Hi - when I click on a link in a google search it only opens the last one on the page and I read up on it and it seems that I have a 'google redirect malware virus'
I tried updating my Mcafee but it doesnt detect it - I then downloaded STOPzilla and it found the nasties but I have to purchase the software to be able to remove them.
Is there any other freeware that could help? Please could you assist me.
Many thanks,
Hellocae
I've followed the instructions and here goes:
.
DDS (Ver_2011-08-26.01) - FAT32x86
Internet Explorer: 7.0.5730.11
Run by Hoofdgebruiker at 23:17:43 on 2011-08-29
Microsoft Windows XP Home Edition 5.1.2600.3.1252.31.1043.18.767.173 [GMT 2:00]
.
AV: McAfeeAntivirus en antispyware *Enabled/Updated* {84B5EE75-6421-4CDE-A33A-DD43BA9FAD83}
FW: McAfeeFirewall *Enabled*
.
============== Running Processes ===============
.
C:\WINDOWS\system32\svchost -k DcomLaunch
C:\Program Files\Common Files\iS3\Anti-Spyware\SZServer.exe
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
svchost.exe
C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe -k imgsvc
C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
C:\Program Files\SiteAdvisor\6253\SiteAdv.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe
C:\Program Files\iBurst Dashboard V2\DashboardLauncher.exe
C:\Program Files\iBurst Terminal\iBurst_Terminal_UTL.EXE
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\MTN F@stLink\MTN F@stLink.exe
C:\Program Files\McAfee\VirusScan\mcods.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\wuauclt.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://my.unisa.ac.za/
BHO: {089fd14d-132b-48fc-8861-0048ae113215} - c:\program files\siteadvisor\6261\SiteAdv.dll
BHO: {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - No File
BHO: {27B4851A-3207-45A2-B947-BE8AFE6163AB} - No File
BHO: scriptproxy: {7db2d5a0-7241-4e79-b68d-6309f01c5231} - c:\program files\common files\mcafee\systemcore\ScriptSn.20110819220952.dll
BHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - c:\progra~1\micros~2\office14\URLREDIR.DLL
BHO: {e3215f20-3212-11d6-9f8b-00d0b743919d} - c:\program files\stopzilla!\sziebho.dll
TB: McAfee SiteAdvisor: {0bf43445-2f28-4351-9252-17fe6e806aa0} - c:\program files\siteadvisor\6261\SiteAdv.dll
TB: {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - No File
EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
uRun: [CTFMON.EXE] c:\windows\system32\ctfmon.exe
uRun: [Mobile Partner] "c:\program files\mtn f@stlink\MTN F@stLink.exe"
mRun: [PCTVOICE] pctspk.exe
mRun: [NeroCheck] c:\windows\system32\NeroCheck.exe
mRun: [SiteAdvisor] c:\program files\siteadvisor\6253\SiteAdv.exe
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
StartupFolder: c:\docume~1\hoofdg~1\menust~1\progra~1\opstar~1\erunta~1.lnk - c:\program files\erunt\AUTOBACK.EXE
StartupFolder: c:\docume~1\alluse~1\menust~1\progra~1\opstar~1\mcafee~1.lnk - c:\program files\mcafee security scan\2.0.181\SSScheduler.exe
StartupFolder: c:\docume~1\alluse~1\menust~1\progra~1\opstar~1\dashbo~1.lnk - c:\windows\installer\{797e599d-f9f7-4ca9-8323-79ba07e20cfd}\Icon797E599D.exe
StartupFolder: c:\docume~1\alluse~1\menust~1\progra~1\opstar~1\iburst~1.lnk - c:\program files\iburst terminal\iBurst_Terminal_UTL.EXE
uPolicies-explorer: NoViewOnDrive = 0 (0x0)
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office14\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\google\google toolbar\component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html
IE: Se&nd to OneNote - c:\progra~1\micros~2\office14\ONBttnIE.dll/105
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office14\ONBttnIE.dll
IE: {77BF5300-1474-4EC7-9980-D32B190E9B07} - {77BF5300-1474-4EC7-9980-D32B190E9B07}
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - c:\program files\microsoft office\office14\ONBttnIELinkedNotes.dll
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://fpdownload.macromedia.com/get/shockwave/cabs/director/sw.cab
DPF: {233C1507-6A77-46A4-9443-F871F945D258} - hxxp://fpdownload.macromedia.com/get/shockwave/cabs/director/sw.cab
DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - hxxp://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab
DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} - hxxp://spaces.msn.com//PhotoUpload/MsnPUpld.cab
DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} - hxxp://upload.facebook.com/controls/FacebookPhotoUploader.cab
DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} - hxxp://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
DPF: {B0A2C7FC-8666-44D6-A990-2FCE3B933341} - hxxp://secure.ingbank.nl/download/DigiSign.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: Interfaces\{5F5344DB-3D7A-4B51-99D7-D410CD31CA8C} : NameServer = 209.212.96.1 209.212.97.1
TCP: Interfaces\{7C368668-5C78-4A3A-B428-8210CB60FD91} : NameServer = 196.25.255.34,196.25.255.3
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\progra~1\mcafee\msc\McSnIePl.dll
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - c:\program files\common files\microsoft shared\office14\MSOXMLMF.DLL
Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - c:\program files\common files\microsoft shared\web folders\PKMCDO.DLL
Handler: siteadvisor - {3A5DC592-7723-4EAA-9EE6-AF4222BCF879} - c:\program files\siteadvisor\6261\SiteAdv.dll
Notify: TPSvc - TPSvc.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
.
============= SERVICES / DRIVERS ===============
.
R0 mfehidk;McAfee Inc. mfehidk;c:\windows\system32\drivers\mfehidk.sys [2010-8-4 459728]
R0 szkg5;szkg5;c:\windows\system32\drivers\SZKG.sys [2009-12-7 61328]
R0 szkgfs;szkgfs;c:\windows\system32\drivers\SZKGFS.sys [2010-5-12 59280]
R1 mfetdi2k;McAfee Inc. mfetdi2k;c:\windows\system32\drivers\mfetdi2k.sys [2010-8-4 89368]
R2 McMPFSvc;McAfee Personal Firewall Service;c:\program files\common files\mcafee\mcsvchost\McSvHost.exe [2010-8-4 214904]
R2 McNaiAnn;McAfee VirusScan Announcer;c:\program files\common files\mcafee\mcsvchost\McSvHost.exe [2010-8-4 214904]
R2 McProxy;McAfee Proxy Service;c:\program files\common files\mcafee\mcsvchost\McSvHost.exe [2010-8-4 214904]
R2 McShield;McAfee McShield;c:\program files\common files\mcafee\systemcore\mcshield.exe [2010-8-4 165000]
R2 mfefire;McAfee Firewall Core Service;c:\program files\common files\mcafee\systemcore\mfefire.exe [2010-8-4 159832]
R2 mfevtp;McAfee Validation Trust Protection Service;c:\program files\common files\mcafee\systemcore\mfevtps.exe [2010-8-4 148520]
R3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys [2010-8-4 57432]
R3 mfeavfk;McAfee Inc. mfeavfk;c:\windows\system32\drivers\mfeavfk.sys [2010-8-4 179248]
R3 mfebopk;McAfee Inc. mfebopk;c:\windows\system32\drivers\mfebopk.sys [2010-8-4 59288]
R3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys [2010-8-4 337912]
R3 mfendiskmp;mfendiskmp;c:\windows\system32\drivers\mfendisk.sys [2010-8-4 83688]
R3 SiS7012;Service for AC'97 Sample Driver (WDM);c:\windows\system32\drivers\sis7012.sys [2003-4-8 820133]
S0 is3srv;is3srv;c:\windows\system32\drivers\is3srv.sys [2009-12-7 61328]
S2 ioloFileInfoList;iolo FileInfoList Service;c:\program files\iolo\common\lib\ioloservicemanager.exe --> c:\program files\iolo\common\lib\ioloServiceManager.exe [?]
S2 ioloSystemService;iolo System Service;c:\program files\iolo\common\lib\ioloservicemanager.exe --> c:\program files\iolo\common\lib\ioloServiceManager.exe [?]
S3 BulkUsb;VoIPUSBDriver.sys;c:\windows\system32\drivers\VoIPUSBDriver.sys [2005-10-12 149504]
S3 cpuz132;cpuz132;\??\c:\docume~1\hoofdg~1\locals~1\temp\cpuz132\cpuz132_x32.sys --> c:\docume~1\hoofdg~1\locals~1\temp\cpuz132\cpuz132_x32.sys [?]
S3 iBurstu;iBurst Terminal;c:\windows\system32\drivers\iBurstu.sys [2011-7-23 37362]
S3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\mcafee security scan\2.0.181\McCHSvc.exe [2010-1-15 227232]
S3 mfendisk;McAfee Core NDIS Intermediate Filter;c:\windows\system32\drivers\mfendisk.sys [2010-8-4 83688]
S3 mferkdet;McAfee Inc. mferkdet;c:\windows\system32\drivers\mferkdet.sys [2010-8-4 85984]
S3 osppsvc;Office Software Protection Platform;c:\program files\common files\microsoft shared\officesoftwareprotectionplatform\OSPPSVC.EXE [2010-1-9 4640000]
.
=============== File Associations ===============
.
JSEFile=NOTEPAD.EXE %1
regfile=NOTEPAD.EXE %1
scrfile=NOTEPAD.EXE %1
VBEFile=NOTEPAD.EXE %1
VBSFile=NOTEPAD.EXE %1
.
=============== Created Last 30 ================
.
2011-08-29 19:50:49 -------- d-----w- c:\documents and settings\hoofdgebruiker\local settings\application data\PCHealth
2011-08-28 20:59:54 215920 ----a-w- c:\windows\system32\muweb.dll
2011-08-28 20:59:54 17776 ----a-w- c:\windows\system32\mucltui.dll.mui
2011-08-28 20:59:53 274288 ----a-w- c:\windows\system32\mucltui.dll
2011-08-28 19:58:13 -------- d-----w- c:\documents and settings\all users\Microsoft
2011-08-28 19:52:33 -------- d-----w- c:\program files\Microsoft Analysis Services
2011-08-28 19:51:52 -------- d-----w- c:\documents and settings\hoofdgebruiker\local settings\application data\Microsoft Help
2011-08-28 19:38:53 -------- d-----w- c:\program files\STOPzilla!
2011-08-28 19:38:50 -------- d-----w- c:\program files\common files\iS3
2011-08-28 19:38:47 -------- d-----w- c:\documents and settings\all users\application data\STOPzilla!
2011-08-28 19:18:40 -------- d-----w- c:\program files\MSXML 6.0
2011-08-25 15:58:20 546256 ----a-r- c:\windows\system32\SZComp5.dll
2011-08-25 15:58:20 22992 ----a-r- c:\windows\system32\SZIO5.dll
2011-08-25 15:58:20 132560 ----a-r- c:\windows\system32\IS3HTUI5.dll
2011-08-25 15:58:18 99792 ----a-r- c:\windows\system32\IS3Svc5.dll
2011-08-25 15:58:18 99792 ----a-r- c:\windows\system32\IS3Inet5.dll
2011-08-25 15:58:18 67024 ----a-r- c:\windows\system32\IS3Hks5.dll
2011-08-25 15:58:18 456144 ----a-r- c:\windows\system32\SZBase5.dll
2011-08-25 15:58:18 398800 ----a-r- c:\windows\system32\IS3DBA5.dll
2011-08-25 15:58:18 28624 ----a-r- c:\windows\system32\IS3XDat5.dll
2011-08-25 15:58:16 738768 ----a-r- c:\windows\system32\IS3Base5.dll
2011-08-25 15:58:16 390608 ----a-r- c:\windows\system32\IS3UI5.dll
2011-08-25 15:58:16 230864 ----a-r- c:\windows\system32\IS3Win325.dll
2011-08-24 15:45:35 187392 ----a-r- c:\windows\system32\OLD3.tmp
2011-08-12 20:05:33 621056 ----a-w- c:\windows\system32\drivers\mod7700.sys
2011-08-12 20:05:33 24448 ----a-w- c:\windows\system32\drivers\ewdcsc.sys
2011-08-12 20:05:33 112640 ----a-w- c:\windows\system32\drivers\ewusbnet.sys
2011-08-12 20:05:33 102656 ----a-w- c:\windows\system32\drivers\ewusbfake.sys
2011-08-12 20:05:33 102400 ----a-w- c:\windows\system32\drivers\ewusbmdm.sys
.
==================== Find3M ====================
.
.
============= FINISH: 23:18:30.71 ===============
I tried updating my Mcafee but it doesnt detect it - I then downloaded STOPzilla and it found the nasties but I have to purchase the software to be able to remove them.
Is there any other freeware that could help? Please could you assist me.
Many thanks,
Hellocae
I've followed the instructions and here goes:
.
DDS (Ver_2011-08-26.01) - FAT32x86
Internet Explorer: 7.0.5730.11
Run by Hoofdgebruiker at 23:17:43 on 2011-08-29
Microsoft Windows XP Home Edition 5.1.2600.3.1252.31.1043.18.767.173 [GMT 2:00]
.
AV: McAfeeAntivirus en antispyware *Enabled/Updated* {84B5EE75-6421-4CDE-A33A-DD43BA9FAD83}
FW: McAfeeFirewall *Enabled*
.
============== Running Processes ===============
.
C:\WINDOWS\system32\svchost -k DcomLaunch
C:\Program Files\Common Files\iS3\Anti-Spyware\SZServer.exe
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
svchost.exe
C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe -k imgsvc
C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
C:\Program Files\SiteAdvisor\6253\SiteAdv.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe
C:\Program Files\iBurst Dashboard V2\DashboardLauncher.exe
C:\Program Files\iBurst Terminal\iBurst_Terminal_UTL.EXE
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\MTN F@stLink\MTN F@stLink.exe
C:\Program Files\McAfee\VirusScan\mcods.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\wuauclt.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://my.unisa.ac.za/
BHO: {089fd14d-132b-48fc-8861-0048ae113215} - c:\program files\siteadvisor\6261\SiteAdv.dll
BHO: {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - No File
BHO: {27B4851A-3207-45A2-B947-BE8AFE6163AB} - No File
BHO: scriptproxy: {7db2d5a0-7241-4e79-b68d-6309f01c5231} - c:\program files\common files\mcafee\systemcore\ScriptSn.20110819220952.dll
BHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - c:\progra~1\micros~2\office14\URLREDIR.DLL
BHO: {e3215f20-3212-11d6-9f8b-00d0b743919d} - c:\program files\stopzilla!\sziebho.dll
TB: McAfee SiteAdvisor: {0bf43445-2f28-4351-9252-17fe6e806aa0} - c:\program files\siteadvisor\6261\SiteAdv.dll
TB: {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - No File
EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
uRun: [CTFMON.EXE] c:\windows\system32\ctfmon.exe
uRun: [Mobile Partner] "c:\program files\mtn f@stlink\MTN F@stLink.exe"
mRun: [PCTVOICE] pctspk.exe
mRun: [NeroCheck] c:\windows\system32\NeroCheck.exe
mRun: [SiteAdvisor] c:\program files\siteadvisor\6253\SiteAdv.exe
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
StartupFolder: c:\docume~1\hoofdg~1\menust~1\progra~1\opstar~1\erunta~1.lnk - c:\program files\erunt\AUTOBACK.EXE
StartupFolder: c:\docume~1\alluse~1\menust~1\progra~1\opstar~1\mcafee~1.lnk - c:\program files\mcafee security scan\2.0.181\SSScheduler.exe
StartupFolder: c:\docume~1\alluse~1\menust~1\progra~1\opstar~1\dashbo~1.lnk - c:\windows\installer\{797e599d-f9f7-4ca9-8323-79ba07e20cfd}\Icon797E599D.exe
StartupFolder: c:\docume~1\alluse~1\menust~1\progra~1\opstar~1\iburst~1.lnk - c:\program files\iburst terminal\iBurst_Terminal_UTL.EXE
uPolicies-explorer: NoViewOnDrive = 0 (0x0)
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office14\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\google\google toolbar\component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html
IE: Se&nd to OneNote - c:\progra~1\micros~2\office14\ONBttnIE.dll/105
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office14\ONBttnIE.dll
IE: {77BF5300-1474-4EC7-9980-D32B190E9B07} - {77BF5300-1474-4EC7-9980-D32B190E9B07}
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - c:\program files\microsoft office\office14\ONBttnIELinkedNotes.dll
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://fpdownload.macromedia.com/get/shockwave/cabs/director/sw.cab
DPF: {233C1507-6A77-46A4-9443-F871F945D258} - hxxp://fpdownload.macromedia.com/get/shockwave/cabs/director/sw.cab
DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - hxxp://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab
DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} - hxxp://spaces.msn.com//PhotoUpload/MsnPUpld.cab
DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} - hxxp://upload.facebook.com/controls/FacebookPhotoUploader.cab
DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} - hxxp://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
DPF: {B0A2C7FC-8666-44D6-A990-2FCE3B933341} - hxxp://secure.ingbank.nl/download/DigiSign.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: Interfaces\{5F5344DB-3D7A-4B51-99D7-D410CD31CA8C} : NameServer = 209.212.96.1 209.212.97.1
TCP: Interfaces\{7C368668-5C78-4A3A-B428-8210CB60FD91} : NameServer = 196.25.255.34,196.25.255.3
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\progra~1\mcafee\msc\McSnIePl.dll
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - c:\program files\common files\microsoft shared\office14\MSOXMLMF.DLL
Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - c:\program files\common files\microsoft shared\web folders\PKMCDO.DLL
Handler: siteadvisor - {3A5DC592-7723-4EAA-9EE6-AF4222BCF879} - c:\program files\siteadvisor\6261\SiteAdv.dll
Notify: TPSvc - TPSvc.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
.
============= SERVICES / DRIVERS ===============
.
R0 mfehidk;McAfee Inc. mfehidk;c:\windows\system32\drivers\mfehidk.sys [2010-8-4 459728]
R0 szkg5;szkg5;c:\windows\system32\drivers\SZKG.sys [2009-12-7 61328]
R0 szkgfs;szkgfs;c:\windows\system32\drivers\SZKGFS.sys [2010-5-12 59280]
R1 mfetdi2k;McAfee Inc. mfetdi2k;c:\windows\system32\drivers\mfetdi2k.sys [2010-8-4 89368]
R2 McMPFSvc;McAfee Personal Firewall Service;c:\program files\common files\mcafee\mcsvchost\McSvHost.exe [2010-8-4 214904]
R2 McNaiAnn;McAfee VirusScan Announcer;c:\program files\common files\mcafee\mcsvchost\McSvHost.exe [2010-8-4 214904]
R2 McProxy;McAfee Proxy Service;c:\program files\common files\mcafee\mcsvchost\McSvHost.exe [2010-8-4 214904]
R2 McShield;McAfee McShield;c:\program files\common files\mcafee\systemcore\mcshield.exe [2010-8-4 165000]
R2 mfefire;McAfee Firewall Core Service;c:\program files\common files\mcafee\systemcore\mfefire.exe [2010-8-4 159832]
R2 mfevtp;McAfee Validation Trust Protection Service;c:\program files\common files\mcafee\systemcore\mfevtps.exe [2010-8-4 148520]
R3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys [2010-8-4 57432]
R3 mfeavfk;McAfee Inc. mfeavfk;c:\windows\system32\drivers\mfeavfk.sys [2010-8-4 179248]
R3 mfebopk;McAfee Inc. mfebopk;c:\windows\system32\drivers\mfebopk.sys [2010-8-4 59288]
R3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys [2010-8-4 337912]
R3 mfendiskmp;mfendiskmp;c:\windows\system32\drivers\mfendisk.sys [2010-8-4 83688]
R3 SiS7012;Service for AC'97 Sample Driver (WDM);c:\windows\system32\drivers\sis7012.sys [2003-4-8 820133]
S0 is3srv;is3srv;c:\windows\system32\drivers\is3srv.sys [2009-12-7 61328]
S2 ioloFileInfoList;iolo FileInfoList Service;c:\program files\iolo\common\lib\ioloservicemanager.exe --> c:\program files\iolo\common\lib\ioloServiceManager.exe [?]
S2 ioloSystemService;iolo System Service;c:\program files\iolo\common\lib\ioloservicemanager.exe --> c:\program files\iolo\common\lib\ioloServiceManager.exe [?]
S3 BulkUsb;VoIPUSBDriver.sys;c:\windows\system32\drivers\VoIPUSBDriver.sys [2005-10-12 149504]
S3 cpuz132;cpuz132;\??\c:\docume~1\hoofdg~1\locals~1\temp\cpuz132\cpuz132_x32.sys --> c:\docume~1\hoofdg~1\locals~1\temp\cpuz132\cpuz132_x32.sys [?]
S3 iBurstu;iBurst Terminal;c:\windows\system32\drivers\iBurstu.sys [2011-7-23 37362]
S3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\mcafee security scan\2.0.181\McCHSvc.exe [2010-1-15 227232]
S3 mfendisk;McAfee Core NDIS Intermediate Filter;c:\windows\system32\drivers\mfendisk.sys [2010-8-4 83688]
S3 mferkdet;McAfee Inc. mferkdet;c:\windows\system32\drivers\mferkdet.sys [2010-8-4 85984]
S3 osppsvc;Office Software Protection Platform;c:\program files\common files\microsoft shared\officesoftwareprotectionplatform\OSPPSVC.EXE [2010-1-9 4640000]
.
=============== File Associations ===============
.
JSEFile=NOTEPAD.EXE %1
regfile=NOTEPAD.EXE %1
scrfile=NOTEPAD.EXE %1
VBEFile=NOTEPAD.EXE %1
VBSFile=NOTEPAD.EXE %1
.
=============== Created Last 30 ================
.
2011-08-29 19:50:49 -------- d-----w- c:\documents and settings\hoofdgebruiker\local settings\application data\PCHealth
2011-08-28 20:59:54 215920 ----a-w- c:\windows\system32\muweb.dll
2011-08-28 20:59:54 17776 ----a-w- c:\windows\system32\mucltui.dll.mui
2011-08-28 20:59:53 274288 ----a-w- c:\windows\system32\mucltui.dll
2011-08-28 19:58:13 -------- d-----w- c:\documents and settings\all users\Microsoft
2011-08-28 19:52:33 -------- d-----w- c:\program files\Microsoft Analysis Services
2011-08-28 19:51:52 -------- d-----w- c:\documents and settings\hoofdgebruiker\local settings\application data\Microsoft Help
2011-08-28 19:38:53 -------- d-----w- c:\program files\STOPzilla!
2011-08-28 19:38:50 -------- d-----w- c:\program files\common files\iS3
2011-08-28 19:38:47 -------- d-----w- c:\documents and settings\all users\application data\STOPzilla!
2011-08-28 19:18:40 -------- d-----w- c:\program files\MSXML 6.0
2011-08-25 15:58:20 546256 ----a-r- c:\windows\system32\SZComp5.dll
2011-08-25 15:58:20 22992 ----a-r- c:\windows\system32\SZIO5.dll
2011-08-25 15:58:20 132560 ----a-r- c:\windows\system32\IS3HTUI5.dll
2011-08-25 15:58:18 99792 ----a-r- c:\windows\system32\IS3Svc5.dll
2011-08-25 15:58:18 99792 ----a-r- c:\windows\system32\IS3Inet5.dll
2011-08-25 15:58:18 67024 ----a-r- c:\windows\system32\IS3Hks5.dll
2011-08-25 15:58:18 456144 ----a-r- c:\windows\system32\SZBase5.dll
2011-08-25 15:58:18 398800 ----a-r- c:\windows\system32\IS3DBA5.dll
2011-08-25 15:58:18 28624 ----a-r- c:\windows\system32\IS3XDat5.dll
2011-08-25 15:58:16 738768 ----a-r- c:\windows\system32\IS3Base5.dll
2011-08-25 15:58:16 390608 ----a-r- c:\windows\system32\IS3UI5.dll
2011-08-25 15:58:16 230864 ----a-r- c:\windows\system32\IS3Win325.dll
2011-08-24 15:45:35 187392 ----a-r- c:\windows\system32\OLD3.tmp
2011-08-12 20:05:33 621056 ----a-w- c:\windows\system32\drivers\mod7700.sys
2011-08-12 20:05:33 24448 ----a-w- c:\windows\system32\drivers\ewdcsc.sys
2011-08-12 20:05:33 112640 ----a-w- c:\windows\system32\drivers\ewusbnet.sys
2011-08-12 20:05:33 102656 ----a-w- c:\windows\system32\drivers\ewusbfake.sys
2011-08-12 20:05:33 102400 ----a-w- c:\windows\system32\drivers\ewusbmdm.sys
.
==================== Find3M ====================
.
.
============= FINISH: 23:18:30.71 ===============