Here are the logs...
MalwareBytes:
Malwarebytes Anti-Malware 1.65.1.1000
www.malwarebytes.org
Database version: v2012.11.16.08
Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
labrakek :: AVONFSMLABRAKEK [administrator]
11/16/2012 1:34:37 PM
mbam-log-2012-11-16 (13-34-37).txt
Scan type: Full scan (C:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 277694
Time elapsed: 1 hour(s), 30 minute(s), 45 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
(end)
Mini Toolbox:
MiniToolBox by Farbar Version: 10-11-2012 02
Ran by labrakek (administrator) on 16-11-2012 at 15:21:56
Microsoft Windows XP Service Pack 3 (X86)
Boot Mode: Normal
***************************************************************************
========================= Flush DNS: ===================================
Windows IP Configuration
Successfully flushed the DNS Resolver Cache.
========================= IE Proxy Settings: ==============================
Proxy is not enabled.
No Proxy Server is set.
"Reset IE Proxy Settings": IE Proxy Settings were reset.
========================= Hosts content: =================================
127.0.0.1 localhost
========================= IP Configuration: ================================
Cisco Systems VPN Adapter = Local Area Connection 3 (Disconnected)
Intel® PRO/Wireless 3945ABG Network Connection = Wireless Network Connection (Connected)
1394 Net Adapter = 1394 Connection (Connected)
MAC Bridge Miniport = Network Bridge (Connected)
Broadcom NetXtreme 57xx Gigabit Controller = Local Area Connection (Media disconnected)
# ----------------------------------
# Interface IP Configuration
# ----------------------------------
pushd interface ip
# Interface IP Configuration for "Wireless Network Connection"
set address name="Wireless Network Connection" source=dhcp
set dns name="Wireless Network Connection" source=dhcp register=PRIMARY
set wins name="Wireless Network Connection" source=dhcp
# Interface IP Configuration for "Network Bridge"
set address name="Network Bridge" source=static addr=192.168.0.1 mask=255.255.255.0
set dns name="Network Bridge" source=static addr=none register=PRIMARY
set wins name="Network Bridge" source=static addr=none
popd
# End of interface IP configuration
Windows IP Configuration
Host Name . . . . . . . . . . . . : AvonFSMlabrakek
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : hsd1.nh.comcast.net.
Ethernet adapter Wireless Network Connection:
Connection-specific DNS Suffix . : hsd1.nh.comcast.net.
Description . . . . . . . . . . . : Intel® PRO/Wireless 3945ABG Network Connection
Physical Address. . . . . . . . . : 00-1C-BF-1D-DF-86
Dhcp Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
IP Address. . . . . . . . . . . . : 192.168.1.137
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 192.168.1.1
DHCP Server . . . . . . . . . . . : 192.168.1.1
DNS Servers . . . . . . . . . . . : 75.75.75.75
75.75.76.76
192.168.1.1
Lease Obtained. . . . . . . . . . : Friday, November 16, 2012 1:31:47 PM
Lease Expires . . . . . . . . . . : Saturday, November 17, 2012 1:31:47 PM
Ethernet adapter Network Bridge:
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : MAC Bridge Miniport
Physical Address. . . . . . . . . : E2-14-CA-5F-C6-6E
Dhcp Enabled. . . . . . . . . . . : No
IP Address. . . . . . . . . . . . : 192.168.0.1
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . :
Server: cdns01.comcast.net
Address: 75.75.75.75
Name: google.com
Addresses: 74.125.226.206, 74.125.226.198, 74.125.226.193, 74.125.226.199
74.125.226.201, 74.125.226.194, 74.125.226.197, 74.125.226.195, 74.125.226.196
74.125.226.200, 74.125.226.192
Pinging google.com [173.194.43.5] with 32 bytes of data:
Reply from 173.194.43.5: bytes=32 time=50ms TTL=54
Reply from 173.194.43.5: bytes=32 time=21ms TTL=54
Ping statistics for 173.194.43.5:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 21ms, Maximum = 50ms, Average = 35ms
Server: cdns01.comcast.net
Address: 75.75.75.75
DNS request timed out.
timeout was 2 seconds.
Name: yahoo.com
Addresses: 72.30.38.140, 98.139.183.24, 98.138.253.109
Pinging yahoo.com [98.139.183.24] with 32 bytes of data:
Reply from 98.139.183.24: bytes=32 time=165ms TTL=46
Reply from 98.139.183.24: bytes=32 time=88ms TTL=49
Ping statistics for 98.139.183.24:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 88ms, Maximum = 165ms, Average = 126ms
Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Ping statistics for 127.0.0.1:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
0x1 ........................... MS TCP Loopback interface
0x2 ...00 1c bf 1d df 86 ...... Intel® PRO/Wireless 3945ABG Network Connection - Packet Scheduler Miniport
0x10004 ...e2 14 ca 5f c6 6e ...... MAC Bridge Miniport - Packet Scheduler Miniport
===========================================================================
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.1.1 192.168.1.137 25
127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1 1
192.168.0.0 255.255.255.0 192.168.0.1 192.168.0.1 10
192.168.0.1 255.255.255.255 127.0.0.1 127.0.0.1 10
192.168.0.255 255.255.255.255 192.168.0.1 192.168.0.1 10
192.168.1.0 255.255.255.0 192.168.1.137 192.168.1.137 25
192.168.1.137 255.255.255.255 127.0.0.1 127.0.0.1 25
192.168.1.255 255.255.255.255 192.168.1.137 192.168.1.137 25
224.0.0.0 240.0.0.0 192.168.0.1 192.168.0.1 10
224.0.0.0 240.0.0.0 192.168.1.137 192.168.1.137 25
255.255.255.255 255.255.255.255 192.168.0.1 192.168.0.1 1
255.255.255.255 255.255.255.255 192.168.1.137 192.168.1.137 1
Default Gateway: 192.168.1.1
===========================================================================
Persistent Routes:
None
========================= Winsock entries =====================================
Catalog5 01 C:\Program Files\Neoteris\Secure Application Manager\samnsp.dll [File Not found] ()
Catalog5 02 C:\Windows\System32\winrnr.dll [16896] (Microsoft Corporation)
Catalog5 03 C:\Windows\System32\mswsock.dll [245248] (Microsoft Corporation)
Catalog5 04 C:\Windows\System32\mswsock.dll [245248] (Microsoft Corporation)
Catalog5 05 C:\Program Files\Neoteris\Secure Application Manager\samnsp.dll [File Not found] ()
Catalog9 01 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 02 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 03 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 04 C:\Windows\system32\rsvpsp.dll [92672] (Microsoft Corporation)
Catalog9 05 C:\Windows\system32\rsvpsp.dll [92672] (Microsoft Corporation)
Catalog9 06 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 07 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 08 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 09 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 10 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 11 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 12 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 13 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 14 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
Catalog9 15 C:\Windows\system32\mswsock.dll [245248] (Microsoft Corporation)
========================= Event log errors: ===============================
Application errors:
==================
Error: (11/15/2012 06:45:17 PM) (Source: Brother BrLog) (User: )
Description: STI BrtSTI: [2012/11/15 18:45:17.796]: [00000216]: GetDeviceIpAddress: GetAddressByName [BRW002258187C20] Error
Error: (11/15/2012 03:06:53 PM) (Source: Brother BrLog) (User: )
Description: STI BrtSTI: [2012/11/15 15:06:53.187]: [00000216]: GetDeviceIpAddress: GetAddressByName [BRW002258187C20] Error
Error: (11/15/2012 03:06:18 PM) (Source: Brother BrLog) (User: )
Description: STI BrtSTI: [2012/11/15 15:06:18.687]: [00000216]: GetDeviceIpAddress: GetAddressByName [BRW002258187C20] Error
Error: (11/15/2012 03:05:44 PM) (Source: Brother BrLog) (User: )
Description: STI BrtSTI: [2012/11/15 15:05:44.187]: [00000216]: GetDeviceIpAddress: GetAddressByName [BRW002258187C20] Error
Error: (11/15/2012 03:05:09 PM) (Source: Brother BrLog) (User: )
Description: STI BrtSTI: [2012/11/15 15:05:09.687]: [00000216]: GetDeviceIpAddress: GetAddressByName [BRW002258187C20] Error
Error: (11/15/2012 03:04:35 PM) (Source: Brother BrLog) (User: )
Description: STI BrtSTI: [2012/11/15 15:04:35.187]: [00000216]: GetDeviceIpAddress: GetAddressByName [BRW002258187C20] Error
Error: (11/15/2012 03:04:00 PM) (Source: Brother BrLog) (User: )
Description: STI BrtSTI: [2012/11/15 15:04:00.687]: [00000216]: GetDeviceIpAddress: GetAddressByName [BRW002258187C20] Error
Error: (11/15/2012 03:03:26 PM) (Source: Brother BrLog) (User: )
Description: STI BrtSTI: [2012/11/15 15:03:26.187]: [00000216]: GetDeviceIpAddress: GetAddressByName [BRW002258187C20] Error
Error: (11/15/2012 03:02:51 PM) (Source: Brother BrLog) (User: )
Description: STI BrtSTI: [2012/11/15 15:02:51.687]: [00000216]: GetDeviceIpAddress: GetAddressByName [BRW002258187C20] Error
Error: (11/15/2012 03:02:17 PM) (Source: Brother BrLog) (User: )
Description: STI BrtSTI: [2012/11/15 15:02:17.187]: [00000216]: GetDeviceIpAddress: GetAddressByName [BRW002258187C20] Error
System errors:
=============
Error: (11/12/2012 10:19:16 PM) (Source: Dhcp) (User: )
Description: The IP address lease 192.168.1.137 for the Network Card with network address 001CBF1DDF86 has been
denied by the DHCP server 107.17.138.1 (The DHCP Server sent a DHCPNACK message).
Error: (11/12/2012 10:16:31 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service terminated with the following error:
%%1060
Microsoft Office Sessions:
=========================
Error: (11/15/2012 06:45:17 PM) (Source: Brother BrLog)(User: )
Description: STIBrtSTI: [2012/11/15 18:45:17.796]: [00000216]: GetDeviceIpAddress: GetAddressByName [BRW002258187C20] Error
Error: (11/15/2012 03:06:53 PM) (Source: Brother BrLog)(User: )
Description: STIBrtSTI: [2012/11/15 15:06:53.187]: [00000216]: GetDeviceIpAddress: GetAddressByName [BRW002258187C20] Error
Error: (11/15/2012 03:06:18 PM) (Source: Brother BrLog)(User: )
Description: STIBrtSTI: [2012/11/15 15:06:18.687]: [00000216]: GetDeviceIpAddress: GetAddressByName [BRW002258187C20] Error
Error: (11/15/2012 03:05:44 PM) (Source: Brother BrLog)(User: )
Description: STIBrtSTI: [2012/11/15 15:05:44.187]: [00000216]: GetDeviceIpAddress: GetAddressByName [BRW002258187C20] Error
Error: (11/15/2012 03:05:09 PM) (Source: Brother BrLog)(User: )
Description: STIBrtSTI: [2012/11/15 15:05:09.687]: [00000216]: GetDeviceIpAddress: GetAddressByName [BRW002258187C20] Error
Error: (11/15/2012 03:04:35 PM) (Source: Brother BrLog)(User: )
Description: STIBrtSTI: [2012/11/15 15:04:35.187]: [00000216]: GetDeviceIpAddress: GetAddressByName [BRW002258187C20] Error
Error: (11/15/2012 03:04:00 PM) (Source: Brother BrLog)(User: )
Description: STIBrtSTI: [2012/11/15 15:04:00.687]: [00000216]: GetDeviceIpAddress: GetAddressByName [BRW002258187C20] Error
Error: (11/15/2012 03:03:26 PM) (Source: Brother BrLog)(User: )
Description: STIBrtSTI: [2012/11/15 15:03:26.187]: [00000216]: GetDeviceIpAddress: GetAddressByName [BRW002258187C20] Error
Error: (11/15/2012 03:02:51 PM) (Source: Brother BrLog)(User: )
Description: STIBrtSTI: [2012/11/15 15:02:51.687]: [00000216]: GetDeviceIpAddress: GetAddressByName [BRW002258187C20] Error
Error: (11/15/2012 03:02:17 PM) (Source: Brother BrLog)(User: )
Description: STIBrtSTI: [2012/11/15 15:02:17.187]: [00000216]: GetDeviceIpAddress: GetAddressByName [BRW002258187C20] Error
=========================== Installed Programs ============================
Access Manager (Version: 1.24.0000)
Adobe Flash Player 11 ActiveX (Version: 11.4.402.287)
Adobe Reader 8 (Version: 8.0.0)
Altiris Application Metering Agent (Version: 6.1.31)
Altiris Software Delivery Solution Agent (Version: 6.1.1016.0)
Altiris Task Synchronization Agent (Version: 6.1.1030.0)
Amazon MP3 Downloader 1.0.17 (Version: 1.0.17)
Apple Software Update (Version: 2.0.0.21)
Bluetooth Stack for Windows by Toshiba (Version: v4.31.02.6(D))
Brother MFL-Pro Suite MFC-J410W (Version: 0.0.1.0)
Cassie1000 (Version: 3.0.0)
Cassie2000 (Version: 3.0.0)
CentraOne
Cisco Systems VPN Client 4.0.5 (D) (Version: 4.0)
Citrix ICA Web Client
Compatibility Pack for the 2007 Office system (Version: 12.0.6514.5001)
Conexant HDA D330 MDC V.92 Modem
Dell KACE Agent (Version: 5.3.53177)
Dell Touchpad (Version: 7.1.101.8)
ESET Online Scanner v3
Google Toolbar for Internet Explorer (Version: 1.0.0)
Google Toolbar for Internet Explorer (Version: 7.4.3230.2052)
Google Update Helper (Version: 1.3.21.123)
GUI (Version: 4.20.0080)
Hello Tomorrow (Version: 1.03.10)
High Definition Audio Driver Package - KB835221 (Version: 20040219.000000)
High Definition Audio Driver Package - KB888111 (Version: 20040219.000000)
HitmanPro 3.6 (Version: 3.6.2.174)
Intel® Graphics Media Accelerator Driver
Intel® PROSet/Wireless Software (Version: 11.01.0000)
InterVideo WinDVD
Java 6 Update 3 (Version: 1.6.0.30)
join.me (Version: 1.5.2.225)
Juniper Networks Cache Cleaner 5.2.0 (Version: 5.2.0.9469)
Juniper Networks Secure Application Manager (Version: 7.1.0.20169)
Juniper Networks Secure Meeting 6.5.0 (Version: 6.5.0.14771)
Juniper Networks, Inc. Setup Client (Version: 7.1.6.17115)
Macromedia Shockwave Player (Version: 10.1.0.11)
Malwarebytes Anti-Malware version 1.65.1.1000 (Version: 1.65.1.1000)
mCore (Version: 9.03.0000)
mDriver (Version: 9.03.0000)
mDrWiFi (Version: 9.03.0000)
mHlpDell (Version: 9.03.0000)
Microsoft .NET Framework 1.1 (Version: 1.1.4322)
Microsoft .NET Framework 1.1 Security Update (KB2656353)
Microsoft .NET Framework 1.1 Security Update (KB2656370)
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft Application Error Reporting (Version: 12.0.6012.5000)
Microsoft Compression Client Pack 1.0 for Windows XP (Version: 1)
Microsoft Office Live Meeting 2005 (Version: 7.2.1816.2)
Microsoft Office Professional Edition 2003 (Version: 11.0.7969.0)
Microsoft Security Client (Version: 4.1.0522.0)
Microsoft Security Essentials (Version: 4.1.522.0)
Microsoft User-Mode Driver Framework Feature Pack 1.0
mIWA (Version: 9.03.0000)
mLogView (Version: 9.03.0000)
mMHouse (Version: 9.03.0000)
mPfMgr (Version: 9.03.0000)
mPfWiz (Version: 9.03.0000)
mProSafe (Version: 9.00.0000)
mSCfg (Version: 9.03.0000)
MSN Music Assistant
mSSO (Version: 9.03.0000)
MSXML 6 Service Pack 2 (KB973686) (Version: 6.20.2003.0)
mWlsSafe (Version: 9.00.0000)
mWMI (Version: 9.03.0000)
mZConfig (Version: 9.03.0000)
OSCE_MSI_NT_CLIENT (Version: 7.3)
OZ776 SCR Driver V1.1.3.9 (Version: 1.1.3.9)
PDFCreator (Version: 1.5.0)
PMAC (Version: 1.4.57.0)
QuickSet (Version: 8.1.10)
QuickTime (Version: 7.2.0.240)
SigmaTel Audio (Version: 5.10.4820.0)
SMOC (Version: 1.4.57.0)
Sonic DLA (Version: 4.95)
Sonic RecordNow! Plus (Version: 7.3)
Sonic Update Manager (Version: 2.9)
Trend Micro OfficeScan Client (Version: 10.0.0.3071)
Update for Windows Internet Explorer 8 (KB976662) (Version: 1)
Update for Windows XP (KB2345886) (Version: 1)
Update for Windows XP (KB2661254-v2) (Version: 2)
Update for Windows XP (KB2718704) (Version: 1)
Update for Windows XP (KB2736233) (Version: 1)
Update for Windows XP (KB2749655) (Version: 1)
Update for Windows XP (KB951978) (Version: 1)
Update for Windows XP (KB955759) (Version: 1)
Update for Windows XP (KB967715) (Version: 1)
Update for Windows XP (KB968389) (Version: 1)
Update for Windows XP (KB971029) (Version: 1)
Update for Windows XP (KB971737) (Version: 1)
Update for Windows XP (KB973687) (Version: 1)
Update for Windows XP (KB973815) (Version: 1)
WebFldrs XP (Version: 9.50.7523)
Windows Genuine Advantage Notifications (KB905474) (Version: 1.9.0040.0)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Genuine Advantage Validation Tool (KB892130) (Version: 1.7.0036.0)
Windows Internet Explorer 8 (Version: 20090308.140743)
Windows Media Format 11 runtime
Windows Media Player 11
Windows XP Service Pack 3 (Version: 20080414.031525)
========================= Memory info: ===================================
Percentage of memory in use: 43%
Total physical RAM: 2038.04 MB
Available physical RAM: 1153.64 MB
Total Pagefile: 3930.19 MB
Available Pagefile: 3193.76 MB
Total Virtual: 2047.88 MB
Available Virtual: 1968.29 MB
========================= Partitions: =====================================
1 Drive c: () (Fixed) (Total:149.05 GB) (Free:132.43 GB) NTFS
========================= Users: ========================================
User accounts for \\AVONFSMLABRAKEK
Administrator ASPNET avonwpc
Guest HelpAssistant labrakek
SUPPORT_388945a0
========================= Restore Points ==================================
23-10-2012 20:15:06 System Checkpoint
26-10-2012 12:20:25 System Checkpoint
29-10-2012 19:27:09 System Checkpoint
30-10-2012 22:17:50 System Checkpoint
01-11-2012 16:26:49 System Checkpoint
04-11-2012 00:22:54 System Checkpoint
05-11-2012 02:00:01 System Checkpoint
06-11-2012 03:08:38 System Checkpoint
07-11-2012 04:03:28 System Checkpoint
08-11-2012 23:34:57 System Checkpoint
10-11-2012 23:45:08 System Checkpoint
12-11-2012 17:10:17 Software Distribution Service 3.0
12-11-2012 17:11:32 Software Distribution Service 3.0
13-11-2012 16:51:38 Software Distribution Service 3.0
13-11-2012 17:58:35 Software Distribution Service 3.0
14-11-2012 23:13:37 Software Distribution Service 3.0
15-11-2012 23:59:20 Software Distribution Service 3.0
16-11-2012 12:02:48 Software Distribution Service 3.0
16-11-2012 13:10:12 Restore Operation
16-11-2012 13:17:36 Restore Operation
16-11-2012 13:23:30 Restore Operation
16-11-2012 14:04:15 Malwarebytes Anti-Rootkit Restore Point
**** End of log ****
Farber:
Farbar Service Scanner Version: 09-11-2012
Ran by labrakek (administrator) on 16-11-2012 at 15:36:30
Running from "C:\Documents and Settings\labrakek\Local Settings\Temporary Internet Files\Content.IE5\Z6VIGURE"
Microsoft Windows XP Service Pack 3 (X86)
Boot Mode: Normal
****************************************************************
Internet Services:
============
Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo IP is accessible.
Yahoo.com is accessible.
Windows Firewall:
=============
sharedaccess Service is not running. Checking service configuration:
Checking Start type: ATTENTION!=====> Unable to retrieve start type of sharedaccess. The value does not exist.
Checking ImagePath: ATTENTION!=====> Unable to retrieve ImagePath of sharedaccess. The value does not exist.
Unable to retrieve ServiceDll of sharedaccess. The value does not exist.
Firewall Disabled Policy:
==================
System Restore:
============
System Restore Disabled Policy:
========================
Security Center:
============
Windows Update:
============
Windows Autoupdate Disabled Policy:
============================
File Check:
========
C:\WINDOWS\system32\dhcpcsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\afd.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\netbt.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\tcpip.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\ipsec.sys => MD5 is legit
C:\WINDOWS\system32\dnsrslvr.dll => MD5 is legit
C:\WINDOWS\system32\ipnathlp.dll => MD5 is legit
C:\WINDOWS\system32\netman.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\srsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\sr.sys => MD5 is legit
C:\WINDOWS\system32\wscsvc.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\wuauserv.dll => MD5 is legit
C:\WINDOWS\system32\qmgr.dll => MD5 is legit
C:\WINDOWS\system32\es.dll => MD5 is legit
C:\WINDOWS\system32\cryptsvc.dll => MD5 is legit
C:\WINDOWS\system32\svchost.exe => MD5 is legit
C:\WINDOWS\system32\rpcss.dll => MD5 is legit
C:\WINDOWS\system32\services.exe => MD5 is legit
Extra List:
=======
AegisP(14) Bridge(16) BridgeMP(15) DNE(13) Gpc(3) IPSec(5) NEOFLTR_520_9469(8) NEOFLTR_710_20169(17) NetBT(6) PSched(7) s24trans(10) Tcpip(4)
0x10000000050000000100000002000000030000000400000011000000080000000600000007000000090000000A0000000B0000000D0000000E0000000F00000010000000
IpSec Tag value is correct.
**** End of log ****
Adware Cleaner
# AdwCleaner v2.007 - Logfile created 11/16/2012 at 15:41:47
# Updated 06/11/2012 by Xplode
# Operating system : Microsoft Windows XP Service Pack 3 (32 bits)
# User : labrakek - AVONFSMLABRAKEK
# Boot Mode : Normal
# Running from : C:\Documents and Settings\labrakek\Local Settings\Temporary Internet Files\Content.IE5\F2W8LFGI\adwcleaner[1].exe
# Option [Delete]
***** [Services] *****
***** [Files / Folders] *****
Folder Deleted : C:\Documents and Settings\labrakek\Application Data\pdfforge
***** [Registry] *****
Key Deleted : HKLM\Software\Freeze.com
***** [Internet Browsers] *****
-\\ Internet Explorer v8.0.6001.18702
[OK] Registry is clean.
-\\ Google Chrome v [Unable to get version]
File : C:\Documents and Settings\labrakek\Local Settings\Application Data\Google\Chrome\User Data\Default\Preferences
[OK] File is clean.
*************************
AdwCleaner[S1].txt - [909 octets] - [16/11/2012 15:41:47]
########## EOF - C:\AdwCleaner[S1].txt - [968 octets] ##########
Junkware Removal Tool:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 3.1.3 (11.16.2012)
OS: Microsoft Windows XP x86
Ran by labrakek on Fri 11/16/2012 at 15:49:31.18
Blog:
http://thisisudax.blogspot.com
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
~~~ Files
~~~ Folders
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Fri 11/16/2012 at 15:59:06.81
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~