User User name Password  
   
Monday 3.3.2025 / 23:49
Search AfterDawn Forums:        In English   Suomeksi   På svenska
afterdawn.com > forums > software, operating systems and more > windows - virus and spyware problems > google pages keep redirecting
Show topics
 
Forums
Forums
google pages keep redirecting
  Jump to:
 
Posted Message
speedmon
Newbie
_
11. November 2009 @ 16:37 _ Link to this message    Send private message to this user   
I've followed all the steps laid out in a previous thread http://forums.afterdawn.com/thread_view.cfm/735477
but I still keep getting redirected. Here is my log from Combofix if anyone can help. Thanks

ComboFix 09-11-11.02 - Antonio 11/11/2009 15:10.1.4 - NTFSx86
Microsoft Windows 7 Ultimate 6.1.7600.0.1252.1.1033.18.3070.1654 [GMT -5:00]
Running from: c:\users\Antonio\Downloads\ComboFix.exe
SP: Spybot - Search and Destroy *disabled* (Updated) {ED588FAF-1B8F-43B4-ACA8-8E3C85DADBE9}
SP: SUPERAntiSpyware *disabled* (Updated) {222A897C-5018-402e-943F-7E7AC8560DA7}
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\users\Antonio\AppData\Local\Temp\swtlib-32\swt-gdip-win32-3550.dll
c:\users\Antonio\AppData\Local\Temp\swtlib-32\swt-win32-3550.dll
c:\users\Antonio\AppData\Roaming\inst.exe

.
((((((((((((((((((((((((( Files Created from 2009-10-11 to 2009-11-11 )))))))))))))))))))))))))))))))
.

2009-11-11 20:18 . 2009-11-11 20:18 -------- d-----w- c:\users\Default\AppData\Local\temp
2009-11-11 04:24 . 2009-11-11 04:24 117760 ----a-w- c:\users\Antonio\AppData\Roaming\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL
2009-11-11 04:24 . 2009-11-11 04:24 -------- d-----w- c:\programdata\SUPERAntiSpyware.com
2009-11-11 04:24 . 2009-11-11 04:24 5120 ----a-r- c:\users\Antonio\AppData\Roaming\Microsoft\Installer\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}\IconCDDCBBF16.exe
2009-11-11 04:24 . 2009-11-11 04:24 65024 ----a-r- c:\users\Antonio\AppData\Roaming\Microsoft\Installer\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}\IconCDDCBBF15.exe
2009-11-11 04:24 . 2009-11-11 04:24 18944 ----a-r- c:\users\Antonio\AppData\Roaming\Microsoft\Installer\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}\IconCDDCBBF13.exe
2009-11-11 04:23 . 2009-11-11 04:24 4096 d-----w- c:\program files\SUPERAntiSpyware
2009-11-11 04:23 . 2009-11-11 04:23 -------- d-----w- c:\users\Antonio\AppData\Roaming\SUPERAntiSpyware.com
2009-11-11 04:23 . 2009-11-11 04:23 -------- d-----w- c:\program files\Common Files\Wise Installation Wizard
2009-11-10 23:49 . 2009-11-10 23:49 -------- d-----w- c:\users\Antonio\AppData\Roaming\Malwarebytes
2009-11-10 23:49 . 2009-09-10 19:54 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-11-10 23:49 . 2009-11-10 23:49 4096 d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-11-10 23:49 . 2009-11-10 23:49 -------- d-----w- c:\programdata\Malwarebytes
2009-11-10 23:49 . 2009-09-10 19:53 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-11-10 03:38 . 2009-11-10 03:38 -------- d-----w- c:\programdata\DVD Shrink
2009-11-10 03:38 . 2009-11-10 03:38 4096 d-----w- c:\program files\DVD Shrink
2009-11-08 05:00 . 2009-11-08 05:00 546624 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll
2009-11-07 00:16 . 2009-11-07 00:33 -------- d-----w- c:\users\Antonio\AppData\Roaming\ImgBurn
2009-11-06 02:33 . 2009-11-06 02:33 -------- d-----w- c:\programdata\CopyPod
2009-11-06 02:33 . 2009-11-06 02:33 -------- d-----w- c:\program files\CopyPod
2009-11-06 01:47 . 2009-11-06 01:47 -------- d-----w- c:\program files\Common Files\eSellerate
2009-11-04 04:20 . 2009-11-04 04:20 -------- d-----w- c:\users\Antonio\AppData\Roaming\CopyPod
2009-11-04 04:17 . 2009-11-04 04:20 -------- d-----w- c:\program files\WindSolutions
2009-11-04 02:44 . 2009-11-06 03:06 -------- d-----w- c:\users\Antonio\Shared
2009-11-04 02:44 . 2009-11-06 03:22 -------- d-----w- c:\users\Antonio\Incomplete
2009-11-04 02:44 . 2009-11-08 20:08 -------- d-----w- c:\users\Antonio\AppData\Roaming\LimeWire
2009-11-03 19:07 . 2009-11-03 19:07 -------- d-----w- c:\programdata\eMule
2009-11-03 08:03 . 2009-11-03 08:03 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
2009-11-03 08:00 . 2009-11-03 08:00 -------- d-sh--w- c:\windows\system32\%APPDATA%
2009-11-03 04:33 . 2009-11-03 04:33 -------- d-----w- c:\users\Antonio\AppData\Local\matt.malensek.net
2009-11-03 04:31 . 2009-11-03 04:31 4096 d-----w- c:\program files\3RVX
2009-11-03 04:27 . 2009-11-05 01:55 -------- d-----w- c:\program files\KenMazaika
2009-11-03 04:27 . 2009-11-03 04:27 -------- d-----w- c:\programdata\KenMazaika
2009-11-03 00:03 . 2006-10-27 00:56 32592 ----a-w- c:\windows\system32\msonpmon.dll
2009-11-03 00:02 . 2009-11-10 06:55 -------- d-----w- c:\program files\Microsoft Works
2009-11-03 00:01 . 2009-11-03 00:01 -------- d-----w- c:\program files\Microsoft.NET
2009-11-02 23:59 . 2009-11-02 23:59 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2009-11-02 23:59 . 2009-11-02 23:59 -------- d-----w- c:\users\Antonio\AppData\Local\Microsoft Help
2009-11-02 23:59 . 2009-11-11 19:54 -------- d-----w- c:\programdata\Microsoft Help
2009-11-02 23:58 . 2009-11-02 23:58 -------- d-----r- C:\MSOCache
2009-11-02 23:39 . 2009-11-11 07:58 -------- d-----w- c:\users\Antonio\AppData\Roaming\dvdcss
2009-11-02 20:51 . 2009-11-02 21:01 -------- d-----w- c:\programdata\NOS
2009-11-02 20:51 . 2009-11-02 20:51 -------- d-----w- c:\program files\NOS
2009-11-02 20:50 . 2009-09-23 21:37 34112 ----a-w- c:\users\Antonio\AppData\Roaming\Mozilla\Firefox\Profiles\go0jyaie.default\extensions\{E2883E8F-472F-4fb0-9522-AC9BF37916A7}\chrome\content\getPlusPlus_Adobe_reg_bootstrap.exe
2009-11-02 20:50 . 2009-09-23 21:37 32448 ----a-w- c:\users\Antonio\AppData\Roaming\Mozilla\Firefox\Profiles\go0jyaie.default\extensions\{E2883E8F-472F-4fb0-9522-AC9BF37916A7}\plugins\np_gp.dll
2009-11-02 20:50 . 2009-09-23 21:37 22352 ----a-w- c:\users\Antonio\AppData\Roaming\Mozilla\Firefox\Profiles\go0jyaie.default\extensions\{E2883E8F-472F-4fb0-9522-AC9BF37916A7}\chrome\content\getPlusPlus_Adobe_reg.exe
2009-11-02 20:40 . 2009-11-10 23:28 4096 d-----w- c:\program files\SpywareBlaster
2009-11-02 20:40 . 2005-08-26 00:18 118784 ----a-w- c:\windows\system32\MSSTDFMT.DLL
2009-11-02 20:38 . 2009-11-10 23:28 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2009-11-02 20:38 . 2009-11-02 20:39 8192 d-----w- c:\program files\Spybot - Search & Destroy
2009-11-02 20:35 . 2009-11-06 03:53 4096 d-----w- c:\program files\LimeWire
2009-11-02 20:35 . 2009-11-04 02:43 -------- d-----w- c:\users\Antonio\AppData\Roaming\Apple Computer
2009-11-02 20:35 . 2009-05-18 19:17 26600 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
2009-11-02 20:35 . 2008-04-17 18:12 107368 ----a-w- c:\windows\system32\GEARAspi.dll
2009-11-02 20:35 . 2009-11-02 20:35 -------- dc----w- c:\windows\system32\DRVSTORE
2009-11-02 20:34 . 2009-11-02 20:34 -------- d-----w- c:\program files\iPod
2009-11-02 20:34 . 2009-11-02 20:35 4096 d-----w- c:\program files\iTunes
2009-11-02 20:34 . 2009-11-02 20:35 -------- d-----w- c:\programdata\{755AC846-7372-4AC8-8550-C52491DAA8BD}
2009-11-02 20:34 . 2009-11-02 20:35 -------- d-----w- c:\users\Antonio\AppData\Roaming\Vso
2009-11-02 20:34 . 2009-11-02 20:34 47360 ----a-w- c:\windows\system32\drivers\pcouffin.sys
2009-11-02 20:34 . 2009-11-02 20:34 47360 ----a-w- c:\users\Antonio\AppData\Roaming\pcouffin.sys
2009-11-02 20:34 . 2009-11-02 20:34 4096 d-----w- c:\program files\DVDFab 6
2009-11-02 20:34 . 2009-11-02 20:34 -------- d-----w- c:\program files\Bonjour
2009-11-02 20:33 . 2009-11-02 20:33 4096 d-----w- c:\program files\QuickTime
2009-11-02 20:33 . 2009-11-02 20:34 -------- d-----w- c:\programdata\Apple Computer
2009-11-02 20:33 . 2009-11-02 20:33 4096 d-----w- c:\program files\Apple Software Update
2009-11-02 20:33 . 2009-11-02 20:34 -------- d-----w- c:\program files\Common Files\Apple
2009-11-02 20:33 . 2009-11-02 20:33 -------- d-----w- c:\programdata\Apple
2009-11-02 20:31 . 2009-11-02 20:31 4096 d-----w- c:\program files\ImgBurn
2009-11-02 20:30 . 2009-11-03 19:07 -------- d-----w- c:\users\Antonio\AppData\Local\eMule
2009-11-02 20:30 . 2009-11-02 20:30 4096 d-----w- c:\program files\eMule
2009-11-02 20:29 . 2009-11-02 20:29 -------- d-----w- c:\program files\Xvid
2009-11-02 20:29 . 2009-06-07 21:24 180224 ----a-w- c:\windows\system32\xvidvfw.dll
2009-11-02 20:29 . 2009-06-07 21:16 819200 ----a-w- c:\windows\system32\xvidcore.dll
2009-11-02 20:28 . 2009-11-02 20:28 4096 d-----w- c:\program files\DivX
2009-11-02 20:28 . 2009-11-02 20:28 4096 d-----w- c:\program files\Common Files\DivX Shared
2009-11-02 20:27 . 2009-11-02 20:27 -------- d-----w- c:\program files\CCleaner
2009-11-02 20:24 . 2009-11-02 20:24 -------- d-----w- c:\program files\Smart Projects
2009-11-02 20:21 . 2009-11-11 08:05 -------- d-----w- c:\users\Antonio\AppData\Roaming\vlc
2009-11-02 20:21 . 2009-11-02 20:21 -------- d-----w- c:\program files\VideoLAN
2009-11-02 20:05 . 2009-11-11 20:21 -------- d-----w- c:\users\Antonio\Tracing
2009-11-02 20:04 . 2009-11-02 20:04 -------- d-----w- c:\program files\Microsoft
2009-11-02 20:03 . 2009-11-02 20:03 -------- d-----w- c:\program files\Windows Live SkyDrive
2009-11-02 20:03 . 2009-11-02 20:04 4096 d-----w- c:\program files\Windows Live
2009-11-02 20:03 . 2009-11-02 20:03 -------- d-----w- c:\windows\PCHEALTH
2009-11-02 20:01 . 2009-11-02 20:01 -------- d-----w- c:\program files\Common Files\Windows Live
2009-11-02 19:26 . 2009-11-02 19:26 -------- d-----w- c:\users\Antonio\AppData\Local\ElevatedDiagnostics
2009-11-02 19:12 . 2009-11-11 20:18 16384 d-----w- c:\users\Antonio\AppData\Roaming\Azureus
2009-11-02 19:12 . 2009-11-02 19:12 -------- d-----w- c:\programdata\Azureus
2009-11-02 19:12 . 2009-11-02 19:12 4096 d-----w- c:\program files\Vuze
2009-11-02 19:11 . 2009-11-02 19:11 411368 ----a-w- c:\windows\system32\deploytk.dll
2009-11-02 19:11 . 2009-11-02 19:11 -------- d-----w- c:\program files\Java
2009-11-02 18:05 . 2009-11-02 18:05 -------- d-----w- c:\program files\PlayReady
2009-11-02 17:46 . 2009-11-02 17:46 -------- d-----w- c:\program files\CONEXANT
2009-11-02 17:45 . 2009-11-02 17:45 -------- d-----w- c:\windows\system32\RTCOM
2009-11-02 17:45 . 2009-11-02 17:45 -------- d-----w- c:\program files\Realtek
2009-11-02 17:45 . 2009-10-02 04:06 728648 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2009-11-02 17:45 . 2009-09-03 07:04 1320960 ----a-w- c:\windows\system32\CertEnroll.dll
2009-11-02 17:45 . 2009-08-29 06:54 12625408 ----a-w- c:\windows\system32\wmploc.DLL
2009-11-02 17:45 . 2009-08-19 07:20 442920 ----a-w- c:\windows\system32\winresume.exe
2009-11-02 17:45 . 2009-08-19 07:20 507568 ----a-w- c:\windows\system32\winload.exe
2009-11-02 17:45 . 2009-08-03 05:35 2613248 ----a-w- c:\windows\explorer.exe
2009-11-02 17:45 . 2009-07-30 16:29 108544 ----a-w- c:\windows\system32\t2embed.dll
2009-11-02 17:45 . 2009-07-30 16:27 71168 ----a-w- c:\windows\system32\fontsub.dll
2009-11-02 17:45 . 2009-07-30 04:44 293888 ----a-w- c:\windows\system32\atmfd.dll
2009-11-02 17:37 . 2009-11-02 20:51 -------- d-----w- c:\windows\system32\Macromed
2009-11-02 17:25 . 2009-11-02 17:25 -------- d-----w- c:\programdata\UAB
2009-11-02 17:25 . 2009-11-02 17:25 -------- d-----w- c:\programdata\PC Drivers HeadQuarters
2009-11-02 17:25 . 2009-11-10 21:19 108824 ----a-w- c:\users\Antonio\AppData\Local\GDIPFONTCACHEV1.DAT
2009-11-02 16:49 . 2009-11-11 19:54 28672 d-sh--w- c:\windows\Installer
2009-11-02 16:44 . 2009-11-02 16:44 737072 ----a-w- c:\programdata\Microsoft\eHome\Packages\SportsV2\SportsTemplateCore\Microsoft.MediaCenter.Sports.UI.dll
2009-11-02 16:44 . 2009-11-02 16:44 3605256 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll
2009-11-02 16:44 . 2009-11-02 16:44 547632 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2009-11-02 16:33 . 2009-11-02 16:33 -------- d-----w- c:\users\Antonio\AppData\Local\Mozilla
2009-11-02 16:18 . 2009-11-11 07:11 -------- d-----w- c:\windows\system32\wbem\Performance
2009-10-29 01:58 . 2009-10-29 01:58 79144 ----a-w- c:\programdata\Apple Computer\Installer Cache\iTunes 9.0.2.25\SetupAdmin.exe
2009-10-14 10:50 . 2009-11-02 18:55 4096 d-----w- c:\windows\Panther
2009-10-14 09:58 . 2009-11-03 01:42 195456 ------w- c:\windows\system32\MpSigStub.exe
2009-10-14 09:58 . 2009-09-10 05:52 257024 ----a-w- c:\windows\system32\msv1_0.dll
2009-10-14 09:57 . 2009-08-29 06:57 34816 ----a-w- c:\windows\system32\msasn1.dll

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-11-03 00:01 . 2009-07-14 04:52 -------- d-----w- c:\program files\MSBuild
2009-11-02 18:53 . 2009-11-02 18:53 0 ---ha-w- c:\windows\system32\drivers\Msft_User_WpdFs_01_09_00.Wdf
2009-11-02 16:11 . 2009-11-02 16:11 -------- d-sh--we c:\programdata\Templates
2009-11-02 16:11 . 2009-11-02 16:11 -------- d-sh--we c:\programdata\Start Menu
2009-11-02 16:11 . 2009-11-02 16:11 -------- d-sh--we c:\programdata\Favorites
2009-11-02 16:11 . 2009-11-02 16:11 -------- d-sh--we c:\programdata\Documents
2009-11-02 16:11 . 2009-11-02 16:11 -------- d-sh--we c:\programdata\Desktop
2009-09-25 16:41 . 2009-09-25 16:41 90112 ----a-w- c:\windows\system32\dpl100.dll
2009-09-25 16:41 . 2009-09-25 16:41 856064 ----a-w- c:\windows\system32\divx_xx0c.dll
2009-09-25 16:41 . 2009-09-25 16:41 856064 ----a-w- c:\windows\system32\divx_xx07.dll
2009-09-25 16:41 . 2009-09-25 16:41 847872 ----a-w- c:\windows\system32\divx_xx0a.dll
2009-09-25 16:41 . 2009-09-25 16:41 843776 ----a-w- c:\windows\system32\divx_xx16.dll
2009-09-25 16:41 . 2009-09-25 16:41 839680 ----a-w- c:\windows\system32\divx_xx11.dll
2009-09-25 16:41 . 2009-09-25 16:41 696320 ----a-w- c:\windows\system32\DivX.dll
2009-08-18 04:33 . 2009-08-18 04:33 1193832 ----a-w- c:\windows\system32\FM20.DLL
2009-09-25 16:41 . 2009-09-25 16:41 1044480 ----a-w- c:\program files\mozilla firefox\plugins\libdivx.dll
2009-09-25 16:41 . 2009-09-25 16:41 200704 ----a-w- c:\program files\mozilla firefox\plugins\ssldivx.dll
2009-06-10 21:26 . 2009-07-14 02:04 9633792 --sha-r- c:\windows\Fonts\StaticCache.dat
2009-07-14 01:14 . 2009-07-13 23:42 396800 --sha-w- c:\windows\winsxs\x86_microsoft-windows-mail-app_31bf3856ad364e35_6.1.7600.16385_none_f12e83abb108c86c\WinMail.exe
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"msnmsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2009-07-26 3883856]
"3RVX"="c:\program files\3RVX\3RVX.exe" [2008-10-14 159232]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-11-02 149280]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-09-05 417792]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2009-10-29 141600]
"GrooveMonitor"="c:\program files\Microsoft Office\Office12\GrooveMonitor.exe" [2008-10-25 31072]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 0 (0x0)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableLUA"= 0 (0x0)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-09-03 20:21 548352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv

R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\sasdifsv.sys [10/12/2009 9:24 PM 9968]
R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [10/12/2009 9:24 PM 74480]
R1 vwififlt;Virtual WiFi Filter Driver;c:\windows\System32\drivers\vwififlt.sys [7/13/2009 6:52 PM 48128]
R2 HsfXAudioService;HsfXAudioService;c:\windows\system32\svchost.exe -k HsfXAudioService [7/13/2009 6:19 PM 20992]
R2 SBSDWSCService;SBSD Security Center Service;c:\program files\Spybot - Search & Destroy\SDWinSec.exe [11/2/2009 3:38 PM 1153368]
R3 hcw18bda;Hauppauge WinTV 418 Driver;c:\windows\System32\drivers\hcw18bda.sys [5/28/2009 3:46 PM 391296]
R3 netr73;RT73 USB Extensible Wireless LAN Card Driver;c:\windows\System32\drivers\netr73.sys [5/20/2009 8:47 AM 552960]
S3 getPlusHelper;getPlus(R) Helper;c:\windows\System32\svchost.exe -k getPlusHelper [7/13/2009 6:19 PM 20992]
S3 SASENUM;SASENUM;c:\program files\SUPERAntiSpyware\SASENUM.SYS [10/12/2009 9:24 PM 7408]
S3 VST_DPV;VST_DPV;c:\windows\System32\drivers\VSTDPV3.SYS [7/13/2009 5:13 PM 980992]
S3 VSTHWBS2;VSTHWBS2;c:\windows\System32\drivers\VSTBS23.SYS [7/13/2009 5:13 PM 266752]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
HsfXAudioService REG_MULTI_SZ HsfXAudioService
getPlusHelper REG_MULTI_SZ getPlusHelper
.
.
------- Supplementary Scan -------
.
uInternet Settings,ProxyOverride = *.local
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
FF - ProfilePath - c:\users\Antonio\AppData\Roaming\Mozilla\Firefox\Profiles\go0jyaie.default\
FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll
FF - plugin: c:\users\Antonio\AppData\Roaming\Mozilla\Firefox\Profiles\go0jyaie.default\extensions\{E2883E8F-472F-4fb0-9522-AC9BF37916A7}\plugins\np_gp.dll

---- FIREFOX POLICIES ----
c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
.
- - - - ORPHANS REMOVED - - - -

HKLM-Run-VolumeOSD - c:\program files\KenMazaika\VolumeOSD\VolumeOSD.exe


.
--------------------- LOCKED REGISTRY KEYS ---------------------

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\windows\system32\taskhost.exe
c:\windows\system32\conhost.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\program files\iPod\bin\iPodService.exe
c:\program files\Windows Live\Contacts\wlcomm.exe
c:\\?\c:\windows\system32\wbem\WMIADAP.EXE
.
**************************************************************************
.
Completion time: 2009-11-11 15:24 - machine was rebooted
ComboFix-quarantined-files.txt 2009-11-11 20:24

Pre-Run: 208,207,777,792 bytes free
Post-Run: 208,204,152,832 bytes free

- - End Of File - - E870996AC9FF4EFD4F5E6744D1E1CA1F
afterdawn.com > forums > software, operating systems and more > windows - virus and spyware problems > google pages keep redirecting
 

Digital video: AfterDawn.com | AfterDawn Forums
Music: MP3Lizard.com
Gaming: Blasteroids.com | Blasteroids Forums | Compare game prices
Software: Software downloads
Blogs: User profile pages
RSS feeds: AfterDawn.com News | Software updates | AfterDawn Forums
International: AfterDawn in Finnish | AfterDawn in Swedish | AfterDawn in Norwegian | download.fi
Navigate: Search | Site map
About us: About AfterDawn Ltd | Advertise on our sites | Rules, Restrictions, Legal disclaimer & Privacy policy
Contact us: Send feedback | Contact our media sales team
 
  © 1999-2025 by AfterDawn Ltd.

  IDG TechNetwork