Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- DDS (Ver_10-12-12.02) - NTFSx86
- Run by Cristian at 18:30:01.54 on Wed 01/26/2011
- Internet Explorer: 8.0.7600.16385
- Microsoft Windows 7 Home Premium 6.1.7600.0.1252.1.1033.18.2010.734 [GMT 1:00]
- AV: AVG Internet Security 2011 *Enabled/Updated* {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}
- SP: AVG Internet Security 2011 *Enabled/Updated* {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}
- SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
- FW: AVG Firewall *Enabled* {621CC794-9486-F902-D092-0484E8EA828B}
- ============== Running Processes ===============
- C:\PROGRA~1\AVG\AVG10\avgchsvx.exe
- C:\Windows\system32\wininit.exe
- C:\Windows\system32\lsm.exe
- C:\Windows\system32\svchost.exe -k DcomLaunch
- C:\Windows\system32\svchost.exe -k RPCSS
- C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
- C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
- C:\Windows\system32\svchost.exe -k netsvcs
- C:\Windows\system32\svchost.exe -k LocalService
- C:\Windows\system32\svchost.exe -k NetworkService
- C:\Windows\system32\WLANExt.exe
- C:\Windows\system32\conhost.exe
- C:\Windows\System32\spoolsv.exe
- C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
- C:\Program Files\AVG\AVG10\avgfws.exe
- C:\Windows\system32\taskhost.exe
- C:\Windows\system32\Dwm.exe
- C:\Windows\Explorer.EXE
- C:\Windows\System32\igfxtray.exe
- C:\Windows\System32\igfxpers.exe
- C:\Program Files\AVG\AVG10\avgwdsvc.exe
- C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
- C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
- C:\Windows\system32\svchost.exe -k imgsvc
- C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe
- C:\Program Files\iTunes\iTunesHelper.exe
- C:\Program Files\Common Files\Java\Java Update\jusched.exe
- C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe
- C:\Program Files\AVG\AVG10\avgam.exe
- C:\Program Files\AVG\AVG10\avgnsx.exe
- C:\Program Files\AVG\AVG10\avgemcx.exe
- C:\Windows\system32\conhost.exe
- C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
- C:\Program Files\AVG\AVG10\avgtray.exe
- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
- C:\Program Files\iPod\bin\iPodService.exe
- C:\Windows\system32\SearchIndexer.exe
- C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
- C:\Windows\system32\WUDFHost.exe
- C:\Program Files\AVG\AVG10\avgcsrvx.exe
- C:\Program Files\uTorrent\uTorrent.exe
- C:\Program Files\Windows Sidebar\sidebar.exe
- C:\Program Files\Rainmeter\Rainmeter.exe
- C:\Program Files\Internet Explorer\iexplore.exe
- C:\Program Files\Internet Explorer\iexplore.exe
- C:\Program Files\Internet Explorer\iexplore.exe
- C:\Program Files\Windows Live\Contacts\wlcomm.exe
- C:\Program Files\AVG\AVG10\Identity Protection\agent\bin\avgidsmonitor.exe
- C:\Windows\system32\conhost.exe
- C:\Windows\system32\wuauclt.exe
- C:\Program Files\Common Files\Java\Java Update\jucheck.exe
- C:\Program Files\AVG\AVG10\avgscanx.exe
- C:\Windows\system32\conhost.exe
- C:\PROGRA~1\AVG\AVG10\avgrsx.exe
- C:\Program Files\AVG\AVG10\avgcsrvx.exe
- C:\Program Files\AVG\AVG10\avgscanx.exe
- C:\Windows\system32\conhost.exe
- C:\Program Files\AVG\AVG10\avgcsrvx.exe
- C:\Program Files\Google\Chrome\Application\chrome.exe
- C:\Program Files\Google\Chrome\Application\chrome.exe
- C:\Program Files\Google\Chrome\Application\chrome.exe
- C:\Program Files\Google\Chrome\Application\chrome.exe
- C:\Windows\system32\SearchProtocolHost.exe
- C:\Windows\System32\msiexec.exe
- C:\Windows\system32\msiexec.exe
- C:\Windows\system32\MsiExec.exe
- C:\Windows\system32\vssvc.exe
- C:\Windows\System32\svchost.exe -k swprv
- C:\Windows\system32\SearchFilterHost.exe
- C:\Users\Cristian\Downloads\dds.scr
- C:\Windows\system32\conhost.exe
- C:\Windows\system32\wbem\wmiprvse.exe
- ============== Pseudo HJT Report ===============
- uStart Page = hxxp://www.youtube.com/
- uURLSearchHooks: H - No File
- mURLSearchHooks: AVG Security Toolbar BHO: {a3bc75a2-1f87-4686-aa43-5347d756017c} - c:\program files\avg\avg10\toolbar\IEToolbar.dll
- mWinlogon: USERINIT=c:\windows\system32\userinit.exe
- BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
- BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg10\avgssie.dll
- BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
- BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SearchHelper.dll
- BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
- BHO: {97adfee5-037e-4eb7-bf16-9ee2745703c6} - No File
- BHO: AVG Security Toolbar BHO: {a3bc75a2-1f87-4686-aa43-5347d756017c} - c:\program files\avg\avg10\toolbar\IEToolbar.dll
- BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
- BHO: Windows Live Toolbar Helper: {e15a8dc0-8516-42a1-81ea-dc94ec1acf10} - c:\program files\windows live\toolbar\wltcore.dll
- TB: &Windows Live Toolbar: {21fa44ef-376d-4d53-9b0f-8a89d3229068} - c:\program files\windows live\toolbar\wltcore.dll
- TB: AVG Security Toolbar: {ccc7a320-b3ca-4199-b1a6-9f516dd69829} - c:\program files\avg\avg10\toolbar\IEToolbar.dll
- TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
- TB: {F878F381-4097-4759-99C1-D8CBA6654C02} - No File
- uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
- uRun: [uTorrent] "c:\program files\utorrent\uTorrent.exe"
- uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun
- mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
- mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
- mRun: [Persistence] c:\windows\system32\igfxpers.exe
- mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
- mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 10.0\reader\Reader_sl.exe"
- mRun: [AdobeAAMUpdater-1.0] "c:\program files\common files\adobe\oobe\pdapp\uwa\UpdaterStartupUtility.exe"
- mRun: [AdobeCS5ServiceManager] "c:\program files\common files\adobe\cs5servicemanager\CS5ServiceManager.exe" -launchedbylogin
- mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
- mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
- mRun: [SwitchBoard] c:\program files\common files\adobe\switchboard\SwitchBoard.exe
- mRun: [{F9AA8FE2-E89A-E99B-E8b8-E9AE9B9ABA99}] "c:\program files\cricket broadband connect\avqautorun.exe" "c:\program files\cricket broadband connect\mphonetools.exe" /OnPlug=%s
- mRun: [USBToolTip] c:\progra~1\pinnacle\shared~1\programs\usbtip\USBTip.exe
- mRun: [AVG_TRAY] c:\program files\avg\avg10\avgtray.exe
- uExplorerRun: [Policies] c:\windows\system32\install\Generator.exe
- StartupFolder: c:\users\cristian\appdata\roaming\microsoft\windows\start menu\programs\startup\mousedrivermgr.exe
- StartupFolder: c:\users\cristian\appdata\roaming\micros~1\windows\startm~1\programs\startup\rainme~1.lnk - c:\program files\rainmeter\Rainmeter.exe
- StartupFolder: c:\users\cristian\appdata\roaming\microsoft\windows\start menu\programs\startup\sskwlsrh.exe
- mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
- mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
- mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
- IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
- DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
- DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
- DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
- DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
- Handler: avgsecuritytoolbar - {F2DDE6B2-9684-4A55-86D4-E255E237B77C} - c:\program files\avg\avg10\toolbar\IEToolbar.dll
- Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg10\avgpp.dll
- Notify: igfxcui - igfxdev.dll
- ================= FIREFOX ===================
- FF - ProfilePath - c:\users\cristian\appdata\roaming\mozilla\firefox\profiles\papzt76x.default\
- FF - prefs.js: browser.startup.homepage - hxxp://www.youtube.com/
- FF - prefs.js: network.proxy.type - 0
- FF - plugin: c:\program files\google\update\1.2.183.39\npGoogleOneClick8.dll
- FF - plugin: c:\program files\ma-config.com\nphardwaredetection.dll
- FF - plugin: c:\program files\mozilla firefox\plugins\npdnu.dll
- FF - plugin: c:\program files\mozilla firefox\plugins\npdnupdater2.dll
- FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
- FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
- FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\DotNetAssistantExtension
- FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
- FF - Ext: Firebug: firebug@software.joehewitt.com - %profile%\extensions\firebug@software.joehewitt.com
- ---- FIREFOX POLICIES ----
- FF - user.js: network.protocol-handler.warn-external.dnupdate - false);user_pref(network.protocol-handler.warn-external.dnupdate, false
- ============= SERVICES / DRIVERS ===============
- R0 AVGIDSEH;AVGIDSEH;c:\windows\system32\drivers\AVGIDSEH.sys [2010-9-13 25680]
- R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [2010-9-7 26064]
- R1 Avgfwfd;AVG network filter service;c:\windows\system32\drivers\avgfwd6x.sys [2010-7-12 54112]
- R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [2010-12-8 251728]
- R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\drivers\avgmfx86.sys [2010-9-7 34384]
- R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [2010-11-12 299984]
- R3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\AVGIDSDriver.sys [2010-8-19 123472]
- R3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\drivers\AVGIDSFilter.sys [2010-8-19 30288]
- R3 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\AVGIDSShim.sys [2010-8-19 21072]
- R3 OA009Ufd;Creative Camera OA009 Upper Filter Driver;c:\windows\system32\drivers\OA009Ufd.sys [2009-3-6 133632]
- R3 OA009Vid;Creative Camera OA009 Function Driver;c:\windows\system32\drivers\OA009Vid.sys [2009-3-20 271552]
- R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\drivers\yk62x86.sys [2009-7-13 311296]
- S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
- S3 fssfltr;fssfltr;c:\windows\system32\drivers\fssfltr.sys [2010-7-6 54632]
- S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [2010-7-19 38224]
- =============== Created Last 30 ================
- 2011-01-26 17:29:53 388096 ----a-r- c:\users\cristian\appdata\roaming\microsoft\installer\{45a66726-69bc-466b-a7a4-12fcba4883d7}\HiJackThis.exe
- 2011-01-26 17:29:53 -------- d-----w- c:\program files\Trend Micro
- 2011-01-26 16:35:49 -------- d--h--w- C:\$AVG
- 2011-01-26 16:29:15 -------- d-----w- c:\users\cristian\appdata\roaming\AVG10
- 2011-01-26 16:26:57 -------- d--h--w- c:\progra~2\Common Files
- 2011-01-26 16:26:36 -------- d-----w- c:\progra~2\AVG Security Toolbar
- 2011-01-26 16:23:47 -------- d-----w- c:\windows\system32\drivers\AVG
- 2011-01-26 16:23:46 -------- d-----w- c:\progra~2\AVG10
- 2011-01-26 16:22:42 -------- d-----w- c:\program files\AVG
- 2011-01-26 16:15:10 -------- d-----w- c:\progra~2\MFAData
- 2011-01-26 15:22:11 -------- d-----w- c:\program files\common files\Software Update Utility
- 2011-01-26 10:22:26 -------- d--h--w- c:\program files\InstallJammer Registry
- 2011-01-26 10:10:47 2614272 ----a-w- c:\windows\explorer_edit_w7sbc.exe
- 2011-01-26 10:10:47 2131456 ----a-w- c:\windows\explorer.exe
- 2011-01-26 10:10:47 -------- d-----w- c:\windows\W7SBC
- 2011-01-26 10:10:46 2614272 ----a-w- c:\windows\explorer_backup_w7sbc.exe
- 2011-01-26 09:23:26 -------- d-----w- c:\users\cristian\appdata\roaming\Rainmeter
- 2011-01-26 09:21:24 -------- d-----w- c:\program files\Rainmeter
- 2011-01-25 06:53:32 5890896 ----a-w- c:\progra~2\microsoft\windows defender\definition updates\{2338cf1e-e841-4b04-ab01-6d47765c1258}\mpengine.dll
- 2011-01-22 16:38:24 148988 ----a-w- c:\users\cristian\appdata\roaming\microsoft\windows\start menu\programs\startup\mousedrivermgr.exe
- 2011-01-14 22:38:09 -------- d-----w- c:\users\cristian\appdata\roaming\updates
- 2011-01-14 22:37:54 -------- d-----w- c:\users\cristian\appdata\roaming\A8C7711B62AE316FFFA97BEB9D536470
- 2011-01-13 02:10:22 -------- d-----w- c:\users\cristian\appdata\roaming\Epimn
- 2011-01-12 12:54:58 293376 ----a-w- c:\windows\system32\browserchoice.exe
- 2011-01-11 12:59:33 4277016 ----a-w- c:\progra~2\microsoft\ehome\packages\mceclientux\updateablemarkup-7\markup.dll
- 2011-01-08 23:08:10 -------- d-----w- c:\users\cristian\appdata\roaming\Ceoc
- 2011-01-01 23:40:57 10440 ----a-w- c:\windows\system32\ptumwcit.dll
- 2011-01-01 23:40:57 -------- d-----w- c:\program files\PANTECH
- 2011-01-01 06:53:02 -------- d-----w- c:\users\cristian\appdata\local\Diagnostics
- 2011-01-01 00:37:19 4277016 ----a-w- c:\progra~2\microsoft\ehome\packages\mceclientux\updateablemarkup-4\markup.dll
- 2010-12-29 18:00:30 737072 ----a-w- c:\progra~2\microsoft\ehome\packages\sportsv2\sportstemplatecore-2\Microsoft.MediaCenter.Sports.UI.dll
- 2010-12-29 17:59:40 4277016 ----a-w- c:\progra~2\microsoft\ehome\packages\mceclientux\updateablemarkup-2\markup.dll
- 2010-12-29 17:59:19 42776 ----a-w- c:\progra~2\microsoft\ehome\packages\mceclientux\dsm-2\StartResources.dll
- 2010-12-29 17:58:03 257024 ----a-w- c:\windows\system32\msv1_0.dll
- 2010-12-28 22:26:51 737072 ----a-w- c:\progra~2\microsoft\ehome\packages\sportsv2\sportstemplatecore\Microsoft.MediaCenter.Sports.UI.dll
- 2010-12-28 22:26:17 4277016 ----a-w- c:\progra~2\microsoft\ehome\packages\mceclientux\updateablemarkup\markup.dll
- 2010-12-28 22:25:13 42776 ----a-w- c:\progra~2\microsoft\ehome\packages\mceclientux\dsm\StartResources.dll
- 2010-12-28 22:25:08 539968 ----a-w- c:\progra~2\microsoft\ehome\packages\mcespotlight\mcespotlight\SpotlightResources.dll
- 2010-12-28 17:13:43 -------- d-----w- c:\windows\system32\Wat
- 2010-12-28 17:12:59 5890896 ----a-w- c:\progra~2\microsoft\windows defender\definition updates\backup\mpengine.dll
- 2010-12-28 17:00:16 190976 ----a-w- c:\windows\system32\drivers\ks.sys
- ==================== Find3M ====================
- 2011-01-26 10:22:11 1490349 ----a-w- c:\windows\cursors\uninstall.exe
- 2010-12-21 00:07:09 0 ----a-w- c:\windows\system32\ConduitEngine.tmp
- 2010-11-14 21:00:03 63066 ----a-w- c:\users\cristian\appdata\roaming\Cristian3SQLite3.dll
- 2010-11-04 05:52:17 978944 ----a-w- c:\windows\system32\wininet.dll
- 2010-11-04 05:48:36 44544 ----a-w- c:\windows\system32\licmgr10.dll
- 2010-11-04 04:41:26 386048 ----a-w- c:\windows\system32\html.iec
- 2010-11-04 04:08:54 1638912 ----a-w- c:\windows\system32\mshtml.tlb
- 2010-11-02 04:41:36 442880 ----a-w- c:\windows\system32\XpsPrint.dll
- 2010-11-02 04:41:36 283648 ----a-w- c:\windows\system32\XpsGdiConverter.dll
- 2010-11-02 04:41:36 135168 ----a-w- c:\windows\system32\XpsRasterService.dll
- 2010-11-02 04:41:12 351232 ----a-w- c:\windows\system32\wmicmiplugin.dll
- 2010-11-02 04:40:36 496128 ----a-w- c:\windows\system32\taskschd.dll
- 2010-11-02 04:40:36 305152 ----a-w- c:\windows\system32\taskcomp.dll
- 2010-11-02 04:39:32 749056 ----a-w- c:\windows\system32\schedsvc.dll
- 2010-11-02 04:36:16 801792 ----a-w- c:\windows\system32\FntCache.dll
- 2010-11-02 04:35:51 1074176 ----a-w- c:\windows\system32\DWrite.dll
- 2010-11-02 04:35:35 1170944 ----a-w- c:\windows\system32\d3d10warp.dll
- 2010-11-02 04:35:34 739840 ----a-w- c:\windows\system32\d2d1.dll
- 2010-11-02 04:35:34 218624 ----a-w- c:\windows\system32\d3d10_1core.dll
- 2010-11-02 04:35:34 161792 ----a-w- c:\windows\system32\d3d10_1.dll
- 2010-11-02 04:34:44 192000 ----a-w- c:\windows\system32\taskeng.exe
- 2010-11-02 04:34:33 179712 ----a-w- c:\windows\system32\schtasks.exe
- 2010-11-02 04:23:44 107520 ----a-w- c:\windows\system32\cdd.dll
- ============= FINISH: 18:31:25.38 ===============
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement