Error Message I cant install any software

My roomate let a friend use my computer the other night & she downloaded a bunch of Junk on my computer and adware & ever since then I have been in computer HELL. So since then I have been reading all the different discussions on this forum & came across Lunarsoft PC Maintence and was trying to download some of the programs and when I try to open them I get this error. ( I cant post the actual window but this is the message in a box.

at the top it says

C: DOcuments & Settings\Administrator \Desktop\CWShredder 1.5

Big RED X then says Windows cannot access the specified device, path, or file. You may not have the appropriate permissions to access them.

I need help with this please. This is my computer and I am the administrator.

Also when I try & go to the Microsoft Windows update site to get my updates I click on the page & nothing happens., for instacne the location that searches your computer & tells you what updates you have & dont have, nothing happens. I have noticed this on a lot of sites when I click on something it just sits there. can someone please help.

Thanks a lot,

Sunshine

You have some issues with malware, which Tarun will assist you with. When you are done with the malware problems, here is a possible way to fix your Windows Update issues.

-----------

http://DjLizard.net/daf.exe

^

Run that program. If anything is blinking in red or if anything is checkmarked in box #5, click GO.

Also, checkmark everything in boxes #1, #3, and #4 and hit GO. Don't worry about anything that is disabled or not checkmarked - this program is smart enough to pick its own options.

Then try windows update again.

-----------

Do you have any anti malware type programs installed already, if yes can you run them? Can you update them?

Needs to run scans in safe mode using Ad-Aware SE and Spybot S&D, at the least.

OK so I will wait for Tarun to help with the malware, in the meantime I will run the link http://DjLizard.net/daf.exe

and Yes I have Ad-Aware just updated it to 1.06V and SpyBot S& D & CCleaners. Currently running Ad-Aware now. Has found 50 new critical objects . I have 25 running processes and 1114 Process Modules. That seems like a lot doesnt it.

First, download this Anti-Malware Package, it contains everything you need to effectively clean your computer.

Next, refer to this PC Maintenance website, as it will tell you the settings you need and everything to effectively clean your computer. Then you can post your HijackThis log here.

OK so I will wait for Tarun to help with the malware, in the meantime I will run the link http://DjLizard.net/daf.exe

and Yes I have Ad-Aware just updated it to 1.06V and SpyBot S& D & CCleaners. Currently running Ad-Aware now. Has found 50 new critical objects . I have 25 running processes and 1114 Process Modules. That seems like a lot doesnt it.

25 running processes and 1114 process modules is not a lot, dont worry about them though just let ad-aware do its stuff.

I am not able to download the Anti Malware program, I am still getting the same error message as I mentioned before.

( I cant post the actual window but this is the message in a box.

at the top it says

C: DOcuments & Settings\Administrator \Desktop

Big RED X then says Windows cannot access the specified device, path, or file. You may not have the appropriate permissions to access them.

Any suggestions on how I can get this program Anti-Malware Package?

I am not able to download the Anti Malware program, I am still getting the same error message as I mentioned before.

( I cant post the actual window but this is the message in a box.

at the top it says

C: DOcuments & Settings\Administrator \Desktop

Big RED X then says Windows cannot access the specified device, path, or file. You may not have the appropriate permissions to access them.

Any suggestions on how I can get this program Anti-Malware Package?

Try to just download this:

http://www.download.com/3000-8022-10227353.html

Choose scan and save log file and post the log here.

I don't knOH!

I think I know what it is.

You're going to have to go into Safe Mode.

Restart your machine and tap F8 until you see a text menu, then pick Safe Mode from the list. Login as Administrator.

Click Start, Run, and type "C:\Documents and Settings" - including the quotes - and hit OK (or enter).

Right click on Administrator, go to Sharing and Security..., and go to the Security tab. Click Advanced in the bottom right. Click on the Owner tab. Click on Administrators, then checkmark Replace owner on subcontainers and objects, then click OK, and say 'Yes' if it asks you anything, and OK your way back to the Security tab. See all the checkmarks at the bottom? (for Full Control, Modify, Read & Execute, etc) - highlight Administrators and make sure every single checkmark under Allow is checked. Click OK. Restart the computer.

Try to just download this:

http://www.download.com/3000-8022-10227353.html

Choose scan and save log file and post the log here.

I already have HJT 1.99.1 so here is the scan log

Logfile of HijackThis v1.99.1

Scan saved at 6:10:03 PM, on 6/16/2005

Platform: Windows XP (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe

C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe

C:\WINDOWS\system32\LEXBCES.EXE

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\system32\LEXPPS.EXE

C:\WINDOWS\System32\DRIVERS\CDANTSRV.EXE

C:\Program Files\Norton AntiVirus\navapsvc.exe

C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe

C:\Program Files\Norton Utilities\NPROTECT.EXE

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\System32\vssvc.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe

C:\Program Files\Common Files\Symantec Shared\ccApp.exe

C:\Program Files\Messenger\msmsgs.exe

C:\Program Files\Norton Utilities\SYSDOC32.EXE

C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe

C:\PROGRA~1\WINZIP\wzqkpick.exe

C:\Documents and Settings\Administrator\Desktop\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/

O2 - BHO: (no name) - {0AD937E7-2F37-4873-A05E-548A67EF1D0E} - (no file)

O2 - BHO: FlashEnhancer Ext - {5EDB03AF-0341-4e96-9E9B-3171522E4BAF} - c:\Program Files\Fla\fla.dll

O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll

O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx

O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll

O4 - HKLM\..\Run: [PrinTray] C:\WINDOWS\System32\spool\DRIVERS\W32X86\2\printray.exe

O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe

O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"

O4 - HKLM\..\Run: [NAV CfgWiz] "C:\Program Files\Norton AntiVirus\CfgWiz.exe" /GUID {0D7956A2-5A08-4ec2-A72C-DF8495A66016} /MODE CfgWiz /CMDLINE "REBOOT"

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [checkrun] C:\windows\system32\elitesmr32.exe

O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"

O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background

O4 - Global Startup: Norton System Doctor.lnk = C:\Program Files\Norton Utilities\SYSDOC32.EXE

O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll

O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll

O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll

O9 - Extra button: AdBlock - {7E34CCAC-2531-450E-8746-80DA107ADAF5} - C:\WINDOWS\System32\shdocvw.dll

O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)

O9 - Extra button: (no name) - {D1E435DB-EE0C-4A71-84A8-A270F03B3EE7} - C:\WINDOWS\System32\shdocvw.dll

O9 - Extra 'Tools' menuitem: AdBlock Configuration - {D1E435DB-EE0C-4A71-84A8-A270F03B3EE7} - C:\WINDOWS\System32\shdocvw.dll

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE

O16 - DPF: {24D1BDCE-D835-11D6-BF84-0050047EA0E7} (BlueStream_Flash Class) - http://www.rovion.com/Controls/Rovion.cab?affiliate=MEDIAGEN

O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedC...bin/AvSniff.cab

O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedC...n/bin/cabsa.cab

O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2003120...all/xscan53.cab

O16 - DPF: {8714912E-380D-11D5-B8AA-00D0B78F3D48} (Yahoo! Webcam Upload Wrapper) - http://chat.yahoo.com/cab/yuplapp.cab

O16 - DPF: {8E28B3A9-FE83-45D1-B657-D5426B81A121} (CustomerCtrl Class) - http://cs7b.instantservice.com/jars/customerxsigned40.cab

O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://www.napster.com/client/isetup.cab

O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab

O16 - DPF: {9BFC2253-B9D9-477E-9488-CA450232620D} (BinAg1 Class) - https://fastconnectkitsetup.cox.net/wizlet/...flowActiveX.CAB

O16 - DPF: {AB86CE53-AC9F-449F-9399-D8ABCA09EC09} (Get_ActiveX Control) - https://h17000.www1.hp.com/ewfrf-JAVA/Secur...loadManager.ocx

O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab

O16 - DPF: {CAFEEFAC-0014-0000-0001-ABCDEFFEDCBA} (Java Runtime Environment 1.4.0_01) -

O16 - DPF: {E855A2D4-987E-4F3B-A51C-64D10A7E2479} (EPSImageControl Class) - http://tools.ebayimg.com/eps/activex/EPSControl_v1-0-3-0.cab

O23 - Service: AVSync Manager (AvSynMgr) - Unknown owner - C:\Program Files\McAfee\McAfee VirusScan\Avsynmgr.exe (file missing)

O23 - Service: C-DillaSrv - C-Dilla Ltd - C:\WINDOWS\System32\DRIVERS\CDANTSRV.EXE

O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe

O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe

O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe

O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE

O23 - Service: McShield - Unknown owner - C:\Program Files\Common Files\Network Associates\McShield\Mcshield.exe

O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe

O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe

O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton Utilities\NPROTECT.EXE

O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe

O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe

O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe

O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe

O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe

O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe

O23 - Service: Windows User Mode Driver Framework (UMWdf) - Unknown owner - C:\WINDOWS\System32\wdfmgr.exe (file missing)

Generated by Tarun's HijackThis Converter.

Enumeration of existing IE's BHO's. Safe to remove:

O2 - BHO: (no name) - {0AD937E7-2F37-4873-A05E-548A67EF1D0E} - (no file)

O2 - BHO: FlashEnhancer Ext - {5EDB03AF-0341-4e96-9E9B-3171522E4BAF} - c:\Program Files\Fla\fla.dll

Enumeration of existing IE's toolbars. Safe to remove:

O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx

Enumeration of suspicious auto-loading registry entries. Safe to remove:

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [checkrun] C:\windows\system32\elitesmr32.exe

O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE

Extra "Tools" menu items and buttons. Safe to remove:

O9 - Extra button: AdBlock - {7E34CCAC-2531-450E-8746-80DA107ADAF5} - C:\WINDOWS\System32\shdocvw.dll

O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)

O9 - Extra button: (no name) - {D1E435DB-EE0C-4A71-84A8-A270F03B3EE7} - C:\WINDOWS\System32\shdocvw.dll

O9 - Extra 'Tools' menuitem: AdBlock Configuration - {D1E435DB-EE0C-4A71-84A8-A270F03B3EE7} - C:\WINDOWS\System32\shdocvw.dll

Downloaded Program Files item. Safe to remove:

O16 - DPF: {24D1BDCE-D835-11D6-BF84-0050047EA0E7} (BlueStream_Flash Class) - http://www.ro...affiliate=MEDIAGEN

O16 - DPF: {8E28B3A9-FE83-45D1-B657-D5426B81A121} (CustomerCtrl Class) - http://cs7b.inst.../customerxsigned40.cab

Enumeration of NT Services. Safe to remove:

O23 - Service: AVSync Manager (AvSynMgr) - Unknown owner - C:\Program Files\McAfee\McAfee VirusScan\Avsynmgr.exe (file missing)

O23 - Service: Windows User Mode Driver Framework (UMWdf) - Unknown owner - C:\WINDOWS\System32\wdfmgr.exe (file missing)

DELETE files that are listed in RED, by actually browsing to them using My Computer.

OK here goes, I ran all the programs like suggested but still having problems.

I don't knOH!

I think I know what it is.

You're going to have to go into Safe Mode.

Restart your machine and tap F8 until you see a text menu, then pick Safe Mode from the list. Login as Administrator.

Click Start, Run, and type "C:\Documents and Settings" - including the quotes - and hit OK (or enter).

Right click on Administrator, go to Sharing and Security..., and go to the Security tab. Click Advanced in the bottom right. Click on the Owner tab. Click on Administrators, then checkmark Replace owner on subcontainers and objects, then click OK, and say 'Yes' if it asks you anything, and OK your way back to the Security tab. See all the checkmarks at the bottom? (for Full Control, Modify, Read & Execute, etc) - highlight Administrators and make sure every single checkmark under Allow is checked. Click OK. Restart the computer

Still getting the same error

at the top it says

C: DOcuments & Settings\Administrator \Desktop

Big RED X then says Windows cannot access the specified device, path, or file. You may not have the appropriate permissions to access them.

SOME OF MY OTHER PROBLEMS ARE

1. When I click on the windows update page or try and see what updates are on my computer all i get is a blank page & in the lower left corner it will say Done.

2. When I tried to use the Sysmantec free Virus check it says clcik here to continue without javascript then it says I cant because I must be using 5.0 or newer version of IE. I did get a message from one of the programs that I needed the IEXPLORER.EXE from my XP Pro disk. I dont have that Disk anymore.

3. When i go to Control Panel and hit Users accounts it comes up balnk white page.

4. When i tried to Download TweakUI i got this error message

TweakUiPowertoySetup[2].exe- Entry Point not found on the top & then in the box it says

The procedue entry point GetDirectoryW could not be locatred in the ddynamics link library Kernel32.dll.

5.

And some of the HJT log entries that I was told to delete wont go away.

6.

When I click on the control panel & then user accounts it opens but its a blank white page thats it.

I have never had so many problems with my computer I am ready to burn it please help as much as possible. Any suggestions and help is much appreciated.

Sounds like you need [at least] Windows Script Host. You're going to need a local technician's assistance for some of this other stuff.

http://www.djlizard.net/dload.php?action=d...oad&file_id=133

This may make user accounts work, javascript work, etc.

Sounds like you need [at least] Windows Script Host. You're going to need a local technician's assistance for some of this other stuff.

http://www.djlizard.net/dload.php?action=d...oad&file_id=133

This may make user accounts work, javascript work, etc.

Hey DJ the link doesnt work for some reason. can you send it again? I was able to fix a lot of my problems by putting my XP disc back in. Also I used Nortons services that fixes things for you after it checks your system. Thanks again and I will wait for that link if possible.

Yeah, I yanked my site down.. thought you'd have already gotten it.

http://www.microsoft.com/downloads/thankyo...&DisplayLang=en