EDIT: One thing I forgot to mention is that all of this also took out my Windows Firewall. The Windows Firewall Authorization Driver is nowhere to be found, so the only firewall I have right now is my router. Don't know if this is relevant but I thought I'd include it.
.
DDS (Ver_2011-08-26.01) - NTFSAMD64
Internet Explorer: 8.0.7601.17514 BrowserJavaVersion: 1.6.0_29
Run by Nureru at 12:39:38 on 2011-11-15
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.8191.5961 [GMT -8:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {108DAC43-C256-20B7-BB05-914135DA5160}
SP: Microsoft Security Essentials *Enabled/Updated* {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
c:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Users\Nureru\AppData\Local\Programs\Google\MusicManager\MusicManager.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
C:\Windows\SysWOW64\ping.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\cscript.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
mWinlogon: Userinit=userinit.exe,
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live
\WindowsLiveLogin.dll
BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
uRun: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
uRun: [Steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent
uRun: [Google Update] "C:\Users\Nureru\AppData\Local\Google\Update\GoogleUpdate.exe" /c
uRun: [MusicManager] "C:\Users\Nureru\AppData\Local\Programs\Google\MusicManager\MusicManager.exe"
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: HideSCAHealth = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableLUA = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
mPolicies-system: PromptOnSecureDesktop = 0 (0x0)
LSP: mswsock.dll
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab
TCP: DhcpNameServer = 192.168.2.1
TCP: Interfaces\{88B43E7A-BA18-47D6-8114-1ABF92ADE9F1} : DhcpNameServer = 192.168.2.1
SubSystems: Windows = basesrv,1 winsrv:UserServerDllInitialization,3 consrv:ConServerDllInitialization,2 sxssrv,4
BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live
\WindowsLiveLogin.dll
BHO-X64: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
mRun-x64: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun-x64: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Nureru\AppData\Roaming\Mozilla\Firefox\Profiles\5t5xy4px.default\
FF - prefs.js: browser.startup.homepage - hxxp://boards.endoftheinter.net/showtopics.php?board=42
FF - prefs.js: keyword.URL - hxxp://www.bing.com/search?pc=Z131&form=ZGAADF&install_date=20110924&q=
FF - prefs.js: network.proxy.type - 0
FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
FF - plugin: C:\Users\Nureru\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
.
============= SERVICES / DRIVERS ===============
.
R1 MpFilter;Microsoft Malware Protection Driver;C:\Windows\system32\DRIVERS\MpFilter.sys --> C:\Windows\system32\DRIVERS\MpFilter.sys [?]
R1 SASDIFSV;SASDIFSV;C:\Users\Nureru\AppData\Local\Temp\SAS_SelfExtract\sasdifsv64.sys [2011-7-22 14928]
R1 SASKUTIL;SASKUTIL;C:\Users\Nureru\AppData\Local\Temp\SAS_SelfExtract\saskutil64.sys [2011-7-12 12368]
R2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-6-6 64952]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2011-8-15 2329480]
R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2011-11-13 366152]
R2 nvUpdatusService;NVIDIA Update Service Daemon;C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-9-1 2214504]
R3 L1C;NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller (NDIS 6.20);C:\Windows\system32\DRIVERS\L1C62x64.sys --> C:\Windows
\system32\DRIVERS\L1C62x64.sys [?]
R3 MBAMProtector;MBAMProtector;\??\C:\Windows\system32\drivers\mbam.sys --> C:\Windows\system32\drivers\mbam.sys [?]
R3 MpNWMon;Microsoft Malware Protection Network Driver;C:\Windows\system32\DRIVERS\MpNWMon.sys --> C:\Windows\system32\DRIVERS\MpNWMon.sys [?]
R3 NisDrv;Microsoft Network Inspection System;C:\Windows\system32\DRIVERS\NisDrvWFP.sys --> C:\Windows\system32\DRIVERS\NisDrvWFP.sys [?]
R3 NisSrv;Microsoft Network Inspection;C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [2011-4-27 288272]
R3 rt61x64;Linksys Wireless-G PCI Adapter Driver;C:\Windows\system32\DRIVERS\WMP54Gv41x64.sys --> C:\Windows\system32\DRIVERS\WMP54Gv41x64.sys [?]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18
138576]
S2 Updater Service for StartNow Toolbar;Updater Service for StartNow Toolbar;C:\Program Files (x86)\StartNow Toolbar\ToolbarUpdaterService.exe --> C:\Program
Files (x86)\StartNow Toolbar\ToolbarUpdaterService.exe [?]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys --> C:\Windows\system32\drivers\tsusbflt.sys [?]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
S4 MSSQLServerADHelper100;SQL Active Directory Helper Service;C:\Program Files\Microsoft SQL Server\100\Shared\sqladhlp.exe [2009-7-22 61976]
S4 RsFx0103;RsFx0103 Driver;C:\Windows\system32\DRIVERS\RsFx0103.sys --> C:\Windows\system32\DRIVERS\RsFx0103.sys [?]
S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS);C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [2009-3-30 427880]
.
=============== Created Last 30 ================
.
2011-11-15 19:56:14 69000 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{FFC57B5F-5E2E-4EE8-AAF4-
6AA96EDDBB8A}\offreg.dll
2011-11-15 09:00:39 8570192 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{FFC57B5F-5E2E-4EE8-AAF4-
6AA96EDDBB8A}\mpengine.dll
2011-11-14 23:24:36 -------- d-----w- C:\Program Files (x86)\ESET
2011-11-14 22:02:44 -------- d-----w- C:\Users\Nureru\AppData\Roaming\SUPERAntiSpyware.com
2011-11-14 22:02:44 -------- d-----w- C:\ProgramData\SUPERAntiSpyware.com
2011-11-14 02:50:31 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2011-11-14 01:14:20 -------- d-----w- C:\Users\Nureru\AppData\Roaming\Malwarebytes
2011-11-14 01:14:16 -------- d-----w- C:\ProgramData\Malwarebytes
2011-11-14 01:14:13 25416 ----a-w- C:\Windows\System32\drivers\mbam.sys
2011-11-14 01:08:37 -------- d-----w- C:\Program Files (x86)\19D03
2011-11-14 01:08:22 -------- d-----w- C:\Users\Nureru\AppData\Roaming\qddWWK88fR9hTqj
2011-11-14 01:08:21 -------- d-----w- C:\Users\Nureru\AppData\Roaming\ASS22obbF3pG5QJ
2011-11-14 01:08:19 -------- d-----w- C:\Users\Nureru\AppData\Roaming\sZqqhhYCwkUVrOt
2011-11-14 01:08:18 -------- d-----w- C:\Users\Nureru\AppData\Roaming\FTTZZqhhY
2011-11-14 01:08:18 -------- d-----w- C:\Users\Nureru\AppData\Roaming\axxxP00ucS1iD3n
2011-11-14 01:08:16 -------- d-----w- C:\Users\Nureru\AppData\Roaming\14E19
2011-11-14 01:08:15 -------- d-----w- C:\Users\Nureru\AppData\Roaming\qK88ffRZ9hTXwUe
2011-11-14 01:08:15 -------- d-----w- C:\Users\Nureru\AppData\Roaming\BDD22onnF4pH5QJ
2011-11-14 01:08:15 -------- d-----w- C:\Program Files (x86)\LP
2011-11-14 01:08:14 -------- d-----we C:\Windows\system64
2011-11-12 07:19:33 -------- d-----w- C:\Program Files (x86)\Combined Community Codec Pack
2011-11-10 05:52:31 -------- d-----w- C:\Users\Nureru\AppData\Local\MPlayer
2011-11-10 05:50:56 -------- d-----w- C:\ProgramData\PMS
2011-11-10 05:50:48 -------- d-----w- C:\Program Files (x86)\PS3 Media Server
2011-11-10 05:12:07 419840 ----a-w- C:\Windows\System32\wrap_oal.dll
2011-11-10 05:12:07 413696 ----a-w- C:\Windows\SysWow64\wrap_oal.dll
2011-11-10 05:12:07 133632 ----a-w- C:\Windows\System32\OpenAL32.dll
2011-11-10 05:12:07 110592 ----a-w- C:\Windows\SysWow64\OpenAL32.dll
2011-11-10 05:12:07 -------- d-----w- C:\Program Files (x86)\OpenAL
2011-11-10 04:13:58 469264 ----a-w- C:\Windows\System32\d3dx10.dll
2011-11-09 19:02:16 -------- d-----w- C:\Windows\System32\SPReview
2011-11-09 19:01:05 -------- d-----w- C:\Windows\System32\EventProviders
2011-11-08 23:59:56 886784 ----a-w- C:\Program Files\Common Files\System\wab32.dll
2011-11-08 23:59:56 708608 ----a-w- C:\Program Files (x86)\Common Files\System\wab32.dll
2011-11-08 23:59:53 1923952 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2011-11-08 23:59:52 3144704 ----a-w- C:\Windows\System32\win32k.sys
2011-11-08 18:19:01 -------- d-----w- C:\Users\Nureru\AppData\Local\ElevatedDiagnostics
2011-11-03 18:39:40 -------- d-----w- C:\Users\Nureru\AppData\Local\Programs
2011-11-03 18:39:31 -------- d-----w- C:\Users\Nureru\AppData\Local\Google
2011-10-25 20:57:36 6144 ----a-w- C:\Program Files\Internet Explorer\iecompat.dll
2011-10-25 20:57:36 6144 ----a-w- C:\Program Files (x86)\Internet Explorer\iecompat.dll
2011-10-20 01:00:44 99840 ----a-w- C:\Windows\System32\Spool\prtprocs\x64\HPZPPLHN.DLL
.
==================== Find3M ====================
.
2011-11-14 02:23:36 414368 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2011-11-09 19:10:50 175616 ----a-w- C:\Windows\System32\msclmd.dll
2011-11-09 19:10:50 152576 ----a-w- C:\Windows\SysWow64\msclmd.dll
2011-10-03 13:06:03 472808 ----a-w- C:\Windows\SysWow64\deployJava1.dll
2011-10-01 03:25:37 1638912 ----a-w- C:\Windows\System32\mshtml.tlb
2011-10-01 02:42:56 1638912 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2011-09-15 23:15:21 525544 ----a-w- C:\Windows\System32\deployJava1.dll
2011-08-27 05:37:49 861696 ----a-w- C:\Windows\System32\oleaut32.dll
2011-08-27 05:37:48 331776 ----a-w- C:\Windows\System32\oleacc.dll
2011-08-27 04:26:27 571904 ----a-w- C:\Windows\SysWow64\oleaut32.dll
2011-08-27 04:26:27 233472 ----a-w- C:\Windows\SysWow64\oleacc.dll
2011-08-20 05:37:58 1188864 ----a-w- C:\Windows\System32\wininet.dll
2011-08-20 04:31:05 981504 ----a-w- C:\Windows\SysWow64\wininet.dll
.
============= FINISH: 12:40:10.00 ===============
Attached File(s)
-
Attach.txt (16.16K)
Number of downloads: 0
This post has been edited by Nureru: 15 November 2011 - 05:21 PM

Help
This topic is locked

Back to top













