Advertisement
Guest User

My DDS Log

a guest
Jan 27th, 2011
75
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 16.27 KB | None | 0 0
  1. DDS (Ver_10-12-12.02) - NTFSx86
  2. Run by Cristian at 18:30:01.54 on Wed 01/26/2011
  3. Internet Explorer: 8.0.7600.16385
  4. Microsoft Windows 7 Home Premium 6.1.7600.0.1252.1.1033.18.2010.734 [GMT 1:00]
  5.  
  6. AV: AVG Internet Security 2011 *Enabled/Updated* {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}
  7. SP: AVG Internet Security 2011 *Enabled/Updated* {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}
  8. SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
  9. FW: AVG Firewall *Enabled* {621CC794-9486-F902-D092-0484E8EA828B}
  10.  
  11. ============== Running Processes ===============
  12.  
  13. C:\PROGRA~1\AVG\AVG10\avgchsvx.exe
  14. C:\Windows\system32\wininit.exe
  15. C:\Windows\system32\lsm.exe
  16. C:\Windows\system32\svchost.exe -k DcomLaunch
  17. C:\Windows\system32\svchost.exe -k RPCSS
  18. C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
  19. C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
  20. C:\Windows\system32\svchost.exe -k netsvcs
  21. C:\Windows\system32\svchost.exe -k LocalService
  22. C:\Windows\system32\svchost.exe -k NetworkService
  23. C:\Windows\system32\WLANExt.exe
  24. C:\Windows\system32\conhost.exe
  25. C:\Windows\System32\spoolsv.exe
  26. C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
  27. C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
  28. C:\Program Files\AVG\AVG10\avgfws.exe
  29. C:\Windows\system32\taskhost.exe
  30. C:\Windows\system32\Dwm.exe
  31. C:\Windows\Explorer.EXE
  32. C:\Windows\System32\igfxtray.exe
  33. C:\Windows\System32\igfxpers.exe
  34. C:\Program Files\AVG\AVG10\avgwdsvc.exe
  35. C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
  36. C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
  37. C:\Windows\system32\svchost.exe -k imgsvc
  38. C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe
  39. C:\Program Files\iTunes\iTunesHelper.exe
  40. C:\Program Files\Common Files\Java\Java Update\jusched.exe
  41. C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
  42. C:\Program Files\AVG\AVG10\avgam.exe
  43. C:\Program Files\AVG\AVG10\avgnsx.exe
  44. C:\Program Files\AVG\AVG10\avgemcx.exe
  45. C:\Windows\system32\conhost.exe
  46. C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
  47. C:\Program Files\AVG\AVG10\avgtray.exe
  48. C:\Program Files\Windows Live\Messenger\msnmsgr.exe
  49. C:\Program Files\iPod\bin\iPodService.exe
  50. C:\Windows\system32\SearchIndexer.exe
  51. C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
  52. C:\Windows\system32\WUDFHost.exe
  53. C:\Program Files\AVG\AVG10\avgcsrvx.exe
  54. C:\Program Files\uTorrent\uTorrent.exe
  55. C:\Program Files\Windows Sidebar\sidebar.exe
  56. C:\Program Files\Rainmeter\Rainmeter.exe
  57. C:\Program Files\Internet Explorer\iexplore.exe
  58. C:\Program Files\Internet Explorer\iexplore.exe
  59. C:\Program Files\Internet Explorer\iexplore.exe
  60. C:\Program Files\Windows Live\Contacts\wlcomm.exe
  61. C:\Program Files\AVG\AVG10\Identity Protection\agent\bin\avgidsmonitor.exe
  62. C:\Windows\system32\conhost.exe
  63. C:\Windows\system32\wuauclt.exe
  64. C:\Program Files\Common Files\Java\Java Update\jucheck.exe
  65. C:\Program Files\AVG\AVG10\avgscanx.exe
  66. C:\Windows\system32\conhost.exe
  67. C:\PROGRA~1\AVG\AVG10\avgrsx.exe
  68. C:\Program Files\AVG\AVG10\avgcsrvx.exe
  69. C:\Program Files\AVG\AVG10\avgscanx.exe
  70. C:\Windows\system32\conhost.exe
  71. C:\Program Files\AVG\AVG10\avgcsrvx.exe
  72. C:\Program Files\Google\Chrome\Application\chrome.exe
  73. C:\Program Files\Google\Chrome\Application\chrome.exe
  74. C:\Program Files\Google\Chrome\Application\chrome.exe
  75. C:\Program Files\Google\Chrome\Application\chrome.exe
  76. C:\Windows\system32\SearchProtocolHost.exe
  77. C:\Windows\System32\msiexec.exe
  78. C:\Windows\system32\msiexec.exe
  79. C:\Windows\system32\MsiExec.exe
  80. C:\Windows\system32\vssvc.exe
  81. C:\Windows\System32\svchost.exe -k swprv
  82. C:\Windows\system32\SearchFilterHost.exe
  83. C:\Users\Cristian\Downloads\dds.scr
  84. C:\Windows\system32\conhost.exe
  85. C:\Windows\system32\wbem\wmiprvse.exe
  86.  
  87. ============== Pseudo HJT Report ===============
  88.  
  89. uStart Page = hxxp://www.youtube.com/
  90. uURLSearchHooks: H - No File
  91. mURLSearchHooks: AVG Security Toolbar BHO: {a3bc75a2-1f87-4686-aa43-5347d756017c} - c:\program files\avg\avg10\toolbar\IEToolbar.dll
  92. mWinlogon: USERINIT=c:\windows\system32\userinit.exe
  93. BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
  94. BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg10\avgssie.dll
  95. BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
  96. BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SearchHelper.dll
  97. BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
  98. BHO: {97adfee5-037e-4eb7-bf16-9ee2745703c6} - No File
  99. BHO: AVG Security Toolbar BHO: {a3bc75a2-1f87-4686-aa43-5347d756017c} - c:\program files\avg\avg10\toolbar\IEToolbar.dll
  100. BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
  101. BHO: Windows Live Toolbar Helper: {e15a8dc0-8516-42a1-81ea-dc94ec1acf10} - c:\program files\windows live\toolbar\wltcore.dll
  102. TB: &Windows Live Toolbar: {21fa44ef-376d-4d53-9b0f-8a89d3229068} - c:\program files\windows live\toolbar\wltcore.dll
  103. TB: AVG Security Toolbar: {ccc7a320-b3ca-4199-b1a6-9f516dd69829} - c:\program files\avg\avg10\toolbar\IEToolbar.dll
  104. TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
  105. TB: {F878F381-4097-4759-99C1-D8CBA6654C02} - No File
  106. uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
  107. uRun: [uTorrent] "c:\program files\utorrent\uTorrent.exe"
  108. uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun
  109. mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
  110. mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
  111. mRun: [Persistence] c:\windows\system32\igfxpers.exe
  112. mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
  113. mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 10.0\reader\Reader_sl.exe"
  114. mRun: [AdobeAAMUpdater-1.0] "c:\program files\common files\adobe\oobe\pdapp\uwa\UpdaterStartupUtility.exe"
  115. mRun: [AdobeCS5ServiceManager] "c:\program files\common files\adobe\cs5servicemanager\CS5ServiceManager.exe" -launchedbylogin
  116. mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
  117. mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
  118. mRun: [SwitchBoard] c:\program files\common files\adobe\switchboard\SwitchBoard.exe
  119. mRun: [{F9AA8FE2-E89A-E99B-E8b8-E9AE9B9ABA99}] "c:\program files\cricket broadband connect\avqautorun.exe" "c:\program files\cricket broadband connect\mphonetools.exe" /OnPlug=%s
  120. mRun: [USBToolTip] c:\progra~1\pinnacle\shared~1\programs\usbtip\USBTip.exe
  121. mRun: [AVG_TRAY] c:\program files\avg\avg10\avgtray.exe
  122. uExplorerRun: [Policies] c:\windows\system32\install\Generator.exe
  123. StartupFolder: c:\users\cristian\appdata\roaming\microsoft\windows\start menu\programs\startup\mousedrivermgr.exe
  124. StartupFolder: c:\users\cristian\appdata\roaming\micros~1\windows\startm~1\programs\startup\rainme~1.lnk - c:\program files\rainmeter\Rainmeter.exe
  125. StartupFolder: c:\users\cristian\appdata\roaming\microsoft\windows\start menu\programs\startup\sskwlsrh.exe
  126. mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
  127. mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
  128. mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
  129. IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
  130. DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
  131. DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
  132. DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
  133. DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
  134. Handler: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - c:\program files\avg\avg10\toolbar\IEToolbar.dll
  135. Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg10\avgpp.dll
  136. Notify: igfxcui - igfxdev.dll
  137.  
  138. ================= FIREFOX ===================
  139.  
  140. FF - ProfilePath - c:\users\cristian\appdata\roaming\mozilla\firefox\profiles\papzt76x.default\
  141. FF - prefs.js: browser.startup.homepage - hxxp://www.youtube.com/
  142. FF - prefs.js: network.proxy.type - 0
  143. FF - plugin: c:\program files\google\update\1.2.183.39\npGoogleOneClick8.dll
  144. FF - plugin: c:\program files\ma-config.com\nphardwaredetection.dll
  145. FF - plugin: c:\program files\mozilla firefox\plugins\npdnu.dll
  146. FF - plugin: c:\program files\mozilla firefox\plugins\npdnupdater2.dll
  147. FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
  148. FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
  149. FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\DotNetAssistantExtension
  150. FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
  151. FF - Ext: Firebug: firebug@software.joehewitt.com - %profile%\extensions\firebug@software.joehewitt.com
  152.  
  153. ---- FIREFOX POLICIES ----
  154. FF - user.js: network.protocol-handler.warn-external.dnupdate - false);user_pref(network.protocol-handler.warn-external.dnupdate, false
  155. ============= SERVICES / DRIVERS ===============
  156.  
  157. R0 AVGIDSEH;AVGIDSEH;c:\windows\system32\drivers\AVGIDSEH.sys [2010-9-13 25680]
  158. R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [2010-9-7 26064]
  159. R1 Avgfwfd;AVG network filter service;c:\windows\system32\drivers\avgfwd6x.sys [2010-7-12 54112]
  160. R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [2010-12-8 251728]
  161. R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\drivers\avgmfx86.sys [2010-9-7 34384]
  162. R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [2010-11-12 299984]
  163. R3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\AVGIDSDriver.sys [2010-8-19 123472]
  164. R3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\drivers\AVGIDSFilter.sys [2010-8-19 30288]
  165. R3 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\AVGIDSShim.sys [2010-8-19 21072]
  166. R3 OA009Ufd;Creative Camera OA009 Upper Filter Driver;c:\windows\system32\drivers\OA009Ufd.sys [2009-3-6 133632]
  167. R3 OA009Vid;Creative Camera OA009 Function Driver;c:\windows\system32\drivers\OA009Vid.sys [2009-3-20 271552]
  168. R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\drivers\yk62x86.sys [2009-7-13 311296]
  169. S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
  170. S3 fssfltr;fssfltr;c:\windows\system32\drivers\fssfltr.sys [2010-7-6 54632]
  171. S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [2010-7-19 38224]
  172.  
  173. =============== Created Last 30 ================
  174.  
  175. 2011-01-26 17:29:53 388096 ----a-r- c:\users\cristian\appdata\roaming\microsoft\installer\{45a66726-69bc-466b-a7a4-12fcba4883d7}\HiJackThis.exe
  176. 2011-01-26 17:29:53 -------- d-----w- c:\program files\Trend Micro
  177. 2011-01-26 16:35:49 -------- d--h--w- C:\$AVG
  178. 2011-01-26 16:29:15 -------- d-----w- c:\users\cristian\appdata\roaming\AVG10
  179. 2011-01-26 16:26:57 -------- d--h--w- c:\progra~2\Common Files
  180. 2011-01-26 16:26:36 -------- d-----w- c:\progra~2\AVG Security Toolbar
  181. 2011-01-26 16:23:47 -------- d-----w- c:\windows\system32\drivers\AVG
  182. 2011-01-26 16:23:46 -------- d-----w- c:\progra~2\AVG10
  183. 2011-01-26 16:22:42 -------- d-----w- c:\program files\AVG
  184. 2011-01-26 16:15:10 -------- d-----w- c:\progra~2\MFAData
  185. 2011-01-26 15:22:11 -------- d-----w- c:\program files\common files\Software Update Utility
  186. 2011-01-26 10:22:26 -------- d--h--w- c:\program files\InstallJammer Registry
  187. 2011-01-26 10:10:47 2614272 ----a-w- c:\windows\explorer_edit_w7sbc.exe
  188. 2011-01-26 10:10:47 2131456 ----a-w- c:\windows\explorer.exe
  189. 2011-01-26 10:10:47 -------- d-----w- c:\windows\W7SBC
  190. 2011-01-26 10:10:46 2614272 ----a-w- c:\windows\explorer_backup_w7sbc.exe
  191. 2011-01-26 09:23:26 -------- d-----w- c:\users\cristian\appdata\roaming\Rainmeter
  192. 2011-01-26 09:21:24 -------- d-----w- c:\program files\Rainmeter
  193. 2011-01-25 06:53:32 5890896 ----a-w- c:\progra~2\microsoft\windows defender\definition updates\{2338cf1e-e841-4b04-ab01-6d47765c1258}\mpengine.dll
  194. 2011-01-22 16:38:24 148988 ----a-w- c:\users\cristian\appdata\roaming\microsoft\windows\start menu\programs\startup\mousedrivermgr.exe
  195. 2011-01-14 22:38:09 -------- d-----w- c:\users\cristian\appdata\roaming\updates
  196. 2011-01-14 22:37:54 -------- d-----w- c:\users\cristian\appdata\roaming\A8C7711B62AE316FFFA97BEB9D536470
  197. 2011-01-13 02:10:22 -------- d-----w- c:\users\cristian\appdata\roaming\Epimn
  198. 2011-01-12 12:54:58 293376 ----a-w- c:\windows\system32\browserchoice.exe
  199. 2011-01-11 12:59:33 4277016 ----a-w- c:\progra~2\microsoft\ehome\packages\mceclientux\updateablemarkup-7\markup.dll
  200. 2011-01-08 23:08:10 -------- d-----w- c:\users\cristian\appdata\roaming\Ceoc
  201. 2011-01-01 23:40:57 10440 ----a-w- c:\windows\system32\ptumwcit.dll
  202. 2011-01-01 23:40:57 -------- d-----w- c:\program files\PANTECH
  203. 2011-01-01 06:53:02 -------- d-----w- c:\users\cristian\appdata\local\Diagnostics
  204. 2011-01-01 00:37:19 4277016 ----a-w- c:\progra~2\microsoft\ehome\packages\mceclientux\updateablemarkup-4\markup.dll
  205. 2010-12-29 18:00:30 737072 ----a-w- c:\progra~2\microsoft\ehome\packages\sportsv2\sportstemplatecore-2\Microsoft.MediaCenter.Sports.UI.dll
  206. 2010-12-29 17:59:40 4277016 ----a-w- c:\progra~2\microsoft\ehome\packages\mceclientux\updateablemarkup-2\markup.dll
  207. 2010-12-29 17:59:19 42776 ----a-w- c:\progra~2\microsoft\ehome\packages\mceclientux\dsm-2\StartResources.dll
  208. 2010-12-29 17:58:03 257024 ----a-w- c:\windows\system32\msv1_0.dll
  209. 2010-12-28 22:26:51 737072 ----a-w- c:\progra~2\microsoft\ehome\packages\sportsv2\sportstemplatecore\Microsoft.MediaCenter.Sports.UI.dll
  210. 2010-12-28 22:26:17 4277016 ----a-w- c:\progra~2\microsoft\ehome\packages\mceclientux\updateablemarkup\markup.dll
  211. 2010-12-28 22:25:13 42776 ----a-w- c:\progra~2\microsoft\ehome\packages\mceclientux\dsm\StartResources.dll
  212. 2010-12-28 22:25:08 539968 ----a-w- c:\progra~2\microsoft\ehome\packages\mcespotlight\mcespotlight\SpotlightResources.dll
  213. 2010-12-28 17:13:43 -------- d-----w- c:\windows\system32\Wat
  214. 2010-12-28 17:12:59 5890896 ----a-w- c:\progra~2\microsoft\windows defender\definition updates\backup\mpengine.dll
  215. 2010-12-28 17:00:16 190976 ----a-w- c:\windows\system32\drivers\ks.sys
  216.  
  217. ==================== Find3M ====================
  218.  
  219. 2011-01-26 10:22:11 1490349 ----a-w- c:\windows\cursors\uninstall.exe
  220. 2010-12-21 00:07:09 0 ----a-w- c:\windows\system32\ConduitEngine.tmp
  221. 2010-11-14 21:00:03 63066 ----a-w- c:\users\cristian\appdata\roaming\Cristian3SQLite3.dll
  222. 2010-11-04 05:52:17 978944 ----a-w- c:\windows\system32\wininet.dll
  223. 2010-11-04 05:48:36 44544 ----a-w- c:\windows\system32\licmgr10.dll
  224. 2010-11-04 04:41:26 386048 ----a-w- c:\windows\system32\html.iec
  225. 2010-11-04 04:08:54 1638912 ----a-w- c:\windows\system32\mshtml.tlb
  226. 2010-11-02 04:41:36 442880 ----a-w- c:\windows\system32\XpsPrint.dll
  227. 2010-11-02 04:41:36 283648 ----a-w- c:\windows\system32\XpsGdiConverter.dll
  228. 2010-11-02 04:41:36 135168 ----a-w- c:\windows\system32\XpsRasterService.dll
  229. 2010-11-02 04:41:12 351232 ----a-w- c:\windows\system32\wmicmiplugin.dll
  230. 2010-11-02 04:40:36 496128 ----a-w- c:\windows\system32\taskschd.dll
  231. 2010-11-02 04:40:36 305152 ----a-w- c:\windows\system32\taskcomp.dll
  232. 2010-11-02 04:39:32 749056 ----a-w- c:\windows\system32\schedsvc.dll
  233. 2010-11-02 04:36:16 801792 ----a-w- c:\windows\system32\FntCache.dll
  234. 2010-11-02 04:35:51 1074176 ----a-w- c:\windows\system32\DWrite.dll
  235. 2010-11-02 04:35:35 1170944 ----a-w- c:\windows\system32\d3d10warp.dll
  236. 2010-11-02 04:35:34 739840 ----a-w- c:\windows\system32\d2d1.dll
  237. 2010-11-02 04:35:34 218624 ----a-w- c:\windows\system32\d3d10_1core.dll
  238. 2010-11-02 04:35:34 161792 ----a-w- c:\windows\system32\d3d10_1.dll
  239. 2010-11-02 04:34:44 192000 ----a-w- c:\windows\system32\taskeng.exe
  240. 2010-11-02 04:34:33 179712 ----a-w- c:\windows\system32\schtasks.exe
  241. 2010-11-02 04:23:44 107520 ----a-w- c:\windows\system32\cdd.dll
  242.  
  243. ============= FINISH: 18:31:25.38 ===============
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement