Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- .
- DDS (Ver_2011-08-26.01) - NTFSx86
- Internet Explorer: 6.0.2900.5512 BrowserJavaVersion: 1.6.0_27
- Run by mzhang at 10:43:40 on 2011-12-13
- Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.3536.2278 [GMT -6:00]
- .
- AV: Microsoft Security Essentials *Enabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095}
- .
- ============== Running Processes ===============
- .
- E:\WINDOWS\system32\svchost -k DcomLaunch
- svchost.exe
- E:\WINDOWS\system32\svchost.exe -k netsvcs
- svchost.exe
- svchost.exe
- E:\WINDOWS\system32\spoolsv.exe
- E:\WINDOWS\system32\svchost.exe -k imgsvc
- E:\WINDOWS\Explorer.EXE
- E:\Program Files\Steam\Steam.exe
- E:\Program Files\Mozilla Firefox\firefox.exe
- E:\Program Files\Mozilla Firefox\plugin-container.exe
- E:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
- E:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
- E:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
- E:\Program Files\Mozilla Firefox\plugin-container.exe
- E:\Program Files\Mozilla Firefox\plugin-container.exe
- E:\Program Files\Mozilla Firefox\plugin-container.exe
- E:\Program Files\Mozilla Firefox\plugin-container.exe
- E:\Documents and Settings\mzhang\My Documents\Downloads\HijackThis.exe
- E:\WINDOWS\system32\NOTEPAD.EXE
- E:\WINDOWS\System32\ping.exe
- .
- ============== Pseudo HJT Report ===============
- .
- uInternet Connection Wizard,ShellNext = iexplore
- uInternet Settings,ProxyOverride = *.local
- BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - e:\program files\java\jre6\bin\jp2ssv.dll
- BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - e:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
- mRun: [MSConfig] e:\windows\pchealth\helpctr\binaries\MSConfig.exe /auto
- mRun: [Malwarebytes' Anti-Malware] "e:\program files\malwarebytes' anti-malware\mbamgui.exe" /starttray
- dRun: [DWQueuedReporting] "e:\progra~1\common~1\micros~1\dw\dwtrig20.exe" -t
- dRunOnce: [RunNarrator] Narrator.exe
- IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
- IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - e:\program files\messenger\msmsgs.exe
- LSP: mswsock.dll
- DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab
- DPF: {CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab
- DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab
- TCP: DhcpNameServer = 192.168.0.1
- TCP: Interfaces\{25BF440A-7864-42C9-8731-B8FDFE1B8F56} : DhcpNameServer = 192.168.0.1
- Notify: igfxcui - igfxdev.dll
- Notify: TPSvc - TPSvc.dll
- .
- ================= FIREFOX ===================
- .
- FF - ProfilePath - e:\documents and settings\mzhang\application data\mozilla\firefox\profiles\hogsfjmq.default\
- FF - plugin: e:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
- .
- ============= SERVICES / DRIVERS ===============
- .
- R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;e:\windows\system32\drivers\dtsoftbus01.sys [2011-7-5 218688]
- R1 MpFilter;Microsoft Malware Protection Driver;e:\windows\system32\drivers\MpFilter.sys [2011-4-18 165648]
- R2 MBAMService;MBAMService;e:\program files\malwarebytes' anti-malware\mbamservice.exe [2011-12-11 366152]
- R3 AESTAud;AE Audio Service;e:\windows\system32\drivers\AESTAud.sys [2011-7-5 113664]
- R3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI Service;e:\windows\system32\drivers\IntcHdmi.sys [2011-7-6 116224]
- R3 MBAMProtector;MBAMProtector;e:\windows\system32\drivers\mbam.sys [2011-12-11 22216]
- R3 NETwNx32;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows XP 32 Bit;e:\windows\system32\drivers\NETwNx32.sys [2011-7-6 6650752]
- R4 MBAMSwissArmy;MBAMSwissArmy;e:\windows\system32\drivers\mbamswissarmy.sys [2011-12-13 41272]
- S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;e:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
- S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;e:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
- S4 mitsijm2012;Autodesk Moldflow Inventor Tool Suite Integration 2012 Job Manager;c:\inventor 2012\moldflow\bin\mitsijm.exe [2010-12-7 579384]
- .
- =============== Created Last 30 ================
- .
- 2011-12-13 13:48:01 41272 ----a-w- e:\windows\system32\drivers\mbamswissarmy.sys
- 2011-12-12 07:09:32 56200 ----a-w- e:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{32623316-decd-468a-9ab0-b6bd070cb64b}\offreg.dll
- 2011-12-11 14:05:19 6823496 ----a-w- e:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{32623316-decd-468a-9ab0-b6bd070cb64b}\mpengine.dll
- 2011-12-11 13:43:44 -------- d-----w- e:\program files\Microsoft Security Client
- 2011-12-11 11:49:12 22216 ----a-w- e:\windows\system32\drivers\mbam.sys
- 2011-12-11 11:49:11 -------- d-----w- e:\program files\Malwarebytes' Anti-Malware
- 2011-12-11 11:47:03 -------- d-----w- e:\documents and settings\mzhang\application data\Malwarebytes
- 2011-12-11 10:56:42 -------- d-----w- e:\documents and settings\all users\application data\Malwarebytes
- 2011-12-11 05:24:28 -------- dc--a-w- E:\.Trash-999
- 2011-11-23 15:50:26 -------- d-----w- e:\documents and settings\mzhang\application data\Ubisoft
- .
- ==================== Find3M ====================
- .
- 2011-11-15 20:29:56 222080 ------w- e:\windows\system32\MpSigStub.exe
- 2011-10-10 14:22:41 692736 ----a-w- e:\windows\system32\inetcomm.dll
- 2011-10-05 08:16:02 73728 ----a-w- e:\windows\system32\javacpl.cpl
- 2011-10-05 08:16:01 472808 ----a-w- e:\windows\system32\deployJava1.dll
- 2011-09-28 07:06:50 599040 ----a-w- e:\windows\system32\crypt32.dll
- 2011-09-26 17:41:20 611328 ----a-w- e:\windows\system32\uiautomationcore.dll
- 2011-09-26 17:41:20 220160 ----a-w- e:\windows\system32\oleacc.dll
- 2011-09-26 17:41:14 20480 ----a-w- e:\windows\system32\oleaccrc.dll
- .
- ============= FINISH: 10:44:08.95 ===============
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement