Jump to content

My DDS Report


Recommended Posts

Following instructions here, I hope

DDS (Ver_10-11-10.01) - NTFS_AMD64

Run by Dale at 20:27:25.29 on Thu 11/11/2010

Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_22

Microsoft Windows 7 Home Premium 6.1.7600.0.1252.1.1033.18.4056.2509 [GMT -6:00]

============== Running Processes ===============

C:\PROGRA~2\AVG\AVG10\avgchsva.exe

C:\Windows\system32\wininit.exe

C:\Windows\system32\lsm.exe

C:\Windows\system32\svchost.exe -k DcomLaunch

C:\Windows\system32\svchost.exe -k RPCSS

C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted

C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted

C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_afc3018f8cfedd20\STacSV64.exe

C:\Windows\system32\svchost.exe -k LocalService

C:\Program Files\Dell\DellDock\DockLogin.exe

C:\Windows\system32\svchost.exe -k NetworkService

C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRYSVC.EXE

C:\Windows\system32\WLANExt.exe

C:\Windows\system32\conhost.exe

C:\Program Files\Dell\Dell Wireless WLAN Card\bcmwltry.exe

C:\Windows\System32\spoolsv.exe

C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork

C:\Windows\SysWOW64\svchost.exe -k Akamai

C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe

C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe

C:\Windows\system32\svchost.exe -k imgsvc

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe

C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe

C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe

C:\Windows\system32\Dwm.exe

C:\Windows\system32\taskhost.exe

C:\Windows\Explorer.EXE

C:\Program Files\DellTPad\Apoint.exe

C:\Program Files\IDT\WDM\sttray64.exe

C:\Windows\System32\igfxtray.exe

C:\Windows\System32\igfxpers.exe

C:\Windows\system32\igfxsrvc.exe

C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRAY.EXE

C:\Program Files\Dell\QuickSet\quickset.exe

C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe

C:\Windows\system32\wbem\wmiprvse.exe

C:\Windows\System32\StikyNot.exe

C:\Program Files (x86)\Skype\Phone\Skype.exe

C:\Program Files\Dell\DellDock\DellDock.exe

C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe

C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe

C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe

C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

C:\Program Files (x86)\Yahoo!\Common\YMailAdvisor.exe

C:\Program Files (x86)\AVG\AVG10\avgtray.exe

C:\Program Files (x86)\AVG\AVG10\avgnsa.exe

C:\Program Files (x86)\AVG\AVG10\Identity Protection\agent\bin\avgidsmonitor.exe

C:\Windows\system32\conhost.exe

C:\Program Files (x86)\AVG\AVG10\avgemca.exe

C:\Windows\system32\conhost.exe

C:\Program Files (x86)\Sprint Instinct Applications\MEMonitor.exe

C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe

C:\Program Files\DellTPad\ApMsgFwd.exe

C:\Program Files\DellTPad\HidFind.exe

C:\Program Files\DellTPad\Apntex.exe

C:\Windows\system32\conhost.exe

C:\Windows\system32\SearchIndexer.exe

C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted

C:\Program Files\Windows Media Player\wmpnetwk.exe

C:\Users\Dale\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Windows\System32\svchost.exe -k LocalServicePeerNet

C:\Users\Dale\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Dale\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Dale\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Program Files (x86)\Dell Support Center\bin\sprtsvc.exe

C:\PROGRA~2\AVG\AVG10\avgrsa.exe

C:\Program Files (x86)\AVG\AVG10\avgcsrva.exe

C:\Users\Dale\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Dale\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Windows\system32\taskeng.exe

C:\Windows\system32\SearchProtocolHost.exe

C:\Windows\system32\SearchFilterHost.exe

C:\Windows\system32\DllHost.exe

C:\Windows\system32\DllHost.exe

C:\Users\Dale\Downloads\dds.scr

C:\Windows\system32\conhost.exe

C:\Windows\system32\wbem\wmiprvse.exe

============== Pseudo HJT Report ===============

uStart Page = hxxp://www.yahoo.com/?fr=fp-tyc8

mWinlogon: Userinit=userinit.exe

BHO: &Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll

BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE

\rpbrowserrecordplugin.dll

BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - C:\Program Files (x86)\AVG\AVG10\avgssie.dll

BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll

BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

BHO: Skype add-on for Internet Explorer: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

BHO: Bing Bar BHO: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll

BHO: Ask Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll

BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll

BHO: SingleInstance Class: {fdad4da1-61a2-4fd8-9c17-86f7ac245081} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll

TB: Ask Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll

TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll

TB: @C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100: {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\MSN Toolbar\Platform

\6.3.2322.0\npwinext.dll

TB: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File

uRun: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe

uRun: [skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized

uRun: [Google Update] "C:\Users\Dale\AppData\Local\Google\Update\GoogleUpdate.exe" /c

mRun: [PDVDDXSrv] "C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe"

mRun: [Dell Webcam Central] "C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" /mode2

mRun: [Desktop Disc Tool] "c:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe"

mRun: [DellSupportCenter] "C:\Program Files (x86)\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter

mRun: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

mRun: [YMailAdvisor] "C:\Program Files (x86)\Yahoo!\Common\YMailAdvisor.exe"

mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"

mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

mRun: [AVG_TRAY] C:\Program Files (x86)\AVG\AVG10\avgtray.exe

mRun: [switchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

mRun: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin

StartupFolder: C:\Users\Dale\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\DELLDO~1.LNK - C:\Program Files\Dell\DellDock\DellDock.exe

StartupFolder: C:\Users\Dale\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\SPRINT~1.LNK - C:\Windows\RM.exe

mPolicies-explorer: NoActiveDesktop = 1 (0x1)

mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)

mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)

mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)

mPolicies-system: EnableUIADesktopToggle = 0 (0x0)

IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files (x86)\Yahoo!\Common\Yinsthelper.dll

DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab

DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab

DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab

Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgpp.dll

Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL

Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

BHO-X64: AVG Safe Search: {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG10\avgssiea.dll

BHO-X64: WormRadar.com IESiteBlocker.NavFilter - No File

BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

BHO-X64: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

TB-X64: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File

TB-X64: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File

mRun-x64: [Apoint] C:\Program Files\DellTPad\Apoint.exe

mRun-x64: [sysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe

mRun-x64: [igfxTray] C:\Windows\system32\igfxtray.exe

mRun-x64: [HotKeysCmds] C:\Windows\system32\hkcmd.exe

mRun-x64: [Persistence] C:\Windows\system32\igfxpers.exe

mRun-x64: [broadcom Wireless Manager UI] C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRAY.exe

mRun-x64: [QuickSet] C:\Program Files\Dell\QuickSet\QuickSet.exe

mRun-x64: [iAAnotif] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe

mRun-x64: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"

================= FIREFOX ===================

FF - ProfilePath - C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\6091t0hr.default\

FF - component: C:\Program Files (x86)\AVG\AVG10\Firefox\components\avgssff.dll

FF - component: C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\FFAddon\components\nsgkff36_meter1.dll

FF - component: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext\components\nprpffbrowserrecordext.dll

FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll

FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

FF - plugin: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll

FF - plugin: C:\Users\Dale\AppData\Local\Google\Update\1.2.183.39\npGoogleOneClick8.dll

FF - plugin: C:\Users\Dale\AppData\Local\Yahoo!\BrowserPlus\2.9.8\Plugins\npybrowserplus_2.9.8.dll

FF - plugin: C:\Users\Dale\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll

FF - plugin: C:\Users\Dale\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll

FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll

FF - HiddenExtension: Java Console: No Registry Reference - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}

FF - HiddenExtension: Java Console: No Registry Reference - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}

---- FIREFOX POLICIES ----

C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbaam7a8h", true);

C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--fiqz9s", true); // Traditional

C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--fiqs8s", true); // Simplified

C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--j6w193g", true);

C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);

C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4a87g", true);

C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbqly7c0a67fbc", true);

C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbqly7cvafr", true);

C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--kpry57d", true); // Traditional

C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--kprw13d", true); // Simplified

============= SERVICES / DRIVERS ===============

R0 AVGIDSEH;AVGIDSEH;C:\Windows\System32\drivers\AVGIDSEH.sys [2010-9-13 27216]

R0 Avgrkx64;AVG Anti-Rootkit Driver;C:\Windows\System32\drivers\avgrkx64.sys [2010-9-7 30288]

R0 PxHlpa64;PxHlpa64;C:\Windows\System32\drivers\PxHlpa64.sys [2010-7-18 55280]

R1 Avgldx64;AVG AVI Loader Driver;C:\Windows\System32\drivers\avgldx64.sys [2010-9-7 305232]

R1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;C:\Windows\System32\drivers\avgmfx64.sys [2010-9-7 41040]

R1 Avgtdia;AVG TDI Driver;C:\Windows\System32\drivers\avgtdia.sys [2010-9-7 381008]

R1 nnfwdk;Nielsen WFP Driver;C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\nnfwdk64.sys [2010-9-26 23120]

R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\System32\drivers\vwififlt.sys [2009-7-13 59904]

R2 Akamai;Akamai NetSession Interface;C:\Windows\System32\svchost.exe -k Akamai [2009-7-13 27136]

R2 AVGIDSAgent;AVGIDSAgent;C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe [2010-10-11 6104656]

R2 avgwd;AVG WatchDog;C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe [2010-9-10 265400]

R2 DockLoginService;Dock Login Service;C:\Program Files\Dell\DellDock\DockLogin.exe [2009-6-9 155648]

R3 AVGIDSDriver;AVGIDSDriver;C:\Windows\System32\drivers\AVGIDSDriver.sys [2010-8-19 157264]

R3 AVGIDSFilter;AVGIDSFilter;C:\Windows\System32\drivers\AVGIDSFilter.sys [2010-8-19 35920]

R3 CtClsFlt;Creative Camera Class Upper Filter Driver;C:\Windows\System32\drivers\CtClsFlt.sys [2010-7-18 172704]

R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\System32\drivers\RtsUStor.sys [2010-7-18 215552]

R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;C:\Windows\System32\drivers\yk62x64.sys [2010-7-18 393728]

S3 SwitchBoard;Adobe SwitchBoard;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-2-19 517096]

S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2010-7-24 1255736]

=============== Created Last 30 ================

2010-11-07 01:55:49 -------- d-----w- C:\Program Files (x86)\Common Files\Akamai

2010-10-27 17:36:23 -------- d-----w- C:\Windows\en

2010-10-27 17:32:07 -------- d-----w- C:\Program Files (x86)\MSN Toolbar

2010-10-27 17:31:54 -------- d-----w- C:\Program Files (x86)\Bing Bar Installer

2010-10-27 13:01:38 961024 ----a-w- C:\Windows\System32\CPFilters.dll

2010-10-27 13:01:38 641536 ----a-w- C:\Windows\SysWow64\CPFilters.dll

2010-10-27 13:01:38 552960 ----a-w- C:\Windows\System32\msdri.dll

2010-10-27 13:01:38 288256 ----a-w- C:\Windows\System32\MSNP.ax

2010-10-27 13:01:38 258560 ----a-w- C:\Windows\System32\mpg2splt.ax

2010-10-27 13:01:38 204288 ----a-w- C:\Windows\SysWow64\MSNP.ax

2010-10-27 13:01:38 199680 ----a-w- C:\Windows\SysWow64\mpg2splt.ax

2010-10-27 13:01:33 27008 ----a-w- C:\Windows\System32\drivers\Diskdump.sys

2010-10-25 17:27:54 69464 ----a-w- C:\Windows\SysWow64\XAPOFX1_3.dll

2010-10-25 17:27:54 515416 ----a-w- C:\Windows\SysWow64\XAudio2_5.dll

2010-10-25 17:27:53 523088 ----a-w- C:\Windows\System32\d3dx10_42.dll

2010-10-25 17:27:53 453456 ----a-w- C:\Windows\SysWow64\d3dx10_42.dll

2010-10-23 05:01:30 469256 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\5a7171de1cb726f2d\InstallManager_WLE_WLE.exe

2010-10-23 05:01:15 15712 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\5224b0821cb726f22\MeshBetaRemover.exe

2010-10-23 05:00:58 94040 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\476782411cb726f1a\DSETUP.dll

2010-10-23 05:00:58 525656 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\476782411cb726f1a\DXSETUP.exe

2010-10-23 05:00:58 1691480 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\476782411cb726f1a\dsetup32.dll

2010-10-23 05:00:56 94040 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\4665c5ea1cb726f19\DSETUP.dll

2010-10-23 05:00:56 525656 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\4665c5ea1cb726f19\DXSETUP.exe

2010-10-23 05:00:56 1691480 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\4665c5ea1cb726f19\dsetup32.dll

2010-10-23 05:00:09 -------- d-----w- C:\Users\Dale\AppData\Local\Windows Live

2010-10-23 04:59:36 257024 ----a-w- C:\Windows\System32\mfreadwrite.dll

2010-10-23 04:59:36 206848 ----a-w- C:\Windows\System32\mfps.dll

2010-10-23 04:59:36 196608 ----a-w- C:\Windows\SysWow64\mfreadwrite.dll

2010-10-23 04:59:35 4068864 ----a-w- C:\Windows\System32\mf.dll

2010-10-23 04:59:35 1888256 ----a-w- C:\Windows\System32\WMVDECOD.DLL

2010-10-23 04:59:35 1619456 ----a-w- C:\Windows\SysWow64\WMVDECOD.DLL

2010-10-23 04:59:33 3181568 ----a-w- C:\Windows\SysWow64\mf.dll

2010-10-17 06:29:50 -------- d-----w- C:\Users\Dale\AppData\Roaming\AVG

2010-10-17 06:16:57 -------- d-----w- C:\Users\Dale\AppData\Roaming\AVG10

2010-10-17 06:15:58 -------- d--h--w- C:\PROGRA~3\Common Files

2010-10-17 06:14:47 -------- d-----w- C:\PROGRA~3\AVG10

2010-10-17 06:10:22 7935824 ----a-w- C:\PROGRA~3\Microsoft\Windows Defender\Definition Updates\{4A13BF62-AF13-4484-B964-2445D329FB6B}\mpengine.dll

2010-10-17 06:10:22 270208 ------w- C:\Windows\System32\MpSigStub.exe

2010-10-17 06:01:47 -------- d-----w- C:\PROGRA~3\MFAData

2010-10-15 00:53:59 -------- d-----w- C:\Program Files (x86)\Sprint Instinct Applications

2010-10-15 00:53:59 -------- d-----w- C:\PROGRA~3\Tarma Installer

2010-10-15 00:41:04 -------- d-----w- C:\Users\Dale\AppData\Roaming\Smith Micro

2010-10-15 00:37:12 -------- d-----w- C:\Program Files (x86)\Samsung

2010-10-15 00:36:53 -------- d-----w- C:\Users\Dale\AppData\Roaming\Sprint Desktop Sync

2010-10-15 00:36:50 -------- d-----w- C:\Program Files (x86)\Sprint Desktop Sync

2010-10-15 00:35:27 222552 ------w- C:\Windows\RM.exe

2010-10-14 13:53:42 -------- d-----w- C:\Users\Dale\AppData\Local\Dell

2010-10-14 13:51:35 -------- d-----w- C:\Windows\pss

2010-10-14 13:47:24 100352 ----a-w- C:\Windows\System32\Vxdif.dll

2010-10-14 13:47:23 301688 ----a-w- C:\Windows\System32\drivers\Apfiltr.sys

2010-10-14 13:41:43 -------- d-----w- C:\Windows\SysWow64\Adobe

2010-10-13 19:12:43 -------- d-----w- C:\78028d37eedda180bc

==================== Find3M ====================

2010-09-28 14:31:18 103784 ----a-w- C:\Users\Dale\GoToAssistDownloadHelper.exe

2010-09-23 05:47:28 49016 ----a-w- C:\Windows\SysWow64\sirenacm.dll

2010-09-23 05:32:56 301936 ----a-w- C:\Windows\WLXPGSS.SCR

2010-09-23 03:50:16 348160 ----a-w- C:\Windows\SysWow64\msvcr71.dll

2010-09-23 03:50:15 499712 ----a-w- C:\Windows\SysWow64\msvcp71.dll

2010-09-21 19:49:02 252800 ----a-w- C:\Windows\System32\LIVESSP.DLL

2010-09-21 19:03:14 208768 ----a-w- C:\Windows\SysWow64\LIVESSP.DLL

2010-09-15 09:50:37 472808 ----a-w- C:\Windows\SysWow64\deployJava1.dll

2010-09-13 21:28:00 27216 ----a-w- C:\Windows\System32\drivers\AVGIDSEH.sys

2010-09-10 05:35:44 135168 ----a-w- C:\Windows\apppatch\AppPatch64\AcXtrnal.dll

2010-09-10 05:35:43 347648 ----a-w- C:\Windows\apppatch\AppPatch64\AcLayers.dll

2010-09-08 05:36:17 1192960 ----a-w- C:\Windows\System32\wininet.dll

2010-09-08 05:34:34 57856 ----a-w- C:\Windows\System32\licmgr10.dll

2010-09-08 04:30:04 978432 ----a-w- C:\Windows\SysWow64\wininet.dll

2010-09-08 04:28:15 44544 ----a-w- C:\Windows\SysWow64\licmgr10.dll

2010-09-08 04:16:38 482816 ----a-w- C:\Windows\System32\html.iec

2010-09-08 03:35:30 1638912 ----a-w- C:\Windows\System32\mshtml.tlb

2010-09-08 03:22:31 386048 ----a-w- C:\Windows\SysWow64\html.iec

2010-09-08 02:48:16 1638912 ----a-w- C:\Windows\SysWow64\mshtml.tlb

2010-09-07 08:48:58 381008 ----a-w- C:\Windows\System32\drivers\avgtdia.sys

2010-09-07 08:48:56 41040 ----a-w- C:\Windows\System32\drivers\avgmfx64.sys

2010-09-07 08:48:52 305232 ----a-w- C:\Windows\System32\drivers\avgldx64.sys

2010-09-07 08:48:50 30288 ----a-w- C:\Windows\System32\drivers\avgrkx64.sys

2010-09-01 05:12:09 12625920 ----a-w- C:\Windows\System32\wmploc.DLL

2010-09-01 04:23:49 12625408 ----a-w- C:\Windows\SysWow64\wmploc.DLL

2010-09-01 02:58:34 3123712 ----a-w- C:\Windows\System32\win32k.sys

2010-08-31 04:32:30 954752 ----a-w- C:\Windows\SysWow64\mfc40.dll

2010-08-31 04:32:30 954288 ----a-w- C:\Windows\SysWow64\mfc40u.dll

2010-08-27 06:14:02 236032 ----a-w- C:\Windows\System32\srvsvc.dll

2010-08-27 05:46:48 9728 ----a-w- C:\Windows\SysWow64\sscore.dll

2010-08-27 03:38:04 463360 ----a-w- C:\Windows\System32\drivers\srv.sys

2010-08-27 03:37:48 402944 ----a-w- C:\Windows\System32\drivers\srv2.sys

2010-08-27 03:37:26 161792 ----a-w- C:\Windows\System32\drivers\srvnet.sys

2010-08-26 05:27:28 148992 ----a-w- C:\Windows\System32\t2embed.dll

2010-08-26 04:39:58 109056 ----a-w- C:\Windows\SysWow64\t2embed.dll

2010-08-21 06:38:47 1024512 ----a-w- C:\Windows\System32\wmpmde.dll

2010-08-21 06:36:49 340992 ----a-w- C:\Windows\System32\schannel.dll

2010-08-21 06:31:06 633856 ----a-w- C:\Windows\System32\comctl32.dll

2010-08-21 06:29:47 558592 ----a-w- C:\Windows\System32\spoolsv.exe

2010-08-21 05:36:33 738816 ----a-w- C:\Windows\SysWow64\wmpmde.dll

2010-08-21 05:36:24 224256 ----a-w- C:\Windows\SysWow64\schannel.dll

2010-08-21 05:33:24 530432 ----a-w- C:\Windows\SysWow64\comctl32.dll

2010-08-20 02:42:38 35920 ----a-w- C:\Windows\System32\drivers\AVGIDSFilter.sys

2010-08-20 02:42:38 157264 ----a-w- C:\Windows\System32\drivers\AVGIDSDriver.sys

============= FINISH: 20:28:00.09 ===============

Link to post
Share on other sites

DDS (Ver_10-11-10.01) - NTFS_AMD64

Run by Dale at 20:27:25.29 on Thu 11/11/2010

Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_22

Microsoft Windows 7 Home Premium 6.1.7600.0.1252.1.1033.18.4056.2509 [GMT -6:00]

============== Running Processes ===============

C:\PROGRA~2\AVG\AVG10\avgchsva.exe

C:\Windows\system32\wininit.exe

C:\Windows\system32\lsm.exe

C:\Windows\system32\svchost.exe -k DcomLaunch

C:\Windows\system32\svchost.exe -k RPCSS

C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted

C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted

C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_afc3018f8cfedd20\STacSV64.exe

C:\Windows\system32\svchost.exe -k LocalService

C:\Program Files\Dell\DellDock\DockLogin.exe

C:\Windows\system32\svchost.exe -k NetworkService

C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRYSVC.EXE

C:\Windows\system32\WLANExt.exe

C:\Windows\system32\conhost.exe

C:\Program Files\Dell\Dell Wireless WLAN Card\bcmwltry.exe

C:\Windows\System32\spoolsv.exe

C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork

C:\Windows\SysWOW64\svchost.exe -k Akamai

C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe

C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe

C:\Windows\system32\svchost.exe -k imgsvc

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe

C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe

C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe

C:\Windows\system32\Dwm.exe

C:\Windows\system32\taskhost.exe

C:\Windows\Explorer.EXE

C:\Program Files\DellTPad\Apoint.exe

C:\Program Files\IDT\WDM\sttray64.exe

C:\Windows\System32\igfxtray.exe

C:\Windows\System32\igfxpers.exe

C:\Windows\system32\igfxsrvc.exe

C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRAY.EXE

C:\Program Files\Dell\QuickSet\quickset.exe

C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe

C:\Windows\system32\wbem\wmiprvse.exe

C:\Windows\System32\StikyNot.exe

C:\Program Files (x86)\Skype\Phone\Skype.exe

C:\Program Files\Dell\DellDock\DellDock.exe

C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe

C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe

C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe

C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

C:\Program Files (x86)\Yahoo!\Common\YMailAdvisor.exe

C:\Program Files (x86)\AVG\AVG10\avgtray.exe

C:\Program Files (x86)\AVG\AVG10\avgnsa.exe

C:\Program Files (x86)\AVG\AVG10\Identity Protection\agent\bin\avgidsmonitor.exe

C:\Windows\system32\conhost.exe

C:\Program Files (x86)\AVG\AVG10\avgemca.exe

C:\Windows\system32\conhost.exe

C:\Program Files (x86)\Sprint Instinct Applications\MEMonitor.exe

C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe

C:\Program Files\DellTPad\ApMsgFwd.exe

C:\Program Files\DellTPad\HidFind.exe

C:\Program Files\DellTPad\Apntex.exe

C:\Windows\system32\conhost.exe

C:\Windows\system32\SearchIndexer.exe

C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted

C:\Program Files\Windows Media Player\wmpnetwk.exe

C:\Users\Dale\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Windows\System32\svchost.exe -k LocalServicePeerNet

C:\Users\Dale\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Dale\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Dale\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Program Files (x86)\Dell Support Center\bin\sprtsvc.exe

C:\PROGRA~2\AVG\AVG10\avgrsa.exe

C:\Program Files (x86)\AVG\AVG10\avgcsrva.exe

C:\Users\Dale\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Dale\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Windows\system32\taskeng.exe

C:\Windows\system32\SearchProtocolHost.exe

C:\Windows\system32\SearchFilterHost.exe

C:\Windows\system32\DllHost.exe

C:\Windows\system32\DllHost.exe

C:\Users\Dale\Downloads\dds.scr

C:\Windows\system32\conhost.exe

C:\Windows\system32\wbem\wmiprvse.exe

============== Pseudo HJT Report ===============

uStart Page = hxxp://www.yahoo.com/?fr=fp-tyc8

mWinlogon: Userinit=userinit.exe

BHO: &Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll

BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE

\rpbrowserrecordplugin.dll

BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - C:\Program Files (x86)\AVG\AVG10\avgssie.dll

BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll

BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

BHO: Skype add-on for Internet Explorer: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

BHO: Bing Bar BHO: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll

BHO: Ask Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll

BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll

BHO: SingleInstance Class: {fdad4da1-61a2-4fd8-9c17-86f7ac245081} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll

TB: Ask Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll

TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll

TB: @C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2322.0\npwinext.dll,-100: {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\MSN Toolbar\Platform

\6.3.2322.0\npwinext.dll

TB: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File

uRun: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe

uRun: [skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized

uRun: [Google Update] "C:\Users\Dale\AppData\Local\Google\Update\GoogleUpdate.exe" /c

mRun: [PDVDDXSrv] "C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe"

mRun: [Dell Webcam Central] "C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" /mode2

mRun: [Desktop Disc Tool] "c:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe"

mRun: [DellSupportCenter] "C:\Program Files (x86)\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter

mRun: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

mRun: [YMailAdvisor] "C:\Program Files (x86)\Yahoo!\Common\YMailAdvisor.exe"

mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"

mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

mRun: [AVG_TRAY] C:\Program Files (x86)\AVG\AVG10\avgtray.exe

mRun: [switchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe

mRun: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin

StartupFolder: C:\Users\Dale\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\DELLDO~1.LNK - C:\Program Files\Dell\DellDock\DellDock.exe

StartupFolder: C:\Users\Dale\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\SPRINT~1.LNK - C:\Windows\RM.exe

mPolicies-explorer: NoActiveDesktop = 1 (0x1)

mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)

mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)

mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)

mPolicies-system: EnableUIADesktopToggle = 0 (0x0)

IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files (x86)\Yahoo!\Common\Yinsthelper.dll

DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab

DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab

DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab

Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG10\avgpp.dll

Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll

Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL

Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

BHO-X64: AVG Safe Search: {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG10\avgssiea.dll

BHO-X64: WormRadar.com IESiteBlocker.NavFilter - No File

BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

BHO-X64: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

TB-X64: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File

TB-X64: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File

mRun-x64: [Apoint] C:\Program Files\DellTPad\Apoint.exe

mRun-x64: [sysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe

mRun-x64: [igfxTray] C:\Windows\system32\igfxtray.exe

mRun-x64: [HotKeysCmds] C:\Windows\system32\hkcmd.exe

mRun-x64: [Persistence] C:\Windows\system32\igfxpers.exe

mRun-x64: [broadcom Wireless Manager UI] C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRAY.exe

mRun-x64: [QuickSet] C:\Program Files\Dell\QuickSet\QuickSet.exe

mRun-x64: [iAAnotif] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe

mRun-x64: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"

================= FIREFOX ===================

FF - ProfilePath - C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\6091t0hr.default\

FF - component: C:\Program Files (x86)\AVG\AVG10\Firefox\components\avgssff.dll

FF - component: C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\FFAddon\components\nsgkff36_meter1.dll

FF - component: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext\components\nprpffbrowserrecordext.dll

FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll

FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

FF - plugin: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll

FF - plugin: C:\Users\Dale\AppData\Local\Google\Update\1.2.183.39\npGoogleOneClick8.dll

FF - plugin: C:\Users\Dale\AppData\Local\Yahoo!\BrowserPlus\2.9.8\Plugins\npybrowserplus_2.9.8.dll

FF - plugin: C:\Users\Dale\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll

FF - plugin: C:\Users\Dale\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll

FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll

FF - HiddenExtension: Java Console: No Registry Reference - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}

FF - HiddenExtension: Java Console: No Registry Reference - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}

---- FIREFOX POLICIES ----

C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbaam7a8h", true);

C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--fiqz9s", true); // Traditional

C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--fiqs8s", true); // Simplified

C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--j6w193g", true);

C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);

C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4a87g", true);

C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbqly7c0a67fbc", true);

C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbqly7cvafr", true);

C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--kpry57d", true); // Traditional

C:\Program Files (x86)\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--kprw13d", true); // Simplified

============= SERVICES / DRIVERS ===============

R0 AVGIDSEH;AVGIDSEH;C:\Windows\System32\drivers\AVGIDSEH.sys [2010-9-13 27216]

R0 Avgrkx64;AVG Anti-Rootkit Driver;C:\Windows\System32\drivers\avgrkx64.sys [2010-9-7 30288]

R0 PxHlpa64;PxHlpa64;C:\Windows\System32\drivers\PxHlpa64.sys [2010-7-18 55280]

R1 Avgldx64;AVG AVI Loader Driver;C:\Windows\System32\drivers\avgldx64.sys [2010-9-7 305232]

R1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;C:\Windows\System32\drivers\avgmfx64.sys [2010-9-7 41040]

R1 Avgtdia;AVG TDI Driver;C:\Windows\System32\drivers\avgtdia.sys [2010-9-7 381008]

R1 nnfwdk;Nielsen WFP Driver;C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\nnfwdk64.sys [2010-9-26 23120]

R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\System32\drivers\vwififlt.sys [2009-7-13 59904]

R2 Akamai;Akamai NetSession Interface;C:\Windows\System32\svchost.exe -k Akamai [2009-7-13 27136]

R2 AVGIDSAgent;AVGIDSAgent;C:\Program Files (x86)\AVG\AVG10\Identity Protection\Agent\Bin\AVGIDSAgent.exe [2010-10-11 6104656]

R2 avgwd;AVG WatchDog;C:\Program Files (x86)\AVG\AVG10\avgwdsvc.exe [2010-9-10 265400]

R2 DockLoginService;Dock Login Service;C:\Program Files\Dell\DellDock\DockLogin.exe [2009-6-9 155648]

R3 AVGIDSDriver;AVGIDSDriver;C:\Windows\System32\drivers\AVGIDSDriver.sys [2010-8-19 157264]

R3 AVGIDSFilter;AVGIDSFilter;C:\Windows\System32\drivers\AVGIDSFilter.sys [2010-8-19 35920]

R3 CtClsFlt;Creative Camera Class Upper Filter Driver;C:\Windows\System32\drivers\CtClsFlt.sys [2010-7-18 172704]

R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\System32\drivers\RtsUStor.sys [2010-7-18 215552]

R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;C:\Windows\System32\drivers\yk62x64.sys [2010-7-18 393728]

S3 SwitchBoard;Adobe SwitchBoard;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-2-19 517096]

S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2010-7-24 1255736]

=============== Created Last 30 ================

2010-11-07 01:55:49 -------- d-----w- C:\Program Files (x86)\Common Files\Akamai

2010-10-27 17:36:23 -------- d-----w- C:\Windows\en

2010-10-27 17:32:07 -------- d-----w- C:\Program Files (x86)\MSN Toolbar

2010-10-27 17:31:54 -------- d-----w- C:\Program Files (x86)\Bing Bar Installer

2010-10-27 13:01:38 961024 ----a-w- C:\Windows\System32\CPFilters.dll

2010-10-27 13:01:38 641536 ----a-w- C:\Windows\SysWow64\CPFilters.dll

2010-10-27 13:01:38 552960 ----a-w- C:\Windows\System32\msdri.dll

2010-10-27 13:01:38 288256 ----a-w- C:\Windows\System32\MSNP.ax

2010-10-27 13:01:38 258560 ----a-w- C:\Windows\System32\mpg2splt.ax

2010-10-27 13:01:38 204288 ----a-w- C:\Windows\SysWow64\MSNP.ax

2010-10-27 13:01:38 199680 ----a-w- C:\Windows\SysWow64\mpg2splt.ax

2010-10-27 13:01:33 27008 ----a-w- C:\Windows\System32\drivers\Diskdump.sys

2010-10-25 17:27:54 69464 ----a-w- C:\Windows\SysWow64\XAPOFX1_3.dll

2010-10-25 17:27:54 515416 ----a-w- C:\Windows\SysWow64\XAudio2_5.dll

2010-10-25 17:27:53 523088 ----a-w- C:\Windows\System32\d3dx10_42.dll

2010-10-25 17:27:53 453456 ----a-w- C:\Windows\SysWow64\d3dx10_42.dll

2010-10-23 05:01:30 469256 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\5a7171de1cb726f2d\InstallManager_WLE_WLE.exe

2010-10-23 05:01:15 15712 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\5224b0821cb726f22\MeshBetaRemover.exe

2010-10-23 05:00:58 94040 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\476782411cb726f1a\DSETUP.dll

2010-10-23 05:00:58 525656 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\476782411cb726f1a\DXSETUP.exe

2010-10-23 05:00:58 1691480 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\476782411cb726f1a\dsetup32.dll

2010-10-23 05:00:56 94040 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\4665c5ea1cb726f19\DSETUP.dll

2010-10-23 05:00:56 525656 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\4665c5ea1cb726f19\DXSETUP.exe

2010-10-23 05:00:56 1691480 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\4665c5ea1cb726f19\dsetup32.dll

2010-10-23 05:00:09 -------- d-----w- C:\Users\Dale\AppData\Local\Windows Live

2010-10-23 04:59:36 257024 ----a-w- C:\Windows\System32\mfreadwrite.dll

2010-10-23 04:59:36 206848 ----a-w- C:\Windows\System32\mfps.dll

2010-10-23 04:59:36 196608 ----a-w- C:\Windows\SysWow64\mfreadwrite.dll

2010-10-23 04:59:35 4068864 ----a-w- C:\Windows\System32\mf.dll

2010-10-23 04:59:35 1888256 ----a-w- C:\Windows\System32\WMVDECOD.DLL

2010-10-23 04:59:35 1619456 ----a-w- C:\Windows\SysWow64\WMVDECOD.DLL

2010-10-23 04:59:33 3181568 ----a-w- C:\Windows\SysWow64\mf.dll

2010-10-17 06:29:50 -------- d-----w- C:\Users\Dale\AppData\Roaming\AVG

2010-10-17 06:16:57 -------- d-----w- C:\Users\Dale\AppData\Roaming\AVG10

2010-10-17 06:15:58 -------- d--h--w- C:\PROGRA~3\Common Files

2010-10-17 06:14:47 -------- d-----w- C:\PROGRA~3\AVG10

2010-10-17 06:10:22 7935824 ----a-w- C:\PROGRA~3\Microsoft\Windows Defender\Definition Updates\{4A13BF62-AF13-4484-B964-2445D329FB6B}\mpengine.dll

2010-10-17 06:10:22 270208 ------w- C:\Windows\System32\MpSigStub.exe

2010-10-17 06:01:47 -------- d-----w- C:\PROGRA~3\MFAData

2010-10-15 00:53:59 -------- d-----w- C:\Program Files (x86)\Sprint Instinct Applications

2010-10-15 00:53:59 -------- d-----w- C:\PROGRA~3\Tarma Installer

2010-10-15 00:41:04 -------- d-----w- C:\Users\Dale\AppData\Roaming\Smith Micro

2010-10-15 00:37:12 -------- d-----w- C:\Program Files (x86)\Samsung

2010-10-15 00:36:53 -------- d-----w- C:\Users\Dale\AppData\Roaming\Sprint Desktop Sync

2010-10-15 00:36:50 -------- d-----w- C:\Program Files (x86)\Sprint Desktop Sync

2010-10-15 00:35:27 222552 ------w- C:\Windows\RM.exe

2010-10-14 13:53:42 -------- d-----w- C:\Users\Dale\AppData\Local\Dell

2010-10-14 13:51:35 -------- d-----w- C:\Windows\pss

2010-10-14 13:47:24 100352 ----a-w- C:\Windows\System32\Vxdif.dll

2010-10-14 13:47:23 301688 ----a-w- C:\Windows\System32\drivers\Apfiltr.sys

2010-10-14 13:41:43 -------- d-----w- C:\Windows\SysWow64\Adobe

2010-10-13 19:12:43 -------- d-----w- C:\78028d37eedda180bc

==================== Find3M ====================

2010-09-28 14:31:18 103784 ----a-w- C:\Users\Dale\GoToAssistDownloadHelper.exe

2010-09-23 05:47:28 49016 ----a-w- C:\Windows\SysWow64\sirenacm.dll

2010-09-23 05:32:56 301936 ----a-w- C:\Windows\WLXPGSS.SCR

2010-09-23 03:50:16 348160 ----a-w- C:\Windows\SysWow64\msvcr71.dll

2010-09-23 03:50:15 499712 ----a-w- C:\Windows\SysWow64\msvcp71.dll

2010-09-21 19:49:02 252800 ----a-w- C:\Windows\System32\LIVESSP.DLL

2010-09-21 19:03:14 208768 ----a-w- C:\Windows\SysWow64\LIVESSP.DLL

2010-09-15 09:50:37 472808 ----a-w- C:\Windows\SysWow64\deployJava1.dll

2010-09-13 21:28:00 27216 ----a-w- C:\Windows\System32\drivers\AVGIDSEH.sys

2010-09-10 05:35:44 135168 ----a-w- C:\Windows\apppatch\AppPatch64\AcXtrnal.dll

2010-09-10 05:35:43 347648 ----a-w- C:\Windows\apppatch\AppPatch64\AcLayers.dll

2010-09-08 05:36:17 1192960 ----a-w- C:\Windows\System32\wininet.dll

2010-09-08 05:34:34 57856 ----a-w- C:\Windows\System32\licmgr10.dll

2010-09-08 04:30:04 978432 ----a-w- C:\Windows\SysWow64\wininet.dll

2010-09-08 04:28:15 44544 ----a-w- C:\Windows\SysWow64\licmgr10.dll

2010-09-08 04:16:38 482816 ----a-w- C:\Windows\System32\html.iec

2010-09-08 03:35:30 1638912 ----a-w- C:\Windows\System32\mshtml.tlb

2010-09-08 03:22:31 386048 ----a-w- C:\Windows\SysWow64\html.iec

2010-09-08 02:48:16 1638912 ----a-w- C:\Windows\SysWow64\mshtml.tlb

2010-09-07 08:48:58 381008 ----a-w- C:\Windows\System32\drivers\avgtdia.sys

2010-09-07 08:48:56 41040 ----a-w- C:\Windows\System32\drivers\avgmfx64.sys

2010-09-07 08:48:52 305232 ----a-w- C:\Windows\System32\drivers\avgldx64.sys

2010-09-07 08:48:50 30288 ----a-w- C:\Windows\System32\drivers\avgrkx64.sys

2010-09-01 05:12:09 12625920 ----a-w- C:\Windows\System32\wmploc.DLL

2010-09-01 04:23:49 12625408 ----a-w- C:\Windows\SysWow64\wmploc.DLL

2010-09-01 02:58:34 3123712 ----a-w- C:\Windows\System32\win32k.sys

2010-08-31 04:32:30 954752 ----a-w- C:\Windows\SysWow64\mfc40.dll

2010-08-31 04:32:30 954288 ----a-w- C:\Windows\SysWow64\mfc40u.dll

2010-08-27 06:14:02 236032 ----a-w- C:\Windows\System32\srvsvc.dll

2010-08-27 05:46:48 9728 ----a-w- C:\Windows\SysWow64\sscore.dll

2010-08-27 03:38:04 463360 ----a-w- C:\Windows\System32\drivers\srv.sys

2010-08-27 03:37:48 402944 ----a-w- C:\Windows\System32\drivers\srv2.sys

2010-08-27 03:37:26 161792 ----a-w- C:\Windows\System32\drivers\srvnet.sys

2010-08-26 05:27:28 148992 ----a-w- C:\Windows\System32\t2embed.dll

2010-08-26 04:39:58 109056 ----a-w- C:\Windows\SysWow64\t2embed.dll

2010-08-21 06:38:47 1024512 ----a-w- C:\Windows\System32\wmpmde.dll

2010-08-21 06:36:49 340992 ----a-w- C:\Windows\System32\schannel.dll

2010-08-21 06:31:06 633856 ----a-w- C:\Windows\System32\comctl32.dll

2010-08-21 06:29:47 558592 ----a-w- C:\Windows\System32\spoolsv.exe

2010-08-21 05:36:33 738816 ----a-w- C:\Windows\SysWow64\wmpmde.dll

2010-08-21 05:36:24 224256 ----a-w- C:\Windows\SysWow64\schannel.dll

2010-08-21 05:33:24 530432 ----a-w- C:\Windows\SysWow64\comctl32.dll

2010-08-20 02:42:38 35920 ----a-w- C:\Windows\System32\drivers\AVGIDSFilter.sys

2010-08-20 02:42:38 157264 ----a-w- C:\Windows\System32\drivers\AVGIDSDriver.sys

============= FINISH: 20:28:00.09 ===============

Link to post
Share on other sites

That looks OK.

We can run a online scan to make sure.

http://www.eset.eu/online-scanner

Go here to run an online scannner from ESET.

Click the green ESET Online Scanner button.

Read the End User License Agreement and check the box: YES, I accept the Terms of Use.

Click on the Start button next to it.

You may receive an alert on the address bar that "This site might require the following ActiveX control...Click here to install...". Click on that alert and then click Insall ActiveX component.

A new window will appear asking "Do you want to install this software?"".

Answer Yes to download and install the ActiveX controls that allows the scan to run.

Click Start.

Check Remove found threats and Scan potentially unwanted applications.

Click Scan to begin.

If offered the option to get information or buy software. Just close the window.

Wait for the scan to finish

Use notepad to open the logfile located at C:\Program Files\EsetOnlineScanner\log.txt

Copy and paste that log as a reply to this topic.

Link to post
Share on other sites

Here it is.

ESETSmartInstaller@High as downloader log:

all ok

# version=7

# OnlineScannerApp.exe=1.0.0.1

# OnlineScanner.ocx=1.0.0.6211

# api_version=3.0.2

# EOSSerial=e8794176e3c15a499eac264b268e8f91

# end=finished

# remove_checked=true

# archives_checked=false

# unwanted_checked=true

# unsafe_checked=false

# antistealth_checked=true

# utc_time=2010-11-12 03:30:03

# local_time=2010-11-11 09:30:03 (-0600, Central Standard Time)

# country="United States"

# lang=1033

# osver=6.1.7600 NT

# compatibility_mode=1024 16777215 100 0 1311694 1311694 0 0

# compatibility_mode=5893 16776574 100 94 1312816 41073688 0 0

# compatibility_mode=8192 67108863 100 0 0 0 0 0

# scanned=138983

# found=0

# cleaned=0

# scan_time=2365

Link to post
Share on other sites

Everything looks clean to me.

I'm really thinking the issue is between AVG and MalwareBytes.

What do you tthink about using a different free anti-virus program?

Not sure, McAfee Premium is offered by my internet service ATT/Yahoo - Uverse, however, it allowed "crap" to get by, hence the problems I had previously, and my introduction to Malwarebytes'.

I am wondering why, if it is AVG, that there was not a problem prior to my downloading the beta version? Just curious.

You want me to try another anti-virus, I can. Wife is still running AVG and previous 1.46 version and no issues.

Lay any suggestions on me. I would really like to be running MalwareBytes.

Link to post
Share on other sites

If you want to keep AVG, follow these instructions for 64bit Windows 7

http://forums.malwarebytes.org/index.php?s...mp;#entry167851

I'm headed to bed.

I'll check back in the morning and see what you decide.

It does not allow me to add Malwarebytes' as it does not show up. At this time, if you remember, I do not have that program on the computer, so it is not picking it up.

Rest well. I will simply not be surfing much till we get back together.

Thanks.

Link to post
Share on other sites

Nothing better than a good nights sleep.

We have a few options.

Option 1

1. Download MBAM, install it but DON'T do any scans, etc. Just install it.

Now try this: http://forums.malwarebytes.org/index.php?s...mp;#entry167851

using instructions for 64bit Windows 7.

If that all goes well, try MBAM.

Option 2

1. Download one of the below free anti-virus programs, saving it to your desktop. DO NOT install it yet.

2. After that. Try cntl-alt-del to bring up the task manager . . click on the Processes tab and stop anything that looks like AVG: AVGUPSVC.EXE, AVGAMSVR.EXE & AVGEMC.EXE.

3. Open the Control Panel and use Add/Remove Programs and uninstall AVG.

4. Run the install for the new anti-virus program.

5. Try running a MBAM scan

Use an AntiVirus Software - Choose only one - More than one will conflict. It is very important that your computer has anti-virus software running to protect against viruses. Update Antivirus prior to manual scans as necessary or as used. Please only choose one, having more than one can cause problems, such as crashes and your computer to slow down.

Link to post
Share on other sites

I have done the first part of the number 1 option. However, there is no "add list" or window anywhere, after I do the first steps. Therefore I can not do the next step:

Click on Add List then copy and paste the text inside the CODE box exactly as written into the AVG window. Select the entries appropriate to your version of Windows:

There is an "add file" however it goes to a windows explorer window with the SysWOW64 files in it, and not an open window for copy/paste.

I do have this in my AVG Resident Sheild - Excluded Items: C:\Program Files (x86)\Malwarebytes' Anti-Malware

Link to post
Share on other sites

I do have this in my AVG Resident Sheild - Excluded Items: C:\Program Files (x86)\Malwarebytes' Anti-Malware
Did you add that line?

You also need to add these:

"add file"

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\zlib.dll

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.dll

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamext.dll

C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\rules.ref

C:\Windows\System32\drivers\mbam.sys

C:\Windows\SysWoW64\drivers\mbamswissarmy.sys

Link to post
Share on other sites

I have got them all added, including the first one I previously mentioned, with the exception of one:

C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\rules.ref

When I go to the above, I just get a folder and when I open the folder there is nothing in it.

Link to post
Share on other sites

Try opening MBAM and check for updates.

That should put that file in C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware

Now add that file: C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\rules.ref

Did the updates as suggested. Still nothing in the folder:

C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware

When I open the folder it says "no items match your search" and that is it.

Link to post
Share on other sites

Run mbam-clean.exe

Reboot and make sure all these are gone.

C:\Program Files (x86)\Malwarebytes' Anti-Malware

C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware

C:\Windows\System32\drivers\mbam.sys

C:\Windows\SysWoW64\drivers\mbamswissarmy.sys

The below two are still in files: (Notice that the caps on the first one is how it appears)

C:\ProgramFiles(x86)\MALWAREBYTES ANTI-MALWARE\MBAMEXT.DLL

C:\Windows\System32\drivers\mbam.sys

On the below, I can no longer find the ProgramData file or folder. It was there previously, so I guess it was totally deleted

C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware

Link to post
Share on other sites

Delete this folder

C:\ProgramFiles(x86)\MALWAREBYTES ANTI-MALWARE

Delete this file

C:\Windows\System32\drivers\mbam.sys

Also do you see your AVG Icon on the bottom right of your taskbar? It's down by the time.

If you Right Click on the Icon is there a option to disable it?

Link to post
Share on other sites

Delete this folder

C:\ProgramFiles(x86)\MALWAREBYTES ANTI-MALWARE

Delete this file

C:\Windows\System32\drivers\mbam.sys

Also do you see your AVG Icon on the bottom right of your taskbar? It's down by the time.

If you Right Click on the Icon is there a option to disable it?

Both have been deleted. Yes, The AVG can be temp disabled. I did that on one of the steps yesterday, when I re-installed Malwarebytes. It is auto set to 10 minutes, but I can adjust that.

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.