Advertisement
Guest User

Untitled

a guest
Aug 29th, 2012
48
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 11.30 KB | None | 0 0
  1. .
  2. DDS (Ver_2011-08-26.01) - NTFSx86
  3. Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_31
  4. Run by SEMPRON 3000 at 21:58:44 on 2012-08-29
  5. Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.511.123 [GMT 2:00]
  6. .
  7. AV: ESET NOD32 Antivirus 4.2 *Enabled/Outdated* {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
  8. .
  9. ============== Running Processes ===============
  10. .
  11. C:\WINDOWS\system32\svchost -k DcomLaunch
  12. svchost.exe
  13. C:\WINDOWS\System32\svchost.exe -k netsvcs
  14. svchost.exe
  15. svchost.exe
  16. C:\WINDOWS\system32\spoolsv.exe
  17. svchost.exe
  18. C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
  19. svchost.exe
  20. C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
  21. C:\Program Files\Java\jre6\bin\jqs.exe
  22. C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
  23. C:\WINDOWS\Explorer.EXE
  24. C:\WINDOWS\system32\nvsvc32.exe
  25. C:\WINDOWS\system32\svchost.exe -k imgsvc
  26. C:\WINDOWS\htpatch.exe
  27. C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
  28. C:\WINDOWS\system32\RunDll32.exe
  29. C:\Program Files\Vimicro Corporation\VMUVC\VMonitor.exe
  30. C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
  31. C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
  32. C:\Program Files\RALINK\Common\RaUI.exe
  33. C:\Program Files\Mozilla Firefox\firefox.exe
  34. C:\Program Files\Mozilla Firefox\plugin-container.exe
  35. .
  36. ============== Pseudo HJT Report ===============
  37. .
  38. uStart Page = hxxp://www.windowsxlive.net
  39. uURLSearchHooks: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} -
  40. mWinlogon: UIHost=vistaui.exe
  41. BHO: AcroIEHlprObj Class: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 6.0\reader\activex\AcroIEHelper.dll
  42. BHO: Java(tm) Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
  43. BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
  44. BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
  45. TB: StylerToolBar: {d2f8f919-690b-4ea2-9fa7-a203d1e04f75} - c:\program files\styler\tb\StylerTB.dll
  46. TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
  47. uRun: [Pando Media Booster] c:\program files\pando networks\media booster\PMB.exe
  48. uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
  49. uRun: [SUPERAntiSpyware] c:\program files\superantispyware\SUPERAntiSpyware.exe
  50. mRun: [HTpatch] c:\windows\htpatch.exe
  51. mRun: [SiSUSBRG] c:\windows\SiSUSBrg.exe
  52. mRun: [RemoteControl] "c:\program files\cyberlink\powerdvd\PDVDServ.exe"
  53. mRun: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
  54. mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 8.0\reader\Reader_sl.exe"
  55. mRun: [VMonitorVMUVC] "c:\program files\vimicro corporation\vmuvc\VMonitor.exe" VMUVC
  56. mRun: [Malwarebytes' Anti-Malware] "c:\program files\malwarebytes' anti-malware\mbamgui.exe" /starttray
  57. dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
  58. dRunOnce: [nltide_2] regsvr32 /s /n /i:U shell32
  59. StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\ralink~1.lnk - c:\program files\ralink\common\RaUI.exe
  60. IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
  61. IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
  62. IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
  63. IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office11\REFIEBAR.DLL
  64. DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
  65. DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1340705300968
  66. DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
  67. DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
  68. DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
  69. DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
  70. TCP: Interfaces\{EEA9D5F0-DC04-4CAF-BB0C-7EDC61861DBA} : NameServer = 10.5.0.100
  71. Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
  72. Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.DLL
  73. SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\wpdshserviceobj.dll
  74. SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
  75. Hosts: 127.0.0.1 www.spywareinfo.com
  76. .
  77. ================= FIREFOX ===================
  78. .
  79. FF - ProfilePath - c:\documents and settings\sempron 3000\application data\mozilla\firefox\profiles\8oyt4nrc.default\
  80. FF - prefs.js: browser.startup.homepage - www.google.rs
  81. FF - plugin: c:\documents and settings\sempron 3000\local settings\application data\unity\webplayer\loader\npUnity3D32.dll
  82. FF - plugin: c:\program files\java\jre6\bin\plugin2\npdeployJava1.dll
  83. FF - plugin: c:\program files\java\jre6\bin\plugin2\npjp2.dll
  84. FF - plugin: c:\program files\mozilla firefox\plugins\npdeployJava1.dll
  85. FF - plugin: c:\program files\pando networks\media booster\npPandoWebPlugin.dll
  86. .
  87. ============= SERVICES / DRIVERS ===============
  88. .
  89. R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [2010-7-29 115008]
  90. R1 epfwtdir;epfwtdir;c:\windows\system32\drivers\epfwtdir.sys [2010-8-3 95896]
  91. R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2011-7-22 12880]
  92. R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2011-7-12 67664]
  93. R2 !SASCORE;SAS Core Service;c:\program files\superantispyware\SASCore.exe [2011-8-12 116608]
  94. R2 ekrn;ESET Service;c:\program files\eset\eset nod32 antivirus\ekrn.exe [2010-11-4 810144]
  95. R2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2012-8-28 655944]
  96. R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-8-28 22344]
  97. S2 WCMVCAM;WebcamMax, WDM Video Capture;c:\windows\system32\drivers\wcmvcam.sys [2011-6-23 1068216]
  98. S3 ManyCam;ManyCam Virtual Webcam, WDM Video Capture Driver;c:\windows\system32\drivers\ManyCam.sys [2008-1-14 21632]
  99. S3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\mozilla maintenance service\maintenanceservice.exe [2012-8-21 113120]
  100. S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\drivers\ssadbus.sys [2011-5-13 121064]
  101. S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\drivers\ssadmdfl.sys [2011-5-13 12776]
  102. S3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\drivers\ssadmdm.sys [2011-5-13 136808]
  103. S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM);c:\windows\system32\drivers\ssadserd.sys [2011-5-13 114280]
  104. S3 VMUVC;Vimicro Camera Service VMUVC;c:\windows\system32\drivers\VMUVC.sys [2012-8-8 252928]
  105. S3 vvftUVC;Vimicro Camera Filter Service VMUVC;c:\windows\system32\drivers\vvftUVC.sys [2012-8-8 399360]
  106. .
  107. =============== Created Last 30 ================
  108. .
  109. 2012-08-28 23:07:37 -------- d-----w- c:\documents and settings\sempron 3000\application data\SUPERAntiSpyware.com
  110. 2012-08-28 23:06:42 -------- d-----w- c:\program files\SUPERAntiSpyware
  111. 2012-08-28 23:06:42 -------- d-----w- c:\documents and settings\all users\application data\SUPERAntiSpyware.com
  112. 2012-08-28 19:15:49 -------- d-----w- c:\documents and settings\sempron 3000\application data\Malwarebytes
  113. 2012-08-28 19:15:36 -------- d-----w- c:\documents and settings\all users\application data\Malwarebytes
  114. 2012-08-28 19:15:35 22344 ----a-w- c:\windows\system32\drivers\mbam.sys
  115. 2012-08-28 19:15:34 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
  116. 2012-08-28 18:50:19 -------- d-----w- c:\program files\CCleaner
  117. 2012-08-18 16:07:41 133376 ----a-w- c:\program files\mozilla firefox\plugins\nppdf32.dll
  118. 2012-08-18 16:07:40 476904 ----a-w- c:\program files\mozilla firefox\plugins\npdeployJava1.dll
  119. 2012-08-18 16:07:40 13888 ----a-w- c:\program files\mozilla firefox\plugins\NPOFFICE.DLL
  120. 2012-08-15 15:38:48 55296 ----a-w- c:\windows\system32\SET4028.tmp
  121. 2012-08-15 15:38:47 105984 ----a-w- c:\windows\system32\SET4023.tmp
  122. 2012-08-15 15:38:44 916992 ----a-w- c:\windows\system32\SET4021.tmp
  123. 2012-08-15 15:38:44 25600 ----a-w- c:\windows\system32\SET402B.tmp
  124. 2012-08-15 15:38:43 629760 ----a-w- c:\windows\system32\SET4029.tmp
  125. 2012-08-15 15:38:41 2000384 ----a-w- c:\windows\system32\SET402D.tmp
  126. 2012-08-15 15:38:39 1212416 ----a-w- c:\windows\system32\SET4022.tmp
  127. 2012-08-15 15:38:36 6008320 ----a-w- c:\windows\system32\SET4027.tmp
  128. 2012-08-08 21:19:57 -------- d-----w- c:\windows\VMUVC
  129. 2012-08-08 21:19:43 94208 ----a-w- c:\windows\system32\VvFtCtrl.dll
  130. 2012-08-08 21:19:43 73728 ----a-w- c:\windows\system32\exvmuvc.ax
  131. 2012-08-08 21:19:43 516096 ----a-w- c:\windows\system32\VMUVC.ax
  132. 2012-08-08 21:19:43 252928 ----a-w- c:\windows\system32\drivers\VMUVC.sys
  133. 2012-08-08 21:19:43 188416 ----a-w- c:\windows\system32\vvftUVC.ax
  134. 2012-08-08 21:19:42 98304 ----a-w- c:\windows\system32\VMCtrl.ax
  135. 2012-08-08 21:19:42 399360 ----a-w- c:\windows\system32\drivers\vvftUVC.sys
  136. 2012-08-08 21:19:42 11776 ----a-w- c:\windows\system32\VMUVC.dll
  137. 2012-08-08 21:19:39 319456 ----a-w- c:\windows\system32\DIFxAPI.dll
  138. 2012-08-08 21:19:25 -------- d-----w- c:\program files\Vimicro Corporation
  139. 2012-08-08 13:37:04 60032 -c--a-w- c:\windows\system32\dllcache\usbaudio.sys
  140. 2012-08-08 13:37:04 60032 ----a-w- c:\windows\system32\drivers\USBAUDIO.sys
  141. 2012-08-08 13:26:48 20992 ----a-w- c:\windows\system32\dshowext.ax
  142. 2012-08-08 13:26:48 121984 -c--a-w- c:\windows\system32\dllcache\usbvideo.sys
  143. 2012-08-08 13:26:48 121984 ----a-w- c:\windows\system32\drivers\usbvideo.sys
  144. 2012-08-08 13:26:31 32128 -c--a-w- c:\windows\system32\dllcache\usbccgp.sys
  145. 2012-08-08 13:26:31 32128 ----a-w- c:\windows\system32\drivers\usbccgp.sys
  146. .
  147. ==================== Find3M ====================
  148. .
  149. 2012-07-06 13:58:51 78336 ----a-w- c:\windows\system32\browser.dll
  150. 2012-07-04 14:05:18 139784 ----a-w- c:\windows\system32\drivers\rdpwd.sys
  151. 2012-07-03 13:40:15 1866112 ----a-w- c:\windows\system32\win32k.sys
  152. 2012-07-03 12:30:49 21419 ----a-w- c:\windows\system32\drivers\AegisP.sys
  153. 2012-07-02 21:19:34 11111424 ----a-w- c:\windows\system32\SET402F.tmp
  154. 2012-07-02 17:49:33 916992 ----a-w- c:\windows\system32\wininet.dll
  155. 2012-07-02 17:49:32 43520 ----a-w- c:\windows\system32\licmgr10.dll
  156. 2012-07-02 17:49:32 1469440 ------w- c:\windows\system32\inetcpl.cpl
  157. 2012-07-02 12:05:43 385024 ----a-w- c:\windows\system32\html.iec
  158. 2012-06-26 11:03:07 3796065 ----a-w- c:\documents and settings\all users\application data\sbsdwin95req.exe
  159. 2012-06-06 23:54:06 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
  160. 2012-06-05 15:50:25 1372672 ----a-w- c:\windows\system32\msxml6.dll
  161. 2012-06-05 15:50:25 1172480 ----a-w- c:\windows\system32\msxml3.dll
  162. 2012-06-04 04:32:08 152576 ----a-w- c:\windows\system32\schannel.dll
  163. 2012-06-02 13:19:44 22040 ----a-w- c:\windows\system32\wucltui.dll.mui
  164. 2012-06-02 13:19:38 219160 ----a-w- c:\windows\system32\wuaucpl.cpl
  165. 2012-06-02 13:19:38 15384 ----a-w- c:\windows\system32\wuaucpl.cpl.mui
  166. 2012-06-02 13:19:34 15384 ----a-w- c:\windows\system32\wuapi.dll.mui
  167. 2012-06-02 13:19:30 17944 ----a-w- c:\windows\system32\wuaueng.dll.mui
  168. .
  169. ============= FINISH: 21:59:38,68 ===============
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement