DDS (Ver_09-09-29.01) - NTFSx86
Run by Family at 17:04:23.21 on Thu 10/01/2009
Internet Explorer: 8.0.6001.18702
============== Running Processes ===============
============== Pseudo HJT Report ===============
uStart Page =
hxxp://www.google.comuSearch Bar =
hxxp://www.google.com/ieuSearch Page =
hxxp://www.google.commDefault_Search_URL =
hxxp://www.google.com/iemSearch Page =
hxxp://www.google.commStart Page =
hxxp://www.google.comuInternet Connection Wizard,ShellNext =
hxxp://www.emachines.com/mSearchAssistant =
hxxp://www.google.comBHO: {02478D38-C3F9-4efb-9B51-7695ECA05670} - No File
TB: Norton AntiVirus: {42cdd1bf-3ffb-4238-8ad1-7859df00b1d6} - c:\program files\norton antivirus\NavShExt.dll
EB: Real.com: {fe54fa40-d68c-11d2-98fa-00c0f0318afe} - c:\windows\system32\Shdocvw.dll
EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [fsm]
mRun: [ccApp] "c:\program files\common files\symantec shared\ccApp.exe"
mRun: [NAV CfgWiz] c:\program files\common files\symantec shared\CfgWiz.exe /GUID NAV /CMDLINE "REBOOT"
mRun: [
]
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [nwiz] nwiz.exe /install
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [nForce Tray Options] sstray.exe /r
mRun: [CHotkey] zHotkey.exe
mRun: [NeroFilterCheck] c:\windows\system32\NeroCheck.exe
mRun: [InCD] c:\program files\ahead\incd\InCD.exe
mRun: [SunKistEM] c:\program files\emachines bay reader\shwiconem.exe
mRun: [Symantec NetDriver Monitor] c:\progra~1\symnet~1\SNDMon.exe
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
mRun: [Adobe Photo Downloader] "c:\program files\adobe\photoshop album starter edition\3.2\apps\apdproxy.exe"
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [Microsoft Works Update Detection] c:\program files\common files\microsoft shared\works shared\WkUFind.exe
mRun: [AdobeCS4ServiceManager] "c:\program files\common files\adobe\cs4servicemanager\CS4ServiceManager.exe" -launchedbylogin
mRun: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
mRun: [avgnt] "c:\program files\avira\antivir desktop\avgnt.exe" /min
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\bigfix.lnk - c:\program files\bigfix\BigFix.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\blueto~1.lnk - c:\program files\widcomm\bluetooth software\BTTray.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\eboost~1.lnk - c:\program files\eboostr\eBoostrCP.exe
uPolicies-system: EnableProfileQuota = 1 (0x1)
IE: Download all with Free Download Manager - file://c:\program files\free download manager\dlall.htm
IE: Download selected with Free Download Manager - file://c:\program files\free download manager\dlselected.htm
IE: Download video with Free Download Manager - file://c:\program files\free download manager\dlfvideo.htm
IE: Download with Free Download Manager - file://c:\program files\free download manager\dllink.htm
IE: Send to &Bluetooth Device... - c:\program files\widcomm\bluetooth software\btsendto_ie_ctx.htm
IE: Send To Bluetooth - c:\program files\widcomm\bluetooth software\btsendto_ie.htm
IE: {6224f700-cba3-4071-b251-47cb894244cd} - c:\program files\icq\ICQ.exe
IE: {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - c:\progra~1\aim\aim.exe
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\program files\widcomm\bluetooth software\btsendto_ie.htm
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {08B0E5C0-4FCB-11CF-AAA5-00401C608501}
IE: {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - c:\program files\yahoo!\common\yiesrvc.dll
IE: {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - {FE54FA40-D68C-11d2-98FA-00C0F0318AFE} - c:\windows\system32\Shdocvw.dll
DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - c:\program files\yahoo!\common\Yinsthelper.dll
DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} - hxxp://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.5.0.cab
DPF: {6414512b-b978-451d-a0d8-fcfdf33e833c} - hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1252122446250
DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - hxxp://download.divx.com/player/DivXBrowserPlugin.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
DPF: {CAFEEFAC-0014-0002-0000-ABCDEFFEDCBA} - hxxp://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab
DPF: {ffb3a759-98b1-446f-bda9-909c6eb18cc7} - hxxp://utilities.pcpitstop.com/Optimize3/pcpitstop2.dll
AppInit_DLLs: c:\windows\system32\majubilu.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
LSA: Notification Packages = scecli c:\windows\system32\majubilu.dll
============= SERVICES / DRIVERS ===============
=============== Created Last 30 ================
2009-09-08 02:41 --dsh--- C:\$RECYCLE.BIN
2009-09-08 02:00 8,192 a--shr-- C:\BOOTSECT.BAK
2009-09-08 01:59 383,562 a--shr-- C:\bootmgr
2009-09-08 01:59 --dsh--- C:\Boot
2009-09-08 01:43 1,890 a------- c:\windows\diagwrn.xml
2009-09-08 01:43 1,890 a------- c:\windows\diagerr.xml
2009-09-07 21:30 --d----- c:\docume~1\family\applic~1\Canneverbe_Limited
2009-09-07 21:30 --d----- c:\docume~1\alluse~1\applic~1\Canneverbe Limited
2009-09-05 19:18 268,435,456 a--sh--- C:\eboostr.dat
2009-09-04 23:21 --d----- c:\docume~1\alluse~1\applic~1\PCPitstop
2009-09-04 23:21 --d----- c:\program files\PCPitstop
2009-09-04 21:43 --d----- c:\docume~1\alluse~1\applic~1\eboostr
2009-09-04 21:43 --d----- c:\program files\eBoostr
2009-09-04 20:18 --d----- c:\program files\Microsoft Windows 7 Upgrade Advisor
2009-09-04 20:05 --d----- c:\windows\system32\XPSViewer
2009-09-04 20:04 597,504 -c------ c:\windows\system32\dllcache\printfilterpipelinesvc.exe
2009-09-04 20:04 89,088 -c------ c:\windows\system32\dllcache\filterpipelineprintproc.dll
2009-09-04 20:04 117,760 -------- c:\windows\system32\prntvpt.dll
2009-09-04 20:04 1,676,288 -c------ c:\windows\system32\dllcache\xpssvcs.dll
2009-09-04 20:04 575,488 -c------ c:\windows\system32\dllcache\xpsshhdr.dll
2009-09-04 20:04 1,676,288 -------- c:\windows\system32\xpssvcs.dll
2009-09-04 20:04 575,488 -------- c:\windows\system32\xpsshhdr.dll
2009-09-03 22:14 --d----- c:\docume~1\family\applic~1\uniblue
2009-09-03 22:06 -cd-h--- c:\docume~1\alluse~1\applic~1\{C4C0E335-EDDF-46A0-A57D-F3802AE44275}
2009-09-03 21:58 --d-hr-- C:\AHCache
2009-09-03 20:01 --d----- c:\docume~1\family\applic~1\Mazaika
2009-09-03 20:01 --d----- c:\program files\Mazaika
2009-09-02 19:03 --d----- c:\program files\ACW
2009-09-02 18:32 55,656 a------- c:\windows\system32\drivers\avgntflt.sys
2009-09-02 18:32 --d----- c:\program files\Avira
2009-09-02 18:32 --d----- c:\docume~1\alluse~1\applic~1\Avira
2009-09-02 17:09 a-d----- c:\windows\system32\images
2009-09-02 17:04 135,168 a------- C:\zip.exe
2009-09-02 17:04 19,286 a------- C:\cleanup.exe
2009-09-02 17:04 574 a------- C:\cleanup.bat
2009-09-02 17:01 --d----- c:\program files\Malwarebytes' Anti-Malware
2009-09-02 16:35 163,840 a------- c:\windows\svchasts.exe
2009-09-02 12:51 82,688 a------- c:\windows\system32\drivers\3b7341c5.sys
2009-09-02 11:06 --d----- c:\docume~1\family\applic~1\Malwarebytes
2009-09-02 11:06 38,160 a------- c:\windows\system32\drivers\mbamswissarmy.sys
2009-09-02 11:06 19,096 a------- c:\windows\system32\drivers\mbam.sys
2009-09-02 11:06 --d----- c:\docume~1\alluse~1\applic~1\Malwarebytes
==================== Find3M ====================
2009-08-13 18:19 47,407,104 a------- C:\firmware.bin
2009-07-13 23:43 286,208 a------- c:\windows\system32\wmpdxm.dll
2009-07-10 18:35 17,003 a------- c:\windows\gyhysovy.dat
2009-07-10 18:35 15,009 a------- c:\program files\common files\cezaqadifu.bin
2009-07-10 18:35 14,694 a------- c:\docume~1\alluse~1\applic~1\bumejaka.sys
2009-07-10 18:35 14,372 a------- c:\program files\common files\efohywo.sys
2009-07-10 18:35 14,352 a------- c:\program files\common files\ixopezukyg.dll
2009-07-10 18:35 13,215 a------- c:\docume~1\family\applic~1\xinigiti.reg
2009-07-10 18:35 12,423 a------- c:\docume~1\family\applic~1\parywu.pif
2009-07-10 18:35 12,064 a------- c:\docume~1\family\applic~1\ilitihuvo.bat
============= FINISH: 17:05:06.15 ===============