arsenal_fan
Topic Starter
Hi,
My OS is Windows Vista Home Premium These days very often when I click on links in forums using Firefox 3.6.13 it redirects to random ad sites and does not display the page. I manually copy the link location and then edit it to remove redirection after which I can get the site to load. Is there a firefox setting that I have enabled which causes this to happen or is my PC infected? The performance of my PC is fine and I generally don't have performance issues other than redirection. Could someone analyze the DDS logs for me please? Thanks.
—————————–
DDS.txt
—————————–
.
DDS (Ver_09-06-26.01) - NTFSx86
Run by [removed] at 23:54:25.94 on Sun 01/16/2011
Internet Explorer: 9.0.7930.16406
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.1.1033.18.2037.852 [GMT -5:00]
AV: Symantec Endpoint Protection *On-access scanning disabled* (Updated) {FB06448E-52B8-493A-90F3-E43226D3305C}
AV: Norton Internet Security *On-access scanning enabled* (Updated) {E10A9785-9598-4754-B552-92431C1C35F8}
SP: Symantec Endpoint Protection *disabled* (Updated) {6C85A515-B91D-4D2B-AF18-40984A4A8493}
SP: Lavasoft Ad-Watch Live! *disabled* (Updated) {67844DAE-4F77-4D69-9457-98E8CFFDAA22}
SP: Windows Defender *disabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
SP: Norton Internet Security *enabled* (Updated) {CBB7EE13-8244-4DAB-8B55-D5C7AA91E59A}
FW: Norton Internet Security *enabled* {7C21A4C9-F61F-4AC4-B722-A6E19C16F220}
============== Running Processes ===============
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Program Files\BitDefender\BitDefender 2011\vsserv.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\Citrix\GoToMyPC\g2svc.exe
C:\Windows\system32\svchost.exe -k hpdevmgmt
C:\Program Files\Common Files\Motive\McciCMService.exe
C:\Program Files\Citrix\GoToMyPC\g2comm.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\Citrix\GoToMyPC\g2pre.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\Program Files\BitDefender\BitDefender 2011\updatesrv.exe
C:\Windows\system32\DRIVERS\xaudio.exe
C:\Program Files\Citrix\GoToMyPC\g2tray.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\BitDefender\BitDefender 2011\bdagent.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\BitDefender\BitDefender 2011\pchooklaunch32.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Winamp\winamp.exe
C:\Program Files\Winamp\Elevator.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\BitDefender\BitDefender 2011\downloader.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Users\test\Desktop\PC Cleaning Software\dds.scr
============== Pseudo HJT Report ===============
uStart Page = hxxp://www.bing.com/
mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=73&bd=Pavilion&pf=laptop
mDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=73&bd=Pavilion&pf=laptop
uURLSearchHooks: H - No File
BHO: {02478D38-C3F9-4efb-9B51-7695ECA05670} - No File
BHO: HP Print Enhancer: {0347c33e-8762-4905-bf09-768834316c61} - c:\program files\hp\digital imaging\smart web printing\hpswp_printenhancer.dll
BHO: {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - No File
BHO: Bookmark Buddy Helper: {c6ceac32-d45c-11d4-94af-0050babd5fd6} - c:\program files\bookmark buddy\UrlOrgIE.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: {FCBCCB87-9224-4B8D-B117-F56D924BEB18} - No File
BHO: HP Smart BHO Class: {ffffffff-cf4e-4f2b-bdc2-0e72e116a856} - c:\program files\hp\digital imaging\smart web printing\hpswp_BHO.dll
TB: &Windows Live Toolbar: {21fa44ef-376d-4d53-9b0f-8a89d3229068} - c:\program files\windows live\toolbar\wltcore.dll
TB: {0C8413C1-FAD1-446C-8584-BE50576F863E} - No File
TB: BitDefender Toolbar: {381ffde8-2394-4f90-b10d-fc6124a40f8c} - c:\program files\bitdefender\bitdefender 2011\IEToolbar.dll
TB: {31CF9EBE-5755-4A1D-AC25-2834D952D9B4} - No File
TB: {61D1C847-DF80-423A-8C6D-DC03B97E6EBE} - No File
EB: HP Smart Web Printing: {555d4d79-4bd2-4094-a395-cfc534424a05} - c:\program files\hp\digital imaging\smart web printing\hpswp_bho.dll
mRun: [BitDefender Antiphishing Helper] "c:\program files\bitdefender\bitdefender 2011\ieshow.exe"
mRun: [BDAgent] "c:\program files\bitdefender\bitdefender 2011\bdagent.exe"
mRun: []
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
mRunOnce: ["c:\windows\system32\cmd.exe"] "c:\windows\system32\cmd.exe" /c "rmdir /s /q "c:\program files\jv16 PowerTools 2010""
uPolicies-explorer: NoFavoritesMenu = 1 (0x1)
uPolicies-explorer: NoSMHelp = 1 (0x1)
uPolicies-explorer: NoFind = 1 (0x1)
mPolicies-explorer: BindDirectlyToPropertySetStorage = 0 (0x0)
mPolicies-explorer: NoResolveTrack = 1 (0x1)
mPolicies-explorer: NoFileAssociate = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
mPolicies-system: NoDispSettingsPage = 0 (0x0)
IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office12\EXCEL.EXE/3000
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~3\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~3\office12\REFIEBAR.DLL
IE: {DDE87865-83C5-48c4-8357-2F5B1AA84522} - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - c:\program files\hp\digital imaging\smart web printing\hpswp_BHO.dll
DPF: {3860DD98-0549-4D50-AA72-5D17D200EE10} - hxxp://cdn.scan.onecare.live.com/resource/download/scanner/en-US/wlscctrl2.cab
DPF: {3EA4FA88-E0BE-419A-A732-9B79B87A6ED0} - hxxp://dl.tvunetworks.com/TVUAx.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll
Notify: igfxcui - igfxdev.dll
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
================= FIREFOX ===================
FF - ProfilePath - c:\users\test\appdata\roaming\mozilla\firefox\profiles\7xeov8pp.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.bing.com
FF - component: c:\program files\bitdefender\bitdefender 2011\bdaphffext\components\bdaphff3.6.dll
FF - component: c:\program files\bitdefender\bitdefender 2011\bdaphffext\components\bdaphff3.dll
FF - plugin: c:\program files\common files\motive\npMotive.dll
FF - plugin: c:\program files\google\update\1.2.183.39\npGoogleOneClick8.dll
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npCouponPrinter.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npdeployJava1.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npMozCouponPrinter.dll
FF - plugin: c:\program files\veetle\player\npvlc.dll
FF - plugin: c:\program files\veetle\plugins\npVeetle.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
FF - plugin: c:\users\test\appdata\local\google\update\1.2.183.39\npGoogleOneClick8.dll
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
—- FIREFOX POLICIES —-
c:\program files\mozilla firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("media.enforce_same_site_origin", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("media.cache_size", 51200);
c:\program files\mozilla firefox\greprefs\all.js - pref("media.ogg.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("media.wave.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("media.autoplay.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.urlbar.autocomplete.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("capability.policy.mailnews.*.wholeText", "noAccess");
c:\program files\mozilla firefox\greprefs\all.js - pref("dom.storage.default_quota", 5120);
c:\program files\mozilla firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\mozilla firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.http.prompt-temp-redirect", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.lu", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.nu", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.nz", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn–mgbaam7a8h", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn–fiqz9s", true); // Traditional
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn–fiqs8s", true); // Simplified
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn–j6w193g", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn–mgba3a4f16a", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn–mgba3a4fra", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn–mgbayh7gpa", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn–p1ai", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn–mgberp4a5d4ar", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn–mgberp4a5d4a87g", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn–mgbqly7c0a67fbc", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn–mgbqly7cvafr", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn–kpry57d", true); // Traditional
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn–kprw13d", true); // Simplified
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.tel", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.proxy.type", 5);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.buffer.cache.count", 24);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.buffer.cache.size", 4096);
c:\program files\mozilla firefox\greprefs\all.js - pref("layout.css.dpi", -1);
c:\program files\mozilla firefox\greprefs\all.js - pref("layout.css.devPixelsPerPx", "-1");
c:\program files\mozilla firefox\greprefs\all.js - pref("gestures.enable_single_finger_input", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("dom.ipc.plugins.timeoutSecs", 45);
c:\program files\mozilla firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.tcp.sendbuffer", 131072);
c:\program files\mozilla firefox\greprefs\all.js - pref("geo.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("accelerometer.enabled", true);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pr
ef", true);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.remember_cert_checkbox_default_setting", true);
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr", "moz35");
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-cjkt", "moz35"); // now unused
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("extensions.blocklist.level", 2);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.urlbar.delay", 50);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.urlbar.restrict.typed", "~");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.urlbar.default.behavior", 0);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.history", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.formdata", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.passwords", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.downloads", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.cookies", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.cache", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.sessions", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.offlineApps", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.clearOnShutdown.siteSettings", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.history", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.formdata", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.passwords", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.downloads", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.cookies", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.cache", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.sessions", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.offlineApps", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.cpd.siteSettings", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("privacy.sanitize.migrateFx3Prefs", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.ssl_override_behavior", 2);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("security.alternate_certificate_error_page", "certerror");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.privatebrowsing.autostart", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.privatebrowsing.dont_prompt_on_enter", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("geo.wifi.uri", "https://www.google.com/loc/json");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.nptest.dll", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npswf32.dll", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npctrl.dll", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npqtplugin.dll", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
============= SERVICES / DRIVERS ===============
R1 Bdfndisf;BitDefender Firewall NDIS 6 Filter Driver;c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys [2010-6-18 72784]
R1 VBoxDrv;VirtualBox Service;c:\windows\system32\drivers\VBoxDrv.sys [2010-10-5 143184]
R1 VBoxUSBMon;VirtualBox USB Monitor Driver;c:\windows\system32\drivers\VBoxUSBMon.sys [2010-10-5 41936]
R2 {22D78859-9CE9-4B77-BF18-AC83E81A9263};Power Control [2010/12/04 19:45:41];c:\program files\hp\quickplay\000.fcl [2010-12-4 87536]
R2 NPF;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2010-6-25 35088]
R2 Updatesrv;BitDefender Desktop Update Service;c:\program files\bitdefender\bitdefender 2011\updatesrv.exe [2010-6-29 43424]
R3 BazisVirtualCDBus;WinCDEmu Virtual Bus Driver;c:\windows\system32\drivers\BazisVirtualCDBus.sys [2010-4-6 98400]
R3 BDFM;BDFM;c:\windows\system32\drivers\bdfm.sys [2010-5-13 152528]
R3 FontCache;Windows Font Cache Service;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [2008-9-17 21504]
R3 NETw5v32;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit;c:\windows\system32\drivers\NETw5v32.sys [2009-11-17 4247552]
R3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\drivers\VBoxNetAdp.sys [2010-8-5 100496]
R3 VBoxNetFlt;VBoxNetFlt Service;c:\windows\system32\drivers\VBoxNetFlt.sys [2010-8-5 111312]
S3 BrlAPI;BrlAPI;c:\cygwin\bin\cygrunsrv.exe –> c:\cygwin\bin\cygrunsrv.exe [?]
S3 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr.sys [2009-2-21 55280]
S3 fsssvc;Windows Live Family Safety;c:\program files\windows live\family safety\fsssvc.exe [2009-2-6 533360]
S3 ServiceEmulation;HP ServiceEmulation;"c:\program files\hp\loadrunner\apache-tomcat-5.5.17\bin\tomcat5.exe" //rs//serviceemulation –> c:\program files\hp\loadrunner\apache-tomcat-5.5.17\bin\tomcat5.exe [?]
S3 tap0901;TAP-Win32 Adapter V9;c:\windows\system32\drivers\tap0901.sys [2010-8-20 26112]
S3 Update Server;BitDefender Update Server v2;c:\program files\common files\bitdefender\bitdefender arrakis server\bin\arrakis3.exe [2010-6-29 307544]
S3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\drivers\wdcsam.sys [2008-5-6 11520]
S4 avc3;avc3;c:\windows\system32\drivers\avc3.sys [2010-6-28 633424]
S4 avckf;avckf;c:\windows\system32\drivers\avckf.sys [2010-6-28 970320]
S4 gupdate;Google Update Service (gupdate);c:\program files\google\update\GoogleUpdate.exe [2010-2-10 133104]
S4 msvsmon80;Visual Studio 2005 Remote Debugger;"c:\program files\microsoft visual studio 8\common7\ide\remote debugger\x86\msvsmon.exe" /service msvsmon80 –> c:\program files\microsoft visual studio 8\common7\ide\remote debugger\x86\msvsmon.exe [?]
S4 SeaPort;SeaPort;"c:\program files\microsoft\search enhancement pack\seaport\seaport.exe" –> c:\program files\microsoft\search enhancement pack\seaport\SeaPort.exe [?]
SUnknown WPFFontCache_v0400;WPFFontCache_v0400; [x]
=============== Created Last 30 ================
2011-01-16 15:56 22 a–sh— c:\windows\Sys3390 SettingsCollection.bin
2011-01-16 15:56 22 a–sh— c:\users\test\appdata\roaming\Sys6925.Config Collection.sys
2011-01-16 15:56 –d—– c:\program files\jv16 PowerTools 2010
2011-01-16 15:12 1,493,528 a——- c:\windows\system32\D3DCompiler_39.dll
2011-01-16 15:12 467,984 a——- c:\windows\system32\d3dx10_39.dll
2011-01-16 15:12 3,851,784 a——- c:\windows\system32\D3DX9_39.dll
2011-01-16 15:11 –d—– c:\programdata\PassMark
2011-01-16 15:11 –d—– c:\progra~2\PassMark
2011-01-15 21:03 413,696 a——- c:\windows\system32\odbc32.dll
2011-01-15 21:03 1,169,408 a——- c:\windows\system32\sdclt.exe
2011-01-15 08:41 341,461,206 a——- c:\windows\MEMORY.DMP
2011-01-13 18:33 558 ——– c:\windows\hpomdl37.dat.temp
2011-01-10 23:45 0 a—h— c:\windows\system32\drivers\Msft_Kernel_WinUSB_01007.Wdf
2011-01-10 23:39 –d—– c:\users\test\.android
2011-01-10 23:38 –d—– c:\program files\Android
2011-01-07 21:17 –d—– c:\users\test\appdata\roaming\pdftoepub
2011-01-02 16:54 –d—– c:\users\test\appdata\roaming\HpUpdate
2011-01-02 16:52 –d—– c:\program files\Coupons
2011-01-02 16:51 –d—– c:\programdata\HP Photo Creations
2011-01-02 16:51 –d—– c:\program files\HP Photo Creations
2011-01-02 16:51 –d—– c:\progra~2\HP Photo Creations
2011-01-02 16:50 –d—– c:\programdata\HP Product Assistant
2011-01-02 16:42 –d—– c:\program files\common files\Hewlett-Packard
2011-01-02 16:41 271,704 a——- c:\windows\system32\hpzids01.dll
2011-01-02 16:41 121,344 a——- c:\windows\system32\hpf3l083.dll
2011-01-02 16:40 737,280 a——- c:\windows\system32\hposwia_d02a.dll
2011-01-02 16:40 598,016 a——- c:\windows\system32\hpost_d02a.dll
2011-01-02 16:40 372,736 a——- c:\windows\system32\hppldcoi.dll
2011-01-02 16:40 307,200 a——- c:\windows\system32\hposc_d02a.dll
2011-01-02 16:34 171,868 a——- c:\windows\hpoins37.dat
2010-12-28 14:23 16 a——- c:\windows\system32\asdict.dat
2010-12-28 12:09 –d—– c:\programdata\bdch
2010-12-28 12:09 –d—– c:\progra~2\bdch
2010-12-28 10:28 308,152 a——- c:\windows\system32\drivers\trufos.sys
2010-12-28 10:28 327,368 a——- c:\windows\system32\drivers\bdfsfltr.sys
2010-12-28 09:18 2,381,824 a——- c:\windows\system32\mshtml.tlb
2010-12-28 09:18 1,448,448 a——- c:\windows\system32\inetcpl.cpl
2010-12-28 04:54 –d—– C:\bd_logs
2010-12-26 21:34 48,128 a——- c:\windows\system32\simple.exe
2010-12-26 21:34 646 a——- c:\windows\system32\simple.obj
2010-12-26 21:33 93 a——- c:\windows\system32\simple.c
2010-12-25 23:01 –d—– c:\program files\Veetle
2010-12-22 20:26 –d—– c:\program files\Symantec
2010-12-21 08:22 52 a——- c:\windows\system32\ashttpstats.csv
2010-12-20 21:57 385 a——- c:\windows\system32\user_gensett.xml
2010-12-20 21:52 –d—– c:\users\test\appdata\roaming\BitDefender
2010-12-20 21:50 –d—– c:\program files\BitDefender
2010-12-20 21:44 –d—– c:\users\test\appdata\roaming\QuickScan
2010-12-20 21:44 –d—– c:\program files\common files\BitDefender
2010-12-20 21:44 –d—– c:\programdata\BitDefender
2010-12-20 21:44 –d—– c:\progra~2\BitDefender
2010-12-20 18:42 367,104 a——- c:\windows\system32\html.iec
2010-12-20 18:40 1,174,528 a——- c:\windows\system32\d3d10warp.dll
2010-12-20 18:40 1,068,032 a——- c:\windows\system32\DWrite.dll
2010-12-20 18:40 979,456 a——- c:\windows\system32\MFH264Dec.dll
2010-12-20 18:40 797,184 a——- c:\windows\system32\FntCache.dll
2010-12-20 18:40 680,960 a——- c:\windows\system32\d2d1.dll
2010-12-20 18:40 357,376 a——- c:\windows\system32\MFHEAACdec.dll
2010-12-20 18:40 302,592 a——- c:\windows\system32\mfmp4src.dll
2010-12-20 18:40 280,064 a——- c:\windows\system32\XpsGdiConverter.dll
2010-12-20 18:40 261,632 a——- c:\windows\system32\mfreadwrite.dll
2010-12-20 18:40 219,648 a——- c:\windows\system32\d3d10_1core.dll
2010-12-20 18:40 161,280 a——- c:\windows\system32\d3d10_1.dll
2010-12-20 18:40 135,680 a——- c:\windows\system32\XpsRasterService.dll
2010-12-20 18:39 –d—– c:\program files\Feedback Tool
2010-12-18 00:23 3,786,760 a——- c:\windows\system32\D3DX9_37.dll
2010-12-18 00:23 3,727,720 a——- c:\windows\system32\d3dx9_35.dll
2010-12-18 00:23 3,497,832 a——- c:\windows\system32\d3dx9_34.dll
==================== Find3M ====================
2011-01-10 23:45 143,360 a——- c:\windows\inf\infstrng.dat
2011-01-10 23:45 51,200 a——- c:\windows\inf\infpub.dat
2011-01-10 23:45 143,360 a——- c:\windows\inf\infstor.dat
2011-01-10 23:34 472,808 a——- c:\windows\system32\deployJava1.dll
2011-01-10 23:31 581,192 a——- c:\windows\system32\WinUSBCoInstaller.dll
2011-01-10 23:31 1,112,288 a——- c:\windows\system32\WdfCoInstaller01007.dll
2010-12-28 11:07 72,784 a——- c:\windows\system32\drivers\bdfndisf6.sys
2010-12-20 18:09 38,224 a——- c:\windows\system32\drivers\mbamswissarmy.sys
2010-12-20 18:08 20,952 a——- c:\windows\system32\drivers\mbam.sys
2010-12-12 15:49 959 a——- C:\ReBoot-Time.vbs
2010-12-09 18:39 7,053,264 a——- c:\users\test\gosetup.exe
2010-11-11 20:31 1,062,984 a——- c:\users\test\gotomypc_540.exe
2010-11-04 13:56 345,600 a——- c:\windows\system32\wmicmiplugin.dll
2010-11-04 13:55 352,768 a——- c:\windows\system32\taskschd.dll
2010-11-04 13:55 270,336 a——- c:\windows\system32\taskcomp.dll
2010-11-04 13:55 601,600 a——- c:\windows\system32\schedsvc.dll
2010-11-04 11:34 171,520 a——- c:\windows\system32\taskeng.exe
2010-10-28 10:44 34,304 a——- c:\windows\system32\atmlib.dll
2010-10-28 08:27 292,352 a——- c:\windows\system32\atmfd.dll
2010-10-28 08:20 2,048 a——- c:\windows\system32\tzres.dll
2010-10-19 10:41 222,080 ——– c:\windows\system32\MpSigStub.exe
2010-08-10 13:01 72,080 a——- c:\users\test\g2mdlhlpx.exe
2010-03-29 18:40 100,256 a——- c:\program files\common files\LinkInstaller.exe
2009-11-06 01:38 665,600 a——- c:\windows\inf\drvindex.dat
2009-02-13 22:43 81 a——- c:\users\test\CTX.DAT
2008-10-19 04:25 174 a–sh— c:\program files\desktop.ini
2008-10-18 15:19 13,336,096 a——- c:\users\test\IE8-WindowsVista-x86-ENU.exe
2008-10-02 14:52 92,448 a——- c:\users\test\appdata\roaming\GDIPFONTCACHEV1.DAT
2006-11-02 07:42 287,440 a——- c:\windows\inf\perflib\0409\perfi.dat
2006-11-02 07:42 287,440 a——- c:\windows\inf\perflib\0409\perfh.dat
2006-11-02 07:42 30,674 a——- c:\windows\inf\perflib\0409\perfd.dat
2006-11-02 07:42 30,674 a——- c:\windows\inf\perflib\0409\perfc.dat
2006-11-02 04:20 287,440 a——- c:\windows\inf\perflib\0000\perfi.dat
2006-11-02 04:20 287,440 a——- c:\windows\inf\perflib\0000\perfh.dat
2006-11-02 04:20 30,674 a——- c:\windows\inf\perflib\0000\perfd.dat
2006-11-02 04:20 30,674 a——- c:\windows\inf\perflib\0000\perfc.dat
2010-02-04 14:42 16,384 a–sh— c:\windows\serviceprofiles\localservice\appdata\local\temp\cookies\index.dat
2010-02-04 14:42 16,384 a–sh— c:\windows\serviceprofiles\localservice\appdata\local\temp\history\history.ie5\index.dat
2010-02-04 14:42 32,768 a–sh— c:\windows\serviceprofiles\localservice\appdata\local\temp\temporary internet files\content.ie5\index.dat
2010-08-13 01:29 262,144 a–sh— c:\windows\serviceprofiles\localservice\appdata\roaming\microsoft\windows\ietldcache\index.dat
============= FINISH: 23:57:11.82 ===============
==================================================================
Attach.txt
==================================================================
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
DDS (Ver_09-06-26.01)
Microsoft® Windows Vista™ Home Premium
Boot Device: \Device\HarddiskVolume1
Install Date: 7/20/2007 8:28:46 PM
System Uptime: 1/16/2011 1:02:16 PM (10 hours ago)
Motherboard: Quanta | | 30BB
Processor: Intel® Core™ Duo CPU T2450 @ 2.00GHz | U2E1 | 2000/533mhz
==== Disk Partitions =========================
C: is FIXED (NTFS) - 141 GiB total, 48.727 GiB free.
D: is FIXED (NTFS) - 8 GiB total, 1.327 GiB free.
E: is CDROM ()
==== Disabled Device Manager Items =============
Class GUID: {4d36e972-e325-11ce-bfc1-08002be10318}
Description: Teefer2 Miniport
Device ID: ROOT\SYMC_TEEFER2MP\0003
Manufacturer: Symantec
Name: WAN Miniport (Network Monitor) - Teefer2 Miniport
PNP Device ID: ROOT\SYMC_TEEFER2MP\0003
Service: Teefer2
Class GUID: {4d36e972-e325-11ce-bfc1-08002be10318}
Description: Teefer2 Miniport
Device ID: ROOT\SYMC_TEEFER2MP\0004
Manufacturer: Symantec
Name: Intel® PRO/Wireless 3945ABG Network Connection - Teefer2 Miniport
PNP Device ID: ROOT\SYMC_TEEFER2MP\0004
Service: Teefer2
Class GUID: {4d36e972-e325-11ce-bfc1-08002be10318}
Description: Teefer2 Miniport
Device ID: ROOT\SYMC_TEEFER2MP\0005
Manufacturer: Symantec
Name: Intel® PRO/100 VE Network Connection - Teefer2 Miniport
PNP Device ID: ROOT\SYMC_TEEFER2MP\0005
Service: Teefer2
Class GUID: {4d36e972-e325-11ce-bfc1-08002be10318}
Description: Teefer2 Miniport
Device ID: ROOT\SYMC_TEEFER2MP\0006
Manufacturer: Symantec
Name: WAN Miniport (IP) - Teefer2 Miniport
PNP Device ID: ROOT\SYMC_TEEFER2MP\0006
Service: Teefer2
Class GUID: {4d36e972-e325-11ce-bfc1-08002be10318}
Description: Teefer2 Miniport
Device ID: ROOT\SYMC_TEEFER2MP\0007
Manufacturer: Symantec
Name: WAN Miniport (IPv6) - Teefer2 Miniport
PNP Device ID: ROOT\SYMC_TEEFER2MP\0007
Service: Teefer2
==== System Restore Points ===================
RP1041: 1/16/2011 3:11:18 PM - Installed DirectX
==== Installed Programs ======================
32 Bit HP CIO Components Installer
7-Zip 9.16 beta
Adobe AIR
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Shockwave Player
Android SDK Tools
Apple Application Support
Apple Mobile Device Support
Apple Software Update
BitDefender Internet Security 2011
Bookmark Buddy
BookMark Master v3.13
BufferChm
CCleaner
Conexant HD Audio
Copy
Coupon Printer for Windows
Crystal Reports Basic for Visual Studio 2008
Destinations
DeviceDiscovery
Dexpot
DivX Web Player
DJ_AIO_05_F4400_Software_Min
Dropbox
EA Download Manager
F4400
FIFA 10
FileZilla [removed]
Foxit PDF Editor
Foxit Reader
GoToMyPC
GPBaseService2
HDAUDIO Soft Data Fax Modem with SmartCP
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Microsoft Visual Studio 2008 Professional Edition - ENU (KB971091)
Hotfix for Microsoft Visual Studio 2008 Professional Edition - ENU (KB973674)
HP Active Support Library 32 bit components
HP Customer Participation Program 14.0
HP Deskjet F4400 Printer Driver Software 14.0 Rel. 5
HP Doc Viewer
HP DVD Play 3.7
HP Imaging Device Functions 14.0
HP Photo Creations
HP Smart Web Printing 4.60
HP Solution Center 14.0
HP Update
HP User Guides 0082
HP Wireless Assistant
HPPhotoGadget
HPProductAssistant
InfraRecorder
Intel® Graphics Media Accelerator Driver
Intel® Network Connections Drivers
IrfanView (remove only)
iTunes
Java Auto Updater
Java DB 10.5.3.0
Java™ 6 Update 23
Java™ 6 Update 7
Java™ SE Development Kit 6 Update 22
Java™ SE Development Kit 6 Update 23
Java™ SE Runtime Environment 6
K-Lite Mega Codec Pack 5.7.0
Malwarebytes' Anti-Malware
MarketResearch
Microsoft .NET Compact Framework 3.5
Microsoft .NET Framework 3.5 SP1
Microsoft Device Emulator version 3.0 - ENU
Microsoft Document Explorer 2008
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office Access MUI (English) 2007
Microsoft Office Access Setup Metadata MUI (English) 2007
Microsoft Office Enterprise 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office Groove MUI (English) 2007
Microsoft Office Groove Setup Metadata MUI (English) 2007
Microsoft Office InfoPath MUI (English) 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office SharePoint Designer 2007 Service Pack 2 (SP2)
Microsoft Office Visual Web Developer 2007
Microsoft Office Visual Web Developer MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Silverlight
Microsoft SQL Server 2005
Microsoft SQL Server 2005 Tools Express Edition
Microsoft SQL Server Compact 3.5 Design Tools ENU
Microsoft SQL Server Compact 3.5 ENU
Microsoft SQL Server Compact 3.5 for Devices ENU
Microsoft SQL Server Database Publishing Wizard 1.2
Microsoft SQL Server Native Client
Microsoft SQL Server Setup Support Files (English)
Microsoft SQL Server VSS Writer
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual Studio 2005 Tools for Office Runtime
Microsoft Visual Studio 2008 Professional Edition - ENU
Microsoft Visual Studio Web Authoring Component
Microsoft Windows SDK for Visual Studio 2008 .NET Framework Tools
Microsoft Windows SDK for Visual Studio 2008 Headers and Libraries
Microsoft Windows SDK for Visual Studio 2008 SDK Reference Assemblies and IntelliSense
Microsoft Windows SDK for Visual Studio 2008 Tools
Microsoft Windows SDK for Visual Studio 2008 Win32 Tools
Microsoft WSE 2.0 SP3 Runtime
Microsoft WSE 3.0 Runtime
Mozilla Firefox (3.6.13)
MSCU for Microsoft Vista
MSVCRT
MSXML 4.0 SP2 (KB936181)
MSXML 4.0 SP2 (KB941833)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
NVIDIA Drivers
Oracle VM VirtualBox 3.2.8
PDFCreator
PuTTY 0.60
Real Alternative 1.9.0
Scan
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)
SmartWebPrinting
SolutionCenter
SpywareBlaster 4.4
Status
Synaptics Pointing Device Driver
System Requirements Lab
Toolbox
TrayApp
TrueCrypt
Unlocker 1.9.0
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Microsoft Visual Studio 2008 Professional Edition - ENU (KB972221)
VC Runtimes MSI
Veetle TV 0.9.18
Visual C++ 2008 x86 Runtime - (v9.0.30729)
Visual C++ 2008 x86 Runtime - v9.0.30729.01
Visual Studio 2005 Tools for Office Second Edition Runtime
Visual Studio Tools for the Office system 3.0 Runtime
VLC media player 1.1.5
WebReg
Winamp
WinCDEmu
WinDjView 1.0.3
Windows Installer Clean Up
Windows Live Essentials
Windows Media Player Firefox Plugin
Windows Mobile 5.0 SDK R2 for Pocket PC
Windows Mobile 5.0 SDK R2 for Smartphone
WinPcap 4.1.2
Wireshark 1.4.0
==== Event Viewer Messages From Past Week ========
1/16/2011 1:04:17 PM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: Lbd
1/16/2011 1:04:17 PM, Error: Service Control Manager [7000] - The Parallel port driver service failed to start due to the following error: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.
1/16/2011 1:01:24 PM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the VSSERV service.
==== End Of File ===========================