DDS (Ver_09-12-01.01) - NTFSx86 NETWORK
Run by Compaq_Owner at 12:47:10.18 on Wed 01/20/2010
Internet Explorer: 7.0.5730.13
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.447.66 [GMT -5:00]
AV: McAfee VirusScan *On-access scanning disabled* (Updated) {84B5EE75-6421-4CDE-A33A-DD43BA9FAD83}
FW: McAfee Personal Firewall *enabled* {94894B63-8C7F-4050-BDA4-813CA00DA3E8}
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Compaq_Owner\My Documents\dds.pif
============== Pseudo HJT Report ===============
uSearch Bar = hxxp://us.rd.yahoo.com/customize/ycomp/defaults/sb/*http://www.yahoo.com/search/ie.html
uSearchMigratedDefaultURL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
uStart Page = hxxp://www.shinysearch.com/myhome.php?style=dark-angel<ext=MY%20COOL%20GEEKPOLICE
uInternet Settings,ProxyServer = http=127.0.0.1:5555
uInternet Settings,ProxyOverride =
uSearchURL,(Default) = hxxp://us.rd.yahoo.com/customize/ycomp/defaults/su/*http://www.yahoo.com
BHO: &Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - c:\program files\yahoo!\companion\installs\cpn0\yt.dll
BHO: AcroIEHlprObj Class: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 6.0\reader\activex\AcroIEHelper.dll
BHO: CommentsBar Toolbar: {71d2cf9e-34e4-4401-8841-f4fc3f3edc32} - c:\program files\commentsbar\tbComm.dll
BHO: Comcast Toolbar: {79ceea4e-c231-4614-9e3b-53b2a02f39b7} - c:\program files\comcasttb\comcastdx.dll
BHO: scriptproxy: {7db2d5a0-7241-4e79-b68d-6309f01c5231} - c:\program files\mcafee\virusscan\scriptsn.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn0\yt.dll
TB: Comcast Toolbar: {79ceea4e-c231-4614-9e3b-53b2a02f39b7} - c:\program files\comcasttb\comcastdx.dll
TB: CommentsBar Toolbar: {71d2cf9e-34e4-4401-8841-f4fc3f3edc32} - c:\program files\commentsbar\tbComm.dll
TB: {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - No File
uRun: [Search Protection] c:\program files\yahoo!\search protection\SearchProtection.exe
uRun: [YSearchProtection] c:\program files\yahoo!\search protection\SearchProtection.exe
uRun: [Messenger (Yahoo!)] "c:\progra~1\yahoo!\messen~1\YAHOOM~1.EXE" -quiet
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [Weather] c:\program files\aws\weatherbug\Weather.exe 1
uRun: [DesktopWallpaper] c:\windows\web\wallpa~1\wallery\DESKTO~1.EXE
uRun: [Exetender] "c:\program files\free ride games\GPlayer.exe" /runonstartup
uRun: [ComcastAntispyClient] "c:\program files\comcasttb\comcastspywarescan\ComcastAntispy.exe" /hide
uRun: [PersonalSec] c:\program files\personalsec\psecurity.exe
uRun: [xggvkbpj] c:\documents and settings\compaq_owner\local settings\application data\bipcoc\gvbgsysguard.exe
mRun: [hpsysdrv] c:\windows\system\hpsysdrv.exe
mRun: [KBD] c:\hp\kbd\KBD.EXE
mRun: [iTunesHelper] c:\program files\itunes\iTunesHelper.exe
mRun: [Recguard] c:\windows\sminst\RECGUARD.EXE
mRun: [VTTimer] VTTimer.exe
mRun: [AGRSMMSG] AGRSMMSG.exe
mRun: [PS2] c:\windows\system32\ps2.exe
mRun: [YMailAdvisor] "c:\program files\yahoo!\common\YMailAdvisor.exe"
mRun: [YSearchProtection] "c:\program files\yahoo!\search protection\SearchProtection.exe"
mRun: [mcagent_exe] "c:\program files\mcafee.com\agent\mcagent.exe" /runkey
mRun: [CanonMyPrinter] c:\program files\canon\myprinter\BJMyPrt.exe /logon
dRun: [Exetender] "c:\program files\free ride games\GPlayer.exe /runonstartup"
StartupFolder: c:\docume~1\compaq~1\startm~1\programs\startup\limewi~1.lnk - c:\program files\limewire\LimeWire.exe
StartupFolder: c:\docume~1\compaq~1\startm~1\programs\startup\wkcalrem.lnk - c:\program files\common files\microsoft shared\works shared\WkCalRem.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\compaq~1.lnk - c:\program files\compaq connections\6750491\program\Compaq Connections.exe
IE: {CDAFD956-97BE-443D-8EF7-F4F094EB5766} - c:\program files\crawler\ssaver\CSSaver.exe
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\mi1933~1\office11\REFIEBAR.DLL
DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - c:\program files\yahoo!\common\Yinsthelper.dll
DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} -
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} - hxxp://download.mcafee.com/molbin/iss-loc/mcfscan/2,2,0,5847/mcfscan.cab
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
================= FIREFOX ===================
FF - ProfilePath - c:\docume~1\compaq~1\applic~1\mozilla\firefox\profiles\b18tjpkg.default\
FF - plugin: c:\documents and settings\compaq_owner\application data\move networks\plugins\npqmp071705000014.dll
FF - plugin: c:\program files\free ride games\npExentCtl.dll
FF - hȋdden: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\dotnetassistantextension\
---- FIREFOX POLICIES ----
c:\program files\mozilla firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\mozilla firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\mozilla firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
============= SERVICES / DRIVERS ===============
S1 mfehidk;McAfee Inc. mfehidk;c:\windows\system32\drivers\mfehidk.sys [2009-11-4 214664]
S2 Akamai;Akamai NetSession Interface;c:\windows\system32\svchost.exe -k Akamai [2004-8-8 14336]
S2 AntiSpywareService;Comcast AntiSpyware;c:\program files\comcasttb\comcastspywarescan\ComcastAntiSpyService.exe [2009-6-17 616408]
S2 McProxy;McAfee Proxy Service;c:\progra~1\common~1\mcafee\mcproxy\mcproxy.exe [2009-12-30 359952]
S2 McShield;McAfee Real-time Scanner;c:\progra~1\mcafee\viruss~1\mcshield.exe [2009-12-30 144704]
S2 X4HS32Ex;X4HS32Ex;c:\program files\free ride games\X4HS32Ex.sys [2009-12-25 53280]
S3 McSysmon;McAfee SystemGuards;c:\progra~1\mcafee\viruss~1\mcsysmon.exe [2009-12-30 606736]
S3 mfeavfk;McAfee Inc. mfeavfk;c:\windows\system32\drivers\mfeavfk.sys [2009-12-30 79816]
S3 mfebopk;McAfee Inc. mfebopk;c:\windows\system32\drivers\mfebopk.sys [2009-12-30 35272]
S3 mferkdk;McAfee Inc. mferkdk;c:\windows\system32\drivers\mferkdk.sys [2009-12-30 34248]
S3 mfesmfk;McAfee Inc. mfesmfk;c:\windows\system32\drivers\mfesmfk.sys [2009-12-30 40552]
=============== Created Last 30 ================
2010-01-20 15:11:08 0 d-----w- c:\documents and settings\compaq_owner\dwhelper
2010-01-20 04:30:20 54156 ---ha-w- c:\windows\QTFont.qfn
2010-01-20 04:30:20 1409 ----a-w- c:\windows\QTFont.for
2010-01-19 21:00:41 8212 ----a-w- c:\windows\mfebcdata
2010-01-19 17:25:36 209192 ----a-w- c:\windows\system32\TABCTL32.OCX
2010-01-19 17:25:35 851968 ----a-w- c:\windows\system32\sendsit.dll
2010-01-19 17:25:35 81920 ----a-w- c:\windows\system32\Balloon.ocx
2010-01-19 17:25:35 647872 ----a-w- c:\windows\system32\mscomct2.ocx
2010-01-19 17:25:35 203576 ----a-w- c:\windows\system32\RICHTX32.OCX
2010-01-19 17:25:35 180224 ----a-w- c:\windows\system32\alcrypto3.dll
2010-01-19 17:25:35 115920 ----a-w- c:\windows\system32\MSINET.OCX
2010-01-19 17:25:35 1097728 ----a-w- c:\windows\system32\SCGrid.ocx
2010-01-19 17:25:35 108336 ----a-w- c:\windows\system32\MSWINSCK.OCX
2010-01-19 17:25:35 0 d-----w- C:\Refresher Pro 1.3
2010-01-19 16:19:52 0 d-----w- c:\program files\iCopyExpert
2010-01-19 16:19:52 0 d-----w- c:\docume~1\compaq~1\applic~1\iCopyExpert
2010-01-19 13:19:37 0 d-----w- c:\docume~1\compaq~1\applic~1\Malwarebytes
2010-01-19 13:18:54 0 d-----w- c:\program files\luly
2010-01-19 13:18:53 0 d-----w- c:\program files\Conduit
2010-01-19 13:18:03 0 d-----w- c:\docume~1\compaq~1\applic~1\GetRightToGo
2010-01-19 13:18:02 0 d--h--w- c:\docume~1\alluse~1\applic~1\CanonIJEGV
2010-01-16 22:27:26 664 ----a-w- c:\windows\system32\d3d9caps.dat
2010-01-06 19:06:44 0 d-----w- c:\docume~1\alluse~1\applic~1\Malwarebytes
2010-01-04 15:04:03 0 d-----w- c:\docume~1\compaq~1\applic~1\Exent Technologies
2010-01-04 07:10:23 0 d-----w- c:\program files\CommentsBar
2010-01-03 19:31:47 215920 ----a-w- c:\windows\system32\muweb.dll
2010-01-03 19:31:45 16736 ----a-w- c:\windows\system32\mucltui.dll.mui
2010-01-03 19:31:44 274288 ----a-w- c:\windows\system32\mucltui.dll
2010-01-03 02:43:45 499712 ----a-w- c:\windows\system32\MSVCP71.DLL
2010-01-03 02:43:45 348160 ----a-w- c:\windows\system32\MSVCR71.DLL
2010-01-03 02:43:45 1060864 ----a-w- c:\windows\system32\MFC71.DLL
2010-01-03 02:43:44 516096 ----a-w- c:\windows\system32\CLVSDS.ax
2010-01-03 02:43:43 348160 ----a-w- c:\windows\system32\cdga.dll
2010-01-03 02:43:43 270336 ----a-w- c:\windows\system32\cdg.dll
2010-01-03 02:43:43 14909 ----a-w- c:\windows\system32\A_reg.reg
2010-01-03 02:43:43 110592 ----a-w- c:\windows\system32\PropListCtrl.ocx
2010-01-03 02:43:40 0 d-----w- c:\program files\Cucusoft
2010-01-02 00:18:55 303104 ----a-w- c:\windows\system32\CNC250L.dll
2010-01-02 00:18:55 15872 ----a-w- c:\windows\system32\CNHMCA.dll
2010-01-02 00:18:55 1310720 ----a-w- c:\windows\system32\CNC250C.dll
2010-01-02 00:18:55 12288 ----a-w- c:\windows\system32\CNC173AD.TBL
2010-01-02 00:18:55 110592 ----a-w- c:\windows\system32\CNC250I.dll
2010-01-02 00:18:55 106496 ----a-w- c:\windows\system32\CNC250U.dll
2010-01-02 00:18:54 15104 -c--a-w- c:\windows\system32\dllcache\usbscan.sys
2010-01-02 00:18:54 15104 ----a-w- c:\windows\system32\drivers\usbscan.sys
2010-01-01 23:44:57 272384 ----a-w- c:\windows\system32\CNMLM9W.DLL
2010-01-01 23:44:47 90112 ----a-w- c:\windows\system32\CNC250O.dll
2010-01-01 23:44:45 178176 ----a-w- c:\windows\system32\CNMIU9W.DLL
2010-01-01 23:39:12 0 d-----w- c:\program files\Canon
2010-01-01 14:12:29 25856 -c--a-w- c:\windows\system32\dllcache\usbprint.sys
2010-01-01 14:12:29 25856 ----a-w- c:\windows\system32\drivers\usbprint.sys
2009-12-31 04:57:05 12169 ----a-w- c:\windows\system32\Config.MPF
2009-12-31 04:48:27 40552 ----a-w- c:\windows\system32\drivers\mfesmfk.sys
2009-12-31 04:48:27 35272 ----a-w- c:\windows\system32\drivers\mfebopk.sys
2009-12-31 04:48:26 79816 ----a-w- c:\windows\system32\drivers\mfeavfk.sys
2009-12-31 04:48:17 120136 ----a-w- c:\windows\system32\drivers\Mpfp.sys
2009-12-31 04:46:54 0 d-----w- c:\program files\common files\McAfee
2009-12-31 04:46:50 0 d-----w- c:\program files\McAfee.com
2009-12-31 04:45:56 0 d-----w- c:\program files\McAfee
2009-12-31 04:39:18 34248 ----a-w- c:\windows\system32\drivers\mferkdk.sys
2009-12-31 03:45:15 0 d-----w- c:\windows\McAfee.com
2009-12-30 18:06:53 0 d-----w- c:\program files\Freeze.com
2009-12-30 17:32:02 0 d-----w- c:\docume~1\compaq~1\applic~1\CallingID
2009-12-30 17:31:44 0 d-----w- c:\program files\common files\scanner
2009-12-30 17:31:31 0 d-----w- c:\program files\CA
2009-12-30 17:31:03 0 d-----w- c:\docume~1\compaq~1\applic~1\comcasttb
2009-12-30 17:30:58 0 d-----w- c:\program files\comcasttb
2009-12-29 22:30:50 0 d-----w- c:\program files\Selectsoft
2009-12-29 22:29:58 0 d-----w- c:\program files\OXXOGames
2009-12-29 14:10:45 0 d-----w- c:\program files\Windows Media Connect 2
2009-12-29 14:08:36 0 d-----w- c:\windows\system32\LogFiles
2009-12-28 20:48:12 0 d-----w- c:\program files\common files\Akamai
2009-12-26 01:45:38 3145782 ----a-w- c:\windows\CrawlerWallpaper.bmp
2009-12-26 01:45:37 24576 ----a-w- c:\windows\Slideshow Screensaver.scr
2009-12-26 00:38:54 0 d-----w- c:\program files\Crawler
2009-12-25 22:03:18 64 ----a-w- c:\windows\GPlrLanc.dat
2009-12-25 22:03:18 37033 ------w- c:\windows\FRGT.ico
2009-12-25 22:02:56 0 d-----w- c:\docume~1\alluse~1\applic~1\Free Ride Games
2009-12-25 22:02:45 53314 ------w- c:\windows\ExentInfo.exe
2009-12-25 22:02:36 0 d-----w- c:\program files\Free Ride Games
2009-12-25 22:02:30 0 d-----w- C:\Remote Programs
2009-12-25 22:01:35 0 d-----w- c:\docume~1\compaq~1\applic~1\WeatherBug
2009-12-25 22:01:32 0 d-----w- c:\program files\AWS
2009-12-25 21:56:07 0 d-----w- c:\docume~1\compaq~1\applic~1\blinkx
2009-12-25 21:56:06 0 d-----w- c:\program files\Blinkx
2009-12-25 21:40:17 218416 ----a-w- C:\AnalysisLog.sr0
2009-12-25 21:01:17 0 d-----w- c:\program files\eGames
2009-12-25 20:57:57 98304 ----a-w- c:\windows\system32\CmdLineExt.dll
==================== Find3M ====================
2009-12-15 22:44:44 4206 --sha-r- c:\windows\system32\drivers\HP_PJ518AA-ABA SR1230NX NA440_YC_Pres_QCNH444_E44NAheRAS2_4_IKelut_SASUSTek Computer INC._V2.02_B3.11_T040902_WXH2_L409_M448_J160_7AMD_8Athlon XP 3200+_92.2_111063044_N11063065_P_Z11C1048C_K_A11063059_U11063038_G11067205.MRK
2009-10-29 07:46:59 832512 ----a-w- c:\windows\system32\wininet.dll
2009-10-29 07:46:52 78336 ------w- c:\windows\system32\ieencode.dll
2009-10-29 07:46:50 17408 ----a-w- c:\windows\system32\corpol.dll
2009-10-22 19:14:04 458752 ----a-w- c:\windows\system32\ssblinkx.scr
============= FINISH: 12:47:34.20 ===============