.
DDS (Ver_2011-06-23.01) - NTFSx86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 10.0.0
Run by Carmen Gonzalez at 3:30:08 on 2011-10-12
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.1024.555 [GMT -4:00]
.
AV: avast! Antivirus *Enabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
.
============== Running Processes ===============
.
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
D:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ezSP_Px.exe
C:\WINDOWS\htpatch.exe
D:\Program Files\Alwil Software\Avast5\avastUI.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\SpyShelter Personal Free\SpyShelter.exe
D:\Program Files\tinySpell\tinyspell.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
D:\Program Files\WordWeb\wweb32.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe -k imgsvc
C:\WINDOWS\System32\dllhost.exe
C:\Program Files\Sony\VAIO Media Music Server\SSSvr.exe
C:\WINDOWS\System32\dmadmin.exe
C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\sv_httpd.exe
C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\UPnPFramework.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\Password Agent\PwAgent.exe
D:\Program Files\Pale Moon\palemoon.exe
D:\PROGRA~1\FREEDO~1\fdm.exe
.
============== Pseudo HJT Report ===============
.
BHO: IE7Pro BHO: {00011268-e188-40df-a514-835fcd78b1bf} - d:\program files\iepro\iepro.dll
BHO: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - d:\program files\alwil software\avast5\aswWebRepIE.dll
TB: Grab Pro: {c55bbcd6-41ad-48ad-9953-3609c48eacc7} - d:\program files\iepro\IEProRecorder.dll
TB: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - d:\program files\alwil software\avast5\aswWebRepIE.dll
uRun: [POP Peeper] "c:\program files\pop peeper\POPPeeper.exe" -min
uRun: [tinySpell] d:\program files\tinyspell\tinyspell.exe
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [ezShieldProtector for Px] c:\windows\system32\ezSP_Px.exe
mRun: [HTpatch] "c:\windows\htpatch.exe"
mRun: [avast] "d:\program files\alwil software\avast5\avastUI.exe" /nogui
mRun: [HPDJ Taskbar Utility] c:\windows\system32\spool\drivers\w32x86\3\hpztsb05.exe
mRun: [SoundMan] SOUNDMAN.EXE
mRun: [SpyShelter] c:\program files\spyshelter personal free\SpyShelter.exe
dRun: [DWQueuedReporting] "c:\progra~1\common~1\micros~1\dw\dwtrig20.exe" -t
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\hpoddt~1.lnk - c:\program files\hewlett-packard\digital imaging\bin\hpotdd01.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\micros~1.lnk - c:\program files\microsoft office\office10\OSA.EXE
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\wordweb.lnk - d:\program files\wordweb\wweb32.exe
uPolicies-explorer: NoSMBalloonTip = 0 (0x0)
uPolicies-explorer: NoFileAssociate = 0 (0x0)
uPolicies-explorer: NoInstrumentation = 0 (0x0)
uPolicies-explorer: NoRecentDocsNetHood = 1 (0x1)
mPolicies-explorer: NoFileAssociate = 0 (0x0)
mPolicies-explorer: NoRecentDocsNetHood = 0 (0x0)
IE: {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - {B119EB0C-C021-46CF-85B0-34A760E0D5FE} - d:\program files\iepro\iepro.dll
DPF: DirectAnimation Java Classes
DPF: Microsoft XML Parser for Java
DPF: {02CF1781-EA91-4FA5-A200-646E8241987C} - hxxp://esupport.sony.com/VaioInfo.CAB
DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} - hxxp://www.pcpitstop.com/betapit/PCPitStop.CAB
DPF: {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} - hxxp://catalog.update.microsoft.com/v7/site/ClientControl/en/x86/MuCatalogWebControl.cab?1318299234671
DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} - hxxp://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} - hxxp://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection2.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0-windows-i586.cab
DPF: {CAFEEFAC-0017-0000-0000-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
DPF: {FFB3A759-98B1-446F-BDA9-909C6EB18CC7} - hxxp://utilities.pcpitstop.com/da2/PCPitStop2.cab
TCP: Interfaces\{0DC1BF4B-380F-4A9F-9B13-39E0CFE487CD} : NameServer = 66.19.192.200 216.126.128.40
Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - c:\program files\belarc\advisor\system\BAVoilaX.dll
Notify: !SASWinLogon - d:\program files\pain\SASWINLO.DLL
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - d:\program files\pain\SASSEH.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\carmen gonzalez\application data\mozilla\firefox\profiles\y4nfcncd.default\
FF - prefs.js: browser.search.selectedEngine - Bing
FF - prefs.js: browser.startup.homepage - hxxp://www.msn.com/?pc=Z133&install_date=20111011
FF - prefs.js: keyword.URL - hxxp://www.bing.com/search?pc=Z133&form=ZGAADF&install_date=20111011&q=
FF - plugin: c:\program files\foxit software\foxit reader\plugins\npFoxitReaderPlugin.dll
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\java\jre7\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\java\jre7\bin\new_plugin\npjp2.dll
FF - plugin: c:\program files\microsoft silverlight\5.0.60401.0\npctrlui.dll
FF - plugin: d:\program files\mozilla firefox\plugins\npCouponPrinter.dll
FF - plugin: d:\program files\mozilla firefox\plugins\npdeployJava1.dll
FF - plugin: d:\program files\mozilla firefox\plugins\npMozCouponPrinter.dll
.
---- FIREFOX POLICIES ----
FF - user.js: browser.cache.memory.capacity - 16000
FF - user.js: browser.chrome.favicons - false
FF - user.js: browser.display.show_image_placeholders - true
FF - user.js: browser.turbo.enabled - true
FF - user.js: browser.urlbar.autocomplete.enabled - true
FF - user.js: browser.urlbar.autofill - true
FF - user.js: content.max.tokenizing.time - 2250000
FF - user.js: content.notify.backoffcount - 5
FF - user.js: content.notify.interval - 750000
FF - user.js: content.notify.ontimer - true
FF - user.js: content.switch.threshold - 750000
FF - user.js: dom.disable_window_status_change - true
FF - user.js: network.http.max-connections - 32
FF - user.js: network.http.max-connections-per-server - 8
FF - user.js: network.http.max-persistent-connections-per-proxy - 8
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: network.http.pipelining - true
FF - user.js: network.http.pipelining.firstrequest - true
FF - user.js: network.http.pipelining.maxrequests - 8
FF - user.js: network.http.proxy.pipelining - true
FF - user.js: network.http.request.max-start-delay - 0
FF - user.js: nglayout.initialpaint.delay - 750
FF - user.js: plugin.expose_full_path - true
FF - user.js: ui.submenuDelay - 0
.
============= SERVICES / DRIVERS ===============
.
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2011-6-30 442200]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2010-8-16 320856]
R1 SASDIFSV;SASDIFSV;d:\program files\pain\sasdifsv.sys [2011-7-22 12880]
R1 SASKUTIL;SASKUTIL;d:\program files\pain\SASKUTIL.SYS [2011-7-12 67664]
R1 Spyshelter;Spyshelter;c:\program files\spyshelter personal free\SpyShelter.sys [2011-10-9 166384]
R1 StarPortLite;StarPort Storage Controller (Lite);c:\windows\system32\drivers\StarPortLite.sys [2010-2-8 95592]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2010-8-16 20568]
R2 avast! Antivirus;avast! Antivirus;d:\program files\alwil software\avast5\AvastSvc.exe [2010-8-16 44768]
S2 !SASCORE;SAS Core Service;
S3 AVFSFilter;AVFSFilter;
S3 DarkSpy;DarkSpy;
S3 KProcWatch;KProcWatch;
S3 MEMSWEEP2;MEMSWEEP2;
S3 PENTCWP;PENTCWP;
S3 rspSanity;rspSanity;c:\windows\system32\drivers\rspSanity32.sys [2011-8-24 27192]
S3 WOHIIN;WOHIIN;
S3 ZLFKHDSW;ZLFKHDSW;
S4 PuranDefrag;PuranDefrag;c:\windows\system32\PuranDefragS.exe [2010-5-15 229376]
.
=============== Created Last 30 ================
.
2011-10-12 04:08:13 256000 ----a-w- c:\windows\PEV.exe
2011-10-12 04:08:13 208896 ----a-w- c:\windows\MBR.exe
2011-10-11 05:01:57 -------- d-----w- c:\documents and settings\carmen gonzalez\application data\vmntemplate
2011-10-11 04:56:46 -------- d-----w- c:\program files\DriverIdentifier FileBulldog Toolbar
2011-10-11 04:54:45 -------- d-----w- c:\documents and settings\carmen gonzalez\application data\driveridentifier
2011-10-11 04:53:31 -------- d-----w- c:\program files\Driver Identifier
2011-10-11 04:42:33 -------- d-----w- c:\documents and settings\carmen gonzalez\application data\WinBatch
2011-10-11 00:58:25 -------- d-----w- c:\documents and settings\carmen gonzalez\local settings\application data\eSupport.com
2011-10-09 15:41:44 28672 ----a-w- c:\windows\system32\SpyShelterShellExt.dll
2011-10-09 15:41:43 54784 ----a-w- c:\windows\system32\inject_logon_dll.dll
2011-10-09 15:41:43 1740800 ----a-w- c:\windows\system32\Osklauncher.exe
2011-10-09 15:41:41 -------- d-----w- c:\program files\SpyShelter Personal Free
2011-10-09 15:41:41 -------- d-----w- c:\documents and settings\carmen gonzalez\application data\SpyShelter
2011-10-08 20:00:59 -------- d-----w- c:\documents and settings\carmen gonzalez\application data\Immunet
2011-10-08 20:00:59 -------- d-----w- c:\documents and settings\all users\Immunet
2011-10-07 23:47:38 -------- d-----w- c:\windows\system32\CatRoot2
2011-10-07 04:25:58 771581 -c--a-w- c:\windows\system32\dllcache\winacisa.sys
2011-10-07 04:24:59 50176 -c--a-w- c:\windows\system32\dllcache\umaxp60.dll
2011-10-07 04:23:58 61824 -c--a-w- c:\windows\system32\dllcache\speed.sys
2011-10-07 04:22:58 6912 -c--a-w- c:\windows\system32\dllcache\seaddsmc.sys
2011-10-07 04:21:59 6016 -c--a-w- c:\windows\system32\dllcache\qic157.sys
2011-10-07 04:20:57 198144 -c--a-w- c:\windows\system32\dllcache\nv3.sys
2011-10-07 04:19:59 22016 -c--a-w- c:\windows\system32\dllcache\msircomm.sys
2011-10-07 04:18:59 26442 -c--a-w- c:\windows\system32\dllcache\lanepic5.sys
2011-10-07 04:17:46 372824 -c--a-w- c:\windows\system32\dllcache\iconf32.dll
2011-10-07 04:16:59 89088 -c--a-w- c:\windows\system32\dllcache\hpgt33.dll
2011-10-07 04:15:59 34816 -c--a-w- c:\windows\system32\dllcache\esuimg.dll
2011-10-07 04:14:59 41046 -c--a-w- c:\windows\system32\dllcache\digiisdn.dll
2011-10-07 04:13:59 22044 -c--a-w- c:\windows\system32\dllcache\cem33n5.sys
2011-10-07 04:12:56 102400 -c--a-w- c:\windows\system32\dllcache\binlsvc.dll
2011-10-07 04:11:59 747392 -c--a-w- c:\windows\system32\dllcache\adm8830.sys
2011-10-07 02:43:17 49152 ----a-w- c:\windows\system32\ChCfg.exe
2011-10-07 02:26:02 -------- d-----w- c:\program files\Debugging Tools for Windows (x86)
2011-10-06 04:23:33 839680 ----a-w- c:\windows\system32\lameACM.acm
2011-10-06 04:23:32 650752 ----a-w- c:\windows\system32\xvidcore.dll
2011-10-06 04:23:32 630784 ----a-w- c:\windows\system32\vp7vfw.dll
2011-10-06 04:23:32 243200 ----a-w- c:\windows\system32\xvidvfw.dll
2011-10-06 04:23:32 216064 ----a-w- c:\windows\system32\lagarith.dll
2011-10-06 04:23:32 151552 ----a-w- c:\windows\system32\ac3acm.acm
2011-10-06 04:23:31 74752 ----a-w- c:\windows\system32\ff_vfw.dll
2011-10-05 04:05:30 -------- d-----w- c:\documents and settings\carmen gonzalez\local settings\application data\SlimWare Utilities Inc
2011-10-01 02:51:45 94208 ----a-r- c:\windows\system32\HPZipt12.dll
2011-10-01 02:51:45 61699 ----a-r- c:\windows\system32\HPZinw12.exe
2011-10-01 02:51:45 57344 ----a-r- c:\windows\system32\HPZisn12.dll
2011-10-01 02:51:44 65795 ----a-r- c:\windows\system32\HPZipm12.exe
2011-10-01 02:51:44 233528 ----a-r- c:\windows\system32\HPZidr12.dll
2011-10-01 02:51:44 167936 ----a-r- c:\windows\system32\HPZipr12.dll
2011-10-01 02:51:44 16080 ----a-r- c:\windows\system32\drivers\HPZipr12.sys
2011-10-01 02:51:37 51024 ----a-r- c:\windows\system32\drivers\hpzid412.sys
2011-10-01 02:49:33 21456 ----a-r- c:\windows\system32\drivers\HPZius12.sys
2011-09-29 15:59:19 36864 ----a-r- c:\documents and settings\carmen gonzalez\application data\microsoft\installer\{4fcbd822-5dab-4403-9064-569d7aa7dad6}\_FA81DAE.exe
2011-09-29 08:00:14 266240 ----a-w- c:\windows\system32\hpzcon05.dll
2011-09-28 02:40:13 -------- d-----w- c:\documents and settings\carmen gonzalez\application data\ElevatedDiagnostics
2011-09-27 03:01:02 32768 ----a-w- c:\windows\system32\drivers\sp_rsdrv2.sys
2011-09-24 18:55:39 -------- d-----w- c:\windows\system32\wbem\repository\FS
2011-09-24 18:55:39 -------- d-----w- c:\windows\system32\wbem\Repository
2011-09-23 05:32:07 -------- d-----w- c:\windows\system32\FxsTmp
2011-09-23 05:31:50 31744 -c--a-w- c:\windows\system32\dllcache\fxsroute.dll
2011-09-23 05:31:50 31744 ----a-w- c:\windows\system32\fxsroute.dll
2011-09-23 05:31:50 132608 -c--a-w- c:\windows\system32\dllcache\fxsclntr.dll
2011-09-23 05:31:50 132608 ----a-w- c:\windows\system32\fxsclntR.dll
2011-09-23 05:31:50 11264 -c--a-w- c:\windows\system32\dllcache\fxssend.exe
2011-09-23 05:31:50 11264 ----a-w- c:\windows\system32\fxssend.exe
2011-09-23 05:31:49 111104 -c--a-w- c:\windows\system32\dllcache\fxscfgwz.dll
2011-09-23 05:31:49 111104 ----a-w- c:\windows\system32\fxscfgwz.dll
2011-09-21 04:04:30 -------- d-----w- c:\windows\Internet Logs
2011-09-21 02:56:33 -------- d-----w- c:\program files\Internet Cell Boost
2011-09-20 03:42:59 26000 ----a-w- c:\windows\system32\E3TL.DLL
2011-09-16 05:22:12 -------- d-----w- c:\program files\QMixer
2011-09-16 04:21:26 -------- d-----w- c:\documents and settings\carmen gonzalez\local settings\application data\Privatefirewall
2011-09-14 03:24:25 138752 -c--a-w- c:\windows\system32\dllcache\sndvol32.exe
2011-09-14 03:24:25 138752 ----a-w- c:\windows\system32\sndvol32.exe
.
==================== Find3M ====================
.
2011-10-11 18:09:21 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-10-11 05:15:06 86016 ----a-w- c:\windows\system32\mdmxsdk.dll
2011-10-11 05:15:06 717952 ----a-w- c:\windows\system32\drivers\HSF_CNXT.sys
2011-10-11 05:15:06 12544 ----a-w- c:\windows\system32\drivers\mdmxsdk.sys
2011-10-11 05:15:06 1035008 ----a-w- c:\windows\system32\drivers\HSF_DPV.sys
2011-10-11 05:15:05 231168 ----a-w- c:\windows\system32\drivers\HSFHWBS2.sys
2011-09-09 09:12:13 599040 ----a-w- c:\windows\system32\crypt32.dll
2011-09-08 17:59:14 361600 ----a-w- c:\windows\system32\drivers\tcpip.sys
2011-09-06 20:45:29 41184 ----a-w- c:\windows\avastSS.scr
2011-09-06 20:38:05 442200 ----a-w- c:\windows\system32\drivers\aswSnx.sys
2011-08-31 21:00:50 22216 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-08-10 02:02:05 128000 ----a-w- c:\windows\system32\javacpl.cpl
2011-08-10 02:02:04 544656 ----a-w- c:\windows\system32\deployJava1.dll
2011-07-15 13:29:31 456320 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
.
============= FINISH: 3:32:11.07 ===============