loopdiloop
New member
Hi -
Our laptop has picked up this virus which throws up plenty of alerts about being infected and most importantly doesn't allow us to access any web pages, so I don't know how to download what is needed to clean the computer.
Please help? what can i do first to get clean? I don't have DDS installed on this computer.
Thanks
Loopy
Since above was posted I have run DDS and am posting the two logs below. Note that i ran malwarebytes in safe mode which may have helped to get rid of some of this infection.
DDS (Ver_10-03-17.01) - NTFSx86
Run by Erin at 22:10:21.93 on Mon 05/24/2010
Internet Explorer: 6.0.2900.5512
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.223.49 [GMT -7:00]
AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
svchost.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\System32\svchost.exe -k imgsvc
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\Program Files\NETGEAR\WPN511\Utility\WPN511.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\HP\Digital Imaging\Product Assistant\bin\hprblog.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Erin\Desktop\dds.scr
============== Pseudo HJT Report ===============
uSearch Bar = hxxp://www.google.com/ie
mDefault_Page_URL = hxxp://www.emachines.com
uInternet Connection Wizard,ShellNext = https://my.netgear-support.com/myNETGEAR/ENG/login.asp
uInternet Settings,ProxyOverride = <local>
uInternet Settings,ProxyServer = http=127.0.0.1:5555
uURLSearchHooks: AVG Security Toolbar BHO: {a3bc75a2-1f87-4686-aa43-5347d756017c} - c:\program files\avg\avg8\toolbar\IEToolbar.dll
uURLSearchHooks: H - No File
BHO: AcroIEHlprObj Class: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 5.0\reader\activex\AcroIEHelper.ocx
BHO: {243b17de-77c7-46bf-b94b-0b5f309a0e64} - c:\program files\microsoft money\system\mnyside.dll
BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg8\avgssie.dll
BHO: AVG Security Toolbar BHO: {a3bc75a2-1f87-4686-aa43-5347d756017c} - c:\program files\avg\avg8\toolbar\IEToolbar.dll
BHO: {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - No File
TB: AVG Security Toolbar: {ccc7a320-b3ca-4199-b1a6-9f516dd69829} - c:\program files\avg\avg8\toolbar\IEToolbar.dll
EB: Real.com: {fe54fa40-d68c-11d2-98fa-00c0f0318afe} - c:\windows\system32\Shdocvw.dll
EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
mRun: [SynTPLpr] c:\program files\synaptics\syntp\SynTPLpr.exe
mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
mRun: [AVG8_TRAY] c:\progra~1\avg\avg8\avgtray.exe
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [mmtask] c:\program files\musicmatch\musicmatch jukebox\mmtask.exe
mRun: [MMTray] c:\program files\musicmatch\musicmatch jukebox\mm_tray.exe
mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe
mRun: [SunJavaUpdateSched] c:\program files\java\jre1.5.0_04\bin\jusched.exe
mRun: [AS00_WPN511] c:\program files\netgear\wpn511\utility\WPN511.exe -hide
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\hpdigi~1.lnk - c:\program files\hp\digital imaging\bin\hpqtra08.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\nikonm~1.lnk - c:\program files\common files\nikon\monitor\NkMonitor.exe
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
IE: {6224f700-cba3-4071-b251-47cb894244cd} - c:\program files\icq\ICQ.exe
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0015-0000-0004-ABCDEFFEDCBC} - c:\program files\java\jre1.5.0_04\bin\npjpi150_04.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office11\REFIEBAR.DLL
IE: {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - {FE54FA40-D68C-11d2-98FA-00C0F0318AFE} - c:\windows\system32\Shdocvw.dll
IE: {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - {DD6687B5-CB43-4211-BFC9-2942CCBDCB3E} - c:\program files\microsoft money\system\mnyside.dll
DPF: DirectAnimation Java Classes - file://c:\windows\java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://c:\windows\java\classes\xmldso.cab
DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} - hxxp://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
DPF: {CAFEEFAC-0013-0001-0000-ABCDEFFEDCBA} - hxxp://java.sun.com/products/plugin/1.3.1/jinstall-131-win.cab
DPF: {CAFEEFAC-0013-0001-0002-ABCDEFFEDCBA} - hxxp://java.sun.com/products/plugin/1.3.1/jinstall-131_02-win.cab
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg8\avgpp.dll
Notify: avgrsstarter - avgrsstx.dll
Notify: igfxcui - igfxsrvc.dll
============= SERVICES / DRIVERS ===============
R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2009-6-15 335240]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86;c:\windows\system32\drivers\avgmfx86.sys [2009-6-15 27784]
R1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2009-6-15 108552]
R2 avg8wd;AVG Free8 WatchDog;c:\progra~1\avg\avg8\avgwdsvc.exe [2009-6-15 297752]
R3 AWINDIS5;AWINDIS5 Protocol Driver;c:\windows\system32\AWINDIS5.SYS [2009-5-31 16194]
R3 NETGEAR_WPN511_SERVICE;NETGEAR WPN511 Wireless Adapter Service;c:\windows\system32\drivers\wpn511.sys [2010-5-21 488992]
=============== Created Last 30 ================
2010-05-25 03:03:30 0 d-----w- c:\docume~1\erin\applic~1\Malwarebytes
2010-05-25 03:03:20 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-05-25 03:03:19 0 d-----w- c:\docume~1\alluse~1\applic~1\Malwarebytes
2010-05-25 03:03:18 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-05-25 03:03:18 0 d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-05-22 00:59:19 36864 ------w- c:\windows\system32\kill.dll
2010-05-22 00:59:05 17801 ----a-w- c:\windows\system32\drivers\AegisP.sys
2010-05-22 00:58:35 221184 ----a-w- c:\windows\InstallDialog.exe
2010-05-22 00:58:34 221184 ----a-w- c:\windows\UninstallDialog.exe
2010-05-22 00:58:33 488992 ----a-w- c:\windows\system32\drivers\wpn511.sys
2010-05-22 00:58:30 0 d-----w- c:\program files\NETGEAR
==================== Find3M ====================
2010-04-30 03:31:17 20 ---h--w- c:\docume~1\alluse~1\applic~1\PKP_DLdu.DAT
2010-04-25 15:10:32 28256 ----a-w- c:\windows\system32\drivers\MxlW2k.sys
2010-03-09 11:09:18 430080 ----a-w- c:\windows\system32\vbscript.dll
2010-02-26 05:43:57 667136 ----a-w- c:\windows\system32\wininet.dll
2010-02-26 05:43:54 81920 ------w- c:\windows\system32\ieencode.dll
============= FINISH: 22:11:55.07 ===============
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
DDS (Ver_10-03-17.01)
Microsoft Windows XP Home Edition
Boot Device: \Device\HarddiskVolume1
Install Date: 3/8/2009 4:44:58 PM
System Uptime: 5/24/2010 9:40:13 PM (1 hours ago)
Motherboard: ARIMA | | W720P4
Processor: Mobile Intel(R) Celeron(R) CPU 2.40GHz | Laptop Computer CPU | 2392/400mhz
==== Disk Partitions =========================
C: is FIXED (NTFS) - 37 GiB total, 17.333 GiB free.
D: is CDROM ()
==== Disabled Device Manager Items =============
==== System Restore Points ===================
RP311: 2/24/2010 8:56:37 AM - Software Distribution Service 3.0
RP312: 3/6/2010 9:00:08 AM - System Checkpoint
RP313: 3/7/2010 9:41:35 AM - System Checkpoint
RP314: 3/8/2010 2:07:40 PM - Avg8 Update
RP315: 3/11/2010 8:59:49 AM - Software Distribution Service 3.0
RP316: 3/12/2010 7:56:12 PM - System Checkpoint
RP317: 3/14/2010 12:11:55 PM - System Checkpoint
RP318: 3/18/2010 7:53:46 AM - System Checkpoint
RP319: 3/18/2010 8:19:07 PM - Avg8 Update
RP320: 3/18/2010 8:23:09 PM - Avg8 Update
RP321: 3/21/2010 8:17:15 PM - System Checkpoint
RP322: 3/22/2010 10:10:52 PM - System Checkpoint
RP323: 3/27/2010 9:29:24 AM - System Checkpoint
RP324: 3/28/2010 11:21:11 AM - System Checkpoint
RP325: 3/31/2010 10:27:02 AM - System Checkpoint
RP326: 4/2/2010 9:22:38 PM - Software Distribution Service 3.0
RP327: 4/10/2010 10:16:57 AM - System Checkpoint
RP328: 4/11/2010 10:30:03 AM - System Checkpoint
RP329: 4/14/2010 8:54:25 AM - Software Distribution Service 3.0
RP330: 4/15/2010 9:02:32 AM - Software Distribution Service 3.0
RP331: 4/17/2010 4:03:30 PM - System Checkpoint
RP332: 4/21/2010 7:59:58 AM - System Checkpoint
RP333: 4/22/2010 8:01:17 AM - System Checkpoint
RP334: 4/25/2010 7:32:29 AM - System Checkpoint
RP335: 4/30/2010 7:47:23 PM - System Checkpoint
RP336: 5/2/2010 1:08:30 PM - System Checkpoint
RP337: 5/4/2010 8:04:53 AM - System Checkpoint
RP338: 5/5/2010 9:52:39 PM - System Checkpoint
RP339: 5/8/2010 8:54:50 AM - System Checkpoint
RP340: 5/9/2010 9:55:28 AM - System Checkpoint
RP341: 5/10/2010 9:00:24 PM - System Checkpoint
RP342: 5/13/2010 7:49:29 AM - Software Distribution Service 3.0
RP343: 5/15/2010 2:44:32 PM - System Checkpoint
RP344: 5/16/2010 8:25:55 PM - System Checkpoint
RP345: 5/19/2010 1:58:37 PM - System Checkpoint
RP346: 5/21/2010 4:56:30 PM - System Checkpoint
RP347: 5/21/2010 5:56:22 PM - Removed NETGEAR RangeMax(TM) Wireless PC Card WPN511
RP348: 5/21/2010 5:58:23 PM - Installed NETGEAR RangeMax(TM) Wireless PC Card WPN511
RP349: 5/23/2010 10:33:27 AM - System Checkpoint
==== Installed Programs ======================
Adobe Acrobat 5.0
Adobe Flash Player 10 ActiveX
AiO_Scan
AiOSoftware
Apple Mobile Device Support
Apple Software Update
ArcSoft Panorama Maker 4
AVG Free 8.5
Bonjour
BufferChm
CCleaner
CP_Package_Variety1
CP_Package_Variety2
CP_Package_Variety3
Dell Digital Jukebox Driver
Dell File Manager
Destinations
DeviceManagementQFolder
DocProc
eSupportQFolder
Fax
Hotfix for Windows XP (KB952287)
Hotfix for Windows XP (KB970653-v3)
Hotfix for Windows XP (KB976098-v2)
Hotfix for Windows XP (KB979306)
HP Image Zone Express
HP Imaging Device Functions 5.3
HP PSC & OfficeJet 5.3.B
HP Software Update
HP Solution Center & Imaging Support Tools 5.3
HPProductAssistant
ICQ
Intel(R) Extreme Graphics 2 Driver
iTunes
J2SE Runtime Environment 5.0 Update 4
Java 2 Runtime Environment Standard Edition v1.3.1
Java 2 Runtime Environment Standard Edition v1.3.1_02
LiveReg (Symantec Corporation)
LiveUpdate 1.80 (Symantec Corporation)
Malwarebytes' Anti-Malware
Microsoft Money 2003
Microsoft Money 2003 System Pack
Microsoft Office Basic Edition 2003
Microsoft Visual C++ 2005 Redistributable
Microsoft Works 6.0
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MUSICMATCH® Jukebox
NETGEAR RangeMax(TM) Wireless PC Card WPN511
NewCopy
Nikon Message Center
Nikon Transfer
PowerDVD
ProductContext
QuickTime
Readme
RealPlayer Basic
Scan
ScannerCopy
Security Update for Windows Media Player (KB911564)
Security Update for Windows Media Player (KB952069)
Security Update for Windows Media Player (KB954155)
Security Update for Windows Media Player (KB968816)
Security Update for Windows Media Player (KB973540)
Security Update for Windows Media Player (KB979402)
Security Update for Windows Media Player 9 (KB917734)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB938464-v2)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950760)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB954459)
Security Update for Windows XP (KB954600)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956744)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956844)
Security Update for Windows XP (KB957097)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958687)
Security Update for Windows XP (KB958869)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Security Update for Windows XP (KB961371)
Security Update for Windows XP (KB961373)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB968537)
Security Update for Windows XP (KB969059)
Security Update for Windows XP (KB969897)
Security Update for Windows XP (KB969898)
Security Update for Windows XP (KB969947)
Security Update for Windows XP (KB970238)
Security Update for Windows XP (KB970430)
Security Update for Windows XP (KB971468)
Security Update for Windows XP (KB971486)
Security Update for Windows XP (KB971557)
Security Update for Windows XP (KB971633)
Security Update for Windows XP (KB971657)
Security Update for Windows XP (KB971961)
Security Update for Windows XP (KB972260)
Security Update for Windows XP (KB972270)
Security Update for Windows XP (KB973346)
Security Update for Windows XP (KB973354)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973525)
Security Update for Windows XP (KB973869)
Security Update for Windows XP (KB973904)
Security Update for Windows XP (KB974112)
Security Update for Windows XP (KB974318)
Security Update for Windows XP (KB974392)
Security Update for Windows XP (KB974455)
Security Update for Windows XP (KB974571)
Security Update for Windows XP (KB975025)
Security Update for Windows XP (KB975467)
Security Update for Windows XP (KB975560)
Security Update for Windows XP (KB975561)
Security Update for Windows XP (KB975713)
Security Update for Windows XP (KB976325)
Security Update for Windows XP (KB977165)
Security Update for Windows XP (KB977816)
Security Update for Windows XP (KB977914)
Security Update for Windows XP (KB978037)
Security Update for Windows XP (KB978251)
Security Update for Windows XP (KB978262)
Security Update for Windows XP (KB978338)
Security Update for Windows XP (KB978542)
Security Update for Windows XP (KB978601)
Security Update for Windows XP (KB978706)
Security Update for Windows XP (KB979309)
Security Update for Windows XP (KB979683)
Security Update for Windows XP (KB980232)
Security Update for Windows XP (KB981349)
SoftK56 Data Fax Modem
SolutionCenter
SoundMAX
Status
Synaptics Pointing Device Driver
TrayApp
Unload
Update for Windows XP (KB951978)
Update for Windows XP (KB955759)
Update for Windows XP (KB955839)
Update for Windows XP (KB967715)
Update for Windows XP (KB968389)
Update for Windows XP (KB971737)
Update for Windows XP (KB973687)
Update for Windows XP (KB973815)
Update for Windows XP (KB976749)
Update for Windows XP (KB978207)
Update for Windows XP (KB980182)
Viewpoint Media Player (Remove Only)
WebFldrs XP
WebReg
Winamp (remove only)
Windows Backup Utility
Windows XP Service Pack 3
==== Event Viewer Messages From Past Week ========
5/24/2010 8:47:22 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: IntelIde
5/24/2010 8:45:19 PM, error: sr [1] - The System Restore filter encountered the unexpected error '0xC0000001' while processing the file '' on the volume 'HarddiskVolume1'. It has stopped monitoring the volume.
5/24/2010 7:56:27 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service StiSvc with arguments "" in order to run the server: {A1F4E726-8CF1-11D1-BF92-0060081ED811}
5/24/2010 7:40:40 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: AvgLdx86 AvgMfx86 Fips intelppm
5/24/2010 7:40:15 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
5/23/2010 2:08:31 PM, error: Dhcp [1002] - The IP address lease 192.168.1.65 for the Network Card with network address 00223F355719 has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).
5/19/2010 5:34:23 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the IMAPI CD-Burning COM Service service to connect.
5/19/2010 5:34:23 PM, error: Service Control Manager [7000] - The IMAPI CD-Burning COM Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
5/17/2010 5:24:16 PM, error: Service Control Manager [7011] - Timeout (30000 milliseconds) waiting for a transaction response from the avg8wd service.
5/17/2010 4:55:34 PM, error: Service Control Manager [7000] - The Netgear Wireless Domain Login Service service failed to start due to the following error: The system cannot find the file specified.
==== End Of File ===========================
Our laptop has picked up this virus which throws up plenty of alerts about being infected and most importantly doesn't allow us to access any web pages, so I don't know how to download what is needed to clean the computer.
Please help? what can i do first to get clean? I don't have DDS installed on this computer.
Thanks
Loopy
Since above was posted I have run DDS and am posting the two logs below. Note that i ran malwarebytes in safe mode which may have helped to get rid of some of this infection.
DDS (Ver_10-03-17.01) - NTFSx86
Run by Erin at 22:10:21.93 on Mon 05/24/2010
Internet Explorer: 6.0.2900.5512
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.223.49 [GMT -7:00]
AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
svchost.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\System32\svchost.exe -k imgsvc
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe
C:\Program Files\NETGEAR\WPN511\Utility\WPN511.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Common Files\Nikon\Monitor\NkMonitor.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\HP\Digital Imaging\Product Assistant\bin\hprblog.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Erin\Desktop\dds.scr
============== Pseudo HJT Report ===============
uSearch Bar = hxxp://www.google.com/ie
mDefault_Page_URL = hxxp://www.emachines.com
uInternet Connection Wizard,ShellNext = https://my.netgear-support.com/myNETGEAR/ENG/login.asp
uInternet Settings,ProxyOverride = <local>
uInternet Settings,ProxyServer = http=127.0.0.1:5555
uURLSearchHooks: AVG Security Toolbar BHO: {a3bc75a2-1f87-4686-aa43-5347d756017c} - c:\program files\avg\avg8\toolbar\IEToolbar.dll
uURLSearchHooks: H - No File
BHO: AcroIEHlprObj Class: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 5.0\reader\activex\AcroIEHelper.ocx
BHO: {243b17de-77c7-46bf-b94b-0b5f309a0e64} - c:\program files\microsoft money\system\mnyside.dll
BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg8\avgssie.dll
BHO: AVG Security Toolbar BHO: {a3bc75a2-1f87-4686-aa43-5347d756017c} - c:\program files\avg\avg8\toolbar\IEToolbar.dll
BHO: {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - No File
TB: AVG Security Toolbar: {ccc7a320-b3ca-4199-b1a6-9f516dd69829} - c:\program files\avg\avg8\toolbar\IEToolbar.dll
EB: Real.com: {fe54fa40-d68c-11d2-98fa-00c0f0318afe} - c:\windows\system32\Shdocvw.dll
EB: {32683183-48a0-441b-a342-7c2a440a9478} - No File
uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
mRun: [SynTPLpr] c:\program files\synaptics\syntp\SynTPLpr.exe
mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
mRun: [AVG8_TRAY] c:\progra~1\avg\avg8\avgtray.exe
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [mmtask] c:\program files\musicmatch\musicmatch jukebox\mmtask.exe
mRun: [MMTray] c:\program files\musicmatch\musicmatch jukebox\mm_tray.exe
mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe
mRun: [SunJavaUpdateSched] c:\program files\java\jre1.5.0_04\bin\jusched.exe
mRun: [AS00_WPN511] c:\program files\netgear\wpn511\utility\WPN511.exe -hide
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\hpdigi~1.lnk - c:\program files\hp\digital imaging\bin\hpqtra08.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\nikonm~1.lnk - c:\program files\common files\nikon\monitor\NkMonitor.exe
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
IE: {6224f700-cba3-4071-b251-47cb894244cd} - c:\program files\icq\ICQ.exe
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0015-0000-0004-ABCDEFFEDCBC} - c:\program files\java\jre1.5.0_04\bin\npjpi150_04.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office11\REFIEBAR.DLL
IE: {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - {FE54FA40-D68C-11d2-98FA-00C0F0318AFE} - c:\windows\system32\Shdocvw.dll
IE: {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - {DD6687B5-CB43-4211-BFC9-2942CCBDCB3E} - c:\program files\microsoft money\system\mnyside.dll
DPF: DirectAnimation Java Classes - file://c:\windows\java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://c:\windows\java\classes\xmldso.cab
DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} - hxxp://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
DPF: {CAFEEFAC-0013-0001-0000-ABCDEFFEDCBA} - hxxp://java.sun.com/products/plugin/1.3.1/jinstall-131-win.cab
DPF: {CAFEEFAC-0013-0001-0002-ABCDEFFEDCBA} - hxxp://java.sun.com/products/plugin/1.3.1/jinstall-131_02-win.cab
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg8\avgpp.dll
Notify: avgrsstarter - avgrsstx.dll
Notify: igfxcui - igfxsrvc.dll
============= SERVICES / DRIVERS ===============
R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2009-6-15 335240]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86;c:\windows\system32\drivers\avgmfx86.sys [2009-6-15 27784]
R1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2009-6-15 108552]
R2 avg8wd;AVG Free8 WatchDog;c:\progra~1\avg\avg8\avgwdsvc.exe [2009-6-15 297752]
R3 AWINDIS5;AWINDIS5 Protocol Driver;c:\windows\system32\AWINDIS5.SYS [2009-5-31 16194]
R3 NETGEAR_WPN511_SERVICE;NETGEAR WPN511 Wireless Adapter Service;c:\windows\system32\drivers\wpn511.sys [2010-5-21 488992]
=============== Created Last 30 ================
2010-05-25 03:03:30 0 d-----w- c:\docume~1\erin\applic~1\Malwarebytes
2010-05-25 03:03:20 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-05-25 03:03:19 0 d-----w- c:\docume~1\alluse~1\applic~1\Malwarebytes
2010-05-25 03:03:18 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-05-25 03:03:18 0 d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-05-22 00:59:19 36864 ------w- c:\windows\system32\kill.dll
2010-05-22 00:59:05 17801 ----a-w- c:\windows\system32\drivers\AegisP.sys
2010-05-22 00:58:35 221184 ----a-w- c:\windows\InstallDialog.exe
2010-05-22 00:58:34 221184 ----a-w- c:\windows\UninstallDialog.exe
2010-05-22 00:58:33 488992 ----a-w- c:\windows\system32\drivers\wpn511.sys
2010-05-22 00:58:30 0 d-----w- c:\program files\NETGEAR
==================== Find3M ====================
2010-04-30 03:31:17 20 ---h--w- c:\docume~1\alluse~1\applic~1\PKP_DLdu.DAT
2010-04-25 15:10:32 28256 ----a-w- c:\windows\system32\drivers\MxlW2k.sys
2010-03-09 11:09:18 430080 ----a-w- c:\windows\system32\vbscript.dll
2010-02-26 05:43:57 667136 ----a-w- c:\windows\system32\wininet.dll
2010-02-26 05:43:54 81920 ------w- c:\windows\system32\ieencode.dll
============= FINISH: 22:11:55.07 ===============
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
DDS (Ver_10-03-17.01)
Microsoft Windows XP Home Edition
Boot Device: \Device\HarddiskVolume1
Install Date: 3/8/2009 4:44:58 PM
System Uptime: 5/24/2010 9:40:13 PM (1 hours ago)
Motherboard: ARIMA | | W720P4
Processor: Mobile Intel(R) Celeron(R) CPU 2.40GHz | Laptop Computer CPU | 2392/400mhz
==== Disk Partitions =========================
C: is FIXED (NTFS) - 37 GiB total, 17.333 GiB free.
D: is CDROM ()
==== Disabled Device Manager Items =============
==== System Restore Points ===================
RP311: 2/24/2010 8:56:37 AM - Software Distribution Service 3.0
RP312: 3/6/2010 9:00:08 AM - System Checkpoint
RP313: 3/7/2010 9:41:35 AM - System Checkpoint
RP314: 3/8/2010 2:07:40 PM - Avg8 Update
RP315: 3/11/2010 8:59:49 AM - Software Distribution Service 3.0
RP316: 3/12/2010 7:56:12 PM - System Checkpoint
RP317: 3/14/2010 12:11:55 PM - System Checkpoint
RP318: 3/18/2010 7:53:46 AM - System Checkpoint
RP319: 3/18/2010 8:19:07 PM - Avg8 Update
RP320: 3/18/2010 8:23:09 PM - Avg8 Update
RP321: 3/21/2010 8:17:15 PM - System Checkpoint
RP322: 3/22/2010 10:10:52 PM - System Checkpoint
RP323: 3/27/2010 9:29:24 AM - System Checkpoint
RP324: 3/28/2010 11:21:11 AM - System Checkpoint
RP325: 3/31/2010 10:27:02 AM - System Checkpoint
RP326: 4/2/2010 9:22:38 PM - Software Distribution Service 3.0
RP327: 4/10/2010 10:16:57 AM - System Checkpoint
RP328: 4/11/2010 10:30:03 AM - System Checkpoint
RP329: 4/14/2010 8:54:25 AM - Software Distribution Service 3.0
RP330: 4/15/2010 9:02:32 AM - Software Distribution Service 3.0
RP331: 4/17/2010 4:03:30 PM - System Checkpoint
RP332: 4/21/2010 7:59:58 AM - System Checkpoint
RP333: 4/22/2010 8:01:17 AM - System Checkpoint
RP334: 4/25/2010 7:32:29 AM - System Checkpoint
RP335: 4/30/2010 7:47:23 PM - System Checkpoint
RP336: 5/2/2010 1:08:30 PM - System Checkpoint
RP337: 5/4/2010 8:04:53 AM - System Checkpoint
RP338: 5/5/2010 9:52:39 PM - System Checkpoint
RP339: 5/8/2010 8:54:50 AM - System Checkpoint
RP340: 5/9/2010 9:55:28 AM - System Checkpoint
RP341: 5/10/2010 9:00:24 PM - System Checkpoint
RP342: 5/13/2010 7:49:29 AM - Software Distribution Service 3.0
RP343: 5/15/2010 2:44:32 PM - System Checkpoint
RP344: 5/16/2010 8:25:55 PM - System Checkpoint
RP345: 5/19/2010 1:58:37 PM - System Checkpoint
RP346: 5/21/2010 4:56:30 PM - System Checkpoint
RP347: 5/21/2010 5:56:22 PM - Removed NETGEAR RangeMax(TM) Wireless PC Card WPN511
RP348: 5/21/2010 5:58:23 PM - Installed NETGEAR RangeMax(TM) Wireless PC Card WPN511
RP349: 5/23/2010 10:33:27 AM - System Checkpoint
==== Installed Programs ======================
Adobe Acrobat 5.0
Adobe Flash Player 10 ActiveX
AiO_Scan
AiOSoftware
Apple Mobile Device Support
Apple Software Update
ArcSoft Panorama Maker 4
AVG Free 8.5
Bonjour
BufferChm
CCleaner
CP_Package_Variety1
CP_Package_Variety2
CP_Package_Variety3
Dell Digital Jukebox Driver
Dell File Manager
Destinations
DeviceManagementQFolder
DocProc
eSupportQFolder
Fax
Hotfix for Windows XP (KB952287)
Hotfix for Windows XP (KB970653-v3)
Hotfix for Windows XP (KB976098-v2)
Hotfix for Windows XP (KB979306)
HP Image Zone Express
HP Imaging Device Functions 5.3
HP PSC & OfficeJet 5.3.B
HP Software Update
HP Solution Center & Imaging Support Tools 5.3
HPProductAssistant
ICQ
Intel(R) Extreme Graphics 2 Driver
iTunes
J2SE Runtime Environment 5.0 Update 4
Java 2 Runtime Environment Standard Edition v1.3.1
Java 2 Runtime Environment Standard Edition v1.3.1_02
LiveReg (Symantec Corporation)
LiveUpdate 1.80 (Symantec Corporation)
Malwarebytes' Anti-Malware
Microsoft Money 2003
Microsoft Money 2003 System Pack
Microsoft Office Basic Edition 2003
Microsoft Visual C++ 2005 Redistributable
Microsoft Works 6.0
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MUSICMATCH® Jukebox
NETGEAR RangeMax(TM) Wireless PC Card WPN511
NewCopy
Nikon Message Center
Nikon Transfer
PowerDVD
ProductContext
QuickTime
Readme
RealPlayer Basic
Scan
ScannerCopy
Security Update for Windows Media Player (KB911564)
Security Update for Windows Media Player (KB952069)
Security Update for Windows Media Player (KB954155)
Security Update for Windows Media Player (KB968816)
Security Update for Windows Media Player (KB973540)
Security Update for Windows Media Player (KB979402)
Security Update for Windows Media Player 9 (KB917734)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB938464-v2)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950760)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB954459)
Security Update for Windows XP (KB954600)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956744)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956844)
Security Update for Windows XP (KB957097)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958687)
Security Update for Windows XP (KB958869)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Security Update for Windows XP (KB961371)
Security Update for Windows XP (KB961373)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB968537)
Security Update for Windows XP (KB969059)
Security Update for Windows XP (KB969897)
Security Update for Windows XP (KB969898)
Security Update for Windows XP (KB969947)
Security Update for Windows XP (KB970238)
Security Update for Windows XP (KB970430)
Security Update for Windows XP (KB971468)
Security Update for Windows XP (KB971486)
Security Update for Windows XP (KB971557)
Security Update for Windows XP (KB971633)
Security Update for Windows XP (KB971657)
Security Update for Windows XP (KB971961)
Security Update for Windows XP (KB972260)
Security Update for Windows XP (KB972270)
Security Update for Windows XP (KB973346)
Security Update for Windows XP (KB973354)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973525)
Security Update for Windows XP (KB973869)
Security Update for Windows XP (KB973904)
Security Update for Windows XP (KB974112)
Security Update for Windows XP (KB974318)
Security Update for Windows XP (KB974392)
Security Update for Windows XP (KB974455)
Security Update for Windows XP (KB974571)
Security Update for Windows XP (KB975025)
Security Update for Windows XP (KB975467)
Security Update for Windows XP (KB975560)
Security Update for Windows XP (KB975561)
Security Update for Windows XP (KB975713)
Security Update for Windows XP (KB976325)
Security Update for Windows XP (KB977165)
Security Update for Windows XP (KB977816)
Security Update for Windows XP (KB977914)
Security Update for Windows XP (KB978037)
Security Update for Windows XP (KB978251)
Security Update for Windows XP (KB978262)
Security Update for Windows XP (KB978338)
Security Update for Windows XP (KB978542)
Security Update for Windows XP (KB978601)
Security Update for Windows XP (KB978706)
Security Update for Windows XP (KB979309)
Security Update for Windows XP (KB979683)
Security Update for Windows XP (KB980232)
Security Update for Windows XP (KB981349)
SoftK56 Data Fax Modem
SolutionCenter
SoundMAX
Status
Synaptics Pointing Device Driver
TrayApp
Unload
Update for Windows XP (KB951978)
Update for Windows XP (KB955759)
Update for Windows XP (KB955839)
Update for Windows XP (KB967715)
Update for Windows XP (KB968389)
Update for Windows XP (KB971737)
Update for Windows XP (KB973687)
Update for Windows XP (KB973815)
Update for Windows XP (KB976749)
Update for Windows XP (KB978207)
Update for Windows XP (KB980182)
Viewpoint Media Player (Remove Only)
WebFldrs XP
WebReg
Winamp (remove only)
Windows Backup Utility
Windows XP Service Pack 3
==== Event Viewer Messages From Past Week ========
5/24/2010 8:47:22 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: IntelIde
5/24/2010 8:45:19 PM, error: sr [1] - The System Restore filter encountered the unexpected error '0xC0000001' while processing the file '' on the volume 'HarddiskVolume1'. It has stopped monitoring the volume.
5/24/2010 7:56:27 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service StiSvc with arguments "" in order to run the server: {A1F4E726-8CF1-11D1-BF92-0060081ED811}
5/24/2010 7:40:40 PM, error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: AvgLdx86 AvgMfx86 Fips intelppm
5/24/2010 7:40:15 PM, error: DCOM [10005] - DCOM got error "%1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
5/23/2010 2:08:31 PM, error: Dhcp [1002] - The IP address lease 192.168.1.65 for the Network Card with network address 00223F355719 has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).
5/19/2010 5:34:23 PM, error: Service Control Manager [7009] - Timeout (30000 milliseconds) waiting for the IMAPI CD-Burning COM Service service to connect.
5/19/2010 5:34:23 PM, error: Service Control Manager [7000] - The IMAPI CD-Burning COM Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
5/17/2010 5:24:16 PM, error: Service Control Manager [7011] - Timeout (30000 milliseconds) waiting for a transaction response from the avg8wd service.
5/17/2010 4:55:34 PM, error: Service Control Manager [7000] - The Netgear Wireless Domain Login Service service failed to start due to the following error: The system cannot find the file specified.
==== End Of File ===========================
Last edited by a moderator: