Joined
·
10 Posts
Here's whats going on
whenever I go to a search engine and click on a link it will take me to a totally different link. sometimes I can go back, sometimes I cant. I also had a problem saying windows was not activated. however I ran a program call Dr web (after some search of the problem) that cleared that up.
so here is my dds.txt file and my other 2 files
DDS (Ver_09-05-14.01) - NTFSx86
Run by Niggerachi at 15:04:21.65 on Sun 05/24/2009
Internet Explorer: 7.0.6001.18000 BrowserJavaVersion: 1.6.0_13
Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1252.1.1033.18.2303.1204 [GMT -4:00]
SP: Spybot - Search and Destroy *disabled* (Outdated) {ED588FAF-1B8F-43B4-ACA8-8E3C85DADBE9}
SP: Lavasoft Ad-Watch Live! *enabled* (Updated) {67844DAE-4F77-4D69-9457-98E8CFFDAA22}
SP: Windows Defender *disabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
============== Running Processes ===============
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Windows\SOUNDMAN.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Niggerachi\Desktop\dds.scr
============== Pseudo HJT Report ===============
uInternet Settings,ProxyServer = http=localhost:7171
uInternet Settings,ProxyOverride = *.local;<local>
uURLSearchHooks: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\progra~1\yahoo!\companion\installs\cpn\yt.dll
BHO: &Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - c:\progra~1\yahoo!\companion\installs\cpn\yt.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - c:\program files\real\realplayer\rpbrowserrecordplugin.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\progra~1\spybot~1\SDHelper.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
BHO: Java(tm) Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: 796525 Class: {e7f15ac4-e0a9-43f0-921b-70dfea621220} - c:\windows\system32\796525\796525.dll
BHO: SingleInstance Class: {fdad4da1-61a2-4fd8-9c17-86f7ac245081} - c:\progra~1\yahoo!\companion\installs\cpn\YTSingleInstance.dll
TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\progra~1\yahoo!\companion\installs\cpn\yt.dll
uRun: [Aim6]
uRun: [AnyDVD] c:\program files\slysoft\anydvd\AnyDVDtray.exe
mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
mRun: [SoundMan] SOUNDMAN.EXE
mRun: [TkBellExe] "c:\program files\common files\real\update_ob\realsched.exe" -osboot
mRun: [Ad-Watch] c:\program files\lavasoft\ad-aware\AAWTray.exe
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [Framework Windows] frmwrk32.exe
dRun: [A00FA4EDA14.exe] c:\windows\temp\_A00FA4EDA14.exe
dRun: [uidenhiufgsduiazghs] c:\windows\temp\l0f11.exe
dRun: [SYS32DLL] SYS32DLL
dRun: [<NO NAME>] c:\windows\temp\l0f11.exe
dRun: [A00F37CFE72.exe] c:\windows\temp\_A00F37CFE72.exe
uPolicies-explorer: NoSetActiveDesktop = 1 (0x1)
mPolicies-explorer: NoSetActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: EnableLUA = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
dPolicies-explorer: NoSetActiveDesktop = 1 (0x1)
dPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
dPolicies-explorer: NoFolderOptions = 1 (0x1)
dPolicies-system: DisableTaskMgr = 1 (0x1)
dPolicies-system: DisableRegistryTools = 1 (0x1)
IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office12\EXCEL.EXE/3000
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~3\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~3\office12\REFIEBAR.DLL
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\progra~1\spybot~1\SDHelper.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
================= FIREFOX ===================
FF - ProfilePath - c:\users\******~1\appdata\roaming\mozilla\firefox\profiles\8jx2t8hw.default\
FF - prefs.js: browser.startup.homepage -
FF - plugin: c:\program files\mozilla firefox\plugins\npViewpoint.dll
FF - plugin: c:\program files\viewpoint\viewpoint media player\npViewpoint.dll
============= SERVICES / DRIVERS ===============
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [2009-5-16 64160]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\lavasoft\ad-aware\AAWService.exe [2009-3-9 953168]
R2 SBSDWSCService;SBSD Security Center Service;c:\program files\spybot - search & destroy\SDWinSec.exe [2009-4-28 1153368]
=============== Created Last 30 ================
2009-05-24 14:44 <DIR> --d----- c:\users\niggerachi\DoctorWeb
2009-05-22 14:01 <DIR> --d----- c:\program files\K-Lite Codec Pack
2009-05-22 13:56 <DIR> --d----- c:\program files\GustoSoft
2009-05-22 10:10 444 a------- c:\windows\system32\win32hlp.cnf
2009-05-22 09:40 1,400 a------- c:\windows\system32\ahtn.htm
2009-05-22 09:40 4,785 a------- c:\windows\system32\warning.gif
2009-05-22 09:40 104,960 a------- c:\windows\system32\ntdll64.exe
2009-05-22 09:39 1 a------- c:\windows\system32\uniq.tll
2009-05-22 09:39 19,968 a------- c:\windows\system32\loader49.exe
2009-05-21 18:03 <DIR> --d----- c:\programdata\Adobe
2009-05-20 09:09 32,768 a------- c:\windows\system32\service-466.exe
2009-05-18 20:00 0 a---h--- c:\windows\system32\drivers\Msft_User_WpdFs_01_00_00.Wdf
2009-05-18 09:09 37,376 a------- c:\windows\system32\glsetup.exe
2009-05-17 20:48 <DIR> --d----- c:\program files\common files\NSV
2009-05-17 20:19 10,173 a------- C:\New Microsoft Office Word Document.docx
2009-05-17 16:19 28,672 a------- c:\windows\system32\lmn_setup.exe
2009-05-17 14:31 26,112 a------- c:\windows\system32\b67d4.exe
2009-05-17 11:19 23,040 a------- c:\windows\system32\ak1.exe
2009-05-17 11:19 15,000 a------- c:\windows\system32\afnoinkdsfe.dll
2009-05-16 19:04 107,246 a------- c:\windows\system32\vp_setup.exe
2009-05-16 16:52 0 a------- c:\windows\st_1242525599.exe
2009-05-16 16:52 0 a------- c:\windows\st_1242507170.exe
2009-05-16 16:48 15,688 a------- c:\windows\system32\lsdelete.exe
2009-05-16 16:44 64,160 a------- c:\windows\system32\drivers\Lbd.sys
2009-05-16 16:41 <DIR> -cd-h--- c:\programdata\{7972B2E5-3E09-4E5E-81B7-FE5819D6772F}
2009-05-16 16:41 <DIR> -cd-h--- c:\progra~2\{7972B2E5-3E09-4E5E-81B7-FE5819D6772F}
2009-05-16 16:41 <DIR> --d----- c:\program files\Lavasoft
2009-05-15 21:50 <DIR> --d----- c:\programdata\Lavasoft
2009-05-15 21:22 19,456 a------- c:\windows\system32\ovfsthkotwhvvxknxxjiwlpbbogsaefeyikttt.dll
2009-05-15 21:22 17,920 a------- c:\windows\system32\ovfsthuulttrtgiklxkqksukrnfkvrvilevwos.dll
2009-05-15 21:22 61,440 a------- c:\windows\system32\ovfsthtxdxbqjutcttblqcbkycfjexsyiunodx.dll
2009-05-15 19:04 2 ----h--- c:\windows\t55ft3189f44.dat
2009-05-15 10:38 1 a------- c:\windows\9g2234wesdf3dfgjf23
2009-05-15 10:38 11,776 ----h--- c:\windows\pp07.exe
2009-05-15 10:38 <DIR> --d----- c:\windows\system32\796525
2009-05-15 10:38 15,872 ----h--- c:\windows\ld08.exe
2009-05-14 03:01 118 a------- c:\windows\system32\MRT.INI
2009-05-13 11:20 1,149,240 a------- c:\windows\system32\3.exe
2009-05-08 22:48 663 a------- c:\windows\wininit.ini
2009-04-29 14:46 22,538 a------- c:\windows\system32\lmppcsetup.exe
2009-04-28 00:44 <DIR> --d----- c:\programdata\Spybot - Search & Destroy
2009-04-28 00:44 <DIR> --d----- c:\program files\Spybot - Search & Destroy
2009-04-28 00:44 <DIR> --d----- c:\progra~2\Spybot - Search & Destroy
2009-04-27 22:39 102,664 a------- c:\windows\system32\drivers\tmcomm.sys
2009-04-27 22:38 <DIR> --d----- c:\users\niggerachi\.housecall6.6
2009-04-27 09:14 46 a------- c:\windows\system32\p2hhr.bat
2009-04-25 20:47 <DIR> --d----- c:\program files\common files\xing shared
2009-04-25 20:47 499,712 a------- c:\windows\system32\msvcp71.dll
2009-04-25 20:47 348,160 a------- c:\windows\system32\msvcr71.dll
2009-04-25 20:47 <DIR> --d----- c:\program files\common files\Real
2009-04-24 21:46 32,592 a------- c:\windows\system32\msonpmon.dll
2009-04-24 21:40 <DIR> --d----- c:\program files\Microsoft Visual Studio 8
2009-04-24 21:39 <DIR> --d----- c:\programdata\Microsoft Help
2009-04-24 21:37 43 a------- c:\windows\system32\ovfsthxgxiuxqbiryrlqofhrgrngjbjwhodnqn.dat
2009-04-24 21:36 <DIR> --d----- c:\program files\Elaborate Bytes
2009-04-24 21:36 181,662 a------- c:\windows\system32\ovfsthpcmiptubjctswdixxqvblwntsebfheuu.dat
2009-04-24 21:35 <DIR> --d----- c:\programdata\SlySoft
2009-04-24 21:35 <DIR> --d----- c:\program files\SlySoft
==================== Find3M ====================
2009-04-24 21:32 174 a--sh--- c:\program files\desktop.ini
2009-04-24 21:31 86,016 a------- c:\windows\inf\infstrng.dat
2009-04-24 21:31 86,016 a------- c:\windows\inf\infstor.dat
2009-04-24 21:31 51,200 a------- c:\windows\inf\infpub.dat
2009-04-24 21:23 665,600 a------- c:\windows\inf\drvindex.dat
2009-04-24 17:15 101,888 a------- c:\windows\system32\ifxcardm.dll
2009-04-24 17:15 82,432 a------- c:\windows\system32\axaltocm.dll
2009-04-16 06:04 376,832 a------- c:\windows\system32\winhttp.dll
2009-04-16 06:04 562,176 a------- c:\windows\system32\msdtcprx.dll
2009-04-16 06:04 38,912 a------- c:\windows\system32\xolehlp.dll
2009-04-16 06:01 827,392 a------- c:\windows\system32\wininet.dll
2009-04-16 06:01 72,704 a------- c:\windows\system32\admparse.dll
2009-04-16 06:00 78,336 a------- c:\windows\system32\ieencode.dll
2009-04-16 06:00 48,128 a------- c:\windows\system32\mshtmler.dll
2009-04-16 06:00 26,624 a------- c:\windows\system32\ieUnatt.exe
2009-04-14 06:03 61,440 a------- c:\windows\system32\winipsec.dll
2009-04-14 06:03 28,672 a------- c:\windows\system32\FwRemoteSvr.dll
2009-04-14 06:03 361,984 a------- c:\windows\system32\IPSECSVC.DLL
2009-04-14 06:03 272,896 a------- c:\windows\system32\polstore.dll
2009-04-14 06:03 269,312 a------- c:\windows\system32\es.dll
2009-04-13 19:55 1,524,736 a------- c:\windows\system32\wucltux.dll
2009-04-13 10:17 296,960 a------- c:\windows\system32\gdi32.dll
2009-04-13 10:16 212,480 a------- c:\windows\system32\drivers\mrxsmb10.sys
2009-04-13 10:16 28,672 a------- c:\windows\system32\Apphlpdm.dll
2009-04-13 10:16 2,560 a------- c:\windows\apppatch\AcRes.dll
2009-04-13 10:16 2,154,496 a------- c:\windows\apppatch\AcGenral.dll
2009-04-13 10:16 460,288 a------- c:\windows\apppatch\AcSpecfc.dll
2009-04-13 10:16 4,240,384 a------- c:\windows\system32\GameUXLegacyGDFs.dll
2009-04-13 10:16 541,696 a------- c:\windows\apppatch\AcLayers.dll
2009-04-13 10:16 173,056 a------- c:\windows\apppatch\AcXtrnal.dll
2009-04-13 10:16 52,736 a------- c:\windows\apppatch\iebrshim.dll
2009-04-13 10:16 1,695,744 a------- c:\windows\system32\gameux.dll
2009-04-13 10:15 303,616 a------- c:\windows\system32\wmpeffects.dll
2009-04-13 10:15 1,191,936 a------- c:\windows\system32\msxml3.dll
2009-04-13 10:15 2,048 a------- c:\windows\system32\msxml3r.dll
2009-04-13 10:13 2,048 a------- c:\windows\system32\tzres.dll
2009-04-13 10:11 8,147,456 a------- c:\windows\system32\wmploc.DLL
2009-04-13 10:11 7,680 a------- c:\windows\system32\spwmp.dll
2009-04-13 10:11 4,096 a------- c:\windows\system32\dxmasf.dll
2009-04-13 10:08 2,927,104 a------- c:\windows\explorer.exe
2009-04-13 10:04 6,656 a------- c:\windows\system32\kbd106n.dll
2009-04-13 10:04 988,216 a------- c:\windows\system32\winload.exe
2009-04-13 10:04 927,288 a------- c:\windows\system32\winresume.exe
2009-04-13 10:04 378,368 a------- c:\windows\system32\srcore.dll
2009-04-13 10:04 318,464 a------- c:\windows\system32\rstrui.exe
2009-04-13 10:04 40,960 a------- c:\windows\system32\srclient.dll
2009-04-13 10:04 615,992 a------- c:\windows\system32\ci.dll
2009-04-13 10:04 46,592 a------- c:\windows\system32\setbcdlocale.dll
2009-04-13 10:04 19,000 a------- c:\windows\system32\kd1394.dll
2009-04-13 10:04 14,848 a------- c:\windows\system32\srdelayed.exe
2009-04-13 10:02 443,392 a------- c:\windows\system32\win32spl.dll
2009-04-13 10:02 37,888 a------- c:\windows\system32\printcom.dll
2009-04-13 10:02 113,664 a------- c:\windows\system32\drivers\rmcast.sys
2009-04-13 10:02 14,848 a------- c:\windows\system32\wshrm.dll
2009-04-13 10:01 288,768 a------- c:\windows\system32\drivers\srv.sys
2009-04-13 10:01 268,288 a------- c:\windows\system32\schannel.dll
2009-04-13 10:00 2,868,736 a------- c:\windows\system32\mf.dll
2009-04-13 10:00 98,816 a------- c:\windows\system32\mfps.dll
2009-04-13 10:00 53,248 a------- c:\windows\system32\rrinstaller.exe
2009-04-13 10:00 24,576 a------- c:\windows\system32\mfpmp.exe
2009-04-13 10:00 2,048 a------- c:\windows\system32\mferror.dll
2009-04-13 10:00 996,352 a------- c:\windows\system32\WMNetMgr.dll
2009-04-13 10:00 94,720 a------- c:\windows\system32\logagent.exe
2009-04-13 09:59 738,304 a------- c:\windows\system32\inetcomm.dll
2009-04-13 09:59 84,480 a------- c:\windows\system32\INETRES.dll
2009-04-13 09:58 1,314,816 a------- c:\windows\system32\quartz.dll
2009-04-13 09:58 2,033,152 a------- c:\windows\system32\win32k.sys
2009-04-13 09:57 1,334,272 a------- c:\windows\system32\msxml6.dll
2009-04-13 09:57 2,048 a------- c:\windows\system32\msxml6r.dll
2009-04-13 09:55 83,456 a------- c:\windows\system32\wudriver.dll
2009-04-13 06:02 162,064 a------- c:\windows\system32\wuwebv.dll
2009-04-13 06:02 31,232 a------- c:\windows\system32\wuapp.exe
2009-04-13 00:16 410,984 a------- c:\windows\system32\deploytk.dll
2009-04-09 20:40 103,744 a------- c:\windows\system32\drivers\AnyDVD.sys
2009-04-02 09:21 84,480 a------- c:\windows\system32\ff_vfw.dll
2006-11-02 08:42 287,440 a------- c:\windows\inf\perflib\0409\perfi.dat
2006-11-02 08:42 287,440 a------- c:\windows\inf\perflib\0409\perfh.dat
2006-11-02 08:42 30,674 a------- c:\windows\inf\perflib\0409\perfd.dat
2006-11-02 08:42 30,674 a------- c:\windows\inf\perflib\0409\perfc.dat
2006-11-02 05:20 287,440 a------- c:\windows\inf\perflib\0000\perfi.dat
2006-11-02 05:20 287,440 a------- c:\windows\inf\perflib\0000\perfh.dat
2006-11-02 05:20 30,674 a------- c:\windows\inf\perflib\0000\perfd.dat
2006-11-02 05:20 30,674 a------- c:\windows\inf\perflib\0000\perfc.dat
============= FINISH: 15:04:55.63 ===============
whenever I go to a search engine and click on a link it will take me to a totally different link. sometimes I can go back, sometimes I cant. I also had a problem saying windows was not activated. however I ran a program call Dr web (after some search of the problem) that cleared that up.
so here is my dds.txt file and my other 2 files
DDS (Ver_09-05-14.01) - NTFSx86
Run by Niggerachi at 15:04:21.65 on Sun 05/24/2009
Internet Explorer: 7.0.6001.18000 BrowserJavaVersion: 1.6.0_13
Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1252.1.1033.18.2303.1204 [GMT -4:00]
SP: Spybot - Search and Destroy *disabled* (Outdated) {ED588FAF-1B8F-43B4-ACA8-8E3C85DADBE9}
SP: Lavasoft Ad-Watch Live! *enabled* (Updated) {67844DAE-4F77-4D69-9457-98E8CFFDAA22}
SP: Windows Defender *disabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
============== Running Processes ===============
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Windows\SOUNDMAN.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Niggerachi\Desktop\dds.scr
============== Pseudo HJT Report ===============
uInternet Settings,ProxyServer = http=localhost:7171
uInternet Settings,ProxyOverride = *.local;<local>
uURLSearchHooks: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\progra~1\yahoo!\companion\installs\cpn\yt.dll
BHO: &Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - c:\progra~1\yahoo!\companion\installs\cpn\yt.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - c:\program files\real\realplayer\rpbrowserrecordplugin.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\progra~1\spybot~1\SDHelper.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
BHO: Java(tm) Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: 796525 Class: {e7f15ac4-e0a9-43f0-921b-70dfea621220} - c:\windows\system32\796525\796525.dll
BHO: SingleInstance Class: {fdad4da1-61a2-4fd8-9c17-86f7ac245081} - c:\progra~1\yahoo!\companion\installs\cpn\YTSingleInstance.dll
TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\progra~1\yahoo!\companion\installs\cpn\yt.dll
uRun: [Aim6]
uRun: [AnyDVD] c:\program files\slysoft\anydvd\AnyDVDtray.exe
mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
mRun: [SoundMan] SOUNDMAN.EXE
mRun: [TkBellExe] "c:\program files\common files\real\update_ob\realsched.exe" -osboot
mRun: [Ad-Watch] c:\program files\lavasoft\ad-aware\AAWTray.exe
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [Framework Windows] frmwrk32.exe
dRun: [A00FA4EDA14.exe] c:\windows\temp\_A00FA4EDA14.exe
dRun: [uidenhiufgsduiazghs] c:\windows\temp\l0f11.exe
dRun: [SYS32DLL] SYS32DLL
dRun: [<NO NAME>] c:\windows\temp\l0f11.exe
dRun: [A00F37CFE72.exe] c:\windows\temp\_A00F37CFE72.exe
uPolicies-explorer: NoSetActiveDesktop = 1 (0x1)
mPolicies-explorer: NoSetActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: EnableLUA = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
dPolicies-explorer: NoSetActiveDesktop = 1 (0x1)
dPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
dPolicies-explorer: NoFolderOptions = 1 (0x1)
dPolicies-system: DisableTaskMgr = 1 (0x1)
dPolicies-system: DisableRegistryTools = 1 (0x1)
IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office12\EXCEL.EXE/3000
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~3\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~3\office12\REFIEBAR.DLL
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\progra~1\spybot~1\SDHelper.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
================= FIREFOX ===================
FF - ProfilePath - c:\users\******~1\appdata\roaming\mozilla\firefox\profiles\8jx2t8hw.default\
FF - prefs.js: browser.startup.homepage -
FF - plugin: c:\program files\mozilla firefox\plugins\npViewpoint.dll
FF - plugin: c:\program files\viewpoint\viewpoint media player\npViewpoint.dll
============= SERVICES / DRIVERS ===============
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [2009-5-16 64160]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\lavasoft\ad-aware\AAWService.exe [2009-3-9 953168]
R2 SBSDWSCService;SBSD Security Center Service;c:\program files\spybot - search & destroy\SDWinSec.exe [2009-4-28 1153368]
=============== Created Last 30 ================
2009-05-24 14:44 <DIR> --d----- c:\users\niggerachi\DoctorWeb
2009-05-22 14:01 <DIR> --d----- c:\program files\K-Lite Codec Pack
2009-05-22 13:56 <DIR> --d----- c:\program files\GustoSoft
2009-05-22 10:10 444 a------- c:\windows\system32\win32hlp.cnf
2009-05-22 09:40 1,400 a------- c:\windows\system32\ahtn.htm
2009-05-22 09:40 4,785 a------- c:\windows\system32\warning.gif
2009-05-22 09:40 104,960 a------- c:\windows\system32\ntdll64.exe
2009-05-22 09:39 1 a------- c:\windows\system32\uniq.tll
2009-05-22 09:39 19,968 a------- c:\windows\system32\loader49.exe
2009-05-21 18:03 <DIR> --d----- c:\programdata\Adobe
2009-05-20 09:09 32,768 a------- c:\windows\system32\service-466.exe
2009-05-18 20:00 0 a---h--- c:\windows\system32\drivers\Msft_User_WpdFs_01_00_00.Wdf
2009-05-18 09:09 37,376 a------- c:\windows\system32\glsetup.exe
2009-05-17 20:48 <DIR> --d----- c:\program files\common files\NSV
2009-05-17 20:19 10,173 a------- C:\New Microsoft Office Word Document.docx
2009-05-17 16:19 28,672 a------- c:\windows\system32\lmn_setup.exe
2009-05-17 14:31 26,112 a------- c:\windows\system32\b67d4.exe
2009-05-17 11:19 23,040 a------- c:\windows\system32\ak1.exe
2009-05-17 11:19 15,000 a------- c:\windows\system32\afnoinkdsfe.dll
2009-05-16 19:04 107,246 a------- c:\windows\system32\vp_setup.exe
2009-05-16 16:52 0 a------- c:\windows\st_1242525599.exe
2009-05-16 16:52 0 a------- c:\windows\st_1242507170.exe
2009-05-16 16:48 15,688 a------- c:\windows\system32\lsdelete.exe
2009-05-16 16:44 64,160 a------- c:\windows\system32\drivers\Lbd.sys
2009-05-16 16:41 <DIR> -cd-h--- c:\programdata\{7972B2E5-3E09-4E5E-81B7-FE5819D6772F}
2009-05-16 16:41 <DIR> -cd-h--- c:\progra~2\{7972B2E5-3E09-4E5E-81B7-FE5819D6772F}
2009-05-16 16:41 <DIR> --d----- c:\program files\Lavasoft
2009-05-15 21:50 <DIR> --d----- c:\programdata\Lavasoft
2009-05-15 21:22 19,456 a------- c:\windows\system32\ovfsthkotwhvvxknxxjiwlpbbogsaefeyikttt.dll
2009-05-15 21:22 17,920 a------- c:\windows\system32\ovfsthuulttrtgiklxkqksukrnfkvrvilevwos.dll
2009-05-15 21:22 61,440 a------- c:\windows\system32\ovfsthtxdxbqjutcttblqcbkycfjexsyiunodx.dll
2009-05-15 19:04 2 ----h--- c:\windows\t55ft3189f44.dat
2009-05-15 10:38 1 a------- c:\windows\9g2234wesdf3dfgjf23
2009-05-15 10:38 11,776 ----h--- c:\windows\pp07.exe
2009-05-15 10:38 <DIR> --d----- c:\windows\system32\796525
2009-05-15 10:38 15,872 ----h--- c:\windows\ld08.exe
2009-05-14 03:01 118 a------- c:\windows\system32\MRT.INI
2009-05-13 11:20 1,149,240 a------- c:\windows\system32\3.exe
2009-05-08 22:48 663 a------- c:\windows\wininit.ini
2009-04-29 14:46 22,538 a------- c:\windows\system32\lmppcsetup.exe
2009-04-28 00:44 <DIR> --d----- c:\programdata\Spybot - Search & Destroy
2009-04-28 00:44 <DIR> --d----- c:\program files\Spybot - Search & Destroy
2009-04-28 00:44 <DIR> --d----- c:\progra~2\Spybot - Search & Destroy
2009-04-27 22:39 102,664 a------- c:\windows\system32\drivers\tmcomm.sys
2009-04-27 22:38 <DIR> --d----- c:\users\niggerachi\.housecall6.6
2009-04-27 09:14 46 a------- c:\windows\system32\p2hhr.bat
2009-04-25 20:47 <DIR> --d----- c:\program files\common files\xing shared
2009-04-25 20:47 499,712 a------- c:\windows\system32\msvcp71.dll
2009-04-25 20:47 348,160 a------- c:\windows\system32\msvcr71.dll
2009-04-25 20:47 <DIR> --d----- c:\program files\common files\Real
2009-04-24 21:46 32,592 a------- c:\windows\system32\msonpmon.dll
2009-04-24 21:40 <DIR> --d----- c:\program files\Microsoft Visual Studio 8
2009-04-24 21:39 <DIR> --d----- c:\programdata\Microsoft Help
2009-04-24 21:37 43 a------- c:\windows\system32\ovfsthxgxiuxqbiryrlqofhrgrngjbjwhodnqn.dat
2009-04-24 21:36 <DIR> --d----- c:\program files\Elaborate Bytes
2009-04-24 21:36 181,662 a------- c:\windows\system32\ovfsthpcmiptubjctswdixxqvblwntsebfheuu.dat
2009-04-24 21:35 <DIR> --d----- c:\programdata\SlySoft
2009-04-24 21:35 <DIR> --d----- c:\program files\SlySoft
==================== Find3M ====================
2009-04-24 21:32 174 a--sh--- c:\program files\desktop.ini
2009-04-24 21:31 86,016 a------- c:\windows\inf\infstrng.dat
2009-04-24 21:31 86,016 a------- c:\windows\inf\infstor.dat
2009-04-24 21:31 51,200 a------- c:\windows\inf\infpub.dat
2009-04-24 21:23 665,600 a------- c:\windows\inf\drvindex.dat
2009-04-24 17:15 101,888 a------- c:\windows\system32\ifxcardm.dll
2009-04-24 17:15 82,432 a------- c:\windows\system32\axaltocm.dll
2009-04-16 06:04 376,832 a------- c:\windows\system32\winhttp.dll
2009-04-16 06:04 562,176 a------- c:\windows\system32\msdtcprx.dll
2009-04-16 06:04 38,912 a------- c:\windows\system32\xolehlp.dll
2009-04-16 06:01 827,392 a------- c:\windows\system32\wininet.dll
2009-04-16 06:01 72,704 a------- c:\windows\system32\admparse.dll
2009-04-16 06:00 78,336 a------- c:\windows\system32\ieencode.dll
2009-04-16 06:00 48,128 a------- c:\windows\system32\mshtmler.dll
2009-04-16 06:00 26,624 a------- c:\windows\system32\ieUnatt.exe
2009-04-14 06:03 61,440 a------- c:\windows\system32\winipsec.dll
2009-04-14 06:03 28,672 a------- c:\windows\system32\FwRemoteSvr.dll
2009-04-14 06:03 361,984 a------- c:\windows\system32\IPSECSVC.DLL
2009-04-14 06:03 272,896 a------- c:\windows\system32\polstore.dll
2009-04-14 06:03 269,312 a------- c:\windows\system32\es.dll
2009-04-13 19:55 1,524,736 a------- c:\windows\system32\wucltux.dll
2009-04-13 10:17 296,960 a------- c:\windows\system32\gdi32.dll
2009-04-13 10:16 212,480 a------- c:\windows\system32\drivers\mrxsmb10.sys
2009-04-13 10:16 28,672 a------- c:\windows\system32\Apphlpdm.dll
2009-04-13 10:16 2,560 a------- c:\windows\apppatch\AcRes.dll
2009-04-13 10:16 2,154,496 a------- c:\windows\apppatch\AcGenral.dll
2009-04-13 10:16 460,288 a------- c:\windows\apppatch\AcSpecfc.dll
2009-04-13 10:16 4,240,384 a------- c:\windows\system32\GameUXLegacyGDFs.dll
2009-04-13 10:16 541,696 a------- c:\windows\apppatch\AcLayers.dll
2009-04-13 10:16 173,056 a------- c:\windows\apppatch\AcXtrnal.dll
2009-04-13 10:16 52,736 a------- c:\windows\apppatch\iebrshim.dll
2009-04-13 10:16 1,695,744 a------- c:\windows\system32\gameux.dll
2009-04-13 10:15 303,616 a------- c:\windows\system32\wmpeffects.dll
2009-04-13 10:15 1,191,936 a------- c:\windows\system32\msxml3.dll
2009-04-13 10:15 2,048 a------- c:\windows\system32\msxml3r.dll
2009-04-13 10:13 2,048 a------- c:\windows\system32\tzres.dll
2009-04-13 10:11 8,147,456 a------- c:\windows\system32\wmploc.DLL
2009-04-13 10:11 7,680 a------- c:\windows\system32\spwmp.dll
2009-04-13 10:11 4,096 a------- c:\windows\system32\dxmasf.dll
2009-04-13 10:08 2,927,104 a------- c:\windows\explorer.exe
2009-04-13 10:04 6,656 a------- c:\windows\system32\kbd106n.dll
2009-04-13 10:04 988,216 a------- c:\windows\system32\winload.exe
2009-04-13 10:04 927,288 a------- c:\windows\system32\winresume.exe
2009-04-13 10:04 378,368 a------- c:\windows\system32\srcore.dll
2009-04-13 10:04 318,464 a------- c:\windows\system32\rstrui.exe
2009-04-13 10:04 40,960 a------- c:\windows\system32\srclient.dll
2009-04-13 10:04 615,992 a------- c:\windows\system32\ci.dll
2009-04-13 10:04 46,592 a------- c:\windows\system32\setbcdlocale.dll
2009-04-13 10:04 19,000 a------- c:\windows\system32\kd1394.dll
2009-04-13 10:04 14,848 a------- c:\windows\system32\srdelayed.exe
2009-04-13 10:02 443,392 a------- c:\windows\system32\win32spl.dll
2009-04-13 10:02 37,888 a------- c:\windows\system32\printcom.dll
2009-04-13 10:02 113,664 a------- c:\windows\system32\drivers\rmcast.sys
2009-04-13 10:02 14,848 a------- c:\windows\system32\wshrm.dll
2009-04-13 10:01 288,768 a------- c:\windows\system32\drivers\srv.sys
2009-04-13 10:01 268,288 a------- c:\windows\system32\schannel.dll
2009-04-13 10:00 2,868,736 a------- c:\windows\system32\mf.dll
2009-04-13 10:00 98,816 a------- c:\windows\system32\mfps.dll
2009-04-13 10:00 53,248 a------- c:\windows\system32\rrinstaller.exe
2009-04-13 10:00 24,576 a------- c:\windows\system32\mfpmp.exe
2009-04-13 10:00 2,048 a------- c:\windows\system32\mferror.dll
2009-04-13 10:00 996,352 a------- c:\windows\system32\WMNetMgr.dll
2009-04-13 10:00 94,720 a------- c:\windows\system32\logagent.exe
2009-04-13 09:59 738,304 a------- c:\windows\system32\inetcomm.dll
2009-04-13 09:59 84,480 a------- c:\windows\system32\INETRES.dll
2009-04-13 09:58 1,314,816 a------- c:\windows\system32\quartz.dll
2009-04-13 09:58 2,033,152 a------- c:\windows\system32\win32k.sys
2009-04-13 09:57 1,334,272 a------- c:\windows\system32\msxml6.dll
2009-04-13 09:57 2,048 a------- c:\windows\system32\msxml6r.dll
2009-04-13 09:55 83,456 a------- c:\windows\system32\wudriver.dll
2009-04-13 06:02 162,064 a------- c:\windows\system32\wuwebv.dll
2009-04-13 06:02 31,232 a------- c:\windows\system32\wuapp.exe
2009-04-13 00:16 410,984 a------- c:\windows\system32\deploytk.dll
2009-04-09 20:40 103,744 a------- c:\windows\system32\drivers\AnyDVD.sys
2009-04-02 09:21 84,480 a------- c:\windows\system32\ff_vfw.dll
2006-11-02 08:42 287,440 a------- c:\windows\inf\perflib\0409\perfi.dat
2006-11-02 08:42 287,440 a------- c:\windows\inf\perflib\0409\perfh.dat
2006-11-02 08:42 30,674 a------- c:\windows\inf\perflib\0409\perfd.dat
2006-11-02 08:42 30,674 a------- c:\windows\inf\perflib\0409\perfc.dat
2006-11-02 05:20 287,440 a------- c:\windows\inf\perflib\0000\perfi.dat
2006-11-02 05:20 287,440 a------- c:\windows\inf\perflib\0000\perfh.dat
2006-11-02 05:20 30,674 a------- c:\windows\inf\perflib\0000\perfd.dat
2006-11-02 05:20 30,674 a------- c:\windows\inf\perflib\0000\perfc.dat
============= FINISH: 15:04:55.63 ===============
Attachments
-
2.2 KB Views: 26