![]() |
![]() |
![]() |
|||||
![]() |
![]() |
![]() |
![]() |
![]() |
|||
| Welcome
to Tech Support Forum home to more then 136,000 problems solved. Issues
have included: Spyware, Malware, Virus Issues, Windows, Microsoft,
Linux, Networking, Security, Hardware, and Gaming Getting your
problem solved is as easy as: 1. Registering for a free account 2. Asking your question 3. Receiving an answer Registered members: * See fewer ads. * And much more..
|
| Want to know how to post a question? click here | Having problems with spyware and pop-ups? First Steps |
|
|||||||
| Virus/Trojan/Spyware Help Get Rid Of Malware With Help From Our Analysts. Follow the "First Steps" link at the top right of each page before posting for help. |
![]() |
|
|
LinkBack | Thread Tools |
|
|
#1 (permalink) |
|
Registered User
Join Date: Sep 2009
Posts: 17
OS: Vista, Idk The Service Pack!
|
Keylogger Help!
Okay, The topic is I have a Keylogger and need alot of help.
I play World of Warcraft and don't feel like getting the authenticator so, I need someone to show me a FREE program which can destroy keyloggers. I need it to be FREE cause I am basically poor. So, Please if anyone can help me and wants to please do! |
|
|
|
| Important Information |
|
Join the #1 Tech Support Forum Today - It's Totally Free!
TechSupportForum.com is a leading support website for your computer needs. We offer free, friendly and personalized computer support. Why pay to have your computer fixed when you can do it for free. Join TechSupportforum.com Today - Click Here |
|
|
#2 (permalink) |
|
Registered User
Join Date: Sep 2009
Posts: 17
OS: Vista, Idk The Service Pack!
|
Re: Keylogger Help!
DDS (Ver_09-09-24.01) - NTFSx86
Run by Home at 7:45:07.51 on Fri 09/25/2009 Internet Explorer: 7.0.6001.18000 Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1252.1.1033.18.1012.249 [GMT -4:00] ============== Running Processes =============== C:\Windows\system32\wininit.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k rpcss C:\Windows\System32\svchost.exe -k secsvcs C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\SLsvc.exe C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Windows\system32\taskeng.exe C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Windows\system32\svchost.exe -k imgsvc C:\Program Files\Viewpoint\Common\ViewpointService.exe C:\Windows\System32\svchost.exe -k WerSvcGroup C:\Windows\system32\taskeng.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files\Curse\CurseClient.exe C:\Program Files\RayV\RayV\RayV.exe C:\Program Files\AIM6\aim6.exe C:\Program Files\Steam\Steam.exe C:\Program Files\McAfee Security Scan\1.0.150\SSScheduler.exe C:\Windows\system32\wuauclt.exe C:\Program Files\AIM6\aolsoftware.exe C:\Program Files\Common Files\Steam\SteamService.exe C:\Windows\ehome\ehsched.exe C:\Program Files\LimeWire\LimeWire.exe C:\Windows\system32\taskeng.exe C:\Program Files\Windows Media Player\WMPNSCFG.exe C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Windows\system32\DllHost.exe C:\Windows\system32\DllHost.exe C:\Users\Home\Downloads\dds.scr C:\Windows\system32\wbem\wmiprvse.exe ============== Pseudo HJT Report =============== uStart Page = hxxp://www.google.com/ uDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=81&bd=Presario&pf=desktop mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=81&bd=Presario&pf=desktop mDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=81&bd=Presario&pf=desktop BHO: {02478D38-C3F9-4efb-9B51-7695ECA05670} - No File BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll BHO: : {1cb20bf0-bbae-40a7-93f4-6435ff3d0411} - c:\progra~1\crawler\toolbar\ctbr.dll BHO: AskBar BHO: {201f27d4-3704-41d6-89c1-aa35e39143ed} - c:\program files\askbardis\bar\bin\askBar.dll BHO: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - No File BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre1.6.0_01\bin\ssv.dll TB: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File TB: &Crawler Toolbar: {4b3803ea-5230-4dc3-a7fc-33638f3d3542} - c:\progra~1\crawler\toolbar\ctbr.dll TB: Ask Toolbar: {3041d03e-fd4b-44e0-b742-2d9b88305f98} - c:\program files\askbardis\bar\bin\askBar.dll uRun: [CurseClient] c:\program files\curse\CurseClient.exe -silent uRun: [RayV] c:\program files\rayv\rayv\RayV.exe /background uRun: [Aim6] "c:\program files\aim6\aim6.exe" /d locale=en-US ee://aol/imApp uRun: [Steam] "c:\program files\steam\Steam.exe" -silent mRun: [<NO NAME>] mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe" dRun: [DelayShred] c:\progra~1\mcafee\mshr\shrcl.exe /p7 /q c:\users\nick\appdata\local\micros~1\windows\tempor~1\content.ie5\a0jb7y3w\adserv~2.sh! c:\users\nick\appdata\local\micros~1\windows\tempor~1\content.ie5\by27g8a1\aim_ua~1.sh! c:\users\nick\appdata\local\micros~1\windows\tempor~1\content.ie5\te8i24oa\tcodeb~1.sh! c:\users\nick\appdata\local\micros~1\windows\tempor~1\content.ie5\7kg280ur\aimrad~1.sh! c:\users\nick\appdata\local\micros~1\windows\tempor~1\content.ie5\te8i24oa\tcodew~1.sh! c:\users\nick\appdata\local\micros~1\windows\tempor~1\content.ie5\by27g8a1\siadbc~1.sh! c:\users\nick\appdata\local\micros~1\windows\tempor~1\content.ie5\te8i24oa\size_1~4.sh! c:\users\nick\appdata\local\temp\{fdbe4~1.sh! c:\users\nick\appdata\local\temp\_is6bac.sh! c:\users\nick\appdata\local\micros~1\windows\tempor~1\content.ie5\9uy88bf9\aim_ua~1.sh! c:\users\nick\appdata\local\micros~1\windows\tempor~1\content.ie5\t569dsav\1_1_~1.sh! c:\users\nick\appdata\local\micros~1\windows\tempor~1\content.ie5\6rzszopm\3_1_~1.SH! StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\mcafee~1.lnk - c:\program files\mcafee security scan\1.0.150\SSScheduler.exe mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0) mPolicies-system: EnableUIADesktopToggle = 0 (0x0) IE: Crawler Search - tbr:iemenu IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0_01\bin\ssv.dll DPF: {1851174C-97BD-4217-A0CC-E908F60D5B7A} - hxxps://h20364.www2.hp.com/CSMWeb/Customer/cabs/HPISDataManager.CAB Handler: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - c:\progra~1\crawler\toolbar\ctbr.dll Notify: igfxcui - igfxdev.dll ================= FIREFOX =================== FF - ProfilePath - c:\users\home\appdata\roaming\mozilla\firefox\profiles\rwu3gfd6.default\ FF - prefs.js: browser.search.selectedEngine - Ask FF - prefs.js: browser.startup.homepage - hxxp://www.google.com FF - prefs.js: keyword.URL - hxxp://toolbar.ask.com/toolbarv/askRedirect?o=13917&gct=&gc=1&q= FF - component: c:\program files\mozilla firefox\components\iamfamous.dll FF - plugin: c:\program files\dyyno\dyyno player\npvlc.dll FF - plugin: c:\program files\mozilla firefox\plugins\npbittorrent.dll FF - plugin: c:\program files\mozilla firefox\plugins\npdnu.dll FF - plugin: c:\program files\mozilla firefox\plugins\npViewpoint.dll FF - plugin: c:\program files\rayv\rayv\plugins\nprayvplugin.dll FF - plugin: c:\program files\viewpoint\viewpoint media player\npViewpoint.dll ============= SERVICES / DRIVERS =============== R1 pctfw2;pctfw2;c:\windows\system32\drivers\pctfw2.sys [2009-2-4 160792] R1 sp_rsdrv2;Spyware Terminator Driver 2;c:\windows\system32\drivers\sp_rsdrv2.sys [2009-2-4 142592] R2 Viewpoint Manager Service;Viewpoint Manager Service;c:\program files\viewpoint\common\ViewpointService.exe [2009-8-28 24652] S2 ASKUpgrade;ASKUpgrade;c:\program files\askbardis\bar\bin\ASKUpgrade.exe [2009-8-15 234888] S3 SUPERWEBCAM;SuperWebcam, WDM Virtual Video Capture Device;c:\windows\system32\drivers\superwebcam.sys [2009-2-2 31872] S4 sdAuxService;PC Tools Auxiliary Service;c:\program files\spyware doctor\pctsAuxs.exe [2009-2-4 356920] =============== Created Last 30 ================ 2009-09-25 00:16 <DIR> --d----- c:\users\home\appdata\roaming\LimeWire 2009-09-25 00:15 <DIR> --d----- c:\program files\LimeWire 2009-09-19 08:29 <DIR> --d----- c:\programdata\McAfee Security Scan 2009-09-19 08:29 <DIR> --d----- c:\program files\McAfee Security Scan 2009-09-19 08:29 <DIR> --d----- c:\progra~2\McAfee Security Scan 2009-09-08 19:29 132,795,261 a------- c:\windows\MEMORY.DMP 2009-09-01 00:08 <DIR> --d----- c:\program files\common files\Steam 2009-09-01 00:08 <DIR> --d----- c:\program files\Steam 2009-08-28 22:04 <DIR> --d----- c:\programdata\acccore 2009-08-28 22:04 <DIR> --d----- c:\progra~2\acccore 2009-08-28 22:02 <DIR> --d----- c:\program files\AIM6 ==================== Find3M ==================== 2009-08-09 10:45 25,280 a------- c:\windows\system32\drivers\hamachi.sys 2009-02-03 12:54 143,360 a------- c:\windows\inf\infstrng.dat 2009-02-03 12:54 51,200 a------- c:\windows\inf\infpub.dat 2009-02-02 00:45 86,016 a------- c:\windows\inf\infstor.dat 2008-07-15 22:39 665,600 a------- c:\windows\inf\drvindex.dat 2008-01-20 22:43 174 a--sh--- c:\program files\desktop.ini 2006-11-02 08:42 287,440 a------- c:\windows\inf\perflib\0409\perfi.dat 2006-11-02 08:42 287,440 a------- c:\windows\inf\perflib\0409\perfh.dat 2006-11-02 08:42 30,674 a------- c:\windows\inf\perflib\0409\perfd.dat 2006-11-02 08:42 30,674 a------- c:\windows\inf\perflib\0409\perfc.dat 2006-11-02 05:20 287,440 a------- c:\windows\inf\perflib\0000\perfi.dat 2006-11-02 05:20 287,440 a------- c:\windows\inf\perflib\0000\perfh.dat 2006-11-02 05:20 30,674 a------- c:\windows\inf\perflib\0000\perfd.dat 2006-11-02 05:20 30,674 a------- c:\windows\inf\perflib\0000\perfc.dat ============= FINISH: 7:45:38.20 =============== |
|
|
|
|
|
#4 (permalink) |
|
Registered User
Join Date: Sep 2009
Posts: 17
OS: Vista, Idk The Service Pack!
|
Re: Keylogger Help!
New DDS and Attach.. The others are old..ish
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll BHO: : {1cb20bf0-bbae-40a7-93f4-6435ff3d0411} - c:\progra~1\crawler\toolbar\ctbr.dll BHO: AskBar BHO: {201f27d4-3704-41d6-89c1-aa35e39143ed} - c:\program files\askbardis\bar\bin\askBar.dll BHO: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - No File BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre1.6.0_01\bin\ssv.dll TB: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File TB: &Crawler Toolbar: {4b3803ea-5230-4dc3-a7fc-33638f3d3542} - c:\progra~1\crawler\toolbar\ctbr.dll TB: Ask Toolbar: {3041d03e-fd4b-44e0-b742-2d9b88305f98} - c:\program files\askbardis\bar\bin\askBar.dll uRun: [CurseClient] c:\program files\curse\CurseClient.exe -silent uRun: [RayV] c:\program files\rayv\rayv\RayV.exe /background uRun: [Aim6] "c:\program files\aim6\aim6.exe" /d locale=en-US ee://aol/imApp uRun: [Steam] "c:\program files\steam\Steam.exe" -silent mRun: [<NO NAME>] mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe" dRun: [DelayShred] c:\progra~1\mcafee\mshr\shrcl.exe /p7 /q c:\users\nick\appdata\local\micros~1\windows\tempor~1\content.ie5\a0jb7y3w\adserv~2.sh! c:\users\nick\appdata\local\micros~1\windows\tempor~1\content.ie5\by27g8a1\aim_ua~1.sh! c:\users\nick\appdata\local\micros~1\windows\tempor~1\content.ie5\te8i24oa\tcodeb~1.sh! c:\users\nick\appdata\local\micros~1\windows\tempor~1\content.ie5\7kg280ur\aimrad~1.sh! c:\users\nick\appdata\local\micros~1\windows\tempor~1\content.ie5\te8i24oa\tcodew~1.sh! c:\users\nick\appdata\local\micros~1\windows\tempor~1\content.ie5\by27g8a1\siadbc~1.sh! c:\users\nick\appdata\local\micros~1\windows\tempor~1\content.ie5\te8i24oa\size_1~4.sh! c:\users\nick\appdata\local\temp\{fdbe4~1.sh! c:\users\nick\appdata\local\temp\_is6bac.sh! c:\users\nick\appdata\local\micros~1\windows\tempor~1\content.ie5\9uy88bf9\aim_ua~1.sh! c:\users\nick\appdata\local\micros~1\windows\tempor~1\content.ie5\t569dsav\1_1_~1.sh! c:\users\nick\appdata\local\micros~1\windows\tempor~1\content.ie5\6rzszopm\3_1_~1.SH! StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\mcafee~1.lnk - c:\program files\mcafee security scan\1.0.150\SSScheduler.exe StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\winzip~1.lnk - c:\program files\winzip\WZQKPICK.EXE mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0) mPolicies-system: EnableUIADesktopToggle = 0 (0x0) IE: Crawler Search - tbr:iemenu IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0_01\bin\ssv.dll DPF: {1851174C-97BD-4217-A0CC-E908F60D5B7A} - hxxps://h20364.www2.hp.com/CSMWeb/Customer/cabs/HPISDataManager.CAB Handler: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} - c:\progra~1\crawler\toolbar\ctbr.dll Notify: igfxcui - igfxdev.dll ================= FIREFOX =================== FF - ProfilePath - c:\users\home\appdata\roaming\mozilla\firefox\profiles\rwu3gfd6.default\ FF - prefs.js: browser.search.defaulturl - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q= FF - prefs.js: browser.search.selectedEngine - Google FF - prefs.js: browser.startup.homepage - hxxp://www.google.com FF - prefs.js: keyword.URL - hxxp://toolbar.ask.com/toolbarv/askRedirect?o=13917&gct=&gc=1&q= FF - component: c:\program files\mozilla firefox\components\iamfamous.dll FF - component: c:\programdata\google\toolbar for firefox\{3112ca9c-de6d-4884-a869-9855de68056c}\components\googletoolbarloader.dll FF - component: c:\programdata\google\toolbar for firefox\{3112ca9c-de6d-4884-a869-9855de68056c}\components\metricsloader.dll FF - plugin: c:\program files\dyyno\dyyno player\npvlc.dll FF - plugin: c:\program files\mozilla firefox\plugins\npbittorrent.dll FF - plugin: c:\program files\mozilla firefox\plugins\npdnu.dll FF - plugin: c:\program files\mozilla firefox\plugins\npViewpoint.dll FF - plugin: c:\program files\rayv\rayv\plugins\nprayvplugin.dll FF - plugin: c:\program files\viewpoint\viewpoint media player\npViewpoint.dll ============= SERVICES / DRIVERS =============== R1 pctfw2;pctfw2;c:\windows\system32\drivers\pctfw2.sys [2009-2-4 160792] R1 sp_rsdrv2;Spyware Terminator Driver 2;c:\windows\system32\drivers\sp_rsdrv2.sys [2009-2-4 142592] R2 Viewpoint Manager Service;Viewpoint Manager Service;c:\program files\viewpoint\common\ViewpointService.exe [2009-8-28 24652] S2 ASKUpgrade;ASKUpgrade;c:\program files\askbardis\bar\bin\ASKUpgrade.exe [2009-8-15 234888] S3 SUPERWEBCAM;SuperWebcam, WDM Virtual Video Capture Device;c:\windows\system32\drivers\superwebcam.sys [2009-2-2 31872] S4 sdAuxService;PC Tools Auxiliary Service;c:\program files\spyware doctor\pctsAuxs.exe [2009-2-4 356920] =============== Created Last 30 ================ 2009-09-25 08:06 <DIR> --dsh--- C:\found.001 2009-09-25 00:16 <DIR> --d----- c:\users\home\appdata\roaming\LimeWire 2009-09-25 00:15 <DIR> --d----- c:\program files\LimeWire 2009-09-19 08:29 <DIR> --d----- c:\programdata\McAfee Security Scan 2009-09-19 08:29 <DIR> --d----- c:\program files\McAfee Security Scan 2009-09-19 08:29 <DIR> --d----- c:\progra~2\McAfee Security Scan 2009-09-08 19:29 132,795,261 a------- c:\windows\MEMORY.DMP 2009-09-01 00:08 <DIR> --d----- c:\program files\common files\Steam 2009-09-01 00:08 <DIR> --d----- c:\program files\Steam 2009-08-28 22:04 <DIR> --d----- c:\programdata\acccore 2009-08-28 22:04 <DIR> --d----- c:\progra~2\acccore 2009-08-28 22:02 <DIR> --d----- c:\program files\AIM6 ==================== Find3M ==================== 2009-09-25 07:59 318,976 a------- c:\windows\system32\CF5159.exe 2009-09-14 02:12 229,888 a------- c:\windows\PEV.exe 2009-08-09 10:45 25,280 a------- c:\windows\system32\drivers\hamachi.sys 2009-02-03 12:54 143,360 a------- c:\windows\inf\infstrng.dat 2009-02-03 12:54 51,200 a------- c:\windows\inf\infpub.dat 2009-02-02 00:45 86,016 a------- c:\windows\inf\infstor.dat 2008-07-15 22:39 665,600 a------- c:\windows\inf\drvindex.dat 2008-01-20 22:43 174 a--sh--- c:\program files\desktop.ini 2006-11-02 08:42 287,440 a------- c:\windows\inf\perflib\0409\perfi.dat 2006-11-02 08:42 287,440 a------- c:\windows\inf\perflib\0409\perfh.dat 2006-11-02 08:42 30,674 a------- c:\windows\inf\perflib\0409\perfd.dat 2006-11-02 08:42 30,674 a------- c:\windows\inf\perflib\0409\perfc.dat 2006-11-02 05:20 287,440 a------- c:\windows\inf\perflib\0000\perfi.dat 2006-11-02 05:20 287,440 a------- c:\windows\inf\perflib\0000\perfh.dat 2006-11-02 05:20 30,674 a------- c:\windows\inf\perflib\0000\perfd.dat 2006-11-02 05:20 30,674 a------- c:\windows\inf\perflib\0000\perfc.dat ============= FINISH: 10:53:31.34 =============== |
|
|
|
![]() |
| Thread Tools | |
|
|