Welcome to Tech Support Forum home to more then 136,000 problems solved. Issues have included: Spyware, Malware, Virus Issues, Windows, Microsoft, Linux, Networking, Security, Hardware, and Gaming Getting your problem solved is as easy as:
1. Registering for a free account
2. Asking your question
3. Receiving an answer

Registered members:
* Get free support
* Communicate privately with other members (PM).
* Removal of this message
* See fewer ads.
* And much more..

 



Want to know how to post a question? click here Having problems with spyware and pop-ups? First Steps
Go Back   Tech Support Forum > Microsoft Support > Windows Vista/Windows 7 Support
User Name
Password
Site Map Register Donate Rules Blogs Mark Forums Read


View Poll Results: Hijackthis log help
?????????// 0 0%
?????????????? 0 0%
Voters: 0. You may not vote on this poll

Closed Thread
 
LinkBack Thread Tools
Old 05-13-2009, 10:41 AM   #1 (permalink)
Registered User
 
Join Date: May 2009
Posts: 1
OS: windows vista service pack 1


Hijackthis and dds log pls help

hi
i belive my computer has a virus or a malwear but my antivirus can not detect them so i run a hijackthis DDS scans but i dont have a clue what to delete can someone please help me? thanks in advance
Code:
 Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 3:34:41 PM, on 5/13/2009
Platform: Windows Vista  (WinNT 6.00.1904)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\SigmaTel\C-Major Audio\WDM\sttray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Windows\System32\WLTRAY.EXE
C:\Program Files\DellTPad\Apoint.exe
C:\Program Files\AVG\AVG8\avgtray.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\DellTPad\HidFind.exe
C:\Program Files\DellTPad\Apntex.exe
C:\Windows\system32\conime.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Google\Google Toolbar\GoogleToolbarUser.exe
C:\Windows\system32\Macromed\Flash\FlashUtil10b.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\Program Files\Lavasoft\Ad-Aware\Ad-Aware.exe
C:\Users\annet\Downloads\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
R3 - URLSearchHook: The Pirate Bay Toolbar - {a33fa729-d155-4b23-842b-2c665ecabdb6} - C:\Program Files\The_Pirate_Bay\tbThe_.dll
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O2 - BHO: The Pirate Bay Toolbar - {a33fa729-d155-4b23-842b-2c665ecabdb6} - C:\Program Files\The_Pirate_Bay\tbThe_.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O3 - Toolbar: The Pirate Bay Toolbar - {a33fa729-d155-4b23-842b-2c665ecabdb6} - C:\Program Files\The_Pirate_Bay\tbThe_.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O3 - Toolbar: FireShot - {6E6E744E-4D20-4ce3-9A7A-26DFFFE22F68} - C:\Program Files\FireShot for IE\FSAddin-0.69.dll
O4 - HKLM\..\Run: [SigmatelSysTrayApp] %ProgramFiles%\SigmaTel\C-Major Audio\WDM\sttray.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\Windows\system32\WLTRAY.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\DellTPad\Apoint.exe
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - Global Startup: QuickSet.lnk = C:\Program Files\Dell\QuickSet\quickset.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O13 - Gopher Prefix: 
O16 - DPF: {4E218431-2F07-40BD-A9D3-035324C1F13F} (DyynoX Class) - http://stage.dyyno.com/tng/dyyno-client/DyynoCAB.CAB
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Windows\system32\aestsrv.exe
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Ahead\Lib\NMIndexingService.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: SigmaTel Audio Service (STacSV) - IDT, Inc. - C:\Windows\system32\STacSV.exe
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\Windows\System32\WLTRYSVC.EXE
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 6919 bytes














DDS (Ver_09-03-16.01) - NTFSx86  
Run by annet at 16:17:49.12 on Wed 05/13/2009
Internet Explorer: 8.0.6001.18702
Microsoft® Windows Vista™ Home Basic   6.0.6000.0.1252.1.1033.18.1013.198 [GMT 1:00]

AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated)

============== Running Processes ===============

C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\WLTRYSVC.EXE
C:\Windows\System32\bcmwltry.exe
C:\Windows\system32\WLANExt.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\SigmaTel\C-Major Audio\WDM\sttray.exe
C:\Windows\System32\igfxpers.exe
C:\Windows\System32\WLTRAY.EXE
C:\Program Files\DellTPad\Apoint.exe
C:\Program Files\AVG\AVG8\avgtray.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Windows\system32\aestsrv.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\STacSV.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\SearchIndexer.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\Program Files\AVG\AVG8\avgcsrvx.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\DellTPad\ApMsgFwd.exe
C:\Program Files\DellTPad\HidFind.exe
C:\Program Files\DellTPad\Apntex.exe
C:\Windows\system32\conime.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Google\Google Toolbar\GoogleToolbarUser.exe
C:\Windows\system32\svchost.exe -k WindowsMobile
C:\Windows\system32\Macromed\Flash\FlashUtil10b.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\Users\annet\Downloads\HiJackThis.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\annet\Downloads\dds.scr
C:\Windows\system32\wbem\wmiprvse.exe

============== Pseudo HJT Report ===============

uStart Page = hxxp://www.google.com/search?sourceid=navclient&aq=s0&oq=goo&ie=UTF-8&rlz=1T4ADBF_enGB318GB318&q=google
uURLSearchHooks: The Pirate Bay Toolbar: {a33fa729-d155-4b23-842b-2c665ecabdb6} - c:\program files\the_pirate_bay\tbThe_.dll
mURLSearchHooks: The Pirate Bay Toolbar: {a33fa729-d155-4b23-842b-2c665ecabdb6} - c:\program files\the_pirate_bay\tbThe_.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg8\avgssie.dll
BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre1.6.0\bin\ssv.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: AVG Security Toolbar: {a057a204-bacc-4d26-9990-79a187e2698e} - c:\progra~1\avg\avg8\AVGTOO~1.DLL
BHO: The Pirate Bay Toolbar: {a33fa729-d155-4b23-842b-2c665ecabdb6} - c:\program files\the_pirate_bay\tbThe_.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.1.1309.3572\swg.dll
BHO: Google Dictionary Compression sdch: {c84d72fe-e17d-4195-bb24-76c02e2e7c4e} - c:\program files\google\google toolbar\component\fastsearch_A8904FB862BD9564.dll
TB: The Pirate Bay Toolbar: {a33fa729-d155-4b23-842b-2c665ecabdb6} - c:\program files\the_pirate_bay\tbThe_.dll
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar.dll
TB: AVG Security Toolbar: {a057a204-bacc-4d26-9990-79a187e2698e} - c:\progra~1\avg\avg8\AVGTOO~1.DLL
TB: FireShot: {6e6e744e-4d20-4ce3-9a7a-26dfffe22f68} - c:\program files\fireshot for ie\FSAddin-0.69.dll
uRun: [swg] c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe
uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
mRun: [SigmatelSysTrayApp] %ProgramFiles%\SigmaTel\C-Major Audio\WDM\sttray.exe
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [Broadcom Wireless Manager UI] c:\windows\system32\WLTRAY.exe
mRun: [Apoint] c:\program files\delltpad\Apoint.exe
mRun: [AVG8_TRAY] c:\progra~1\avg\avg8\avgtray.exe
mRun: [Ad-Watch] c:\program files\lavasoft\ad-aware\AAWTray.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\quickset.lnk - c:\program files\dell\quickset\quickset.exe
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0\bin\ssv.dll
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
DPF: {4E218431-2F07-40BD-A9D3-035324C1F13F} - hxxp://stage.dyyno.com/tng/dyyno-client/DyynoCAB.CAB
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
DPF: {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab
Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - c:\program files\google\google toolbar\component\fastsearch_A8904FB862BD9564.dll
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg8\avgpp.dll
Notify: igfxcui - igfxdev.dll
AppInit_DLLs: avgrsstx.dll

============= SERVICES / DRIVERS ===============

R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2009-5-5 325896]
R1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2009-5-5 108552]

=============== Created Last 30 ================

2009-05-12 13:48	48	a-------	c:\programdata\sfsettingslogin.dll
2009-05-12 13:48	48	a-------	c:\progra~2\sfsettingslogin.dll
2009-05-12 13:43	3	a-------	c:\programdata\NOD.dll
2009-05-12 13:43	3	a-------	c:\progra~2\NOD.dll
2009-05-11 17:33	<DIR>	--d-----	c:\users\annet\appdata\roaming\PeerNetworking
2009-05-11 17:25	15,688	a-------	c:\windows\system32\lsdelete.exe
2009-05-11 17:14	64,160	a-------	c:\windows\system32\drivers\Lbd.sys
2009-05-11 17:00	<DIR>	-cd-h---	c:\programdata\{7972B2E5-3E09-4E5E-81B7-FE5819D6772F}
2009-05-11 17:00	<DIR>	-cd-h---	c:\progra~2\{7972B2E5-3E09-4E5E-81B7-FE5819D6772F}
2009-05-11 17:00	<DIR>	--d-----	c:\programdata\Lavasoft
2009-05-11 17:00	<DIR>	--d-----	c:\program files\Lavasoft
2009-05-11 16:48	<DIR>	--d-----	C:\130f56088eb08267f429b7ef
2009-05-11 15:17	<DIR>	--d-----	C:\!KillBox
2009-05-11 04:01	<DIR>	--d-----	C:\5d6a38e401404452bce6b0402461
2009-05-09 16:37	<DIR>	--d-----	c:\users\annet\Tracing
2009-05-09 01:14	172,032	a-------	c:\windows\system32\igfxres.dll
2009-05-08 23:58	<DIR>	--d-----	c:\users\annet\appdata\roaming\AVG8
2009-05-08 22:21	<DIR>	--d-----	C:\bd685c4276e9f8f49b71488ffb9f
2009-05-08 14:19	<DIR>	--d-----	c:\program files\FireShot for IE
2009-05-06 21:50	229,888	a-------	c:\windows\system32\msshsq.dll
2009-05-06 21:24	<DIR>	--d-----	c:\programdata\Messenger Plus!
2009-05-06 21:24	<DIR>	--d-----	c:\progra~2\Messenger Plus!
2009-05-06 21:12	622,080	a-------	c:\windows\system32\icardagt.exe
2009-05-06 21:12	11,264	a-------	c:\windows\system32\icardres.dll
2009-05-06 21:12	97,800	a-------	c:\windows\system32\infocardapi.dll
2009-05-06 21:12	37,384	a-------	c:\windows\system32\infocardcpl.cpl
2009-05-06 21:11	105,016	a-------	c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2009-05-06 21:11	326,160	a-------	c:\windows\system32\PresentationHost.exe
2009-05-06 21:11	43,544	a-------	c:\windows\system32\PresentationHostProxy.dll
2009-05-06 21:11	781,344	a-------	c:\windows\system32\PresentationNative_v0300.dll
2009-05-06 20:01	<DIR>	--d-----	c:\program files\Circle Developement
2009-05-06 20:00	<DIR>	--d-----	c:\program files\Messenger Plus! Live
2009-05-05 19:38	<DIR>	--d-h---	C:\$AVG8.VAULT$
2009-05-05 19:24	11,952	a-------	c:\windows\system32\avgrsstx.dll
2009-05-05 19:24	108,552	a-------	c:\windows\system32\drivers\avgtdix.sys
2009-05-05 19:24	325,896	a-------	c:\windows\system32\drivers\avgldx86.sys
2009-05-05 19:24	<DIR>	--d-----	c:\windows\system32\drivers\Avg
2009-05-02 20:14	2,784,285	a-------	c:\windows\system32\GameMon.des
2009-05-02 20:13	4,682	a-------	c:\windows\system32\npptNT2.sys
2009-05-02 20:13	5,174	a-------	c:\windows\system32\nppt9x.vxd
2009-05-02 20:13	<DIR>	--d-----	c:\program files\common files\INCA Shared
2009-05-02 20:06	<DIR>	--d-----	c:\programdata\Xfire
2009-05-02 20:06	<DIR>	--d-----	c:\progra~2\Xfire
2009-05-02 19:50	<DIR>	--d-----	c:\users\annet\appdata\roaming\Xfire
2009-05-02 19:50	<DIR>	--ds----	c:\program files\Xfire
2009-05-02 19:15	<DIR>	--d-----	C:\ijji
2009-05-02 17:06	157,152	a-------	c:\windows\system32\PubPlugin.dll
2009-05-02 17:06	58,800	a-------	c:\windows\system32\ijjiPlugin2.dll
2009-05-02 17:06	710,064	a-------	c:\windows\system32\ijjiSetup.exe
2009-05-02 17:06	<DIR>	--d-----	c:\program files\NHN USA
2009-05-02 15:24	204	a-------	C:\Plugins
2009-05-02 15:24	<DIR>	--d-----	c:\program files\Pando Networks
2009-05-01 20:28	<DIR>	--d-----	c:\programdata\Tages
2009-05-01 20:28	<DIR>	--d-----	c:\progra~2\Tages
2009-05-01 19:23	279,712	a-------	c:\windows\system32\drivers\atksgt.sys
2009-05-01 19:23	25,888	a-------	c:\windows\system32\drivers\lirsgt.sys
2009-05-01 19:18	116,736	a-------	c:\windows\system32\drivers\mcdbus.sys
2009-05-01 19:17	<DIR>	--d-----	c:\program files\MagicDisc
2009-05-01 15:01	<DIR>	--d-----	c:\program files\Driving Test Success - Hazard Perception (2008-2009)
2009-04-27 21:00	<DIR>	--d-----	c:\program files\PeerGuardian2
2009-04-25 18:50	124,820,676	a-------	c:\windows\MEMORY.DMP
2009-04-21 19:22	<DIR>	--d-----	c:\programdata\NCH Software
2009-04-21 19:21	<DIR>	--d-----	c:\program files\NCH Software
2009-04-21 19:21	<DIR>	--d-----	c:\programdata\NCH Swift Sound
2009-04-17 04:04	500,736	a-------	c:\windows\system32\msdtcprx.dll
2009-04-17 04:04	30,208	a-------	c:\windows\system32\xolehlp.dll
2009-04-17 04:02	549,888	a-------	c:\windows\system32\rpcss.dll
2009-04-17 04:02	3,503,584	a-------	c:\windows\system32\ntkrnlpa.exe
2009-04-17 04:02	3,469,280	a-------	c:\windows\system32\ntoskrnl.exe
2009-04-17 04:02	24,576	a-------	c:\windows\system32\printfilterpipelineprxy.dll
2009-04-17 04:02	654,336	a-------	c:\windows\system32\printfilterpipelinesvc.exe
2009-04-17 04:02	53,248	a-------	c:\windows\system32\iasads.dll
2009-04-17 04:02	37,888	a-------	c:\windows\system32\iasdatastore.dll
2009-04-17 04:02	158,720	a-------	c:\windows\system32\sdohlp.dll
2009-04-17 04:02	97,280	a-------	c:\windows\system32\iasrecst.dll
2009-04-16 14:35	376,832	a-------	c:\windows\system32\winhttp.dll
2009-04-16 14:17	72,704	a-------	c:\windows\system32\secur32.dll
2009-04-16 14:17	7,680	a-------	c:\windows\system32\lsass.exe
2009-04-16 14:17	1,233,408	a-------	c:\windows\system32\lsasrv.dll
2009-04-16 14:14	25,600	a-------	c:\windows\system32\amxread.dll
2009-04-16 14:14	14,848	a-------	c:\windows\system32\apilogen.dll
2009-04-14 19:17	41,808	a-------	c:\windows\system32\xfcodec.dll

==================== Find3M  ====================

2009-05-06 22:07	51,200	a-------	c:\windows\inf\infpub.dat
2009-05-06 22:07	86,016	a-------	c:\windows\inf\infstrng.dat
2009-05-06 22:07	86,016	a-------	c:\windows\inf\infstor.dat
2009-04-16 14:14	40,960	a-------	c:\windows\apppatch\apihex86.dll
2009-04-16 13:34	52,736	a-------	c:\windows\apppatch\iebrshim.dll
2009-04-12 04:06	311,296	a-------	c:\windows\system32\mswmdm.dll
2009-04-12 04:06	36,864	a-------	c:\windows\system32\wmdmps.dll
2009-04-12 04:06	31,744	a-------	c:\windows\system32\wmdmlog.dll
2009-03-31 17:48	717,296	a-------	c:\windows\system32\drivers\sptd.sys
2009-03-23 13:46	665,600	a-------	c:\windows\inf\drvindex.dat
2009-03-15 04:01	269,824	a-------	c:\windows\system32\schannel.dll
2009-03-15 01:44	268,800	a-------	c:\windows\system32\es.dll
2009-03-15 01:40	37,376	a-------	c:\windows\system32\printcom.dll
2009-03-15 01:40	441,856	a-------	c:\windows\system32\win32spl.dll
2009-03-15 01:39	113,664	a-------	c:\windows\system32\drivers\rmcast.sys
2009-03-15 01:39	14,848	a-------	c:\windows\system32\wshrm.dll
2009-03-15 01:39	11,776	a-------	c:\windows\system32\sbunattend.exe
2009-03-15 01:38	83,968	a-------	c:\windows\system32\dnsrslvr.dll
2009-03-15 01:38	24,576	a-------	c:\windows\system32\dnscacheugc.exe
2009-03-14 17:19	174	a--sh---	c:\program files\desktop.ini
2009-03-14 17:03	361,984	a-------	c:\windows\system32\IPSECSVC.DLL
2009-03-14 17:03	272,896	a-------	c:\windows\system32\polstore.dll
2009-03-14 17:03	61,440	a-------	c:\windows\system32\winipsec.dll
2009-03-14 17:03	28,672	a-------	c:\windows\system32\FwRemoteSvr.dll
2009-03-14 16:56	241,152	a-------	c:\windows\system32\PortableDeviceApi.dll
2009-03-14 16:56	160,768	a-------	c:\windows\system32\PortableDeviceTypes.dll
2009-03-14 16:56	95,232	a-------	c:\windows\system32\PortableDeviceClassExtension.dll
2009-03-14 16:53	205,824	a-------	c:\windows\system32\msoeacct.dll
2009-03-14 16:53	87,040	a-------	c:\windows\system32\msoert2.dll
2009-03-14 16:53	39,424	a-------	c:\windows\system32\ACCTRES.dll
2009-03-14 16:47	110,080	a-------	c:\windows\system32\drivers\mrxdav.sys
2009-03-14 16:47	194,560	a-------	c:\windows\system32\WebClnt.dll
2009-03-14 16:40	49,664	a-------	c:\windows\system32\csrsrv.dll
2009-03-14 16:40	376,320	a-------	c:\windows\system32\winsrv.dll
2009-03-14 16:30	297,472	a-------	c:\windows\system32\gdi32.dll
2009-03-14 16:29	1,060,920	a-------	c:\windows\system32\drivers\ntfs.sys
2009-03-14 16:29	41,984	a-------	c:\windows\system32\drivers\monitor.sys
2009-03-14 16:27	211,456	a-------	c:\windows\system32\drivers\mrxsmb10.sys
2009-03-14 16:25	374,456	a-------	c:\windows\system32\mcupdate_GenuineIntel.dll
2009-03-14 16:22	28,672	a-------	c:\windows\system32\Apphlpdm.dll
2009-03-14 16:22	2,560	a-------	c:\windows\apppatch\AcRes.dll
2009-03-14 16:22	2,144,256	a-------	c:\windows\apppatch\AcGenral.dll
2009-03-14 16:22	449,536	a-------	c:\windows\apppatch\AcSpecfc.dll
2009-03-14 16:22	537,600	a-------	c:\windows\apppatch\AcLayers.dll
2009-03-14 16:22	173,056	a-------	c:\windows\apppatch\AcXtrnal.dll
2009-03-14 16:22	4,247,552	a-------	c:\windows\system32\GameUXLegacyGDFs.dll
2009-03-14 16:22	1,687,040	a-------	c:\windows\system32\gameux.dll
2009-03-14 16:20	303,616	a-------	c:\windows\system32\wmpeffects.dll
2009-03-14 16:17	1,194,496	a-------	c:\windows\system32\msxml3.dll
2009-03-14 16:17	2,048	a-------	c:\windows\system32\msxml3r.dll
2009-03-14 16:15	414,208	a-------	c:\windows\system32\msscp.dll
2009-03-14 16:12	356,864	a-------	c:\windows\system32\MediaMetadataHandler.dll
2009-03-14 16:11	392,192	a-------	c:\windows\system32\FirewallAPI.dll
2009-03-14 16:10	396,800	a-------	c:\windows\system32\MPSSVC.dll
2009-03-14 16:10	86,016	a-------	c:\windows\system32\icfupgd.dll
2009-03-14 16:10	61,952	a-------	c:\windows\system32\cmifw.dll
2009-03-14 16:10	16,896	a-------	c:\windows\system32\wfapigp.dll
2009-03-14 16:10	178,688	a-------	c:\windows\system32\iphlpsvc.dll
2009-03-14 16:07	2,048	a-------	c:\windows\system32\tzres.dll
2009-03-14 16:03	8,147,968	a-------	c:\windows\system32\wmploc.DLL
2009-03-14 16:03	7,680	a-------	c:\windows\system32\spwmp.dll
2009-03-14 16:03	4,096	a-------	c:\windows\system32\dxmasf.dll
2009-03-14 15:56	104,448	a-------	c:\windows\system32\DWWIN.EXE
2009-03-14 15:54	2,923,520	a-------	c:\windows\explorer.exe
2009-03-14 15:50	24,064	a-------	c:\windows\system32\netcfg.exe
2009-03-14 15:50	167,424	a-------	c:\windows\system32\tcpipcfg.dll
2009-03-14 15:50	22,016	a-------	c:\windows\system32\netiougc.exe
2009-03-14 15:46	2,644,480	a-------	c:\windows\system32\NlsLexicons0009.dll
2009-03-14 15:45	3,102,720	a-------	c:\windows\system32\NlsData0049.dll
2009-03-14 15:32	1,585,664	a-------	c:\windows\system32\setupapi.dll
2009-03-14 15:22	223,232	a-------	c:\windows\system32\WMASF.DLL
2009-03-14 15:22	9,728	a-------	c:\windows\system32\LAPRXY.DLL
2009-03-14 15:22	2,048	a-------	c:\windows\system32\asferror.dll
2009-03-14 15:20	223,232	a-------	c:\windows\system32\SLC.dll
2009-03-14 15:20	268,288	a-------	c:\windows\system32\mcbuilder.exe
2009-03-14 15:20	33,280	a-------	c:\windows\system32\slwmi.dll
2009-03-14 15:20	566,784	a-------	c:\windows\system32\SLCommDlg.dll
2009-03-14 15:20	351,232	a-------	c:\windows\system32\SLUI.exe
2009-03-14 15:20	186,368	a-------	c:\windows\system32\SLLUA.exe
2009-03-14 15:20	57,856	a-------	c:\windows\system32\SLUINotify.dll
2009-03-14 15:20	2,605,568	a-------	c:\windows\system32\SLsvc.exe
2009-03-14 15:19	39,936	a-------	c:\windows\system32\slcinst.dll
2009-03-14 15:16	425,472	a-------	c:\windows\system32\PhotoMetadataHandler.dll
2009-03-14 15:16	712,704	a-------	c:\windows\system32\WindowsCodecs.dll
2009-03-14 15:16	347,648	a-------	c:\windows\system32\WindowsCodecsExt.dll
2009-03-14 15:09	61,440	a-------	c:\windows\system32\ntprint.exe
2009-03-14 15:09	220,160	a-------	c:\windows\system32\ntprint.dll
2009-03-14 15:09	10,240	a-------	c:\windows\system32\dhcpcmonitor.dll
2009-03-14 15:09	120,320	a-------	c:\windows\system32\dhcpcsvc6.dll
2009-03-14 15:08	1,984,512	a-------	c:\windows\system32\authui.dll
2009-03-14 15:08	123,904	a-------	c:\windows\system32\msvfw32.dll
2009-03-14 15:08	82,944	a-------	c:\windows\system32\mciavi32.dll
2009-03-14 15:08	65,024	a-------	c:\windows\system32\avicap32.dll
2009-03-14 15:08	88,576	a-------	c:\windows\system32\avifil32.dll
2009-03-14 15:08	31,232	a-------	c:\windows\system32\msvidc32.dll
2009-03-14 15:08	12,800	a-------	c:\windows\system32\msrle32.dll
2009-03-14 15:08	69,632	a-------	c:\windows\system32\sendmail.dll
2009-03-14 15:08	8,138,240	a-------	c:\windows\system32\ssBranded.scr
2009-03-14 14:36	96,760	a-------	c:\windows\system32\dfshim.dll
2009-03-14 14:36:08 A-------        41,984 c:\windows\system32\netfxperf.dll
2007-02-21 20:49	8,192	a--sh---	c:\windows\users\default\NTUSER.DAT

============= FINISH: 16:21:03.82 ===============

Last edited by jcgriff2; 05-14-2009 at 02:32 PM. Reason: code box
annet141 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Important Information
Join the #1 Tech Support Forum Today - It's Totally Free!

TechSupportForum.com is a leading support website for your computer needs. We offer free, friendly and personalized computer support. Why pay to have your computer fixed when you can do it for free.

Join TechSupportforum.com Today - Click Here

Old 05-14-2009, 11:26 AM   #2 (permalink)
Registered User
 
Join Date: Nov 2007
Location: Cleveland, Ohio
Posts: 243
OS: Vista Home Basic SP2


Re: Hijackthis and dds log pls help

Hello annet141 and welcome to TSF. Your actually not in the correct section of TSF. Start a new topic over here. NEW INSTRUCTIONS - Read This Before Posting For Malware Removal Help

then go here:
http://www.techsupportforum.com/secu...-spyware-help/

Dump your Pirate Bay and Ad Watch programs in the interim.
Zappaboss is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Closed Thread


Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off




All times are GMT -7. The time now is 07:14 AM.



Copyright 2001 - 2009, Tech Support Forum
Home Tips Plus | Outdoor Basecamp | Automotive Support Forum

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85