EmpressPhoenix
2013-07-03, 18:07
Not sure how I got Sweetpacks, but it's annoying as all heck. Also, during the asw scan, it showed utorrent or scanning it but I cannot find that anywhere on my computer. Not in my program files or add/remove programs or anything. Not sure if that's something or not. Also, ran spybot the other night to post here, but computer derped so didn't get the files. it detected a few things it could not fix..but this sca
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 7.0.6001.18639 BrowserJavaVersion: 1.6.0_45
Run by Phoenix at 21:36:25 on 2013-07-02
Microsoft® Windows Vista™ Home Basic 6.0.6001.1.1252.1.1033.18.3262.1557 [GMT -5:00]
.
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\SLsvc.exe
C:\Windows\System32\spoolsv.exe
c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\system32\taskeng.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\HP\QuickPlay\QPService.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\HP\Digital Imaging\bin\HpqSRmon.exe
c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Synaptics\SynTP\SynTPStart.exe
C:\Windows\system32\DRIVERS\xaudio.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Furcadia\furc_on.exe
c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
C:\Program Files\Furcadia\Furcadia.exe
C:\Program Files\mIRC\mirc.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Windows\system32\dmwu.exe
C:\Windows\System32\jmdp\stij.exe
C:\Program Files\SkypeAutoAnswer\AutoAnswer.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k WerSvcGroup
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://search.conduit.com/?ctid=CT3289075&octid=CT3289075&SearchSource=61&CUI=UN10050045552776410&UM=2&UP=SP7A9AAE07-8879-4A87-AF5D-A270EDA89B8F
uDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=81&bd=Presario&pf=laptop
mStart Page = hxxp://start.sweetpacks.com/?src=10&st=12&crg=3.5000006.10045&barid={5FA32070-E33B-11E2-8337-001E682AA689}
mDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=81&bd=Presario&pf=laptop
uURLSearchHooks: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - <orphaned>
uURLSearchHooks: {90b49673-5506-483e-b92b-ca0265bd9ca8} - <orphaned>
BHO: {02478D38-C3F9-4efb-9B51-7695ECA05670} - <orphaned>
BHO: Adobe PDF Reader Link Helper: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: Spybot-S&D IE Protection: {53707962-6F74-2D53-2644-206D7942484F} - c:\program files\spybot - search & destroy\SDHelper.dll
BHO: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - <orphaned>
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre6\bin\ssv.dll
BHO: Windows Live Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: AVG Security Toolbar: {95B7759C-8C7F-4BF1-B163-73684A933233} - c:\program files\avg secure search\15.2.0.5\AVG Secure Search_toolbar.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: HP Print Clips: {FFFFFFFF-FF12-44C5-91EC-068E3AA1B2D7} - c:\program files\hp\smart web printing\hpswp_framework.dll
TB: <No Name>: {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - LocalServer32 - <no file>
TB: AVG Security Toolbar: {95B7759C-8C7F-4BF1-B163-73684A933233} - c:\program files\avg secure search\15.2.0.5\AVG Secure Search_toolbar.dll
uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun
uRun: [SearchProtect] c:\users\phoenix\appdata\roaming\searchprotect\bin\cltmng.exe
uRunOnce: [SpybotDeletingB5299] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\ClearHist.exe"
uRunOnce: [SpybotDeletingD7233] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\ClearHist.exe"
uRunOnce: [SpybotDeletingB1253] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgcommon.dll"
uRunOnce: [SpybotDeletingD7190] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgcommon.dll"
uRunOnce: [SpybotDeletingB7470] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgconfig.dll"
uRunOnce: [SpybotDeletingD3935] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgconfig.dll"
uRunOnce: [SpybotDeletingB3608] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgHelperApp.exe"
uRunOnce: [SpybotDeletingD9148] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgHelperApp.exe"
uRunOnce: [SpybotDeletingB8942] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mghooking.dll"
uRunOnce: [SpybotDeletingD4376] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mghooking.dll"
uRunOnce: [SpybotDeletingB9361] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mglogger.dll"
uRunOnce: [SpybotDeletingD4637] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mglogger.dll"
uRunOnce: [SpybotDeletingB5160] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgsimcommon.dll"
uRunOnce: [SpybotDeletingD9852] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgsimcommon.dll"
uRunOnce: [SpybotDeletingB7921] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgToolbarProxy.dll"
uRunOnce: [SpybotDeletingD5412] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgToolbarProxy.dll"
uRunOnce: [SpybotDeletingB3459] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgxml_wrapper.dll"
uRunOnce: [SpybotDeletingD9859] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgxml_wrapper.dll"
uRunOnce: [SpybotDeletingB7049] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\default.xml"
uRunOnce: [SpybotDeletingD4699] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\default.xml"
uRunOnce: [SpybotDeletingB5428] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgHelper.dll"
uRunOnce: [SpybotDeletingD9190] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgHelper.dll"
uRunOnce: [SpybotDeletingB926] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgToolbarIE.dll"
uRunOnce: [SpybotDeletingD4296] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgToolbarIE.dll"
uRunOnce: [SpybotDeletingB6145] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\about.html"
uRunOnce: [SpybotDeletingD275] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\about.html"
uRunOnce: [SpybotDeletingB1729] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\affid.dat"
uRunOnce: [SpybotDeletingD1293] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\affid.dat"
uRunOnce: [SpybotDeletingB4960] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\basis.xml"
uRunOnce: [SpybotDeletingD6968] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\basis.xml"
uRunOnce: [SpybotDeletingB9276] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\bing.png"
uRunOnce: [SpybotDeletingD4045] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\bing.png"
uRunOnce: [SpybotDeletingB2028] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\clear-history.png"
uRunOnce: [SpybotDeletingD6160] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\clear-history.png"
uRunOnce: [SpybotDeletingB9306] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier.js"
uRunOnce: [SpybotDeletingD3802] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier.js"
uRunOnce: [SpybotDeletingB7536] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier-anim.gif"
uRunOnce: [SpybotDeletingD9713] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier-anim.gif"
uRunOnce: [SpybotDeletingB5542] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier-anim-over.gif"
uRunOnce: [SpybotDeletingD5440] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier-anim-over.gif"
uRunOnce: [SpybotDeletingB2779] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\dating.png"
uRunOnce: [SpybotDeletingD7173] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\dating.png"
uRunOnce: [SpybotDeletingB3122] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\dictionary.png"
uRunOnce: [SpybotDeletingD4924] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\dictionary.png"
uRunOnce: [SpybotDeletingB1170] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\e_cards.png"
uRunOnce: [SpybotDeletingD9060] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\e_cards.png"
uRunOnce: [SpybotDeletingB9757] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\eye_icon.png"
uRunOnce: [SpybotDeletingD2747] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\eye_icon.png"
uRunOnce: [SpybotDeletingB7855] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\eye_icon_over.png"
uRunOnce: [SpybotDeletingD1510] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\eye_icon_over.png"
uRunOnce: [SpybotDeletingB4217] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\find.png"
uRunOnce: [SpybotDeletingD6137] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\find.png"
uRunOnce: [SpybotDeletingB314] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\free_stuff.png"
uRunOnce: [SpybotDeletingD433] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\free_stuff.png"
uRunOnce: [SpybotDeletingB8188] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\games.png"
uRunOnce: [SpybotDeletingD6635] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\games.png"
uRunOnce: [SpybotDeletingB8996] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\glitter.png"
uRunOnce: [SpybotDeletingD451] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\glitter.png"
uRunOnce: [SpybotDeletingB6449] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\google.png"
uRunOnce: [SpybotDeletingD7215] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\google.png"
uRunOnce: [SpybotDeletingB412] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\help.png"
uRunOnce: [SpybotDeletingD3417] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\help.png"
uRunOnce: [SpybotDeletingB1570] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\highlight.png"
uRunOnce: [SpybotDeletingD5700] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\highlight.png"
uRunOnce: [SpybotDeletingB534] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\locales.xml"
uRunOnce: [SpybotDeletingD1010] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\locales.xml"
uRunOnce: [SpybotDeletingB6227] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_16x16.png"
uRunOnce: [SpybotDeletingD3155] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_16x16.png"
uRunOnce: [SpybotDeletingB2170] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_21x18.png"
uRunOnce: [SpybotDeletingD5595] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_21x18.png"
uRunOnce: [SpybotDeletingB3129] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_32x32.png"
uRunOnce: [SpybotDeletingD253] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_32x32.png"
uRunOnce: [SpybotDeletingB8926] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_about.png"
uRunOnce: [SpybotDeletingD593] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_about.png"
uRunOnce: [SpybotDeletingB5983] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\more-search-providers.png"
uRunOnce: [SpybotDeletingD77] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\more-search-providers.png"
uRunOnce: [SpybotDeletingB2866] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\music.png"
uRunOnce: [SpybotDeletingD5049] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\music.png"
uRunOnce: [SpybotDeletingB6306] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\news.png"
uRunOnce: [SpybotDeletingD4258] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\news.png"
uRunOnce: [SpybotDeletingB641] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\options.html"
uRunOnce: [SpybotDeletingD1185] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\options.html"
uRunOnce: [SpybotDeletingB6585] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\photos.png"
uRunOnce: [SpybotDeletingD5826] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\photos.png"
uRunOnce: [SpybotDeletingB1479] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\search-current-site.png"
uRunOnce: [SpybotDeletingD5913] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\search-current-site.png"
uRunOnce: [SpybotDeletingB3567] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\shopping.png"
uRunOnce: [SpybotDeletingD3447] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\shopping.png"
uRunOnce: [SpybotDeletingB7281] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\SmileySmile.png"
uRunOnce: [SpybotDeletingD770] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\SmileySmile.png"
uRunOnce: [SpybotDeletingB1497] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\SmileyWink.png"
uRunOnce: [SpybotDeletingD9512] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\SmileyWink.png"
uRunOnce: [SpybotDeletingB6992] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\sweetim_text.png"
uRunOnce: [SpybotDeletingD8790] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\sweetim_text.png"
uRunOnce: [SpybotDeletingB2805] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\toolbar.xml"
uRunOnce: [SpybotDeletingD383] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\toolbar.xml"
uRunOnce: [SpybotDeletingB838] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\video.png"
uRunOnce: [SpybotDeletingD1645] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\video.png"
uRunOnce: [SpybotDeletingB1362] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\web-search.png"
uRunOnce: [SpybotDeletingD4097] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\web-search.png"
uRunOnce: [SpybotDeletingB8348] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\yahoo.png"
uRunOnce: [SpybotDeletingD5847] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\yahoo.png"
mRun: [NvSvc] RUNDLL32.EXE c:\windows\system32\nvsvc.dll,nvsvcStart
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [QPService] "c:\program files\hp\quickplay\QPService.exe"
mRun: [Windows Defender] c:\program files\windows defender\MSASCui.exe -hide
mRun: [ccApp] "c:\program files\common files\symantec shared\ccApp.exe"
mRun: [hpqSRMon] c:\program files\hp\digital imaging\bin\hpqSRMon.exe
mRun: [HP Health Check Scheduler] [ProgramFilesFolder]Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe
mRun: [hpWirelessAssistant] c:\program files\hewlett-packard\hp wireless assistant\HPWAMain.exe
mRun: [WAWifiMessage] c:\program files\hewlett-packard\hp wireless assistant\WiFiMsg.exe
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [DivXMediaServer] c:\program files\divx\divx media server\DivXMediaServer.exe
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [SynTPStart] c:\program files\synaptics\syntp\SynTPStart.exe
mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
mRun: [SearchProtectAll] c:\program files\searchprotect\bin\cltmng.exe
mRunOnce: [SpybotDeletingA3039] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\ClearHist.exe"
mRunOnce: [SpybotDeletingC1226] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\ClearHist.exe"
mRunOnce: [SpybotDeletingA1346] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgcommon.dll"
mRunOnce: [SpybotDeletingC3427] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgcommon.dll"
mRunOnce: [SpybotDeletingA4726] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgconfig.dll"
mRunOnce: [SpybotDeletingC1632] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgconfig.dll"
mRunOnce: [SpybotDeletingA1898] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgHelperApp.exe"
mRunOnce: [SpybotDeletingC4408] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgHelperApp.exe"
mRunOnce: [SpybotDeletingA1157] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mghooking.dll"
mRunOnce: [SpybotDeletingC5928] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mghooking.dll"
mRunOnce: [SpybotDeletingA2556] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mglogger.dll"
mRunOnce: [SpybotDeletingC5883] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mglogger.dll"
mRunOnce: [SpybotDeletingA9464] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgsimcommon.dll"
mRunOnce: [SpybotDeletingC8159] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgsimcommon.dll"
mRunOnce: [SpybotDeletingA7117] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgToolbarProxy.dll"
mRunOnce: [SpybotDeletingC1565] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgToolbarProxy.dll"
mRunOnce: [SpybotDeletingA4227] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgxml_wrapper.dll"
mRunOnce: [SpybotDeletingC4800] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgxml_wrapper.dll"
mRunOnce: [SpybotDeletingA671] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\default.xml"
mRunOnce: [SpybotDeletingC2208] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\default.xml"
mRunOnce: [SpybotDeletingA7486] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgHelper.dll"
mRunOnce: [SpybotDeletingC7603] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgHelper.dll"
mRunOnce: [SpybotDeletingA5440] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgToolbarIE.dll"
mRunOnce: [SpybotDeletingC9490] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgToolbarIE.dll"
mRunOnce: [SpybotDeletingA1630] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\about.html"
mRunOnce: [SpybotDeletingC4396] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\about.html"
mRunOnce: [SpybotDeletingA9821] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\affid.dat"
mRunOnce: [SpybotDeletingC2297] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\affid.dat"
mRunOnce: [SpybotDeletingA3047] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\basis.xml"
mRunOnce: [SpybotDeletingC7444] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\basis.xml"
mRunOnce: [SpybotDeletingA1321] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\bing.png"
mRunOnce: [SpybotDeletingC2547] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\bing.png"
mRunOnce: [SpybotDeletingA216] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\clear-history.png"
mRunOnce: [SpybotDeletingC5159] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\clear-history.png"
mRunOnce: [SpybotDeletingA5574] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier.js"
mRunOnce: [SpybotDeletingC907] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier.js"
mRunOnce: [SpybotDeletingA4558] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier-anim.gif"
mRunOnce: [SpybotDeletingC6576] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier-anim.gif"
mRunOnce: [SpybotDeletingA659] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier-anim-over.gif"
mRunOnce: [SpybotDeletingC7654] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier-anim-over.gif"
mRunOnce: [SpybotDeletingA2039] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\dating.png"
mRunOnce: [SpybotDeletingC6281] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\dating.png"
mRunOnce: [SpybotDeletingA6457] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\dictionary.png"
mRunOnce: [SpybotDeletingC6032] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\dictionary.png"
mRunOnce: [SpybotDeletingA9048] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\e_cards.png"
mRunOnce: [SpybotDeletingC8622] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\e_cards.png"
mRunOnce: [SpybotDeletingA2977] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\eye_icon.png"
mRunOnce: [SpybotDeletingC1233] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\eye_icon.png"
mRunOnce: [SpybotDeletingA8076] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\eye_icon_over.png"
mRunOnce: [SpybotDeletingC1142] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\eye_icon_over.png"
mRunOnce: [SpybotDeletingA4499] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\find.png"
mRunOnce: [SpybotDeletingC6406] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\find.png"
mRunOnce: [SpybotDeletingA4903] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\free_stuff.png"
mRunOnce: [SpybotDeletingC983] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\free_stuff.png"
mRunOnce: [SpybotDeletingA741] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\games.png"
mRunOnce: [SpybotDeletingC4612] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\games.png"
mRunOnce: [SpybotDeletingA3952] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\glitter.png"
mRunOnce: [SpybotDeletingC9314] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\glitter.png"
mRunOnce: [SpybotDeletingA7949] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\google.png"
mRunOnce: [SpybotDeletingC9890] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\google.png"
mRunOnce: [SpybotDeletingA5954] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\help.png"
mRunOnce: [SpybotDeletingC7572] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\help.png"
mRunOnce: [SpybotDeletingA529] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\highlight.png"
mRunOnce: [SpybotDeletingC5226] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\highlight.png"
mRunOnce: [SpybotDeletingA7462] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\locales.xml"
mRunOnce: [SpybotDeletingC3124] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\locales.xml"
mRunOnce: [SpybotDeletingA7028] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_16x16.png"
mRunOnce: [SpybotDeletingC9516] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_16x16.png"
mRunOnce: [SpybotDeletingA1665] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_21x18.png"
mRunOnce: [SpybotDeletingC9588] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_21x18.png"
mRunOnce: [SpybotDeletingA8159] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_32x32.png"
mRunOnce: [SpybotDeletingC2910] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_32x32.png"
mRunOnce: [SpybotDeletingA8782] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_about.png"
mRunOnce: [SpybotDeletingC9060] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_about.png"
mRunOnce: [SpybotDeletingA9645] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\more-search-providers.png"
mRunOnce: [SpybotDeletingC3611] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\more-search-providers.png"
mRunOnce: [SpybotDeletingA1172] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\music.png"
mRunOnce: [SpybotDeletingC1135] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\music.png"
mRunOnce: [SpybotDeletingA6013] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\news.png"
mRunOnce: [SpybotDeletingC3112] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\news.png"
mRunOnce: [SpybotDeletingA5464] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\options.html"
mRunOnce: [SpybotDeletingC2990] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\options.html"
mRunOnce: [SpybotDeletingA551] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\photos.png"
mRunOnce: [SpybotDeletingC3958] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\photos.png"
mRunOnce: [SpybotDeletingA2339] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\search-current-site.png"
mRunOnce: [SpybotDeletingC6704] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\search-current-site.png"
mRunOnce: [SpybotDeletingA4589] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\shopping.png"
mRunOnce: [SpybotDeletingC5225] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\shopping.png"
mRunOnce: [SpybotDeletingA8708] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\SmileySmile.png"
mRunOnce: [SpybotDeletingC8297] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\SmileySmile.png"
mRunOnce: [SpybotDeletingA1656] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\SmileyWink.png"
mRunOnce: [SpybotDeletingC6396] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\SmileyWink.png"
mRunOnce: [SpybotDeletingA5894] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\sweetim_text.png"
mRunOnce: [SpybotDeletingC1833] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\sweetim_text.png"
mRunOnce: [SpybotDeletingA1878] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\toolbar.xml"
mRunOnce: [SpybotDeletingC3637] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\toolbar.xml"
mRunOnce: [SpybotDeletingA5996] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\video.png"
mRunOnce: [SpybotDeletingC8738] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\video.png"
mRunOnce: [SpybotDeletingA5336] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\web-search.png"
mRunOnce: [SpybotDeletingC2019] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\web-search.png"
mRunOnce: [SpybotDeletingA6736] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\yahoo.png"
mRunOnce: [SpybotDeletingC230] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\yahoo.png"
mPolicies-System: EnableLUA = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office12\EXCEL.EXE/3000
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-001021-0002-0021-ABCDEFFEDCBC} - <orphaned>
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office12\ONBttnIE.dll
IE: {58ECB495-38F0-49cb-A538-10282ABF65E7} - {A93C41D8-01F8-4F8B-B14C-DE20B117E636} - c:\program files\hp\smart web printing\hpswp_extensions.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
IE: {d9288080-1baa-4bc4-9cf8-a92d743db949} - c:\users\phoenix\appdata\roaming\microsoft\windows\start menu\programs\imvu\Run IMVU.lnk
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\program files\spybot - search & destroy\SDHelper.dll
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
.
INFO: HKLM has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_45-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0045-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_45-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_45-windows-i586.cab
TCP: NameServer = 209.18.47.61 209.18.47.62
TCP: Interfaces\{54A4859D-93EA-43A8-AD0A-3FEF4C6863ED} : DHCPNameServer = 209.18.47.61 209.18.47.62
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files\common files\avg secure search\viprotocolinstaller\15.2.0\ViProtocol.dll
LSA: Security Packages = kerberos msv1_0 schannel wdigest tspkg
Hosts: 127.0.0.1 www.spywareinfo.com
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\phoenix\appdata\roaming\mozilla\firefox\profiles\1w5oxnrp.default\
FF - prefs.js: browser.search.defaulturl -
FF - prefs.js: browser.search.selectedEngine - SweetIM Search
FF - prefs.js: browser.startup.homepage - hxxp://start.sweetpacks.com/?barid={5FA32070-E33B-11E2-8337-001E682AA689}&crg=3.5000006.10045&st=23|http://www.aywas.org/news/
FF - plugin: c:\program files\common files\avg secure search\sitesafetyinstaller\15.2.0\npsitesafety.dll
FF - plugin: c:\program files\google\update\1.3.21.145\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre6\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\microsoft silverlight\4.1.10329.0\npctrlui.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npwachk.dll
FF - plugin: c:\users\phoenix\appdata\roaming\mozilla\firefox\profiles\1w5oxnrp.default\extensions\{ab91efd4-6975-4081-8552-1b3922ed79e2}\plugins\npAclmPlugin.dll
FF - plugin: c:\users\phoenix\appdata\roaming\mozilla\firefox\profiles\1w5oxnrp.default\extensions\{ab91efd4-6975-4081-8552-1b3922ed79e2}\plugins\npPitPlugin.dll
FF - plugin: c:\users\phoenix\appdata\roaming\mozilla\firefox\profiles\1w5oxnrp.default\extensions\{ab91efd4-6975-4081-8552-1b3922ed79e2}\plugins\npProductDetectPlugin.dll
FF - plugin: c:\users\phoenix\appdata\roaming\mozilla\firefox\profiles\1w5oxnrp.default\extensions\activegs@freetoolsassociation.com\plugins\npActiveGS.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_7_700_224.dll
FF - ExtSQL: 2013-06-13 22:09; {CAFEEFAC-0016-0000-0045-ABCDEFFEDCBA}; c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0045-ABCDEFFEDCBA}
.
---- FIREFOX POLICIES ----
FF - user.js: extensions.incredibar_i.newTab - false
FF - user.js: extensions.incredibar_i.tlbrSrchUrl - hxxp://mystart.Incredibar.com/?a=6OyVEs2DdX&loc=IB_TB&i=26&search=
FF - user.js: extensions.incredibar_i.id - 5cf6908d000000000000001f3a513170
FF - user.js: extensions.incredibar_i.instlDay - 15673
FF - user.js: extensions.incredibar_i.vrsn - 1.5.11.14
FF - user.js: extensions.incredibar_i.vrsni - 1.5.11.14
FF - user.js: extensions.incredibar_i.vrsnTs - 1.5.11.142:50:40
FF - user.js: extensions.incredibar_i.prtnrId - Incredibar
FF - user.js: extensions.incredibar_i.prdct - incredibar
FF - user.js: extensions.incredibar_i.aflt - orgnl
FF - user.js: extensions.incredibar_i.smplGrp - none
FF - user.js: extensions.incredibar_i.tlbrId - base
FF - user.js: extensions.incredibar_i.instlRef -
FF - user.js: extensions.incredibar_i.dfltLng -
FF - user.js: extensions.incredibar_i.excTlbr - false
FF - user.js: extensions.incredibar_i.ms_url_id -
FF - user.js: extensions.incredibar_i.upn2 - 6OyVEs2DdX
FF - user.js: extensions.incredibar_i.upn2n - 92262534126543597
FF - user.js: extensions.incredibar_i.productid - 26
FF - user.js: extensions.incredibar_i.installerproductid - 26
FF - user.js: extensions.incredibar_i.did - 10643
FF - user.js: extensions.incredibar_i.ppd - 1
.
============= SERVICES / DRIVERS ===============
.
R1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx86.sys [2012-11-13 37664]
R2 IBUpdaterService;IBUpdaterService;c:\windows\system32\dmwu.exe [2012-11-29 1167152]
R3 tap0901t;TAP-Win32 Adapter V9 (Tunngle);c:\windows\system32\drivers\tap0901t.sys [2013-5-27 27136]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2013-6-3 162408]
S3 TunngleService;TunngleService;c:\program files\tunngle\TnglCtrl.exe [2013-5-27 746392]
S4 CltMngSvc;Search Protect by Conduit Updater;c:\program files\searchprotect\bin\CltMngSvc.exe [2013-5-8 97056]
S4 SBSDWSCService;SBSD Security Center Service;c:\program files\spybot - search & destroy\SDWinSec.exe [2012-8-12 1153368]
S4 vToolbarUpdater15.2.0;vToolbarUpdater15.2.0;c:\program files\common files\avg secure search\vtoolbarupdater\15.2.0\ToolbarUpdater.exe [2013-5-27 1015984]
.
=============== Created Last 30 ================
.
2013-07-02 17:24:28 -------- d-----w- c:\program files\SkypeAutoAnswer
2013-07-02 14:29:50 -------- d-----w- c:\users\phoenix\appdata\local\CRE
2013-07-02 14:29:05 -------- d-----w- c:\users\phoenix\appdata\roaming\SearchProtect
2013-06-21 12:12:22 -------- d-----w- c:\users\phoenix\appdata\roaming\runic games
2013-06-19 00:57:48 -------- d-----w- c:\users\phoenix\appdata\local\GOG.com
2013-06-19 00:57:35 -------- d-----w- c:\program files\GOG.com
2013-06-14 03:10:01 -------- d-----w- c:\program files\Sun
.
==================== Find3M ====================
.
2013-06-18 10:10:09 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-06-18 10:10:09 692104 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-05-27 22:20:41 37664 ----a-w- c:\windows\system32\drivers\avgtpx86.sys
2013-05-27 08:58:04 1167152 ----a-w- c:\windows\system32\dmwu.exe
2013-05-27 08:55:06 27136 ----a-w- c:\windows\system32\ImHttpComm.dll
.
============= FINISH: 21:36:54.56 ===============
aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software
Run date: 2013-07-03 04:47:43
-----------------------------
04:47:43.811 OS Version: Windows 6.0.6001 Service Pack 1
04:47:43.811 Number of processors: 2 586 0x6802
04:47:43.812 ComputerName: DJIBOUTI UserName: Phoenix
04:47:48.715 Initialize success
04:48:41.136 AVAST engine defs: 13070200
04:48:50.234 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP2T0L0-3
04:48:50.238 Disk 0 Vendor: WDC_WD5000LPVT-00G33T0 01.01A01 Size: 476940MB BusType: 3
04:48:50.472 Disk 0 MBR read successfully
04:48:50.488 Disk 0 MBR scan
04:48:50.518 Disk 0 unknown MBR code
04:48:50.553 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 465484 MB offset 63
04:48:50.633 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 11452 MB offset 953313165
04:48:50.672 Disk 0 scanning sectors +976768065
04:48:51.024 Disk 0 scanning C:\Windows\system32\drivers
04:49:20.732 Service scanning
04:50:29.564 Modules scanning
04:50:37.017 Disk 0 trace - called modules:
04:50:37.054 ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys hal.dll ataport.SYS pciide.sys PCIIDEX.SYS atapi.sys ndis.sys nvmfdx32.sys dxgkrnl.sys nvlddmkm.sys
04:50:37.057 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x85341740]
04:50:37.057 3 CLASSPNP.SYS[8a5a1745] -> nt!IofCallDriver -> [0x83f971c8]
04:50:37.058 5 acpi.sys[806166a0] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP2T0L0-3[0x83f98ba0]
04:50:40.298 AVAST engine scan C:\Windows
04:50:48.822 AVAST engine scan C:\Windows\system32
04:54:57.923 AVAST engine scan C:\Windows\system32\drivers
04:55:40.822 AVAST engine scan C:\Users\Phoenix
06:29:13.659 AVAST engine scan C:\ProgramData
06:41:03.829 Scan finished successfully
09:54:26.556 Disk 0 MBR has been saved successfully to "C:\Users\Phoenix\Desktop\MBR.dat"
09:54:26.615 The log file has been saved successfully to "C:\Users\Phoenix\Desktop\aswMBR.txt"
Win32.Downloader.gen: [SBI $BCCEBCBD] Program directory (Directory, nothing done)
C:\Users\Phoenix\AppData\Roaming\SearchProtect\
FastClick: Tracking cookie (Internet Explorer: Phoenix) (Cookie, nothing done)
MediaPlex: Tracking cookie (Internet Explorer: Phoenix) (Cookie, nothing done)
DoubleClick: Tracking cookie (Internet Explorer: Phoenix) (Cookie, nothing done)
--- Spybot - Search & Destroy version: 1.6.2 (build: 20090126) ---
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 7.0.6001.18639 BrowserJavaVersion: 1.6.0_45
Run by Phoenix at 21:36:25 on 2013-07-02
Microsoft® Windows Vista™ Home Basic 6.0.6001.1.1252.1.1033.18.3262.1557 [GMT -5:00]
.
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\SLsvc.exe
C:\Windows\System32\spoolsv.exe
c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\system32\taskeng.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\HP\QuickPlay\QPService.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\HP\Digital Imaging\bin\HpqSRmon.exe
c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Synaptics\SynTP\SynTPStart.exe
C:\Windows\system32\DRIVERS\xaudio.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Furcadia\furc_on.exe
c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
C:\Program Files\Furcadia\Furcadia.exe
C:\Program Files\mIRC\mirc.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Windows\system32\dmwu.exe
C:\Windows\System32\jmdp\stij.exe
C:\Program Files\SkypeAutoAnswer\AutoAnswer.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k WerSvcGroup
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://search.conduit.com/?ctid=CT3289075&octid=CT3289075&SearchSource=61&CUI=UN10050045552776410&UM=2&UP=SP7A9AAE07-8879-4A87-AF5D-A270EDA89B8F
uDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=81&bd=Presario&pf=laptop
mStart Page = hxxp://start.sweetpacks.com/?src=10&st=12&crg=3.5000006.10045&barid={5FA32070-E33B-11E2-8337-001E682AA689}
mDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_us&c=81&bd=Presario&pf=laptop
uURLSearchHooks: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - <orphaned>
uURLSearchHooks: {90b49673-5506-483e-b92b-ca0265bd9ca8} - <orphaned>
BHO: {02478D38-C3F9-4efb-9B51-7695ECA05670} - <orphaned>
BHO: Adobe PDF Reader Link Helper: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: Spybot-S&D IE Protection: {53707962-6F74-2D53-2644-206D7942484F} - c:\program files\spybot - search & destroy\SDHelper.dll
BHO: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - <orphaned>
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre6\bin\ssv.dll
BHO: Windows Live Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: AVG Security Toolbar: {95B7759C-8C7F-4BF1-B163-73684A933233} - c:\program files\avg secure search\15.2.0.5\AVG Secure Search_toolbar.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: HP Print Clips: {FFFFFFFF-FF12-44C5-91EC-068E3AA1B2D7} - c:\program files\hp\smart web printing\hpswp_framework.dll
TB: <No Name>: {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - LocalServer32 - <no file>
TB: AVG Security Toolbar: {95B7759C-8C7F-4BF1-B163-73684A933233} - c:\program files\avg secure search\15.2.0.5\AVG Secure Search_toolbar.dll
uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun
uRun: [SearchProtect] c:\users\phoenix\appdata\roaming\searchprotect\bin\cltmng.exe
uRunOnce: [SpybotDeletingB5299] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\ClearHist.exe"
uRunOnce: [SpybotDeletingD7233] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\ClearHist.exe"
uRunOnce: [SpybotDeletingB1253] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgcommon.dll"
uRunOnce: [SpybotDeletingD7190] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgcommon.dll"
uRunOnce: [SpybotDeletingB7470] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgconfig.dll"
uRunOnce: [SpybotDeletingD3935] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgconfig.dll"
uRunOnce: [SpybotDeletingB3608] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgHelperApp.exe"
uRunOnce: [SpybotDeletingD9148] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgHelperApp.exe"
uRunOnce: [SpybotDeletingB8942] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mghooking.dll"
uRunOnce: [SpybotDeletingD4376] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mghooking.dll"
uRunOnce: [SpybotDeletingB9361] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mglogger.dll"
uRunOnce: [SpybotDeletingD4637] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mglogger.dll"
uRunOnce: [SpybotDeletingB5160] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgsimcommon.dll"
uRunOnce: [SpybotDeletingD9852] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgsimcommon.dll"
uRunOnce: [SpybotDeletingB7921] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgToolbarProxy.dll"
uRunOnce: [SpybotDeletingD5412] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgToolbarProxy.dll"
uRunOnce: [SpybotDeletingB3459] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgxml_wrapper.dll"
uRunOnce: [SpybotDeletingD9859] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgxml_wrapper.dll"
uRunOnce: [SpybotDeletingB7049] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\default.xml"
uRunOnce: [SpybotDeletingD4699] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\default.xml"
uRunOnce: [SpybotDeletingB5428] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgHelper.dll"
uRunOnce: [SpybotDeletingD9190] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgHelper.dll"
uRunOnce: [SpybotDeletingB926] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgToolbarIE.dll"
uRunOnce: [SpybotDeletingD4296] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgToolbarIE.dll"
uRunOnce: [SpybotDeletingB6145] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\about.html"
uRunOnce: [SpybotDeletingD275] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\about.html"
uRunOnce: [SpybotDeletingB1729] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\affid.dat"
uRunOnce: [SpybotDeletingD1293] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\affid.dat"
uRunOnce: [SpybotDeletingB4960] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\basis.xml"
uRunOnce: [SpybotDeletingD6968] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\basis.xml"
uRunOnce: [SpybotDeletingB9276] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\bing.png"
uRunOnce: [SpybotDeletingD4045] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\bing.png"
uRunOnce: [SpybotDeletingB2028] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\clear-history.png"
uRunOnce: [SpybotDeletingD6160] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\clear-history.png"
uRunOnce: [SpybotDeletingB9306] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier.js"
uRunOnce: [SpybotDeletingD3802] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier.js"
uRunOnce: [SpybotDeletingB7536] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier-anim.gif"
uRunOnce: [SpybotDeletingD9713] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier-anim.gif"
uRunOnce: [SpybotDeletingB5542] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier-anim-over.gif"
uRunOnce: [SpybotDeletingD5440] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier-anim-over.gif"
uRunOnce: [SpybotDeletingB2779] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\dating.png"
uRunOnce: [SpybotDeletingD7173] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\dating.png"
uRunOnce: [SpybotDeletingB3122] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\dictionary.png"
uRunOnce: [SpybotDeletingD4924] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\dictionary.png"
uRunOnce: [SpybotDeletingB1170] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\e_cards.png"
uRunOnce: [SpybotDeletingD9060] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\e_cards.png"
uRunOnce: [SpybotDeletingB9757] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\eye_icon.png"
uRunOnce: [SpybotDeletingD2747] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\eye_icon.png"
uRunOnce: [SpybotDeletingB7855] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\eye_icon_over.png"
uRunOnce: [SpybotDeletingD1510] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\eye_icon_over.png"
uRunOnce: [SpybotDeletingB4217] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\find.png"
uRunOnce: [SpybotDeletingD6137] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\find.png"
uRunOnce: [SpybotDeletingB314] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\free_stuff.png"
uRunOnce: [SpybotDeletingD433] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\free_stuff.png"
uRunOnce: [SpybotDeletingB8188] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\games.png"
uRunOnce: [SpybotDeletingD6635] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\games.png"
uRunOnce: [SpybotDeletingB8996] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\glitter.png"
uRunOnce: [SpybotDeletingD451] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\glitter.png"
uRunOnce: [SpybotDeletingB6449] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\google.png"
uRunOnce: [SpybotDeletingD7215] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\google.png"
uRunOnce: [SpybotDeletingB412] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\help.png"
uRunOnce: [SpybotDeletingD3417] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\help.png"
uRunOnce: [SpybotDeletingB1570] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\highlight.png"
uRunOnce: [SpybotDeletingD5700] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\highlight.png"
uRunOnce: [SpybotDeletingB534] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\locales.xml"
uRunOnce: [SpybotDeletingD1010] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\locales.xml"
uRunOnce: [SpybotDeletingB6227] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_16x16.png"
uRunOnce: [SpybotDeletingD3155] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_16x16.png"
uRunOnce: [SpybotDeletingB2170] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_21x18.png"
uRunOnce: [SpybotDeletingD5595] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_21x18.png"
uRunOnce: [SpybotDeletingB3129] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_32x32.png"
uRunOnce: [SpybotDeletingD253] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_32x32.png"
uRunOnce: [SpybotDeletingB8926] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_about.png"
uRunOnce: [SpybotDeletingD593] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_about.png"
uRunOnce: [SpybotDeletingB5983] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\more-search-providers.png"
uRunOnce: [SpybotDeletingD77] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\more-search-providers.png"
uRunOnce: [SpybotDeletingB2866] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\music.png"
uRunOnce: [SpybotDeletingD5049] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\music.png"
uRunOnce: [SpybotDeletingB6306] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\news.png"
uRunOnce: [SpybotDeletingD4258] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\news.png"
uRunOnce: [SpybotDeletingB641] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\options.html"
uRunOnce: [SpybotDeletingD1185] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\options.html"
uRunOnce: [SpybotDeletingB6585] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\photos.png"
uRunOnce: [SpybotDeletingD5826] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\photos.png"
uRunOnce: [SpybotDeletingB1479] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\search-current-site.png"
uRunOnce: [SpybotDeletingD5913] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\search-current-site.png"
uRunOnce: [SpybotDeletingB3567] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\shopping.png"
uRunOnce: [SpybotDeletingD3447] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\shopping.png"
uRunOnce: [SpybotDeletingB7281] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\SmileySmile.png"
uRunOnce: [SpybotDeletingD770] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\SmileySmile.png"
uRunOnce: [SpybotDeletingB1497] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\SmileyWink.png"
uRunOnce: [SpybotDeletingD9512] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\SmileyWink.png"
uRunOnce: [SpybotDeletingB6992] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\sweetim_text.png"
uRunOnce: [SpybotDeletingD8790] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\sweetim_text.png"
uRunOnce: [SpybotDeletingB2805] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\toolbar.xml"
uRunOnce: [SpybotDeletingD383] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\toolbar.xml"
uRunOnce: [SpybotDeletingB838] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\video.png"
uRunOnce: [SpybotDeletingD1645] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\video.png"
uRunOnce: [SpybotDeletingB1362] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\web-search.png"
uRunOnce: [SpybotDeletingD4097] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\web-search.png"
uRunOnce: [SpybotDeletingB8348] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\yahoo.png"
uRunOnce: [SpybotDeletingD5847] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\yahoo.png"
mRun: [NvSvc] RUNDLL32.EXE c:\windows\system32\nvsvc.dll,nvsvcStart
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [QPService] "c:\program files\hp\quickplay\QPService.exe"
mRun: [Windows Defender] c:\program files\windows defender\MSASCui.exe -hide
mRun: [ccApp] "c:\program files\common files\symantec shared\ccApp.exe"
mRun: [hpqSRMon] c:\program files\hp\digital imaging\bin\hpqSRMon.exe
mRun: [HP Health Check Scheduler] [ProgramFilesFolder]Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe
mRun: [hpWirelessAssistant] c:\program files\hewlett-packard\hp wireless assistant\HPWAMain.exe
mRun: [WAWifiMessage] c:\program files\hewlett-packard\hp wireless assistant\WiFiMsg.exe
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [DivXMediaServer] c:\program files\divx\divx media server\DivXMediaServer.exe
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [SynTPStart] c:\program files\synaptics\syntp\SynTPStart.exe
mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
mRun: [SearchProtectAll] c:\program files\searchprotect\bin\cltmng.exe
mRunOnce: [SpybotDeletingA3039] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\ClearHist.exe"
mRunOnce: [SpybotDeletingC1226] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\ClearHist.exe"
mRunOnce: [SpybotDeletingA1346] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgcommon.dll"
mRunOnce: [SpybotDeletingC3427] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgcommon.dll"
mRunOnce: [SpybotDeletingA4726] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgconfig.dll"
mRunOnce: [SpybotDeletingC1632] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgconfig.dll"
mRunOnce: [SpybotDeletingA1898] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgHelperApp.exe"
mRunOnce: [SpybotDeletingC4408] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgHelperApp.exe"
mRunOnce: [SpybotDeletingA1157] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mghooking.dll"
mRunOnce: [SpybotDeletingC5928] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mghooking.dll"
mRunOnce: [SpybotDeletingA2556] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mglogger.dll"
mRunOnce: [SpybotDeletingC5883] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mglogger.dll"
mRunOnce: [SpybotDeletingA9464] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgsimcommon.dll"
mRunOnce: [SpybotDeletingC8159] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgsimcommon.dll"
mRunOnce: [SpybotDeletingA7117] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgToolbarProxy.dll"
mRunOnce: [SpybotDeletingC1565] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgToolbarProxy.dll"
mRunOnce: [SpybotDeletingA4227] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgxml_wrapper.dll"
mRunOnce: [SpybotDeletingC4800] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgxml_wrapper.dll"
mRunOnce: [SpybotDeletingA671] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\default.xml"
mRunOnce: [SpybotDeletingC2208] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\default.xml"
mRunOnce: [SpybotDeletingA7486] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgHelper.dll"
mRunOnce: [SpybotDeletingC7603] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgHelper.dll"
mRunOnce: [SpybotDeletingA5440] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\mgToolbarIE.dll"
mRunOnce: [SpybotDeletingC9490] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\mgToolbarIE.dll"
mRunOnce: [SpybotDeletingA1630] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\about.html"
mRunOnce: [SpybotDeletingC4396] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\about.html"
mRunOnce: [SpybotDeletingA9821] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\affid.dat"
mRunOnce: [SpybotDeletingC2297] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\affid.dat"
mRunOnce: [SpybotDeletingA3047] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\basis.xml"
mRunOnce: [SpybotDeletingC7444] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\basis.xml"
mRunOnce: [SpybotDeletingA1321] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\bing.png"
mRunOnce: [SpybotDeletingC2547] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\bing.png"
mRunOnce: [SpybotDeletingA216] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\clear-history.png"
mRunOnce: [SpybotDeletingC5159] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\clear-history.png"
mRunOnce: [SpybotDeletingA5574] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier.js"
mRunOnce: [SpybotDeletingC907] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier.js"
mRunOnce: [SpybotDeletingA4558] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier-anim.gif"
mRunOnce: [SpybotDeletingC6576] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier-anim.gif"
mRunOnce: [SpybotDeletingA659] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier-anim-over.gif"
mRunOnce: [SpybotDeletingC7654] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\content-notifier-anim-over.gif"
mRunOnce: [SpybotDeletingA2039] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\dating.png"
mRunOnce: [SpybotDeletingC6281] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\dating.png"
mRunOnce: [SpybotDeletingA6457] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\dictionary.png"
mRunOnce: [SpybotDeletingC6032] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\dictionary.png"
mRunOnce: [SpybotDeletingA9048] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\e_cards.png"
mRunOnce: [SpybotDeletingC8622] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\e_cards.png"
mRunOnce: [SpybotDeletingA2977] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\eye_icon.png"
mRunOnce: [SpybotDeletingC1233] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\eye_icon.png"
mRunOnce: [SpybotDeletingA8076] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\eye_icon_over.png"
mRunOnce: [SpybotDeletingC1142] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\eye_icon_over.png"
mRunOnce: [SpybotDeletingA4499] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\find.png"
mRunOnce: [SpybotDeletingC6406] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\find.png"
mRunOnce: [SpybotDeletingA4903] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\free_stuff.png"
mRunOnce: [SpybotDeletingC983] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\free_stuff.png"
mRunOnce: [SpybotDeletingA741] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\games.png"
mRunOnce: [SpybotDeletingC4612] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\games.png"
mRunOnce: [SpybotDeletingA3952] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\glitter.png"
mRunOnce: [SpybotDeletingC9314] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\glitter.png"
mRunOnce: [SpybotDeletingA7949] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\google.png"
mRunOnce: [SpybotDeletingC9890] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\google.png"
mRunOnce: [SpybotDeletingA5954] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\help.png"
mRunOnce: [SpybotDeletingC7572] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\help.png"
mRunOnce: [SpybotDeletingA529] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\highlight.png"
mRunOnce: [SpybotDeletingC5226] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\highlight.png"
mRunOnce: [SpybotDeletingA7462] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\locales.xml"
mRunOnce: [SpybotDeletingC3124] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\locales.xml"
mRunOnce: [SpybotDeletingA7028] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_16x16.png"
mRunOnce: [SpybotDeletingC9516] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_16x16.png"
mRunOnce: [SpybotDeletingA1665] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_21x18.png"
mRunOnce: [SpybotDeletingC9588] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_21x18.png"
mRunOnce: [SpybotDeletingA8159] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_32x32.png"
mRunOnce: [SpybotDeletingC2910] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_32x32.png"
mRunOnce: [SpybotDeletingA8782] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_about.png"
mRunOnce: [SpybotDeletingC9060] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\logo_about.png"
mRunOnce: [SpybotDeletingA9645] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\more-search-providers.png"
mRunOnce: [SpybotDeletingC3611] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\more-search-providers.png"
mRunOnce: [SpybotDeletingA1172] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\music.png"
mRunOnce: [SpybotDeletingC1135] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\music.png"
mRunOnce: [SpybotDeletingA6013] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\news.png"
mRunOnce: [SpybotDeletingC3112] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\news.png"
mRunOnce: [SpybotDeletingA5464] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\options.html"
mRunOnce: [SpybotDeletingC2990] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\options.html"
mRunOnce: [SpybotDeletingA551] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\photos.png"
mRunOnce: [SpybotDeletingC3958] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\photos.png"
mRunOnce: [SpybotDeletingA2339] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\search-current-site.png"
mRunOnce: [SpybotDeletingC6704] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\search-current-site.png"
mRunOnce: [SpybotDeletingA4589] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\shopping.png"
mRunOnce: [SpybotDeletingC5225] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\shopping.png"
mRunOnce: [SpybotDeletingA8708] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\SmileySmile.png"
mRunOnce: [SpybotDeletingC8297] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\SmileySmile.png"
mRunOnce: [SpybotDeletingA1656] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\SmileyWink.png"
mRunOnce: [SpybotDeletingC6396] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\SmileyWink.png"
mRunOnce: [SpybotDeletingA5894] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\sweetim_text.png"
mRunOnce: [SpybotDeletingC1833] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\sweetim_text.png"
mRunOnce: [SpybotDeletingA1878] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\toolbar.xml"
mRunOnce: [SpybotDeletingC3637] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\toolbar.xml"
mRunOnce: [SpybotDeletingA5996] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\video.png"
mRunOnce: [SpybotDeletingC8738] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\video.png"
mRunOnce: [SpybotDeletingA5336] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\web-search.png"
mRunOnce: [SpybotDeletingC2019] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\web-search.png"
mRunOnce: [SpybotDeletingA6736] command.com /c del "c:\program files\sweetim\toolbars\internet explorer\resources\yahoo.png"
mRunOnce: [SpybotDeletingC230] cmd.exe /c del "c:\program files\sweetim\toolbars\internet explorer\resources\yahoo.png"
mPolicies-System: EnableLUA = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office12\EXCEL.EXE/3000
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-001021-0002-0021-ABCDEFFEDCBC} - <orphaned>
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office12\ONBttnIE.dll
IE: {58ECB495-38F0-49cb-A538-10282ABF65E7} - {A93C41D8-01F8-4F8B-B14C-DE20B117E636} - c:\program files\hp\smart web printing\hpswp_extensions.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
IE: {d9288080-1baa-4bc4-9cf8-a92d743db949} - c:\users\phoenix\appdata\roaming\microsoft\windows\start menu\programs\imvu\Run IMVU.lnk
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\program files\spybot - search & destroy\SDHelper.dll
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
.
INFO: HKLM has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_45-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0045-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_45-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_45-windows-i586.cab
TCP: NameServer = 209.18.47.61 209.18.47.62
TCP: Interfaces\{54A4859D-93EA-43A8-AD0A-3FEF4C6863ED} : DHCPNameServer = 209.18.47.61 209.18.47.62
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files\common files\avg secure search\viprotocolinstaller\15.2.0\ViProtocol.dll
LSA: Security Packages = kerberos msv1_0 schannel wdigest tspkg
Hosts: 127.0.0.1 www.spywareinfo.com
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\phoenix\appdata\roaming\mozilla\firefox\profiles\1w5oxnrp.default\
FF - prefs.js: browser.search.defaulturl -
FF - prefs.js: browser.search.selectedEngine - SweetIM Search
FF - prefs.js: browser.startup.homepage - hxxp://start.sweetpacks.com/?barid={5FA32070-E33B-11E2-8337-001E682AA689}&crg=3.5000006.10045&st=23|http://www.aywas.org/news/
FF - plugin: c:\program files\common files\avg secure search\sitesafetyinstaller\15.2.0\npsitesafety.dll
FF - plugin: c:\program files\google\update\1.3.21.145\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre6\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\microsoft silverlight\4.1.10329.0\npctrlui.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npwachk.dll
FF - plugin: c:\users\phoenix\appdata\roaming\mozilla\firefox\profiles\1w5oxnrp.default\extensions\{ab91efd4-6975-4081-8552-1b3922ed79e2}\plugins\npAclmPlugin.dll
FF - plugin: c:\users\phoenix\appdata\roaming\mozilla\firefox\profiles\1w5oxnrp.default\extensions\{ab91efd4-6975-4081-8552-1b3922ed79e2}\plugins\npPitPlugin.dll
FF - plugin: c:\users\phoenix\appdata\roaming\mozilla\firefox\profiles\1w5oxnrp.default\extensions\{ab91efd4-6975-4081-8552-1b3922ed79e2}\plugins\npProductDetectPlugin.dll
FF - plugin: c:\users\phoenix\appdata\roaming\mozilla\firefox\profiles\1w5oxnrp.default\extensions\activegs@freetoolsassociation.com\plugins\npActiveGS.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_7_700_224.dll
FF - ExtSQL: 2013-06-13 22:09; {CAFEEFAC-0016-0000-0045-ABCDEFFEDCBA}; c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0045-ABCDEFFEDCBA}
.
---- FIREFOX POLICIES ----
FF - user.js: extensions.incredibar_i.newTab - false
FF - user.js: extensions.incredibar_i.tlbrSrchUrl - hxxp://mystart.Incredibar.com/?a=6OyVEs2DdX&loc=IB_TB&i=26&search=
FF - user.js: extensions.incredibar_i.id - 5cf6908d000000000000001f3a513170
FF - user.js: extensions.incredibar_i.instlDay - 15673
FF - user.js: extensions.incredibar_i.vrsn - 1.5.11.14
FF - user.js: extensions.incredibar_i.vrsni - 1.5.11.14
FF - user.js: extensions.incredibar_i.vrsnTs - 1.5.11.142:50:40
FF - user.js: extensions.incredibar_i.prtnrId - Incredibar
FF - user.js: extensions.incredibar_i.prdct - incredibar
FF - user.js: extensions.incredibar_i.aflt - orgnl
FF - user.js: extensions.incredibar_i.smplGrp - none
FF - user.js: extensions.incredibar_i.tlbrId - base
FF - user.js: extensions.incredibar_i.instlRef -
FF - user.js: extensions.incredibar_i.dfltLng -
FF - user.js: extensions.incredibar_i.excTlbr - false
FF - user.js: extensions.incredibar_i.ms_url_id -
FF - user.js: extensions.incredibar_i.upn2 - 6OyVEs2DdX
FF - user.js: extensions.incredibar_i.upn2n - 92262534126543597
FF - user.js: extensions.incredibar_i.productid - 26
FF - user.js: extensions.incredibar_i.installerproductid - 26
FF - user.js: extensions.incredibar_i.did - 10643
FF - user.js: extensions.incredibar_i.ppd - 1
.
============= SERVICES / DRIVERS ===============
.
R1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx86.sys [2012-11-13 37664]
R2 IBUpdaterService;IBUpdaterService;c:\windows\system32\dmwu.exe [2012-11-29 1167152]
R3 tap0901t;TAP-Win32 Adapter V9 (Tunngle);c:\windows\system32\drivers\tap0901t.sys [2013-5-27 27136]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2013-6-3 162408]
S3 TunngleService;TunngleService;c:\program files\tunngle\TnglCtrl.exe [2013-5-27 746392]
S4 CltMngSvc;Search Protect by Conduit Updater;c:\program files\searchprotect\bin\CltMngSvc.exe [2013-5-8 97056]
S4 SBSDWSCService;SBSD Security Center Service;c:\program files\spybot - search & destroy\SDWinSec.exe [2012-8-12 1153368]
S4 vToolbarUpdater15.2.0;vToolbarUpdater15.2.0;c:\program files\common files\avg secure search\vtoolbarupdater\15.2.0\ToolbarUpdater.exe [2013-5-27 1015984]
.
=============== Created Last 30 ================
.
2013-07-02 17:24:28 -------- d-----w- c:\program files\SkypeAutoAnswer
2013-07-02 14:29:50 -------- d-----w- c:\users\phoenix\appdata\local\CRE
2013-07-02 14:29:05 -------- d-----w- c:\users\phoenix\appdata\roaming\SearchProtect
2013-06-21 12:12:22 -------- d-----w- c:\users\phoenix\appdata\roaming\runic games
2013-06-19 00:57:48 -------- d-----w- c:\users\phoenix\appdata\local\GOG.com
2013-06-19 00:57:35 -------- d-----w- c:\program files\GOG.com
2013-06-14 03:10:01 -------- d-----w- c:\program files\Sun
.
==================== Find3M ====================
.
2013-06-18 10:10:09 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-06-18 10:10:09 692104 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-05-27 22:20:41 37664 ----a-w- c:\windows\system32\drivers\avgtpx86.sys
2013-05-27 08:58:04 1167152 ----a-w- c:\windows\system32\dmwu.exe
2013-05-27 08:55:06 27136 ----a-w- c:\windows\system32\ImHttpComm.dll
.
============= FINISH: 21:36:54.56 ===============
aswMBR version 0.9.9.1771 Copyright(c) 2011 AVAST Software
Run date: 2013-07-03 04:47:43
-----------------------------
04:47:43.811 OS Version: Windows 6.0.6001 Service Pack 1
04:47:43.811 Number of processors: 2 586 0x6802
04:47:43.812 ComputerName: DJIBOUTI UserName: Phoenix
04:47:48.715 Initialize success
04:48:41.136 AVAST engine defs: 13070200
04:48:50.234 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP2T0L0-3
04:48:50.238 Disk 0 Vendor: WDC_WD5000LPVT-00G33T0 01.01A01 Size: 476940MB BusType: 3
04:48:50.472 Disk 0 MBR read successfully
04:48:50.488 Disk 0 MBR scan
04:48:50.518 Disk 0 unknown MBR code
04:48:50.553 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 465484 MB offset 63
04:48:50.633 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 11452 MB offset 953313165
04:48:50.672 Disk 0 scanning sectors +976768065
04:48:51.024 Disk 0 scanning C:\Windows\system32\drivers
04:49:20.732 Service scanning
04:50:29.564 Modules scanning
04:50:37.017 Disk 0 trace - called modules:
04:50:37.054 ntkrnlpa.exe CLASSPNP.SYS disk.sys acpi.sys hal.dll ataport.SYS pciide.sys PCIIDEX.SYS atapi.sys ndis.sys nvmfdx32.sys dxgkrnl.sys nvlddmkm.sys
04:50:37.057 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x85341740]
04:50:37.057 3 CLASSPNP.SYS[8a5a1745] -> nt!IofCallDriver -> [0x83f971c8]
04:50:37.058 5 acpi.sys[806166a0] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP2T0L0-3[0x83f98ba0]
04:50:40.298 AVAST engine scan C:\Windows
04:50:48.822 AVAST engine scan C:\Windows\system32
04:54:57.923 AVAST engine scan C:\Windows\system32\drivers
04:55:40.822 AVAST engine scan C:\Users\Phoenix
06:29:13.659 AVAST engine scan C:\ProgramData
06:41:03.829 Scan finished successfully
09:54:26.556 Disk 0 MBR has been saved successfully to "C:\Users\Phoenix\Desktop\MBR.dat"
09:54:26.615 The log file has been saved successfully to "C:\Users\Phoenix\Desktop\aswMBR.txt"
Win32.Downloader.gen: [SBI $BCCEBCBD] Program directory (Directory, nothing done)
C:\Users\Phoenix\AppData\Roaming\SearchProtect\
FastClick: Tracking cookie (Internet Explorer: Phoenix) (Cookie, nothing done)
MediaPlex: Tracking cookie (Internet Explorer: Phoenix) (Cookie, nothing done)
DoubleClick: Tracking cookie (Internet Explorer: Phoenix) (Cookie, nothing done)
--- Spybot - Search & Destroy version: 1.6.2 (build: 20090126) ---