Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- .
- DDS (Ver_2011-08-26.01) - NTFSx86
- Internet Explorer: 6.0.2900.5512
- Run by Aca at 20:12:19 on 2011-10-16
- Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1279.599 [GMT 2:00]
- .
- .
- ============== Running Processes ===============
- .
- C:\WINDOWS\system32\Ati2evxx.exe
- C:\WINDOWS\system32\svchost -k DcomLaunch
- svchost.exe
- C:\WINDOWS\System32\svchost.exe -k netsvcs
- svchost.exe
- svchost.exe
- C:\WINDOWS\system32\Ati2evxx.exe
- C:\WINDOWS\Explorer.EXE
- C:\WINDOWS\system32\spoolsv.exe
- C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
- C:\Program Files\VIAudioi\SBADeck\ADeck.exe
- C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
- C:\WINDOWS\system32\ctfmon.exe
- C:\Program Files\Skype\Phone\Skype.exe
- svchost.exe
- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
- C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
- C:\Program Files\Opera\Opera.exe
- .
- ============== Pseudo HJT Report ===============
- .
- uRun: [CTFMON.EXE] c:\windows\system32\ctfmon.exe
- uRun: [uTorrent] "c:\program files\utorrent\uTorrent.exe" /MINIMIZED
- uRun: [Skype] "c:\program files\skype\phone\Skype.exe" /nosplash /minimized
- mRun: [ATICCC] "c:\program files\ati technologies\ati.ace\cli.exe" runtime -Delay
- mRun: [AudioDeck] c:\program files\viaudioi\sbadeck\ADeck.exe 1
- mRun: [Malwarebytes' Anti-Malware] "c:\program files\malwarebytes' anti-malware\mbamgui.exe" /starttray
- dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
- uPolicies-system: DisableTaskMgr = 1 (0x1)
- uPolicies-system: DisableRegistryTools = 1 (0x1)
- mPolicies-system: EnableLUA = 0 (0x0)
- IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
- IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
- TCP: DhcpNameServer = 89.216.1.40 89.216.1.50
- TCP: Interfaces\{155A3783-273F-4069-8256-25276BAC954B} : DhcpNameServer = 89.216.1.40 89.216.1.50
- Notify: AtiExtEvent - Ati2evxx.dll
- .
- ================= FIREFOX ===================
- .
- FF - ProfilePath - c:\documents and settings\aca\application data\mozilla\firefox\profiles\mwccdpf8.default\
- .
- ============= SERVICES / DRIVERS ===============
- .
- R0 a347bus;a347bus;c:\windows\system32\drivers\a347bus.sys [2011-10-16 160640]
- R0 a347scsi;a347scsi;c:\windows\system32\drivers\a347scsi.sys [2011-10-16 5248]
- R2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2011-10-16 366152]
- R3 abp470n5;abp470n5;\??\c:\windows\system32\drivers\gmmqkn.sys --> c:\windows\system32\drivers\gmmqkn.sys [?]
- R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2011-10-16 22216]
- R4 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [2011-10-16 41272]
- S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\wpffontcache_v0400.exe --> c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [?]
- .
- =============== Created Last 30 ================
- .
- 2011-10-16 17:57:59 41272 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
- 2011-10-16 17:39:56 -------- d-----w- c:\documents and settings\aca\application data\Malwarebytes
- 2011-10-16 17:39:50 -------- d-----w- c:\documents and settings\all users\application data\Malwarebytes
- 2011-10-16 17:39:47 22216 ----a-w- c:\windows\system32\drivers\mbam.sys
- 2011-10-16 17:39:47 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
- 2011-10-16 17:23:02 -------- d-----w- c:\documents and settings\all users\application data\Sports Interactive
- 2011-10-16 17:22:07 -------- d-----w- c:\documents and settings\aca\local settings\application data\Sports Interactive
- 2011-10-16 17:22:07 -------- d-----w- c:\documents and settings\aca\application data\Sports Interactive
- 2011-10-16 17:15:05 -------- d--h--w- c:\program files\Zero G Registry
- 2011-10-16 17:14:28 -------- d--h--w- c:\documents and settings\aca\InstallAnywhere
- 2011-10-16 17:09:32 5248 ----a-w- c:\windows\system32\drivers\a347scsi.sys
- 2011-10-16 17:09:32 160640 ----a-w- c:\windows\system32\drivers\a347bus.sys
- 2011-10-16 17:09:30 -------- d-----w- c:\program files\Alcohol Soft
- 2011-10-16 13:53:30 -------- d-----w- C:\Temp
- 2011-10-16 13:53:09 665424 ----a-w- c:\windows\system32\wmv8dmoe.dll
- 2011-10-16 13:53:09 572752 ----a-w- c:\windows\system32\wmvdmoe.dll
- 2011-10-16 13:53:09 438608 ----a-w- c:\windows\system32\wmv8dmod.dll
- 2011-10-16 13:53:09 285184 ----a-w- c:\windows\system32\wmidx2.ocx
- 2011-10-16 13:53:09 1683792 ----a-w- c:\windows\system32\wmvcore2.dll
- 2011-10-16 13:51:43 -------- d-----w- c:\program files\coolpro2
- 2011-10-16 13:49:45 -------- d-----w- C:\games
- 2011-10-16 12:20:13 -------- d-----r- c:\program files\Skype
- 2011-10-16 12:14:17 -------- d-sh--w- C:\found.000
- .
- ==================== Find3M ====================
- .
- 2011-10-16 10:56:35 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
- .
- ============= FINISH: 20:13:37.01 ===============
Advertisement
Add Comment
Please, Sign In to add comment