Jump to content

twodimensions

Members
  • Posts

    10
  • Joined

  • Last visited

Reputation

0 Neutral
  1. Yeah it was still the same while in safe mode with networking.
  2. Ran that program. That didn't change it. It's fine if the problem cast be resolved. It's no big issue at the moment. But if you do have any other suggestions I will be willing to try them.
  3. Google is no longer sending me off to random pages. Thank you. But my computer still takes for ever to connect to upload servers. I'm not sure if its a virus. But out of 10 devices on the network my computer is the only one that is slow connecting to upload servers. Mine is also the only one connected via Ethernet cable so I should be less likely to have this trouble if it was just the router which I have replaced.
  4. Here are the logs. # AdwCleaner v2.008 - Logfile created 11/19/2012 at 14:17:23 # Updated 17/11/2012 by Xplode # Operating system : Windows 7 Ultimate (64 bits) # User : Dwayne - DWAYNE-PC # Boot Mode : Normal # Running from : C:\Users\Dwayne\Desktop\Virus Removal Stuff\adwcleaner.exe # Option [Delete] ***** [services] ***** ***** [Files / Folders] ***** Folder Deleted : C:\ProgramData\Ask Folder Deleted : C:\Users\Dwayne\AppData\Local\APN ***** [Registry] ***** Key Deleted : HKCU\Software\APN PIP Key Deleted : HKLM\Software\Freeze.com Key Deleted : HKLM\Software\PIP ***** [internet Browsers] ***** -\\ Internet Explorer v9.0.8112.16421 [OK] Registry is clean. -\\ Google Chrome v23.0.1271.64 File : C:\Users\Dwayne\AppData\Local\Google\Chrome\User Data\Default\Preferences [OK] File is clean. ************************* AdwCleaner[s1].txt - [861 octets] - [19/11/2012 14:17:23] ########## EOF - C:\AdwCleaner[s1].txt - [920 octets] ########## Malwarebytes Anti-Malware 1.65.1.1000 www.malwarebytes.org Database version: v2012.11.18.06 Windows 7 x64 NTFS Internet Explorer 9.0.8112.16421 Dwayne :: DWAYNE-PC [administrator] 19-Nov-12 2:19:59 PM mbam-log-2012-11-19 (14-19-59).txt Scan type: Quick scan Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM Scan options disabled: P2P Objects scanned: 227331 Time elapsed: 2 minute(s), 12 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 0 (No malicious items detected) (end) C:\FRST\Quarantine\goog1e_error_stream.zip a variant of Win32/Kryptik.AOUE trojan
  5. Hey! Here are the logs. FRST log: Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 18-11-2012 Ran by SYSTEM at 2012-11-19 12:13:05 Run:1 Running from F:\ ============================================== C:\Windows\Tasks\Ujbccoxclv.job moved successfully. C:\Windows\SysWOW64\xwizard5.dll moved successfully. C:\Users\Dwayne\Downloads\goog1e_error_stream.zip moved successfully. ==== End of Fixlog ==== ComboFix log: ComboFix 12-11-16.02 - Dwayne 19-Nov-12 12:20:05.1.6 - x64 Microsoft Windows 7 Ultimate 6.1.7600.0.1252.1.1033.18.8172.6366 [GMT 11:00] Running from: c:\users\Dwayne\Desktop\ComboFix.exe AV: Microsoft Security Essentials *Enabled/Updated* {B140BF4E-23BB-4198-90AB-A51A4C60A69C} SP: Microsoft Security Essentials *Enabled/Updated* {0A215EAA-0581-4E16-AA1B-9E6837E7EC21} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} * Created a new restore point . . ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) . . c:\windows\7Loader.TAG . . ((((((((((((((((((((((((( Files Created from 2012-10-19 to 2012-11-19 ))))))))))))))))))))))))))))))) . . 2012-11-17 14:57 . 2012-10-12 07:19 9291768 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{20E5A83C-ECED-4C8C-8F55-4428F44A99F4}\mpengine.dll 2012-11-17 13:39 . 2012-11-17 13:39 -------- d-----w- c:\users\Dwayne\AppData\Roaming\Malwarebytes 2012-11-17 13:38 . 2012-11-17 13:38 -------- d-----w- c:\programdata\Malwarebytes 2012-11-17 13:38 . 2012-11-17 13:38 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware 2012-11-17 13:38 . 2012-09-29 08:54 25928 ----a-w- c:\windows\system32\drivers\mbam.sys 2012-11-17 12:10 . 2012-10-29 10:04 66395536 ----a-w- c:\windows\system32\MRT.exe 2012-11-17 12:00 . 2012-11-17 12:00 -------- d-----w- c:\program files (x86)\LogMeIn Hamachi 2012-11-17 11:54 . 2012-07-26 04:55 785512 ----a-w- c:\windows\system32\drivers\Wdf01000.sys 2012-11-17 11:54 . 2012-07-26 04:55 54376 ----a-w- c:\windows\system32\drivers\WdfLdr.sys 2012-11-17 11:54 . 2012-07-26 04:47 2560 ----a-w- c:\windows\system32\drivers\en-US\wdf01000.sys.mui 2012-11-17 11:54 . 2012-07-26 02:36 9728 ----a-w- c:\windows\system32\Wdfres.dll 2012-11-17 11:49 . 2012-07-26 03:08 84992 ----a-w- c:\windows\system32\WUDFSvc.dll 2012-11-17 11:49 . 2012-07-26 03:08 194048 ----a-w- c:\windows\system32\WUDFPlatform.dll 2012-11-17 11:49 . 2012-07-26 02:26 87040 ----a-w- c:\windows\system32\drivers\WUDFPf.sys 2012-11-17 11:49 . 2012-07-26 02:26 198656 ----a-w- c:\windows\system32\drivers\WUDFRd.sys 2012-11-17 11:49 . 2012-07-26 03:08 229888 ----a-w- c:\windows\system32\WUDFHost.exe 2012-11-17 11:49 . 2012-07-26 03:08 744448 ----a-w- c:\windows\system32\WUDFx.dll 2012-11-17 11:49 . 2012-07-26 03:08 45056 ----a-w- c:\windows\system32\WUDFCoinstaller.dll 2012-11-17 05:33 . 2012-10-12 07:19 9291768 ----a-w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll 2012-11-17 05:32 . 2012-10-18 18:18 3147264 ----a-w- c:\windows\system32\win32k.sys 2012-11-17 05:30 . 2012-09-25 22:39 95744 ----a-w- c:\windows\system32\synceng.dll 2012-11-17 05:30 . 2012-09-25 21:55 78336 ----a-w- c:\windows\SysWow64\synceng.dll 2012-11-14 06:26 . 2010-06-01 17:55 77656 ----a-w- c:\windows\system32\XAPOFX1_5.dll 2012-11-14 06:26 . 2010-06-01 17:55 518488 ----a-w- c:\windows\system32\XAudio2_7.dll 2012-11-14 06:26 . 2010-05-26 00:41 2526056 ----a-w- c:\windows\system32\D3DCompiler_43.dll 2012-11-14 06:26 . 2010-05-26 00:41 2106216 ----a-w- c:\windows\SysWow64\D3DCompiler_43.dll 2012-11-14 06:25 . 2010-05-26 00:41 276832 ----a-w- c:\windows\system32\d3dx11_43.dll 2012-11-14 06:25 . 2010-05-26 00:41 248672 ----a-w- c:\windows\SysWow64\d3dx11_43.dll 2012-11-14 06:25 . 2010-05-26 00:41 2401112 ----a-w- c:\windows\system32\D3DX9_43.dll 2012-11-13 06:07 . 2012-11-13 06:07 289768 ----a-w- c:\windows\system32\javaws.exe 2012-11-13 06:07 . 2012-11-13 06:07 108008 ----a-w- c:\windows\system32\WindowsAccessBridge-64.dll 2012-11-13 06:07 . 2012-11-13 06:07 189416 ----a-w- c:\windows\system32\javaw.exe 2012-11-13 06:07 . 2012-11-13 06:07 188904 ----a-w- c:\windows\system32\java.exe 2012-11-13 06:02 . 2012-11-13 06:02 -------- d-----w- c:\program files (x86)\Common Files\Java 2012-11-13 06:01 . 2012-11-13 06:01 95208 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll 2012-11-13 06:01 . 2012-11-13 06:01 -------- d-----w- c:\program files (x86)\Java 2012-11-13 05:50 . 2012-11-15 02:27 -------- d-----w- c:\users\Dwayne\AppData\Roaming\.minecraft 2012-10-29 08:21 . 2011-04-21 15:17 74272 ----a-w- c:\windows\system32\RtNicProp64.dll 2012-10-29 08:21 . 2011-04-21 15:17 107552 ----a-w- c:\windows\system32\RTNUninst64.dll 2012-10-24 13:32 . 2012-10-24 13:32 -------- d-----w- c:\users\Dwayne\AppData\Local\APN 2012-10-24 13:32 . 2012-10-24 13:32 -------- d-----w- c:\programdata\Ask 2012-10-24 13:30 . 2012-10-25 00:15 -------- d-----w- c:\program files (x86)\ManyCam 2012-10-23 06:47 . 2012-10-23 06:47 -------- d-----w- c:\users\Dwayne\AppData\Local\DayZCommander 2012-10-23 06:39 . 2012-10-25 03:10 -------- d-----w- c:\users\Dwayne\AppData\Local\ArmA 2 OA 2012-10-23 06:35 . 2012-10-23 06:35 -------- d-----w- c:\program files (x86)\Bohemia Interactive 2012-10-23 06:33 . 2012-10-23 06:33 -------- d-----w- c:\program files (x86)\Dotjosh Studios 2012-10-23 06:30 . 2012-10-23 06:30 -------- d-----w- c:\users\Dwayne\AppData\Local\ArmA 2 2012-10-20 14:52 . 2012-10-08 04:26 972192 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{6C0FCBA0-F390-45C8-BFD5-B9420065AD21}\gapaengine.dll 2012-10-20 03:23 . 2009-03-18 05:35 33856 ---ha-w- c:\windows\system32\hamachi.sys . . . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2012-11-13 06:07 . 2012-08-25 05:36 916456 ----a-w- c:\windows\system32\deployJava1.dll 2012-11-13 06:07 . 2012-08-25 05:36 1034216 ----a-w- c:\windows\system32\npDeployJava1.dll 2012-11-13 06:01 . 2012-09-21 22:40 746984 ----a-w- c:\windows\SysWow64\deployJava1.dll 2012-11-13 06:01 . 2012-09-21 22:40 821736 ----a-w- c:\windows\SysWow64\npDeployJava1.dll 2012-11-12 05:57 . 2012-09-11 00:21 73656 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2012-11-12 05:57 . 2012-09-11 00:21 697272 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2012-10-29 08:38 . 2012-10-16 15:02 281312 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr 2012-10-29 08:38 . 2012-10-16 13:38 281312 ----a-w- c:\windows\SysWow64\PnkBstrB.exe 2012-10-29 08:38 . 2012-10-16 13:38 218496 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0 2012-10-25 00:16 . 2012-10-02 00:48 32320 ----a-w- c:\windows\system32\drivers\FNETTBOH_305.SYS 2012-10-17 14:43 . 2012-10-16 13:38 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe 2012-10-11 03:08 . 2012-10-11 03:08 44928 ----a-w- c:\windows\system32\drivers\mcvidrv_x64.sys 2012-10-11 03:08 . 2012-10-11 03:08 29696 ----a-w- c:\windows\system32\drivers\mcaudrv_x64.sys 2012-10-10 10:23 . 2012-10-10 10:23 247144 ----a-w- c:\windows\system32\nvinitx.dll 2012-10-10 10:23 . 2012-10-10 10:23 1867112 ----a-w- c:\windows\SysWow64\nvcuvenc.dll 2012-10-10 10:23 . 2012-10-10 10:23 18252136 ----a-w- c:\windows\system32\nvd3dumx.dll 2012-10-10 10:23 . 2012-10-10 10:23 1482600 ----a-w- c:\windows\system32\nvdispgenco64.dll 2012-10-10 10:23 . 2012-10-10 10:23 6127464 ----a-w- c:\windows\SysWow64\nvopencl.dll 2012-10-10 10:23 . 2012-10-10 10:23 2574696 ----a-w- c:\windows\SysWow64\nvcuvid.dll 2012-10-10 10:23 . 2012-10-10 10:23 25256296 ----a-w- c:\windows\system32\nvcompiler.dll 2012-10-10 10:23 . 2012-10-10 10:23 831848 ----a-w- c:\windows\SysWow64\nvumdshim.dll 2012-10-10 10:23 . 2012-10-10 10:23 202600 ----a-w- c:\windows\SysWow64\nvinit.dll 2012-10-10 10:23 . 2012-10-10 10:23 7414632 ----a-w- c:\windows\system32\nvopencl.dll 2012-10-10 10:23 . 2012-10-10 10:23 2731880 ----a-w- c:\windows\system32\nvapi64.dll 2012-10-10 10:23 . 2012-10-10 10:23 973672 ----a-w- c:\windows\system32\nvumdshimx.dll 2012-10-10 10:23 . 2012-10-10 10:23 14922600 ----a-w- c:\windows\system32\nvwgf2umx.dll 2012-10-10 10:23 . 2012-10-10 10:23 9146728 ----a-w- c:\windows\system32\nvcuda.dll 2012-10-10 10:23 . 2012-10-10 10:23 7697768 ----a-w- c:\windows\SysWow64\nvcuda.dll 2012-10-10 10:23 . 2012-10-10 10:23 2218344 ----a-w- c:\windows\system32\nvcuvenc.dll 2012-10-10 10:23 . 2012-10-10 10:23 12501352 ----a-w- c:\windows\SysWow64\nvwgf2um.dll 2012-10-10 10:22 . 2012-10-10 10:22 2428776 ----a-w- c:\windows\SysWow64\nvapi.dll 2012-10-10 10:22 . 2012-10-10 10:22 26331496 ----a-w- c:\windows\system32\nvoglv64.dll 2012-10-10 10:22 . 2012-08-25 05:13 1760104 ----a-w- c:\windows\system32\nvdispco64.dll 2012-10-10 10:22 . 2012-10-10 10:22 15309160 ----a-w- c:\windows\SysWow64\nvd3dum.dll 2012-10-10 10:22 . 2012-10-10 10:22 2747240 ----a-w- c:\windows\system32\nvcuvid.dll 2012-10-10 10:22 . 2012-10-10 10:22 19906920 ----a-w- c:\windows\SysWow64\nvoglv32.dll 2012-10-10 10:22 . 2012-10-10 10:22 13443944 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys 2012-10-10 10:22 . 2012-10-10 10:22 17559912 ----a-w- c:\windows\SysWow64\nvcompiler.dll 2012-10-08 04:26 . 2012-10-08 04:26 972192 ------w- c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\NISBackup\gapaengine.dll 2012-10-02 19:51 . 2012-08-28 03:37 3536817 ----a-w- c:\windows\system32\nvcoproc.bin 2012-10-02 19:51 . 2012-08-25 05:14 3293544 ----a-w- c:\windows\system32\nvsvc64.dll 2012-10-02 19:51 . 2012-08-25 05:14 6200680 ----a-w- c:\windows\system32\nvcpl.dll 2012-10-02 19:50 . 2012-08-25 05:14 891240 ----a-w- c:\windows\system32\nvvsvc.exe 2012-10-02 19:50 . 2012-08-25 05:14 63336 ----a-w- c:\windows\system32\nvshext.dll 2012-10-02 19:50 . 2012-08-25 05:14 2557800 ----a-w- c:\windows\system32\nvsvcr.dll 2012-10-02 19:50 . 2012-08-25 05:14 118120 ----a-w- c:\windows\system32\nvmctray.dll 2012-10-02 02:15 . 2012-10-02 02:15 430952 ----a-w- c:\windows\SysWow64\nvStreaming.exe 2012-09-27 05:09 . 2012-09-27 05:09 466456 ----a-w- c:\windows\system32\wrap_oal.dll 2012-09-27 05:09 . 2012-09-27 05:09 444952 ----a-w- c:\windows\SysWow64\wrap_oal.dll 2012-09-27 05:09 . 2012-09-27 05:09 122904 ----a-w- c:\windows\system32\OpenAL32.dll 2012-09-27 05:09 . 2012-09-27 05:09 109080 ----a-w- c:\windows\SysWow64\OpenAL32.dll 2012-09-14 19:23 . 2012-10-10 04:05 2048 ----a-w- c:\windows\system32\tzres.dll 2012-09-14 18:30 . 2012-10-10 04:05 2048 ----a-w- c:\windows\SysWow64\tzres.dll 2012-09-08 08:15 . 2012-09-08 08:15 15936 ----a-w- c:\windows\system32\drivers\FNETURPX.SYS 2012-08-31 18:02 . 2012-10-10 04:06 1656688 ----a-w- c:\windows\system32\drivers\ntfs.sys 2012-08-30 18:11 . 2012-10-10 04:06 5505904 ----a-w- c:\windows\system32\ntoskrnl.exe 2012-08-30 17:18 . 2012-10-10 04:06 3958128 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe 2012-08-30 17:18 . 2012-10-10 04:06 3902832 ----a-w- c:\windows\SysWow64\ntoskrnl.exe 2012-08-30 12:03 . 2012-08-30 12:03 228768 ----a-w- c:\windows\system32\drivers\MpFilter.sys 2012-08-30 12:03 . 2012-03-20 10:44 128456 ----a-w- c:\windows\system32\drivers\NisDrvWFP.sys 2012-08-25 06:34 . 2012-08-25 06:34 91648 ----a-w- c:\windows\system32\SetIEInstalledDate.exe 2012-08-25 06:34 . 2012-08-25 06:34 89088 ----a-w- c:\windows\system32\RegisterIEPKEYs.exe 2012-08-25 06:34 . 2012-08-25 06:34 89088 ----a-w- c:\windows\system32\ie4uinit.exe 2012-08-25 06:34 . 2012-08-25 06:34 86528 ----a-w- c:\windows\SysWow64\iesysprep.dll 2012-08-25 06:34 . 2012-08-25 06:34 85504 ----a-w- c:\windows\system32\iesetup.dll 2012-08-25 06:34 . 2012-08-25 06:34 82432 ----a-w- c:\windows\system32\icardie.dll 2012-08-25 06:34 . 2012-08-25 06:34 76800 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe 2012-08-25 06:34 . 2012-08-25 06:34 76800 ----a-w- c:\windows\system32\tdc.ocx 2012-08-25 06:34 . 2012-08-25 06:34 74752 ----a-w- c:\windows\SysWow64\RegisterIEPKEYs.exe 2012-08-25 06:34 . 2012-08-25 06:34 74752 ----a-w- c:\windows\SysWow64\iesetup.dll 2012-08-25 06:34 . 2012-08-25 06:34 65024 ----a-w- c:\windows\system32\pngfilt.dll 2012-08-25 06:34 . 2012-08-25 06:34 63488 ----a-w- c:\windows\SysWow64\tdc.ocx 2012-08-25 06:34 . 2012-08-25 06:34 55296 ----a-w- c:\windows\system32\msfeedsbs.dll 2012-08-25 06:34 . 2012-08-25 06:34 534528 ----a-w- c:\windows\system32\ieapfltr.dll 2012-08-25 06:34 . 2012-08-25 06:34 49664 ----a-w- c:\windows\system32\imgutil.dll 2012-08-25 06:34 . 2012-08-25 06:34 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll 2012-08-25 06:34 . 2012-08-25 06:34 48640 ----a-w- c:\windows\system32\mshtmler.dll 2012-08-25 06:34 . 2012-08-25 06:34 452608 ----a-w- c:\windows\system32\dxtmsft.dll 2012-08-25 06:34 . 2012-08-25 06:34 448512 ----a-w- c:\windows\system32\html.iec 2012-08-25 06:34 . 2012-08-25 06:34 403248 ----a-w- c:\windows\system32\iedkcs32.dll 2012-08-25 06:34 . 2012-08-25 06:34 39936 ----a-w- c:\windows\system32\iernonce.dll 2012-08-25 06:34 . 2012-08-25 06:34 3695416 ----a-w- c:\windows\system32\ieapfltr.dat 2012-08-25 06:34 . 2012-08-25 06:34 367104 ----a-w- c:\windows\SysWow64\html.iec 2012-08-25 06:34 . 2012-08-25 06:34 35840 ----a-w- c:\windows\SysWow64\imgutil.dll 2012-08-25 06:34 . 2012-08-25 06:34 30720 ----a-w- c:\windows\system32\licmgr10.dll 2012-08-25 06:34 . 2012-08-25 06:34 282112 ----a-w- c:\windows\system32\dxtrans.dll 2012-08-25 06:34 . 2012-08-25 06:34 267776 ----a-w- c:\windows\system32\ieaksie.dll 2012-08-25 06:34 . 2012-08-25 06:34 249344 ----a-w- c:\windows\system32\webcheck.dll 2012-08-25 06:34 . 2012-08-25 06:34 23552 ----a-w- c:\windows\SysWow64\licmgr10.dll 2012-08-25 06:34 . 2012-08-25 06:34 222208 ----a-w- c:\windows\system32\msls31.dll 2012-08-25 06:34 . 2012-08-25 06:34 197120 ----a-w- c:\windows\system32\msrating.dll 2012-08-25 06:34 . 2012-08-25 06:34 165888 ----a-w- c:\windows\system32\iexpress.exe 2012-08-25 06:34 . 2012-08-25 06:34 163840 ----a-w- c:\windows\system32\ieakui.dll 2012-08-25 06:34 . 2012-08-25 06:34 161792 ----a-w- c:\windows\SysWow64\msls31.dll 2012-08-25 06:34 . 2012-08-25 06:34 160256 ----a-w- c:\windows\system32\wextract.exe 2012-08-25 06:34 . 2012-08-25 06:34 160256 ----a-w- c:\windows\system32\ieakeng.dll 2012-08-25 06:34 . 2012-08-25 06:34 152064 ----a-w- c:\windows\SysWow64\wextract.exe 2012-08-25 06:34 . 2012-08-25 06:34 150528 ----a-w- c:\windows\SysWow64\iexpress.exe 2012-08-25 06:34 . 2012-08-25 06:34 149504 ----a-w- c:\windows\system32\occache.dll 2012-08-25 06:34 . 2012-08-25 06:34 145920 ----a-w- c:\windows\system32\iepeers.dll . . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Steam"="c:\program files (x86)\Steam\steam.exe" [2012-08-26 1353080] "Xvid"="c:\program files (x86)\Xvid\CheckUpdate.exe" [2011-01-17 8192] "Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2012-07-13 17418928] "Spotify Web Helper"="c:\users\Dwayne\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" [2012-10-26 1199576] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "LGODDFU"="c:\program files (x86)\lg_fwupdate\lgfw.exe" [2012-08-25 27760] "XFastUSB"="c:\program files (x86)\XFastUSB\XFastUsb.exe" [2012-09-08 5019360] "APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-08-27 59280] "QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2012-04-18 421888] "iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2012-09-09 421776] "Logitech G35"="c:\program files (x86)\Logitech\G35\G35.exe" [2010-10-04 1811800] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2012-07-02 252848] "LogMeIn Hamachi Ui"="c:\program files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" [2012-11-15 2254768] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc] @="Service" . R2 DeviceManager;DeviceManager;c:\program files (x86)\Common Files\DeviceHelper\DeviceManager.exe [2010-08-27 40960] R2 LMIInfo;LogMeIn Kernel Information Provider;c:\program files (x86)\LogMeIn\x64\RaInfo.sys [x] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944] R3 ALSysIO;ALSysIO;c:\users\Dwayne\AppData\Local\Temp\ALSysIO64.sys [x] R3 FNETTBOH_305;FNETTBOH_305;c:\windows\system32\drivers\FNETTBOH_305.SYS [2012-10-25 32320] R3 jrdusbser;Mobile Connector Device for Legacy Serial Communication;c:\windows\system32\DRIVERS\jrdusbser.sys [2011-02-25 119680] R3 ManyCam;ManyCam Virtual Webcam;c:\windows\system32\DRIVERS\mcvidrv_x64.sys [2012-10-11 44928] R3 mcaudrv_simple;ManyCam Virtual Microphone;c:\windows\system32\drivers\mcaudrv_x64.sys [2012-10-11 29696] R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [2012-07-09 52736] R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [2012-08-25 1255736] S0 AsrRamDisk;AsrRamDisk;c:\windows\system32\DRIVERS\AsrRamDisk.sys [2012-01-13 31016] S1 AsrAppCharger;AsrAppCharger;c:\windows\system32\DRIVERS\AsrAppCharger.sys [2011-05-10 17192] S1 FNETURPX;FNETURPX;c:\windows\system32\drivers\FNETURPX.SYS [2012-09-08 15936] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576] S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe [2012-11-15 2461104] S2 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys [2012-08-30 128456] S2 RichVideo64;Cyberlink RichVideo64 Service(CRVS);c:\program files\CyberLink\Shared files\RichVideo64.exe [2012-04-24 390632] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-02 382824] S3 asmthub3;ASMedia USB3 Hub Service;c:\windows\system32\DRIVERS\asmthub3.sys [2011-03-04 126952] S3 asmtxhci;ASMEDIA XHCI Service;c:\windows\system32\DRIVERS\asmtxhci.sys [2011-03-04 390632] S3 LADF_DHP2;G35 DHP2 Filter Driver;c:\windows\system32\DRIVERS\ladfDHP2amd64.sys [2010-09-29 62168] S3 LADF_SBVM;G35 SBVM Filter Driver;c:\windows\system32\DRIVERS\ladfSBVMamd64.sys [2010-09-29 377176] S3 MBfilt;MBfilt;c:\windows\system32\drivers\MBfilt64.sys [2009-11-17 32344] S3 NisSrv;Microsoft Network Inspection;c:\program files\Microsoft Security Client\NisSrv.exe [2012-09-12 368896] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys [2011-04-21 471144] S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys [2011-12-13 56448] . . Contents of the 'Scheduled Tasks' folder . 2012-11-17 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2293673226-3569007444-2329871908-1000Core.job - c:\users\Dwayne\AppData\Local\Google\Update\GoogleUpdate.exe [2012-08-25 05:19] . 2012-11-18 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2293673226-3569007444-2329871908-1000UA.job - c:\users\Dwayne\AppData\Local\Google\Update\GoogleUpdate.exe [2012-08-25 05:19] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2012-09-12 1289704] . ------- Supplementary Scan ------- . uLocal Page = c:\windows\system32\blank.htm mLocal Page = c:\windows\SysWOW64\blank.htm uInternet Settings,ProxyOverride = *.local . - - - - ORPHANS REMOVED - - - - . Wow6432Node-HKLM-Run-ModemListener - c:\users\Dwayne\Desktop\Dodo Mobile Broadband\ModemListener.exe HKLM-Run-LogMeIn GUI - c:\program files (x86)\LogMeIn\x64\LogMeInSystray.exe AddRemove-BattlEye for A2 - c:\program files (x86)\Steam\steamapps\common\Arma 2BattlEye\UnInstallBE.exe AddRemove-Dodo Mobile Broadband ALCATEL_is1 - c:\users\Dwayne\Desktop\Dodo Mobile Broadband\uninst\unins000.exe AddRemove-PunkBusterSvc - c:\windows\system32\pbsvc_moh.exe . . "ImagePath"="\"c:\program files\CyberLink\Shared files\RichVideo64.exe\"\00Z [\]^_ì\00\00ì\00\00\00\00HIJKLMNO\00\00\00\00\00\00\00\00\03\00\00\00|}~ì\00\00ì\00\00\00\00V\00\00\00\00\00\00\00\00‘’“" . . --------------------- LOCKED REGISTRY KEYS --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_5_502_110_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_5_502_110_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_5_502_110_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_5_502_110_ActiveX.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_5_502_110.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.11" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_5_502_110.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_5_502_110.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_5_502_110.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Completion time: 2012-11-19 12:28:16 ComboFix-quarantined-files.txt 2012-11-19 01:28 . Pre-Run: 804,771,475,456 bytes free Post-Run: 805,440,180,224 bytes free . - - End Of File - - C550CC17ED30D1EF70DCD2D557C133DE
  6. Do I put the fixlist.text file on the same flash drive as frst? Also will I need to select the file somehow or is it automatic?
  7. It's fine that you can't guarantee that, let's just hope it doesn't come to that as I currently only have one HDD. Here are the logs. Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 18-11-2012 Ran by SYSTEM at 18-11-2012 17:47:22 Running from F:\ Windows 7 Ultimate (X64) OS Language: English(US) The current controlset is ControlSet001 ==================== Registry (Whitelisted) =================== HKLM\...\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey [1289704 2012-09-12] (Microsoft Corporation) HKLM\...\Run: [LogMeIn GUI] "C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe" [x] HKLM-x32\...\Run: [LGODDFU] "C:\Program Files (x86)\lg_fwupdate\lgfw.exe" blrun [27760 2012-08-24] (Bitleader) HKLM-x32\...\Run: [XFastUSB] "C:\Program Files (x86)\XFastUSB\XFastUsb.exe" [5019360 2012-09-08] (FNet Co., Ltd.) HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59280 2012-08-27] (Apple Inc.) HKLM-x32\...\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [421888 2012-04-18] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [421776 2012-09-09] (Apple Inc.) HKLM-x32\...\Run: [Logitech G35] C:\Program Files (x86)\Logitech\G35\G35.exe [1811800 2010-10-04] (Logitech©) HKLM-x32\...\Run: [ModemListener] C:\Users\Dwayne\Desktop\Dodo Mobile Broadband\ModemListener.exe start [x] HKLM-x32\...\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [252848 2012-07-02] (Sun Microsystems, Inc.) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start [2254768 2012-11-14] (LogMeIn Inc.) HKU\Dwayne\...\Run: [Google Update] "C:\Users\Dwayne\AppData\Local\Google\Update\GoogleUpdate.exe" /c [116648 2012-08-24] (Google Inc.) HKU\Dwayne\...\Run: [steam] "C:\Program Files (x86)\Steam\steam.exe" -silent [1353080 2012-08-25] (Valve Corporation) HKU\Dwayne\...\Run: [Xvid] C:\Program Files (x86)\Xvid\CheckUpdate.exe [8192 2011-01-17] () HKU\Dwayne\...\Run: [skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [17418928 2012-07-12] (Skype Technologies S.A.) HKU\Dwayne\...\Run: [spotify Web Helper] "C:\Users\Dwayne\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" [1199576 2012-10-26] (Spotify Ltd) HKU\UpdatusUser\...\Run: [Google Update] "C:\Users\Dwayne\AppData\Local\Google\Update\GoogleUpdate.exe" /c [116648 2012-08-24] (Google Inc.) HKU\UpdatusUser\...\Run: [steam] "C:\Program Files (x86)\Steam\steam.exe" -silent [1353080 2012-08-25] (Valve Corporation) HKU\UpdatusUser\...\Run: [Xvid] C:\Program Files (x86)\Xvid\CheckUpdate.exe [8192 2011-01-17] () HKU\UpdatusUser\...\Run: [skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun [17418928 2012-07-12] (Skype Technologies S.A.) ==================== Services (Whitelisted) =================== 2 DeviceManager; C:\Program Files (x86)\Common Files\DeviceHelper\DeviceManager.exe -start [40960 2010-08-26] () 2 MsMpSvc; "C:\Program Files\Microsoft Security Client\MsMpEng.exe" [22072 2012-09-12] (Microsoft Corporation) 3 NisSrv; "C:\Program Files\Microsoft Security Client\NisSrv.exe" [368896 2012-09-12] (Microsoft Corporation) 2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2012-10-17] () 2 RichVideo64; "C:\Program Files\CyberLink\Shared files\RichVideo64.exe" [390632 2012-04-24] () ==================== Drivers (Whitelisted) ===================== 0 AsrRamDisk; C:\Windows\System32\Drivers\AsrRamDisk.sys [31016 2012-01-12] (ASRock Inc.) 3 FNETTBOH_305; C:\Windows\System32\Drivers\FNETTBOH_305.sys [32320 2012-10-24] (FNet Co., Ltd.) 1 FNETURPX; C:\Windows\System32\Drivers\FNETURPX.sys [15936 2012-09-08] (FNet Co., Ltd.) 3 jrdusbser; C:\Windows\System32\Drivers\jrdusbser.sys [119680 2011-02-24] (TCT International Mobile Ltd) 3 LADF_DHP2; C:\Windows\System32\DRIVERS\ladfDHP2amd64.sys [62168 2010-09-28] (Logitech) 3 LADF_SBVM; C:\Windows\System32\DRIVERS\ladfSBVMamd64.sys [377176 2010-09-28] (Logitech) 3 ManyCam; C:\Windows\System32\DRIVERS\mcvidrv_x64.sys [44928 2012-10-10] (ManyCam LLC) 3 mcaudrv_simple; C:\Windows\System32\drivers\mcaudrv_x64.sys [29696 2012-10-10] (ManyCam LLC) 0 MpFilter; C:\Windows\System32\Drivers\MpFilter.sys [228768 2012-08-30] (Microsoft Corporation) 2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [128456 2012-08-30] (Microsoft Corporation) 3 ALSysIO; \??\C:\Users\Dwayne\AppData\Local\Temp\ALSysIO64.sys [x] 2 LMIInfo; \??\C:\Program Files (x86)\LogMeIn\x64\RaInfo.sys [x] 4 LMIRfsClientNP; [x] ==================== NetSvcs (Whitelisted) ==================== ==================== One Month Created Files and Folders ======== 2012-11-17 17:19 - 2012-11-17 17:33 - 00000000 ____D C:\Users\Dwayne\Desktop\Virus Removal Stuff 2012-11-17 05:39 - 2012-11-17 05:39 - 00000000 ____D C:\Users\Dwayne\AppData\Roaming\Malwarebytes 2012-11-17 05:38 - 2012-11-17 05:38 - 10669952 ____A (Malwarebytes Corporation ) C:\Users\Dwayne\Downloads\mbam-setup-1.65.1.1000.exe 2012-11-17 05:38 - 2012-11-17 05:38 - 00000000 ____D C:\Users\All Users\Malwarebytes 2012-11-17 05:38 - 2012-11-17 05:38 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2012-11-17 05:38 - 2012-09-29 00:54 - 00025928 ____A (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys 2012-11-17 04:45 - 2012-11-17 04:45 - 00000000 ____D C:\Windows\pss 2012-11-17 04:10 - 2012-10-29 02:04 - 66395536 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe 2012-11-17 04:09 - 2012-11-17 04:10 - 17969696 ____A (Microsoft Corporation) C:\Users\Dwayne\Downloads\Windows-KB890830-x64-V4.14.exe 2012-11-17 04:07 - 2012-10-29 02:32 - 64010424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\MRT.exe 2012-11-17 04:00 - 2012-11-17 04:00 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2012-11-17 03:55 - 2012-06-02 06:35 - 00000003 ____A C:\Windows\System32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2012-11-17 03:54 - 2012-07-25 20:55 - 00785512 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\Wdf01000.sys 2012-11-17 03:54 - 2012-07-25 20:55 - 00054376 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\WdfLdr.sys 2012-11-17 03:54 - 2012-07-25 18:36 - 00009728 ____A (Microsoft Corporation) C:\Windows\System32\Wdfres.dll 2012-11-17 03:52 - 2012-10-08 04:19 - 17811968 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2012-11-17 03:52 - 2012-10-08 03:42 - 10925568 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2012-11-17 03:52 - 2012-10-08 03:31 - 02312704 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2012-11-17 03:52 - 2012-10-08 03:24 - 01346048 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2012-11-17 03:52 - 2012-10-08 03:23 - 01392128 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll 2012-11-17 03:52 - 2012-10-08 03:22 - 01494528 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl 2012-11-17 03:52 - 2012-10-08 03:22 - 00237056 ____A (Microsoft Corporation) C:\Windows\System32\url.dll 2012-11-17 03:52 - 2012-10-08 03:20 - 00085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2012-11-17 03:52 - 2012-10-08 03:18 - 00173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe 2012-11-17 03:52 - 2012-10-08 03:17 - 00816640 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll 2012-11-17 03:52 - 2012-10-08 03:17 - 00599040 ____A (Microsoft Corporation) C:\Windows\System32\vbscript.dll 2012-11-17 03:52 - 2012-10-08 03:15 - 02144768 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2012-11-17 03:52 - 2012-10-08 03:15 - 00729088 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2012-11-17 03:52 - 2012-10-08 03:13 - 02382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2012-11-17 03:52 - 2012-10-08 03:13 - 00096768 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll 2012-11-17 03:52 - 2012-10-08 03:09 - 00248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2012-11-17 03:52 - 2012-10-08 00:28 - 12320768 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2012-11-17 03:52 - 2012-10-08 00:02 - 09738240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2012-11-17 03:52 - 2012-10-07 23:56 - 01800704 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2012-11-17 03:52 - 2012-10-07 23:48 - 01129472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2012-11-17 03:52 - 2012-10-07 23:48 - 01103872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2012-11-17 03:52 - 2012-10-07 23:47 - 01427968 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2012-11-17 03:52 - 2012-10-07 23:46 - 00231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2012-11-17 03:52 - 2012-10-07 23:45 - 00065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2012-11-17 03:52 - 2012-10-07 23:44 - 00142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2012-11-17 03:52 - 2012-10-07 23:43 - 00717824 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2012-11-17 03:52 - 2012-10-07 23:43 - 00420864 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2012-11-17 03:52 - 2012-10-07 23:42 - 00607744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2012-11-17 03:52 - 2012-10-07 23:41 - 01793024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2012-11-17 03:52 - 2012-10-07 23:41 - 00073216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2012-11-17 03:52 - 2012-10-07 23:40 - 02382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2012-11-17 03:52 - 2012-10-07 23:37 - 00176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2012-11-17 03:49 - 2012-07-25 19:08 - 00744448 ____A (Microsoft Corporation) C:\Windows\System32\WUDFx.dll 2012-11-17 03:49 - 2012-07-25 19:08 - 00229888 ____A (Microsoft Corporation) C:\Windows\System32\WUDFHost.exe 2012-11-17 03:49 - 2012-07-25 19:08 - 00194048 ____A (Microsoft Corporation) C:\Windows\System32\WUDFPlatform.dll 2012-11-17 03:49 - 2012-07-25 19:08 - 00084992 ____A (Microsoft Corporation) C:\Windows\System32\WUDFSvc.dll 2012-11-17 03:49 - 2012-07-25 19:08 - 00045056 ____A (Microsoft Corporation) C:\Windows\System32\WUDFCoinstaller.dll 2012-11-17 03:49 - 2012-07-25 18:26 - 00198656 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\WUDFRd.sys 2012-11-17 03:49 - 2012-07-25 18:26 - 00087040 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\WUDFPf.sys 2012-11-17 03:49 - 2012-06-02 06:57 - 00000003 ____A C:\Windows\System32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf 2012-11-16 21:32 - 2012-10-18 10:18 - 03147264 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys 2012-11-16 21:30 - 2012-09-25 14:39 - 00095744 ____A (Microsoft Corporation) C:\Windows\System32\synceng.dll 2012-11-16 21:30 - 2012-09-25 13:55 - 00078336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll 2012-11-14 18:46 - 2012-11-17 22:19 - 00000306 ____A C:\Windows\Tasks\Ujbccoxclv.job 2012-11-14 18:46 - 2012-11-14 18:46 - 00118784 _RASH C:\Windows\SysWOW64\xwizard5.dll 2012-11-14 18:45 - 2012-11-14 18:45 - 00413929 ____A C:\Users\Dwayne\Downloads\goog1e_error_stream.zip 2012-11-13 22:28 - 2012-11-13 22:28 - 00000000 ____D C:\Users\Dwayne\Documents\My Games 2012-11-13 22:26 - 2010-06-01 09:55 - 00518488 ____A (Microsoft Corporation) C:\Windows\System32\XAudio2_7.dll 2012-11-13 22:26 - 2010-06-01 09:55 - 00077656 ____A (Microsoft Corporation) C:\Windows\System32\XAPOFX1_5.dll 2012-11-13 22:26 - 2010-05-25 16:41 - 02526056 ____A (Microsoft Corporation) C:\Windows\System32\D3DCompiler_43.dll 2012-11-13 22:26 - 2010-05-25 16:41 - 02106216 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2012-11-13 22:25 - 2010-05-25 16:41 - 02401112 ____A (Microsoft Corporation) C:\Windows\System32\D3DX9_43.dll 2012-11-13 22:25 - 2010-05-25 16:41 - 00276832 ____A (Microsoft Corporation) C:\Windows\System32\d3dx11_43.dll 2012-11-13 22:25 - 2010-05-25 16:41 - 00248672 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2012-11-13 16:21 - 2012-11-13 16:21 - 00014875 ____A C:\Users\Dwayne\Downloads\server.log 2012-11-13 01:08 - 2012-11-13 06:50 - 00000000 ____D C:\Users\Dwayne\Desktop\Mine-imator 2012-11-12 22:07 - 2012-11-12 22:07 - 00289768 ____A (Oracle Corporation) C:\Windows\System32\javaws.exe 2012-11-12 22:07 - 2012-11-12 22:07 - 00189416 ____A (Oracle Corporation) C:\Windows\System32\javaw.exe 2012-11-12 22:07 - 2012-11-12 22:07 - 00188904 ____A (Oracle Corporation) C:\Windows\System32\java.exe 2012-11-12 22:07 - 2012-11-12 22:07 - 00108008 ____A (Oracle Corporation) C:\Windows\System32\WindowsAccessBridge-64.dll 2012-11-12 22:06 - 2012-11-12 22:07 - 32699368 ____A (Oracle Corporation) C:\Users\Dwayne\Downloads\jre-7u9-windows-x64.exe 2012-11-12 22:02 - 2012-11-12 22:01 - 00246760 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2012-11-12 22:01 - 2012-11-12 22:01 - 00174056 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2012-11-12 22:01 - 2012-11-12 22:01 - 00174056 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2012-11-12 22:01 - 2012-11-12 22:01 - 00095208 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2012-11-12 22:01 - 2012-11-12 22:01 - 00000000 ____D C:\Program Files (x86)\Java 2012-11-12 22:00 - 2012-11-12 22:01 - 31160808 ____A (Oracle Corporation) C:\Users\Dwayne\Downloads\jre-7u9-windows-i586.exe 2012-11-12 21:50 - 2012-11-14 18:27 - 00000000 ____D C:\Users\Dwayne\AppData\Roaming\.minecraft 2012-11-12 21:50 - 2012-11-12 21:50 - 00263186 ____A C:\Users\Dwayne\Desktop\Minecraft.exe 2012-10-29 00:35 - 2012-10-29 00:35 - 00004119 ____A C:\Windows\SysWOW64\jupdate-1.7.0_09-b05.log 2012-10-29 00:21 - 2011-04-21 07:17 - 00107552 ____A (Realtek Semiconductor Corporation) C:\Windows\System32\RTNUninst64.dll 2012-10-29 00:21 - 2011-04-21 07:17 - 00074272 ____A C:\Windows\System32\RtNicProp64.dll 2012-10-24 05:32 - 2012-10-24 05:32 - 00000000 ____D C:\Users\Dwayne\AppData\Local\APN 2012-10-24 05:32 - 2012-10-24 05:32 - 00000000 ____D C:\Users\All Users\Ask 2012-10-24 05:30 - 2012-10-24 16:15 - 00000000 ____D C:\Program Files (x86)\ManyCam 2012-10-23 00:57 - 2012-10-23 00:57 - 00000000 ____D C:\Users\Dwayne\Documents\BIS Core Engine 2012-10-22 22:47 - 2012-10-22 22:47 - 00000000 ____D C:\Users\Dwayne\AppData\Local\DayZCommander 2012-10-22 22:39 - 2012-10-24 19:10 - 00000000 ____D C:\Users\Dwayne\AppData\Local\ArmA 2 OA 2012-10-22 22:35 - 2012-10-22 22:35 - 00000000 ____D C:\Program Files (x86)\Bohemia Interactive 2012-10-22 22:33 - 2012-10-28 22:35 - 00001410 ____A C:\Users\Dwayne\Desktop\DayZ Commander.lnk 2012-10-22 22:33 - 2012-10-22 22:33 - 00000000 ____D C:\Program Files (x86)\Dotjosh Studios 2012-10-22 22:30 - 2012-10-22 22:42 - 00000000 ____D C:\Users\Dwayne\Documents\ArmA 2 2012-10-22 22:30 - 2012-10-22 22:30 - 00000000 ____D C:\Users\Dwayne\AppData\Local\ArmA 2 2012-10-19 22:41 - 2012-10-19 22:47 - 29710072 ____A C:\Users\Dwayne\Downloads\FTB SSP Mod Pack v9005b.zip 2012-10-19 19:23 - 2009-03-17 21:35 - 00033856 ___AH (LogMeIn, Inc.) C:\Windows\System32\hamachi.sys 2012-10-19 01:04 - 2012-10-19 01:04 - 00037765 ____A C:\Users\Dwayne\Downloads\watch_ajax.xml ==================== One Month Modified Files and Folders ======= 2012-11-18 17:22 - 2012-11-18 17:22 - 00000000 ____D C:\FRST 2012-11-17 22:19 - 2012-11-14 18:46 - 00000306 ____A C:\Windows\Tasks\Ujbccoxclv.job 2012-11-17 22:18 - 2012-08-24 21:14 - 00000000 ____D C:\Users\All Users\NVIDIA 2012-11-17 22:18 - 2009-07-13 21:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT 2012-11-17 22:18 - 2009-07-13 20:51 - 01177049 ____A C:\Windows\setupact.log 2012-11-17 22:17 - 2012-08-25 17:59 - 00000000 ____D C:\Program Files (x86)\Steam 2012-11-17 22:16 - 2012-09-06 02:50 - 00000000 ____D C:\Users\Dwayne\AppData\Roaming\Skype 2012-11-17 22:16 - 2012-08-25 21:18 - 00000000 ____D C:\Users\Dwayne\AppData\Local\LogMeIn Hamachi 2012-11-17 22:16 - 2012-08-24 21:09 - 00000344 ____A C:\Windows\lgfwup.ini 2012-11-17 22:16 - 2012-08-24 21:09 - 00000000 ____D C:\Program Files (x86)\lg_fwupdate 2012-11-17 22:12 - 2012-08-24 18:38 - 01397821 ____A C:\Windows\WindowsUpdate.log 2012-11-17 22:10 - 2009-07-13 21:13 - 00779026 ____A C:\Windows\System32\PerfStringBackup.INI 2012-11-17 21:58 - 2012-09-20 21:27 - 00000000 ____D C:\Users\Dwayne\AppData\Roaming\Spotify 2012-11-17 21:37 - 2012-08-24 21:19 - 00000912 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2293673226-3569007444-2329871908-1000UA.job 2012-11-17 17:38 - 2012-09-20 21:27 - 00000000 ____D C:\Users\Dwayne\AppData\Local\Spotify 2012-11-17 17:33 - 2012-11-17 17:19 - 00000000 ____D C:\Users\Dwayne\Desktop\Virus Removal Stuff 2012-11-17 17:03 - 2009-07-13 20:45 - 00018416 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2012-11-17 17:03 - 2009-07-13 20:45 - 00018416 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2012-11-17 16:38 - 2012-09-05 07:29 - 00006746 ____A C:\Windows\PFRO.log 2012-11-17 15:37 - 2012-08-24 21:19 - 00000860 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2293673226-3569007444-2329871908-1000Core.job 2012-11-17 06:52 - 2009-07-13 19:20 - 00000000 ____D C:\Windows\rescache 2012-11-17 05:39 - 2012-11-17 05:39 - 00000000 ____D C:\Users\Dwayne\AppData\Roaming\Malwarebytes 2012-11-17 05:38 - 2012-11-17 05:38 - 10669952 ____A (Malwarebytes Corporation ) C:\Users\Dwayne\Downloads\mbam-setup-1.65.1.1000.exe 2012-11-17 05:38 - 2012-11-17 05:38 - 00000000 ____D C:\Users\All Users\Malwarebytes 2012-11-17 05:38 - 2012-11-17 05:38 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2012-11-17 04:45 - 2012-11-17 04:45 - 00000000 ____D C:\Windows\pss 2012-11-17 04:14 - 2012-08-24 21:19 - 00066784 ____A C:\Users\Dwayne\AppData\Local\GDIPFONTCACHEV1.DAT 2012-11-17 04:10 - 2012-11-17 04:09 - 17969696 ____A (Microsoft Corporation) C:\Users\Dwayne\Downloads\Windows-KB890830-x64-V4.14.exe 2012-11-17 04:00 - 2012-11-17 04:00 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2012-11-17 03:59 - 2009-07-13 20:45 - 00286648 ____A C:\Windows\System32\FNTCACHE.DAT 2012-11-17 03:51 - 2012-08-25 17:36 - 00772406 ____A C:\Windows\SysWOW64\PerfStringBackup.INI 2012-11-14 18:46 - 2012-11-14 18:46 - 00118784 _RASH C:\Windows\SysWOW64\xwizard5.dll 2012-11-14 18:45 - 2012-11-14 18:45 - 00413929 ____A C:\Users\Dwayne\Downloads\goog1e_error_stream.zip 2012-11-14 18:27 - 2012-11-12 21:50 - 00000000 ____D C:\Users\Dwayne\AppData\Roaming\.minecraft 2012-11-13 22:28 - 2012-11-13 22:28 - 00000000 ____D C:\Users\Dwayne\Documents\My Games 2012-11-13 22:28 - 2012-09-26 21:08 - 00352768 ____A C:\Windows\DirectX.log 2012-11-13 16:21 - 2012-11-13 16:21 - 00014875 ____A C:\Users\Dwayne\Downloads\server.log 2012-11-13 06:50 - 2012-11-13 01:08 - 00000000 ____D C:\Users\Dwayne\Desktop\Mine-imator 2012-11-13 01:08 - 2012-09-28 06:27 - 00000000 ____D C:\Users\Dwayne\Documents\Server Backup 2012-11-13 00:49 - 2012-09-08 03:02 - 00000000 ____D C:\Users\Dwayne\AppData\Roaming\FileZilla 2012-11-12 22:07 - 2012-11-12 22:07 - 00289768 ____A (Oracle Corporation) C:\Windows\System32\javaws.exe 2012-11-12 22:07 - 2012-11-12 22:07 - 00189416 ____A (Oracle Corporation) C:\Windows\System32\javaw.exe 2012-11-12 22:07 - 2012-11-12 22:07 - 00188904 ____A (Oracle Corporation) C:\Windows\System32\java.exe 2012-11-12 22:07 - 2012-11-12 22:07 - 00108008 ____A (Oracle Corporation) C:\Windows\System32\WindowsAccessBridge-64.dll 2012-11-12 22:07 - 2012-11-12 22:06 - 32699368 ____A (Oracle Corporation) C:\Users\Dwayne\Downloads\jre-7u9-windows-x64.exe 2012-11-12 22:07 - 2012-08-24 21:36 - 01034216 ____A (Oracle Corporation) C:\Windows\System32\npDeployJava1.dll 2012-11-12 22:07 - 2012-08-24 21:36 - 00916456 ____A (Oracle Corporation) C:\Windows\System32\deployJava1.dll 2012-11-12 22:01 - 2012-11-12 22:02 - 00246760 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2012-11-12 22:01 - 2012-11-12 22:01 - 00174056 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2012-11-12 22:01 - 2012-11-12 22:01 - 00174056 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2012-11-12 22:01 - 2012-11-12 22:01 - 00095208 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2012-11-12 22:01 - 2012-11-12 22:01 - 00000000 ____D C:\Program Files (x86)\Java 2012-11-12 22:01 - 2012-11-12 22:00 - 31160808 ____A (Oracle Corporation) C:\Users\Dwayne\Downloads\jre-7u9-windows-i586.exe 2012-11-12 22:01 - 2012-09-21 14:40 - 00821736 ____A (Oracle Corporation) C:\Windows\SysWOW64\npDeployJava1.dll 2012-11-12 22:01 - 2012-09-21 14:40 - 00746984 ____A (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll 2012-11-12 21:50 - 2012-11-12 21:50 - 00263186 ____A C:\Users\Dwayne\Desktop\Minecraft.exe 2012-11-11 21:58 - 2012-09-10 16:20 - 00000000 ____D C:\Users\All Users\Adobe 2012-11-11 21:57 - 2012-09-10 16:21 - 00697272 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2012-11-11 21:57 - 2012-09-10 16:21 - 00073656 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2012-11-11 21:50 - 2012-09-08 00:12 - 00000000 ____D C:\Program Files\ASRock 2012-11-10 23:55 - 2012-09-26 05:15 - 00000000 ____D C:\Users\Dwayne\Documents\FFOutput 2012-11-10 23:39 - 2012-08-24 21:22 - 00002454 ____A C:\Users\Dwayne\Desktop\Google Chrome.lnk 2012-10-31 16:13 - 2012-08-29 17:32 - 00000000 ____D C:\Users\Dwayne\AppData\Roaming\uTorrent 2012-10-29 02:32 - 2012-11-17 04:07 - 64010424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\MRT.exe 2012-10-29 02:04 - 2012-11-17 04:10 - 66395536 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe 2012-10-29 00:38 - 2012-10-16 07:02 - 00281312 ____A C:\Windows\SysWOW64\PnkBstrB.xtr 2012-10-29 00:38 - 2012-10-16 05:38 - 00281312 ____A C:\Windows\SysWOW64\PnkBstrB.exe 2012-10-29 00:38 - 2012-10-16 05:38 - 00218496 ____A C:\Windows\SysWOW64\PnkBstrB.ex0 2012-10-29 00:35 - 2012-10-29 00:35 - 00004119 ____A C:\Windows\SysWOW64\jupdate-1.7.0_09-b05.log 2012-10-29 00:21 - 2012-08-24 20:36 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2012-10-29 00:21 - 2012-08-24 20:36 - 00000000 ____D C:\Program Files (x86)\Realtek 2012-10-28 22:35 - 2012-10-22 22:33 - 00001410 ____A C:\Users\Dwayne\Desktop\DayZ Commander.lnk 2012-10-24 19:10 - 2012-10-22 22:39 - 00000000 ____D C:\Users\Dwayne\AppData\Local\ArmA 2 OA 2012-10-24 16:16 - 2012-10-01 16:48 - 00032320 ____A (FNet Co., Ltd.) C:\Windows\System32\Drivers\FNETTBOH_305.SYS 2012-10-24 16:15 - 2012-10-24 05:30 - 00000000 ____D C:\Program Files (x86)\ManyCam 2012-10-24 05:32 - 2012-10-24 05:32 - 00000000 ____D C:\Users\Dwayne\AppData\Local\APN 2012-10-24 05:32 - 2012-10-24 05:32 - 00000000 ____D C:\Users\All Users\Ask 2012-10-23 00:57 - 2012-10-23 00:57 - 00000000 ____D C:\Users\Dwayne\Documents\BIS Core Engine 2012-10-22 22:47 - 2012-10-22 22:47 - 00000000 ____D C:\Users\Dwayne\AppData\Local\DayZCommander 2012-10-22 22:42 - 2012-10-22 22:30 - 00000000 ____D C:\Users\Dwayne\Documents\ArmA 2 2012-10-22 22:35 - 2012-10-22 22:35 - 00000000 ____D C:\Program Files (x86)\Bohemia Interactive 2012-10-22 22:33 - 2012-10-22 22:33 - 00000000 ____D C:\Program Files (x86)\Dotjosh Studios 2012-10-22 22:30 - 2012-10-22 22:30 - 00000000 ____D C:\Users\Dwayne\AppData\Local\ArmA 2 2012-10-19 22:47 - 2012-10-19 22:41 - 29710072 ____A C:\Users\Dwayne\Downloads\FTB SSP Mod Pack v9005b.zip 2012-10-19 01:04 - 2012-10-19 01:04 - 00037765 ____A C:\Users\Dwayne\Downloads\watch_ajax.xml ==================== Known DLLs (Whitelisted) ================= ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit ==================== EXE ASSOCIATION ===================== HKLM\...\.exe: exefile => OK HKLM\...\exefile\DefaultIcon: %1 => OK HKLM\...\exefile\open\command: "%1" %* => OK ==================== Restore Points ========================= ==================== Memory info =========================== Percentage of memory in use: 9% Total physical RAM: 8171.53 MB Available physical RAM: 7391.19 MB Total Pagefile: 8169.68 MB Available Pagefile: 7388.11 MB Total Virtual: 8192 MB Available Virtual: 8191.9 MB ==================== Partitions ============================= 1 Drive c: () (Fixed) (Total:931.41 GB) (Free:748.78 GB) NTFS 3 Drive f: (DWAYNES) (Removable) (Total:1.87 GB) (Free:0.61 GB) FAT 4 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS 5 Drive y: (System Reserved) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[system with boot components (obtained from reading drive)] Disk ### Status Size Free Dyn Gpt -------- ------------- ------- ------- --- --- Disk 0 Online 931 GB 0 B Disk 1 Online 1912 MB 0 B Partitions of Disk 0: =============== Partition ### Type Size Offset ------------- ---------------- ------- ------- Partition 1 Primary 100 MB 1024 KB Partition 2 Primary 931 GB 101 MB ================================================================================== Disk: 0 Partition 1 Type : 07 Hidden: No Active: Yes Volume ### Ltr Label Fs Type Size Status Info ---------- --- ----------- ----- ---------- ------- --------- -------- * Volume 1 Y System Rese NTFS Partition 100 MB Healthy ========================================================= Disk: 0 Partition 2 Type : 07 Hidden: No Active: No Volume ### Ltr Label Fs Type Size Status Info ---------- --- ----------- ----- ---------- ------- --------- -------- * Volume 2 C NTFS Partition 931 GB Healthy ========================================================= Partitions of Disk 1: =============== Partition ### Type Size Offset ------------- ---------------- ------- ------- Partition 1 Primary 1911 MB 16 KB ================================================================================== Disk: 1 Partition 1 Type : 06 Hidden: No Active: Yes Volume ### Ltr Label Fs Type Size Status Info ---------- --- ----------- ----- ---------- ------- --------- -------- * Volume 3 F DWAYNES FAT Removable 1911 MB Healthy ========================================================= Last Boot: 2012-11-14 05:45 ==================== End Of Log ============================= Farbar Recovery Scan Tool (x64) Version: 18-11-2012 Ran by SYSTEM at 2012-11-18 17:48:00 Running from F:\ ================== Search: "services.exe" =================== C:\Windows\winsxs\amd64_microsoft-windows-s..s-servicecontroller_31bf3856ad364e35_6.1.7600.16385_none_2b54b20ee6fa07b1\services.exe [2009-07-13 15:19] - [2009-07-13 17:39] - 0328704 ____A (Microsoft Corporation) 24ACB7E5BE595468E3B9AA488B9B4FCB C:\Windows\System32\services.exe [2009-07-13 15:19] - [2009-07-13 17:39] - 0328704 ____A (Microsoft Corporation) 24ACB7E5BE595468E3B9AA488B9B4FCB ====== End Of Search ======
  8. Will this mean restoring my pc to factory settings? As I can't really do that as I have over 100GB of needed video files.
  9. Hey! When I search a Google and I click a search result I get sent to random internet pages, some of the pages I've seen before and know they aren't a suspicious website as I've seen them before and are well know pages but then it started opening random pages I've never even heard of so I waited a day to see if Google was just having issues but the problem still persist's. After looking closer at the page as it was redirecting me, Chrome showed that it was loading "click.livesearchnow.com" or something and then for a quick second an IP address will show as the title as the webpage and then it will change to the URL of the site that is shown within chrome. Just a quick note, chrome is the browser I use but I also tried IE but the problem was also in IE. Some more things I have noticed. I cant start the microsoft secutity service center when windows asks me to. Also I have noticed my network connection takes for ever to connect to upload server which has only been happening the past few weeks everyone else on the network is fine so I'm not sure if this is a problem of the virus. Here are the DDS logs. DDS (Ver_2012-11-07.01) - NTFS_AMD64 Internet Explorer: 9.0.8112.16455 BrowserJavaVersion: 10.9.2 Run by Dwayne at 12:20:15 on 2012-11-18 Microsoft Windows 7 Ultimate 6.1.7600.0.1252.1.1033.18.8172.6012 [GMT 11:00] . AV: Microsoft Security Essentials *Enabled/Updated* {B140BF4E-23BB-4198-90AB-A51A4C60A69C} SP: Microsoft Security Essentials *Enabled/Updated* {0A215EAA-0581-4E16-AA1B-9E6837E7EC21} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . ============== Running Processes =============== . C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\nvvsvc.exe C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe C:\Windows\system32\svchost.exe -k RPCSS c:\Program Files\Microsoft Security Client\MsMpEng.exe C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k LocalService C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe C:\Windows\system32\nvvsvc.exe C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\Windows\system32\taskeng.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files (x86)\Common Files\DeviceHelper\DeviceManager.exe C:\Windows\system32\rundll32.exe C:\Windows\SysWOW64\rundll32.exe C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe C:\Windows\SysWOW64\PnkBstrA.exe C:\Program Files\CyberLink\Shared files\RichVideo64.exe c:\Program Files\Microsoft Security Client\NisSrv.exe C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Windows\system32\taskhost.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files (x86)\Steam\Steam.exe C:\Program Files (x86)\Skype\Phone\Skype.exe C:\Users\Dwayne\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe C:\Program Files (x86)\XFastUSB\XFastUsb.exe C:\Program Files (x86)\iTunes\iTunesHelper.exe C:\Program Files (x86)\Logitech\G35\G35.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Program Files\NVIDIA Corporation\Display\nvtray.exe C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe C:\Program Files (x86)\Common Files\Steam\SteamService.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files (x86)\lg_fwupdate\fwupdate.exe C:\Windows\system32\SearchIndexer.exe C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Users\Dwayne\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Dwayne\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Dwayne\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Dwayne\AppData\Local\Google\Chrome\Application\chrome.exe C:\Windows\system32\wuauclt.exe C:\Users\Dwayne\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Dwayne\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Dwayne\AppData\Local\Google\Chrome\Application\chrome.exe C:\Windows\system32\taskmgr.exe C:\Users\Dwayne\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Dwayne\AppData\Local\Google\Chrome\Application\chrome.exe C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\SearchFilterHost.exe C:\Users\Dwayne\AppData\Local\Google\Chrome\Application\chrome.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\System32\cscript.exe . ============== Pseudo HJT Report =============== . mWinlogon: Userinit = userinit.exe, BHO: Java Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll BHO: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll uRun: [Google Update] "C:\Users\Dwayne\AppData\Local\Google\Update\GoogleUpdate.exe" /c uRun: [steam] "C:\Program Files (x86)\Steam\steam.exe" -silent uRun: [Xvid] C:\Program Files (x86)\Xvid\CheckUpdate.exe uRun: [skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun uRun: [spotify Web Helper] "C:\Users\Dwayne\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" mRun: [LGODDFU] "C:\Program Files (x86)\lg_fwupdate\lgfw.exe" blrun mRun: [XFastUSB] "C:\Program Files (x86)\XFastUSB\XFastUsb.exe" mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" mRun: [Logitech G35] C:\Program Files (x86)\Logitech\G35\G35.exe mRun: [ModemListener] C:\Users\Dwayne\Desktop\Dodo Mobile Broadband\ModemListener.exe start mRun: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" mRun: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start mPolicies-Explorer: NoActiveDesktop = dword:1 mPolicies-Explorer: NoActiveDesktopChanges = dword:1 mPolicies-System: ConsentPromptBehaviorAdmin = dword:5 mPolicies-System: ConsentPromptBehaviorUser = dword:3 mPolicies-System: EnableUIADesktopToggle = dword:0 TCP: NameServer = 10.1.1.1 TCP: Interfaces\{3286678E-3A52-44C7-B946-DEB81C45B7BF} : DHCPNameServer = 10.1.1.1 Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll SSODL: WebCheck - <orphaned> x64-BHO: Java Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll x64-BHO: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll x64-Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey x64-Run: [LogMeIn GUI] "C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe" x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned> x64-SSODL: WebCheck - <orphaned> . ============= SERVICES / DRIVERS =============== . R0 AsrRamDisk;AsrRamDisk;C:\Windows\System32\drivers\AsrRamDisk.sys [2012-9-8 31016] R0 MpFilter;Microsoft Malware Protection Driver;C:\Windows\System32\drivers\MpFilter.sys [2012-8-30 228768] R1 AsrAppCharger;AsrAppCharger;C:\Windows\System32\drivers\AsrAppCharger.sys [2012-8-25 17192] R1 FNETURPX;FNETURPX;C:\Windows\System32\drivers\FNETURPX.SYS [2012-9-8 15936] R2 DeviceManager;DeviceManager;C:\Program Files (x86)\Common Files\DeviceHelper\DeviceManager.exe -start --> C:\Program Files (x86)\Common Files\DeviceHelper\DeviceManager.exe -start [?] R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2012-11-15 2461104] R2 LMIRfsDriver;LogMeIn Remote File System Driver;C:\Windows\System32\drivers\LMIRfsDriver.sys [2012-8-26 72216] R2 NisDrv;Microsoft Network Inspection System;C:\Windows\System32\drivers\NisDrvWFP.sys [2012-3-20 128456] R2 RichVideo64;Cyberlink RichVideo64 Service(CRVS);C:\Program Files\CyberLink\Shared files\RichVideo64.exe [2012-9-11 390632] R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-5-15 382272] R3 asmthub3;ASMedia USB3 Hub Service;C:\Windows\System32\drivers\asmthub3.sys [2011-3-4 126952] R3 asmtxhci;ASMEDIA XHCI Service;C:\Windows\System32\drivers\asmtxhci.sys [2011-3-4 390632] R3 LADF_DHP2;G35 DHP2 Filter Driver;C:\Windows\System32\drivers\ladfDHP2amd64.sys [2010-9-29 62168] R3 LADF_SBVM;G35 SBVM Filter Driver;C:\Windows\System32\drivers\ladfSBVMamd64.sys [2010-9-29 377176] R3 MBfilt;MBfilt;C:\Windows\System32\drivers\MBfilt64.sys [2012-9-7 32344] R3 NisSrv;Microsoft Network Inspection;C:\Program Files\Microsoft Security Client\NisSrv.exe [2012-9-12 368896] R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2012-8-25 471144] R3 usbfilter;AMD USB Filter Driver;C:\Windows\System32\drivers\usbfilter.sys [2012-8-25 56448] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576] S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-7-13 160944] S3 FNETTBOH_305;FNETTBOH_305;C:\Windows\System32\drivers\FNETTBOH_305.SYS [2012-10-2 32320] S3 jrdusbser;Mobile Connector Device for Legacy Serial Communication;C:\Windows\System32\drivers\jrdusbser.sys [2012-10-5 119680] S3 ManyCam;ManyCam Virtual Webcam;C:\Windows\System32\drivers\mcvidrv_x64.sys [2012-10-11 44928] S3 mcaudrv_simple;ManyCam Virtual Microphone;C:\Windows\System32\drivers\mcaudrv_x64.sys [2012-10-11 29696] S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2012-7-9 52736] S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2012-8-26 1255736] . =============== Created Last 30 ================ . 2012-11-17 14:57:18 9291768 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{20E5A83C-ECED-4C8C-8F55-4428F44A99F4}\mpengine.dll 2012-11-17 13:39:01 -------- d-----w- C:\Users\Dwayne\AppData\Roaming\Malwarebytes 2012-11-17 13:38:48 -------- d-----w- C:\ProgramData\Malwarebytes 2012-11-17 13:38:47 25928 ----a-w- C:\Windows\System32\drivers\mbam.sys 2012-11-17 13:38:47 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware 2012-11-17 12:45:40 -------- d-----w- C:\Windows\pss 2012-11-17 12:00:21 -------- d-----w- C:\Program Files (x86)\LogMeIn Hamachi 2012-11-17 11:54:59 9728 ----a-w- C:\Windows\System32\Wdfres.dll 2012-11-17 11:54:59 785512 ----a-w- C:\Windows\System32\drivers\Wdf01000.sys 2012-11-17 11:54:59 54376 ----a-w- C:\Windows\System32\drivers\WdfLdr.sys 2012-11-17 11:54:59 2560 ----a-w- C:\Windows\System32\drivers\en-US\wdf01000.sys.mui 2012-11-17 11:49:25 87040 ----a-w- C:\Windows\System32\drivers\WUDFPf.sys 2012-11-17 11:49:25 84992 ----a-w- C:\Windows\System32\WUDFSvc.dll 2012-11-17 11:49:25 198656 ----a-w- C:\Windows\System32\drivers\WUDFRd.sys 2012-11-17 11:49:25 194048 ----a-w- C:\Windows\System32\WUDFPlatform.dll 2012-11-17 11:49:24 744448 ----a-w- C:\Windows\System32\WUDFx.dll 2012-11-17 11:49:24 45056 ----a-w- C:\Windows\System32\WUDFCoinstaller.dll 2012-11-17 11:49:24 229888 ----a-w- C:\Windows\System32\WUDFHost.exe 2012-11-17 05:33:16 9291768 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll 2012-11-17 05:32:56 3147264 ----a-w- C:\Windows\System32\win32k.sys 2012-11-17 05:30:48 95744 ----a-w- C:\Windows\System32\synceng.dll 2012-11-17 05:30:48 78336 ----a-w- C:\Windows\SysWow64\synceng.dll 2012-11-15 02:46:17 118784 --sha-r- C:\Windows\SysWow64\xwizard5.dll 2012-11-14 06:26:00 77656 ----a-w- C:\Windows\System32\XAPOFX1_5.dll 2012-11-14 06:26:00 518488 ----a-w- C:\Windows\System32\XAudio2_7.dll 2012-11-14 06:26:00 2526056 ----a-w- C:\Windows\System32\D3DCompiler_43.dll 2012-11-14 06:26:00 2106216 ----a-w- C:\Windows\SysWow64\D3DCompiler_43.dll 2012-11-14 06:25:59 276832 ----a-w- C:\Windows\System32\d3dx11_43.dll 2012-11-14 06:25:59 248672 ----a-w- C:\Windows\SysWow64\d3dx11_43.dll 2012-11-14 06:25:58 2401112 ----a-w- C:\Windows\System32\D3DX9_43.dll 2012-11-13 06:07:37 108008 ----a-w- C:\Windows\System32\WindowsAccessBridge-64.dll 2012-11-13 06:01:58 95208 ----a-w- C:\Windows\SysWow64\WindowsAccessBridge-32.dll 2012-11-13 05:50:28 -------- d-----w- C:\Users\Dwayne\AppData\Roaming\.minecraft 2012-10-29 08:21:45 74272 ----a-w- C:\Windows\System32\RtNicProp64.dll 2012-10-29 08:21:45 107552 ----a-w- C:\Windows\System32\RTNUninst64.dll 2012-10-24 13:32:12 -------- d-----w- C:\Users\Dwayne\AppData\Local\APN 2012-10-24 13:32:03 -------- d-----w- C:\ProgramData\Ask 2012-10-24 13:30:11 -------- d-----w- C:\Program Files (x86)\ManyCam 2012-10-23 06:47:38 -------- d-----w- C:\Users\Dwayne\AppData\Local\DayZCommander 2012-10-23 06:39:10 -------- d-----w- C:\Users\Dwayne\AppData\Local\ArmA 2 OA 2012-10-23 06:35:10 -------- d-----w- C:\Program Files (x86)\Bohemia Interactive 2012-10-23 06:33:49 -------- d-----w- C:\Program Files (x86)\Dotjosh Studios 2012-10-23 06:30:30 -------- d-----w- C:\Users\Dwayne\AppData\Local\ArmA 2 2012-10-20 14:52:58 972192 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{6C0FCBA0-F390-45C8-BFD5-B9420065AD21}\gapaengine.dll 2012-10-20 03:23:53 33856 ---ha-w- C:\Windows\System32\hamachi.sys . ==================== Find3M ==================== . 2012-11-13 06:07:30 916456 ----a-w- C:\Windows\System32\deployJava1.dll 2012-11-13 06:07:30 1034216 ----a-w- C:\Windows\System32\npDeployJava1.dll 2012-11-13 06:01:50 821736 ----a-w- C:\Windows\SysWow64\npDeployJava1.dll 2012-11-13 06:01:50 746984 ----a-w- C:\Windows\SysWow64\deployJava1.dll 2012-11-12 05:57:55 73656 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl 2012-11-12 05:57:55 697272 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe 2012-10-29 08:38:52 281312 ----a-w- C:\Windows\SysWow64\PnkBstrB.xtr 2012-10-29 08:38:52 281312 ----a-w- C:\Windows\SysWow64\PnkBstrB.exe 2012-10-29 08:38:27 218496 ----a-w- C:\Windows\SysWow64\PnkBstrB.ex0 2012-10-25 00:16:04 32320 ----a-w- C:\Windows\System32\drivers\FNETTBOH_305.SYS 2012-10-17 14:43:23 76888 ----a-w- C:\Windows\SysWow64\PnkBstrA.exe 2012-10-11 03:08:38 44928 ----a-w- C:\Windows\System32\drivers\mcvidrv_x64.sys 2012-10-11 03:08:36 29696 ----a-w- C:\Windows\System32\drivers\mcaudrv_x64.sys 2012-10-08 11:31:03 2312704 ----a-w- C:\Windows\System32\jscript9.dll 2012-10-08 11:23:52 1392128 ----a-w- C:\Windows\System32\wininet.dll 2012-10-08 11:22:55 1494528 ----a-w- C:\Windows\System32\inetcpl.cpl 2012-10-08 11:18:22 173056 ----a-w- C:\Windows\System32\ieUnatt.exe 2012-10-08 11:17:35 599040 ----a-w- C:\Windows\System32\vbscript.dll 2012-10-08 11:13:33 2382848 ----a-w- C:\Windows\System32\mshtml.tlb 2012-10-08 07:56:24 1800704 ----a-w- C:\Windows\SysWow64\jscript9.dll 2012-10-08 07:48:03 1129472 ----a-w- C:\Windows\SysWow64\wininet.dll 2012-10-08 07:47:44 1427968 ----a-w- C:\Windows\SysWow64\inetcpl.cpl 2012-10-08 07:44:05 142848 ----a-w- C:\Windows\SysWow64\ieUnatt.exe 2012-10-08 07:43:21 420864 ----a-w- C:\Windows\SysWow64\vbscript.dll 2012-10-08 07:40:56 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb 2012-09-27 05:09:43 466456 ----a-w- C:\Windows\System32\wrap_oal.dll 2012-09-27 05:09:43 444952 ----a-w- C:\Windows\SysWow64\wrap_oal.dll 2012-09-27 05:09:43 122904 ----a-w- C:\Windows\System32\OpenAL32.dll 2012-09-27 05:09:43 109080 ----a-w- C:\Windows\SysWow64\OpenAL32.dll 2012-09-14 19:23:40 2048 ----a-w- C:\Windows\System32\tzres.dll 2012-09-14 18:30:38 2048 ----a-w- C:\Windows\SysWow64\tzres.dll 2012-09-08 08:15:42 15936 ----a-w- C:\Windows\System32\drivers\FNETURPX.SYS 2012-08-31 18:02:20 1656688 ----a-w- C:\Windows\System32\drivers\ntfs.sys 2012-08-30 19:14:00 7397736 ----a-w- C:\Windows\System32\nvopencl.dll 2012-08-30 19:14:00 6109032 ----a-w- C:\Windows\SysWow64\nvopencl.dll 2012-08-30 19:14:00 1482600 ----a-w- C:\Windows\System32\nvdispgenco64.dll 2012-08-30 18:11:29 5505904 ----a-w- C:\Windows\System32\ntoskrnl.exe 2012-08-30 17:18:33 3958128 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe 2012-08-30 17:18:33 3902832 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe 2012-08-30 12:03:48 228768 ----a-w- C:\Windows\System32\drivers\MpFilter.sys 2012-08-30 12:03:48 128456 ----a-w- C:\Windows\System32\drivers\NisDrvWFP.sys 2012-08-25 05:10:57 16384 ----a-w- C:\Windows\SysWow64\lgfwunis.exe 2012-08-24 18:05:28 220160 ----a-w- C:\Windows\System32\wintrust.dll 2012-08-24 17:10:47 172544 ----a-w- C:\Windows\SysWow64\wintrust.dll 2012-08-21 03:01:20 33240 ----a-w- C:\Windows\System32\drivers\GEARAspiWDM.sys 2012-08-21 03:01:20 125872 ----a-w- C:\Windows\System32\GEARAspi64.dll 2012-08-21 03:01:20 106928 ----a-w- C:\Windows\SysWow64\GEARAspi.dll . ============= FINISH: 12:20:47.41 =============== . UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG. IF REQUESTED, ZIP IT UP & ATTACH IT . DDS (Ver_2012-11-07.01) . Microsoft Windows 7 Ultimate Boot Device: \Device\HarddiskVolume1 Install Date: 24-Aug-12 9:45:15 PM System Uptime: 18-Nov-12 11:38:08 AM (1 hours ago) . Motherboard: ASRock | | 970 Extreme4 Processor: AMD FX-6100 Six-Core Processor | CPUSocket | 2970/200mhz . ==== Disk Partitions ========================= . C: is FIXED (NTFS) - 931 GiB total, 748.84 GiB free. D: is CDROM () . ==== Disabled Device Manager Items ============= . Class GUID: {8ECC055D-047F-11D1-A537-0000F8753ED1} Description: LogMeIn Kernel Information Provider Device ID: ROOT\LEGACY_LMIINFO\0000 Manufacturer: Name: LogMeIn Kernel Information Provider PNP Device ID: ROOT\LEGACY_LMIINFO\0000 Service: LMIInfo . ==== System Restore Points =================== . No restore point in system. . ==== Installed Programs ====================== . µTorrent Adobe Flash Player 11 ActiveX Adobe Flash Player 11 Plugin AMD Catalyst Install Manager Apple Application Support Apple Mobile Device Support Apple Software Update ARMA 2 ARMA 2: Operation Arrowhead Art Effects for PDR10 Asmedia ASM104x USB 3.0 Host Controller Driver ASRock App Charger v1.0.5 ASRock XFast RAM v2.0.9 BattlEye for OA Uninstall BattlEye Uninstall Bonjour Bunch Of Heroes Chivalry: Medieval Warfare Core Temp 1.0 RC3 CyberLink PowerDirector 10 DayZ Commander Dodo Mobile Broadband FileZilla Client 3.5.3 Flight Simulator X Flight Simulator X Service Pack 1 FormatFactory 2.96 Fraps (remove only) Google Chrome Gotham City Impostors: Free To Play iTunes Java 7 Update 9 Java 7 Update 9 (64-bit) Java Auto Updater K-Lite Codec Pack 9.2.0 (64-bit) K-Lite Codec Pack 9.2.0 (Basic) LG CyberLink Media Suite LG ODD Auto Firmware Update Logitech G35 LogMeIn Hamachi Malwarebytes Anti-Malware version 1.65.1.1000 Medal of Honor Microsoft .NET Framework 4 Client Profile Microsoft .NET Framework 4 Extended Microsoft Flight Simulator X Microsoft Flight Simulator X: Acceleration Microsoft Security Client Microsoft Security Essentials Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2005 Redistributable (x64) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 MSXML 4.0 SP2 (KB954430) MSXML 4.0 SP2 (KB973688) MSXML 4.0 SP2 Parser and SDK NVIDIA 3D Vision Controller Driver NVIDIA 3D Vision Controller Driver 301.42 NVIDIA 3D Vision Driver 301.42 NVIDIA Control Panel 301.42 NVIDIA Graphics Driver 301.42 NVIDIA HD Audio Driver 1.3.16.0 NVIDIA Install Application NVIDIA PhysX NVIDIA PhysX System Software 9.12.0604 NVIDIA Stereoscopic 3D Driver NVIDIA Update 1.8.15 NVIDIA Update Components OpenAL Optical Disc Doctor Origin PunkBuster Services QuickTime Realtek Ethernet Controller Driver Realtek High Definition Audio Driver Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121) Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351) Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2) Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405) Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827) Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449) Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019) Security Update for Microsoft .NET Framework 4 Extended (KB2487367) Security Update for Microsoft .NET Framework 4 Extended (KB2656351) Skype™ 5.10 SmartSound Quicktracks 5 Spotify Steam The Binding of Isaac Update for Microsoft .NET Framework 4 Client Profile (KB2468871) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) WinRAR 4.20 (64-bit) XFastUSB Xvid Video Codec . ==== Event Viewer Messages From Past Week ======== . 18-Nov-12 11:40:29 AM, Error: Service Control Manager [7038] - The nvUpdatusService service was unable to log on as .\UpdatusUser with the currently configured password due to the following error: Logon failure: the specified account password has expired. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC). 18-Nov-12 11:40:29 AM, Error: Service Control Manager [7000] - The NVIDIA Update Service Daemon service failed to start due to the following error: The service did not start due to a logon failure. 18-Nov-12 11:38:27 AM, Error: Service Control Manager [7000] - The LogMeIn Kernel Information Provider service failed to start due to the following error: The system cannot find the path specified. 17-Nov-12 4:34:03 PM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Definition Update for Microsoft Security Essentials - KB2310138 (Definition 1.139.2286.0). 17-Nov-12 4:33:41 PM, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.139.2168.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.8904.0 Error code: 0x80070643 Error description: Fatal error during installation. 17-Nov-12 11:47:01 PM, Error: Service Control Manager [7001] - The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: The dependency service or group failed to start. 17-Nov-12 11:47:01 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030} 17-Nov-12 11:47:01 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39} 17-Nov-12 11:47:00 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1068" attempting to start the service netprofm with arguments "" in order to run the server: {A47979D2-C419-11D9-A5B4-001185AD2B89} 17-Nov-12 11:47:00 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1068" attempting to start the service netman with arguments "" in order to run the server: {BA126AD1-2166-11D1-B1D0-00805FC1270E} 17-Nov-12 11:46:59 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF} 17-Nov-12 11:46:54 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC} 17-Nov-12 11:46:44 PM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: AFD AsrAppCharger CSC DfsC discache MpFilter NetBIOS NetBT nsiproxy Psched rdbss spldr tdx Wanarpv6 WfpLwf 17-Nov-12 11:46:44 PM, Error: Service Control Manager [7001] - The Workstation service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start. 17-Nov-12 11:46:44 PM, Error: Service Control Manager [7001] - The TCP/IP NetBIOS Helper service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error: A device attached to the system is not functioning. 17-Nov-12 11:46:44 PM, Error: Service Control Manager [7001] - The SMB MiniRedirector Wrapper and Engine service depends on the Redirected Buffering Sub Sysytem service which failed to start because of the following error: A device attached to the system is not functioning. 17-Nov-12 11:46:44 PM, Error: Service Control Manager [7001] - The SMB 2.0 MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: The dependency service or group failed to start. 17-Nov-12 11:46:44 PM, Error: Service Control Manager [7001] - The SMB 1.x MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: The dependency service or group failed to start. 17-Nov-12 11:46:44 PM, Error: Service Control Manager [7001] - The Network Store Interface Service service depends on the NSI proxy service driver. service which failed to start because of the following error: A device attached to the system is not functioning. 17-Nov-12 11:46:44 PM, Error: Service Control Manager [7001] - The Network Location Awareness service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start. 17-Nov-12 11:46:44 PM, Error: Service Control Manager [7001] - The IP Helper service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start. 17-Nov-12 11:46:44 PM, Error: Service Control Manager [7001] - The DNS Client service depends on the NetIO Legacy TDI Support Driver service which failed to start because of the following error: A device attached to the system is not functioning. 17-Nov-12 11:46:44 PM, Error: Service Control Manager [7001] - The DHCP Client service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error: A device attached to the system is not functioning. 17-Nov-12 11:40:32 PM, Error: Service Control Manager [7023] - The Server service terminated with the following error: The service has not been started. 17-Nov-12 11:37:14 PM, Error: Microsoft-Windows-Directory-Services-SAM [12291] - SAM failed to start the TCP/IP or SPX/IPX listening thread 17-Nov-12 11:00:29 PM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the LogMeIn Hamachi Tunneling Engine service to connect. 17-Nov-12 11:00:29 PM, Error: Service Control Manager [7000] - The LogMeIn Hamachi Tunneling Engine service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion. 17-Nov-12 11:00:27 PM, Error: Service Control Manager [7030] - The LogMeIn Hamachi Tunneling Engine service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly. 14-Nov-12 2:55:17 AM, Error: volsnap [36] - The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit. . ==== End Of File =========================== Thanks for taking your time to read this post and I will happily do anything to help you help me.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.