My PC has definitely ben infected by some spyware - maybe a trojan or something bad like that!
Could you please help?
I have Zone Alarm firewall and also use their spyware antivirus.
I also have programs like Malwarebytes' Anti-Malware, Super Anti Spyware Spybot but this spyware seems to be really malicious and would not go away!
Please help me get rid of it.
Thanks in advance and have a good day!
henceforth
Here is the DDS.txt
DDS (Ver_09-05-14.01) - FAT32x86
Run by All Mankind at 15:59:29.12 on Sun 05/24/2009
Internet Explorer: 6.0.2900.2180
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.1015.508 [GMT 5.5:30]
AV: ZoneAlarm Security Suite Antivirus *On-access scanning enabled* (Updated)
{5D467B10-818C-4CAB-9FF7-6893B5B8F3CF}
FW: ZoneAlarm Security Suite Firewall *enabled* {829BDA32-94B3-44F4-8446-F8FCFF809F8B}
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\ZONELABS\vsmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\bgsvcgen.exe
C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\clfileeFilename.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\WINDOWS\System32\svchost.exe -k krnlsrvc
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Zone Labs\ZoneAlarm\MailFrontier\mantispm.exe
C:\Program Files\Free Download Manager\fdm.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Opera\opera.exe
C:\Documents and Settings\All Mankind\Desktop\dds.scr
============== Pseudo HJT Report ===============
uStart Page = hxxp://www.google.co.in/
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\progra~1\spybot~1\SDHelper.dll
BHO: FDMIECookiesBHO Class: {cc59e0f9-7e43-44fa-9faa-8377850bf205} - c:\program files\free download
manager\iefdm2.dll
TB: {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
EB: {182EC0BE-5110-49C8-A062-BEB1D02A220B} - No File
uRun: [SUPERAntiSpyware] c:\program files\superantispyware\SUPERAntiSpyware.exe
mRun: [ZoneAlarm Client] "c:\program files\zone labs\zonealarm\zlclient.exe"
mPolicies-system: SynchronousMachineGroupPolicy = 0 (0x0)
mPolicies-system: SynchronousUserGroupPolicy = 0 (0x0)
IE: Download all with Free Download Manager - file://c:\program files\free download manager\dlall.htm
IE: Download selected with Free Download Manager - file://c:\program files\free download manager\dlselected.htm
IE: Download video with Free Download Manager - file://c:\program files\free download manager\dlfvideo.htm
IE: Download with Free Download Manager - file://c:\program files\free download manager\dllink.htm
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} -
c:\progra~1\spybot~1\SDHelper.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab
TCP: {00625B36-378C-4E4C-B1A3-DD19A0F20596} = 218.248.240.208 218.248.255.193
TCP: {BE0879DC-2C8A-4BBD-AA8F-61210777E326} = 218.248.240.208,218.248.255.193
TCP: {D7B79D92-E866-473A-952D-D5EFBB928073} = 218.248.240.208,218.248.255.193
Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - c:\program files\common files\microsoft shared\web
folders\PKMCDO.DLL
Notify: igfxcui - igfxsrvc.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program
files\superantispyware\SASSEH.DLL
================= FIREFOX ===================
FF - ProfilePath - c:\docume~1\allman~1\applic~1\mozilla\firefox\profiles\ze70e4pm.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.co.in/
FF - component: c:\documents and settings\all mankind\application
data\mozilla\firefox\profiles\ze70e4pm.default\extensions\{6e098d65-7d2d-46d4-ada0-2f882a29f795}\platform\winnt_x8
6-msvc\components\libchm.dll
FF - plugin: c:\program files\opera\program\plugins\nppl3260.dll
FF - plugin: c:\program files\opera\program\plugins\nprpjplug.dll
============= SERVICES / DRIVERS ===============
R1 KLIF;KLIF;c:\windows\system32\drivers\klif.sys [2009-5-6 150544]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2009-1-15 8944]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2009-1-15 55024]
R1 vsdatant;vsdatant;c:\windows\system32\vsdatant.sys [2009-5-5 353672]
R2 MediaqCentern;MS Median Control qCenter;c:\windows\system32\svchost.exe -k krnlsrvc [2004-8-3 14336]
R2 vsmon;TrueVector Internet Monitor;c:\windows\system32\zonelabs\vsmon.exe -service -->
c:\windows\system32\zonelabs\vsmon.exe -service [?]
R3 SASENUM;SASENUM;c:\program files\superantispyware\SASENUM.SYS [2009-1-15 7408]
R3 slnt;Silan SC92031 PCI Fast Ethernet Adapter;c:\windows\system32\drivers\slnt.sys [2008-3-23 18004]
S2 awp;Kaspersky Internet Security;c:\windows\system32\36O.exe [2009-5-23 15360]
S2 clddos0Nameeeee;clddosTestppppp;c:\windows\clfileeFilename.exe [2009-5-18 12288]
S2 ddd;dddd;c:\windows\ddd.exe --> c:\windows\ddd.exe [?]
S2 feos Service;feos soft Service;c:\windows\system32\f3tct53fwìn€\j001.exe -->
c:\windows\system32\f3tct53fwìn€\J001.exe [?]
S2 hdds Service;hdds soft Service;c:\windows\system32\v3c77jaozìn€\J001.exe [2009-5-18 16106]
S2 jmrovk;jmrovk;c:\windows\system32\SVCHOST.EXE -k jmrovk [2004-8-3 14336]
S2 lpjbht;lpjbht;c:\windows\system32\svchost.exe -k lpjbht [2004-8-3 14336]
S2 MediaCenter server;MS Media Control Centers;c:\windows\system32\svchost.exe -k krnlsrvc [2004-8-3 14336]
S2 oicxcm;§icxcm;c:\windows\system32\svchost.exe -k oicxcm [2004-8-3 14336]
S2 RouSvc;Routing Service;c:\program files\r_server\RemoteAbc.exe [2009-5-23 296448]
S2 SmbApSrv;SMB Performance Adapter;c:\windows\system32\svchost.exe -k LocalSystem [2004-8-3 14336]
S2 ymrovkru;ymrovkru;\??\c:\windows\system32\drivers\bdlovf.rxr --> c:\windows\system32\drivers\bdlovf.rxr [?]
S3 NPF;WinPcap Packet Driver (NPF);c:\windows\system32\drivers\npf.sys --> c:\windows\system32\drivers\NPF.sys [?]
S4 bfddos;bfddos;c:\windows\system32\g0ss8432eìn€\H001.exe [2009-5-20 67584]
S4 dkaron;dkaron;c:\windows\system32\v3c77jaozìn€\h002.exe --> c:\windows\system32\v3c77jaozìn€\H002.exe [?]
S4 ihzaq;ihzaq;c:\windows\system32\ihzaq.exe --> c:\windows\system32\ihzaq.exe [?]
S4 ijzab;ijzab;c:\windows\system32\ijzab.exe --> c:\windows\system32\ijzab.exe [?]
S4 ijzaq;ijzaq;c:\windows\system32\ijzaq.exe --> c:\windows\system32\ijzaq.exe [?]
S4 wedr;wedr;c:\windows\system32\wedr.exe --> c:\windows\system32\wedr.exe [?]
S4 Windows Media Service;Windows Media Service;c:\windows\system32\154o0ldu5ìn€\H001.exe [2009-5-19 33280]
=============== Created Last 30 ================
2009-05-24 15:16 4,480 a------- c:\windows\system32\drivers\PCIDump.sys
2009-05-24 08:16 <DIR> --d----- c:\docume~1\allman~1\applic~1\Free Download Manager
2009-05-24 08:16 <DIR> --d----- c:\docume~1\alluse~1\applic~1\FreeDownloadManager.ORG
2009-05-24 08:16 <DIR> --d----- c:\program files\Free Download Manager
2009-05-23 18:45 <DIR> --d----- c:\program files\R_Server
2009-05-23 18:43 <DIR> --d----- c:\windows\system32\1QE14LCZAìn€
2009-05-23 15:54 108,544 a------- c:\windows\system32\smbsvc.dll
2009-05-23 15:54 <DIR> --d----- c:\windows\system32\18R6IUQ04ìn€
2009-05-23 08:57 15,360 -------- c:\windows\system32\36O.exe
2009-05-23 08:44 695,284 a------- c:\windows\system32\libmysql.dll
2009-05-23 08:44 <DIR> --d----- c:\windows\system32\GSVKM88Q6ìn€
2009-05-23 06:33 <DIR> --d----- c:\windows\system32\OCHLH2UKZìn€
2009-05-23 05:52 <DIR> --d----- c:\windows\system32\F3TCT53FWìn€
2009-05-22 22:03 1,528 a------- c:\windows\system32\ajtbqi.key
2009-05-22 22:02 1 a------- c:\windows\system32\0005a26f.ini
2009-05-22 22:01 <DIR> --d----- c:\windows\system32\M56CHOT81ìn€
2009-05-22 15:26 <DIR> --d----- c:\windows\system32\9X5T5EQCPìn€
2009-05-22 11:48 <DIR> --d----- c:\windows\system32\YTV773FQAìn€
2009-05-20 19:34 1,866 a------- c:\windows\system32\oicxcmD@.key
2009-05-20 19:34 1,864 a------- c:\windows\system32\rltwsoD@.key
2009-05-20 19:26 1 a------- c:\windows\system32\00054615.ini
2009-05-20 19:25 1 a------- c:\windows\system32\0004d289.ini
2009-05-20 19:24 <DIR> --d----- c:\windows\system32\G0SS8432Eìn€
2009-05-19 11:39 3,866 a------- c:\windows\system32\bdlovf.key
2009-05-19 11:39 1 a------- c:\windows\system32\3a353.imj
2009-05-19 11:39 96,904 -------- c:\windows\system32\bdlovf.gtm
2009-05-19 11:36 <DIR> --d----- c:\windows\system32\154O0LDU5ìn€
2009-05-19 07:11 <DIR> --d----- c:\windows\system32\GEQISRQM8ìn€
2009-05-18 17:22 <DIR> --d----- c:\windows\system32\IDMNTRTNPìn€
2009-05-18 14:20 12,288 a------- c:\windows\clfileeFilename.exe
2009-05-18 14:17 <DIR> --d----- c:\windows\system32\EV27MH0KDìn€
2009-05-18 12:50 <DIR> --d----- c:\windows\system32\V3C77JAOZìn€
2009-05-18 10:23 <DIR> --d----- c:\windows\system32\i
2009-05-18 09:01 81 a------- c:\windows\system32\asr_zuqdc
2009-05-17 17:19 <DIR> --d----- c:\program files\Real Alternative
2009-05-17 16:43 168,448 a------- c:\windows\system32\unrar.dll
2009-05-17 16:43 <DIR> --d----- c:\program files\K-Lite Codec Pack
2009-05-06 07:42 <DIR> --d----- c:\program files\SonicWallES
2009-05-06 06:11 1,122 a------- C:\rollback.ini
2009-05-05 22:32 <DIR> --d----- c:\docume~1\allman~1\applic~1\MailFrontier
2009-05-05 22:31 4,212 a---hr-- c:\windows\system32\zllictbl.dat
2009-05-05 22:20 32 a--sh--- c:\windows\system32\drivers\fidbox.idx
2009-05-05 22:20 32 a--sh--- c:\windows\system32\drivers\fidbox.dat
2009-05-05 22:14 72,584 a------- c:\windows\zllsputility.exe
2009-05-05 22:14 1,221,512 a------- c:\windows\system32\zpeng25.dll
2009-05-05 22:14 <DIR> --d----- c:\windows\system32\ZoneLabs
2009-05-05 22:14 <DIR> --d----- c:\program files\Zone Labs
2009-05-05 22:14 351,219 a------- c:\windows\system32\vsconfig.xml
2009-05-05 19:33 713,216 -------- c:\windows\system32\dllcache\sxs.dll
2009-05-04 22:53 87,608 a------- c:\docume~1\allman~1\applic~1\inst.exe
2009-04-29 21:52 <DIR> --dsh--- C:\FOUND.001
2009-04-28 14:23 25,600 a------- c:\windows\system32\drivers\usbser.sys
2009-04-28 14:23 25,600 a------- c:\windows\system32\dllcache\usbser.sys
2009-04-28 14:23 0 a---h--- c:\windows\system32\drivers\Msft_Kernel_ccdcmb_01007.Wdf
2009-04-28 14:23 0 a---h---
c:\windows\system32\drivers\MsftWdf_Kernel_01007_Coinstaller_Critical.Wdf
2009-04-28 14:23 14,640 -------- c:\windows\system32\spmsgXP_2k3.dll
2009-04-28 13:27 <DIR> --d----- c:\program files\common files\PCSuite
2009-04-28 13:27 <DIR> --d----- c:\program files\common files\Nokia
2009-04-28 13:22 18,816 a------- c:\windows\system32\drivers\pccsmcfd.sys
2009-04-28 13:21 <DIR> --d----- c:\program files\PC Connectivity Solution
2009-04-28 13:20 7,808 a------- c:\windows\system32\drivers\usbser_lowerfltj.sys
2009-04-28 13:20 7,808 a------- c:\windows\system32\drivers\usbser_lowerflt.sys
2009-04-28 13:20 22,016 a------- c:\windows\system32\drivers\ccdcmbo.sys
2009-04-28 13:20 1,112,288 a------- c:\windows\system32\wdfcoinstaller01007.dll
2009-04-28 13:20 659,968 a------- c:\windows\system32\nmwcdcocls.dll
2009-04-28 13:20 17,664 a------- c:\windows\system32\drivers\ccdcmb.sys
2009-04-28 10:02 <DIR> --d----- c:\program files\Nokia
==================== Find3M ====================
2009-05-04 22:53 47,360 a------- c:\docume~1\allman~1\applic~1\pcouffin.sys
2009-04-29 21:41 90,112 a------- c:\windows\DUMP6c22.tmp
2009-04-29 21:39 90,112 a------- c:\windows\DUMP1d68.tmp
2009-04-29 21:33 90,112 a------- c:\windows\DUMP12e7.tmp
2009-04-29 21:31 90,112 a------- c:\windows\DUMP4532.tmp
2009-04-29 21:28 90,112 a------- c:\windows\DUMP1d76.tmp
2009-04-29 21:25 90,112 a------- c:\windows\DUMP1d96.tmp
2009-04-29 21:23 90,112 a------- c:\windows\DUMP1d67.tmp
2009-04-29 21:20 90,112 a------- c:\windows\DUMP1d66.tmp
2009-04-29 21:18 90,112 a------- c:\windows\DUMP1db4.tmp
2009-04-29 16:51 90,112 a------- c:\windows\DUMP1d95.tmp
2009-04-06 15:32 38,496 a------- c:\windows\system32\drivers\mbamswissarmy.sys
2009-04-06 15:32 15,504 a------- c:\windows\system32\drivers\mbam.sys
2009-03-24 14:44 67,792 a------- c:\docume~1\allman~1\applic~1\GDIPFONTCACHEV1.DAT
2008-04-25 13:07 87,608 a------- c:\docume~1\allman~1\applic~1\ezpinst.exe
2002-11-04 14:54 3,392 a------- c:\windows\inf\other\cmiainfo.sys
2009-02-17 10:19 2 a--shr-- c:\windows\winstart.bat
2004-08-17 20:00 67,584 ---sh--- c:\windows\system32\TxmgtdD.dll
============= FINISH: 16:01:33.93 ===============