DDS (Ver_09-12-01.01) - NTFSx86 NETWORK
Run by Compaq_Owner at 20:48:31.92 on Sat 01/16/2010
Internet Explorer: 7.0.5730.13
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.447.96 [GMT -5:00]
AV: McAfee VirusScan *On-access scanning disabled* (Updated) {84B5EE75-6421-4CDE-A33A-DD43BA9FAD83}
AV: ESET NOD32 Antivirus 4.0 *On-access scanning enabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
FW: McAfee Personal Firewall *enabled* {94894B63-8C7F-4050-BDA4-813CA00DA3E8}
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\WINDOWS\Explorer.EXE
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Compaq_Owner\Desktop\dds.pif
============== Pseudo HJT Report ===============
uStart Page =
hxxp://search.yahoo.com/?fr=slv7-semuSearch Page =
hxxp://us.rd.yahoo.com/customize/ycomp/defaults/sp/*http://www.yahoo.comuDefault_Page_URL =
hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=Q404&bd=presario&pf=desktopuDefault_Search_URL =
hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iesearch&locale=EN_US&c=Q404&bd=presario&pf=desktopuSearch Bar =
hxxp://us.rd.yahoo.com/customize/ycomp/defaults/sb/*http://www.yahoo.com/search/ie.htmluSearchMigratedDefaultURL =
hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7mSearch Bar =
hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iesearch&locale=EN_US&c=Q404&bd=presario&pf=desktopuInternet Connection Wizard,ShellNext =
hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=Q404&bd=presario&pf=desktopuSearchURL,(Default) =
hxxp://us.rd.yahoo.com/customize/ycomp/defaults/su/*http://www.yahoo.comuURLSearchHooks: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn0\yt.dll
uURLSearchHooks: CommentsBar Toolbar: {71d2cf9e-34e4-4401-8841-f4fc3f3edc32} - c:\program files\commentsbar\tbComm.dll
BHO: &Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - c:\program files\yahoo!\companion\installs\cpn0\yt.dll
BHO: AcroIEHlprObj Class: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 6.0\reader\activex\AcroIEHelper.dll
BHO: {35a5b43b-cb8a-49ca-a9f4-d3b308d2e3cc} - &Security Update
BHO: CommentsBar Toolbar: {71d2cf9e-34e4-4401-8841-f4fc3f3edc32} - c:\program files\commentsbar\tbComm.dll
BHO: Comcast Toolbar: {79ceea4e-c231-4614-9e3b-53b2a02f39b7} - c:\program files\comcasttb\comcastdx.dll
BHO: scriptproxy: {7db2d5a0-7241-4e79-b68d-6309f01c5231} - c:\program files\mcafee\virusscan\scriptsn.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
BHO: SingleInstance Class: {fdad4da1-61a2-4fd8-9c17-86f7ac245081} - c:\program files\yahoo!\companion\installs\cpn0\YTSingleInstance.dll
TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn0\yt.dll
TB: Comcast Toolbar: {79ceea4e-c231-4614-9e3b-53b2a02f39b7} - c:\program files\comcasttb\comcastdx.dll
TB: CommentsBar Toolbar: {71d2cf9e-34e4-4401-8841-f4fc3f3edc32} - c:\program files\commentsbar\tbComm.dll
TB: {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - No File
uRun: [Search Protection] c:\program files\yahoo!\search protection\SearchProtection.exe
uRun: [YSearchProtection] c:\program files\yahoo!\search protection\SearchProtection.exe
uRun: [Messenger (Yahoo!)] "c:\progra~1\yahoo!\messen~1\YAHOOM~1.EXE" -quiet
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [Weather] c:\program files\aws\weatherbug\Weather.exe 1
uRun: [DesktopWallpaper] c:\windows\web\wallpa~1\wallery\DESKTO~1.EXE
uRun: [Exetender] "c:\program files\free ride games\GPlayer.exe" /runonstartup
uRun: [ComcastAntispyClient] "c:\program files\comcasttb\comcastspywarescan\ComcastAntispy.exe" /hide
uRun: [PersonalSec] c:\program files\personalsec\psecurity.exe
mRun: [hpsysdrv] c:\windows\system\hpsysdrv.exe
mRun: [KBD] c:\hp\kbd\KBD.EXE
mRun: [iTunesHelper] c:\program files\itunes\iTunesHelper.exe
mRun: [Recguard] c:\windows\sminst\RECGUARD.EXE
mRun: [VTTimer] VTTimer.exe
mRun: [AGRSMMSG] AGRSMMSG.exe
mRun: [PS2] c:\windows\system32\ps2.exe
mRun: [YMailAdvisor] "c:\program files\yahoo!\common\YMailAdvisor.exe"
mRun: [YSearchProtection] "c:\program files\yahoo!\search protection\SearchProtection.exe"
mRun: [AlcxMonitor] ALCXMNTR.EXE
mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
mRun: [mcagent_exe] "c:\program files\mcafee.com\agent\mcagent.exe" /runkey
mRun: [CanonMyPrinter] c:\program files\canon\myprinter\BJMyPrt.exe /logon
mRun: [egui] "c:\program files\eset\eset nod32 antivirus\egui.exe" /hide /waitservice
dRun: [Exetender] "c:\program files\free ride games\GPlayer.exe /runonstartup"
StartupFolder: c:\docume~1\compaq~1\startm~1\programs\startup\limewi~1.lnk - c:\program files\limewire\LimeWire.exe
StartupFolder: c:\docume~1\compaq~1\startm~1\programs\startup\wkcalrem.lnk - c:\program files\common files\microsoft shared\works shared\WkCalRem.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\compaq~1.lnk - c:\program files\compaq connections\6750491\program\Compaq Connections.exe
IE: E&xport to Microsoft Excel - c:\progra~1\mi1933~1\office11\EXCEL.EXE/3000
IE: {CDAFD956-97BE-443D-8EF7-F4F094EB5766} - c:\program files\crawler\ssaver\CSSaver.exe
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\mi1933~1\office11\REFIEBAR.DLL
DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - c:\program files\yahoo!\common\Yinsthelper.dll
DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} -
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cabDPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cabDPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cabDPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} -
hxxp://download.mcafee.com/molbin/iss-loc/mcfscan/2,2,0,5847/mcfscan.cabSSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
============= SERVICES / DRIVERS ===============
R1 epfwtdir;epfwtdir;c:\windows\system32\drivers\epfwtdir.sys [2009-11-16 96408]
S1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [2009-11-16 108792]
S1 mfehidk;McAfee Inc. mfehidk;c:\windows\system32\drivers\mfehidk.sys [2009-11-4 214664]
S2 Akamai;Akamai NetSession Interface;c:\windows\system32\svchost.exe -k Akamai [2004-8-8 14336]
S2 AntiSpywareService;Comcast AntiSpyware;c:\program files\comcasttb\comcastspywarescan\ComcastAntiSpyService.exe [2009-6-17 616408]
S2 ekrn;ESET Service;c:\program files\eset\eset nod32 antivirus\ekrn.exe [2009-11-16 735960]
S2 McProxy;McAfee Proxy Service;c:\progra~1\common~1\mcafee\mcproxy\mcproxy.exe [2009-12-30 359952]
S2 McShield;McAfee Real-time Scanner;c:\progra~1\mcafee\viruss~1\mcshield.exe [2009-12-30 144704]
S2 X4HS32Ex;X4HS32Ex;c:\program files\free ride games\X4HS32Ex.sys [2009-12-25 53280]
S3 McSysmon;McAfee SystemGuards;c:\progra~1\mcafee\viruss~1\mcsysmon.exe [2009-12-30 606736]
S3 mfeavfk;McAfee Inc. mfeavfk;c:\windows\system32\drivers\mfeavfk.sys [2009-12-30 79816]
S3 mfebopk;McAfee Inc. mfebopk;c:\windows\system32\drivers\mfebopk.sys [2009-12-30 35272]
S3 mferkdk;McAfee Inc. mferkdk;c:\windows\system32\drivers\mferkdk.sys [2009-12-30 34248]
S3 mfesmfk;McAfee Inc. mfesmfk;c:\windows\system32\drivers\mfesmfk.sys [2009-12-30 40552]
=============== Created Last 30 ================
2010-01-16 22:27:26 664 ----a-w- c:\windows\system32\d3d9caps.dat
2010-01-06 19:24:27 0 d-----w- c:\program files\ESET
2010-01-06 19:07:13 0 d-----w- c:\docume~1\compaq~1\applic~1\Malwarebytes
2010-01-06 19:06:44 0 d-----w- c:\docume~1\alluse~1\applic~1\Malwarebytes
2010-01-06 17:24:48 0 d-----w- c:\program files\common files\PersonalSecUninstall
2010-01-06 17:20:42 0 d-----w- c:\program files\PersonalSec
2010-01-04 15:04:03 0 d-----w- c:\docume~1\compaq~1\applic~1\Exent Technologies
2010-01-04 07:13:18 0 d-----w- c:\program files\luly
2010-01-04 07:10:27 0 d-----w- c:\program files\Conduit
2010-01-04 07:10:23 0 d-----w- c:\program files\CommentsBar
2010-01-03 19:31:47 215920 ----a-w- c:\windows\system32\muweb.dll
2010-01-03 19:31:45 16736 ----a-w- c:\windows\system32\mucltui.dll.mui
2010-01-03 19:31:44 274288 ----a-w- c:\windows\system32\mucltui.dll
2010-01-03 02:43:45 499712 ----a-w- c:\windows\system32\MSVCP71.DLL
2010-01-03 02:43:45 348160 ----a-w- c:\windows\system32\MSVCR71.DLL
2010-01-03 02:43:45 1060864 ----a-w- c:\windows\system32\MFC71.DLL
2010-01-03 02:43:44 516096 ----a-w- c:\windows\system32\CLVSDS.ax
2010-01-03 02:43:43 348160 ----a-w- c:\windows\system32\cdga.dll
2010-01-03 02:43:43 270336 ----a-w- c:\windows\system32\cdg.dll
2010-01-03 02:43:43 14909 ----a-w- c:\windows\system32\A_reg.reg
2010-01-03 02:43:43 110592 ----a-w- c:\windows\system32\PropListCtrl.ocx
2010-01-03 02:43:40 0 d-----w- c:\program files\Cucusoft
2010-01-03 01:48:18 0 d-----w- c:\docume~1\compaq~1\applic~1\GetRightToGo
2010-01-02 01:23:16 0 d--h--w- c:\docume~1\alluse~1\applic~1\CanonIJEGV
2010-01-02 00:18:55 303104 ----a-w- c:\windows\system32\CNC250L.dll
2010-01-02 00:18:55 15872 ----a-w- c:\windows\system32\CNHMCA.dll
2010-01-02 00:18:55 1310720 ----a-w- c:\windows\system32\CNC250C.dll
2010-01-02 00:18:55 12288 ----a-w- c:\windows\system32\CNC173AD.TBL
2010-01-02 00:18:55 110592 ----a-w- c:\windows\system32\CNC250I.dll
2010-01-02 00:18:55 106496 ----a-w- c:\windows\system32\CNC250U.dll
2010-01-02 00:18:54 15104 -c--a-w- c:\windows\system32\dllcache\usbscan.sys
2010-01-02 00:18:54 15104 ----a-w- c:\windows\system32\drivers\usbscan.sys
2010-01-01 23:44:57 272384 ----a-w- c:\windows\system32\CNMLM9W.DLL
2010-01-01 23:44:47 90112 ----a-w- c:\windows\system32\CNC250O.dll
2010-01-01 23:44:45 178176 ----a-w- c:\windows\system32\CNMIU9W.DLL
2010-01-01 23:39:12 0 d-----w- c:\program files\Canon
2010-01-01 14:12:29 25856 -c--a-w- c:\windows\system32\dllcache\usbprint.sys
2010-01-01 14:12:29 25856 ----a-w- c:\windows\system32\drivers\usbprint.sys
2009-12-31 04:57:05 11995 ----a-w- c:\windows\system32\Config.MPF
2009-12-31 04:48:27 40552 ----a-w- c:\windows\system32\drivers\mfesmfk.sys
2009-12-31 04:48:27 35272 ----a-w- c:\windows\system32\drivers\mfebopk.sys
2009-12-31 04:48:26 79816 ----a-w- c:\windows\system32\drivers\mfeavfk.sys
2009-12-31 04:48:17 120136 ----a-w- c:\windows\system32\drivers\Mpfp.sys
2009-12-31 04:46:54 0 d-----w- c:\program files\common files\McAfee
2009-12-31 04:46:50 0 d-----w- c:\program files\McAfee.com
2009-12-31 04:45:56 0 d-----w- c:\program files\McAfee
2009-12-31 04:39:18 34248 ----a-w- c:\windows\system32\drivers\mferkdk.sys
2009-12-31 03:45:15 0 d-----w- c:\windows\McAfee.com
2009-12-30 18:06:53 0 d-----w- c:\program files\Freeze.com
2009-12-30 17:32:02 0 d-----w- c:\docume~1\compaq~1\applic~1\CallingID
2009-12-30 17:31:44 0 d-----w- c:\program files\common files\scanner
2009-12-30 17:31:31 0 d-----w- c:\program files\CA
2009-12-30 17:31:03 0 d-----w- c:\docume~1\compaq~1\applic~1\comcasttb
2009-12-30 17:30:58 0 d-----w- c:\program files\comcasttb
2009-12-29 22:30:50 0 d-----w- c:\program files\Selectsoft
2009-12-29 22:29:58 0 d-----w- c:\program files\OXXOGames
2009-12-29 14:10:45 0 d-----w- c:\program files\Windows Media Connect 2
2009-12-29 14:08:36 0 d-----w- c:\windows\system32\LogFiles
2009-12-28 20:48:12 0 d-----w- c:\program files\common files\Akamai
2009-12-26 01:45:38 3145782 ----a-w- c:\windows\CrawlerWallpaper.bmp
2009-12-26 01:45:37 24576 ----a-w- c:\windows\Slideshow Screensaver.scr
2009-12-26 00:38:54 0 d-----w- c:\program files\Crawler
2009-12-25 22:03:18 64 ----a-w- c:\windows\GPlrLanc.dat
2009-12-25 22:03:18 37033 ------w- c:\windows\FRGT.ico
2009-12-25 22:02:56 0 d-----w- c:\docume~1\alluse~1\applic~1\Free Ride Games
2009-12-25 22:02:45 53314 ------w- c:\windows\ExentInfo.exe
2009-12-25 22:02:36 0 d-----w- c:\program files\Free Ride Games
2009-12-25 22:02:30 0 d-----w- C:\Remote Programs
2009-12-25 22:01:35 0 d-----w- c:\docume~1\compaq~1\applic~1\WeatherBug
2009-12-25 22:01:32 0 d-----w- c:\program files\AWS
2009-12-25 21:56:07 0 d-----w- c:\docume~1\compaq~1\applic~1\blinkx
2009-12-25 21:56:06 0 d-----w- c:\program files\Blinkx
2009-12-25 21:40:17 218416 ----a-w- C:\AnalysisLog.sr0
2009-12-25 21:01:17 0 d-----w- c:\program files\eGames
2009-12-25 20:57:57 98304 ----a-w- c:\windows\system32\CmdLineExt.dll
==================== Find3M ====================
2009-12-15 22:44:44 4206 --sha-r- c:\windows\system32\drivers\HP_PJ518AA-ABA SR1230NX NA440_YC_Pres_QCNH444_E44NAheRAS2_4_IKelut_SASUSTek Computer INC._V2.02_B3.11_T040902_WXH2_L409_M448_J160_7AMD_8Athlon XP 3200+_92.2_111063044_N11063065_P_Z11C1048C_K_A11063059_U11063038_G11067205.MRK
2009-10-29 07:46:59 832512 ----a-w- c:\windows\system32\wininet.dll
2009-10-29 07:46:52 78336 ------w- c:\windows\system32\ieencode.dll
2009-10-29 07:46:50 17408 ----a-w- c:\windows\system32\corpol.dll
2009-10-22 19:14:04 458752 ----a-w- c:\windows\system32\ssblinkx.scr
2009-10-21 06:00:55 75776 ----a-w- c:\windows\system32\strmfilt.dll
2009-10-21 06:00:55 25088 ----a-w- c:\windows\system32\httpapi.dll
============= FINISH: 20:49:02.95 ===============