Hello, and thank you for your time...
1. I have Windows XP Professional Version 2002 Service Pack 3
2. Yes, I have my installation CD
DDS log.
DDS (Ver_11-03-05.01) - NTFSx86
Run by PsYhO at 14:08:49.78 on Sun 03/06/2011
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_24
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1023.382 [GMT 1:00]
.
AV: Microsoft Security Essentials *Disabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095}
FW: AVG Firewall *Disabled*
.
============== Running Processes ===============
.
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\WINDOWS\system32\ctfmon.exe
svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Mozilla Firefox 4.0 Beta 11\firefox.exe
C:\Program Files\Mozilla Firefox 4.0 Beta 11\plugin-container.exe
C:\Documents and Settings\PsYhO\Desktop\dds.scr
.
============== Pseudo HJT Report ===============
.
uInternet Settings,ProxyServer = http=;ftp=;https=;
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Skype Plug-In: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: {BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} - No File
TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
uRun: [Skype] "c:\program files\skype\phone\Skype.exe" /nosplash /minimized
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [SoundMan] SOUNDMAN.EXE
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [nwiz] nwiz.exe /install
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [Malwarebytes' Anti-Malware] "c:\program files\malwarebytes' anti-malware\mbamgui.exe" /starttray
mRun: [MSC] "c:\program files\microsoft security client\msseces.exe" -hide -runkey
dRunOnce: [nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\docume~1\psyho\applic~1\mozilla\firefox\profiles\7n9kt4tt.default\
FF - prefs.js: browser.startup.homepage - www.google.com
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2786678&q=
FF - prefs.js: network.proxy.gopher -
FF - prefs.js: network.proxy.gopher_port - 0
FF - prefs.js: network.proxy.type - 0
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\vistacodecpack\rm\browser\plugins\nppl3260.dll
FF - plugin: c:\program files\vistacodecpack\rm\browser\plugins\nprpjplug.dll
.
============= SERVICES / DRIVERS ===============
.
R1 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2010-10-24 165264]
R1 MpKsle9845ffb;MpKsle9845ffb;c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{f38ef666-7f11-4da1-bd11-10d51203bf15}\MpKsle9845ffb.sys [2011-3-6 28752]
R2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2011-2-25 363344]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2011-2-25 20952]
S1 MpKsl18242b75;MpKsl18242b75;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{868990c2-cfbb-4d23-91dd-14a6183df1d1}\mpksl18242b75.sys --> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{868990c2-cfbb-4d23-91dd-14a6183df1d1}\MpKsl18242b75.sys [?]
S3 GGSAFERDriver;GGSAFER Driver;\??\c:\program files\garena\safedrv.sys --> c:\program files\garena\safedrv.sys [?]
S3 PAC207;e-Messenger 112;c:\windows\system32\drivers\PFC027.SYS [2011-2-24 616064]
S3 rkhdrv40;Rootkit Unhooker Driver; [x]
S4 a347bus;a347bus;c:\windows\system32\drivers\a347bus.sys [2011-3-3 158720]
S4 a347scsi;a347scsi;c:\windows\system32\drivers\a347scsi.sys [2011-3-3 5248]
.
=============== Created Last 30 ================
.
2011-03-06 13:03:37 28752 ----a-w- c:\docume~1\alluse~1\applic~1\microsoft\microsoft antimalware\definition updates\{f38ef666-7f11-4da1-bd11-10d51203bf15}\MpKsle9845ffb.sys
2011-03-06 12:55:02 5943120 ----a-w- c:\docume~1\alluse~1\applic~1\microsoft\microsoft antimalware\definition updates\{f38ef666-7f11-4da1-bd11-10d51203bf15}\mpengine.dll
2011-03-04 23:31:24 -------- d-----w- c:\program files\JDownloader
2011-03-04 21:58:14 -------- d-----w- c:\program files\Hero Editor
2011-03-04 21:57:17 249856 ------w- c:\windows\Setup1.exe
2011-03-04 21:57:06 73216 ----a-w- c:\windows\ST6UNST.EXE
2011-03-04 19:29:33 5632 ----a-w- c:\program files\common files\installshield\professional\runtime\11\00\intel32\DotNetInstaller.exe
2011-03-04 18:48:50 69714 ----a-w- c:\program files\common files\installshield\professional\runtime\11\00\intel32\ctor.dll
2011-03-04 18:48:50 274432 ----a-w- c:\program files\common files\installshield\professional\runtime\11\00\intel32\iscript.dll
2011-03-04 18:48:50 184320 ----a-w- c:\program files\common files\installshield\professional\runtime\11\00\intel32\iuser.dll
2011-03-04 18:48:49 753664 ----a-w- c:\program files\common files\installshield\professional\runtime\11\00\intel32\iKernel.dll
2011-03-04 18:48:47 200836 ----a-w- c:\program files\common files\installshield\professional\runtime\11\00\intel32\iGdi.dll
2011-03-04 18:48:43 331908 ----a-w- c:\program files\common files\installshield\professional\runtime\11\00\intel32\setup.dll
2011-03-03 21:16:36 -------- d-----w- c:\program files\VirtualDJ
2011-03-03 11:28:13 5248 ----a-w- c:\windows\system32\drivers\a347scsi.sys
2011-03-03 11:28:13 158720 ----a-w- c:\windows\system32\drivers\a347bus.sys
2011-03-03 11:11:52 -------- d-----w- c:\program files\Alcohol Soft
2011-03-01 21:03:59 -------- d-----w- c:\program files\OCCT
2011-03-01 10:14:29 -------- d-----w- c:\docume~1\alluse~1\applic~1\Pure Networks
2011-02-28 02:02:36 -------- d-----w- c:\windows\ie8updates
2011-02-27 22:50:33 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2011-02-27 22:50:29 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2011-02-27 22:50:29 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2011-02-27 22:50:22 1991680 -c----w- c:\windows\system32\dllcache\iertutil.dll
2011-02-27 22:50:12 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2011-02-27 22:50:11 602112 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2011-02-27 21:07:45 -------- d-----w- c:\docume~1\alluse~1\applic~1\DAEMON Tools Lite
2011-02-27 21:07:03 -------- d-----w- c:\program files\DAEMON Tools Toolbar
2011-02-27 21:06:31 -------- d-----w- c:\program files\DAEMON Tools Lite
2011-02-27 21:06:12 -------- d-----w- c:\docume~1\psyho\applic~1\DAEMON Tools Lite
2011-02-27 21:00:17 -------- d-----w- c:\docume~1\alluse~1\applic~1\DAEMON Tools Pro
2011-02-27 21:00:12 -------- d-----w- c:\program files\DAEMON Tools Pro
2011-02-27 20:49:27 -------- d-----w- c:\docume~1\psyho\applic~1\DAEMON Tools Pro
2011-02-27 19:22:38 5943120 ----a-w- c:\docume~1\alluse~1\applic~1\microsoft\microsoft antimalware\definition updates\backup\mpengine.dll
2011-02-27 19:14:17 222080 ------w- c:\windows\system32\MpSigStub.exe
2011-02-27 18:45:25 -------- d-----w- c:\program files\Microsoft Security Client
2011-02-27 18:31:11 -------- d-----w- c:\windows\system32\appmgmt
2011-02-27 18:19:33 -------- d-----w- c:\program files\Trend Micro
2011-02-27 18:00:39 -------- d-----w- c:\program files\CCleaner
2011-02-27 16:16:54 -------- d-sh--w- c:\documents and settings\psyho\IETldCache
2011-02-27 16:07:24 -------- dc-h--w- c:\windows\ie8
2011-02-27 15:18:37 -------- d-----w- c:\windows\pss
2011-02-27 01:43:52 -------- d-----w- c:\program files\directx
2011-02-27 01:43:50 385100 ------w- c:\windows\system32\MSVCRTD.DLL
2011-02-27 01:43:49 516173 ------w- c:\windows\system32\MSVCP60D.DLL
2011-02-27 01:43:48 798773 ------w- c:\windows\system32\MFCO42D.DLL
2011-02-27 01:43:47 929844 ------w- c:\windows\system32\MFC42D.DLL
2011-02-27 00:57:15 -------- d-----w- c:\docume~1\psyho\applic~1\PriceGong
2011-02-27 00:53:44 -------- d-----w- c:\docume~1\psyho\locals~1\applic~1\AskToolbar
2011-02-26 23:28:45 -------- d-----w- c:\program files\ESET
2011-02-26 23:16:50 -------- d-----w- c:\program files\SIW
2011-02-26 22:33:30 98816 ----a-w- c:\windows\sed.exe
2011-02-26 22:33:30 89088 ----a-w- c:\windows\MBR.exe
2011-02-26 22:33:30 256512 ----a-w- c:\windows\PEV.exe
2011-02-26 22:33:30 161792 ----a-w- c:\windows\SWREG.exe
2011-02-26 21:34:06 -------- d-sha-r- C:\cmdcons
2011-02-26 20:59:33 -------- d-----w- c:\docume~1\psyho\locals~1\applic~1\Conduit
2011-02-26 20:59:29 -------- d-----w- c:\program files\Conduit
2011-02-26 20:59:09 -------- d-----w- c:\docume~1\psyho\locals~1\applic~1\uTorrentBar
2011-02-26 20:58:29 -------- d-----w- c:\docume~1\psyho\locals~1\applic~1\ConduitEngine
2011-02-26 20:58:08 -------- d-----w- c:\program files\ConduitEngine
2011-02-26 20:57:35 -------- d-----w- c:\program files\uTorrentBar
2011-02-26 20:57:35 -------- d-----w- c:\docume~1\psyho\locals~1\applic~1\Temp
2011-02-26 20:56:32 -------- d-----w- c:\program files\uTorrent
2011-02-26 19:53:06 38848 ----a-w- c:\windows\avastSS.scr
2011-02-26 19:52:05 -------- d-----w- c:\docume~1\alluse~1\applic~1\Alwil Software
2011-02-26 19:43:09 -------- d-----w- c:\program files\Computerbrains
2011-02-26 19:41:44 306688 ----a-w- c:\windows\IsUninst.exe
2011-02-26 19:41:41 -------- d-----w- c:\documents and settings\psyho\WINDOWS
2011-02-26 19:26:07 -------- d-----w- c:\docume~1\psyho\applic~1\URSoft
2011-02-26 18:49:30 -------- d-----w- C:\oldgames
2011-02-26 18:32:02 -------- d-----w- c:\program files\DOSBox-0.72
2011-02-26 13:29:10 215920 ----a-w- c:\windows\system32\muweb.dll
2011-02-26 13:29:10 16736 ----a-w- c:\windows\system32\mucltui.dll.mui
2011-02-26 13:29:09 274288 ----a-w- c:\windows\system32\mucltui.dll
2011-02-25 23:43:38 -------- d-----w- c:\docume~1\psyho\locals~1\applic~1\Native Instruments
2011-02-25 23:32:20 -------- d-----w- c:\program files\common files\Digidesign
2011-02-25 23:29:26 -------- d-----w- c:\program files\common files\Native Instruments
2011-02-25 23:29:25 -------- d-----w- c:\program files\Native Instruments
2011-02-25 23:28:34 17408 ------w- c:\windows\system32\minimp3.exe
2011-02-25 23:27:27 -------- d-----w- c:\program files\Cakewalk
2011-02-25 23:27:27 -------- d-----w- c:\docume~1\alluse~1\applic~1\Cakewalk
2011-02-25 23:25:17 -------- d-----w- c:\program files\ASIO4ALL v2
2011-02-25 23:24:53 225280 ----a-w- c:\windows\system32\rewire.dll
2011-02-25 23:19:03 -------- d-----w- c:\program files\VstPlugins
2011-02-25 23:18:44 -------- d-----w- c:\program files\Outsim
2011-02-25 23:07:10 -------- d-----w- c:\program files\Image-Line
2011-02-25 21:39:06 -------- d-----w- c:\docume~1\psyho\applic~1\AutoHideIP
2011-02-25 21:39:06 -------- d-----w- c:\docume~1\alluse~1\applic~1\AutoHideIP
2011-02-25 21:37:00 -------- d-----w- c:\program files\AutoHideIP
2011-02-25 21:28:35 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-02-25 21:28:31 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-02-25 21:28:31 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-02-25 21:06:31 26368 -c--a-w- c:\windows\system32\dllcache\usbstor.sys
2011-02-25 19:06:12 -------- d-----w- c:\documents and settings\psyho\Tracing
2011-02-25 18:56:20 -------- d-----w- c:\program files\Microsoft
2011-02-25 18:55:19 -------- d-----w- c:\program files\Windows Live SkyDrive
2011-02-25 18:49:39 83249512 ----a-w- c:\program files\common files\windows live\.cache\wlc2B.tmp
2011-02-25 01:57:59 221184 ----a-w- c:\windows\system32\wmpns.dll
2011-02-25 00:22:04 272128 -c----w- c:\windows\system32\dllcache\bthport.sys
2011-02-25 00:22:04 272128 ------w- c:\windows\system32\drivers\bthport.sys
2011-02-25 00:18:27 455680 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2011-02-25 00:05:20 -------- d--h--w- c:\docume~1\alluse~1\applic~1\Common Files
2011-02-24 22:58:47 -------- d-----w- c:\program files\common files\Windows Live
2011-02-24 22:58:34 5504 -c--a-w- c:\windows\system32\dllcache\mstee.sys
2011-02-24 22:58:34 5504 ----a-w- c:\windows\system32\drivers\MSTEE.sys
2011-02-24 22:58:09 2148864 -c----w- c:\windows\system32\dllcache\ntkrnlmp.exe
2011-02-24 22:58:07 2192768 -c----w- c:\windows\system32\dllcache\ntoskrnl.exe
2011-02-24 22:58:06 10880 -c--a-w- c:\windows\system32\dllcache\ndisip.sys
2011-02-24 22:58:06 10880 ----a-w- c:\windows\system32\drivers\NdisIP.sys
2011-02-24 22:58:02 2027008 -c----w- c:\windows\system32\dllcache\ntkrpamp.exe
2011-02-24 22:58:00 2069376 -c----w- c:\windows\system32\dllcache\ntkrnlpa.exe
2011-02-24 22:57:53 16384 ----a-w- c:\windows\system32\ipsink.ax
2011-02-24 22:57:53 15232 -c--a-w- c:\windows\system32\dllcache\streamip.sys
2011-02-24 22:57:53 15232 ----a-w- c:\windows\system32\drivers\StreamIP.sys
2011-02-24 22:57:47 11136 -c--a-w- c:\windows\system32\dllcache\slip.sys
2011-02-24 22:57:47 11136 ----a-w- c:\windows\system32\drivers\SLIP.sys
2011-02-24 22:57:39 19200 -c--a-w- c:\windows\system32\dllcache\wstcodec.sys
2011-02-24 22:57:39 19200 ----a-w- c:\windows\system32\drivers\WSTCODEC.SYS
2011-02-24 22:57:30 85248 -c--a-w- c:\windows\system32\dllcache\nabtsfec.sys
2011-02-24 22:57:30 85248 ----a-w- c:\windows\system32\drivers\NABTSFEC.sys
2011-02-24 22:57:16 17024 -c--a-w- c:\windows\system32\dllcache\ccdecode.sys
2011-02-24 22:57:16 17024 ----a-w- c:\windows\system32\drivers\CCDECODE.sys
2011-02-24 22:56:03 91136 ----a-w- c:\windows\system32\kswdmcap.ax
2011-02-24 22:56:03 28672 ----a-w- c:\windows\system32\vidcap.ax
2011-02-24 22:55:58 61952 ----a-w- c:\windows\system32\kstvtune.ax
2011-02-24 22:55:45 53760 -c--a-w- c:\windows\system32\dllcache\vfwwdm32.dll
2011-02-24 22:55:45 53760 ----a-w- c:\windows\system32\vfwwdm32.dll
2011-02-24 22:55:43 43008 ----a-w- c:\windows\system32\ksxbar.ax
2011-02-24 22:52:30 5120 ----a-w- c:\windows\system32\xpsp4res.dll
2011-02-24 22:46:52 -------- d-----w- c:\windows\system32\PreInstall
2011-02-24 22:46:50 26144 ----a-w- c:\windows\system32\spupdsvc.exe
2011-02-24 22:46:48 -------- d--h--w- c:\windows\$hf_mig$
2011-02-24 22:43:45 73728 ----a-w- c:\windows\system32\javacpl.cpl
2011-02-24 22:43:45 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-02-24 22:33:37 -------- d-----r- c:\program files\Skype
2011-02-24 22:31:37 -------- d-----w- c:\docume~1\psyho\locals~1\applic~1\Mozilla
2011-02-24 22:30:29 -------- d-----w- c:\program files\Garena
2011-02-24 22:30:21 -------- d-----w- c:\program files\Mozilla Firefox 4.0 Beta 11
2011-02-24 22:30:15 -------- d-----w- c:\program files\Your Uninstaller! 2006 PRO
2011-02-24 22:27:08 -------- d-----w- c:\docume~1\psyho\applic~1\Malwarebytes
2011-02-24 22:26:53 -------- d-----w- c:\docume~1\alluse~1\applic~1\Malwarebytes
2011-02-24 22:26:09 -------- d-----w- c:\program files\VistaCodecPack
2011-02-24 22:24:21 -------- d-----w- c:\docume~1\alluse~1\applic~1\MFAData
2011-02-24 22:23:22 -------- d-----w- c:\docume~1\alluse~1\applic~1\GRETECH
2011-02-24 22:21:05 -------- d-----w- c:\windows\system32\SoftwareDistribution
2011-02-24 22:20:40 -------- d-----w- c:\program files\GRETECH
.
==================== Find3M ====================
.
2011-01-21 14:44:37 439296 ----a-w- c:\windows\system32\shimgvw.dll
2011-01-07 14:09:02 290048 ----a-w- c:\windows\system32\atmfd.dll
2010-12-31 13:10:33 1854976 ----a-w- c:\windows\system32\win32k.sys
2010-12-22 12:34:28 301568 ----a-w- c:\windows\system32\kerberos.dll
2010-12-20 23:59:20 916480 ----a-w- c:\windows\system32\wininet.dll
2010-12-20 23:59:19 43520 ----a-w- c:\windows\system32\licmgr10.dll
2010-12-20 23:59:19 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2010-12-20 17:26:00 730112 ----a-w- c:\windows\system32\lsasrv.dll
2010-12-20 12:55:26 385024 ----a-w- c:\windows\system32\html.iec
2010-12-09 15:15:09 718336 ----a-w- c:\windows\system32\ntdll.dll
2010-12-09 14:30:22 33280 ----a-w- c:\windows\system32\csrsrv.dll
2010-12-09 13:38:47 2192768 ----a-w- c:\windows\system32\ntoskrnl.exe
2010-12-09 13:07:05 2069376 ----a-w- c:\windows\system32\ntkrnlpa.exe
.
============= FINISH: 14:10:49.48 ===============
Attach log.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_11-03-05.01)
.
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 2/24/2011 10:08:56 PM
System Uptime: 3/6/2011 2:00:07 PM (0 hours ago)
.
Motherboard: Gigabyte Technology Co., Ltd. | | GA-K8N Ultra-9
Processor: AMD Athlon 64 Processor 3000+ | Socket 939 | 2070/230mhz
.
==== Disk Partitions =========================
.
A: is Removable
C: is FIXED (NTFS) - 28 GiB total, 17.997 GiB free.
D: is FIXED (NTFS) - 75 GiB total, 19.901 GiB free.
E: is CDROM ()
F: is CDROM ()
.
==== Disabled Device Manager Items =============
.
Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
Description: RAID Controller
Device ID: PCI\VEN_1095&DEV_3114&SUBSYS_B0041458&REV_02\4&13699180&0&4848
Manufacturer:
Name: RAID Controller
PNP Device ID: PCI\VEN_1095&DEV_3114&SUBSYS_B0041458&REV_02\4&13699180&0&4848
Service:
.
Class GUID: {4D36E97D-E325-11CE-BFC1-08002BE10318}
Description: Plug and Play BIOS Extension
Device ID: ROOT\SYSTEM\0003
Manufacturer: (Standard system devices)
Name: Plug and Play BIOS Extension
PNP Device ID: ROOT\SYSTEM\0003
Service: a347bus
.
==== System Restore Points ===================
.
RP1: 2/24/2011 10:13:27 PM - System Checkpoint
RP2: 2/24/2011 10:26:32 PM - Installed Marvell Miniport Driver
RP3: 2/24/2011 10:29:24 PM - Installed Realtek AC'97 Audio
RP4: 2/24/2011 10:33:24 PM - Installed e-Messenger 112
RP5: 2/24/2011 10:36:35 PM - Update to an unsigned driver
RP6: 2/24/2011 11:26:04 PM - Installed Vista Codec Package.
RP7: 2/24/2011 11:31:21 PM - Installed Alcohol 120% Corporate
RP8: 2/24/2011 11:40:19 PM - Installed MSN Messenger 7.5
RP9: 2/24/2011 11:42:44 PM - Installed Java 6 Update 24
RP10: 2/24/2011 11:46:39 PM - Software Distribution Service 3.0
RP11: 2/24/2011 11:53:40 PM - Installed Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
RP12: 2/24/2011 11:54:12 PM - Installed AVG 2011
RP13: 2/24/2011 11:55:28 PM - Installed AVG 2011
RP14: 2/25/2011 2:51:49 AM - Software Distribution Service 3.0
RP15: 2/25/2011 7:41:40 PM - Software Distribution Service 3.0
RP16: 2/26/2011 8:09:05 PM - Installed SPORE™ Creature Creator Trial Edition
RP17: 2/26/2011 8:34:39 PM - Removed AVG 2011
RP18: 2/26/2011 8:39:06 PM - Removed AVG 2011
RP19: 2/26/2011 8:45:33 PM - Removed SPORE™ Creature Creator Trial Edition
RP20: 2/26/2011 8:52:05 PM - avast! Internet Security Setup
RP21: 2/27/2011 3:00:33 AM - Software Distribution Service 3.0
RP22: 2/27/2011 4:44:29 PM - Software Distribution Service 3.0
RP23: 2/27/2011 7:19:31 PM - Installed HiJackThis
RP24: 2/27/2011 7:31:03 PM - Removed HiJackThis
RP25: 2/27/2011 7:34:24 PM - Software Distribution Service 3.0
RP26: 2/27/2011 8:14:06 PM - Software Distribution Service 3.0
RP27: 2/27/2011 9:24:44 PM - Removed Alcohol 120% Corporate
RP28: 2/27/2011 9:49:42 PM - SPTD setup V1.58
RP29: 2/28/2011 3:00:42 AM - Software Distribution Service 3.0
RP30: 2/28/2011 8:39:33 PM - Software Distribution Service 3.0
RP31: 3/1/2011 9:57:05 PM - Software Distribution Service 3.0
RP32: 3/2/2011 1:47:36 PM - Software Distribution Service 3.0
RP33: 3/3/2011 12:11:48 PM - Installed Alcohol 120%
RP34: 3/3/2011 12:22:28 PM - Removed Alcohol 120%
RP35: 3/3/2011 12:27:53 PM - Installed Alcohol 120% Corporate
RP36: 3/3/2011 10:28:22 PM - Software Distribution Service 3.0
RP37: 3/4/2011 8:04:33 PM - Installed FEAR
RP38: 3/4/2011 8:32:27 PM - Installed FEAR
RP39: 3/4/2011 8:38:51 PM - Installed DirectX 9.0
RP40: 3/4/2011 10:27:43 PM - Software Distribution Service 3.0
RP41: 3/6/2011 1:34:51 PM - Software Distribution Service 3.0
RP42: 3/6/2011 1:54:05 PM - Software Distribution Service 3.0
.
==== Installed Programs ======================
.
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Alcohol 120% Corporate
ASIO4ALL
Ask Toolbar
Auto Hide IP
CCleaner
CCS64 V3.4
Conduit Engine
DAEMON Tools Toolbar
e-Messenger 112
ESET Online Scanner v3
FEAR
FL Studio 9
Garena 2010
GOM Player
Half-Life 2 Ultimate Edition (build 7000)
Hardcore
Hero Editor V1.04
Hotfix for Windows XP (KB2443685)
Hotfix for Windows XP (KB952287)
IL Download Manager
Java Auto Updater
Java 6 Update 24
JDownloader
Malwarebytes' Anti-Malware
Marvell Miniport Driver
Microsoft Antimalware
Microsoft Application Error Reporting
Microsoft Choice Guard
Microsoft Security Client
Microsoft Security Essentials
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Mozilla Firefox 4.0b12 (x86 en-US)
MSVCRT
Native Instruments Massive v1.0.1.008 VSTi DXi RTAS
NVIDIA Drivers
OCCT Perestroika 3.1.0
PoiZone
Realtek AC'97 Audio
rgc:audio z3ta+ 1.5
Sawer
Security Update for Windows Internet Explorer 8 (KB2482017)
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Internet Explorer 8 (KB981332)
Security Update for Windows Media Player (KB2378111)
Security Update for Windows Media Player (KB952069)
Security Update for Windows Media Player (KB954155)
Security Update for Windows Media Player (KB973540)
Security Update for Windows Media Player (KB975558)
Security Update for Windows Media Player (KB978695)
Security Update for Windows XP (KB2079403)
Security Update for Windows XP (KB2115168)
Security Update for Windows XP (KB2121546)
Security Update for Windows XP (KB2229593)
Security Update for Windows XP (KB2259922)
Security Update for Windows XP (KB2296011)
Security Update for Windows XP (KB2347290)
Security Update for Windows XP (KB2360937)
Security Update for Windows XP (KB2387149)
Security Update for Windows XP (KB2393802)
Security Update for Windows XP (KB2419632)
Security Update for Windows XP (KB2423089)
Security Update for Windows XP (KB2440591)
Security Update for Windows XP (KB2443105)
Security Update for Windows XP (KB2476687)
Security Update for Windows XP (KB2478960)
Security Update for Windows XP (KB2478971)
Security Update for Windows XP (KB2479628)
Security Update for Windows XP (KB2482017)
Security Update for Windows XP (KB2483185)
Security Update for Windows XP (KB2485376)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB923789)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB954459)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956744)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956844)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958869)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB969059)
Security Update for Windows XP (KB970430)
Security Update for Windows XP (KB971657)
Security Update for Windows XP (KB971961)
Security Update for Windows XP (KB972270)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973869)
Security Update for Windows XP (KB973904)
Security Update for Windows XP (KB974112)
Security Update for Windows XP (KB974318)
Security Update for Windows XP (KB974392)
Security Update for Windows XP (KB974571)
Security Update for Windows XP (KB975025)
Security Update for Windows XP (KB975467)
Security Update for Windows XP (KB975560)
Security Update for Windows XP (KB975562)
Security Update for Windows XP (KB975713)
Security Update for Windows XP (KB977816)
Security Update for Windows XP (KB977914)
Security Update for Windows XP (KB978338)
Security Update for Windows XP (KB978542)
Security Update for Windows XP (KB978601)
Security Update for Windows XP (KB978706)
Security Update for Windows XP (KB979309)
Security Update for Windows XP (KB979482)
Security Update for Windows XP (KB979687)
Security Update for Windows XP (KB980195)
Security Update for Windows XP (KB980232)
Security Update for Windows XP (KB980436)
Security Update for Windows XP (KB981322)
Security Update for Windows XP (KB981349)
Security Update for Windows XP (KB981997)
Security Update for Windows XP (KB982132)
Security Update for Windows XP (KB982214)
Security Update for Windows XP (KB982665)
Segoe UI
SIW version 2009-09-09
Skype Toolbars
Skype™ 5.1
Toxic Biohazard
Update for Windows Internet Explorer 8 (KB976662)
Update for Windows XP (KB2141007)
Update for Windows XP (KB2345886)
Update for Windows XP (KB2467659)
Update for Windows XP (KB898461)
Update for Windows XP (KB951978)
Update for Windows XP (KB955759)
Update for Windows XP (KB961503)
Update for Windows XP (KB967715)
Update for Windows XP (KB968389)
Update for Windows XP (KB971737)
Update for Windows XP (KB973687)
Update for Windows XP (KB973815)
uTorrentBar Toolbar
Virtual DJ - Atomix Productions
Vista Codec Package
WebFldrs XP
Windows Internet Explorer 8
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live Messenger
Windows Live Sign-in Assistant
Windows Live Upload Tool
WinRar 3.70 Beta 4
Your Uninstaller! 2006 PRO_Vista Ready
.
==== End Of File ===========================
Gmer
GMER 1.0.15.15530 -
http://www.gmer.netRootkit scan 2011-03-06 15:32:56
Windows 5.1.2600 Service Pack 3 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3 QUANTUM_FIREBALLlct20_30 rev.APL.0900
Running: gmer.exe; Driver: C:\DOCUME~1\PsYhO\LOCALS~1\Temp\ugtiypoc.sys
---- Kernel code sections - GMER 1.0.15 ----
.text C:\WINDOWS\system32\DRIVERS\nv4_mini.sys section is writeable [0xF64DD380, 0x346307, 0xE8000020]
? C:\DOCUME~1\PsYhO\LOCALS~1\Temp\mbr.sys The system cannot find the file specified. !
---- User code sections - GMER 1.0.15 ----
.text C:\Program Files\Mozilla Firefox 4.0 Beta 11\firefox.exe[2276] ntdll.dll!LdrLoadDll 7C91632D 5 Bytes JMP 00401410 C:\Program Files\Mozilla Firefox 4.0 Beta 11\firefox.exe (Firefox/Mozilla Corporation)
.text C:\Program Files\Mozilla Firefox 4.0 Beta 11\plugin-container.exe[4036] USER32.dll!SetWindowLongA 7E42C29D 5 Bytes JMP 10698A3E C:\Program Files\Mozilla Firefox 4.0 Beta 11\xul.dll (Mozilla Foundation)
.text C:\Program Files\Mozilla Firefox 4.0 Beta 11\plugin-container.exe[4036] USER32.dll!SetWindowLongW 7E42C2BB 5 Bytes JMP 106989D0 C:\Program Files\Mozilla Firefox 4.0 Beta 11\xul.dll (Mozilla Foundation)
.text C:\Program Files\Mozilla Firefox 4.0 Beta 11\plugin-container.exe[4036] USER32.dll!GetWindowInfo 7E42C49C 2 Bytes JMP 104C2D69 C:\Program Files\Mozilla Firefox 4.0 Beta 11\xul.dll (Mozilla Foundation)
.text C:\Program Files\Mozilla Firefox 4.0 Beta 11\plugin-container.exe[4036] USER32.dll!GetWindowInfo + 3 7E42C49F 2 Bytes [09, 92]
.text C:\Program Files\Mozilla Firefox 4.0 Beta 11\plugin-container.exe[4036] USER32.dll!TrackPopupMenu 7E46531E 5 Bytes JMP 104C3375 C:\Program Files\Mozilla Firefox 4.0 Beta 11\xul.dll (Mozilla Foundation)
---- Devices - GMER 1.0.15 ----
Device Ntfs.sys (NT File System Driver/Microsoft Corporation)
Device Fastfat.SYS (Fast FAT File System Driver/Microsoft Corporation)
Device mrxsmb.sys (Windows NT SMB Minirdr/Microsoft Corporation)
---- EOF - GMER 1.0.15 ----
Psyho