DS (Ver_09-03-16.01) - NTFSx86
Run by Windows XP at 8:50:35.35 on Mon 04/20/2009
Internet Explorer: 6.0.2900.2180
Microsoft Windows XP Professional 5.1.2600.2.1256.966.1033.18.479.92 [GMT 3:00]
AV: AVG Anti-Virus Free *On-access scanning enabled* (Outdated)
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\D-Link\DSL-200\dslstat.exe
C:\Program Files\Uniblue\RegistryBooster\RegistryBooster.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\Program Files\AVG\AVG8\avgcsrvx.exe
C:\Program Files\AVG\AVG8\avgtray.exe
C:\DOCUME~1\WINDOW~1\LOCALS~1\Temp\winnyfw.exe
C:\DOCUME~1\WINDOW~1\LOCALS~1\Temp\winawkco.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\AVG\AVG8\aAvgApi.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Windows XP\Desktop\dds.scr
============== Pseudo HJT Report ===============
uStart Page = about:blank
BHO: AcroIEHlprObj Class: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 5.0\reader\activex\AcroIEHelper.ocx
BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg8\avgssie.dll
BHO: AVG Security Toolbar: {a057a204-bacc-4d26-9990-79a187e2698e} - c:\progra~1\avg\avg8\AVGTOO~1.DLL
TB: AVG Security Toolbar: {a057a204-bacc-4d26-9990-79a187e2698e} - c:\progra~1\avg\avg8\AVGTOO~1.DLL
uRun: [Uniblue RegistryBooster 2009] c:\program files\uniblue\registrybooster\RegistryBooster.exe /S
mRun: [DSLSTATEXE] c:\program files\d-link\dsl-200\dslstat.exe icon
mRun: [DSLAGENTEXE] c:\program files\d-link\dsl-200\dslagent.exe
mRun: [AVG8_TRAY] c:\progra~1\avg\avg8\avgtray.exe
mRun: [MSConfig] c:\windows\pchealth\helpctr\binaries\MSConfig.exe /auto
uPolicies-system: DisableTaskMgr = 1 (0x1)
uPolicies-system: DisableRegistryTools = 1 (0x1)
mPolicies-system: EnableLUA = 0 (0x0)
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
TCP: {FFD4903A-73A4-4B7F-BB49-20E25D2E6000} = 84.235.6.55
Handler: cetihpz - {CF184AD3-CDCB-4168-A3F7-8E447D129300} - c:\program files\hp\hpcoretech\comp\hpuiprot.dll
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg8\avgpp.dll
Notify: avgrsstarter - avgrsstx.dll
============= SERVICES / DRIVERS ===============
R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2009-4-19 325640]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86;c:\windows\system32\drivers\avgmfx86.sys [2009-4-19 27656]
R1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2009-4-19 108552]
R2 avg8wd;AVG Free8 WatchDog;c:\progra~1\avg\avg8\avgwdsvc.exe [2009-4-19 298264]
R3 abp470n5;abp470n5;\??\c:\windows\system32\drivers\johlf.sys --> c:\windows\system32\drivers\johlf.sys [?]
S2 avg8emc;AVG Free8 E-mail Scanner;c:\progra~1\avg\avg8\avgemc.exe [2009-4-19 908056]
S2 xymgngtqm;Image Config;c:\windows\system32\svchost.exe -k netsvcs [2004-8-4 14336]
=============== Created Last 30 ================
2009-04-20 02:36
--d----- c:\docume~1\window~1\applic~1\Malwarebytes
2009-04-20 02:35 --d----- c:\docume~1\alluse~1\applic~1\Malwarebytes
2009-04-20 02:35 27,048 a------- c:\windows\system32\drivers\mbamcatchme.sys
2009-04-20 02:35 15,864 a------- c:\windows\system32\drivers\mbam.sys
2009-04-20 02:35 --d----- c:\program files\Malwarebytes' Anti-Malware
2009-04-19 23:48 --d----- c:\program files\uTorrent
2009-04-19 23:47 --d----- c:\docume~1\window~1\applic~1\uTorrent
2009-04-19 22:34 --d----- c:\program files\Trend Micro
2009-04-19 22:13 --d----- c:\windows\pss
2009-04-19 21:09 --d-h--- C:\$AVG8.VAULT$
2009-04-19 21:07 10,520 a------- c:\windows\system32\avgrsstx.dll
2009-04-19 21:06 108,552 a------- c:\windows\system32\drivers\avgtdix.sys
2009-04-19 21:06 325,640 a------- c:\windows\system32\drivers\avgldx86.sys
2009-04-19 21:06 --d----- c:\windows\system32\drivers\Avg
2009-04-19 21:06 --d----- c:\docume~1\window~1\applic~1\AVGTOOLBAR
2009-04-19 21:06 --d----- c:\docume~1\alluse~1\applic~1\avg8
2009-04-19 20:37 82,432 a----r-- c:\windows\system32\MSXML4r.dll
2009-04-19 20:37 44,544 a----r-- c:\windows\system32\MSXML4a.dll
2009-04-19 20:37 1,230,336 a----r-- c:\windows\system32\MSXML4.dll
2009-04-19 20:37 626,960 a----r-- c:\windows\system32\hpvaut32.dll
2009-04-19 20:36 487,424 a----r-- c:\windows\system32\hpvcp70.dll
2009-04-19 20:36 344,064 a----r-- c:\windows\system32\hpvcr70.dll
2009-04-19 20:32 --d----- c:\program files\VideoLAN
2009-04-19 11:14 82,380 a------- c:\windows\system32\drivers\AFS2K.SYS
2009-04-19 11:11 --d----- c:\program files\HP
2009-04-19 11:10 --d----- c:\windows\Profiles
2009-04-19 11:09 --d----- c:\windows\system32\Adobe
2009-04-19 11:09 306,688 a------- c:\windows\IsUninst.exe
2009-04-19 11:08 220,393 a------- c:\windows\hpdj5100.his
2009-04-19 11:08 11,723 a------- c:\windows\hpdj5100.ini
2009-04-19 11:07 25,856 ac------ c:\windows\system32\dllcache\usbprint.sys
2009-04-19 11:07 25,856 a------- c:\windows\system32\drivers\usbprint.sys
2009-04-19 10:49 --d----- c:\program files\Anti-Trojan-55
2009-04-19 02:29 --d-h--- c:\windows\system32\GroupPolicy
2009-04-19 02:01 356,352 a------- c:\windows\eSellerateEngine.dll
2009-04-19 02:01 81,920 a------- c:\windows\eSellerateControl350.dll
2009-04-19 02:01 --d----- c:\program files\Svchost Fix Wizard
2009-04-19 01:50 162,304 a------- c:\windows\system32\ztvunrar36.dll
2009-04-19 01:50 153,088 a------- c:\windows\system32\UNRAR3.dll
2009-04-19 01:50 77,312 a------- c:\windows\system32\ztvunace26.dll
2009-04-19 01:50 75,264 a------- c:\windows\system32\unacev2.dll
2009-04-19 01:50 69,632 a------- c:\windows\system32\ztvcabinet.dll
2009-04-19 01:50 --d----- c:\program files\Trojan Remover
2009-04-19 01:50 --d----- c:\docume~1\window~1\applic~1\Simply Super Software
2009-04-19 01:42 --d----- c:\docume~1\alluse~1\applic~1\Simply Super Software
2009-04-19 00:30 21,504 a------- c:\windows\system32\hidserv.dll
2009-04-19 00:30 57,472 a------- c:\windows\system32\drivers\redbook.sys
2009-04-19 00:27 --d----- c:\program files\common files\ODBC
2009-04-19 00:26 77,824 ac------ c:\windows\system32\dllcache\spcommon.dll
2009-04-19 00:26 --d----- c:\program files\common files\SpeechEngines
2009-04-19 00:26 --d--r-- c:\documents and settings\all users\Documents
2009-04-19 00:25 --d----- c:\windows\system32\CatRoot2
2009-04-19 00:25 --d----- c:\windows\system32\CatRoot
2009-04-19 00:25 --d----- C:\Documents and Settings
2009-04-19 00:24 818 a------- c:\windows\system32\$winnt$.inf
2009-04-19 00:19 --d----- c:\program files\sisagp
2009-04-19 00:18 --d----- c:\program files\SiS VGA Utilities V3.73
2009-04-18 23:56 --d----- c:\program files\AVG
2009-04-18 23:29 --d----- c:\docume~1\window~1\applic~1\Uniblue
2009-04-18 23:29 --d----- c:\program files\Uniblue
2009-04-18 23:21 -cd-h--- c:\docume~1\alluse~1\applic~1\{81D4BDA8-1F33-4633-B176-8A7E942ABDE1}
2009-04-18 22:11 --d----- c:\program files\Project64 v1.5
2009-04-18 22:07 --d----- c:\program files\D-Link
2009-04-18 22:04 --d----- c:\program files\Realtek Sound Manager
2009-04-18 22:04 --d----- c:\program files\AvRack
2009-04-18 21:37 --dsh--- c:\documents and settings\all users\DRM
2009-04-18 21:36 --d-h--- c:\program files\WindowsUpdate
2009-04-18 21:35 --d----- c:\program files\common files\MSSoap
2009-04-18 21:34 --d----- c:\program files\Online Services
2009-04-18 21:33 --d----- c:\program files\Messenger
2009-04-18 21:33 --d----- c:\program files\MSN Gaming Zone
2009-04-18 21:33 --d----- c:\program files\Windows NT
==================== Find3M ====================
2009-04-18 23:13 86,327 a------- c:\windows\pchealth\helpctr\offlinecache\index.dat
2009-04-18 21:34 21,640 a------- c:\windows\system32\emptyregdb.dat
2004-08-04 10:56 159,720 a--shr-- c:\windows\system32\qgeefs.dll
============= FINISH: 8:51:21.29 ===============