DDS (Ver_09-12-01.01) - NTFSx86
Run by Mia Nielsen at 15:35:59,57 on 27-12-2009
Internet Explorer: 8.0.6001.18702
Microsoft Windows XP Home Edition 5.1.2600.3.1252.45.1030.18.1022.411 [GMT 1:00]
AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
AV: Malware Defense *On-access scanning enabled* (Outdated) {28e00e3b-806e-4533-925c-f4c3d79514b9}
============== Running Processes ===============
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
C:\Programmer\AVG\AVG9\avgchsvx.exe
C:\Programmer\AVG\AVG9\avgrsx.exe
C:\Programmer\AVG\AVG9\avgcsrvx.exe
C:\WINDOWS\system32\Ati2evxx.exe
svchost.exe
C:\WINDOWS\Explorer.EXE
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
svchost.exe
C:\Programmer\Adobe\Photoshop Elements 4.0\PhotoshopElementsFileAgent.exe
C:\Programmer\AVG\AVG9\avgwdsvc.exe
C:\Programmer\WIDCOMM\Bluetooth-software\bin\btwdins.exe
C:\Programmer\Fælles filer\LightScribe\LSSrvc.exe
C:\Programmer\Fælles filer\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Programmer\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Programmer\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Programmer\AVG\AVG9\avgnsx.exe
C:\Programmer\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Programmer\Java\jre1.6.0_07\bin\jusched.exe
C:\Programmer\Hp\HP Software Update\HPWuSchd2.exe
C:\Programmer\Synaptics\SynTP\SynTPEnh.exe
C:\Programmer\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
C:\Programmer\Philips\Philips Device Manager\Bin\DeviceManager.exe
C:\Programmer\Fælles filer\InstallShield\UpdateService\issch.exe
C:\PROGRA~1\AVG\AVG9\avgtray.exe
C:\WINDOWS\system32\WgaTray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Programmer\Philips\Philips Lime Service\bin\LimeAlive.exe
C:\Programmer\Nokia\Nokia PC Suite 7\PCSuite.exe
C:\Programmer\Philips\Philips Lime Service\bin\Lime.exe
C:\Programmer\WIDCOMM\Bluetooth-software\BTTray.exe
C:\PROGRA~1\hpq\Shared\HPQTOA~1.EXE
C:\Programmer\PC Connectivity Solution\ServiceLayer.exe
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
C:\Programmer\PC Connectivity Solution\Transports\NclUSBSrv.exe
C:\Programmer\PC Connectivity Solution\Transports\NclRSSrv.exe
C:\Programmer\PC Connectivity Solution\Transports\NclBCBTSrv.exe
C:\Programmer\Internet Explorer\iexplore.exe
C:\Programmer\Internet Explorer\iexplore.exe
C:\Programmer\Windows Live\Toolbar\wltuser.exe
C:\Programmer\Java\jre1.6.0_07\bin\jucheck.exe
C:\Documents and Settings\Mia Nielsen\Skrivebord\dds.scr
============== Pseudo HJT Report ===============
uStart Page =
hxxp://tv2.dk/uSearch Page =
hxxp://www.google.comuSearch Bar =
hxxp://www.google.com/ieBHO: AcroIEHlprObj Class: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\programmer\adobe\acrobat 7.0\activex\AcroIEHelper.dll
BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\programmer\avg\avg9\avgssie.dll
BHO: Windows Live Family Safety Browser Helper Class: {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - c:\programmer\windows live\family safety\fssbho.dll
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\programmer\microsoft\search enhancement pack\search helper\SEPsearchhelperie.dll
BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\programmer\java\jre1.6.0_07\bin\ssv.dll
BHO: Hjælp til tilmelding til Windows Live: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\programmer\fælles filer\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Windows Live Toolbar Helper: {e15a8dc0-8516-42a1-81ea-dc94ec1acf10} - c:\programmer\windows live\toolbar\wltcore.dll
TB: Easy-WebPrint: {327c2873-e90d-4c37-aa9d-10ac9baba46c} - c:\programmer\canon\easy-webprint\Toolband.dll
TB: &Windows Live Toolbar: {21fa44ef-376d-4d53-9b0f-8a89d3229068} - c:\programmer\windows live\toolbar\wltcore.dll
TB: {C4069E3A-68F1-403E-B40E-20066696354B} - No File
uRun: [CTFMON.EXE] c:\windows\system32\ctfmon.exe
uRun: [PhilipsLime] "c:\programmer\philips\philips lime service\bin\LimeAlive.exe"
uRun: [PC Suite Tray] "c:\programmer\nokia\nokia pc suite 7\PCSuite.exe" -onlytray
uRun: [richtx64.exe] c:\docume~1\mianie~1\lokale~1\temp\richtx64.exe
uRun: [Malware Defense] "c:\programmer\malware defense\mdefense.exe" -noscan
mRun: [ATIPTA] "c:\programmer\ati technologies\ati control panel\atiptaxx.exe"
mRun: [SunJavaUpdateSched] "c:\programmer\java\jre1.6.0_07\bin\jusched.exe"
mRun: [HP Software Update] c:\programmer\hp\hp software update\HPWuSchd2.exe
mRun: [SynTPEnh] c:\programmer\synaptics\syntp\SynTPEnh.exe
mRun: [Cpqset] c:\programmer\hpq\default settings\cpqset.exe
mRun: [hpWirelessAssistant] c:\programmer\hpq\hp wireless assistant\HP Wireless Assistant.exe
mRun: [Adobe Photo Downloader] "c:\programmer\adobe\photoshop elements 4.0\apdproxy.exe"
mRun: [Easy-PrintToolBox] c:\programmer\canon\easy-printtoolbox\BJPSMAIN.EXE /logon
mRun: [PhilipsDM] "c:\programmer\philips\philips device manager\bin\DeviceManager.exe"
mRun: [ISUSPM Startup] c:\progra~1\fllesf~1\instal~1\update~1\ISUSPM.exe -startup
mRun: [ISUSScheduler] "c:\programmer\fælles filer\installshield\updateservice\issch.exe" -start
mRun: [AppleSyncNotifier] c:\programmer\fælles filer\apple\mobile device support\bin\AppleSyncNotifier.exe
mRun: [fssui] "c:\programmer\windows live\family safety\fsui.exe" -autorun
mRun: [AVG9_TRAY] c:\progra~1\avg\avg9\avgtray.exe
mRun: [QuickTime Task] "c:\programmer\quicktime\qttask.exe" -atboottime
dRun: [CTFMON.EXE] c:\windows\system32\CTFMON.EXE
dRun: [PcSync] c:\programmer\nokia\nokia pc suite 6\PcSync2.exe /NoDialog
StartupFolder: c:\docume~1\alluse~1\menuen~1\progra~1\start\bttray.lnk - c:\programmer\widcomm\bluetooth-software\BTTray.exe
IE: E&ksporter til Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
IE: Easy-WebPrint Add To Print List - c:\programmer\canon\easy-webprint\Resource.dll/RC_AddToList.html
IE: Easy-WebPrint High Speed Print - c:\programmer\canon\easy-webprint\Resource.dll/RC_HSPrint.html
IE: Easy-WebPrint Preview - c:\programmer\canon\easy-webprint\Resource.dll/RC_Preview.html
IE: Easy-WebPrint Print - c:\programmer\canon\easy-webprint\Resource.dll/RC_Print.html
IE: Send til &Bluetooth - c:\programmer\widcomm\bluetooth-software\btsendto_ie_ctx.htm
IE: {4CBB5C71-1BA0-49ca-93CD-159AF8AA0CC9} - c:\programmer\betwaympp\MPPoker.exe
IE: {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - c:\programmer\partygaming\partypoker\RunApp.exe
IE: {C2A80015-C447-4dc4-82DD-AED83D6ED57E} - c:\microgaming\poker\ladbrokesmpp\MPPoker.exe
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\programmer\widcomm\bluetooth-software\btsendto_ie.htm
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\programmer\messenger\msmsgs.exe
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBC} - c:\programmer\java\jre1.6.0_07\bin\ssv.dll
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\programmer\windows live\writer\WriterBrowserExtension.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office11\REFIEBAR.DLL
DPF: {07D09E9E-C667-45DD-B035-217BC2A61A3B} -
hxxps://www.lsb.dk/package/sdc/external/activex/ActiveXSikkerhedssoftware-prod-1.30.cabDPF: {166B1BCA-3F9C-11CF-8075-444553540000} -
hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cabDPF: {1754A1BA-A1DF-4F10-B199-AA55AA1A120F} -
hxxps://signup.msn.com/pages/MsnInstC.cabDPF: {233C1507-6A77-46A4-9443-F871F945D258} -
hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cabDPF: {45A0A292-ECC6-4D8F-9EA9-A4BD411D24C1} -
hxxp://jubii.king.com/ctl/kingcomie.cabDPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cabDPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cabDPF: {CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_11-windows-i586.cabDPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cabDPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cabDPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cabDPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cabDPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cabDPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cabDPF: {D216644A-C6DB-49D9-BBCF-D38FE7991BF2} -
hxxps://udstedelse.certifikat.tdc.dk/csp/authenticode/tdccsp-0506.exeDPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} -
hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cabDPF: {F7EDBBEA-1AD2-4EBF-AA07-D453CC29EE65} -
hxxps://plugins.valueactive.eu/flashax/iefax.cabHandler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\programmer\avg\avg9\avgpp.dll
Notify: AtiExtEvent - Ati2evxx.dll
Notify: avgrsstarter - avgrsstx.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
============= SERVICES / DRIVERS ===============
R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2009-5-10 333192]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86;c:\windows\system32\drivers\avgmfx86.sys [2009-5-10 28424]
R1 AvgTdiX;AVG Free Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2009-11-21 360584]
R2 avg9wd;AVG Free WatchDog;c:\programmer\avg\avg9\avgwdsvc.exe [2009-11-21 285392]
R2 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [2009-1-9 54752]
R3 HSFHWATI;HSFHWATI;c:\windows\system32\drivers\HSFHWATI.sys [2005-8-22 231424]
S3 fsssvc;Windows Live-tjenesten Family Safety;c:\programmer\windows live\family safety\fsssvc.exe [2009-8-5 704864]
S3 USBAAPL;Apple Mobile USB Driver;c:\windows\system32\drivers\usbaapl.sys --> c:\windows\system32\drivers\usbaapl.sys [?]
=============== Created Last 30 ================
2009-12-25 17:50:55 0 d-----w- c:\programmer\Malware
2009-12-25 17:44:42 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-12-25 17:44:40 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-12-25 17:44:38 0 d-----w- c:\programmer\Malwarebytes' Anti-Malware
2009-12-25 17:10:28 0 d-----w- c:\programmer\Malware1
2009-12-25 17:10:19 0 d-----w- c:\programmer\finn
2009-12-25 13:35:32 4844296 ----a-w- c:\programmer\mab.exe
2009-12-25 09:55:32 661 ----a-w- c:\windows\system32\krl32mainweq.dll
2009-12-25 09:54:14 206 ----a-w- c:\windows\system32\srcr.dat
2009-12-23 09:59:11 0 d-----w- c:\docume~1\alluse~1\applic~1\Nero
2009-11-30 16:32:23 0 d-----w- c:\programmer\MSECache
==================== Find3M ====================
2009-12-19 17:07:09 84030 ----a-w- c:\windows\system32\perfc006.dat
2009-12-19 17:07:09 459900 ----a-w- c:\windows\system32\perfh006.dat
2009-11-29 18:44:19 0 ----a-w- c:\documents and settings\mia nielsen\temp.dat
2009-11-21 15:06:33 333192 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2009-11-21 15:06:20 12464 ----a-w- c:\windows\system32\avgrsstx.dll
2009-11-21 15:06:19 360584 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2009-10-29 07:43:02 12800 ------w- c:\windows\system32\dllcache\xpshims.dll
2009-10-29 07:43:01 916480 ----a-w- c:\windows\system32\wininet.dll
2009-10-29 07:43:01 916480 ----a-w- c:\windows\system32\dllcache\wininet.dll
2009-10-29 07:43:01 1208832 ----a-w- c:\windows\system32\dllcache\urlmon.dll
2009-10-29 07:43:00 5940736 ----a-w- c:\windows\system32\dllcache\mshtml.dll
2009-10-29 07:43:00 206848 ----a-w- c:\windows\system32\dllcache\occache.dll
2009-10-29 07:42:59 594432 ----a-w- c:\windows\system32\dllcache\msfeeds.dll
2009-10-29 07:42:59 55296 ----a-w- c:\windows\system32\dllcache\msfeedsbs.dll
2009-10-29 07:42:58 25600 ----a-w- c:\windows\system32\dllcache\jsproxy.dll
2009-10-29 07:42:58 1985536 ----a-w- c:\windows\system32\dllcache\iertutil.dll
2009-10-29 07:42:57 246272 ------w- c:\windows\system32\dllcache\ieproxy.dll
2009-10-29 07:42:57 184320 ----a-w- c:\windows\system32\dllcache\iepeers.dll
2009-10-29 07:42:57 11069952 ----a-w- c:\windows\system32\dllcache\ieframe.dll
2009-10-29 07:42:54 387584 ----a-w- c:\windows\system32\dllcache\iedkcs32.dll
2009-10-28 14:40:47 173056 ----a-w- c:\windows\system32\dllcache\ie4uinit.exe
2009-10-21 05:39:46 75776 ----a-w- c:\windows\system32\strmfilt.dll
2009-10-21 05:39:46 75776 ------w- c:\windows\system32\dllcache\strmfilt.dll
2009-10-21 05:39:46 25088 ----a-w- c:\windows\system32\httpapi.dll
2009-10-21 05:39:46 25088 ------w- c:\windows\system32\dllcache\httpapi.dll
2009-10-20 16:20:16 265728 ------w- c:\windows\system32\dllcache\http.sys
2009-10-13 10:34:19 270848 ----a-w- c:\windows\system32\oakley.dll
2009-10-13 10:34:19 270848 ------w- c:\windows\system32\dllcache\oakley.dll
2009-10-12 13:40:09 79872 ----a-w- c:\windows\system32\raschap.dll
2009-10-12 13:40:09 79872 ------w- c:\windows\system32\dllcache\raschap.dll
2009-10-12 13:40:09 150016 ----a-w- c:\windows\system32\rastls.dll
2009-10-12 13:40:09 150016 ------w- c:\windows\system32\dllcache\rastls.dll
2008-08-31 14:01:29 63530280 ----a-w- c:\programmer\iTunesSetup.exe
2006-06-17 10:23:26 2476055 ----a-w- c:\programmer\isobuster_all_lang.zip
2006-06-13 21:49:33 20480 ----a-w- c:\programmer\Den 13.doc
2006-05-31 18:04:47 9409736 ----a-w- c:\programmer\Install_MSN_Messenger.EXE
2008-09-02 08:45:34 32768 --sha-w- c:\windows\system32\config\systemprofile\lokale indstillinger\oversigt\history.ie5\mshist012008090220080903\index.dat
============= FINISH: 15:36:47,98 ===============