I followed the instructions in "Preparation Guide for Use....".
.
DDS (Ver_11-03-05.01) - NTFSx86
Run by Dee at 21:30:22.78 on Sat 04/03/2010
Internet Explorer: 6.0.2900.5512
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.3062.2236 [GMT -7:00]
.
AV: Norton Security Suite *Enabled/Updated* {E10A9785-9598-4754-B552-92431C1C35F8}
FW: Norton Security Suite *Enabled*
.
============== Running Processes ===============
.
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Norton Security Suite\Engine\4.3.0.5\ccSvcHst.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\QUICKENW\QWDLLS.EXE
C:\Program Files\RALINK\Common\RaUI.exe
C:\Program Files\Norton Security Suite\Engine\4.3.0.5\ccSvcHst.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\Dee.DEESXP\Desktop\dds.scr
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.yahoo.com/
BHO: AcroIEHlprObj Class: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 7.0\activex\AcroIEHelper.dll
BHO: Symantec NCO BHO: {602adb0e-4aff-4217-8aa1-95dac4dfa408} - c:\program files\norton security suite\engine\4.3.0.5\coIEPlg.dll
BHO: Symantec Intrusion Prevention: {6d53ec84-6aae-4787-aeee-f4628f01010c} - c:\program files\norton security suite\engine\4.3.0.5\IPSBHO.DLL
TB: Norton Toolbar: {7febefe3-6b19-4349-98d2-ffb09d4b49ca} - c:\program files\norton security suite\engine\4.3.0.5\coIEPlg.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [RTHDCPL] RTHDCPL.EXE
StartupFolder: c:\docume~1\alluse~1.win\startm~1\programs\startup\adober~1.lnk - c:\program files\adobe\acrobat 7.0\reader\reader_sl.exe
StartupFolder: c:\docume~1\alluse~1.win\startm~1\programs\startup\billmi~1.lnk - c:\quickenw\BILLMIND.EXE
StartupFolder: c:\docume~1\alluse~1.win\startm~1\programs\startup\quicke~1.lnk - c:\quickenw\QWDLLS.EXE
StartupFolder: c:\docume~1\alluse~1.win\startm~1\programs\startup\ralink~1.lnk - c:\program files\ralink\common\RaUI.exe
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office11\REFIEBAR.DLL
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Notify: igfxcui - igfxdev.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\docume~1\dee~2.dee\applic~1\mozilla\firefox\profiles\n1hqr3d9.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.yahoo.com/
FF - component: c:\documents and settings\all users.windows\application data\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\n360_4.0.0.127\coffplgn\components\coFFPlgn.dll
FF - component: c:\documents and settings\all users.windows\application data\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\n360_4.0.0.127\ipsffplgn\components\IPSFFPl.dll
FF - plugin: c:\documents and settings\dee.deesxp\application data\mozilla\firefox\profiles\n1hqr3d9.default\extensions\{e2883e8f-472f-4fb0-9522-ac9bf37916a7}\plugins\np_gp.dll
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Adobe DLM (powered by getPlus®): {E2883E8F-472F-4fb0-9522-AC9BF37916A7} - %profile%\extensions\{E2883E8F-472F-4fb0-9522-AC9BF37916A7}
FF - Ext: Norton IPS: {BBDA0591-3099-440a-AA10-41764D9DB4DB} - c:\documents and settings\all users.windows\application data\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\n360_4.0.0.127\IPSFFPlgn
FF - Ext: Norton Toolbar: {2D3F3651-74B9-4795-BDEC-6DA2F431CB62} - c:\documents and settings\all users.windows\application data\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\n360_4.0.0.127\coFFPlgn
.
============= SERVICES / DRIVERS ===============
.
R0 SymDS;Symantec Data Store;c:\windows\system32\drivers\n360\0403000.005\symds.sys [2009-10-27 328752]
R0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\n360\0403000.005\symefa.sys [2009-10-27 173104]
R1 BHDrvx86;BHDrvx86;c:\documents and settings\all users.windows\application data\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\n360_4.0.0.127\definitions\bashdefs\20110309.001\BHDrvx86.sys [2010-3-11 800376]
R1 BIOS;BIOS;c:\windows\system32\drivers\BIOS.sys [2009-9-24 13696]
R1 ccHP;Symantec Hash Provider;c:\windows\system32\drivers\n360\0403000.005\cchpx86.sys [2009-10-27 501888]
R1 SymIRON;Symantec Iron Driver;c:\windows\system32\drivers\n360\0403000.005\ironx86.sys [2009-10-27 116784]
R2 mrtRate;mrtRate;c:\windows\system32\drivers\MrtRate.sys [2010-3-6 34916]
R2 N360;Norton Security Suite;c:\program files\norton security suite\engine\4.3.0.5\ccsvchst.exe [2009-10-27 126392]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\common files\symantec shared\eengine\EraserUtilRebootDrv.sys [2009-9-29 102448]
R3 IDSxpx86;IDSxpx86;c:\documents and settings\all users.windows\application data\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\n360_4.0.0.127\definitions\ipsdefs\20110330.001\IDSXpx86.sys [2010-3-31 341944]
R3 NAVENG;NAVENG;c:\documents and settings\all users.windows\application data\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\n360_4.0.0.127\definitions\virusdefs\20110402.003\NAVENG.SYS [2010-4-3 86136]
R3 NAVEX15;NAVEX15;c:\documents and settings\all users.windows\application data\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\n360_4.0.0.127\definitions\virusdefs\20110402.003\NAVEX15.SYS [2010-4-3 1393144]
R3 RT80x86;Ralink 802.11n Wireless Driver;c:\windows\system32\drivers\rt2860.sys [2009-9-24 579456]
S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [2009-9-24 1684736]
.
=============== Created Last 30 ================
.
2010-09-08 02:28:25 -------- d-----w- C:\c471d00044075cd95fec3d4aa0
2010-09-05 20:30:55 -------- d-----w- c:\program files\RALINK
2010-09-05 01:15:07 -------- d-----w- c:\windows\setup.pss
2010-09-02 20:49:21 -------- d-----w- c:\program files\common files\Cisco Systems
2010-09-02 20:48:38 -------- d-----w- c:\program files\Sophos
2010-09-02 20:46:06 -------- d-----w- C:\stdtsa
2010-08-23 15:19:08 -------- d-sh--w- C:\FOUND.003
2010-08-13 07:03:40 103864 ----a-w- c:\program files\mozilla firefox\plugins\nppdf32.dll
2010-08-13 07:03:40 103864 ----a-w- c:\program files\internet explorer\plugins\nppdf32.dll
2010-08-10 21:49:12 -------- d-----w- c:\program files\Symantec
2010-08-10 21:49:12 -------- d-----w- c:\program files\common files\Symantec Shared
2010-06-26 08:37:24 -------- d-sh--w- C:\FOUND.002
2010-06-23 15:40:31 719832 ----a-w- c:\program files\mozilla firefox\mozcpp19.dll
2010-06-16 08:38:36 -------- d-sh--w- C:\FOUND.001
2010-04-18 21:53:18 -------- d-sh--w- C:\FOUND.000
2010-04-17 00:41:46 12276560 ----a-w- c:\program files\common files\microsoft shared\office11\MSO.DLL
2010-03-06 21:29:27 251664 ----a-w- c:\windows\system32\msrd2x35.dll
2010-03-06 21:29:26 368912 ----a-w- c:\windows\system32\vbar332.dll
2010-03-06 21:29:26 1039360 ----a-w- c:\windows\system32\msjet35.dll
2010-03-06 21:29:25 37136 ----a-w- c:\windows\system32\Msjint35.dll
2010-03-06 21:29:25 24336 ----a-w- c:\windows\system32\msjter35.dll
2010-03-06 21:28:41 41472 ----a-w- c:\windows\system32\IPROF32.DLL
2010-03-06 21:28:41 225280 ----a-w- c:\windows\system32\QCON32.DLL
2010-03-06 21:28:41 195968 ----a-w- c:\windows\system32\QCONNECT.DLL
2010-03-06 21:28:39 193024 ----a-w- c:\windows\system32\QCON3216.EXE
2010-03-06 21:28:36 5856 ----a-w- c:\windows\system32\INET16.DLL
2010-03-06 21:28:36 57344 ----a-w- c:\windows\ICG32.DLL
2010-03-06 21:28:36 48640 ----a-w- c:\windows\system32\INETWH32.DLL
2010-03-06 21:28:31 63488 ----a-w- c:\windows\system32\mrtRate.dll
2010-03-06 21:28:31 34916 ----a-w- c:\windows\system32\drivers\MrtRate.sys
2010-03-06 21:28:30 65024 ----a-w- c:\windows\system32\mrtMngr.exe
2010-03-06 21:27:46 51200 ----a-w- c:\windows\system32\Q_ENCUTL.DLL
2010-03-06 21:27:44 73728 ----a-w- c:\windows\system32\Q_ENCLIB.DLL
2010-03-06 21:27:44 -------- d-----w- c:\windows\Intuit
2010-03-06 20:28:09 305152 ----a-w- c:\windows\IsUninst.exe
2010-03-06 20:28:02 -------- d-----w- c:\documents and settings\dee.deesxp\WINDOWS
.
==================== Find3M ====================
.
.
============= FINISH: 21:31:14.57 ===============
Attached File(s)
-
Attach.txt (4.61K)
Number of downloads: 1 -
Firefox Error Message.doc (38.5K)
Number of downloads: 3 -
ark.txt (6.68K)
Number of downloads: 3

Help
This topic is locked

Back to top





button.
to download the ESET Smart Installer. Save it to your desktop.
button.

, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
button.









