Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- DDS (Ver_2012-11-20.01) - NTFS_x86
- Internet Explorer: 8.0.7600.16912 BrowserJavaVersion: 10.11.2
- Run by Ognjen at 0:05:43 on 2013-01-21
- Microsoft Windows 7 Ultimate 6.1.7600.0.1252.1.1033.18.3036.1677 [GMT 1:00]
- .
- AV: Avira Desktop *Enabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
- SP: Avira Desktop *Enabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
- SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
- .
- ============== Running Processes ================
- .
- C:\Windows\system32\wininit.exe
- C:\Windows\system32\lsm.exe
- C:\Windows\system32\atiesrxx.exe
- C:\Windows\system32\AUDIODG.EXE
- C:\Windows\system32\Hpservice.exe
- C:\Windows\system32\atieclxx.exe
- C:\Windows\System32\spoolsv.exe
- C:\Program Files\Avira\AntiVir Desktop\sched.exe
- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
- C:\Windows\system32\AEADISRV.EXE
- C:\Program Files\Avira\AntiVir Desktop\avguard.exe
- C:\Windows\system32\WinFLService.exe
- C:\Program Files\Common Files\LightScribe\LSSrvc.exe
- C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
- C:\Program Files\Microsoft LifeCam\MSCamS32.exe
- C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
- C:\Program Files\PDF Architect\HelperService.exe
- C:\Program Files\PDF Architect\ConversionService.exe
- C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe
- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
- C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
- C:\Windows\system32\taskhost.exe
- C:\Windows\system32\Dwm.exe
- C:\Windows\Explorer.EXE
- C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
- C:\Windows\system32\conhost.exe
- C:\Windows\system32\WUDFHost.exe
- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
- C:\Program Files\Analog Devices\Core\smax4pnp.exe
- C:\Windows\PixArt\PAC207\Monitor.exe
- C:\Windows\vVX1000.exe
- C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
- C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
- C:\Program Files\Common Files\Java\Java Update\jusched.exe
- C:\Users\Ognjen\AppData\Roaming\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe
- C:\Program Files\Windows Live\Messenger\msnmsgr.exe
- C:\Program Files\Windows Sidebar\sidebar.exe
- C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
- C:\Windows\System32\WinFLTray.exe
- C:\Program Files\NewSoftware's\Folder Lock\FLComServCtrl.exe
- C:\Program Files\NewSoftware's\Folder Lock\FLComServ.exe
- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
- C:\Windows\system32\SearchIndexer.exe
- C:\Program Files\Windows Media Player\wmpnetwk.exe
- C:\Windows\system32\wbem\wmiprvse.exe
- C:\Windows\system32\DllHost.exe
- D:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
- C:\Program Files\Opera\opera.exe
- C:\Windows\notepad.exe
- C:\Users\Ognjen\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe
- C:\Windows\system32\taskeng.exe
- C:\Windows\system32\conhost.exe
- C:\Windows\system32\wbem\wmiprvse.exe
- C:\Windows\system32\svchost.exe -k DcomLaunch
- C:\Windows\system32\svchost.exe -k RPCSS
- C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
- C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
- C:\Windows\system32\svchost.exe -k netsvcs
- C:\Windows\system32\svchost.exe -k LocalService
- C:\Windows\system32\svchost.exe -k NetworkService
- C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
- C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
- C:\Windows\system32\svchost.exe -k imgsvc
- C:\Windows\system32\svchost.exe -k bthsvcs
- C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
- C:\Windows\System32\svchost.exe -k LocalServicePeerNet
- C:\Windows\System32\svchost.exe -k secsvcs
- .
- ============== Pseudo HJT Report ===============
- .
- uWindows: Load = c:\users\ognjen\locals~1\temp\msaaaw.exe
- BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
- BHO: PDF Architect Helper: {3A2D5EBA-F86D-4BD3-A177-019765996711} - c:\program files\pdf architect\PDFIEHelper.dll
- BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
- BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
- BHO: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
- BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
- TB: PDF Architect Toolbar: {25A3A431-30BB-47C8-AD6A-E1063801134F} - c:\program files\pdf architect\PDFIEPlugin.dll
- uRun: [Octoshape Streaming Services] "c:\users\ognjen\appdata\roaming\octoshape\octoshape streaming services\OctoshapeClient.exe" -inv:bootrun
- uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
- uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun
- uRun: [LightScribe Control Panel] c:\program files\common files\lightscribe\LightScribeControlPanel.exe -hidden
- uRun: [Google Update] "c:\users\ognjen\appdata\local\google\update\GoogleUpdate.exe" /c
- uRun: [DAEMON Tools Pro Agent] "c:\program files\daemon tools pro\DTAgent.exe" -autorun
- uRun: [WinFLTray] c:\windows\system32\WinFLTray.exe
- uRun: [FLBackup] c:\program files\newsoftware's\folder lock\FLComServCtrl.exe
- mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
- mRun: [SoundMAXPnP] c:\program files\analog devices\core\smax4pnp.exe
- mRun: [PAC207_Monitor] c:\windows\pixart\pac207\Monitor.exe
- mRun: [VX1000] c:\windows\vVX1000.exe
- mRun: [LifeCam] "c:\program files\microsoft lifecam\LifeExp.exe"
- mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
- mRun: [avgnt] "c:\program files\avira\antivir desktop\avgnt.exe" /min
- mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
- mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
- mPolicies-System: ConsentPromptBehaviorUser = dword:3
- mPolicies-System: EnableUIADesktopToggle = dword:0
- IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
- IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office11\EXCEL.EXE/3000
- IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
- IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
- DPF: {6E49B4EF-9FE5-44DF-8D04-445AA94F83DB} - hxxp://80.87.254.25/program/SonyNetworkCameraViewer.cab
- DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
- TCP: NameServer = 192.168.2.1
- TCP: Interfaces\{08925219-6817-4D7C-87C9-1E33957BE2FF} : DHCPNameServer = 192.168.2.1
- TCP: Interfaces\{08925219-6817-4D7C-87C9-1E33957BE2FF}\94A75647026416A7C696E6F6679636 : DHCPNameServer = 217.23.192.9 217.23.192.14
- TCP: Interfaces\{08925219-6817-4D7C-87C9-1E33957BE2FF}\D637A6 : DHCPNameServer = 192.168.1.1
- Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
- Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
- Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - c:\program files\windows live\photo gallery\AlbumDownloadProtocolHandler.dll
- SSODL: WebCheck - <orphaned>
- mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "c:\program files\common files\lightscribe\LSRunOnce.exe"
- mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\24.0.1312.52\installer\setup.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
- .
- ================= FIREFOX ===================
- .
- FF - ProfilePath - c:\users\ognjen\appdata\roaming\mozilla\firefox\profiles\1lzxjxf9.default\
- FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
- FF - plugin: c:\program files\google\google earth\plugin\npgeplugin.dll
- FF - plugin: c:\program files\google\picasa3\npPicasa3.dll
- FF - plugin: c:\program files\google\update\1.3.21.123\npGoogleUpdate3.dll
- FF - plugin: c:\program files\k-lite codec pack\real\browser\plugins\nppl3260.dll
- FF - plugin: c:\program files\k-lite codec pack\real\browser\plugins\nprpjplug.dll
- FF - plugin: c:\program files\microsoft silverlight\4.1.10329.0\npctrlui.dll
- FF - plugin: c:\program files\nokia\nokia suite\npNokiaSuiteEnabler.dll
- FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
- FF - plugin: c:\users\ognjen\appdata\local\google\update\1.3.21.123\npGoogleUpdate3.dll
- FF - plugin: c:\users\ognjen\appdata\roaming\mozilla\plugins\npgoogletalk.dll
- FF - plugin: c:\users\ognjen\appdata\roaming\mozilla\plugins\npgtpo3dautoplugin.dll
- FF - plugin: c:\users\ognjen\appdata\roaming\mozilla\plugins\npoctoshape.dll
- FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_5_502_135.dll
- FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_5_502_146.dll
- FF - ExtSQL: 2013-01-09 17:05; FFPDFArchitectConverter@pdfarchitect.com; c:\program files\pdf architect\FFPDFArchitectExt
- .
- ============= SERVICES / DRIVERS ===============
- .
- R1 avkmgr;avkmgr;c:\windows\system32\drivers\avkmgr.sys [2012-4-1 36000]
- R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\drivers\dtsoftbus01.sys [2012-2-19 242240]
- R1 WinFLAdrv;WinFLAdrv;c:\windows\system32\WinFLAdrv.sys [2012-4-16 29584]
- R2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2009-8-18 176128]
- R2 AntiVirSchedulerService;Avira Scheduler;c:\program files\avira\antivir desktop\sched.exe [2012-4-1 86224]
- R2 AntiVirService;Avira Realtime Protection;c:\program files\avira\antivir desktop\avguard.exe [2012-4-1 110032]
- R2 avgntflt;avgntflt;c:\windows\system32\drivers\avgntflt.sys [2012-4-1 83392]
- R2 FLService;FLService;c:\windows\system32\WinFLService.exe [2012-4-16 91736]
- R2 hpsrv;HP Service;c:\windows\system32\hpservice.exe [2010-2-26 26168]
- R2 NEWDRIVER;NEWDRIVER;c:\windows\system32\WinVDEdrv6.sys [2012-4-16 188176]
- R2 PDF Architect Helper Service;PDF Architect Helper Service;c:\program files\pdf architect\HelperService.exe [2012-11-22 1522312]
- R2 PDF Architect Service;PDF Architect Service;c:\program files\pdf architect\ConversionService.exe [2012-11-22 905864]
- R2 TeamViewer8;TeamViewer 8;c:\program files\teamviewer\version8\TeamViewer_Service.exe [2013-1-19 3467768]
- R2 WinVDEDrv;WinVDEDrv;c:\windows\system32\WinVDEdrv.sys [2012-4-16 228112]
- R3 BthMtpEnum;Bluetooth MTP Device Enumerator;c:\windows\system32\drivers\BthMtpEnum.sys [2009-7-14 51200]
- R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-4-15 21104]
- R3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [2013-1-20 40776]
- R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\drivers\yk62x86.sys [2009-9-28 315392]
- S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
- S2 MBAMService;MBAMService;d:\program files\malwarebytes' anti-malware\mbamservice.exe [2013-1-19 682344]
- S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2012-11-9 160944]
- S3 androidusb;SAMSUNG Android Composite ADB Interface Driver;c:\windows\system32\drivers\ssadadb.sys [2011-5-13 30312]
- S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
- S3 NMgamingmsFltr;USB Optical Mouse;c:\windows\system32\drivers\NMgamingms.sys [2009-7-24 9472]
- S3 PAC207;e-Messenger 112;c:\windows\system32\drivers\PFC027.SYS [2010-7-3 616064]
- S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\drivers\ssadbus.sys [2011-5-13 121064]
- S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\drivers\ssadmdfl.sys [2011-5-13 12776]
- S3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\drivers\ssadmdm.sys [2011-5-13 136808]
- S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM);c:\windows\system32\drivers\ssadserd.sys [2011-5-13 114280]
- S3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\wat\WatAdminSvc.exe [2010-3-6 1343400]
- .
- =============== Created Last 30 ================
- .
- 2013-01-20 22:58:41 40776 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
- 2013-01-20 22:56:57 -------- d-----w- c:\users\ognjen\appdata\local\{76FC371A-49F5-4833-BE6B-2D750F95AAEC}
- 2013-01-19 08:14:58 94112 ----a-w- c:\windows\system32\WindowsAccessBridge.dll
- 2013-01-18 16:03:07 -------- d-----w- C:\Temp
- 2013-01-09 16:08:31 -------- d-----w- c:\programdata\PDF Architect
- 2013-01-09 16:07:26 -------- d-----w- c:\users\ognjen\appdata\roaming\PDF Architect
- 2013-01-09 16:05:33 -------- d-----w- c:\users\ognjen\appdata\roaming\APP_NAME_NON_STRING
- 2013-01-09 16:05:15 -------- d-----w- c:\program files\PDF Architect
- 2013-01-09 16:04:49 -------- d-----w- c:\users\ognjen\appdata\roaming\pdfforge
- 2013-01-09 16:04:46 88576 ----a-w- c:\windows\system32\pdfcmon.dll
- 2013-01-09 16:04:45 23552 ----a-w- c:\windows\system32\MSMPIDE.DLL
- 2013-01-09 16:00:07 -------- d-----w- c:\users\ognjen\appdata\local\Programs
- 2013-01-07 19:46:05 -------- d-----w- c:\users\ognjen\appdata\local\{ACDAE3E9-C59C-4D1A-8DC8-027D5755F1A5}
- 2012-12-30 11:35:23 -------- d-----w- c:\users\ognjen\appdata\local\{F07F8414-7D10-4624-9EE6-C326588FD49E}
- 2012-12-23 10:01:40 -------- d-----w- c:\users\ognjen\appdata\local\{71C37C57-81F4-4281-B58E-57D611997000}
- 2012-12-22 10:33:36 -------- d-----w- c:\users\ognjen\appdata\local\{6BCD76FD-EE90-445A-AADB-46D370BDC08D}
- .
- ==================== Find3M ====================
- .
- 2013-01-08 21:18:38 74248 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
- 2013-01-08 21:18:38 697864 ----a-w- c:\windows\system32\FlashPlayerApp.exe
- 2012-12-14 15:49:28 21104 ----a-w- c:\windows\system32\drivers\mbam.sys
- .
- ============= FINISH: 0:06:24,38 ===============
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement