Thacky
-
Content Count
10 -
Joined
-
Last visited
Content Type
Profiles
Forums
Calendar
Posts posted by Thacky
-
-
Edit: Nevermind.
-
Nope, it's still there.
Sorry about the file name, I hadn't noticed.
Anyways, here is my new HJT.
Logfile of HijackThis v1.99.1
Scan saved at 10:03:01 AM, on 2/25/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\system32\Brmfrmps.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ahead\InCD\InCD.exe
C:\Updater.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
C:\Program Files\Brother\ControlCenter2\brctrcen.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Eraser\eraser.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ca/
O2 - BHO: (no name) - {00000000-0000-4B86-A4DB-CA1824CB05A2} - C:\Program Files\ProSiteFinder\ProSiteFinder.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Creata Mail - {9FEA5BDA-695A-417B-AA31-B54A06570053} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\en-us\msntb.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\en-us\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [inCD] C:\Program Files\ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [iRiver Updater] \Updater.exe
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [sSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
O4 - HKLM\..\Run: [indexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe
O4 - HKLM\..\Run: [setDefPrt] C:\Program Files\Brother\Brmfl04a\BrStDvPt.exe
O4 - HKLM\..\Run: [ControlCenter2.0] C:\Program Files\Brother\ControlCenter2\brctrcen.exe /autorun
O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Eraser] C:\Program Files\Eraser\eraser.exe -hide
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Status Monitor.lnk = C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: RaptisoftGameLoader - http://www.miniclip.com/hamsterball/raptisoftgameloader.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
O16 - DPF: {DA758BB1-5F89-4465-975F-8D7179A4BCF3} (WheelofFortune Object) - http://messenger.zone.msn.com/binary/WoF.cab31267.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://www.popcap.com/games/popcaploader_v6.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: Brother Popup Suspend service for Resource manager (brmfrmps) - Unknown owner - C:\WINDOWS\system32\Brmfrmps.exe" -service (file missing)
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\system32\brsvc01a.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
-
Alright Thacky, I attached a file to this post. Please download it and unzip it to your desktop. Double click findfile.bat. In a quick moment, notepad should open with a lot of text. Copy and paste the entire contents of that notepad in a reply please.
Matt
Volume in drive C has no label.
Volume Serial Number is B46B-DBF7
Directory of C:\Documents and Settings\MY NAME\My Documents\My Music
02/24/2006 07:29 PM <DIR> .
02/24/2006 07:29 PM <DIR> ..
05/23/2005 11:08 PM 4,708,366 01-incubus-megalomaniac.mp3
02/20/2006 09:29 PM 120,261 7 Soccer Moms - WWW.EROTRIX.NET - removed
02/12/2006 05:00 PM <DIR> Aerosmith
01/29/2006 12:13 AM 1,338 AlbumArtSmall.jpg
12/18/2005 11:52 AM 11,915 AlbumArt_{016BE595-FCC3-48E2-86C3-AF6F28258CF8}_Large.jpg
12/18/2005 11:52 AM 2,834 AlbumArt_{016BE595-FCC3-48E2-86C3-AF6F28258CF8}_Small.jpg
12/18/2005 11:55 AM 15,895 AlbumArt_{02E87B6B-C0D1-45A5-AA7E-3BA682FA8B2F}_Large.jpg
12/18/2005 11:55 AM 3,112 AlbumArt_{02E87B6B-C0D1-45A5-AA7E-3BA682FA8B2F}_Small.jpg
01/29/2006 01:17 PM 3,697 AlbumArt_{0A0B70F4-AA3C-48FF-B440-70925C53A4A0}_Large.jpg
01/29/2006 01:17 PM 1,338 AlbumArt_{0A0B70F4-AA3C-48FF-B440-70925C53A4A0}_Small.jpg
11/27/2005 05:26 PM 3,343 AlbumArt_{0C9268BC-437E-4160-9068-A9903CA929AC}_Large.jpg
11/27/2005 05:26 PM 1,171 AlbumArt_{0C9268BC-437E-4160-9068-A9903CA929AC}_Small.jpg
12/25/2005 06:08 PM 8,969 AlbumArt_{0EC7EE8C-C82F-4409-A6D6-6ED9CD103F92}_Large.jpg
12/25/2005 06:08 PM 2,192 AlbumArt_{0EC7EE8C-C82F-4409-A6D6-6ED9CD103F92}_Small.jpg
11/07/2005 07:12 PM 8,313 AlbumArt_{100753B6-2EAB-46C8-837D-DE4675AE8167}_Large.jpg
11/07/2005 07:12 PM 2,270 AlbumArt_{100753B6-2EAB-46C8-837D-DE4675AE8167}_Small.jpg
11/06/2005 11:14 AM 13,299 AlbumArt_{1007C3DD-3E4A-4049-B68D-E4EF82DCEA58}_Large.jpg
11/06/2005 11:14 AM 3,182 AlbumArt_{1007C3DD-3E4A-4049-B68D-E4EF82DCEA58}_Small.jpg
11/06/2005 09:36 PM 7,980 AlbumArt_{11166444-3E96-4A3E-9D2D-3E2D78A169E7}_Large.jpg
11/06/2005 09:36 PM 2,294 AlbumArt_{11166444-3E96-4A3E-9D2D-3E2D78A169E7}_Small.jpg
10/30/2005 10:24 AM 6,567 AlbumArt_{13C43AE1-1C19-4B94-A0CA-944B917ADFDC}_Large.jpg
10/30/2005 10:24 AM 1,808 AlbumArt_{13C43AE1-1C19-4B94-A0CA-944B917ADFDC}_Small.jpg
11/07/2005 07:09 PM 10,102 AlbumArt_{15606CFB-F996-42F9-BEED-B78E2D9C9D3D}_Large.jpg
11/07/2005 07:09 PM 2,547 AlbumArt_{15606CFB-F996-42F9-BEED-B78E2D9C9D3D}_Small.jpg
12/18/2005 11:52 AM 9,669 AlbumArt_{1720C202-C809-44B7-8FDB-4EDA70F83850}_Large.jpg
12/18/2005 11:52 AM 2,639 AlbumArt_{1720C202-C809-44B7-8FDB-4EDA70F83850}_Small.jpg
01/29/2006 01:17 PM 9,569 AlbumArt_{17FCDA36-C597-4A39-8199-6ED1DC093B52}_Large.jpg
01/29/2006 01:17 PM 2,514 AlbumArt_{17FCDA36-C597-4A39-8199-6ED1DC093B52}_Small.jpg
11/08/2005 05:27 PM 7,066 AlbumArt_{1EC11C61-E4F8-44C6-AE5C-7073AD6DC2E3}_Large.jpg
11/08/2005 05:27 PM 1,803 AlbumArt_{1EC11C61-E4F8-44C6-AE5C-7073AD6DC2E3}_Small.jpg
01/29/2006 01:16 PM 7,957 AlbumArt_{2329E05B-94DB-4869-B2EA-C655F53BC359}_Large.jpg
01/29/2006 01:16 PM 2,296 AlbumArt_{2329E05B-94DB-4869-B2EA-C655F53BC359}_Small.jpg
12/05/2005 10:11 PM 7,870 AlbumArt_{26E5A8F4-FAC9-46ED-9F8E-9B1648A5BC81}_Large.jpg
12/05/2005 10:11 PM 2,020 AlbumArt_{26E5A8F4-FAC9-46ED-9F8E-9B1648A5BC81}_Small.jpg
11/27/2005 05:23 PM 6,714 AlbumArt_{2BF326BC-CD40-4103-92D0-14C8D13F4D09}_Large.jpg
11/27/2005 05:23 PM 1,865 AlbumArt_{2BF326BC-CD40-4103-92D0-14C8D13F4D09}_Small.jpg
12/18/2005 11:55 AM 9,783 AlbumArt_{36BAB944-EF35-40FB-B68C-8AAF693ECB49}_Large.jpg
12/18/2005 11:55 AM 2,522 AlbumArt_{36BAB944-EF35-40FB-B68C-8AAF693ECB49}_Small.jpg
11/07/2005 07:12 PM 10,685 AlbumArt_{3835E878-A45D-49DB-BAB9-B3E5985026F3}_Large.jpg
11/07/2005 07:11 PM 2,754 AlbumArt_{3835E878-A45D-49DB-BAB9-B3E5985026F3}_Small.jpg
11/27/2005 05:24 PM 11,341 AlbumArt_{38FA9FD1-F912-445B-9815-E3FEF328B9BB}_Large.jpg
11/27/2005 05:24 PM 2,651 AlbumArt_{38FA9FD1-F912-445B-9815-E3FEF328B9BB}_Small.jpg
11/27/2005 05:23 PM 7,865 AlbumArt_{477BD751-427F-410A-82CA-61D28D61D9F8}_Large.jpg
11/27/2005 05:23 PM 2,226 AlbumArt_{477BD751-427F-410A-82CA-61D28D61D9F8}_Small.jpg
01/02/2006 01:39 AM 9,795 AlbumArt_{4DE50E7C-1490-4904-9FEC-77C3EB78688D}_Large.jpg
01/02/2006 01:39 AM 2,527 AlbumArt_{4DE50E7C-1490-4904-9FEC-77C3EB78688D}_Small.jpg
11/08/2005 05:25 PM 8,988 AlbumArt_{4F637D26-B236-46BA-9C85-34C8B19303A8}_Large.jpg
11/08/2005 05:25 PM 2,257 AlbumArt_{4F637D26-B236-46BA-9C85-34C8B19303A8}_Small.jpg
01/22/2006 04:03 PM 11,896 AlbumArt_{4FB94773-5AE4-409F-A008-9208CFF58856}_Large.jpg
01/22/2006 04:03 PM 2,675 AlbumArt_{4FB94773-5AE4-409F-A008-9208CFF58856}_Small.jpg
11/07/2005 07:09 PM 10,942 AlbumArt_{54CA0655-3854-431B-B68D-744E5FD31C66}_Large.jpg
11/07/2005 07:09 PM 2,752 AlbumArt_{54CA0655-3854-431B-B68D-744E5FD31C66}_Small.jpg
10/30/2005 10:26 AM 7,368 AlbumArt_{60A24846-846D-47DE-A59D-D6CC890C0B09}_Large.jpg
10/30/2005 10:26 AM 2,272 AlbumArt_{60A24846-846D-47DE-A59D-D6CC890C0B09}_Small.jpg
11/08/2005 05:25 PM 5,105 AlbumArt_{614B02E1-B859-4A85-9E05-438AF52293E0}_Large.jpg
11/08/2005 05:25 PM 1,568 AlbumArt_{614B02E1-B859-4A85-9E05-438AF52293E0}_Small.jpg
11/07/2005 07:12 PM 9,567 AlbumArt_{69829BA5-F83D-4CC4-958D-CAC4E7E42B9F}_Large.jpg
11/07/2005 07:12 PM 2,442 AlbumArt_{69829BA5-F83D-4CC4-958D-CAC4E7E42B9F}_Small.jpg
01/06/2006 11:56 PM 7,427 AlbumArt_{6D6CADC3-66B1-4537-81DB-A042956545E3}_Large.jpg
01/06/2006 11:56 PM 1,851 AlbumArt_{6D6CADC3-66B1-4537-81DB-A042956545E3}_Small.jpg
10/30/2005 10:27 AM 6,876 AlbumArt_{6DF65908-DD9A-4A15-BC54-D817B1BA0F7D}_Large.jpg
10/30/2005 10:27 AM 2,160 AlbumArt_{6DF65908-DD9A-4A15-BC54-D817B1BA0F7D}_Small.jpg
01/29/2006 01:20 PM 11,440 AlbumArt_{72C16336-AFF6-448C-B620-26B0C857FF3D}_Large.jpg
01/29/2006 01:20 PM 2,880 AlbumArt_{72C16336-AFF6-448C-B620-26B0C857FF3D}_Small.jpg
02/05/2006 05:57 PM 9,313 AlbumArt_{7375455D-8833-4C5F-BB84-046B87CA936D}_Large.jpg
02/05/2006 05:57 PM 2,140 AlbumArt_{7375455D-8833-4C5F-BB84-046B87CA936D}_Small.jpg
01/29/2006 01:20 PM 8,957 AlbumArt_{78F60D1F-37FD-429C-AB22-F912A017ED8E}_Large.jpg
01/29/2006 01:19 PM 2,174 AlbumArt_{78F60D1F-37FD-429C-AB22-F912A017ED8E}_Small.jpg
01/26/2006 09:35 PM 11,054 AlbumArt_{7A8EA803-A295-4AEC-8906-53E7D2BFACCC}_Large.jpg
01/26/2006 09:34 PM 2,565 AlbumArt_{7A8EA803-A295-4AEC-8906-53E7D2BFACCC}_Small.jpg
12/05/2005 10:16 PM 42,443 AlbumArt_{7D652868-55B2-43A8-8B44-32C6457608D0}_Large.jpg
12/05/2005 10:16 PM 10,695 AlbumArt_{7D652868-55B2-43A8-8B44-32C6457608D0}_Small.jpg
01/29/2006 01:18 PM 4,921 AlbumArt_{7DB5EBCC-60C1-4F74-8E8F-736292FB0223}_Large.jpg
01/29/2006 01:18 PM 1,630 AlbumArt_{7DB5EBCC-60C1-4F74-8E8F-736292FB0223}_Small.jpg
12/05/2005 10:11 PM 8,216 AlbumArt_{7E24F585-0187-499B-9EED-723B1BCB25AB}_Large.jpg
12/05/2005 10:11 PM 2,193 AlbumArt_{7E24F585-0187-499B-9EED-723B1BCB25AB}_Small.jpg
11/07/2005 07:08 PM 10,504 AlbumArt_{8E465773-1FDC-4C38-89FF-B315C650DBC5}_Large.jpg
11/07/2005 07:08 PM 2,610 AlbumArt_{8E465773-1FDC-4C38-89FF-B315C650DBC5}_Small.jpg
01/29/2006 01:17 PM 11,006 AlbumArt_{904F3313-A131-4A58-9002-1B302775E40B}_Large.jpg
01/29/2006 01:17 PM 2,623 AlbumArt_{904F3313-A131-4A58-9002-1B302775E40B}_Small.jpg
12/18/2005 11:54 AM 4,291 AlbumArt_{9446359B-3C61-4FF2-B03E-19BC23767990}_Large.jpg
12/18/2005 11:54 AM 1,445 AlbumArt_{9446359B-3C61-4FF2-B03E-19BC23767990}_Small.jpg
11/08/2005 05:26 PM 8,102 AlbumArt_{94D88264-5490-4A50-BDCF-9CFAC44EB63C}_Large.jpg
11/08/2005 05:26 PM 2,114 AlbumArt_{94D88264-5490-4A50-BDCF-9CFAC44EB63C}_Small.jpg
12/25/2005 06:08 PM 13,552 AlbumArt_{A411ED0B-59E2-49B3-B4EB-AD9977CCDD2E}_Large.jpg
12/25/2005 06:08 PM 2,958 AlbumArt_{A411ED0B-59E2-49B3-B4EB-AD9977CCDD2E}_Small.jpg
12/05/2005 10:09 PM 7,850 AlbumArt_{A421946C-F211-4D66-94DC-57DC60EEAFA0}_Large.jpg
12/05/2005 10:09 PM 2,192 AlbumArt_{A421946C-F211-4D66-94DC-57DC60EEAFA0}_Small.jpg
11/27/2005 05:22 PM 6,097 AlbumArt_{A42C4A79-F4C7-421D-8E8E-89AF1EECF20F}_Large.jpg
11/27/2005 05:22 PM 1,887 AlbumArt_{A42C4A79-F4C7-421D-8E8E-89AF1EECF20F}_Small.jpg
12/05/2005 10:10 PM 11,920 AlbumArt_{AD0327D1-2AAA-4760-A745-244711CD0612}_Large.jpg
12/05/2005 10:10 PM 2,583 AlbumArt_{AD0327D1-2AAA-4760-A745-244711CD0612}_Small.jpg
11/07/2005 07:11 PM 9,048 AlbumArt_{AFB790C5-DE2D-4F9D-9769-0954AC847F05}_Large.jpg
11/07/2005 07:11 PM 2,296 AlbumArt_{AFB790C5-DE2D-4F9D-9769-0954AC847F05}_Small.jpg
11/06/2005 11:11 AM 8,993 AlbumArt_{B2980A2A-266E-4867-AB06-320400F823BC}_Large.jpg
11/06/2005 11:11 AM 2,287 AlbumArt_{B2980A2A-266E-4867-AB06-320400F823BC}_Small.jpg
01/29/2006 01:22 PM 10,995 AlbumArt_{B50C19F6-D290-4762-9F3C-AF702609B42C}_Large.jpg
01/29/2006 01:22 PM 2,930 AlbumArt_{B50C19F6-D290-4762-9F3C-AF702609B42C}_Small.jpg
01/31/2006 09:20 PM 9,702 AlbumArt_{BEC47316-A373-4054-8368-7D8D139252D7}_Large.jpg
01/31/2006 09:20 PM 2,215 AlbumArt_{BEC47316-A373-4054-8368-7D8D139252D7}_Small.jpg
01/06/2006 11:57 PM 6,726 AlbumArt_{C323EF38-14E0-4C55-A98A-70204C4BFEB3}_Large.jpg
01/06/2006 11:56 PM 2,083 AlbumArt_{C323EF38-14E0-4C55-A98A-70204C4BFEB3}_Small.jpg
12/18/2005 11:53 AM 12,453 AlbumArt_{CE1478DB-515D-4CB7-BFFD-B3C7B2EDC46E}_Large.jpg
12/18/2005 11:53 AM 2,713 AlbumArt_{CE1478DB-515D-4CB7-BFFD-B3C7B2EDC46E}_Small.jpg
11/27/2005 05:22 PM 11,438 AlbumArt_{D6DD727B-C141-4127-9F6A-FC8AB507B792}_Large.jpg
11/27/2005 05:22 PM 3,129 AlbumArt_{D6DD727B-C141-4127-9F6A-FC8AB507B792}_Small.jpg
01/29/2006 01:18 PM 7,315 AlbumArt_{D9335060-3060-4F75-914F-CDE3BFB3779A}_Large.jpg
01/29/2006 01:18 PM 2,042 AlbumArt_{D9335060-3060-4F75-914F-CDE3BFB3779A}_Small.jpg
11/07/2005 07:12 PM 9,697 AlbumArt_{D9AAC122-28E1-4823-9963-AD866EC2C1CA}_Large.jpg
11/07/2005 07:12 PM 2,659 AlbumArt_{D9AAC122-28E1-4823-9963-AD866EC2C1CA}_Small.jpg
01/29/2006 01:22 PM 11,034 AlbumArt_{DD3790A8-226C-4904-8426-CA374EDC9B8D}_Large.jpg
01/29/2006 01:22 PM 2,739 AlbumArt_{DD3790A8-226C-4904-8426-CA374EDC9B8D}_Small.jpg
11/07/2005 07:11 PM 10,811 AlbumArt_{E2B830FE-AEB2-49B4-B9FE-7C4A4B0FFCD0}_Large.jpg
11/07/2005 07:11 PM 2,370 AlbumArt_{E2B830FE-AEB2-49B4-B9FE-7C4A4B0FFCD0}_Small.jpg
01/29/2006 01:21 PM 6,480 AlbumArt_{E819938E-EEA7-4097-8957-84C1F7EAFFF1}_Large.jpg
01/29/2006 01:21 PM 1,828 AlbumArt_{E819938E-EEA7-4097-8957-84C1F7EAFFF1}_Small.jpg
12/05/2005 10:08 PM 7,735 AlbumArt_{EA4F6310-EA31-43EA-8F31-A8951CC82545}_Large.jpg
12/05/2005 10:08 PM 2,006 AlbumArt_{EA4F6310-EA31-43EA-8F31-A8951CC82545}_Small.jpg
12/05/2005 10:09 PM 8,131 AlbumArt_{EA9B8D6B-DF43-421E-90D6-2A8E1F4E2220}_Large.jpg
12/05/2005 10:09 PM 2,280 AlbumArt_{EA9B8D6B-DF43-421E-90D6-2A8E1F4E2220}_Small.jpg
02/05/2006 05:58 PM 8,873 AlbumArt_{F7042657-6134-43B9-9EBD-6AAE998C029C}_Large.jpg
02/05/2006 05:57 PM 2,390 AlbumArt_{F7042657-6134-43B9-9EBD-6AAE998C029C}_Small.jpg
12/18/2005 11:55 AM 7,936 AlbumArt_{F7F55723-2451-4960-9373-0462C0754912}_Large.jpg
12/18/2005 11:55 AM 2,146 AlbumArt_{F7F55723-2451-4960-9373-0462C0754912}_Small.jpg
11/06/2005 11:13 AM 10,455 AlbumArt_{F9A9B7DF-0C96-4776-BF10-F8E1D5F33A7D}_Large.jpg
11/06/2005 11:13 AM 2,705 AlbumArt_{F9A9B7DF-0C96-4776-BF10-F8E1D5F33A7D}_Small.jpg
11/06/2005 09:36 PM 7,936 AlbumArt_{FB704629-0091-4F09-B0E3-9D9A995BF8E1}_Large.jpg
11/06/2005 09:36 PM 2,225 AlbumArt_{FB704629-0091-4F09-B0E3-9D9A995BF8E1}_Small.jpg
01/29/2006 01:21 PM 10,185 AlbumArt_{FBB0B888-5D1A-4493-ACDC-D047721BB733}_Large.jpg
01/29/2006 01:21 PM 2,330 AlbumArt_{FBB0B888-5D1A-4493-ACDC-D047721BB733}_Small.jpg
01/22/2006 12:58 AM <DIR> Alexisonfire
02/12/2006 05:00 PM <DIR> Avenged Sevenfold
01/22/2006 01:34 PM <DIR> Bayside
11/18/2005 03:53 PM 6,292,314 Benny Benassi - Satisfaction (Club Mix).mp3
01/22/2006 01:02 AM <DIR> Blink 182
02/02/2006 10:31 PM <DIR> Children of Bodom
11/18/2005 03:52 PM 631,320 chop suey.mp3
12/23/2005 08:36 PM 3,588,900 Chris Brown - Run It.mp3
02/02/2006 10:30 PM <DIR> Coldplay
11/18/2005 03:52 PM 687,048 come again.mp3
11/18/2005 03:53 PM 1,146,796 comfortably numb pink floyd.mp3
11/07/2005 07:16 PM 3,152,334 Craig Morgan - That's What I Love About Sundays.mp3
10/12/2005 09:08 PM 6,698,218 Cypress Hill - Insane In The Membrane.mp3
10/20/2005 09:40 PM 6,427,933 Cypress Hill - Low Rider.mp3
11/18/2005 03:53 PM 4,242,535 Cypress Hill- Hits From The Bong.mp3
01/17/2006 04:23 PM 6,975,116 Dallas Green - Save Your Scissors.mp3
08/08/2005 07:53 PM 54,920,382 Dave Chappele - Killin' Them Softly (stand up comedy).mp3
01/29/2006 12:13 AM 333 desktop.ini
01/31/2006 05:51 PM <DIR> Dimmu Borgir
11/18/2005 03:54 PM 751,489 dont stop believing.mp3
11/18/2005 03:55 PM 552,015 down.mp3
02/17/2006 09:22 PM 7,808,859 Eddie Murphy - Drunk Cookouts.mp3
11/07/2005 07:09 PM 5,522,999 Emerson Drive - Still Got Yesterday.mp3
12/18/2005 11:51 AM 3,568,313 Eminem - Encore - 05 - Like Toy Soldiers.mp3
12/05/2005 09:53 PM 5,308,416 Eminem - Lose Yourself.mp3
12/18/2005 11:51 AM 5,408,768 Eminem - Mocking Bird.mp3
12/05/2005 10:14 PM 5,650,881 Eminem - When I'm Gone.mp3
09/25/2005 09:11 PM 6,770,068 Eminem, Obie Trice, DMX - Go To Sleep (Benzino and Ja Rule diss).mp3
10/26/2005 04:04 PM 4,294,365 Emo song - I Must be Emo.mp3
01/17/2006 03:21 PM 6,091,734 Enya - Gladiator Soundtrack- Now We Are Free.mp3
11/27/2005 05:24 PM 4,005,023 Eric Johnson - Cliffs of Dover.mp3
12/18/2005 11:55 AM 2,558,192 eurotrip - scotty doesn't know (techno).mp3
02/20/2006 09:47 PM <DIR> Fall Out Boy
02/06/2006 05:24 PM 7,041 Fall Out Boy 3 CD's.wpl
02/24/2006 07:29 PM 0 files.txt
01/26/2006 09:35 PM 11,054 Folder.jpg
08/08/2005 06:40 PM 10,259,436 Foo Fighters - Best Of You.mp3
04/25/2005 05:32 PM 9,485,433 Franz Ferdinand - Take Me Out.mp3
02/02/2006 10:31 PM <DIR> From Autumn to Ashes
10/22/2005 03:26 PM 4,289,236 From Firsbt To Last - Ride The Wings Of Pestilence.mp3
10/20/2005 09:40 PM 6,219,072 From First To Last - Kiss Me I'm Contagious.mp3
10/11/2005 08:35 PM 3,115,561 From First To Last- I Liked You Better Before You Were Naked On the Internet.mp3
11/08/2005 05:27 PM 4,852,974 Funeral For A Friend - Streetcar.mp3
11/08/2005 05:27 PM 5,595,406 Funeral for a friend - Bullet theory.mp3
11/08/2005 05:27 PM 5,614,626 Funeral For A Friend - Kiss And Make Up.mp3
11/08/2005 05:28 PM 4,342,610 Funeral For A Friend - Rookie of the Year.mp3
11/08/2005 05:28 PM 2,640,293 Funeral For A Friend - This Year's Most Open Heartbreak.mp3
11/08/2005 05:27 PM 4,132,449 Funeral For A Friend-You Want Romance.mp3
01/02/2006 01:40 AM 2,141,709 Gravy Train - Hella Nervous.mp3
01/29/2006 05:14 PM 3,007,719 Greeley Estates - Atom Doesn't Lie.mp3
02/05/2006 03:03 PM 3,977,595 Greeley Estates - Glimpse.mp3
02/05/2006 03:03 PM 4,115,980 Greeley Estates - If Words Could Say.mp3
02/08/2006 04:29 PM 3,068,258 greeley estates - Outside of This.mp3
02/05/2006 03:03 PM 3,454,234 greeley estates - Tear My World Apart.mp3
02/05/2006 03:03 PM 4,745,216 Greeley Estates - Until Tomorrow.mp3
01/29/2006 01:18 PM 7,882,479 Greeley Estates - Y'all With The Vampire Squad.MP3
11/18/2005 03:55 PM 14,294,016 Guns and Roses - Sweet Child Of Mine(1)(1).mp3
05/30/2005 08:35 PM 4,382,858 Guns and Roses - Welcome to the Jungle.mp3
10/22/2005 03:32 PM 5,253,520 Hawthorne Heights - Ohio is for Lovers (acoustic).mp3
10/22/2005 03:26 PM 3,919,118 Hawthorne Heights - Ohio Is For Lovers.mp3
11/18/2005 03:55 PM 4,752,408 Hawthorne Heights - Silver Bullet (acoustic).mp3
10/23/2005 06:08 PM 3,536,896 Hawthorne Heights - Silver Bullet.mp3
10/22/2005 03:26 PM 6,677,144 Hawthorne Heights - Wake Up Call.mp3
02/11/2006 08:00 PM 5,768,750 Hawthorne Heights- Sandpaper And Silk.mp3
01/29/2006 01:26 PM 6,690,986 In Flames - My Sweet Shadow.mp3
02/12/2006 12:11 PM <DIR> iPod Photo Cache
02/24/2006 07:29 PM <DIR> iTunes
10/22/2005 05:33 PM 7,274,561 Jackass - Party Boy Theme Song.mp3
11/18/2005 03:56 PM 5,967,930 jackie -the jokeman- martling - Herds and Hookers.mp3
11/18/2005 03:56 PM 2,441,480 Jackie Martling - Italian Jokes.mp3
10/31/2005 03:19 PM 3,107,578 jackie martling - polish jokes (1) (1).mp3
10/31/2005 03:11 PM 1,160,982 Jackie Martling - Sgt Pecker - Quick Jokes.mp3
11/18/2005 03:56 PM 2,627,200 Jakie the Jokeman Martling - Boozers and Bungholes - F Jackie.mp3
01/17/2006 03:07 PM 3,312,152 John Williams - Jurassic Park Overture.mp3
11/16/2005 08:09 PM 3,597,084 Jon Bon Jovi - Its My Life.mp3
10/26/2005 03:49 PM 3,093,694 Josh Tobin - I'm a Gangster.mp3
05/13/2005 10:19 PM 8,531,187 Judas Priest -- Living After Midnight.mp3
11/06/2005 09:10 PM 3,201,249 Juliana Theory - Top Of The World.mp3
02/12/2006 05:00 PM <DIR> Kamelot
01/29/2006 01:26 PM 4,197,703 kane hodder-i think patrick swayze is sexy.mp3
11/07/2005 07:16 PM 5,646,506 Keith Urban- Days Go By.mp3
08/03/2005 10:48 AM 3,380,938 Kingdom Hearts - Shrouding Dark Cloud.mp3
08/03/2005 10:29 AM 6,758,400 Kingdom Hearts - Simple And Clean (FULL English).mp3
01/31/2006 05:51 PM <DIR> Lamb Of God
02/03/2006 08:24 PM <DIR> License Backup
02/20/2006 09:47 PM <DIR> Linkin Park
02/05/2006 06:34 PM 32,726,568 Linkin Park - DVD LIVE IN TEXAS - 02 - Don't stay.mpg
02/05/2006 06:38 PM 32,396,560 Linkin Park - LIVE IN TEXAS - 05 - Papercut.mpg
01/29/2006 01:26 PM 4,504,440 Linkin Park - Numb.mp3
02/01/2006 06:41 PM 1,505 Live It Out.wpl
11/07/2005 07:16 PM 3,982,453 Lonestar - Not A Day Goes By.mp3
02/12/2006 08:50 PM 5,445,194 Lustra - Scotty Doesn't Know.mp3
12/05/2005 10:08 PM 5,309,891 Metallica - Enter Sandman .mp3
02/20/2006 09:47 PM <DIR> Metric
12/04/2005 06:04 PM 4,083,849 Motley Crue - If I Die Tomorrow.mp3
12/24/2005 12:27 AM 4,524,657 Motley Crue - Kickstart My Heart.mp3
08/08/2005 07:56 PM 6,363,188 Mr.Big - Guitar Solo(Paul Gilbert).mp3
02/07/2006 03:58 PM <DIR> My Chemical Romance
12/31/2005 05:37 PM <DIR> My Playlists
02/21/2006 04:24 PM <DIR> New Folder
09/17/2005 11:11 AM 4,757,986 Nirvana - Smells Like Teen Spirit.mp3
12/05/2005 10:09 PM 11,655,168 Opeth - Blackwater Park.mp3
08/08/2005 10:15 PM 19,561,273 Opeth - Deliverance.mp3
06/21/2005 03:38 PM 8,386,033 Opeth - In My Time Of Need.mp3
01/31/2006 05:51 PM <DIR> Our Lady Peace
09/19/2005 06:41 PM 10,813,440 Our Lady Peace - Clumsy.mp3
09/19/2005 07:01 PM 10,522,156 Our Lady Peace - Somewhere Out There.mp3
02/12/2006 05:00 PM <DIR> Ozzy
11/06/2005 09:36 PM 5,404,800 Paul Brandt -Alberta Bound.mp3
08/08/2005 10:15 PM 13,639,770 Paul Gilbert & Jimi Kidd - Raw Blues Power - 10_Blues Power.mp3
08/08/2005 10:15 PM 6,264,463 Paul Gilbert - Racer X - Technical Difficulties.mp3
05/04/2005 09:39 PM 17,157,311 Peter Frampton - Do You Feel Like I Do.mp3
05/05/2005 03:59 PM 13,212,420 Peter Frampton - Do You Feel Like We Do(1).mp3
02/07/2006 09:13 PM <DIR> Pink Floyd
01/22/2006 01:36 PM <DIR> Protest the Hero
04/25/2005 05:29 PM 8,415,382 Radiohead - The National Anthem.mp3
04/27/2005 08:39 PM 4,562,944 Red Hot Chili Peppers - Aeroplane.mp3
04/27/2005 08:28 PM 5,991,489 Red Hot Chili Peppers - Greatest Hits - 11 - My Friends.mp3
01/29/2006 01:26 PM 6,138,910 Red Hot Chillie Peppers - Otherside.mp3
01/14/2006 06:54 PM 6,620,025 Red Hot Chilly Pepers - Cant Stop.mp3
12/05/2005 10:10 PM 4,308,461 REM - Losing My Religion.mp3
06/16/2005 09:09 PM 4,086,144 Rod Stewart - I Wish That I Knew What I Know Now.mp3
12/18/2005 11:55 AM 6,290,451 Sandstorm (Best Techno Club Mix Ever!).mp3
01/29/2006 01:26 PM 4,105,623 Scorpions - Rock You Like a Hurricane.mp3
01/31/2006 05:51 PM <DIR> Senses Fail
01/22/2006 01:37 PM <DIR> Silverstein
02/12/2006 05:00 PM <DIR> Sinergy
09/26/2005 04:04 PM 3,530,752 Six Feet Under - Hacked To Pieces.mp3
11/18/2005 03:54 PM 4,635,643 Skycamefalling - A Penny For Your Confessions.mp3
09/17/2005 10:42 PM 8,947,061 Slipknot - 08 - Vermillion.mp3
09/17/2005 10:50 PM 8,431,616 slipknot - vol 3 (the subliminal verses) - the nameless.mp3
10/31/2005 03:20 PM 2,490,496 Stand Up Comedy - Jackie Martling - Italian Jokes - 96.mp3
10/31/2005 03:11 PM 3,109,626 Stand Up Comedy - Jackie Martling - Polish And Irish Jokes - 128.mp3
05/07/2005 08:57 PM 9,785,472 Steve Vai - Crossroad - Eugenes Trick Bag.mp3
11/12/2005 08:36 PM 1,599,488 steven lynch - retarded christmas song.mp3
05/13/2005 06:45 PM 3,135,488 steven lynch - special olympics.mp3
05/13/2005 07:04 PM 2,669,054 Steven Lynch - Superhero.mp3
12/25/2005 06:03 PM 5,816,509 story of the year- Untill The Day I die.mp3
01/31/2006 05:51 PM <DIR> Switchfoot
01/29/2006 09:32 PM 9,916,977 Switchfoot - I Dare You to Move(1).mp3
01/29/2006 01:26 PM 4,956,507 Switchfoot - I Dare You To Move.mp3
01/14/2006 09:22 PM 4,112,825 Switchfoot - Meant To Live.mp3
01/26/2006 09:35 PM 3,979,851 Switchfoot - Stars.mp3
01/22/2006 01:34 PM <DIR> System of a Down
04/30/2005 08:55 PM 5,801,984 System Of A Down - B.Y.O.B.(1).mp3
05/27/2005 05:51 PM 7,749,632 System Of A Down - Lost In Hollywood.mp3
08/19/2005 02:35 PM 8,193,139 System Of A Down - Mesmerize - 08 - Question!.mp3
07/25/2005 05:39 PM 3,460,591 System of a Down - Spiders.mp3
12/25/2005 06:03 PM 4,872,192 System Of A Down - The Prison Song.mp3
10/23/2005 06:12 PM 3,839,093 Telepopmusik - Genetic World.mp3
01/21/2006 08:50 PM 5,138,432 The All-American Rejects - Move Along.mp3
01/21/2006 09:03 PM 7,269,994 the arcade fire - funeral - 09 - rebellion (lies).mp3
10/12/2005 09:12 PM 4,242,959 The Arcade Fire - Headlights.mp3
11/18/2005 03:57 PM 5,009,921 The Arcade Fire - Neighbourhood #3 (Power Out).mp3
01/29/2006 01:20 PM 6,526,976 The Blood Brothers - The Salesman Denver Max.mp3
02/01/2006 02:39 PM <DIR> The Faint
11/07/2005 05:43 PM 5,835,962 The Game Ft.50 Cent - This Is How We Do .mp3
11/06/2005 09:37 PM 4,000,756 the juliana theory - the closest thing.mp3
02/13/2006 03:28 PM 8,229,128 The Killers - all these things that ive done.mp3
02/13/2006 03:20 PM 5,827,087 The Killers - Andy You're a Star.mp3
08/23/2005 07:07 PM 10,384,047 The Killers - Mr. Brightside.mp3
02/13/2006 03:24 PM 5,753,467 the killers - smile like you mean it.mp3
09/17/2005 11:15 AM 7,942,825 The Killers - Somebody Told Me.mp3
11/09/2005 08:37 PM 6,631,424 The Offspring - Can't Repeat (Good Quality Version!).mp3
01/22/2006 01:35 PM <DIR> The Used
12/05/2005 10:10 PM 2,880,754 TheFaint_GlassDanse.mp3
02/03/2006 06:50 PM 3,689 Three Cheers for Sweet Revenge.wpl
02/20/2006 09:47 PM <DIR> Three Days Grace
10/30/2005 10:27 AM 2,885,310 Thrice - Deadbolt.mp3
10/30/2005 10:26 AM 5,264,726 Thrice - The Artist In The Ambulance(1).mp3
02/20/2006 09:47 PM 26,624 Thumbs.db
10/23/2005 06:13 PM 6,557,793 Thursday - paris in flames.mp3
10/22/2005 03:32 PM 6,378,823 Thursday - Steps Ascending.mp3
10/22/2005 03:32 PM 6,548,723 Thursday - War All The Time.mp3
11/07/2005 07:16 PM 3,609,539 Tim Mcgraw & Faith Hill - Its Your Love.mp3
10/22/2005 05:58 PM 3,960,960 Toby Keith - I Love This Bar(1).mp3
12/25/2005 06:03 PM 6,397,743 Tool - Aenima.mp3
12/25/2005 06:03 PM 4,852,968 Tool - Sober.mp3
01/06/2006 11:57 PM 7,329,792 Train - Calling All Angels.mp3
01/06/2006 11:57 PM 4,103,583 Train - Drops Of Jupiter.mp3
02/07/2006 09:13 PM <DIR> Underoath
08/03/2005 10:27 AM 2,771,510 Utada Hikaru - Kingdom Hearts (English).mp3
08/03/2005 10:29 AM 6,758,400 Utada HIkaru - Kingdom Hearts - Simple And Clean (FULL English).mp3
05/29/2005 06:33 PM 1,805,827 Van Halen - 01 Eruption.mp3
10/11/2005 10:11 PM 3,683,518 Van Halen - Aint Talking About Love.mp3
12/05/2005 10:16 PM 3,394,290 Van Halen - Panama.mp3
10/11/2005 10:12 PM 4,094,080 Wheatus - Teenage Dirtbag.mp3
05/13/2005 09:27 PM 8,568,094 Yngwie Malmsteen - Baroque And Roll.mp3
Directory of C:\Documents and Settings\MY NAME\My Documents\My Music
285 File(s) 928,110,087 bytes
35 Dir(s) 835,940,352 bytes free
edit:removed adult content
-
Ok, Matt, I followed your instructions, but when I ran HJT, the file C:\Program Files\ProSiteFinder\ProSiteFinder.dll (file missing) wasn't there.
When I booted into safe mode, the files C:\WINDOWS\ptcore.exe and C:\WINDOWS\system32\6f9b7p4h.exe were not there.
I did delete the folders C:\Program Files\Zsov and C:\Program Files\ProSiteFinder, though.
Here is my new HJT log.
Logfile of HijackThis v1.99.1
Scan saved at 9:17:41 PM, on 2/22/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\system32\Brmfrmps.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ahead\InCD\InCD.exe
C:\Updater.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
C:\Program Files\Brother\ControlCenter2\brctrcen.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Eraser\eraser.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ca/
O2 - BHO: (no name) - {00000000-0000-4B86-A4DB-CA1824CB05A2} - C:\Program Files\ProSiteFinder\ProSiteFinder.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Creata Mail - {9FEA5BDA-695A-417B-AA31-B54A06570053} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\en-us\msntb.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\en-us\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [inCD] C:\Program Files\ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [iRiver Updater] \Updater.exe
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [sSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
O4 - HKLM\..\Run: [indexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe
O4 - HKLM\..\Run: [setDefPrt] C:\Program Files\Brother\Brmfl04a\BrStDvPt.exe
O4 - HKLM\..\Run: [ControlCenter2.0] C:\Program Files\Brother\ControlCenter2\brctrcen.exe /autorun
O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Eraser] C:\Program Files\Eraser\eraser.exe -hide
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Status Monitor.lnk = C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: RaptisoftGameLoader - http://www.miniclip.com/hamsterball/raptisoftgameloader.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://www.popcap.com/games/popcaploader_v6.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: Brother Popup Suspend service for Resource manager (brmfrmps) - Unknown owner - C:\WINDOWS\system32\Brmfrmps.exe" -service (file missing)
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\system32\brsvc01a.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
And the path to the file is: C:\Documents and Settings\*my name which I would rather not say*\My Documents\My Music\7 Soccer Moms - WWW.EROTRIX.NET - removed
Wow, if I had known the file name was that long and stupid I never would have downloaded it.
All I saw was the 7 Soccer Moms bit.
And there are still only the 5 options when I right click it.
edit: this a family oriented site, please refrain from posting details that contain pornographic descriptions of the files
-
Ok, I tried KillBox, but when I browsed for the file path and selected the picture, nothing happened.
No text entered the box.
Help?
Wait, I'll try that. Thanks Matt.
-
Ok, I'll be upfront, I downloaded a porn picture with Limewire, but I'm in way over my head. I need help, bad.
The file WILL NOT delete.
When I right click it, it gives 5 options. They are: Preview, Edit, Print, Open With..., and Send to.
I have tried preview and edit.
When I do edit, absolutely nothing happens.
In preview, it opens it up like it would show me the picture, but there isn't one. Just a white screen in the Windows Picture Viewer thing.
I need help really really bad.
I already tried the programs Eraser 5.3 and Gipo@MoveOnBoot, unsuccessfully.
With MoveOnBoot, it said that the file name was invalid.
I also tried draggin the file into my recycle bin, but as soon as my cursor went over recycle bin, the little plus sign disappeared, and I when i let go, nothing happened.
Please, somebody, can anybody help me?
I also did a HJT log, just incase it would help.
Here it is:
Logfile of HijackThis v1.99.1
Scan saved at 11:16:16 PM, on 2/20/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ahead\InCD\InCD.exe
C:\Updater.exe
C:\Program Files\Zsov\Ldjgj.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
C:\Program Files\Brother\ControlCenter2\brctrcen.exe
C:\WINDOWS\system32\Brmfrmps.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Eraser\eraser.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware SE Personal\Ad-Aware.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ca/
R3 - Default URLSearchHook is missing
O2 - BHO: (no name) - {00000000-0000-4B86-A4DB-CA1824CB05A2} - C:\Program Files\ProSiteFinder\ProSiteFinder.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Creata Mail - {9FEA5BDA-695A-417B-AA31-B54A06570053} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\en-us\msntb.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\en-us\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [inCD] C:\Program Files\ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [iRiver Updater] \Updater.exe
O4 - HKLM\..\Run: [ijrbbpd] C:\WINDOWS\ptcore.exe
O4 - HKLM\..\Run: [6f9b7p4h] C:\WINDOWS\system32\6f9b7p4h.exe
O4 - HKLM\..\Run: [ProSiteFinder] C:\Program Files\ProSiteFinder\prositefinder.exe
O4 - HKLM\..\Run: [Juvvth] C:\Program Files\Zsov\Ldjgj.exe
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [sSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
O4 - HKLM\..\Run: [indexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe
O4 - HKLM\..\Run: [setDefPrt] C:\Program Files\Brother\Brmfl04a\BrStDvPt.exe
O4 - HKLM\..\Run: [ControlCenter2.0] C:\Program Files\Brother\ControlCenter2\brctrcen.exe /autorun
O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Eraser] C:\Program Files\Eraser\eraser.exe -hide
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Status Monitor.lnk = C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: RaptisoftGameLoader - http://www.miniclip.com/hamsterball/raptisoftgameloader.cab
O16 - DPF: {15AD6789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://static.windupdates.com/cab/WebsiteA.../bridge-c11.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://www.popcap.com/games/popcaploader_v6.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: Brother Popup Suspend service for Resource manager (brmfrmps) - Unknown owner - C:\WINDOWS\system32\Brmfrmps.exe" -service (file missing)
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\system32\brsvc01a.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
Once again, please, anybody, I am in desperate need of help.
-
Please download Brute Force Uninstaller©Merijn.
Unzip it to it’s own folder (c:\BFU)
RIGHT-CLICK HERE and choose "Save As" (in IE it's "Save Target As") in order to download Alcra Remover. Save it in the folder you made earlier (c:\BFU).
Open My Computer and navigate to the c:\BFU folder. Start the Brute Force Uninstaller by doubleclicking BFU.exe
In the scriptline to execute field copy and paste c:\bfu\p2pnetwork.bfu
Press execute and let it do it’s job.
Wait for the complete script execution box to pop up and press OK.
Press exit to terminate the BFU program.
Then please run HijackThis, click Scan, and check the following:
O4 - HKLM\..\Run: [winupdates] C:\Program Files\winupdates\winupdates.exe /auto
Close all open windows and click Fix Checked.
Then post a new Hijackthis log here in a reply.
I did all of that, but O4 - HKLM\..\Run: [winupdates] C:\Program Files\winupdates\winupdates.exe /auto
isn't there.
Here is the new logfile, I didn't delete anything from the scan.
Logfile of HijackThis v1.99.1
Scan saved at 6:33:08 PM, on 2/3/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\system32\Brmfrmps.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ahead\InCD\InCD.exe
C:\Updater.exe
C:\Program Files\Zsov\Ldjgj.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
C:\Program Files\Brother\ControlCenter2\brctrcen.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
C:\Program Files\Brother\Brmfcmon\BrMfcmon.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ca/
R3 - Default URLSearchHook is missing
O2 - BHO: (no name) - {00000000-0000-4B86-A4DB-CA1824CB05A2} - C:\Program Files\ProSiteFinder\ProSiteFinder.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Creata Mail - {9FEA5BDA-695A-417B-AA31-B54A06570053} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-us\msntb.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-us\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [inCD] C:\Program Files\ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [Compaq Service Drivers] navapqwa.exe
O4 - HKLM\..\Run: [iRiver Updater] \Updater.exe
O4 - HKLM\..\Run: [ijrbbpd] C:\WINDOWS\ptcore.exe
O4 - HKLM\..\Run: [6f9b7p4h] C:\WINDOWS\system32\6f9b7p4h.exe
O4 - HKLM\..\Run: [ProSiteFinder] C:\Program Files\ProSiteFinder\prositefinder.exe
O4 - HKLM\..\Run: [Juvvth] C:\Program Files\Zsov\Ldjgj.exe
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [sSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
O4 - HKLM\..\Run: [indexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe
O4 - HKLM\..\Run: [setDefPrt] C:\Program Files\Brother\Brmfl04a\BrStDvPt.exe
O4 - HKLM\..\Run: [ControlCenter2.0] C:\Program Files\Brother\ControlCenter2\brctrcen.exe /autorun
O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\RunServices: [Compaq Service Drivers] navapqwa.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Compaq Service Drivers] navapqwa.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\RunServices: [Compaq Service Drivers] navapqwa.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Status Monitor.lnk = C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: RaptisoftGameLoader - http://www.miniclip.com/hamsterball/raptisoftgameloader.cab
O16 - DPF: {15AD6789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://static.windupdates.com/cab/WebsiteA.../bridge-c11.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://www.popcap.com/games/popcaploader_v6.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: Brother Popup Suspend service for Resource manager (brmfrmps) - Unknown owner - C:\WINDOWS\system32\Brmfrmps.exe" -service (file missing)
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\system32\brsvc01a.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
-
Ok, I ran Ad-Aware and I have the worm Win32.P2P-Worm.Alcan.A
So I downloaded HijackThis and saved my log. Here it is:
Logfile of HijackThis v1.99.1
Scan saved at 1:59:23 PM, on 2/3/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\system32\Brmfrmps.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\ahead\InCD\InCD.exe
C:\Updater.exe
C:\Program Files\Zsov\Ldjgj.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
C:\Program Files\Brother\ControlCenter2\brctrcen.exe
C:\Program Files\winupdates\winupdates.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
C:\Program Files\Brother\Brmfcmon\BrMfcmon.exe
C:\Program Files\LimeWire\LimeWire.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.ca/
R3 - Default URLSearchHook is missing
O2 - BHO: (no name) - {00000000-0000-4B86-A4DB-CA1824CB05A2} - C:\Program Files\ProSiteFinder\ProSiteFinder.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Creata Mail - {9FEA5BDA-695A-417B-AA31-B54A06570053} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-us\msntb.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.3000.1001\en-us\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [inCD] C:\Program Files\ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [Compaq Service Drivers] navapqwa.exe
O4 - HKLM\..\Run: [iRiver Updater] \Updater.exe
O4 - HKLM\..\Run: [ijrbbpd] C:\WINDOWS\ptcore.exe
O4 - HKLM\..\Run: [6f9b7p4h] C:\WINDOWS\system32\6f9b7p4h.exe
O4 - HKLM\..\Run: [ProSiteFinder] C:\Program Files\ProSiteFinder\prositefinder.exe
O4 - HKLM\..\Run: [Juvvth] C:\Program Files\Zsov\Ldjgj.exe
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [sSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
O4 - HKLM\..\Run: [indexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe
O4 - HKLM\..\Run: [setDefPrt] C:\Program Files\Brother\Brmfl04a\BrStDvPt.exe
O4 - HKLM\..\Run: [ControlCenter2.0] C:\Program Files\Brother\ControlCenter2\brctrcen.exe /autorun
O4 - HKLM\..\Run: [winupdates] C:\Program Files\winupdates\winupdates.exe /auto
O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\RunServices: [Compaq Service Drivers] navapqwa.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Compaq Service Drivers] navapqwa.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\RunServices: [Compaq Service Drivers] navapqwa.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Status Monitor.lnk = C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: RaptisoftGameLoader - http://www.miniclip.com/hamsterball/raptisoftgameloader.cab
O16 - DPF: {15AD6789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://static.windupdates.com/cab/WebsiteA.../bridge-c11.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://www.popcap.com/games/popcaploader_v6.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: Brother Popup Suspend service for Resource manager (brmfrmps) - Unknown owner - C:\WINDOWS\system32\Brmfrmps.exe" -service (file missing)
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\system32\brsvc01a.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
I Need Help, Really Bad. File From Limewire.
in Malware Removal
Posted
It says, 'PendingFileRenameOperations Registry Data has been removed by External Process!'
Umm. Yeah.
I clicked 'ok' and the window that had popped up, closed.
Nothing else happened, so I just closed Killbox.
Any other ideas?