DDS (Ver_09-12-01.01) - NTFSx86 Run by Stefan at 18:50:29,48 on sub 13.02.2010 Internet Explorer: 8.0.6001.18702 Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.703.242 [GMT 1:00] AV: ESET NOD32 Antivirus 4.0 *On-access scanning enabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0} ============== Running Processes =============== D:\WINDOWS\system32\svchost -k DcomLaunch svchost.exe D:\WINDOWS\System32\svchost.exe -k netsvcs svchost.exe svchost.exe D:\WINDOWS\system32\spoolsv.exe svchost.exe D:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe D:\Program Files\Google\Update\1.2.183.13\GoogleCrashHandler.exe D:\Program Files\Java\jre6\bin\jqs.exe D:\WINDOWS\system32\wscntfy.exe D:\WINDOWS\Explorer.EXE D:\WINDOWS\system32\RunDll32.exe D:\Program Files\VIA\RAID\raid_tool.exe D:\WINDOWS\system32\VTTimer.exe D:\WINDOWS\system32\VTtrayp.exe D:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe D:\Program Files\DRPU PC Data Manager\apcdm.exe D:\WINDOWS\system32\ctfmon.exe D:\Program Files\Windows Live\Messenger\msnmsgr.exe D:\Program Files\Windows Live\Contacts\wlcomm.exe D:\Program Files\foobar2000\foobar2000.exe D:\Documents and Settings\Stefan.BKS-6FF40808848\Local Settings\Application Data\Google\Chrome\Application\chrome.exe D:\Documents and Settings\Stefan.BKS-6FF40808848\Local Settings\Application Data\Google\Chrome\Application\chrome.exe D:\Documents and Settings\Stefan.BKS-6FF40808848\Local Settings\Application Data\Google\Chrome\Application\chrome.exe D:\Documents and Settings\Stefan.BKS-6FF40808848\My Documents\Downloads\dds.scr ============== Pseudo HJT Report =============== uStart Page = hxxp://eu.ask.com?o=15161&l=dis uURLSearchHooks: TorrentMan Toolbar: {7c5c0f58-e061-457d-9033-77307f5ed00c} - d:\program files\torrentman\tbTorr.dll BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - d:\program files\real\realplayer\rpbrowserrecordplugin.dll BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File BHO: TorrentMan Toolbar: {7c5c0f58-e061-457d-9033-77307f5ed00c} - d:\program files\torrentman\tbTorr.dll BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - d:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - d:\program files\google\googletoolbarnotifier\5.2.4204.1700\swg.dll BHO: Ask Toolbar BHO: {d4027c7f-154a-4066-a1ad-4243d8127440} - Ask Toolbar BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - d:\program files\java\jre6\bin\jp2ssv.dll BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - d:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll TB: Ask Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - TB: TorrentMan Toolbar: {7c5c0f58-e061-457d-9033-77307f5ed00c} - d:\program files\torrentman\tbTorr.dll uRun: [CTFMON.EXE] d:\windows\system32\ctfmon.exe uRun: [msnmsgr] "d:\program files\windows live\messenger\msnmsgr.exe" /background mRun: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd mRun: [RaidTool] d:\program files\via\raid\raid_tool.exe mRun: [VTTimer] VTTimer.exe mRun: [VTTrayp] VTtrayp.exe mRun: [egui] "d:\program files\eset\eset nod32 antivirus\egui.exe" /hide /waitservice mRun: [DRPU Pc Data manager] "d:\program files\drpu pc data manager\apcdm.exe" "hd" dRun: [CTFMON.EXE] d:\windows\system32\CTFMON.EXE dRunOnce: [ShowDeskFix] regsvr32 /s /n /i:u shell32 IE: E&xport to Microsoft Excel - d:\progra~1\micros~4\office11\EXCEL.EXE/3000 IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - d:\program files\messenger\msmsgs.exe IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - d:\progra~1\micros~4\office11\REFIEBAR.DLL DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0006-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_06-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - d:\windows\system32\wpdshserviceobj.dll ============= SERVICES / DRIVERS =============== R1 ehdrv;ehdrv;d:\windows\system32\drivers\ehdrv.sys [2009-2-6 106208] R1 epfwtdir;epfwtdir;d:\windows\system32\drivers\epfwtdir.sys [2009-2-6 93336] R2 ekrn;ESET Service;d:\program files\eset\eset nod32 antivirus\ekrn.exe [2009-2-6 727720] S2 gupdate;Google Update Service (gupdate);d:\program files\google\update\GoogleUpdate.exe [2009-12-28 133104] S4 msvsmon80;Visual Studio 2005 Remote Debugger;c:\program files\microsoft visual studio 8\common7\ide\remote debugger\x86\msvsmon.exe [2005-9-23 2799808] =============== Created Last 30 ================ 2010-02-13 12:18:32 0 d-----w- d:\docume~1\stefan~1.bks\applic~1\KoshyJohn.com 2010-02-13 11:15:45 0 d-----w- d:\program files\Flobo Hard Disk Repair 2010-02-12 15:48:01 0 d-----w- D:\prog 2010-02-10 21:05:13 746 ----a-w- d:\windows\system\DRPUPCDM.lnk 2010-02-10 21:04:58 0 d-----w- d:\program files\DRPU PC Data Manager 2010-02-08 17:46:23 0 d-----w- d:\program files\Conduit 2010-02-08 17:46:22 0 d-----w- d:\program files\TorrentMan 2010-02-08 17:46:05 0 d-----w- d:\program files\BitLord 2010-02-04 09:57:40 0 d-----w- d:\program files\InCode Solutions 2010-02-03 19:57:22 411368 ----a-w- d:\windows\system32\deploytk.dll 2010-01-31 14:03:22 0 d-----w- D:\_OTM 2010-01-31 13:48:58 0 d-----w- d:\program files\UlisesSoft 2010-01-31 13:02:40 0 d-----w- d:\docume~1\stefan~1.bks\applic~1\IObit 2010-01-30 21:26:56 152008 ----a-w- d:\windows\Osveta Besnog Pileta Uninstaller.exe 2010-01-30 21:26:54 0 d-----w- d:\program files\OsvetaBesnogPileta 2010-01-30 21:00:33 0 d-----w- d:\program files\Jungle Book 2010-01-27 16:41:50 0 d-----w- d:\windows\pss ==================== Find3M ==================== 2010-02-07 13:13:44 348160 ----a-w- d:\windows\system32\msvcr71.dll 2010-01-07 15:07:14 38224 ----a-w- d:\windows\system32\drivers\mbamswissarmy.sys 2010-01-07 15:07:04 19160 ----a-w- d:\windows\system32\drivers\mbam.sys 2009-12-27 00:14:23 152904 ----a-w- d:\windows\system32\vghd.scr 2009-11-04 23:48:49 32768 --sha-w- d:\windows\system32\config\systemprofile\local settings\history\history.ie5\mshist012009110520091106\index.dat ============= FINISH: 18:51:17,98 ===============