dds log:
.
DDS (Ver_2011-08-26.01) - NTFSx86 NETWORK
Internet Explorer: 7.0.6002.18005 BrowserJavaVersion: 1.6.0_26
Run by S at 19:11:47 on 2011-11-09
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.mibor.com/
uDefault_Page_URL = hxxp://www.sony.com/vaiopeople
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SEPsearchhelperie.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Bing Bar BHO: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\program files\msn toolbar\platform\5.0.1449.0\npwinext.dll
BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
TB: @c:\program files\msn toolbar\platform\5.0.1449.0\npwinext.dll,-100: {8dcb7100-df86-4384-8842-8fa844297b3f} - c:\program files\msn toolbar\platform\5.0.1449.0\npwinext.dll
TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
uRun: [LDTray] c:\program files\livescribe\livescribe desktop\LDTray.exe
uRun: [Google Update] "c:\users\s\appdata\local\google\update\GoogleUpdate.exe" /c
uRun: [WMPNSCFG] c:\program files\windows media player\WMPNSCFG.exe
uRunOnce: [FlashPlayerUpdate] c:\windows\system32\macromed\flash\FlashUtil10i_ActiveX.exe -update activex
mRun: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [RtHDVCpl] RtHDVCpl.exe
mRun: [Apoint] c:\program files\apoint\Apoint.exe
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 8.0\reader\Reader_sl.exe"
mRun: [ISBMgr.exe] "c:\program files\sony\isb utility\ISBMgr.exe"
mRun: [VAIOMyMemCenter] "c:\program files\sony\vaio my memory center\VAIO MyMemCenter.exe" 1
mRun: [VAIO Help and Support Demo] "c:\program files\sony\vaio help and support demo\LaunchVHSD.exe"
mRun: [Unattend0000000001{12482772-95B4-4800-99B5-34E9401CAA5C}] %PROGRAMFILES%\Sony\First Experience\VAIOWelcome.exe
mRun: [ArcSoft Connection Service] c:\program files\common files\arcsoft\connection service\bin\ACDaemon.exe
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [Bing Bar] "c:\program files\msn toolbar\platform\5.0.1449.0\mswinext.exe"
mRun: [Microsoft Default Manager] "c:\program files\microsoft\search enhancement pack\default manager\DefMgr.exe" -resume
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe
mRun: [<NO NAME>]
mRun: [VirtualCloneDrive] "c:\program files\elaborate bytes\virtualclonedrive\VCDDaemon.exe" /s
mRun: [Malwarebytes' Anti-Malware (reboot)] "c:\program files\malwarebytes\mbam.exe" /runcleanupscript
mRun: [Malwarebytes' Anti-Malware] "c:\program files\malwarebytes\mbamgui.exe" /starttray
mRunOnce: [GrpConv] grpconv -o
StartupFolder: c:\users\s\appdata\roaming\micros~1\windows\startm~1\programs\startup\pdanet~1.lnk - c:\program files\pdanet for iphone\PdaNetPC.exe
mPolicies-explorer: BindDirectlyToPropertySetStorage = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
dPolicies-system: DisableTaskMgr = 1 (0x1)
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office11\EXCEL.EXE/3000
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~3\office11\REFIEBAR.DLL
LSP: mswsock.dll
DPF: {00000035-9593-4264-8B29-930B3E4EDCCD} - hxxps://www.rooms.hp.com/vRoom_Cab/WebHPVCInstall35.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: DhcpNameServer = 192.168.1.254
TCP: Interfaces\{E50FD290-E690-425D-BC71-CE0AF71C6D51} : DhcpNameServer = 192.168.1.254
Notify: igfxcui - igfxdev.dll
Notify: VESWinlogon - VESWinlogon.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\s\appdata\roaming\mozilla\firefox\profiles\j3c6a5ld.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com
FF - component: c:\users\s\appdata\roaming\mozilla\firefox\profiles\j3c6a5ld.default\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}\components\XPATLCOM.dll
FF - plugin: c:\program files\citrix\secure access client\npagee.dll
FF - plugin: c:\program files\google\picasa3\npPicasa3.dll
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\microsoft silverlight\4.0.60831.0\npctrlui.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npCouponPrinter.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npdeployJava1.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npMozCouponPrinter.dll
FF - plugin: c:\program files\msn toolbar\platform\5.0.1449.0\npwinext.dll
FF - plugin: c:\program files\nos\bin\np_gp.dll
FF - plugin: c:\users\s\appdata\local\google\update\1.3.21.79\npGoogleUpdate3.dll
FF - plugin: c:\users\s\appdata\roaming\move networks\plugins\npqmp071505000011.dll
.
---- FIREFOX POLICIES ----
FF - user.js: yahoo.ytff.general.dontshowhpoffer - true
============= SERVICES / DRIVERS ===============
.
.
=============== Created Last 30 ================
.
2011-11-10 00:08:01 -------- d-----w- C:\test
2011-11-09 23:33:47 725586 ----a-w- c:\windows\system32\PerfStringBackup.TMP
2011-11-09 23:31:16 850 ----a-w- c:\programdata\kxklaaa.tmp
2011-11-05 16:28:10 839 ----a-w- c:\programdata\uuzmaaa.tmp
2011-11-05 14:50:23 801 ----a-w- c:\programdata\iemmaaa.tmp
2011-11-05 12:19:02 -------- d-----w- c:\program files\Malwarebytes
2011-11-04 21:55:10 837 ----a-w- c:\programdata\cpqrbaa.tmp
2011-11-04 21:54:45 850 ----a-w- c:\programdata\wzspaaa.tmp
2011-11-04 21:54:30 809 ----a-w- c:\programdata\iauraaa.tmp
2011-11-04 21:54:29 874 ----a-w- c:\programdata\sbboaaa.tmp
2011-11-04 17:39:07 816 ----a-w- c:\programdata\esooaaa.tmp
2011-11-04 16:34:35 797 ----a-w- c:\programdata\ovcnaaa.tmp
2011-11-04 16:34:27 833 ----a-w- c:\programdata\gfoqaaa.tmp
2011-11-04 16:34:25 855 ----a-w- c:\programdata\yeawbaa.tmp
2011-11-04 09:08:06 56200 ---ha-w- c:\programdata\microsoft\windows defender\definition updates\{c308d3ce-e6f2-4bd9-be2f-9aa7b5b25229}\offreg.dll
2011-11-04 09:08:04 6668624 ---ha-w- c:\programdata\microsoft\windows defender\definition updates\{c308d3ce-e6f2-4bd9-be2f-9aa7b5b25229}\mpengine.dll
2011-10-27 17:16:14 -------- d--h--w- c:\program files\Coupons
2011-10-13 09:58:05 2043392 ----a-w- c:\windows\system32\win32k.sys
2011-10-13 09:58:03 69632 ----a-w- c:\windows\system32\Mpeg2Data.ax
2011-10-13 09:58:03 293376 ----a-w- c:\windows\system32\psisdecd.dll
2011-10-13 09:58:03 217088 ----a-w- c:\windows\system32\psisrndr.ax
2011-10-13 09:58:02 57856 ----a-w- c:\windows\system32\MSDvbNP.ax
2011-10-13 09:58:00 2409784 ----a-w- c:\program files\windows mail\OESpamFilter.dat
.
==================== Find3M ====================
.
2011-09-02 13:39:07 1383424 ----a-w- c:\windows\system32\mshtml.tlb
2011-08-25 16:15:04 555520 ----a-w- c:\windows\system32\UIAutomationCore.dll
2011-08-25 16:14:01 563712 ----a-w- c:\windows\system32\oleaut32.dll
2011-08-25 16:14:01 238080 ----a-w- c:\windows\system32\oleacc.dll
2011-08-25 13:31:01 4096 ----a-w- c:\windows\system32\oleaccrc.dll
2011-08-21 10:06:31 1409 ---ha-w- c:\windows\system32\PGMUS.FOT
2011-08-21 10:06:31 1409 ---ha-w- c:\windows\system32\pgjazz__.FOT
2011-08-16 16:15:15 834048 ----a-w- c:\windows\system32\wininet.dll
2011-08-16 14:20:55 389632 ----a-w- c:\windows\system32\html.iec
.
============= FINISH: 19:19:24.46 ===============
Attached File(s)
-
attach.txt (4.55K)
Number of downloads: 0 -
gmer.log (13.3K)
Number of downloads: 0 -
mbam-log-2011-11-05 (10-40-16).txt (2K)
Number of downloads: 0

Help
This topic is locked

Back to top









