Advertisement
Guest User

DDS log

a guest
Dec 6th, 2011
110
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 32.74 KB | None | 0 0
  1. .
  2. DDS (Ver_2011-08-26.01) - NTFSx86 NETWORK
  3. Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 1.6.0_29
  4. Run by Administrator at 23:32:01 on 2011-12-05
  5. Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.1.1033.18.2813.1175 [GMT -8:00]
  6. .
  7. AV: Microsoft Security Essentials *Disabled/Outdated* {108DAC43-C256-20B7-BB05-914135DA5160}
  8. SP: Microsoft Security Essentials *Disabled/Outdated* {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD}
  9. SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
  10. .
  11. ============== Running Processes ===============
  12. .
  13. C:\Windows\system32\wininit.exe
  14. C:\Windows\system32\lsm.exe
  15. C:\Windows\system32\svchost.exe -k DcomLaunch
  16. C:\Windows\system32\svchost.exe -k rpcss
  17. c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
  18. C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
  19. C:\Windows\system32\svchost.exe -k netsvcs
  20. C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
  21. C:\Windows\system32\svchost.exe -k NetworkService
  22. C:\Windows\system32\svchost.exe -k LocalService
  23. C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
  24. C:\Windows\Explorer.EXE
  25. C:\Windows\system32\rundll32.exe
  26. C:\Program Files\Google\Chrome\Application\chrome.exe
  27. C:\Program Files\Google\Chrome\Application\chrome.exe
  28. C:\Program Files\Google\Chrome\Application\chrome.exe
  29. C:\Program Files\Google\Chrome\Application\chrome.exe
  30. C:\Windows\system32\rundll32.exe
  31. C:\Program Files\Google\Chrome\Application\chrome.exe
  32. C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
  33. C:\Program Files\Google\Chrome\Application\chrome.exe
  34. C:\Program Files\Google\Chrome\Application\chrome.exe
  35. C:\Program Files\Google\Chrome\Application\chrome.exe
  36. C:\Program Files\Google\Chrome\Application\chrome.exe
  37. C:\Program Files\Google\Chrome\Application\chrome.exe
  38. C:\Program Files\Google\Chrome\Application\chrome.exe
  39. C:\Program Files\Orbitdownloader\orbitdm.exe
  40. C:\Program Files\Orbitdownloader\orbitnet.exe
  41. C:\Windows\system32\wbem\wmiprvse.exe
  42. .
  43. ============== Pseudo HJT Report ===============
  44. .
  45. uStart Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT2269050
  46. uInternet Settings,ProxyServer = localhost:6544
  47. uInternet Settings,ProxyOverride = *.local
  48. uSearchURL,(Default) = hxxp://my.netzero.net/s/search?r=minisearch
  49. mURLSearchHooks: AIM Toolbar Search Class: {03402f96-3dc7-4285-bc50-9e81fefafe43} - c:\program files\aim toolbar\aimtb.dll
  50. mURLSearchHooks: BrotherSoft Extreme Toolbar: {51a86bb3-6602-4c85-92a5-130ee4864f13} - c:\program files\brothersoft_extreme\tbBrot.dll
  51. mURLSearchHooks: GameWrangler_v2b Toolbar: {f689bafc-70f0-4550-9001-dc2a1cc8c0dd} - c:\program files\gamewrangler_v2b\prxtbGame.dll
  52. mURLSearchHooks: H - No File
  53. mURLSearchHooks: H - No File
  54. mWinlogon: UIHost=c:\windows\system32\logonuiX.exe
  55. BHO: Octh Class: {000123b4-9b42-4900-b3f7-f4b073efc214} - c:\program files\orbitdownloader\orbitcth.dll
  56. BHO: &Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - c:\program files\yahoo!\companion\installs\cpn\yt.dll
  57. BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
  58. BHO: Complitly: {0fb6a909-6086-458f-bd92-1f8ee10042a0} - c:\users\administrator\appdata\roaming\complitly\Complitly.dll
  59. BHO: SocialRibbons LP 1: {2f3d5040-d8e1-f5b4-150e-f532a5f23615} - c:\program files\socialribbons lp 1\Toolbar.dll
  60. BHO: Conduit Engine: {30f9b915-b755-4826-820b-08fba6bd249d} - c:\program files\conduitengine\ConduitEngine.dll
  61. BHO: SBCONVERT Class: {31b27f2d-6bc6-451b-b3d2-4eab36b2fc3b} - c:\program files\speedbit video downloader\toolbar\tbcore3.dll
  62. BHO: BrotherSoft Extreme Toolbar: {51a86bb3-6602-4c85-92a5-130ee4864f13} - c:\program files\brothersoft_extreme\tbBrot.dll
  63. BHO: {52706EF7-D7A2-49AD-A615-E903858CF284} - No File
  64. BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SEPsearchhelperie.dll
  65. BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
  66. BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
  67. BHO: Windows Live Messenger Companion Helper: {9fdde16b-836f-4806-ab1f-1455cbeff289} - c:\program files\windows live\companion\companioncore.dll
  68. BHO: SBCONVERT Class: {a1056498-d09a-41e4-864b-505edd640d9e} - c:\program files\speedbit video downloader\toolbar\SpeedBitVideoDownloader.dll
  69. BHO: AIM Toolbar Loader: {b0cda128-b425-4eef-a174-61a11ac5dbf8} - c:\program files\aim toolbar\aimtb.dll
  70. BHO: DCA BHO: {b49699fc-1665-4414-a1cb-c4a2a4a13eec} - c:\program files\common files\freecause\dca\dca-bho.dll
  71. BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
  72. BHO: Google Gears Helper: {e0fefe40-fbf9-42ae-ba58-794ca7e3fb53} - c:\program files\google\google gears\internet explorer\0.5.36.0\gears.dll
  73. BHO: GameWrangler_v2b Toolbar: {f689bafc-70f0-4550-9001-dc2a1cc8c0dd} - c:\program files\gamewrangler_v2b\prxtbGame.dll
  74. BHO: Yontoo Layers: {fd72061e-9fde-484d-a58a-0bab4151cad8} - c:\program files\yontoo layers client\YontooIEClient.dll
  75. BHO: SingleInstance Class: {fdad4da1-61a2-4fd8-9c17-86f7ac245081} - c:\program files\yahoo!\companion\installs\cpn\YTSingleInstance.dll
  76. BHO: GrabberObj Class: {ff7c3cf0-4b15-11d1-abed-709549c10000} - c:\progra~1\speedb~1\toolbar\grabber.dll
  77. TB: SpeedBit Video Downloader: {0329e7d6-6f54-462d-93f6-f5c3118badf2} - c:\program files\speedbit video downloader\toolbar\tbcore3.dll
  78. TB: AIM Toolbar: {61539ecd-cc67-4437-a03c-9aaccbd14326} - c:\program files\aim toolbar\aimtb.dll
  79. TB: {F0F8ECBE-D460-4B34-B007-56A92E8F84A7} - No File
  80. TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn\yt.dll
  81. TB: BrotherSoft Extreme Toolbar: {51a86bb3-6602-4c85-92a5-130ee4864f13} - c:\program files\brothersoft_extreme\tbBrot.dll
  82. TB: Conduit Engine: {30f9b915-b755-4826-820b-08fba6bd249d} - c:\program files\conduitengine\ConduitEngine.dll
  83. TB: Grab Pro: {c55bbcd6-41ad-48ad-9953-3609c48eacc7} - c:\program files\orbitdownloader\GrabPro.dll
  84. TB: GameWrangler_v2b Toolbar: {f689bafc-70f0-4550-9001-dc2a1cc8c0dd} - c:\program files\gamewrangler_v2b\prxtbGame.dll
  85. TB: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
  86. TB: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
  87. TB: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
  88. uRun: [ehTray.exe] c:\windows\ehome\ehTray.exe
  89. mRun: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
  90. mRun: [MSC] "c:\program files\microsoft security client\msseces.exe" -hide -runkey
  91. mRun: [GrooveMonitor] "c:\program files\microsoft office\office12\GrooveMonitor.exe"
  92. dRun: [MySpaceIM] c:\program files\myspace\im\MySpaceIM.exe
  93. StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\orbit.lnk - c:\program files\orbitdownloader\orbitdm.exe
  94. mPolicies-explorer: BindDirectlyToPropertySetStorage = 0 (0x0)
  95. mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
  96. IE: &Download by Orbit - c:\program files\orbitdownloader\orbitmxt.dll/201
  97. IE: &Grab video by Orbit - c:\program files\orbitdownloader\orbitmxt.dll/204
  98. IE: Do&wnload selected by Orbit - c:\program files\orbitdownloader\orbitmxt.dll/203
  99. IE: Down&load all by Orbit - c:\program files\orbitdownloader\orbitmxt.dll/202
  100. IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - c:\program files\windows live\companion\companioncore.dll
  101. IE: {09C04DA7-5B76-4EBC-BBEE-B25EAC5965F5} - {0B4350D1-055F-47A3-B112-5F2F2B0D6F08} - c:\program files\google\google gears\internet explorer\0.5.36.0\gears.dll
  102. IE: {0b83c99c-1efa-4259-858f-bcb33e007a5b} - {61539ecd-cc67-4437-a03c-9aaccbd14326} - c:\program files\aim toolbar\aimtb.dll
  103. IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
  104. IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~2\office12\ONBttnIE.dll
  105. IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5}
  106. IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office12\REFIEBAR.DLL
  107. LSP: bmnet.dll
  108. Trusted Zone: netzero.com
  109. Trusted Zone: netzero.net
  110. DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab
  111. DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} - hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
  112. DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab
  113. DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab
  114. DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} -
  115. TCP: DhcpNameServer = 172.28.20.3
  116. TCP: Interfaces\{02F9C503-76CC-4B5F-8272-5619EBB40FBE} : DhcpNameServer = 172.28.20.3
  117. TCP: Interfaces\{2F6234C5-E5B9-4911-9F77-910DC3DEEABB} : DhcpNameServer = 172.28.20.3
  118. TCP: Interfaces\{AE959979-95D8-40E2-ABEF-7622772CAB51} : DhcpNameServer = 172.28.20.3
  119. TCP: Interfaces\{B505A54E-6BB8-4DAB-9958-8C010F534118} : DhcpNameServer = 209.183.35.23 209.183.33.23
  120. TCP: Interfaces\{F0100EA0-AB96-47AC-8E7B-07D5CF677DD1} : DhcpNameServer = 8.8.8.8 8.8.4.4
  121. TCP: Interfaces\{F07D14D7-C3F1-4210-A637-A87E5A6EED3D} : DhcpNameServer = 8.8.8.8
  122. Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll
  123. Handler: pure-go - {4746C79A-2042-4332-8650-48966E44ABA8} - c:\program files\common files\pure networks shared\platform\puresp4.dll
  124. Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\Skype4COM.dll
  125. Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - c:\program files\windows live\photo gallery\AlbumDownloadProtocolHandler.dll
  126. Notify: WBSrv - c:\program files\stardock\object desktop\windowblinds\wbsrv.dll
  127. AppInit_DLLs: c:\progra~1\google\google~1\GOEC62~1.DLL
  128. STS: Deskscapes: {ec654325-1273-c2a9-2b7c-45d29bce68fb} - Deskscapes Class
  129. SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
  130. .
  131. ================= FIREFOX ===================
  132. .
  133. FF - ProfilePath - c:\users\administrator\appdata\roaming\mozilla\firefox\profiles\wwtwompq.default\
  134. FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3001716&SearchSource=3&q={searchTerms}
  135. FF - prefs.js: browser.search.selectedEngine - Bing
  136. FF - prefs.js: browser.startup.homepage - hxxp://www.msn.com/?pc=Z149&ocid=zdhp&install_date=20111202
  137. FF - prefs.js: keyword.URL - hxxp://serp.freecause.com/?ourmark=3&sid=100275&q=
  138. FF - prefs.js: network.proxy.type - 4
  139. FF - component: c:\program files\google\google gears\firefox\lib\ff36\gears.dll
  140. FF - component: c:\program files\orbitdownloader\addons\oneclickyoutubedownloader\components\GrabXpcom.dll
  141. FF - component: c:\users\administrator\appdata\roaming\mozilla\firefox\profiles\wwtwompq.default\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}\components\RadioWMPCoreGecko19.dll
  142. FF - component: c:\users\administrator\appdata\roaming\mozilla\firefox\profiles\wwtwompq.default\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}\components\RadioWMPCoreGecko5.dll
  143. FF - component: c:\users\administrator\appdata\roaming\mozilla\firefox\profiles\wwtwompq.default\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}\components\RadioWMPCoreGecko6.dll
  144. FF - component: c:\users\administrator\appdata\roaming\mozilla\firefox\profiles\wwtwompq.default\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}\components\RadioWMPCoreGecko7.dll
  145. FF - component: c:\users\administrator\appdata\roaming\mozilla\firefox\profiles\wwtwompq.default\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}\components\RadioWMPCoreGecko8.dll
  146. FF - component: c:\users\administrator\appdata\roaming\mozilla\firefox\profiles\wwtwompq.default\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}\components\RadioWMPCoreGecko9.dll
  147. FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
  148. FF - Ext: Java Console: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
  149. FF - Ext: Java Console: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}
  150. FF - Ext: Java Console: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}
  151. FF - Ext: Yontoo Layers: plugin@yontoo.com - %profile%\extensions\plugin@yontoo.com
  152. FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
  153. FF - Ext: Complitly - Speed up your search with your personal search suggestions tool: {33e0daa6-3af3-d8b5-6752-10e949c61516} - %profile%\extensions\{33e0daa6-3af3-d8b5-6752-10e949c61516}
  154. FF - Ext: Freecorder YouTube Download Wizard: ytvdw@pgport.com - %profile%\extensions\ytvdw@pgport.com
  155. FF - Ext: DVDVideoSoftTB Community Toolbar: {872b5b88-9db5-4310-bdd0-ac189557e5f5} - %profile%\extensions\{872b5b88-9db5-4310-bdd0-ac189557e5f5}
  156. FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\DotNetAssistantExtension
  157. FF - Ext: Google Gears: {000a9d1c-beef-4f90-9363-039d445309b8} - c:\program files\google\google gears\Firefox
  158. .
  159. ============= SERVICES / DRIVERS ===============
  160. .
  161. R0 48554542;48554542 Boot Guard Driver;c:\windows\system32\drivers\48554542.sys [2011-2-16 37392]
  162. R0 SCMNdisP;General NDIS Protocol Driver;c:\windows\system32\drivers\SCMNdisP.sys [2011-2-7 21728]
  163. R1 jswpslwf;JumpStart Wireless Filter Driver;c:\windows\system32\drivers\jswpslwf.sys [2008-11-28 20384]
  164. R3 amdiox86;AMD IO Driver;c:\windows\system32\drivers\amdiox86.sys [2011-5-30 37944]
  165. R3 athur;Atheros AR9271 Wireless Network Adapter Service;c:\windows\system32\drivers\athur.sys [2011-2-7 1384448]
  166. R3 easytether;easytether;c:\windows\system32\drivers\easytthr.sys [2011-5-24 17232]
  167. R3 FwLnk;FwLnk Driver;c:\windows\system32\drivers\FwLnk.sys [2008-5-5 7168]
  168. R3 teamviewervpn;TeamViewer VPN Adapter;c:\windows\system32\drivers\teamviewervpn.sys [2008-1-25 25088]
  169. S1 48554541;48554541;c:\windows\system32\drivers\48554541.sys [2011-2-16 128016]
  170. S1 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2010-10-24 165648]
  171. S1 MpKsl01a29516;MpKsl01a29516;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl01a29516.sys [2011-12-3 28752]
  172. S1 MpKsl0638d769;MpKsl0638d769;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl0638d769.sys [2011-12-5 28752]
  173. S1 MpKsl081aafca;MpKsl081aafca;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl081aafca.sys [2011-12-5 28752]
  174. S1 MpKsl11c36d69;MpKsl11c36d69;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl11c36d69.sys [2011-12-5 28752]
  175. S1 MpKsl182aeec5;MpKsl182aeec5;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl182aeec5.sys [2011-12-3 28752]
  176. S1 MpKsl1e3b99a7;MpKsl1e3b99a7;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl1e3b99a7.sys [2011-12-5 28752]
  177. S1 MpKsl274c71e0;MpKsl274c71e0;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl274c71e0.sys [2011-12-5 28752]
  178. S1 MpKsl2b7f4614;MpKsl2b7f4614;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl2b7f4614.sys [2011-12-2 28752]
  179. S1 MpKsl3ecfea93;MpKsl3ecfea93;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl3ecfea93.sys [2011-12-5 28752]
  180. S1 MpKsl468e2fb5;MpKsl468e2fb5;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl468e2fb5.sys [2011-12-2 28752]
  181. S1 MpKsl48f56be5;MpKsl48f56be5;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl48f56be5.sys [2011-12-5 28752]
  182. S1 MpKsl4dbbe3f1;MpKsl4dbbe3f1;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl4dbbe3f1.sys [2011-12-5 28752]
  183. S1 MpKsl576da379;MpKsl576da379;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl576da379.sys [2011-12-3 28752]
  184. S1 MpKsl58663486;MpKsl58663486;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl58663486.sys [2011-12-3 28752]
  185. S1 MpKsl6638b30a;MpKsl6638b30a;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl6638b30a.sys [2011-12-3 28752]
  186. S1 MpKsl6af80d7d;MpKsl6af80d7d;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl6af80d7d.sys [2011-12-5 28752]
  187. S1 MpKsl729bc12e;MpKsl729bc12e;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl729bc12e.sys [2011-12-3 28752]
  188. S1 MpKsl736a5f6f;MpKsl736a5f6f;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl736a5f6f.sys [2011-12-5 28752]
  189. S1 MpKsl753abac3;MpKsl753abac3;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl753abac3.sys [2011-12-5 28752]
  190. S1 MpKsl79c9fe1f;MpKsl79c9fe1f;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl79c9fe1f.sys [2011-12-4 28752]
  191. S1 MpKsl8b444af3;MpKsl8b444af3;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl8b444af3.sys [2011-12-2 28752]
  192. S1 MpKsl91522135;MpKsl91522135;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl91522135.sys [2011-12-2 28752]
  193. S1 MpKsl9beb23ca;MpKsl9beb23ca;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl9beb23ca.sys [2011-12-3 28752]
  194. S1 MpKslc1509ac8;MpKslc1509ac8;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKslc1509ac8.sys [2011-12-5 28752]
  195. S1 MpKslc463da92;MpKslc463da92;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKslc463da92.sys [2011-12-5 28752]
  196. S1 MpKslfc830188;MpKslfc830188;c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKslfc830188.sys [2011-12-5 28752]
  197. S1 setup_9.0.0.722_17.02.2011_02-15drv;setup_9.0.0.722_17.02.2011_02-15drv;c:\windows\system32\drivers\4855454.sys [2011-2-16 311312]
  198. S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
  199. S2 FontCache;Windows Font Cache Service;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [2008-1-20 21504]
  200. S2 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\windows live\mesh\wlcrasvc.exe [2010-9-22 51040]
  201. S3 androidusb;SAMSUNG Android Composite ADB Interface Driver;c:\windows\system32\drivers\ssadadb.sys [2011-3-25 30312]
  202. S3 dgderdrv;dgderdrv;c:\windows\system32\drivers\dgderdrv.sys [2011-5-8 20032]
  203. S3 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr.sys [2010-11-13 39272]
  204. S3 fsssvc;Windows Live Family Safety Service;c:\program files\windows live\family safety\fsssvc.exe [2011-5-13 1492840]
  205. S3 GT72NDISIPXP;GT 72 IP NDIS;c:\windows\system32\drivers\Gt51Ip.sys [2008-2-18 106624]
  206. S3 GT72UBUS;GT 72 U BUS;c:\windows\system32\drivers\gt72ubus.sys [2008-2-8 59648]
  207. S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2010-6-16 22216]
  208. S3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\system32\drivers\MpNWMon.sys [2010-10-24 43392]
  209. S3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\drivers\NisDrvWFP.sys [2010-10-24 65024]
  210. S3 NisSrv;Microsoft Network Inspection;c:\program files\microsoft security client\antimalware\NisSrv.exe [2011-4-27 208944]
  211. S3 NWUSBCDFIL;Novatel Wireless Installation CD;c:\windows\system32\drivers\NwUsbCdFil.sys [2008-7-7 20480]
  212. S3 NWUSBPort2;Novatel Wireless USB Status2 Port Driver;c:\windows\system32\drivers\nwusbser2.sys [2008-5-9 174336]
  213. S3 pneteth;PdaNet Broadband;c:\windows\system32\drivers\pneteth.sys [2008-1-1 13312]
  214. S3 pnetmdm;PdaNet Modem;c:\windows\system32\drivers\pnetmdm.sys [2008-1-1 9472]
  215. S3 RDPDISPM;RDPDISPM;c:\windows\system32\drivers\rdpdispm.sys [2010-9-22 15488]
  216. S3 Slnt7554;USB Soft Modem Driver;c:\windows\system32\drivers\sldrv\slnt7554.sys [2005-3-22 225280]
  217. S3 SMSIVZAM5;SMSIVZAM5 NDIS Protocol Driver;c:\progra~1\verizo~1\vzacce~1\SMSIVZAM5.SYS [2009-3-20 32408]
  218. S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\drivers\ssadbus.sys [2011-3-25 121192]
  219. S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\drivers\ssadmdfl.sys [2011-3-25 12776]
  220. S3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\drivers\ssadmdm.sys [2011-3-25 136680]
  221. S3 WMZuneComm;Zune Windows Mobile Connectivity Service;c:\program files\zune\WMZuneComm.exe [2010-9-24 268528]
  222. S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
  223. S4 AMD FUEL Service;AMD FUEL Service;c:\program files\ati technologies\ati.ace\fuel\Fuel.Service.exe [2011-7-28 291840]
  224. S4 Application Updater;Application Updater;c:\program files\application updater\ApplicationUpdater.exe [2011-9-27 745880]
  225. S4 ATTRcAppSvc;AT&T RcAppSvc;c:\program files\at&t\communication manager\RcAppSvc.exe [2009-7-15 121416]
  226. S4 CAATT;AT&T Con App Svc;c:\program files\at&t\communication manager\ConAppsSvc.exe [2009-7-15 125512]
  227. S4 ConfigFree Service;ConfigFree Service;c:\program files\toshiba\configfree\CFSvcs.exe [2008-4-16 40960]
  228. S4 Desura Install Service;Desura Install Service;c:\program files\common files\desura\desura_service.exe [2011-5-2 129856]
  229. S4 GoogleDesktopManager-022208-143751;Google Desktop Manager 5.7.802.22438;c:\program files\google\google desktop search\GoogleDesktop.exe [2008-5-5 29744]
  230. S4 gupdate1c9fa2474c0900;Google Update Service (gupdate1c9fa2474c0900);c:\program files\google\update\GoogleUpdate.exe [2009-7-1 133104]
  231. S4 gupdatem;Google Update Service (gupdatem);c:\program files\google\update\GoogleUpdate.exe [2009-7-1 133104]
  232. S4 Hamachi2Svc;LogMeIn Hamachi 2.0 Tunneling Engine;c:\program files\logmein hamachi\hamachi-2.exe [2011-5-25 1336712]
  233. S4 jswpsapi;JumpStart Wi-Fi Protected Setup;c:\program files\netgear\wna1100\jswpsapi.exe [2011-2-7 954368]
  234. S4 lxbk_device;lxbk_device;c:\windows\system32\lxbkcoms.exe -service --> c:\windows\system32\lxbkcoms.exe -service [?]
  235. S4 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2010-6-16 366152]
  236. S4 RoxMediaDBGame1X;RoxMediaDBGame1X;c:\program files\common files\roxio shared\game1x\sharedcom\RoxMediaDBGame1X.exe [2011-2-17 1099248]
  237. S4 SmartFaceVWatchSrv;SmartFaceVWatchSrv;c:\program files\toshiba\smartfacev\SmartFaceVWatchSrv.exe [2008-4-24 73728]
  238. S4 TeamViewer4;TeamViewer 4;c:\program files\teamviewer\version4\TeamViewer_Service.exe [2009-4-23 185640]
  239. S4 TOSHIBA SMART Log Service;TOSHIBA SMART Log Service;c:\program files\toshiba\smartlogservice\TosIPCSrv.exe [2007-12-3 126976]
  240. S4 Viewpoint Manager Service;Viewpoint Manager Service;c:\program files\viewpoint\common\ViewpointService.exe [2009-9-12 24652]
  241. S4 WSWNA1100;WSWNA1100;c:\program files\netgear\wna1100\WifiSvc.exe [2011-2-7 278528]
  242. .
  243. =============== Created Last 30 ================
  244. .
  245. 2011-12-06 07:31:50 -------- d--h--w- c:\windows\PIF
  246. 2011-12-06 07:08:11 41272 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
  247. 2011-12-06 06:13:44 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKslc463da92.sys
  248. 2011-12-06 05:45:48 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl0638d769.sys
  249. 2011-12-06 05:39:44 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKslfc830188.sys
  250. 2011-12-06 05:17:43 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKslc1509ac8.sys
  251. 2011-12-06 04:24:18 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl3ecfea93.sys
  252. 2011-12-06 04:18:51 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl274c71e0.sys
  253. 2011-12-06 04:18:49 56200 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\offreg.dll
  254. 2011-12-06 04:03:21 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl48f56be5.sys
  255. 2011-12-06 03:47:14 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl1e3b99a7.sys
  256. 2011-12-06 03:11:50 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl4dbbe3f1.sys
  257. 2011-12-06 02:35:54 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl736a5f6f.sys
  258. 2011-12-06 02:22:02 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl6af80d7d.sys
  259. 2011-12-06 00:43:17 -------- d-----w- c:\users\administrator\appdata\local\temp
  260. 2011-12-06 00:21:12 -------- d-sh--w- C:\$RECYCLE.BIN
  261. 2011-12-05 21:01:51 703824 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{28aaffc3-0b2b-4e1a-ad4e-3d4ee44ab439}\gapaengine.dll
  262. 2011-12-05 20:31:35 -------- d-----w- C:\9c12ed6bca9378f98f1666b00b
  263. 2011-12-05 19:59:35 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl081aafca.sys
  264. 2011-12-05 19:43:19 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl753abac3.sys
  265. 2011-12-05 08:00:10 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl11c36d69.sys
  266. 2011-12-05 07:41:59 98816 ----a-w- c:\windows\sed.exe
  267. 2011-12-05 07:41:59 518144 ----a-w- c:\windows\SWREG.exe
  268. 2011-12-05 07:41:59 256000 ----a-w- c:\windows\PEV.exe
  269. 2011-12-05 07:41:59 208896 ----a-w- c:\windows\MBR.exe
  270. 2011-12-04 20:01:16 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl79c9fe1f.sys
  271. 2011-12-04 09:59:30 -------- d-----w- C:\b6e1fb1f3f6ef61f963158076a061b
  272. 2011-12-03 22:38:34 -------- d-----w- c:\users\administrator\appdata\local\Norman Malware Cleaner
  273. 2011-12-03 22:13:40 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl9beb23ca.sys
  274. 2011-12-03 20:27:09 -------- d-----w- c:\program files\stinger
  275. 2011-12-03 18:59:45 -------- d-----w- C:\aabcbd89610c9786f178dc
  276. 2011-12-03 18:47:15 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl01a29516.sys
  277. 2011-12-03 17:49:17 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl58663486.sys
  278. 2011-12-03 16:51:25 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl182aeec5.sys
  279. 2011-12-03 16:41:09 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl6638b30a.sys
  280. 2011-12-03 16:05:54 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl729bc12e.sys
  281. 2011-12-03 15:43:11 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl576da379.sys
  282. 2011-12-03 05:14:56 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl468e2fb5.sys
  283. 2011-12-03 04:54:09 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl2b7f4614.sys
  284. 2011-12-03 04:09:03 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl8b444af3.sys
  285. 2011-12-03 03:57:49 28752 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\MpKsl91522135.sys
  286. 2011-12-02 12:12:38 -------- d-----w- c:\users\administrator\appdata\local\{8BBA310D-7244-4D61-928C-0D9C4F6469FB}
  287. 2011-12-02 07:34:22 -------- d-----w- c:\users\administrator\appdata\roaming\DVDVideoSoft
  288. 2011-12-02 07:07:07 -------- d-----w- c:\users\administrator\appdata\roaming\Complitly
  289. 2011-12-02 07:07:07 -------- d-----w- c:\program files\Complitly
  290. 2011-12-02 07:06:25 -------- d-----w- c:\users\administrator\appdata\local\FLVService
  291. 2011-12-02 00:11:47 -------- d-----w- c:\users\administrator\appdata\local\{E55BC3B2-9293-4B53-BDE1-540F566F6758}
  292. 2011-12-01 12:10:52 -------- d-----w- c:\users\administrator\appdata\local\{41DD7F11-33F2-47F4-9A37-21F4B621725D}
  293. 2011-12-01 00:10:04 -------- d-----w- c:\users\administrator\appdata\local\{24A3C308-A955-485F-A191-874C34B45EEA}
  294. 2011-11-30 12:09:12 -------- d-----w- c:\users\administrator\appdata\local\{5E59EB5D-047D-4B78-B5ED-8892BB834A8A}
  295. 2011-11-30 00:08:17 -------- d-----w- c:\users\administrator\appdata\local\{D9389A7C-85C4-43F4-80ED-0D22EF435FE1}
  296. 2011-11-30 00:07:51 -------- d-----w- c:\users\administrator\appdata\local\{D833E95B-65ED-452E-AB54-E98A887D529A}
  297. 2011-11-27 14:41:23 -------- d-----w- c:\users\administrator\appdata\local\{4B3B50BA-913D-41D9-B783-A6996E0DD308}
  298. 2011-11-27 14:41:01 -------- d-----w- c:\users\administrator\appdata\local\{E8819EA0-27F7-4344-B19B-129C6085B316}
  299. 2011-11-27 03:36:49 6668624 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{8e4be29f-368d-4378-a517-b263824d41e6}\mpengine.dll
  300. 2011-11-27 02:40:18 -------- d-----w- c:\users\administrator\appdata\local\{51802BC2-7747-4C03-8F93-AE276AE77C67}
  301. 2011-11-27 02:39:17 -------- d-----w- c:\users\administrator\appdata\local\{EAE02370-264F-4FC9-83C1-D483B65BA7F4}
  302. 2011-11-22 20:46:19 -------- d-----w- c:\users\administrator\appdata\local\{6F6067A4-FBD7-4853-B915-8EA5AB3422E2}
  303. 2011-11-22 20:45:34 -------- d-----w- c:\users\administrator\appdata\local\{F96BF507-B623-4860-8E91-E8D764AF74B1}
  304. 2011-11-22 13:13:52 -------- d-----w- c:\users\administrator\appdata\roaming\com.zoosk.Desktop.096E6A67431258A508A2446A847B240591D2C99B.1
  305. 2011-11-22 13:13:39 -------- d-----w- c:\program files\ZooskMessenger
  306. 2011-11-22 13:05:55 -------- d-----w- c:\users\administrator\appdata\roaming\MySpace
  307. 2011-11-22 07:23:30 -------- d-----w- c:\users\administrator\appdata\local\{9C2D93F1-E98E-42A0-B42D-66C3910CB8FD}
  308. 2011-11-22 07:22:32 -------- d-----w- c:\users\administrator\appdata\local\{55A78CBD-D38F-453D-952F-DFFB322B83F6}
  309. 2011-11-20 23:41:27 -------- d-----w- c:\users\administrator\appdata\local\{463B713E-E979-4985-93DB-19FCE1D0E4E5}
  310. 2011-11-20 11:40:21 -------- d-----w- c:\users\administrator\appdata\local\{3A8BF3CE-54D8-4C1B-862A-BB8F60A37163}
  311. 2011-11-20 11:39:48 -------- d-----w- c:\users\administrator\appdata\local\{C901D542-36F4-4BF2-86D1-226A41F12F07}
  312. 2011-11-19 12:53:38 -------- d-----w- c:\users\administrator\appdata\local\{2E9BFDB8-213B-456F-AD88-E487823A08A0}
  313. 2011-11-19 12:52:58 -------- d-----w- c:\users\administrator\appdata\local\{7A29721D-9436-404D-A29B-17A932709802}
  314. .
  315. ==================== Find3M ====================
  316. .
  317. 2011-10-03 13:06:03 472808 ----a-w- c:\windows\system32\deployJava1.dll
  318. 2011-09-23 18:35:55 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
  319. 2011-09-23 03:27:39 226280 ----a-w- c:\windows\system32\drivers\volsnap.sys
  320. 2006-05-03 17:06:54 163328 --sha-r- c:\windows\system32\flvDX.dll
  321. 2007-02-21 18:47:16 31232 --sha-r- c:\windows\system32\msfDX.dll
  322. 2008-03-16 20:30:52 216064 --sha-r- c:\windows\system32\nbDX.dll
  323. 2010-01-07 05:00:00 107520 --sha-r- c:\windows\system32\TAKDSDecoder.dll
  324. .
  325. ============= FINISH: 23:35:41.74 ===============
  326.  
  327.  
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement