View Single Post
Old 12-04-2008, 08:14 AM   #1 (permalink)
dold5000
Registered User
 
Join Date: Dec 2008
Posts: 15
OS: Windows Xp


google search redirect and pop up screens

Hi i am running windows xp and a few days ago my computer got very slow all of a sudden and then any google search i make i always get the first page coming up with the same searches. crackle.com , reviewsmaster.com, comparisonwize.com, and other spam forums. Its driving me crazy because i cant use google for any more searches.

Hopefully someone can help. thank you

sorry i forgot to mention that i use firefox and even though IE is uninstalled it keeps on poping up with spam windows also.

here are the information from the dds scan


DDS (Version 1.0) - NTFSx86
Run by Abbas at 10:07:15.28 on Thu 12/04/2008
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.502.125 [GMT -5:00]

============== Running Processes ===============

C:\WINDOWS\system32\svchost -k DcomLaunch
C:\WINDOWS\system32\svchost -k rpcss
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\Program Files\Intel\WiFi\bin\S24EvMon.exe
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\System32\svchost.exe -k LocalService
C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
C:\Program Files\Intel\WiFi\bin\EvtEng.exe
C:\Program Files\Dell\OpenManage\Client\Iap.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTBCM\Binn\sqlservr.exe
C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
C:\Program Files\Intel\WiFi\bin\WLKeeper.exe
C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe
C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\System32\wbem\unsecapp.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe
C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\explorer.exe
C:\Documents and Settings\Abbas\Desktop\dds.com
C:\WINDOWS\System32\wbem\wmiprvse.exe

============== Pseudo HJT Report ===============

uStart Page = hxxp://www.google.ca/
uInternet Settings,ProxyOverride = *.local
BHO: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - c:\program files\common files\symantec shared\coshared\browser\2.6\coIEPlg.dll
BHO: {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - c:\progra~1\common~1\symant~1\ids\IPSBHO.dll
BHO: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre6\bin\ssv.dll
BHO: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - c:\program files\common files\symantec shared\coshared\browser\2.6\CoIEPlg.dll
TB: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - c:\program files\common files\symantec shared\coshared\browser\2.6\CoIEPlg.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [IntelZeroConfig] "c:\program files\intel\wifi\bin\ZCfgSvc.exe"
mRun: [IntelWireless] "c:\program files\common files\intel\wirelesscommon\iFrmewrk.exe" /tf Intel Wireless Tray
mRun: [osCheck] "c:\program files\norton 360\osCheck.exe"
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office11\REFIEBAR.DLL
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
Notify: 60434598509 - c:\windows\system32\dpnlobby32.dll
Notify: igfxcui - igfxdev.dll
AppInit_DLLs: c:\windows\system32\dpnlobby32.dll

============= SERVICES / DRIVERS ===============

R2 ccEvtMgr;Symantec Event Manager;"c:\program files\common files\symantec shared\ccSvcHst.exe" /h ccCommon [2008-2-18 149352]
R2 ccSetMgr;Symantec Settings Manager;"c:\program files\common files\symantec shared\ccSvcHst.exe" /h ccCommon [2008-2-18 149352]
R2 LiveUpdate Notice;LiveUpdate Notice;"c:\program files\common files\symantec shared\ccSvcHst.exe" /h ccCommon [2008-2-18 149352]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;\??\c:\program files\common files\symantec shared\eengine\EraserUtilRebootDrv.sys [2008-11-16 99376]
R3 NAVENG;NAVENG;\??\c:\progra~1\common~1\symant~1\virusd~1\20081203.051\NAVENG.SYS [2008-12-4 89104]
R3 NAVEX15;NAVEX15;\??\c:\progra~1\common~1\symant~1\virusd~1\20081203.051\NAVEX15.SYS [2008-12-4 876112]
R3 NETw5x32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows XP 32 Bit;c:\windows\system32\drivers\NETw5x32.sys [2008-11-16 3632384]
R3 Symantec Core LC;Symantec Core LC;c:\progra~1\common~1\symant~1\ccpd-lc\symlcsvc.exe [2008-11-16 1245064]
S3 COH_Mon;COH_Mon;\??\c:\windows\system32\drivers\COH_Mon.sys [2008-1-12 23888]
S3 getPlus(R) Helper;getPlus(R) Helper;c:\program files\nos\bin\getPlus_HelperSvc.exe [2008-11-20 33752]

=============== Created Last 30 ================

2008-12-03 17:24 373,760 a--sh--- c:\windows\system32\5A.tmp
2008-12-03 17:00 <DIR> --d----- c:\windows\pss
2008-12-02 09:02 0 a------- c:\windows\system32\2C9.tmp
2008-12-02 09:02 0 a------- c:\windows\system32\2C8.tmp
2008-12-01 12:26 4,516 a------- c:\windows\GnuHashes.ini
2008-12-01 12:19 1,675 a--sh--- c:\windows\system32\GroupPolicy000.dat
2008-12-01 12:19 <DIR> --dsh--- c:\windows\system32\GroupPolicyManifest
2008-12-01 12:19 373,248 a--sh--- c:\windows\system32\C4.tmp
2008-12-01 12:18 135,168 a------- c:\windows\system32\dpnlobby32.dll
2008-11-26 10:20 <DIR> --d----- c:\documents and settings\abbas\dwhelper
2008-11-25 13:38 <DIR> --d----- c:\windows\system32\N360_BACKUP
2008-11-25 12:58 <DIR> --d----- c:\windows\system32\scripting
2008-11-25 12:58 <DIR> --d----- c:\windows\l2schemas
2008-11-25 12:58 <DIR> --d----- c:\windows\system32\en
2008-11-25 12:58 <DIR> --d----- c:\windows\system32\bits
2008-11-24 21:11 <DIR> --d----- c:\program files\common files\Merge Modules
2008-11-24 20:46 <DIR> --d----- c:\program files\Microsoft Web Designer Tools
2008-11-24 20:34 <DIR> --d----- c:\program files\MagicISO
2008-11-24 20:11 <DIR> --d----- C:\6aea101b6609a2a9ce341e
2008-11-24 19:25 <DIR> --d----- c:\program files\Microsoft Synchronization Services
2008-11-24 19:25 <DIR> --d----- c:\program files\Microsoft SQL Server Compact Edition
2008-11-24 19:14 <DIR> --d----- c:\windows\system32\XPSViewer
2008-11-24 19:12 597,504 -c------ c:\windows\system32\dllcache\printfilterpipelinesvc.exe
2008-11-24 19:12 89,088 -c------ c:\windows\system32\dllcache\filterpipelineprintproc.dll
2008-11-24 19:12 117,760 -------- c:\windows\system32\prntvpt.dll
2008-11-24 19:12 1,676,288 -c------ c:\windows\system32\dllcache\xpssvcs.dll
2008-11-24 19:12 575,488 -c------ c:\windows\system32\dllcache\xpsshhdr.dll
2008-11-24 19:12 1,676,288 -------- c:\windows\system32\xpssvcs.dll
2008-11-24 19:12 575,488 -------- c:\windows\system32\xpsshhdr.dll
2008-11-24 19:12 <DIR> --d----- C:\170cb0bfb74d5d670a9a1d5233ae7ea3
2008-11-24 19:08 <DIR> --d----- c:\program files\MSXML 6.0
2008-11-20 20:33 268,648 a------- c:\windows\system32\mucltui.dll
2008-11-20 20:33 208,744 a------- c:\windows\system32\muweb.dll
2008-11-20 20:33 27,496 a------- c:\windows\system32\mucltui.dll.mui
2008-11-17 09:29 <DIR> -cdsh--- c:\program files\common files\WindowsLiveInstaller
2008-11-16 23:24 991,232 -c------ c:\windows\system32\dllcache\ieframe.dll.mui
2008-11-16 23:24 459,264 -c------ c:\windows\system32\dllcache\msfeeds.dll
2008-11-16 23:24 267,776 -c------ c:\windows\system32\dllcache\iertutil.dll
2008-11-16 23:24 52,224 -c------ c:\windows\system32\dllcache\msfeedsbs.dll
2008-11-16 23:24 13,824 -c------ c:\windows\system32\dllcache\ieudinit.exe
2008-11-16 23:24 6,066,176 -c------ c:\windows\system32\dllcache\ieframe.dll
2008-11-16 23:24 2,455,488 -c------ c:\windows\system32\dllcache\ieapfltr.dat
2008-11-16 23:24 383,488 -c------ c:\windows\system32\dllcache\ieapfltr.dll
2008-11-16 23:24 63,488 -c------ c:\windows\system32\dllcache\icardie.dll
2008-11-16 23:10 221,184 a------- c:\windows\system32\wmpns.dll
2008-11-16 22:41 <DIR> --d----- c:\docume~1\alluse~1\applic~1\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
2008-11-16 22:28 <DIR> --d----- c:\program files\CONEXANT
2008-11-16 22:04 <DIR> --d----- c:\program files\Norton 360
2008-11-16 22:01 123,952 a------- c:\windows\system32\drivers\SYMEVENT.SYS
2008-11-16 22:01 60,800 a------- c:\windows\system32\S32EVNT1.DLL
2008-11-16 22:01 10,671 a------- c:\windows\system32\drivers\SYMEVENT.CAT
2008-11-16 22:01 805 a------- c:\windows\system32\drivers\SYMEVENT.INF
2008-11-16 22:00 <DIR> --d----- c:\program files\Symantec
2008-11-16 22:00 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Symantec
2008-11-16 21:57 <DIR> --d----- c:\windows\network diagnostic
2008-11-16 21:57 33,792 ac------ c:\windows\system32\dllcache\custsat.dll
2008-11-16 21:50 <DIR> --d----- c:\program files\common files\Symantec Shared
2008-11-16 21:47 <DIR> --d----- c:\docume~1\abbas\applic~1\LimeWire
2008-11-16 21:43 <DIR> --d----- c:\docume~1\abbas\applic~1\Symantec
2008-11-16 21:40 844,314 -c------ c:\windows\system32\dllcache\msdxm.ocx
2008-11-16 21:27 <DIR> --d----- c:\program files\Bonjour
2008-11-16 21:17 272,128 -c------ c:\windows\system32\dllcache\bthport.sys
2008-11-16 21:15 337,408 -c------ c:\windows\system32\dllcache\netapi32.dll
2008-11-16 21:14 <DIR> --d----- c:\windows\system32\PreInstall
2008-11-16 21:14 <DIR> --d-h--- c:\windows\$hf_mig$
2008-11-16 21:11 <DIR> --d----- c:\program files\LimeWire
2008-11-16 21:11 <DIR> --d----- c:\program files\common files\Macrovision Shared
2008-11-16 21:05 <DIR> --d----- c:\windows\system32\SoftwareDistribution
2008-11-16 21:03 <DIR> --d----- c:\docume~1\abbas\applic~1\Intel
2008-11-16 21:03 3,632,384 a------- c:\windows\system32\drivers\NETw5x32.sys
2008-11-16 21:03 2,756,608 a------- c:\windows\system32\NETw5r32.dll
2008-11-16 21:03 663,552 a------- c:\windows\system32\NETw5c32.dll
2008-11-16 21:02 <DIR> --d----- c:\program files\common files\Intel
2008-11-16 20:52 316,640 a------- c:\windows\WMSysPr9.prx
2008-11-16 20:50 <DIR> --d----- c:\windows\provisioning
2008-11-16 20:48 <DIR> --d----- c:\windows\ServicePackFiles
2008-11-16 20:41 19,528 a------- c:\windows\002104_.tmp
2008-11-16 20:40 26,488 a------- c:\windows\system32\spupdsvc.exe
2008-11-16 20:38 <DIR> --d----- c:\windows\EHome
2008-11-16 20:11 20,480 a----r-- c:\windows\system32\drivers\omci.sys
2008-11-16 19:56 172,032 a------- c:\windows\system32\igfxres.dll
2008-11-16 19:44 141,056 a------- c:\windows\system32\drivers\ks.sys
2008-11-16 19:44 60,160 a------- c:\windows\system32\drivers\drmk.sys
2008-11-16 19:44 49,408 a------- c:\windows\system32\drivers\stream.sys
2008-11-16 19:44 129,536 a------- c:\windows\system32\ksproxy.ax
2008-11-16 19:44 4,096 a------- c:\windows\system32\ksuser.dll
2008-11-16 19:44 1,222,840 a------- c:\windows\system32\drivers\sthda.sys
2008-11-16 19:42 270,336 a------- c:\windows\system32\stacapi.dll
2008-11-16 19:42 146,944 a------- c:\windows\system32\st325602.dll
2008-11-16 19:42 <DIR> --d----- c:\program files\SigmaTel
2008-11-16 19:42 16,128 a------- c:\windows\system32\drivers\APPDRV.SYS
2008-11-16 19:40 <DIR> --d----- c:\windows\Downloaded Installations
2008-11-16 19:40 45,568 a----r-- c:\windows\system32\drivers\bcm4sbxp.sys
2008-11-16 19:40 <DIR> --d----- c:\program files\Broadcom
2008-11-16 19:39 90,112 a------- c:\windows\system32\snymsico.dll
2008-11-16 19:39 43,520 a------- c:\windows\system32\drivers\rimsptsk.sys
2008-11-16 19:39 37,376 a------- c:\windows\system32\drivers\rixdptsk.sys
2008-11-16 19:39 32,256 a------- c:\windows\system32\drivers\rimmptsk.sys
2008-11-16 19:39 16,480 a------- c:\windows\system32\rixdicon.dll
2008-11-16 19:39 5 a------- c:\windows\system32\drivers\DELL_XPS_MM061 .MRK
2008-11-16 19:39 5 a------- c:\windows\system32\drivers\1028_DELL_XPS_MM061 .MRK
2008-11-16 19:39 666 a------- c:\windows\speed.reg
2008-11-16 19:39 <DIR> --d----- c:\program files\Dell
2008-11-16 19:38 191,872 a------- c:\windows\system32\drivers\SynTP.sys
2008-11-16 19:38 114,688 a------- c:\windows\system32\SynCtrl.dll
2008-11-16 19:38 94,299 a------- c:\windows\system32\SynTPAPI.dll
2008-11-16 19:38 82,014 a------- c:\windows\system32\SynCOM.dll
2008-11-16 19:38 81,920 a------- c:\windows\system32\SynTPCo2.dll
2008-11-16 19:38 69,723 a------- c:\windows\system32\SynTPFcs.dll
2008-11-16 19:38 <DIR> --d----- c:\program files\Synaptics
2008-11-16 19:28 <DIR> --d----- c:\windows\system32\Backup
2008-11-16 19:28 <DIR> --d----- c:\windows\SQLHotfix
2008-11-16 19:27 466 a------- c:\windows\system32\mapisvc.inf
2008-11-16 19:27 33,340 -------- c:\windows\system32\dbmsqlgc.dll
2008-11-16 19:27 24,576 -------- c:\windows\system32\dbmsgnet.dll
2008-11-16 19:27 306,688 a------- c:\windows\IsUninst.exe
2008-11-16 19:25 <DIR> --d----- c:\program files\common files\Crystal Decisions
2008-11-16 19:24 <DIR> --d----- c:\program files\Microsoft SQL Server
2008-11-16 19:22 <DIR> --d----- c:\windows\system32\URTTemp
2008-11-16 19:19 376 a------- c:\windows\ODBC.INI
2008-11-16 19:19 28,040 a------- c:\windows\system32\mdimon.dll
2008-11-16 19:18 <DIR> --d----- c:\program files\common files\L&H
2008-11-16 19:18 <DIR> --d----- c:\program files\Microsoft ActiveSync
2008-11-16 19:17 <DIR> --d----- c:\windows\SHELLNEW
2008-11-16 19:01 446,464 a----r-- c:\windows\system32\hhactivex.dll
2008-11-16 19:01 176,128 a------- c:\windows\system32\RcdScan.dll
2008-11-16 19:01 645,616 a------- c:\windows\system32\MSCOMCT2.OCX
2008-11-16 19:01 328,480 a------- c:\windows\system32\ssa3d30.ocx
2008-11-16 19:01 171,967 a------- c:\windows\system32\Odbcjet.hlp
2008-11-16 19:01 7,348 a------- c:\windows\system32\Odbcjet.cnt
2008-11-16 19:01 89,360 a------- c:\windows\system32\VB5DB.DLL
2008-11-16 18:52 <DIR> --ds---- c:\windows\system32\Microsoft
2008-11-16 18:32 <DIR> --dsh--- c:\windows\Installer
2008-11-16 18:31 <DIR> --d----- c:\documents and settings\Abbas
2008-11-16 18:30 8,192 a------- c:\windows\REGLOCS.OLD
2008-11-16 18:28 1,158,818 ac------ c:\windows\system32\dllcache\korwbrkr.lex
2008-11-16 18:27 <DIR> --d----- c:\windows\system32\xircom
2008-11-16 18:27 <DIR> --d----- C:\DELL
2008-11-16 18:25 24,576 a------- c:\windows\system32\xpsp1hfm.exe
2008-11-16 18:23 <DIR> --dsh--- c:\documents and settings\all users\DRM
2008-11-16 18:23 488 a---hr-- c:\windows\system32\WindowsLogon.manifest
2008-11-16 18:23 488 a---hr-- c:\windows\system32\logonui.exe.manifest
2008-11-16 18:23 <DIR> --ds---- c:\windows\Downloaded Program Files
2008-11-16 18:23 <DIR> --d--r-- c:\windows\Offline Web Pages
2008-11-16 18:23 749 a---hr-- c:\windows\WindowsShell.Manifest
2008-11-16 18:23 749 a---hr-- c:\windows\system32\wuaucpl.cpl.manifest
2008-11-16 18:23 749 a---hr-- c:\windows\system32\sapi.cpl.manifest
2008-11-16 18:23 749 a---hr-- c:\windows\system32\nwc.cpl.manifest
2008-11-16 18:23 749 a---hr-- c:\windows\system32\ncpa.cpl.manifest
2008-11-16 18:23 749 a---hr-- c:\windows\system32\cdplayer.exe.manifest
2008-11-16 18:23 4,399,505 ac------ c:\windows\system32\dllcache\nls302en.lex
2008-11-16 18:22 <DIR> --d----- c:\program files\common files\MSSoap
2008-11-16 18:20 <DIR> --d-h--- c:\program files\WindowsUpdate
2008-11-16 18:20 <DIR> --d----- c:\program files\Online Services
2008-11-16 18:20 <DIR> --d----- c:\program files\Messenger
2008-11-16 18:20 <DIR> --d----- c:\program files\MSN Gaming Zone
2008-11-16 18:19 <DIR> --d----- c:\program files\Windows NT
2008-11-16 13:15 <DIR> --d----- c:\program files\common files\ODBC
2008-11-16 13:15 <DIR> --d----- c:\program files\common files\SpeechEngines
2008-11-16 13:15 <DIR> --d--r-- c:\documents and settings\all users\Documents

==================== Find3M ====================

2008-11-25 13:04 77,423 a------- c:\windows\pchealth\helpctr\offlinecache\index.dat
2008-11-16 21:46 410,976 a------- c:\windows\system32\deploytk.dll
2008-11-16 18:21 21,640 a------- c:\windows\system32\emptyregdb.dat
2008-09-15 07:12 1,846,400 a------- c:\windows\system32\win32k.sys
2008-09-09 20:14 1,307,648 a------- c:\windows\system32\msxml6.dll

============= FINISH: 10:09:55.10 ===============

i have the other log but it says do not post unless specifically instructed
dold5000 is offline  
Important Information
Join the #1 Tech Support Forum Today - It's Totally Free!

TechSupportForum.com is a leading support website for your computer needs. We offer free, friendly and personalized computer support. Why pay to have your computer fixed when you can do it for free.

Join TechSupportforum.com Today - Click Here