Jump to content

Infected xp pc


Recommended Posts

So I am a bit tied up at the moment..

 

I seem to be infected with a pretty sticky virus/malware situation.

 

I tried a lot of different scanners/removal software but to no avail.

 

I would normally just import all of my important files onto my external harddrive, then wipe my computer and start over..

 

BUT I left my harddrive at someones house..and they are on vacation!

 

I also can't use the repair option with the windows installation disc; when I try to access '1: C:/Windows' it asks for an administrative password. And I don't remember giving it one! I only use about 3 different passwords for everything, and none of them give me access. So repairing isn't an option.

 

 

Here is the attach log file.

=================================================================================================================================

 

.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 11/25/2011 5:54:37 PM
System Uptime: 7/18/2013 6:10:26 AM (7 hours ago)
.
Motherboard: Dell Inc. |  | 0RY007
Processor: Intel® Pentium® Dual  CPU  E2200  @ 2.20GHz | Socket 775 | 2194/200mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 298 GiB total, 105.735 GiB free.
D: is CDROM (CDFS)
E: is CDROM ()
F: is CDROM ()
H: is Removable
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP576: 6/14/2013 1:37:44 AM - System Checkpoint
RP577: 6/14/2013 1:38:00 AM - Install LG UNITED Drivers
RP578: 6/15/2013 1:44:20 AM - System Checkpoint
RP579: 6/16/2013 2:32:22 AM - System Checkpoint
RP580: 6/17/2013 3:02:03 AM - System Checkpoint
RP581: 6/18/2013 3:51:58 AM - System Checkpoint
RP582: 6/18/2013 6:14:55 PM - Advanced System Optimizer
RP583: 6/19/2013 2:20:18 AM - Removed Synctunes Desktop
RP584: 6/20/2013 7:58:23 AM - System Checkpoint
RP585: 6/21/2013 9:55:23 AM - System Checkpoint
RP586: 6/23/2013 5:16:55 PM - MalAware Cleaning
RP587: 6/23/2013 5:41:18 PM - Installed AVG 2013
RP588: 6/23/2013 5:41:42 PM - Installed AVG 2013
RP589: 6/23/2013 7:06:27 PM - Installed AVG PC TuneUp
RP590: 6/23/2013 11:29:16 PM - Installed Any Video Converter Professional 2.XX
RP591: 6/25/2013 8:17:45 AM - System Checkpoint
RP592: 6/26/2013 11:41:37 AM - System Checkpoint
RP593: 6/27/2013 12:21:12 PM - System Checkpoint
RP594: 6/29/2013 12:46:14 AM - System Checkpoint
RP595: 6/30/2013 10:39:42 AM - System Checkpoint
RP596: 7/1/2013 3:53:04 PM - System Checkpoint
RP597: 7/3/2013 8:38:43 AM - System Checkpoint
RP598: 7/8/2013 8:35:50 PM - System Checkpoint
RP599: 7/9/2013 10:04:42 PM - System Checkpoint
RP600: 7/11/2013 5:02:39 AM - System Checkpoint
RP601: 7/12/2013 9:41:03 AM - System Checkpoint
RP602: 7/13/2013 3:24:35 PM - ??? µå·¡°ïº¼ ¿Â¶óÀÎ
RP603: 7/15/2013 2:20:46 PM - System Checkpoint
RP604: 7/16/2013 3:57:47 PM - System Checkpoint
RP605: 7/17/2013 5:25:12 PM - System Checkpoint
RP606: 7/17/2013 11:34:48 PM - Software Distribution Service 3.0
RP607: 7/18/2013 3:01:14 AM - Software Distribution Service 3.0
.
==== Installed Programs ======================
.
µå·¡°ïº¼ ¿Â¶óÀÎ
32 bit Windows Card Reader Driver
7-Zip 9.20
Acoustica Effects Pack
Acoustica Mixcraft 6
Ad-Aware Browsing Protection
Adobe AIR
Adobe Anchor Service CS3
Adobe Asset Services CS3
Adobe Audition 3.0
Adobe Bridge CS3
Adobe Bridge Start Meeting
Adobe Camera Raw 4.0
Adobe CMaps
Adobe Color Common Settings
Adobe Color EU Extra Settings
Adobe Color JA Extra Settings
Adobe Color NA Recommended Settings
Adobe Community Help
Adobe Default Language CS3
Adobe Device Central CS3
Adobe ExtendScript Toolkit 2
Adobe Flash Player 11 ActiveX
Adobe Flash Player 11 Plugin
Adobe Fonts All
Adobe Help Viewer CS3
Adobe Illustrator CS3
Adobe Linguistics CS3
Adobe Media Player
Adobe PDF Library Files
Adobe Photoshop CS5
Adobe Reader X (10.1.7)
Adobe Setup
Adobe Stock Photos CS3
Adobe Type Support
Adobe Update Manager CS3
Adobe Version Cue CS3 Client
Adobe WinSoft Linguistics Plugin
Adobe XMP Panels CS3
Advanced System Optimizer
AMD Catalyst Install Manager
Antares Autotune VST v5.09
Any Video Converter Professional 2.7.3
Apple Application Support
Apple Mobile Device Support
Apple Software Update
AudioBox USB driver
AVG 2013
AVG PC TuneUp
AVG PC TuneUp Language Pack (en-US)
Battlefield 1942
BitTorrent
BlackBerry Desktop Software 7.0
BlackBerry Device Software Updater
BlackBerry Device Software v5.0.0 for the BlackBerry 8530 smartphone
Bome's Mouse Keyboard 2.00
Bonjour
BYOND
ConvertXtoDVD 4.0.9.322
CyberLink PowerDirector
CyberLink WaveEditor
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition
Dell Resource CD
EASEUS Data Recovery Wizard Professional 4.3.6
Edraw Max 5
EZdrummer
EZXClaustrophobic
EZXDfh
EZXTwisted
EZXVintage
Facebook Video Calling 1.2.0.287
Firebird SQL Server - MAGIX Edition
Google Chrome
Google Drive
Google Earth Plug-in
Google Update Helper
Guitar Pro 5.2
High-Logic FontCreator 6.5
High Definition Audio Driver Package - KB888111
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Microsoft Visual C++ 2010 Express - ENU (KB2542054)
Hotfix for Windows Media Format 11 SDK (KB929399)
Hotfix for Windows Media Format 11 SDK (KB973442)
Hotfix for Windows Media Player 10 (KB903157)
Hotfix for Windows XP (KB2570791)
Hotfix for Windows XP (KB2633952)
Hotfix for Windows XP (KB2779562)
Hotfix for Windows XP (KB932716-v2)
Hotfix for Windows XP (KB942288-v3)
Hotfix for Windows XP (KB952287)
Hotfix for Windows XP (KB954550-v5)
Hotfix for Windows XP (KB958655-v2)
Hotfix for Windows XP (KB961118)
Hotfix for Windows XP (KB981793)
Intel® Graphics Media Accelerator Driver
Intel® Network Connections 16.7.166.0
iTunes
Java-Editor 11.17, 2012.08.26
Java Auto Updater
Java 7 Update 5
Java SE Development Kit 7 Update 3
JavaFX 2.0.3 SDK
JavaFX 2.1.1
JDownloader 0.9
Kon-Boot
Lexmark Pro700 Series
LG VZW United Drivers
License Support
Magic ISO Maker v5.4 (build 0239)
MagicDisc 2.7.106
MAGIX 3D Maker (embedded MSI)
MAGIX Screenshare
MAGIX Speed 2 (MSI)
MAGIX Video Pro X2 Download Version
Malwarebytes Anti-Malware version 1.75.0.1300
Melodyne 3.1
Menu Creator 2008 (0.8.1) & Menu Extended 0.8.3
Microsoft .NET Framework 1.0 Hotfix (KB2572066)
Microsoft .NET Framework 1.0 Hotfix (KB2604042)
Microsoft .NET Framework 1.0 Hotfix (KB2656378)
Microsoft .NET Framework 1.0 Security Update (KB2742607)
Microsoft .NET Framework 1.0 Security Update (KB2833951)
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Security Update (KB2833941)
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Extended
Microsoft .NET Framework 4 Multi-Targeting Pack
Microsoft Application Error Reporting
Microsoft Kernel-Mode Driver Framework Feature Pack 1.7
Microsoft Kernel-Mode Driver Framework Feature Pack 1.9
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office Access MUI (English) 2010
Microsoft Office Access Setup Metadata MUI (English) 2010
Microsoft Office Excel MUI (English) 2010
Microsoft Office Groove MUI (English) 2010
Microsoft Office InfoPath MUI (English) 2010
Microsoft Office OneNote MUI (English) 2010
Microsoft Office Outlook MUI (English) 2010
Microsoft Office PowerPoint MUI (English) 2010
Microsoft Office Professional Plus 2010
Microsoft Office Proof (English) 2010
Microsoft Office Proof (French) 2010
Microsoft Office Proof (Spanish) 2010
Microsoft Office Proofing (English) 2010
Microsoft Office Publisher MUI (English) 2010
Microsoft Office Shared MUI (English) 2010
Microsoft Office Shared Setup Metadata MUI (English) 2010
Microsoft Office Word MUI (English) 2010
Microsoft Security Client
Microsoft Security Essentials
Microsoft Silverlight
Microsoft Software Update for Web Folders  (English) 14
Microsoft SQL Server Compact 3.5 SP2 ENU
Microsoft User-Mode Driver Framework Feature Pack 1.9
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4974
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
Microsoft Visual C++ 2010 Express - ENU
Microsoft WinUsb 1.0
Microsoft_VC80_ATL_x86
Microsoft_VC80_CRT_x86
Microsoft_VC80_MFC_x86
Microsoft_VC80_MFCLOC_x86
Microsoft_VC90_ATL_x86
Microsoft_VC90_CRT_x86
Microsoft_VC90_MFC_x86
MIDI Yoke
Minecraft 1.5.2 1.5.2
MixiDJ V37 Toolbar
Mozilla Firefox 22.0 (x86 en-US)
Mozilla Maintenance Service
Mozilla Thunderbird 17.0.7 (x86 en-US)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 6 Service Pack 2 (KB973686)
Music Manager
Native Instruments Battery 3
Native Instruments Controller Editor
Native Instruments Guitar Rig 4
Native Instruments Guitar Rig 5
Native Instruments Service Center
Nero 7 Ultra Edition
neroxml
NETGEAR WNDA3100v2 wireless USB 2.0 adapter
NoAdware v5.0
Notepad++
NVIDIA Control Panel 301.42
NVIDIA Install Application
NVIDIA nView 136.27
NVIDIA nView Desktop Manager
NVIDIA Update 1.8.15
NVIDIA Update Components
Otto
PC VGA Camera
PDF Settings
PDF Settings CS5
Phone To Computer
Power Data Recovery 4.1.1
QuickTime
Realtek High Definition Audio Driver
Reason 5.0
Remote Mouse version 2.01
Rosetta Stone Version 3
Search Protect by conduit
Security Update for CAPICOM (KB931906)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2604111)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2657424)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2736416)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2840629)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Extended (KB2416472)
Security Update for Microsoft .NET Framework 4 Extended (KB2487367)
Security Update for Microsoft .NET Framework 4 Extended (KB2656351)
Security Update for Microsoft Excel 2010 (KB2597126) 32-Bit Edition
Security Update for Microsoft Filter Pack 2.0 (KB2553501) 32-Bit Edition
Security Update for Microsoft InfoPath 2010 (KB2687422) 32-Bit Edition
Security Update for Microsoft InfoPath 2010 (KB2760406) 32-Bit Edition
Security Update for Microsoft Office 2010 (KB2553091)
Security Update for Microsoft Office 2010 (KB2553096)
Security Update for Microsoft Office 2010 (KB2553371) 32-Bit Edition
Security Update for Microsoft Office 2010 (KB2553447) 32-Bit Edition
Security Update for Microsoft Office 2010 (KB2589320) 32-Bit Edition
Security Update for Microsoft Office 2010 (KB2597986) 32-Bit Edition
Security Update for Microsoft Office 2010 (KB2598243) 32-Bit Edition
Security Update for Microsoft Office 2010 (KB2687276) 32-Bit Edition
Security Update for Microsoft Office 2010 (KB2687501) 32-Bit Edition
Security Update for Microsoft Office 2010 (KB2687510) 32-Bit Edition
Security Update for Microsoft OneNote 2010 (KB2760600) 32-Bit Edition
Security Update for Microsoft Publisher 2010 (KB2553147) 32-Bit Edition
Security Update for Microsoft Visio 2010 (KB2810068) 32-Bit Edition
Security Update for Microsoft Visio Viewer 2010 (KB2687505) 32-Bit Edition
Security Update for Microsoft Visual C++ 2010 Express - ENU (KB2251489)
Security Update for Microsoft Windows (KB2564958)
Security Update for Microsoft Word 2010 (KB2760410) 32-Bit Edition
Security Update for Windows Internet Explorer 8 (KB2510531)
Security Update for Windows Internet Explorer 8 (KB2544521)
Security Update for Windows Internet Explorer 8 (KB2618444)
Security Update for Windows Internet Explorer 8 (KB2699988)
Security Update for Windows Internet Explorer 8 (KB2722913)
Security Update for Windows Internet Explorer 8 (KB2846071)
Security Update for Windows Internet Explorer 8 (KB982381)
Security Update for Windows Media Player (KB2378111)
Security Update for Windows Media Player (KB2834904)
Security Update for Windows Media Player (KB952069)
Security Update for Windows Media Player (KB954155)
Security Update for Windows Media Player (KB973540)
Security Update for Windows Media Player (KB975558)
Security Update for Windows Media Player (KB978695)
Security Update for Windows XP (KB2079403)
Security Update for Windows XP (KB2115168)
Security Update for Windows XP (KB2229593)
Security Update for Windows XP (KB2296011)
Security Update for Windows XP (KB2347290)
Security Update for Windows XP (KB2360937)
Security Update for Windows XP (KB2387149)
Security Update for Windows XP (KB2393802)
Security Update for Windows XP (KB2412687)
Security Update for Windows XP (KB2419632)
Security Update for Windows XP (KB2423089)
Security Update for Windows XP (KB2440591)
Security Update for Windows XP (KB2443105)
Security Update for Windows XP (KB2476490)
Security Update for Windows XP (KB2478960)
Security Update for Windows XP (KB2478971)
Security Update for Windows XP (KB2481109)
Security Update for Windows XP (KB2483185)
Security Update for Windows XP (KB2485663)
Security Update for Windows XP (KB2506212)
Security Update for Windows XP (KB2507618)
Security Update for Windows XP (KB2507938)
Security Update for Windows XP (KB2508272)
Security Update for Windows XP (KB2508429)
Security Update for Windows XP (KB2509553)
Security Update for Windows XP (KB2510581)
Security Update for Windows XP (KB2535512)
Security Update for Windows XP (KB2536276-v2)
Security Update for Windows XP (KB2544521)
Security Update for Windows XP (KB2544893-v2)
Security Update for Windows XP (KB2562937)
Security Update for Windows XP (KB2566454)
Security Update for Windows XP (KB2567053)
Security Update for Windows XP (KB2567680)
Security Update for Windows XP (KB2570222)
Security Update for Windows XP (KB2570947)
Security Update for Windows XP (KB2584146)
Security Update for Windows XP (KB2585542)
Security Update for Windows XP (KB2586448)
Security Update for Windows XP (KB2592799)
Security Update for Windows XP (KB2598479)
Security Update for Windows XP (KB2603381)
Security Update for Windows XP (KB2618444)
Security Update for Windows XP (KB2618451)
Security Update for Windows XP (KB2620712)
Security Update for Windows XP (KB2621440)
Security Update for Windows XP (KB2624667)
Security Update for Windows XP (KB2631813)
Security Update for Windows XP (KB2633171)
Security Update for Windows XP (KB2639417)
Security Update for Windows XP (KB2641653)
Security Update for Windows XP (KB2646524)
Security Update for Windows XP (KB2647516)
Security Update for Windows XP (KB2647518)
Security Update for Windows XP (KB2653956)
Security Update for Windows XP (KB2655992)
Security Update for Windows XP (KB2659262)
Security Update for Windows XP (KB2660465)
Security Update for Windows XP (KB2661637)
Security Update for Windows XP (KB2675157)
Security Update for Windows XP (KB2676562)
Security Update for Windows XP (KB2685939)
Security Update for Windows XP (KB2686509)
Security Update for Windows XP (KB2691442)
Security Update for Windows XP (KB2695962)
Security Update for Windows XP (KB2698365)
Security Update for Windows XP (KB2699988)
Security Update for Windows XP (KB2705219)
Security Update for Windows XP (KB2707511)
Security Update for Windows XP (KB2709162)
Security Update for Windows XP (KB2712808)
Security Update for Windows XP (KB2719985)
Security Update for Windows XP (KB2723135)
Security Update for Windows XP (KB2727528)
Security Update for Windows XP (KB2731847)
Security Update for Windows XP (KB2753842-v2)
Security Update for Windows XP (KB2757638)
Security Update for Windows XP (KB2758857)
Security Update for Windows XP (KB2770660)
Security Update for Windows XP (KB2780091)
Security Update for Windows XP (KB2802968)
Security Update for Windows XP (KB2807986)
Security Update for Windows XP (KB2813345)
Security Update for Windows XP (KB2820197)
Security Update for Windows XP (KB2820917)
Security Update for Windows XP (KB2834886)
Security Update for Windows XP (KB2839229)
Security Update for Windows XP (KB2845187)
Security Update for Windows XP (KB2850851)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB923789)
Security Update for Windows XP (KB941569)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956744)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956844)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958869)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB969059)
Security Update for Windows XP (KB970238)
Security Update for Windows XP (KB970430)
Security Update for Windows XP (KB971468)
Security Update for Windows XP (KB971657)
Security Update for Windows XP (KB972270)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973869)
Security Update for Windows XP (KB973904)
Security Update for Windows XP (KB974112)
Security Update for Windows XP (KB974318)
Security Update for Windows XP (KB974392)
Security Update for Windows XP (KB974571)
Security Update for Windows XP (KB975025)
Security Update for Windows XP (KB975467)
Security Update for Windows XP (KB975560)
Security Update for Windows XP (KB975561)
Security Update for Windows XP (KB975562)
Security Update for Windows XP (KB975713)
Security Update for Windows XP (KB977816)
Security Update for Windows XP (KB977914)
Security Update for Windows XP (KB978037)
Security Update for Windows XP (KB978338)
Security Update for Windows XP (KB978542)
Security Update for Windows XP (KB978601)
Security Update for Windows XP (KB978706)
Security Update for Windows XP (KB979309)
Security Update for Windows XP (KB979482)
Security Update for Windows XP (KB979559)
Security Update for Windows XP (KB979683)
Security Update for Windows XP (KB979687)
Security Update for Windows XP (KB980195)
Security Update for Windows XP (KB980218)
Security Update for Windows XP (KB980232)
Security Update for Windows XP (KB980436)
Security Update for Windows XP (KB981322)
Security Update for Windows XP (KB981997)
Security Update for Windows XP (KB982132)
Security Update for Windows XP (KB982381)
Security Update for Windows XP (KB982665)
Skype™ 5.10
SmartSound Quicktracks 5
Sonic Encoders
Stellar Phoenix Windows Data Recovery
Synctunes Desktop
TeamViewer 8
The Lord of the Rings Online™ v03.05.01.8027
Tropico 4 1.00
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Microsoft .NET Framework 4 Client Profile (KB2473228)
Update for Microsoft Office 2010 (KB2553065)
Update for Microsoft Office 2010 (KB2553092)
Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553267) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition
Update for Microsoft Office 2010 (KB2553378) 32-Bit Edition
Update for Microsoft Office 2010 (KB2566458)
Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition
Update for Microsoft Office 2010 (KB2598242) 32-Bit Edition
Update for Microsoft Office 2010 (KB2687509) 32-Bit Edition
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition
Update for Microsoft Office 2010 (KB2767886) 32-Bit Edition
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition
Update for Microsoft Outlook 2010 (KB2597090) 32-Bit Edition
Update for Microsoft Outlook 2010 (KB2687623) 32-Bit Edition
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition
Update for Microsoft PowerPoint 2010 (KB2598240) 32-Bit Edition
Update for Microsoft SharePoint Workspace 2010 (KB2589371) 32-Bit Edition
Update for Windows Internet Explorer 8 (KB2598845)
Update for Windows Media Player 10 (KB913800)
Update for Windows Media Player 10 (KB926251)
Update for Windows XP (KB2345886)
Update for Windows XP (KB2467659)
Update for Windows XP (KB2541763)
Update for Windows XP (KB2641690)
Update for Windows XP (KB2661254-v2)
Update for Windows XP (KB2718704)
Update for Windows XP (KB2736233)
Update for Windows XP (KB2749655)
Update for Windows XP (KB951978)
Update for Windows XP (KB955759)
Update for Windows XP (KB967715)
Update for Windows XP (KB968389)
Update for Windows XP (KB971029)
Update for Windows XP (KB971737)
Update for Windows XP (KB973687)
Update for Windows XP (KB973815)
Update Rollup 2 for Windows XP Media Center Edition 2005
Visual C++ Redistributables
Wave Arts Power Suite
WebFldrs XP
WinAVI All in One Converter
Windows Genuine Advantage Validation Tool (KB892130)
Windows Imaging Component
Windows Internet Explorer 8
Windows Media Format 11 runtime
Windows Media Player Firefox Plugin
Windows XP Media Center Edition 2005 KB2502898
Windows XP Media Center Edition 2005 KB2619340
Windows XP Media Center Edition 2005 KB2628259
Windows XP Media Center Edition 2005 KB908250
Windows XP Media Center Edition 2005 KB973768
Windows XP Service Pack 3
XviD MPEG4 Video Codec (remove only)
.
==== Event Viewer Messages From Past Week ========
.
7/18/2013 1:18:06 PM, error: Service Control Manager [7034]  - The AVG PC TuneUp Service service terminated unexpectedly.  It has done this 3 time(s).
7/18/2013 1:16:29 PM, error: Service Control Manager [7034]  - The AVG PC TuneUp Service service terminated unexpectedly.  It has done this 2 time(s).
7/17/2013 2:55:46 PM, error: Microsoft Antimalware [2001]  - Microsoft Antimalware has encountered an error trying to update signatures.     New Signature Version:      Previous Signature Version: 1.153.1906.0     Update Source: Microsoft Update Server     Update Stage: Search     Source Path: Default URL     Signature Type: AntiVirus     Update Type: Full     User: NT AUTHORITY\SYSTEM     Current Engine Version:      Previous Engine Version: 1.1.9607.0     Error code: 0x80070424     Error description: The specified service does not exist as an installed service.
7/17/2013 2:55:35 PM, error: Microsoft Antimalware [2001]  - Microsoft Antimalware has encountered an error trying to update signatures.     New Signature Version:      Previous Signature Version: 1.153.1906.0     Update Source: Microsoft Update Server     Update Stage: Search     Source Path: Default URL     Signature Type: AntiVirus     Update Type: Full     User: NT AUTHORITY\SYSTEM     Current Engine Version:      Previous Engine Version: 1.1.9607.0     Error code: 0x80070424     Error description: The specified service does not exist as an installed service.
7/17/2013 11:47:06 PM, error: Windows Update Agent [20]  - Installation Failure: Windows failed to install the following update with error 0x80070643: Definition Update for Microsoft Security Essentials - KB2310138 (Definition 1.155.235.0).
7/17/2013 11:42:41 PM, error: Service Control Manager [7034]  - The Java Quick Starter service terminated unexpectedly.  It has done this 1 time(s).
7/17/2013 11:42:34 PM, error: Service Control Manager [7034]  - The FABS - Helping agent for MAGIX media database service terminated unexpectedly.  It has done this 1 time(s).
7/17/2013 11:42:07 PM, error: Service Control Manager [7034]  - The Cyberlink RichVideo Service(CRVS) service terminated unexpectedly.  It has done this 1 time(s).
7/17/2013 11:41:59 PM, error: Service Control Manager [7031]  - The Microsoft Antimalware Service service terminated unexpectedly.  It has done this 1 time(s).  The following corrective action will be taken in 15000 milliseconds: Restart the service.
7/17/2013 10:57:15 PM, error: DCOM [10005]  - DCOM got error "%1058" attempting to start the service BITS with arguments "" in order to run the server: {4991D34B-80A1-4291-83B6-3328366B9097}
7/17/2013 10:55:10 PM, error: Service Control Manager [7000]  - The TeamViewer 8 service failed to start due to the following error:  The service did not respond to the start or control request in a timely fashion.
7/17/2013 10:55:09 PM, error: Service Control Manager [7009]  - Timeout (30000 milliseconds) waiting for the TeamViewer 8 service to connect.
7/17/2013 10:55:09 PM, error: Service Control Manager [7000]  - The lxeeCATSCustConnectService service failed to start due to the following error:  The service did not respond to the start or control request in a timely fashion.
7/17/2013 10:55:08 PM, error: Service Control Manager [7009]  - Timeout (30000 milliseconds) waiting for the lxeeCATSCustConnectService service to connect.
7/17/2013 10:55:08 PM, error: Service Control Manager [7000]  - The Zune Bus Enumerator Driver service failed to start due to the following error:  The system cannot find the file specified.
7/17/2013 10:21:46 PM, error: Microsoft Antimalware [2001]  - Microsoft Antimalware has encountered an error trying to update signatures.     New Signature Version:      Previous Signature Version: 1.153.1906.0     Update Source: Microsoft Update Server     Update Stage: Search     Source Path: Default URL     Signature Type: AntiVirus     Update Type: Full     User: NT AUTHORITY\SYSTEM     Current Engine Version:      Previous Engine Version: 1.1.9607.0     Error code: 0x80070424     Error description: The specified service does not exist as an installed service.
7/17/2013 10:21:25 PM, error: Service Control Manager [7034]  - The AVG PC TuneUp Service service terminated unexpectedly.  It has done this 1 time(s).
7/17/2013 10:19:27 PM, error: Service Control Manager [7023]  - The Network Location Awareness (NLA) service terminated with the following error:  The specified procedure could not be found.
7/17/2013 10:18:24 PM, error: Service Control Manager [7034]  - The ASO3DiskOptimizer service terminated unexpectedly.  It has done this 1 time(s).
7/17/2013 10:17:17 PM, error: Service Control Manager [7022]  - The vToolbarUpdater15.3.0 service hung on starting.
7/17/2013 10:16:08 PM, error: Service Control Manager [7022]  - The WebClient service hung on starting.
7/16/2013 2:55:38 PM, error: Microsoft Antimalware [2001]  - Microsoft Antimalware has encountered an error trying to update signatures.     New Signature Version:      Previous Signature Version: 1.153.1906.0     Update Source: Microsoft Update Server     Update Stage: Search     Source Path: Default URL     Signature Type: AntiVirus     Update Type: Full     User: NT AUTHORITY\SYSTEM     Current Engine Version:      Previous Engine Version: 1.1.9607.0     Error code: 0x80070424     Error description: The specified service does not exist as an installed service.
7/15/2013 6:08:14 PM, error: Microsoft Antimalware [2001]  - Microsoft Antimalware has encountered an error trying to update signatures.     New Signature Version:      Previous Signature Version: 1.153.1906.0     Update Source: Microsoft Update Server     Update Stage: Search     Source Path: Default URL     Signature Type: AntiVirus     Update Type: Full     User: NT AUTHORITY\SYSTEM     Current Engine Version:      Previous Engine Version: 1.1.9607.0     Error code: 0x80070424     Error description: The specified service does not exist as an installed service.
7/15/2013 6:08:02 PM, error: Microsoft Antimalware [2001]  - Microsoft Antimalware has encountered an error trying to update signatures.     New Signature Version:      Previous Signature Version: 1.153.1906.0     Update Source: Microsoft Update Server     Update Stage: Search     Source Path: Default URL     Signature Type: AntiVirus     Update Type: Full     User: NT AUTHORITY\SYSTEM     Current Engine Version:      Previous Engine Version: 1.1.9607.0     Error code: 0x80070424     Error description: The specified service does not exist as an installed service.
.
==== End Of File ===========================
 

 

 

 

 

 

And here is the DDS log

========================================================================================================================

 

baDDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 8.0.6001.18702  BrowserJavaVersion: 10.5.1
Run by Christian at 13:24:22 on 2013-07-18
Microsoft Windows XP Professional  5.1.2600.3.1252.1.1033.18.3070.1622 [GMT -7:00]
.
AV: AVG AntiVirus Free Edition 2013 *Enabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
AV: Microsoft Security Essentials *Enabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095}
.
============== Running Processes ================
.
c:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Advanced System Optimizer 3\ASO3DefragSrv.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\SearchProtect\bin\CltMngSvc.exe
C:\WINDOWS\system32\crypserv.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe
C:\WINDOWS\system32\IProsetMonitor.exe
C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe
C:\WINDOWS\system32\lxeecoms.exe
C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\netfxupdate.exe
C:\Program Files\Common Files\Native Instruments\Hardware\NIHardwareService.exe
C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
C:\Program Files\Common Files\PACE\Services\LicenseServices\LDSvc.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
C:\WINDOWS\System32\PAStiSvc.exe
C:\Program Files\TeamViewer\Version8\TeamViewer_Service.exe
C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.3.0\ToolbarUpdater.exe
C:\Program Files\NETGEAR\WNDA3100v2\WifiSvc.exe
C:\WINDOWS\ehome\mcrdsvc.exe
C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.3.0\loggingserver.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
C:\Program Files\Lexmark Pro700 Series\lxeemon.exe
C:\Program Files\Lexmark Pro700 Series\ezprint.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\LGMobileUpgrade\LGMOBILEAX\BYR_Client\VZWUAAgent.exe
C:\Program Files\AVG SafeGuard toolbar\vprot.exe
C:\Documents and Settings\All Users\Application Data\Ad-Aware Browsing Protection\adawarebp.exe
C:\WINDOWS\system32\MRT.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Documents and Settings\Christian\Application Data\SearchProtect\bin\cltmng.exe
C:\Program Files\Google\Drive\googledrivesync.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Documents and Settings\Christian\Local Settings\Application Data\Programs\Google\MusicManager\MusicManager.exe
C:\Program Files\Remote Mouse\RemoteMouse.exe
C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\Google\Drive\googledrivesync.exe
C:\Program Files\NETGEAR\WNDA3100v2\WNDA3100v2.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
.
============== Pseudo HJT Report ===============
.

uLocal Page = \blank.htm
uWindow Title = Internet Explorer, optimized for Bing and MSN
mStart Page = about:blank

uURLSearchHooks: MixiDJ V37 Toolbar: {eef3855c-fc2d-41e6-8d91-d368f51b3055} - c:\program files\mixidj_v37\prxtbMixi.dll
uURLSearchHooks: {6c97a91e-4524-4019-86af-2aa2d567bf5c} - <orphaned>
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - c:\program files\microsoft office\office14\GROOVEEX.DLL
BHO: Java Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\oracle\javafx 2.1 runtime\bin\ssv.dll
BHO: {95B7759C-8C7F-4BF1-B163-73684A933233} - <orphaned>
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - c:\program files\microsoft office\office14\URLREDIR.DLL
BHO: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\oracle\javafx 2.1 runtime\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - LocalServer32 - <no file>
BHO: MixiDJ V37 Toolbar: {eef3855c-fc2d-41e6-8d91-d368f51b3055} - c:\program files\mixidj_v37\prxtbMixi.dll
TB: MixiDJ V37 Toolbar: {EEF3855C-FC2D-41E6-8D91-D368F51B3055} - c:\program files\mixidj_v37\prxtbMixi.dll
TB: MixiDJ V37 Toolbar: {eef3855c-fc2d-41e6-8d91-d368f51b3055} - c:\program files\mixidj_v37\prxtbMixi.dll
uRun: [bitTorrent] "c:\program files\bittorrent\BitTorrent.exe"  /MINIMIZED
uRun: [Google Update] "c:\documents and settings\christian\local settings\application data\google\update\GoogleUpdate.exe" /c
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [Facebook Update] "c:\documents and settings\christian\local settings\application data\facebook\update\FacebookUpdate.exe" /c /nocrashserver
uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
uRun: [GoogleDriveSync] "c:\program files\google\drive\googledrivesync.exe" /autostart
uRun: [skype] "c:\program files\skype\phone\Skype.exe" /minimized /regrun
uRun: [MusicManager] "c:\documents and settings\christian\local settings\application data\programs\google\musicmanager\MusicManager.exe"
uRun: [Remote Mouse] c:\program files\remote mouse\RemoteMouse.exe
uRun: [OfficeSyncProcess] "c:\program files\microsoft office\office14\MSOSYNC.EXE"
uRun: [searchProtect] c:\documents and settings\christian\application data\searchprotect\bin\cltmng.exe
mRun: [ehTray] c:\windows\ehome\ehtray.exe
mRun: [RTHDCPL] RTHDCPL.EXE
mRun: [Alcmtr] ALCMTR.EXE
mRun: [APSDaemon] "c:\program files\common files\apple\apple application support\APSDaemon.exe"
mRun: [NeroFilterCheck] c:\program files\common files\ahead\lib\NeroCheck.exe
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [AdobeAAMUpdater-1.0] "c:\program files\common files\adobe\oobe\pdapp\uwa\UpdaterStartupUtility.exe"
mRun: [AdobeCS5ServiceManager] "c:\program files\common files\adobe\cs5servicemanager\CS5ServiceManager.exe" -launchedbylogin
mRun: [igfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
mRun: [bCSSync] "c:\program files\microsoft office\office14\BCSSync.exe" /DelayServices
mRun: [RIMBBLaunchAgent.exe] c:\program files\common files\research in motion\usb drivers\RIMBBLaunchAgent.exe
mRun: [switchBoard] c:\program files\common files\adobe\switchboard\SwitchBoard.exe
mRun: [lxeemon.exe] "c:\program files\lexmark pro700 series\lxeemon.exe"
mRun: [EzPrint] "c:\program files\lexmark pro700 series\ezprint.exe"
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [bYRUA_AGENT] c:\lgmobileupgrade\lgmobileax\byr_client\VZWUAAgent.exe
mRun: [updatePDRShortCut] "c:\program files\cyberlink\powerdirector\muitransfer\muistartmenu.exe" "c:\program files\cyberlink\powerdirector" updatewithcreateonce "software\cyberlink\powerdirector\8.0"
mRun: [vProt] "c:\program files\avg safeguard toolbar\vprot.exe"
mRun: [AVG_UI] "c:\program files\avg\avg2013\avgui.exe" /TRAYONLY
mRun: [MSC] "c:\program files\microsoft security client\mssecex.exe" -hide -runkey
mRun: [searchProtectAll] c:\program files\searchprotect\bin\cltmng.exe
mRun: [Ad-Aware Browsing Protection] "c:\documents and settings\all users\application data\ad-aware browsing protection\adawarebp.exe"
dRun: [DWQueuedReporting] "c:\progra~1\common~1\micros~1\dw\dwtrig20.exe" -t
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\netgea~1.lnk - c:\program files\netgear\wnda3100v2\WNDA3100v2.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Windows\System: Allow-LogonScript-NetbiosDisabled = dword:1
mPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Explorer: NoDriveAutorun = dword:0
IE: E&xport to Microsoft Excel - c:\progra~1\mi1933~1\office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - c:\progra~1\mi1933~1\office14\ONBttnIE.dll/105
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - c:\program files\microsoft office\office14\ONBttnIELinkedNotes.dll
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
LSP: mswsock.dll






TCP: NameServer = 192.168.0.1 205.171.2.25
TCP: Interfaces\{4935166B-D675-465F-AD1A-FB04BF15A978} : DHCPNameServer = 131.191.7.12 131.191.7.194 8.8.8.8
TCP: Interfaces\{5593CF7D-C9FB-469C-A4B8-D907608EAC12} : DHCPNameServer = 192.168.0.1 205.171.2.25
TCP: Interfaces\{E78D5C47-601C-48F3-B156-9274A453C2CD} : DHCPNameServer = 192.168.0.1 205.171.2.25
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - c:\program files\common files\microsoft shared\office14\MSOXMLMF.DLL
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files\common files\avg secure search\viprotocolinstaller\15.3.0\ViProtocol.dll
Notify: igfxcui - igfxdev.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - c:\program files\microsoft office\office14\GROOVEEX.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\christian\application data\mozilla\firefox\profiles\42krpff9.default\

FF - prefs.js: browser.search.selectedEngine - Yahoo

FF - prefs.js: network.proxy.ftp - localhost
FF - prefs.js: network.proxy.ftp_port - 8080
FF - prefs.js: network.proxy.http - localhost
FF - prefs.js: network.proxy.http_port - 8080
FF - prefs.js: network.proxy.socks - localhost
FF - prefs.js: network.proxy.socks_port - 8080
FF - prefs.js: network.proxy.ssl - localhost
FF - prefs.js: network.proxy.ssl_port - 8080
FF - prefs.js: network.proxy.type - 0
FF - plugin: c:\documents and settings\christian\local settings\application data\facebook\video\skype\npFacebookVideoCalling.dll
FF - plugin: c:\documents and settings\christian\local settings\application data\google\update\1.3.21.153\npGoogleUpdate3.dll
FF - plugin: c:\progra~1\mi1933~1\office14\NPAUTHZ.DLL
FF - plugin: c:\progra~1\mi1933~1\office14\NPSPWRAP.DLL
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\byond\bin\npbyond.dll
FF - plugin: c:\program files\common files\avg secure search\sitesafetyinstaller\15.3.0\npsitesafety.dll
FF - plugin: c:\program files\common files\research in motion\bbwebsllauncher\NPWebSLLauncher.dll
FF - plugin: c:\program files\google\google earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\google\update\1.3.21.153\npGoogleUpdate3.dll
FF - plugin: c:\program files\microsoft silverlight\5.1.20513.0\npctrlui.dll
FF - plugin: c:\program files\oracle\javafx 2.1 runtime\bin\plugin2\npjp2.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_7_700_224.dll
FF - plugin: c:\windows\system32\npdeployJava1.dll
FF - plugin: c:\windows\system32\npptools.dll
FF - ExtSQL: 2013-06-23 17:43; avg@toolbar; c:\documents and settings\all users\application data\avg safeguard toolbar\firefoxext\15.3.0.11
.
---- FIREFOX POLICIES ----
FF - user.js: yahoo.ytff.general.dontshowhpoffer - true
============= SERVICES / DRIVERS ===============
.
R0 AVGIDSHX;AVGIDSHX;c:\windows\system32\drivers\avgidshx.sys [2013-2-8 60216]
R0 Avglogx;AVG Logging Driver;c:\windows\system32\drivers\avglogx.sys [2013-2-8 245048]
R0 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\drivers\avgmfx86.sys [2013-2-8 96568]
R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [2013-2-8 39224]
R0 gfibto;gfibto;c:\windows\system32\drivers\gfibto.sys [2013-7-13 13560]
R0 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2013-1-20 195296]
R1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\avgidsdriverx.sys [2013-3-29 208184]
R1 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\avgidsshimx.sys [2013-3-1 22328]
R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [2013-2-8 170808]
R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [2013-3-21 182072]
R1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx86.sys [2013-6-15 37664]
R1 MpKsl24e8e6f8;MpKsl24e8e6f8;c:\windows\system32\mpenginestore\MpKsl24e8e6f8.sys [2013-7-18 29904]
R2 ASO3DiskOptimizer;ASO3DiskOptimizer;c:\program files\advanced system optimizer 3\ASO3DefragSrv.exe [2012-1-15 201960]
R2 AVGIDSAgent;AVGIDSAgent;c:\program files\avg\avg2013\avgidsagent.exe [2013-5-14 4937264]
R2 avgwd;AVG WatchDog;c:\program files\avg\avg2013\avgwdsvc.exe [2013-4-18 283136]
R2 CltMngSvc;Search Protect by Conduit Updater;c:\program files\searchprotect\bin\CltMngSvc.exe [2013-5-7 97056]
R2 Fabs;FABS - Helping agent for MAGIX media database;c:\program files\common files\magix services\database\bin\FABS.exe [2009-8-27 1253376]
R2 Intel® PROSet Monitoring Service;Intel® PROSet Monitoring Service;c:\windows\system32\IPROSetMonitor.exe [2011-12-11 117920]
R2 lxee_device;lxee_device;c:\windows\system32\lxeecoms.exe -service --> c:\windows\system32\lxeecoms.exe -service [?]
R2 McrdSvc;Media Center Extender Service;c:\windows\ehome\mcrdsvc.exe [2005-8-5 99328]
R2 NetFxUpdate_v1.1.4322;Microsoft .NET Framework v1.1.4322 Update;c:\windows\microsoft.net\framework\v1.1.4322\netfxupdate.exe [2009-6-24 98304]
R2 NIHardwareService;NIHardwareService;c:\program files\common files\native instruments\hardware\NIHardwareService.exe [2011-4-7 3857408]
R2 PaceLicenseDServices;PACE License Services;c:\program files\common files\pace\services\licenseservices\LDSvc.exe [2012-5-18 2938880]
R2 TeamViewer8;TeamViewer 8;c:\program files\teamviewer\version8\TeamViewer_Service.exe [2013-5-16 3574624]
R2 vToolbarUpdater15.3.0;vToolbarUpdater15.3.0;c:\program files\common files\avg secure search\vtoolbarupdater\15.3.0\ToolbarUpdater.exe [2013-6-25 1598128]
R2 WSWNDA3100v2;WSWNDA3100v2;c:\program files\netgear\wnda3100v2\WifiSvc.exe [2012-4-11 303360]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\avg\avg pc tuneup\TuneUpUtilitiesDriver32.sys [2012-7-4 10088]
RUnknown MpKslf453095f;MpKslf453095f; [x]
S0 xnjc;xnjc;c:\windows\system32\drivers\pyvi.sys --> c:\windows\system32\drivers\pyvi.sys [?]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 lxeeCATSCustConnectService;lxeeCATSCustConnectService;c:\windows\system32\spool\drivers\w32x86\3\lxeeserv.exe [2012-7-16 193192]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2012-7-13 160944]
S2 TuneUp.UtilitiesSvc;AVG PC TuneUp Service;c:\program files\avg\avg pc tuneup\TuneUpUtilitiesService32.exe [2012-8-23 1532280]
S3 ADASPROT;SYSTWEAKASO;c:\program files\advanced system optimizer 3\adasprot32.sys [2012-1-15 6656]
S3 BCMH43XX;Broadcom 802.11 USB Network Adapter Driver;c:\windows\system32\drivers\bcmwlhigh5.sys [2012-4-11 1034240]
S3 cpudrv;cpudrv;\??\c:\program files\systemrequirementslab\cpudrv.sys --> c:\program files\systemrequirementslab\cpudrv.sys [?]
S3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;c:\program files\common files\magix services\database\bin\fbserver.exe [2008-8-7 3276800]
S3 NPF;Netgroup Packet Filter;c:\windows\system32\drivers\npf.sys [2012-4-11 50704]
S3 PAC7311;VGA SoC PC-Camera;c:\windows\system32\drivers\PA707UCM.SYS [2005-10-18 154752]
S3 PRESONUS_AUDIOBOX_MIDI;Presonus AudioBox WDM MIDI Device;c:\windows\system32\drivers\psabusbm.sys [2011-12-15 31864]
S3 PRESONUS_AUDIOBOX_USB;Presonus AudioBox USB driver;c:\windows\system32\drivers\psabusbu.sys [2011-12-15 401016]
S3 PRESONUS_AUDIOBOX_WDM;Presonus AudioBox USB WDM;c:\windows\system32\drivers\psabusba.sys [2011-12-15 40568]
S3 SwitchBoard;SwitchBoard;c:\program files\common files\adobe\switchboard\SwitchBoard.exe [2010-2-19 517096]
S3 vzandnetadb;ADB Interface DriverNet for VZW;c:\windows\system32\drivers\lgvzandnetadb.sys [2013-5-8 25856]
S3 vzandnetdiag;LGE AndroidNet for VZW USB Serial Port;c:\windows\system32\drivers\lgvzandnetdiag.sys [2013-5-6 23296]
S3 vzandnetdiag2;LGE AndroidNet for VZW Diagnostics Port;c:\windows\system32\drivers\lgvzandnetdiag2.sys [2013-5-6 23296]
S3 vzandnetmodem;LGE AndroidNet for VZW USB Modem;c:\windows\system32\drivers\lgvzandnetmdm.sys [2013-5-6 27904]
S3 vzandnetndis;LGE AndroidNet for VZW NDIS Ethernet Adapter;c:\windows\system32\drivers\lgvzandnetndis.sys [2013-5-6 71552]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
.
=============== File Associations ===============
.
FileExt: .js: JSFile="c:\program files\adobe\adobe dreamweaver cs5\Dreamweaver.exe","%1"
.
=============== Created Last 30 ================
.
2013-07-18 20:01:40    --------    d-----w-    c:\windows\system32\MpEngineStore
2013-07-18 13:19:57    62976    ----a-w-    c:\windows\system32\drivers\kljwwtzu.sys
2013-07-18 13:18:55    60872    ----a-w-    c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{6a89f075-a623-45a8-b55e-0d2afb7fd0af}\offreg.dll
2013-07-18 13:15:26    29904    ----a-w-    c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{6a89f075-a623-45a8-b55e-0d2afb7fd0af}\MpKslf453095f.sys
2013-07-18 12:03:49    --------    d-----w-    c:\documents and settings\christian\local settings\application data\PCHealth
2013-07-18 11:09:03    --------    d-----w-    c:\windows\system32\MRT
2013-07-18 06:46:12    7143960    ----a-w-    c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{6a89f075-a623-45a8-b55e-0d2afb7fd0af}\mpengine.dll
2013-07-18 06:44:55    62976    ----a-w-    c:\windows\system32\drivers\gchiunwx.sys
2013-07-18 06:28:34    12928    -c----w-    c:\windows\system32\dllcache\usb8023x.sys
2013-07-18 06:28:34    12928    -c----w-    c:\windows\system32\dllcache\usb8023.sys
2013-07-18 05:59:24    62976    ----a-w-    c:\windows\system32\drivers\osuyvsiw.sys
2013-07-18 05:20:14    62976    ----a-w-    c:\windows\system32\drivers\aswveydt.sys
2013-07-16 21:49:19    62976    ----a-w-    c:\windows\system32\drivers\npusuzjq.sys
2013-07-14 22:22:00    62976    ----a-w-    c:\windows\system32\drivers\poourulv.sys
2013-07-14 08:25:13    700416    ----a-w-    c:\windows\system32\mgxoschk.dll
2013-07-14 08:25:13    --------    d-----w-    c:\windows\system32\MAGIX
2013-07-14 06:32:29    --------    d-----w-    c:\documents and settings\christian\application data\MAGIX
2013-07-14 06:27:12    --------    d-----w-    c:\documents and settings\christian\local settings\application data\Xara
2013-07-14 06:27:00    --------    d-----w-    c:\program files\common files\MAGIX Shared
2013-07-14 06:24:59    --------    d-----w-    c:\program files\MAGIX
2013-07-14 06:24:30    --------    d-----w-    c:\documents and settings\all users\application data\MAGIX
2013-07-14 06:24:23    --------    d-----w-    c:\program files\common files\MAGIX Services
2013-07-14 03:22:17    --------    d-----w-    c:\program files\NoAdware
2013-07-14 02:39:11    --------    d-----w-    c:\documents and settings\christian\application data\LavasoftStatistics
2013-07-14 02:00:12    --------    d-----w-    c:\documents and settings\all users\application data\Downloaded Installations
2013-07-14 02:00:10    --------    d-----w-    c:\documents and settings\christian\local settings\application data\adawarebp
2013-07-14 02:00:10    --------    d-----w-    c:\documents and settings\all users\application data\blekko toolbars
2013-07-14 02:00:04    --------    d-----w-    c:\documents and settings\all users\application data\Ad-Aware Browsing Protection
2013-07-14 01:59:49    --------    d-----w-    c:\program files\adawaretb
2013-07-14 01:59:49    --------    d-----w-    c:\documents and settings\christian\application data\adawaretb
2013-07-14 01:59:41    --------    d-----w-    c:\program files\Toolbar Cleaner
2013-07-14 01:57:52    13560    ----a-w-    c:\windows\system32\drivers\gfibto.sys
2013-07-14 01:57:51    44424    ----a-w-    c:\windows\system32\sbbd.exe
2013-07-13 22:24:41    --------    d-----w-    C:\Netmarble
2013-07-13 04:45:47    --------    d-----w-    c:\documents and settings\all users\application data\HitmanPro
2013-07-13 04:44:03    --------    d-----w-    c:\program files\Conduit
2013-07-13 04:43:57    --------    d-----w-    c:\documents and settings\christian\local settings\application data\MixiDJ_V37
2013-07-13 04:43:52    --------    d-----w-    c:\program files\MixiDJ_V37
2013-07-13 04:43:06    --------    d-----w-    c:\documents and settings\christian\local settings\application data\CRE
2013-07-13 04:43:06    --------    d-----w-    c:\documents and settings\christian\local settings\application data\Conduit
2013-07-13 04:41:58    --------    d-----w-    c:\program files\SearchProtect
2013-07-13 04:41:31    --------    d-----w-    c:\documents and settings\christian\application data\SearchProtect
2013-07-13 04:24:53    7068072    ----a-w-    c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\backup\mpengine.dll
2013-07-13 04:24:51    238872    ------w-    c:\windows\system32\MpSigStub.exe
2013-07-13 04:22:21    --------    d-----w-    c:\program files\Microsoft Security Client
2013-07-09 01:10:11    --------    d-----w-    c:\documents and settings\christian\local settings\application data\Thunderbird
2013-07-08 23:28:26    --------    d-----w-    C:\Documents
2013-07-01 05:36:14    --------    d-----w-    c:\program files\team extreme
2013-06-25 23:24:43    --------    d-----w-    c:\windows\system32\cache
2013-06-25 04:51:06    --------    d-----w-    c:\documents and settings\christian\local settings\application data\WarThunder
2013-06-25 04:51:06    --------    d-----w-    c:\documents and settings\all users\application data\WarThunder
2013-06-24 21:17:02    --------    d-----w-    c:\program files\BYOND
2013-06-24 06:28:32    --------    d-----w-    c:\documents and settings\christian\application data\Any Video Converter Professional
2013-06-24 06:28:29    --------    d-----w-    c:\program files\Any Video Converter Professional
2013-06-24 02:08:07    32120    ----a-w-    c:\windows\system32\TURegOpt.exe
2013-06-24 02:07:17    --------    d-----w-    c:\documents and settings\christian\application data\AVG
2013-06-24 02:06:04    --------    d-----w-    c:\documents and settings\all users\application data\AVG
2013-06-24 02:05:25    --------    d-sh--w-    c:\documents and settings\all users\application data\{D1D4879F-2279-49C9-AEBF-3B95C84EAA8F}
2013-06-24 00:45:12    --------    d-----w-    c:\documents and settings\christian\application data\AVG2013
2013-06-24 00:43:36    --------    d-----w-    c:\documents and settings\christian\application data\TuneUp Software
2013-06-24 00:43:32    --------    d-----w-    c:\documents and settings\all users\application data\AVG SafeGuard toolbar
2013-06-24 00:43:28    --------    d-----w-    c:\documents and settings\christian\application data\AVG SafeGuard toolbar
2013-06-24 00:43:25    --------    d-----w-    c:\program files\AVG SafeGuard toolbar
2013-06-24 00:42:08    --------    d--h--w-    C:\$AVG
2013-06-24 00:42:07    --------    d-----w-    c:\documents and settings\all users\application data\AVG2013
2013-06-24 00:41:19    --------    d-----w-    c:\program files\AVG
2013-06-24 00:33:28    --------    d-----w-    c:\documents and settings\christian\local settings\application data\MFAData
2013-06-24 00:33:28    --------    d-----w-    c:\documents and settings\christian\local settings\application data\Avg2013
2013-06-24 00:33:28    --------    d-----w-    c:\documents and settings\all users\application data\MFAData
2013-06-19 18:56:26    --------    d-----w-    c:\documents and settings\christian\local settings\application data\AVG Secure Search
.
==================== Find3M  ====================
.
2013-07-18 11:59:47    1072544    ----a-w-    c:\windows\system32\nvdrsdb0.bin
2013-07-18 11:59:47    1    ----a-w-    c:\windows\system32\nvdrssel.bin
2013-07-18 11:58:57    1072544    ----a-w-    c:\windows\system32\nvdrsdb1.bin
2013-06-25 23:24:20    37664    ----a-w-    c:\windows\system32\drivers\avgtpx86.sys
2013-06-14 02:07:12    71048    ----a-w-    c:\windows\system32\FlashPlayerCPLApp.cpl
2013-06-14 02:07:12    692104    ----a-w-    c:\windows\system32\FlashPlayerApp.exe
2013-06-08 06:55:44    385024    ------w-    c:\windows\system32\html.iec
2013-06-07 21:56:06    920064    ----a-w-    c:\windows\system32\wininet.dll
2013-06-07 21:56:06    43520    ------w-    c:\windows\system32\licmgr10.dll
2013-06-07 21:56:05    1469440    ------w-    c:\windows\system32\inetcpl.cpl
2013-06-04 07:23:02    562688    ----a-w-    c:\windows\system32\qedit.dll
2013-06-04 01:40:45    1876736    ----a-w-    c:\windows\system32\win32k.sys
2013-05-09 07:28:02    1543680    ------w-    c:\windows\system32\wmvdecod.dll
2013-05-08 17:05:42    25856    ----a-w-    c:\windows\system32\drivers\lgvzandnetadb.sys
2013-05-06 21:29:00    71552    ----a-w-    c:\windows\system32\drivers\lgvzandnetndis.sys
2013-05-06 21:28:34    27904    ----a-w-    c:\windows\system32\drivers\lgvzandnetmdm.sys
2013-05-06 21:27:20    23296    ----a-w-    c:\windows\system32\drivers\lgvzandnetdiag2.sys
2013-05-06 21:26:48    23296    ----a-w-    c:\windows\system32\drivers\lgvzandnetdiag.sys
2013-05-03 01:30:20    2149888    ----a-w-    c:\windows\system32\ntoskrnl.exe
2013-05-03 00:38:17    2028544    ----a-w-    c:\windows\system32\ntkrnlpa.exe
2012-11-06 20:57:21    175240    ----a-w-    c:\program files\gtres.dll
.
============= FINISH: 13:29:01.90 ===============



"Please Copy & Paste the contents of the following logs in your next reply: DDS.txt and Attach.txt
You can ignore the note about zipping the Attach.txt file in most cases."

Link to post
Share on other sites

  • Root Admin

Hello and :welcome:

 

Please visit this webpage and read the ComboFix User's Guide:

  • Once you've read the article and are ready to use the program you can download it directly from the link below.
  • Important! - Please make sure you save combofix to your desktop and do not run it from your browser
  • Direct download link for: ComboFix.exe
  • Please make sure you disable your security applications before running ComboFix.
  • Once Combofix has completed it will produce and open a log file.  Please be patient as it can take some time to load.
  • Please attach that log file to your next reply.
  • If needed the file can be located here:  C:\combofix.txt
  • NOTE: If you receive the message "illegal operation has been attempted on a registry key that has been marked for deletion", just reboot the computer.

 

 

Link to post
Share on other sites

  • Root Admin

Please run the following steps and post back all the logs as ATTACHMENTS by clicking on the More Reply Options button.
Please don't put logs in code or quote tags or copy/paste them into your reply unless you're unable to attach them.
Please enable your system to show hidden files: How to see hidden files in Windows

P2P/Piracy Warning:

  • If you're using Peer 2 Peer software such as uTorrent, BitTorrent or similar you must either fully uninstall them or completely disable them from running while being assisted here.
  • Failure to remove or disable such software will result in your topic being closed and no further assistance being provided.
  • If you have illegal/cracked software, cracks, keygens etc. on the system, please remove or uninstall them now and read the policy on Piracy.

STEP 01
Backup the Registry:
Modifying the Registry can create unforeseen problems, so it always wise to create a backup before doing so.

  • Please download ERUNT from one of the following links: Link1 | Link2 | Link3
  • ERUNT (Emergency Recovery Utility NT) is a free program that allows you to keep a complete backup of your registry and restore it when needed.
  • Double click on erunt-setup.exe to Install ERUNT by following the prompts.
  • NOTE: Do not choose to allow ERUNT to add an Entry to the Startup folder. Click NO.
  • Start ERUNT either by double clicking on the desktop icon or choosing to start the program at the end of the setup process.
  • Choose a location for the backup.
    • Note: the default location is C:\Windows\ERDNT which is acceptable.
  • Make sure that at least the first two check boxes are selected.
  • Click on OK
  • Then click on YES to create the folder.
  • Note: if it is necessary to restore the registry, open the backup folder and start ERDNT.exe

STEP 02
Please download RogueKiller and save it to your desktop.

You can check here if you're not sure if your computer is 32-bit or 64-bit

  • RogueKiller 32-bit | RogueKiller 64-bit
  • Quit all running programs.
  • For Windows XP, double-click to start.
  • For Vista,Windows 7/8, Right-click on the program and select Run as Administrator to start and when prompted allow it to run.
  • Read and accept the EULA (End User Licene Agreement)
  • Click Scan to scan the system.
  • When the scan completes Close the program > Don't Fix anything!
  • Don't run any other options, they're not all bad!!
  • Post back the report which should be located on your desktop.

STEP 03
Please download Malwarebytes Anti-Rootkit from here

  • Unzip the contents to a folder in a convenient location.
  • Open the folder where the contents were unzipped and run mbar.exe
  • Follow the instructions in the wizard to update and allow the program to scan your computer for threats.
  • Click on the Cleanup button to remove any threats and reboot if prompted to do so.
  • Wait while the system shuts down and the cleanup process is performed.
  • Perform another scan with Malwarebytes Anti-Rootkit to verify that no threats remain. If they do, then click Cleanup once more and repeat the process.
  • When done, please post the two logs produced they will be in the MBAR folder... mbar-log.txt and system-log.txt

STEP 04
Please download Junkware Removal Tool to your desktop.

  • Shutdown your antivirus to avoid any conflicts.
  • Right click over JRT.exe and select Run as administrator on Windows Vista or Windows 7, double-click on XP.
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next reply message
  • When completed make sure to re-enable your antivirus

STEP 05
Please download AdwCleaner by Xplode to your desktop.

  • Close all open programs and internet browsers.
  • Double click on AdwCleaner.exe to run the tool.
  • If prompted by the User Account Control click Yes to allow it to run.
  • Under Actions click on the Delete button.
  • Click OK on all prompts.
  • You will be prompted to restart your computer. A text file will open after the restart.
  • Please post the entire contents of that logfile to your next reply.
  • You can find the logfile at C:\AdwCleaner[s1].txt where the number in brackets indicates how often it was run.

STEP 06
button_eos.gif

Please go here to run the online antivirus scannner from ESET.

  • Turn off the real time scanner of any existing antivirus program while performing the online scan
  • Tick the box next to YES, I accept the Terms of Use.
  • Click Start
  • When asked, allow the activex control to install
  • Click Start
  • Make sure that the option Remove found threats is unticked
  • Click on Advanced Settings and ensure these options are ticked:
    • Scan for potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth Technology
  • Click Scan
  • Wait for the scan to finish
  • If any threats were found, click the 'List of found threats' , then click Export to text file....
  • Save it to your desktop, then please copy and paste that log as a reply to this topic.

STEP 07
Please download the Farbar Recovery Scan Tool and save it to your desktop.

Note: You need to run the version compatibale with your system. You can check here if you're not sure if your computer is 32-bit or 64-bit

  • Double-click to run it. When the tool opens click Yes to disclaimer.
  • Press the Scan button.
  • It will make a log (FRST.txt) in the same directory the tool is run. Please copy and paste it to your reply.
  • The first time the tool is run, it also makes another log (Addition.txt). Please attach it to your reply as well.
Link to post
Share on other sites

  • Root Admin

Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.