optimus357
New member
Hello helpers. I am experiencing redirects from various search engines (Google, Yahoo!) as well as new browser pages opening unexpectedly. I have tried a few different remedies to no avail. Superantispyware, Spybot, Malwarebytes and MSE didn't find anything beyond spyware. I used Hijack this to remove a known offender that began with an A (I know that sounds ridiculous but I can't remember the exact name of it). Without any further confusion here is my DDS report.
DDS (Ver_10-03-17.01) - NTFSx86
Run by TJ at 13:39:06.21 on Wed 07/28/2010
Internet Explorer: 8.0.6001.18702
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.2047.1287 [GMT -6:00]
AV: Microsoft Security Essentials *On-access scanning enabled* (Updated) {BCF43643-A118-4432-AEDE-D861FCBCFCDF}
============== Running Processes ===============
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\Program Files\Microsoft Security Essentials\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\system32\RUNDLL32.EXE
D:\Program Files\SetPointP\SetPoint.exe
C:\Program Files\Microsoft Security Essentials\msseces.exe
C:\WINDOWS\system32\ctfmon.exe
D:\program files\steam\steam.exe
C:\Documents and Settings\TJ\Local Settings\Application Data\Google\Update\1.2.183.29\GoogleCrashHandler.exe
C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE
C:\Documents and Settings\TJ\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\TJ\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\TJ\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\TJ\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\TJ\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\TJ\My Documents\Downloads\dds.scr
============== Pseudo HJT Report ===============
uStart Page = hxxp://www.yahoo.com/
EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
uRun: [ASUS SmartDoctor] c:\program files\asus\smartdoctor\SmartDoctor.exe /start
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [Steam] "d:\program files\steam\steam.exe" -silent
uRun: [Google Update] "c:\documents and settings\tj\local settings\application data\google\update\GoogleUpdate.exe" /c
uRun: [SUPERAntiSpyware] d:\program files\SUPERAntiSpyware.exe
mRun: [RTHDCPL] RTHDCPL.EXE
mRun: [HPDJ Taskbar Utility] c:\windows\system32\spool\drivers\w32x86\3\hpztsb10.exe
mRun: [HP Component Manager] "c:\program files\hp\hpcoretech\hpcmpmgr.exe"
mRun: [HP Software Update] "c:\program files\hewlett-packard\hp software update\HPWuSchd2.exe"
mRun: [GameFace Messenger] c:\program files\gameface messenger\GameFace.exe
mRun: [nwiz] c:\program files\nvidia corporation\nview\nwiz.exe /installquiet
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [EvtMgr6] d:\program files\setpointp\SetPoint.exe /launchGaming
mRun: [MSSE] "c:\program files\microsoft security essentials\msseces.exe" -hide -runkey
StartupFolder: c:\docume~1\tj\startm~1\programs\startup\erunta~1.lnk - d:\program files\erunt\AUTOBACK.EXE
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://go.microsoft.com/fwlink/?linkid=39204
DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} - hxxp://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1277988754921
Handler: cetihpz - {CF184AD3-CDCB-4168-A3F7-8E447D129300} - c:\program files\hp\hpcoretech\comp\hpuiprot.dll
Notify: !SASWinLogon - d:\program files\SASWINLO.DLL
Notify: LBTWlgn - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - d:\program files\SASSEH.DLL
============= SERVICES / DRIVERS ===============
R1 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2010-3-25 151216]
R1 SASDIFSV;SASDIFSV;d:\program files\sasdifsv.sys [2010-2-17 12872]
R1 SASKUTIL;SASKUTIL;d:\program files\SASKUTIL.SYS [2010-5-10 67656]
R2 LBeepKE;Logitech Beep Suppression Driver;c:\windows\system32\drivers\LBeepKE.sys [2010-7-2 10448]
R3 RTLWUSB;Realtek RTL8187 Wireless 802.11b/g 54Mbps USB 2.0 Network Adapter;c:\windows\system32\drivers\RTL8187.sys [2010-6-20 332928]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 Asushwio;Asushwio;c:\windows\system32\drivers\ASUSHWIO.SYS [2010-6-20 5824]
S3 cpuz132;cpuz132;\??\c:\docume~1\tj\locals~1\temp\cpuz132\cpuz132_x32.sys --> c:\docume~1\tj\locals~1\temp\cpuz132\cpuz132_x32.sys [?]
S3 klmd24;klmd24;c:\windows\system32\drivers\klmd.sys [2010-7-26 69456]
S3 WinRM;Windows Remote Management (WS-Management);c:\windows\system32\svchost.exe -k WINRM [2003-3-31 14336]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
=============== Created Last 30 ================
2010-07-27 04:44:31 69456 ----a-w- c:\windows\system32\drivers\klmd.sys
2010-07-27 04:40:26 0 d-----w- C:\_OTM
2010-07-26 18:42:24 221568 ------w- c:\windows\system32\MpSigStub.exe
2010-07-26 18:39:15 0 d-----w- c:\program files\Microsoft Security Essentials
2010-07-26 08:00:25 0 d-----w- c:\docume~1\tj\applic~1\Malwarebytes
2010-07-26 08:00:09 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-07-26 08:00:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-07-26 08:00:08 0 d-----w- c:\docume~1\alluse~1\applic~1\Malwarebytes
2010-07-26 07:54:24 0 d-----w- c:\docume~1\tj\applic~1\SUPERAntiSpyware.com
2010-07-26 07:54:24 0 d-----w- c:\docume~1\alluse~1\applic~1\SUPERAntiSpyware.com
2010-07-13 22:25:55 744448 -c----w- c:\windows\system32\dllcache\helpsvc.exe
2010-07-06 10:14:28 0 d-----w- c:\docume~1\alluse~1\applic~1\Spybot - Search & Destroy
2010-07-05 23:27:48 0 d-----w- c:\windows\system32\xlive
2010-07-05 23:27:48 0 d-----w- c:\program files\Microsoft Games for Windows - LIVE
2010-07-02 23:58:55 0 d-----w- c:\program files\Microsoft CAPICOM 2.1.0.2
2010-07-02 23:55:40 274288 ----a-w- c:\windows\system32\mucltui.dll
2010-07-02 23:55:40 215920 ----a-w- c:\windows\system32\muweb.dll
2010-07-02 23:55:40 16736 ----a-w- c:\windows\system32\mucltui.dll.mui
2010-07-02 07:30:52 16400 ----a-w- c:\windows\system32\drivers\LNonPnP.sys
2010-07-02 07:30:52 0 ---ha-w- c:\windows\system32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
2010-07-02 07:30:48 16928 ------w- c:\windows\system32\spmsgXP_2k3.dll
2010-07-02 07:30:16 10448 ----a-w- c:\windows\system32\drivers\LBeepKE.sys
2010-07-02 07:16:31 0 d-----w- c:\docume~1\tj\applic~1\Logishrd
2010-07-02 04:54:13 0 d-sh--w- c:\documents and settings\tj\IECompatCache
2010-07-02 04:51:54 0 d-sh--w- c:\documents and settings\tj\PrivacIE
2010-07-02 04:44:15 0 d--h--w- c:\windows\PIF
2010-07-02 04:42:09 0 d-sh--w- c:\documents and settings\tj\IETldCache
2010-07-02 00:03:47 217180 ----a-w- c:\windows\system32\nvdrsdb0.bin
2010-07-02 00:03:45 217180 ----a-w- c:\windows\system32\nvdrsdb1.bin
2010-07-02 00:03:45 1 ----a-w- c:\windows\system32\nvdrssel.bin
2010-07-02 00:03:45 0 ----a-w- c:\windows\system32\nvdrswr.lk
2010-07-02 00:02:59 0 d-----w- C:\NVIDIA
2010-07-01 23:38:46 0 d-----w- c:\program files\SystemRequirementsLab
2010-07-01 23:28:37 0 d-----w- C:\ASUS
2010-07-01 23:04:30 0 d-----w- c:\windows\system32\winrm
2010-07-01 23:04:28 0 dc-h--w- c:\windows\$968930Uinstall_KB968930$
2010-07-01 22:44:42 1089593 -c----w- c:\windows\system32\dllcache\ntprint.cat
2010-07-01 15:57:58 0 d-----w- c:\windows\system32\XPSViewer
2010-07-01 15:57:32 89088 -c----w- c:\windows\system32\dllcache\filterpipelineprintproc.dll
2010-07-01 15:57:32 597504 -c----w- c:\windows\system32\dllcache\printfilterpipelinesvc.exe
2010-07-01 15:57:32 575488 -c----w- c:\windows\system32\dllcache\xpsshhdr.dll
2010-07-01 15:57:32 575488 ------w- c:\windows\system32\xpsshhdr.dll
2010-07-01 15:57:32 1676288 -c----w- c:\windows\system32\dllcache\xpssvcs.dll
2010-07-01 15:57:32 1676288 ------w- c:\windows\system32\xpssvcs.dll
2010-07-01 15:57:32 117760 ------w- c:\windows\system32\prntvpt.dll
2010-07-01 15:55:28 0 d-----w- c:\windows\system32\URTTemp
2010-07-01 15:20:46 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2010-07-01 15:20:46 599040 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2010-07-01 15:20:46 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2010-07-01 15:20:46 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2010-07-01 15:20:46 1985536 -c----w- c:\windows\system32\dllcache\iertutil.dll
2010-07-01 15:20:46 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2010-07-01 15:20:46 11076096 -c----w- c:\windows\system32\dllcache\ieframe.dll
2010-07-01 15:20:43 0 d-----w- c:\windows\ie8updates
2010-07-01 15:20:25 41984 -c----w- c:\windows\system32\dllcache\iecompat.dll
2010-07-01 15:19:35 0 dc-h--w- c:\windows\ie8
2010-07-01 15:03:40 0 d-----w- c:\windows\system32\GroupPolicy
2010-07-01 15:03:40 0 d-----w- c:\program files\Windows Desktop Search
2010-07-01 15:03:14 98304 -c----w- c:\windows\system32\dllcache\nlhtml.dll
2010-07-01 15:03:14 29696 -c----w- c:\windows\system32\dllcache\mimefilt.dll
2010-07-01 15:03:14 192000 -c----w- c:\windows\system32\dllcache\offfilt.dll
2010-07-01 15:03:01 0 d-----w- c:\program files\Windows Media Connect 2
2010-07-01 15:02:14 0 d-----w- c:\windows\system32\LogFiles
2010-07-01 14:23:32 0 d-----w- c:\windows\system32\scripting
2010-07-01 14:23:32 0 d-----w- c:\windows\system32\en
2010-07-01 14:23:32 0 d-----w- c:\windows\l2schemas
2010-07-01 14:20:48 0 d-----w- c:\windows\network diagnostic
2010-07-01 13:59:24 0 d-----w- c:\program files\MSXML 4.0
2010-07-01 13:38:58 455680 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2010-07-01 13:38:51 3558912 -c----w- c:\windows\system32\dllcache\moviemk.exe
2010-07-01 13:38:31 353792 -c----w- c:\windows\system32\dllcache\srv.sys
2010-07-01 13:37:44 81920 -c----w- c:\windows\system32\dllcache\fontsub.dll
2010-07-01 13:37:44 119808 -c----w- c:\windows\system32\dllcache\t2embed.dll
2010-07-01 13:37:30 471552 -c----w- c:\windows\system32\dllcache\aclayers.dll
2010-07-01 13:34:18 153088 -c----w- c:\windows\system32\dllcache\triedit.dll
2010-07-01 13:32:01 2066432 -c----w- c:\windows\system32\dllcache\mstscax.dll
2010-07-01 13:31:50 128512 -c----w- c:\windows\system32\dllcache\dhtmled.ocx
2010-07-01 13:28:13 1172480 -c----w- c:\windows\system32\dllcache\msxml3.dll
2010-07-01 13:28:06 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll
2010-07-01 13:28:00 331776 -c----w- c:\windows\system32\dllcache\msadce.dll
2010-07-01 13:27:13 272128 -c----w- c:\windows\system32\dllcache\bthport.sys
2010-07-01 13:27:07 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys
2010-07-01 13:24:14 0 d-----w- c:\windows\system32\wbem\AutoRecover
2010-07-01 13:20:43 316640 ----a-w- c:\windows\WMSysPr9.prx
2010-07-01 13:20:24 0 d-----w- c:\windows\provisioning
2010-07-01 13:20:24 0 d-----w- c:\windows\peernet
2010-07-01 13:19:46 0 d-----w- c:\windows\ServicePackFiles
2010-07-01 13:18:12 0 d-----w- c:\windows\EHome
2010-07-01 13:17:14 7208 ------w- c:\windows\system32\secupd.sig
2010-07-01 13:17:14 67866 ------w- c:\windows\system32\drivers\netwlan5.img
2010-07-01 13:17:14 4569 ------w- c:\windows\system32\secupd.dat
2010-07-01 13:17:14 11264 ------w- c:\windows\system32\spnpinst.exe
2010-07-01 13:00:57 13646 ----a-w- c:\windows\system32\wpa.bak
2010-07-01 12:55:32 0 d-----w- c:\windows\system32\PreInstall
2010-07-01 12:55:30 0 d--h--w- c:\windows\$hf_mig$
2010-07-01 12:55:13 0 d-----w- c:\windows\system32\bits
2010-07-01 12:54:54 8192 ------w- c:\windows\system32\bitsprx2.dll
2010-07-01 12:54:54 7168 ------w- c:\windows\system32\bitsprx3.dll
2010-07-01 12:54:54 438784 ------w- c:\windows\system32\xpob2res.dll
2010-07-01 12:54:54 354816 ----a-w- c:\windows\system32\winhttp.dll
2010-07-01 12:54:54 18944 ----a-w- c:\windows\system32\qmgrprxy.dll
2010-07-01 12:53:25 217816 ----a-w- c:\windows\system32\wuaucpl.cpl
2010-07-01 12:53:25 21728 ----a-w- c:\windows\system32\wucltui.dll.mui
2010-07-01 12:53:25 17632 ----a-w- c:\windows\system32\wuaueng.dll.mui
2010-07-01 12:53:25 15072 ----a-w- c:\windows\system32\wuaucpl.cpl.mui
2010-07-01 12:53:25 15064 ----a-w- c:\windows\system32\wuapi.dll.mui
2010-07-01 11:51:02 0 d-----w- c:\docume~1\alluse~1\applic~1\NVIDIA Corporation
2010-07-01 11:50:39 0 d-----w- c:\program files\NVIDIA Corporation
2010-07-01 03:28:55 21504 ----a-w- c:\windows\system32\hidserv.dll
2010-07-01 03:28:54 14592 ----a-w- c:\windows\system32\drivers\kbdhid.sys
2010-07-01 03:28:53 32128 ----a-w- c:\windows\system32\drivers\usbccgp.sys
==================== Find3M ====================
2010-07-01 14:42:07 737280 ----a-w- c:\windows\iun6002.exe
2010-06-21 05:43:49 21035 ----a-w- c:\windows\system32\drivers\AegisP.sys
2010-06-21 04:52:09 21640 ----a-w- c:\windows\system32\emptyregdb.dat
2010-06-07 23:57:00 6300544 ----a-w- c:\windows\system32\nv4_disp.dll
2010-06-07 23:57:00 61440 ----a-w- c:\windows\system32\OpenCL.dll
2010-06-07 23:57:00 4554752 ----a-w- c:\windows\system32\nvcuda.dll
2010-06-07 23:57:00 2632296 ----a-w- c:\windows\system32\nvcuvenc.dll
2010-06-07 23:57:00 232040 ----a-w- c:\windows\system32\nvcodins.dll
2010-06-07 23:57:00 232040 ----a-w- c:\windows\system32\nvcod.dll
2010-06-07 23:57:00 2186342 ----a-w- c:\windows\system32\nvdata.bin
2010-06-07 23:57:00 2165352 ----a-w- c:\windows\system32\nvcuvid.dll
2010-06-07 23:57:00 15192064 ----a-w- c:\windows\system32\nvoglnt.dll
2010-06-07 23:57:00 1359872 ----a-w- c:\windows\system32\nvapi.dll
2010-06-07 23:57:00 10531200 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2010-06-07 23:57:00 10256384 ----a-w- c:\windows\system32\nvcompiler.dll
2010-06-07 23:34:52 81920 ----a-w- c:\windows\system32\nvwddi.dll
2010-06-07 23:34:42 277608 ----a-w- c:\windows\system32\nvmccs.dll
2010-06-07 23:34:42 13902440 ----a-w- c:\windows\system32\nvcpl.dll
2010-06-07 23:34:42 110696 ----a-w- c:\windows\system32\nvmctray.dll
2010-06-07 23:34:40 154728 ----a-w- c:\windows\system32\nvsvc32.exe
2010-06-07 23:34:40 145000 ----a-w- c:\windows\system32\nvcolor.exe
2010-05-06 10:41:53 916480 ----a-w- c:\windows\system32\wininet.dll
2010-05-02 05:22:50 1851264 ----a-w- c:\windows\system32\win32k.sys
============= FINISH: 13:39:23.34 ===============
DDS (Ver_10-03-17.01) - NTFSx86
Run by TJ at 13:39:06.21 on Wed 07/28/2010
Internet Explorer: 8.0.6001.18702
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.2047.1287 [GMT -6:00]
AV: Microsoft Security Essentials *On-access scanning enabled* (Updated) {BCF43643-A118-4432-AEDE-D861FCBCFCDF}
============== Running Processes ===============
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\Program Files\Microsoft Security Essentials\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\system32\RUNDLL32.EXE
D:\Program Files\SetPointP\SetPoint.exe
C:\Program Files\Microsoft Security Essentials\msseces.exe
C:\WINDOWS\system32\ctfmon.exe
D:\program files\steam\steam.exe
C:\Documents and Settings\TJ\Local Settings\Application Data\Google\Update\1.2.183.29\GoogleCrashHandler.exe
C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE
C:\Documents and Settings\TJ\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\TJ\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\TJ\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\TJ\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\TJ\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\TJ\My Documents\Downloads\dds.scr
============== Pseudo HJT Report ===============
uStart Page = hxxp://www.yahoo.com/
EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
uRun: [ASUS SmartDoctor] c:\program files\asus\smartdoctor\SmartDoctor.exe /start
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [Steam] "d:\program files\steam\steam.exe" -silent
uRun: [Google Update] "c:\documents and settings\tj\local settings\application data\google\update\GoogleUpdate.exe" /c
uRun: [SUPERAntiSpyware] d:\program files\SUPERAntiSpyware.exe
mRun: [RTHDCPL] RTHDCPL.EXE
mRun: [HPDJ Taskbar Utility] c:\windows\system32\spool\drivers\w32x86\3\hpztsb10.exe
mRun: [HP Component Manager] "c:\program files\hp\hpcoretech\hpcmpmgr.exe"
mRun: [HP Software Update] "c:\program files\hewlett-packard\hp software update\HPWuSchd2.exe"
mRun: [GameFace Messenger] c:\program files\gameface messenger\GameFace.exe
mRun: [nwiz] c:\program files\nvidia corporation\nview\nwiz.exe /installquiet
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [EvtMgr6] d:\program files\setpointp\SetPoint.exe /launchGaming
mRun: [MSSE] "c:\program files\microsoft security essentials\msseces.exe" -hide -runkey
StartupFolder: c:\docume~1\tj\startm~1\programs\startup\erunta~1.lnk - d:\program files\erunt\AUTOBACK.EXE
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://go.microsoft.com/fwlink/?linkid=39204
DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} - hxxp://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1277988754921
Handler: cetihpz - {CF184AD3-CDCB-4168-A3F7-8E447D129300} - c:\program files\hp\hpcoretech\comp\hpuiprot.dll
Notify: !SASWinLogon - d:\program files\SASWINLO.DLL
Notify: LBTWlgn - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - d:\program files\SASSEH.DLL
============= SERVICES / DRIVERS ===============
R1 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2010-3-25 151216]
R1 SASDIFSV;SASDIFSV;d:\program files\sasdifsv.sys [2010-2-17 12872]
R1 SASKUTIL;SASKUTIL;d:\program files\SASKUTIL.SYS [2010-5-10 67656]
R2 LBeepKE;Logitech Beep Suppression Driver;c:\windows\system32\drivers\LBeepKE.sys [2010-7-2 10448]
R3 RTLWUSB;Realtek RTL8187 Wireless 802.11b/g 54Mbps USB 2.0 Network Adapter;c:\windows\system32\drivers\RTL8187.sys [2010-6-20 332928]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 Asushwio;Asushwio;c:\windows\system32\drivers\ASUSHWIO.SYS [2010-6-20 5824]
S3 cpuz132;cpuz132;\??\c:\docume~1\tj\locals~1\temp\cpuz132\cpuz132_x32.sys --> c:\docume~1\tj\locals~1\temp\cpuz132\cpuz132_x32.sys [?]
S3 klmd24;klmd24;c:\windows\system32\drivers\klmd.sys [2010-7-26 69456]
S3 WinRM;Windows Remote Management (WS-Management);c:\windows\system32\svchost.exe -k WINRM [2003-3-31 14336]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
=============== Created Last 30 ================
2010-07-27 04:44:31 69456 ----a-w- c:\windows\system32\drivers\klmd.sys
2010-07-27 04:40:26 0 d-----w- C:\_OTM
2010-07-26 18:42:24 221568 ------w- c:\windows\system32\MpSigStub.exe
2010-07-26 18:39:15 0 d-----w- c:\program files\Microsoft Security Essentials
2010-07-26 08:00:25 0 d-----w- c:\docume~1\tj\applic~1\Malwarebytes
2010-07-26 08:00:09 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-07-26 08:00:08 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-07-26 08:00:08 0 d-----w- c:\docume~1\alluse~1\applic~1\Malwarebytes
2010-07-26 07:54:24 0 d-----w- c:\docume~1\tj\applic~1\SUPERAntiSpyware.com
2010-07-26 07:54:24 0 d-----w- c:\docume~1\alluse~1\applic~1\SUPERAntiSpyware.com
2010-07-13 22:25:55 744448 -c----w- c:\windows\system32\dllcache\helpsvc.exe
2010-07-06 10:14:28 0 d-----w- c:\docume~1\alluse~1\applic~1\Spybot - Search & Destroy
2010-07-05 23:27:48 0 d-----w- c:\windows\system32\xlive
2010-07-05 23:27:48 0 d-----w- c:\program files\Microsoft Games for Windows - LIVE
2010-07-02 23:58:55 0 d-----w- c:\program files\Microsoft CAPICOM 2.1.0.2
2010-07-02 23:55:40 274288 ----a-w- c:\windows\system32\mucltui.dll
2010-07-02 23:55:40 215920 ----a-w- c:\windows\system32\muweb.dll
2010-07-02 23:55:40 16736 ----a-w- c:\windows\system32\mucltui.dll.mui
2010-07-02 07:30:52 16400 ----a-w- c:\windows\system32\drivers\LNonPnP.sys
2010-07-02 07:30:52 0 ---ha-w- c:\windows\system32\drivers\MsftWdf_Kernel_01009_Coinstaller_Critical.Wdf
2010-07-02 07:30:48 16928 ------w- c:\windows\system32\spmsgXP_2k3.dll
2010-07-02 07:30:16 10448 ----a-w- c:\windows\system32\drivers\LBeepKE.sys
2010-07-02 07:16:31 0 d-----w- c:\docume~1\tj\applic~1\Logishrd
2010-07-02 04:54:13 0 d-sh--w- c:\documents and settings\tj\IECompatCache
2010-07-02 04:51:54 0 d-sh--w- c:\documents and settings\tj\PrivacIE
2010-07-02 04:44:15 0 d--h--w- c:\windows\PIF
2010-07-02 04:42:09 0 d-sh--w- c:\documents and settings\tj\IETldCache
2010-07-02 00:03:47 217180 ----a-w- c:\windows\system32\nvdrsdb0.bin
2010-07-02 00:03:45 217180 ----a-w- c:\windows\system32\nvdrsdb1.bin
2010-07-02 00:03:45 1 ----a-w- c:\windows\system32\nvdrssel.bin
2010-07-02 00:03:45 0 ----a-w- c:\windows\system32\nvdrswr.lk
2010-07-02 00:02:59 0 d-----w- C:\NVIDIA
2010-07-01 23:38:46 0 d-----w- c:\program files\SystemRequirementsLab
2010-07-01 23:28:37 0 d-----w- C:\ASUS
2010-07-01 23:04:30 0 d-----w- c:\windows\system32\winrm
2010-07-01 23:04:28 0 dc-h--w- c:\windows\$968930Uinstall_KB968930$
2010-07-01 22:44:42 1089593 -c----w- c:\windows\system32\dllcache\ntprint.cat
2010-07-01 15:57:58 0 d-----w- c:\windows\system32\XPSViewer
2010-07-01 15:57:32 89088 -c----w- c:\windows\system32\dllcache\filterpipelineprintproc.dll
2010-07-01 15:57:32 597504 -c----w- c:\windows\system32\dllcache\printfilterpipelinesvc.exe
2010-07-01 15:57:32 575488 -c----w- c:\windows\system32\dllcache\xpsshhdr.dll
2010-07-01 15:57:32 575488 ------w- c:\windows\system32\xpsshhdr.dll
2010-07-01 15:57:32 1676288 -c----w- c:\windows\system32\dllcache\xpssvcs.dll
2010-07-01 15:57:32 1676288 ------w- c:\windows\system32\xpssvcs.dll
2010-07-01 15:57:32 117760 ------w- c:\windows\system32\prntvpt.dll
2010-07-01 15:55:28 0 d-----w- c:\windows\system32\URTTemp
2010-07-01 15:20:46 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2010-07-01 15:20:46 599040 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2010-07-01 15:20:46 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2010-07-01 15:20:46 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2010-07-01 15:20:46 1985536 -c----w- c:\windows\system32\dllcache\iertutil.dll
2010-07-01 15:20:46 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2010-07-01 15:20:46 11076096 -c----w- c:\windows\system32\dllcache\ieframe.dll
2010-07-01 15:20:43 0 d-----w- c:\windows\ie8updates
2010-07-01 15:20:25 41984 -c----w- c:\windows\system32\dllcache\iecompat.dll
2010-07-01 15:19:35 0 dc-h--w- c:\windows\ie8
2010-07-01 15:03:40 0 d-----w- c:\windows\system32\GroupPolicy
2010-07-01 15:03:40 0 d-----w- c:\program files\Windows Desktop Search
2010-07-01 15:03:14 98304 -c----w- c:\windows\system32\dllcache\nlhtml.dll
2010-07-01 15:03:14 29696 -c----w- c:\windows\system32\dllcache\mimefilt.dll
2010-07-01 15:03:14 192000 -c----w- c:\windows\system32\dllcache\offfilt.dll
2010-07-01 15:03:01 0 d-----w- c:\program files\Windows Media Connect 2
2010-07-01 15:02:14 0 d-----w- c:\windows\system32\LogFiles
2010-07-01 14:23:32 0 d-----w- c:\windows\system32\scripting
2010-07-01 14:23:32 0 d-----w- c:\windows\system32\en
2010-07-01 14:23:32 0 d-----w- c:\windows\l2schemas
2010-07-01 14:20:48 0 d-----w- c:\windows\network diagnostic
2010-07-01 13:59:24 0 d-----w- c:\program files\MSXML 4.0
2010-07-01 13:38:58 455680 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2010-07-01 13:38:51 3558912 -c----w- c:\windows\system32\dllcache\moviemk.exe
2010-07-01 13:38:31 353792 -c----w- c:\windows\system32\dllcache\srv.sys
2010-07-01 13:37:44 81920 -c----w- c:\windows\system32\dllcache\fontsub.dll
2010-07-01 13:37:44 119808 -c----w- c:\windows\system32\dllcache\t2embed.dll
2010-07-01 13:37:30 471552 -c----w- c:\windows\system32\dllcache\aclayers.dll
2010-07-01 13:34:18 153088 -c----w- c:\windows\system32\dllcache\triedit.dll
2010-07-01 13:32:01 2066432 -c----w- c:\windows\system32\dllcache\mstscax.dll
2010-07-01 13:31:50 128512 -c----w- c:\windows\system32\dllcache\dhtmled.ocx
2010-07-01 13:28:13 1172480 -c----w- c:\windows\system32\dllcache\msxml3.dll
2010-07-01 13:28:06 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll
2010-07-01 13:28:00 331776 -c----w- c:\windows\system32\dllcache\msadce.dll
2010-07-01 13:27:13 272128 -c----w- c:\windows\system32\dllcache\bthport.sys
2010-07-01 13:27:07 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys
2010-07-01 13:24:14 0 d-----w- c:\windows\system32\wbem\AutoRecover
2010-07-01 13:20:43 316640 ----a-w- c:\windows\WMSysPr9.prx
2010-07-01 13:20:24 0 d-----w- c:\windows\provisioning
2010-07-01 13:20:24 0 d-----w- c:\windows\peernet
2010-07-01 13:19:46 0 d-----w- c:\windows\ServicePackFiles
2010-07-01 13:18:12 0 d-----w- c:\windows\EHome
2010-07-01 13:17:14 7208 ------w- c:\windows\system32\secupd.sig
2010-07-01 13:17:14 67866 ------w- c:\windows\system32\drivers\netwlan5.img
2010-07-01 13:17:14 4569 ------w- c:\windows\system32\secupd.dat
2010-07-01 13:17:14 11264 ------w- c:\windows\system32\spnpinst.exe
2010-07-01 13:00:57 13646 ----a-w- c:\windows\system32\wpa.bak
2010-07-01 12:55:32 0 d-----w- c:\windows\system32\PreInstall
2010-07-01 12:55:30 0 d--h--w- c:\windows\$hf_mig$
2010-07-01 12:55:13 0 d-----w- c:\windows\system32\bits
2010-07-01 12:54:54 8192 ------w- c:\windows\system32\bitsprx2.dll
2010-07-01 12:54:54 7168 ------w- c:\windows\system32\bitsprx3.dll
2010-07-01 12:54:54 438784 ------w- c:\windows\system32\xpob2res.dll
2010-07-01 12:54:54 354816 ----a-w- c:\windows\system32\winhttp.dll
2010-07-01 12:54:54 18944 ----a-w- c:\windows\system32\qmgrprxy.dll
2010-07-01 12:53:25 217816 ----a-w- c:\windows\system32\wuaucpl.cpl
2010-07-01 12:53:25 21728 ----a-w- c:\windows\system32\wucltui.dll.mui
2010-07-01 12:53:25 17632 ----a-w- c:\windows\system32\wuaueng.dll.mui
2010-07-01 12:53:25 15072 ----a-w- c:\windows\system32\wuaucpl.cpl.mui
2010-07-01 12:53:25 15064 ----a-w- c:\windows\system32\wuapi.dll.mui
2010-07-01 11:51:02 0 d-----w- c:\docume~1\alluse~1\applic~1\NVIDIA Corporation
2010-07-01 11:50:39 0 d-----w- c:\program files\NVIDIA Corporation
2010-07-01 03:28:55 21504 ----a-w- c:\windows\system32\hidserv.dll
2010-07-01 03:28:54 14592 ----a-w- c:\windows\system32\drivers\kbdhid.sys
2010-07-01 03:28:53 32128 ----a-w- c:\windows\system32\drivers\usbccgp.sys
==================== Find3M ====================
2010-07-01 14:42:07 737280 ----a-w- c:\windows\iun6002.exe
2010-06-21 05:43:49 21035 ----a-w- c:\windows\system32\drivers\AegisP.sys
2010-06-21 04:52:09 21640 ----a-w- c:\windows\system32\emptyregdb.dat
2010-06-07 23:57:00 6300544 ----a-w- c:\windows\system32\nv4_disp.dll
2010-06-07 23:57:00 61440 ----a-w- c:\windows\system32\OpenCL.dll
2010-06-07 23:57:00 4554752 ----a-w- c:\windows\system32\nvcuda.dll
2010-06-07 23:57:00 2632296 ----a-w- c:\windows\system32\nvcuvenc.dll
2010-06-07 23:57:00 232040 ----a-w- c:\windows\system32\nvcodins.dll
2010-06-07 23:57:00 232040 ----a-w- c:\windows\system32\nvcod.dll
2010-06-07 23:57:00 2186342 ----a-w- c:\windows\system32\nvdata.bin
2010-06-07 23:57:00 2165352 ----a-w- c:\windows\system32\nvcuvid.dll
2010-06-07 23:57:00 15192064 ----a-w- c:\windows\system32\nvoglnt.dll
2010-06-07 23:57:00 1359872 ----a-w- c:\windows\system32\nvapi.dll
2010-06-07 23:57:00 10531200 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2010-06-07 23:57:00 10256384 ----a-w- c:\windows\system32\nvcompiler.dll
2010-06-07 23:34:52 81920 ----a-w- c:\windows\system32\nvwddi.dll
2010-06-07 23:34:42 277608 ----a-w- c:\windows\system32\nvmccs.dll
2010-06-07 23:34:42 13902440 ----a-w- c:\windows\system32\nvcpl.dll
2010-06-07 23:34:42 110696 ----a-w- c:\windows\system32\nvmctray.dll
2010-06-07 23:34:40 154728 ----a-w- c:\windows\system32\nvsvc32.exe
2010-06-07 23:34:40 145000 ----a-w- c:\windows\system32\nvcolor.exe
2010-05-06 10:41:53 916480 ----a-w- c:\windows\system32\wininet.dll
2010-05-02 05:22:50 1851264 ----a-w- c:\windows\system32\win32k.sys
============= FINISH: 13:39:23.34 ===============