DDS (Version 1.1.0) - NTFSx86
Run by LaNi1 at 23:50:40.37 on Sat 12/20/2008
Internet Explorer: 6.0.2900.2180
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.511.299 [GMT 1:00]
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\MessengerDiscovery\MessengerDiscovery Live.exe
C:\Program Files\Winamp\Winamp.exe
C:\Program Files\Opera\opera.exe
C:\Documents and Settings\LaNi1\My Documents\dds.com
============== Pseudo HJT Report ===============
uStart Page = hxxp://www.google.com/
mDefault_Page_URL = WWW.GOOGLE.COM
uRun: [MsnMsgr] "c:\program files\windows live\messenger\MsnMsgr.Exe" /background
mRun: [Malwarebytes Anti-Malware (reboot)] "c:\program files\malwarebytes' anti-malware\mbam.exe" /runcleanupscript
mRunOnce: [Malwarebytes' Anti-Malware] c:\program files\malwarebytes' anti-malware\mbamgui.exe /install /silent
StartupFolder: c:\docume~1\lani1\startm~1\programs\startup\BROADB~1.LNK -
uPolicies-explorer: ForceClassicControlPanel = 1 (0x1)
mPolicies-system: DisableStatusMessages = 1 (0x1)
================= FIREFOX ===================
FF - ProfilePath - c:\docume~1\lani1\applic~1\mozilla\firefox\profiles\ecmc9ooe.default\
FF - prefs.js: browser.startup.homepage - www.google.com
============= SERVICES / DRIVERS ===============
R0 secdir;Folder Security Personal;c:\windows\system32\secdir.sys [2008-12-1 73216]
=============== Created Last 30 ================
2008-12-20 23:26 <DIR> --d----- c:\program files\common files\eSellerate
2008-12-20 23:19 61,440 a------- c:\windows\system32\drivers\ohsr.sys
2008-12-20 23:09 <DIR> --d----- c:\program files\Malwarebytes' Anti-Malware
2008-12-20 17:44 <DIR> --d----- c:\program files\common files\Adobe Systems Shared
2008-12-19 18:24 <DIR> --d----- c:\windows\Album
2008-12-19 18:16 267,740 -------- c:\windows\unvise32.exe
2008-12-18 22:54 <DIR> --d----- c:\windows\Downloaded Installations
2008-12-18 21:56 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Boson Software
2008-12-18 17:32 1,564 a------- c:\windows\clock.avi.sfk
2008-12-18 15:47 <DIR> --d----- c:\program files\Sony Setup
2008-12-15 17:56 <DIR> --d----- c:\program files\Codec Pack - All In 1
2008-12-13 22:37 61,440 a------- c:\windows\ContextMenuExt.dll
2008-12-12 14:00 <DIR> --ds---- c:\documents and settings\lani1\UserData
2008-12-12 12:06 <DIR> --d----- c:\docume~1\lani1\applic~1\Intein
2008-12-11 19:28 <DIR> --d----- c:\program files\TeamViewer
2008-12-11 00:06 1,060,864 a------- c:\windows\system32\MFC71.dll
2008-12-11 00:06 499,712 a------- c:\windows\system32\MSVCP71.dll
2008-12-10 23:22 2,359,350 a------- c:\windows\system32\untitled.bmp
2008-12-10 22:46 250 a------- c:\windows\gmer.ini
2008-12-09 23:33 <DIR> --d----- c:\windows\system32\ReinstallBackups
2008-12-05 23:25 93 a------- c:\windows\ed.INI
2008-12-04 19:16 26,496 ac------ c:\windows\system32\dllcache\usbstor.sys
2008-12-04 18:53 <DIR> --d----- c:\program files\Challenger Tetris
2008-12-04 18:44 <DIR> --d----- c:\docume~1\lani1\applic~1\AvexLab
2008-12-04 18:32 <DIR> --d----- c:\program files\Fantasy Tetrix
2008-12-03 18:56 <DIR> --d----- c:\program files\TERMINAL Studio
2008-12-02 21:07 <DIR> --d----- c:\windows\SxsCaPendDel
2008-12-02 18:27 <DIR> --d----- c:\docume~1\lani1\applic~1\FreeCall
2008-12-02 18:02 86,016 a------- c:\windows\system32\GizmoPluginCPL.cpl
2008-12-02 15:46 836,052 a------- c:\windows\is-4C697.exe
2008-12-02 15:46 207 a------- c:\windows\is-4C697.lst
2008-12-02 14:39 <DIR> --d----- c:\docume~1\lani1\applic~1\TeamViewer
2008-12-02 14:39 <DIR> --d----- c:\documents and settings\lani1\temp
2008-12-02 14:14 <DIR> --d----- c:\windows\system32\QuickTime
2008-12-02 14:14 102,400 a------- c:\windows\system32\tsccvid.dll
2008-12-02 13:20 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Avg8
2008-12-02 11:14 <DIR> --d----- c:\windows\system32\appmgmt
2008-12-01 23:39 <DIR> --d----- c:\docume~1\lani1\applic~1\Malwarebytes
2008-12-01 23:39 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Malwarebytes
2008-12-01 23:18 5,504 ac------ c:\windows\system32\dllcache\mstee.sys
2008-12-01 23:18 5,504 a------- c:\windows\system32\drivers\MSTEE.sys
2008-12-01 23:16 <DIR> --d----- c:\windows\help
2008-12-01 23:14 <DIR> --d----- C:\4DiskcleanG
2008-12-01 23:06 57,472 a------- c:\windows\system32\drivers\redbook.sys
2008-12-01 23:06 1,888,992 a------- c:\windows\system32\ati3duag.dll
2008-12-01 23:06 870,784 a------- c:\windows\system32\ati3d1ag.dll
2008-12-01 23:06 701,440 a------- c:\windows\system32\drivers\ati2mtag.sys
2008-12-01 23:06 516,768 a------- c:\windows\system32\ativvaxx.dll
2008-12-01 23:06 229,376 a------- c:\windows\system32\ati2cqag.dll
2008-12-01 23:06 201,728 a------- c:\windows\system32\ati2dvag.dll
2008-12-01 23:06 10,624 a------- c:\windows\system32\drivers\gameenum.sys
2008-12-01 23:05 42,368 a------- c:\windows\system32\drivers\AGP440.SYS
2008-12-01 23:05 5,504 a------- c:\windows\system32\drivers\intelide.sys
2008-12-01 23:05 914,904 a------- c:\windows\iun6002.exe
2008-12-01 23:05 20,016 -------- c:\windows\system32\drivers\pxhelp20.sys
2008-12-01 23:05 <DIR> --d----- c:\program files\Gilly Messenger
2008-12-01 23:05 <DIR> --dsh--- c:\documents and settings\all users\DRM
2008-12-01 23:05 74,240 a------- c:\windows\system32\usbui.dll
2008-12-01 23:04 <DIR> --d----- c:\program files\Avance Sound Manager
2008-12-01 23:04 <DIR> --d----- c:\program files\AvRack
2008-12-01 23:04 <DIR> --d----- c:\program files\Unlocker
2008-12-01 23:03 <DIR> --d----- c:\program files\Eng-Alb
2008-12-01 23:02 411,106 a------- c:\windows\system32\PerfStringBackup.INI
2008-12-01 23:02 <DIR> --d----- c:\program files\common files\ODBC
2008-12-01 23:02 <DIR> --d----- c:\program files\common files\SpeechEngines
2008-12-01 23:01 <DIR> --d--r-- c:\documents and settings\all users\Documents
2008-12-01 23:01 399,645 ac------ c:\windows\system32\dllcache\MAPIMIG.CAT
2008-12-01 22:59 261 a------- c:\windows\system32\$winnt$.inf
2008-12-01 22:58 <DIR> --d----- c:\documents and settings\lani1\Contacts
2008-12-01 22:56 230,870 a------- c:\windows\amcap.exe
2008-12-01 22:56 <DIR> --d----- c:\program files\KYE
2008-12-01 22:56 464,342 a------- c:\windows\vsnpstd2.exe
2008-12-01 22:56 245,408 a------- c:\windows\system32\unicows.dll
2008-12-01 22:56 53,248 a------- c:\windows\system32\dsnpstd2.dll
2008-12-01 22:56 15,541 a------- c:\windows\snpstd2.ini
2008-12-01 22:56 13,023 a------- c:\windows\snpstd2.src
2008-12-01 22:55 334,080 a------- c:\windows\system32\drivers\snpstd2.sys
2008-12-01 22:55 40,960 a------- c:\windows\system32\rsnpstd2.dll
2008-12-01 22:55 61,440 a------- c:\windows\system32\csnpstd2.dll
2008-12-01 22:55 36,864 a------- c:\windows\system32\vsnpstd2.dll
2008-12-01 22:55 36,864 a------- c:\windows\system32\dsnpstd2.ax
2008-12-01 22:55 198,100 a------- c:\windows\usnpstd2.exe
2008-12-01 22:55 <DIR> --d----- c:\program files\common files\snpstd2
2008-12-01 22:52 <DIR> --d----- c:\docume~1\lani1\applic~1\AusLogics
2008-12-01 22:50 <DIR> --d----- c:\program files\Auslogics
2008-12-01 22:41 <DIR> --d----- c:\program files\Folder Security Personal 4.1
2008-12-01 22:36 <DIR> --d----- c:\program files\Trend Micro
2008-12-01 22:36 <DIR> --d----- c:\program files\CCleaner
2008-12-01 22:34 <DIR> --d----- c:\program files\GMX
2008-12-01 22:14 <DIR> --d-h--- c:\program files\WindowsUpdate
2008-12-01 22:12 <DIR> --d----- c:\program files\common files\MSSoap
2008-12-01 22:11 <DIR> --d----- c:\program files\Online Services
2008-12-01 22:11 <DIR> --d----- c:\program files\Messenger
2008-12-01 22:11 <DIR> --d----- c:\program files\MSN Gaming Zone
2008-12-01 22:10 <DIR> --d----- c:\program files\Windows NT
2008-12-01 22:09 <DIR> --d----- c:\program files\MessengerDiscovery
==================== Find3M ====================
2008-12-11 00:15 382,430 a------- c:\windows\alcupd.exe
2008-12-11 00:15 312,796 a------- c:\windows\alcrmv.exe
2008-12-10 23:52 312,790 a------- c:\windows\UNDPX2A.exe
2008-12-10 23:52 224,214 a------- c:\windows\SOUNDMAN.EXE
2008-12-02 13:11 229,336 a------- c:\windows\system32\migpwd.exe
2008-12-02 13:11 198,614 a------- c:\windows\system32\faxpatch.exe
2008-12-02 13:04 187,352 a------- c:\windows\system32\comsdupd.exe
2008-12-02 13:04 198,098 a------- c:\windows\system32\cliconfg.exe
2008-12-01 22:11 21,640 a------- c:\windows\system32\emptyregdb.dat
============= FINISH: 23:50:54.51 ===============
==========================================
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
DDS (Version 1.0)
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 12/1/2008 10:22:59 PM
System Uptime: 12/20/2008 10:51:17 PM (1 hours ago)
Motherboard: | | i845-PC87366
Processor: Intel® Pentium® 4 CPU 2.40GHz | Socket 478 | 2393/133mhz
==== Disk Partitions =========================
C: is FIXED (NTFS) - 10 GiB total, 1.259 GiB free.
D: is FIXED (NTFS) - 29 GiB total, 12.02 GiB free.
==== Disabled Device Manager Items =============
==== System Restore Points ===================
No restore point in system.
==== Installed Programs ======================
4Diskclean Pro
Adobe Common File Installer
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Photoshop CS2
Adobe Stock Photos 1.0
Auslogics BoostSpeed
Avance AC'97 Audio
Camtasia Studio 3
CCleaner (remove only)
Codec Pack - All In 1 6.0.3.0
Folder Security Personal 4.1
Gilly Messenger
GMX SMS-Manager
HijackThis 2.0.2
Mozilla Firefox (3.0.4)
Opera 9.51
Scientific-Atlanta WebSTAR 2000 series Cable Modem
TeamViewer 4
Tetris Arena 1.0
Unlocker 1.8.7
VideoCAM Look
WebFldrs XP
Winamp (remove only)
Windows Live Messenger
WinRAR archiver
==== Event Viewer Messages From Past Week ========
12/16/2008 9:09:10 PM, error: W32Time [17] - Time Provider NtpClient: An error occurred during DNS lookup of the manually configured peer 'time.windows.com,0x1'. NtpClient will try the DNS lookup again in 15 minutes. The error was: A socket operation was attempted to an unreachable host. (0x80072751)
12/16/2008 8:13:18 PM, error: Service Control Manager [7023] - The Computer Browser service terminated with the following error: This operation returned because the timeout period expired.
12/16/2008 6:00:18 PM, error: SideBySide [59] - Generate Activation Context failed for C:\WINDOWS\system32\GizmoPluginCPL.cpl. Reference error message: The operation completed successfully. .
12/16/2008 6:00:18 PM, error: SideBySide [59] - Resolve Partial Assembly failed for Microsoft.VC80.MFC. Reference error message: The referenced assembly is not installed on your system. .
12/16/2008 6:00:18 PM, error: SideBySide [32] - Dependent Assembly Microsoft.VC80.MFC could not be found and Last Error was The referenced assembly is not installed on your system.
12/14/2008 12:10:22 PM, error: DCOM [10005] - DCOM got error "%1058" attempting to start the service usnjsvc with arguments "" in order to run the server: {98AC5C33-EE18-4EC2-BE25-3B16EE8F75F1}
12/13/2008 10:48:32 PM, error: Service Control Manager [7034] - The Windows Installer service terminated unexpectedly. It has done this 1 time(s).
12/13/2008 10:41:04 PM, error: Service Control Manager [7034] - The TeamViewer 4 service terminated unexpectedly. It has done this 1 time(s).
12/16/2008 11:03:35 PM, error: DCOM [10005] - DCOM got error "%1058" attempting to start the service StiSvc with arguments "" in order to run the server: {A1F4E726-8CF1-11D1-BF92-0060081ED811}
12/17/2008 5:15:48 PM, error: Service Control Manager [7034] - The Adobe LM Service service terminated unexpectedly. It has done this 1 time(s).
12/17/2008 5:41:54 PM, error: Service Control Manager [7034] - The Adobe LM Service service terminated unexpectedly. It has done this 2 time(s).
12/17/2008 5:41:55 PM, error: Service Control Manager [7031] - The Print Spooler service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
12/18/2008 4:01:32 PM, error: Service Control Manager [7031] - The .NET Runtime Optimization Service v2.0.50727_X86 service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
12/18/2008 4:03:04 PM, error: Service Control Manager [7031] - The .NET Runtime Optimization Service v2.0.50727_X86 service terminated unexpectedly. It has done this 2 time(s). The following corrective action will be taken in 960000 milliseconds: Restart the service.
12/18/2008 4:19:04 PM, error: Service Control Manager [7032] - The Service Control Manager tried to take a corrective action (Restart the service) after the unexpected termination of the .NET Runtime Optimization Service v2.0.50727_X86 service, but this action failed with the following error: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.
12/20/2008 2:19:44 PM, error: Dhcp [1001] - Your computer was not assigned an address from the network (by the DHCP Server) for the Network Card with network address 001CEA4A3470. The following error occurred: The semaphore timeout period has expired. . Your computer will continue to try and obtain an address on its own from the network address (DHCP) server.
12/20/2008 6:06:29 PM, error: Service Control Manager [7031] - The Print Spooler service terminated unexpectedly. It has done this 2 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
12/20/2008 11:25:42 PM, error: SideBySide [32] - Dependent Assembly Microsoft.VC80.CRT could not be found and Last Error was The referenced assembly is not installed on your system.
12/20/2008 11:25:42 PM, error: SideBySide [59] - Resolve Partial Assembly failed for Microsoft.VC80.CRT. Reference error message: The referenced assembly is not installed on your system. .
12/20/2008 11:25:42 PM, error: SideBySide [59] - Generate Activation Context failed for C:\Program Files\Sony\Shared Plug-Ins\Audio\sfresfilter.dll. Reference error message: The operation completed successfully. .
12/20/2008 11:25:42 PM, error: SideBySide [59] - Generate Activation Context failed for C:\Program Files\Sony\Shared Plug-Ins\Audio\sftrkfx1.dll. Reference error message: The operation completed successfully. .
12/20/2008 11:25:43 PM, error: SideBySide [59] - Generate Activation Context failed for C:\Program Files\Sony\Shared Plug-Ins\Audio\sfppack1.dll. Reference error message: The operation completed successfully. .
12/20/2008 11:25:44 PM, error: SideBySide [59] - Generate Activation Context failed for C:\Program Files\Sony\Shared Plug-Ins\Audio\sfppack2.dll. Reference error message: The operation completed successfully. .
12/20/2008 11:25:45 PM, error: SideBySide [59] - Generate Activation Context failed for C:\Program Files\Sony\Shared Plug-Ins\Audio\sfppack3.dll. Reference error message: The operation completed successfully. .
12/20/2008 11:25:45 PM, error: SideBySide [59] - Generate Activation Context failed for C:\Program Files\Sony\Shared Plug-Ins\Audio\sfxpfx1.dll. Reference error message: The operation completed successfully. .
12/20/2008 11:25:46 PM, error: SideBySide [59] - Generate Activation Context failed for C:\Program Files\Sony\Shared Plug-Ins\Audio\sfxpfx2.dll. Reference error message: The operation completed successfully. .
12/20/2008 11:25:47 PM, error: SideBySide [59] - Generate Activation Context failed for C:\Program Files\Sony\Shared Plug-Ins\Audio\sfxpfx3.dll. Reference error message: The operation completed successfully. .
12/20/2008 11:25:54 PM, error: SideBySide [59] - Generate Activation Context failed for C:\Program Files\Sony\Shared Plug-Ins\Audio\sffrgpnv.dll. Reference error message: The operation completed successfully. .
12/20/2008 11:25:54 PM, error: SideBySide [59] - Generate Activation Context failed for C:\Program Files\Sony\Shared Plug-Ins\Audio\xpvinyl.dll. Reference error message: The operation completed successfully. .
12/20/2008 11:25:54 PM, error: SideBySide [59] - Generate Activation Context failed for C:\Program Files\Sony\Vegas Movie Studio Platinum 9.0\sfvstwrap.dll. Reference error message: The operation completed successfully. .
12/16/2008 5:01:31 PM, information: Windows File Protection [64001] - File replacement was attempted on the protected system file c:\windows\system32\openfiles.exe. This file was restored to the original version to maintain system stability. The file version of the bad file is 5.1.2600.2180, the version of the system file is 5.1.2600.2180.
12/16/2008 4:54:12 PM, information: Windows File Protection [64001] - File replacement was attempted on the protected system file c:\windows\system32\gpresult.exe. This file was restored to the original version to maintain system stability. The file version of the bad file is 5.1.2600.2180, the version of the system file is 5.1.2600.2180.
12/16/2008 4:52:06 PM, information: Windows File Protection [64001] - File replacement was attempted on the protected system file c:\windows\system32\eventtriggers.exe. This file was restored to the original version to maintain system stability. The file version of the bad file is 5.1.2600.0, the version of the system file is 5.1.2600.0.
12/16/2008 4:52:06 PM, information: Windows File Protection [64001] - File replacement was attempted on the protected system file c:\windows\system32\eventcreate.exe. This file was restored to the original version to maintain system stability. The file version of the bad file is 5.1.2600.2180, the version of the system file is 5.1.2600.2180.
12/16/2008 4:51:04 PM, information: Windows File Protection [64001] - File replacement was attempted on the protected system file c:\windows\system32\driverquery.exe. This file was restored to the original version to maintain system stability. The file version of the bad file is 5.1.2600.0, the version of the system file is 5.1.2600.0.
12/16/2008 3:24:19 PM, information: Windows File Protection [64001] - File replacement was attempted on the protected system file c:\windows\system32\tourstart.exe. This file was restored to the original version to maintain system stability. The file version of the bad file is 6.0.2900.2180, the version of the system file is 6.0.2900.2180.
12/16/2008 3:23:19 PM, information: Windows File Protection [64001] - File replacement was attempted on the protected system file c:\windows\system32\systeminfo.exe. This file was restored to the original version to maintain system stability. The file version of the bad file is 5.1.2600.0, the version of the system file is 5.1.2600.0.
12/16/2008 3:19:18 PM, information: Windows File Protection [64001] - File replacement was attempted on the protected system file c:\windows\system32\schtasks.exe. This file was restored to the original version to maintain system stability. The file version of the bad file is 5.1.2600.2180, the version of the system file is 5.1.2600.2180.
12/18/2008 10:33:14 PM, information: Windows File Protection [64002] - File replacement was attempted on the protected system file c:\windows\slrundll.exe. This file was restored to the original version to maintain system stability. The file version of the system file is 3.80.1.0.
==== End Of File ===========================
This post has been edited by PropagandaPanda: 21 December 2008 - 08:42 PM