Already flushed dns, didn't help...:/
Here is Hijackthis:
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:27:41, on 14/6/2012
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16446)
Boot mode: Normal
Running processes:
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Users\Echelon\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Echelon\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Echelon\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Echelon\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Echelon\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Users\Echelon\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Echelon\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Echelon\Downloads\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.grooveshark.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: btorbit.com - {000123B4-9B42-4900-B3F7-F4B073EFC214} - C:\Program Files (x86)\Orbitdownloader\orbitcth.dll
O2 - BHO: CorePluginIEBHO - {13FA2453-9287-4F18-8554-976D7C02F4EE} - C:\Perfect World Entertainment\CORE Client\Plugins\CorePluginIE.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll
O2 - BHO: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll
O3 - Toolbar: Grab Pro - {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Program Files (x86)\Orbitdownloader\GrabPro.dll
O3 - Toolbar: avast! WebRep - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - Startup: Core Temp.lnk = C:\Program Files\Core Temp\Core Temp.exe
O8 - Extra context menu item: &Download by Orbit - res://C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll/201
O8 - Extra context menu item: &Grab video by Orbit - res://C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll/204
O8 - Extra context menu item: Do&wnload selected by Orbit - res://C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll/203
O8 - Extra context menu item: Down&load all by Orbit - res://C:\Program Files (x86)\Orbitdownloader\orbitmxt.dll/202
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted IP range:
http://178.148.16.1
O15 - ESC Trusted IP range:
http://178.148.16.1
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files (x86)\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: UMVPFSrv - Logitech Inc. - C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: Windows Media Player Network Sharing Service (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: xsherlock - Wellbia.com Co., Ltd. - C:\Windows\system32\xsherlock.xem
--
End of file - 9097 bytes
And here is CMD Tracert results:
Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corporation. All rights reserved.
C:\Users\Echelon>Tracert facebook.com
Tracing route to facebook.com [66.220.149.11]
over a maximum of 30 hops:
1 8 ms 19 ms 9 ms 10.0.0.1
2 8 ms 8 ms 34 ms 10.0.0.1
3 8 ms 9 ms 10 ms bg-he-m-1-pc3.sbb.rs [89.216.6.33]
4 8 ms 8 ms 6 ms bg-yb-m-1-pc4.sbb.rs [89.216.6.93]
5 12 ms 24 ms 12 ms bg-yb-r-1-te0-2-0-0.sbb.rs [89.216.5.67]
6 31 ms 27 ms 13 ms bpt-b4-link.telia.net [213.248.73.217]
7 22 ms 20 ms 33 ms win-bb2-link.telia.net [80.91.250.64]
8 88 ms 49 ms 58 ms ffm-bb2-link.telia.net [80.91.246.142]
9 * * * Request timed out.
10 37 ms 35 ms 50 ms facebook-ic-137171-ffm-b10.c.telia.net [213.248.
104.30]
11 165 ms 124 ms 126 ms xe-2-2-0.bb02.iad2.tfbnw.net [204.15.20.221]
12 197 ms 197 ms 196 ms ae11.bb02.sjc1.tfbnw.net [74.119.77.199]
13 196 ms 199 ms 196 ms ae1.dr02.snc5.tfbnw.net [74.119.77.190]
14 223 ms 211 ms 201 ms po509.csw02a.snc5.tfbnw.net [74.119.78.24]
15 194 ms 194 ms 194 ms www-10-02-snc5.facebook.com [66.220.149.11]
Trace complete.
C:\Users\Echelon>Tracert facebook.com
Tracing route to facebook.com [69.171.229.11]
over a maximum of 30 hops:
1 13 ms 23 ms 21 ms 10.0.0.1
2 7 ms 8 ms 21 ms 10.0.0.1
3 8 ms 9 ms 7 ms bg-he-m-1-pc3.sbb.rs [89.216.6.33]
4 8 ms 9 ms 39 ms bg-yb-m-1-pc4.sbb.rs [89.216.6.93]
5 20 ms 13 ms 26 ms bg-yb-r-1-te0-2-0-0.sbb.rs [89.216.5.67]
6 15 ms 15 ms 17 ms bpt-b4-link.telia.net [213.248.73.217]
7 23 ms 23 ms 25 ms win-bb2-link.telia.net [80.91.253.250]
8 84 ms 50 ms 36 ms ffm-bb2-link.telia.net [213.155.133.56]
9 38 ms 37 ms 38 ms ffm-b10-link.telia.net [80.91.247.189]
10 48 ms * 35 ms facebook-ic-137171-ffm-b10.c.telia.net [213.248.
104.30]
11 125 ms 125 ms 127 ms xe-2-2-0.bb02.iad2.tfbnw.net [204.15.20.221]
12 197 ms 216 ms 196 ms ae9.bb02.prn1.tfbnw.net [74.119.79.198]
13 184 ms 188 ms 198 ms ae1.dr04.prn1.tfbnw.net [204.15.23.91]
14 191 ms 191 ms 190 ms po1027.csw06a.prn1.tfbnw.net [74.119.77.117]
15 199 ms 203 ms 187 ms www-10-06-prn1.facebook.com [69.171.229.11]
Trace complete.
C:\Users\Echelon>Tracert facebook.com
Tracing route to facebook.com [66.220.158.11]
over a maximum of 30 hops:
1 17 ms 7 ms 7 ms 10.0.0.1
2 8 ms 7 ms 9 ms 10.0.0.1
3 9 ms 9 ms 7 ms bg-he-m-1-pc3.sbb.rs [89.216.6.33]
4 8 ms 8 ms 10 ms bg-yb-m-1-pc4.sbb.rs [89.216.6.93]
5 8 ms 13 ms 18 ms bg-yb-r-1-te0-2-0-0.sbb.rs [89.216.5.67]
6 18 ms 27 ms 45 ms bpt-b4-link.telia.net [213.248.73.217]
7 23 ms 27 ms 36 ms prag-bb1-link.telia.net [80.91.247.60]
8 41 ms 45 ms 43 ms ffm-bb1-link.telia.net [80.91.246.136]
9 41 ms * * ffm-b10-link.telia.net [80.91.251.248]
10 39 ms 103 ms 64 ms facebook-ic-137171-ffm-b10.c.telia.net [213.248.
104.30]
11 139 ms 135 ms 169 ms xe-2-2-0.bb02.iad2.tfbnw.net [204.15.20.221]
12 132 ms 135 ms 133 ms ae8.dr02.ash4.tfbnw.net [74.119.77.214]
13 137 ms 127 ms 129 ms po509.csw01b.ash4.tfbnw.net [74.119.78.253]
14 130 ms 136 ms 129 ms www-10-01-ash4.facebook.com [66.220.158.11]
Trace complete.
C:\Users\Echelon>Tracert facebook.com
Tracing route to facebook.com [66.220.158.11]
over a maximum of 30 hops:
1 6 ms 17 ms 21 ms 10.0.0.1
2 6 ms 7 ms 12 ms 10.0.0.1
3 8 ms 9 ms 8 ms bg-he-m-1-pc3.sbb.rs [89.216.6.33]
4 8 ms 7 ms 9 ms bg-yb-m-1-pc4.sbb.rs [89.216.6.93]
5 19 ms 12 ms 9 ms bg-yb-r-1-te0-2-0-0.sbb.rs [89.216.5.67]
6 17 ms 13 ms 14 ms bpt-b4-link.telia.net [213.248.73.217]
7 24 ms 23 ms 30 ms prag-bb1-link.telia.net [80.91.247.60]
8 41 ms 55 ms 71 ms ffm-bb1-link.telia.net [80.91.246.136]
9 39 ms 41 ms 40 ms ffm-b10-link.telia.net [80.91.251.248]
10 50 ms 41 ms 40 ms facebook-ic-137171-ffm-b10.c.telia.net [213.248.
104.30]
11 130 ms 129 ms 157 ms xe-2-2-0.bb02.iad2.tfbnw.net [204.15.20.221]
12 130 ms 144 ms 133 ms ae8.dr02.ash4.tfbnw.net [74.119.77.214]
13 127 ms 127 ms 138 ms po509.csw01b.ash4.tfbnw.net [74.119.78.253]
14 132 ms 131 ms 131 ms www-10-01-ash4.facebook.com [66.220.158.11]
Trace complete.
C:\Users\Echelon>Tracert facebook.com
Tracing route to facebook.com [66.220.158.11]
over a maximum of 30 hops:
1 9 ms 16 ms 7 ms 10.0.0.1
2 8 ms 7 ms 7 ms 10.0.0.1
3 39 ms 6 ms 7 ms bg-he-m-1-pc3.sbb.rs [89.216.6.33]
4 7 ms 9 ms 7 ms bg-yb-m-1-pc4.sbb.rs [89.216.6.93]
5 8 ms 18 ms 11 ms bg-yb-r-1-te0-2-0-0.sbb.rs [89.216.5.67]
6 15 ms 16 ms 15 ms bpt-b4-link.telia.net [213.248.73.217]
7 23 ms 24 ms 68 ms prag-bb1-link.telia.net [80.91.247.60]
8 43 ms 123 ms 41 ms ffm-bb1-link.telia.net [80.91.246.136]
9 * 45 ms 43 ms ffm-b10-link.telia.net [80.91.251.248]
10 40 ms 39 ms 48 ms facebook-ic-137171-ffm-b10.c.telia.net [213.248.
104.30]
11 129 ms 151 ms 127 ms xe-2-2-0.bb02.iad2.tfbnw.net [204.15.20.221]
12 130 ms 127 ms 130 ms ae8.dr02.ash4.tfbnw.net [74.119.77.214]
13 128 ms 128 ms 142 ms po509.csw01b.ash4.tfbnw.net [74.119.78.253]
14 131 ms 128 ms 153 ms www-10-01-ash4.facebook.com [66.220.158.11]
Trace complete.
C:\Users\Echelon>Tracert facebook.com
Tracing route to facebook.com [66.220.149.11]
over a maximum of 30 hops:
1 10 ms 9 ms 10 ms 10.0.0.1
2 7 ms 7 ms 15 ms 10.0.0.1
3 6 ms 7 ms 8 ms bg-he-m-1-pc3.sbb.rs [89.216.6.33]
4 9 ms 9 ms 8 ms bg-yb-m-1-pc4.sbb.rs [89.216.6.93]
5 11 ms 13 ms 8 ms bg-yb-r-1-te0-2-0-0.sbb.rs [89.216.5.67]
6 16 ms 25 ms 14 ms bpt-b4-link.telia.net [213.248.73.217]
7 23 ms 42 ms 37 ms win-bb2-link.telia.net [80.91.250.64]
8 38 ms 37 ms 38 ms ffm-bb2-link.telia.net [80.91.246.142]
9 * * 36 ms ffm-b10-link.telia.net [80.91.251.250]
10 37 ms 35 ms 38 ms facebook-ic-137171-ffm-b10.c.telia.net [213.248.
104.30]
11 125 ms 125 ms 125 ms xe-2-2-0.bb02.iad2.tfbnw.net [204.15.20.221]
12 199 ms 225 ms 199 ms ae11.bb02.sjc1.tfbnw.net [74.119.77.199]
13 197 ms 199 ms 198 ms ae1.dr02.snc5.tfbnw.net [74.119.77.190]
14 203 ms 202 ms 200 ms po509.csw02a.snc5.tfbnw.net [74.119.78.24]
15 195 ms 208 ms 195 ms www-10-02-snc5.facebook.com [66.220.149.11]
Trace complete.
C:\Users\Echelon>