come home, sit down, kick off my shoes, and put my feet up.
It was a long day. I reached over for the remote, and put the radio on.
Then looked in my tote bag, and pulled my 1012 out so I could check my emails.
There was one email from 7Fourms Attachment 195329 Nothing yet, still looking ......Anak" I got a laugh, I was going to translate that, but Look how google translate handled it : Quote: "Alles, was ich tun wollte, war nach Hause zu kommen, sitzen down, kick off meine Schuhe und meine Füße hochlegen.
Es war ein langer Tag. Ich griff nach der Fernbedienung, und setzen Sie den Radio auf.
Dann schaute in meine Tasche und zog meine 1012 aus, damit ich meine E-Mails überprüfen könnten.
Es gab eine E-Mail von 7Fourms Noch nichts, noch auf der Suche ...... Anak " "All I wanted to do was to come home down, sit, put your kick off my shoes and my feet.
It was a long day. I grabbed the remote control and put you on the radio.
Then looked in my pocket and pulled out my 1012 so I could check my e-mails.
There was an e-mail from 7Fourms Nothing yet, still looking ...... Anak "  
Quote: Originally Posted by GretyM I chose winpatrol cos the dog is so cute and Speccy, looks cooler – women huh? I can understand that. IMHO. Women do seem to have a better sense of fashion.
I caught a consumer report today that found that, if a man goes to buy a car he should bring his significant other along to temper his emotions while trying keep all the information about the deal organized.
Source: https://www.npr.org/blogs/thetwo-way...d-better-deals
By the way....I did hear some problems last year not lately with keeping the "Scotty" Icon visible. It is search-able.
Last edited by Anak; 27 Jan 2012 at 02:49 PM..
Reason: Found source of report.
| My System Specs | | Computer type PC/Desktop System Manufacturer/Model Number Gateway DX4831e (Mid-Tower Desktop) OS Win 7 Home Premium 64bit Ver 6.1.7600 Build 7601 - SP1 CPU Intel i3 530 2.93GHz, 2933MHz 2 Cores 4 Logical Processors Motherboard Gateway H57M01 133 megahertz Memory 6GB of 1,333MHz DDR3 SDRAM Graphics Card 32MB Intel Graphics Media Accelerator HD IGChip Sound Card Realtek High Definition Audio Monitor(s) Displays Gateway HX2000 20inch TFT active matrix TN Screen Resolution 1600 x 900 x 59 hertz Keyboard MS 'Natural' Standard PS/2 Enhanced 101-102 Key Mouse Gateway USB wired optical PSU 300watts. Case Mid-Tower Desktop Cooling Stock from Gateway Hard Drives WDC WD10EADS-00M2B0 [HDD] (1000.20 GB) -- drive 0,
HL-DT-ST DVDRAM GH41N [CD-ROM dr]
HP Photosmart Plus B210a e_series AIO Printer
Four card readers, and Four USB 2.0 Internet Speed Verizon FIOS 24.57Mbps Down - 5.68Mbps up Antivirus MSE Browser IE9.0.8112.16421-Upd ver 9.0.13, FireFox 19.2, Opera 12.14 Other Info BIOS: American Megatrends Inc. P01-A0 11/17/2009
System Specs by Belarc.
Join Date March 27th 2010 at 10:44:15 AM. |
27 Jan 2012
|
#29 | | |
what's a By Proxy arrangement? remember i am no IT-know-it-all, that's why i'm on the forum
"put you on the radio."  that is cute....but is this some random text? translated to German and then back to English? i think if you keep going you come to some hilarious findings...but do you understand German?
i'll keep an eye on the Speccy
two more viruses, why doesn't he find them on the first go, now he is scanning the 3rd time, i bet he'll spit out another two
C:\Windows\Temp\rnnvmn\setup.exe infected with TR/Dldr.Cutwail.BE.22
C:\Windows\Temp\omtgfh\setup.exe infected with TR/TDss.inyc | My System Specs | | System Manufacturer/Model Number DELL Inspiron Mini 1012 OS Win 7 Starter CPU Intel(R) Atom(TM) CPU N450 @ 1.66GHz Motherboard Dell Inc. 0P9MDV Memory 1,00 GB Graphics Card (1) Intel(R) Graphics Media Accelerator 3150 (2) Intel(R) Sound Card Realtek High Definition Audio Screen Resolution 1024 x 600 x 32 bits (4294967296 colors) @ 60 Hz Hard Drives (1) Intel(R) Graphics Media Accelerator 3150 (2) Intel(R) Graphics Media Accelerator 3150 |
27 Jan 2012
|
#30 | | Win 7 Home Premium 64bit Ver 6.1.7600 Build 7601 - SP1 Central Pa. |

Quote: Originally Posted by GretyM what's a By Proxy arrangement? remember i am no IT-know-it-all, that's why i'm on the forum Urban Dictionary: by proxy
Reasons #3, and 6, but you have to read #5 
It's also a legal term. 
Quote: Originally Posted by GretyM "put you on the radio."  that is cute....but is this some random text? translated to German and then back to English? i think if you keep going you come to some hilarious findings...but do you understand German? No. No German. Some Lithuanian. Į sveikatą! (Cheers/Good Health)
I typed in to translate the descriptive paragraph (A day in the life of GretyM) where the snip/attachment is located.
Then I thought I'd better check it, so I reran it through translate, and that's what I came out in the quotes, that is why I'm laughing at the bottom.
Your right, the more you ran it the worse it would have gotten. 
Quote: Originally Posted by GretyM i'll keep an eye on the Speccy  In all these programs, do you use pay or free? 
Quote: Originally Posted by GretyM two more viruses, why doesn't he find them on the first go, now he is scanning the 3rd time, i bet he'll spit out another two
C:\Windows\Temp\rnnvmn\setup.exe infected with TR/Dldr.Cutwail.BE.22
C:\Windows\Temp\omtgfh\setup.exe infected with TR/TDss.inyc That is all right for it to work that way, but pssstt!...If you run it in safe mode it should go faster. | My System Specs | | Computer type PC/Desktop System Manufacturer/Model Number Gateway DX4831e (Mid-Tower Desktop) OS Win 7 Home Premium 64bit Ver 6.1.7600 Build 7601 - SP1 CPU Intel i3 530 2.93GHz, 2933MHz 2 Cores 4 Logical Processors Motherboard Gateway H57M01 133 megahertz Memory 6GB of 1,333MHz DDR3 SDRAM Graphics Card 32MB Intel Graphics Media Accelerator HD IGChip Sound Card Realtek High Definition Audio Monitor(s) Displays Gateway HX2000 20inch TFT active matrix TN Screen Resolution 1600 x 900 x 59 hertz Keyboard MS 'Natural' Standard PS/2 Enhanced 101-102 Key Mouse Gateway USB wired optical PSU 300watts. Case Mid-Tower Desktop Cooling Stock from Gateway Hard Drives WDC WD10EADS-00M2B0 [HDD] (1000.20 GB) -- drive 0,
HL-DT-ST DVDRAM GH41N [CD-ROM dr]
HP Photosmart Plus B210a e_series AIO Printer
Four card readers, and Four USB 2.0 Internet Speed Verizon FIOS 24.57Mbps Down - 5.68Mbps up Antivirus MSE Browser IE9.0.8112.16421-Upd ver 9.0.13, FireFox 19.2, Opera 12.14 Other Info BIOS: American Megatrends Inc. P01-A0 11/17/2009
System Specs by Belarc.
Join Date March 27th 2010 at 10:44:15 AM. Dumping physical memory to disk problems? All times are GMT -5. The time now is 10:29 AM. | |