roadkill
-
Posts
3 -
Joined
-
Last visited
Content Type
Events
Profiles
Forums
Posts posted by roadkill
-
-
Was able to do step 1
Was not able to do step 2 my computer would not download the file. I turned off both the firewall and antivirus but it still wouldn't download.
Was able to do step three aswMBR.txt
aswMBR version 0.9.9.1665 Copyright© 2011 AVAST Software
Run date: 2012-07-07 22:09:39
-----------------------------
22:09:39.516 OS Version: Windows x64 6.1.7601 Service Pack 1
22:09:39.516 Number of processors: 3 586 0x503
22:09:39.516 ComputerName: HOME UserName: CC
22:09:43.714 Initialize success
22:09:56.959 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000069
22:09:56.959 Disk 0 Vendor: ST350041 JC45 Size: 476940MB BusType: 3
22:09:56.975 Disk 1 \Device\Harddisk1\DR1 -> \Device\0000006a
22:09:56.975 Disk 1 Vendor: ST316002 8.05 Size: 152627MB BusType: 3
22:09:56.991 Disk 0 MBR read successfully
22:09:56.991 Disk 0 MBR scan
22:09:57.006 Disk 0 Windows 7 default MBR code
22:09:57.006 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
22:09:57.022 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 476838 MB offset 206848
22:09:57.037 Disk 0 scanning C:\Windows\system32\drivers
22:10:04.135 Service scanning
22:10:20.110 Modules scanning
22:10:20.125 Disk 0 trace - called modules:
22:10:20.141 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys storport.sys hal.dll nvstor64.sys
22:10:20.157 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8004c39060]
22:10:20.157 3 CLASSPNP.SYS[fffff8800185143f] -> nt!IofCallDriver -> [0xfffffa8004ad5460]
22:10:20.172 5 ACPI.sys[fffff88000f497a1] -> nt!IofCallDriver -> \Device\00000069[0xfffffa8004acb060]
22:10:20.188 Scan finished successfully
22:11:04.745 Disk 0 MBR has been saved successfully to "C:\Users\CC\Desktop\MBR.dat"
22:11:04.792 The log file has been saved successfully to "C:\Users\CC\Desktop\aswMBR.txt"
aswMBR version 0.9.9.1665 Copyright© 2011 AVAST Software
Run date: 2012-07-07 22:17:55
-----------------------------
22:17:55.201 OS Version: Windows x64 6.1.7601 Service Pack 1
22:17:55.201 Number of processors: 3 586 0x503
22:17:55.201 ComputerName: HOME UserName: CC
22:17:59.055 Initialize success
22:18:32.545 AVAST engine defs: 12070701
22:18:39.478 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000069
22:18:39.478 Disk 0 Vendor: ST350041 JC45 Size: 476940MB BusType: 3
22:18:39.494 Disk 1 \Device\Harddisk1\DR1 -> \Device\0000006a
22:18:39.494 Disk 1 Vendor: ST316002 8.05 Size: 152627MB BusType: 3
22:18:39.525 Disk 0 MBR read successfully
22:18:39.525 Disk 0 MBR scan
22:18:39.541 Disk 0 Windows 7 default MBR code
22:18:39.556 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
22:18:39.572 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 476838 MB offset 206848
22:18:39.603 Disk 0 scanning C:\Windows\system32\drivers
22:18:57.898 Service scanning
22:19:28.407 Modules scanning
22:19:28.423 Disk 0 trace - called modules:
22:19:28.454 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys storport.sys hal.dll nvstor64.sys
22:19:28.469 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8004c39060]
22:19:28.469 3 CLASSPNP.SYS[fffff8800185143f] -> nt!IofCallDriver -> [0xfffffa8004ad5460]
22:19:28.485 5 ACPI.sys[fffff88000f497a1] -> nt!IofCallDriver -> \Device\00000069[0xfffffa8004acb060]
22:19:29.920 AVAST engine scan C:\
22:33:56.530 Disk 0 MBR has been saved successfully to "C:\Users\CC\Desktop\MBR.dat"
22:33:56.888 The log file has been saved successfully to "C:\Users\CC\Desktop\aswMBR.txt"
-
I ran full scan from Malware and full scan from Microsoft essentials. Antivirus didn't pick this up nor did Malware, but when I try to search or surf differant sites this site pops up with adds and other things. Can you help? Below are the two files asked for.
DDS (Ver_2011-08-26.01) - NTFSAMD64
Internet Explorer: 9.0.8112.16421
Run by CC at 17:15:29 on 2012-07-06
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.4095.311 [GMT -4:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}
AV: Outpost Security Suite *Enabled/Updated* {ECEA6BCD-A007-0BC7-D5A5-0254DCBD816E}
SP: Outpost Security Suite *Enabled/Updated* {578B8A29-863D-0449-EF15-3926A73ACBD3}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Microsoft Security Essentials *Enabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}
FW: Outpost Security Suite *Enabled* {D4D1EAE8-EA68-0A9F-FEFA-AB61226EC615}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Program Files (x86)\IObit\Advanced SystemCare 5\ASCService.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
c:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\PROGRA~1\Agnitum\OUTPOS~1\acs.exe
C:\Program Files (x86)\Common Files\ArcSoft\esinter\Bin\eservutil.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BBSvc.exe
C:\Windows\system32\taskeng.exe
C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files (x86)\Motorola Media Link\Lite\NServiceEntry.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
C:\Program Files (x86)\MCEBuddy\MCEBuddy.Service.exe
C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe
C:\Program Files\MySQL\MySQL Server 5.1\bin\mysqld.exe
C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneService.exe
C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe
C:\Program Files (x86)\Secunia\PSI\PSIA.exe
C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files (x86)\Team MediaPortal\MediaPortal TV Server\TVService.exe
C:\Program Files (x86)\Secunia\PSI\sua.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\svchost.exe -k SDRSVC
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files (x86)\Microsoft Garage\Mouse without Borders\MouseWithoutBorders.exe
C:\Windows\system32\atieclxx.exe
C:\Program Files (x86)\Microsoft Garage\Mouse without Borders\MouseWithoutBorders.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe
C:\Windows\system32\taskeng.exe
C:\Program Files (x86)\AnVir Task Manager Pro\anvir.exe
C:\Program Files (x86)\IObit\Smart Defrag 2\SmartDefrag.exe
C:\Program Files (x86)\NVIDIA Corporation\nTune\nTuneCmd.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Agnitum\Outpost Security Suite Free\op_mon.exe
C:\Program Files (x86)\Call Graph\CallGraph.exe
C:\Program Files (x86)\IObit\Advanced SystemCare 5\ASCTray.exe
C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
C:\Program Files (x86)\Microsoft Garage\Mouse without Borders\DDHelper.exe
C:\Program Files (x86)\SAMSUNG\FW LiveUpdate\FWManager.exe
C:\Program Files (x86)\Ask.com\Updater\Updater.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.EXE
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_3_300_257_ActiveX.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\cscript.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uInternet Settings,ProxyOverride = *.local;192.168.*.*
uURLSearchHooks: UrlSearchHook Class: {00000000-6e41-4fd3-8538-502f5495e5fc} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
uURLSearchHooks: Vuze Remote Toolbar: {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files (x86)\Vuze_Remote\prxtbVuze.dll
mURLSearchHooks: Vuze Remote Toolbar: {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files (x86)\Vuze_Remote\prxtbVuze.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: KeyScramblerBHO Class: {2b9f5787-88a5-4945-90e7-c4b18563bc5e} - C:\Program Files (x86)\KeyScrambler\KeyScramblerIE.dll
BHO: RoboForm: {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
BHO: FoxyTunes Toolbar Helper: {784d8fbc-4165-4d88-90fb-62907acdd045} - C:\Program Files (x86)\FoxyTunes\ForInternetExplorer\components\IE\FoxyTunesForIE.dll
BHO: ArcadeCandy Games: {ab6bd08c-db6b-4f02-8a22-4bd343e990ff} - C:\Users\CC\AppData\Local\ArcadeCandy\candyEX.dll
BHO: Skype Browser Helper: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO: Vuze Remote Toolbar: {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files (x86)\Vuze_Remote\prxtbVuze.dll
BHO: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - Bing Bar BHO
BHO: Ask Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
TB: @C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2291.0\npwinext.dll,-100: {8dcb7100-df86-4384-8842-8fa844297b3f} -
TB: FoxyTunes Toolbar: {1d1901c3-f72a-46f3-9dbb-0aaa0deef6df} - C:\Program Files (x86)\FoxyTunes\ForInternetExplorer\components\IE\FoxyTunesForIE.dll
TB: Vuze Remote Toolbar: {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files (x86)\Vuze_Remote\prxtbVuze.dll
TB: Ask Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
TB: &RoboForm: {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
uRun: [CallGraph] C:\Program Files (x86)\Call Graph\CallGraph.exe
uRun: [Advanced SystemCare 5] "C:\Program Files (x86)\IObit\Advanced SystemCare 5\ASCTray.exe" /AutoStart
uRun: [RoboForm] "C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
mRun: [Name of App] C:\Program Files (x86)\SAMSUNG\FW LiveUpdate\FWManager.exe r
mRun: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
mRun: [ApnUpdater] "C:\Program Files (x86)\Ask.com\Updater\Updater.exe"
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
mPolicies-system: DisableCAD = 1 (0x1)
IE: Add to Google Photos Screensa&ver - C:\Windows\system32\GPhotos.scr/200
IE: Block frame with Ad Muncher - http://www.admuncher.com/request_will_be_intercepted_by/Ad_Muncher/browserextensions.pl?exbrowser=ie&exversion=2.0&pass=380NDX0Q&id=menu_ie_frame
IE: Block image with Ad Muncher - http://www.admuncher.com/request_will_be_intercepted_by/Ad_Muncher/browserextensions.pl?exbrowser=ie&exversion=2.0&pass=380NDX0Q&id=menu_ie_image
IE: Block link with Ad Muncher - http://www.admuncher.com/request_will_be_intercepted_by/Ad_Muncher/browserextensions.pl?exbrowser=ie&exversion=2.0&pass=380NDX0Q&id=menu_ie_link
IE: Customize Menu - file://C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
IE: Don't filter page with Ad Muncher - http://www.admuncher.com/request_will_be_intercepted_by/Ad_Muncher/browserextensions.pl?exbrowser=ie&exversion=2.0&pass=380NDX0Q&id=menu_ie_exclude
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~4\Office12\EXCEL.EXE/3000
IE: Fill Forms - file://C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html
IE: Report page to the Ad Muncher developers - http://www.admuncher.com/request_will_be_intercepted_by/Ad_Muncher/browserextensions.pl?exbrowser=ie&exversion=2.0&pass=380NDX0Q&id=menu_ie_report
IE: RoboForm Toolbar - file://C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
IE: Save Forms - file://C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html
IE: {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html
IE: {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html
IE: {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
IE: {76c5fb99-dd0a-4186-9e75-65d1bf3da283} - C:\Program Files (x86)\Amazon\Add to Wish List IE Extension\run.htm
IE: {5C106A59-CC3C-4caa-81A4-6D909B5ACE23} - {B745F984-EF2E-40D6-A9AC-D8CED7230E61} - C:\Program Files (x86)\KeyScrambler\KeyScramblerIE.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~2\MICROS~4\Office12\REFIEBAR.DLL
DPF: Garmin Communicator Plug-In - hxxps://static.garmincdn.com/gcp/ie/4.0.1.0/GarminAxControl_32.CAB
DPF: vzTCPConfig - hxxp://my.verizon.com/micro/speedoptimizer/fios/vzTCPConfig.CAB
DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} - hxxp://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab
DPF: {682C59F5-478C-4421-9070-AD170D143B77} - hxxp://www.dell.com/support/troubleshooting/Content/Ode/pcd86.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: {E6F480FC-BD44-4CBA-B74A-89AF7842937D} - hxxp://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_cyri_4.4.26.0.cab
TCP: DhcpNameServer = 192.168.1.1 71.250.0.12
TCP: Interfaces\{8C9CD826-5C04-481B-8943-CAB7CD70DC3A} : DhcpNameServer = 192.168.1.1 71.250.0.12
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
AppInit_DLLs: c:\progra~1\agnitum\outpos~1\wl_hook.dll
mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "C:\Program Files (x86)\Common Files\LightScribe\LSRunOnce.exe"
BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO-X64: AcroIEHelperStub - No File
BHO-X64: KeyScramblerBHO Class: {2B9F5787-88A5-4945-90E7-C4B18563BC5E} - C:\Program Files (x86)\KeyScrambler\KeyScramblerIE.dll
BHO-X64: QFX Software KeyScrambler - No File
C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
BHO-X64: RoboForm - No File
BHO-X64: FoxyTunes Toolbar Helper: {784D8FBC-4165-4D88-90FB-62907ACDD045} - C:\Program Files (x86)\FoxyTunes\ForInternetExplorer\components\IE\FoxyTunesForIE.dll
BHO-X64: FoxyTunes Toolbar Helper - No File
BHO-X64: ArcadeCandy Games: {AB6BD08C-DB6B-4F02-8A22-4BD343E990FF} - C:\Users\CC\AppData\Local\ArcadeCandy\candyEX.dll
BHO-X64: ArcadeCandy Games - No File
BHO-X64: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO-X64: SkypeIEPluginBHO - No File
BHO-X64: Vuze Remote Toolbar: {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files (x86)\Vuze_Remote\prxtbVuze.dll
BHO-X64: Vuze Remote - No File
BHO-X64: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - Bing Bar BHO
BHO-X64: Ask Toolbar: {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
BHO-X64: Ask Toolbar BHO - No File
BHO-X64: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
TB-X64: @C:\Program Files (x86)\MSN Toolbar\Platform\6.3.2291.0\npwinext.dll,-100: {8dcb7100-df86-4384-8842-8fa844297b3f} -
TB-X64: FoxyTunes Toolbar: {1D1901C3-F72A-46f3-9DBB-0AAA0DEEF6DF} - C:\Program Files (x86)\FoxyTunes\ForInternetExplorer\components\IE\FoxyTunesForIE.dll
TB-X64: Vuze Remote Toolbar: {ba14329e-9550-4989-b3f2-9732e92d17cc} - C:\Program Files (x86)\Vuze_Remote\prxtbVuze.dll
TB-X64: Ask Toolbar: {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
TB-X64: &RoboForm: {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
mRun-x64: [Name of App] C:\Program Files (x86)\SAMSUNG\FW LiveUpdate\FWManager.exe r
mRun-x64: [AMD AVT] Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe" aml
mRun-x64: [ApnUpdater] "C:\Program Files (x86)\Ask.com\Updater\Updater.exe"
IE-X64: {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html
IE-X64: {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html
IE-X64: {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
IE-X64: {76c5fb99-dd0a-4186-9e75-65d1bf3da283} - C:\Program Files (x86)\Amazon\Add to Wish List IE Extension\run.htm
AppInit_DLLs-X64: c:\progra~1\agnitum\outpos~1\wl_hook.dll
.
============= SERVICES / DRIVERS ===============
.
R0 hotcore3;hc3ServiceName;C:\Windows\system32\DRIVERS\hotcore3.sys --> C:\Windows\system32\DRIVERS\hotcore3.sys [?]
R0 MpFilter;Microsoft Malware Protection Driver;C:\Windows\system32\DRIVERS\MpFilter.sys --> C:\Windows\system32\DRIVERS\MpFilter.sys [?]
R0 SmartDefragDriver;SmartDefragDriver;C:\Windows\system32\Drivers\SmartDefragDriver.sys --> C:\Windows\system32\Drivers\SmartDefragDriver.sys [?]
R1 afw;Agnitum Firewall Driver;C:\Windows\system32\DRIVERS\afw.sys --> C:\Windows\system32\DRIVERS\afw.sys [?]
R1 BIOS;BIOS;C:\Windows\System32\drivers\BIOS64.sys [2011-12-7 14136]
R1 BS_I2cIo;BS_I2cIo;C:\Windows\System32\drivers\BS_I2cIo.sys [2011-12-7 17024]
R1 ElRawDisk;ElRawDisk;\??\C:\Windows\system32\drivers\ElRawDsk.sys --> C:\Windows\system32\drivers\ElRawDsk.sys [?]
R1 SandBox;SandBox;\??\C:\Windows\system32\drivers\SandBox64.sys --> C:\Windows\system32\drivers\SandBox64.sys [?]
R2 acssrv;Agnitum Client Security Service;C:\PROGRA~1\Agnitum\OUTPOS~1\acs.exe [2012-7-4 3501696]
R2 ADExchange;ArcSoft Exchange Service;C:\Program Files (x86)\Common Files\ArcSoft\esinter\Bin\eservutil.exe [2011-10-25 37280]
R2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-6-6 64952]
R2 AdvancedSystemCareService5;Advanced SystemCare Service 5;C:\Program Files (x86)\IObit\Advanced SystemCare 5\ASCService.exe [2012-2-14 913792]
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\system32\atiesrxx.exe --> C:\Windows\system32\atiesrxx.exe [?]
R2 AMD FUEL Service;AMD FUEL Service;C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2012-6-11 361984]
R2 AODDriver4.01;AODDriver4.01;C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys [2012-3-5 53888]
R2 BBSvc;BingBar Service;C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BBSvc.EXE [2012-2-10 193816]
R2 cpuz135;cpuz135;\??\C:\Windows\system32\drivers\cpuz135_x64.sys --> C:\Windows\system32\drivers\cpuz135_x64.sys [?]
R2 DeviceMonitorService;DeviceMonitorService;C:\Program Files (x86)\Motorola Media Link\Lite\NServiceEntry.exe [2012-6-5 87400]
R2 MCEBuddy;MCEBuddy;C:\Program Files (x86)\MCEBuddy\MCEBuddy.Service.exe [2012-5-11 17920]
R2 Motorola Device Manager;Motorola Device Manager Service;C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe [2012-6-4 116632]
R2 PST Service;PST Service;C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe [2012-6-18 65657]
R2 Secunia PSI Agent;Secunia PSI Agent;C:\Program Files (x86)\Secunia\PSI\psia.exe [2011-10-14 994360]
R2 Secunia Update Agent;Secunia Update Agent;C:\Program Files (x86)\Secunia\PSI\sua.exe [2011-10-14 399416]
R2 Skype C2C Service;Skype C2C Service;C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-6-19 3048136]
R2 TVService;TVService;C:\Program Files (x86)\Team MediaPortal\MediaPortal TV Server\TvService.exe [2011-12-20 212992]
R2 UMVPFSrv;UMVPFSrv;C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [2012-1-18 450848]
R3 afwcore;afwcore;C:\Windows\system32\drivers\afwcore.sys --> C:\Windows\system32\drivers\afwcore.sys [?]
R3 amdiox64;AMD IO Driver;C:\Windows\system32\DRIVERS\amdiox64.sys --> C:\Windows\system32\DRIVERS\amdiox64.sys [?]
R3 amdkmdag;amdkmdag;C:\Windows\system32\DRIVERS\atikmdag.sys --> C:\Windows\system32\DRIVERS\atikmdag.sys [?]
R3 amdkmdap;amdkmdap;C:\Windows\system32\DRIVERS\atikmpag.sys --> C:\Windows\system32\DRIVERS\atikmpag.sys [?]
R3 ASWFilt;ASWFilt;\??\C:\Windows\system32\Filt\ASWFilt64.dll --> C:\Windows\system32\Filt\ASWFilt64.dll [?]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;C:\Windows\system32\drivers\AtihdW76.sys --> C:\Windows\system32\drivers\AtihdW76.sys [?]
R3 KeyScrambler;KeyScrambler;C:\Windows\system32\drivers\keyscrambler.sys --> C:\Windows\system32\drivers\keyscrambler.sys [?]
R3 LVRS64;Logitech RightSound Filter Driver;C:\Windows\system32\DRIVERS\lvrs64.sys --> C:\Windows\system32\DRIVERS\lvrs64.sys [?]
R3 LVUVC64;Logitech QuickCam Pro 9000(UVC);C:\Windows\system32\DRIVERS\lvuvc64.sys --> C:\Windows\system32\DRIVERS\lvuvc64.sys [?]
R3 nvoclk64;NVIDIA Enthusiasts Platform KDM;C:\Windows\system32\DRIVERS\nvoclk64.sys --> C:\Windows\system32\DRIVERS\nvoclk64.sys [?]
R3 VBEngNT;VBEngNT;\??\C:\Windows\system32\drivers\VBEngNT.sys --> C:\Windows\system32\drivers\VBEngNT.sys [?]
R3 VBFilt;VBFilt;\??\C:\Windows\system32\Filt\VBFilt64.dll --> C:\Windows\system32\Filt\VBFilt64.dll [?]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-2-9 136176]
S2 MouseWithoutBordersSvc;Mouse without Borders Service;C:\Program Files (x86)\Microsoft Garage\Mouse without Borders\MouseWithoutBordersSvc.exe [2011-9-19 17920]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-2-29 158856]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-7-4 257224]
S3 BBUpdate;BBUpdate;C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\SeaPort.EXE [2012-2-10 240408]
S3 BTCFilterService;USB Networking Driver Filter Service;C:\Windows\system32\DRIVERS\motfilt.sys --> C:\Windows\system32\DRIVERS\motfilt.sys [?]
S3 DigiartyVirtualCDBus;Digiarty Virtual Driver;C:\Windows\system32\drivers\DigiartyVirtualCDBus.sys --> C:\Windows\system32\drivers\DigiartyVirtualCDBus.sys [?]
S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-2-9 136176]
S3 motccgp;Motorola USB Composite Device Driver;C:\Windows\system32\DRIVERS\motccgp.sys --> C:\Windows\system32\DRIVERS\motccgp.sys [?]
S3 motccgpfl;MotCcgpFlService;C:\Windows\system32\DRIVERS\motccgpfl.sys --> C:\Windows\system32\DRIVERS\motccgpfl.sys [?]
S3 Motousbnet;Motorola USB Networking Driver Service;C:\Windows\system32\DRIVERS\Motousbnet.sys --> C:\Windows\system32\DRIVERS\Motousbnet.sys [?]
S3 motusbdevice;Motorola USB Dev Driver;C:\Windows\system32\DRIVERS\motusbdevice.sys --> C:\Windows\system32\DRIVERS\motusbdevice.sys [?]
S3 NAUpdate;Nero Update;C:\Program Files (x86)\Nero\Update\NASvc.exe [2011-9-23 641832]
S3 NisDrv;Microsoft Network Inspection System;C:\Windows\system32\DRIVERS\NisDrvWFP.sys --> C:\Windows\system32\DRIVERS\NisDrvWFP.sys [?]
S3 NisSrv;Microsoft Network Inspection;C:\Program Files\Microsoft Security Client\NisSrv.exe [2012-3-26 291696]
S3 NitroReaderDriverReadSpool2;NitroPDFReaderDriverCreatorReadSpool2;C:\Program Files\Common Files\Nitro PDF\Reader\2.0\NitroPDFReaderDriverService2x64.exe [2012-5-16 216080]
S3 PSI;PSI;C:\Windows\system32\DRIVERS\psi_mf.sys --> C:\Windows\system32\DRIVERS\psi_mf.sys [?]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys --> C:\Windows\system32\drivers\tsusbflt.sys [?]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\system32\drivers\TsUsbGD.sys --> C:\Windows\system32\drivers\TsUsbGD.sys [?]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\system32\Drivers\usbaapl64.sys --> C:\Windows\system32\Drivers\usbaapl64.sys [?]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
S3 WinRing0_1_2_0;WinRing0_1_2_0;C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [2012-7-5 14544]
.
=============== Created Last 30 ================
.
2012-07-06 18:22:38 69000 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{E6A2B673-FD61-4C92-988C-5454CBAF6FF3}\offreg.dll
2012-07-06 17:46:02 9013136 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{E6A2B673-FD61-4C92-988C-5454CBAF6FF3}\mpengine.dll
2012-07-05 14:46:24 9013136 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2012-07-05 05:22:17 9216 ----a-w- C:\Windows\System32\rdrmemptylst.exe
2012-07-05 05:22:17 77312 ----a-w- C:\Windows\System32\rdpwsx.dll
2012-07-05 05:22:17 149504 ----a-w- C:\Windows\System32\rdpcorekmts.dll
2012-07-05 05:21:47 5559664 ----a-w- C:\Windows\System32\ntoskrnl.exe
2012-07-05 05:21:46 3913072 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2012-07-05 05:21:45 3968368 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2012-07-05 05:21:42 3146752 ----a-w- C:\Windows\System32\win32k.sys
2012-07-05 05:21:38 210944 ----a-w- C:\Windows\System32\drivers\rdpwd.sys
2012-07-05 05:11:41 2622464 ----a-w- C:\Windows\System32\wucltux.dll
2012-07-05 05:11:21 99840 ----a-w- C:\Windows\System32\wudriver.dll
2012-07-05 05:11:03 186752 ----a-w- C:\Windows\System32\wuwebv.dll
2012-07-05 05:10:59 36864 ----a-w- C:\Windows\System32\wuapp.exe
2012-07-05 04:49:46 456192 ----a-w- C:\Windows\SetACL.exe
2012-07-05 04:44:40 -------- d-----w- C:\Users\CC\AppData\Roaming\QFX Software
2012-07-05 04:44:40 -------- d-----w- C:\ProgramData\QFX Software
2012-07-05 03:01:52 426184 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2012-07-05 02:56:37 293048 ----a-w- C:\Windows\System32\drivers\VBEngNT.sys
2012-07-05 02:56:37 1097672 ----a-w- C:\Windows\System32\drivers\SandBox64.sys
2012-07-05 02:56:30 424040 ----a-w- C:\Windows\System32\drivers\afwcore.sys
2012-07-05 02:54:59 39528 ----a-w- C:\Windows\System32\drivers\afw.sys
2012-07-05 02:54:32 -------- d-----w- C:\Windows\System32\Filt
2012-07-05 02:54:32 -------- d-----w- C:\Users\CC\AppData\Roaming\Agnitum
2012-07-05 02:54:32 -------- d-----w- C:\Program Files\Agnitum
2012-07-05 02:54:17 -------- d-----w- C:\ProgramData\Agnitum
2012-07-05 02:31:03 222904 ----a-w- C:\Windows\System32\drivers\keyscrambler.sys
2012-07-05 02:31:02 -------- d-----w- C:\Program Files (x86)\KeyScrambler
2012-07-04 13:07:17 -------- d-----w- C:\Program Files (x86)\AMD APP
2012-07-04 12:54:33 927800 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{49869626-5385-4B4E-8B48-5EA6131ED197}\gapaengine.dll
2012-07-03 12:25:27 -------- d-----w- C:\Users\CC\AppData\Local\ElevatedDiagnostics
2012-07-03 04:11:17 -------- d-----w- C:\Users\CC\AppData\Local\Programs
2012-07-01 16:03:10 -------- d-----w- C:\ProgramData\IdealSoftware
2012-07-01 16:03:10 -------- d-----w- C:\IDEALDVDCOPY_TEMP
2012-07-01 16:02:52 -------- d-----w- C:\Users\CC\AppData\Local\IdealSoftware
2012-07-01 16:02:50 -------- d-----w- C:\Program Files (x86)\IdealDVDCopy
2012-07-01 03:59:59 -------- d-----w- C:\Users\CC\AppData\Roaming\ZinioReader4.9310D8F796442B71068C511E15D70529A702D19D.1
2012-07-01 03:59:41 -------- d-----w- C:\Program Files (x86)\Zinio Reader 4
2012-06-30 03:25:58 -------- d-----w- C:\Users\CC\AppData\Roaming\PCDr
2012-06-30 03:03:23 -------- d-----w- C:\Windows\AllMedia Grabber
2012-06-30 03:03:23 -------- d-----w- C:\Program Files (x86)\AllMedia Grabber
2012-06-27 11:46:00 -------- d-----w- C:\Program Files (x86)\Ask.com
2012-06-27 11:45:53 -------- d-----w- C:\Users\CC\AppData\Local\APN
2012-06-27 11:44:54 -------- d-----w- C:\Users\CC\AppData\Local\ArcadeCandy
2012-06-23 05:40:59 -------- d-----w- C:\Binaries
2012-06-23 05:40:50 -------- d-----w- C:\Program Files (x86)\Motorola Media Link
2012-06-18 22:36:48 -------- d-----w- C:\Program Files (x86)\ChordWizard
2012-06-18 06:22:00 -------- d-----w- C:\Users\CC\AppData\Roaming\Motorola Mobility
2012-06-18 06:21:29 -------- d-----w- C:\Program Files\Motorola Inc
2012-06-16 04:30:37 -------- d-----w- C:\Users\CC\AppData\Roaming\Cookapp
2012-06-16 04:30:34 -------- d-----w- C:\ProgramData\Cookapp
2012-06-16 04:30:34 -------- d-----w- C:\Program Files\Cookapp
2012-06-13 11:15:10 927800 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\NISBackup\gapaengine.dll
2012-06-11 18:59:38 10248192 ----a-w- C:\Windows\System32\drivers\atikmdag.sys
2012-06-11 18:35:48 70144 ----a-w- C:\Windows\System32\coinst_8.98.dll
2012-06-11 18:29:34 24826368 ----a-w- C:\Windows\System32\atio6axx.dll
2012-06-11 18:00:32 20467712 ----a-w- C:\Windows\SysWow64\atioglxx.dll
2012-06-11 17:50:46 187392 ----a-w- C:\Windows\System32\clinfo.exe
2012-06-11 17:50:30 75264 ----a-w- C:\Windows\System32\OpenVideo64.dll
2012-06-11 17:50:24 65024 ----a-w- C:\Windows\SysWow64\OpenVideo.dll
2012-06-11 17:50:18 63488 ----a-w- C:\Windows\System32\OVDecode64.dll
2012-06-11 17:50:14 56320 ----a-w- C:\Windows\SysWow64\OVDecode.dll
2012-06-11 17:50:06 16457728 ----a-w- C:\Windows\System32\amdocl64.dll
2012-06-11 17:49:22 13008896 ----a-w- C:\Windows\SysWow64\amdocl.dll
2012-06-11 17:25:06 163840 ----a-w- C:\Windows\System32\atiapfxx.exe
2012-06-11 17:20:02 442368 ----a-w- C:\Windows\System32\ATIDEMGX.dll
2012-06-11 17:19:58 532992 ----a-w- C:\Windows\System32\atieclxx.exe
2012-06-11 17:19:14 239616 ----a-w- C:\Windows\System32\atiesrxx.exe
2012-06-11 17:17:56 120320 ----a-w- C:\Windows\System32\atitmm64.dll
2012-06-11 17:17:42 21504 ----a-w- C:\Windows\System32\atimuixx.dll
2012-06-11 17:17:38 59392 ----a-w- C:\Windows\System32\atiedu64.dll
2012-06-11 17:17:32 43520 ----a-w- C:\Windows\SysWow64\ati2edxx.dll
2012-06-11 17:16:48 6301696 ----a-w- C:\Windows\SysWow64\atidxx32.dll
2012-06-11 16:51:54 4246528 ----a-w- C:\Windows\System32\atiumd6a.dll
2012-06-11 16:45:48 51200 ----a-w- C:\Windows\System32\aticalrt64.dll
2012-06-11 16:45:46 46080 ----a-w- C:\Windows\SysWow64\aticalrt.dll
2012-06-11 16:45:40 44544 ----a-w- C:\Windows\System32\aticalcl64.dll
2012-06-11 16:45:38 44032 ----a-w- C:\Windows\SysWow64\aticalcl.dll
2012-06-11 16:45:26 15703040 ----a-w- C:\Windows\System32\aticaldd64.dll
2012-06-11 16:40:58 13277696 ----a-w- C:\Windows\SysWow64\aticaldd.dll
2012-06-11 16:36:56 6605824 ----a-w- C:\Windows\System32\atiumd64.dll
2012-06-11 16:27:02 539136 ----a-w- C:\Windows\System32\atiadlxx.dll
2012-06-11 16:26:52 368640 ----a-w- C:\Windows\SysWow64\atiadlxy.dll
2012-06-11 16:26:40 17920 ----a-w- C:\Windows\System32\atig6pxx.dll
2012-06-11 16:26:36 14848 ----a-w- C:\Windows\SysWow64\atiglpxx.dll
2012-06-11 16:26:36 14848 ----a-w- C:\Windows\System32\atiglpxx.dll
2012-06-11 16:26:30 41984 ----a-w- C:\Windows\System32\atig6txx.dll
2012-06-11 16:26:22 33280 ----a-w- C:\Windows\SysWow64\atigktxx.dll
2012-06-11 16:26:14 367616 ----a-w- C:\Windows\System32\drivers\atikmpag.sys
2012-06-11 16:25:12 42496 ----a-w- C:\Windows\SysWow64\atiuxpag.dll
2012-06-11 16:25:06 45056 ----a-w- C:\Windows\System32\atiu9p64.dll
2012-06-11 16:24:24 53248 ----a-w- C:\Windows\System32\drivers\ati2erec.dll
2012-06-11 16:23:18 56320 ----a-w- C:\Windows\System32\atimpc64.dll
2012-06-11 16:23:18 56320 ----a-w- C:\Windows\System32\amdpcom64.dll
2012-06-11 16:23:10 56832 ----a-w- C:\Windows\SysWow64\atimpc32.dll
2012-06-11 16:23:10 56832 ----a-w- C:\Windows\SysWow64\amdpcom32.dll
.
==================== Find3M ====================
.
2012-07-05 03:01:52 70344 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2012-06-23 05:40:10 5 ----a-w- C:\Windows\SysWow64\lMMLDeleteUserData42107612FX.tmp
2012-06-11 17:24:58 924160 ----a-w- C:\Windows\SysWow64\aticfx32.dll
2012-06-11 17:23:12 1090560 ----a-w- C:\Windows\System32\aticfx64.dll
2012-06-11 17:01:56 6914560 ----a-w- C:\Windows\System32\atidxx64.dll
2012-06-11 16:45:44 5480448 ----a-w- C:\Windows\SysWow64\atiumdag.dll
2012-06-11 16:43:18 4729344 ----a-w- C:\Windows\SysWow64\atiumdva.dll
2012-06-11 16:25:20 54784 ----a-w- C:\Windows\System32\atiuxp64.dll
2012-06-11 16:24:58 32768 ----a-w- C:\Windows\SysWow64\atiu9pag.dll
2012-05-24 04:22:09 1918320 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2012-05-24 04:21:46 75120 ----a-w- C:\Windows\System32\drivers\partmgr.sys
2012-05-24 04:13:43 1544704 ----a-w- C:\Windows\System32\DWrite.dll
2012-05-24 04:13:43 1077248 ----a-w- C:\Windows\SysWow64\DWrite.dll
2012-05-24 04:11:45 81408 ----a-w- C:\Windows\System32\imagehlp.dll
2012-05-24 04:11:45 5120 ----a-w- C:\Windows\SysWow64\wmi.dll
2012-05-24 04:11:45 5120 ----a-w- C:\Windows\System32\wmi.dll
2012-05-24 04:11:45 23408 ----a-w- C:\Windows\System32\drivers\fs_rec.sys
2012-05-24 04:11:45 220672 ----a-w- C:\Windows\System32\wintrust.dll
2012-05-24 04:11:45 172544 ----a-w- C:\Windows\SysWow64\wintrust.dll
2012-05-24 04:11:45 159232 ----a-w- C:\Windows\SysWow64\imagehlp.dll
2012-05-24 04:05:29 826880 ----a-w- C:\Windows\SysWow64\rdpcore.dll
2012-05-24 04:05:29 23552 ----a-w- C:\Windows\System32\drivers\tdtcp.sys
2012-05-24 04:05:29 1031680 ----a-w- C:\Windows\System32\rdpcore.dll
2012-05-19 19:46:57 74703 ----a-w- C:\Windows\SysWow64\mfc45.dll
2012-05-18 02:06:48 2311680 ----a-w- C:\Windows\System32\jscript9.dll
2012-05-18 01:59:14 1392128 ----a-w- C:\Windows\System32\wininet.dll
2012-05-18 01:58:39 1494528 ----a-w- C:\Windows\System32\inetcpl.cpl
2012-05-18 01:55:22 173056 ----a-w- C:\Windows\System32\ieUnatt.exe
2012-05-18 01:51:30 2382848 ----a-w- C:\Windows\System32\mshtml.tlb
2012-05-17 22:45:37 1800192 ----a-w- C:\Windows\SysWow64\jscript9.dll
2012-05-17 22:35:47 1129472 ----a-w- C:\Windows\SysWow64\wininet.dll
2012-05-17 22:35:39 1427968 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
2012-05-17 22:29:45 142848 ----a-w- C:\Windows\SysWow64\ieUnatt.exe
2012-05-17 22:24:45 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2012-05-17 01:11:24 29712 ----a-w- C:\Windows\System32\nitrolocalmon2.dll
2012-05-17 01:11:24 17936 ----a-w- C:\Windows\System32\nitrolocalui2.dll
2012-05-04 06:01:08 265797 ----a-w- C:\Windows\SysWow64\pdvcodec.dll
2012-04-17 12:25:02 31432 ----a-w- C:\Windows\System32\drivers\ElRawDsk.sys
.
============= FINISH: 17:17:53.22 ===============
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-08-26.01)
.
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume1
Install Date: 12/7/2011 10:11:27 PM
System Uptime: 7/6/2012 1:07:42 PM (4 hours ago)
.
Motherboard: BIOSTAR Group | | N68S3+
Processor: AMD Athlon II X3 450 Processor | CPU 1 | 3200/200mhz
.
==== Disk Partitions =========================
.
A: is Removable
C: is FIXED (NTFS) - 466 GiB total, 368.762 GiB free.
D: is FIXED (NTFS) - 145 GiB total, 4.531 GiB free.
E: is CDROM ()
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP147: 6/22/2012 7:28:03 AM - Windows Update
RP148: 6/23/2012 1:28:14 AM - Installed Moto Contacts Tool.
RP149: 6/23/2012 1:39:20 AM - Installed MotoCast
RP150: 6/24/2012 7:00:06 PM - Windows Backup
RP151: 6/26/2012 7:27:55 AM - Windows Update
RP152: 6/30/2012 8:11:03 AM - Windows Update
RP153: 7/1/2012 7:00:06 PM - Windows Backup
RP154: 7/4/2012 8:53:27 AM - Windows Update
RP155: 7/4/2012 10:54:35 PM - Agnitum Outpost Security Suite Free Restore Point: install
RP156: 7/5/2012 1:10:16 AM - Windows Update
RP157: 7/5/2012 1:42:48 AM - Windows Update
.
==== Installed Programs ======================
.
Update for Microsoft Office 2007 (KB2508958)
4 Elements
7-Zip 9.20
AC3Filter 1.63b
Adobe AIR
Adobe Flash Player 11 ActiveX
Adobe Reader X (10.1.1)
Advanced SystemCare 5
Age of Japan
AI RoboForm (All Users)
AllMedia Grabber
Amazon Add to Wish List IE Extension 1.2
Android SDK Tools
Aneesoft AVCHD Converter GOTD Edition 3.1.0.0
Angry Birds Rio
AnVir Task Manager
AnVir Task Manager Pro
Apple Application Support
Apple Software Update
ArcadeCandy
ArcSoft Perfect365
Ashampoo Burning Studio 2012 v10.0.15
Ashampoo Burning Studio Elements 10.0.9
Ashampoo WinOptimizer 8 v.8.13
Ask Toolbar
Ask Toolbar Updater
AviSynth 2.5
Barricade 3.5.1
Bass Audio Decoder (remove only)
BDlot Blu-ray Ripper 3.4.0
Big Fish Games: Game Manager
Bing Bar
Bing Bar Platform
Bing Rewards Client Installer
BIOS Update
BIOScreen
Brickshooter Egypt
Call Graph
Call of Atlantis
CamStudio OSS Desktop Recorder
CamToPrint
Catalyst Control Center - Branding
Catalyst Control Center Graphics Previews Common
Catalyst Control Center InstallProxy
Catalyst Control Center Localization All
CCC Help Chinese Standard
CCC Help Chinese Traditional
CCC Help Czech
CCC Help Danish
CCC Help Dutch
CCC Help English
CCC Help Finnish
CCC Help French
CCC Help German
CCC Help Greek
CCC Help Italian
CCC Help Korean
CCC Help Norwegian
CCC Help Polish
CCC Help Portuguese
CCC Help Russian
CCC Help Spanish
CCC Help Swedish
CCC Help Thai
CCC Help Turkish
CD Audio Reader Filter (remove only)
Christmas Eve 3D Screensaver 1.0
Coupon Printer for Windows
DCoder Image Source (remove only)
DirectVobSub (remove only)
Dropbox
DScaler 5 Mpeg Decoders
ExifCleaner 1.7
Face Off Max
Farmscapes
ffdshow [rev 3154] [2009-12-09]
FFMPEG Core Files (remove only)
Flip Album
FoxyTunes for Internet Explorer
Free File Viewer 2011
FW LiveUpdate
Gabest MPEG Splitter (remove only)
Game Booster 3
GameSpy Arcade
GiPo@MoveOnBoot 1.9.5
Google Chrome
Google Talk Plugin
Google Update Helper
GrampsAIO
Haali Media Splitter
High-Definition Video Playback
HP Deskjet 3050 J610 series Help
HP Deskjet 3050A J611 series Help
HP Photo Creations
HP Update
HydraVision
iCare Format Recovery 4.6.3.3
IcoFX 1.6.4
Ideal DVD Copy V4.1.2
Inpaint 3.1
IrfanView (remove only)
Java Auto Updater
Java 6 Update 25
KeePass Password Safe 2.18
KeyScrambler
LAV Filters (remove only)
LightScribe Diagnostic Utility
LightScribe System Software
LightScribe Template Labeler
Logitech Webcam Software
LWS Help_main
LWS Launcher
LWS Motion Detection
LWS Pictures And Video
LWS Video Mask Maker
LWS Webcam Software
Malwarebytes Anti-Malware version 1.61.0.1400
MCEBuddy 2.1
MediaPortal
MediaPortal TV Server / Client
Microsoft Expression Encoder 4
Microsoft Expression Encoder 4 Screen Capture Codec
Microsoft Garage Mouse without Borders
Microsoft Halo Trial
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Access MUI (English) 2007
Microsoft Office Access Setup Metadata MUI (English) 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office File Validation Add-In
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Professional 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Save as PDF or XPS Add-in for 2007 Microsoft Office programs
Microsoft Silverlight
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
Microsoft Visual C++ Run Time Lib Setup
Microsoft Windows Media Video 9 VCM
Moto Contacts Tool
MotoCast
MotoHelper MergeModules
Motorola Device Manager
Motorola Device Software Update
MOTOROLA MEDIA LINK
Movavi Video Editor 7 SE
Moyea PPT to PDF Converter version 1.2.0.8
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 4.0 SP2 Parser and SDK
Music Manager
MyHeritage Family Tree Builder
MyKeyFinder
Nero 10 Menu TemplatePack Basic
Nero 10 Movie ThemePack Basic
Nero BurnRights 10
Nero Control Center 10
Nero ControlCenter 10 Help (CHM)
Nero Core Components 10
Nero CoverDesigner 10
Nero DiscSpeed 10
Nero Express 10
Nero InfoTool 10
Nero MediaHub 10
Nero Multimedia Suite 10 Essentials
Nero Recode 10
Nero StartSmart 10
Nero Update
Nero Vision 10
NVIDIA Performance
NVIDIA System Monitor
OpenSource AVI Splitter (remove only)
OpenSource DTS/AC3/DD+ Source Filter (remove only)
OpenSource Flash Video Splitter 1.0.0.5
Paragon Drive Copy™ 11 Professional Special Edition (English)
PDF Logo Remover 1.0
PDFZilla V1.2.9
Photo Toolbox for Windows version 1.7.4.5
Picasa 3
RealMedia (remove only)
Realtek High Definition Audio Driver
Royal Envoy
Secunia PSI (2.0.0.4003)
Security Update for CAPICOM (KB931906)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)
Security Update for Microsoft .NET Framework 4 Extended (KB2416472)
Security Update for Microsoft .NET Framework 4 Extended (KB2487367)
Security Update for Microsoft .NET Framework 4 Extended (KB2656351)
Security Update for Microsoft Office 2007 suites (KB2596672) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596785) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596880) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2597162) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2598041) 32-Bit Edition
Security Update for Microsoft Office Excel 2007 (KB2597161) 32-Bit Edition
Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition
Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition
Security Update for Microsoft Office Publisher 2007 (KB2596705) 32-Bit Edition
Security Update for Microsoft Office Word 2007 (KB2596917) 32-Bit Edition
Simpo PDF to Text 2.2.0.0
Skype Click to Call
Skype™ 5.8
Smart Defrag 2
Sound Editor Deluxe v6.0.1
SumatraPDF
System Requirements Lab
System Requirements Lab CYRI
Tether
TSST OEM Content
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2473228)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
Update for Microsoft .NET Framework 4 Extended (KB2468871)
Update for Microsoft .NET Framework 4 Extended (KB2533523)
Update for Microsoft .NET Framework 4 Extended (KB2600217)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office Access 2007 Help (KB963663)
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office Outlook 2007 Help (KB963677)
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2687267) 32-Bit Edition
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Publisher 2007 Help (KB963667)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 Help (KB963665)
VLC media player 2.0.1
Vuze
Vuze Remote Toolbar
WebM Project Directshow Filters
Wondershare PDF Converter (Build 3.0.0)
Wondershare PDF to Word (Build 3.5.0)
World of Tanks v.0.7.0
YTD YouTube Downloader & Converter 3.6
Zinio Reader 4
Zoom Player (remove only)
.
==== Event Viewer Messages From Past Week ========
.
7/6/2012 7:28:17 AM, Error: Service Control Manager [7024] - The HomeGroup Listener service terminated with service-specific error %%-2147023143.
7/6/2012 7:26:21 AM, Error: Service Control Manager [7023] - The Windows Defender service terminated with the following error: The specified module could not be found.
7/6/2012 5:01:03 PM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Netman service.
7/5/2012 10:35:11 AM, Error: Microsoft-Windows-DistributedCOM [10001] - Unable to start a DCOM Server: {995C996E-D918-4A8C-A302-45719A6F4EA7} as /. The error: "5" Happened while starting this command: C:\Windows\System32\rundll32.exe shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
7/4/2012 9:03:11 AM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the AMD External Events Utility service to connect.
7/4/2012 9:03:11 AM, Error: Service Control Manager [7000] - The AMD External Events Utility service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
7/4/2012 8:42:21 AM, Error: Service Control Manager [7000] - The AODDriver4.1 service failed to start due to the following error: The system cannot find the file specified.
7/3/2012 8:32:29 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service wuauserv with arguments "" in order to run the server: {E60687F7-01A1-40AA-86AC-DB1CBF673334}
7/3/2012 8:32:25 AM, Error: Service Control Manager [7001] - The Computer Browser service depends on the Server service which failed to start because of the following error: The dependency service or group failed to start.
7/3/2012 8:23:34 AM, Error: Service Control Manager [7001] - The HomeGroup Provider service depends on the Function Discovery Provider Host service which failed to start because of the following error: The dependency service or group failed to start.
7/3/2012 8:23:33 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
7/3/2012 8:23:33 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
7/3/2012 8:23:24 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
7/3/2012 8:23:16 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC}
7/3/2012 8:23:13 AM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: BIOS BS_I2cIo discache ElRawDisk MpFilter spldr Wanarpv6
7/2/2012 7:39:22 AM, Error: Service Control Manager [7031] - The Windows Media Player Network Sharing Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service.
7/2/2012 7:18:32 AM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Mouse without Borders Service service to connect.
7/2/2012 7:18:32 AM, Error: Service Control Manager [7000] - The Mouse without Borders Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
6/29/2012 11:21:12 PM, Error: Schannel [36888] - The following fatal alert was generated: 40. The internal error state is 107.
6/29/2012 11:21:12 PM, Error: Schannel [36874] - An SSL 3.0 connection request was received from a remote client application, but none of the cipher suites supported by the client application are supported by the server. The SSL connection request has failed.
.
==== End Of File ===========================
Pop up and different web pages
in Resolved Malware Removal Logs
Posted
Retried step 3 with antivirus and firewall off .Still can not get computer to download