I have a Dell Inspiron B130 laptop running Windows XP.
---------
.
DDS (Ver_11-05-19.01) - NTFSx86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_22
Run by Alison at 20:23:17 on 2011-05-21
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.503.30 [GMT -4:00]
.
AV: AntiVir Desktop *Enabled/Outdated* {AD166499-45F9-482A-A743-FDD3350758C7}
.
============== Running Processes ===============
.
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
svchost.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\stsystra.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb04.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Alison Maltby-Duggan\Desktop\dds.scr
C:\WINDOWS\system32\WSCRIPT.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us
uSearch Bar = hxxp://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
uDefault_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us
mSearch Bar = hxxp://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyOverride = *.local
uInternet Settings,ProxyServer = http=127.0.0.1:50370
uSearchURL,(Default) = hxxp://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
uURLSearchHooks: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} -
BHO: Yahoo! IE Services Button: {5bab4b5b-68bc-4b02-94d6-2fc0de4a7897} - c:\program files\yahoo!\common\yiesrvc.dll
BHO: DriveLetterAccess: {5ca3d70e-1895-11cf-8e15-001234567890} - c:\windows\system32\dla\tfswshx.dll
BHO: CBrowserHelperObject Object: {ca6319c0-31b7-401e-a518-a07c3db8f777} - c:\program files\bae\BAE.dll
BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} -
TB: {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
EB: Real.com: {fe54fa40-d68c-11d2-98fa-00c0f0318afe} - c:\windows\system32\Shdocvw.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [SUPERAntiSpyware] c:\program files\superantispyware\SUPERAntiSpyware.exe
mRun: [igfxtray] c:\windows\system32\igfxtray.exe
mRun: [igfxpers] c:\windows\system32\igfxpers.exe
mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
mRun: [SigmatelSysTrayApp] stsystra.exe
mRun: [dla] c:\windows\system32\dla\tfswctrl.exe
mRun: [HPDJ Taskbar Utility] c:\windows\system32\spool\drivers\w32x86\3\hpztsb04.exe
mRun: [IntelWireless] c:\program files\intel\wireless\bin\ifrmewrk.exe /tf Intel PROSet/Wireless
mRun: [Windows Defender] "c:\program files\windows defender\MSASCui.exe" -hide
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [avgnt] "c:\program files\avira\antivir desktop\avgnt.exe" /min
dRun: [DWQueuedReporting] "c:\progra~1\common~1\micros~1\dw\dwtrig20.exe" -t
IE: &Yahoo! Search - file:///c:\program files\yahoo!\Common/ycsrch.htm
IE: Append Link Target to Existing PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: E&xport to Microsoft Excel - c:\progra~1\micros~4\office11\EXCEL.EXE/3000
IE: Yahoo! &Dictionary - file:///c:\program files\yahoo!\Common/ycdict.htm
IE: Yahoo! &Maps - file:///c:\program files\yahoo!\Common/ycmap.htm
IE: Yahoo! &SMS - file:///c:\program files\yahoo!\Common/ycsms.htm
IE: {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - c:\progra~1\aim\aim.exe
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - c:\program files\yahoo!\messenger\YahooMessenger.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {44226DFF-747E-4edc-B30C-78752E50CD0C} - {44226DFF-747E-4edc-B30C-78752E50CD0C} - c:\program files\ati multimedia\tv\EXPLBAR.DLL
IE: {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - c:\program files\yahoo!\common\yiesrvc.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~4\office11\REFIEBAR.DLL
IE: {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - {FE54FA40-D68C-11d2-98FA-00C0F0318AFE} - c:\windows\system32\Shdocvw.dll
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://active.macromedia.com/director/cabs/sw.cab
DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - c:\program files\yahoo!\common\yinsthelper.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab
DPF: {9D190AE6-C81E-4039-8061-978EBAD10073} - hxxp://support.f-secure.com/ols/fscax.cab
DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
DPF: {FFBB3F3B-0A5A-4106-BE53-DFE1E2340CB1} - hxxp://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.1.6.cab
Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.DLL
Notify: igfxcui - igfxdev.dll
Notify: IntelWireless - c:\program files\intel\wireless\bin\LgNotify.dll
SEH: Microsoft AntiMalware ShellExecuteHook: {091eb208-39dd-417d-a5dd-7e2c2d8fb9cb} - c:\progra~1\window~4\MpShHook.dll
SEH: {F552DDE6-2090-4bf4-B924-6141E87789A5} - No File
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\alison maltby-duggan\application data\mozilla\firefox\profiles\618vqoqj.default\
FF - prefs.js: browser.startup.homepage - about:blank
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?ei=UTF-8&fr=ytff-ytie&p=
FF - prefs.js: network.proxy.type - 0
FF - component: c:\documents and settings\alison maltby-duggan\application data\mozilla\firefox\profiles\618vqoqj.default\extensions\{85c5b796-eda5-4353-b26e-a5d181ad9cd0}\components\RadioWMPCoreGecko19.dll
FF - component: c:\documents and settings\alison maltby-duggan\application data\mozilla\firefox\profiles\618vqoqj.default\extensions\engine@conduit.com\components\RadioWMPCoreGecko19.dll
FF - plugin: c:\program files\canon\mycamera download plugin\NPCIG.dll
FF - plugin: c:\program files\google\google earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\google\update\1.3.21.53\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\microsoft silverlight\4.0.60310.0\npctrlui.dll
FF - plugin: c:\program files\mozilla firefox\plugins\NPAdbESD.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npdeployJava1.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npmozax.dll
FF - plugin: c:\program files\viewpoint\viewpoint experience technology\npViewpoint.dll
.
============= SERVICES / DRIVERS ===============
.
R1 avgio;avgio;c:\program files\avira\antivir desktop\avgio.sys [2011-5-8 11608]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2010-2-17 12872]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2010-5-10 67656]
R2 avgntflt;avgntflt;c:\windows\system32\drivers\avgntflt.sys [2011-5-8 61960]
S0 Partizan;Partizan;c:\windows\system32\drivers\partizan.sys --> c:\windows\system32\drivers\Partizan.sys [?]
S1 MpKsl452f65eb;MpKsl452f65eb;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{5294fa07-4737-441e-b288-cf0e61d22049}\mpksl452f65eb.sys --> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{5294fa07-4737-441e-b288-cf0e61d22049}\MpKsl452f65eb.sys [?]
S1 MpKsl61259936;MpKsl61259936;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{5294fa07-4737-441e-b288-cf0e61d22049}\mpksl61259936.sys --> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{5294fa07-4737-441e-b288-cf0e61d22049}\MpKsl61259936.sys [?]
S1 MpKslc9a5fc98;MpKslc9a5fc98;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{ba9ceb5c-f5af-4ac1-8217-34c232c35256}\mpkslc9a5fc98.sys --> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{ba9ceb5c-f5af-4ac1-8217-34c232c35256}\MpKslc9a5fc98.sys [?]
S1 MpKsld046f590;MpKsld046f590;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{979efdb2-0297-455b-a4a8-d6bd0f8d3c83}\mpksld046f590.sys --> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{979efdb2-0297-455b-a4a8-d6bd0f8d3c83}\MpKsld046f590.sys [?]
S1 MpKsld80605c4;MpKsld80605c4;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{7c440334-cb17-4230-a2fe-058cdda95d22}\mpksld80605c4.sys --> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{7c440334-cb17-4230-a2fe-058cdda95d22}\MpKsld80605c4.sys [?]
S1 MpKslfd7aeef2;MpKslfd7aeef2;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{44262745-b6d2-47ba-bdcc-d97940cecac4}\mpkslfd7aeef2.sys --> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{44262745-b6d2-47ba-bdcc-d97940cecac4}\MpKslfd7aeef2.sys [?]
S3 atinysxx;ATI USB 2.0 TV Audio Crossbar;c:\windows\system32\drivers\atinysxx.sys [2007-11-21 79360]
S3 atinyvxx;ATI TV WONDER USB2.0 Video & Audio;c:\windows\system32\drivers\atinyvxx.sys [2007-11-21 174592]
S3 ATITUNEP2;ATI TV WONDER USB2.0 TV Tuner;c:\windows\system32\drivers\atinyuxx.sys [2007-11-21 64512]
S3 ATIUTD;ATI TV WONDER USB2.0 Device Driver;c:\windows\system32\drivers\ATIUTD.sys [2007-11-21 38912]
S3 RegGuard;RegGuard;c:\windows\system32\drivers\regguard.sys [2006-10-1 24416]
S3 TTDec;ATI TV WONDER USB2.0 Teletext Decoder;c:\windows\system32\drivers\atinyttx.sys [2007-11-21 13824]
.
=============== Created Last 30 ================
.
2011-05-09 02:20:28 -------- dc----w- c:\windows\system32\NtmsData
2011-05-08 23:20:14 -------- dc----w- c:\documents and settings\alison maltby-duggan\application data\Avira
2011-05-08 22:51:01 61960 -c--a-w- c:\windows\system32\drivers\avgntflt.sys
2011-05-08 22:50:54 -------- dc----w- c:\program files\Avira
2011-05-08 22:50:54 -------- dc----w- c:\documents and settings\all users\application data\Avira
2011-05-06 19:39:59 781272 -c--a-w- c:\program files\mozilla firefox\mozsqlite3.dll
2011-05-06 19:39:57 1874904 -c--a-w- c:\program files\mozilla firefox\mozjs.dll
2011-05-06 19:39:54 89048 -c--a-w- c:\program files\mozilla firefox\libEGL.dll
2011-05-06 19:39:54 465880 -c--a-w- c:\program files\mozilla firefox\libGLESv2.dll
2011-05-06 19:39:54 15832 -c--a-w- c:\program files\mozilla firefox\mozalloc.dll
2011-05-06 19:39:52 1892184 -c--a-w- c:\program files\mozilla firefox\d3dx9_42.dll
2011-05-06 19:39:49 142296 -c--a-w- c:\program files\mozilla firefox\components\browsercomps.dll
2011-05-06 19:39:48 1974616 -c--a-w- c:\program files\mozilla firefox\D3DCompiler_42.dll
2011-04-30 14:31:30 -------- dc----w- c:\documents and settings\alison maltby-duggan\application data\Malwarebytes
2011-04-30 14:25:42 38224 -c--a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-04-30 14:25:36 -------- dc----w- c:\documents and settings\all users\application data\Malwarebytes
2011-04-30 14:25:26 20952 -c--a-w- c:\windows\system32\drivers\mbam.sys
2011-04-27 03:47:14 -------- dc----w- c:\documents and settings\alison maltby-duggan\application data\ZoomBrowser EX
2011-04-27 03:42:53 -------- dc----w- c:\documents and settings\alison maltby-duggan\application data\CANON INC
2011-04-27 03:41:20 5632 -c--a-w- c:\windows\system32\ptpusb.dll
2011-04-27 03:41:19 159232 -c--a-w- c:\windows\system32\ptpusd.dll
2011-04-27 01:56:23 -------- dc----w- c:\documents and settings\all users\application data\ZoomBrowser
2011-04-27 01:48:36 -------- dc----w- c:\windows\system32\XPSViewer
2011-04-27 01:47:01 27648 -c--a-w- c:\windows\system32\spool\prtprocs\w32x86\filterpipelineprintproc.dll
2011-04-27 01:46:20 14048 -c----w- c:\windows\system32\spmsg2.dll
2011-04-27 01:29:25 -------- dc----w- c:\program files\common files\Canon
2011-04-26 00:11:48 -------- dc----w- c:\program files\CCleaner
.
==================== Find3M ====================
.
2011-03-07 05:33:50 692736 -c--a-w- c:\windows\system32\inetcomm.dll
2011-03-04 06:37:06 420864 -c--a-w- c:\windows\system32\vbscript.dll
2011-03-03 13:21:11 1857920 -c--a-w- c:\windows\system32\win32k.sys
2011-02-22 23:06:29 916480 -c--a-w- c:\windows\system32\wininet.dll
2011-02-22 23:06:29 43520 -c--a-w- c:\windows\system32\licmgr10.dll
2011-02-22 23:06:29 1469440 -c--a-w- c:\windows\system32\inetcpl.cpl
2011-02-22 11:41:59 385024 -c--a-w- c:\windows\system32\html.iec
.
============= FINISH: 20:25:51.85 ===============
Attached File(s)
-
attach.txt (20.71K)
Number of downloads: 2 -
ark.txt.log (5.72K)
Number of downloads: 3

Help
This topic is locked

Back to top











