OK here
DDS (Ver_09-01-19.01) - NTFSx86
Run by Owner at 12:56:50.49 on Sat 01/24/2009
Internet Explorer: 7.0.6001.18000
Microsoft
Windows Vista
Home Premium 6.0.6001.1.1252.1.1033.18.1918.1083 [GMT -8:00]
AV: Avira AntiVir PersonalEdition *On-access scanning enabled* (Updated)
AV: Norton Internet Security *On-access scanning enabled* (Updated)
FW: Norton Internet Security *enabled*
============== Running Processes ===============
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\rundll32.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
C:\Windows\system32\rundll32.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\WINDOWS\RtHDVCpl.exe
C:\WINDOWS\System32\rundll32.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\RocketDock\RocketDock.exe
C:\Program Files\Siber Systems\AI RoboForm\robotaskbaricon.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Auslogics\AusLogics BoostSpeed\DiskWiper.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\explorer.exe
C:\Windows\system32\conime.exe
C:\Program Files\Adobe\Reader 8.0\Reader\AcroRd32Info.exe
C:\Windows\explorer.exe
C:\Users\Owner\Desktop\dds.scr
C:\Windows\system32\wbem\wmiprvse.exe
============== Pseudo HJT Report ===============
uStart Page =
hxxp://google.com/mStart Page =
hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=73&bd=Pavilion&pf=desktopmDefault_Page_URL =
hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=73&bd=Pavilion&pf=desktopuInternet Settings,ProxyOverride = *.local
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: {1e8a6170-7264-4d0f-beae-d42a53123c75} - c:\program files\common files\symantec shared\coshared\browser\1.5\NppBho.dll
BHO: RoboForm: {724d43a9-0d85-11d4-9908-00400523e39a} - c:\program files\siber systems\ai roboform\roboform.dll
BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre1.6.0_07\bin\ssv.dll
BHO: McAfee SiteAdvisor BHO: {b164e929-a1b6-4a06-b104-2cd0e90a88ff} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
TB: Show Norton Toolbar: {90222687-f593-4738-b738-fbee9c7b26df} - c:\program files\common files\symantec shared\coshared\browser\1.5\UIBHO.dll
TB: &RoboForm: {724d43a0-0d85-11d4-9908-00400523e39a} - c:\program files\siber systems\ai roboform\roboform.dll
TB: McAfee SiteAdvisor Toolbar: {0ebbbe48-bad4-4b4c-8e5a-516abecae064} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
uRun: [RocketDock] "c:\program files\rocketdock\RocketDock.exe"
uRun: [RoboForm] "c:\program files\siber systems\ai roboform\RoboTaskBarIcon.exe"
uRun: [WMPNSCFG] c:\program files\windows media player\WMPNSCFG.exe
mRun: [MSConfig] "c:\windows\system32\msconfig.exe" /auto
mRun: [RtHDVCpl] RtHDVCpl.exe
mRun: [NvSvc] RUNDLL32.EXE c:\windows\system32\nvsvc.dll,nvsvcStart
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [avgnt] "c:\program files\avira\antivir personaledition classic\avgnt.exe" /min
mRun: [AdobeCS4ServiceManager] "c:\program files\common files\adobe\cs4servicemanager\CS4ServiceManager.exe" -launchedbylogin
mPolicies-system: DisableStatusMessages = 1 (0x1)
mPolicies-system: DisableStartupSound = 1 (0x1)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: Customize Menu -
file://c:\program files\siber systems\ai roboform\RoboFormComCustomizeIEMenu.html
IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office12\EXCEL.EXE/3000
IE: Fill Forms -
file://c:\program files\siber systems\ai roboform\RoboFormComFillForms.html
IE: RoboForm Toolbar -
file://c:\program files\siber systems\ai roboform\RoboFormComShowToolbar.html
IE: Save Forms -
file://c:\program files\siber systems\ai roboform\RoboFormComSavePass.html
IE: {320AF880-6646-11D3-ABEE-C5DBF3571F46} - c:\program files\siber systems\ai roboform\RoboFormComFillForms.html
IE: {320AF880-6646-11D3-ABEE-C5DBF3571F49} - c:\program files\siber systems\ai roboform\RoboFormComSavePass.html
IE: {724d43aa-0d85-11d4-9908-00400523e39a} - c:\program files\siber systems\ai roboform\RoboFormComShowToolbar.html
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBC} - c:\progra~1\java\jre16~1.0_0\bin\ssv.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~3\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~3\office12\REFIEBAR.DLL
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cabDPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cabDPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cabHandler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~1\mcafee\sitead~1\McIEPlg.dll
================= FIREFOX ===================
FF - ProfilePath - c:\users\owner\appdata\roaming\mozilla\firefox\profiles\1vpnwnqu.default\
FF - component: c:\program files\mcafee\siteadvisor\components\McFFPlg.dll
============= SERVICES / DRIVERS ===============
R3 SYMNDISV;SYMNDISV;c:\windows\system32\drivers\symndisv.sys [2007-1-9 38200]
R4 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\program files\mcafee\siteadvisor\McSACore.exe [2008-12-26 206096]
S3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\common files\symantec shared\eengine\EraserUtilRebootDrv.sys [2008-10-27 99376]
=============== Created Last 30 ================
2009-01-24 12:36
--d-h--- C:\~AXDW^0U2WTU6B
2009-01-23 18:59 --d----- c:\program files\GamersFirst
2009-01-23 17:59 --d----- c:\programdata\America's Army Deploy Client
2009-01-23 17:59 --d----- c:\progra~2\America's Army Deploy Client
2009-01-23 16:45 --d----- c:\program files\Dobermann
2009-01-23 16:27 --d--r-- c:\users\owner\Games
2009-01-22 21:09 --d----- c:\users\owner\appdata\roaming\AVS4YOU
2009-01-22 21:09 --d----- c:\programdata\AVS4YOU
2009-01-22 21:09 --d----- c:\progra~2\AVS4YOU
2009-01-22 21:08 --d----- c:\program files\common files\AVSMedia
2009-01-22 21:08 974,848 a------- c:\windows\system32\mfc70.dll
2009-01-22 21:08 487,424 a------- c:\windows\system32\msvcp70.dll
2009-01-22 21:08 24,576 a------- c:\windows\system32\msxml3a.dll
2009-01-22 21:08 --d----- c:\program files\AVS4YOU
2009-01-22 16:14 --d----- C:\TubeTilla
2009-01-22 16:07 --d----- c:\programdata\ArcSoft
2009-01-22 16:07 --d----- c:\progra~2\ArcSoft
2009-01-19 13:15 --d----- c:\programdata\FLEXnet
2009-01-19 13:05 --d----- c:\program files\common files\Macrovision Shared
2009-01-19 00:16 --d----- c:\users\owner\appdata\roaming\iWin
2009-01-19 00:15 --d----- c:\programdata\n7-89-o9-3r-4t-r9
2009-01-19 00:15 --d----- c:\progra~2\n7-89-o9-3r-4t-r9
2009-01-19 00:15 --d----- c:\users\owner\appdata\roaming\GameHouse
2009-01-19 00:14 --d----- c:\program files\GameHouse
2009-01-18 23:04 --d----- C:\Panzer2
2009-01-18 23:04 283,648 a------- c:\windows\uninst.exe
2009-01-18 11:48 --d----- c:\users\owner\appdata\roaming\WildTangent
2009-01-17 16:50 1,208,320 a------- c:\windows\system32\comsvcs.dll
2009-01-17 16:49 1,224,192 a------- c:\windows\system32\sud.dll
2009-01-17 16:48 357,888 a------- c:\windows\system32\wbemcomn.dll
2009-01-17 16:48 129,536 a------- c:\windows\system32\sqmapi.dll
2009-01-17 16:48 704,512 a------- c:\windows\system32\SmiEngine.dll
2009-01-17 16:48 139,264 a------- c:\windows\system32\SmiInstaller.dll
2009-01-17 16:48 218,624 a------- c:\windows\system32\wdscore.dll
2009-01-17 16:48 130,560 a------- c:\windows\system32\PkgMgr.exe
2009-01-17 16:47 246,784 a------- c:\windows\system32\drvstore.dll
2009-01-17 16:47 305,152 a------- c:\windows\system32\msdelta.dll
2009-01-17 16:47 258,560 a------- c:\windows\system32\dpx.dll
2009-01-17 16:47 35,328 a------- c:\windows\system32\mspatcha.dll
2009-01-17 16:47 6,656 a------- c:\windows\system32\kbd106.dll
2009-01-17 16:14 2,048 a------- c:\windows\system32\tzres.dll
2009-01-17 16:09 4,240,384 a------- c:\windows\system32\GameUXLegacyGDFs.dll
2009-01-17 16:09 28,672 a------- c:\windows\system32\Apphlpdm.dll
2009-01-17 16:09 296,960 a------- c:\windows\system32\gdi32.dll
2009-01-17 16:09 288,768 a------- c:\windows\system32\drivers\srv.sys
2009-01-17 16:09 2,927,104 a------- c:\windows\explorer.exe
2009-01-15 15:56 --d----- c:\program files\YouTube Downloader
2009-01-13 16:43 --d----- C:\.jagex_cache_32
2009-01-09 16:04 --d----- c:\program files\WM Converter
2009-01-08 23:58 --d----- c:\program files\Total Video Converter
2009-01-03 15:31 --d----- c:\program files\ConWare
2009-01-03 02:52 --d----- c:\windows\system32\QuickTime
2009-01-03 01:30 --d----- c:\users\owner\appdata\roaming\Any Video Converter
2009-01-03 01:30 --d----- c:\program files\Any Video Converter
2009-01-03 01:22 270,336 a------- c:\windows\system32\TubeFinder.exe
2009-01-03 01:22 208,500 a------- c:\windows\system32\ReyXpBasics.tlb
2009-01-03 01:22 119,568 a------- c:\windows\system32\VB6FR.DLL
2009-01-03 01:22 101,888 a------- c:\windows\system32\VB6STKIT.DLL
2009-01-03 01:22 364,544 a------- c:\windows\system32\PropertyGrid.ocx
2009-01-03 01:22 141,312 a------- c:\windows\system32\MSCMCFR.DLL
2009-01-03 01:22 84,512 a------- c:\windows\system32\PICCLP32.OCX
2009-01-03 01:22 32,768 a------- c:\windows\system32\CMDLGFR.DLL
2009-01-03 01:22 24,576 a------- c:\windows\system32\ControlSubX.ocx
2009-01-03 01:22 9,728 a------- c:\windows\system32\PCCLPFR.DLL
2009-01-02 17:31 --d----- c:\users\owner\appdata\roaming\iolo
2009-01-02 00:22 --d----- c:\users\owner\dwhelper
2009-01-01 19:55 --d----- c:\program files\CueCard
2008-12-29 21:16 --d----- c:\programdata\Sony
2008-12-29 21:15 --d----- c:\program files\Sony
2008-12-29 21:04 --d----- c:\program files\Sony Setup
2008-12-26 13:59 --d----- c:\program files\IObit
2008-12-26 13:52 --d----- c:\users\owner\appdata\roaming\NoteTab Light
2008-12-26 13:52 --d----- c:\program files\NoteTab Light
2008-12-26 03:44 --d----- c:\programdata\SiteAdvisor
2008-12-26 03:42 --d----- c:\program files\common files\McAfee
2008-12-26 03:41 --d----- c:\programdata\McAfee
2008-12-26 03:41 --d----- c:\program files\McAfee
2008-12-26 03:25 --d----- c:\programdata\_comodo_
2008-12-26 03:25 --d----- c:\progra~2\_comodo_
2008-12-26 03:16 --d----- c:\users\owner\appdata\roaming\.purple
2008-12-26 03:15 --d----- c:\program files\common files\GTK
2008-12-26 03:14 249,592 a------- c:\windows\system32\cssdll32.dll
2008-12-26 03:10 --d----- c:\program files\COMODO
2008-12-26 00:00 --d----- c:\users\owner\.thumbnails
2008-12-25 23:03 --d----- c:\users\owner\.gimp-2.6
2008-12-25 23:03 --d----- c:\users\owner\.gegl-0.0
2008-12-25 23:02 --d----- c:\program files\GIMP-2.0
==================== Find3M ====================
2009-01-17 19:36 174 a--sh--- c:\program files\desktop.ini
2009-01-17 19:35 143,360 a------- c:\windows\inf\infstrng.dat
2009-01-17 19:35 86,016 a------- c:\windows\inf\infstor.dat
2009-01-17 19:35 51,200 a------- c:\windows\inf\infpub.dat
2009-01-17 19:25 665,600 a------- c:\windows\inf\drvindex.dat
2009-01-17 17:06 101,888 a------- c:\windows\system32\ifxcardm.dll
2009-01-17 17:06 82,432 a------- c:\windows\system32\axaltocm.dll
2009-01-13 16:43 34 a------- c:\users\owner\jagex_runescape_preferences.dat
2008-12-12 11:18 87,336 a------- c:\windows\system32\dns-sd.exe
2008-12-12 11:11 61,440 a------- c:\windows\system32\dnssd.dll
2008-12-03 19:52 38,496 a------- c:\windows\system32\drivers\mbamswissarmy.sys
2008-12-03 19:52 15,504 a------- c:\windows\system32\drivers\mbam.sys
2008-10-31 19:44 52,736 a------- c:\windows\apppatch\iebrshim.dll
2008-10-31 19:44 2,154,496 a------- c:\windows\apppatch\AcGenral.dll
2008-10-31 19:44 541,696 a------- c:\windows\apppatch\AcLayers.dll
2008-10-31 19:44 460,288 a------- c:\windows\apppatch\AcSpecfc.dll
2008-10-31 19:44 173,056 a------- c:\windows\apppatch\AcXtrnal.dll
2008-10-29 19:09 528 a----r-- C:\MediaID.bin
2008-10-27 10:51 269,312 a------- c:\windows\system32\es.dll
2008-10-27 10:04 514,384 a------- c:\windows\system32\XAudio2_3.dll
2008-10-27 10:04 235,856 a------- c:\windows\system32\xactengine3_3.dll
2008-10-27 10:04 23,376 a------- c:\windows\system32\X3DAudio1_5.dll
2008-10-27 10:04 70,992 a------- c:\windows\system32\XAPOFX1_2.dll
2006-11-02 04:42 287,440 a------- c:\windows\inf\perflib\0409\perfi.dat
2006-11-02 04:42 287,440 a------- c:\windows\inf\perflib\0409\perfh.dat
2006-11-02 04:42 30,674 a------- c:\windows\inf\perflib\0409\perfd.dat
2006-11-02 04:42 30,674 a------- c:\windows\inf\perflib\0409\perfc.dat
2006-11-02 01:20 287,440 a------- c:\windows\inf\perflib\0000\perfi.dat
2006-11-02 01:20 287,440 a------- c:\windows\inf\perflib\0000\perfh.dat
2006-11-02 01:20 30,674 a------- c:\windows\inf\perflib\0000\perfd.dat
2006-11-02 01:20 30,674 a------- c:\windows\inf\perflib\0000\perfc.dat
============= FINISH: 12:57:49.70 ===============