. DDS (Ver_2011-08-26.01) - NTFSAMD64 Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_31 Run by Dawid at 12:19:30 on 2012-04-22 . ============== Running Processes =============== . . ============== Pseudo HJT Report =============== . uStart Page = hxxp://searchya.com/?chnl=dcom-100&s=0&cr=84974242&cd=2XzutAtN2Y1L1QzutN0D0TzutBtDtCtBtDtAtByD uURLSearchHooks: uTorrentBar Toolbar: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\tbuTor.dll mURLSearchHooks: uTorrentBar Toolbar: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\tbuTor.dll mWinlogon: Userinit=userinit.exe BHO: HP Print Enhancer: {0347c33e-8762-4905-bf09-768834316c61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll BHO: HP Smart Print BHO: {1658d3a1-9e13-4196-a82a-d70d70880f36} - C:\Program Files (x86)\Hewlett-Packard\SmartPrint\QuickPrintBHO.dll BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll BHO: Ironsource LTD Helper Object: {25927741-5e5b-4d27-8d8b-9188fe64373f} - C:\Program Files (x86)\Ironsource\searchya\1.5.13.0\bh\searchya.dll BHO: CescrtHlpr Object: {2eecd738-5844-4a99-b4b6-146bf802613b} - C:\Program Files (x86)\BabylonToolbar\BabylonToolbar\1.4.19.5\bh\BabylonToolbar.dll BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll BHO: Conduit Engine: {30f9b915-b755-4826-820b-08fba6bd249d} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLL BHO: Java(tm) Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll BHO: Skype Plug-In: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll BHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL BHO: uTorrentBar Toolbar: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\tbuTor.dll BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll BHO: HP Smart BHO Class: {ffffffff-cf4e-4f2b-bdc2-0e72e116a856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll TB: Babylon Toolbar: {98889811-442d-49dd-99d7-dc866be87dbc} - C:\Program Files (x86)\BabylonToolbar\BabylonToolbar\1.4.19.5\BabylonToolbarTlbr.dll TB: uTorrentBar Toolbar: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\tbuTor.dll TB: Conduit Engine: {30f9b915-b755-4826-820b-08fba6bd249d} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll TB: SearchYa Toolbar: {33aa308b-b565-4376-ac66-59ee9b6ad13e} - C:\Program Files (x86)\Ironsource\searchya\1.5.13.0\searchyaTlbr.dll EB: HP Smart Web Printing: {555d4d79-4bd2-4094-a395-cfc534424a05} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_bho.dll uRun: [RGSC] E:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\MACROE~1.LNK - C:\Program Files (x86)\Macro Express3\MacExp.exe mPolicies-explorer: NoActiveDesktop = 1 (0x1) mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1) mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3) mPolicies-system: EnableUIADesktopToggle = 0 (0x0) IE: E&ksportuj do programu Microsoft Excel - C:\PROGRA~2\MICROS~3\Office14\EXCEL.EXE/3000 IE: Wyślij &do programu OneNote - C:\PROGRA~2\MICROS~3\Office14\ONBttnIE.dll/105 IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll IE: {DDE87865-83C5-48c4-8357-2F5B1AA84522} - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab TCP: DhcpNameServer = 94.251.160.14 192.168.0.1 TCP: Interfaces\{E16232B9-E0D9-4177-8C7F-C4602086BD2F} : DhcpNameServer = 94.251.160.14 192.168.0.1 Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLL . ================= FIREFOX =================== . FF - ProfilePath - . ============= SERVICES / DRIVERS =============== . . =============== Created Last 30 ================ . 2012-04-21 22:43:24 -------- d-----w- C:\Windows\System32\appmgmt 2012-04-20 14:04:35 -------- d-----w- C:\Users\Dawid\AppData\Local\GG 2012-04-20 13:12:31 -------- d-----w- C:\Program Files (x86)\Mozilla_Firefox 2012-04-17 08:48:38 -------- d-----w- C:\Program Files (x86)\Common Files\Symantec Shared 2012-04-16 09:48:39 67376 ----a-w- C:\Windows\SysWow64\SYSINFO.OCX 2012-04-16 09:48:39 152848 ----a-w- C:\Windows\SysWow64\Comdlg32.ocx 2012-04-16 09:48:39 -------- d-----w- C:\Program Files (x86)\Easy Macro Recorder 2012-04-16 09:45:47 -------- d-----w- C:\Users\Dawid\AppData\Roaming\Easy Macro Recorder 2012-04-14 12:44:36 8741536 ----a-w- C:\Windows\SysWow64\FlashPlayerInstaller.exe 2012-04-08 12:35:13 476904 ----a-w- C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll 2012-04-07 23:26:52 -------- d-----w- C:\Users\Dawid\AppData\Roaming\GetRightToGo 2012-04-07 23:06:31 -------- d-----w- C:\ProgramData\Insight Software Solutions 2012-04-07 23:06:23 -------- d-----w- C:\Program Files (x86)\Common Files\Insight Software Solutions 2012-04-07 23:06:21 -------- d-----w- C:\Program Files (x86)\Macro Express3 2012-04-07 22:48:12 -------- d-----w- C:\Users\Dawid\AppData\Local\IsolatedStorage 2012-04-01 12:06:21 69448 ----a-w- C:\Windows\SysWow64\XAPOFX1_3.dll 2012-04-01 12:06:21 517448 ----a-w- C:\Windows\SysWow64\XAudio2_4.dll 2012-04-01 12:06:21 4178264 ----a-w- C:\Windows\SysWow64\D3DX9_41.dll 2012-04-01 12:06:21 235352 ----a-w- C:\Windows\SysWow64\xactengine3_4.dll 2012-04-01 12:06:21 22360 ----a-w- C:\Windows\SysWow64\X3DAudio1_6.dll 2012-03-30 15:09:29 -------- d-----w- C:\ProgramData\Symantec 2012-03-30 15:09:28 -------- d-----w- C:\Windows\System32\drivers\NSSx64\0307010.004 2012-03-30 15:09:28 -------- d-----w- C:\Windows\System32\drivers\NSSx64 2012-03-30 15:09:28 -------- d-----w- C:\Program Files (x86)\Norton Security Scan 2012-03-30 15:09:26 -------- d-----w- C:\Program Files (x86)\NortonInstaller 2012-03-30 13:10:52 70304 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl 2012-03-30 13:10:52 418464 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe 2012-03-30 13:08:56 -------- d-----w- C:\Windows\SysWow64\Adobe 2012-03-25 02:26:11 -------- d-----w- C:\Program Files (x86)\Damian Pasternak 2012-03-25 02:15:25 -------- d-----w- C:\Users\Dawid\AppData\Roaming\Macro Recorder 2012-03-25 02:15:07 -------- d-----w- C:\Users\Dawid\AppData\Local\Deployment 2012-03-25 02:15:07 -------- d-----w- C:\Users\Dawid\AppData\Local\Apps 2012-03-25 02:09:04 -------- d-----w- C:\Users\Dawid\AppData\Roaming\WinMacro 2012-03-25 01:57:09 -------- d-----w- C:\Program Files (x86)\Free Labs . ==================== Find3M ==================== . 2012-04-21 22:38:05 25640 ----a-w- C:\Windows\gdrv.sys 2012-04-08 12:35:07 472808 ----a-w- C:\Windows\SysWow64\deployJava1.dll 2012-03-20 15:06:40 5632 ----a-w- C:\Windows\SysWow64\rjlb.dll.old 2012-03-20 15:06:40 206848 ----a-w- C:\Windows\SysWow64\ws2_32.dll . ============= FINISH: 12:19:42,16 ===============