|
Registered User
Join Date: Dec 2008
Posts: 15
OS: Windows Xp
|
google search redirect and pop up screens
Hi i am running windows xp and a few days ago my computer got very slow all of a sudden and then any google search i make i always get the first page coming up with the same searches. crackle.com , reviewsmaster.com, comparisonwize.com, and other spam forums. Its driving me crazy because i cant use google for any more searches.
Hopefully someone can help. thank you
sorry i forgot to mention that i use firefox and even though IE is uninstalled it keeps on poping up with spam windows also.
here are the information from the dds scan
DDS (Version 1.0) - NTFSx86
Run by Abbas at 10:07:15.28 on Thu 12/04/2008
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.502.125 [GMT -5:00]
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k DcomLaunch
C:\WINDOWS\system32\svchost -k rpcss
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\Program Files\Intel\WiFi\bin\S24EvMon.exe
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\System32\svchost.exe -k LocalService
C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
C:\Program Files\Intel\WiFi\bin\EvtEng.exe
C:\Program Files\Dell\OpenManage\Client\Iap.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTBCM\Binn\sqlservr.exe
C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
C:\Program Files\Intel\WiFi\bin\WLKeeper.exe
C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe
C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\System32\wbem\unsecapp.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe
C:\WINDOWS\System32\wbem\wmiprvse.exe
C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\explorer.exe
C:\Documents and Settings\Abbas\Desktop\dds.com
C:\WINDOWS\System32\wbem\wmiprvse.exe
============== Pseudo HJT Report ===============
uStart Page = hxxp://www.google.ca/
uInternet Settings,ProxyOverride = *.local
BHO: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - c:\program files\common files\symantec shared\coshared\browser\2.6\coIEPlg.dll
BHO: {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - c:\progra~1\common~1\symant~1\ids\IPSBHO.dll
BHO: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre6\bin\ssv.dll
BHO: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - c:\program files\common files\symantec shared\coshared\browser\2.6\CoIEPlg.dll
TB: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - c:\program files\common files\symantec shared\coshared\browser\2.6\CoIEPlg.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [IntelZeroConfig] "c:\program files\intel\wifi\bin\ZCfgSvc.exe"
mRun: [IntelWireless] "c:\program files\common files\intel\wirelesscommon\iFrmewrk.exe" /tf Intel Wireless Tray
mRun: [osCheck] "c:\program files\norton 360\osCheck.exe"
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office11\REFIEBAR.DLL
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
Notify: 60434598509 - c:\windows\system32\dpnlobby32.dll
Notify: igfxcui - igfxdev.dll
AppInit_DLLs: c:\windows\system32\dpnlobby32.dll
============= SERVICES / DRIVERS ===============
R2 ccEvtMgr;Symantec Event Manager;"c:\program files\common files\symantec shared\ccSvcHst.exe" /h ccCommon [2008-2-18 149352]
R2 ccSetMgr;Symantec Settings Manager;"c:\program files\common files\symantec shared\ccSvcHst.exe" /h ccCommon [2008-2-18 149352]
R2 LiveUpdate Notice;LiveUpdate Notice;"c:\program files\common files\symantec shared\ccSvcHst.exe" /h ccCommon [2008-2-18 149352]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;\??\c:\program files\common files\symantec shared\eengine\EraserUtilRebootDrv.sys [2008-11-16 99376]
R3 NAVENG;NAVENG;\??\c:\progra~1\common~1\symant~1\virusd~1\20081203.051\NAVENG.SYS [2008-12-4 89104]
R3 NAVEX15;NAVEX15;\??\c:\progra~1\common~1\symant~1\virusd~1\20081203.051\NAVEX15.SYS [2008-12-4 876112]
R3 NETw5x32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows XP 32 Bit;c:\windows\system32\drivers\NETw5x32.sys [2008-11-16 3632384]
R3 Symantec Core LC;Symantec Core LC;c:\progra~1\common~1\symant~1\ccpd-lc\symlcsvc.exe [2008-11-16 1245064]
S3 COH_Mon;COH_Mon;\??\c:\windows\system32\drivers\COH_Mon.sys [2008-1-12 23888]
S3 getPlus(R) Helper;getPlus(R) Helper;c:\program files\nos\bin\getPlus_HelperSvc.exe [2008-11-20 33752]
=============== Created Last 30 ================
2008-12-03 17:24 373,760 a--sh--- c:\windows\system32\5A.tmp
2008-12-03 17:00 <DIR> --d----- c:\windows\pss
2008-12-02 09:02 0 a------- c:\windows\system32\2C9.tmp
2008-12-02 09:02 0 a------- c:\windows\system32\2C8.tmp
2008-12-01 12:26 4,516 a------- c:\windows\GnuHashes.ini
2008-12-01 12:19 1,675 a--sh--- c:\windows\system32\GroupPolicy000.dat
2008-12-01 12:19 <DIR> --dsh--- c:\windows\system32\GroupPolicyManifest
2008-12-01 12:19 373,248 a--sh--- c:\windows\system32\C4.tmp
2008-12-01 12:18 135,168 a------- c:\windows\system32\dpnlobby32.dll
2008-11-26 10:20 <DIR> --d----- c:\documents and settings\abbas\dwhelper
2008-11-25 13:38 <DIR> --d----- c:\windows\system32\N360_BACKUP
2008-11-25 12:58 <DIR> --d----- c:\windows\system32\scripting
2008-11-25 12:58 <DIR> --d----- c:\windows\l2schemas
2008-11-25 12:58 <DIR> --d----- c:\windows\system32\en
2008-11-25 12:58 <DIR> --d----- c:\windows\system32\bits
2008-11-24 21:11 <DIR> --d----- c:\program files\common files\Merge Modules
2008-11-24 20:46 <DIR> --d----- c:\program files\Microsoft Web Designer Tools
2008-11-24 20:34 <DIR> --d----- c:\program files\MagicISO
2008-11-24 20:11 <DIR> --d----- C:\6aea101b6609a2a9ce341e
2008-11-24 19:25 <DIR> --d----- c:\program files\Microsoft Synchronization Services
2008-11-24 19:25 <DIR> --d----- c:\program files\Microsoft SQL Server Compact Edition
2008-11-24 19:14 <DIR> --d----- c:\windows\system32\XPSViewer
2008-11-24 19:12 597,504 -c------ c:\windows\system32\dllcache\printfilterpipelinesvc.exe
2008-11-24 19:12 89,088 -c------ c:\windows\system32\dllcache\filterpipelineprintproc.dll
2008-11-24 19:12 117,760 -------- c:\windows\system32\prntvpt.dll
2008-11-24 19:12 1,676,288 -c------ c:\windows\system32\dllcache\xpssvcs.dll
2008-11-24 19:12 575,488 -c------ c:\windows\system32\dllcache\xpsshhdr.dll
2008-11-24 19:12 1,676,288 -------- c:\windows\system32\xpssvcs.dll
2008-11-24 19:12 575,488 -------- c:\windows\system32\xpsshhdr.dll
2008-11-24 19:12 <DIR> --d----- C:\170cb0bfb74d5d670a9a1d5233ae7ea3
2008-11-24 19:08 <DIR> --d----- c:\program files\MSXML 6.0
2008-11-20 20:33 268,648 a------- c:\windows\system32\mucltui.dll
2008-11-20 20:33 208,744 a------- c:\windows\system32\muweb.dll
2008-11-20 20:33 27,496 a------- c:\windows\system32\mucltui.dll.mui
2008-11-17 09:29 <DIR> -cdsh--- c:\program files\common files\WindowsLiveInstaller
2008-11-16 23:24 991,232 -c------ c:\windows\system32\dllcache\ieframe.dll.mui
2008-11-16 23:24 459,264 -c------ c:\windows\system32\dllcache\msfeeds.dll
2008-11-16 23:24 267,776 -c------ c:\windows\system32\dllcache\iertutil.dll
2008-11-16 23:24 52,224 -c------ c:\windows\system32\dllcache\msfeedsbs.dll
2008-11-16 23:24 13,824 -c------ c:\windows\system32\dllcache\ieudinit.exe
2008-11-16 23:24 6,066,176 -c------ c:\windows\system32\dllcache\ieframe.dll
2008-11-16 23:24 2,455,488 -c------ c:\windows\system32\dllcache\ieapfltr.dat
2008-11-16 23:24 383,488 -c------ c:\windows\system32\dllcache\ieapfltr.dll
2008-11-16 23:24 63,488 -c------ c:\windows\system32\dllcache\icardie.dll
2008-11-16 23:10 221,184 a------- c:\windows\system32\wmpns.dll
2008-11-16 22:41 <DIR> --d----- c:\docume~1\alluse~1\applic~1\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
2008-11-16 22:28 <DIR> --d----- c:\program files\CONEXANT
2008-11-16 22:04 <DIR> --d----- c:\program files\Norton 360
2008-11-16 22:01 123,952 a------- c:\windows\system32\drivers\SYMEVENT.SYS
2008-11-16 22:01 60,800 a------- c:\windows\system32\S32EVNT1.DLL
2008-11-16 22:01 10,671 a------- c:\windows\system32\drivers\SYMEVENT.CAT
2008-11-16 22:01 805 a------- c:\windows\system32\drivers\SYMEVENT.INF
2008-11-16 22:00 <DIR> --d----- c:\program files\Symantec
2008-11-16 22:00 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Symantec
2008-11-16 21:57 <DIR> --d----- c:\windows\network diagnostic
2008-11-16 21:57 33,792 ac------ c:\windows\system32\dllcache\custsat.dll
2008-11-16 21:50 <DIR> --d----- c:\program files\common files\Symantec Shared
2008-11-16 21:47 <DIR> --d----- c:\docume~1\abbas\applic~1\LimeWire
2008-11-16 21:43 <DIR> --d----- c:\docume~1\abbas\applic~1\Symantec
2008-11-16 21:40 844,314 -c------ c:\windows\system32\dllcache\msdxm.ocx
2008-11-16 21:27 <DIR> --d----- c:\program files\Bonjour
2008-11-16 21:17 272,128 -c------ c:\windows\system32\dllcache\bthport.sys
2008-11-16 21:15 337,408 -c------ c:\windows\system32\dllcache\netapi32.dll
2008-11-16 21:14 <DIR> --d----- c:\windows\system32\PreInstall
2008-11-16 21:14 <DIR> --d-h--- c:\windows\$hf_mig$
2008-11-16 21:11 <DIR> --d----- c:\program files\LimeWire
2008-11-16 21:11 <DIR> --d----- c:\program files\common files\Macrovision Shared
2008-11-16 21:05 <DIR> --d----- c:\windows\system32\SoftwareDistribution
2008-11-16 21:03 <DIR> --d----- c:\docume~1\abbas\applic~1\Intel
2008-11-16 21:03 3,632,384 a------- c:\windows\system32\drivers\NETw5x32.sys
2008-11-16 21:03 2,756,608 a------- c:\windows\system32\NETw5r32.dll
2008-11-16 21:03 663,552 a------- c:\windows\system32\NETw5c32.dll
2008-11-16 21:02 <DIR> --d----- c:\program files\common files\Intel
2008-11-16 20:52 316,640 a------- c:\windows\WMSysPr9.prx
2008-11-16 20:50 <DIR> --d----- c:\windows\provisioning
2008-11-16 20:48 <DIR> --d----- c:\windows\ServicePackFiles
2008-11-16 20:41 19,528 a------- c:\windows\002104_.tmp
2008-11-16 20:40 26,488 a------- c:\windows\system32\spupdsvc.exe
2008-11-16 20:38 <DIR> --d----- c:\windows\EHome
2008-11-16 20:11 20,480 a----r-- c:\windows\system32\drivers\omci.sys
2008-11-16 19:56 172,032 a------- c:\windows\system32\igfxres.dll
2008-11-16 19:44 141,056 a------- c:\windows\system32\drivers\ks.sys
2008-11-16 19:44 60,160 a------- c:\windows\system32\drivers\drmk.sys
2008-11-16 19:44 49,408 a------- c:\windows\system32\drivers\stream.sys
2008-11-16 19:44 129,536 a------- c:\windows\system32\ksproxy.ax
2008-11-16 19:44 4,096 a------- c:\windows\system32\ksuser.dll
2008-11-16 19:44 1,222,840 a------- c:\windows\system32\drivers\sthda.sys
2008-11-16 19:42 270,336 a------- c:\windows\system32\stacapi.dll
2008-11-16 19:42 146,944 a------- c:\windows\system32\st325602.dll
2008-11-16 19:42 <DIR> --d----- c:\program files\SigmaTel
2008-11-16 19:42 16,128 a------- c:\windows\system32\drivers\APPDRV.SYS
2008-11-16 19:40 <DIR> --d----- c:\windows\Downloaded Installations
2008-11-16 19:40 45,568 a----r-- c:\windows\system32\drivers\bcm4sbxp.sys
2008-11-16 19:40 <DIR> --d----- c:\program files\Broadcom
2008-11-16 19:39 90,112 a------- c:\windows\system32\snymsico.dll
2008-11-16 19:39 43,520 a------- c:\windows\system32\drivers\rimsptsk.sys
2008-11-16 19:39 37,376 a------- c:\windows\system32\drivers\rixdptsk.sys
2008-11-16 19:39 32,256 a------- c:\windows\system32\drivers\rimmptsk.sys
2008-11-16 19:39 16,480 a------- c:\windows\system32\rixdicon.dll
2008-11-16 19:39 5 a------- c:\windows\system32\drivers\DELL_XPS_MM061 .MRK
2008-11-16 19:39 5 a------- c:\windows\system32\drivers\1028_DELL_XPS_MM061 .MRK
2008-11-16 19:39 666 a------- c:\windows\speed.reg
2008-11-16 19:39 <DIR> --d----- c:\program files\Dell
2008-11-16 19:38 191,872 a------- c:\windows\system32\drivers\SynTP.sys
2008-11-16 19:38 114,688 a------- c:\windows\system32\SynCtrl.dll
2008-11-16 19:38 94,299 a------- c:\windows\system32\SynTPAPI.dll
2008-11-16 19:38 82,014 a------- c:\windows\system32\SynCOM.dll
2008-11-16 19:38 81,920 a------- c:\windows\system32\SynTPCo2.dll
2008-11-16 19:38 69,723 a------- c:\windows\system32\SynTPFcs.dll
2008-11-16 19:38 <DIR> --d----- c:\program files\Synaptics
2008-11-16 19:28 <DIR> --d----- c:\windows\system32\Backup
2008-11-16 19:28 <DIR> --d----- c:\windows\SQLHotfix
2008-11-16 19:27 466 a------- c:\windows\system32\mapisvc.inf
2008-11-16 19:27 33,340 -------- c:\windows\system32\dbmsqlgc.dll
2008-11-16 19:27 24,576 -------- c:\windows\system32\dbmsgnet.dll
2008-11-16 19:27 306,688 a------- c:\windows\IsUninst.exe
2008-11-16 19:25 <DIR> --d----- c:\program files\common files\Crystal Decisions
2008-11-16 19:24 <DIR> --d----- c:\program files\Microsoft SQL Server
2008-11-16 19:22 <DIR> --d----- c:\windows\system32\URTTemp
2008-11-16 19:19 376 a------- c:\windows\ODBC.INI
2008-11-16 19:19 28,040 a------- c:\windows\system32\mdimon.dll
2008-11-16 19:18 <DIR> --d----- c:\program files\common files\L&H
2008-11-16 19:18 <DIR> --d----- c:\program files\Microsoft ActiveSync
2008-11-16 19:17 <DIR> --d----- c:\windows\SHELLNEW
2008-11-16 19:01 446,464 a----r-- c:\windows\system32\hhactivex.dll
2008-11-16 19:01 176,128 a------- c:\windows\system32\RcdScan.dll
2008-11-16 19:01 645,616 a------- c:\windows\system32\MSCOMCT2.OCX
2008-11-16 19:01 328,480 a------- c:\windows\system32\ssa3d30.ocx
2008-11-16 19:01 171,967 a------- c:\windows\system32\Odbcjet.hlp
2008-11-16 19:01 7,348 a------- c:\windows\system32\Odbcjet.cnt
2008-11-16 19:01 89,360 a------- c:\windows\system32\VB5DB.DLL
2008-11-16 18:52 <DIR> --ds---- c:\windows\system32\Microsoft
2008-11-16 18:32 <DIR> --dsh--- c:\windows\Installer
2008-11-16 18:31 <DIR> --d----- c:\documents and settings\Abbas
2008-11-16 18:30 8,192 a------- c:\windows\REGLOCS.OLD
2008-11-16 18:28 1,158,818 ac------ c:\windows\system32\dllcache\korwbrkr.lex
2008-11-16 18:27 <DIR> --d----- c:\windows\system32\xircom
2008-11-16 18:27 <DIR> --d----- C:\DELL
2008-11-16 18:25 24,576 a------- c:\windows\system32\xpsp1hfm.exe
2008-11-16 18:23 <DIR> --dsh--- c:\documents and settings\all users\DRM
2008-11-16 18:23 488 a---hr-- c:\windows\system32\WindowsLogon.manifest
2008-11-16 18:23 488 a---hr-- c:\windows\system32\logonui.exe.manifest
2008-11-16 18:23 <DIR> --ds---- c:\windows\Downloaded Program Files
2008-11-16 18:23 <DIR> --d--r-- c:\windows\Offline Web Pages
2008-11-16 18:23 749 a---hr-- c:\windows\WindowsShell.Manifest
2008-11-16 18:23 749 a---hr-- c:\windows\system32\wuaucpl.cpl.manifest
2008-11-16 18:23 749 a---hr-- c:\windows\system32\sapi.cpl.manifest
2008-11-16 18:23 749 a---hr-- c:\windows\system32\nwc.cpl.manifest
2008-11-16 18:23 749 a---hr-- c:\windows\system32\ncpa.cpl.manifest
2008-11-16 18:23 749 a---hr-- c:\windows\system32\cdplayer.exe.manifest
2008-11-16 18:23 4,399,505 ac------ c:\windows\system32\dllcache\nls302en.lex
2008-11-16 18:22 <DIR> --d----- c:\program files\common files\MSSoap
2008-11-16 18:20 <DIR> --d-h--- c:\program files\WindowsUpdate
2008-11-16 18:20 <DIR> --d----- c:\program files\Online Services
2008-11-16 18:20 <DIR> --d----- c:\program files\Messenger
2008-11-16 18:20 <DIR> --d----- c:\program files\MSN Gaming Zone
2008-11-16 18:19 <DIR> --d----- c:\program files\Windows NT
2008-11-16 13:15 <DIR> --d----- c:\program files\common files\ODBC
2008-11-16 13:15 <DIR> --d----- c:\program files\common files\SpeechEngines
2008-11-16 13:15 <DIR> --d--r-- c:\documents and settings\all users\Documents
==================== Find3M ====================
2008-11-25 13:04 77,423 a------- c:\windows\pchealth\helpctr\offlinecache\index.dat
2008-11-16 21:46 410,976 a------- c:\windows\system32\deploytk.dll
2008-11-16 18:21 21,640 a------- c:\windows\system32\emptyregdb.dat
2008-09-15 07:12 1,846,400 a------- c:\windows\system32\win32k.sys
2008-09-09 20:14 1,307,648 a------- c:\windows\system32\msxml6.dll
============= FINISH: 10:09:55.10 ===============
i have the other log but it says do not post unless specifically instructed
|