Hello! My father in law has this Fujitsu Lifebook that started giving him problems.Here is what I noticed:
No shortcuts work on desktop
Most programs cant be accessed through Start Menu (though some will open through .exe files in Program Files, but not all)
Internet Explorer will open but freezes (he also has google chrome which works fine)
Cannot download Anti-Malware Program (Error Code CocreateInstance failed;code 0x80040154. Class not registered) Then will receive (run time error '372' Failed to load control 'WebBrowser' from ieframe.dll May be outdated Make sure you're using the version of the control that was provided with your application)
Was able to use Spybot which found and removed 91 adware and malware
Cannot get in to do System Restore
It said FjStrtAp.exe cannot find FjFBUCmn.dll file so cannot work ( I re-installed Fujitsu Utility which seemed to correct this error popup)
Looks like internet explorer 8 was downloaded, and installed. but when i try to update, it goes to install and freezes.
I Do not have a Boot Cd or any discs that came with the laptop. I also have posted for help on a different website Forum but it has been a few days and have not received any responses. Im hoping to get a response here and I will discontinue the other Forum.
Any help you could provide would be greatly appreciated
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 8.0.6001.18702
Run by Owner at 11:45:13 on 2013-01-06
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1014.166 [GMT -8:00]
.
AV: AVG Anti-Virus 2013 *Enabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
.
============== Running Processes ================
.
C:\Program Files\Common Files\Microsoft Shared\Ink\KeyboardSurrogate.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\ACS.exe
C:\WINDOWS\system32\agrsmsvc.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\MySQL\MySQL Server 5.1\bin\mysqld.exe
C:\Program Files\Softex\OmniPass\Omniserv.exe
C:\Program Files\Secunia\PSI\PSIA.exe
C:\Program Files\Team MediaPortal\MediaPortal TV Server\TVService.exe
C:\WINDOWS\SYSTEM32\WISPTIS.EXE
C:\WINDOWS\System32\tabbtnu.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Softex\OmniPass\OPXPApp.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files\Common Files\Microsoft Shared\Ink\TCServer.exe
C:\Program Files\AlpsPoint\ApMain.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe
C:\Program Files\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe
C:\Program Files\Fujitsu\BtnHnd\BtnHnd.exe
C:\WINDOWS\system32\igfxext.exe
C:\windows\system32\KADxMain.exe
C:\Program Files\Fujitsu\SSUtility\FJSSDMN.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\Program Files\Atheros\ACU.exe
C:\Program Files\Softex\OmniPass\scureapp.exe
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Update\1.3.21.123\GoogleCrashHandler.exe
C:\Program Files\Secunia\PSI\sua.exe
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\DfrgNtfs.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\WINDOWS\system32\DfrgNtfs.exe
C:\WINDOWS\system32\DfrgNtfs.exe
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalService
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://google.com/
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: AVG Safe Search: {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - LocalServer32 - <no file>
BHO: Spybot-S&D IE Protection: {53707962-6F74-2D53-2644-206D7942484F} - c:\program files\spybot - search & destroy\SDHelper.dll
BHO: uTorrentControl_v2 Toolbar: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - c:\program files\utorrentcontrol_v2\prxtbuTor.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre6\bin\ssv.dll
BHO: {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - <orphaned>
BHO: {B0D610BC-DC69-42B4-9CFC-910EB202DDE4} - <orphaned>
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: uTorrentControl_v2 Toolbar: {7473B6BD-4691-4744-A82B-7854EB3D70B6} - c:\program files\utorrentcontrol_v2\prxtbuTor.dll
TB: uTorrentControl_v2 Toolbar: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - c:\program files\utorrentcontrol_v2\prxtbuTor.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [Google Update] "c:\documents and settings\owner\local settings\application data\google\update\GoogleUpdate.exe" /c
mRun: [TabletWizard] c:\windows\help\SplshWrp.exe
mRun: [TabletTip] "c:\program files\common files\microsoft shared\ink\tabtip.exe" /resume
mRun: [ApMain] c:\program files\alpspoint\ApMain.exe
mRun: [igfxhkcmd] c:\windows\system32\hkcmd.exe
mRun: [igfxpers] c:\windows\system32\igfxpers.exe
mRun: [AGRSMMSG] AGRSMMSG.exe
mRun: [LoadFUJ02E3] c:\program files\fujitsu\fuj02e3\FUJ02E3.exe
mRun: [IndicatorUtility] c:\program files\fujitsu\fujitsu hotkey utility\IndicatorUty.exe
mRun: [LoadBtnHnd] c:\program files\fujitsu\btnhnd\BtnHnd.exe
mRun: [KADxMain] c:\windows\system32\KADxMain.exe
mRun: [SSUtility] c:\program files\fujitsu\ssutility\FJSSDMN.exe
mRun: [FjStrtAp] c:\program files\fujitsu\utils\FjStrtAp.exe
mRun: [ACU] "c:\program files\atheros\ACU.exe" -nogui
mRun: [OmniPass] c:\program files\softex\omnipass\scureapp.exe
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [AVG_UI] "c:\program files\avg\avg2013\avgui.exe" /TRAYONLY
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Windows\System: Allow-LogonScript-NetbiosDisabled = dword:1
mPolicies-Explorer: NoDriveTypeAutoRun = dword:145
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\program files\spybot - search & destroy\SDHelper.dll
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://windowsupdate.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1316877360039
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1343064924876
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
TCP: NameServer = 192.168.1.254
TCP: Interfaces\{4B3057DC-49B7-4DF6-802A-90D5278C3486} : DHCPNameServer = 192.168.1.254
Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - c:\program files\belarc\advisor\system\BAVoilaX.dll
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - <orphaned>
Notify: igfxcui - igfxdev.dll
Notify: loginkey - c:\program files\common files\microsoft shared\ink\loginkey.dll
Notify: OPXPGina - c:\program files\softex\omnipass\opxpgina.dll
Notify: TabBtnWL - TabBtnWL.dll
Notify: tpgwlnotify - tpgwlnot.dll
AppInit_DLLs= c:\docume~1\alluse~1\applic~1\browse~1\261040~1.25\{c16c1~1\browse~1.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - c:\program files\windows desktop search\MSNLNamespaceMgr.dll
Hosts: 127.0.0.1 Spyware Info | Spyware Info | spyware software | spyware program | protection spyware
.
============= SERVICES / DRIVERS ===============
.
R0 AVGIDSHX;AVGIDSHX;c:\windows\system32\drivers\avgidshx.sys [2012-10-15 55776]
R0 Avglogx;AVG Logging Driver;c:\windows\system32\drivers\avglogx.sys [2012-9-21 177376]
R0 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\drivers\avgmfx86.sys [2012-10-5 93536]
R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [2012-9-14 35552]
R0 FJGSDisk;G-Sensor Application Filter Driver;c:\windows\system32\drivers\FJGSDisk.sys [2006-8-12 7168]
R1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\avgidsdriverx.sys [2012-10-22 179936]
R1 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\avgidsshimx.sys [2012-9-21 19936]
R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [2012-10-2 159712]
R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [2012-9-21 164832]
R2 AVGIDSAgent;AVGIDSAgent;c:\program files\avg\avg2013\avgidsagent.exe [2012-11-6 5814392]
R2 avgwd;AVG WatchDog;c:\program files\avg\avg2013\avgwdsvc.exe [2012-10-22 196664]
R2 FlashDrv;FlashDrv;c:\progra~1\fujitsu\flashaid\FlashDrv.sys [2006-8-12 7196]
R2 MBAMScheduler;MBAMScheduler;c:\program files\malwarebytes' anti-malware\mbamscheduler.exe [2013-1-5 398184]
R2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2013-1-5 682344]
R2 Secunia PSI Agent;Secunia PSI Agent;c:\program files\secunia\psi\psia.exe [2011-10-13 994360]
R2 Secunia Update Agent;Secunia Update Agent;c:\program files\secunia\psi\sua.exe [2011-10-13 399416]
R2 TVService;TVService;c:\program files\team mediaportal\mediaportal tv server\TvService.exe [2012-4-10 212992]
R3 ApPS2;Alps Pointing-device Driver;c:\windows\system32\drivers\ApPS2.sys [2006-8-12 36428]
R3 Fjbtndrv;Fujitsu Button Driver;c:\windows\system32\drivers\FjBtnDrv.sys [2006-8-12 17920]
R3 FUJ02E1;%FUJ02E1.DeviceDesc%;c:\windows\system32\drivers\FUJ02E1.sys [2006-8-12 5632]
R3 FUJ02E3;Fujitsu FUJ02E3 Device Driver;c:\windows\system32\drivers\fuj02e3.sys [2006-8-12 4864]
R3 FujitsuPen;Fujitsu Serial Pen HID Driver;c:\windows\system32\drivers\Fujpen.sys [2006-8-12 14464]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2013-1-5 21104]
R3 PSI;PSI;c:\windows\system32\drivers\psi_mf.sys [2010-9-1 15544]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 SProtection;SProtection;c:\program files\common files\umbrella\umbrella.exe --> c:\program files\common files\umbrella\Umbrella.exe [?]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver;c:\windows\system32\drivers\ssadadb.sys [2011-5-13 30312]
S3 bioschk;FPC BIOS Check Driver;c:\windows\system32\drivers\bioschk.sys [2010-3-25 3909]
S3 IFXTPM;IFXTPM;c:\windows\system32\drivers\ifxtpm.sys [2006-8-12 35968]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [2013-1-3 40776]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\drivers\ssadbus.sys [2011-5-13 121064]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\drivers\ssadmdfl.sys [2011-5-13 12776]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\drivers\ssadmdm.sys [2011-5-13 136808]
S3 WinRM;Windows Remote Management (WS-Management);c:\windows\system32\svchost.exe -k WINRM [2006-8-12 14336]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
.
=============== Created Last 30 ================
.
2013-01-05 23:29:37 21104 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-01-05 23:29:37 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2013-01-05 21:49:50 -------- d-----w- c:\program files\Application Compatibility Toolkit
2013-01-05 21:46:26 -------- d-----w- c:\program files\Support Tools
2013-01-05 19:09:30 -------- d-----w- C:\Drivers
2013-01-05 02:44:36 -------- d-----w- C:\Malwarebytes
2013-01-05 01:44:41 11063808 ----a-w- c:\program files\internet explorer\ieframe.dll
2013-01-04 22:50:52 -------- d-----w- c:\documents and settings\owner\application data\AVG2013
2013-01-04 22:47:43 -------- d--h--w- C:\$AVG
2013-01-04 22:41:13 -------- d-----w- c:\documents and settings\owner\local settings\application data\Avg2013
2013-01-04 19:51:07 630272 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2013-01-04 19:50:50 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2013-01-04 19:49:36 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2013-01-04 19:49:04 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2013-01-04 19:48:30 2000384 -c----w- c:\windows\system32\dllcache\iertutil.dll
2013-01-04 19:48:27 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2013-01-04 19:48:20 11111424 -c----w- c:\windows\system32\dllcache\ieframe.dll
2013-01-04 07:54:14 -------- d-----w- C:\43772e300cd3f47072954320
2013-01-04 06:52:44 -------- d-----w- c:\documents and settings\owner\application data\GlarySoft
2013-01-04 06:48:19 -------- d-----w- c:\program files\Glarysoft
2013-01-04 06:39:18 40776 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2013-01-03 14:13:07 -------- d-----w- c:\documents and settings\owner\application data\Iminent
2013-01-03 14:12:41 -------- d-----w- c:\documents and settings\all users\application data\Iminent
2013-01-03 13:36:18 -------- d-----w- c:\documents and settings\owner\application data\Strongvault
2013-01-03 13:30:53 -------- d-----w- c:\documents and settings\owner\local settings\application data\Stronghold_LLC
2013-01-03 13:29:25 -------- d-----w- c:\documents and settings\owner\local settings\application data\StrongVault
2013-01-03 13:26:14 -------- d-----w- c:\documents and settings\owner\application data\Toolbar4
2013-01-03 13:23:02 -------- d-----w- c:\documents and settings\owner\application data\DefaultTab
2013-01-03 02:37:49 -------- d-----w- c:\windows\system32\Extensions
2013-01-03 02:37:48 -------- d-----w- c:\windows\system32\searchplugins
2013-01-03 02:36:54 -------- d-----w- c:\documents and settings\owner\application data\spotmau
2013-01-03 02:34:03 -------- d-----w- c:\documents and settings\all users\application data\TuneUp360
2012-12-14 08:53:46 -------- d-----w- c:\program files\Raise
2012-12-14 05:22:40 -------- d-----w- c:\documents and settings\owner\application data\Systweak
2012-12-14 05:22:20 18360 ----a-w- c:\windows\system32\roboot.exe
2012-12-14 05:11:37 -------- d-----w- c:\documents and settings\owner\application data\Sweetpacks
2012-12-13 05:42:33 -------- d-----w- c:\documents and settings\owner\application data\AVG
2012-12-13 05:40:10 -------- d-----w- c:\documents and settings\all users\application data\AVG
2012-12-13 05:39:24 -------- d-sh--w- c:\documents and settings\all users\application data\{D1D4879F-2279-49C9-AEBF-3B95C84EAA8F}
2012-12-10 14:16:16 -------- d-----w- c:\program files\VideoLAN
2012-12-10 14:14:40 33958 ----a-w- c:\documents and settings\all users\application data\uninstaller.exe
2012-12-10 14:13:30 -------- d-----w- c:\documents and settings\owner\local settings\application data\TNT2
.
==================== Find3M ====================
.
2012-12-27 22:20:28 73656 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-12-27 22:20:28 697272 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-12-16 12:23:59 290560 ----a-w- c:\windows\system32\atmfd.dll
2012-11-13 01:25:12 1866368 ----a-w- c:\windows\system32\win32k.sys
2012-11-02 02:02:42 375296 ----a-w- c:\windows\system32\dpnet.dll
2012-11-01 12:17:54 916992 ----a-w- c:\windows\system32\wininet.dll
2012-11-01 12:17:54 43520 ----a-w- c:\windows\system32\licmgr10.dll
2012-11-01 12:17:54 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2012-11-01 00:35:34 385024 ----a-w- c:\windows\system32\html.iec
2012-10-22 21:02:46 179936 ----a-w- c:\windows\system32\drivers\avgidsdriverx.sys
2012-10-15 11:48:52 55776 ----a-w- c:\windows\system32\drivers\avgidshx.sys
2012-10-12 22:57:26 4067328 ----a-w- c:\documents and settings\all users\application data\ReadOnlyInstaller.msi
2012-10-11 14:57:11 499712 ----a-w- c:\windows\system32\msvcp71.dll
.
============= FINISH: 11:46:30.71 ===============
No shortcuts work on desktop
Most programs cant be accessed through Start Menu (though some will open through .exe files in Program Files, but not all)
Internet Explorer will open but freezes (he also has google chrome which works fine)
Cannot download Anti-Malware Program (Error Code CocreateInstance failed;code 0x80040154. Class not registered) Then will receive (run time error '372' Failed to load control 'WebBrowser' from ieframe.dll May be outdated Make sure you're using the version of the control that was provided with your application)
Was able to use Spybot which found and removed 91 adware and malware
Cannot get in to do System Restore
It said FjStrtAp.exe cannot find FjFBUCmn.dll file so cannot work ( I re-installed Fujitsu Utility which seemed to correct this error popup)
Looks like internet explorer 8 was downloaded, and installed. but when i try to update, it goes to install and freezes.
I Do not have a Boot Cd or any discs that came with the laptop. I also have posted for help on a different website Forum but it has been a few days and have not received any responses. Im hoping to get a response here and I will discontinue the other Forum.
Any help you could provide would be greatly appreciated
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 8.0.6001.18702
Run by Owner at 11:45:13 on 2013-01-06
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1014.166 [GMT -8:00]
.
AV: AVG Anti-Virus 2013 *Enabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
.
============== Running Processes ================
.
C:\Program Files\Common Files\Microsoft Shared\Ink\KeyboardSurrogate.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\ACS.exe
C:\WINDOWS\system32\agrsmsvc.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\MySQL\MySQL Server 5.1\bin\mysqld.exe
C:\Program Files\Softex\OmniPass\Omniserv.exe
C:\Program Files\Secunia\PSI\PSIA.exe
C:\Program Files\Team MediaPortal\MediaPortal TV Server\TVService.exe
C:\WINDOWS\SYSTEM32\WISPTIS.EXE
C:\WINDOWS\System32\tabbtnu.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Softex\OmniPass\OPXPApp.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files\Common Files\Microsoft Shared\Ink\TCServer.exe
C:\Program Files\AlpsPoint\ApMain.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe
C:\Program Files\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe
C:\Program Files\Fujitsu\BtnHnd\BtnHnd.exe
C:\WINDOWS\system32\igfxext.exe
C:\windows\system32\KADxMain.exe
C:\Program Files\Fujitsu\SSUtility\FJSSDMN.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\Program Files\Atheros\ACU.exe
C:\Program Files\Softex\OmniPass\scureapp.exe
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Update\1.3.21.123\GoogleCrashHandler.exe
C:\Program Files\Secunia\PSI\sua.exe
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\DfrgNtfs.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\WINDOWS\system32\DfrgNtfs.exe
C:\WINDOWS\system32\DfrgNtfs.exe
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\Documents and Settings\Owner\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalService
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://google.com/
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: AVG Safe Search: {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - LocalServer32 - <no file>
BHO: Spybot-S&D IE Protection: {53707962-6F74-2D53-2644-206D7942484F} - c:\program files\spybot - search & destroy\SDHelper.dll
BHO: uTorrentControl_v2 Toolbar: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - c:\program files\utorrentcontrol_v2\prxtbuTor.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre6\bin\ssv.dll
BHO: {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - <orphaned>
BHO: {B0D610BC-DC69-42B4-9CFC-910EB202DDE4} - <orphaned>
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: uTorrentControl_v2 Toolbar: {7473B6BD-4691-4744-A82B-7854EB3D70B6} - c:\program files\utorrentcontrol_v2\prxtbuTor.dll
TB: uTorrentControl_v2 Toolbar: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - c:\program files\utorrentcontrol_v2\prxtbuTor.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [Google Update] "c:\documents and settings\owner\local settings\application data\google\update\GoogleUpdate.exe" /c
mRun: [TabletWizard] c:\windows\help\SplshWrp.exe
mRun: [TabletTip] "c:\program files\common files\microsoft shared\ink\tabtip.exe" /resume
mRun: [ApMain] c:\program files\alpspoint\ApMain.exe
mRun: [igfxhkcmd] c:\windows\system32\hkcmd.exe
mRun: [igfxpers] c:\windows\system32\igfxpers.exe
mRun: [AGRSMMSG] AGRSMMSG.exe
mRun: [LoadFUJ02E3] c:\program files\fujitsu\fuj02e3\FUJ02E3.exe
mRun: [IndicatorUtility] c:\program files\fujitsu\fujitsu hotkey utility\IndicatorUty.exe
mRun: [LoadBtnHnd] c:\program files\fujitsu\btnhnd\BtnHnd.exe
mRun: [KADxMain] c:\windows\system32\KADxMain.exe
mRun: [SSUtility] c:\program files\fujitsu\ssutility\FJSSDMN.exe
mRun: [FjStrtAp] c:\program files\fujitsu\utils\FjStrtAp.exe
mRun: [ACU] "c:\program files\atheros\ACU.exe" -nogui
mRun: [OmniPass] c:\program files\softex\omnipass\scureapp.exe
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [AVG_UI] "c:\program files\avg\avg2013\avgui.exe" /TRAYONLY
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Windows\System: Allow-LogonScript-NetbiosDisabled = dword:1
mPolicies-Explorer: NoDriveTypeAutoRun = dword:145
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\program files\spybot - search & destroy\SDHelper.dll
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://windowsupdate.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1316877360039
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1343064924876
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
TCP: NameServer = 192.168.1.254
TCP: Interfaces\{4B3057DC-49B7-4DF6-802A-90D5278C3486} : DHCPNameServer = 192.168.1.254
Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - c:\program files\belarc\advisor\system\BAVoilaX.dll
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - <orphaned>
Notify: igfxcui - igfxdev.dll
Notify: loginkey - c:\program files\common files\microsoft shared\ink\loginkey.dll
Notify: OPXPGina - c:\program files\softex\omnipass\opxpgina.dll
Notify: TabBtnWL - TabBtnWL.dll
Notify: tpgwlnotify - tpgwlnot.dll
AppInit_DLLs= c:\docume~1\alluse~1\applic~1\browse~1\261040~1.25\{c16c1~1\browse~1.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - c:\program files\windows desktop search\MSNLNamespaceMgr.dll
Hosts: 127.0.0.1 Spyware Info | Spyware Info | spyware software | spyware program | protection spyware
.
============= SERVICES / DRIVERS ===============
.
R0 AVGIDSHX;AVGIDSHX;c:\windows\system32\drivers\avgidshx.sys [2012-10-15 55776]
R0 Avglogx;AVG Logging Driver;c:\windows\system32\drivers\avglogx.sys [2012-9-21 177376]
R0 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\drivers\avgmfx86.sys [2012-10-5 93536]
R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [2012-9-14 35552]
R0 FJGSDisk;G-Sensor Application Filter Driver;c:\windows\system32\drivers\FJGSDisk.sys [2006-8-12 7168]
R1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\avgidsdriverx.sys [2012-10-22 179936]
R1 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\avgidsshimx.sys [2012-9-21 19936]
R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [2012-10-2 159712]
R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [2012-9-21 164832]
R2 AVGIDSAgent;AVGIDSAgent;c:\program files\avg\avg2013\avgidsagent.exe [2012-11-6 5814392]
R2 avgwd;AVG WatchDog;c:\program files\avg\avg2013\avgwdsvc.exe [2012-10-22 196664]
R2 FlashDrv;FlashDrv;c:\progra~1\fujitsu\flashaid\FlashDrv.sys [2006-8-12 7196]
R2 MBAMScheduler;MBAMScheduler;c:\program files\malwarebytes' anti-malware\mbamscheduler.exe [2013-1-5 398184]
R2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2013-1-5 682344]
R2 Secunia PSI Agent;Secunia PSI Agent;c:\program files\secunia\psi\psia.exe [2011-10-13 994360]
R2 Secunia Update Agent;Secunia Update Agent;c:\program files\secunia\psi\sua.exe [2011-10-13 399416]
R2 TVService;TVService;c:\program files\team mediaportal\mediaportal tv server\TvService.exe [2012-4-10 212992]
R3 ApPS2;Alps Pointing-device Driver;c:\windows\system32\drivers\ApPS2.sys [2006-8-12 36428]
R3 Fjbtndrv;Fujitsu Button Driver;c:\windows\system32\drivers\FjBtnDrv.sys [2006-8-12 17920]
R3 FUJ02E1;%FUJ02E1.DeviceDesc%;c:\windows\system32\drivers\FUJ02E1.sys [2006-8-12 5632]
R3 FUJ02E3;Fujitsu FUJ02E3 Device Driver;c:\windows\system32\drivers\fuj02e3.sys [2006-8-12 4864]
R3 FujitsuPen;Fujitsu Serial Pen HID Driver;c:\windows\system32\drivers\Fujpen.sys [2006-8-12 14464]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2013-1-5 21104]
R3 PSI;PSI;c:\windows\system32\drivers\psi_mf.sys [2010-9-1 15544]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 SProtection;SProtection;c:\program files\common files\umbrella\umbrella.exe --> c:\program files\common files\umbrella\Umbrella.exe [?]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver;c:\windows\system32\drivers\ssadadb.sys [2011-5-13 30312]
S3 bioschk;FPC BIOS Check Driver;c:\windows\system32\drivers\bioschk.sys [2010-3-25 3909]
S3 IFXTPM;IFXTPM;c:\windows\system32\drivers\ifxtpm.sys [2006-8-12 35968]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [2013-1-3 40776]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\drivers\ssadbus.sys [2011-5-13 121064]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\drivers\ssadmdfl.sys [2011-5-13 12776]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\drivers\ssadmdm.sys [2011-5-13 136808]
S3 WinRM;Windows Remote Management (WS-Management);c:\windows\system32\svchost.exe -k WINRM [2006-8-12 14336]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
.
=============== Created Last 30 ================
.
2013-01-05 23:29:37 21104 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-01-05 23:29:37 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2013-01-05 21:49:50 -------- d-----w- c:\program files\Application Compatibility Toolkit
2013-01-05 21:46:26 -------- d-----w- c:\program files\Support Tools
2013-01-05 19:09:30 -------- d-----w- C:\Drivers
2013-01-05 02:44:36 -------- d-----w- C:\Malwarebytes
2013-01-05 01:44:41 11063808 ----a-w- c:\program files\internet explorer\ieframe.dll
2013-01-04 22:50:52 -------- d-----w- c:\documents and settings\owner\application data\AVG2013
2013-01-04 22:47:43 -------- d--h--w- C:\$AVG
2013-01-04 22:41:13 -------- d-----w- c:\documents and settings\owner\local settings\application data\Avg2013
2013-01-04 19:51:07 630272 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2013-01-04 19:50:50 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2013-01-04 19:49:36 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2013-01-04 19:49:04 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2013-01-04 19:48:30 2000384 -c----w- c:\windows\system32\dllcache\iertutil.dll
2013-01-04 19:48:27 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2013-01-04 19:48:20 11111424 -c----w- c:\windows\system32\dllcache\ieframe.dll
2013-01-04 07:54:14 -------- d-----w- C:\43772e300cd3f47072954320
2013-01-04 06:52:44 -------- d-----w- c:\documents and settings\owner\application data\GlarySoft
2013-01-04 06:48:19 -------- d-----w- c:\program files\Glarysoft
2013-01-04 06:39:18 40776 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2013-01-03 14:13:07 -------- d-----w- c:\documents and settings\owner\application data\Iminent
2013-01-03 14:12:41 -------- d-----w- c:\documents and settings\all users\application data\Iminent
2013-01-03 13:36:18 -------- d-----w- c:\documents and settings\owner\application data\Strongvault
2013-01-03 13:30:53 -------- d-----w- c:\documents and settings\owner\local settings\application data\Stronghold_LLC
2013-01-03 13:29:25 -------- d-----w- c:\documents and settings\owner\local settings\application data\StrongVault
2013-01-03 13:26:14 -------- d-----w- c:\documents and settings\owner\application data\Toolbar4
2013-01-03 13:23:02 -------- d-----w- c:\documents and settings\owner\application data\DefaultTab
2013-01-03 02:37:49 -------- d-----w- c:\windows\system32\Extensions
2013-01-03 02:37:48 -------- d-----w- c:\windows\system32\searchplugins
2013-01-03 02:36:54 -------- d-----w- c:\documents and settings\owner\application data\spotmau
2013-01-03 02:34:03 -------- d-----w- c:\documents and settings\all users\application data\TuneUp360
2012-12-14 08:53:46 -------- d-----w- c:\program files\Raise
2012-12-14 05:22:40 -------- d-----w- c:\documents and settings\owner\application data\Systweak
2012-12-14 05:22:20 18360 ----a-w- c:\windows\system32\roboot.exe
2012-12-14 05:11:37 -------- d-----w- c:\documents and settings\owner\application data\Sweetpacks
2012-12-13 05:42:33 -------- d-----w- c:\documents and settings\owner\application data\AVG
2012-12-13 05:40:10 -------- d-----w- c:\documents and settings\all users\application data\AVG
2012-12-13 05:39:24 -------- d-sh--w- c:\documents and settings\all users\application data\{D1D4879F-2279-49C9-AEBF-3B95C84EAA8F}
2012-12-10 14:16:16 -------- d-----w- c:\program files\VideoLAN
2012-12-10 14:14:40 33958 ----a-w- c:\documents and settings\all users\application data\uninstaller.exe
2012-12-10 14:13:30 -------- d-----w- c:\documents and settings\owner\local settings\application data\TNT2
.
==================== Find3M ====================
.
2012-12-27 22:20:28 73656 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-12-27 22:20:28 697272 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-12-16 12:23:59 290560 ----a-w- c:\windows\system32\atmfd.dll
2012-11-13 01:25:12 1866368 ----a-w- c:\windows\system32\win32k.sys
2012-11-02 02:02:42 375296 ----a-w- c:\windows\system32\dpnet.dll
2012-11-01 12:17:54 916992 ----a-w- c:\windows\system32\wininet.dll
2012-11-01 12:17:54 43520 ----a-w- c:\windows\system32\licmgr10.dll
2012-11-01 12:17:54 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2012-11-01 00:35:34 385024 ----a-w- c:\windows\system32\html.iec
2012-10-22 21:02:46 179936 ----a-w- c:\windows\system32\drivers\avgidsdriverx.sys
2012-10-15 11:48:52 55776 ----a-w- c:\windows\system32\drivers\avgidshx.sys
2012-10-12 22:57:26 4067328 ----a-w- c:\documents and settings\all users\application data\ReadOnlyInstaller.msi
2012-10-11 14:57:11 499712 ----a-w- c:\windows\system32\msvcp71.dll
.
============= FINISH: 11:46:30.71 ===============