Bobbye -
Leave this reference for me of this:
https://www.techspot.com/vb/newintopic172242.html
-----------------------------------------------------------------------------------------------------------------------------
Malwarebytes' Anti-Malware 1.51.2.1300
www.malwarebytes.org
Database version: 7974
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
10/19/2011 8:54:31 PM
mbam-log-2011-10-19 (20-54-31).txt
Scan type: Quick scan
Objects scanned: 210554
Time elapsed: 6 minute(s), 9 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
----------------------------------------------------------------------------------------------------------------------------
GMER 1.0.15.15641 - http://www.gmer.net
Rootkit quick scan 2011-10-19 20:59:58
Windows 5.1.2600 Service Pack 3 Harddisk0\DR0 -> \Device\00000078 WDC_WD3200AAJS-00RYA0 rev.12.01B01
Running: wq522u19.exe; Driver: C:\DOCUME~1\Vanja\LOCALS~1\Temp\uxtdypow.sys
---- Devices - GMER 1.0.15 ----
Device \Driver\sojuscsi \Device\Scsi\sojuscsi1Port3Path0Target0Lun0 8ABE2670
Device \Driver\sojuscsi \Device\Scsi\sojuscsi1 8ABE2670
AttachedDevice \FileSystem\Ntfs \Ntfs aswMon2.SYS (avast! File System Filter Driver for Windows XP/AVAST Software)
Device \Driver\Tcpip \Device\Ip vsdatant.sys (TrueVector Device Driver/Check Point Software Technologies LTD)
AttachedDevice \Driver\Tcpip \Device\Ip WRkrn.sys
AttachedDevice \Driver\Tcpip \Device\Ip aswTdi.SYS (avast! TDI Filter Driver/AVAST Software)
Device \Driver\Tcpip \Device\Tcp vsdatant.sys (TrueVector Device Driver/Check Point Software Technologies LTD)
AttachedDevice \Driver\Tcpip \Device\Tcp aswTdi.SYS (avast! TDI Filter Driver/AVAST Software)
AttachedDevice \Driver\Tcpip \Device\Tcp WRkrn.sys
Device \Driver\Tcpip \Device\Udp vsdatant.sys (TrueVector Device Driver/Check Point Software Technologies LTD)
AttachedDevice \Driver\Tcpip \Device\Udp aswTdi.SYS (avast! TDI Filter Driver/AVAST Software)
AttachedDevice \Driver\Tcpip \Device\Udp WRkrn.sys
Device \Driver\Tcpip \Device\RawIp vsdatant.sys (TrueVector Device Driver/Check Point Software Technologies LTD)
AttachedDevice \Driver\Tcpip \Device\RawIp WRkrn.sys
AttachedDevice \Driver\Tcpip \Device\RawIp aswTdi.SYS (avast! TDI Filter Driver/AVAST Software)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 WRkrn.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 WRkrn.sys
---- Services - GMER 1.0.15 ----
Service C:\WINDOWS\system32\svchost.exe (*** hidden *** ) [AUTO] nudypgcm <-- ROOTKIT !!!
---- EOF - GMER 1.0.15 ----
----------------------------------------------------------------------------------------------------------------------------
.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.5.0_12
Run by Vanja at 21:02:40 on 2011-10-19
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.3007.2145 [GMT 2:00]
.
FW: ZoneAlarm Pro Firewall *Disabled*
.
============== Running Processes ===============
.
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
svchost.exe
C:\Program Files\Trusteer\Rapport\bin\RapportService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe
C:\Program Files\Common Files\Logishrd\LVMVFM\LVPrcSrv.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\WINDOWS\system32\nvsvc32.exe
c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\System32\StkASv2K.exe
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
C:\Program Files\Webroot\Washer\WasherSvc.exe
C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe
C:\WINDOWS\system32\MAFWTray.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Google\Google Talk\googletalk.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\system32\NOTEPAD.EXE
.
============== Pseudo HJT Report ===============
.
uStart Page = about:blank
uInternet Settings,ProxyOverride = localhost;127.0.0.1;<local>
uURLSearchHooks: uTorrentBar Toolbar: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - c:\program files\utorrentbar\prxtbuTo0.dll
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: ContributeBHO Class: {074c1dc5-9320-4a9a-947d-c042949c6216} - c:\program files\adobe\/Adobe Contribute CS3/contributeieplugin.dll
BHO: {75ED56AF-4DC9-4243-A30C-4EF4DD0CA28F} - No File
BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre1.5.0_12\bin\ssv.dll
BHO: Adobe PDF Conversion Toolbar Helper: {ae7cd045-e861-484f-8273-0445ee161910} - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll
BHO: Skype Browser Helper: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
BHO: uTorrentBar Toolbar: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - c:\program files\utorrentbar\prxtbuTo0.dll
BHO: GOM Player + Ask Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - c:\program files\ask.com\GenericAskToolbar.dll
BHO: {EBCDDA60-2A68-11D3-8A43-0060083CFB9C} - No File
TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll
TB: Contribute Toolbar: {517bdde4-e3a7-4570-b21e-2b52b6139fc7} - c:\program files\adobe\/Adobe Contribute CS3/contributeieplugin.dll
TB: GOM Player + Ask Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - c:\program files\ask.com\GenericAskToolbar.dll
TB: uTorrentBar Toolbar: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - c:\program files\utorrentbar\prxtbuTo0.dll
EB: Adobe PDF: {182ec0be-5110-49c8-a062-beb1d02a220b} - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [IMJPMIG8.1] "c:\windows\ime\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
mRun: [PHIME2002ASync] c:\windows\system32\ime\tintlgnt\TINTSETP.EXE /SYNC
mRun: [PHIME2002A] c:\windows\system32\ime\tintlgnt\TINTSETP.EXE /IMEName
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [H2O] c:\program files\syncrosoft\pos\h2o\cledx.exe
mRun: [MAFWTaskbarApp] c:\windows\system32\MAFWTray.exe
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
mRun: [googletalk] c:\program files\google\google talk\googletalk.exe /autostart
mRun: [Malwarebytes' Anti-Malware] "c:\program files\malwarebytes' anti-malware\mbamgui.exe" /starttray
uPolicies-explorer: NoViewOnDrive = 0 (0x0)
uPolicies-explorer: NoDevMgrUpdate = 0 (0x0)
uPolicies-explorer: NoWindowsUpdate = 0 (0x0)
uPolicies-system: NoDispAppearancePage = 0 (0x0)
uPolicies-system: NoDispSettingsPage = 0 (0x0)
mPolicies-explorer: NoViewOnDrive = 0 (0x0)
mPolicies-explorer: NoDevMgrUpdate = 0 (0x0)
mPolicies-explorer: NoWindowsUpdate = 0 (0x0)
mPolicies-system: NoDispAppearancePage = 0 (0x0)
mPolicies-system: NoDispSettingsPage = 0 (0x0)
dPolicies-explorer: NoViewOnDrive = 0 (0x0)
dPolicies-explorer: NoDevMgrUpdate = 0 (0x0)
dPolicies-explorer: NoWindowsUpdate = 0 (0x0)
dPolicies-system: NoDispAppearancePage = 0 (0x0)
dPolicies-system: NoDispSettingsPage = 0 (0x0)
IE: Append to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert link target to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Convert link target to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert selected links to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Convert selected links to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Convert selection to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Convert selection to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
IE: Sothink SWF Catcher - c:\program files\common files\sourcetec\swf catcher\InternetExplorer.htm
IE: {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - c:\program files\common files\sourcetec\swf catcher\InternetExplorer.htm
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0015-0000-0012-ABCDEFFEDCBC} - c:\program files\java\jre1.5.0_12\bin\ssv.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office11\REFIEBAR.DLL
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1318581580750
DPF: {CAFEEFAC-0014-0001-0001-ABCDEFFEDCBA} - hxxp://java.sun.com/products/plugin/1.4/jinstall-14_01-windows-i586.cab
DPF: {CAFEEFAC-0015-0000-0012-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_12-windows-i586.cab
TCP: Interfaces\{221F67E8-D243-4C24-8FBE-A6EF774282A0} : NameServer = 196.41.124.10,196.41.124.11
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\vanja\application data\mozilla\firefox\profiles\58av3o94.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.co.za/
FF - prefs.js: network.proxy.type - 1
FF - component: c:\program files\mozilla firefox\extensions\{82af8dca-6de9-405d-bd5e-43525bdad38a}\components\SkypeFfComponent.dll
FF - plugin: c:\documents and settings\vanja\application data\facebook\npfbplugin_1_0_1.dll
FF - plugin: c:\documents and settings\vanja\application data\facebook\npfbplugin_1_0_3.dll
FF - plugin: c:\documents and settings\vanja\local settings\application data\google\update\1.2.183.29\npGoogleOneClick8.dll
FF - plugin: c:\program files\java\j2re1.4.1_01\bin\NPJava11.dll
FF - plugin: c:\program files\java\j2re1.4.1_01\bin\NPJava12.dll
FF - plugin: c:\program files\java\j2re1.4.1_01\bin\NPJava13.dll
FF - plugin: c:\program files\java\j2re1.4.1_01\bin\NPJava32.dll
FF - plugin: c:\program files\java\j2re1.4.1_01\bin\NPOJI610.dll
FF - plugin: c:\program files\java\jre1.5.0_12\bin\NPJPI150_12.dll
FF - plugin: c:\program files\mozilla firefox\plugins\NPJPI141_01.dll
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Skype Click to Call: {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} - c:\program files\mozilla firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF - Ext: Web Developer: {c45c406e-ab73-11d8-be73-000a95be3b12} - %profile%\extensions\{c45c406e-ab73-11d8-be73-000a95be3b12}
FF - Ext: MeasureIt: {75CEEE46-9B64-46f8-94BF-54012DE155F0} - %profile%\extensions\{75CEEE46-9B64-46f8-94BF-54012DE155F0}
FF - Ext: Screengrab: {02450954-cdd9-410f-b1da-db804e18c671} - %profile%\extensions\{02450954-cdd9-410f-b1da-db804e18c671}
FF - Ext: Firebug: firebug@software.joehewitt.com - %profile%\extensions\firebug@software.joehewitt.com
FF - Ext: NoDoFollow: {c2b1f3ae-5cd5-49b7-8a0c-2c3bcbbbb294} - %profile%\extensions\{c2b1f3ae-5cd5-49b7-8a0c-2c3bcbbbb294}
FF - Ext: SearchStatus: {d57c9ff1-6389-48fc-b770-f78bd89b6e8a} - %profile%\extensions\{d57c9ff1-6389-48fc-b770-f78bd89b6e8a}
FF - Ext: Flash Video Downloader Youtube Downloader Facebook: artur.dubovoy@gmail.com - %profile%\extensions\artur.dubovoy@gmail.com
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\DotNetAssistantExtension
.
---- FIREFOX POLICIES ----
FF - user.js: google.toolbar.linkdoctor.enabled - false
.
============= SERVICES / DRIVERS ===============
.
R0 sojubus;sojubus;c:\windows\system32\drivers\sojubus.sys [2003-10-5 123520]
R0 sojuscsi;sojuscsi;c:\windows\system32\drivers\sojuscsi.sys [2003-9-28 5504]
R0 WRkrn;WRkrn;c:\windows\system32\drivers\wrkrn.sys --> c:\windows\system32\drivers\WRkrn.sys [?]
R1 Asapi;Asapi;c:\windows\system32\drivers\asapi.sys [2008-11-4 11264]
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2009-12-14 320856]
R1 RapportCerberus_32029;RapportCerberus_32029;c:\documents and settings\all users\application data\trusteer\rapport\store\exts\rapportcerberus\32029\RapportCerberus32_32029.sys [2011-10-18 227312]
R1 RapportEI;RapportEI;c:\program files\trusteer\rapport\bin\RapportEI.sys [2011-9-25 70416]
R1 RapportPG;RapportPG;c:\program files\trusteer\rapport\bin\RapportPG.sys [2011-9-25 161936]
R1 vsdatant;vsdatant;c:\windows\system32\vsdatant.sys [2008-11-4 353672]
R2 ALIEHCD;ALi PCI to USB Enhanced Host Controller;c:\windows\system32\drivers\AliEhci.sys [2008-11-4 111768]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2009-12-14 20568]
R2 Fabs;FABS - Helping agent for MAGIX media database;c:\program files\common files\magix services\database\bin\FABS.exe [2009-8-27 1253376]
R2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2011-10-18 366152]
R2 port_nt;port_nt;c:\windows\system32\drivers\port_nt.sys [2011-1-17 3608]
R2 RapportMgmtService;Rapport Management Service;c:\program files\trusteer\rapport\bin\RapportMgmtService.exe [2011-9-25 919352]
R2 Vcs;Vcs support;c:\windows\system32\drivers\Vcs.sys [2009-6-2 6852]
R2 wwEngineSvc;Window Washer Engine;c:\program files\webroot\washer\WasherSvc.exe [2011-10-8 598856]
R3 aliroothub;USB 2.0 Root Hub;c:\windows\system32\drivers\AliRtHub.sys [2008-11-4 5337]
R3 CLEDX;Team H2O CLEDX service;c:\windows\system32\drivers\cledx.sys [2008-11-4 33792]
R3 huawei_enumerator;huawei_enumerator;c:\windows\system32\drivers\ew_jubusenum.sys [2011-10-7 73344]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2011-10-18 22216]
S2 avast! Antivirus;avast! Antivirus;"c:\program files\alwil software\avast4\ashserv.exe" --> c:\program files\alwil software\avast4\ashServ.exe [?]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 nudypgcm;Boot Update;c:\windows\system32\svchost.exe -k netsvcs [2004-8-4 14336]
S2 VmbService;Vodafone Mobile Broadband Service;c:\program files\vodafone\vodafone mobile broadband\bin\VmbService.exe [2010-9-8 8704]
S2 vsmon;TrueVector Internet Monitor;c:\windows\system32\zonelabs\vsmon.exe -service --> c:\windows\system32\zonelabs\vsmon.exe -service [?]
S2 WRSVC;WRSVC;"c:\program files\webroot\wrsa.exe" -service --> c:\program files\webroot\WRSA.exe [?]
S3 alihub;Generic Hub on USB 2.0 Bus;c:\windows\system32\drivers\AliHub.sys [2008-11-4 17835]
S3 avast! Mail Scanner;avast! Mail Scanner;"c:\program files\alwil software\avast4\ashmaisv.exe" /service --> c:\program files\alwil software\avast4\ashMaiSv.exe [?]
S3 avast! Web Scanner;avast! Web Scanner;"c:\program files\alwil software\avast4\ashwebsv.exe" /service --> c:\program files\alwil software\avast4\ashWebSv.exe [?]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\drivers\ew_hwusbdev.sys [2011-10-7 102784]
S3 ewusbnet;HUAWEI USB-NDIS miniport;c:\windows\system32\drivers\ewusbnet.sys [2011-10-7 237440]
S3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;c:\program files\common files\magix services\database\bin\fbserver.exe [2008-8-7 3276800]
S3 Tomcat6;Apache Tomcat;c:\program files\apache software foundation\tomcat 6.0\bin\tomcat6.exe [2008-7-22 57344]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
.
=============== File Associations ===============
.
JSEFile="%SystemRoot%\System32\WScript.exe" "%1" %*
.
=============== Created Last 30 ================
.
2011-10-19 17:40:41 99840 ----a-r- c:\windows\system32\drivers\NimNgDyH.sys
2011-10-19 02:37:57 99840 ----a-r- c:\windows\system32\drivers\hWFQUZld.sys
2011-10-18 23:12:06 79872 -c----w- c:\windows\system32\dllcache\msxml6r.dll
2011-10-18 23:12:06 79872 ------w- c:\windows\system32\msxml6r.dll
2011-10-18 23:12:06 1372672 -c----w- c:\windows\system32\dllcache\msxml6.dll
2011-10-18 23:12:06 1372672 ------w- c:\windows\system32\msxml6.dll
2011-10-18 23:10:00 294912 ------w- c:\program files\windows media player\dlimport.exe
2011-10-18 23:08:09 19569 ----a-w- c:\windows\003114_.tmp
2011-10-18 21:18:35 99840 ----a-r- c:\windows\system32\drivers\QjflunoG.sys
2011-10-18 20:25:57 79232 ----a-w- c:\windows\system32\drivers\sdbus.sys
2011-10-18 20:25:57 37760 ----a-w- c:\windows\system32\drivers\amdk7.sys
2011-10-18 20:25:57 36352 ----a-w- c:\windows\system32\drivers\intelppm.sys
2011-10-18 20:25:57 30208 ----a-w- c:\windows\system32\drivers\usbehci.sys
2011-10-18 20:25:57 15488 ----a-w- c:\windows\system32\drivers\mssmbios.sys
2011-10-18 20:25:57 12288 ----a-w- c:\windows\system32\drivers\tunmp.sys
2011-10-18 20:25:57 11904 ----a-w- c:\windows\system32\drivers\sffdisk.sys
2011-10-18 20:25:57 11008 ----a-w- c:\windows\system32\drivers\sffp_sd.sys
2011-10-18 20:24:50 2897920 ----a-w- c:\windows\system32\xpsp2res.dll
2011-10-18 20:24:46 36608 ----a-w- c:\windows\system32\drivers\ip6fw.sys
2011-10-18 20:24:45 121984 ----a-w- c:\windows\system32\drivers\usbvideo.sys
2011-10-18 20:24:42 265728 ----a-w- c:\windows\system32\drivers\http.sys
2011-10-18 20:24:40 409088 ----a-w- c:\windows\system32\qmgr.dll
2011-10-18 20:24:40 129792 ----a-w- c:\windows\system32\drivers\fltmgr.sys
2011-10-18 20:24:37 272128 ------w- c:\windows\system32\drivers\bthport.sys
2011-10-18 20:22:59 83072 ----a-w- c:\windows\system32\drivers\wdmaud.sys
2011-10-18 17:19:22 22216 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-10-18 17:19:21 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-10-17 22:50:16 99840 ----a-r- c:\windows\system32\drivers\sLJlbcjN.sys
2011-10-17 21:44:19 -------- d-----w- C:\_OTM
2011-10-17 08:24:03 1409 ----a-w- c:\windows\QTFont.for
2011-10-16 18:02:52 -------- d-----w- c:\documents and settings\all users\Keyword Elite 2.0
2011-10-16 18:01:00 -------- d-----w- c:\program files\Keyword Elite 2.0
2011-10-15 10:20:41 102400 ----a-w- c:\windows\system32\bclnap.dll
2011-10-15 10:20:40 3080192 ----a-w- c:\windows\system32\beconvlib.dll
2011-10-15 10:20:40 282624 ----a-w- c:\windows\system32\bprgcomm.dll
2011-10-15 10:20:40 208896 ----a-w- c:\windows\system32\beconv.dll
2011-10-15 00:06:09 -------- d-sh--w- c:\documents and settings\vanja\PrivacIE
2011-10-15 00:06:04 -------- d-sh--w- c:\documents and settings\vanja\IECompatCache
2011-10-14 23:30:30 274288 ----a-w- c:\windows\system32\mucltui.dll
2011-10-14 23:30:30 16736 ----a-w- c:\windows\system32\mucltui.dll.mui
2011-10-14 23:03:42 99840 ----a-r- c:\windows\system32\drivers\yxpXVpYF.sys
2011-10-14 22:32:09 99840 ----a-r- c:\windows\system32\drivers\AdeMghWD.sys
2011-10-14 21:25:00 99840 ----a-r- c:\windows\system32\drivers\PoXhhExr.sys
2011-10-14 20:57:51 -------- d-----w- c:\program files\AVAST Software
2011-10-14 20:57:29 -------- d-----w- c:\documents and settings\all users\application data\AVAST Software
2011-10-14 20:44:44 -------- d-----w- c:\program files\Microsoft CAPICOM 2.1.0.2
2011-10-14 20:11:37 -------- d-sh--w- c:\documents and settings\vanja\IETldCache
2011-10-14 20:09:04 -------- d-----w- c:\windows\ie8updates
2011-10-14 20:08:54 599040 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2011-10-14 20:08:54 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2011-10-14 20:08:54 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2011-10-14 20:08:53 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2011-10-14 20:08:53 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2011-10-14 20:08:53 1985536 -c----w- c:\windows\system32\dllcache\iertutil.dll
2011-10-14 20:08:53 11076096 -c----w- c:\windows\system32\dllcache\ieframe.dll
2011-10-14 20:08:09 -------- dc-h--w- c:\windows\ie8
2011-10-14 02:09:13 -------- d-----w- c:\program files\MSXML 4.0
2011-10-14 01:48:09 -------- d-----w- c:\windows\ServicePackFiles
2011-10-14 01:41:41 744448 -c----w- c:\windows\system32\dllcache\helpsvc.exe
2011-10-14 01:38:12 455680 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2011-10-14 01:37:42 353792 -c----w- c:\windows\system32\dllcache\srv.sys
2011-10-14 01:36:23 81920 -c----w- c:\windows\system32\dllcache\fontsub.dll
2011-10-14 01:36:23 119808 -c----w- c:\windows\system32\dllcache\t2embed.dll
2011-10-14 01:36:08 471552 -c----w- c:\windows\system32\dllcache\aclayers.dll
2011-10-14 01:28:52 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll
2011-10-14 01:27:29 272128 -c----w- c:\windows\system32\dllcache\bthport.sys
2011-10-14 01:27:22 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys
2011-10-14 01:24:46 -------- d-----w- c:\windows\system32\PreInstall
2011-10-14 01:24:44 -------- d--h--w- c:\windows\$hf_mig$
2011-10-14 01:19:37 -------- d-----w- c:\windows\system32\SoftwareDistribution
2011-10-13 21:09:12 -------- d-----w- c:\program files\common files\Wise Installation Wizard
2011-10-08 21:17:17 -------- d-----w- c:\documents and settings\all users\application data\SecTaskMan
2011-10-08 21:17:12 -------- d-----w- c:\program files\Security Task Manager
2011-10-08 21:14:01 -------- d-----w- c:\documents and settings\vanja\application data\Webroot
2011-10-08 21:14:00 -------- d-----w- c:\program files\Webroot
2011-10-08 21:14:00 -------- d-----w- c:\program files\common files\Webroot Shared
2011-10-08 21:14:00 -------- d-----w- c:\documents and settings\all users\application data\Webroot
2011-10-08 21:13:53 194888 ----a-w- c:\windows\Unwash6.exe
2011-10-08 21:06:47 -------- d-----w- c:\program files\TweakNow WinSecret 2011
2011-10-08 21:06:47 -------- d-----w- c:\documents and settings\vanja\application data\TweakNow WinSecret 2011
2011-10-08 20:45:47 -------- d-----w- c:\program files\Registry Clean Expert
2011-10-08 11:26:55 -------- d-----w- c:\documents and settings\vanja\local settings\application data\conduitEngine
2011-10-07 17:43:49 102784 ----a-r- c:\windows\system32\drivers\ew_hwusbdev.sys
2011-10-07 17:20:20 73344 ----a-r- c:\windows\system32\drivers\ew_jubusenum.sys
2011-10-07 17:08:11 -------- d-----w- c:\documents and settings\vanja\local settings\application data\PCHealth
2011-10-07 17:03:32 237440 ----a-r- c:\windows\system32\drivers\ewusbnet.sys
2011-10-07 17:03:28 192768 ----a-r- c:\windows\system32\drivers\ewusbmdm.sys
2011-10-07 17:02:26 -------- d-----w- c:\documents and settings\all users\application data\Vodafone
2011-10-06 23:36:24 -------- d-----w- c:\program files\The Free Blog Commenter
2011-10-03 21:43:28 -------- d-----w- c:\program files\Webmaster Organizer
2011-10-03 21:42:01 -------- d-----w- c:\documents and settings\vanja\application data\SeoOganizer
2011-10-03 21:39:56 -------- d-----w- c:\documents and settings\vanja\application data\GetRightToGo
2011-10-03 20:17:52 -------- d-----w- c:\documents and settings\vanja\application data\Efficient Password Manager
2011-10-03 20:17:50 -------- d-----w- c:\program files\Efficient Password Manager
2011-09-25 17:00:08 56336 ----a-w- c:\windows\system32\drivers\RapportKELL.sys
2011-09-21 07:35:54 4566176 ----a-w- c:\program files\mozilla firefox\extensions\{82af8dca-6de9-405d-bd5e-43525bdad38a}\components\SkypeFfComponent.dll
2011-09-21 00:17:03 1112288 ----a-r- c:\windows\system32\wdfcoinstaller01007.dll
2011-09-21 00:14:45 -------- d-----w- c:\documents and settings\vanja\local settings\application data\{B689FAC8-84A4-4175-9624-A6C800238679}
.
==================== Find3M ====================
.
2011-10-15 10:24:09 51 ----a-w- c:\windows\SW_Win2141X16.DLL
2011-10-12 16:48:09 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-09-21 06:05:44 397312 ----a-w- c:\windows\system32\PPTConverter.ocx
2009-11-19 19:08:02 3749224 ----a-w- c:\program files\common files\adlmint_libFNP.dll
2009-11-19 19:08:02 2941288 ----a-w- c:\program files\common files\adlmint.dll
.
============= FINISH: 21:04:03.90 ===============
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-08-26.01)
.
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 11/4/2008 7:36:51 PM
System Uptime: 10/19/2011 7:50:33 PM (2 hours ago)
.
Motherboard: WinFast | | 6100M2MA
Processor: AMD Athlon(tm) 64 X2 Dual Core Processor 4200+ | Socket AM2 | 2210/201mhz
.
==== Disk Partitions =========================
.
A: is Removable
C: is FIXED (NTFS) - 298 GiB total, 89.161 GiB free.
D: is CDROM (CDFS)
E: is CDROM ()
H: is CDROM ()
.
==== Disabled Device Manager Items =============
.
Class GUID: {4D36E96C-E325-11CE-BFC1-08002BE10318}
Description: Realtek AC'97 Audio
Device ID: PCI\VEN_10DE&DEV_026B&SUBSYS_0D04105B&REV_A2\3&2411E6FE&0&82
Manufacturer: Realtek
Name: Realtek AC'97 Audio
PNP Device ID: PCI\VEN_10DE&DEV_026B&SUBSYS_0D04105B&REV_A2\3&2411E6FE&0&82
Service: ALCXWDM
.
Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
Description: NVIDIA nForce Networking Controller
Device ID: {1A3E09BE-1E45-494B-9174-D7385B45BBF5}\NVNET_DEV0269\4&8A1373E&0&01
Manufacturer: NVIDIA
Name: NVIDIA nForce Networking Controller
PNP Device ID: {1A3E09BE-1E45-494B-9174-D7385B45BBF5}\NVNET_DEV0269\4&8A1373E&0&01
Service: NVENETFD
.
==== System Restore Points ===================
.
RP1: 10/19/2011 7:59:08 PM - System Checkpoint
.
==== Installed Programs ======================
.
.
µTorrent
3herosoft DVD Ripper Platinum
4Front E-Piano Module 1.0 VSTi
4Front Piano Module 1.0 VSTi
4Front Rhode 1.0 VSTi
ABC Amber LIT Converter
Abrosoft FantaMorph 4.1
ACE Mega CoDecS Pack
Add or Remove Adobe Creative Suite 3 Master Collection
Adobe Acrobat 8 Professional
Adobe After Effects CS3
Adobe After Effects CS3 Presets
Adobe After Effects CS3 Third Party Content
Adobe AIR
Adobe Anchor Service CS3
Adobe Asset Services CS3
Adobe Bridge CS3
Adobe Bridge Start Meeting
Adobe BridgeTalk Plugin CS3
Adobe Camera Raw 4.0
Adobe CMaps
Adobe Color - Photoshop Specific
Adobe Color Common Settings
Adobe Color EU Extra Settings
Adobe Color JA Extra Settings
Adobe Color NA Recommended Settings
Adobe Contribute CS3
Adobe Creative Suite 3 Master Collection
Adobe Default Language CS3
Adobe Device Central CS3
Adobe Dreamweaver CS3
Adobe Encore CS3
Adobe Encore CS3 Codecs
Adobe ExtendScript Toolkit 2
Adobe Extension Manager CS3
Adobe Fireworks CS3
Adobe Flash CS3
Adobe Flash Player 10 ActiveX
Adobe Flash Player 11 Plugin
Adobe Flash Video Encoder
Adobe Flex Builder 3
Adobe Flex Builder 3 Plug-in
Adobe Fonts All
Adobe Help Viewer CS3
Adobe Illustrator CS3
Adobe InDesign CS3
Adobe InDesign CS3 Icon Handler
Adobe Linguistics CS3
Adobe MotionPicture Color Files
Adobe PDF Library Files
Adobe Photoshop CS3
Adobe Photoshop Lightroom 3.3
Adobe Premiere Pro CS3
Adobe Premiere Pro CS3 Functional Content
Adobe Premiere Pro CS3 Third Party Content
Adobe Setup
Adobe SING CS3
Adobe Soundbooth CS3
Adobe Soundbooth CS3 Codecs
Adobe Stock Photos CS3
Adobe Type Support
Adobe Update Manager CS3
Adobe Version Cue CS3 Client
Adobe Version Cue CS3 Server
Adobe Video Profiles
Adobe WAS CS3
Adobe WinSoft Linguistics Plugin
Adobe XMP DVA Panels CS3
Adobe XMP Panels CS3
Advanced Font Viewer 2.3
AHV content for Acrobat and Flash
AKAI professional DCVocoder 1.0
Alcohol 120%
ALi USB2.0 Driver
Alien Skin Eye Candy 5 Impact
Alien Skin Eye Candy 5 Nature
Alien Skin Eye Candy 5 Textures
Alien Skin Image Doctor 1.0
Alien Skin Xenofex 2.0
Antares Tube VST v1.02
Any DVD Cloner Platinum 1.0.5
Apache Tomcat 6.0 (remove only)
Apophysis 2.0
Artisteer 2
Arturia CS-80V v1.1
Arturia Modular System v1.0
ASAPI Update
Ask Toolbar
Astrobelt 1.0
Atmosphere
Autodesk Backburner 2011.0.0
Autodesk DirectConnect 2010 R1
Autodesk MatchMover 2011 32-bit
Autodesk Maya 2011 32-bit
Autodesk Maya 2011 English Documentation 32-bit
AV Voice Changer Software 3.0.89
AVS Update Manager 1.0
AVS Video Converter 6
AVS4YOU Software Navigator 1.3
Axialis IconWorkshop 6.50
Better File Rename 5.3.1
Beyond Compare Version 3.0.15
BitLord 1.1
BODYPAINT 3D
Brain Teasers
Cakewalk Pro Audio 9
calibre
CameraHelperMsi
Camtasia Studio 6
Canon CanoScan Toolbox 4.1
Chromatica
CleanUp!
Composite 2011
CONNECT Reader by Sony
Corel Graphics - Windows Shell Extension
CorelDRAW Graphics Suite X5
CorelDRAW Graphics Suite X5 - Capture
CorelDRAW Graphics Suite X5 - Common
CorelDRAW Graphics Suite X5 - Connect
CorelDRAW Graphics Suite X5 - Custom Data
CorelDRAW Graphics Suite X5 - Draw
CorelDRAW Graphics Suite X5 - EN
CorelDRAW Graphics Suite X5 - Filters
CorelDRAW Graphics Suite X5 - FontNav
CorelDRAW Graphics Suite X5 - IPM
CorelDRAW Graphics Suite X5 - PHOTO-PAINT
CorelDRAW Graphics Suite X5 - Photozoom Plugin
CorelDRAW Graphics Suite X5 - Redist
CorelDRAW Graphics Suite X5 - Setup Files
CorelDRAW Graphics Suite X5 - VBA
CorelDRAW Graphics Suite X5 - VideoBrowser
CorelDRAW Graphics Suite X5 - VSTA
CorelDRAW Graphics Suite X5 - WT
CorelDRAW(R) Graphics Suite X5
CronoX 3
CronoX 3 Bonus Presets
CS-80V
CuteFTP 8 Professional
Diff Doc
Dramatica Pro 4.0
Duplicate File Finder 1.1.0.0
DVD-CLONER V6.00 Build 975
DVD Shrink Pro
DVD Suite
EarMaster School 5
Edirol HQ Orchestral v1.01
Edirol Hyper Canvas VSTi v1.51
Efficient Password Manager 1.68
erLT
Eye Candy 4000
eyeQ
EZdrummer
EZXPercussion
Facebook Plug-In
Firebird SQL Server - MAGIX Edition
Firewire Family
FL Studio v7.0
FM Heaven VSTi v1.4
Free Picture Resize Starter 4.5
GOM Player
Google Chrome
Google Talk (remove only)
GSM 1.1.4.2
Guitar Chord Buster Pro 4.4.0
Guitar Studio
Hard Disk Scrubber v2.1
High-Logic FontCreator 6.0
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows XP (KB952287)
Hotfix for Windows XP (KB961118)
Hotfix for Windows XP (KB981793)
IBP 11.5
IK Multimedia Amplitube DX/VST/RTAS v2.0
IrfanView (remove only)
iZotope Trash
J2SE Development Kit 5.0 Update 12
J2SE Runtime Environment 5.0 Update 12
Java 2 Runtime Environment, SE v1.4.1_01
Java Web Start
LameACM
Logitech Vid HD
Logitech Webcam Software
Lounge Lizard 1.0
LRA Movie
LucisArt 3 ED/SE
LUXONIX Ravity(S) v1.4.1
LWS Facebook
LWS Gallery
LWS Help_main
LWS Launcher
LWS Motion Detection
LWS Pictures And Video
LWS Twitter
LWS Video Mask Maker
LWS VideoEffects
LWS Webcam Software
LWS WLM Plugin
LWS YouTube Plugin
Magic ISO Maker v5.4 (build 0239)
MAGIX 3D Maker (embeded)
MAGIX Movie Edit Pro 16 Plus Download Version 9.0.1.60 (UK)
MAGIX Screenshare
MAGIX Speed burnR
Malwarebytes' Anti-Malware version 1.51.2.1300
MasterWriter
MediaMonkey 2.5
Microsoft .NET Compact Framework 2.0 SP2
Microsoft .NET Compact Framework 3.5
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Extended
Microsoft Agent Character Editor
Microsoft Device Emulator version 3.0 - ENU
Microsoft Document Explorer 2008
Microsoft Kernel-Mode Driver Framework Feature Pack 1.9
Microsoft Office File Validation Add-In
Microsoft Office Professional Edition 2003
Microsoft Silverlight
Microsoft SQL Server Compact 3.5 Design Tools ENU
Microsoft SQL Server Compact 3.5 ENU
Microsoft SQL Server Compact 3.5 for Devices ENU
Microsoft SQL Server Database Publishing Wizard 1.2
Microsoft SQL Server Native Client
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual Studio 2005 Tools for Office Runtime
Microsoft Visual Studio Tools for Applications 2.0 Runtime
Morton Benson SerboCroatian-English Dictionary
Mozilla Firefox (3.6.13)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MyEclipse 7.0 Milestone-1
N.I. Guitar Rig v2.0.2
Native Instruments Absynth 4
Native Instruments FM8 v1.0.1.002 VSTi DXi RTAS
Native Instruments Massive v1.0.1.008 VSTi DXi RTAS
Native Instruments Metaphysical Function
Native Instruments Service Center
Nero 7 Essentials
NetBeans IDE 5.5.1
NetBeans IDE 6.1
Nomad Factory Blue Tubes Bundle VST v1.6
NVIDIA Drivers
Octopus
PDF Settings
Photo to Cartoon
PixPlant for Photoshop 2.0.43
Plagiarism Detector
Portrait Professional Studio 9.0
PowerDVD
PowerISO
PRO100 Jasno ver 4.16
QuickTime
Rapport
RealPlayer
Realtek AC'97 Audio
reFX Trasher 2 VST v1.1
Registry Clean Expert
Registry Cleaner 6.0.0.016
Registry Mechanic 6.0
Riva FLV Player
Security Update for CAPICOM (KB931906)
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Internet Explorer 8 (KB981332)
Security Update for Windows Internet Explorer 8 (KB982381)
Security Update for Windows Media Encoder (KB954156)
Security Update for Windows Media Encoder (KB979332)
Security Update for Windows Media Player (KB973540)
Security Update for Windows Media Player (KB979402)
Security Update for Windows XP (KB2229593)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956844)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958869)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB969059)
Security Update for Windows XP (KB970238)
Security Update for Windows XP (KB970430)
Security Update for Windows XP (KB971468)
Security Update for Windows XP (KB971657)
Security Update for Windows XP (KB972270)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973869)
Security Update for Windows XP (KB973904)
Security Update for Windows XP (KB974112)
Security Update for Windows XP (KB974318)
Security Update for Windows XP (KB974392)
Security Update for Windows XP (KB974571)
Security Update for Windows XP (KB975025)
Security Update for Windows XP (KB975467)
Security Update for Windows XP (KB975560)
Security Update for Windows XP (KB975561)
Security Update for Windows XP (KB975562)
Security Update for Windows XP (KB975713)
Security Update for Windows XP (KB977816)
Security Update for Windows XP (KB977914)
Security Update for Windows XP (KB978037)
Security Update for Windows XP (KB978338)
Security Update for Windows XP (KB978542)
Security Update for Windows XP (KB978601)
Security Update for Windows XP (KB978706)
Security Update for Windows XP (KB979309)
Security Update for Windows XP (KB979482)
Security Update for Windows XP (KB979559)
Security Update for Windows XP (KB979683)
Security Update for Windows XP (KB980195)
Security Update for Windows XP (KB980218)
Security Update for Windows XP (KB980232)
Security Update for Windows XP (KB982381)
Sencha Animator
Serato Scratch Studio Edition RTAS v1.0
Sibelius 6.2.0.88
Skype Click to Call
Skype™ 5.5
Sony DVD Architect Studio 4.5
Sony Noise Reduction Plug-In 2.0e
Sony Sound Forge 9.0
Sothink SWF Decompiler
SpinAudio 3DDelays 1.1
SpinAudio RoomVerb M1 1.1
SpinAudio RoomVerb M2 2.0
SpinAudio SpinDelay 2.0 Full
Splat! 1.0
Steinberg FreeFilter v1.1 - OxYGeN
Steinberg Groove Agent 2
Steinberg Voice Designer v1.03
Striata Reader
Style Master 4.6
Sun Download Manager 2.0 (web)
Sun Java System Application Server 9.1 Update 2
SwarShala v2.0 build 4
Syncrosoft's License Control
SyncroSoft Emu (Remove only)
Synonymizer 3.1.0
Terragen
The Free Blog Commenter
Topaz Adjust 4
Topaz Clean 3
Topaz DeJpeg 4
Topaz DeNoise 5
Topaz Detail 2
Topaz Fusion Express 2
Topaz InFocus
Topaz ReMask 3
Topaz Simplify 3
TortoiseSVN 1.5.3.13783 (32 bit)
Total Commander (Remove or Repair)
TweakNow WinSecret 2011
Ulead GIF Animator 5
Ulead VideoStudio SE DVD
Ultrafunk Sonitus:fx R3 plug-in uninstaller
Uninstall Mystical
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Windows Internet Explorer 8 (KB976662)
Update for Windows XP (KB955759)
Update for Windows XP (KB967715)
Update for Windows XP (KB968389)
Update for Windows XP (KB971737)
Update for Windows XP (KB973687)
Update for Windows XP (KB973815)
USB2.0 Capture Device
uTorrentBar Toolbar
VC 9.0 Runtime
ViceVersa Pro 2 (Build 2014)
Visual Basic for Applications (R) Core
Visual Basic for Applications (R) Core - English
Visual Studio 2005 Tools for Office Second Edition Runtime
Visual Studio Tools for the Office system 3.0 Runtime
VocaVista-Audio 2.8.6
VoiceSFX
Waves API Collection
Waves L3 16
Waves L3 LL
Waves Mercury Bundle
WCAT
WebFldrs XP
Webmaster Organizer 1.0 Trial
Window Washer
Windows Driver Package - Sony Corporation (PRSUSB) USB (08/08/2006 1.0.03.08080)
Windows Genuine Advantage Notifications (KB905474)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Imaging Component
Windows Internet Explorer 8
Windows Media Encoder 9 Series
Windows Media Format 11 runtime
Windows Mobile 5.0 SDK R2 for Pocket PC
Windows Mobile 5.0 SDK R2 for Smartphone
Windows XP Service Pack 3
WinRAR archiver
Wisdom of the Ages - Evaluation Version
Writer's Café 1.22
XAMPP 1.7.1
YAMAHA VST Plugin Vocal Rack Trial
ZBrush3
.
==== Event Viewer Messages From Past Week ========
.
10/19/2011 8:50:43 AM, error: Service Control Manager [7000] - The MBAMSwissArmy service failed to start due to the following error: The system cannot find the file specified.
10/19/2011 7:50:08 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the IMAPI CD-Burning COM Service service to connect.
10/19/2011 7:50:08 PM, error: Service Control Manager [7000] - The IMAPI CD-Burning COM Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
10/19/2011 4:41:04 AM, error: Service Control Manager [7000] - The Application Layer Gateway Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
10/19/2011 4:41:03 AM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the Application Layer Gateway Service service to connect.
10/19/2011 12:16:14 AM, error: NtServicePack [4373] - Windows XP Service Pack 3 installation failed.
An internal error occurred.
10/18/2011 12:52:06 AM, error: sr [1] - The System Restore filter encountered the unexpected error '0xC0000001' while processing the file '' on the volume 'HarddiskVolume1'. It has stopped monitoring the volume.
10/18/2011 11:01:34 PM, error: Service Control Manager [7000] - The Upload Manager service failed to start due to the following error: The account specified for this service is different from the account specified for other services running in the same process.
10/18/2011 10:41:04 PM, error: NtServicePack [4374] - Windows XP Service Pack 3 installation failed, leaving Windows XP partially updated.
Service Pack 3 installation did not complete.
10/18/2011 1:42:19 AM, error: Windows Update Agent [20] - Installation Failure: Windows failed to install the following update with error 0x8007054f: Windows XP Service Pack 3 (KB936929).
10/18/2011 1:41:51 AM, error: NtServicePack [4373] - Windows XP Service Pack 3 installation failed.
An internal error occurred.
10/17/2011 11:44:20 PM, error: Service Control Manager [7034] - The Window Washer Engine service terminated unexpectedly. It has done this 1 time(s).
10/17/2011 11:44:20 PM, error: Service Control Manager [7034] - The Ulead Burning Helper service terminated unexpectedly. It has done this 1 time(s).
10/17/2011 11:44:20 PM, error: Service Control Manager [7034] - The Syntek STK1160 Service service terminated unexpectedly. It has done this 1 time(s).
10/17/2011 11:44:20 PM, error: Service Control Manager [7034] - The Protexis Licensing V2 service terminated unexpectedly. It has done this 1 time(s).
10/17/2011 11:44:20 PM, error: Service Control Manager [7034] - The Process Monitor service terminated unexpectedly. It has done this 1 time(s).
10/17/2011 11:44:20 PM, error: Service Control Manager [7034] - The NVIDIA Display Driver Service service terminated unexpectedly. It has done this 1 time(s).
10/17/2011 11:44:20 PM, error: Service Control Manager [7034] - The FABS - Helping agent for MAGIX media database service terminated unexpectedly. It has done this 1 time(s).
10/17/2011 11:44:20 PM, error: Service Control Manager [7034] - The Cyberlink RichVideo Service(CRVS) service terminated unexpectedly. It has done this 1 time(s).
10/17/2011 11:44:20 PM, error: Service Control Manager [7034] - The ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## service terminated unexpectedly. It has done this 1 time(s).
10/17/2011 11:30:58 PM, error: Windows Update Agent [20] - Installation Failure: Windows failed to install the following update with error 0x800706be: Windows XP Service Pack 3 (KB936929).
10/15/2011 9:14:36 AM, error: sr [1] - The System Restore filter encountered the unexpected error '0xC000007F' while processing the file 'desktop.ini' on the volume 'HarddiskVolume5'. It has stopped monitoring the volume.
10/15/2011 12:36:03 AM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: Aavmker4 AFD aswRdr aswSP aswTdi Fips IPSec MRxSmb NetBIOS NetBT Processor RasAcd Rdbss SCDEmu Tcpip vsdatant
10/15/2011 12:36:03 AM, error: Service Control Manager [7001] - The TrueVector Internet Monitor service depends on the vsdatant service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2011 12:36:03 AM, error: Service Control Manager [7001] - The TCP/IP NetBIOS Helper service depends on the AFD service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2011 12:36:03 AM, error: Service Control Manager [7001] - The IPSEC Services service depends on the IPSEC driver service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2011 12:36:03 AM, error: Service Control Manager [7001] - The DNS Client service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2011 12:36:03 AM, error: Service Control Manager [7001] - The DHCP Client service depends on the NetBios over Tcpip service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2011 12:36:03 AM, error: Service Control Manager [7001] - The ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2011 1:26:19 AM, error: Service Control Manager [7023] - The Boot Update service terminated with the following error: The specified module could not be found.
10/15/2011 1:26:19 AM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the Vodafone Mobile Broadband Service service to connect.
10/15/2011 1:26:19 AM, error: Service Control Manager [7000] - The TrueVector Internet Monitor service failed to start due to the following error: Access is denied.
10/15/2011 1:26:19 AM, error: Service Control Manager [7000] - The avast! iAVS4 Control Service service failed to start due to the following error: The system cannot find the file specified.
10/15/2011 1:26:19 AM, error: Service Control Manager [7000] - The avast! Antivirus service failed to start due to the following error: The system cannot find the file specified.
10/15/2011 1:22:25 AM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
10/15/2011 1:21:45 AM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service netman with arguments "" in order to run the server: {BA126AE5-2166-11D1-B1D0-00805FC1270E}
10/15/2011 1:03:00 AM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service StiSvc with arguments "" in order to run the server: {A1F4E726-8CF1-11D1-BF92-0060081ED811}
10/14/2011 9:56:36 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: Aavmker4 AFD aswSP aswTdi Fips IPSec MRxSmb NetBIOS NetBT Processor RasAcd Rdbss SCDEmu Tcpip vsdatant
10/14/2011 9:52:41 PM, error: NtServicePack [4373] - Windows XP Service Pack 3 installation failed.
An internal error occurred.
10/14/2011 3:47:00 AM, error: Windows Update Agent [20] - Installation Failure: Windows failed to install the following update with error 0x8007054f: Security Update for Windows XP (KB959426).
10/14/2011 3:46:57 AM, error: NtServicePack [4373] - Windows XP KB959426 installation failed.
An internal error occurred.
10/14/2011 3:46:38 AM, error: Windows Update Agent [20] - Installation Failure: Windows failed to install the following update with error 0x8007054f: Security Update for Windows XP (KB956572).
10/14/2011 3:46:36 AM, error: NtServicePack [4373] - Windows XP KB956572 installation failed.
An internal error occurred.
10/12/2011 12:29:48 PM, error: ipnathlp [32003] - The Network Address Translator (NAT) was unable to request an operation of the kernel-mode translation module. This may indicate misconfiguration, insufficient resources, or an internal error. The data is the error code.
10/12/2011 12:29:48 PM, error: Dhcp [1002] - The IP address lease 41.31.75.24 for the Network Card with network address 001E101F3976 has been denied by the DHCP server 41.26.118.190 (The DHCP Server sent a DHCPNACK message).
10/12/2011 12:25:24 PM, error: Dhcp [1002] - The IP address lease 41.27.7.149 for the Network Card with network address 001E101F3976 has been denied by the DHCP server 41.31.75.17 (The DHCP Server sent a DHCPNACK message).
.
==== End Of File ===========================
Thank you!
Leave this reference for me of this:
https://www.techspot.com/vb/newintopic172242.html
-----------------------------------------------------------------------------------------------------------------------------
Malwarebytes' Anti-Malware 1.51.2.1300
www.malwarebytes.org
Database version: 7974
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
10/19/2011 8:54:31 PM
mbam-log-2011-10-19 (20-54-31).txt
Scan type: Quick scan
Objects scanned: 210554
Time elapsed: 6 minute(s), 9 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
----------------------------------------------------------------------------------------------------------------------------
GMER 1.0.15.15641 - http://www.gmer.net
Rootkit quick scan 2011-10-19 20:59:58
Windows 5.1.2600 Service Pack 3 Harddisk0\DR0 -> \Device\00000078 WDC_WD3200AAJS-00RYA0 rev.12.01B01
Running: wq522u19.exe; Driver: C:\DOCUME~1\Vanja\LOCALS~1\Temp\uxtdypow.sys
---- Devices - GMER 1.0.15 ----
Device \Driver\sojuscsi \Device\Scsi\sojuscsi1Port3Path0Target0Lun0 8ABE2670
Device \Driver\sojuscsi \Device\Scsi\sojuscsi1 8ABE2670
AttachedDevice \FileSystem\Ntfs \Ntfs aswMon2.SYS (avast! File System Filter Driver for Windows XP/AVAST Software)
Device \Driver\Tcpip \Device\Ip vsdatant.sys (TrueVector Device Driver/Check Point Software Technologies LTD)
AttachedDevice \Driver\Tcpip \Device\Ip WRkrn.sys
AttachedDevice \Driver\Tcpip \Device\Ip aswTdi.SYS (avast! TDI Filter Driver/AVAST Software)
Device \Driver\Tcpip \Device\Tcp vsdatant.sys (TrueVector Device Driver/Check Point Software Technologies LTD)
AttachedDevice \Driver\Tcpip \Device\Tcp aswTdi.SYS (avast! TDI Filter Driver/AVAST Software)
AttachedDevice \Driver\Tcpip \Device\Tcp WRkrn.sys
Device \Driver\Tcpip \Device\Udp vsdatant.sys (TrueVector Device Driver/Check Point Software Technologies LTD)
AttachedDevice \Driver\Tcpip \Device\Udp aswTdi.SYS (avast! TDI Filter Driver/AVAST Software)
AttachedDevice \Driver\Tcpip \Device\Udp WRkrn.sys
Device \Driver\Tcpip \Device\RawIp vsdatant.sys (TrueVector Device Driver/Check Point Software Technologies LTD)
AttachedDevice \Driver\Tcpip \Device\RawIp WRkrn.sys
AttachedDevice \Driver\Tcpip \Device\RawIp aswTdi.SYS (avast! TDI Filter Driver/AVAST Software)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 WRkrn.sys
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 WRkrn.sys
---- Services - GMER 1.0.15 ----
Service C:\WINDOWS\system32\svchost.exe (*** hidden *** ) [AUTO] nudypgcm <-- ROOTKIT !!!
---- EOF - GMER 1.0.15 ----
----------------------------------------------------------------------------------------------------------------------------
.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.5.0_12
Run by Vanja at 21:02:40 on 2011-10-19
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.3007.2145 [GMT 2:00]
.
FW: ZoneAlarm Pro Firewall *Disabled*
.
============== Running Processes ===============
.
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
svchost.exe
C:\Program Files\Trusteer\Rapport\bin\RapportService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe
C:\Program Files\Common Files\Logishrd\LVMVFM\LVPrcSrv.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\WINDOWS\system32\nvsvc32.exe
c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\System32\StkASv2K.exe
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
C:\Program Files\Webroot\Washer\WasherSvc.exe
C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe
C:\WINDOWS\system32\MAFWTray.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Google\Google Talk\googletalk.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\system32\NOTEPAD.EXE
.
============== Pseudo HJT Report ===============
.
uStart Page = about:blank
uInternet Settings,ProxyOverride = localhost;127.0.0.1;<local>
uURLSearchHooks: uTorrentBar Toolbar: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - c:\program files\utorrentbar\prxtbuTo0.dll
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: ContributeBHO Class: {074c1dc5-9320-4a9a-947d-c042949c6216} - c:\program files\adobe\/Adobe Contribute CS3/contributeieplugin.dll
BHO: {75ED56AF-4DC9-4243-A30C-4EF4DD0CA28F} - No File
BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre1.5.0_12\bin\ssv.dll
BHO: Adobe PDF Conversion Toolbar Helper: {ae7cd045-e861-484f-8273-0445ee161910} - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll
BHO: Skype Browser Helper: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
BHO: uTorrentBar Toolbar: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - c:\program files\utorrentbar\prxtbuTo0.dll
BHO: GOM Player + Ask Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - c:\program files\ask.com\GenericAskToolbar.dll
BHO: {EBCDDA60-2A68-11D3-8A43-0060083CFB9C} - No File
TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll
TB: Contribute Toolbar: {517bdde4-e3a7-4570-b21e-2b52b6139fc7} - c:\program files\adobe\/Adobe Contribute CS3/contributeieplugin.dll
TB: GOM Player + Ask Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - c:\program files\ask.com\GenericAskToolbar.dll
TB: uTorrentBar Toolbar: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - c:\program files\utorrentbar\prxtbuTo0.dll
EB: Adobe PDF: {182ec0be-5110-49c8-a062-beb1d02a220b} - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [IMJPMIG8.1] "c:\windows\ime\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
mRun: [PHIME2002ASync] c:\windows\system32\ime\tintlgnt\TINTSETP.EXE /SYNC
mRun: [PHIME2002A] c:\windows\system32\ime\tintlgnt\TINTSETP.EXE /IMEName
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [H2O] c:\program files\syncrosoft\pos\h2o\cledx.exe
mRun: [MAFWTaskbarApp] c:\windows\system32\MAFWTray.exe
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
mRun: [googletalk] c:\program files\google\google talk\googletalk.exe /autostart
mRun: [Malwarebytes' Anti-Malware] "c:\program files\malwarebytes' anti-malware\mbamgui.exe" /starttray
uPolicies-explorer: NoViewOnDrive = 0 (0x0)
uPolicies-explorer: NoDevMgrUpdate = 0 (0x0)
uPolicies-explorer: NoWindowsUpdate = 0 (0x0)
uPolicies-system: NoDispAppearancePage = 0 (0x0)
uPolicies-system: NoDispSettingsPage = 0 (0x0)
mPolicies-explorer: NoViewOnDrive = 0 (0x0)
mPolicies-explorer: NoDevMgrUpdate = 0 (0x0)
mPolicies-explorer: NoWindowsUpdate = 0 (0x0)
mPolicies-system: NoDispAppearancePage = 0 (0x0)
mPolicies-system: NoDispSettingsPage = 0 (0x0)
dPolicies-explorer: NoViewOnDrive = 0 (0x0)
dPolicies-explorer: NoDevMgrUpdate = 0 (0x0)
dPolicies-explorer: NoWindowsUpdate = 0 (0x0)
dPolicies-system: NoDispAppearancePage = 0 (0x0)
dPolicies-system: NoDispSettingsPage = 0 (0x0)
IE: Append to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert link target to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Convert link target to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert selected links to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Convert selected links to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Convert selection to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Convert selection to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
IE: Sothink SWF Catcher - c:\program files\common files\sourcetec\swf catcher\InternetExplorer.htm
IE: {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - c:\program files\common files\sourcetec\swf catcher\InternetExplorer.htm
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0015-0000-0012-ABCDEFFEDCBC} - c:\program files\java\jre1.5.0_12\bin\ssv.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office11\REFIEBAR.DLL
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1318581580750
DPF: {CAFEEFAC-0014-0001-0001-ABCDEFFEDCBA} - hxxp://java.sun.com/products/plugin/1.4/jinstall-14_01-windows-i586.cab
DPF: {CAFEEFAC-0015-0000-0012-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_12-windows-i586.cab
TCP: Interfaces\{221F67E8-D243-4C24-8FBE-A6EF774282A0} : NameServer = 196.41.124.10,196.41.124.11
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\vanja\application data\mozilla\firefox\profiles\58av3o94.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.co.za/
FF - prefs.js: network.proxy.type - 1
FF - component: c:\program files\mozilla firefox\extensions\{82af8dca-6de9-405d-bd5e-43525bdad38a}\components\SkypeFfComponent.dll
FF - plugin: c:\documents and settings\vanja\application data\facebook\npfbplugin_1_0_1.dll
FF - plugin: c:\documents and settings\vanja\application data\facebook\npfbplugin_1_0_3.dll
FF - plugin: c:\documents and settings\vanja\local settings\application data\google\update\1.2.183.29\npGoogleOneClick8.dll
FF - plugin: c:\program files\java\j2re1.4.1_01\bin\NPJava11.dll
FF - plugin: c:\program files\java\j2re1.4.1_01\bin\NPJava12.dll
FF - plugin: c:\program files\java\j2re1.4.1_01\bin\NPJava13.dll
FF - plugin: c:\program files\java\j2re1.4.1_01\bin\NPJava32.dll
FF - plugin: c:\program files\java\j2re1.4.1_01\bin\NPOJI610.dll
FF - plugin: c:\program files\java\jre1.5.0_12\bin\NPJPI150_12.dll
FF - plugin: c:\program files\mozilla firefox\plugins\NPJPI141_01.dll
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Skype Click to Call: {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} - c:\program files\mozilla firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF - Ext: Web Developer: {c45c406e-ab73-11d8-be73-000a95be3b12} - %profile%\extensions\{c45c406e-ab73-11d8-be73-000a95be3b12}
FF - Ext: MeasureIt: {75CEEE46-9B64-46f8-94BF-54012DE155F0} - %profile%\extensions\{75CEEE46-9B64-46f8-94BF-54012DE155F0}
FF - Ext: Screengrab: {02450954-cdd9-410f-b1da-db804e18c671} - %profile%\extensions\{02450954-cdd9-410f-b1da-db804e18c671}
FF - Ext: Firebug: firebug@software.joehewitt.com - %profile%\extensions\firebug@software.joehewitt.com
FF - Ext: NoDoFollow: {c2b1f3ae-5cd5-49b7-8a0c-2c3bcbbbb294} - %profile%\extensions\{c2b1f3ae-5cd5-49b7-8a0c-2c3bcbbbb294}
FF - Ext: SearchStatus: {d57c9ff1-6389-48fc-b770-f78bd89b6e8a} - %profile%\extensions\{d57c9ff1-6389-48fc-b770-f78bd89b6e8a}
FF - Ext: Flash Video Downloader Youtube Downloader Facebook: artur.dubovoy@gmail.com - %profile%\extensions\artur.dubovoy@gmail.com
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\DotNetAssistantExtension
.
---- FIREFOX POLICIES ----
FF - user.js: google.toolbar.linkdoctor.enabled - false
.
============= SERVICES / DRIVERS ===============
.
R0 sojubus;sojubus;c:\windows\system32\drivers\sojubus.sys [2003-10-5 123520]
R0 sojuscsi;sojuscsi;c:\windows\system32\drivers\sojuscsi.sys [2003-9-28 5504]
R0 WRkrn;WRkrn;c:\windows\system32\drivers\wrkrn.sys --> c:\windows\system32\drivers\WRkrn.sys [?]
R1 Asapi;Asapi;c:\windows\system32\drivers\asapi.sys [2008-11-4 11264]
R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2009-12-14 320856]
R1 RapportCerberus_32029;RapportCerberus_32029;c:\documents and settings\all users\application data\trusteer\rapport\store\exts\rapportcerberus\32029\RapportCerberus32_32029.sys [2011-10-18 227312]
R1 RapportEI;RapportEI;c:\program files\trusteer\rapport\bin\RapportEI.sys [2011-9-25 70416]
R1 RapportPG;RapportPG;c:\program files\trusteer\rapport\bin\RapportPG.sys [2011-9-25 161936]
R1 vsdatant;vsdatant;c:\windows\system32\vsdatant.sys [2008-11-4 353672]
R2 ALIEHCD;ALi PCI to USB Enhanced Host Controller;c:\windows\system32\drivers\AliEhci.sys [2008-11-4 111768]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2009-12-14 20568]
R2 Fabs;FABS - Helping agent for MAGIX media database;c:\program files\common files\magix services\database\bin\FABS.exe [2009-8-27 1253376]
R2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2011-10-18 366152]
R2 port_nt;port_nt;c:\windows\system32\drivers\port_nt.sys [2011-1-17 3608]
R2 RapportMgmtService;Rapport Management Service;c:\program files\trusteer\rapport\bin\RapportMgmtService.exe [2011-9-25 919352]
R2 Vcs;Vcs support;c:\windows\system32\drivers\Vcs.sys [2009-6-2 6852]
R2 wwEngineSvc;Window Washer Engine;c:\program files\webroot\washer\WasherSvc.exe [2011-10-8 598856]
R3 aliroothub;USB 2.0 Root Hub;c:\windows\system32\drivers\AliRtHub.sys [2008-11-4 5337]
R3 CLEDX;Team H2O CLEDX service;c:\windows\system32\drivers\cledx.sys [2008-11-4 33792]
R3 huawei_enumerator;huawei_enumerator;c:\windows\system32\drivers\ew_jubusenum.sys [2011-10-7 73344]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2011-10-18 22216]
S2 avast! Antivirus;avast! Antivirus;"c:\program files\alwil software\avast4\ashserv.exe" --> c:\program files\alwil software\avast4\ashServ.exe [?]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 nudypgcm;Boot Update;c:\windows\system32\svchost.exe -k netsvcs [2004-8-4 14336]
S2 VmbService;Vodafone Mobile Broadband Service;c:\program files\vodafone\vodafone mobile broadband\bin\VmbService.exe [2010-9-8 8704]
S2 vsmon;TrueVector Internet Monitor;c:\windows\system32\zonelabs\vsmon.exe -service --> c:\windows\system32\zonelabs\vsmon.exe -service [?]
S2 WRSVC;WRSVC;"c:\program files\webroot\wrsa.exe" -service --> c:\program files\webroot\WRSA.exe [?]
S3 alihub;Generic Hub on USB 2.0 Bus;c:\windows\system32\drivers\AliHub.sys [2008-11-4 17835]
S3 avast! Mail Scanner;avast! Mail Scanner;"c:\program files\alwil software\avast4\ashmaisv.exe" /service --> c:\program files\alwil software\avast4\ashMaiSv.exe [?]
S3 avast! Web Scanner;avast! Web Scanner;"c:\program files\alwil software\avast4\ashwebsv.exe" /service --> c:\program files\alwil software\avast4\ashWebSv.exe [?]
S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\drivers\ew_hwusbdev.sys [2011-10-7 102784]
S3 ewusbnet;HUAWEI USB-NDIS miniport;c:\windows\system32\drivers\ewusbnet.sys [2011-10-7 237440]
S3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;c:\program files\common files\magix services\database\bin\fbserver.exe [2008-8-7 3276800]
S3 Tomcat6;Apache Tomcat;c:\program files\apache software foundation\tomcat 6.0\bin\tomcat6.exe [2008-7-22 57344]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
.
=============== File Associations ===============
.
JSEFile="%SystemRoot%\System32\WScript.exe" "%1" %*
.
=============== Created Last 30 ================
.
2011-10-19 17:40:41 99840 ----a-r- c:\windows\system32\drivers\NimNgDyH.sys
2011-10-19 02:37:57 99840 ----a-r- c:\windows\system32\drivers\hWFQUZld.sys
2011-10-18 23:12:06 79872 -c----w- c:\windows\system32\dllcache\msxml6r.dll
2011-10-18 23:12:06 79872 ------w- c:\windows\system32\msxml6r.dll
2011-10-18 23:12:06 1372672 -c----w- c:\windows\system32\dllcache\msxml6.dll
2011-10-18 23:12:06 1372672 ------w- c:\windows\system32\msxml6.dll
2011-10-18 23:10:00 294912 ------w- c:\program files\windows media player\dlimport.exe
2011-10-18 23:08:09 19569 ----a-w- c:\windows\003114_.tmp
2011-10-18 21:18:35 99840 ----a-r- c:\windows\system32\drivers\QjflunoG.sys
2011-10-18 20:25:57 79232 ----a-w- c:\windows\system32\drivers\sdbus.sys
2011-10-18 20:25:57 37760 ----a-w- c:\windows\system32\drivers\amdk7.sys
2011-10-18 20:25:57 36352 ----a-w- c:\windows\system32\drivers\intelppm.sys
2011-10-18 20:25:57 30208 ----a-w- c:\windows\system32\drivers\usbehci.sys
2011-10-18 20:25:57 15488 ----a-w- c:\windows\system32\drivers\mssmbios.sys
2011-10-18 20:25:57 12288 ----a-w- c:\windows\system32\drivers\tunmp.sys
2011-10-18 20:25:57 11904 ----a-w- c:\windows\system32\drivers\sffdisk.sys
2011-10-18 20:25:57 11008 ----a-w- c:\windows\system32\drivers\sffp_sd.sys
2011-10-18 20:24:50 2897920 ----a-w- c:\windows\system32\xpsp2res.dll
2011-10-18 20:24:46 36608 ----a-w- c:\windows\system32\drivers\ip6fw.sys
2011-10-18 20:24:45 121984 ----a-w- c:\windows\system32\drivers\usbvideo.sys
2011-10-18 20:24:42 265728 ----a-w- c:\windows\system32\drivers\http.sys
2011-10-18 20:24:40 409088 ----a-w- c:\windows\system32\qmgr.dll
2011-10-18 20:24:40 129792 ----a-w- c:\windows\system32\drivers\fltmgr.sys
2011-10-18 20:24:37 272128 ------w- c:\windows\system32\drivers\bthport.sys
2011-10-18 20:22:59 83072 ----a-w- c:\windows\system32\drivers\wdmaud.sys
2011-10-18 17:19:22 22216 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-10-18 17:19:21 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-10-17 22:50:16 99840 ----a-r- c:\windows\system32\drivers\sLJlbcjN.sys
2011-10-17 21:44:19 -------- d-----w- C:\_OTM
2011-10-17 08:24:03 1409 ----a-w- c:\windows\QTFont.for
2011-10-16 18:02:52 -------- d-----w- c:\documents and settings\all users\Keyword Elite 2.0
2011-10-16 18:01:00 -------- d-----w- c:\program files\Keyword Elite 2.0
2011-10-15 10:20:41 102400 ----a-w- c:\windows\system32\bclnap.dll
2011-10-15 10:20:40 3080192 ----a-w- c:\windows\system32\beconvlib.dll
2011-10-15 10:20:40 282624 ----a-w- c:\windows\system32\bprgcomm.dll
2011-10-15 10:20:40 208896 ----a-w- c:\windows\system32\beconv.dll
2011-10-15 00:06:09 -------- d-sh--w- c:\documents and settings\vanja\PrivacIE
2011-10-15 00:06:04 -------- d-sh--w- c:\documents and settings\vanja\IECompatCache
2011-10-14 23:30:30 274288 ----a-w- c:\windows\system32\mucltui.dll
2011-10-14 23:30:30 16736 ----a-w- c:\windows\system32\mucltui.dll.mui
2011-10-14 23:03:42 99840 ----a-r- c:\windows\system32\drivers\yxpXVpYF.sys
2011-10-14 22:32:09 99840 ----a-r- c:\windows\system32\drivers\AdeMghWD.sys
2011-10-14 21:25:00 99840 ----a-r- c:\windows\system32\drivers\PoXhhExr.sys
2011-10-14 20:57:51 -------- d-----w- c:\program files\AVAST Software
2011-10-14 20:57:29 -------- d-----w- c:\documents and settings\all users\application data\AVAST Software
2011-10-14 20:44:44 -------- d-----w- c:\program files\Microsoft CAPICOM 2.1.0.2
2011-10-14 20:11:37 -------- d-sh--w- c:\documents and settings\vanja\IETldCache
2011-10-14 20:09:04 -------- d-----w- c:\windows\ie8updates
2011-10-14 20:08:54 599040 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2011-10-14 20:08:54 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2011-10-14 20:08:54 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2011-10-14 20:08:53 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2011-10-14 20:08:53 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2011-10-14 20:08:53 1985536 -c----w- c:\windows\system32\dllcache\iertutil.dll
2011-10-14 20:08:53 11076096 -c----w- c:\windows\system32\dllcache\ieframe.dll
2011-10-14 20:08:09 -------- dc-h--w- c:\windows\ie8
2011-10-14 02:09:13 -------- d-----w- c:\program files\MSXML 4.0
2011-10-14 01:48:09 -------- d-----w- c:\windows\ServicePackFiles
2011-10-14 01:41:41 744448 -c----w- c:\windows\system32\dllcache\helpsvc.exe
2011-10-14 01:38:12 455680 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2011-10-14 01:37:42 353792 -c----w- c:\windows\system32\dllcache\srv.sys
2011-10-14 01:36:23 81920 -c----w- c:\windows\system32\dllcache\fontsub.dll
2011-10-14 01:36:23 119808 -c----w- c:\windows\system32\dllcache\t2embed.dll
2011-10-14 01:36:08 471552 -c----w- c:\windows\system32\dllcache\aclayers.dll
2011-10-14 01:28:52 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll
2011-10-14 01:27:29 272128 -c----w- c:\windows\system32\dllcache\bthport.sys
2011-10-14 01:27:22 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys
2011-10-14 01:24:46 -------- d-----w- c:\windows\system32\PreInstall
2011-10-14 01:24:44 -------- d--h--w- c:\windows\$hf_mig$
2011-10-14 01:19:37 -------- d-----w- c:\windows\system32\SoftwareDistribution
2011-10-13 21:09:12 -------- d-----w- c:\program files\common files\Wise Installation Wizard
2011-10-08 21:17:17 -------- d-----w- c:\documents and settings\all users\application data\SecTaskMan
2011-10-08 21:17:12 -------- d-----w- c:\program files\Security Task Manager
2011-10-08 21:14:01 -------- d-----w- c:\documents and settings\vanja\application data\Webroot
2011-10-08 21:14:00 -------- d-----w- c:\program files\Webroot
2011-10-08 21:14:00 -------- d-----w- c:\program files\common files\Webroot Shared
2011-10-08 21:14:00 -------- d-----w- c:\documents and settings\all users\application data\Webroot
2011-10-08 21:13:53 194888 ----a-w- c:\windows\Unwash6.exe
2011-10-08 21:06:47 -------- d-----w- c:\program files\TweakNow WinSecret 2011
2011-10-08 21:06:47 -------- d-----w- c:\documents and settings\vanja\application data\TweakNow WinSecret 2011
2011-10-08 20:45:47 -------- d-----w- c:\program files\Registry Clean Expert
2011-10-08 11:26:55 -------- d-----w- c:\documents and settings\vanja\local settings\application data\conduitEngine
2011-10-07 17:43:49 102784 ----a-r- c:\windows\system32\drivers\ew_hwusbdev.sys
2011-10-07 17:20:20 73344 ----a-r- c:\windows\system32\drivers\ew_jubusenum.sys
2011-10-07 17:08:11 -------- d-----w- c:\documents and settings\vanja\local settings\application data\PCHealth
2011-10-07 17:03:32 237440 ----a-r- c:\windows\system32\drivers\ewusbnet.sys
2011-10-07 17:03:28 192768 ----a-r- c:\windows\system32\drivers\ewusbmdm.sys
2011-10-07 17:02:26 -------- d-----w- c:\documents and settings\all users\application data\Vodafone
2011-10-06 23:36:24 -------- d-----w- c:\program files\The Free Blog Commenter
2011-10-03 21:43:28 -------- d-----w- c:\program files\Webmaster Organizer
2011-10-03 21:42:01 -------- d-----w- c:\documents and settings\vanja\application data\SeoOganizer
2011-10-03 21:39:56 -------- d-----w- c:\documents and settings\vanja\application data\GetRightToGo
2011-10-03 20:17:52 -------- d-----w- c:\documents and settings\vanja\application data\Efficient Password Manager
2011-10-03 20:17:50 -------- d-----w- c:\program files\Efficient Password Manager
2011-09-25 17:00:08 56336 ----a-w- c:\windows\system32\drivers\RapportKELL.sys
2011-09-21 07:35:54 4566176 ----a-w- c:\program files\mozilla firefox\extensions\{82af8dca-6de9-405d-bd5e-43525bdad38a}\components\SkypeFfComponent.dll
2011-09-21 00:17:03 1112288 ----a-r- c:\windows\system32\wdfcoinstaller01007.dll
2011-09-21 00:14:45 -------- d-----w- c:\documents and settings\vanja\local settings\application data\{B689FAC8-84A4-4175-9624-A6C800238679}
.
==================== Find3M ====================
.
2011-10-15 10:24:09 51 ----a-w- c:\windows\SW_Win2141X16.DLL
2011-10-12 16:48:09 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-09-21 06:05:44 397312 ----a-w- c:\windows\system32\PPTConverter.ocx
2009-11-19 19:08:02 3749224 ----a-w- c:\program files\common files\adlmint_libFNP.dll
2009-11-19 19:08:02 2941288 ----a-w- c:\program files\common files\adlmint.dll
.
============= FINISH: 21:04:03.90 ===============
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-08-26.01)
.
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 11/4/2008 7:36:51 PM
System Uptime: 10/19/2011 7:50:33 PM (2 hours ago)
.
Motherboard: WinFast | | 6100M2MA
Processor: AMD Athlon(tm) 64 X2 Dual Core Processor 4200+ | Socket AM2 | 2210/201mhz
.
==== Disk Partitions =========================
.
A: is Removable
C: is FIXED (NTFS) - 298 GiB total, 89.161 GiB free.
D: is CDROM (CDFS)
E: is CDROM ()
H: is CDROM ()
.
==== Disabled Device Manager Items =============
.
Class GUID: {4D36E96C-E325-11CE-BFC1-08002BE10318}
Description: Realtek AC'97 Audio
Device ID: PCI\VEN_10DE&DEV_026B&SUBSYS_0D04105B&REV_A2\3&2411E6FE&0&82
Manufacturer: Realtek
Name: Realtek AC'97 Audio
PNP Device ID: PCI\VEN_10DE&DEV_026B&SUBSYS_0D04105B&REV_A2\3&2411E6FE&0&82
Service: ALCXWDM
.
Class GUID: {4D36E972-E325-11CE-BFC1-08002BE10318}
Description: NVIDIA nForce Networking Controller
Device ID: {1A3E09BE-1E45-494B-9174-D7385B45BBF5}\NVNET_DEV0269\4&8A1373E&0&01
Manufacturer: NVIDIA
Name: NVIDIA nForce Networking Controller
PNP Device ID: {1A3E09BE-1E45-494B-9174-D7385B45BBF5}\NVNET_DEV0269\4&8A1373E&0&01
Service: NVENETFD
.
==== System Restore Points ===================
.
RP1: 10/19/2011 7:59:08 PM - System Checkpoint
.
==== Installed Programs ======================
.
.
µTorrent
3herosoft DVD Ripper Platinum
4Front E-Piano Module 1.0 VSTi
4Front Piano Module 1.0 VSTi
4Front Rhode 1.0 VSTi
ABC Amber LIT Converter
Abrosoft FantaMorph 4.1
ACE Mega CoDecS Pack
Add or Remove Adobe Creative Suite 3 Master Collection
Adobe Acrobat 8 Professional
Adobe After Effects CS3
Adobe After Effects CS3 Presets
Adobe After Effects CS3 Third Party Content
Adobe AIR
Adobe Anchor Service CS3
Adobe Asset Services CS3
Adobe Bridge CS3
Adobe Bridge Start Meeting
Adobe BridgeTalk Plugin CS3
Adobe Camera Raw 4.0
Adobe CMaps
Adobe Color - Photoshop Specific
Adobe Color Common Settings
Adobe Color EU Extra Settings
Adobe Color JA Extra Settings
Adobe Color NA Recommended Settings
Adobe Contribute CS3
Adobe Creative Suite 3 Master Collection
Adobe Default Language CS3
Adobe Device Central CS3
Adobe Dreamweaver CS3
Adobe Encore CS3
Adobe Encore CS3 Codecs
Adobe ExtendScript Toolkit 2
Adobe Extension Manager CS3
Adobe Fireworks CS3
Adobe Flash CS3
Adobe Flash Player 10 ActiveX
Adobe Flash Player 11 Plugin
Adobe Flash Video Encoder
Adobe Flex Builder 3
Adobe Flex Builder 3 Plug-in
Adobe Fonts All
Adobe Help Viewer CS3
Adobe Illustrator CS3
Adobe InDesign CS3
Adobe InDesign CS3 Icon Handler
Adobe Linguistics CS3
Adobe MotionPicture Color Files
Adobe PDF Library Files
Adobe Photoshop CS3
Adobe Photoshop Lightroom 3.3
Adobe Premiere Pro CS3
Adobe Premiere Pro CS3 Functional Content
Adobe Premiere Pro CS3 Third Party Content
Adobe Setup
Adobe SING CS3
Adobe Soundbooth CS3
Adobe Soundbooth CS3 Codecs
Adobe Stock Photos CS3
Adobe Type Support
Adobe Update Manager CS3
Adobe Version Cue CS3 Client
Adobe Version Cue CS3 Server
Adobe Video Profiles
Adobe WAS CS3
Adobe WinSoft Linguistics Plugin
Adobe XMP DVA Panels CS3
Adobe XMP Panels CS3
Advanced Font Viewer 2.3
AHV content for Acrobat and Flash
AKAI professional DCVocoder 1.0
Alcohol 120%
ALi USB2.0 Driver
Alien Skin Eye Candy 5 Impact
Alien Skin Eye Candy 5 Nature
Alien Skin Eye Candy 5 Textures
Alien Skin Image Doctor 1.0
Alien Skin Xenofex 2.0
Antares Tube VST v1.02
Any DVD Cloner Platinum 1.0.5
Apache Tomcat 6.0 (remove only)
Apophysis 2.0
Artisteer 2
Arturia CS-80V v1.1
Arturia Modular System v1.0
ASAPI Update
Ask Toolbar
Astrobelt 1.0
Atmosphere
Autodesk Backburner 2011.0.0
Autodesk DirectConnect 2010 R1
Autodesk MatchMover 2011 32-bit
Autodesk Maya 2011 32-bit
Autodesk Maya 2011 English Documentation 32-bit
AV Voice Changer Software 3.0.89
AVS Update Manager 1.0
AVS Video Converter 6
AVS4YOU Software Navigator 1.3
Axialis IconWorkshop 6.50
Better File Rename 5.3.1
Beyond Compare Version 3.0.15
BitLord 1.1
BODYPAINT 3D
Brain Teasers
Cakewalk Pro Audio 9
calibre
CameraHelperMsi
Camtasia Studio 6
Canon CanoScan Toolbox 4.1
Chromatica
CleanUp!
Composite 2011
CONNECT Reader by Sony
Corel Graphics - Windows Shell Extension
CorelDRAW Graphics Suite X5
CorelDRAW Graphics Suite X5 - Capture
CorelDRAW Graphics Suite X5 - Common
CorelDRAW Graphics Suite X5 - Connect
CorelDRAW Graphics Suite X5 - Custom Data
CorelDRAW Graphics Suite X5 - Draw
CorelDRAW Graphics Suite X5 - EN
CorelDRAW Graphics Suite X5 - Filters
CorelDRAW Graphics Suite X5 - FontNav
CorelDRAW Graphics Suite X5 - IPM
CorelDRAW Graphics Suite X5 - PHOTO-PAINT
CorelDRAW Graphics Suite X5 - Photozoom Plugin
CorelDRAW Graphics Suite X5 - Redist
CorelDRAW Graphics Suite X5 - Setup Files
CorelDRAW Graphics Suite X5 - VBA
CorelDRAW Graphics Suite X5 - VideoBrowser
CorelDRAW Graphics Suite X5 - VSTA
CorelDRAW Graphics Suite X5 - WT
CorelDRAW(R) Graphics Suite X5
CronoX 3
CronoX 3 Bonus Presets
CS-80V
CuteFTP 8 Professional
Diff Doc
Dramatica Pro 4.0
Duplicate File Finder 1.1.0.0
DVD-CLONER V6.00 Build 975
DVD Shrink Pro
DVD Suite
EarMaster School 5
Edirol HQ Orchestral v1.01
Edirol Hyper Canvas VSTi v1.51
Efficient Password Manager 1.68
erLT
Eye Candy 4000
eyeQ
EZdrummer
EZXPercussion
Facebook Plug-In
Firebird SQL Server - MAGIX Edition
Firewire Family
FL Studio v7.0
FM Heaven VSTi v1.4
Free Picture Resize Starter 4.5
GOM Player
Google Chrome
Google Talk (remove only)
GSM 1.1.4.2
Guitar Chord Buster Pro 4.4.0
Guitar Studio
Hard Disk Scrubber v2.1
High-Logic FontCreator 6.0
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows XP (KB952287)
Hotfix for Windows XP (KB961118)
Hotfix for Windows XP (KB981793)
IBP 11.5
IK Multimedia Amplitube DX/VST/RTAS v2.0
IrfanView (remove only)
iZotope Trash
J2SE Development Kit 5.0 Update 12
J2SE Runtime Environment 5.0 Update 12
Java 2 Runtime Environment, SE v1.4.1_01
Java Web Start
LameACM
Logitech Vid HD
Logitech Webcam Software
Lounge Lizard 1.0
LRA Movie
LucisArt 3 ED/SE
LUXONIX Ravity(S) v1.4.1
LWS Facebook
LWS Gallery
LWS Help_main
LWS Launcher
LWS Motion Detection
LWS Pictures And Video
LWS Twitter
LWS Video Mask Maker
LWS VideoEffects
LWS Webcam Software
LWS WLM Plugin
LWS YouTube Plugin
Magic ISO Maker v5.4 (build 0239)
MAGIX 3D Maker (embeded)
MAGIX Movie Edit Pro 16 Plus Download Version 9.0.1.60 (UK)
MAGIX Screenshare
MAGIX Speed burnR
Malwarebytes' Anti-Malware version 1.51.2.1300
MasterWriter
MediaMonkey 2.5
Microsoft .NET Compact Framework 2.0 SP2
Microsoft .NET Compact Framework 3.5
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Extended
Microsoft Agent Character Editor
Microsoft Device Emulator version 3.0 - ENU
Microsoft Document Explorer 2008
Microsoft Kernel-Mode Driver Framework Feature Pack 1.9
Microsoft Office File Validation Add-In
Microsoft Office Professional Edition 2003
Microsoft Silverlight
Microsoft SQL Server Compact 3.5 Design Tools ENU
Microsoft SQL Server Compact 3.5 ENU
Microsoft SQL Server Compact 3.5 for Devices ENU
Microsoft SQL Server Database Publishing Wizard 1.2
Microsoft SQL Server Native Client
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual Studio 2005 Tools for Office Runtime
Microsoft Visual Studio Tools for Applications 2.0 Runtime
Morton Benson SerboCroatian-English Dictionary
Mozilla Firefox (3.6.13)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MyEclipse 7.0 Milestone-1
N.I. Guitar Rig v2.0.2
Native Instruments Absynth 4
Native Instruments FM8 v1.0.1.002 VSTi DXi RTAS
Native Instruments Massive v1.0.1.008 VSTi DXi RTAS
Native Instruments Metaphysical Function
Native Instruments Service Center
Nero 7 Essentials
NetBeans IDE 5.5.1
NetBeans IDE 6.1
Nomad Factory Blue Tubes Bundle VST v1.6
NVIDIA Drivers
Octopus
PDF Settings
Photo to Cartoon
PixPlant for Photoshop 2.0.43
Plagiarism Detector
Portrait Professional Studio 9.0
PowerDVD
PowerISO
PRO100 Jasno ver 4.16
QuickTime
Rapport
RealPlayer
Realtek AC'97 Audio
reFX Trasher 2 VST v1.1
Registry Clean Expert
Registry Cleaner 6.0.0.016
Registry Mechanic 6.0
Riva FLV Player
Security Update for CAPICOM (KB931906)
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Internet Explorer 8 (KB981332)
Security Update for Windows Internet Explorer 8 (KB982381)
Security Update for Windows Media Encoder (KB954156)
Security Update for Windows Media Encoder (KB979332)
Security Update for Windows Media Player (KB973540)
Security Update for Windows Media Player (KB979402)
Security Update for Windows XP (KB2229593)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956844)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958869)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB969059)
Security Update for Windows XP (KB970238)
Security Update for Windows XP (KB970430)
Security Update for Windows XP (KB971468)
Security Update for Windows XP (KB971657)
Security Update for Windows XP (KB972270)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973869)
Security Update for Windows XP (KB973904)
Security Update for Windows XP (KB974112)
Security Update for Windows XP (KB974318)
Security Update for Windows XP (KB974392)
Security Update for Windows XP (KB974571)
Security Update for Windows XP (KB975025)
Security Update for Windows XP (KB975467)
Security Update for Windows XP (KB975560)
Security Update for Windows XP (KB975561)
Security Update for Windows XP (KB975562)
Security Update for Windows XP (KB975713)
Security Update for Windows XP (KB977816)
Security Update for Windows XP (KB977914)
Security Update for Windows XP (KB978037)
Security Update for Windows XP (KB978338)
Security Update for Windows XP (KB978542)
Security Update for Windows XP (KB978601)
Security Update for Windows XP (KB978706)
Security Update for Windows XP (KB979309)
Security Update for Windows XP (KB979482)
Security Update for Windows XP (KB979559)
Security Update for Windows XP (KB979683)
Security Update for Windows XP (KB980195)
Security Update for Windows XP (KB980218)
Security Update for Windows XP (KB980232)
Security Update for Windows XP (KB982381)
Sencha Animator
Serato Scratch Studio Edition RTAS v1.0
Sibelius 6.2.0.88
Skype Click to Call
Skype™ 5.5
Sony DVD Architect Studio 4.5
Sony Noise Reduction Plug-In 2.0e
Sony Sound Forge 9.0
Sothink SWF Decompiler
SpinAudio 3DDelays 1.1
SpinAudio RoomVerb M1 1.1
SpinAudio RoomVerb M2 2.0
SpinAudio SpinDelay 2.0 Full
Splat! 1.0
Steinberg FreeFilter v1.1 - OxYGeN
Steinberg Groove Agent 2
Steinberg Voice Designer v1.03
Striata Reader
Style Master 4.6
Sun Download Manager 2.0 (web)
Sun Java System Application Server 9.1 Update 2
SwarShala v2.0 build 4
Syncrosoft's License Control
SyncroSoft Emu (Remove only)
Synonymizer 3.1.0
Terragen
The Free Blog Commenter
Topaz Adjust 4
Topaz Clean 3
Topaz DeJpeg 4
Topaz DeNoise 5
Topaz Detail 2
Topaz Fusion Express 2
Topaz InFocus
Topaz ReMask 3
Topaz Simplify 3
TortoiseSVN 1.5.3.13783 (32 bit)
Total Commander (Remove or Repair)
TweakNow WinSecret 2011
Ulead GIF Animator 5
Ulead VideoStudio SE DVD
Ultrafunk Sonitus:fx R3 plug-in uninstaller
Uninstall Mystical
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Windows Internet Explorer 8 (KB976662)
Update for Windows XP (KB955759)
Update for Windows XP (KB967715)
Update for Windows XP (KB968389)
Update for Windows XP (KB971737)
Update for Windows XP (KB973687)
Update for Windows XP (KB973815)
USB2.0 Capture Device
uTorrentBar Toolbar
VC 9.0 Runtime
ViceVersa Pro 2 (Build 2014)
Visual Basic for Applications (R) Core
Visual Basic for Applications (R) Core - English
Visual Studio 2005 Tools for Office Second Edition Runtime
Visual Studio Tools for the Office system 3.0 Runtime
VocaVista-Audio 2.8.6
VoiceSFX
Waves API Collection
Waves L3 16
Waves L3 LL
Waves Mercury Bundle
WCAT
WebFldrs XP
Webmaster Organizer 1.0 Trial
Window Washer
Windows Driver Package - Sony Corporation (PRSUSB) USB (08/08/2006 1.0.03.08080)
Windows Genuine Advantage Notifications (KB905474)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Imaging Component
Windows Internet Explorer 8
Windows Media Encoder 9 Series
Windows Media Format 11 runtime
Windows Mobile 5.0 SDK R2 for Pocket PC
Windows Mobile 5.0 SDK R2 for Smartphone
Windows XP Service Pack 3
WinRAR archiver
Wisdom of the Ages - Evaluation Version
Writer's Café 1.22
XAMPP 1.7.1
YAMAHA VST Plugin Vocal Rack Trial
ZBrush3
.
==== Event Viewer Messages From Past Week ========
.
10/19/2011 8:50:43 AM, error: Service Control Manager [7000] - The MBAMSwissArmy service failed to start due to the following error: The system cannot find the file specified.
10/19/2011 7:50:08 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the IMAPI CD-Burning COM Service service to connect.
10/19/2011 7:50:08 PM, error: Service Control Manager [7000] - The IMAPI CD-Burning COM Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
10/19/2011 4:41:04 AM, error: Service Control Manager [7000] - The Application Layer Gateway Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
10/19/2011 4:41:03 AM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the Application Layer Gateway Service service to connect.
10/19/2011 12:16:14 AM, error: NtServicePack [4373] - Windows XP Service Pack 3 installation failed.
An internal error occurred.
10/18/2011 12:52:06 AM, error: sr [1] - The System Restore filter encountered the unexpected error '0xC0000001' while processing the file '' on the volume 'HarddiskVolume1'. It has stopped monitoring the volume.
10/18/2011 11:01:34 PM, error: Service Control Manager [7000] - The Upload Manager service failed to start due to the following error: The account specified for this service is different from the account specified for other services running in the same process.
10/18/2011 10:41:04 PM, error: NtServicePack [4374] - Windows XP Service Pack 3 installation failed, leaving Windows XP partially updated.
Service Pack 3 installation did not complete.
10/18/2011 1:42:19 AM, error: Windows Update Agent [20] - Installation Failure: Windows failed to install the following update with error 0x8007054f: Windows XP Service Pack 3 (KB936929).
10/18/2011 1:41:51 AM, error: NtServicePack [4373] - Windows XP Service Pack 3 installation failed.
An internal error occurred.
10/17/2011 11:44:20 PM, error: Service Control Manager [7034] - The Window Washer Engine service terminated unexpectedly. It has done this 1 time(s).
10/17/2011 11:44:20 PM, error: Service Control Manager [7034] - The Ulead Burning Helper service terminated unexpectedly. It has done this 1 time(s).
10/17/2011 11:44:20 PM, error: Service Control Manager [7034] - The Syntek STK1160 Service service terminated unexpectedly. It has done this 1 time(s).
10/17/2011 11:44:20 PM, error: Service Control Manager [7034] - The Protexis Licensing V2 service terminated unexpectedly. It has done this 1 time(s).
10/17/2011 11:44:20 PM, error: Service Control Manager [7034] - The Process Monitor service terminated unexpectedly. It has done this 1 time(s).
10/17/2011 11:44:20 PM, error: Service Control Manager [7034] - The NVIDIA Display Driver Service service terminated unexpectedly. It has done this 1 time(s).
10/17/2011 11:44:20 PM, error: Service Control Manager [7034] - The FABS - Helping agent for MAGIX media database service terminated unexpectedly. It has done this 1 time(s).
10/17/2011 11:44:20 PM, error: Service Control Manager [7034] - The Cyberlink RichVideo Service(CRVS) service terminated unexpectedly. It has done this 1 time(s).
10/17/2011 11:44:20 PM, error: Service Control Manager [7034] - The ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## service terminated unexpectedly. It has done this 1 time(s).
10/17/2011 11:30:58 PM, error: Windows Update Agent [20] - Installation Failure: Windows failed to install the following update with error 0x800706be: Windows XP Service Pack 3 (KB936929).
10/15/2011 9:14:36 AM, error: sr [1] - The System Restore filter encountered the unexpected error '0xC000007F' while processing the file 'desktop.ini' on the volume 'HarddiskVolume5'. It has stopped monitoring the volume.
10/15/2011 12:36:03 AM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: Aavmker4 AFD aswRdr aswSP aswTdi Fips IPSec MRxSmb NetBIOS NetBT Processor RasAcd Rdbss SCDEmu Tcpip vsdatant
10/15/2011 12:36:03 AM, error: Service Control Manager [7001] - The TrueVector Internet Monitor service depends on the vsdatant service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2011 12:36:03 AM, error: Service Control Manager [7001] - The TCP/IP NetBIOS Helper service depends on the AFD service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2011 12:36:03 AM, error: Service Control Manager [7001] - The IPSEC Services service depends on the IPSEC driver service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2011 12:36:03 AM, error: Service Control Manager [7001] - The DNS Client service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2011 12:36:03 AM, error: Service Control Manager [7001] - The DHCP Client service depends on the NetBios over Tcpip service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2011 12:36:03 AM, error: Service Control Manager [7001] - The ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.
10/15/2011 1:26:19 AM, error: Service Control Manager [7023] - The Boot Update service terminated with the following error: The specified module could not be found.
10/15/2011 1:26:19 AM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the Vodafone Mobile Broadband Service service to connect.
10/15/2011 1:26:19 AM, error: Service Control Manager [7000] - The TrueVector Internet Monitor service failed to start due to the following error: Access is denied.
10/15/2011 1:26:19 AM, error: Service Control Manager [7000] - The avast! iAVS4 Control Service service failed to start due to the following error: The system cannot find the file specified.
10/15/2011 1:26:19 AM, error: Service Control Manager [7000] - The avast! Antivirus service failed to start due to the following error: The system cannot find the file specified.
10/15/2011 1:22:25 AM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
10/15/2011 1:21:45 AM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service netman with arguments "" in order to run the server: {BA126AE5-2166-11D1-B1D0-00805FC1270E}
10/15/2011 1:03:00 AM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service StiSvc with arguments "" in order to run the server: {A1F4E726-8CF1-11D1-BF92-0060081ED811}
10/14/2011 9:56:36 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: Aavmker4 AFD aswSP aswTdi Fips IPSec MRxSmb NetBIOS NetBT Processor RasAcd Rdbss SCDEmu Tcpip vsdatant
10/14/2011 9:52:41 PM, error: NtServicePack [4373] - Windows XP Service Pack 3 installation failed.
An internal error occurred.
10/14/2011 3:47:00 AM, error: Windows Update Agent [20] - Installation Failure: Windows failed to install the following update with error 0x8007054f: Security Update for Windows XP (KB959426).
10/14/2011 3:46:57 AM, error: NtServicePack [4373] - Windows XP KB959426 installation failed.
An internal error occurred.
10/14/2011 3:46:38 AM, error: Windows Update Agent [20] - Installation Failure: Windows failed to install the following update with error 0x8007054f: Security Update for Windows XP (KB956572).
10/14/2011 3:46:36 AM, error: NtServicePack [4373] - Windows XP KB956572 installation failed.
An internal error occurred.
10/12/2011 12:29:48 PM, error: ipnathlp [32003] - The Network Address Translator (NAT) was unable to request an operation of the kernel-mode translation module. This may indicate misconfiguration, insufficient resources, or an internal error. The data is the error code.
10/12/2011 12:29:48 PM, error: Dhcp [1002] - The IP address lease 41.31.75.24 for the Network Card with network address 001E101F3976 has been denied by the DHCP server 41.26.118.190 (The DHCP Server sent a DHCPNACK message).
10/12/2011 12:25:24 PM, error: Dhcp [1002] - The IP address lease 41.27.7.149 for the Network Card with network address 001E101F3976 has been denied by the DHCP server 41.31.75.17 (The DHCP Server sent a DHCPNACK message).
.
==== End Of File ===========================
Thank you!