PDA

View Full Version : Win32.Pornpopup problem



REDEEMER
2010-06-13, 19:11
I've been downloading some stuff lately and I guess that got me into trouble. Every time I do a spy-bot check there is the same problem that keeps being detected. Win32.PornPopup. I try to fix it and Spy-Bot says that it is fixed but then when I scan again Win32.PornPopup shows up again. I did a scan with Clamwin anti-virus and it says I have a bunch of trogan horses. I also tried to fix the problem with the Avast anti-virus program. Avast found two treats and then I clicked on the option to delete in Avast. It said that they were deleted and when I scanned again with Avast it said that everything was okay. However, Spy-Bot still says that Win.32PornPopup is present. I tried to follow the instructions on this site as best I could. I put Spy-Bot into advanced mode and Unchecked "Resident TeaTimer". Although there were no prompts afterward like it said there would be on here. I downloaded ERUNT and made it so that only System registry was checked. There was no option to Click save and then go to File > Exit. I just hit okay and it did it's thing and then I closed it. I wasn't sure so I tired it again after the DDs part. I had to delete the original attempt but I'm not sure if that matters. I did the DDS thing and here are the two reports that I read I should put on here:




UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT

DDS (Ver_10-03-17.01)

Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 9/16/2009 8:53:54 PM
System Uptime: 6/13/2010 11:52:36 AM (1 hours ago)

Motherboard: ASUSTeK Computer INC. | | P5QL/EPU
Processor: Intel Pentium III Xeon processor | LGA775 | 3010/333mhz

==== Disk Partitions =========================

A: is Removable
C: is FIXED (NTFS) - 596 GiB total, 125.228 GiB free.
D: is CDROM ()
V: is CDROM ()

==== Disabled Device Manager Items =============

==== System Restore Points ===================

RP171: 3/16/2010 9:40:21 PM - System Checkpoint
RP172: 3/18/2010 2:06:35 AM - System Checkpoint
RP173: 3/19/2010 7:38:01 PM - System Checkpoint
RP174: 3/22/2010 4:17:41 AM - System Checkpoint
RP175: 3/24/2010 4:06:46 PM - System Checkpoint
RP176: 3/27/2010 3:16:47 PM - System Checkpoint
RP177: 3/31/2010 11:14:49 AM - Software Distribution Service 3.0
RP178: 4/2/2010 2:09:31 PM - System Checkpoint
RP179: 4/3/2010 11:34:20 PM - System Checkpoint
RP180: 4/5/2010 12:05:53 AM - System Checkpoint
RP181: 4/6/2010 12:39:13 AM - System Checkpoint
RP182: 4/7/2010 5:54:20 PM - System Checkpoint
RP183: 4/8/2010 10:43:25 PM - System Checkpoint
RP184: 4/10/2010 3:40:52 AM - System Checkpoint
RP185: 4/11/2010 9:31:02 AM - Installed Windows Media Format 9 Series Runtime Setup
RP186: 4/11/2010 4:57:43 PM - Software Distribution Service 3.0
RP187: 4/13/2010 2:36:08 AM - System Checkpoint
RP188: 4/13/2010 3:08:46 AM - Installed Windows Media Format Runtime
RP189: 4/14/2010 4:47:40 AM - Software Distribution Service 3.0
RP190: 4/15/2010 9:15:21 AM - System Checkpoint
RP191: 4/16/2010 10:16:20 AM - System Checkpoint
RP192: 4/17/2010 9:07:59 PM - System Checkpoint
RP193: 4/19/2010 7:25:19 AM - System Checkpoint
RP194: 4/21/2010 12:32:11 AM - System Checkpoint
RP195: 4/22/2010 8:28:26 AM - System Checkpoint
RP196: 4/23/2010 4:01:02 PM - System Checkpoint
RP197: 4/26/2010 12:04:45 PM - System Checkpoint
RP198: 4/27/2010 1:12:14 PM - System Checkpoint
RP199: 4/28/2010 7:31:24 PM - System Checkpoint
RP200: 4/29/2010 10:22:26 PM - System Checkpoint
RP201: 5/2/2010 5:13:08 AM - System Checkpoint
RP202: 5/3/2010 11:09:05 AM - System Checkpoint
RP203: 5/4/2010 12:24:52 PM - System Checkpoint
RP204: 5/4/2010 10:32:47 PM - Removed iTunes
RP205: 5/4/2010 11:07:16 PM - Installed iTunes
RP206: 5/6/2010 12:19:07 AM - System Checkpoint
RP207: 5/7/2010 5:50:06 PM - System Checkpoint
RP208: 5/8/2010 4:38:02 PM - Installed iPhoneBrowser
RP209: 5/8/2010 5:49:56 PM - Installed iPhone Folders
RP210: 5/9/2010 5:59:14 PM - System Checkpoint
RP211: 5/12/2010 3:00:19 AM - Software Distribution Service 3.0
RP212: 5/13/2010 8:55:51 AM - System Checkpoint
RP213: 5/15/2010 3:54:47 PM - System Checkpoint
RP214: 5/16/2010 4:01:09 PM - System Checkpoint
RP215: 5/19/2010 11:39:27 PM - System Checkpoint
RP216: 5/21/2010 5:59:27 PM - System Checkpoint
RP217: 5/22/2010 7:19:52 PM - System Checkpoint
RP218: 5/23/2010 8:14:34 PM - System Checkpoint
RP219: 5/26/2010 12:16:56 AM - Software Distribution Service 3.0
RP220: 5/27/2010 12:16:25 PM - System Checkpoint
RP221: 5/28/2010 4:07:39 PM - System Checkpoint
RP222: 5/30/2010 4:40:21 AM - System Checkpoint
RP223: 5/31/2010 4:50:18 PM - System Checkpoint
RP224: 6/1/2010 2:51:29 AM - Installed Project64 1.6
RP225: 6/2/2010 4:30:38 AM - System Checkpoint
RP226: 6/3/2010 6:14:56 AM - System Checkpoint
RP227: 6/4/2010 7:18:55 AM - System Checkpoint
RP228: 6/5/2010 3:00:15 AM - Software Distribution Service 3.0
RP229: 6/6/2010 3:46:51 AM - System Checkpoint
RP230: 6/7/2010 10:17:45 AM - System Checkpoint
RP231: 6/8/2010 10:42:03 AM - System Checkpoint
RP232: 6/8/2010 9:54:54 PM - Software Distribution Service 3.0
RP233: 6/9/2010 7:51:22 AM - Software Distribution Service 3.0
RP234: 6/10/2010 3:00:20 AM - Software Distribution Service 3.0
RP235: 6/11/2010 2:17:15 PM - System Checkpoint
RP236: 6/12/2010 11:16:12 PM - avast! Free Antivirus Setup

==== Installed Programs ======================

µTorrent
2007 Microsoft Office Suite Service Pack 2 (SP2)
32 Bit HP CIO Components Installer
7-Zip 4.65
Acrobat.com
Activision(R)
Adobe AIR
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Reader 9.1
Advertising Center
AIM 7
Apple Application Support
Apple Mobile Device Support
Apple Software Update
avast! Free Antivirus
AVS Audio Converter version 6.2
AVS Update Manager 1.0
AVS4YOU Software Navigator 1.4
Bandoo
Batman: Arkham Asylum
Batman: Arkham Asylum Demo
Bing Bar
Bing Bar Platform
Bonjour
CCleaner (remove only)
CDisplay 1.8
ClamWin Free Antivirus 0.96.1
Combined Community Codec Pack 2008-09-21 16:18
CyberLink BD Advisor 2.0
CyberLink Blu-ray Disc Suite
CyberLink PowerDVD
CyberLink PowerProducer
dcmsvc 1.0
Digsby Donates
Diskeeper 2009 Pro Premier
DJ_SF_06_D1600_SW_Min
DolbyFiles
Download Updater (AOL LLC)
ERUNT 1.1j
Express Rip
Facebook Plug-In
Google Update Helper
HashCheck Shell Extension (x86-32)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows XP (KB952287)
Hotfix for Windows XP (KB954550-v5)
Hotfix for Windows XP (KB961118)
Hotfix for Windows XP (KB970653-v3)
Hotfix for Windows XP (KB976098-v2)
Hotfix for Windows XP (KB979306)
Hotfix for Windows XP (KB981793)
HP Deskjet D1600 Printer Driver 13.0 Rel .6
ImagXpress
ImgBurn
iPhone Folders
iPhoneBrowser
iTunes
Java(TM) 6 Update 15
Jivaro 1.8
JScreenFix
LG Tool Kit
LibUSB-Win32-0.1.10.1
Menu Templates - Starter Kit
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft Default Manager
Microsoft Games for Windows - LIVE
Microsoft Games for Windows - LIVE Redistributable
Microsoft Kernel-Mode Driver Framework Feature Pack 1.7
Microsoft Office Access MUI (English) 2007
Microsoft Office Access Setup Metadata MUI (English) 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office InfoPath MUI (English) 2007
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Professional Plus 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Search Enhancement Pack
Microsoft Silverlight
Microsoft Software Update for Web Folders (English) 12
Microsoft VC9 runtime libraries
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Mozilla Firefox (3.5.9)
NCH Toolbar
Nero 9 Trial
Nero ControlCenter
Nero InfoTool
Nero Installer
Nero Rescue Agent
NeroBurningROM
NeroExpress
NVIDIA Drivers
NVIDIA nView Desktop Manager
NVIDIA PhysX
Picasa 3
Platform
Project64 1.6
Prototype(TM)
QT Lite 2.9.0
QuickTime
RadioBar Toolbar
Real Alternative 1.9.0 Lite
REALTEK GbE & FE Ethernet PCI-E NIC Driver
Security Update for 2007 Microsoft Office System (KB969559)
Security Update for 2007 Microsoft Office System (KB976321)
Security Update for 2007 Microsoft Office System (KB982312)
Security Update for 2007 Microsoft Office System (KB982331)
Security Update for Microsoft Office Excel 2007 (KB982308)
Security Update for Microsoft Office InfoPath 2007 (KB979441)
Security Update for Microsoft Office Outlook 2007 (KB972363)
Security Update for Microsoft Office PowerPoint 2007 (KB982158)
Security Update for Microsoft Office Publisher 2007 (KB982124)
Security Update for Microsoft Office system 2007 (972581)
Security Update for Microsoft Office system 2007 (KB969613)
Security Update for Microsoft Office system 2007 (KB974234)
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)
Security Update for Microsoft Office Word 2007 (KB982135)
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Internet Explorer 8 (KB972260)
Security Update for Windows Internet Explorer 8 (KB978207)
Security Update for Windows Internet Explorer 8 (KB981332)
Security Update for Windows Internet Explorer 8 (KB982381)
Security Update for Windows Media Player (KB952069)
Security Update for Windows Media Player (KB954155)
Security Update for Windows Media Player (KB968816)
Security Update for Windows Media Player (KB973540)
Security Update for Windows Media Player (KB979402)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB938464-v2)
Security Update for Windows XP (KB941569)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB954459)
Security Update for Windows XP (KB954600)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956744)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956844)
Security Update for Windows XP (KB957097)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958687)
Security Update for Windows XP (KB958869)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Security Update for Windows XP (KB961371-v2)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB968537)
Security Update for Windows XP (KB969059)
Security Update for Windows XP (KB969947)
Security Update for Windows XP (KB970238)
Security Update for Windows XP (KB970430)
Security Update for Windows XP (KB971468)
Security Update for Windows XP (KB971486)
Security Update for Windows XP (KB971557)
Security Update for Windows XP (KB971633)
Security Update for Windows XP (KB971657)
Security Update for Windows XP (KB971961)
Security Update for Windows XP (KB972260)
Security Update for Windows XP (KB972270)
Security Update for Windows XP (KB973346)
Security Update for Windows XP (KB973354)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973869)
Security Update for Windows XP (KB973904)
Security Update for Windows XP (KB974112)
Security Update for Windows XP (KB974318)
Security Update for Windows XP (KB974392)
Security Update for Windows XP (KB974571)
Security Update for Windows XP (KB975025)
Security Update for Windows XP (KB975467)
Security Update for Windows XP (KB975560)
Security Update for Windows XP (KB975561)
Security Update for Windows XP (KB975562)
Security Update for Windows XP (KB975713)
Security Update for Windows XP (KB977165)
Security Update for Windows XP (KB977816)
Security Update for Windows XP (KB977914)
Security Update for Windows XP (KB978037)
Security Update for Windows XP (KB978251)
Security Update for Windows XP (KB978262)
Security Update for Windows XP (KB978338)
Security Update for Windows XP (KB978542)
Security Update for Windows XP (KB978601)
Security Update for Windows XP (KB978706)
Security Update for Windows XP (KB979309)
Security Update for Windows XP (KB979482)
Security Update for Windows XP (KB979559)
Security Update for Windows XP (KB979683)
Security Update for Windows XP (KB980195)
Security Update for Windows XP (KB980218)
Security Update for Windows XP (KB980232)
Spybot - Search & Destroy
SpywareBlaster 4.2
Steam
Switch Sound File Converter
Sygate Personal Firewall Pro
TaskSwitchXP
TBS WMP Plug-in
Toolbox
TuneCab 3.9.9
Tweak UI
Unlocker 1.8.7
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Outlook 2007 Junk Email Filter (kb983486)
Update for Windows Internet Explorer 8 (KB976662)
Update for Windows Internet Explorer 8 (KB980182)
Update for Windows XP (KB898461)
Update for Windows XP (KB951978)
Update for Windows XP (KB955759)
Update for Windows XP (KB967715)
Update for Windows XP (KB968389)
Update for Windows XP (KB971737)
Update for Windows XP (KB973687)
Update for Windows XP (KB973815)
VIA Platform Device Manager
ViewSonic Monitor Drivers
VirtualCloneDrive
Vista Drive Icon 1.4
WavePad Sound Editor
WebFldrs XP
Winamp
Windows Feature Pack for Storage (32-bit) - IMAPI update for Blu-Ray
Windows Internet Explorer 8
Windows Live ID Sign-in Assistant
Windows Media Format 11 runtime
WinRAR archiver
WinSCP 4.2.7
X-Men Origins - Wolverine(TM)
xpize 5 Release 6
XPS Essentials Pack
XPS Essentials Pack 1.0
Yahoo! BrowserPlus 2.6.0

==== Event Viewer Messages From Past Week ========

6/11/2010 8:48:18 AM, error: System Error [1003] - Error code 000000ea, parameter1 857f5b38, parameter2 8a3219c0, parameter3 8a1b20a8, parameter4 00000001.
6/11/2010 7:57:33 AM, error: nv [108] - The driver nv4_disp for the display device \Device\Video0 got stuck in an infinite loop. This usually indicates a problem with the device itself or with the device driver programming the hardware incorrectly. Please check with your hardware device vendor for any driver updates.
6/11/2010 7:04:36 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: AFD ElbyCDIO Fips intelppm IPSec MRxSmb NetBIOS NetBT RasAcd Rdbss Tcpip wpsdrvnt
6/11/2010 7:04:36 PM, error: Service Control Manager [7001] - The TCP/IP NetBIOS Helper service depends on the AFD service which failed to start because of the following error: A device attached to the system is not functioning.
6/11/2010 7:04:36 PM, error: Service Control Manager [7001] - The IPSEC Services service depends on the IPSEC driver service which failed to start because of the following error: A device attached to the system is not functioning.
6/11/2010 7:04:36 PM, error: Service Control Manager [7001] - The DNS Client service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.
6/11/2010 7:04:36 PM, error: Service Control Manager [7001] - The DHCP Client service depends on the NetBios over Tcpip service which failed to start because of the following error: A device attached to the system is not functioning.
6/11/2010 7:04:36 PM, error: Service Control Manager [7001] - The Bonjour Service service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.
6/11/2010 7:04:36 PM, error: Service Control Manager [7001] - The Apple Mobile Device service depends on the TCP/IP Protocol Driver service which failed to start because of the following error: A device attached to the system is not functioning.
6/11/2010 7:04:26 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service netman with arguments "" in order to run the server: {BA126AE5-2166-11D1-B1D0-00805FC1270E}
6/11/2010 7:04:15 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}

==== End Of File ===========================







DDS (Ver_10-03-17.01) - NTFSx86
Run by REDEEMER at 12:01:14.51 on Sun 06/13/2010
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_15
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.3327.2610 [GMT -4:00]

AV: avast! Antivirus *On-access scanning enabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
FW: Sygate Personal Firewall Pro *enabled* {BE898FE3-CD0B-4014-85A9-03DB9923DDB6}

============== Running Processes ===============

C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\VIA\VIAudioi\HDADeck\HDeck.exe
C:\Program Files\lg_fwupdate\fwupdate.exe
C:\Program Files\Cyberlink\Shared Files\brs.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Program Files\Unlocker\UnlockerAssistant.exe
C:\Program Files\Vista Drive Icon\DrvIcon.exe
svchost.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\dcmsvc\dcmsvc.exe
C:\Program Files\MSN Toolbar\Platform\5.0.1430.0\mswinext.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\libusbd-nt.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\ClamWin\bin\ClamTray.exe
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\WINDOWS\System32\svchost.exe -k HPZ12
C:\WINDOWS\System32\svchost.exe -k HPZ12
C:\WINDOWS\system32\PnkBstrA.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\Sygate\SPF\smc.exe
C:\Program Files\TaskSwitchXP\TaskSwitchXP.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\AIM\aim.exe
C:\PROGRA~1\Bandoo\Bandoo.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SCServer\SCServer.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Documents and Settings\REDEEMER\Desktop\dds.scr

============== Pseudo HJT Report ===============

uStart Page = hxxp://bing.zugo.com/?cfg=2-116-0-18E34
uSearch Page = hxxp://www.google.com
uDefault_Search_URL = hxxp://www.google.com/ie
uWindow Title = Internet Explorer, optimized for Bing and MSN
uDefault_Page_URL = hxxp://www.msn.com
uInternet Settings,ProxyOverride = *.local
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
uURLSearchHooks: NCH Toolbar: {c2db4fe6-8409-45ce-8010-189a7b5cce86} - c:\program files\nch\tbNC1.dll
uURLSearchHooks: ToolbarURLSearchHook Class: {ca3eb689-8f09-4026-aa10-b9534c691ce0} - c:\program files\search toolbar\tbhelper.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SEPsearchhelperie.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Digsby Donates: {998a3c0c-8914-4d2a-ae36-bfa2e5ae6d5d} - c:\program files\digsby donates\ShoppingBHO.dll
BHO: NCH Toolbar: {c2db4fe6-8409-45ce-8010-189a7b5cce86} - c:\program files\nch\tbNC1.dll
BHO: Bing Bar BHO: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\program files\msn toolbar\platform\5.0.1430.0\npwinext.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
BHO: BandooIEPlugin Class: {eb5cee80-030a-4ed8-8e20-454e9c68380f} - c:\program files\bandoo\plugins\ie\ieplugin.dll
BHO: TBSB05974 Class: {fcbccb87-9224-4b8d-b117-f56d924beb18} - c:\program files\search toolbar\tbcore3.dll
TB: {DE9C389F-3316-41A7-809B-AA305ED9D922} - No File
TB: @c:\program files\msn toolbar\platform\5.0.1430.0\npwinext.dll,-100: {8dcb7100-df86-4384-8842-8fa844297b3f} - c:\program files\msn toolbar\platform\5.0.1430.0\npwinext.dll
TB: NCH Toolbar: {c2db4fe6-8409-45ce-8010-189a7b5cce86} - c:\program files\nch\tbNC1.dll
TB: {5B291E6C-9A74-4034-971B-A4B007A0B315} - No File
TB: Search Toolbar: {0c8413c1-fad1-446c-8584-be50576f863e} - c:\program files\search toolbar\tbcore3.dll
uRun: [TaskSwitchXP] c:\program files\taskswitchxp\TaskSwitchXP.exe
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
uRun: [Aim] "c:\program files\aim\aim.exe" /d locale=en-US
mRun: [HDAudDeck] c:\program files\via\viaudioi\hdadeck\HDeck.exe 1
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [UpdatePPShortCut] "c:\program files\cyberlink\powerproducer\muitransfer\muistartmenu.exe" "c:\program files\cyberlink\powerproducer" update "software\cyberlink\powerproducer\5.0"
mRun: [LGODDFU] "c:\program files\lg_fwupdate\fwupdate.exe" blrun
mRun: [UpdatePSTShortCut] "c:\program files\cyberlink\blu-ray disc suite\muitransfer\muistartmenu.exe" "c:\program files\cyberlink\blu-ray disc suite" updatewithcreateonce "software\cyberlink\PowerStarter"
mRun: [BDRegion] c:\program files\cyberlink\shared files\brs.exe
mRun: [RemoteControl] "c:\program files\cyberlink\powerdvd\PDVDServ.exe"
mRun: [LanguageShortcut] "c:\program files\cyberlink\powerdvd\language\Language.exe"
mRun: [SmcService] c:\progra~1\sygate\spf\smc.exe -startgui
mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
mRun: [VirtualCloneDrive] "c:\program files\elaborate bytes\virtualclonedrive\VCDDaemon.exe" /s
mRun: [UnlockerAssistant] "c:\program files\unlocker\UnlockerAssistant.exe"
mRun: [DrvIcon] c:\program files\vista drive icon\DrvIcon.exe
mRun: [nwiz] c:\program files\nvidia corporation\nview\nwiz.exe /install
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [dcmsvc] c:\program files\dcmsvc\dcmsvc.exe
mRun: [Bing Bar] "c:\program files\msn toolbar\platform\5.0.1430.0\mswinext.exe"
mRun: [Microsoft Default Manager] "c:\program files\microsoft\search enhancement pack\default manager\DefMgr.exe" -resume
mRun: [QuickTime Task] "c:\program files\qt lite\QTTask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [ClamWin] "c:\program files\clamwin\bin\ClamTray.exe" --logon
mRun: [avast5] c:\progra~1\alwils~1\avast5\avastUI.exe /nogui
StartupFolder: c:\docume~1\redeemer\startm~1\programs\startup\digsby.lnk - c:\program files\digsby\digsby.exe
StartupFolder: c:\docume~1\redeemer\startm~1\programs\startup\erunta~1.lnk - c:\program files\erunt\AUTOBACK.EXE
StartupFolder: c:\docume~1\redeemer\startm~1\programs\startup\ps3six~1.lnk - c:\program files\ps3 sixaxis driver\ps3sixaxis_en.exe
StartupFolder: c:\docume~1\redeemer\startm~1\programs\startup\warner~1.lnk - c:\program files\warner bros. digital copy manager\Warner Bros. Digital Copy Manager.exe
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office12\EXCEL.EXE/3000
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {38E51477-DDB4-4aed-9D61-D0C193E10749} - {38E51477-DDB4-4aed-9D61-D0C193E10749} - c:\program files\tunecab\YouTubeRipper.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~3\office12\REFIEBAR.DLL
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_15-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: toolbarchrome - {718733BC-AD64-4e5f-AC18-A85FBD75D54D} - c:\program files\radiobar\toolbar.ni.dll
AppInit_DLLs: c:\progra~1\bandoo\bndhook.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
Hosts: 127.0.0.1 www.spywareinfo.com (http://www.spywareinfo.com)

================= FIREFOX ===================

FF - ProfilePath - c:\docume~1\redeemer\applic~1\mozilla\firefox\profiles\dzuff9yv.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2117678&SearchSource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://bing.zugo.com/?cfg=2-116-0-18E34
FF - prefs.js: keyword.URL - hxxp://bing.zugotoolbar.com/s/?iesrc=IE-Address&site=Bing&q=
FF - component: c:\documents and settings\redeemer\application data\mozilla\firefox\profiles\dzuff9yv.default\extensions\{896642e4-c556-4ed3-85d1-9ac431603e7d}\components\Engine.dll
FF - component: c:\documents and settings\redeemer\application data\mozilla\firefox\profiles\dzuff9yv.default\extensions\firefox@bandoo.com\components\FFPlugin.dll
FF - component: c:\program files\microsoft\search enhancement pack\search helper\firefoxextension\searchhelperextension\components\SEPsearchhelperff.dll
FF - plugin: c:\documents and settings\redeemer\application data\facebook\npfbplugin_1_0_1.dll
FF - plugin: c:\documents and settings\redeemer\application data\facebook\npfbplugin_1_0_3.dll
FF - plugin: c:\documents and settings\redeemer\local settings\application data\yahoo!\browserplus\2.6.0\plugins\npybrowserplus_2.6.0.dll
FF - plugin: c:\program files\google\picasa3\npPicasa3.dll
FF - plugin: c:\program files\google\update\1.2.183.23\npGoogleOneClick8.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npdnu.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npdnupdater2.dll
FF - plugin: c:\program files\mozilla firefox\plugins\NPTURNMED.dll
FF - plugin: c:\program files\msn toolbar\platform\5.0.1430.0\npwinext.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\dotnetassistantextension\
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}

---- FIREFOX POLICIES ----
FF - user.js: network.protocol-handler.warn-external.dnupdate - false);user_pref(network.protocol-handler.warn-external.dnupdate, falsec:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);

============= SERVICES / DRIVERS ===============

R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2010-6-12 164048]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2010-6-12 19024]
R2 avast! Antivirus;avast! Antivirus;c:\program files\alwil software\avast5\AvastSvc.exe [2010-6-12 40384]
R2 libusbd;LibUsb-Win32 - Daemon, Version 0.1.10.1;system32\libusbd-nt.exe --> system32\libusbd-nt.exe [?]
R3 avast! Mail Scanner;avast! Mail Scanner;c:\program files\alwil software\avast5\AvastSvc.exe [2010-6-12 40384]
R3 avast! Web Scanner;avast! Web Scanner;c:\program files\alwil software\avast5\AvastSvc.exe [2010-6-12 40384]
R3 libusb0;LibUsb-Win32 - Kernel Driver, Version 0.1.10.1;c:\windows\system32\drivers\libusb0.sys [2009-9-17 33792]
R3 TucbAudio;TucbAudio;c:\windows\system32\drivers\TucbAudio.sys [2010-4-13 23096]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys [2009-9-16 1086208]
S2 gupdate;Google Update Service (gupdate);c:\program files\google\update\GoogleUpdate.exe [2010-6-12 136176]
S3 SMServer;SMServer;c:\windows\system32\snmvtsvc.exe [2010-4-13 245760]
S4 vsdatant;vsdatant; [x]

=============== Created Last 30 ================

2010-06-13 03:16:12 0 d-----w- c:\docume~1\alluse~1\applic~1\Alwil Software
2010-06-11 23:40:47 0 d-----w- c:\docume~1\redeemer\applic~1\.clamwin
2010-06-11 23:40:40 0 d-----w- c:\program files\ClamWin
2010-06-11 23:40:40 0 d-----w- c:\documents and settings\all users\.clamwin
2010-06-09 22:26:45 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2010-06-08 13:16:53 0 d-----w- c:\docume~1\redeemer\applic~1\JivaroPref
2010-06-08 13:16:50 0 d-----w- c:\program files\Jivaro
2010-06-01 06:51:31 0 d-----w- c:\program files\Project64 1.6
2010-05-17 20:51:07 0 d-----w- c:\docume~1\redeemer\applic~1\Digsby
2010-05-17 20:51:07 0 d-----w- c:\docume~1\alluse~1\applic~1\Digsby
2010-05-17 20:50:57 0 d-----w- c:\docume~1\alluse~1\applic~1\Toolbar4
2010-05-17 20:50:54 0 d-----w- c:\program files\Search Toolbar
2010-05-17 20:50:51 0 d-----w- c:\docume~1\redeemer\applic~1\FCSB000062215
2010-05-17 20:50:45 0 d-----w- c:\program files\Digsby Donates
2010-05-17 20:50:34 0 d-----w- c:\program files\Digsby

==================== Find3M ====================

2010-05-06 10:41:53 916480 ----a-w- c:\windows\system32\wininet.dll
2010-05-02 05:22:50 1851264 ----a-w- c:\windows\system32\win32k.sys
2010-04-20 05:30:08 285696 ----a-w- c:\windows\system32\atmfd.dll
2010-04-16 12:33:36 41472 ----a-w- c:\windows\system32\drivers\usbaapl.sys
2010-04-16 12:33:36 3003680 ----a-w- c:\windows\system32\usbaaplrc.dll
2010-04-08 17:20:02 91424 ----a-w- c:\windows\system32\dnssd.dll
2010-04-08 17:20:02 107808 ----a-w- c:\windows\system32\dns-sd.exe
2010-03-19 17:23:58 5688 ----a-w- c:\windows\system32\TucbVideo.sys
2010-03-19 17:23:58 14392 ----a-w- c:\windows\system32\TucbVideo.dll
2010-03-19 17:23:54 23096 ----a-w- c:\windows\system32\TucbAudio.sys
2010-03-19 13:54:24 245760 ----a-w- c:\windows\system32\snmvtsvc.exe
2006-06-24 22:48:54 32768 ----a-r- c:\windows\inf\UpdateUSB.exe

============= FINISH: 12:01:30.29 ===============

shelf life
2010-06-16, 23:31
Hi,

Your post is a few days old. If you still need help simply reply to my post.