Thanks
rickytick
DDS (Ver_09-09-24.01) - NTFSx86
Run by Rick at 20:19:31.32 on Fri 09/25/2009
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.503.188 [GMT -4:00]
AV: Spyware Doctor with AntiVirus *On-access scanning enabled* (Updated) {D3C23B96-C9DC-477F-8EF1-69AF17A6EFF6}
AV: AntiVir Desktop *On-access scanning enabled* (Updated) {AD166499-45F9-482A-A743-FDD3350758C7}
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k DcomLaunch
C:\WINDOWS\system32\svchost -k rpcss
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\System32\svchost.exe -k LocalService
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\system32\carpserv.exe
C:\WINDOWS\System32\svchost.exe -k LocalService
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\PROGRA~1\UTILIT~1\ONE-TO~1\OneTouch.EXE
C:\Windows\system32\HpSrvUI.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\IObit\IObit Security 360\IS360tray.exe
C:\Program Files\Spyware Doctor\pctsTray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\D-Link\RangeBooster G WNA-2330\acs.exe
C:\Program Files\IObit\Advanced SystemCare 3\Sup_SmartRAM.exe
C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\WINDOWS\system32\HPConfig.exe
C:\Program Files\Utilities\Notebook Utilities\HPWirelessMgr.exe
C:\Program Files\IObit\IObit Security 360\IS360srv.exe
C:\Program Files\Spyware Doctor\pctsAuxs.exe
C:\Program Files\Spyware Doctor\pctsSvc.exe
C:\WINDOWS\System32\svchost.exe -k imgsvc
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\lxcecoms.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\IObit\IObit Security 360\is360.exe
C:\Documents and Settings\Rick\Desktop\dds.scr
============== Pseudo HJT Report ===============
uStart Page = hxxp://www.google.com/
uSearch Page = hxxp://srch-us4nb.hpwis.com/
uDefault_Search_URL = hxxp://srch-us4nb.hpwis.com/
uSearch Bar = hxxp://srch-us4nb.hpwis.com/
uInternet Connection Wizard,ShellNext = hxxp://www.hp.com/info/e-center-p
uInternet Settings,ProxyOverride = hxxp://localhost;
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.3.4501.1418\swg.dll
BHO: Google Dictionary Compression sdch: {c84d72fe-e17d-4195-bb24-76c02e2e7c4e} - c:\program files\google\google toolbar\component\fastsearch_B7C5AC242193BB3E.dll
TB: &hp toolkit: {b2847e28-5d7d-4deb-8b67-05d28bcf79f5} - c:\hp\explorebar\HPTOOLKT.DLL
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
EB: hp toolkit: {8f4902b6-6c04-4ade-8052-aa58578a21bd} - c:\windows\system32\Shdocvw.dll
EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [Advanced SystemCare 3] "c:\program files\iobit\advanced systemcare 3\AWC.exe" /startup
uRun: [Sup_SmartRAM.exe] c:\program files\iobit\advanced systemcare 3\Sup_SmartRAM.exe
uRun: [Creative Detector] "c:\program files\creative\mediasource\detector\CTDetect.exe" /R
uRun: [swg] "c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe"
mRun: [CARPService] carpserv.exe
mRun: [ATIModeChange] Ati2mdxx.exe
mRun: [SynTPLpr] c:\program files\synaptics\syntp\SynTPLpr.exe
mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
mRun: [QT4HPOT] c:\progra~1\utilit~1\one-to~1\OneTouch.EXE
mRun: [Presentation Ready] c:\program files\utilities\presentation ready\PresRdy.exe -r
mRun: [hp Silent Service] c:\windows\system32\HpSrvUI.exe
mRun: [StorageGuard] "c:\program files\veritas software\update manager\sgtray.exe" /r
mRun: [dla] c:\windows\system32\dla\tfswctrl.exe
mRun: [avgnt] "c:\program files\avira\antivir desktop\avgnt.exe" /min
mRun: [LXCECATS] rundll32 c:\windows\system32\spool\drivers\w32x86\3\LXCEtime.dll,_RunDLLEntry@16
mRun: [IObit Security 360] c:\program files\iobit\iobit security 360\IS360tray.exe
mRun: [Malwarebytes Anti-Malware (reboot)] "c:\program files\malwarebytes' anti-malware\winlogon.exe.exe" /runcleanupscript
mRun: [ISTray] "c:\program files\spyware doctor\pctsTray.exe"
StartupFolder: c:\docume~2\alluse~1\startm~1\programs\startup\micros~1.lnk - c:\program files\microsoft office\office10\OSA.EXE
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office10\EXCEL.EXE/3000
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
DPF: Microsoft XML Parser for Java - file://c:\windows\java\classes\xmldso.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1252717418609
DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} - hxxp://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection2.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/products/plugin/1.3.1/jinstall-131_03-win.cab
DPF: {CAFEEFAC-0013-0001-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/products/plugin/1.3.1/jinstall-131_03-win.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - c:\program files\common files\microsoft shared\web folders\PKMCDO.DLL
Notify: fbfaddcdfbfd - c:\windows\system32\fbfaddcdfbfd.dll
============= SERVICES / DRIVERS ===============
R0 avgntmgr;avgntmgr;c:\windows\system32\drivers\avgntmgr.sys [2009-9-11 22360]
R0 PCTCore;PCTools KDS;c:\windows\system32\drivers\PCTCore.sys [2009-9-23 206256]
R1 avgntdd;avgntdd;c:\windows\system32\drivers\avgntdd.sys [2009-9-11 45416]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\avira\antivir desktop\sched.exe [2009-9-11 108289]
R2 AntiVirService;Avira AntiVir Guard;c:\program files\avira\antivir desktop\avguard.exe [2009-9-11 185089]
R2 IS360service;IS360service;c:\program files\iobit\iobit security 360\is360srv.exe [2009-9-12 305936]
R2 sdAuxService;PC Tools Auxiliary Service;c:\program files\spyware doctor\pctsAuxs.exe [2009-9-23 348752]
R2 sdCoreService;PC Tools Security Service;c:\program files\spyware doctor\pctsSvc.exe [2009-9-23 1097096]
R3 CALIAUD;HP ALI 3D Environmental Audio;c:\windows\system32\drivers\caliaud.sys [1980-1-1 321504]
R3 CALIHALA;CALIHALA;c:\windows\system32\drivers\calihal.sys [1980-1-1 225504]
R3 DP83815;National Semiconductor Corp. DP83815/816 NDIS 5.0 Miniport Driver;c:\windows\system32\drivers\DP83815.sys [1980-1-1 16512]
S0 add0fe9df8dbb4099046bde46aeab4e8;add0fe9df8dbb4099046bde46aeab4e8;c:\windows\system32\add0fe9df8dbb4099046bde46aeab4e8.sys --> c:\windows\system32\add0fe9df8dbb4099046bde46aeab4e8.sys [?]
S3 ALiIRDA;ALi Infrared Device Driver;c:\windows\system32\drivers\aliirda.sys [1980-1-1 26112]
S3 LEX_NIC_SERVICE;IEEE 802.11 Wireless NIC Win2000 Driver;c:\windows\system32\drivers\Express.sys [1980-1-1 57344]
=============== Created Last 30 ================
==================== Find3M ====================
2009-09-25 19:21 2,048 a--s---- c:\windows\bootstat.dat
2009-09-25 19:21 527,486,976 a--sh--- C:\hiberfil.sys
2009-09-25 19:21 792,723,456 a--sh--- C:\pagefile.sys
2009-09-24 23:43 2,097,152 a---h--- c:\documents and settings\rick\NTUSER.DAT
2009-09-22 19:21 312,172 a------- c:\windows\system32\perfh009.dat
2009-09-22 19:21 40,394 a------- c:\windows\system32\perfc009.dat
2009-09-22 19:20 17,801 a------- c:\windows\system32\drivers\AegisP.sys
2009-09-13 23:56 6,009 a------- c:\program files\INSTALL.LOG
2009-09-13 10:19 238,352 a------- c:\windows\system32\FNTCACHE.DAT
2009-09-11 22:46 262,144 a------- c:\documents and settings\all users\NTUSER.DAT
2009-09-11 22:12 4,286 a------- c:\windows\pchealth\helpctr\packagestore\SkuStore.bin
2009-09-11 22:12 97,119 a------- c:\windows\pchealth\helpctr\offlinecache\index.dat
2009-09-11 22:09 9,492 a------- c:\windows\pchealth\helpctr\config\Cntstore.bin
2009-09-11 21:58 47,564 a--shr-- C:\NTDETECT.COM
2009-09-10 14:54 38,224 a------- c:\windows\system32\drivers\mbamswissarmy.sys
2009-09-10 14:53 18,520 a------- c:\windows\system32\drivers\mbam.sys
2009-08-28 14:38 24,689,600 a------- c:\windows\system32\MRT.exe
2009-08-24 14:05 206,256 a------- c:\windows\system32\drivers\PCTCore.sys
2009-08-19 11:01 86,888 a------- c:\windows\system32\drivers\PCTAppEvent.sys
2009-08-14 06:58 7,396 a------- c:\windows\system32\drivers\pctcore.cat
2009-08-13 11:16 512,000 a------- c:\windows\system32\jscript.dll
2009-08-13 11:16 512,000 -------- c:\windows\system32\dllcache\jscript.dll
2009-08-05 05:11 204,800 a------- c:\windows\system32\mswebdvd.dll
2009-08-05 05:11 204,800 -------- c:\windows\system32\dllcache\mswebdvd.dll
2009-07-29 00:53 119,808 a------- c:\windows\system32\t2embed.dll
2009-07-29 00:53 82,432 a------- c:\windows\system32\fontsub.dll
2009-07-29 00:53 119,808 -------- c:\windows\system32\dllcache\t2embed.dll
2009-07-29 00:53 82,432 -------- c:\windows\system32\dllcache\fontsub.dll
2009-07-19 19:03 3,597,824 a------- c:\windows\system32\mshtml.dll
2009-07-19 19:03 3,597,824 -------- c:\windows\system32\dllcache\mshtml.dll
2009-07-19 09:32 6,067,200 a------- c:\windows\system32\ieframe.dll
2009-07-19 09:32 6,067,200 -------- c:\windows\system32\dllcache\ieframe.dll
2009-07-17 14:55 58,880 a------- c:\windows\system32\atl.dll
2009-07-17 14:55 58,880 -------- c:\windows\system32\dllcache\atl.dll
2009-07-14 07:03 46,080 -------- c:\windows\system32\tzchange.exe
2009-07-13 02:18 233,472 -------- c:\windows\system32\wmpdxm.dll
2009-07-13 02:18 233,472 -------- c:\windows\system32\dllcache\wmpdxm.dll
2009-07-13 02:18 4,960,256 -------- c:\windows\system32\wmp.dll
2009-07-13 02:18 4,960,256 -------- c:\windows\system32\dllcache\wmp.dll
2009-07-10 09:42 1,315,328 -------- c:\windows\system32\dllcache\msoe.dll
2009-06-29 07:07 13,824 a------- c:\windows\system32\ieudinit.exe
2009-06-29 07:07 13,824 -------- c:\windows\system32\dllcache\ieudinit.exe
2009-06-29 07:07 70,656 -------- c:\windows\system32\ie4uinit.exe
2009-06-29 07:07 70,656 -------- c:\windows\system32\dllcache\ie4uinit.exe
2009-06-29 04:35 634,632 -------- c:\windows\system32\dllcache\iexplore.exe
2009-06-29 04:33 2,452,872 a------- c:\windows\system32\ieapfltr.dat
2009-06-29 04:33 2,452,872 -------- c:\windows\system32\dllcache\ieapfltr.dat
2009-06-29 04:33 161,792 -------- c:\windows\system32\ieakui.dll
2009-06-29 04:33 161,792 -------- c:\windows\system32\dllcache\ieakui.dll
1998-02-10 17:34 128,000 a------- c:\program files\UNWISE.EXE
2001-08-18 08:00 94,784 a--sh--- c:\windows\twain.dll
2004-08-04 03:56 50,688 a--sh--- c:\windows\twain_32.dll
2004-08-04 03:56 1,028,096 a--sh--- c:\windows\system32\mfc42.dll
2004-08-04 03:56 54,784 a--sh--- c:\windows\system32\msvcirt.dll
2004-08-04 03:56 413,696 a--sh--- c:\windows\system32\msvcp60.dll
2004-08-04 03:56 11,776 a--sh--- c:\windows\system32\regsvr32.exe
============= FINISH: 20:21:33.83 ===============