ponching
Members-
Posts
5 -
Joined
-
Last visited
Reputation
0 Neutral-
after booting a notepad desktop.ini pop out
ponching replied to ponching's topic in Resolved Malware Removal Logs
my dss.txt result DDS (Ver_2012-11-20.01) - NTFS_x86 Internet Explorer: 8.0.7600.17153 Run by tikc at 12:50:35 on 2013-01-12 Microsoft Windows 7 Ultimate 6.1.7600.0.1252.1.1033.18.3052.1567 [GMT 8:00] . AV: Bitdefender Antivirus *Disabled/Updated* {98CD50CE-5097-4098-9669-6C401FB3969C} AV: ESET NOD32 Antivirus 5.2 *Enabled/Outdated* {77DEAFED-8149-104B-25A1-21771CA47CD1} SP: ESET NOD32 Antivirus 5.2 *Enabled/Outdated* {CCBF4E09-A773-1FC5-1F11-1A056723366C} SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} SP: IObit Malware Fighter *Disabled/Updated* {A751AC20-3B48-5237-898A-78C4436BB78D} SP: Bitdefender Antispyware *Disabled/Updated* {23ACB12A-76AD-4F16-ACD9-57326434DC21} FW: Bitdefender Firewall *Enabled* {A0F6D1EB-1AF8-41C0-BD36-C575E160D1E7} . ============== Running Processes ================ . C:\Windows\system32\wininit.exe C:\Windows\system32\lsm.exe C:\Program Files\Bitdefender\Bitdefender 2013\vsserv.exe C:\Windows\system32\atiesrxx.exe C:\Windows\system32\atieclxx.exe C:\Program Files\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Program Files\ASUS\ATK Package\ATK Hotkey\HControl.exe C:\Program Files\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe C:\Program Files\IObit\IObit Malware Fighter\IMFsrv.exe C:\Windows\system32\taskhost.exe C:\Windows\system32\taskeng.exe C:\Program Files\ASUS\SmartLogon\sensorsrv.exe C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe C:\Program Files\IObit\Advanced SystemCare 4\PMonitor.exe C:\Program Files\ASUS\ControlDeck\ControlDeckStartUp.exe C:\Program Files\IObit\Smart Defrag 2\SmartDefrag.exe C:\Program Files\IObit\Game Booster\gbtray.exe C:\Program Files\P4G\BatteryLife.exe C:\Program Files\ASUS\ASUS Live Update\ALU.exe C:\Program Files\ASUS\Wireless Console 3\wcourier.exe C:\Program Files\Elantech\ETDCtrl.exe C:\Program Files\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe C:\Program Files\ASUS\ATK Package\ATK Media\DMedia.exe C:\Program Files\ASUS\ATK Package\ATK Hotkey\HControlUser.exe C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe C:\Program Files\Bitdefender\Bitdefender 2013\bdagent.exe C:\Program Files\DAEMON Tools Lite\DTLite.exe C:\Program Files\IObit\Advanced SystemCare 4\ASCTray.exe C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe C:\Windows\system32\NOTEPAD.EXE C:\Program Files\SRS Labs\SRS Premium Sound Control Panel\SRSPremiumPanel.exe C:\Windows\system32\NOTEPAD.EXE C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE C:\Program Files\SUPERAntiSpyware\SASCORE.EXE C:\Program Files\IObit\Advanced SystemCare 4\ASCService.exe C:\Program Files\IObit\IObit Malware Fighter\IMF.exe C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe C:\Windows\system32\SupportAppXL\cdrom_mon.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe C:\Windows\system32\ChgService.exe C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe C:\ProgramData\Globe Tattoo Broadband\OnlineUpdate\ouc.exe C:\ProgramData\DatacardService\HWDeviceService.exe C:\ProgramData\DatacardService\DCSHelper.exe C:\Program Files\Intel\Intel® Management Engine Components\LMS\LMS.exe C:\Windows\system32\PnkBstrA.exe C:\Program Files\Bitdefender\Bitdefender 2013\updatesrv.exe C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Program Files\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe C:\Program Files\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe C:\Program Files\ASUS\ATK Package\ATK Hotkey\WDC.exe C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe C:\Program Files\Elantech\ETDCtrlHelper.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Program Files\Google\Chrome\Application\chrome.exe C:\Windows\system32\sppsvc.exe C:\Program Files\Intel\Intel® Management Engine Components\UNS\UNS.exe C:\Windows\servicing\TrustedInstaller.exe C:\Program Files\Bitdefender\Bitdefender 2013\seccenter.exe C:\Program Files\Bitdefender\Bitdefender 2013\downloader.exe C:\Windows\system32\conhost.exe C:\Windows\system32\conhost.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Windows\system32\svchost.exe -k imgsvc C:\Windows\system32\svchost.exe -k bthsvcs C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted . ============== Pseudo HJT Report =============== . uStart Page = about:blank mStart Page = about:blank uURLSearchHooks: IObit Toolbar: {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - LocalServer32 - <no file> uURLSearchHooks: YouTube Downloader Toolbar: {F3FEE66E-E034-436a-86E4-9690573BEE8A} - LocalServer32 - <no file> uURLSearchHooks: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - <orphaned> mURLSearchHooks: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - <orphaned> BHO: &Yahoo! Toolbar Helper: {02478D38-C3F9-4efb-9B51-7695ECA05670} - c:\program files\yahoo!\companion\installs\cpn1\yt.dll BHO: IObit Toolbar: {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - LocalServer32 - <no file> BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll BHO: AskBar BHO: {201f27d4-3704-41d6-89c1-aa35e39143ed} - c:\program files\askbardis\bar\bin\askBar.dll BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll BHO: Smiley Bar for Facebook: {944FEDFD-C4FD-441D-8275-9C651A9FFBDE} - c:\program files\smiley bar for facebook\ScriptHost.dll BHO: YouTube Downloader Toolbar: {F3FEE66E-E034-436a-86E4-9690573BEE8A} - LocalServer32 - <no file> BHO: SingleInstance Class: {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - c:\program files\yahoo!\companion\installs\cpn0\YTSingleInstance.dll TB: Ask Toolbar: {3041d03e-fd4b-44e0-b742-2d9b88305f98} - c:\program files\askbardis\bar\bin\askBar.dll TB: Yahoo! Toolbar: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - c:\program files\yahoo!\companion\installs\cpn1\yt.dll TB: YouTube Downloader Toolbar: {F3FEE66E-E034-436a-86E4-9690573BEE8A} - LocalServer32 - <no file> TB: IObit Toolbar: {0BDA0769-FD72-49F4-9266-E1FB004F4D8F} - LocalServer32 - <no file> uRun: [DAEMON Tools Lite] "c:\program files\daemon tools lite\DTLite.exe" -autorun uRun: [Advanced SystemCare 4] "c:\program files\iobit\advanced systemcare 4\ASCTray.exe" uRun: [Facebook Update] "c:\users\tikc\appdata\local\facebook\update\FacebookUpdate.exe" /c /nocrashserver uRun: [sUPERAntiSpyware] c:\program files\superantispyware\SUPERAntiSpyware.exe mRun: [GrooveMonitor] "c:\program files\microsoft office\office12\GrooveMonitor.exe" mRun: [startCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun mRun: [smartAudio] c:\program files\conexant\saii\SAIICpl.exe /t mRun: [ETDWare] c:\program files\elantech\ETDCtrl.exe mRun: [ATKOSD2] c:\program files\asus\atk package\atkosd2\ATKOSD2.exe mRun: [ATKMEDIA] c:\program files\asus\atk package\atk media\DMedia.exe mRun: [HControlUser] c:\program files\asus\atk package\atk hotkey\HControlUser.exe mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe" mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime mRun: [iObit Malware Fighter] "c:\program files\iobit\iobit malware fighter\IMF.exe" /autostart mRun: [egui] "c:\program files\eset\eset nod32 antivirus\egui.exe" /hide /waitservice mRun: [bdagent] c:\program files\bitdefender\bitdefender 2013\bdagent.exe dRunOnce: [FlashPlayerUpdate] c:\windows\system32\macromed\flash\FlashUtil10l_ActiveX.exe -update activex StartupFolder: c:\users\tikc\appdata\roaming\micros~1\windows\startm~1\programs\startup\onenot~1.lnk - c:\program files\microsoft office\office12\ONENOTEM.EXE StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\blueto~1.lnk - c:\program files\widcomm\bluetooth software\BTTray.exe StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\srspre~1.lnk - c:\windows\installer\{e5cf6b9c-3abe-43c9-9413-ad5ffc98f049}\NewShortcut4_E9C83B3EDF9141A39DA5EC05C79BBB91.exe uPolicies-Explorer: NoDriveTypeAutoRun = dword:145 uPolicies-Explorer: HideSCAPower = dword:0 mPolicies-System: ConsentPromptBehaviorAdmin = dword:5 mPolicies-System: ConsentPromptBehaviorUser = dword:3 mPolicies-System: EnableUIADesktopToggle = dword:0 IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200 IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000 IE: Send image to &Bluetooth Device... - c:\program files\widcomm\bluetooth software\btsendto_ie_ctx.htm IE: Send page to &Bluetooth Device... - c:\program files\widcomm\bluetooth software\btsendto_ie.htm IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office12\ONBttnIE.dll IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\program files\widcomm\bluetooth software\btsendto_ie.htm . INFO: HKCU has more than 50 listed domains. If you wish to scan all of them, select the 'Force scan all domains' option. . TCP: NameServer = 192.168.1.1 TCP: Interfaces\{5C6EA468-CAB3-4327-9EDF-6A26052B3597} : DHCPNameServer = 192.168.1.1 TCP: Interfaces\{5C6EA468-CAB3-4327-9EDF-6A26052B3597}\459616D6A7F6E67237 : DHCPNameServer = 192.168.2.1 TCP: Interfaces\{5C6EA468-CAB3-4327-9EDF-6A26052B3597}\46C696E6B6 : DHCPNameServer = 192.168.1.1 TCP: Interfaces\{5C6EA468-CAB3-4327-9EDF-6A26052B3597}\6516E696C6C616 : DHCPNameServer = 124.106.4.2 124.106.5.2 TCP: Interfaces\{5C6EA468-CAB3-4327-9EDF-6A26052B3597}\745627279737F5742796C6C6 : DHCPNameServer = 192.168.2.1 TCP: Interfaces\{5C6EA468-CAB3-4327-9EDF-6A26052B3597}\775696E6B6A7 : DHCPNameServer = 192.168.2.1 TCP: Interfaces\{9D64BA3D-9196-483D-9EF8-5691EFE383EF} : DHCPNameServer = 192.168.1.1 Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll SSODL: WebCheck - <orphaned> SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll . ================= FIREFOX =================== . FF - ProfilePath - c:\users\tikc\appdata\roaming\mozilla\firefox\profiles\1r9gr1zq.default\ FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2786678&SearchSource=3&q={searchTerms} FF - prefs.js: browser.search.selectedEngine - uTorrentBar Customized Web Search FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2786678&SearchSource=2&q= FF - component: c:\program files\common files\spigot\wtxpcom\components\WidgiToolbarFF.dll FF - plugin: c:\program files\google\picasa3\npPicasa3.dll FF - plugin: c:\program files\google\update\1.3.21.123\npGoogleUpdate3.dll FF - plugin: c:\program files\microsoft silverlight\4.0.51204.0\npctrlui.dll FF - plugin: c:\users\tikc\appdata\local\facebook\video\skype\npFacebookVideoCalling.dll FF - plugin: c:\users\tikc\appdata\roaming\mozilla\firefox\profiles\1r9gr1zq.default\extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}\plugins\np-mswmp.dll FF - plugin: c:\users\tikc\program files\dna\plugins\npbtdna.dll FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_5_502_146.dll FF - ExtSQL: 2012-12-20 18:26; FasterFox_Lite@BigRedBrent; c:\users\tikc\appdata\roaming\mozilla\firefox\profiles\1r9gr1zq.default\extensions\FasterFox_Lite@BigRedBrent FF - ExtSQL: !HIDDEN! 2012-12-16 12:30; statuswinks@StatusWinks; c:\users\tikc\appdata\roaming\mozilla\extensions\statuswinks@StatusWinks . ---- FIREFOX POLICIES ---- FF - user.js: browser.cache.memory.capacity - 65536 FF - user.js: browser.chrome.favicons - false FF - user.js: browser.display.show_image_placeholders - true FF - user.js: browser.turbo.enabled - true FF - user.js: browser.urlbar.autocomplete.enabled - true FF - user.js: browser.urlbar.autofill - true FF - user.js: content.interrupt.parsing - true FF - user.js: content.max.tokenizing.time - 2250000 FF - user.js: content.notify.backoffcount - 5 FF - user.js: content.notify.interval - 750000 FF - user.js: content.notify.ontimer - true FF - user.js: content.switch.threshold - 750000 FF - user.js: network.http.max-connections - 48 FF - user.js: network.http.max-connections-per-server - 16 FF - user.js: network.http.max-persistent-connections-per-proxy - 16 FF - user.js: network.http.max-persistent-connections-per-server - 8 FF - user.js: network.http.pipelining - true FF - user.js: network.http.pipelining.firstrequest - true FF - user.js: network.http.pipelining.maxrequests - 8 FF - user.js: network.http.proxy.pipelining - true FF - user.js: network.http.request.max-start-delay - 0 FF - user.js: nglayout.initialpaint.delay - 0 FF - user.js: plugin.expose_full_path - true FF - user.js: ui.submenuDelay - 0 FF - user.js: yahoo.ytff.general.dontshowhpoffer - true . ============= SERVICES / DRIVERS =============== . R0 avc3;avc3;c:\windows\system32\drivers\avc3.sys [2013-1-11 622616] R0 gzflt;gzflt;c:\windows\system32\drivers\gzflt.sys [2013-1-11 161312] R0 SmartDefragDriver;SmartDefragDriver;c:\windows\system32\drivers\SmartDefragDriver.sys [2011-4-2 16184] R1 BdfNdisf;BitDefender Firewall NDIS 6 Filter Driver;c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys [2013-1-11 77192] R1 bdfwfpf;bdfwfpf;c:\program files\common files\bitdefender\bitdefender firewall\bdfwfpf.sys [2013-1-11 90704] R1 eamonm;eamonm;c:\windows\system32\drivers\eamonm.sys [2012-3-14 169080] R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2011-7-23 12880] R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2011-7-13 67664] R2 !SASCORE;SAS Core Service;c:\program files\superantispyware\SASCore.exe [2012-7-12 116608] R2 AdvancedSystemCareService;Advanced SystemCare Service;c:\program files\iobit\advanced systemcare 4\ASCService.exe [2011-5-15 352656] R2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe [2010-1-22 172032] R2 Autorun CDROM Monitor;Autorun CDROM Monitor;c:\windows\system32\supportappxl\cdrom_mon.exe [2011-2-18 87888] R2 Change Modem Device Service;Change Modem Device Service;c:\windows\system32\ChgService.exe [2011-2-28 135168] R2 ekrn;ESET Service;c:\program files\eset\eset nod32 antivirus\ekrn.exe [2012-3-7 913144] R2 epfwwfpr;epfwwfpr;c:\windows\system32\drivers\epfwwfpr.sys [2012-3-14 103112] R2 HWDeviceService.exe;HWDeviceService.exe;c:\programdata\datacardservice\hwdeviceservice.exe -/service --> c:\programdata\datacardservice\HWDeviceService.exe -/service [?] R2 IMFservice;IMF Service;c:\program files\iobit\iobit malware fighter\IMFsrv.exe [2012-7-29 821592] R2 UNS;Intel® Management & Security Application User Notification Service;c:\program files\intel\intel® management engine components\uns\UNS.exe [2010-10-14 2314240] R2 UPDATESRV;Bitdefender Desktop Update Service;c:\program files\bitdefender\bitdefender 2013\updatesrv.exe [2013-1-11 55544] R3 avchv;avchv Function Driver;c:\windows\system32\drivers\avchv.sys [2013-1-11 242504] R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\drivers\btwl2cap.sys [2010-10-14 29472] R3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\drivers\ETD.sys [2010-10-14 102400] R3 FileMonitor;FileMonitor;c:\program files\iobit\iobit malware fighter\drivers\win7_x86\FileMonitor.sys [2012-7-29 20336] R3 huawei_enumerator;huawei_enumerator;c:\windows\system32\drivers\ew_jubusenum.sys [2012-7-29 72576] R3 JMCR;JMCR;c:\windows\system32\drivers\jmcr.sys [2010-10-14 119408] R3 JME;JMicron Ethernet Adapter NDIS6.20 Driver;c:\windows\system32\drivers\JME.sys [2010-10-14 92272] R3 RegFilter;RegFilter;c:\program files\iobit\iobit malware fighter\drivers\win7_x86\RegFilter.sys [2012-7-29 30600] R3 UrlFilter;UrlFilter;c:\program files\iobit\iobit malware fighter\drivers\win7_x86\UrlFilter.sys [2012-7-29 19792] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384] S2 Globe Tattoo Broadband. RunOuc;Globe Tattoo Broadband. OUC;c:\program files\globe tattoo broadband\updatedog\ouc.exe [2012-7-29 218624] S3 avckf;avckf;c:\windows\system32\drivers\avckf.sys [2013-1-11 481464] S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888] S3 BDSandBox;BDSandBox;c:\windows\system32\drivers\bdsandbox.sys [2013-1-11 66392] S3 cmnsusbser;Mobile Connector USB Device for Legacy Serial Communication LCT2053s;c:\windows\system32\drivers\cmnsusbser.sys [2011-2-28 105984] S3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\drivers\ew_hwusbdev.sys [2012-7-29 102784] S3 massfilter;ZTE Mass Storage Filter Driver;c:\windows\system32\drivers\massfilter.sys [2011-8-15 9216] S3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\wat\WatAdminSvc.exe [2010-10-14 1343400] S3 WinRing0_1_2_0;WinRing0_1_2_0;c:\program files\batterycare\WinRing0.sys [2008-7-27 14416] S4 BdDesktopParental;Bitdefender Desktop Parental Control;c:\program files\bitdefender\bitdefender 2013\bdparentalservice.exe [2013-1-11 61736] . =============== Created Last 30 ================ . 2013-01-11 12:27:22 -------- d-----w- c:\users\tikc\appdata\roaming\Malwarebytes 2013-01-11 12:27:01 21104 ----a-w- c:\windows\system32\drivers\mbam.sys 2013-01-11 03:38:28 1570101 ----a-w- c:\programdata\1357868246.bdinstall.bin 2013-01-11 03:35:24 -------- d-----w- c:\programdata\Malwarebytes 2013-01-11 03:35:24 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware 2013-01-11 03:35:17 -------- d-----w- c:\users\tikc\appdata\local\Programs 2013-01-11 02:54:52 242504 ----a-w- c:\windows\system32\drivers\avchv.sys 2013-01-11 02:54:50 72704 ----a-w- c:\windows\system32\drivers\bdvedisk.sys 2013-01-11 02:24:02 -------- d-----w- c:\programdata\BDLogging 2013-01-11 02:23:49 77192 ----a-w- c:\windows\system32\drivers\BdfNdisf6.sys 2013-01-11 02:23:49 66392 ----a-w- c:\windows\system32\drivers\bdsandbox.sys 2013-01-11 02:23:49 511328 ----a-w- c:\windows\capicom.dll 2013-01-11 02:23:41 1461992 ----a-w- c:\windows\system32\WdfCoInstaller01009.dll 2013-01-11 02:23:25 622616 ----a-w- c:\windows\system32\drivers\avc3.sys 2013-01-11 02:23:25 481464 ----a-w- c:\windows\system32\drivers\avckf.sys 2013-01-11 01:42:52 -------- d-----w- c:\users\tikc\appdata\roaming\Bitdefender 2013-01-11 01:42:41 -------- d-----w- c:\programdata\Bitdefender 2013-01-11 01:38:46 -------- d-----w- c:\users\tikc\appdata\roaming\QuickScan 2013-01-11 01:37:57 161312 ----a-w- c:\windows\system32\drivers\gzflt.sys 2013-01-11 01:37:56 343456 ------w- c:\windows\system32\drivers\trufos.sys 2013-01-11 01:37:55 -------- d-----w- c:\program files\Bitdefender 2013-01-11 01:37:06 -------- d-----w- c:\program files\common files\Bitdefender 2013-01-10 09:08:31 -------- d-----w- c:\users\tikc\appdata\roaming\SUPERAntiSpyware.com 2013-01-10 09:08:20 -------- d-----w- c:\programdata\SUPERAntiSpyware.com 2013-01-10 09:08:20 -------- d-----w- c:\program files\SUPERAntiSpyware 2013-01-04 05:25:08 34304 ----a-w- c:\windows\system32\atmlib.dll 2013-01-04 05:25:08 295424 ----a-w- c:\windows\system32\atmfd.dll 2013-01-04 05:24:33 2048 ----a-w- c:\windows\system32\tzres.dll 2013-01-04 05:21:36 2344960 ----a-w- c:\windows\system32\win32k.sys 2013-01-04 05:21:12 376832 ----a-w- c:\windows\system32\dpnet.dll 2013-01-04 05:20:48 245616 ----a-w- c:\windows\system32\drivers\volsnap.sys 2013-01-04 05:19:47 78336 ----a-w- c:\windows\system32\synceng.dll 2013-01-04 05:19:22 73216 ----a-w- c:\windows\system32\WUDFSvc.dll 2013-01-04 05:19:22 66560 ----a-w- c:\windows\system32\drivers\WUDFPf.sys 2013-01-04 05:19:22 613888 ----a-w- c:\windows\system32\WUDFx.dll 2013-01-04 05:19:22 38912 ----a-w- c:\windows\system32\WUDFCoinstaller.dll 2013-01-04 05:19:22 196608 ----a-w- c:\windows\system32\WUDFHost.exe 2013-01-04 05:19:22 172032 ----a-w- c:\windows\system32\WUDFPlatform.dll 2013-01-04 05:19:22 155136 ----a-w- c:\windows\system32\drivers\WUDFRd.sys 2013-01-04 05:18:41 9728 ----a-w- c:\windows\system32\Wdfres.dll 2013-01-04 05:18:41 526952 ----a-w- c:\windows\system32\drivers\Wdf01000.sys 2013-01-04 05:18:41 47720 ----a-w- c:\windows\system32\drivers\WdfLdr.sys 2013-01-04 05:13:18 139264 ----a-w- c:\windows\system32\cryptsvc.dll 2013-01-04 05:13:18 1157632 ----a-w- c:\windows\system32\crypt32.dll 2013-01-04 05:13:18 103936 ----a-w- c:\windows\system32\cryptnet.dll 2013-01-04 05:12:38 400896 ----a-w- c:\windows\system32\srcore.dll 2013-01-04 05:12:15 492032 ----a-w- c:\windows\system32\win32spl.dll 2013-01-04 05:12:15 316928 ----a-w- c:\windows\system32\spoolsv.exe 2013-01-04 05:11:28 60416 ------w- c:\windows\system32\drivers\BTHUSB.SYS 2013-01-04 05:11:28 393216 ----a-w- c:\windows\system32\drivers\bthport.sys 2013-01-04 05:11:07 41472 ----a-w- c:\windows\system32\browcli.dll 2013-01-04 05:11:07 102912 ----a-w- c:\windows\system32\browser.dll 2013-01-04 05:10:44 541184 ----a-w- c:\windows\system32\kerberos.dll 2013-01-04 05:10:14 3958128 ----a-w- c:\windows\system32\ntkrnlpa.exe 2013-01-04 05:10:14 3902832 ----a-w- c:\windows\system32\ntoskrnl.exe 2013-01-04 05:09:48 172544 ----a-w- c:\windows\system32\wintrust.dll 2013-01-04 05:09:28 1210736 ----a-w- c:\windows\system32\drivers\ntfs.sys 2013-01-04 05:09:07 490496 ----a-w- c:\windows\system32\d3d10level9.dll 2013-01-04 05:08:25 768512 ----a-w- c:\windows\system32\localspl.dll 2013-01-04 05:08:02 1389568 ----a-w- c:\windows\system32\msxml6.dll 2013-01-04 05:08:02 1236992 ----a-w- c:\windows\system32\msxml3.dll 2013-01-04 05:07:37 67440 ----a-w- c:\windows\system32\drivers\ksecdd.sys 2013-01-04 05:07:37 369336 ----a-w- c:\windows\system32\drivers\cng.sys 2013-01-04 05:07:37 225280 ----a-w- c:\windows\system32\schannel.dll 2013-01-04 05:07:37 219136 ----a-w- c:\windows\system32\ncrypt.dll 2013-01-04 05:07:37 134000 ----a-w- c:\windows\system32\drivers\ksecpkg.sys 2013-01-04 05:06:14 987136 ----a-w- c:\program files\common files\system\ado\msado15.dll 2013-01-04 05:05:49 8192 ----a-w- c:\windows\system32\rdrmemptylst.exe 2013-01-04 05:05:49 57856 ----a-w- c:\windows\system32\rdpwsx.dll 2013-01-04 05:05:49 129536 ----a-w- c:\windows\system32\rdpcorekmts.dll 2013-01-04 05:05:16 177152 ----a-w- c:\windows\system32\drivers\rdpwd.sys 2013-01-04 05:03:22 163328 ----a-w- c:\windows\system32\profsvc.dll 2013-01-04 05:03:07 2342400 ----a-w- c:\windows\system32\msi.dll 2013-01-04 05:00:51 56688 ----a-w- c:\windows\system32\drivers\partmgr.sys 2013-01-04 05:00:36 1287024 ----a-w- c:\windows\system32\drivers\tcpip.sys 2013-01-04 04:50:09 739840 ----a-w- c:\windows\system32\d2d1.dll 2013-01-04 04:50:09 218624 ----a-w- c:\windows\system32\d3d10_1core.dll 2013-01-04 04:50:09 161792 ----a-w- c:\windows\system32\d3d10_1.dll 2013-01-04 04:50:09 1170944 ----a-w- c:\windows\system32\d3d10warp.dll 2013-01-04 04:50:09 1074176 ----a-w- c:\windows\system32\DWrite.dll 2013-01-04 04:49:50 989184 ----a-w- c:\program files\windows journal\JNTFiltr.dll 2013-01-04 04:49:50 969216 ----a-w- c:\program files\windows journal\JNWDRV.dll 2013-01-04 04:49:50 936960 ----a-w- c:\program files\common files\microsoft shared\ink\journal.dll 2013-01-04 04:49:50 1221632 ----a-w- c:\program files\windows journal\NBDoc.DLL 2013-01-04 04:49:21 5120 ----a-w- c:\windows\system32\wmi.dll 2013-01-04 04:49:21 19312 ----a-w- c:\windows\system32\drivers\fs_rec.sys 2013-01-04 04:49:21 158720 ----a-w- c:\windows\system32\imagehlp.dll 2013-01-04 04:48:40 826368 ----a-w- c:\windows\system32\rdpcore.dll 2013-01-04 04:48:40 24064 ----a-w- c:\windows\system32\drivers\tdtcp.sys 2013-01-04 04:32:50 478208 ----a-w- c:\windows\system32\timedate.cpl 2013-01-04 04:32:38 690688 ----a-w- c:\windows\system32\msvcrt.dll 2013-01-04 04:32:25 1288984 ----a-w- c:\windows\system32\ntdll.dll 2013-01-04 04:32:10 99840 ----a-w- c:\windows\system32\sspicli.dll 2013-01-04 04:32:10 15360 ----a-w- c:\windows\system32\sspisrv.dll 2013-01-04 04:32:09 314368 ----a-w- c:\windows\system32\webio.dll 2013-01-04 04:32:09 22528 ----a-w- c:\windows\system32\lsass.exe 2013-01-04 04:32:09 22016 ----a-w- c:\windows\system32\secur32.dll 2013-01-04 04:32:09 1037312 ----a-w- c:\windows\system32\lsasrv.dll 2013-01-04 04:31:52 514560 ----a-w- c:\windows\system32\qdvd.dll 2013-01-04 04:31:52 1328640 ----a-w- c:\windows\system32\quartz.dll 2013-01-04 04:31:38 67072 ----a-w- c:\windows\system32\packager.dll 2013-01-04 04:29:43 38912 ----a-w- c:\windows\system32\csrsrv.dll 2013-01-04 04:29:34 534528 ----a-w- c:\windows\system32\EncDec.dll 2013-01-04 04:29:15 708608 ----a-w- c:\program files\common files\system\wab32.dll 2013-01-04 04:29:05 6144 ----a-w- c:\program files\internet explorer\iecompat.dll 2013-01-04 04:28:55 75776 ----a-w- c:\windows\system32\psisrndr.ax 2013-01-04 04:28:55 72704 ----a-w- c:\windows\system32\Mpeg2Data.ax 2013-01-04 04:28:55 59904 ----a-w- c:\windows\system32\MSDvbNP.ax 2013-01-04 04:28:55 465408 ------w- c:\windows\system32\psisdecd.dll 2013-01-04 04:28:55 204288 ----a-w- c:\windows\system32\MSNP.ax 2013-01-04 04:28:42 571904 ----a-w- c:\windows\system32\oleaut32.dll 2013-01-04 04:28:42 233472 ----a-w- c:\windows\system32\oleacc.dll 2012-12-30 12:48:14 94208 ----a-w- c:\program files\common files\system\ole db\msdaosp.dll 2012-12-30 12:48:14 86016 ----a-w- c:\windows\system32\odbccu32.dll 2012-12-30 12:48:14 81920 ----a-w- c:\windows\system32\odbccr32.dll 2012-12-30 12:48:14 319488 ----a-w- c:\windows\system32\odbcjt32.dll 2012-12-30 12:48:14 163840 ----a-w- c:\windows\system32\odbctrac.dll 2012-12-30 12:48:14 122880 ----a-w- c:\windows\system32\odbccp32.dll 2012-12-23 04:38:18 311296 ----a-w- c:\windows\system32\drivers\srv.sys 2012-12-23 04:38:18 309760 ----a-w- c:\windows\system32\drivers\srv2.sys 2012-12-23 04:38:18 114176 ----a-w- c:\windows\system32\drivers\srvnet.sys 2012-12-20 06:33:22 -------- d-----w- c:\users\tikc\appdata\roaming\MozillaControl 2012-12-20 06:32:23 -------- d-----w- c:\windows\'Full Speed' Internet Booster + Performance Tests 2012-12-16 09:25:48 -------- d-----w- c:\users\tikc\appdata\local\magicJack 2012-12-16 09:25:43 -------- d-----w- c:\programdata\magicJack 2012-12-16 09:23:34 -------- d-----w- c:\users\tikc\appdata\roaming\mjusbsp 2012-12-16 04:31:52 -------- d-----w- c:\users\tikc\appdata\roaming\PerformerSoft 2012-12-16 04:31:51 17464 ----a-w- c:\windows\system32\roboot.exe 2012-12-16 04:30:45 -------- d-----w- c:\users\tikc\appdata\roaming\StatusWinks 2012-12-16 04:30:42 -------- d-----w- c:\program files\Smiley Bar for Facebook 2012-12-16 04:30:08 -------- d-----w- c:\program files\VideoPerformer 2012-12-16 04:25:57 -------- d-----w- c:\program files\File Scout . ==================== Find3M ==================== . 2013-01-11 02:12:43 74248 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2013-01-11 02:12:43 697864 ----a-w- c:\windows\system32\FlashPlayerApp.exe 2013-01-04 05:23:43 44544 ----a-w- c:\windows\system32\licmgr10.dll 2013-01-04 05:23:42 981504 ----a-w- c:\windows\system32\wininet.dll 2013-01-04 05:23:42 386048 ----a-w- c:\windows\system32\html.iec 2013-01-04 05:23:42 1638912 ----a-w- c:\windows\system32\mshtml.tlb 2013-01-04 05:20:22 559104 ----a-w- c:\windows\apppatch\AcLayers.dll 2013-01-04 05:18:41 2560 ----a-w- c:\windows\system32\drivers\en-us\wdf01000.sys.mui 2012-12-30 12:47:59 96256 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys 2012-12-30 12:47:59 222720 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys 2012-12-30 12:47:59 123392 ----a-w- c:\windows\system32\drivers\mrxsmb.sys 2012-12-30 12:47:47 294912 ----a-w- c:\windows\system32\umpnpmgr.dll 2012-12-30 12:47:33 86528 ----a-w- c:\windows\system32\SearchFilterHost.exe 2012-12-30 12:47:33 666624 ----a-w- c:\windows\system32\mssvp.dll 2012-12-30 12:47:33 59392 ----a-w- c:\windows\system32\msscntrs.dll 2012-12-30 12:47:33 428032 ----a-w- c:\windows\system32\SearchIndexer.exe 2012-12-30 12:47:33 337408 ----a-w- c:\windows\system32\mssph.dll 2012-12-30 12:47:33 197120 ----a-w- c:\windows\system32\mssphtb.dll 2012-12-30 12:47:33 164352 ----a-w- c:\windows\system32\SearchProtocolHost.exe 2012-12-30 12:47:33 1553920 ----a-w- c:\windows\system32\tquery.dll 2012-12-30 12:47:33 1401856 ----a-w- c:\windows\system32\mssrch.dll 2012-12-11 06:17:02 78336 ----a-w- c:\windows\system32\drivers\dfsc.sys 2012-12-11 06:16:45 338944 ----a-w- c:\windows\system32\drivers\afd.sys 2012-12-11 06:15:55 740864 ----a-w- c:\windows\system32\inetcomm.dll 2012-12-11 06:15:12 26496 ----a-w- c:\windows\system32\drivers\Diskdump.sys 2012-10-19 10:26:52 139848 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys 2012-10-19 10:26:46 282696 ----a-w- c:\windows\system32\PnkBstrB.xtr 2012-10-19 10:26:46 282696 ------w- c:\windows\system32\PnkBstrB.exe . ============= FINISH: 12:52:34.54 =============== Attach.txt result . UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG. IF REQUESTED, ZIP IT UP & ATTACH IT . DDS (Ver_2012-11-20.01) . Microsoft Windows 7 Ultimate Boot Device: \Device\HarddiskVolume1 Install Date: 10/14/2010 5:04:00 PM System Uptime: 1/12/2013 12:43:31 PM (0 hours ago) . Motherboard: ASUSTeK Computer Inc. | | K52JK Processor: Intel® Core i3 CPU M 350 @ 2.27GHz | Socket 989 | 1178/133mhz . ==== Disk Partitions ========================= . C: is FIXED (NTFS) - 98 GiB total, 15.212 GiB free. D: is FIXED (NTFS) - 368 GiB total, 108.385 GiB free. E: is CDROM () F: is FIXED (NTFS) - 0 GiB total, 0.06 GiB free. H: is CDROM () . ==== Disabled Device Manager Items ============= . ==== System Restore Points =================== . RP118: 1/11/2013 10:17:49 PM - Removed Medal of Honor . ==== Installed Programs ====================== . µTorrent Acrobat.com Adobe AIR Adobe Anchor Service CS3 Adobe Asset Services CS3 Adobe Bridge CS3 Adobe Bridge Start Meeting Adobe Camera Raw 4.0 Adobe CMaps Adobe Color - Photoshop Specific Adobe Color Common Settings Adobe Color EU Extra Settings Adobe Color JA Extra Settings Adobe Color NA Recommended Settings Adobe Default Language CS3 Adobe Device Central CS3 Adobe ExtendScript Toolkit 2 Adobe Flash Player 11 ActiveX Adobe Flash Player 11 Plugin Adobe Fonts All Adobe Help Viewer CS3 Adobe Linguistics CS3 Adobe PDF Library Files Adobe Photoshop CS3 Adobe Reader 9.0.1 Adobe Setup Adobe Shockwave Player 11.5 Adobe Stock Photos CS3 Adobe Type Support Adobe Update Manager CS3 Adobe Version Cue CS3 Client Adobe WinSoft Linguistics Plugin Adobe XMP Panels CS3 Advanced SystemCare 4 Alien Stars Apple Application Support Apple Mobile Device Support Apple Software Update Ask Toolbar ASUS LifeFrame3 ASUS Live Update ASUS MultiFrame ASUS Power4Gear Hybrid ASUS SmartLogon ASUS Virtual Camera ATI AVIVO Codecs ATI Catalyst Install Manager ATK Package BatteryCare BatteryCare 0.9.11.0 Bitdefender Internet Security 2013 BitTorrent Bonjour Call of Duty® 4 - Modern Warfare Camfrog Video Chat 6.0 Catalyst Control Center - Branding Catalyst Control Center Core Implementation Catalyst Control Center Graphics Full Existing Catalyst Control Center Graphics Full New Catalyst Control Center Graphics Light Catalyst Control Center Graphics Previews Common Catalyst Control Center Graphics Previews Vista Catalyst Control Center InstallProxy Catalyst Control Center Localization All ccc-core-static ccc-utility CCC Help Chinese Standard CCC Help Chinese Traditional CCC Help Czech CCC Help Danish CCC Help Dutch CCC Help English CCC Help Finnish CCC Help French CCC Help German CCC Help Greek CCC Help Hungarian CCC Help Italian CCC Help Japanese CCC Help Korean CCC Help Norwegian CCC Help Polish CCC Help Portuguese CCC Help Russian CCC Help Spanish CCC Help Swedish CCC Help Thai CCC Help Turkish Chicken Invaders 3 Chikka Messenger Clash N Slash Worlds Away Conduit Engine Conexant HD Audio ControlDeck DNA Dragon Age II ESET NOD32 Antivirus ETDWare PS/2-x86 7.0.5.10_WHQL Facebook Video Calling 1.2.0.287 foobar2000 v1.1.11 Game Booster GameHouse Super Games AIO® Globe Tattoo Broadband Google Chrome Google Update Helper Heavy Weapon Intel® Management Engine Components IObit Malware Fighter IObit Toolbar v4.3 iTunes JMicron Ethernet Adapter NDIS Driver JMicron Flash Media Controller Driver magicJack Malwarebytes Anti-Malware version 1.70.0.1100 Microsoft .NET Framework 4 Client Profile Microsoft Office Access MUI (English) 2007 Microsoft Office Access Setup Metadata MUI (English) 2007 Microsoft Office Enterprise 2007 Microsoft Office Excel MUI (English) 2007 Microsoft Office Groove MUI (English) 2007 Microsoft Office Groove Setup Metadata MUI (English) 2007 Microsoft Office InfoPath MUI (English) 2007 Microsoft Office OneNote MUI (English) 2007 Microsoft Office Outlook MUI (English) 2007 Microsoft Office PowerPoint MUI (English) 2007 Microsoft Office Proof (English) 2007 Microsoft Office Proof (French) 2007 Microsoft Office Proof (Spanish) 2007 Microsoft Office Proofing (English) 2007 Microsoft Office Publisher MUI (English) 2007 Microsoft Office Shared MUI (English) 2007 Microsoft Office Shared Setup Metadata MUI (English) 2007 Microsoft Office Word MUI (English) 2007 Microsoft Silverlight Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 Mozilla Firefox 4.0 (x86 en-US) NBA 2K11 NOD32 FiX v2.1 Norton Security Scan NTI CD & DVD-Maker NVIDIA PhysX PDF Settings Picasa 3 PLDT-WatchPad PunkBuster Services QuickTime Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708) Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121) Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351) Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2) Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827) Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449) Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019) Skype™ 5.5 SMART BRO Smart Defrag 2 Smiley Bar for Facebook Sun Broadband Wireless SUPERAntiSpyware SyQic Yoonic Engine - PLDT Watchpad TNod User & Password Finder Tom Clancy's Ghost Recon Future Soldier Tom Clancy's Ghost Recon Future Soldier Crack TotalAudioConverter Two Worlds II Ubisoft Game Launcher Ultimate Reference Suite UMPlayer 0.98 [P4] Update for Microsoft .NET Framework 4 Client Profile (KB2468871) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) USB2.0 UVC VGA WebCam uTorrentBar Toolbar VideoPerformer VLC media player 1.1.9 WIDCOMM Bluetooth Software Windows Media Player Firefox Plugin WinRAR archiver Wireless Console 3 Yahoo! Messenger Yahoo! Software Update Yahoo! Toolbar YouTube Downloader Toolbar v4.3 YTD YouTube Downloader & Converter 3.7 . ==== Event Viewer Messages From Past Week ======== . 1/7/2013 5:16:26 PM, Error: Microsoft-Windows-DistributedCOM [10000] - Unable to start a DCOM Server: {51FA2736-5DEE-11D4-98E8-006008BF430C}. The error: "786" Happened while starting this command: "C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe" -Embedding 1/5/2013 8:05:42 PM, Error: volsnap [36] - The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit. 1/12/2013 12:45:05 PM, Error: Service Control Manager [7001] - The UPnP Device Host service depends on the SSDP Discovery service which failed to start because of the following error: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it. 1/12/2013 12:45:05 PM, Error: Microsoft-Windows-WMPNSS-Service [14332] - Service 'WMPNetworkSvc' did not start correctly because CoCreateInstance(CLSID_UPnPDeviceFinder) encountered error '0x80070422'. Verify that the UPnPHost service is running and that the UPnPHost component of Windows is installed properly. 1/12/2013 12:45:05 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1068" attempting to start the service upnphost with arguments "" in order to run the server: {204810B9-73B2-11D4-BF42-00B0D0118B56} 1/12/2013 12:44:52 PM, Error: Service Control Manager [7001] - The HomeGroup Provider service depends on the Function Discovery Provider Host service which failed to start because of the following error: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it. 1/12/2013 12:44:41 PM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Globe Tattoo Broadband. OUC service to connect. 1/12/2013 12:44:41 PM, Error: Service Control Manager [7000] - The Globe Tattoo Broadband. OUC service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion. 1/12/2013 12:43:47 PM, Error: volmgr [46] - Crash dump initialization failed! 1/11/2013 8:44:45 PM, Error: Service Control Manager [7031] - The Updater Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service. . ==== End Of File =========================== -
after booting a notepad desktop.ini pop out
ponching posted a topic in Resolved Malware Removal Logs
hi master's before when i have no MBAM in my unit everything seems okay but, everyone needs to be secure in malware attack, so i decided to put MBAM to my unit. but....., after the installation and scanning, then i reboot my system as per instruction, but mine have a appeared this message in a notepad, [.ShellClassInfo] LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21787 dont know what is this? need help how to reject it. TIA dds.txt attach.txt -
Installation of MBAM nothing happens
ponching replied to ponching's topic in Malwarebytes for Windows Support Forum
hi deladoc1... im done with the procedures, eg, download, update, scan, reboot, scan again. everything seems alright but theres, this thing happen when i reboot the machine 2 notepads pop up and says' .... [.ShellClassInfo] LocalizedResourceName=@%SystemRoot%\system32\shell32.dll,-21787 what will i do to get rid of it? dont know the meaning of this, could you tell me how this occur? thanks again for your inputs... -
Installation of MBAM nothing happens
ponching replied to ponching's topic in Malwarebytes for Windows Support Forum
@ daledoc1 im currently working on on your procedure... mbam chamaleon is downloading now..... thanks for the inputs. ill update this if whats happens after... -
hello master's.... after the installation of mbam free nothing happens, i look for the mbam directory and its empty cant see the executable file of mbam no icons or what so ever. how will i use this product normally like your's. hope for your kind input for this problem guys... TIA im running win 7 ultimate bitdefender IS 2013 trial superantispyware nod32 5 expired advance system care 4 iobit malware fighter 1.4