Also this morning prior to doing the following scanning i had a SCRSS.DLL in my startup and such...
I've run CCleaner - Malwareremover - AVG - Trendmicro- and Spydoctor
Help.. it was at the point where whenever i'd open my IE it would clsoe immediately and when i would type any msg on AIM it'd close immediately... some of the scanning i've done has helped that out as that doesnt seem to be working but am gettin annoying popups which I can usually get rid of...
here's my log
DDS (Ver_09-01-07.01) - NTFSx86
Run by SAL at 16:54:07.07 on Fri 01/09/2009
Internet Explorer: 6.0.2900.2180
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.1791.1264 [GMT -5:00]
AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated)
AV: ESET NOD32 antivirus system 2.70 *On-access scanning enabled* (Updated)
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\WINDOWS\System32\svchost.exe -k imgsvc
C:\WINDOWS\system32\MsPMSPSv.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Creative Professional\E-MU PatchMix DSP\EmuPatchMixDSP.exe
C:\Documents and Settings\SAL\Desktop\dds.scr
============== Pseudo HJT Report ===============
uStart Page = hxxp://gmail.com/
uInternet Settings,ProxyOverride = *.local
BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg8\avgssie.dll
BHO: c:\windows\system32\rakmdlkd83indfgnbu.dll: {d5bf4552-94f1-42bd-f434-3604812c807d} - c:\windows\system32\rakmdlkd83indfgnbu.dll
TB: Viewpoint Toolbar: {f8ad5aa5-d966-4667-9daf-2561d68b2012} - c:\program files\viewpoint\viewpoint toolbar\ViewBar.dll
TB: {BA52B914-B692-46c4-B683-905236F6F655} - No File
TB: {0BF43445-2F28-4351-9252-17FE6E806AA0} - No File
TB: {724D43A0-0D85-11D4-9908-00400523E39A} - No File
EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
uRun: [cogad] "c:\documents and settings\sal\application data\cogad\cogad.exe" 61A847B5BBF728173599284503996897C881250221C8670836AC4FA7C8833201749139
mRun: [AVG8_TRAY] c:\progra~1\avg\avg8\avgtray.exe
IE: &Viewpoint Search - c:\program files\viewpoint\viewpoint toolbar\ViewBar.dll/CXTSEARCH.HTML
LSP: c:\windows\system32\imon.dll
Trusted Zone: aol.com\free
TCP: {7B8ADE24-E8C9-4E8A-882B-EDEB03EB2FE2} = 24.29.103.15,24.29.103.16
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg8\avgpp.dll
Notify: WRNotifier - WRLogonNTF.dll
AppInit_DLLs: oykppo.dll,avgrsstx.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
STS: c:\windows\system32\rakmdlkd83indfgnbu.dll: {d5bf4552-94f1-42bd-f434-3604812c807d} - c:\windows\system32\rakmdlkd83indfgnbu.dll
================= FIREFOX ===================
FF - ProfilePath - c:\docume~1\sal\applic~1\mozilla\firefox\profiles\u09gxoft.sal\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - gmail.com
FF - component: c:\program files\avg\avg8\firefox\components\avgssff.dll
FF - plugin: c:\program files\java\jre1.5.0_02\bin\NPJava11.dll
FF - plugin: c:\program files\java\jre1.5.0_02\bin\NPJava12.dll
FF - plugin: c:\program files\java\jre1.5.0_02\bin\NPJava13.dll
FF - plugin: c:\program files\java\jre1.5.0_02\bin\NPJava14.dll
FF - plugin: c:\program files\java\jre1.5.0_02\bin\NPJava32.dll
FF - plugin: c:\program files\java\jre1.5.0_02\bin\NPJPI150_02.dll
FF - plugin: c:\program files\java\jre1.5.0_02\bin\NPOJI610.dll
FF - plugin: c:\program files\viewpoint\viewpoint media player\npViewpoint.dll
---- FIREFOX POLICIES ----
FF - user.js: dom.disable_open_during_load - true // Popupblocker control handled by McAfee Privacy Service
============= SERVICES / DRIVERS ===============
R0 DigiFilter;DigiFilter;c:\windows\system32\drivers\DigiFilt.sys [2006-2-10 15872]
R1 Asapi;Asapi;c:\windows\system32\drivers\asapi.sys [2007-10-13 11264]
R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2009-1-8 97928]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86;c:\windows\system32\drivers\avgmfx86.sys [2009-1-8 26824]
R1 nod32drv;nod32drv;c:\windows\system32\drivers\nod32drv.sys [2008-12-26 15424]
R3 CLEDX;Team H2O CLEDX service;c:\windows\system32\drivers\cledx.sys [2007-10-13 33792]
R3 COMMONFX.SYS;COMMONFX.SYS;c:\windows\system32\drivers\COMMONFX.sys [2008-3-20 98328]
R3 CTEDSPFX.SYS;CTEDSPFX.SYS;c:\windows\system32\drivers\CTEDSPFX.sys [2008-3-20 259096]
R3 CTEDSPIO.SYS;CTEDSPIO.SYS;c:\windows\system32\drivers\CTEDSPIO.sys [2008-3-20 134168]
R3 CTEDSPSY.SYS;CTEDSPSY.SYS;c:\windows\system32\drivers\CTEDSPSY.sys [2008-3-20 309784]
R3 vdiskbus;Virtual Disk Bus;c:\windows\system32\drivers\VDiskBus.sys [2006-8-18 35107]
R4 avg8emc;AVG Free8 E-mail Scanner;c:\progra~1\avg\avg8\avgemc.exe [2009-1-8 875288]
R4 avg8wd;AVG Free8 WatchDog;c:\progra~1\avg\avg8\avgwdsvc.exe [2009-1-8 231704]
R4 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2009-1-8 76040]
S1 IpIock2;IpIock2;\??\c:\windows\system32\drivers\uagfdisk.sys --> c:\windows\system32\drivers\uagfdisk.sys [?]
S3 COMMONFX;COMMONFX;c:\windows\system32\drivers\COMMONFX.sys [2008-3-20 98328]
S3 CT20XUT.SYS;CT20XUT.SYS;c:\windows\system32\drivers\CT20XUT.sys [2008-3-20 171032]
S3 CT20XUT;CT20XUT;c:\windows\system32\drivers\CT20XUT.sys [2008-3-20 171032]
S3 CTAUDFX.SYS;CTAUDFX.SYS;c:\windows\system32\drivers\CTAUDFX.sys [2008-3-20 528920]
S3 CTAUDFX;CTAUDFX;c:\windows\system32\drivers\CTAUDFX.sys [2008-3-20 528920]
S3 CTEAPSFX.SYS;CTEAPSFX.SYS;c:\windows\system32\drivers\CTEAPSFX.sys [2008-3-20 163352]
S3 CTEAPSFX;CTEAPSFX;c:\windows\system32\drivers\CTEAPSFX.sys [2008-3-20 163352]
S3 CTEDSPFX;CTEDSPFX;c:\windows\system32\drivers\CTEDSPFX.sys [2008-3-20 259096]
S3 CTEDSPIO;CTEDSPIO;c:\windows\system32\drivers\CTEDSPIO.sys [2008-3-20 134168]
S3 CTEDSPSY;CTEDSPSY;c:\windows\system32\drivers\CTEDSPSY.sys [2008-3-20 309784]
S3 CTERFXFX.SYS;CTERFXFX.SYS;c:\windows\system32\drivers\CTERFXFX.sys [2008-3-20 99352]
S3 CTERFXFX;CTERFXFX;c:\windows\system32\drivers\CTERFXFX.sys [2008-3-20 99352]
S3 CTEXFIFX.SYS;CTEXFIFX.SYS;c:\windows\system32\drivers\CTEXFIFX.sys [2008-3-20 1324056]
S3 CTEXFIFX;CTEXFIFX;c:\windows\system32\drivers\CTEXFIFX.sys [2008-3-20 1324056]
S3 CTHWIUT.SYS;CTHWIUT.SYS;c:\windows\system32\drivers\CTHWIUT.sys [2008-3-20 72728]
S3 CTHWIUT;CTHWIUT;c:\windows\system32\drivers\CTHWIUT.sys [2008-3-20 72728]
S3 CTSBLFX.SYS;CTSBLFX.SYS;c:\windows\system32\drivers\CTSBLFX.sys [2008-3-20 534040]
S3 CTSBLFX;CTSBLFX;c:\windows\system32\drivers\CTSBLFX.sys [2008-3-20 534040]
S3 dalwdmservice;dal service;c:\windows\system32\drivers\Dalwdm.sys [2005-5-25 74752]
S3 DNINDIS5;DNINDIS5 NDIS Protocol Driver;c:\windows\system32\DNINDIS5.sys [2007-1-6 17149]
S3 IKFileSec;File Security Driver;c:\windows\system32\drivers\ikfilesec.sys [2007-10-20 41288]
S3 IKSysFlt;System Filter Driver;c:\windows\system32\drivers\iksysflt.sys [2007-10-20 62280]
S3 IKSysSec;System Security Driver;c:\windows\system32\drivers\iksyssec.sys [2007-10-20 79688]
S3 MPD16USB;AKAIpro MPD16 Driver;c:\windows\system32\drivers\MPD16USB.sys [2005-11-20 19712]
S3 RDID1045;Roland FANTOM-X;c:\windows\system32\drivers\RDWM1045.SYS [2005-7-11 59642]
S3 wg121;NETGEAR WG121 802.11g Wireless USB2.0 Adapter;c:\windows\system32\drivers\wg121nd5.sys --> c:\windows\system32\drivers\wg121nd5.sys [?]
S4 aawservice;Lavasoft Ad-Aware Service;c:\program files\lavasoft\ad-aware\aawservice.exe [2008-5-12 611664]
S4 AdLib FMR;AdLib FMR;c:\progra~1\adlib\adlibe~1\AdLibFMR.exe [2006-12-14 266240]
S4 Neepderasaa;Neepderasaa; [x]
S4 NOD32krn;NOD32 Kernel Service;c:\program files\eset\nod32krn.exe [2008-12-26 552064]
S4 sdAuxService;PC Tools Auxiliary Service;c:\program files\spyware doctor\svcntaux.exe [2007-10-20 742216]
S4 sdCoreService;PC Tools Security Service;c:\program files\spyware doctor\swdsvc.exe [2007-10-20 1415496]
S4 Stuffit Archive Name Service;Stuffit Archive Name Service;c:\program files\smith micro\stuffit11\ArcNameService.exe [2007-10-8 157000]
=============== Created Last 30 ================
2009-01-08 22:13 <DIR> --d-h--- C:\$AVG8.VAULT$
2009-01-08 22:05 10,520 a------- c:\windows\system32\avgrsstx.dll
2009-01-08 22:05 76,040 a------- c:\windows\system32\drivers\avgtdix.sys
2009-01-08 22:05 97,928 a------- c:\windows\system32\drivers\avgldx86.sys
2009-01-08 22:05 <DIR> --d----- c:\windows\system32\drivers\Avg
2009-01-08 22:04 <DIR> --d----- c:\program files\AVG
2009-01-08 22:04 <DIR> --d----- c:\docume~1\alluse~1\applic~1\avg8
2009-01-08 20:52 <DIR> --d----- c:\program files\AIM
2009-01-08 18:30 <DIR> --d----- c:\docume~1\sal\applic~1\cogad
2009-01-08 18:27 139,264 a------- c:\windows\system32\oykppo.dll
2009-01-08 18:27 139,264 a------- c:\windows\system32\hwdnqfpw.dll
2009-01-07 18:12 4,958,588 a------- c:\windows\{00000000-00000000-00000005-00001102-00000008-40021102}.CDF
2009-01-07 18:11 11,564 a------- c:\windows\system32\DVCState-{00000000-00000000-00000005-00001102-00000008-40021102}.rfx
2009-01-07 18:11 924 a------- c:\windows\system32\BMXCtrlState-{00000000-00000000-00000005-00001102-00000008-40021102}.rfx
2009-01-07 18:11 924 a------- c:\windows\system32\BMXBkpCtrlState-{00000000-00000000-00000005-00001102-00000008-40021102}.rfx
2009-01-07 18:11 64 a------- c:\windows\system32\BMXStateBkp-{00000000-00000000-00000005-00001102-00000008-40021102}.rfx
2009-01-07 18:11 64 a------- c:\windows\system32\BMXState-{00000000-00000000-00000005-00001102-00000008-40021102}.rfx
2009-01-07 18:10 86,016 a------- c:\windows\system32\cttele.dll
2009-01-07 18:09 114,688 a------- c:\windows\system32\OpenAL32.dll
2009-01-07 18:09 10,240 a------- c:\windows\CTDCRES.DLL
2009-01-07 18:09 2,560 a------- c:\windows\CTXFIRES.DLL
2009-01-05 22:05 1,764,864 a------- c:\windows\system32\Lexicon PSP42.dll
2009-01-05 22:05 <DIR> --d----- c:\program files\PSP 608 MultiDelay
2009-01-05 22:05 8,396,800 a------- c:\windows\system32\PSP 608.dll
2009-01-05 22:03 <DIR> --d----- c:\program files\PSP VintageWarmer 1.6.5
2009-01-05 22:03 6,533,120 a------- c:\windows\system32\PSP VintageWarmer.dll
2009-01-05 22:03 2,568,192 a------- c:\windows\system32\PSP VintageMeter.dll
2009-01-05 22:03 <DIR> --d----- c:\windows\PSP StereoPack
2009-01-05 22:03 <DIR> --d----- c:\program files\PSP StereoPack 1.8
2009-01-05 22:02 2,990,592 a------- c:\windows\system32\PSP 84.dll
2009-01-05 22:02 <DIR> --d----- c:\program files\PSP
2009-01-05 22:02 <DIR> --d----- c:\program files\PSP Nitro
2009-01-05 22:01 <DIR> --d----- c:\program files\PSPaudioware.com
2009-01-05 22:01 475,136 a------- c:\windows\system32\PSP MixBass.dll
2009-01-05 22:01 856,064 a------- c:\windows\system32\PSP MixTreble.dll
2009-01-05 22:01 708,608 a------- c:\windows\system32\PSP MixPressor.dll
2009-01-05 22:01 643,072 a------- c:\windows\system32\PSP MixSaturator.dll
2009-01-05 22:01 <DIR> --d----- c:\program files\PSP MixPack 1.8
2009-01-05 22:00 286,720 a------- c:\windows\iun506.exe
2009-01-05 22:00 <DIR> --d----- c:\program files\PSP MasterQ 1.0
2009-01-05 21:59 <DIR> --d----- c:\windows\PSP MasterComp
2009-01-05 21:59 <DIR> --d----- c:\program files\PSP MasterComp 1.0.0
2009-01-05 18:38 <DIR> --d----- c:\program files\Psicraft
2009-01-05 18:38 <DIR> --d----- c:\docume~1\sal\applic~1\Psicraft
2008-12-28 21:19 32,000 a------- c:\windows\system32\drivers\usbaapl.sys
2008-12-26 23:07 512,096 a------- c:\windows\system32\drivers\amon.sys
2008-12-26 23:07 298,104 a------- c:\windows\system32\imon.dll
2008-12-26 23:07 15,424 a------- c:\windows\system32\drivers\nod32drv.sys
2008-12-26 23:06 <DIR> --d----- c:\program files\ESET
2008-12-21 09:58 <DIR> --d----- c:\docume~1\sal\applic~1\Malwarebytes
2008-12-21 09:57 15,504 a------- c:\windows\system32\drivers\mbam.sys
2008-12-21 09:57 38,496 a------- c:\windows\system32\drivers\mbamswissarmy.sys
2008-12-21 09:57 <DIR> --d----- c:\program files\Malwarebytes' Anti-Malware
2008-12-21 09:57 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Malwarebytes
2008-12-20 15:24 <DIR> --d----- c:\documents and settings\sal\.housecall6.6
2008-12-19 21:40 129,784 a------- c:\windows\system32\pxafs.dll
2008-12-19 21:40 120,056 a------- c:\windows\system32\pxcpyi64.exe
2008-12-19 21:40 118,520 a------- c:\windows\system32\pxinsi64.exe
2008-12-19 21:40 9,464 a------- c:\windows\system32\drivers\cdralw2k.sys
2008-12-19 21:40 9,336 a------- c:\windows\system32\drivers\cdr4_xp.sys
2008-12-19 21:39 <DIR> --d----- c:\program files\DivX
==================== Find3M ====================
2009-01-07 18:09 409,600 a------- c:\windows\system32\wrap_oal.dll
2009-01-05 22:05 659,456 a------- c:\windows\iun6002.exe
2008-11-21 16:47 524,288 a------- c:\windows\system32\DivXsm.exe
2008-11-21 16:47 3,596,288 a------- c:\windows\system32\qt-dx331.dll
2008-11-21 16:47 43,528 a------- c:\windows\system32\drivers\pxhelp20.sys
2008-11-21 16:46 1,044,480 a------- c:\windows\system32\libdivx.dll
2008-11-21 16:46 200,704 a------- c:\windows\system32\ssldivx.dll
2008-11-21 16:44 161,096 a------- c:\windows\system32\DivXCodecVersionChecker.exe
2008-11-21 16:44 12,288 a------- c:\windows\system32\DivXWMPExtType.dll
2008-10-23 08:01 283,648 a------- c:\windows\system32\gdi32.dll
2008-10-16 05:37 659,456 a------- c:\windows\system32\wininet.dll
2007-07-08 08:23 87,608 a------- c:\docume~1\sal\applic~1\inst.exe
2007-07-08 08:23 47,360 a------- c:\docume~1\sal\applic~1\pcouffin.sys
2006-08-05 20:52 81,920 a------- c:\docume~1\sal\applic~1\ezpinst.exe
2014-06-13 14:36 1,537 a--sh--- c:\windows\page files\maxmeg.sys
============= FINISH: 16:54:53.59 ===============
Attached File(s)
-
Attach.txt (18.56K)
Number of downloads: 1
This post has been edited by Orange Blossom: 09 January 2009 - 06:59 PM
Reason for edit: Deactivate links. ~ OB

Help
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.
This topic is locked

Back to top










