Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- .
- DDS (Ver_2011-08-26.01) - NTFSx86
- Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_31
- Run by SEMPRON 3000 at 21:58:44 on 2012-08-29
- Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.511.123 [GMT 2:00]
- .
- AV: ESET NOD32 Antivirus 4.2 *Enabled/Outdated* {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
- .
- ============== Running Processes ===============
- .
- C:\WINDOWS\system32\svchost -k DcomLaunch
- svchost.exe
- C:\WINDOWS\System32\svchost.exe -k netsvcs
- svchost.exe
- svchost.exe
- C:\WINDOWS\system32\spoolsv.exe
- svchost.exe
- C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
- svchost.exe
- C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
- C:\Program Files\Java\jre6\bin\jqs.exe
- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
- C:\WINDOWS\Explorer.EXE
- C:\WINDOWS\system32\nvsvc32.exe
- C:\WINDOWS\system32\svchost.exe -k imgsvc
- C:\WINDOWS\htpatch.exe
- C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
- C:\WINDOWS\system32\RunDll32.exe
- C:\Program Files\Vimicro Corporation\VMUVC\VMonitor.exe
- C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
- C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
- C:\Program Files\RALINK\Common\RaUI.exe
- C:\Program Files\Mozilla Firefox\firefox.exe
- C:\Program Files\Mozilla Firefox\plugin-container.exe
- .
- ============== Pseudo HJT Report ===============
- .
- uStart Page = hxxp://www.windowsxlive.net
- uURLSearchHooks: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} -
- mWinlogon: UIHost=vistaui.exe
- BHO: AcroIEHlprObj Class: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 6.0\reader\activex\AcroIEHelper.dll
- BHO: Java(tm) Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
- BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
- BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
- TB: StylerToolBar: {d2f8f919-690b-4ea2-9fa7-a203d1e04f75} - c:\program files\styler\tb\StylerTB.dll
- TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
- uRun: [Pando Media Booster] c:\program files\pando networks\media booster\PMB.exe
- uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
- uRun: [SUPERAntiSpyware] c:\program files\superantispyware\SUPERAntiSpyware.exe
- mRun: [HTpatch] c:\windows\htpatch.exe
- mRun: [SiSUSBRG] c:\windows\SiSUSBrg.exe
- mRun: [RemoteControl] "c:\program files\cyberlink\powerdvd\PDVDServ.exe"
- mRun: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
- mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 8.0\reader\Reader_sl.exe"
- mRun: [VMonitorVMUVC] "c:\program files\vimicro corporation\vmuvc\VMonitor.exe" VMUVC
- mRun: [Malwarebytes' Anti-Malware] "c:\program files\malwarebytes' anti-malware\mbamgui.exe" /starttray
- dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
- dRunOnce: [nltide_2] regsvr32 /s /n /i:U shell32
- StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\ralink~1.lnk - c:\program files\ralink\common\RaUI.exe
- IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
- IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
- IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
- IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office11\REFIEBAR.DLL
- DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
- DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1340705300968
- DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
- DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
- DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
- DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
- TCP: Interfaces\{EEA9D5F0-DC04-4CAF-BB0C-7EDC61861DBA} : NameServer = 10.5.0.100
- Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
- Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.DLL
- SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\wpdshserviceobj.dll
- SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
- Hosts: 127.0.0.1 www.spywareinfo.com
- .
- ================= FIREFOX ===================
- .
- FF - ProfilePath - c:\documents and settings\sempron 3000\application data\mozilla\firefox\profiles\8oyt4nrc.default\
- FF - prefs.js: browser.startup.homepage - www.google.rs
- FF - plugin: c:\documents and settings\sempron 3000\local settings\application data\unity\webplayer\loader\npUnity3D32.dll
- FF - plugin: c:\program files\java\jre6\bin\plugin2\npdeployJava1.dll
- FF - plugin: c:\program files\java\jre6\bin\plugin2\npjp2.dll
- FF - plugin: c:\program files\mozilla firefox\plugins\npdeployJava1.dll
- FF - plugin: c:\program files\pando networks\media booster\npPandoWebPlugin.dll
- .
- ============= SERVICES / DRIVERS ===============
- .
- R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [2010-7-29 115008]
- R1 epfwtdir;epfwtdir;c:\windows\system32\drivers\epfwtdir.sys [2010-8-3 95896]
- R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2011-7-22 12880]
- R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2011-7-12 67664]
- R2 !SASCORE;SAS Core Service;c:\program files\superantispyware\SASCore.exe [2011-8-12 116608]
- R2 ekrn;ESET Service;c:\program files\eset\eset nod32 antivirus\ekrn.exe [2010-11-4 810144]
- R2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2012-8-28 655944]
- R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-8-28 22344]
- S2 WCMVCAM;WebcamMax, WDM Video Capture;c:\windows\system32\drivers\wcmvcam.sys [2011-6-23 1068216]
- S3 ManyCam;ManyCam Virtual Webcam, WDM Video Capture Driver;c:\windows\system32\drivers\ManyCam.sys [2008-1-14 21632]
- S3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\mozilla maintenance service\maintenanceservice.exe [2012-8-21 113120]
- S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\drivers\ssadbus.sys [2011-5-13 121064]
- S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\drivers\ssadmdfl.sys [2011-5-13 12776]
- S3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\drivers\ssadmdm.sys [2011-5-13 136808]
- S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM);c:\windows\system32\drivers\ssadserd.sys [2011-5-13 114280]
- S3 VMUVC;Vimicro Camera Service VMUVC;c:\windows\system32\drivers\VMUVC.sys [2012-8-8 252928]
- S3 vvftUVC;Vimicro Camera Filter Service VMUVC;c:\windows\system32\drivers\vvftUVC.sys [2012-8-8 399360]
- .
- =============== Created Last 30 ================
- .
- 2012-08-28 23:07:37 -------- d-----w- c:\documents and settings\sempron 3000\application data\SUPERAntiSpyware.com
- 2012-08-28 23:06:42 -------- d-----w- c:\program files\SUPERAntiSpyware
- 2012-08-28 23:06:42 -------- d-----w- c:\documents and settings\all users\application data\SUPERAntiSpyware.com
- 2012-08-28 19:15:49 -------- d-----w- c:\documents and settings\sempron 3000\application data\Malwarebytes
- 2012-08-28 19:15:36 -------- d-----w- c:\documents and settings\all users\application data\Malwarebytes
- 2012-08-28 19:15:35 22344 ----a-w- c:\windows\system32\drivers\mbam.sys
- 2012-08-28 19:15:34 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
- 2012-08-28 18:50:19 -------- d-----w- c:\program files\CCleaner
- 2012-08-18 16:07:41 133376 ----a-w- c:\program files\mozilla firefox\plugins\nppdf32.dll
- 2012-08-18 16:07:40 476904 ----a-w- c:\program files\mozilla firefox\plugins\npdeployJava1.dll
- 2012-08-18 16:07:40 13888 ----a-w- c:\program files\mozilla firefox\plugins\NPOFFICE.DLL
- 2012-08-15 15:38:48 55296 ----a-w- c:\windows\system32\SET4028.tmp
- 2012-08-15 15:38:47 105984 ----a-w- c:\windows\system32\SET4023.tmp
- 2012-08-15 15:38:44 916992 ----a-w- c:\windows\system32\SET4021.tmp
- 2012-08-15 15:38:44 25600 ----a-w- c:\windows\system32\SET402B.tmp
- 2012-08-15 15:38:43 629760 ----a-w- c:\windows\system32\SET4029.tmp
- 2012-08-15 15:38:41 2000384 ----a-w- c:\windows\system32\SET402D.tmp
- 2012-08-15 15:38:39 1212416 ----a-w- c:\windows\system32\SET4022.tmp
- 2012-08-15 15:38:36 6008320 ----a-w- c:\windows\system32\SET4027.tmp
- 2012-08-08 21:19:57 -------- d-----w- c:\windows\VMUVC
- 2012-08-08 21:19:43 94208 ----a-w- c:\windows\system32\VvFtCtrl.dll
- 2012-08-08 21:19:43 73728 ----a-w- c:\windows\system32\exvmuvc.ax
- 2012-08-08 21:19:43 516096 ----a-w- c:\windows\system32\VMUVC.ax
- 2012-08-08 21:19:43 252928 ----a-w- c:\windows\system32\drivers\VMUVC.sys
- 2012-08-08 21:19:43 188416 ----a-w- c:\windows\system32\vvftUVC.ax
- 2012-08-08 21:19:42 98304 ----a-w- c:\windows\system32\VMCtrl.ax
- 2012-08-08 21:19:42 399360 ----a-w- c:\windows\system32\drivers\vvftUVC.sys
- 2012-08-08 21:19:42 11776 ----a-w- c:\windows\system32\VMUVC.dll
- 2012-08-08 21:19:39 319456 ----a-w- c:\windows\system32\DIFxAPI.dll
- 2012-08-08 21:19:25 -------- d-----w- c:\program files\Vimicro Corporation
- 2012-08-08 13:37:04 60032 -c--a-w- c:\windows\system32\dllcache\usbaudio.sys
- 2012-08-08 13:37:04 60032 ----a-w- c:\windows\system32\drivers\USBAUDIO.sys
- 2012-08-08 13:26:48 20992 ----a-w- c:\windows\system32\dshowext.ax
- 2012-08-08 13:26:48 121984 -c--a-w- c:\windows\system32\dllcache\usbvideo.sys
- 2012-08-08 13:26:48 121984 ----a-w- c:\windows\system32\drivers\usbvideo.sys
- 2012-08-08 13:26:31 32128 -c--a-w- c:\windows\system32\dllcache\usbccgp.sys
- 2012-08-08 13:26:31 32128 ----a-w- c:\windows\system32\drivers\usbccgp.sys
- .
- ==================== Find3M ====================
- .
- 2012-07-06 13:58:51 78336 ----a-w- c:\windows\system32\browser.dll
- 2012-07-04 14:05:18 139784 ----a-w- c:\windows\system32\drivers\rdpwd.sys
- 2012-07-03 13:40:15 1866112 ----a-w- c:\windows\system32\win32k.sys
- 2012-07-03 12:30:49 21419 ----a-w- c:\windows\system32\drivers\AegisP.sys
- 2012-07-02 21:19:34 11111424 ----a-w- c:\windows\system32\SET402F.tmp
- 2012-07-02 17:49:33 916992 ----a-w- c:\windows\system32\wininet.dll
- 2012-07-02 17:49:32 43520 ----a-w- c:\windows\system32\licmgr10.dll
- 2012-07-02 17:49:32 1469440 ------w- c:\windows\system32\inetcpl.cpl
- 2012-07-02 12:05:43 385024 ----a-w- c:\windows\system32\html.iec
- 2012-06-26 11:03:07 3796065 ----a-w- c:\documents and settings\all users\application data\sbsdwin95req.exe
- 2012-06-06 23:54:06 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
- 2012-06-05 15:50:25 1372672 ----a-w- c:\windows\system32\msxml6.dll
- 2012-06-05 15:50:25 1172480 ----a-w- c:\windows\system32\msxml3.dll
- 2012-06-04 04:32:08 152576 ----a-w- c:\windows\system32\schannel.dll
- 2012-06-02 13:19:44 22040 ----a-w- c:\windows\system32\wucltui.dll.mui
- 2012-06-02 13:19:38 219160 ----a-w- c:\windows\system32\wuaucpl.cpl
- 2012-06-02 13:19:38 15384 ----a-w- c:\windows\system32\wuaucpl.cpl.mui
- 2012-06-02 13:19:34 15384 ----a-w- c:\windows\system32\wuapi.dll.mui
- 2012-06-02 13:19:30 17944 ----a-w- c:\windows\system32\wuaueng.dll.mui
- .
- ============= FINISH: 21:59:38,68 ===============
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement