TechSpot

Iexplore.exe keeps working

By tatava
May 15, 2011
  1. Hi guys. I have a xp comp. I couldn't stop iexplore.exe from working in my taskmanager. i used the 7 steps and i realize that now iexplore.exe seems gone. Anyway here is my logs. I want to ask am i clear now this trojan or virus?

    Malwarebytes' Anti-Malware 1.50.1.1100
    www.malwarebytes.org

    Database version: 6583

    Windows 5.1.2600 Service Pack 2
    Internet Explorer 6.0.2900.2180

    15/05/2011 16:05:17
    mbam-log-2011-05-15 (16-05-17).txt

    Scan type: Quick scan
    Objects scanned: 140252
    Time elapsed: 7 minute(s), 9 second(s)

    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 3
    Registry Values Infected: 4
    Registry Data Items Infected: 0
    Folders Infected: 0
    Files Infected: 6

    Memory Processes Infected:
    (No malicious items detected)

    Memory Modules Infected:
    (No malicious items detected)

    Registry Keys Infected:
    HKEY_CLASSES_ROOT\CLSID\{YF32WR50-6SXW-582A-5CR4-AGK5D0T52038} (Trojan.Cybergate) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Active Setup\Installed Components\{YF32WR50-6SXW-582A-5CR4-AGK5D0T52038} (Trojan.Cybergate) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\AppID\ActiveX.DLL (Adware.180Solutions) -> Quarantined and deleted successfully.

    Registry Values Infected:
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\HKLM (Trojan.Cybergate) -> Value: HKLM -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Policies (Trojan.Cybergate) -> Value: Policies -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\HKCU (Trojan.Cybergate) -> Value: HKCU -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Policies (Trojan.Cybergate) -> Value: Policies -> Quarantined and deleted successfully.

    Registry Data Items Infected:
    (No malicious items detected)

    Folders Infected:
    (No malicious items detected)

    Files Infected:
    h:\WINDOWS\system32\config\systemprofile\local settings\temporary internet files\Content.IE5\0DM7GXMZ\nun[1] (Trojan.Inject) -> Quarantined and deleted successfully.
    h:\WINDOWS\system32\install\svchost.exe (Trojan.Cybergate) -> Quarantined and deleted successfully.
    h:\documents and settings\ogan\application data\logs.dat (Bifrose.Trace) -> Quarantined and deleted successfully.
    h:\WINDOWS\system32\tilecomfree.com (Backdoor.Bot) -> Quarantined and deleted successfully.
    h:\documents and settings\ogan\local settings\Temp\UuU.uUu (Malware.Trace) -> Quarantined and deleted successfully.
    h:\documents and settings\ogan\local settings\Temp\XxX.xXx (Malware.Trace) -> Delete on reboot.


    GMER 1.0.15.15627 - http://www.gmer.net
    Rootkit quick scan 2011-05-15 16:16:21
    Windows 5.1.2600 Service Pack 2 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3 ST380011A rev.8.01
    Running: 3yhmqlwp.exe; Driver: H:\DOCUME~1\ogan\LOCALS~1\Temp\pgpcykob.sys


    ---- Disk sectors - GMER 1.0.15 ----

    Disk \Device\Harddisk0\DR0 MBR read error
    Disk \Device\Harddisk0\DR0 MBR BIOS signature not found 0

    ---- System - GMER 1.0.15 ----

    SSDT d347bus.sys (PnP BIOS Extension/ ) ZwEnumerateKey [0xBA6942A8]
    SSDT d347bus.sys (PnP BIOS Extension/ ) ZwEnumerateValueKey [0xBA69F910]

    Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/AVAST Software) ZwCreateProcessEx [0xA92A582E]
    Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/AVAST Software) ZwCreateSection [0xA92A5652]
    Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/AVAST Software) ZwLoadDriver [0xA92A578C]
    Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/AVAST Software) NtCreateSection
    Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/AVAST Software) ObInsertObject
    Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self protection module/AVAST Software) ObMakeTemporaryObject

    ---- Devices - GMER 1.0.15 ----

    Device \Driver\atapi \Device\Ide\IdePort0 8A460D08
    Device \Driver\atapi \Device\Ide\IdeDeviceP0T0L0-3 8A460D08
    Device \Driver\atapi \Device\Ide\IdePort1 8A460D08
    Device \Driver\atapi \Device\Ide\IdePort2 8A460D08
    Device \Driver\atapi \Device\Ide\IdePort3 8A460D08
    Device \Driver\atapi \Device\Ide\IdeDeviceP1T1L0-1b 8A460D08
    Device \Driver\atapi \Device\Ide\IdeDeviceP1T0L0-13 8A460D08
    Device \Driver\d347prt \Device\Scsi\d347prt1 8A7501D8
    Device \FileSystem\Ntfs \Ntfs aswSP.SYS (avast! self protection module/AVAST Software)
    Device \FileSystem\Ntfs \Ntfs 8A754430

    AttachedDevice \FileSystem\Ntfs \Ntfs aswMon2.SYS (avast! File System Filter Driver for Windows XP/AVAST Software)
    AttachedDevice \Driver\Tcpip \Device\Ip wpsdrvnt.sys (wpsdrvnt/Sygate Technologies, Inc.)
    AttachedDevice \Driver\Tcpip \Device\Ip aswTdi.SYS (avast! TDI Filter Driver/AVAST Software)
    AttachedDevice \Driver\Tcpip \Device\Tcp wpsdrvnt.sys (wpsdrvnt/Sygate Technologies, Inc.)
    AttachedDevice \Driver\Tcpip \Device\Tcp aswTdi.SYS (avast! TDI Filter Driver/AVAST Software)
    AttachedDevice \Driver\Tcpip \Device\Udp wpsdrvnt.sys (wpsdrvnt/Sygate Technologies, Inc.)
    AttachedDevice \Driver\Tcpip \Device\Udp aswTdi.SYS (avast! TDI Filter Driver/AVAST Software)
    AttachedDevice \Driver\Tcpip \Device\RawIp wpsdrvnt.sys (wpsdrvnt/Sygate Technologies, Inc.)
    AttachedDevice \Driver\Tcpip \Device\RawIp aswTdi.SYS (avast! TDI Filter Driver/AVAST Software)

    ---- Modules - GMER 1.0.15 ----

    Module _________ BA5D3000-BA5EB000 (98304 bytes)

    ---- EOF - GMER 1.0.15 ----

    .
    DDS (Ver_11-03-05.01) - NTFSx86
    Run by ogan at 16:47:21.46 on 15/05/2011
    Internet Explorer: 6.0.2900.2180 BrowserJavaVersion: 1.6.0_24
    Microsoft Windows XP Professional 5.1.2600.2.1252.44.1033.18.1535.989 [GMT 3:00]
    .
    AV: avast! Antivirus *Enabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
    FW: Sygate Personal Firewall *Enabled*
    .
    ============== Running Processes ===============
    .
    H:\WINDOWS\System32\Ati2evxx.exe
    H:\WINDOWS\system32\svchost -k DcomLaunch
    svchost.exe
    H:\WINDOWS\System32\svchost.exe -k netsvcs
    H:\Program Files\Sygate\SPF\smc.exe
    svchost.exe
    svchost.exe
    H:\Program Files\Alwil Software\Avast5\AvastSvc.exe
    H:\WINDOWS\system32\spoolsv.exe
    H:\Program Files\Java\jre6\bin\jqs.exe
    H:\WINDOWS\runservice.exe
    H:\WINDOWS\System32\svchost.exe -k imgsvc
    H:\WINDOWS\system32\wscntfy.exe
    H:\WINDOWS\system32\Ati2evxx.exe
    H:\WINDOWS\Explorer.EXE
    H:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
    H:\Program Files\AvaFind\AvaFind.exe
    H:\WINDOWS\system32\taskmgr.exe
    H:\Program Files\Mozilla Firefox\firefox.exe
    H:\Program Files\Mozilla Firefox\plugin-container.exe
    H:\WINDOWS\system32\NOTEPAD.EXE
    H:\WINDOWS\system32\NOTEPAD.EXE
    H:\Documents and Settings\ogan\Desktop\dds.scr
    .
    ============== Pseudo HJT Report ===============
    .
    uStart Page = about:blank
    uSearch Page = hxxp://www.google.com
    uSearch Bar = hxxp://www.google.com/ie
    uInternet Connection Wizard,ShellNext = iexplore
    uInternet Settings,ProxyOverride = local
    mSearchAssistant = hxxp://www.google.com/ie
    BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - h:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
    BHO: FDMIECookiesBHO Class: {cc59e0f9-7e43-44fa-9faa-8377850bf205} - h:\program files\free download manager\iefdmcks.dll
    BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - h:\program files\java\jre6\bin\jp2ssv.dll
    BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - h:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    TB: &Google: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - h:\program files\google\googletoolbar4.dll
    TB: Stumble&Upon: {22d003ce-6952-46c5-80b9-d19b479620ab} - h:\windows\system32\s1939.dll
    TB: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No File
    EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
    uRun: [AvaFind] "h:\program files\avafind\AvaFind.exe" /minimized
    mRun: [SmcService] h:\progra~1\sygate\spf\smc.exe -startgui
    mRun: [ZSSnp211] h:\windows\ZSSnp211.exe
    mRun: [Domino] h:\windows\Domino.exe
    mRun: [avast5] h:\progra~1\alwils~1\avast5\avastUI.exe /nogui
    mRun: [SunJavaUpdateSched] "h:\program files\common files\java\java update\jusched.exe"
    mRun: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
    IE: &Google Search
    IE: &Translate English Word
    IE: Backward Links
    IE: Cached Snapshot of Page
    IE: Download all by Free Download Manager
    IE: Download by Free Download Manager
    IE: Download selected by Free Download Manager
    IE: Download web site by Free Download Manager
    IE: Similar Pages
    IE: Translate Page into English
    IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - h:\program files\messenger\msmsgs.exe
    Trusted Zone: gamyun.net\www
    DPF: DirectAnimation Java Classes - file://h:\windows\java\classes\dajava.cab
    DPF: Microsoft XML Parser for Java - file://h:\windows\java\classes\xmldso.cab
    DPF: {0000000A-9980-0010-8000-00AA00389B71} - hxxp://download.microsoft.com/download/8/B/E/8BE028EC-F134-4AA0-84AB-64F76D6B9842/wmsp9dmo.cab
    DPF: {233C1507-6A77-46A4-9443-F871F945D258} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
    DPF: {31435657-9980-0010-8000-00AA00389B71} - hxxp://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab
    DPF: {33564D57-0000-0010-8000-00AA00389B71} - hxxp://download.microsoft.com/download/F/6/E/F6E491A6-77E1-4E20-9F5F-94901338C922/wmv9VCM.CAB
    DPF: {33564D57-9980-0010-8000-00AA00389B71} - hxxp://download.microsoft.com/download/D/0/D/D0DD87DA-994F-4334-8B55-AF2E4D98ED0C/wmv9dmo.cab
    DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} - hxxp://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
    DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
    TCP: {41C6D82A-159E-4006-8ED5-DA50DE458B80} = 4.2.2.2,4.2.2.5
    Notify: AtiExtEvent - Ati2evxx.dll
    SecurityProviders: msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll, zwebauth.dll
    LSA: Authentication Packages = msv1_0 nwprovau
    Hosts: 72.55.188.183 richarddawkins.net
    Hosts: 72.55.188.183 www.richarddawkins.net
    Hosts: 74.125.79.100 sites.google.com
    Hosts: 208.109.181.194 makat.org
    Hosts: 208.109.181.194 www.makat.org
    .
    Note: multiple HOSTS entries found. Please refer to Attach.txt
    .
    ================= FIREFOX ===================
    .
    FF - ProfilePath - h:\docume~1\ogan\applic~1\mozilla\firefox\profiles\tvz9nn9p.default\
    FF - prefs.js: browser.startup.homepage -
    FF - plugin: h:\documents and settings\ogan\application data\move networks\plugins\npqmp071503000010.dll
    FF - plugin: h:\documents and settings\ogan\application data\move networks\plugins\npqmp071504000001.dll
    FF - plugin: h:\program files\google\picasa3\npPicasa3.dll
    FF - plugin: h:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
    FF - plugin: h:\program files\microsoft silverlight\4.0.50826.0\npctrlui.dll
    FF - plugin: h:\program files\mozilla firefox\plugins\npdeployJava1.dll
    FF - plugin: h:\program files\mozilla firefox\plugins\NPMXENG.DLL
    .
    ============= SERVICES / DRIVERS ===============
    .
    R0 d347bus;d347bus;h:\windows\system32\drivers\d347bus.sys [2006-2-16 155136]
    R0 d347prt;d347prt;h:\windows\system32\drivers\d347prt.sys [2006-2-16 5248]
    R0 xmasbus;xmasbus;h:\windows\system32\drivers\xmasbus.sys [2005-11-30 140800]
    R1 aswSP;aswSP;h:\windows\system32\drivers\aswSP.sys [2008-4-5 294608]
    R2 acedrv10;acedrv10;h:\windows\system32\drivers\ACEDRV10.sys [2007-7-24 328824]
    R2 acehlp10;acehlp10;h:\windows\system32\drivers\acehlp10.sys [2007-7-11 201848]
    R2 aswFsBlk;aswFsBlk;h:\windows\system32\drivers\aswFsBlk.sys [2011-1-19 17744]
    R2 avast! Antivirus;avast! Antivirus;h:\program files\alwil software\avast5\AvastSvc.exe [2010-9-9 40384]
    R2 LicCtrlService;LicCtrl Service;h:\windows\Runservice.exe [2005-12-16 2560]
    R2 SBKUPNT;SBKUPNT;h:\windows\system32\drivers\SBKUPNT.SYS [2011-3-4 14976]
    R3 Tetris;Tetris driver;h:\windows\system32\drivers\Tetris.sys [2005-12-16 48928]
    S0 xmasscsi;xmasscsi;h:\windows\system32\drivers\xmasscsi.sys [2005-11-30 5248]
    S2 BT848;CxVCap, WDM Video Capture;h:\windows\system32\drivers\cxvcap.sys --> h:\windows\system32\drivers\cxvcap.sys [?]
    S2 CXTUNER;CxTuner, WDM TvTuner;h:\windows\system32\drivers\cxtuner.sys --> h:\windows\system32\drivers\CXTUNER.sys [?]
    S2 CXXBAR;CxXBar, WDM Crossbar;h:\windows\system32\drivers\cxxbar.sys --> h:\windows\system32\drivers\CXXBAR.sys [?]
    S3 atidgllk;atidgllk;c:\program files\asus\smartdoctor\atidgllk.sys [2004-6-16 4608]
    S3 PCAlertDriver;PCAlertDriver;h:\program files\msi\core center\NTGLM7X.SYS [2005-11-29 21728]
    S4 vsdatant;vsdatant; [x]
    .
    =============== Created Last 30 ================
    .
    2011-05-15 12:52:05 -------- d-----w- h:\docume~1\ogan\applic~1\Malwarebytes
    2011-05-15 12:51:53 38224 ----a-w- h:\windows\system32\drivers\mbamswissarmy.sys
    2011-05-15 12:51:52 -------- d-----w- h:\docume~1\alluse~1\applic~1\Malwarebytes
    2011-05-15 12:51:48 20952 ----a-w- h:\windows\system32\drivers\mbam.sys
    2011-05-15 12:51:48 -------- d-----w- h:\program files\Malwarebytes' Anti-Malware
    2011-05-07 20:14:15 781272 ----a-w- h:\program files\mozilla firefox\mozsqlite3.dll
    2011-05-07 20:14:14 89048 ----a-w- h:\program files\mozilla firefox\libEGL.dll
    2011-05-07 20:14:14 465880 ----a-w- h:\program files\mozilla firefox\libGLESv2.dll
    2011-05-07 20:14:14 1874904 ----a-w- h:\program files\mozilla firefox\mozjs.dll
    2011-05-07 20:14:14 15832 ----a-w- h:\program files\mozilla firefox\mozalloc.dll
    2011-05-07 20:14:13 1974616 ----a-w- h:\program files\mozilla firefox\D3DCompiler_42.dll
    2011-05-07 20:14:13 1892184 ----a-w- h:\program files\mozilla firefox\d3dx9_42.dll
    2011-05-07 20:14:13 142296 ----a-w- h:\program files\mozilla firefox\components\browsercomps.dll
    .
    ==================== Find3M ====================
    .
    2011-05-15 13:08:14 49 --sha-w- h:\windows\system32\mmf.sys
    .
    ============= FINISH: 16:47:44.67 ===============

    attachment txt is below
     
  2. tatava

    tatava TS Rookie Topic Starter

    .
    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT
    .
    DDS (Ver_11-03-05.01)
    .
    Microsoft Windows XP Professional
    Boot Device: \Device\HarddiskVolume1
    Install Date: 29/11/2005 17:14:04
    System Uptime: 15/05/2011 16:07:19 (0 hours ago)
    .
    Motherboard: | | MS-7030
    Processor: AMD Sempron(tm) Processor 2500+ | Socket 940 | 1406/200mhz
    .
    ==== Disk Partitions =========================
    .
    A: is Removable
    C: is FIXED (NTFS) - 6 GiB total, 2.189 GiB free.
    D: is CDROM ()
    E: is FIXED (NTFS) - 20 GiB total, 0.964 GiB free.
    F: is FIXED (NTFS) - 20 GiB total, 10.521 GiB free.
    G: is FIXED (NTFS) - 20 GiB total, 2.594 GiB free.
    H: is FIXED (NTFS) - 10 GiB total, 0.556 GiB free.
    K: is CDROM ()
    .
    ==== Disabled Device Manager Items =============
    .
    Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
    Description: 1394 Net Adapter
    Device ID: V1394\NIC1394\999A99110600
    Manufacturer: Microsoft
    Name: 1394 Net Adapter #2
    PNP Device ID: V1394\NIC1394\999A99110600
    Service: NIC1394
    .
    Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
    Description: Hamachi Network Interface
    Device ID: ROOT\NET\0000
    Manufacturer: LogMeIn, Inc.
    Name: Hamachi Network Interface
    PNP Device ID: ROOT\NET\0000
    Service: hamachi
    .
    Class GUID: {4D36E965-E325-11CE-BFC1-08002BE10318}
    Description: CD-ROM Drive
    Device ID: SCSI\CDROM&VEN_GENERIC&PROD_DVD-ROM&REV_1.0

    \2&12B1DE20&1&000
    Manufacturer: (Standard CD-ROM drives)
    Name: Generic DVD-ROM SCSI CdRom Device
    PNP Device ID: SCSI\CDROM&VEN_GENERIC&PROD_DVD-ROM&REV_1.0

    \2&12B1DE20&1&000
    Service: cdrom
    .
    ==== System Restore Points ===================
    .
    No restore point in system.
    .
    ==== Hosts File Hijack ======================
    .
    Hosts: 72.55.188.183 richarddawkins.net
    Hosts: 72.55.188.183 www.richarddawkins.net
    Hosts: 74.125.79.100 sites.google.com
    Hosts: 208.109.181.194 makat.org
    Hosts: 208.109.181.194 www.makat.org
    Hosts: 205.188.234.120 shoutcast.com
    Hosts: 205.188.234.120 www.shoutcast.com
    Hosts: 67.221.174.30 tagged.com
    Hosts: 67.221.174.30 www.tagged.com
    Hosts: 67.221.174.30 start.tagged.com
    Hosts: 67.221.174.30 video.tagged.com
    Hosts: 67.221.174.30 secure.tagged.com
    Hosts: 67.221.174.30 corp.tagged.com
    Hosts: 84.53.146.67 i5.tagstat.com
    Hosts: 84.53.146.69 i6.tagstat.com
    Hosts: 84.53.146.82 i7.tagstat.com
    Hosts: 84.53.146.69 i4.tagstat.com
    Hosts: 84.53.146.16 i3.tagstat.com
    Hosts: 84.53.146.67 i2.tagstat.com
    Hosts: 84.53.146.16 i1.tagstat.com
    Hosts: 84.53.146.16 y.tagstat.com
    Hosts: 87.248.217.254 yt.tagstat.com
    Hosts: 87.248.217.254 u0.tagstat.com
    Hosts: 87.248.217.253 u1.tagstat.com
    Hosts: 87.248.217.254 u2.tagstat.com
    Hosts: 87.248.217.253 u3.tagstat.com
    Hosts: 87.248.217.254 u4.tagstat.com
    Hosts: 87.248.217.254 u5.tagstat.com
    Hosts: 87.248.217.253 u6.tagstat.com
    Hosts: 87.248.217.254 u7.tagstat.com
    Hosts: 87.248.217.253 j0.tagstat.com
    Hosts: 87.248.217.254 j1.tagstat.com
    Hosts: 87.248.217.254 j2.tagstat.com
    Hosts: 87.248.217.253 j3.tagstat.com
    Hosts: 87.248.217.254 j4.tagstat.com
    Hosts: 87.248.217.253 j5.tagstat.com
    Hosts: 87.248.217.254 j6.tagstat.com
    Hosts: 87.248.217.253 j7.tagstat.com
    Hosts: 87.248.217.253 j8.tagstat.com
    Hosts: 77.247.179.157 imagefap.com
    Hosts: 77.247.179.157 www.imagefap.com
    Hosts: 77.247.179.131 upload.imagefap.com
    Hosts: 77.247.179.169 images.imagefap.com
    Hosts: 77.247.179.138 pic.moviefap.com
    Hosts: 77.247.179.169 cache.imagefap.com
    Hosts: 216.218.248.145 www.rotten.com
    Hosts: 216.218.248.145 rotten.com
    Hosts: 216.218.248.185 poetry.rotten.com
    Hosts: 69.5.88.227 www.megaupload.com
    Hosts: 69.5.88.227 megaupload.com
    Hosts: 69.5.88.240 wwwstatic.megaupload.com
    Hosts: 69.5.88.211 www1.megaupload.com
    Hosts: 69.5.88.211 www2.megaupload.com
    Hosts: 69.5.88.211 www3.megaupload.com
    Hosts: 69.5.88.211 www4.megaupload.com
    Hosts: 69.5.88.211 www5.megaupload.com
    Hosts: 69.5.88.211 www6.megaupload.com
    Hosts: 69.5.88.211 www7.megaupload.com
    Hosts: 69.5.88.211 www8.megaupload.com
    Hosts: 69.5.88.211 www9.megaupload.com
    Hosts: 174.140.128.14 www10.megaupload.com
    Hosts: 174.140.128.15 www11.megaupload.com
    Hosts: 174.140.128.16 www12.megaupload.com
    Hosts: 174.140.128.17 www13.megaupload.com
    Hosts: 174.140.128.18 www14.megaupload.com
    Hosts: 174.140.128.19 www15.megaupload.com
    Hosts: 174.140.128.20 www16.megaupload.com
    Hosts: 174.140.128.21 www17.megaupload.com
    Hosts: 174.140.128.22 www18.megaupload.com
    Hosts: 174.140.128.23 www19.megaupload.com
    Hosts: 174.140.128.24 www20.megaupload.com
    Hosts: 174.140.128.25 www21.megaupload.com
    Hosts: 174.140.128.26 www22.megaupload.com
    Hosts: 174.140.128.27 www23.megaupload.com
    Hosts: 174.140.128.28 www24.megaupload.com
    Hosts: 174.140.128.29 www25.megaupload.com
    Hosts: 174.140.128.30 www26.megaupload.com
    Hosts: 174.140.128.31 www27.megaupload.com
    Hosts: 174.140.128.32 www28.megaupload.com
    Hosts: 174.140.128.33 www29.megaupload.com
    Hosts: 174.140.128.34 www30.megaupload.com
    Hosts: 174.140.128.35 www31.megaupload.com
    Hosts: 174.140.128.36 www32.megaupload.com
    Hosts: 174.140.128.37 www33.megaupload.com
    Hosts: 174.140.128.38 www34.megaupload.com
    Hosts: 174.140.128.39 www35.megaupload.com
    Hosts: 174.140.128.40 www36.megaupload.com
    Hosts: 174.140.128.41 www37.megaupload.com
    Hosts: 174.140.128.42 www38.megaupload.com
    Hosts: 174.140.128.43 www39.megaupload.com
    Hosts: 174.140.128.44 www40.megaupload.com
    Hosts: 174.140.128.45 www41.megaupload.com
    Hosts: 174.140.128.46 www42.megaupload.com
    Hosts: 174.140.128.47 www43.megaupload.com
    Hosts: 69.5.88.211 www44.megaupload.com
    Hosts: 69.5.88.211 www45.megaupload.com
    Hosts: 69.5.88.211 www46.megaupload.com
    Hosts: 69.5.88.211 www47.megaupload.com
    Hosts: 69.5.88.211 www48.megaupload.com
    Hosts: 69.5.88.211 www49.megaupload.com
    Hosts: 87.255.33.129 www50.megaupload.com
    Hosts: 87.255.33.130 www51.megaupload.com
    Hosts: 87.255.33.131 www52.megaupload.com
    Hosts: 87.255.33.132 www53.megaupload.com
    Hosts: 87.255.33.133 www54.megaupload.com
    Hosts: 87.255.33.134 www55.megaupload.com
    Hosts: 87.255.33.135 www56.megaupload.com
    Hosts: 87.255.33.136 www57.megaupload.com
    Hosts: 87.255.33.137 www58.megaupload.com
    Hosts: 87.255.33.138 www59.megaupload.com
    Hosts: 95.211.94.6 www60.megaupload.com
    Hosts: 95.211.94.5 www61.megaupload.com
    Hosts: 95.211.94.8 www62.megaupload.com
    Hosts: 95.211.94.10 www63.megaupload.com
    Hosts: 95.211.94.9 www64.megaupload.com
    Hosts: 95.211.94.7 www65.megaupload.com
    Hosts: 95.211.94.1 www66.megaupload.com
    Hosts: 95.211.94.4 www67.megaupload.com
    Hosts: 95.211.94.3 www68.megaupload.com
    Hosts: 95.211.94.2 www69.megaupload.com
    Hosts: 87.255.33.140 www70.megaupload.com
    Hosts: 87.255.33.141 www71.megaupload.com
    Hosts: 87.255.33.142 www72.megaupload.com
    Hosts: 87.255.33.143 www73.megaupload.com
    Hosts: 87.255.33.144 www74.megaupload.com
    Hosts: 87.255.33.145 www75.megaupload.com
    Hosts: 87.255.33.146 www76.megaupload.com
    Hosts: 87.255.33.147 www77.megaupload.com
    Hosts: 87.255.33.148 www78.megaupload.com
    Hosts: 87.255.33.149 www79.megaupload.com
    Hosts: 85.17.190.1 www80.megaupload.com
    Hosts: 85.17.190.2 www81.megaupload.com
    Hosts: 85.17.190.3 www82.megaupload.com
    Hosts: 85.17.190.4 www83.megaupload.com
    Hosts: 85.17.190.5 www84.megaupload.com
    Hosts: 85.17.190.6 www85.megaupload.com
    Hosts: 85.17.190.7 www86.megaupload.com
    Hosts: 85.17.190.8 www87.megaupload.com
    Hosts: 85.17.190.9 www88.megaupload.com
    Hosts: 85.17.190.10 www89.megaupload.com
    Hosts: 95.211.94.18 www90.megaupload.com
    Hosts: 95.211.94.17 www91.megaupload.com
    Hosts: 95.211.94.22 www92.megaupload.com
    Hosts: 95.211.94.21 www93.megaupload.com
    Hosts: 95.211.94.19 www94.megaupload.com
    Hosts: 95.211.94.20 www95.megaupload.com
    Hosts: 95.211.94.26 www96.megaupload.com
    Hosts: 95.211.94.25 www97.megaupload.com
    Hosts: 95.211.94.24 www98.megaupload.com
    Hosts: 95.211.94.23 www99.megaupload.com
    Hosts: 95.211.94.33 www100.megaupload.com
    Hosts: 95.211.94.34 www101.megaupload.com
    Hosts: 95.211.94.35 www102.megaupload.com
    Hosts: 95.211.94.36 www103.megaupload.com
    Hosts: 95.211.94.37 www104.megaupload.com
    Hosts: 95.211.94.38 www105.megaupload.com
    Hosts: 95.211.94.39 www106.megaupload.com
    Hosts: 95.211.94.40 www107.megaupload.com
    Hosts: 95.211.94.41 www108.megaupload.com
    Hosts: 95.211.94.42 www109.megaupload.com
    Hosts: 95.211.94.49 www110.megaupload.com
    Hosts: 95.211.94.50 www111.megaupload.com
    Hosts: 95.211.94.51 www112.megaupload.com
    Hosts: 95.211.94.52 www113.megaupload.com
    Hosts: 95.211.94.242 www114.megaupload.com
    Hosts: 95.211.94.243 www115.megaupload.com
    Hosts: 95.211.94.244 www116.megaupload.com
    Hosts: 95.211.94.245 www117.megaupload.com
    Hosts: 95.211.94.241 www118.megaupload.com
    Hosts: 95.211.94.247 www119.megaupload.com
    Hosts: 95.211.95.65 www120.megaupload.com
    Hosts: 95.211.95.66 www121.megaupload.com
    Hosts: 95.211.95.67 www122.megaupload.com
    Hosts: 95.211.95.68 www123.megaupload.com
    Hosts: 95.211.95.69 www124.megaupload.com
    Hosts: 95.211.95.70 www125.megaupload.com
    Hosts: 95.211.95.71 www126.megaupload.com
    Hosts: 95.211.95.72 www127.megaupload.com
    Hosts: 95.211.95.73 www128.megaupload.com
    Hosts: 95.211.95.74 www129.megaupload.com
    Hosts: 95.211.94.53 www130.megaupload.com
    Hosts: 95.211.94.54 www131.megaupload.com
    Hosts: 95.211.94.55 www132.megaupload.com
    Hosts: 95.211.94.56 www133.megaupload.com
    Hosts: 95.211.94.57 www134.megaupload.com
    Hosts: 95.211.94.58 www135.megaupload.com
    Hosts: 95.211.94.65 www136.megaupload.com
    Hosts: 95.211.94.66 www137.megaupload.com
    Hosts: 95.211.94.67 www138.megaupload.com
    Hosts: 95.211.94.68 www139.megaupload.com
    Hosts: 95.211.94.69 www140.megaupload.com
    Hosts: 95.211.94.70 www141.megaupload.com
    Hosts: 95.211.94.71 www142.megaupload.com
    Hosts: 95.211.94.72 www143.megaupload.com
    Hosts: 95.211.94.73 www144.megaupload.com
    Hosts: 95.211.94.74 www145.megaupload.com
    Hosts: 69.5.88.211 www146.megaupload.com
    Hosts: 69.5.88.211 www147.megaupload.com
    Hosts: 69.5.88.211 www148.megaupload.com
    Hosts: 69.5.88.211 www149.megaupload.com
    Hosts: 69.5.88.211 www150.megaupload.com
    Hosts: 69.5.88.211 www151.megaupload.com
    Hosts: 69.5.88.211 www152.megaupload.com
    Hosts: 69.5.88.211 www153.megaupload.com
    Hosts: 69.5.88.211 www154.megaupload.com
    Hosts: 69.5.88.211 www155.megaupload.com
    Hosts: 69.5.88.211 www156.megaupload.com
    Hosts: 69.5.88.211 www157.megaupload.com
    Hosts: 69.5.88.211 www158.megaupload.com
    Hosts: 69.5.88.211 www159.megaupload.com
    Hosts: 69.5.88.211 www160.megaupload.com
    Hosts: 69.5.88.211 www161.megaupload.com
    Hosts: 69.5.88.211 www162.megaupload.com
    Hosts: 69.5.88.211 www163.megaupload.com
    Hosts: 69.5.88.211 www164.megaupload.com
    Hosts: 174.140.156.10 www165.megaupload.com
    Hosts: 174.140.156.11 www166.megaupload.com
    Hosts: 174.140.156.12 www167.megaupload.com
    Hosts: 174.140.156.13 www168.megaupload.com
    Hosts: 174.140.156.14 www169.megaupload.com
    Hosts: 174.140.156.15 www170.megaupload.com
    Hosts: 174.140.156.16 www171.megaupload.com
    Hosts: 174.140.156.17 www172.megaupload.com
    Hosts: 174.140.156.18 www173.megaupload.com
    Hosts: 174.140.156.19 www174.megaupload.com
    Hosts: 174.140.156.20 www175.megaupload.com
    Hosts: 174.140.156.21 www176.megaupload.com
    Hosts: 174.140.156.22 www177.megaupload.com
    Hosts: 174.140.156.23 www178.megaupload.com
    Hosts: 174.140.156.24 www179.megaupload.com
    Hosts: 174.140.156.25 www180.megaupload.com
    Hosts: 174.140.156.26 www181.megaupload.com
    Hosts: 174.140.156.27 www182.megaupload.com
    Hosts: 174.140.156.28 www183.megaupload.com
    Hosts: 174.140.156.29 www184.megaupload.com
    Hosts: 174.140.156.30 www185.megaupload.com
    Hosts: 174.140.156.31 www186.megaupload.com
    Hosts: 174.140.156.32 www187.megaupload.com
    Hosts: 174.140.156.33 www188.megaupload.com
    Hosts: 174.140.156.34 www189.megaupload.com
    Hosts: 174.140.156.35 www190.megaupload.com
    Hosts: 174.140.156.36 www191.megaupload.com
    Hosts: 174.140.156.37 www192.megaupload.com
    Hosts: 174.140.156.38 www193.megaupload.com
    Hosts: 174.140.156.39 www194.megaupload.com
    Hosts: 174.140.156.40 www195.megaupload.com
    Hosts: 174.140.156.41 www196.megaupload.com
    Hosts: 174.140.156.42 www197.megaupload.com
    Hosts: 174.140.156.43 www198.megaupload.com
    Hosts: 174.140.156.44 www199.megaupload.com
    Hosts: 174.140.156.45 www200.megaupload.com
    Hosts: 174.140.156.46 www201.megaupload.com
    Hosts: 174.140.156.47 www202.megaupload.com
    Hosts: 174.140.156.48 www203.megaupload.com
    Hosts: 174.140.156.49 www204.megaupload.com
    Hosts: 174.140.156.50 www205.megaupload.com
    Hosts: 174.140.156.51 www206.megaupload.com
    Hosts: 174.140.156.52 www207.megaupload.com
    Hosts: 174.140.156.53 www208.megaupload.com
    Hosts: 174.140.156.54 www209.megaupload.com
    Hosts: 174.140.156.55 www210.megaupload.com
    Hosts: 174.140.156.56 www211.megaupload.com
    Hosts: 174.140.156.57 www212.megaupload.com
    Hosts: 174.140.156.58 www213.megaupload.com
    Hosts: 174.140.156.59 www214.megaupload.com
    Hosts: 174.140.156.60 www215.megaupload.com
    Hosts: 174.140.156.61 www216.megaupload.com
    Hosts: 174.140.156.62 www217.megaupload.com
    Hosts: 174.140.156.63 www218.megaupload.com
    Hosts: 174.140.156.64 www219.megaupload.com
    Hosts: 174.140.156.65 www220.megaupload.com
    Hosts: 174.140.156.66 www221.megaupload.com
    Hosts: 174.140.156.67 www222.megaupload.com
    Hosts: 174.140.156.68 www223.megaupload.com
    Hosts: 174.140.156.69 www224.megaupload.com
    Hosts: 174.140.156.70 www225.megaupload.com
    Hosts: 174.140.156.71 www226.megaupload.com
    Hosts: 174.140.156.72 www227.megaupload.com
    Hosts: 174.140.157.10 www228.megaupload.com
    Hosts: 174.140.157.11 www229.megaupload.com
    Hosts: 174.140.157.12 www230.megaupload.com
    Hosts: 174.140.157.13 www231.megaupload.com
    Hosts: 174.140.157.14 www232.megaupload.com
    Hosts: 69.5.88.211 www900.megaupload.com
    Hosts: 69.5.88.211 wwwq.megaupload.com
    Hosts: 209.222.148.132 wwwq0.megaupload.com
    Hosts: 209.222.148.133 wwwq1.megaupload.com
    Hosts: 209.222.148.134 wwwq2.megaupload.com
    Hosts: 209.222.148.135 wwwq3.megaupload.com
    Hosts: 209.222.148.136 wwwq4.megaupload.com
    Hosts: 209.222.148.137 wwwq5.megaupload.com
    Hosts: 209.222.148.138 wwwq6.megaupload.com
    Hosts: 209.222.148.139 wwwq7.megaupload.com
    Hosts: 209.222.148.140 wwwq8.megaupload.com
    Hosts: 209.222.148.141 wwwq9.megaupload.com
    Hosts: 209.222.148.142 wwwq10.megaupload.com
    Hosts: 209.222.148.143 wwwq11.megaupload.com
    Hosts: 209.222.148.144 wwwq12.megaupload.com
    Hosts: 209.222.148.145 wwwq13.megaupload.com
    Hosts: 209.222.148.146 wwwq14.megaupload.com
    Hosts: 209.222.148.147 wwwq15.megaupload.com
    Hosts: 209.222.148.148 wwwq16.megaupload.com
    Hosts: 209.222.148.149 wwwq17.megaupload.com
    Hosts: 209.222.148.150 wwwq18.megaupload.com
    Hosts: 209.222.148.151 wwwq19.megaupload.com
    Hosts: 209.222.148.152 wwwq20.megaupload.com
    Hosts: 209.222.148.153 wwwq21.megaupload.com
    Hosts: 209.222.148.154 wwwq22.megaupload.com
    Hosts: 209.222.148.155 wwwq23.megaupload.com
    Hosts: 69.5.88.224 wwwq24.megaupload.com
    Hosts: 69.5.88.225 wwwq25.megaupload.com
    Hosts: 69.5.88.226 wwwq26.megaupload.com
    Hosts: 69.5.88.227 wwwq27.megaupload.com
    Hosts: 69.5.88.228 wwwq28.megaupload.com
    Hosts: 69.5.88.229 wwwq29.megaupload.com
    Hosts: 69.5.88.230 wwwq30.megaupload.com
    Hosts: 69.5.88.231 wwwq31.megaupload.com
    Hosts: 69.5.88.211 wwwq32.megaupload.com
    Hosts: 69.5.88.211 wwwq33.megaupload.com
    Hosts: 69.5.88.211 wwwq34.megaupload.com
    Hosts: 69.5.88.211 wwwq35.megaupload.com
    Hosts: 69.5.88.211 wwwq36.megaupload.com
    Hosts: 69.5.88.211 wwwq37.megaupload.com
    Hosts: 69.5.88.211 wwwq38.megaupload.com
    Hosts: 69.5.88.211 wwwq39.megaupload.com
    Hosts: 69.5.88.211 wwwq40.megaupload.com
    Hosts: 209.85.229.99 www.youtube.com
    Hosts: 209.85.229.99 youtube.com
    ==== Installed Programs ======================
    .
    AC3Filter (remove only)
    Adobe Bridge 1.0
    Adobe Common File Installer
    Adobe Flash Player 10 ActiveX
    Adobe Flash Player 10 Plugin
    Adobe Help Center 1.0
    Adobe Photoshop CS2
    Adobe Premiere Pro
    Adobe Reader 8.1.0
    Adobe Shockwave Player
    Adobe Stock Photos 1.0
    Adobe® Photoshop® Album Starter Edition 3.0
    ADSL Modem Driver Suite Product
    Age Of Empires 2 & The Conquerors Expansion - Full Game
    Age of Empires II - The Conquerors - 1.0e Patch
    Age of Empires II - The Conquerors - 1.0e Patch FINAL
    Ares 2.1.1
    ASUS ATI Driver
    ASUS Enhanced Display Driver
    ASUS GameFace Live
    ASUS GameLiveShow
    ASUS SmartDoctor
    ASUS Utilities
    ASUS VideoSecurity Online
    ATI - Software Uninstall Utility
    ATI Control Panel
    ATI Display Driver
    µTorrent
    Audacity 1.2.6
    Ava Find
    avast! Free Antivirus
    Baldur's Gate
    CCleaner (remove only)
    CDisplay 1.8
    CDRWIN 6.1
    Collab
    CompuApps SwissKnife V3
    Core Center
    CyberCam
    Direct Show Ogg Vorbis Filter (remove only)
    DivX Codec 3.1alpha release
    DivX Web Player
    DiVXPlanet
    Dramatica Pro 4.0 Demo
    Fallout2
    File Splitter and Joiner (FFSJ v3.2)
    Final Draft 7
    FLV Player 1.3.3
    FLV SPLITTER
    Football Manager 2009
    Football Manager 2010
    Free Download Manager 2.1
    Free PDF to Word Doc Converter v1.1
    Full Tilt Poker
    Game Vindicator
    GOM Player
    Google Toolbar for Internet Explorer
    GSpot Codec Information Appliance
    GTK+ 2.6.9 runtime environment
    Hamachi 1.0.2.0
    IGZ Lobby System
    IL Download Manager
    iTunes
    Java Auto Updater
    Java(TM) 6 Update 24
    Java(TM) SE Runtime Environment 6 Update 1
    LADSPA_plugins-win-0.4.15
    LAME v3.98.2 for Audacity
    LockBox
    Longman Student 3.0
    Madden NFL 06
    Magic ISO Maker v5.5 (build 0273)
    Magic Workstation 0.94f
    makat v5
    Malwarebytes' Anti-Malware
    MatrixEngine
    Matroska Pack - Lazy Man's MKV 0.9.2
    Microsoft .NET Framework 1.1
    Microsoft .NET Framework 2.0
    Microsoft Age of Empires II
    Microsoft Age of Empires II: The Conquerors Expansion
    Microsoft Office Professional Edition 2003
    Microsoft PowerPoint Viewer 97
    Microsoft Silverlight
    Microsoft SQL Server Desktop Engine (SONY_MEDIAMGR)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
    mIRC
    Move Media Player
    Mozilla Firefox 4.0.1 (x86 en-US)
    mpg123 and MAD DirectShow Filter (remove only)
    MSI DigiCell
    MSN Gaming Zone
    MSN Winks
    MTG GamePack for Magic Workstation
    Myth II
    NVIDIA Drivers
    PDFCreator
    PENTAX Digital Camera Utility
    Picasa 3
    Planescape - Torment
    Playchess
    PokerSAX 1.5
    PokerStars
    Populous: The Beginning
    Programmers Notepad 2
    ProtectDisc Helper Driver 10
    QuickTime
    ratDVD 0.78.1444
    Real Alternative 1.8.2 Lite
    Realtek AC'97 Audio
    Registry Mechanic 5.1
    ScummVM 0.7.1
    SecureDoc
    Security Update for Windows XP (KB899588)
    Sony ACID Pro 6.0
    Sony Media Manager 2.2
    SopCast 1.1.2
    Spectromancer
    Star Wars®: Knights of the Old Republic (TM)
    StarForge
    StreamDown Version 5.9
    StumbleUpon Toolbar for IE
    Subtitle Workshop 2.51
    Sygate Personal Firewall
    The GIMP 2.2.9
    The KMPlayer (remove only)
    TMPGEnc DVD Author 1.6
    Tor 0.2.1.26
    —z?Ë‚µ‚Ì’†‚̃ŠƒAƒ‹
    Vidalia 0.2.9
    VideoLAN VLC media player 0.8.6
    VobSub v2.23 (Remove Only)
    WD FAT32 Formatter
    WebFldrs XP
    Winamp (remove only)
    WinDjView 1.0.3
    Windows Installer 3.1 (KB893803)
    Windows Live Messenger
    Windows XP Service Pack 2
    WinRAR archiver
    WriteItNow3
    XviD MPEG-4 Video Codec
    Youtube Jacker
    ZSMC USB PC Camera (ZS211)
    .
    ==== Event Viewer Messages From Past Week ========
    .
    15/05/2011 16:08:29, error: Service Control Manager [7026] - The following boot-start or

    system-start driver(s) failed to load: xmasscsi
    09/05/2011 08:56:36, error: Service Control Manager [7000] - The OMSCAN service

    failed to start due to the following error: The system cannot find the file specified.
    09/05/2011 08:56:36, error: Service Control Manager [7000] - The CxXBar, WDM

    Crossbar service failed to start due to the following error: The system cannot find the file

    specified.
    09/05/2011 08:56:36, error: Service Control Manager [7000] - The CxVCap, WDM Video

    Capture service failed to start due to the following error: The system cannot find the file

    specified.
    09/05/2011 08:56:36, error: Service Control Manager [7000] - The CxTuner, WDM

    TvTuner service failed to start due to the following error: The system cannot find the file

    specified.
    09/05/2011 08:56:36, error: Service Control Manager [7000] - The ATK Keyboard Service

    service failed to start due to the following error: The system cannot find the file specified.
    09/05/2011 08:56:36, error: Service Control Manager [7000] - The ASUS Virtual Video

    Capture Device Driver service failed to start due to the following error: The service cannot

    be started, either because it is disabled or because it has no enabled devices associated

    with it.
    .
    ==== End Of File ===========================
     
  3. Bobbye

    Bobbye Helper on the Fringe Posts: 16,335   +36

    Good Morning! Welcome to TechSpot. I just signed on and saw your thread.

    Please find the other log that was generated by DDS. It is named Attach.exe and paste it in your next reply. You do not need to zip it.

    It appears that you are using at least 1 file sharing program: BitFrost Please either uninstall that (recommended) or disable it and any other files sharing program on he system while I am helping you.

    I'm going to review these logs, but can you better describe what you mean by "I couldn't stop iexplore.exe from working in my taskmanager." Hopefully you know that iexplore.exe is going to run when you have Internet Explorer open. But malware can hide in the process and it looks like you host files have been hijacked.

    Questions
    1. Is there another language in addition to English on the system.
    2. Do you know anything about or do you have some affiliation with Richard Dawkins?
    3. Are your searches being redirected> that is, are you being taken to a site other than what you put in the Address Bar or chose from a search engine?
    4. Are you having any problem with an internet connection?
    5. Are you seeing more than 1 entry of iexplore.exe in the Task Manager?

    When I get the additional log and answers to my questions, I will know better how to proceed.

    Note
    Please do not use any other cleaning programs or scans while I'm helping you, unless I direct you to. Do not use a Registry cleaner or make any changes in the Registry.
     
  4. tatava

    tatava TS Rookie Topic Starter

    hi Bobbye

    I don't have Attach.exe file. if you mean attach.txt i already post it. i searched my computer and there isn't any exe file named attach. first im gonna answer your questions then i re-paste my attach.txt

    I neither use nor know anything about Bitfrost program. I saw Malwarebytes found and delete it. When i search there is not a file named Bitfrost bifrost etc. As I mentioned below i have more than one iexplore.exe file. when i don't open iexplorer there is a iexplore.exe in my task manager. I try to end process but after that it automatically re-appear. After i used malwarebytes and clean the trojans There is not any iexplore.exe I use firefox. I'm concerned about if my computer is clean now or there are further steps. Thanks in advance

    1 Yes
    2 Richard Dawkins is famous scientist who wrote about Darwinist theories. My country banned to access his websites and a lot of other sites too. So I personally edit my host file.
    3 My searches doesn't being redirected
    4 I dont have any internet connection issues
    5 Yes. I mean i use firefox but if i use explorer there is more than one

    .
    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT
    .
    DDS (Ver_11-03-05.01)
    .
    Microsoft Windows XP Professional
    Boot Device: \Device\HarddiskVolume1
    Install Date: 29/11/2005 17:14:04
    System Uptime: 15/05/2011 16:07:19 (0 hours ago)
    .
    Motherboard: | | MS-7030
    Processor: AMD Sempron(tm) Processor 2500+ | Socket 940 | 1406/200mhz
    .
    ==== Disk Partitions =========================
    .
    A: is Removable
    C: is FIXED (NTFS) - 6 GiB total, 2.189 GiB free.
    D: is CDROM ()
    E: is FIXED (NTFS) - 20 GiB total, 0.964 GiB free.
    F: is FIXED (NTFS) - 20 GiB total, 10.521 GiB free.
    G: is FIXED (NTFS) - 20 GiB total, 2.594 GiB free.
    H: is FIXED (NTFS) - 10 GiB total, 0.556 GiB free.
    K: is CDROM ()
    .
    ==== Disabled Device Manager Items =============
    .
    Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
    Description: 1394 Net Adapter
    Device ID: V1394\NIC1394\999A99110600
    Manufacturer: Microsoft
    Name: 1394 Net Adapter #2
    PNP Device ID: V1394\NIC1394\999A99110600
    Service: NIC1394
    .
    Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
    Description: Hamachi Network Interface
    Device ID: ROOT\NET\0000
    Manufacturer: LogMeIn, Inc.
    Name: Hamachi Network Interface
    PNP Device ID: ROOT\NET\0000
    Service: hamachi
    .
    Class GUID: {4D36E965-E325-11CE-BFC1-08002BE10318}
    Description: CD-ROM Drive
    Device ID: SCSI\CDROM&VEN_GENERIC&PROD_DVD-ROM&REV_1.0\2&12B1DE20&1&000
    Manufacturer: (Standard CD-ROM drives)
    Name: Generic DVD-ROM SCSI CdRom Device
    PNP Device ID: SCSI\CDROM&VEN_GENERIC&PROD_DVD-ROM&REV_1.0\2&12B1DE20&1&000
    Service: cdrom
    .
    ==== System Restore Points ===================
    .
    No restore point in system.
    .
    ==== Hosts File Hijack ======================
    .
    Hosts: 72.55.188.183 richarddawkins.net
    Hosts: 72.55.188.183 www.richarddawkins.net
    Hosts: 74.125.79.100 sites.google.com
    Hosts: 208.109.181.194 makat.org
    Hosts: 208.109.181.194 www.makat.org
    Hosts: 205.188.234.120 shoutcast.com
    Hosts: 205.188.234.120 www.shoutcast.com
    Hosts: 67.221.174.30 tagged.com
    Hosts: 67.221.174.30 www.tagged.com
    Hosts: 67.221.174.30 start.tagged.com
    Hosts: 67.221.174.30 video.tagged.com
    Hosts: 67.221.174.30 secure.tagged.com
    Hosts: 67.221.174.30 corp.tagged.com
    Hosts: 84.53.146.67 i5.tagstat.com
    Hosts: 84.53.146.69 i6.tagstat.com
    Hosts: 84.53.146.82 i7.tagstat.com
    Hosts: 84.53.146.69 i4.tagstat.com
    Hosts: 84.53.146.16 i3.tagstat.com
    Hosts: 84.53.146.67 i2.tagstat.com
    Hosts: 84.53.146.16 i1.tagstat.com
    Hosts: 84.53.146.16 y.tagstat.com
    Hosts: 87.248.217.254 yt.tagstat.com
    Hosts: 87.248.217.254 u0.tagstat.com
    Hosts: 87.248.217.253 u1.tagstat.com
    Hosts: 87.248.217.254 u2.tagstat.com
    Hosts: 87.248.217.253 u3.tagstat.com
    Hosts: 87.248.217.254 u4.tagstat.com
    Hosts: 87.248.217.254 u5.tagstat.com
    Hosts: 87.248.217.253 u6.tagstat.com
    Hosts: 87.248.217.254 u7.tagstat.com
    Hosts: 87.248.217.253 j0.tagstat.com
    Hosts: 87.248.217.254 j1.tagstat.com
    Hosts: 87.248.217.254 j2.tagstat.com
    Hosts: 87.248.217.253 j3.tagstat.com
    Hosts: 87.248.217.254 j4.tagstat.com
    Hosts: 87.248.217.253 j5.tagstat.com
    Hosts: 87.248.217.254 j6.tagstat.com
    Hosts: 87.248.217.253 j7.tagstat.com
    Hosts: 87.248.217.253 j8.tagstat.com
    Hosts: 77.247.179.157 imagefap.com
    Hosts: 77.247.179.157 www.imagefap.com
    Hosts: 77.247.179.131 upload.imagefap.com
    Hosts: 77.247.179.169 images.imagefap.com
    Hosts: 77.247.179.138 pic.moviefap.com
    Hosts: 77.247.179.169 cache.imagefap.com
    Hosts: 216.218.248.145 www.rotten.com
    Hosts: 216.218.248.145 rotten.com
    Hosts: 216.218.248.185 poetry.rotten.com
    Hosts: 69.5.88.227 www.megaupload.com
    Hosts: 69.5.88.227 megaupload.com
    Hosts: 69.5.88.240 wwwstatic.megaupload.com
    Hosts: 69.5.88.211 www1.megaupload.com
    Hosts: 69.5.88.211 www2.megaupload.com
    Hosts: 69.5.88.211 www3.megaupload.com
    Hosts: 69.5.88.211 www4.megaupload.com
    Hosts: 69.5.88.211 www5.megaupload.com
    Hosts: 69.5.88.211 www6.megaupload.com
    Hosts: 69.5.88.211 www7.megaupload.com
    Hosts: 69.5.88.211 www8.megaupload.com
    Hosts: 69.5.88.211 www9.megaupload.com
    Hosts: 174.140.128.14 www10.megaupload.com
    Hosts: 174.140.128.15 www11.megaupload.com
    Hosts: 174.140.128.16 www12.megaupload.com
    Hosts: 174.140.128.17 www13.megaupload.com
    Hosts: 174.140.128.18 www14.megaupload.com
    Hosts: 174.140.128.19 www15.megaupload.com
    Hosts: 174.140.128.20 www16.megaupload.com
    Hosts: 174.140.128.21 www17.megaupload.com
    Hosts: 174.140.128.22 www18.megaupload.com
    Hosts: 174.140.128.23 www19.megaupload.com
    Hosts: 174.140.128.24 www20.megaupload.com
    Hosts: 174.140.128.25 www21.megaupload.com
    Hosts: 174.140.128.26 www22.megaupload.com
    Hosts: 174.140.128.27 www23.megaupload.com
    Hosts: 174.140.128.28 www24.megaupload.com
    Hosts: 174.140.128.29 www25.megaupload.com
    Hosts: 174.140.128.30 www26.megaupload.com
    Hosts: 174.140.128.31 www27.megaupload.com
    Hosts: 174.140.128.32 www28.megaupload.com
    Hosts: 174.140.128.33 www29.megaupload.com
    Hosts: 174.140.128.34 www30.megaupload.com
    Hosts: 174.140.128.35 www31.megaupload.com
    Hosts: 174.140.128.36 www32.megaupload.com
    Hosts: 174.140.128.37 www33.megaupload.com
    Hosts: 174.140.128.38 www34.megaupload.com
    Hosts: 174.140.128.39 www35.megaupload.com
    Hosts: 174.140.128.40 www36.megaupload.com
    Hosts: 174.140.128.41 www37.megaupload.com
    Hosts: 174.140.128.42 www38.megaupload.com
    Hosts: 174.140.128.43 www39.megaupload.com
    Hosts: 174.140.128.44 www40.megaupload.com
    Hosts: 174.140.128.45 www41.megaupload.com
    Hosts: 174.140.128.46 www42.megaupload.com
    Hosts: 174.140.128.47 www43.megaupload.com
    Hosts: 69.5.88.211 www44.megaupload.com
    Hosts: 69.5.88.211 www45.megaupload.com
    Hosts: 69.5.88.211 www46.megaupload.com
    Hosts: 69.5.88.211 www47.megaupload.com
    Hosts: 69.5.88.211 www48.megaupload.com
    Hosts: 69.5.88.211 www49.megaupload.com
    Hosts: 87.255.33.129 www50.megaupload.com
    Hosts: 87.255.33.130 www51.megaupload.com
    Hosts: 87.255.33.131 www52.megaupload.com
    Hosts: 87.255.33.132 www53.megaupload.com
    Hosts: 87.255.33.133 www54.megaupload.com
    Hosts: 87.255.33.134 www55.megaupload.com
    Hosts: 87.255.33.135 www56.megaupload.com
    Hosts: 87.255.33.136 www57.megaupload.com
    Hosts: 87.255.33.137 www58.megaupload.com
    Hosts: 87.255.33.138 www59.megaupload.com
    Hosts: 95.211.94.6 www60.megaupload.com
    Hosts: 95.211.94.5 www61.megaupload.com
    Hosts: 95.211.94.8 www62.megaupload.com
    Hosts: 95.211.94.10 www63.megaupload.com
    Hosts: 95.211.94.9 www64.megaupload.com
    Hosts: 95.211.94.7 www65.megaupload.com
    Hosts: 95.211.94.1 www66.megaupload.com
    Hosts: 95.211.94.4 www67.megaupload.com
    Hosts: 95.211.94.3 www68.megaupload.com
    Hosts: 95.211.94.2 www69.megaupload.com
    Hosts: 87.255.33.140 www70.megaupload.com
    Hosts: 87.255.33.141 www71.megaupload.com
    Hosts: 87.255.33.142 www72.megaupload.com
    Hosts: 87.255.33.143 www73.megaupload.com
    Hosts: 87.255.33.144 www74.megaupload.com
    Hosts: 87.255.33.145 www75.megaupload.com
    Hosts: 87.255.33.146 www76.megaupload.com
    Hosts: 87.255.33.147 www77.megaupload.com
    Hosts: 87.255.33.148 www78.megaupload.com
    Hosts: 87.255.33.149 www79.megaupload.com
    Hosts: 85.17.190.1 www80.megaupload.com
    Hosts: 85.17.190.2 www81.megaupload.com
    Hosts: 85.17.190.3 www82.megaupload.com
    Hosts: 85.17.190.4 www83.megaupload.com
    Hosts: 85.17.190.5 www84.megaupload.com
    Hosts: 85.17.190.6 www85.megaupload.com
    Hosts: 85.17.190.7 www86.megaupload.com
    Hosts: 85.17.190.8 www87.megaupload.com
    Hosts: 85.17.190.9 www88.megaupload.com
    Hosts: 85.17.190.10 www89.megaupload.com
    Hosts: 95.211.94.18 www90.megaupload.com
    Hosts: 95.211.94.17 www91.megaupload.com
    Hosts: 95.211.94.22 www92.megaupload.com
    Hosts: 95.211.94.21 www93.megaupload.com
    Hosts: 95.211.94.19 www94.megaupload.com
    Hosts: 95.211.94.20 www95.megaupload.com
    Hosts: 95.211.94.26 www96.megaupload.com
    Hosts: 95.211.94.25 www97.megaupload.com
    Hosts: 95.211.94.24 www98.megaupload.com
    Hosts: 95.211.94.23 www99.megaupload.com
    Hosts: 95.211.94.33 www100.megaupload.com
    Hosts: 95.211.94.34 www101.megaupload.com
    Hosts: 95.211.94.35 www102.megaupload.com
    Hosts: 95.211.94.36 www103.megaupload.com
    Hosts: 95.211.94.37 www104.megaupload.com
    Hosts: 95.211.94.38 www105.megaupload.com
    Hosts: 95.211.94.39 www106.megaupload.com
    Hosts: 95.211.94.40 www107.megaupload.com
    Hosts: 95.211.94.41 www108.megaupload.com
    Hosts: 95.211.94.42 www109.megaupload.com
    Hosts: 95.211.94.49 www110.megaupload.com
    Hosts: 95.211.94.50 www111.megaupload.com
    Hosts: 95.211.94.51 www112.megaupload.com
    Hosts: 95.211.94.52 www113.megaupload.com
    Hosts: 95.211.94.242 www114.megaupload.com
    Hosts: 95.211.94.243 www115.megaupload.com
    Hosts: 95.211.94.244 www116.megaupload.com
    Hosts: 95.211.94.245 www117.megaupload.com
    Hosts: 95.211.94.241 www118.megaupload.com
    Hosts: 95.211.94.247 www119.megaupload.com
    Hosts: 95.211.95.65 www120.megaupload.com
    Hosts: 95.211.95.66 www121.megaupload.com
    Hosts: 95.211.95.67 www122.megaupload.com
    Hosts: 95.211.95.68 www123.megaupload.com
    Hosts: 95.211.95.69 www124.megaupload.com
    Hosts: 95.211.95.70 www125.megaupload.com
    Hosts: 95.211.95.71 www126.megaupload.com
    Hosts: 95.211.95.72 www127.megaupload.com
    Hosts: 95.211.95.73 www128.megaupload.com
    Hosts: 95.211.95.74 www129.megaupload.com
    Hosts: 95.211.94.53 www130.megaupload.com
    Hosts: 95.211.94.54 www131.megaupload.com
    Hosts: 95.211.94.55 www132.megaupload.com
    Hosts: 95.211.94.56 www133.megaupload.com
    Hosts: 95.211.94.57 www134.megaupload.com
    Hosts: 95.211.94.58 www135.megaupload.com
    Hosts: 95.211.94.65 www136.megaupload.com
    Hosts: 95.211.94.66 www137.megaupload.com
    Hosts: 95.211.94.67 www138.megaupload.com
    Hosts: 95.211.94.68 www139.megaupload.com
    Hosts: 95.211.94.69 www140.megaupload.com
    Hosts: 95.211.94.70 www141.megaupload.com
    Hosts: 95.211.94.71 www142.megaupload.com
    Hosts: 95.211.94.72 www143.megaupload.com
    Hosts: 95.211.94.73 www144.megaupload.com
    Hosts: 95.211.94.74 www145.megaupload.com
    Hosts: 69.5.88.211 www146.megaupload.com
    Hosts: 69.5.88.211 www147.megaupload.com
    Hosts: 69.5.88.211 www148.megaupload.com
    Hosts: 69.5.88.211 www149.megaupload.com
    Hosts: 69.5.88.211 www150.megaupload.com
    Hosts: 69.5.88.211 www151.megaupload.com
    Hosts: 69.5.88.211 www152.megaupload.com
    Hosts: 69.5.88.211 www153.megaupload.com
    Hosts: 69.5.88.211 www154.megaupload.com
    Hosts: 69.5.88.211 www155.megaupload.com
    Hosts: 69.5.88.211 www156.megaupload.com
    Hosts: 69.5.88.211 www157.megaupload.com
    Hosts: 69.5.88.211 www158.megaupload.com
    Hosts: 69.5.88.211 www159.megaupload.com
    Hosts: 69.5.88.211 www160.megaupload.com
    Hosts: 69.5.88.211 www161.megaupload.com
    Hosts: 69.5.88.211 www162.megaupload.com
    Hosts: 69.5.88.211 www163.megaupload.com
    Hosts: 69.5.88.211 www164.megaupload.com
    Hosts: 174.140.156.10 www165.megaupload.com
    Hosts: 174.140.156.11 www166.megaupload.com
    Hosts: 174.140.156.12 www167.megaupload.com
    Hosts: 174.140.156.13 www168.megaupload.com
    Hosts: 174.140.156.14 www169.megaupload.com
    Hosts: 174.140.156.15 www170.megaupload.com
    Hosts: 174.140.156.16 www171.megaupload.com
    Hosts: 174.140.156.17 www172.megaupload.com
    Hosts: 174.140.156.18 www173.megaupload.com
    Hosts: 174.140.156.19 www174.megaupload.com
    Hosts: 174.140.156.20 www175.megaupload.com
    Hosts: 174.140.156.21 www176.megaupload.com
    Hosts: 174.140.156.22 www177.megaupload.com
    Hosts: 174.140.156.23 www178.megaupload.com
    Hosts: 174.140.156.24 www179.megaupload.com
    Hosts: 174.140.156.25 www180.megaupload.com
    Hosts: 174.140.156.26 www181.megaupload.com
    Hosts: 174.140.156.27 www182.megaupload.com
    Hosts: 174.140.156.28 www183.megaupload.com
    Hosts: 174.140.156.29 www184.megaupload.com
    Hosts: 174.140.156.30 www185.megaupload.com
    Hosts: 174.140.156.31 www186.megaupload.com
    Hosts: 174.140.156.32 www187.megaupload.com
    Hosts: 174.140.156.33 www188.megaupload.com
    Hosts: 174.140.156.34 www189.megaupload.com
    Hosts: 174.140.156.35 www190.megaupload.com
    Hosts: 174.140.156.36 www191.megaupload.com
    Hosts: 174.140.156.37 www192.megaupload.com
    Hosts: 174.140.156.38 www193.megaupload.com
    Hosts: 174.140.156.39 www194.megaupload.com
    Hosts: 174.140.156.40 www195.megaupload.com
    Hosts: 174.140.156.41 www196.megaupload.com
    Hosts: 174.140.156.42 www197.megaupload.com
    Hosts: 174.140.156.43 www198.megaupload.com
    Hosts: 174.140.156.44 www199.megaupload.com
    Hosts: 174.140.156.45 www200.megaupload.com
    Hosts: 174.140.156.46 www201.megaupload.com
    Hosts: 174.140.156.47 www202.megaupload.com
    Hosts: 174.140.156.48 www203.megaupload.com
    Hosts: 174.140.156.49 www204.megaupload.com
    Hosts: 174.140.156.50 www205.megaupload.com
    Hosts: 174.140.156.51 www206.megaupload.com
    Hosts: 174.140.156.52 www207.megaupload.com
    Hosts: 174.140.156.53 www208.megaupload.com
    Hosts: 174.140.156.54 www209.megaupload.com
    Hosts: 174.140.156.55 www210.megaupload.com
    Hosts: 174.140.156.56 www211.megaupload.com
    Hosts: 174.140.156.57 www212.megaupload.com
    Hosts: 174.140.156.58 www213.megaupload.com
    Hosts: 174.140.156.59 www214.megaupload.com
    Hosts: 174.140.156.60 www215.megaupload.com
    Hosts: 174.140.156.61 www216.megaupload.com
    Hosts: 174.140.156.62 www217.megaupload.com
    Hosts: 174.140.156.63 www218.megaupload.com
    Hosts: 174.140.156.64 www219.megaupload.com
    Hosts: 174.140.156.65 www220.megaupload.com
    Hosts: 174.140.156.66 www221.megaupload.com
    Hosts: 174.140.156.67 www222.megaupload.com
    Hosts: 174.140.156.68 www223.megaupload.com
    Hosts: 174.140.156.69 www224.megaupload.com
    Hosts: 174.140.156.70 www225.megaupload.com
    Hosts: 174.140.156.71 www226.megaupload.com
    Hosts: 174.140.156.72 www227.megaupload.com
    Hosts: 174.140.157.10 www228.megaupload.com
    Hosts: 174.140.157.11 www229.megaupload.com
    Hosts: 174.140.157.12 www230.megaupload.com
    Hosts: 174.140.157.13 www231.megaupload.com
    Hosts: 174.140.157.14 www232.megaupload.com
    Hosts: 69.5.88.211 www900.megaupload.com
    Hosts: 69.5.88.211 wwwq.megaupload.com
    Hosts: 209.222.148.132 wwwq0.megaupload.com
    Hosts: 209.222.148.133 wwwq1.megaupload.com
    Hosts: 209.222.148.134 wwwq2.megaupload.com
    Hosts: 209.222.148.135 wwwq3.megaupload.com
    Hosts: 209.222.148.136 wwwq4.megaupload.com
    Hosts: 209.222.148.137 wwwq5.megaupload.com
    Hosts: 209.222.148.138 wwwq6.megaupload.com
    Hosts: 209.222.148.139 wwwq7.megaupload.com
    Hosts: 209.222.148.140 wwwq8.megaupload.com
    Hosts: 209.222.148.141 wwwq9.megaupload.com
    Hosts: 209.222.148.142 wwwq10.megaupload.com
    Hosts: 209.222.148.143 wwwq11.megaupload.com
    Hosts: 209.222.148.144 wwwq12.megaupload.com
    Hosts: 209.222.148.145 wwwq13.megaupload.com
    Hosts: 209.222.148.146 wwwq14.megaupload.com
    Hosts: 209.222.148.147 wwwq15.megaupload.com
    Hosts: 209.222.148.148 wwwq16.megaupload.com
    Hosts: 209.222.148.149 wwwq17.megaupload.com
    Hosts: 209.222.148.150 wwwq18.megaupload.com
    Hosts: 209.222.148.151 wwwq19.megaupload.com
    Hosts: 209.222.148.152 wwwq20.megaupload.com
    Hosts: 209.222.148.153 wwwq21.megaupload.com
    Hosts: 209.222.148.154 wwwq22.megaupload.com
    Hosts: 209.222.148.155 wwwq23.megaupload.com
    Hosts: 69.5.88.224 wwwq24.megaupload.com
    Hosts: 69.5.88.225 wwwq25.megaupload.com
    Hosts: 69.5.88.226 wwwq26.megaupload.com
    Hosts: 69.5.88.227 wwwq27.megaupload.com
    Hosts: 69.5.88.228 wwwq28.megaupload.com
    Hosts: 69.5.88.229 wwwq29.megaupload.com
    Hosts: 69.5.88.230 wwwq30.megaupload.com
    Hosts: 69.5.88.231 wwwq31.megaupload.com
    Hosts: 69.5.88.211 wwwq32.megaupload.com
    Hosts: 69.5.88.211 wwwq33.megaupload.com
    Hosts: 69.5.88.211 wwwq34.megaupload.com
    Hosts: 69.5.88.211 wwwq35.megaupload.com
    Hosts: 69.5.88.211 wwwq36.megaupload.com
    Hosts: 69.5.88.211 wwwq37.megaupload.com
    Hosts: 69.5.88.211 wwwq38.megaupload.com
    Hosts: 69.5.88.211 wwwq39.megaupload.com
    Hosts: 69.5.88.211 wwwq40.megaupload.com
    Hosts: 209.85.229.99 www.youtube.com
    Hosts: 209.85.229.99 youtube.com
    ==== Installed Programs ======================
    .
    AC3Filter (remove only)
    Adobe Bridge 1.0
    Adobe Common File Installer
    Adobe Flash Player 10 ActiveX
    Adobe Flash Player 10 Plugin
    Adobe Help Center 1.0
    Adobe Photoshop CS2
    Adobe Premiere Pro
    Adobe Reader 8.1.0
    Adobe Shockwave Player
    Adobe Stock Photos 1.0
    Adobe® Photoshop® Album Starter Edition 3.0
    ADSL Modem Driver Suite Product
    Age Of Empires 2 & The Conquerors Expansion - Full Game
    Age of Empires II - The Conquerors - 1.0e Patch
    Age of Empires II - The Conquerors - 1.0e Patch FINAL
    Ares 2.1.1
    ASUS ATI Driver
    ASUS Enhanced Display Driver
    ASUS GameFace Live
    ASUS GameLiveShow
    ASUS SmartDoctor
    ASUS Utilities
    ASUS VideoSecurity Online
    ATI - Software Uninstall Utility
    ATI Control Panel
    ATI Display Driver
    µTorrent
    Audacity 1.2.6
    Ava Find
    avast! Free Antivirus
    Baldur's Gate
    CCleaner (remove only)
    CDisplay 1.8
    CDRWIN 6.1
    Collab
    CompuApps SwissKnife V3
    Core Center
    CyberCam
    Direct Show Ogg Vorbis Filter (remove only)
    DivX Codec 3.1alpha release
    DivX Web Player
    DiVXPlanet
    Dramatica Pro 4.0 Demo
    Fallout2
    File Splitter and Joiner (FFSJ v3.2)
    Final Draft 7
    FLV Player 1.3.3
    FLV SPLITTER
    Football Manager 2009
    Football Manager 2010
    Free Download Manager 2.1
    Free PDF to Word Doc Converter v1.1
    Full Tilt Poker
    Game Vindicator
    GOM Player
    Google Toolbar for Internet Explorer
    GSpot Codec Information Appliance
    GTK+ 2.6.9 runtime environment
    Hamachi 1.0.2.0
    IGZ Lobby System
    IL Download Manager
    iTunes
    Java Auto Updater
    Java(TM) 6 Update 24
    Java(TM) SE Runtime Environment 6 Update 1
    LADSPA_plugins-win-0.4.15
    LAME v3.98.2 for Audacity
    LockBox
    Longman Student 3.0
    Madden NFL 06
    Magic ISO Maker v5.5 (build 0273)
    Magic Workstation 0.94f
    makat v5
    Malwarebytes' Anti-Malware
    MatrixEngine
    Matroska Pack - Lazy Man's MKV 0.9.2
    Microsoft .NET Framework 1.1
    Microsoft .NET Framework 2.0
    Microsoft Age of Empires II
    Microsoft Age of Empires II: The Conquerors Expansion
    Microsoft Office Professional Edition 2003
    Microsoft PowerPoint Viewer 97
    Microsoft Silverlight
    Microsoft SQL Server Desktop Engine (SONY_MEDIAMGR)
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
    mIRC
    Move Media Player
    Mozilla Firefox 4.0.1 (x86 en-US)
    mpg123 and MAD DirectShow Filter (remove only)
    MSI DigiCell
    MSN Gaming Zone
    MSN Winks
    MTG GamePack for Magic Workstation
    Myth II
    NVIDIA Drivers
    PDFCreator
    PENTAX Digital Camera Utility
    Picasa 3
    Planescape - Torment
    Playchess
    PokerSAX 1.5
    PokerStars
    Populous: The Beginning
    Programmers Notepad 2
    ProtectDisc Helper Driver 10
    QuickTime
    ratDVD 0.78.1444
    Real Alternative 1.8.2 Lite
    Realtek AC'97 Audio
    Registry Mechanic 5.1
    ScummVM 0.7.1
    SecureDoc
    Security Update for Windows XP (KB899588)
    Sony ACID Pro 6.0
    Sony Media Manager 2.2
    SopCast 1.1.2
    Spectromancer
    Star Wars®: Knights of the Old Republic (TM)
    StarForge
    StreamDown Version 5.9
    StumbleUpon Toolbar for IE
    Subtitle Workshop 2.51
    Sygate Personal Firewall
    The GIMP 2.2.9
    The KMPlayer (remove only)
    TMPGEnc DVD Author 1.6
    Tor 0.2.1.26
    —z?Ë‚µ‚Ì’†‚̃ŠƒAƒ‹
    Vidalia 0.2.9
    VideoLAN VLC media player 0.8.6
    VobSub v2.23 (Remove Only)
    WD FAT32 Formatter
    WebFldrs XP
    Winamp (remove only)
    WinDjView 1.0.3
    Windows Installer 3.1 (KB893803)
    Windows Live Messenger
    Windows XP Service Pack 2
    WinRAR archiver
    WriteItNow3
    XviD MPEG-4 Video Codec
    Youtube Jacker
    ZSMC USB PC Camera (ZS211)
    .
    ==== Event Viewer Messages From Past Week ========
    .
    15/05/2011 16:08:29, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: xmasscsi
    09/05/2011 08:56:36, error: Service Control Manager [7000] - The OMSCAN service failed to start due to the following error: The system cannot find the file specified.
    09/05/2011 08:56:36, error: Service Control Manager [7000] - The CxXBar, WDM Crossbar service failed to start due to the following error: The system cannot find the file specified.
    09/05/2011 08:56:36, error: Service Control Manager [7000] - The CxVCap, WDM Video Capture service failed to start due to the following error: The system cannot find the file specified.
    09/05/2011 08:56:36, error: Service Control Manager [7000] - The CxTuner, WDM TvTuner service failed to start due to the following error: The system cannot find the file specified.
    09/05/2011 08:56:36, error: Service Control Manager [7000] - The ATK Keyboard Service service failed to start due to the following error: The system cannot find the file specified.
    09/05/2011 08:56:36, error: Service Control Manager [7000] - The ASUS Virtual Video Capture Device Driver service failed to start due to the following error: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.
    .
    ==== End Of File ===========================
     
  5. Bobbye

    Bobbye Helper on the Fringe Posts: 16,335   +36

    Please review the Host Files in the Attach.txt log. Are these the ones you set up?
    Hosts: 72.55.188.183 richarddawkins.net
    Hosts: 72.55.188.183 www.richarddawkins.net

    What about the 100 or more others?

    There appears to be some problem which may be due to the other language on the system:
    IE: &Google Search
    IE: &Translate English Word
    IE: Backward Links
    IE: Cached Snapshot of Page
    IE: Download all by Free Download Manager
    IE: Download by Free Download Manager
    IE: Download selected by Free Download Manager
    IE: Download web site by Free Download Manager
    IE: Similar Pages
    IE: Translate Page into English

    The above doesn't give me any information for identification. Multiple processes are set to be downloaded by the 'Free Download Manager.' I don't know what that is or whether you have IE doing downloads.
    ==============================================
    As far as I can determine by your description, the only problem you are experiencing is seeing iexplore.exe in the Task Manager. IEv8 can show multiple iexplore.exe, but you logs indicate you have IE6- is this correct?

    What happens if you do this:
    Set Firefox up as the default browser: Open FF> Tools> Options> Advanced> System Defaults> Check 'always check to see if FF is the default browser'> Click on Check now> If it is not set as the default, check to set it.

    Then open the Control Panel> Internet Options> Programs tab> Default browser section> Uncheck 'make Internet Explorer the default browser'> if you are told that it is not the default, would you like it to be', answer No> Apply> OK.

    Reboot the computer.

    Does this make any difference in the iexplore.exe processes showing in the Task Manager?
    ==========================-=================
    Seeing a list of hijacked host files like this would normally cause me to do the following:
    You will need to do a DNS Flush, then reset your router.
    Start> Run> type cmd> enter> at the C prompt type ipconfig /flushdns (note space before the /)

    Exit the Command prompt when finished and shut the system down.-

    • [1]. Shut down your computer, and any other computer connected to your router.
      [2]. On the back of the router, there should be a small hole or button labelled RESET. Using a bent paper clip or similar item, hold that in continuously for twenty seconds.
      [3]. Unplug the router. Wait sixty seconds.
      [4].Now holding again the reset button, plug it back in. Continue holding the reset button for twenty seconds. Unplug the router again.
      [5].With the router unplugged, start your computer. Run MBAM again.
      [6].Connect to the router again. The turn the router back on.
      [7].When it stabilizes, reboot your workstation and try to access the internet. If you have any issues, access the Router configuration page and re-enter your authentication information.
      [8]. Reboot the system and test the internet. You may have to reconfigure the router settings based on your setup.
     
Topic Status:
Not open for further replies.

Similar Topics

Add New Comment

You need to be a member to leave a comment. Join thousands of tech enthusiasts and participate.
TechSpot Account You may also...