DDS (Version 1.0) - NTFSx86 Run by [removed] at 9:32:07.45 on Thu 04/12/2008 Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.991.166 [GMT 0:00] ============== Running Processes =============== C:\WINDOWS\system32\svchost -k DcomLaunch svchost.exe C:\WINDOWS\System32\svchost.exe -k netsvcs svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\WINDOWS\System32\svchost.exe -k HTTPFilter C:\Program Files\Kontiki\KService.exe C:\Program Files\Common Files\LightScribe\LSSrvc.exe C:\WINDOWS\system32\nvsvc32.exe C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe C:\WINDOWS\system32\HPZipm12.exe C:\WINDOWS\system32\svchost.exe -k imgsvc C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe C:\WINDOWS\system32\mqsvc.exe C:\WINDOWS\system32\mqtgsvc.exe C:\WINDOWS\system32\ctfmon.exe C:\PROGRA~1\TRENDM~1\INTERN~1\PccGuide.exe C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\WINDOWS\system32\LVCOMSX.EXE C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe C:\Program Files\Kontiki\KHost.exe C:\PROGRA~1\HPQ\Shared\HPQTOA~1.EXE C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe C:\Program Files\Skype\Phone\Skype.exe C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\Program Files\TomTom HOME 2\HOMERunner.exe C:\Program Files\Trend Micro\Internet Security 2007\TMAS_OE\TMAS_OEMon.exe C:\Program Files\Windows Media Player\WMPNSCFG.exe C:\Program Files\Shrink Pic\shrink_pic.exe C:\Program Files\Skype\Plugin Manager\SkypePM.exe C:\PROGRA~1\FREEDO~1\fdm.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Outlook Express\msimn.exe C:\PROGRA~1\TRENDM~1\INTERN~1\PcScnSrv.exe C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe C:\Downloads\dds.scr ============== Pseudo HJT Report =============== uStart Page = hxxp://www.google.co.uk/ uSearch Page = hxxp://www.google.com uSearch Bar = hxxp://www.google.com/ie mSearch Page = uInternet Settings,ProxyOverride = localhost;*.local mSearchAssistant = hxxp://www.google.com/ie BHO: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll BHO: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre1.6.0_07\bin\ssv.dll BHO: {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - c:\program files\google\googletoolbarnotifier\3.1.807.1746\swg.dll BHO: {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - c:\program files\free download manager\iefdm2.dll TB: {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - c:\program files\canon\easy-webprint\Toolband.dll TB: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll TB: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll uRun: [Skype] "c:\program files\skype\phone\Skype.exe" /nosplash /minimized uRun: [swg] c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe uRun: [TomTomHOME.exe] "c:\program files\tomtom home 2\HOMERunner.exe" uRun: [OE] "c:\program files\trend micro\internet security 2007\tmas_oe\TMAS_OEMon.exe" uRun: [kdx] c:\program files\kontiki\KHost.exe -all uRun: [WMPNSCFG] c:\program files\windows media player\WMPNSCFG.exe uRun: [BitTorrent DNA] "c:\program files\dna\btdna.exe" uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe mRun: [hpWirelessAssistant] "c:\program files\hpq\hp wireless assistant\HP Wireless Assistant.exe" mRun: [NvCplDaemon] "RUNDLL32.EXE" c:\windows\system32\NvCpl.dll,NvStartup mRun: [MsmqIntCert] regsvr32 /s mqrt.dll mRun: [SynTPEnh] "c:\program files\synaptics\syntp\SynTPEnh.exe" mRun: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start mRun: [Cpqset] c:\program files\hewlett-packard\default settings\cpqset.exe mRun: [RecGuard] c:\windows\sminst\RecGuard.exe mRun: [Reminder] c:\windows\creator\Remind_XP.exe mRun: [PHIME2002ASync] "c:\windows\system32\ime\tintlgnt\TINTSETP.EXE" /SYNC mRun: [PHIME2002A] "c:\windows\system32\ime\tintlgnt\TINTSETP.EXE" /IMEName mRun: [LVCOMSX] c:\windows\system32\LVCOMSX.EXE mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe mRun: [Google Desktop Search] "c:\program files\google\google desktop search\GoogleDesktop.exe" /startup mRun: [ISUSPM Startup] "c:\progra~1\common~1\instal~1\update~1\ISUSPM.exe" -startup mRun: [ISUSScheduler] "c:\program files\common files\installshield\updateservice\issch.exe" -start mRun: [SunJavaUpdateSched] "c:\program files\java\jre1.6.0_07\bin\jusched.exe" mRun: [RegistryMechanic] mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 8.0\reader\Reader_sl.exe" mRun: [pccguide.exe] "c:\program files\trend micro\internet security 2007\pccguide.exe" mRun: [SsAAD.exe] c:\progra~1\sony\sonics~1\SsAAD.exe mRun: [kdx] "c:\program files\kontiki\KHost.exe" -all mRun: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k mRun: [4oD] "c:\program files\kontiki\KHost.exe" -all mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe" mExplorerRun: [Policies Options] StartupFolder: c:\docume~1\simonw~1\startm~1\programs\startup\shrink~1.lnk - c:\program files\shrink pic\shrink_pic.exe IE: Download all with Free Download Manager - file://c:\program files\free download manager\dlall.htm IE: Download selected with Free Download Manager - file://c:\program files\free download manager\dlselected.htm IE: Download video with Free Download Manager - file://c:\program files\free download manager\dlfvideo.htm IE: Download with Free Download Manager - file://c:\program files\free download manager\dllink.htm IE: E&xport to Microsoft Excel - c:\progra~1\micros~4\office11\EXCEL.EXE/3000 IE: Easy-WebPrint Add To Print List - c:\program files\canon\easy-webprint\Resource.dll/RC_AddToList.html IE: Easy-WebPrint High Speed Print - c:\program files\canon\easy-webprint\Resource.dll/RC_HSPrint.html IE: Easy-WebPrint Preview - c:\program files\canon\easy-webprint\Resource.dll/RC_Preview.html IE: Easy-WebPrint Print - c:\program files\canon\easy-webprint\Resource.dll/RC_Print.html IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0_07\bin\ssv.dll IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~4\office11\REFIEBAR.DLL IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe LSP: c:\progra~1\whalec~1\client~1\31265d~1.0\WhlLSP.dll Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL Notify: WRNotifier - WRLogonNTF.dll AppInit_DLLs: c:\progra~1\google\google~4\GOEC62~1.DLL SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll ============= SERVICES / DRIVERS =============== R2 Tmntsrv;Trend Micro Real-time Service;c:\progra~1\trendm~1\intern~1\Tmntsrv.exe [2006-8-25 503808] R2 TmPfw;Trend Micro Personal Firewall;c:\progra~1\trendm~1\intern~1\TmPfw.exe [2006-8-24 933949] R2 Tmpreflt;Tmpreflt;c:\windows\system32\drivers\Tmpreflt.sys [2006-8-16 36368] R2 tmproxy;Trend Micro Proxy Service;c:\progra~1\trendm~1\intern~1\tmproxy.exe [2006-8-24 561220] R3 tmcfw;Trend Micro Common Firewall Service;c:\windows\system32\drivers\TM_CFW.sys [2006-8-24 281600] R3 whlva;Whale Network Connector;c:\windows\system32\drivers\whlva.sys [2008-6-15 20248] S3 DMService;Whale Component Manager;c:\windows\downlo~1\conflict.1\DMService.exe [2008-6-15 423576] S3 GoogleDesktopManager-061008-081103;Google Desktop Manager 5.7.806.10245;"c:\program files\google\google desktop search\GoogleDesktop.exe" [2008-3-18 29744] S3 whliocsv;Whale Network Connector Client;c:\program files\whale communications\client components\3.1.0\whliocsv.exe [2008-6-15 134808] =============== Created Last 30 ================ 2008-12-02 22:11 --d----- c:\program files\iPod 2008-12-02 22:11 --d----- c:\docume~1\alluse~1\applic~1\{3276BE95_AF08_429F_A64F_CA64CB79BCF6} 2008-12-02 19:57 --d----- c:\windows\pss 2008-11-29 14:46 0 a------- c:\windows\system32\wtP1uim3.exe.a_a 2008-11-29 14:46 135,684 a------- c:\windows\system32\msxml71.dll 2008-11-23 15:52 --d----- c:\docume~1\simonw~1\applic~1\DNA 2008-11-13 00:55 455,296 -------- c:\windows\system32\dllcache\mrxsmb.sys 2008-11-13 00:54 1,106,944 -------- c:\windows\system32\dllcache\msxml3.dll 2008-11-06 21:02 --d----- c:\docume~1\alluse~1\applic~1\Citrix 2008-11-06 21:01 61,480 a------- c:\documents and settings\simon wade\GoToAssistDownloadHelper.exe 2008-11-04 10:30 90,112 a------- c:\windows\system32\QuickTimeVR.qtx 2008-11-04 10:30 57,344 a------- c:\windows\system32\QuickTime.qts ==================== Find3M ==================== 2008-12-04 09:31 --d----- c:\docume~1\simonw~1\applic~1\Free Download Manager 2008-12-04 09:30 --d----- c:\docume~1\alluse~1\applic~1\Kontiki 2008-12-03 19:44 --d----- c:\docume~1\simonw~1\applic~1\BitTorrent 2008-12-03 19:44 --d----- c:\program files\BitTorrent 2008-12-02 22:51 --d----- c:\docume~1\simonw~1\applic~1\shrink_pic 2008-12-02 22:12 --d----- c:\program files\iTunes 2008-11-02 18:51 --d----- c:\program files\Channel4 2008-11-02 18:50 --d----- c:\docume~1\alluse~1\applic~1\Channel4 2008-11-02 18:47 --d----- c:\program files\Kontiki 2008-10-29 18:26 --d----- c:\program files\Moleskinsoft Clone Remover 3.2.1 2008-10-25 15:06 --d----- c:\docume~1\simonw~1\applic~1\ZoomBrowser EX 2008-10-24 18:25 --d----- c:\program files\Bonjour 2008-10-16 14:13 1,809,944 a------- c:\windows\system32\dllcache\wuaueng.dll 2008-10-16 14:13 202,776 a------- c:\windows\system32\dllcache\wuweb.dll 2008-10-16 14:12 323,608 a------- c:\windows\system32\dllcache\wucltui.dll 2008-10-16 14:12 561,688 a------- c:\windows\system32\dllcache\wuapi.dll 2008-10-16 14:09 92,696 a------- c:\windows\system32\dllcache\cdm.dll 2008-10-16 14:09 51,224 a------- c:\windows\system32\dllcache\wuauclt.exe 2008-10-16 14:08 34,328 a------- c:\windows\system32\dllcache\wups.dll 2008-10-16 14:06 268,648 a------- c:\windows\system32\mucltui.dll 2008-10-16 14:06 208,744 a------- c:\windows\system32\muweb.dll 2008-10-15 16:34 337,408 -------- c:\windows\system32\dllcache\netapi32.dll 2008-10-03 17:41 6,066,176 -------- c:\windows\system32\dllcache\ieframe.dll 2008-09-30 16:43 1,286,152 a------- c:\windows\system32\msxml4.dll 2008-09-15 12:12 1,846,400 a------- c:\windows\system32\win32k.sys 2008-09-15 12:12 1,846,400 -------- c:\windows\system32\dllcache\win32k.sys 2008-09-10 01:14 1,307,648 -------- c:\windows\system32\msxml6.dll 2008-09-10 01:14 1,307,648 -------- c:\windows\system32\dllcache\msxml6.dll 2008-09-08 10:41 333,824 -------- c:\windows\system32\dllcache\srv.sys 2008-09-05 23:30 241,704 -------- c:\windows\system32\dllcache\wgaLogon.dll 2008-09-05 23:29 917,032 -------- c:\windows\system32\dllcache\WgaTray.exe 2008-08-03 19:20 --d----- c:\docume~1\alluse~1\applic~1\Sky 2008-07-27 20:02 --d----- c:\docume~1\simonw~1\applic~1\Genie-Soft 2008-06-24 21:13 --d----- c:\docume~1\alluse~1\applic~1\Documents 2008-04-29 20:39 --d----- c:\docume~1\alluse~1\applic~1\Trend Micro 2008-03-30 16:09 --d----- c:\docume~1\alluse~1\applic~1\FreeDownloadManager.ORG 2008-03-24 10:28 --d----- c:\docume~1\alluse~1\applic~1\TomTom 2008-03-24 10:26 --d----- c:\docume~1\simonw~1\applic~1\TomTom 2008-03-21 22:01 --d----- c:\docume~1\simonw~1\applic~1\BinarySense 2008-03-21 21:13 --d----- c:\docume~1\simonw~1\applic~1\MSNInstaller 2008-03-21 20:56 --d----- c:\docume~1\simonw~1\applic~1\TuneUp Software 2008-03-21 20:56 --d----- c:\docume~1\alluse~1\applic~1\TuneUp Software 2008-03-16 08:44 --d----- c:\docume~1\simonw~1\applic~1\Skinux 2008-02-24 11:00 --d----- c:\docume~1\alluse~1\applic~1\ZoomBrowser 2007-12-15 09:38 --d----- c:\docume~1\simonw~1\applic~1\funkitron 2007-11-17 05:40 --d----- c:\docume~1\simonw~1\applic~1\EAST Technologies 2007-04-07 11:26 --d----- c:\docume~1\simonw~1\applic~1\CD-LabelPrint 2007-01-24 08:54 --d----- c:\docume~1\alluse~1\applic~1\Sony Corporation 2007-01-22 09:02 --d----- c:\docume~1\alluse~1\applic~1\SSScanWizard 2007-01-22 09:02 --d----- c:\docume~1\alluse~1\applic~1\SSScanAppDataDir 2007-01-21 11:41 --d----- c:\docume~1\simonw~1\applic~1\Wildfire 2007-01-20 04:17 --d----- c:\docume~1\simonw~1\applic~1\FotoWire 2007-01-09 10:06 --d----- c:\docume~1\alluse~1\applic~1\Symantec 2007-01-06 11:11 --d----- c:\docume~1\alluse~1\applic~1\Oberon Media 2006-08-23 11:23 --d----- c:\docume~1\alluse~1\applic~1\SBSI 2008-08-17 19:07 32,768 a--sh--- c:\windows\system32\config\systemprofile\local settings\history\history.ie5\mshist012008081720080818\index.dat ============= FINISH: 9:32:58.62 ===============