Jump to content

Im infected what do I do


Recommended Posts

.

UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.

IF REQUESTED, ZIP IT UP & ATTACH IT

.

DDS (Ver_2011-08-26.01)

.

Microsoft Windows XP Professional

Boot Device: \Device\HarddiskVolume1

Install Date: 5/6/2011 4:14:53 PM

System Uptime: 4/3/2012 11:44:54 PM (0 hours ago)

.

Motherboard: Dell Inc. | | 0T7495

Processor: Intel® Xeon CPU 2.80GHz | Microprocessor | 2793/800mhz

.

==== Disk Partitions =========================

.

C: is FIXED (NTFS) - 74 GiB total, 54.737 GiB free.

D: is CDROM ()

E: is Removable

P: is NetworkDisk (*NT5CSC) - 74 GiB total, 54.737 GiB free.

.

==== Disabled Device Manager Items =============

.

Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}

Description: Ethernet Controller

Device ID: PCI\VEN_8086&DEV_1026&SUBSYS_01731028&REV_04\5&BEC93C7&0&700210

Manufacturer:

Name: Ethernet Controller

PNP Device ID: PCI\VEN_8086&DEV_1026&SUBSYS_01731028&REV_04\5&BEC93C7&0&700210

Service:

.

Class GUID: {4D36E96B-E325-11CE-BFC1-08002BE10318}

Description: Standard 101/102-Key or Microsoft Natural PS/2 Keyboard

Device ID: ACPI\PNP0303\4&1506BB2E&0

Manufacturer: (Standard keyboards)

Name: Standard 101/102-Key or Microsoft Natural PS/2 Keyboard

PNP Device ID: ACPI\PNP0303\4&1506BB2E&0

Service: i8042prt

.

Class GUID: {4D36E96F-E325-11CE-BFC1-08002BE10318}

Description: PS/2 Compatible Mouse

Device ID: ACPI\PNP0F13\4&1506BB2E&0

Manufacturer: Microsoft

Name: PS/2 Compatible Mouse

PNP Device ID: ACPI\PNP0F13\4&1506BB2E&0

Service: i8042prt

.

==== System Restore Points ===================

.

RP190: 12/14/2011 9:38:53 AM - Restore Operation

RP191: 12/14/2011 12:53:55 PM - Restore Operation

RP192: 4/3/2012 8:39:20 PM - System Checkpoint

.

==== Installed Programs ======================

.

Adobe AIR

Adobe Flash Player 10 ActiveX

Adobe Reader X (10.0.1)

ArcSoft PhotoStudio 5.5

AVG 2011

Canon CanoScan Toolbox 4.5

Compatibility Pack for the 2007 Office system

Electronic Service Control

Explorer Shafer's Back Office Client

Explorer Shafers Back Office Client

Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)

Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)

Hotfix for Windows Media Format 11 SDK (KB929399)

Hotfix for Windows Media Player 11 (KB939683)

Hotfix for Windows XP (KB2443685)

Hotfix for Windows XP (KB2570791)

Hotfix for Windows XP (KB915800-v4)

Hotfix for Windows XP (KB952287)

Hotfix for Windows XP (KB954550-v5)

Hotfix for Windows XP (KB961118)

Java Auto Updater

Java 6 Update 23

Malwarebytes Anti-Malware version 1.60.1.1000

Manual CanoScan LiDE 35

Microsoft .NET Framework 1.1

Microsoft .NET Framework 1.1 Security Update (KB2572067)

Microsoft .NET Framework 2.0 Service Pack 2

Microsoft .NET Framework 3.0 Service Pack 2

Microsoft .NET Framework 3.5 SP1

Microsoft .NET Framework 4 Client Profile

Microsoft Base Smart Card Cryptographic Service Provider Package

Microsoft Compression Client Pack 1.0 for Windows XP

Microsoft Internationalized Domain Names Mitigation APIs

Microsoft National Language Support Downlevel APIs

Microsoft Office Standard Edition 2003

Microsoft User-Mode Driver Framework Feature Pack 1.0

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148

OmniPage SE 2.0

Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)

Security Update for Microsoft Windows (KB2564958)

Security Update for Windows Internet Explorer 7 (KB2482017)

Security Update for Windows Internet Explorer 7 (KB2497640)

Security Update for Windows Internet Explorer 7 (KB982381)

Security Update for Windows Internet Explorer 8 (KB2482017)

Security Update for Windows Internet Explorer 8 (KB2497640)

Security Update for Windows Internet Explorer 8 (KB2510531)

Security Update for Windows Internet Explorer 8 (KB2530548)

Security Update for Windows Internet Explorer 8 (KB2544521)

Security Update for Windows Internet Explorer 8 (KB2559049)

Security Update for Windows Internet Explorer 8 (KB2586448)

Security Update for Windows Internet Explorer 8 (KB982381)

Security Update for Windows Media Player (KB2378111)

Security Update for Windows Media Player (KB952069)

Security Update for Windows Media Player (KB954155)

Security Update for Windows Media Player (KB973540)

Security Update for Windows Media Player (KB975558)

Security Update for Windows Media Player (KB978695)

Security Update for Windows Media Player 11 (KB954154)

Security Update for Windows Search 4 - KB963093

Security Update for Windows XP (KB2079403)

Security Update for Windows XP (KB2115168)

Security Update for Windows XP (KB2121546)

Security Update for Windows XP (KB2229593)

Security Update for Windows XP (KB2296011)

Security Update for Windows XP (KB2347290)

Security Update for Windows XP (KB2360937)

Security Update for Windows XP (KB2387149)

Security Update for Windows XP (KB2393802)

Security Update for Windows XP (KB2412687)

Security Update for Windows XP (KB2419632)

Security Update for Windows XP (KB2423089)

Security Update for Windows XP (KB2440591)

Security Update for Windows XP (KB2443105)

Security Update for Windows XP (KB2476490)

Security Update for Windows XP (KB2476687)

Security Update for Windows XP (KB2478960)

Security Update for Windows XP (KB2478971)

Security Update for Windows XP (KB2479943)

Security Update for Windows XP (KB2481109)

Security Update for Windows XP (KB2483185)

Security Update for Windows XP (KB2485663)

Security Update for Windows XP (KB2491683)

Security Update for Windows XP (KB2497640)

Security Update for Windows XP (KB2503658)

Security Update for Windows XP (KB2503665)

Security Update for Windows XP (KB2506212)

Security Update for Windows XP (KB2506223)

Security Update for Windows XP (KB2507618)

Security Update for Windows XP (KB2507938)

Security Update for Windows XP (KB2508272)

Security Update for Windows XP (KB2508429)

Security Update for Windows XP (KB2509553)

Security Update for Windows XP (KB2510581)

Security Update for Windows XP (KB2511455)

Security Update for Windows XP (KB2524375)

Security Update for Windows XP (KB2535512)

Security Update for Windows XP (KB2536276-v2)

Security Update for Windows XP (KB2536276)

Security Update for Windows XP (KB2544893-v2)

Security Update for Windows XP (KB2544893)

Security Update for Windows XP (KB2555917)

Security Update for Windows XP (KB2562937)

Security Update for Windows XP (KB2566454)

Security Update for Windows XP (KB2567053)

Security Update for Windows XP (KB2567680)

Security Update for Windows XP (KB2570222)

Security Update for Windows XP (KB2570947)

Security Update for Windows XP (KB2592799)

Security Update for Windows XP (KB923561)

Security Update for Windows XP (KB923789)

Security Update for Windows XP (KB941569)

Security Update for Windows XP (KB946648)

Security Update for Windows XP (KB950762)

Security Update for Windows XP (KB950974)

Security Update for Windows XP (KB951376-v2)

Security Update for Windows XP (KB952004)

Security Update for Windows XP (KB952954)

Security Update for Windows XP (KB954459)

Security Update for Windows XP (KB956572)

Security Update for Windows XP (KB956744)

Security Update for Windows XP (KB956802)

Security Update for Windows XP (KB956844)

Security Update for Windows XP (KB958644)

Security Update for Windows XP (KB959426)

Security Update for Windows XP (KB960803)

Security Update for Windows XP (KB960859)

Security Update for Windows XP (KB961501)

Security Update for Windows XP (KB969059)

Security Update for Windows XP (KB970430)

Security Update for Windows XP (KB971657)

Security Update for Windows XP (KB972270)

Security Update for Windows XP (KB973507)

Security Update for Windows XP (KB973869)

Security Update for Windows XP (KB973904)

Security Update for Windows XP (KB974112)

Security Update for Windows XP (KB974318)

Security Update for Windows XP (KB974392)

Security Update for Windows XP (KB974571)

Security Update for Windows XP (KB975025)

Security Update for Windows XP (KB975467)

Security Update for Windows XP (KB975560)

Security Update for Windows XP (KB975562)

Security Update for Windows XP (KB975713)

Security Update for Windows XP (KB977816)

Security Update for Windows XP (KB977914)

Security Update for Windows XP (KB978338)

Security Update for Windows XP (KB978542)

Security Update for Windows XP (KB978601)

Security Update for Windows XP (KB978706)

Security Update for Windows XP (KB979309)

Security Update for Windows XP (KB979482)

Security Update for Windows XP (KB979687)

Security Update for Windows XP (KB980436)

Security Update for Windows XP (KB981322)

Security Update for Windows XP (KB981997)

Security Update for Windows XP (KB982132)

Security Update for Windows XP (KB982665)

Shadow Copy Client

Update for Microsoft .NET Framework 3.5 SP1 (KB963707)

Update for Microsoft Windows (KB971513)

Update for Windows Internet Explorer 8 (KB2447568)

Update for Windows XP (KB2345886)

Update for Windows XP (KB2467659)

Update for Windows XP (KB2492386)

Update for Windows XP (KB2541763)

Update for Windows XP (KB2607712)

Update for Windows XP (KB2616676)

Update for Windows XP (KB2641690)

Update for Windows XP (KB943729)

Update for Windows XP (KB951978)

Update for Windows XP (KB955759)

Update for Windows XP (KB967715)

Update for Windows XP (KB968389)

Update for Windows XP (KB971029)

Update for Windows XP (KB971737)

Update for Windows XP (KB973687)

Update for Windows XP (KB973815)

WebFldrs XP

Windows Genuine Advantage Notifications (KB905474)

Windows Genuine Advantage Validation Tool (KB892130)

Windows Internet Explorer 8

Windows Media Format 11 runtime

Windows Media Player 11

Windows XP Service Pack 3

.

==== Event Viewer Messages From Past Week ========

.

4/3/2012 9:48:28 PM, error: E100B [4] - Adapter Intel® PRO/100 S Server Adapter: Adapter Link Down

4/3/2012 7:54:00 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: i8042prt PCIIde

4/3/2012 7:09:29 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}

4/3/2012 7:03:54 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: Avgldx86 Avgmfx86 Fips i8042prt intelppm

4/3/2012 7:03:07 PM, error: Ntfs [55] - The file system structure on the disk is corrupt and unusable. Please run the chkdsk utility on the volume C:.

4/3/2012 7:02:52 PM, error: NETLOGON [5719] - No Domain Controller is available for domain bcha due to the following: There are currently no logon servers available to service the logon request. . Make sure that the computer is connected to the network and try again. If the problem persists, please contact your domain administrator.

4/3/2012 6:59:04 PM, error: Service Control Manager [7023] - The Network Location Awareness (NLA) service terminated with the following error: The specified procedure could not be found.

4/3/2012 6:50:19 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: i8042prt

4/3/2012 6:49:58 PM, error: Print [33] - The PrintQueue Container could not be found because the DNS Domain name could not be retrieved. Error: 54b

.

==== End Of File ===========================

.

DDS (Ver_2011-08-26.01) - NTFSx86

Internet Explorer: 8.0.6001.18702

Run by bchaservice at 23:50:54 on 2012-04-03

Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.3070.2484 [GMT -4:00]

.

AV: AVG Anti-Virus Business Edition 2011 *Enabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}

.

============== Running Processes ===============

.

C:\PROGRA~1\AVG\AVG10\avgchsvx.exe

C:\PROGRA~1\AVG\AVG10\avgrsx.exe

C:\WINDOWS\system32\svchost -k DcomLaunch

svchost.exe

C:\WINDOWS\System32\svchost.exe -k netsvcs

svchost.exe

svchost.exe

C:\WINDOWS\system32\spoolsv.exe

svchost.exe

C:\Program Files\AVG\AVG10\avgwdsvc.exe

C:\Program Files\Java\jre6\bin\jqs.exe

C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe

C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE

C:\WINDOWS\system32\svchost.exe -k imgsvc

C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\9.0.1\ToolbarUpdater.exe

C:\Program Files\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe

C:\Program Files\AVG\AVG10\avgam.exe

C:\Program Files\AVG\AVG10\avgnsx.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\AVG\AVG10\avgcsrvx.exe

C:\Program Files\AVG\AVG10\avgtray.exe

C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe

C:\Program Files\AVG Secure Search\vprot.exe

C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\AVG\AVG10\Identity Protection\agent\bin\avgidsmonitor.exe

.

============== Pseudo HJT Report ===============

.

uStart Page = hxxp://www.bing.com/

uDefault_Page_URL = hxxp://companyweb

uURLSearchHooks: H - No File

mURLSearchHooks: H - No File

BHO: {02478D38-C3F9-4efb-9B51-7695ECA05670} - No File

BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll

BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg10\avgssie.dll

BHO: AVG Security Toolbar: {95b7759c-8c7f-4bf1-b163-73684a933233} - c:\program files\avg secure search\9.0.0.18\AVG Secure Search_toolbar.dll

BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll

BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

TB: {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - No File

TB: AVG Security Toolbar: {95b7759c-8c7f-4bf1-b163-73684a933233} - c:\program files\avg secure search\9.0.0.18\AVG Secure Search_toolbar.dll

TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File

{e7df6bff-55a5-4eb7-a673-4ed3e9456d39}

uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe

mRun: [synchronization Manager] %SystemRoot%\system32\mobsync.exe /logon

mRun: [AVG_TRAY] c:\program files\avg\avg10\avgtray.exe

mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 10.0\reader\Reader_sl.exe"

mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"

mRun: [OpwareSE2] "c:\program files\scansoft\omnipagese2.0\OpwareSE2.exe"

mRun: [vProt] "c:\program files\avg secure search\vprot.exe"

mRun: [Malwarebytes' Anti-Malware] "c:\program files\malwarebytes' anti-malware\mbamgui.exe" /starttray

uPolicies-explorer: DisablePersonalDirChange = 1 (0x1)

mPolicies-explorer: NoWelcomeScreen = 1 (0x1)

IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office11\EXCEL.EXE/3000

IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe

IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe

IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~4\office11\REFIEBAR.DLL

LSP: mswsock.dll

Trusted Zone: office.com

DPF: {02BCC737-B171-4746-94C9-0D8A0B2C0089} - hxxp://office.microsoft.com/sites/production/ieawsdc32.cab

DPF: {485D813E-EE26-4DF8-9FAF-DEDF2885306E} - hxxp://bchaserver/connectcomputer/nshelp.dll

DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab

DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab

DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab

DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

TCP: DhcpNameServer = 10.0.1.1

TCP: Interfaces\{A97F9C48-8F85-4B33-9B86-5BE7D8DE4F50} : DhcpNameServer = 10.0.1.1

Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg10\avgpp.dll

Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files\common files\avg secure search\viprotocolinstaller\9.0.1\ViProtocol.dll

SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll

.

============= SERVICES / DRIVERS ===============

.

R0 AVGIDSEH;AVGIDSEH;c:\windows\system32\drivers\AVGIDSEH.sys [2011-2-22 22992]

R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [2011-3-16 32592]

R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [2011-1-7 248656]

R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\drivers\avgmfx86.sys [2011-3-1 34896]

R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [2011-4-5 297168]

R2 AVGIDSAgent;AVGIDSAgent;c:\program files\avg\avg10\identity protection\agent\bin\AVGIDSAgent.exe [2011-8-18 7390560]

R2 avgwd;AVG WatchDog;c:\program files\avg\avg10\avgwdsvc.exe [2011-2-8 269520]

R2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2012-4-3 652360]

R2 vToolbarUpdater;vToolbarUpdater;c:\program files\common files\avg secure search\vtoolbarupdater\9.0.1\ToolbarUpdater.exe [2011-12-1 855904]

R3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\AVGIDSDriver.sys [2011-4-14 134480]

R3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\drivers\AVGIDSFilter.sys [2011-2-10 24144]

R3 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\AVGIDSShim.sys [2011-2-10 27216]

R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-4-3 20464]

S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]

S3 AVG Security Toolbar Service;AVG Security Toolbar Service;c:\program files\avg\avg10\toolbar\ToolbarBroker.exe [2011-5-12 167264]

S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]

.

=============== Created Last 30 ================

.

2012-04-04 02:25:57 116224 -c--a-w- c:\windows\system32\dllcache\xrxwiadr.dll

2012-04-04 02:25:52 23040 -c--a-w- c:\windows\system32\dllcache\xrxwbtmp.dll

2012-04-04 02:25:51 18944 -c--a-w- c:\windows\system32\dllcache\xrxscnui.dll

2012-04-04 02:25:46 27648 -c--a-w- c:\windows\system32\dllcache\xrxftplt.exe

2012-04-04 02:25:41 4608 -c--a-w- c:\windows\system32\dllcache\xrxflnch.exe

2012-04-04 02:25:02 99865 -c--a-w- c:\windows\system32\dllcache\xlog.exe

2012-04-04 02:24:56 16970 -c--a-w- c:\windows\system32\dllcache\xem336n5.sys

2012-04-04 02:24:54 19455 -c--a-w- c:\windows\system32\dllcache\wvchntxx.sys

2012-04-04 02:24:50 19200 -c--a-w- c:\windows\system32\dllcache\wstcodec.sys

2012-04-04 02:24:49 12063 -c--a-w- c:\windows\system32\dllcache\wsiintxx.sys

2012-04-04 02:24:46 8192 -c--a-w- c:\windows\system32\dllcache\wshirda.dll

2012-04-04 02:24:26 8832 -c--a-w- c:\windows\system32\dllcache\wmiacpi.sys

2012-04-04 02:24:22 154624 -c--a-w- c:\windows\system32\dllcache\wlluc48.sys

2012-04-04 02:24:17 34890 -c--a-w- c:\windows\system32\dllcache\wlandrv2.sys

2012-04-04 02:24:05 771581 -c--a-w- c:\windows\system32\dllcache\winacisa.sys

2012-04-04 02:22:57 397502 -c--a-w- c:\windows\system32\dllcache\vpctcom.sys

2012-04-04 02:22:51 604253 -c--a-w- c:\windows\system32\dllcache\vmodem.sys

2012-04-04 02:22:46 249402 -c--a-w- c:\windows\system32\dllcache\vinwm.sys

2012-04-04 02:22:41 24576 -c--a-w- c:\windows\system32\dllcache\viairda.sys

2012-04-04 02:22:39 5376 -c--a-w- c:\windows\system32\dllcache\viaide.sys

2012-04-04 02:22:36 53760 -c--a-w- c:\windows\system32\dllcache\vfwwdm32.dll

2012-04-04 02:22:30 687999 -c--a-w- c:\windows\system32\dllcache\usrwdxjs.sys

2012-04-04 02:22:25 765884 -c--a-w- c:\windows\system32\dllcache\usrti.sys

2012-04-04 02:22:19 113762 -c--a-w- c:\windows\system32\dllcache\usrpda.sys

2012-04-04 02:22:15 7556 -c--a-w- c:\windows\system32\dllcache\usroslba.sys

2012-04-04 02:22:10 224802 -c--a-w- c:\windows\system32\dllcache\usr1807a.sys

2012-04-04 02:22:05 794399 -c--a-w- c:\windows\system32\dllcache\usr1806v.sys

2012-04-04 02:22:00 793598 -c--a-w- c:\windows\system32\dllcache\usr1806.sys

2012-04-04 02:20:59 216064 -c--a-w- c:\windows\system32\dllcache\um34scan.dll

2012-04-04 02:20:54 36736 -c--a-w- c:\windows\system32\dllcache\ultra.sys

2012-04-04 02:20:47 11520 -c--a-w- c:\windows\system32\dllcache\twotrack.sys

2012-04-04 02:20:36 166784 -c--a-w- c:\windows\system32\dllcache\tridxpm.sys

2012-04-04 02:20:32 525568 -c--a-w- c:\windows\system32\dllcache\tridxp.dll

2012-04-04 02:20:28 159232 -c--a-w- c:\windows\system32\dllcache\tridkbm.sys

2012-04-04 02:20:23 440576 -c--a-w- c:\windows\system32\dllcache\tridkb.dll

2012-04-04 02:20:19 222336 -c--a-w- c:\windows\system32\dllcache\trid3dm.sys

2012-04-04 02:20:14 315520 -c--a-w- c:\windows\system32\dllcache\trid3d.dll

2012-04-04 02:20:09 34375 -c--a-w- c:\windows\system32\dllcache\tpro4.sys

2012-04-04 02:20:04 42496 -c--a-w- c:\windows\system32\dllcache\tp4res.dll

2012-04-04 02:20:03 82944 -c--a-w- c:\windows\system32\dllcache\tp4mon.exe

2012-04-04 02:19:59 31744 -c--a-w- c:\windows\system32\dllcache\tp4.dll

2012-04-04 02:19:53 4992 -c--a-w- c:\windows\system32\dllcache\toside.sys

2012-04-04 02:19:49 230912 -c--a-w- c:\windows\system32\dllcache\tosdvd03.sys

2012-04-04 02:19:44 241664 -c--a-w- c:\windows\system32\dllcache\tosdvd02.sys

2012-04-04 02:19:39 28232 -c--a-w- c:\windows\system32\dllcache\tos4mo.sys

2012-04-04 02:19:33 123995 -c--a-w- c:\windows\system32\dllcache\tjisdn.sys

2012-04-04 02:19:26 138528 -c--a-w- c:\windows\system32\dllcache\tgiulnt5.sys

2012-04-04 02:19:21 81408 -c--a-w- c:\windows\system32\dllcache\tgiul50.dll

2012-04-04 02:19:20 149376 -c--a-w- c:\windows\system32\dllcache\tffsport.sys

2012-04-04 02:19:14 17129 -c--a-w- c:\windows\system32\dllcache\tdkcd31.sys

2012-04-04 02:19:10 37961 -c--a-w- c:\windows\system32\dllcache\tdk100b.sys

2012-04-04 02:19:03 30464 -c--a-w- c:\windows\system32\dllcache\tbatm155.sys

2012-04-04 02:17:57 41472 -c--a-w- c:\windows\system32\dllcache\sw_effct.dll

2012-04-04 02:17:55 15232 -c--a-w- c:\windows\system32\dllcache\streamip.sys

2012-04-04 02:17:50 155648 -c--a-w- c:\windows\system32\dllcache\stlnprop.dll

2012-04-04 02:17:46 53248 -c--a-w- c:\windows\system32\dllcache\stlncoin.dll

2012-04-04 02:17:41 285760 -c--a-w- c:\windows\system32\dllcache\stlnata.sys

2012-04-04 02:17:36 16896 -c--a-w- c:\windows\system32\dllcache\stcusb.sys

2012-04-04 02:17:29 48736 -c--a-w- c:\windows\system32\dllcache\srwlnd5.sys

2012-04-04 02:17:24 99328 -c--a-w- c:\windows\system32\dllcache\srusd.dll

2012-04-04 02:17:16 24660 -c--a-w- c:\windows\system32\dllcache\spxupchk.dll

2012-04-04 02:17:13 6272 -c--a-w- c:\windows\system32\dllcache\splitter.sys

2012-04-04 02:17:09 61824 -c--a-w- c:\windows\system32\dllcache\speed.sys

2012-04-04 02:17:04 106584 -c--a-w- c:\windows\system32\dllcache\spdports.dll

2012-04-04 02:17:00 19072 -c--a-w- c:\windows\system32\dllcache\sparrow.sys

2012-04-04 02:15:58 6912 -c--a-w- c:\windows\system32\dllcache\smbclass.sys

2012-04-04 02:14:57 150144 -c--a-w- c:\windows\system32\dllcache\sis6306v.dll

2012-04-04 02:14:53 68608 -c--a-w- c:\windows\system32\dllcache\sis6306p.sys

2012-04-04 02:14:49 252032 -c--a-w- c:\windows\system32\dllcache\sis300iv.dll

2012-04-04 02:14:45 101760 -c--a-w- c:\windows\system32\dllcache\sis300ip.sys

2012-04-04 02:14:34 161568 -c--a-w- c:\windows\system32\dllcache\sgsmusb.sys

2012-04-04 02:14:30 18400 -c--a-w- c:\windows\system32\dllcache\sgsmld.sys

2012-04-04 02:14:26 98080 -c--a-w- c:\windows\system32\dllcache\sgiulnt5.sys

2012-04-04 02:14:22 386560 -c--a-w- c:\windows\system32\dllcache\sgiul50.dll

2012-04-04 02:14:18 36480 -c--a-w- c:\windows\system32\dllcache\sfmanm.sys

2012-04-04 02:14:12 6784 -c--a-w- c:\windows\system32\dllcache\serscan.sys

2012-04-04 02:14:08 17664 -c--a-w- c:\windows\system32\dllcache\sermouse.sys

2012-04-04 02:14:01 6912 -c--a-w- c:\windows\system32\dllcache\seaddsmc.sys

2012-04-04 02:12:59 62496 -c--a-w- c:\windows\system32\dllcache\s3mtrio.dll

2012-04-04 02:11:55 86097 -c--a-w- c:\windows\system32\dllcache\reslog32.dll

2012-04-04 02:11:43 19584 -c--a-w- c:\windows\system32\dllcache\rasirda.sys

2012-04-04 02:11:38 714762 -c--a-w- c:\windows\system32\dllcache\r2mdmkxx.sys

2012-04-04 02:11:34 899146 -c--a-w- c:\windows\system32\dllcache\r2mdkxga.sys

2012-04-04 02:11:29 41472 -c--a-w- c:\windows\system32\dllcache\qvusd.dll

2012-04-04 02:11:25 3328 -c--a-w- c:\windows\system32\dllcache\qv2kux.sys

2012-04-04 02:11:19 49024 -c--a-w- c:\windows\system32\dllcache\ql1280.sys

2012-04-04 02:11:15 40448 -c--a-w- c:\windows\system32\dllcache\ql1240.sys

2012-04-04 02:11:11 45312 -c--a-w- c:\windows\system32\dllcache\ql12160.sys

2012-04-04 02:11:07 33152 -c--a-w- c:\windows\system32\dllcache\ql10wnt.sys

2012-04-04 02:11:03 40320 -c--a-w- c:\windows\system32\dllcache\ql1080.sys

2012-04-04 02:11:02 6016 -c--a-w- c:\windows\system32\dllcache\qic157.sys

2012-04-04 02:09:57 92416 -c--a-w- c:\windows\system32\dllcache\phildec.sys

2012-04-04 02:08:52 41984 -c--a-w- c:\windows\system32\dllcache\ovui2rc.dll

2012-04-04 02:07:59 54528 -c--a-w- c:\windows\system32\dllcache\opl3sax.sys

2012-04-04 02:07:55 61696 -c--a-w- c:\windows\system32\dllcache\ohci1394.sys

2012-04-04 02:07:47 198144 -c--a-w- c:\windows\system32\dllcache\nv3.sys

2012-04-04 02:07:42 123776 -c--a-w- c:\windows\system32\dllcache\nv3.dll

2012-04-04 02:07:34 51552 -c--a-w- c:\windows\system32\dllcache\ntgrip.sys

2012-04-04 02:07:28 9344 -c--a-w- c:\windows\system32\dllcache\ntapm.sys

2012-04-04 02:07:24 7552 -c--a-w- c:\windows\system32\dllcache\nsmmc.sys

2012-04-04 02:07:23 28672 -c--a-w- c:\windows\system32\dllcache\nscirda.sys

2012-04-04 02:07:17 87040 -c--a-w- c:\windows\system32\dllcache\nm6wdm.sys

2012-04-04 02:07:13 126080 -c--a-w- c:\windows\system32\dllcache\nm5a2wdm.sys

2012-04-04 02:07:07 32840 -c--a-w- c:\windows\system32\dllcache\ngrpci.sys

2012-04-04 02:07:06 132695 -c--a-w- c:\windows\system32\dllcache\netwlan5.sys

2012-04-04 02:07:00 65278 -c--a-w- c:\windows\system32\dllcache\netflx3.sys

2012-04-04 02:05:57 21888 -c--a-w- c:\windows\system32\dllcache\mxcard.sys

2012-04-04 02:05:52 103296 -c--a-w- c:\windows\system32\dllcache\mtxvideo.sys

2012-04-04 02:05:43 5504 -c--a-w- c:\windows\system32\dllcache\mstee.sys

2012-04-04 02:05:42 49024 -c--a-w- c:\windows\system32\dllcache\mstape.sys

2012-04-04 02:05:35 12416 -c--a-w- c:\windows\system32\dllcache\msriffwv.sys

2012-04-04 02:05:34 4992 -c--a-w- c:\windows\system32\dllcache\mspqm.sys

2012-04-04 02:05:33 5376 -c--a-w- c:\windows\system32\dllcache\mspclock.sys

2012-04-04 02:05:26 2944 -c--a-w- c:\windows\system32\dllcache\msmpu401.sys

2012-04-04 02:05:24 7552 -c--a-w- c:\windows\system32\dllcache\mskssrv.sys

2012-04-04 02:05:23 22016 -c--a-w- c:\windows\system32\dllcache\msircomm.sys

2012-04-04 02:05:09 35200 -c--a-w- c:\windows\system32\dllcache\msgame.sys

2012-04-04 02:05:05 6016 -c--a-w- c:\windows\system32\dllcache\msfsio.sys

2012-04-04 02:05:03 51200 -c--a-w- c:\windows\system32\dllcache\msdv.sys

2012-04-04 02:04:53 17280 -c--a-w- c:\windows\system32\dllcache\mraid35x.sys

2012-04-04 02:04:46 15232 -c--a-w- c:\windows\system32\dllcache\mpe.sys

2012-04-04 02:04:40 16128 -c--a-w- c:\windows\system32\dllcache\modemcsa.sys

2012-04-04 02:04:31 6528 -c--a-w- c:\windows\system32\dllcache\miniqic.sys

2012-04-04 02:04:26 320384 -c--a-w- c:\windows\system32\dllcache\mgaum.sys

2012-04-04 02:04:22 235648 -c--a-w- c:\windows\system32\dllcache\mgaud.dll

2012-04-04 02:04:20 26112 -c--a-w- c:\windows\system32\dllcache\memstpci.sys

2012-04-04 02:04:17 47616 -c--a-w- c:\windows\system32\dllcache\memgrp.dll

2012-04-04 02:04:13 8320 -c--a-w- c:\windows\system32\dllcache\memcard.sys

2012-04-04 02:04:08 164586 -c--a-w- c:\windows\system32\dllcache\mdgndis5.sys

2012-04-04 02:04:02 7424 -c--a-w- c:\windows\system32\dllcache\mammoth.sys

2012-04-04 02:02:59 19016 -c--a-w- c:\windows\system32\dllcache\ktc111.sys

2012-04-04 02:02:57 4096 -c--a-w- c:\windows\system32\dllcache\ksuser.dll

2012-04-04 02:02:50 37376 -c--a-w- c:\windows\system32\dllcache\kousd.dll

2012-04-04 02:02:48 172416 -c--a-w- c:\windows\system32\dllcache\kmixer.sys

2012-04-04 02:02:46 253952 -c--a-w- c:\windows\system32\dllcache\kdsusd.dll

2012-04-04 02:02:45 48640 -c--a-w- c:\windows\system32\dllcache\kdsui.dll

2012-04-04 02:02:28 8192 -c--a-w- c:\windows\system32\dllcache\kbdkor.dll

2012-04-04 02:02:25 8704 -c--a-w- c:\windows\system32\dllcache\kbdjpn.dll

2012-04-04 02:02:08 6144 -c--a-w- c:\windows\system32\dllcache\kbd106.dll

2012-04-04 02:02:05 5632 -c--a-w- c:\windows\system32\dllcache\kbd103.dll

2012-04-04 02:02:01 6144 -c--a-w- c:\windows\system32\dllcache\kbd101c.dll

2012-04-04 02:01:58 6144 -c--a-w- c:\windows\system32\dllcache\kbd101b.dll

2012-04-04 02:01:51 26624 -c--a-w- c:\windows\system32\dllcache\irstusb.sys

2012-04-04 02:01:48 18688 -c--a-w- c:\windows\system32\dllcache\irsir.sys

2012-04-04 02:01:47 28160 -c--a-w- c:\windows\system32\dllcache\irmon.dll

2012-04-04 02:01:43 23552 -c--a-w- c:\windows\system32\dllcache\irmk7.sys

2012-04-04 02:01:43 151552 -c--a-w- c:\windows\system32\dllcache\irftp.exe

2012-04-04 02:01:42 88192 -c--a-w- c:\windows\system32\dllcache\irda.sys

2012-04-04 02:01:34 45632 -c--a-w- c:\windows\system32\dllcache\ip5515.sys

2012-04-04 02:01:31 90200 -c--a-w- c:\windows\system32\dllcache\io8ports.dll

2012-04-04 02:01:27 38784 -c--a-w- c:\windows\system32\dllcache\io8.sys

2012-04-04 02:01:23 13056 -c--a-w- c:\windows\system32\dllcache\inport.sys

2012-04-04 02:01:19 16000 -c--a-w- c:\windows\system32\dllcache\ini910u.sys

2012-04-04 01:59:57 58592 -c--a-w- c:\windows\system32\dllcache\i740nt5.sys

2012-04-04 01:58:57 19456 -c--a-w- c:\windows\system32\dllcache\hr1w.dll

2012-04-04 01:57:59 907456 -c--a-w- c:\windows\system32\dllcache\hcf_msft.sys

2012-04-04 01:56:52 22090 -c--a-w- c:\windows\system32\dllcache\fem556n5.sys

2012-04-04 01:55:59 61952 -c--a-w- c:\windows\system32\dllcache\eqnloop.exe

2012-04-04 01:54:55 334208 -c--a-w- c:\windows\system32\dllcache\ds1wdm.sys

2012-04-04 01:53:58 37735 -c--a-w- c:\windows\system32\dllcache\digiasyn.sys

2012-04-04 01:52:59 3712 -c--a-w- c:\windows\system32\dllcache\ctljystk.sys

2012-04-04 01:51:59 37916 -c--a-w- c:\windows\system32\dllcache\cb102.sys

2012-04-04 01:50:57 102400 -c--a-w- c:\windows\system32\dllcache\binlsvc.dll

2012-04-04 01:49:51 142592 -c--a-w- c:\windows\system32\dllcache\aec.sys

2012-04-04 01:48:57 66048 -c--a-w- c:\windows\system32\dllcache\s3legacy.dll

2012-04-04 01:23:09 -------- d-----w- c:\program files\MALWAREBYTES ANTI-MALWARE

2012-04-03 23:48:22 -------- d-----w- c:\documents and settings\bchaservice\application data\Malwarebytes

2012-04-03 23:48:13 -------- d-----w- c:\documents and settings\all users\application data\Malwarebytes

2012-04-03 23:48:12 20464 ----a-w- c:\windows\system32\drivers\mbam.sys

2012-04-03 23:48:12 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware

2012-04-03 22:21:31 21504 -c--a-w- c:\windows\system32\dllcache\hidserv.dll

2012-04-03 22:21:31 21504 ----a-w- c:\windows\system32\hidserv.dll

2012-04-03 22:21:26 12160 -c--a-w- c:\windows\system32\dllcache\mouhid.sys

2012-04-03 22:21:26 12160 ----a-w- c:\windows\system32\drivers\mouhid.sys

2012-04-03 22:00:18 14592 -c--a-w- c:\windows\system32\dllcache\kbdhid.sys

2012-04-03 22:00:18 14592 ----a-w- c:\windows\system32\drivers\kbdhid.sys

2012-04-03 22:00:08 10368 -c--a-w- c:\windows\system32\dllcache\hidusb.sys

2012-04-03 22:00:08 10368 ----a-w- c:\windows\system32\drivers\hidusb.sys

.

==================== Find3M ====================

.

.

============= FINISH: 23:52:09.60 ===============

Link to post
Share on other sites

  • 1 month later...
  • Staff

Hi and welcome to Malwarebytes.

Please update MBAM, run a Quick Scan, and post its log.

Next, download DDS by sUBs and save it to your Desktop.

Double-click on the DDS icon and let the scan run. When it has run two logs will be produced, please post only DDS.txt directly into your reply.

Link to post
Share on other sites

Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.