Jump to content

Recommended Posts

Hello I'm new to using Malwarebytes and to this forum. I knew my system was probably infected since I could not run Malwarebytes, but I had no problem installing it. I've followed the CMD trick, coming up with DIVIDE OVERFLOW which didn't work. I scanned my computer multiple times with no prevail. I am not infected with the Antivirus 2009 infection and I do not have ZoneAlarm, just Norton 360 and SUPERAntiSpyware. Here is my DDS log:

FF - plugin: c:\program files\viewpoint\viewpoint experience technology\npViewpoint.dll

.

============= SERVICES / DRIVERS ===============

.

R0 SMR210;Symantec SMR Utility Service 2.1.0;c:\windows\system32\drivers\SMR210.SYS [2012-1-22 83064]

R0 SymDS;Symantec Data Store;c:\windows\system32\drivers\n360\0501000.01d\SymDS.sys [2011-11-20 340088]

R0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\n360\0501000.01d\SymEFA.sys [2011-11-20 744568]

R1 BHDrvx86;BHDrvx86;c:\documents and settings\all users\application data\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\n360_5.1.0.29\definitions\bashdefs\20111223.001\BHDrvx86.sys [2011-11-30 820344]

R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2011-7-22 12880]

R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2011-7-12 67664]

R1 SymIRON;Symantec Iron Driver;c:\windows\system32\drivers\n360\0501000.01d\Ironx86.sys [2011-11-20 136312]

R2 !SASCORE;SAS Core Service;c:\program files\superantispyware\SASCore.exe [2011-8-11 116608]

R2 N360;Norton 360;c:\program files\norton 360\engine\5.1.0.29\ccSvcHst.exe [2011-11-20 130008]

R2 SgtSch2Svc;Seagate Scheduler2 Service;c:\program files\common files\seagate\schedule2\schedul2.exe [2009-10-16 431456]

R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\common files\symantec shared\eengine\EraserUtilRebootDrv.sys [2011-11-20 106104]

R3 IDSxpx86;IDSxpx86;c:\documents and settings\all users\application data\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\n360_5.1.0.29\definitions\ipsdefs\20120120.002\IDSXpx86.sys [2012-1-21 356280]

R3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [2012-1-15 40776]

R3 NAVENG;NAVENG;c:\documents and settings\all users\application data\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\n360_5.1.0.29\definitions\virusdefs\20120121.009\NAVENG.SYS [2012-1-21 86136]

R3 NAVEX15;NAVEX15;c:\documents and settings\all users\application data\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\n360_5.1.0.29\definitions\virusdefs\20120121.009\NAVEX15.SYS [2012-1-21 1576312]

S0 BtHidBus;Bluetooth HID Bus Service;c:\windows\system32\drivers\BtHidBus.sys [2009-6-17 20744]

S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]

S2 gupdate;Google Update Service (gupdate);c:\program files\google\update\GoogleUpdate.exe [2010-1-28 135664]

S3 btnetBUs;Bluetooth PAN Bus Service;c:\windows\system32\drivers\btnetBus.sys [2009-6-17 29192]

S3 DNINDIS5;DNINDIS5 NDIS Protocol Driver;c:\windows\system32\DNINDIS5.sys [2009-8-29 17149]

S3 gupdatem;Google Update Service (gupdatem);c:\program files\google\update\GoogleUpdate.exe [2010-1-28 135664]

S3 IvtBtBUs;IVT Bluetooth Bus Service;c:\windows\system32\drivers\IvtBtBus.sys [2009-6-17 25480]

S3 osppsvc;Office Software Protection Platform;c:\program files\common files\microsoft shared\officesoftwareprotectionplatform\OSPPSVC.EXE [2010-1-9 4640000]

S3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\drivers\wdcsam.sys [2008-5-6 11520]

S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]

S3 WPN111;Wireless USB 2.0 Adapter with RangeMax Service;c:\windows\system32\drivers\wpn111.sys --> c:\windows\system32\drivers\WPN111.sys [?]

.

=============== Created Last 30 ================

.

2012-01-22 16:51:24 83064 ----a-w- c:\windows\system32\drivers\SMR210.SYS

2012-01-22 05:32:20 -------- d-sh--r- c:\windows\system32\MSDCSC

2012-01-21 19:46:47 -------- d-----w- c:\program files\ASIO4ALL v2

2012-01-21 19:46:07 225280 ----a-w- c:\windows\system32\rewire.dll

2012-01-21 19:46:07 -------- d-----w- c:\program files\VstPlugins

2012-01-21 19:45:51 1554944 ----a-w- c:\windows\system32\vorbis.acm

2012-01-21 19:45:42 -------- d-----w- c:\program files\Outsim

2012-01-21 19:43:00 -------- d-----w- c:\program files\Image-Line

2012-01-21 19:41:44 -------- d--h--w- c:\windows\PIF

2012-01-21 01:39:20 -------- d-----w- c:\documents and settings\nimda\application data\Antares

2012-01-21 01:34:30 -------- d-----w- c:\program files\Steinberg

2012-01-21 01:34:30 -------- d-----w- c:\program files\common files\Digidesign

2012-01-21 01:34:29 -------- d-----w- c:\program files\Antares Audio Technologies

2012-01-21 00:52:55 -------- d-----w- c:\program files\Audacity 1.3 Beta (Unicode)

2012-01-19 06:02:11 -------- d-----w- c:\documents and settings\nimda\local settings\application data\TechSmith

2012-01-16 18:13:12 -------- d-----w- c:\documents and settings\nimda\application data\DriverCure

2012-01-16 18:13:11 -------- d-----w- c:\documents and settings\nimda\application data\SpeedyPC Software

2012-01-16 18:12:56 -------- d-----w- c:\documents and settings\all users\application data\SpeedyPC Software

2012-01-16 18:09:36 -------- d-----w- c:\documents and settings\nimda\local settings\application data\SvchostViewer

2012-01-15 21:17:35 40776 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys

2012-01-15 21:17:34 -------- d-----w- c:\documents and settings\nimda\application data\Malwarebytes

2012-01-15 21:17:25 -------- d-----w- c:\documents and settings\all users\application data\Malwarebytes

2012-01-15 21:17:24 20464 ----a-w- c:\windows\system32\drivers\mbam.sys

2012-01-15 21:17:24 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware

2012-01-15 20:30:27 -------- dcsha-r- C:\cmdcons

2012-01-15 20:20:05 98816 ----a-w- c:\windows\sed.exe

2012-01-15 20:20:05 518144 ----a-w- c:\windows\SWREG.exe

2012-01-15 20:20:05 256000 ----a-w- c:\windows\PEV.exe

2012-01-15 20:20:05 208896 ----a-w- c:\windows\MBR.exe

2012-01-15 19:30:54 -------- d-----w- c:\documents and settings\nimda\application data\SUPERAntiSpyware.com

2012-01-15 19:30:16 -------- d-----w- c:\program files\SUPERAntiSpyware

2012-01-15 19:30:16 -------- d-----w- c:\documents and settings\all users\application data\SUPERAntiSpyware.com

2012-01-08 22:21:10 -------- d-----w- c:\program files\Sanny Builder 3

2012-01-07 02:49:26 -------- d-----w- c:\program files\Windows Resource Kits

2012-01-05 02:32:43 -------- d-----w- c:\documents and settings\all users\application data\Facebook Password Cracker

2012-01-03 13:10:44 182672 ----a-w- c:\program files\internet explorer\plugins\nppdf32.dll

2011-12-25 23:12:43 -------- d-----w- c:\documents and settings\all users\application data\PACE Anti-Piracy

.

==================== Find3M ====================

.

2011-12-20 03:29:48 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl

2011-11-25 21:57:19 293376 ----a-w- c:\windows\system32\winsrv.dll

2011-11-23 13:25:32 1859584 ----a-w- c:\windows\system32\win32k.sys

2011-11-20 18:50:27 60872 ----a-w- c:\windows\system32\S32EVNT1.DLL

2011-11-20 18:50:27 126584 ----a-w- c:\windows\system32\drivers\SYMEVENT.SYS

2011-11-18 12:35:08 60416 ----a-w- c:\windows\system32\packager.exe

2011-11-10 13:54:13 472808 ----a-w- c:\windows\system32\deployJava1.dll

2011-11-10 11:27:10 73728 ----a-w- c:\windows\system32\javacpl.cpl

2011-11-04 19:20:51 916992 ----a-w- c:\windows\system32\wininet.dll

2011-11-04 19:20:51 43520 ----a-w- c:\windows\system32\licmgr10.dll

2011-11-04 19:20:51 1469440 ------w- c:\windows\system32\inetcpl.cpl

2011-11-04 11:23:59 385024 ----a-w- c:\windows\system32\html.iec

2011-11-04 10:08:16 443448 ----a-w- c:\windows\system32\drivers\sptd.sys

2011-11-03 15:28:36 386048 ----a-w- c:\windows\system32\qdvd.dll

2011-11-03 15:28:36 1292288 ----a-w- c:\windows\system32\quartz.dll

2011-11-01 16:07:10 1288704 ----a-w- c:\windows\system32\ole32.dll

2011-10-28 05:31:48 33280 ----a-w- c:\windows\system32\csrsrv.dll

2011-10-25 13:37:08 2148864 ----a-w- c:\windows\system32\ntoskrnl.exe

2011-10-25 12:52:02 2027008 ----a-w- c:\windows\system32\ntkrnlpa.exe

.

============= FINISH: 9:20:50.56 ===============

Here is my attach.zip: attach.zip

Any type of help is appreciated. Thank you.

Link to post
Share on other sites

  • 2 months later...
  • 1 month later...
  • 2 weeks later...

Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.