![]() |
![]() |
![]() |
|||||
![]() |
![]() |
![]() |
![]() |
![]() |
|||
| Welcome
to Tech Support Forum home to more then 136,000 problems solved. Issues
have included: Spyware, Malware, Virus Issues, Windows, Microsoft,
Linux, Networking, Security, Hardware, and Gaming Getting your
problem solved is as easy as: 1. Registering for a free account 2. Asking your question 3. Receiving an answer Registered members: * See fewer ads. * And much more..
|
| Want to know how to post a question? click here | Having problems with spyware and pop-ups? First Steps |
|
|||||||
| Virus/Trojan/Spyware Help Get Rid Of Malware With Help From Our Analysts. Follow the "First Steps" link at the top right of each page before posting for help. |
![]() |
|
|
LinkBack | Thread Tools |
|
|
#1 (permalink) |
|
Registered User
Join Date: May 2009
Posts: 30
OS: windows xp
|
virus, trojan, malware I have not idea what I have
Hi, I resently post a topic and it was close. You suggested me to open a new topic. I have window xp SP3 and the pc has some wierd behavior. mouse suddenly stops, browser takes too long , some websites get ridirected or sometimes just stops or stalls. Here are the logs you ask for.
DDS (Ver_09-05-14.01) - NTFSx86 Run by Owner at 22:25:52.86 on Tue 06/16/2009 Internet Explorer: 8.0.6001.18702 Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.446.165 [GMT -7:00] AV: McAfee VirusScan *On-access scanning enabled* (Updated) {84B5EE75-6421-4CDE-A33A-DD43BA9FAD83} FW: McAfee Personal Firewall *enabled* {94894B63-8C7F-4050-BDA4-813CA00DA3E8} ============== Running Processes =============== C:\WINDOWS\system32\svchost -k DcomLaunch svchost.exe C:\WINDOWS\System32\svchost.exe -k netsvcs svchost.exe svchost.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\VTtrayp.exe C:\WINDOWS\system32\VTTimer.exe C:\Program Files\Digital Media Reader\shwiconem.exe C:\WINDOWS\SOUNDMAN.EXE C:\Program Files\McAfee.com\Agent\mcagent.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\Program Files\Veoh Networks\VeohWebPlayer\veohwebplayer.exe C:\WINDOWS\system32\ctfmon.exe svchost.exe C:\Program Files\McAfee\SiteAdvisor\McSACore.exe C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe C:\Program Files\McAfee\MPF\MPFSrv.exe C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe C:\Documents and Settings\Owner\Desktop\dds.scr ============== Pseudo HJT Report =============== uSearch Bar = hxxp://www.google.com/ie uStart Page = hxxp://www.emachines.com/ mSearchAssistant = hxxp://www.google.com/ie BHO: &Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - c:\progra~1\yahoo!\companion\installs\cpn\yt.dll BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\progra~1\spybot~1\SDHelper.dll BHO: scriptproxy: {7db2d5a0-7241-4e79-b68d-6309f01c5231} - c:\program files\mcafee\virusscan\scriptsn.dll BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar.dll BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.1.1309.3572\swg.dll BHO: McAfee SiteAdvisor BHO: {b164e929-a1b6-4a06-b104-2cd0e90a88ff} - c:\progra~1\mcafee\sitead~1\mcieplg.dll BHO: Google Dictionary Compression sdch: {c84d72fe-e17d-4195-bb24-76c02e2e7c4e} - c:\program files\google\google toolbar\component\fastsearch_A8904FB862BD9564.dll BHO: SingleInstance Class: {fdad4da1-61a2-4fd8-9c17-86f7ac245081} - c:\progra~1\yahoo!\companion\installs\cpn\YTSingleInstance.dll TB: McAfee SiteAdvisor Toolbar: {0ebbbe48-bad4-4b4c-8e5a-516abecae064} - c:\progra~1\mcafee\sitead~1\mcieplg.dll TB: Veoh Web Player Video Finder: {0fbb9689-d3d7-4f7a-a2e2-585b10099bfc} - c:\program files\veoh networks\veohwebplayer\VeohIEToolbar.dll TB: Veoh Video Compass: {52836eb0-631a-47b1-94a6-61f9d9112dae} - c:\program files\veoh networks\veoh video compass\SearchRecsPlugin.dll TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar.dll TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\progra~1\yahoo!\companion\installs\cpn\yt.dll TB: {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - No File TB: {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - No File TB: {4982D40A-C53B-4615-B15B-B5B5E98D167C} - No File EB: Real.com: {fe54fa40-d68c-11d2-98fa-00c0f0318afe} - c:\windows\system32\Shdocvw.dll uRun: [SpybotSD TeaTimer] c:\program files\spybot - search & destroy\TeaTimer.exe uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background uRun: [fsm] uRun: [swg] c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe uRun: [VeohPlugin] "c:\program files\veoh networks\veohwebplayer\veohwebplayer.exe" uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe mRun: [VTTrayp] VTtrayp.exe mRun: [VTTimer] VTTimer.exe mRun: [SunKistEM] c:\program files\digital media reader\shwiconem.exe mRun: [SoundMan] SOUNDMAN.EXE mRun: [Reminder] %WINDIR%\Creator\Remind_XP.exe mRun: [Recguard] %WINDIR%\SMINST\RECGUARD.EXE mRun: [McENUI] c:\progra~1\mcafee\mhn\McENUI.exe /hide mRun: [mcagent_exe] "c:\program files\mcafee.com\agent\mcagent.exe" /runkey mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe" mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime mRun: [Google Quick Search Box] "c:\program files\google\quick search box\GoogleQuickSearchBox.exe" /autorun IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office12\REFIEBAR.DLL IE: {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - {FE54FA40-D68C-11d2-98FA-00C0F0318AFE} - c:\windows\system32\Shdocvw.dll IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\progra~1\spybot~1\SDHelper.dll DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://go.microsoft.com/fwlink/?linkid=39204 DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - c:\program files\yahoo!\common\Yinsthelper.dll DPF: {31435657-9980-0010-8000-00AA00389B71} - hxxp://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab DPF: {49232000-16E4-426C-A231-62846947304B} - hxxps://wimpro.cce.hp.com/ChatEntry/downloads/sysinfo.cab DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - hxxp://go.divx.com/plugin/DivXBrowserPlugin.cab DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} - hxxps://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} - hxxp://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection2.cab DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_02-windows-i586.cab DPF: {A9F8D9EC-3D0A-4A60-BD82-FBD64BAD370D} - hxxp://h20264.www2.hp.com/ediags/dd/install/HPDriverDiagnosticsxp2k.cab DPF: {CAFEEFAC-0015-0000-0002-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_02-windows-i586.cab DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - c:\program files\google\google toolbar\component\fastsearch_A8904FB862BD9564.dll Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~1\mcafee\sitead~1\McIEPlg.dll SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll ================= FIREFOX =================== FF - ProfilePath - c:\docume~1\owner\applic~1\mozilla\firefox\profiles\y8u3s51i.default\ FF - component: c:\program files\mcafee\siteadvisor\components\McFFPlg.dll FF - plugin: c:\documents and settings\owner\application data\mozilla\firefox\profiles\y8u3s51i.default\extensions\firefox@tvunetworks.com\plugins\npTVUAx.dll FF - plugin: c:\program files\java\jre1.5.0_02\bin\NPJava11.dll FF - plugin: c:\program files\java\jre1.5.0_02\bin\NPJava12.dll FF - plugin: c:\program files\java\jre1.5.0_02\bin\NPJava13.dll FF - plugin: c:\program files\java\jre1.5.0_02\bin\NPJava14.dll FF - plugin: c:\program files\java\jre1.5.0_02\bin\NPJava32.dll FF - plugin: c:\program files\java\jre1.5.0_02\bin\NPJPI150_02.dll FF - plugin: c:\program files\java\jre1.5.0_02\bin\NPOJI610.dll FF - plugin: c:\program files\veetle\player\npvlc.dll FF - plugin: c:\program files\veetle\plugins\npVeetle.dll FF - plugin: c:\program files\veoh networks\veohwebplayer\NPVeohTVPlugin.dll FF - plugin: c:\program files\veoh networks\veohwebplayer\npWebPlayerVideoPluginATL.dll FF - plugin: c:\program files\viewpoint\viewpoint experience technology\npViewpoint.dll ============= SERVICES / DRIVERS =============== |
|
|
|
| Important Information |
|
Join the #1 Tech Support Forum Today - It's Totally Free!
TechSupportForum.com is a leading support website for your computer needs. We offer free, friendly and personalized computer support. Why pay to have your computer fixed when you can do it for free. Join TechSupportforum.com Today - Click Here |
|
|
#2 (permalink) |
|
Registered User
Join Date: May 2009
Posts: 30
OS: windows xp
|
Re: virus, trojan, malware I have not idea what I have
R1 mfehidk;McAfee Inc. mfehidk;c:\windows\system32\drivers\mfehidk.sys [2009-3-25 214024]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\program files\mcafee\siteadvisor\McSACore.exe [2009-6-2 203280] R2 McProxy;McAfee Proxy Service;c:\progra~1\common~1\mcafee\mcproxy\mcproxy.exe [2009-6-2 359952] R2 McShield;McAfee Real-time Scanner;c:\progra~1\mcafee\viruss~1\mcshield.exe [2009-6-2 144704] R3 McSysmon;McAfee SystemGuards;c:\progra~1\mcafee\viruss~1\mcsysmon.exe [2009-6-2 606736] R3 mfeavfk;McAfee Inc. mfeavfk;c:\windows\system32\drivers\mfeavfk.sys [2009-6-2 79880] R3 mfebopk;McAfee Inc. mfebopk;c:\windows\system32\drivers\mfebopk.sys [2009-6-2 35272] R3 mfesmfk;McAfee Inc. mfesmfk;c:\windows\system32\drivers\mfesmfk.sys [2009-6-2 40552] S3 mferkdk;McAfee Inc. mferkdk;c:\windows\system32\drivers\mferkdk.sys [2009-6-2 34216] =============== Created Last 30 ================ 2009-06-16 18:43 <DIR> --d----- C:\backups 2009-06-16 10:25 212,849 a------- C:\hijackthis.zip 2009-06-15 20:55 <DIR> --d----- C:\VIRUS TREATMENT PROG 2009-06-13 17:16 7,545,512 a------- C:\Firefox Setup 3.0.11.exe 2009-06-12 20:13 <DIR> --d----- C:\V2DTMEP 2009-06-11 18:05 438,592 a------- C:\msgr9us.exe 2009-06-10 22:41 <DIR> --d----- c:\docume~1\owner\applic~1\Movienizer 2009-06-10 20:37 <DIR> --d----- c:\documents and settings\owner\MALWAREBYTES SCANS 2009-06-10 15:45 <DIR> --d----- c:\docume~1\owner\applic~1\ppStream 2009-06-10 15:45 543 a------- c:\windows\psnetwork.ini 2009-06-10 08:37 <DIR> --d----- c:\documents and settings\owner\ISO DVD 2009-06-09 23:23 1,886,384 a------- C:\GoogleToolbarInstaller_en_signed.exe 2009-06-09 23:21 <DIR> --dsh--- c:\documents and settings\owner\IECompatCache 2009-06-09 23:17 <DIR> --dsh--- c:\documents and settings\owner\PrivacIE 2009-06-09 23:13 <DIR> --dsh--- c:\documents and settings\owner\IETldCache 2009-06-09 23:10 <DIR> --d----- c:\windows\ie8updates 2009-06-09 23:07 <DIR> -cd-h--- c:\windows\ie8 2009-06-09 23:00 246,272 -c------ c:\windows\system32\dllcache\ieproxy.dll 2009-06-09 23:00 12,800 -c------ c:\windows\system32\dllcache\xpshims.dll 2009-06-09 23:00 1,985,024 -c------ c:\windows\system32\dllcache\iertutil.dll 2009-06-09 23:00 11,064,832 -c------ c:\windows\system32\dllcache\ieframe.dll 2009-06-09 22:59 102,912 -c------ c:\windows\system32\dllcache\iecompat.dll 2009-06-09 22:55 16,883,056 a------- C:\IE8-WindowsXP-x86-ENU.exe 2009-06-09 16:32 <DIR> --d----- c:\program files\WinBoard-4.2.7 2009-06-09 12:29 25,032,729 a------- C:\avitodvd.exe 2009-06-09 12:29 765,952 a------- c:\windows\system32\xvidcore.dll 2009-06-09 12:29 77,824 a------- c:\windows\system32\xvid.ax 2009-06-09 12:29 180,224 a------- c:\windows\system32\xvidvfw.dll 2009-06-09 12:29 <DIR> --d----- c:\program files\Xvid 2009-06-09 08:03 <DIR> --d----- c:\program files\Yahoo! 2009-06-08 11:46 <DIR> --d----- c:\program files\SopCast 2009-06-08 11:05 <DIR> --d----- c:\docume~1\owner\applic~1\SopCast 2009-06-07 19:50 <DIR> --d----- c:\docume~1\owner\applic~1\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1 2009-06-07 19:32 547 a------- c:\windows\system32\ff_vfw.dll.manifest 2009-06-07 19:31 84,480 a------- c:\windows\system32\ff_vfw.dll 2009-06-07 19:31 60,273 a------- c:\windows\system32\pthreadGC2.dll 2009-06-07 19:31 <DIR> --d----- c:\program files\ffdshow 2009-06-07 18:47 <DIR> --d----- c:\docume~1\owner\applic~1\DVD Flick 2009-06-07 18:46 40,960 a------- c:\windows\system32\ssubtmr6.dll 2009-06-07 18:46 164,144 a------- c:\windows\system32\comct232.ocx 2009-06-07 18:46 36,864 a------- c:\windows\system32\trayicon_handler.ocx 2009-06-07 18:46 28,672 a------- c:\windows\system32\mousewheel.ocx 2009-06-07 18:46 662,288 a------- c:\windows\system32\mscomct2.ocx 2009-06-07 18:46 212,240 a------- c:\windows\system32\richtx32.ocx 2009-06-07 18:46 <DIR> --d----- c:\program files\DVD Flick 2009-06-07 18:38 <DIR> --d----- c:\docume~1\owner\applic~1\Software Informer 2009-06-07 18:38 <DIR> --d----- c:\program files\Software Informer 2009-06-07 18:36 730,146 a------- C:\siinst.exe 2009-06-07 18:34 12,808,339 a------- C:\dvdflick_setup_1.3.0.6.exe 2009-06-07 16:39 <DIR> --d----- c:\windows\system32\windows media 2009-06-07 16:38 <DIR> --d-h--- c:\windows\msdownld.tmp 2009-06-07 16:38 <DIR> --d----- c:\program files\Windows Media Components 2009-06-07 16:37 9,918,872 a------- C:\WMEncoder.exe 2009-06-07 11:53 <DIR> --d----- C:\HP DRIVER UPDATE 2009-06-06 22:14 43,083,040 a------- C:\AdbeRdr910_en_US_Std.exe 2009-06-06 21:39 256 a------- c:\windows\asfbinapp.INI 2009-06-06 20:39 90,112 a------- c:\windows\system32\videoul.tmp 2009-06-06 20:19 <DIR> --d----- c:\program files\Windows Media Connect 2 2009-06-06 20:17 <DIR> --d----- c:\windows\system32\LogFiles 2009-06-06 16:47 <DIR> --d----- c:\program files\Veetle 2009-06-06 16:27 <DIR> --d----- c:\docume~1\alluse~1\applic~1\TVU Networks 2009-06-06 16:26 <DIR> --d----- c:\program files\TVUPlayer 2009-06-06 15:42 <DIR> --d----- C:\ppmaterecord 2009-06-06 15:36 <DIR> --d----- c:\documents and settings\owner\LocalLow 2009-06-06 13:12 <DIR> --d----- c:\program files\URUSoft 2009-06-06 13:07 <DIR> --d----- C:\MY TEMPS TO EARASE 2009-06-06 13:04 <DIR> --d----- C:\ZIP DOWNLOAD FOLDERS 2009-06-05 23:15 54,156 a---h--- c:\windows\QTFont.qfn 2009-06-05 23:15 1,409 a------- c:\windows\QTFont.for 2009-06-05 22:44 21,128,536 a------- C:\DivXInstaller.exe 2009-06-05 19:11 7,526,856 a------- C:\Firefox Setup 3.0.10.exe 2009-06-05 07:33 <DIR> --d----- c:\program files\common files\DivX Shared 2009-06-05 07:33 <DIR> --d----- c:\program files\DivX 2009-06-04 23:55 <DIR> --d----- c:\program files\Veoh Networks 2009-06-04 23:50 10,216,240 a------- C:\VeohVideoCompassSetup_eng.exe 2009-06-04 18:56 <DIR> --d----- c:\windows\system32\scripting 2009-06-04 18:56 <DIR> --d----- c:\windows\l2schemas 2009-06-04 18:56 <DIR> --d----- c:\windows\system32\en 2009-06-04 18:56 <DIR> --d----- c:\windows\system32\bits 2009-06-04 18:53 <DIR> --d----- c:\windows\ServicePackFiles 2009-06-04 18:50 <DIR> --d----- c:\windows\network diagnostic 2009-06-04 18:43 <DIR> --d----- c:\windows\EHome 2009-06-04 15:17 <DIR> --d----- C:\Downloads 2009-06-04 13:17 4,145,935 a------- C:\veetle-0.9.14.exe 2009-06-04 13:14 <DIR> --d----- c:\program files\TVAnts 2009-06-04 12:35 <DIR> --d----- c:\program files\Resistor Color Coder 2009-06-04 09:55 <DIR> --d----- c:\docume~1\owner\applic~1\GetRightToGo 2009-06-04 00:43 79,235 -------- c:\windows\hpfins05.dat.temp 2009-06-04 00:43 1,350 -------- c:\windows\hpfmdl05.dat.temp 2009-06-03 22:29 <DIR> --d----- c:\windows\pss 2009-06-03 21:47 <DIR> --d----- c:\program files\common files\Motive 2009-06-03 18:22 37,376 a------- c:\windows\system32\hpz3l3xu.dll 2009-06-03 17:32 291,328 -------- c:\windows\system32\qagentrt.dll 2009-06-03 17:31 61,440 -------- c:\windows\system32\kmsvc.dll 2009-06-03 17:30 136,192 -------- c:\windows\system32\aaclient.dll 2009-06-03 17:12 372,736 a------- c:\windows\system32\hpzidi01.dll 2009-06-03 17:12 77,824 a------- c:\windows\system32\hpzids01.dll 2009-06-03 16:51 <DIR> --d----- c:\program files\Hp 2009-06-02 23:38 <DIR> --d----- c:\docume~1\owner\applic~1\BitTorrent 2009-06-02 23:38 <DIR> --d----- c:\program files\DNA 2009-06-02 23:38 <DIR> --d----- c:\docume~1\owner\applic~1\DNA 2009-06-02 23:37 <DIR> --d----- c:\program files\BitTorrent 2009-06-02 23:30 1,739,664 a------- C:\BitTorrent-6.1.2.exe 2009-06-02 22:42 <DIR> --d----- c:\program files\Chess Position Trainer 3.3 2009-06-02 22:41 <DIR> --d----- C:\CPT_Setup_3_3_English 2009-06-02 22:32 <DIR> --d----- c:\program files\VideoLAN 2009-06-02 22:27 16,320,472 a------- C:\vlc-0.8.4a-win32.exe 2009-06-02 21:50 <DIR> --d----- c:\program files\LIVE TV 2009-06-02 21:46 380,725 a------- C:\LIVE TV Setup.exe 2009-06-02 20:41 3,006,976 a------- C:\TvantsSetup.exe 2009-06-02 20:23 146,126 a------- c:\windows\system32\array30.tab 2009-06-02 20:22 189,986 ac------ c:\windows\system32\dllcache\c_1361.nls 2009-06-02 20:21 480,256 ac------ c:\windows\system32\dllcache\cintsetp.exe 2009-06-02 20:19 <DIR> --d----- c:\docume~1\owner\applic~1\PPMate 2009-06-02 20:19 <DIR> --d----- c:\program files\common files\Synacast 2009-06-02 20:18 <DIR> --d----- c:\program files\PPMate 2009-06-02 19:32 <DIR> --d----- c:\program files\AviSynth 2.5 2009-06-02 19:29 <DIR> --d----- c:\program files\Avi2Dvd 2009-06-02 19:17 643,144 a------- C:\xvid_codec.exe 2009-06-02 19:13 <DIR> --d----- c:\program files\CCleaner 2009-06-02 19:01 3,247,736 a------- C:\ccsetup220.exe 2009-06-02 18:57 <DIR> --d----- c:\program files\DVD Shrink 2009-06-02 18:57 <DIR> --d----- C:\dvdshrink32setup1 2009-06-02 18:52 <DIR> --d----- c:\program files\DesktopEarth 2009-06-02 18:42 <DIR> --d----- c:\program files\DVD Decrypter 2009-06-02 18:41 899,414 a------- C:\SetupDVDDecrypter_3.5.4.0.exe 2009-06-02 18:28 15,443 a------- c:\windows\system32\Config.MPF 2009-06-02 18:23 79,880 a------- c:\windows\system32\drivers\mfeavfk.sys 2009-06-02 18:23 40,552 a------- c:\windows\system32\drivers\mfesmfk.sys 2009-06-02 18:23 35,272 a------- c:\windows\system32\drivers\mfebopk.sys 2009-06-02 18:23 120,136 a------- c:\windows\system32\drivers\Mpfp.sys 2009-06-02 18:15 34,216 a------- c:\windows\system32\drivers\mferkdk.sys 2009-06-02 17:58 <DIR> --dsh--- c:\documents and settings\owner\UserData 2009-06-02 17:01 <DIR> --d----- c:\program files\MSXML 4.0 2009-06-02 16:52 <DIR> --d----- c:\program files\Spybot - Search & Destroy 2009-06-02 16:52 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Spybot - Search & Destroy 2009-06-02 16:38 <DIR> --d----- c:\docume~1\owner\applic~1\Malwarebytes 2009-06-02 16:38 40,160 a------- c:\windows\system32\drivers\mbamswissarmy.sys 2009-06-02 16:38 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Malwarebytes 2009-06-02 16:38 19,096 a------- c:\windows\system32\drivers\mbam.sys 2009-06-02 16:38 <DIR> --d----- c:\program files\Malwarebytes' Anti-Malware 2009-06-02 16:34 455,296 -c------ c:\windows\system32\dllcache\mrxsmb.sys 2009-06-02 16:33 272,128 -c------ c:\windows\system32\dllcache\bthport.sys 2009-06-02 16:33 272,128 -------- c:\windows\system32\drivers\bthport.sys 2009-06-02 16:18 729,088 -c------ c:\windows\system32\dllcache\lsasrv.dll 2009-06-02 16:18 617,472 -c------ c:\windows\system32\dllcache\advapi32.dll 2009-06-02 16:18 473,600 -c------ c:\windows\system32\dllcache\fastprox.dll 2009-06-02 16:18 453,120 -c------ c:\windows\system32\dllcache\wmiprvsd.dll 2009-06-02 16:18 401,408 -c------ c:\windows\system32\dllcache\rpcss.dll 2009-06-02 16:18 284,160 -c------ c:\windows\system32\dllcache\pdh.dll 2009-06-02 16:18 227,840 -c------ c:\windows\system32\dllcache\wmiprvse.exe 2009-06-02 16:18 110,592 -c------ c:\windows\system32\dllcache\services.exe 2009-06-02 16:18 2,145,280 -c------ c:\windows\system32\dllcache\ntkrnlmp.exe 2009-06-02 16:18 714,752 -c------ c:\windows\system32\dllcache\ntdll.dll 2009-06-02 16:18 2,189,056 -c------ c:\windows\system32\dllcache\ntoskrnl.exe 2009-06-02 16:18 2,023,936 -c------ c:\windows\system32\dllcache\ntkrpamp.exe 2009-06-02 16:17 25,856 a------- c:\windows\system32\drivers\usbprint.sys 2009-06-02 16:12 203,136 -c------ c:\windows\system32\dllcache\rmcast.sys 2009-06-02 16:11 333,952 -c------ c:\windows\system32\dllcache\srv.sys 2009-06-02 16:10 691,712 -c------ c:\windows\system32\dllcache\inetcomm.dll 2009-06-02 16:00 2 a------- c:\windows\msoffice.ini 2009-06-02 16:00 337,408 -c------ c:\windows\system32\dllcache\netapi32.dll 2009-06-02 15:58 215,552 -c------ c:\windows\system32\dllcache\wordpad.exe 2009-06-02 15:58 2,560 -------- c:\windows\system32\xpsp4res.dll 2009-06-02 15:45 <DIR> --d----- c:\windows\system32\PreInstall 2009-06-02 15:25 <DIR> --d----- c:\windows\system32\SoftwareDistribution 2009-06-02 15:17 8,192 a------- c:\windows\REGLOCS.OLD 2009-06-02 15:15 0 a------- c:\windows\system32\Gateway_T3302__CK859D0000785.MRK 2009-06-02 15:15 333 a------- c:\windows\system32\$ncsp$.inf 2009-06-02 15:13 <DIR> --d----- c:\docume~1\owner\applic~1\AOL 2009-06-02 15:06 26,144 a------- c:\windows\system32\spupdsvc.exe 2009-06-02 15:05 <DIR> --d-h--- c:\windows\$hf_mig$ 2009-06-02 15:04 <DIR> --d----- c:\program files\McAfee 2009-06-02 15:04 <DIR> --d----- c:\program files\common files\McAfee 2009-06-02 15:04 <DIR> --d----- c:\docume~1\owner\applic~1\McAfee 2009-06-02 15:04 <DIR> --d----- c:\docume~1\alluse~1\applic~1\McAfee.com 2009-06-02 15:04 279,624 a------- c:\windows\system32\mcgdmgr.dll 2009-06-02 15:04 341,064 a------- c:\windows\system32\mcinsctl.dll 2009-06-02 15:04 <DIR> --d----- c:\program files\McAfee.com 2009-06-02 15:04 221,184 a------- c:\windows\system32\wmpns.dll 2009-06-02 15:03 <DIR> --d----- c:\windows\RegisteredPackages 2009-06-02 15:02 <DIR> --d----- c:\program files\Realtek Sound Manager 2009-06-02 15:02 <DIR> --d----- c:\program files\AvRack 2009-06-02 15:01 <DIR> --d----- c:\program files\MSN Encarta Plus 2009-06-02 15:00 <DIR> --d----- c:\program files\Microsoft Money 2005 2009-06-02 14:59 <DIR> --d----- c:\docume~1\owner\applic~1\You've Got Pictures Screensaver 2009-06-02 14:59 <DIR> --d----- c:\program files\common files\Nullsoft 2009-06-02 14:59 86,016 a------- c:\windows\unvise32qt.exe 2009-06-02 14:59 <DIR> --d----- c:\windows\system32\QuickTime 2009-06-02 14:59 8,552 a------- c:\windows\system32\drivers\asctrm.sys 2009-06-02 14:59 <DIR> --d----- C:\My Music |
|
|
|
|
|
#3 (permalink) |
|
Registered User
Join Date: May 2009
Posts: 30
OS: windows xp
|
Re: virus, trojan, malware I have not idea what I have
2009-06-02 14:59 24,576 a------- c:\windows\system32\prefscpl.cpl
2009-06-02 14:59 <DIR> --d----- c:\program files\common files\Real 2009-06-02 14:59 102,400 a------- c:\windows\system32\SimpleRegistry.dll 2009-06-02 14:59 10,752 a------- c:\windows\system32\aamd532.dll 2009-06-02 14:59 140,288 a------- c:\windows\system32\COMDLG32.OCX 2009-06-02 14:59 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Viewpoint 2009-06-02 14:59 <DIR> --d----- c:\program files\Viewpoint 2009-06-02 14:59 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Pure Networks 2009-06-02 14:58 <DIR> --d----- c:\program files\Pure Networks 2009-06-02 14:57 1,168 a---h--- C:\IPH.PH 2009-06-02 14:57 <DIR> --d----- c:\program files\common files\AOL 2009-06-02 14:57 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Napster 2009-06-02 14:57 <DIR> --d----- c:\program files\Napster 2009-06-02 14:56 <DIR> --d----- c:\program files\VIA 2009-06-02 14:56 20,480 a------- c:\windows\system32\Marker32.exe 2009-06-02 14:56 49,265 a------- c:\windows\system32\jpicpl32.cpl 2009-06-02 14:55 2,238 a------- c:\windows\system32\32-aol.ico 2009-06-02 14:55 1,406 a------- c:\windows\system32\16-aol.ico 2009-06-02 14:55 471,300 a------- c:\windows\wallpe.exe 2009-06-02 14:55 30,056 a------- c:\windows\system32\oemlogo.bmp 2009-06-02 14:53 376 a------- c:\windows\ODBC.INI 2009-06-02 14:53 24,816 a------- c:\windows\system32\mdimon.dll 2009-06-02 14:52 <DIR> --d----- c:\program files\Microsoft ActiveSync 2009-06-02 14:52 <DIR> --d----- c:\windows\SHELLNEW 2009-06-02 14:51 65,280 a------- c:\windows\system32\drivers\Rtlnic51.sys 2009-06-02 14:45 3,126 a------- c:\windows\emachines_32.bmp 2009-06-02 14:45 18,000 a------- c:\windows\BigFixClientOverride.dll 2009-06-02 14:45 <DIR> --d----- c:\program files\BigFix 2009-06-02 14:45 <DIR> --d----- c:\program files\common files\Symantec Shared 2009-06-02 14:45 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Symantec 2009-06-02 14:42 <DIR> --d----- c:\program files\Digital Media Reader 2009-06-02 14:39 27,904 a------- c:\windows\system32\drivers\VIAAGP1.SYS 2009-06-02 14:38 <DIR> --d----- c:\windows\system32\ReinstallBackups 2009-06-02 14:34 <DIR> --d----- c:\docume~1\alluse~1\applic~1\Prism Deploy 2009-06-02 14:34 <DIR> --d----- c:\program files\common files\New Boundary 2009-06-02 14:31 <DIR> --d----- c:\windows\system32\URTTemp 2009-06-02 14:31 2 ---shr-- C:\USER 2009-06-02 14:31 21,504 a------- c:\windows\system32\hidserv.dll 2009-06-02 14:31 14,592 a------- c:\windows\system32\drivers\kbdhid.sys 2009-06-02 14:31 12,160 a------- c:\windows\system32\drivers\mouhid.sys 2009-06-02 14:30 10,368 a------- c:\windows\system32\drivers\hidusb.sys 2009-06-02 14:30 32,128 a------- c:\windows\system32\drivers\usbccgp.sys 2009-06-02 14:30 <DIR> --d----- c:\program files\CONEXANT 2009-06-02 14:30 46,464 a------- c:\windows\system32\drivers\gagp30kx.sys 2009-06-02 14:29 20,992 a------- c:\windows\system32\drivers\RTL8139.sys 2009-06-02 14:29 30,208 a------- c:\windows\system32\drivers\usbehci.sys 2009-06-02 14:29 7,168 a------- c:\windows\system32\hccoin.dll 2009-06-02 14:25 60 a------- c:\windows\system32\SYSDRV.DAT 2009-06-02 14:25 <DIR> --d----- c:\windows\creator 2009-06-02 14:23 1,041,536 a------- c:\windows\system32\drivers\HSF_DP.sys 2009-06-02 14:23 685,056 a------- c:\windows\system32\drivers\HSF_CNXT.sys 2009-06-02 14:23 220,032 a------- c:\windows\system32\drivers\HSFHWBS2.sys 2009-06-02 14:23 129,045 a------- c:\windows\system32\drivers\HSFProf.cty 2009-06-02 14:23 86,016 a------- c:\windows\system32\mdmxsdk.dll 2009-06-02 14:23 39,018 a------- c:\windows\system32\HSFCI011.dll 2009-06-02 14:23 13,059 a------- c:\windows\system32\drivers\mdmxsdk.sys 2009-06-02 14:23 <DIR> --d----- c:\windows\SMINST 2009-06-02 14:23 <DIR> --d----- c:\windows\I386 2009-06-02 14:23 483,840 a------- c:\windows\system32\wzcsvc.dll 2009-06-02 14:23 52,736 a------- c:\windows\system32\wzcsapi.dll 2009-06-02 14:23 13,824 a------- c:\windows\system32\wowfaxui.dll 2009-06-02 14:21 77,890 a------- c:\windows\system32\usrdpa.dll 2009-06-02 14:20 294,912 a------- c:\windows\system32\msh263.drv 2009-06-02 14:19 60,800 a------- c:\windows\system32\drivers\arp1394.sys 2009-06-02 14:19 37,760 a------- c:\windows\system32\drivers\amdk7.sys 2009-06-02 14:19 18,688 a------- c:\windows\system32\drivers\cdaudio.sys 2009-06-02 14:19 3,072 a------- c:\windows\system32\drivers\audstub.sys 2009-06-02 14:19 42,240 a------- c:\windows\system32\drivers\viaagp.sys 2009-06-02 14:19 40,960 a------- c:\windows\system32\drivers\sisagp.sys 2009-06-02 14:19 37,376 a------- c:\windows\system32\drivers\amdk6.sys 2009-06-02 14:19 44,928 a------- c:\windows\system32\drivers\agpcpq.sys 2009-06-02 14:19 43,008 a------- c:\windows\system32\drivers\amdagp.sys 2009-06-02 14:19 42,752 a------- c:\windows\system32\drivers\alim1541.sys 2009-06-02 14:19 52,224 a------- c:\windows\system32\dmutil.dll 2009-06-02 14:19 42,368 a------- c:\windows\system32\drivers\agp440.sys 2009-06-02 14:18 47,104 a------- c:\windows\system32\cnbjmon.dll ==================== Find3M ==================== 2009-06-16 10:26 218,112 a------- C:\HijackThis.exe 2009-06-09 15:42 572,416 a------- C:\chess2pgn.exe 2009-06-06 21:32 405,504 a------- C:\asfbinapp.exe 2009-06-04 18:59 76,487 a------- c:\windows\pchealth\helpctr\offlinecache\index.dat 2009-06-04 12:41 143,360 a------- C:\Resistor Colour Code Solver.exe 2009-06-04 12:41 40,960 a------- C:\Colour Customizer.exe 2009-05-12 22:15 915,456 a------- c:\windows\system32\wininet.dll 2009-05-07 08:32 345,600 a------- c:\windows\system32\localspl.dll 2009-05-04 15:03 59,904 a------- c:\windows\system32\zlib1.dll 2009-05-04 14:53 286,720 a------- c:\windows\system32\libcurl.dll 2009-05-04 14:53 1,028,096 a------- c:\windows\system32\libeay32.dll 2009-05-04 14:53 196,608 a------- c:\windows\system32\ssleay32.dll 2009-05-04 14:53 143,360 a------- c:\windows\system32\libexpatw.dll 2009-05-01 14:03 129,784 -------- c:\windows\system32\pxafs.dll 2009-05-01 14:03 120,056 -------- c:\windows\system32\pxcpyi64.exe 2009-05-01 14:03 118,520 -------- c:\windows\system32\pxinsi64.exe 2009-05-01 14:03 43,528 -------- c:\windows\system32\drivers\PxHelp20.sys 2009-05-01 14:03 9,464 -------- c:\windows\system32\drivers\cdralw2k.sys 2009-05-01 14:03 9,336 -------- c:\windows\system32\drivers\cdr4_xp.sys 2009-05-01 14:02 90,112 a------- c:\windows\system32\dpl100.dll 2009-05-01 14:02 823,296 a------- c:\windows\system32\divx_xx0c.dll 2009-05-01 14:02 823,296 a------- c:\windows\system32\divx_xx07.dll 2009-05-01 14:02 815,104 a------- c:\windows\system32\divx_xx0a.dll 2009-05-01 14:02 811,008 a------- c:\windows\system32\divx_xx16.dll 2009-05-01 14:02 802,816 a------- c:\windows\system32\divx_xx11.dll 2009-05-01 14:02 685,056 a------- c:\windows\system32\DivX.dll 2009-04-17 05:26 1,847,168 a------- c:\windows\system32\win32k.sys 2009-04-15 07:51 585,216 a------- c:\windows\system32\rpcrt4.dll ============= FINISH: 22:27:42.02 =============== |
|
|
|
![]() |
| Thread Tools | |
|
|