DDS (Ver_09-05-14.01) - NTFSx86
Run by Ila1 at 15:46:18.12 on Thu 06/25/2009
Internet Explorer: 8.0.6001.18702
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.639.281 [GMT -4:00]
AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
============== Running Processes ===============
C:\WINNT\system32\svchost -k DcomLaunch
svchost.exe
C:\WINNT\System32\svchost.exe -k netsvcs
C:\WINNT\system32\svchost.exe -k WudfServiceGroup
svchost.exe
svchost.exe
C:\WINNT\Explorer.EXE
C:\WINNT\system32\LEXBCES.EXE
C:\WINNT\system32\LEXPPS.EXE
C:\WINNT\system32\spoolsv.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
C:\WINNT\system32\ctfmon.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
svchost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINNT\system32\nvsvc32.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINNT\system32\wuauclt.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\Program Files\AVG\AVG8\avgcsrvx.exe
C:\Documents and Settings\Ila1\Desktop\dds.pif
C:\Program Files\AVG\AVG8\avgui.exe
============== Pseudo HJT Report ===============
uStart Page = www.yahoo.com/
uSearch Page = hxxp://us.rd.yahoo.com/customize/ycomp/defaults/sp/*http://www.yahoo.com
uDefault_Page_URL = hxxp://www.msn.com
uInternet Connection Wizard,ShellNext = iexplore
uSearchURL,(Default) = hxxp://us.rd.yahoo.com/customize/ycomp/defaults/su/*http://www.yahoo.com
uURLSearchHooks: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn\yt.dll
BHO: &Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - c:\program files\yahoo!\companion\installs\cpn\yt.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg8\avgssie.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
BHO: SingleInstance Class: {fdad4da1-61a2-4fd8-9c17-86f7ac245081} - c:\program files\yahoo!\companion\installs\cpn\YTSingleInstance.dll
TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn\yt.dll
TB: {A057A204-BACC-4D26-9990-79A187E2698E} - No File
EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
uRun: [Search Protection] c:\program files\yahoo!\search protection\SearchProtection.exe
uRun: [YSearchProtection] c:\program files\yahoo!\search protection\SearchProtection.exe
uRun: [ctfmon.exe] c:\winnt\system32\ctfmon.exe
mRun: [Synchronization Manager] mobsync.exe /logon
mRun: [NvCplDaemon] RUNDLL32.EXE c:\winnt\system32\NvCpl.dll,NvStartup
mRun: [nwiz] nwiz.exe /install
mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [AVG8_TRAY] c:\progra~1\avg\avg8\avgtray.exe
mRun: [YSearchProtection] "c:\program files\yahoo!\search protection\SearchProtection.exe"
dRun: [NvMediaCenter] RUNDLL32.EXE c:\winnt\system32\NVMCTRAY.DLL,NvTaskbarInit
dRunOnce: [^SetupICWDesktop] c:\program files\internet explorer\connection wizard\icwconn1.exe /desktop
dRunOnce: [tscuninstall] %systemroot%\system32\tscupgrd.exe
StartupFolder: c:\docume~1\ila1\startm~1\programs\startup\openof~1.lnk - c:\program files\openoffice.org 3\program\quickstart.exe
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
DPF: DirectAnimation Java Classes - file://c:\winnt\java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://c:\winnt\java\classes\xmldso.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1238885248046
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_13-windows-i586.cab
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg8\avgpp.dll
Notify: avgrsstarter - avgrsstx.dll
AppInit_DLLs: NVDESK32.DLL
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\winnt\system32\WPDShServiceObj.dll
============= SERVICES / DRIVERS ===============
R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\winnt\system32\drivers\avgldx86.sys [2009-4-5 327688]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86;c:\winnt\system32\drivers\avgmfx86.sys [2009-4-5 27784]
R1 AvgTdiX;AVG Free8 Network Redirector;c:\winnt\system32\drivers\avgtdix.sys [2009-4-5 108552]
R2 avg8emc;AVG Free8 E-mail Scanner;c:\progra~1\avg\avg8\avgemc.exe [2009-4-5 906520]
R2 avg8wd;AVG Free8 WatchDog;c:\progra~1\avg\avg8\avgwdsvc.exe [2009-4-5 298776]
=============== Created Last 30 ================
2009-06-23 23:42
--d----- c:\docume~1\ila1\applic~1\GetRightToGo
2009-06-23 21:42 --d----- c:\program files\Trend Micro
2009-06-22 22:33 --d----- c:\program files\Enigma Software Group
2009-06-22 21:09 --d----- c:\docume~1\alluse~1\applic~1\SUPERAntiSpyware.com
2009-06-22 21:09 --d----- c:\program files\SUPERAntiSpyware
2009-06-22 21:09 --d----- c:\docume~1\ila1\applic~1\SUPERAntiSpyware.com
2009-06-22 19:40 --d----- c:\docume~1\ila1\applic~1\Malwarebytes
2009-06-22 19:40 38,160 a------- c:\winnt\system32\drivers\mbamswissarmy.sys
2009-06-22 19:40 --d----- c:\docume~1\alluse~1\applic~1\Malwarebytes
2009-06-22 19:40 19,096 a------- c:\winnt\system32\drivers\mbam.sys
2009-06-22 19:40 --d----- c:\program files\Malwarebytes' Anti-Malware
2009-06-22 19:08 --d----- c:\winnt\system32\wbem\Repository
2009-06-22 18:29 --d----- c:\docume~1\alluse~1\applic~1\SITEguard
2009-06-22 18:28 --d----- c:\program files\common files\iS3
2009-06-22 18:28 --d----- c:\docume~1\alluse~1\applic~1\STOPzilla!
2009-06-22 18:12 --d----- c:\winnt\system32\appmgmt
2009-06-22 17:53 --d----- c:\program files\common files\Uninstall
2009-06-22 17:52 --d----- c:\program files\PersonalAV
2009-06-10 00:55 246,272 -c------ c:\winnt\system32\dllcache\ieproxy.dll
2009-06-10 00:55 12,800 -c------ c:\winnt\system32\dllcache\xpshims.dll
2009-06-10 00:55 1,985,024 -c------ c:\winnt\system32\dllcache\iertutil.dll
2009-06-10 00:55 11,064,832 -c------ c:\winnt\system32\dllcache\ieframe.dll
2009-06-03 22:26 --d----- c:\program files\iWin
==================== Find3M ====================
2009-06-25 15:43 327,688 a------- c:\winnt\system32\drivers\avgldx86.sys
2009-06-25 15:43 11,952 a------- c:\winnt\system32\avgrsstx.dll
2009-06-24 15:46 2,180 a------- c:\winnt\system32\d3d8caps.dat
2009-06-18 23:08 1,744 a------- c:\winnt\system32\d3d9caps.dat
2009-05-13 01:15 915,456 a------- c:\winnt\system32\wininet.dll
2009-05-07 11:32 345,600 a------- c:\winnt\system32\localspl.dll
2009-05-01 22:25 108,552 a------- c:\winnt\system32\drivers\avgtdix.sys
2009-04-17 08:26 1,847,168 a------- c:\winnt\system32\win32k.sys
2009-04-15 10:51 585,216 a------- c:\winnt\system32\rpcrt4.dll
2009-04-05 10:58 86,315 a------- c:\winnt\pchealth\helpctr\offlinecache\index.dat
2009-04-04 17:27 22,192 a------- c:\winnt\system32\emptyregdb.dat
2009-04-04 14:02 410,984 a------- c:\winnt\system32\deploytk.dll
2009-04-04 11:57 4,212 a---h--- c:\winnt\system32\zllictbl.dat
2009-04-02 20:37 2,678 a------- c:\winnt\java\packages\data\GGBNB1NP.DAT
2009-04-02 20:37 2,678 a------- c:\winnt\java\packages\data\U5ZVPBJ9.DAT
2009-04-02 20:37 2,678 a------- c:\winnt\java\packages\data\TB3PNNL7.DAT
2009-04-02 20:37 2,678 a------- c:\winnt\java\packages\data\LR73F3HZ.DAT
2009-04-02 20:37 2,678 a------- c:\winnt\java\packages\data\HJ7HFV7L.DAT
2009-04-02 17:46 558,142 a------- c:\winnt\java\packages\5Z9NJV7L.ZIP
2009-04-02 17:46 2,474 a------- c:\winnt\java\packages\data\B5NH3JLZ.DAT
2009-04-02 17:46 155,995 a------- c:\winnt\java\packages\GF331RVH.ZIP
2009-04-02 17:46 2,232 a------- c:\winnt\java\packages\data\BZNFHJ1R.DAT
2009-04-02 17:45 21,952 a---h--- c:\program files\folder.htt
2009-04-02 17:45 271 ---sh--- c:\program files\desktop.ini
============= FINISH: 15:47:02.53 ===============
there ya go=]
thank you so much for helping me btw