Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Internet Explorer opened random pages, then has disappeared


  • This topic is locked This topic is locked
2 replies to this topic

#1 SakuraMaxX

SakuraMaxX

  • Members
  • 1 posts
  • OFFLINE
  •  
  • Local time:11:58 AM

Posted 08 April 2009 - 10:41 PM

I rebooted my computer due to it acting sluggish and programs refusing to work, and I was greeted with a random Internet Explorer window popping up with a random web page. A little bit after, Internet Explorer has disappeared from my program files folder, and doesn't open. When I click on the task bar shortcut for it, the following message appears: C:\Windows\winsxs\x86_microsoft-windows-ie-internetexplorer_31bf3856ad364...\iexplorer.exe is not a valid win32 application.

Here is the log:


DDS (Ver_09-03-16.01) - NTFSx86
Run by Kevin Tran at 22:06:01.02 on Wed 04/08/2009
Internet Explorer: 7.0.6001.18000 BrowserJavaVersion: 1.6.0_11
Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1252.1.1033.18.3069.1762 [GMT -5:00]

AV: Norton 360 *On-access scanning enabled* (Updated)
FW: Norton 360 *enabled*

============== Running Processes ===============

C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\rundll32.exe
C:\Windows\system32\rundll32.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\TEMP\ms1239244593.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Turtle Beach\AudioAdvantageSRM\TBAA.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\VMware\VMware Workstation\vmware-tray.exe
C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
C:\Program Files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe
C:\Windows\System32\Ctxfihlp.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Windows\System32\rundll32.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\DAP\DAP.exe
C:\Users\Kevin Tran\Program Files\DNA\btdna.exe
C:\Program Files\Electronic Arts\EADM\Core.exe
C:\Users\Kevin Tran\AppData\Local\Temp\880551772.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\ProgramData\U3\U3Launcher\LaunchU3.exe
C:\Program Files\MagicDisc\MagicDisc.exe
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\Windows\System32\CTxfispi.exe
C:\Windows\system32\AERTSrv.exe
C:\Windows\system32\afisicx.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\dhcp\svchost.exe
C:\Program Files\Autodesk\3ds Max 9\mentalray\satellite\raysat_3dsmax9_32server.exe
C:\Nexon\MapleStory\npkcmsvc.exe
C:\Windows\system32\PnkBstrA.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\sopidkc.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\tdctxte.exe
C:\Windows\system32\vmnat.exe
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\VMware\VMware Workstation\vmware-authd.exe
C:\Windows\system32\vmnetdhcp.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
C:\Program Files\Norton 360\ScanStub.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Users\Kevin Tran\Desktop\dds.scr
C:\Windows\system32\wbem\wmiprvse.exe

============== Pseudo HJT Report ===============

uInternet Settings,ProxyOverride = *.local
BHO: NCO 2.0 IE BHO: {602adb0e-4aff-4217-8aa1-95dac4dfa408} - c:\program files\common files\symantec shared\coshared\browser\2.6\coIEPlg.dll
BHO: Symantec Intrusion Prevention: {6d53ec84-6aae-4787-aeee-f4628f01010c} - c:\progra~1\common~1\symant~1\ids\IPSBHO.dll
BHO: c:\windows\system32\ds43g4nfjkn93.dll: {d5bf49a0-94f3-42bd-f434-3604812c8955} - c:\windows\system32\ds43g4nfjkn93.dll
TB: Megaupload Toolbar: {a057a204-bacc-4d26-c39e-35f1d2a32ec8} - c:\progra~1\megaup~1\MEGAUP~1.DLL
TB: Ask Toolbar: {f0d4b239-da4b-4daf-81e4-dfee4931a4aa} - c:\program files\asksbar\bar\1.bin\ASKSBAR.DLL
TB: Show Norton Toolbar: {7febefe3-6b19-4349-98d2-ffb09d4b49ca} - c:\program files\common files\symantec shared\coshared\browser\2.6\CoIEPlg.dll
uRun: [DownloadAccelerator] "c:\program files\dap\DAP.EXE" /STARTUP
uRun: [ISUSPM Startup] c:\progra~1\common~1\instal~1\update~1\isuspm.exe -startup
uRun: [Bandwidth Vista 2] c:\program files\bandwidth vista\bandwidth vista 2\bandwidthvista2.exe
uRun: [Aim6]
uRun: [BitTorrent DNA] "c:\users\kevin tran\program files\dna\btdna.exe"
uRun: [EA Core] "c:\program files\electronic arts\eadm\Core.exe" -silent
uRun: [Diagnostic Manager] c:\users\kevin tran\appdata\local\temp\880551772.exe
uRun: [Fmaheqehe] rundll32.exe "c:\windows\msqudxt.dll",e
uRun: [Ediwama] rundll32.exe "c:\users\kevin tran\appdata\local\uzureyesubas.dll",e
mRun: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
mRun: [Turtle Beach Audio Advantage SRM] "c:\program files\turtle beach\audioadvantagesrm\TBAA.exe"
mRun: [ISUSScheduler] "c:\program files\common files\installshield\updateservice\issch.exe" -start
mRun: [vmware-tray] "c:\program files\vmware\vmware workstation\vmware-tray.exe"
mRun: [RtHDVCpl] RtHDVCpl.exe
mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
mRun: [ccApp] "c:\program files\common files\symantec shared\ccApp.exe"
mRun: [osCheck] "c:\program files\norton 360\osCheck.exe"
mRun: [ISUSPM Startup] c:\progra~1\common~1\instal~1\update~1\ISUSPM.exe -startup
mRun: [<NO NAME>]
mRun: [RoxWatchTray] "c:\program files\common files\roxio shared\9.0\sharedcom\RoxWatchTray9.exe"
mRun: [VolPanel] "c:\program files\creative\sound blaster x-fi\volume panel\VolPanlu.exe" /r
mRun: [CTxfiHlp] CTXFIHLP.EXE
mRun: [UpdReg] c:\windows\UpdReg.EXE
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [GrooveMonitor] "c:\program files\microsoft office\office12\GrooveMonitor.exe"
mRun: [NvSvc] RUNDLL32.EXE c:\windows\system32\nvsvc.dll,nvsvcStart
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [Fmaheqehe] rundll32.exe "c:\windows\msqudxt.dll",e
dRun: [<NO NAME>] c:\windows\temp\yrh5995o43.exe
dRun: [Windows Resurections] c:\windows\temp\yrh5995o43.exe
dRun: [Diagnostic Manager] c:\windows\temp\1674774476.exe
dRun: [InetChk] c:\windows\temp\ms1239244593.exe work
StartupFolder: c:\users\kevint~1\appdata\roaming\micros~1\windows\startm~1\programs\startup\magicd~1.lnk - c:\program files\magicdisc\MagicDisc.exe
StartupFolder: c:\users\kevint~1\appdata\roaming\micros~1\windows\startm~1\programs\startup\stardo~1.lnk - c:\program files\stardock\objectdock\ObjectDock.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\blueto~1.lnk - c:\program files\widcomm\bluetooth software\BTTray.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\launch~1.lnk - c:\windows\installer\{d8e363a7-88b7-446d-b2c0-e26ce4dc8e54}\_294823.exe
uPolicies-explorer: NoFolderOptions = 1 (0x1)
uPolicies-system: DisableRegistryTools = 1 (0x1)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
dPolicies-explorer: NoFolderOptions = 1 (0x1)
dPolicies-system: DisableRegistryTools = 1 (0x1)
IE: &Clean Traces - c:\program files\dap\privacy package\dapcleanerie.htm
IE: &D&ownload &with BitComet - c:\program files\bitcomet\BitComet.exe/AddLink.htm
IE: &D&ownload all video with BitComet - c:\program files\bitcomet\BitComet.exe/AddVideo.htm
IE: &D&ownload all with BitComet - c:\program files\bitcomet\BitComet.exe/AddAllLink.htm
IE: &Download with &DAP - c:\program files\dap\dapextie.htm
IE: Download &all with DAP - c:\program files\dap\dapextie2.htm
IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office12\EXCEL.EXE/3000
IE: Send image to &Bluetooth Device... - c:\program files\widcomm\bluetooth software\btsendto_ie_ctx.htm
IE: Send page to &Bluetooth Device... - c:\program files\widcomm\bluetooth software\btsendto_ie.htm
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\program files\widcomm\bluetooth software\btsendto_ie.htm
IE: {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://c:\program files\bitcomet\tools\BitCometBHO_1.2.8.7.dll/206
LSP: c:\program files\vmware\vmware workstation\vsocklib.dll
Trusted Zone: criteriongames.com
DPF: {49312E18-AA92-4CC2-BB97-55DEA7BCADD6} - hxxp://support.dell.com/systemprofiler/SysProExe.CAB
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
DPF: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
Name-Space Handler: ftp\ZDA - {5BFA1DAF-5EDC-11D2-959E-00C00C02DA5E} - c:\progra~1\dap\dapie.dll
Name-Space Handler: http\ZDA - {5BFA1DAF-5EDC-11D2-959E-00C00C02DA5E} - c:\progra~1\dap\dapie.dll
STS: c:\windows\system32\hsf73ikmdf3f.dll: {b2ba40a2-74f3-42bd-f434-2604812c8954} - c:\windows\system32\hsf73ikmdf3f.dll
STS: c:\windows\system32\ds43g4nfjkn93.dll: {d5bf49a0-94f3-42bd-f434-3604812c8955} - c:\windows\system32\ds43g4nfjkn93.dll
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll

================= FIREFOX ===================

FF - ProfilePath - c:\users\kevint~1\appdata\roaming\mozilla\firefox\profiles\vmyl1q28.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.yahoo.com/search?ei=UTF-8&fr=ytff-&p=
FF - prefs.js: browser.search.selectedEngine - Yahoo
FF - prefs.js: browser.startup.homepage - hxxp://www.yahoo.com/
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?ei=utf-8&fr=megaup&p=
FF - component: c:\program files\dap\dapfirefox\components\DAPFireFox.dll
FF - component: c:\program files\mozilla firefox\components\coFFPlgn.dll
FF - component: c:\users\kevin tran\appdata\roaming\mozilla\firefox\profiles\vmyl1q28.default\extensions\{b042753d-f57e-4e8e-a01b-7379a6d4cefb}\components\IBitCometExtension.dll
FF - plugin: c:\program files\microsoft\office live\npOLW.dll
FF - plugin: c:\program files\mozilla firefox\plugins\NPAskSBr.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npFoxitReaderPlugin.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npijjiCHPlugin.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npijjiFFPlugin1.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npPandoWebInst.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npViewpoint.dll
FF - plugin: c:\program files\viewpoint\viewpoint media player\npViewpoint.dll
FF - plugin: c:\users\kevin tran\program files\dna\plugins\npbtdna.dll

============= SERVICES / DRIVERS ===============

R1 IDSvix86;Symantec Intrusion Prevention Driver;c:\progra~2\symantec\defini~1\symcdata\ipsdefs\20090406.001\IDSvix86.sys [2009-4-8 272432]
R1 VBoxDrv;VirtualBox Service;c:\windows\system32\drivers\VBoxDrv.sys [2009-1-23 100560]
R1 VBoxUSBMon;VirtualBox USB Monitor Driver;c:\windows\system32\drivers\VBoxUSBMon.sys [2009-1-23 41680]
R2 AERTFilters;Andrea RT Filters Service;c:\windows\system32\AERTSrv.exe [2007-12-5 77824]
R2 afisicx;afisicx Service;c:\windows\system32\afisicx.exe [2006-11-2 174080]
R2 CAMTHWDM;WebcamMax, WDM Video Capture;c:\windows\system32\drivers\CAMTHWDM.sys [2009-1-19 941784]
R2 DhcpSrv;Dhcp server;c:\windows\dhcp\svchost.exe [2009-4-8 235008]
R2 LiveUpdate Notice;LiveUpdate Notice;c:\program files\common files\symantec shared\CCSVCHST.EXE [2008-2-18 149352]
R2 sopidkc;sopidkc Service;c:\windows\system32\sopidkc.exe [2006-11-2 173568]
R2 tdctxte;tdctxte Service;c:\windows\system32\tdctxte.exe [2006-11-2 173568]
R2 vmci;VMware vmci;c:\windows\system32\drivers\vmci.sys [2008-10-29 54960]
R3 CM1063264TB;C-Media CM106 Like Sound UDAX Interface;c:\windows\system32\drivers\CM106.sys [2009-1-16 1290752]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\common files\symantec shared\eengine\EraserUtilRebootDrv.sys [2009-2-25 101936]
R3 SYMNDISV;SYMNDISV;c:\windows\system32\drivers\symndisv.sys [2009-2-19 41008]
R3 VBoxNetFlt;VBoxNetFlt Service;c:\windows\system32\drivers\VBoxNetFlt.sys [2009-1-21 87312]
S3 3DRipDriver;3D Ripper monitoring driver;c:\program files\3dripperdx\3DRipDriver.sys [2009-1-16 6656]
S3 COH_Mon;COH_Mon;c:\windows\system32\drivers\COH_Mon.sys [2008-1-12 23888]
S3 CT20XUT;CT20XUT;c:\windows\system32\drivers\CT20XUT.sys [2009-2-19 198168]
S3 CTEXFIFX;CTEXFIFX;c:\windows\system32\drivers\CTEXFIFX.sys [2009-2-19 1353240]
S3 CTHWIUT;CTHWIUT;c:\windows\system32\drivers\CTHWIUT.sys [2009-2-19 73752]
S3 ha20x22k;Creative 20X2 HAL Driver;c:\windows\system32\drivers\ha20x22k.sys [2009-2-19 1222680]
S3 npggsvc;nProtect GameGuard Service;c:\windows\system32\gamemon.des -service --> c:\windows\system32\GameMon.des -service [?]
S3 VBoxUSB;VirtualBox USB;c:\windows\system32\drivers\VBoxUSB.sys [2009-1-21 31824]

=============== Created Last 30 ================

2009-04-08 21:49 <DIR> --d----- c:\program files\Trend Micro
2009-04-08 21:17 110,592 a------- c:\windows\system32\winsetup65.exe
2009-04-08 21:17 83,456 a------- c:\windows\system32\krbclick1.exe
2009-04-08 21:09 <DIR> --d----- c:\programdata\WindowsSearch
2009-04-08 21:02 <DIR> --d----- c:\windows\dhcp
2009-04-08 21:02 211,456 a------- c:\windows\system32\w.exe
2009-04-08 21:02 21,704 a------- c:\windows\system32\rr.exe
2009-04-08 21:02 8 a------- c:\windows\system32\comsa32.sys
2009-04-08 21:02 15,000 a------- c:\windows\system32\ds43g4nfjkn93.dll
2009-04-08 21:02 15,000 a------- c:\windows\system32\hsf73ikmdf3f.dll
2009-04-08 21:02 43,520 a------- C:\mhundnfk.exe
2009-04-08 21:02 <DIR> --d----- c:\program files\FLV to AVI MPEG WMV 3GP MP4 iPod Converter
2009-04-08 21:02 470 a------- c:\users\kevin tran\QUlXob.bat
2009-04-08 21:01 39,424 a------- c:\users\kevin tran\vygkTfvHz.exe
2009-04-08 21:01 47,616 a------- c:\users\kevin tran\ISxzoh.exe
2009-04-08 21:01 4,847,383 a------- c:\users\kevin tran\vCYFcr.exe
2009-04-06 18:35 1,846,632 a------- c:\windows\system32\D3DCompiler_41.dll
2009-04-06 18:35 453,456 a------- c:\windows\system32\d3dx10_41.dll
2009-04-06 18:35 4,178,264 a------- c:\windows\system32\D3DX9_41.dll
2009-04-06 18:35 517,448 a------- c:\windows\system32\XAudio2_4.dll
2009-04-06 18:35 69,448 a------- c:\windows\system32\XAPOFX1_3.dll
2009-04-06 18:35 235,352 a------- c:\windows\system32\xactengine3_4.dll
2009-04-06 18:35 22,360 a------- c:\windows\system32\X3DAudio1_6.dll
2009-04-05 21:41 <DIR> --d----- c:\program files\Half-Life Model Viewer
2009-04-05 21:27 <DIR> --d----- c:\program files\VTFEdit
2009-04-04 23:18 <DIR> --d----- c:\programdata\wanted
2009-04-04 23:18 <DIR> --d----- c:\progra~2\wanted
2009-04-04 22:58 685,816 a------- c:\windows\system32\drivers\sptd.sys
2009-04-04 22:49 <DIR> --d----- c:\windows\8AAB4176A747493AA42CB63CFADFD8E3.TMP
2009-04-04 22:38 <DIR> --d----- c:\program files\WarnerBros
2009-04-04 13:27 <DIR> --d----- c:\program files\twhirl
2009-04-01 07:43 <DIR> --d----- c:\users\kevin tran\Program Files
2009-03-30 19:21 <DIR> --d----- c:\program files\NSIS
2009-03-29 10:16 <DIR> --d----- c:\program files\Microsoft Visual Studio 8
2009-03-27 21:54 43,520 a------- c:\windows\system32\CmdLineExt03.dll
2009-03-27 21:24 <DIR> --d----- c:\program files\LucasArts
2009-03-26 17:10 <DIR> --d----- c:\windows\system32\Dell
2009-03-25 22:21 <DIR> --d----- c:\program files\SystemRequirementsLab
2009-03-22 16:25 <DIR> --d----- C:\tmp
2009-03-22 14:21 <DIR> --d----- c:\users\kevint~1\appdata\roaming\GARMIN
2009-03-22 14:21 <DIR> --d----- c:\program files\Garmin GPS Plugin
2009-03-22 14:20 <DIR> --d----- c:\program files\Garmin
2009-03-19 10:25 131,072 a------- c:\windows\system32\SpoonUninstall.exe
2009-03-19 10:25 36,104 a------- c:\windows\system32\SpoonUninstall-dBpowerAMP Music Converter.dat
2009-03-19 10:25 33,846 a------- c:\windows\system32\SpoonUninstall-dBpowerAMP Music Converter.bmp
2009-03-19 10:24 <DIR> --d----- c:\program files\Illustrate
2009-03-18 21:33 <DIR> --d----- c:\windows\lhsp
2009-03-18 21:33 <DIR> --d----- c:\program files\CFS-Technologies
2009-03-17 15:31 107,368 a------- c:\windows\system32\GEARAspi.dll
2009-03-17 15:31 23,848 a------- c:\windows\system32\drivers\GEARAspiWDM.sys
2009-03-17 15:31 <DIR> --d----- c:\program files\iPod
2009-03-17 15:31 <DIR> --d----- c:\programdata\{00D89592-F643-4D8D-8F0F-AFAE0F14D4C3}
2009-03-17 15:31 <DIR> --d----- c:\program files\iTunes
2009-03-17 15:31 <DIR> --d----- c:\progra~2\{00D89592-F643-4D8D-8F0F-AFAE0F14D4C3}
2009-03-17 15:29 <DIR> --d----- c:\program files\Bonjour
2009-03-15 21:17 <DIR> --d----- c:\users\kevint~1\appdata\roaming\NPLUTO Corporation
2009-03-15 21:16 2,736,890 a------- c:\windows\system32\GameMon.des
2009-03-15 21:08 <DIR> --d----- C:\ijji
2009-03-14 16:50 <DIR> --d----- c:\program files\Jnes
2009-03-11 18:10 <DIR> --d----- c:\program files\NtreevSoft
2009-03-11 16:09 268,288 a------- c:\windows\system32\schannel.dll
2009-03-11 16:09 2,033,152 a------- c:\windows\system32\win32k.sys
2009-03-10 22:01 <DIR> --d----- c:\program files\Pcsx2
2009-03-10 17:57 417,792 a------- c:\windows\system32\ac3filter.ax
2009-03-10 17:57 356,352 a------- c:\windows\system32\RealMediaSplitter.ax
2009-03-10 17:57 258,048 a------- c:\windows\system32\GplMpgDec.ax
2009-03-10 17:57 <DIR> --d----- c:\program files\Free iPod Video Converter
2009-03-10 16:49 27,672 a----r-- c:\windows\system32\drivers\Entech.sys
2009-03-10 16:49 <DIR> --d----- c:\windows\system32\Futuremark
2009-03-10 16:49 <DIR> --d----- c:\program files\common files\Futuremark Shared

==================== Find3M ====================

2009-04-08 21:34 1,589 a------- c:\windows\bthservsdp.dat
2009-04-04 22:48 418,480 a------- c:\windows\system32\wrap_oal.dll
2009-04-04 22:48 115,432 a------- c:\windows\system32\OpenAL32.dll
2009-03-29 16:49 51,200 a------- c:\windows\inf\infpub.dat
2009-03-29 16:49 143,360 a------- c:\windows\inf\infstrng.dat
2009-03-29 16:32 86,016 a------- c:\windows\inf\infstor.dat
2009-02-26 13:46 42,320 a------- c:\windows\system32\xfcodec.dll
2009-02-19 12:31 24,112 a------- c:\windows\system32\drivers\SymIMV.sys
2009-02-19 12:31 9,844 a------- c:\windows\system32\drivers\SymRedir.cat
2009-02-19 12:31 1,611 a------- c:\windows\system32\drivers\SymRedir.inf
2009-02-19 12:31 41,008 a------- c:\windows\system32\drivers\symndisv.sys
2009-02-19 12:31 184,496 a------- c:\windows\system32\drivers\symtdi.sys
2009-02-19 12:31 96,560 a------- c:\windows\system32\drivers\symfw.sys
2009-02-19 12:31 38,576 a------- c:\windows\system32\drivers\symids.sys
2009-02-19 12:31 22,320 a------- c:\windows\system32\drivers\symredrv.sys
2009-02-19 12:31 13,616 a------- c:\windows\system32\drivers\symdns.sys
2009-02-19 10:55 15,384 a------- c:\windows\system32\drivers\pfmodnt.sys
2009-02-19 10:54 1,222,680 a------- c:\windows\system32\drivers\ha20x22k.sys
2009-02-19 10:53 1,179,672 a------- c:\windows\system32\drivers\ha20x2k.sys
2009-02-19 10:52 95,768 a------- c:\windows\system32\drivers\emupia2k.sys
2009-02-19 10:52 159,256 a------- c:\windows\system32\drivers\ctsfm2k.sys
2009-02-19 10:51 14,360 a------- c:\windows\system32\drivers\ctprxy2k.sys
2009-02-19 10:50 129,560 a------- c:\windows\system32\drivers\ctoss2k.sys
2009-02-19 10:45 535,320 a------- c:\windows\system32\drivers\ctaud2k.sys
2009-02-19 10:44 511,000 a------- c:\windows\system32\drivers\ctac32k.sys
2009-02-19 10:43 1,353,240 a------- c:\windows\system32\drivers\CTEXFIFX.sys
2009-02-19 10:43 73,752 a------- c:\windows\system32\drivers\CTHWIUT.sys
2009-02-19 10:42 198,168 a------- c:\windows\system32\drivers\CT20XUT.sys
2009-02-19 09:00 181,248 a------- c:\windows\system32\ctdvinst.dll
2009-02-19 09:00 86,016 a------- c:\windows\system32\ctcoinst.dll
2009-02-19 08:59 14,336 a------- c:\windows\system32\a3d.dll
2009-02-19 08:58 13,312 a------- c:\windows\system32\ac3api.dll
2009-02-19 08:58 2,560 a------- c:\windows\system32\CtxfiRes.dll
2009-02-19 08:58 42,496 a------- c:\windows\system32\CTxfiBtn.dll
2009-02-19 08:57 39,424 a------- c:\windows\system32\CTxfiSpk.dll
2009-02-19 08:57 24,576 a------- c:\windows\system32\Ctxfihlp.exe
2009-02-19 08:54 47,104 a------- c:\windows\system32\CTxfiReg.exe
2009-02-19 08:54 15,360 a------- c:\windows\system32\Ct20xspi.dll
2009-02-19 08:53 1,212,928 a------- c:\windows\system32\CTxfispi.exe
2009-02-19 08:47 384,428 a------- c:\windows\system32\SETD3AD.tmp
2009-02-19 08:47 51,787 a------- c:\windows\system32\SETD253.tmp
2009-02-19 08:46 201,216 a------- c:\windows\system32\ctemupia.dll
2009-02-19 08:43 193,024 a------- c:\windows\system32\ct_oal.dll
2009-02-19 08:43 50,688 a------- c:\windows\system32\ctasio.dll
2009-02-19 08:43 53,248 a------- c:\windows\system32\ctdproxy.dll
2009-02-19 08:42 74,240 a------- c:\windows\system32\ctosuser.dll
2009-02-19 08:42 10,240 a------- c:\windows\system32\sfman32.dll
2009-02-19 08:42 130,560 a------- c:\windows\system32\sfms32.dll
2009-02-19 08:42 16,384 a------- c:\windows\system32\regplib.exe
2009-02-19 08:42 68,608 a------- c:\windows\system32\piaproxy.dll
2009-02-19 08:39 7,680 a------- c:\windows\system32\enlocstr.exe
2009-02-19 08:39 12,800 a------- c:\windows\system32\killapps.exe
2009-02-19 08:38 36,864 a------- c:\windows\system32\devreg.dll
2009-02-18 14:44 1,560,576 a------- c:\windows\system32\nvcuda.dll
2009-02-18 14:44 1,277,952 a------- c:\windows\system32\nvsvs.dll
2009-02-18 14:44 801,312 a------- c:\windows\system32\nvcplui.exe
2009-02-18 14:44 401,408 a------- c:\windows\system32\nvcuvid.dll
2009-02-18 14:44 207,392 a------- c:\windows\system32\nvvsvc.exe
2009-02-18 14:44 135,168 a------- c:\windows\system32\nvcod140.dll
2009-02-18 14:44 4,160 a------- c:\windows\system32\drivers\nvBridge.kmd
2009-02-17 17:49 22,328 a------- c:\windows\system32\drivers\PnkBstrK.sys
2009-02-17 17:49 22,328 a------- c:\users\kevint~1\appdata\roaming\PnkBstrK.sys
2009-02-17 17:49 103,736 a------- c:\windows\system32\PnkBstrB.exe
2009-02-17 17:48 669,184 a------- c:\windows\system32\pbsvc.exe
2009-02-17 17:48 66,872 a------- c:\windows\system32\PnkBstrA.exe
2009-01-21 20:14 129,552 a------- c:\windows\system32\VBoxNetFltNotify.dll
2009-01-18 16:10 174 a--sh--- c:\program files\desktop.ini
2009-01-18 15:59 665,600 a------- c:\windows\inf\drvindex.dat
2009-01-18 15:16 101,888 a------- c:\windows\system32\ifxcardm.dll
2009-01-18 15:16 82,432 a------- c:\windows\system32\axaltocm.dll
2009-01-17 16:18 269,312 a------- c:\windows\system32\es.dll
2009-01-16 20:47 410,984 a------- c:\windows\system32\deploytk.dll
2009-01-16 19:18 361,984 a------- c:\windows\system32\IPSECSVC.DLL
2009-01-16 19:18 272,896 a------- c:\windows\system32\polstore.dll
2009-01-16 19:18 61,440 a------- c:\windows\system32\winipsec.dll
2009-01-16 19:18 28,672 a------- c:\windows\system32\FwRemoteSvr.dll
2009-01-16 19:16 241,152 a------- c:\windows\system32\PortableDeviceApi.dll
2009-01-16 19:16 160,768 a------- c:\windows\system32\PortableDeviceTypes.dll
2009-01-16 19:16 94,720 a------- c:\windows\system32\PortableDeviceClassExtension.dll
2009-01-16 19:07 296,960 a------- c:\windows\system32\gdi32.dll
2009-01-16 19:04 2,154,496 a------- c:\windows\apppatch\AcGenral.dll
2009-01-16 19:04 28,672 a------- c:\windows\system32\Apphlpdm.dll
2009-01-16 19:04 2,560 a------- c:\windows\apppatch\AcRes.dll
2009-01-16 19:04 541,696 a------- c:\windows\apppatch\AcLayers.dll
2009-01-16 19:04 460,288 a------- c:\windows\apppatch\AcSpecfc.dll
2009-01-16 19:04 173,056 a------- c:\windows\apppatch\AcXtrnal.dll
2009-01-16 19:04 52,736 a------- c:\windows\apppatch\iebrshim.dll
2009-01-16 19:04 4,240,384 a------- c:\windows\system32\GameUXLegacyGDFs.dll
2009-01-16 19:04 1,695,744 a------- c:\windows\system32\gameux.dll
2009-01-16 19:04 303,616 a------- c:\windows\system32\wmpeffects.dll
2009-01-16 19:03 1,191,936 a------- c:\windows\system32\msxml3.dll
2009-01-16 19:03 2,048 a------- c:\windows\system32\msxml3r.dll
2009-01-16 19:00 2,048 a------- c:\windows\system32\tzres.dll
2009-01-16 18:55 2,927,104 a------- c:\windows\explorer.exe
2009-01-16 18:50 1,808,896 a------- c:\windows\system32\NlsLexicons0046.dll
2009-01-16 18:50 1,793,536 a------- c:\windows\system32\NlsLexicons0045.dll
2009-01-16 18:50 1,558,016 a------- c:\windows\system32\NlsLexicons0049.dll
2009-01-16 18:50 1,411,072 a------- c:\windows\system32\NlsLexicons0047.dll
2009-01-16 18:50 7,964,672 a------- c:\windows\system32\NlsLexicons0024.dll
2009-01-16 18:50:00 A------- 5,499,904 c:\windows\system32\NlsLexicons0022.dll

============= FINISH: 22:06:32.85 ===============

I thank you very much for your help, as I am worried about having another hard drive reformat within 3 months.

Attached Files



BC AdBot (Login to Remove)

 


#2 KoanYorel

KoanYorel

    Bleepin' Conundrum


  • Staff Emeritus
  • 19,461 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:65 miles due East of the &quot;Logic Free Zone&quot;, in Md, USA
  • Local time:12:58 PM

Posted 20 April 2009 - 05:57 PM

Hello and welcome to Bleeping Computer

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help.

If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine.

If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.

Upon completing the steps below another staff member will review and take the steps necessary with you to get your machine back in working order clean and free of malware.

If you have already posted a DDS log, please do so again, as your situation may have changed.
Use the 'Add Reply' and add the new log to this thread.


Thanks and again sorry for the delay.

We need to see some information about what is happening in your machine. Please perform the following scan:
  • Download DDS by sUBs from one of the following links. Save it to your desktop.
  • Double click on the DDS icon, allow it to run.
  • A small box will open, with an explaination about the tool. No input is needed, the scan is running.
  • Notepad will open with the results.
  • Follow the instructions that pop up for posting the results.
  • Close the program window, and delete the program from your desktop.
Please note: You may have to disable any script protection running if the scan fails to run. After downloading the tool, disconnect from the internet and disable all antivirus protection. Run the scan, enable your A/V and reconnect to the internet.

Information on A/V control HERE

R,
K
The only easy day was yesterday.

...some do, some don't; some will, some won't (WR)

#3 KoanYorel

KoanYorel

    Bleepin' Conundrum


  • Staff Emeritus
  • 19,461 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:65 miles due East of the &quot;Logic Free Zone&quot;, in Md, USA
  • Local time:12:58 PM

Posted 25 April 2009 - 08:41 AM

Due to the lack of feedback This Topic is closed.

Should you need it reopened, please contact a Forum Moderator. Include the address of this thread in your request.

If you have a new issue, please start a New Topic.

This applies only to the original poster. Everyone else please begin a New Topic.

R,
K
The only easy day was yesterday.

...some do, some don't; some will, some won't (WR)




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users