1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Active No access to anti-virus sites

Discussion in 'Malware and Virus Removal Archive' started by jamesl, 2009/09/01.

  1. 2009/09/01
    jamesl

    jamesl Inactive Thread Starter

    Joined:
    2009/09/01
    Messages:
    1
    Likes Received:
    0
    [Active] No access to anti-virus sites

    DDS (Ver_09-07-30.01) - NTFSx86
    Run by james at 21:15:56.24 on Tue 01/09/2009
    Internet Explorer: 7.0.6000.16890
    Microsoft® Windows Vistaâ„¢ Home Basic 6.0.6000.0.1252.61.1033.18.958.262 [GMT 10:00]

    AV: AVG Anti-Virus *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
    SP: AVG Anti-Virus *enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
    SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}

    ============== Running Processes ===============

    C:\Windows\system32\wininit.exe
    C:\Windows\system32\lsm.exe
    C:\Windows\system32\svchost.exe -k DcomLaunch
    C:\Windows\system32\nvvsvc.exe
    C:\Windows\system32\svchost.exe -k rpcss
    C:\Windows\System32\svchost.exe -k secsvcs
    C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
    C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
    C:\Windows\system32\svchost.exe -k netsvcs
    C:\Windows\system32\SLsvc.exe
    C:\Windows\system32\svchost.exe -k LocalService
    C:\Windows\system32\rundll32.exe
    C:\Windows\system32\svchost.exe -k NetworkService
    C:\Windows\System32\spoolsv.exe
    C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
    C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Windows\system32\svchost.exe -k hpdevmgmt
    C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
    C:\Windows\System32\svchost.exe -k HPZ12
    C:\Windows\system32\IoctlSvc.exe
    C:\Windows\System32\svchost.exe -k HPZ12
    C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
    C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
    C:\Windows\system32\svchost.exe -k imgsvc
    C:\PROGRA~1\AVG\AVG8\avgam.exe
    C:\PROGRA~1\AVG\AVG8\avgrsx.exe
    C:\PROGRA~1\AVG\AVG8\avgnsx.exe
    C:\Windows\System32\svchost.exe -k WerSvcGroup
    C:\Windows\system32\SearchIndexer.exe
    C:\PROGRA~1\AVG\AVG8\avgemc.exe
    C:\Windows\system32\WUDFHost.exe
    C:\Program Files\AVG\AVG8\avgcsrvx.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Program Files\Windows Defender\MSASCui.exe
    C:\Windows\System32\rundll32.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Windows\System32\rundll32.exe
    C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_clipbook.exe
    C:\Program Files\Windows Media Player\wmpnetwk.exe
    C:\Program Files\Internet Explorer\ieuser.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    J:\windows-kb890830-v2.13.exe
    c:\621a0f203ae798ccf5d7bb\mrtstub.exe
    C:\Users\james\AppData\Local\Temp\MRT.exe
    C:\Users\james\AppData\Local\Temp\MRT.exe
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\Windows\system32\SearchProtocolHost.exe
    C:\Windows\system32\SearchFilterHost.exe
    C:\Users\james\Desktop\dds.scr
    C:\Windows\system32\wbem\wmiprvse.exe

    ============== Pseudo HJT Report ===============

    uStart Page = hxxp://www.google.com.au/
    BHO: {02478D38-C3F9-4efb-9B51-7695ECA05670} - No File
    BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg8\avgssie.dll
    BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
    BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SEPsearchhelperie.dll
    BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
    BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
    BHO: HP Smart BHO Class: {ffffffff-cf4e-4f2b-bdc2-0e72e116a856} - c:\program files\hp\digital imaging\smart web printing\hpswp_BHO.dll
    TB: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
    uRun: [uTorrent] "c:\program files\utorrent\uTorrent.exe "
    uRun: [ter8m] RUNDLL32.EXE c:\windows\temp\msxm192z.dll,w
    mRun: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
    mRun: [AVG8_TRAY] c:\progra~1\avg\avg8\avgtray.exe
    mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
    mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
    mRun: [WPCUMI] c:\windows\system32\WpcUmi.exe
    mRun: [RegistryWm] c:\windows\system32\qtwm.exe
    mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe "
    dRun: [ter8m] RUNDLL32.EXE c:\windows\temp\msxm192z.dll,w
    IE: E&xport to Microsoft Excel - c:\progra~1\micros~4\office12\EXCEL.EXE/3000
    IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~4\office12\REFIEBAR.DLL
    IE: {DDE87865-83C5-48c4-8357-2F5B1AA84522} - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - c:\program files\hp\digital imaging\smart web printing\hpswp_BHO.dll
    LSP: c:\windows\system32\wpclsp.dll
    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab
    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab
    Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg8\avgpp.dll
    AppInit_DLLs: avgrsstx.dll

    ============= SERVICES / DRIVERS ===============

    R0 AvgRkx86;avgrkx86.sys;c:\windows\system32\drivers\avgrkx86.sys [2009-7-27 12552]
    R1 AvgLdx86;AVG AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2009-7-27 335240]
    R1 AvgTdiX;AVG8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2009-7-27 108552]
    R2 avg8emc;AVG8 E-mail Scanner;c:\progra~1\avg\avg8\avgemc.exe [2009-7-27 908056]
    R2 avg8wd;AVG8 WatchDog;c:\progra~1\avg\avg8\avgwdsvc.exe [2009-7-27 297752]
    R2 SeaPort;SeaPort;c:\program files\microsoft\search enhancement pack\seaport\SeaPort.exe [2009-5-19 240512]
    R3 VST_DPV;VST_DPV;c:\windows\system32\drivers\VSTDPV3.SYS [2006-11-2 987648]
    R3 VSTHWBS2;VSTHWBS2;c:\windows\system32\drivers\VSTBS23.SYS [2006-11-2 251904]
    S3 PAC7311;VGA USB Camera;c:\windows\system32\drivers\PA707UCM.SYS [2009-8-11 530304]

    =============== Created Last 30 ================

    2009-09-01 20:54 411,368 a------- c:\windows\system32\deploytk.dll
    2009-09-01 20:42 <DIR> --d----- C:\621a0f203ae798ccf5d7bb
    2009-08-27 20:30 <DIR> --d----- c:\programdata\Office Genuine Advantage
    2009-08-25 21:40 91 a------- c:\windows\system32\kbiwkmblddvlny.dat
    2009-08-25 21:37 <DIR> --d----- c:\programdata\Innovative Solutions
    2009-08-25 21:37 <DIR> --d----- c:\progra~2\Innovative Solutions
    2009-08-25 21:30 18,944 a------- c:\windows\system32\kbiwkmcxodckqm.dll
    2009-08-25 21:28 1,023 a------- c:\windows\system32\kbiwkmrfpputiu.dat
    2009-08-25 21:28 42,496 a------- c:\windows\system32\kbiwkmxrefvvmf.dll
    2009-08-25 21:28 67,072 -------- c:\windows\system32\drivers\kbiwkmjgeplxdj.sys
    2009-08-25 21:18 <DIR> --d----- c:\users\james\appdata\roaming\Blitware
    2009-08-23 18:54 494,592 a------- c:\windows\system32\kerberos.dll
    2009-08-23 18:54 1,233,920 a------- c:\windows\system32\lsasrv.dll
    2009-08-23 18:54 272,384 a------- c:\windows\system32\schannel.dll
    2009-08-23 18:54 216,576 a------- c:\windows\system32\msv1_0.dll
    2009-08-23 18:54 175,104 a------- c:\windows\system32\wdigest.dll
    2009-08-23 18:54 408,136 a------- c:\windows\system32\drivers\ksecdd.sys
    2009-08-23 18:54 7,680 a------- c:\windows\system32\lsass.exe
    2009-08-23 18:54 72,704 a------- c:\windows\system32\secur32.dll
    2009-08-23 09:57 <DIR> --dsh--- C:\found.000
    2009-08-22 11:47 <DIR> --d----- c:\programdata\TEMP
    2009-08-22 11:47 60,273 a------- c:\windows\system32\pthreadGC2.dll
    2009-08-22 11:47 57,344 a------- c:\windows\system32\ff_vfw.dll
    2009-08-22 10:30 <DIR> --d----- c:\program files\Intelore
    2009-08-13 15:59 1,871,872 a------- c:\windows\system32\mstscax.dll
    2009-08-13 15:59 116,736 a------- c:\windows\system32\aaclient.dll
    2009-08-13 15:59 36,352 a------- c:\windows\system32\tsgqec.dll
    2009-08-13 15:59 71,680 a------- c:\windows\system32\atl.dll
    2009-08-13 15:59 156,160 a------- c:\windows\system32\wkssvc.dll
    2009-08-13 15:58 313,344 a------- c:\windows\system32\wmpdxm.dll
    2009-08-13 15:58 7,680 a------- c:\windows\system32\spwmp.dll
    2009-08-13 15:58 4,096 a------- c:\windows\system32\msdxm.ocx
    2009-08-13 15:58 4,096 a------- c:\windows\system32\dxmasf.dll
    2009-08-13 15:58 8,147,968 a------- c:\windows\system32\wmploc.DLL
    2009-08-13 15:57 43,520 a------- c:\windows\system32\msdxm.tlb
    2009-08-13 15:57 18,432 a------- c:\windows\system32\amcompat.tlb
    2009-08-13 15:57 123,904 a------- c:\windows\system32\msvfw32.dll
    2009-08-13 15:57 88,576 a------- c:\windows\system32\avifil32.dll
    2009-08-13 15:57 82,944 a------- c:\windows\system32\mciavi32.dll
    2009-08-13 15:57 65,024 a------- c:\windows\system32\avicap32.dll
    2009-08-13 15:57 31,232 a------- c:\windows\system32\msvidc32.dll
    2009-08-13 15:57 12,800 a------- c:\windows\system32\msrle32.dll
    2009-08-12 17:02 <DIR> --d----- c:\program files\Windows Live SkyDrive
    2009-08-11 17:54 <DIR> --d----- c:\windows\Pixart
    2009-08-11 17:54 530,304 a------- c:\windows\system32\drivers\PA707UCM.SYS
    2009-08-11 17:54 119,296 a------- c:\windows\system32\SP7311.AX
    2009-08-11 17:54 6,656 a------- c:\windows\system32\CoInst.dll
    2009-08-11 17:54 518 a------- c:\windows\system32\SP7311.INI
    2009-08-11 17:54 <DIR> --d----- c:\program files\VGA USB Camera
    2009-08-11 17:41 327,168 a------- c:\windows\IsUninst.exe
    2009-08-11 17:41 268 a------- c:\windows\_delis32.ini
    2009-08-11 17:40 12 a------- c:\windows\Ulead32.ini
    2009-08-09 12:44 <DIR> --d----- c:\program files\Nero
    2009-08-09 11:27 <DIR> --d----- c:\programdata\Nero
    2009-08-09 11:27 <DIR> --d----- c:\progra~2\Nero
    2009-08-07 17:20 <DIR> --d----- c:\program files\uTorrent
    2009-08-07 17:19 <DIR> --d----- c:\users\james\appdata\roaming\uTorrent
    2009-08-03 21:17 <DIR> --d----- c:\program files\MSXML 4.0
    2009-08-02 21:45 <DIR> --d----- c:\programdata\WEBREG
    2009-08-02 21:45 <DIR> --d----- c:\progra~2\WEBREG
    2009-08-02 21:39 <DIR> --d----- c:\programdata\HP Product Assistant
    2009-08-02 21:28 <DIR> --d----- c:\program files\common files\HP
    2009-08-02 21:28 <DIR> --d----- c:\program files\common files\Hewlett-Packard
    2009-08-02 21:28 271,704 a------- c:\windows\system32\hpzids01.dll
    2009-08-02 21:27 118,272 a------- c:\windows\system32\hpz3l696.dll
    2009-08-02 21:27 974,848 a------- c:\windows\system32\hpost_p01b.dll
    2009-08-02 21:27 307,200 a------- c:\windows\system32\hposc_p01a.dll
    2009-08-02 21:27 372,736 a------- c:\windows\system32\hppldcoi.dll
    2009-08-02 21:27 309,760 a------- c:\windows\system32\difxapi.dll
    2009-08-02 21:27 737,280 a------- c:\windows\system32\hposwia_p01b.dll
    2009-08-02 21:25 151,168 a------- c:\windows\hpoins32.dat
    2009-08-02 21:25 1,006 -------- c:\windows\hpomdl32.dat

    ==================== Find3M ====================

    2009-08-11 17:56 86,016 a------- c:\windows\inf\infstrng.dat
    2009-08-11 17:56 51,200 a------- c:\windows\inf\infpub.dat
    2009-08-11 17:56 86,016 a------- c:\windows\inf\infstor.dat
    2009-07-31 15:18 335,240 a------- c:\windows\system32\drivers\avgldx86.sys
    2009-07-31 15:18 11,952 a------- c:\windows\system32\avgrsstx.dll
    2009-07-30 21:41 229,888 a------- c:\windows\system32\msshsq.dll
    2009-07-30 17:10 268,800 a------- c:\windows\system32\es.dll
    2009-07-30 17:05 72,704 a------- c:\windows\system32\admparse.dll
    2009-07-30 17:05 52,736 a------- c:\windows\apppatch\iebrshim.dll
    2009-07-30 17:05 827,392 a------- c:\windows\system32\wininet.dll
    2009-07-30 17:05 78,336 a------- c:\windows\system32\ieencode.dll
    2009-07-30 17:05 48,128 a------- c:\windows\system32\mshtmler.dll
    2009-07-30 17:05 47,104 a------- c:\windows\system32\ieUnatt.exe
    2009-07-30 17:05 56,320 a------- c:\windows\system32\iesetup.dll
    2009-07-29 07:44 361,984 a------- c:\windows\system32\IPSECSVC.DLL
    2009-07-29 07:44 272,896 a------- c:\windows\system32\polstore.dll
    2009-07-29 07:44 61,440 a------- c:\windows\system32\winipsec.dll
    2009-07-29 07:44 28,672 a------- c:\windows\system32\FwRemoteSvr.dll
    2009-07-29 07:28 665,600 a------- c:\windows\inf\drvindex.dat
    2009-07-29 07:26 174 a--sh--- c:\program files\desktop.ini
    2009-07-29 03:29 241,152 a------- c:\windows\system32\PortableDeviceApi.dll
    2009-07-29 03:29 160,768 a------- c:\windows\system32\PortableDeviceTypes.dll
    2009-07-29 03:29 95,232 a------- c:\windows\system32\PortableDeviceClassExtension.dll
    2009-07-29 01:11 297,472 a------- c:\windows\system32\gdi32.dll
    2009-07-29 00:57 1,060,920 a------- c:\windows\system32\drivers\ntfs.sys
    2009-07-29 00:57 41,984 a------- c:\windows\system32\drivers\monitor.sys
    2009-07-29 00:41 211,456 a------- c:\windows\system32\drivers\mrxsmb10.sys
    2009-07-29 00:30 500,736 a------- c:\windows\system32\msdtcprx.dll
    2009-07-29 00:30 30,208 a------- c:\windows\system32\xolehlp.dll
    2009-07-29 00:21 28,672 a------- c:\windows\system32\Apphlpdm.dll
    2009-07-29 00:21 2,560 a------- c:\windows\apppatch\AcRes.dll
    2009-07-29 00:21 2,144,256 a------- c:\windows\apppatch\AcGenral.dll
    2009-07-29 00:21 537,600 a------- c:\windows\apppatch\AcLayers.dll
    2009-07-29 00:21 449,536 a------- c:\windows\apppatch\AcSpecfc.dll
    2009-07-29 00:21 173,056 a------- c:\windows\apppatch\AcXtrnal.dll
    2009-07-29 00:21 4,247,552 a------- c:\windows\system32\GameUXLegacyGDFs.dll
    2009-07-29 00:21 1,687,040 a------- c:\windows\system32\gameux.dll
    2009-07-29 00:09 303,616 a------- c:\windows\system32\wmpeffects.dll
    2009-07-28 23:57 1,194,496 a------- c:\windows\system32\msxml3.dll
    2009-07-28 23:57 2,048 a------- c:\windows\system32\msxml3r.dll
    2009-07-28 23:44 414,208 a------- c:\windows\system32\msscp.dll
    2009-07-28 23:31 356,864 a------- c:\windows\system32\MediaMetadataHandler.dll
    2009-07-28 23:19 396,800 a------- c:\windows\system32\MPSSVC.dll
    2009-07-28 23:19 392,192 a------- c:\windows\system32\FirewallAPI.dll
    2009-07-28 23:19 63,488 a------- c:\windows\system32\drivers\mpsdrv.sys
    2009-07-28 23:19 86,016 a------- c:\windows\system32\icfupgd.dll
    2009-07-28 23:19 61,952 a------- c:\windows\system32\cmifw.dll
    2009-07-28 23:19 16,896 a------- c:\windows\system32\wfapigp.dll
    2009-07-28 23:19 178,688 a------- c:\windows\system32\iphlpsvc.dll
    2009-07-28 23:19 23,040 a------- c:\windows\system32\drivers\tunnel.sys
    2009-07-28 23:19 15,360 a------- c:\windows\system32\drivers\TUNMP.SYS
    2009-07-28 22:49 2,048 a------- c:\windows\system32\tzres.dll
    2009-07-28 21:59 696,832 a------- c:\windows\system32\localspl.dll
    2009-07-28 07:21 205,824 a------- c:\windows\system32\msoeacct.dll
    2009-07-28 07:21 39,424 a------- c:\windows\system32\ACCTRES.dll
    2009-07-28 07:21 87,040 a------- c:\windows\system32\msoert2.dll
    2009-07-28 07:07 724,480 a------- c:\windows\system32\PhotoScreensaver.scr
    2009-07-28 07:07 356,352 a------- c:\windows\system32\wbem\wbemcomn.dll
    2009-07-28 07:07 24,064 a------- c:\windows\system32\wtsapi32.dll
    2009-07-28 07:07 258,232 a------- c:\windows\system32\drivers\acpi.sys
    2009-07-28 07:07 542,720 a------- c:\windows\system32\sysmain.dll
    2009-07-28 07:06 502,784 a------- c:\windows\system32\wlansvc.dll
    2009-07-28 07:06 290,816 a------- c:\windows\system32\wlanmsm.dll
    2009-07-28 07:06 67,584 a------- c:\windows\system32\wlanhlp.dll
    2009-07-28 07:06 47,104 a------- c:\windows\system32\wlanapi.dll
    2009-07-28 07:06 297,984 a------- c:\windows\system32\wlansec.dll
    2009-07-28 06:53 194,560 a------- c:\windows\system32\WebClnt.dll
    2009-07-28 06:53 110,080 a------- c:\windows\system32\drivers\mrxdav.sys
    2009-07-28 06:40 2,028,032 a------- c:\windows\system32\win32k.sys
    2009-07-28 06:25 156,160 a------- c:\windows\system32\t2embed.dll
    2009-07-28 06:25 289,792 a------- c:\windows\system32\atmfd.dll
    2009-07-28 06:25 72,704 a------- c:\windows\system32\fontsub.dll
    2009-07-28 06:25 34,304 a------- c:\windows\system32\atmlib.dll
    2009-07-28 06:25 24,064 a------- c:\windows\system32\lpk.dll
    2009-07-28 06:25 10,240 a------- c:\windows\system32\dciman32.dll
    2009-07-28 05:56 376,320 a------- c:\windows\system32\winsrv.dll
    2009-07-28 05:56 49,664 a------- c:\windows\system32\csrsrv.dll
    2009-07-28 05:12 376,832 a------- c:\windows\system32\winhttp.dll
    2009-07-28 01:37 211,000 a------- c:\windows\system32\drivers\volsnap.sys
    2009-07-28 01:37 154,624 a------- c:\windows\system32\drivers\nwifi.sys
    2009-07-28 01:21 124,928 a------- c:\windows\system32\DWWIN.EXE
    2009-07-28 01:06 2,923,520 a------- c:\windows\explorer.exe
    2009-07-28 00:10 216,632 a------- c:\windows\system32\drivers\netio.sys
    2009-07-28 00:10 44,544 a------- c:\windows\system32\netcfg.exe
    2009-07-28 00:10 803,328 a------- c:\windows\system32\drivers\tcpip.sys
    2009-07-28 00:10 167,424 a------- c:\windows\system32\tcpipcfg.dll
    2009-07-28 00:10 42,496 a------- c:\windows\system32\netiougc.exe
    2009-07-27 23:54 6,781,440 a------- c:\windows\system32\NlsLexicons0019.dll
    2009-07-27 23:54 11,722,752 a------- c:\windows\system32\NlsLexicons0001.dll
    2009-07-27 23:54 4,164,096 a------- c:\windows\system32\NlsLexicons0002.dll
    2009-07-27 23:54 1,452,544 a------- c:\windows\system32\NlsLexicons0003.dll
    2009-07-27 23:54 12,240,896 a------- c:\windows\system32\NlsLexicons0007.dll
    2009-07-27 23:54 2,644,480 a------- c:\windows\system32\NlsLexicons0009.dll
    2009-07-27 23:54 3,419,136 a------- c:\windows\system32\NlsLexicons004a.dll
    2009-07-27 23:54 1,702,912 a------- c:\windows\system32\NlsLexicons004b.dll
    2009-07-27 23:54 4,093,440 a------- c:\windows\system32\NlsLexicons004c.dll
    2009-07-27 23:54 1,972,736 a------- c:\windows\system32\NlsLexicons004e.dll
    2009-07-27 23:53 4,045,824 a------- c:\windows\system32\NlsLexicons003e.dll
    2009-07-27 23:53 4,096 a------- c:\windows\system32\NlsLexicons002a.dll
    2009-07-27 23:53:52 A------- 6,014,976 c:\windows\system32\NlsLexicons001a.dll
    2007-02-22 05:49 8,192 a--sh--- c:\windows\users\default\NTUSER.DAT

    ============= FINISH: 21:21:10.67 ===============

    NLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT

    DDS (Ver_09-07-30.01)

    Microsoft® Windows Vistaâ„¢ Home Basic
    Boot Device: \Device\HarddiskVolume3
    Install Date: 27/07/2009 7:19:52 PM
    System Uptime: 9/01/2009 8:01:12 PM (5641 hours ago)

    Motherboard: Dell Inc | | 0HY175
    Processor: AMD Athlon(tm) 64 Processor 3500+ | Socket M2 | 2000/1000mhz

    ==== Disk Partitions =========================

    C: is FIXED (NTFS) - 147 GiB total, 121.461 GiB free.
    D: is FIXED (NTFS) - 2 GiB total, 1.111 GiB free.
    E: is CDROM ()
    F: is Removable
    G: is Removable
    H: is Removable
    I: is Removable
    J: is Removable

    ==== Disabled Device Manager Items =============

    ==== System Restore Points ===================


    ==== Installed Programs ======================

    32 Bit HP CIO Components Installer
    Adobe Flash Player 10 ActiveX
    Apple Mobile Device Support
    Apple Software Update
    µTorrent
    AVG 8.5
    Bonjour
    BufferChm
    C5300
    Choice Guard
    Destination Component
    DeviceDiscovery
    FrostWire 4.18.0
    GPBaseService2
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
    HP Customer Participation Program 12.0
    HP Imaging Device Functions 12.0
    HP Photosmart C5300 All-In-One Driver Software 12.0 Rel .4
    HP Photosmart Essential 3.5
    HP Smart Web Printing
    HP Solution Center 12.0
    HP Update
    HPPhotoGadget
    HPPhotoSmartDiscLabel_PaperLabel
    HPPhotoSmartDiscLabel_PrintOnDisc
    HPPhotoSmartDiscLabelContent1
    hpphotosmartdisclabelplugin
    HPPhotosmartEssential
    HPProductAssistant
    HPSSupply
    iTunes
    Java(TM) 6 Update 16
    Java(TM) 6 Update 7
    MarketResearch
    Microsoft .NET Framework 3.5 SP1
    Microsoft Application Error Reporting
    Microsoft Office Basic 2007
    Microsoft Office Excel MUI (English) 2007
    Microsoft Office Outlook MUI (English) 2007
    Microsoft Office Proof (English) 2007
    Microsoft Office Proof (French) 2007
    Microsoft Office Proof (Spanish) 2007
    Microsoft Office Proofing (English) 2007
    Microsoft Office Shared MUI (English) 2007
    Microsoft Office Shared Setup Metadata MUI (English) 2007
    Microsoft Office Word MUI (English) 2007
    Microsoft Search Enhancement Pack
    Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
    Microsoft Visual C++ 2005 Redistributable
    Microsoft XML Parser
    MSVCRT
    MSXML 4.0 SP2 (KB954430)
    Nero 8
    Nero ControlCenter
    neroxml
    NVIDIA Drivers
    OGA Notifier 1.7.0105.35.0
    PS_AIO_04_C5300_Software_Min
    QuickTime
    Scan
    Shop for HP Supplies
    SmartWebPrinting
    SolutionCenter
    Status
    Toolbox
    TrayApp
    UnloadSupport
    Update for 2007 Microsoft Office System (KB967642)
    Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
    Update for Microsoft Office 2007 Help for Common Features (KB963673)
    Update for Microsoft Office Excel 2007 Help (KB963678)
    Update for Microsoft Office Outlook 2007 Help (KB963677)
    Update for Microsoft Office Script Editor Help (KB963671)
    Update for Microsoft Office Word 2007 Help (KB963665)
    Update for Outlook 2007 Junk Email Filter (kb972691)
    VCRedistSetup
    VGA USB Camera
    WebReg
    Windows Live Call
    Windows Live Communications Platform
    Windows Live Essentials
    Windows Live Messenger
    Windows Live Sign-in Assistant
    Windows Live Upload Tool
    WinRAR archiver

    ==== End Of File ===========================
     
  2. 2009/09/01
    Geri Lifetime Subscription

    Geri Inactive Alumni

    Joined:
    2003/03/02
    Messages:
    4,580
    Likes Received:
    7
    Hi jamesl
    Welcome to WindowsBBS

    You have a keylogger on your system.
    I would suggest you change all passwords using a Non-infected computer (Not this one) and refrain from any credit card or financial dealings until clean. If you do any financial dealings with this computer Contact any credit card or banks for possible fraud on your account.

    I see you have P2P software ( Limewire, BitTorrent uTorrent etc… ) installed on your machine. We are not here to pass judgment on file-sharing as a concept. However, we will warn you that engaging in this activity and having this kind of software installed on your machine will always make you more susceptible to re-infections. It may be contributing to your current situation. This page will give you further information.

    Please note: Even if you are using a "safe" P2P program, it is only the program that is safe. You will be sharing files from uncertified sources, and these are often infected. The bad guys use P2P filesharing as a major conduit to spread their wares and their infections.

    References for the risk of these programs are here, and here.

    I would strongly recommend that you uninstall them,

    Note: Please be advised that continued use of these programs after being warned of the danger of infections from them, may result in the discontinued help of future cleaning of your system here at WindowsBBS Malware and Virus removal.


    Please do this.

    Download ComboFix from Here to your Desktop.

    It's best to disable realtime protection applications as they sometimes interfere with the tool.
    Check this link for any applicable programs you may have.
    • Close all open programs and windows
    • Double click combofix.exe and follow the prompts.
    • Vista users right click Combofix.exe and select Run As Administrator.
    • When finished, it shall produce a log for you. Post the Combofix log
    Note: Do not mouse click combofix's window while its running. That may cause it to stall

    If you are prompted to install the Recovery Console, Please do so.


    Thanks
    Geri
     
    Geri,
    #2

  3. to hide this advert.

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.