Welcome to Tech Support Forum home to more then 136,000 problems solved. Issues have included: Spyware, Malware, Virus Issues, Windows, Microsoft, Linux, Networking, Security, Hardware, and Gaming Getting your problem solved is as easy as:
1. Registering for a free account
2. Asking your question
3. Receiving an answer

Registered members:
* Get free support
* Communicate privately with other members (PM).
* Removal of this message
* See fewer ads.
* And much more..

 



Want to know how to post a question? click here Having problems with spyware and pop-ups? First Steps
Go Back   Tech Support Forum > Security Center > Virus/Trojan/Spyware Help
User Name
Password
Site Map Register Donate Rules Blogs Mark Forums Read


Virus/Trojan/Spyware Help Get Rid Of Malware With Help From Our Analysts. Follow the "First Steps" link at the top right of each page before posting for help.

Reply
 
LinkBack Thread Tools
Old 06-17-2009, 12:34 AM   #1 (permalink)
Registered User
 
Join Date: May 2009
Posts: 30
OS: windows xp


virus, trojan, malware I have not idea what I have

Hi, I resently post a topic and it was close. You suggested me to open a new topic. I have window xp SP3 and the pc has some wierd behavior. mouse suddenly stops, browser takes too long , some websites get ridirected or sometimes just stops or stalls. Here are the logs you ask for.

DDS (Ver_09-05-14.01) - NTFSx86
Run by Owner at 22:25:52.86 on Tue 06/16/2009
Internet Explorer: 8.0.6001.18702
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.446.165 [GMT -7:00]

AV: McAfee VirusScan *On-access scanning enabled* (Updated) {84B5EE75-6421-4CDE-A33A-DD43BA9FAD83}
FW: McAfee Personal Firewall *enabled* {94894B63-8C7F-4050-BDA4-813CA00DA3E8}

============== Running Processes ===============

C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\VTtrayp.exe
C:\WINDOWS\system32\VTTimer.exe
C:\Program Files\Digital Media Reader\shwiconem.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\McAfee.com\Agent\mcagent.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe
C:\WINDOWS\system32\ctfmon.exe
svchost.exe
C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\Documents and Settings\Owner\Desktop\dds.scr

============== Pseudo HJT Report ===============

uSearch Bar = hxxp://www.google.com/ie
uStart Page = hxxp://www.emachines.com/
mSearchAssistant = hxxp://www.google.com/ie
BHO: &Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - c:\progra~1\yahoo!\companion\installs\cpn\yt.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\progra~1\spybot~1\SDHelper.dll
BHO: scriptproxy: {7db2d5a0-7241-4e79-b68d-6309f01c5231} - c:\program files\mcafee\virusscan\scriptsn.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.1.1309.3572\swg.dll
BHO: McAfee SiteAdvisor BHO: {b164e929-a1b6-4a06-b104-2cd0e90a88ff} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
BHO: Google Dictionary Compression sdch: {c84d72fe-e17d-4195-bb24-76c02e2e7c4e} - c:\program files\google\google toolbar\component\fastsearch_A8904FB862BD9564.dll
BHO: SingleInstance Class: {fdad4da1-61a2-4fd8-9c17-86f7ac245081} - c:\progra~1\yahoo!\companion\installs\cpn\YTSingleInstance.dll
TB: McAfee SiteAdvisor Toolbar: {0ebbbe48-bad4-4b4c-8e5a-516abecae064} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
TB: Veoh Web Player Video Finder: {0fbb9689-d3d7-4f7a-a2e2-585b10099bfc} - c:\program files\veoh networks\veohwebplayer\VeohIEToolbar.dll
TB: Veoh Video Compass: {52836eb0-631a-47b1-94a6-61f9d9112dae} - c:\program files\veoh networks\veoh video compass\SearchRecsPlugin.dll
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar.dll
TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\progra~1\yahoo!\companion\installs\cpn\yt.dll
TB: {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - No File
TB: {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No File
TB: {4982D40A-C53B-4615-B15B-B5B5E98D167C} - No File
EB: Real.com: {fe54fa40-d68c-11d2-98fa-00c0f0318afe} - c:\windows\system32\Shdocvw.dll
uRun: [SpybotSD TeaTimer] c:\program files\spybot - search & destroy\TeaTimer.exe
uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
uRun: [fsm]
uRun: [swg] c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe
uRun: [VeohPlugin] "c:\program files\veoh networks\veohwebplayer\veohwebplayer.exe"
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [VTTrayp] VTtrayp.exe
mRun: [VTTimer] VTTimer.exe
mRun: [SunKistEM] c:\program files\digital media reader\shwiconem.exe
mRun: [SoundMan] SOUNDMAN.EXE
mRun: [Reminder] %WINDIR%\Creator\Remind_XP.exe
mRun: [Recguard] %WINDIR%\SMINST\RECGUARD.EXE
mRun: [McENUI] c:\progra~1\mcafee\mhn\McENUI.exe /hide
mRun: [mcagent_exe] "c:\program files\mcafee.com\agent\mcagent.exe" /runkey
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
mRun: [Google Quick Search Box] "c:\program files\google\quick search box\GoogleQuickSearchBox.exe" /autorun
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office12\REFIEBAR.DLL
IE: {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - {FE54FA40-D68C-11d2-98FA-00C0F0318AFE} - c:\windows\system32\Shdocvw.dll
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\progra~1\spybot~1\SDHelper.dll
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://go.microsoft.com/fwlink/?linkid=39204
DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - c:\program files\yahoo!\common\Yinsthelper.dll
DPF: {31435657-9980-0010-8000-00AA00389B71} - hxxp://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab
DPF: {49232000-16E4-426C-A231-62846947304B} - hxxps://wimpro.cce.hp.com/ChatEntry/downloads/sysinfo.cab
DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - hxxp://go.divx.com/plugin/DivXBrowserPlugin.cab
DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} - hxxps://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab
DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} - hxxp://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection2.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_02-windows-i586.cab
DPF: {A9F8D9EC-3D0A-4A60-BD82-FBD64BAD370D} - hxxp://h20264.www2.hp.com/ediags/dd/install/HPDriverDiagnosticsxp2k.cab
DPF: {CAFEEFAC-0015-0000-0002-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_02-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - c:\program files\google\google toolbar\component\fastsearch_A8904FB862BD9564.dll
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~1\mcafee\sitead~1\McIEPlg.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll

================= FIREFOX ===================

FF - ProfilePath - c:\docume~1\owner\applic~1\mozilla\firefox\profiles\y8u3s51i.default\
FF - component: c:\program files\mcafee\siteadvisor\components\McFFPlg.dll
FF - plugin: c:\documents and settings\owner\application data\mozilla\firefox\profiles\y8u3s51i.default\extensions\firefox@tvunetworks.com\plugins\npTVUAx.dll
FF - plugin: c:\program files\java\jre1.5.0_02\bin\NPJava11.dll
FF - plugin: c:\program files\java\jre1.5.0_02\bin\NPJava12.dll
FF - plugin: c:\program files\java\jre1.5.0_02\bin\NPJava13.dll
FF - plugin: c:\program files\java\jre1.5.0_02\bin\NPJava14.dll
FF - plugin: c:\program files\java\jre1.5.0_02\bin\NPJava32.dll
FF - plugin: c:\program files\java\jre1.5.0_02\bin\NPJPI150_02.dll
FF - plugin: c:\program files\java\jre1.5.0_02\bin\NPOJI610.dll
FF - plugin: c:\program files\veetle\player\npvlc.dll
FF - plugin: c:\program files\veetle\plugins\npVeetle.dll
FF - plugin: c:\program files\veoh networks\veohwebplayer\NPVeohTVPlugin.dll
FF - plugin: c:\program files\veoh networks\veohwebplayer\npWebPlayerVideoPluginATL.dll
FF - plugin: c:\program files\viewpoint\viewpoint experience technology\npViewpoint.dll

============= SERVICES / DRIVERS ===============
rogimor is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
Important Information
Join the #1 Tech Support Forum Today - It's Totally Free!

TechSupportForum.com is a leading support website for your computer needs. We offer free, friendly and personalized computer support. Why pay to have your computer fixed when you can do it for free.

Join TechSupportforum.com Today - Click Here

Old 06-17-2009, 12:35 AM   #2 (permalink)
Registered User
 
Join Date: May 2009
Posts: 30
OS: windows xp


Re: virus, trojan, malware I have not idea what I have

R1 mfehidk;McAfee Inc. mfehidk;c:\windows\system32\drivers\mfehidk.sys [2009-3-25 214024]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\program files\mcafee\siteadvisor\McSACore.exe [2009-6-2 203280]
R2 McProxy;McAfee Proxy Service;c:\progra~1\common~1\mcafee\mcproxy\mcproxy.exe [2009-6-2 359952]
R2 McShield;McAfee Real-time Scanner;c:\progra~1\mcafee\viruss~1\mcshield.exe [2009-6-2 144704]
R3 McSysmon;McAfee SystemGuards;c:\progra~1\mcafee\viruss~1\mcsysmon.exe [2009-6-2 606736]
R3 mfeavfk;McAfee Inc. mfeavfk;c:\windows\system32\drivers\mfeavfk.sys [2009-6-2 79880]
R3 mfebopk;McAfee Inc. mfebopk;c:\windows\system32\drivers\mfebopk.sys [2009-6-2 35272]
R3 mfesmfk;McAfee Inc. mfesmfk;c:\windows\system32\drivers\mfesmfk.sys [2009-6-2 40552]
S3 mferkdk;McAfee Inc. mferkdk;c:\windows\system32\drivers\mferkdk.sys [2009-6-2 34216]

=============== Created Last 30 ================

2009-06-16 18:43 <DIR> --d----- C:\backups
2009-06-16 10:25 212,849 a------- C:\hijackthis.zip
2009-06-15 20:55 <DIR> --d----- C:\VIRUS TREATMENT PROG
2009-06-13 17:16 7,545,512 a------- C:\Firefox Setup 3.0.11.exe
2009-06-12 20:13 <DIR> --d----- C:\V2DTMEP
2009-06-11 18:05 438,592 a------- C:\msgr9us.exe
2009-06-10 22:41 <DIR> --d----- c:\docume~1\owner\applic~1\Movienizer
2009-06-10 20:37 <DIR> --d----- c:\documents and settings\owner\MALWAREBYTES SCANS
2009-06-10 15:45 <DIR> --d----- c:\docume~1\owner\applic~1\ppStream
2009-06-10 15:45 543 a------- c:\windows\psnetwork.ini
2009-06-10 08:37 <DIR> --d----- c:\documents and settings\owner\ISO DVD
2009-06-09 23:23 1,886,384 a------- C:\GoogleToolbarInstaller_en_signed.exe
2009-06-09 23:21 <DIR> --dsh--- c:\documents and settings\owner\IECompatCache
2009-06-09 23:17 <DIR> --dsh--- c:\documents and settings\owner\PrivacIE
2009-06-09 23:13 <DIR> --dsh--- c:\documents and settings\owner\IETldCache
2009-06-09 23:10 <DIR> --d----- c:\windows\ie8updates
2009-06-09 23:07 <DIR> -cd-h--- c:\windows\ie8
2009-06-09 23:00 246,272 -c------ c:\windows\system32\dllcache\ieproxy.dll
2009-06-09 23:00 12,800 -c------ c:\windows\system32\dllcache\xpshims.dll
2009-06-09 23:00 1,985,024 -c------ c:\windows\system32\dllcache\iertutil.dll
2009-06-09 23:00 11,064,832 -c------ c:\windows\system32\dllcache\ieframe.dll
2009-06-09 22:59 102,912 -c------ c:\windows\system32\dllcache\iecompat.dll
2009-06-09 22:55 16,883,056 a------- C:\IE8-WindowsXP-x86-ENU.exe
2009-06-09 16:32 <DIR> --d----- c:\program files\WinBoard-4.2.7
2009-06-09 12:29 25,032,729 a------- C:\avitodvd.exe
2009-06-09 12:29 765,952 a------- c:\windows\system32\xvidcore.dll
2009-06-09 12:29 77,824 a------- c:\windows\system32\xvid.ax
2009-06-09 12:29 180,224 a------- c:\windows\system32\xvidvfw.dll
2009-06-09 12:29 <DIR> --d----- c:\program files\Xvid
2009-06-09 08:03 <DIR> --d----- c:\program files\Yahoo!
2009-06-08 11:46 <DIR> --d----- c:\program files\SopCast
2009-06-08 11:05 <DIR> --d----- c:\docume~1\owner\applic~1\SopCast
2009-06-07 19:50 <DIR> --d----- c:\docume~1\owner\applic~1\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2009-06-07 19:32 547 a------- c:\windows\system32\ff_vfw.dll.manifest
2009-06-07 19:31 84,480 a------- c:\windows\system32\ff_vfw.dll
2009-06-07 19:31 60,273 a------- c:\windows\system32\pthreadGC2.dll
2009-06-07 19:31 <DIR> --d----- c:\program files\ffdshow
2009-06-07 18:47 <DIR> --d----- c:\docume~1\owner\applic~1\DVD Flick
2009-06-07 18:46 40,960 a------- c:\windows\system32\ssubtmr6.dll
2009-06-07 18:46 164,144 a------- c:\windows\system32\comct232.ocx
2009-06-07 18:46 36,864 a------- c:\windows\system32\trayicon_handler.ocx
2009-06-07 18:46 28,672 a------- c:\windows\system32\mousewheel.ocx
2009-06-07 18:46 662,288 a------- c:\windows\system32\mscomct2.ocx
2009-06-07 18:46 212,240 a------- c:\windows\system32\richtx32.ocx
2009-06-07 18:46 <DIR> --d----- c:\program files\DVD Flick
2009-06-07 18:38 <DIR> --d----- c:\docume~1\owner\applic~1\Software Informer
2009-06-07 18:38 <DIR> --d----- c:\program files\Software Informer
2009-06-07 18:36 730,146 a------- C:\siinst.exe
2009-06-07 18:34 12,808,339 a------- C:\dvdflick_setup_1.3.0.6.exe
2009-06-07 16:39 <DIR> --d----- c:\windows\system32\windows media
2009-06-07 16:38 <DIR> --d-h--- c:\windows\msdownld.tmp
2009-06-07 16:38 <DIR> --d----- c:\program files\Windows Media Components
2009-06-07 16:37 9,918,872 a------- C:\WMEncoder.exe
2009-06-07 11:53 <DIR> --d----- C:\HP DRIVER UPDATE
2009-06-06 22:14 43,083,040 a------- C:\AdbeRdr910_en_US_Std.exe
2009-06-06 21:39 256 a------- c:\windows\asfbinapp.INI
2009-06-06 20:39 90,112 a------- c:\windows\system32\videoul.tmp
2009-06-06 20:19 <DIR> --d----- c:\program files\Windows Media Connect 2
2009-06-06 20:17 <DIR> --d----- c:\windows\system32\LogFiles
2009-06-06 16:47 <DIR> --d----- c:\program files\Veetle
2009-06-06 16:27 <DIR> --d----- c:\docume~1\alluse~1\applic~1\TVU Networks
2009-06-06 16:26 <DIR> --d----- c:\program files\TVUPlayer
2009-06-06 15:42 <DIR> --d----- C:\ppmaterecord
2009-06-06 15:36 <DIR> --d----- c:\documents and settings\owner\LocalLow
2009-06-06 13:12 <DIR> --d----- c:\program files\URUSoft
2009-06-06 13:07 <DIR> --d----- C:\MY TEMPS TO EARASE
2009-06-06 13:04 <DIR> --d----- C:\ZIP DOWNLOAD FOLDERS
2009-06-05 23:15 54,156 a---h--- c:\windows\QTFont.qfn
2009-06-05 23:15 1,409 a------- c:\windows\QTFont.for
2009-06-05 22:44 21,128,536 a------- C:\DivXInstaller.exe
2009-06-05 19:11 7,526,856 a------- C:\Firefox Setup 3.0.10.exe
2009-06-05 07:33 <DIR> --d----- c:\program files\common files\DivX Shared
2009-06-05 07:33 <DIR> --d----- c:\program files\DivX
2009-06-04 23:55 <DIR> --d----- c:\program files\Veoh Networks
2009-06-04 23:50 10,216,240 a------- C:\VeohVideoCompassSetup_eng.exe
2009-06-04 18:56 <DIR> --d----- c:\windows\system32\scripting
2009-06-04 18:56 <DIR> --d----- c:\windows\l2schemas
2009-06-04 18:56 <DIR> --d----- c:\windows\system32\en
2009-06-04 18:56 <DIR> --d----- c:\windows\system32\bits
2009-06-04 18:53 <DIR> --d----- c:\windows\ServicePackFiles
2009-06-04 18:50 <DIR> --d----- c:\windows\network diagnostic
2009-06-04 18:43 <DIR> --d----- c:\windows\EHome
2009-06-04 15:17 <DIR> --d----- C:\Downloads
2009-06-04 13:17 4,145,935 a------- C:\veetle-0.9.14.exe
2009-06-04 13:14 <DIR> --d----- c:\program files\TVAnts
2009-06-04 12:35 <DIR> --d----- c:\program files\Resistor Color Coder
2009-06-04 09:55 <DIR> --d----- c:\docume~1\owner\applic~1\GetRightToGo
2009-06-04 00:43 79,235 -------- c:\windows\hpfins05.dat.temp
2009-06-04 00:43 1,350 -------- c:\windows\hpfmdl05.dat.temp
2009-06-03 22:29 <DIR> --d----- c:\windows\pss
2009-06-03 21:47 <DIR> --d----- c:\program files\common files\Motive
2009-06-03 18:22 37,376 a------- c:\windows\system32\hpz3l3xu.dll
2009-06-03 17:32 291,328 -------- c:\windows\system32\qagentrt.dll
2009-06-03 17:31 61,440 -------- c:\windows\system32\kmsvc.dll
2009-06-03 17:30 136,192 -------- c:\windows\system32\aaclient.dll
2009-06-03 17:12 372,736 a------- c:\windows\system32\hpzidi01.dll
2009-06-03 17:12 77,824 a------- c:\windows\system32\hpzids01.dll
2009-06-03 16:51 <DIR> --d----- c:\program files\Hp
2009-06-02 23:38 <DIR> --d----- c:\docume~1\owner\applic~1\BitTorrent
2009-06-02 23:38 <DIR> --d----- c:\program files\DNA
2009-06-02 23:38 <DIR> --d----- c:\docume~1\owner\applic~1\DNA
2009-06-02 23:37 <DIR> --d----- c:\program files\BitTorrent
2009-06-02 23:30 1,739,664 a------- C:\BitTorrent-6.1.2.exe
2009-06-02 22:42 <DIR> --d----- c:\program files\Chess Position Trainer 3.3
2009-06-02 22:41 <DIR> --d----- C:\CPT_Setup_3_3_English
2009-06-02 22:32 <DIR> --d----- c:\program files\VideoLAN
2009-06-02 22:27 16,320,472 a------- C:\vlc-0.8.4a-win32.exe
2009-06-02 21:50 <DIR> --d----- c:\program files\LIVE TV
2009-06-02 21:46 380,725 a------- C:\LIVE TV Setup.exe
2009-06-02 20:41 3,006,976 a------- C:\TvantsSetup.exe
2009-06-02 20:23 146,126 a------- c:\windows\system32\array30.tab
2009-06-02 20:22 189,986 ac------ c:\windows\system32\dllcache\c_1361.nls
2009-06-02 20:21 480,256 ac------ c:\windows\system32\dllcache\cintsetp.exe
2009-06-02 20:19 <DIR> --d----- c:\docume~1\owner\applic~1\PPMate
2009-06-02 20:19 <DIR> --d----- c:\program files\common files\Synacast
2009-06-02 20:18 <DIR> --d----- c:\program files\PPMate
2009-06-02 19:32 <DIR> --d----- c:\program files\AviSynth 2.5
2009-06-02 19:29 <DIR> --d----- c:\program files\Avi2Dvd
2009-06-02 19:17 643,144 a------- C:\xvid_codec.exe
2009-06-02 19:13 <DIR> --d----- c:\program files\CCleaner
2009-06-02 19:01 3,247,736 a------- C:\ccsetup220.exe
2009-06-02 18:57 <DIR> --d----- c:\program files\DVD Shrink
2009-06-02 18:57 <DIR> --d----- C:\dvdshrink32setup1
2009-06-02 18:52 <DIR> --d----- c:\program files\DesktopEarth
2009-06-02 18:42 <DIR> --d----- c:\program files\DVD Decrypter
2009-06-02 18:41 899,414 a------- C:\SetupDVDDecrypter_3.5.4.0.exe
2009-06-02 18:28 15,443 a------- c:\windows\system32\Config.MPF
2009-06-02 18:23 79,880 a------- c:\windows\system32\drivers\mfeavfk.sys
2009-06-02 18:23 40,552 a------- c:\windows\system32\drivers\mfesmfk.sys
2009-06-02 18:23 35,272 a------- c:\windows\system32\drivers\mfebopk.sys
2009-06-02 18:23 120,136 a------- c:\windows\system32\drivers\Mpfp.sys
2009-06-02 18:15 34,216 a------- c:\windows\system32\drivers\mferkdk.sys
2009-06-02 17:58 <DIR> --dsh--- c:\documents and settings\owner\UserData
2009-06-02 17:01 <DIR> --d----- c:\program files\MSXML 4.0
2009-06-02 16:52 <DIR> --d----- c:\program files\Spybot - Search & Destroy
2009-06-02 16:52 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Spybot - Search & Destroy
2009-06-02 16:38 <DIR> --d----- c:\docume~1\owner\applic~1\Malwarebytes
2009-06-02 16:38 40,160 a------- c:\windows\system32\drivers\mbamswissarmy.sys
2009-06-02 16:38 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Malwarebytes
2009-06-02 16:38 19,096 a------- c:\windows\system32\drivers\mbam.sys
2009-06-02 16:38 <DIR> --d----- c:\program files\Malwarebytes' Anti-Malware
2009-06-02 16:34 455,296 -c------ c:\windows\system32\dllcache\mrxsmb.sys
2009-06-02 16:33 272,128 -c------ c:\windows\system32\dllcache\bthport.sys
2009-06-02 16:33 272,128 -------- c:\windows\system32\drivers\bthport.sys
2009-06-02 16:18 729,088 -c------ c:\windows\system32\dllcache\lsasrv.dll
2009-06-02 16:18 617,472 -c------ c:\windows\system32\dllcache\advapi32.dll
2009-06-02 16:18 473,600 -c------ c:\windows\system32\dllcache\fastprox.dll
2009-06-02 16:18 453,120 -c------ c:\windows\system32\dllcache\wmiprvsd.dll
2009-06-02 16:18 401,408 -c------ c:\windows\system32\dllcache\rpcss.dll
2009-06-02 16:18 284,160 -c------ c:\windows\system32\dllcache\pdh.dll
2009-06-02 16:18 227,840 -c------ c:\windows\system32\dllcache\wmiprvse.exe
2009-06-02 16:18 110,592 -c------ c:\windows\system32\dllcache\services.exe
2009-06-02 16:18 2,145,280 -c------ c:\windows\system32\dllcache\ntkrnlmp.exe
2009-06-02 16:18 714,752 -c------ c:\windows\system32\dllcache\ntdll.dll
2009-06-02 16:18 2,189,056 -c------ c:\windows\system32\dllcache\ntoskrnl.exe
2009-06-02 16:18 2,023,936 -c------ c:\windows\system32\dllcache\ntkrpamp.exe
2009-06-02 16:17 25,856 a------- c:\windows\system32\drivers\usbprint.sys
2009-06-02 16:12 203,136 -c------ c:\windows\system32\dllcache\rmcast.sys
2009-06-02 16:11 333,952 -c------ c:\windows\system32\dllcache\srv.sys
2009-06-02 16:10 691,712 -c------ c:\windows\system32\dllcache\inetcomm.dll
2009-06-02 16:00 2 a------- c:\windows\msoffice.ini
2009-06-02 16:00 337,408 -c------ c:\windows\system32\dllcache\netapi32.dll
2009-06-02 15:58 215,552 -c------ c:\windows\system32\dllcache\wordpad.exe
2009-06-02 15:58 2,560 -------- c:\windows\system32\xpsp4res.dll
2009-06-02 15:45 <DIR> --d----- c:\windows\system32\PreInstall
2009-06-02 15:25 <DIR> --d----- c:\windows\system32\SoftwareDistribution
2009-06-02 15:17 8,192 a------- c:\windows\REGLOCS.OLD
2009-06-02 15:15 0 a------- c:\windows\system32\Gateway_T3302__CK859D0000785.MRK
2009-06-02 15:15 333 a------- c:\windows\system32\$ncsp$.inf
2009-06-02 15:13 <DIR> --d----- c:\docume~1\owner\applic~1\AOL
2009-06-02 15:06 26,144 a------- c:\windows\system32\spupdsvc.exe
2009-06-02 15:05 <DIR> --d-h--- c:\windows\$hf_mig$
2009-06-02 15:04 <DIR> --d----- c:\program files\McAfee
2009-06-02 15:04 <DIR> --d----- c:\program files\common files\McAfee
2009-06-02 15:04 <DIR> --d----- c:\docume~1\owner\applic~1\McAfee
2009-06-02 15:04 <DIR> --d----- c:\docume~1\alluse~1\applic~1\McAfee.com
2009-06-02 15:04 279,624 a------- c:\windows\system32\mcgdmgr.dll
2009-06-02 15:04 341,064 a------- c:\windows\system32\mcinsctl.dll
2009-06-02 15:04 <DIR> --d----- c:\program files\McAfee.com
2009-06-02 15:04 221,184 a------- c:\windows\system32\wmpns.dll
2009-06-02 15:03 <DIR> --d----- c:\windows\RegisteredPackages
2009-06-02 15:02 <DIR> --d----- c:\program files\Realtek Sound Manager
2009-06-02 15:02 <DIR> --d----- c:\program files\AvRack
2009-06-02 15:01 <DIR> --d----- c:\program files\MSN Encarta Plus
2009-06-02 15:00 <DIR> --d----- c:\program files\Microsoft Money 2005
2009-06-02 14:59 <DIR> --d----- c:\docume~1\owner\applic~1\You've Got Pictures Screensaver
2009-06-02 14:59 <DIR> --d----- c:\program files\common files\Nullsoft
2009-06-02 14:59 86,016 a------- c:\windows\unvise32qt.exe
2009-06-02 14:59 <DIR> --d----- c:\windows\system32\QuickTime
2009-06-02 14:59 8,552 a------- c:\windows\system32\drivers\asctrm.sys
2009-06-02 14:59 <DIR> --d----- C:\My Music
rogimor is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
Old 06-17-2009, 12:36 AM   #3 (permalink)
Registered User
 
Join Date: May 2009
Posts: 30
OS: windows xp


Re: virus, trojan, malware I have not idea what I have

2009-06-02 14:59 24,576 a------- c:\windows\system32\prefscpl.cpl
2009-06-02 14:59 <DIR> --d----- c:\program files\common files\Real
2009-06-02 14:59 102,400 a------- c:\windows\system32\SimpleRegistry.dll
2009-06-02 14:59 10,752 a------- c:\windows\system32\aamd532.dll
2009-06-02 14:59 140,288 a------- c:\windows\system32\COMDLG32.OCX
2009-06-02 14:59 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Viewpoint
2009-06-02 14:59 <DIR> --d----- c:\program files\Viewpoint
2009-06-02 14:59 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Pure Networks
2009-06-02 14:58 <DIR> --d----- c:\program files\Pure Networks
2009-06-02 14:57 1,168 a---h--- C:\IPH.PH
2009-06-02 14:57 <DIR> --d----- c:\program files\common files\AOL
2009-06-02 14:57 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Napster
2009-06-02 14:57 <DIR> --d----- c:\program files\Napster
2009-06-02 14:56 <DIR> --d----- c:\program files\VIA
2009-06-02 14:56 20,480 a------- c:\windows\system32\Marker32.exe
2009-06-02 14:56 49,265 a------- c:\windows\system32\jpicpl32.cpl
2009-06-02 14:55 2,238 a------- c:\windows\system32\32-aol.ico
2009-06-02 14:55 1,406 a------- c:\windows\system32\16-aol.ico
2009-06-02 14:55 471,300 a------- c:\windows\wallpe.exe
2009-06-02 14:55 30,056 a------- c:\windows\system32\oemlogo.bmp
2009-06-02 14:53 376 a------- c:\windows\ODBC.INI
2009-06-02 14:53 24,816 a------- c:\windows\system32\mdimon.dll
2009-06-02 14:52 <DIR> --d----- c:\program files\Microsoft ActiveSync
2009-06-02 14:52 <DIR> --d----- c:\windows\SHELLNEW
2009-06-02 14:51 65,280 a------- c:\windows\system32\drivers\Rtlnic51.sys
2009-06-02 14:45 3,126 a------- c:\windows\emachines_32.bmp
2009-06-02 14:45 18,000 a------- c:\windows\BigFixClientOverride.dll
2009-06-02 14:45 <DIR> --d----- c:\program files\BigFix
2009-06-02 14:45 <DIR> --d----- c:\program files\common files\Symantec Shared
2009-06-02 14:45 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Symantec
2009-06-02 14:42 <DIR> --d----- c:\program files\Digital Media Reader
2009-06-02 14:39 27,904 a------- c:\windows\system32\drivers\VIAAGP1.SYS
2009-06-02 14:38 <DIR> --d----- c:\windows\system32\ReinstallBackups
2009-06-02 14:34 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Prism Deploy
2009-06-02 14:34 <DIR> --d----- c:\program files\common files\New Boundary
2009-06-02 14:31 <DIR> --d----- c:\windows\system32\URTTemp
2009-06-02 14:31 2 ---shr-- C:\USER
2009-06-02 14:31 21,504 a------- c:\windows\system32\hidserv.dll
2009-06-02 14:31 14,592 a------- c:\windows\system32\drivers\kbdhid.sys
2009-06-02 14:31 12,160 a------- c:\windows\system32\drivers\mouhid.sys
2009-06-02 14:30 10,368 a------- c:\windows\system32\drivers\hidusb.sys
2009-06-02 14:30 32,128 a------- c:\windows\system32\drivers\usbccgp.sys
2009-06-02 14:30 <DIR> --d----- c:\program files\CONEXANT
2009-06-02 14:30 46,464 a------- c:\windows\system32\drivers\gagp30kx.sys
2009-06-02 14:29 20,992 a------- c:\windows\system32\drivers\RTL8139.sys
2009-06-02 14:29 30,208 a------- c:\windows\system32\drivers\usbehci.sys
2009-06-02 14:29 7,168 a------- c:\windows\system32\hccoin.dll
2009-06-02 14:25 60 a------- c:\windows\system32\SYSDRV.DAT
2009-06-02 14:25 <DIR> --d----- c:\windows\creator
2009-06-02 14:23 1,041,536 a------- c:\windows\system32\drivers\HSF_DP.sys
2009-06-02 14:23 685,056 a------- c:\windows\system32\drivers\HSF_CNXT.sys
2009-06-02 14:23 220,032 a------- c:\windows\system32\drivers\HSFHWBS2.sys
2009-06-02 14:23 129,045 a------- c:\windows\system32\drivers\HSFProf.cty
2009-06-02 14:23 86,016 a------- c:\windows\system32\mdmxsdk.dll
2009-06-02 14:23 39,018 a------- c:\windows\system32\HSFCI011.dll
2009-06-02 14:23 13,059 a------- c:\windows\system32\drivers\mdmxsdk.sys
2009-06-02 14:23 <DIR> --d----- c:\windows\SMINST
2009-06-02 14:23 <DIR> --d----- c:\windows\I386
2009-06-02 14:23 483,840 a------- c:\windows\system32\wzcsvc.dll
2009-06-02 14:23 52,736 a------- c:\windows\system32\wzcsapi.dll
2009-06-02 14:23 13,824 a------- c:\windows\system32\wowfaxui.dll
2009-06-02 14:21 77,890 a------- c:\windows\system32\usrdpa.dll
2009-06-02 14:20 294,912 a------- c:\windows\system32\msh263.drv
2009-06-02 14:19 60,800 a------- c:\windows\system32\drivers\arp1394.sys
2009-06-02 14:19 37,760 a------- c:\windows\system32\drivers\amdk7.sys
2009-06-02 14:19 18,688 a------- c:\windows\system32\drivers\cdaudio.sys
2009-06-02 14:19 3,072 a------- c:\windows\system32\drivers\audstub.sys
2009-06-02 14:19 42,240 a------- c:\windows\system32\drivers\viaagp.sys
2009-06-02 14:19 40,960 a------- c:\windows\system32\drivers\sisagp.sys
2009-06-02 14:19 37,376 a------- c:\windows\system32\drivers\amdk6.sys
2009-06-02 14:19 44,928 a------- c:\windows\system32\drivers\agpcpq.sys
2009-06-02 14:19 43,008 a------- c:\windows\system32\drivers\amdagp.sys
2009-06-02 14:19 42,752 a------- c:\windows\system32\drivers\alim1541.sys
2009-06-02 14:19 52,224 a------- c:\windows\system32\dmutil.dll
2009-06-02 14:19 42,368 a------- c:\windows\system32\drivers\agp440.sys
2009-06-02 14:18 47,104 a------- c:\windows\system32\cnbjmon.dll

==================== Find3M ====================

2009-06-16 10:26 218,112 a------- C:\HijackThis.exe
2009-06-09 15:42 572,416 a------- C:\chess2pgn.exe
2009-06-06 21:32 405,504 a------- C:\asfbinapp.exe
2009-06-04 18:59 76,487 a------- c:\windows\pchealth\helpctr\offlinecache\index.dat
2009-06-04 12:41 143,360 a------- C:\Resistor Colour Code Solver.exe
2009-06-04 12:41 40,960 a------- C:\Colour Customizer.exe
2009-05-12 22:15 915,456 a------- c:\windows\system32\wininet.dll
2009-05-07 08:32 345,600 a------- c:\windows\system32\localspl.dll
2009-05-04 15:03 59,904 a------- c:\windows\system32\zlib1.dll
2009-05-04 14:53 286,720 a------- c:\windows\system32\libcurl.dll
2009-05-04 14:53 1,028,096 a------- c:\windows\system32\libeay32.dll
2009-05-04 14:53 196,608 a------- c:\windows\system32\ssleay32.dll
2009-05-04 14:53 143,360 a------- c:\windows\system32\libexpatw.dll
2009-05-01 14:03 129,784 -------- c:\windows\system32\pxafs.dll
2009-05-01 14:03 120,056 -------- c:\windows\system32\pxcpyi64.exe
2009-05-01 14:03 118,520 -------- c:\windows\system32\pxinsi64.exe
2009-05-01 14:03 43,528 -------- c:\windows\system32\drivers\PxHelp20.sys
2009-05-01 14:03 9,464 -------- c:\windows\system32\drivers\cdralw2k.sys
2009-05-01 14:03 9,336 -------- c:\windows\system32\drivers\cdr4_xp.sys
2009-05-01 14:02 90,112 a------- c:\windows\system32\dpl100.dll
2009-05-01 14:02 823,296 a------- c:\windows\system32\divx_xx0c.dll
2009-05-01 14:02 823,296 a------- c:\windows\system32\divx_xx07.dll
2009-05-01 14:02 815,104 a------- c:\windows\system32\divx_xx0a.dll
2009-05-01 14:02 811,008 a------- c:\windows\system32\divx_xx16.dll
2009-05-01 14:02 802,816 a------- c:\windows\system32\divx_xx11.dll
2009-05-01 14:02 685,056 a------- c:\windows\system32\DivX.dll
2009-04-17 05:26 1,847,168 a------- c:\windows\system32\win32k.sys
2009-04-15 07:51 585,216 a------- c:\windows\system32\rpcrt4.dll

============= FINISH: 22:27:42.02 ===============
rogimor is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
Old 06-17-2009, 12:44 AM   #4 (permalink)
Registered User
 
Join Date: May 2009
Posts: 30
OS: windows xp


Re: virus, trojan, malware I have not idea what I have

here are the attatchments
Attached Files
File Type: txt ark.txt (5.7 KB, 0 views)
File Type: txt Attach.txt (8.0 KB, 0 views)
rogimor is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Reply With Quote
Reply


Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off




All times are GMT -7. The time now is 06:42 AM.



Copyright 2001 - 2009, Tech Support Forum
Home Tips Plus | Outdoor Basecamp | Automotive Support Forum

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85