Jump to content

dwdraw2

Members
  • Posts

    16
  • Joined

  • Last visited

Everything posted by dwdraw2

  1. Dear Sirs, On the 12-07-2017, after turning on my computer, and going through my files, I noticed that I lost 22 gig of space? I haven't downloaded any thing the day before. I pretty much kept my free space between 142 to 144 gigs of free space. Overnight, it dropped to 122 gigs, a 22 gig loss. Here's my system set-up: Dell Studio Laptop 1558, 223 SSD, 8 gig Memory. The utilities That I currently have: Malwarebytes Premium: Superantispyware Professional: Hitman Pro Alert: and at the time of the attack, Bitdefender free version. None of the utilities never conflicted with each other. I did run Malwarebytes in "safe mode," and nothing was detected. Going to regular mode, I then ran all the other regular utilities-nothing was found? I went to Norton NP Eraser site and downloaded it, and ran it. It tagged one of my old writing programs and three other things from the registry. I let it delete the four idems listed. The computer is running smoothly, but I still have the loss of the 22 gig space. Next, I came here and downloaded the "Farber" software and ran it twice: once on normal setting mode: and once on the 90 day file mode only. I labeled them Addition 1, and Addition 2. In Addition 2, it shows something called "Shadow Copy." I believe this was the culprit. Not sure if it was deleted in the scans-I'll let you be the judge. But even so, is there any way to delete the shadow copies to regain the space? Thanks for your time. dwdraw2 attachments: Addition 1 and Addition 2 in the same folder separated. Addition 1.txt Addition 2.txt
  2. That title was a tuff one to come up with. A few days, or more, everything was going smooth-no incidents. But now, I keep losing the Malwarebytes icon, and when shutting windows down, a top part of the Malwarebytes window frame, shows up on the shut-down? This happens when I don't have Malwarebytes window up on the desktop? So, this is what I have done thus far; I completley removed Malwarebytes, and all it's files and folders from the computer. Then I ran CCleaner, then Deffragger. I then re-installed Malwarebytes with a fresh start. After about two days it started again; losing Malwarebytes icon, and the mysterious appearing top part of the Malwarebytes window frame appears on shut down? I just ran Hitman Pro, Malwarebytes Pro, Avast; Adware, Norton's Power Eraser and rkill. Adware found something in the registry-deleted it. I have never encountered this before with Malwarebytes Pro. Thanks for your time. dwdraw2
  3. An executive thought that he would try-out his new Porsche. So, right after work, he scurried over to his Porsche. Having a convertable, he put the top down, and headed out to the nearest Interstate. He stepped on the gas a little and quickly brought his speed up to 100mph. After a few minutes, he rasied his speed up to 120mph. After cruising for a few minutes at 120, and enjoying the air blowing through his hair, he noticed a patrol car not far behind him with his lights flashing. The executive decided to out run the patrol car, so he punched down on the gas peddle until he was doing 180mph-fastly leaving the patrol car far behind. He then realized that he couldn't out run the radios, so he decided to pull over and wait for the patrol car. A few minutes later the patrol car shows up. The officer, boiling mad, hustled up to the executive. He said to the executive that he was due to get off work 10 minutes ago, the day is Friday the 13th, and I was suppose to take my wife out for our annerversery dinner! The officer said to the executive, "if you can give me one good reason, one I haven't heard before, I'll let you go!" The executive replied, "last year my wife ran off with a patrolman, and I thought that you were tring to bring her back!" The officer said, "take-off, have a nice day!"
  4. Hello folks: What is self protection module? What is self protection early start? And last, what are the difference between the two and should I activate them? Thanks for your time. dwdraw2
  5. Thanks for your reply, I do appreciate it. I was just going back-over the logs: don't they seem to be shutting dowm to refresh the update? I'm thinking that just might be what's happening as far as the unchecking of the "IP." I'll keep a vigilant eye on this and watch the logs at the time I catch it. Thanks for your time and advice. dwdraw2
  6. Thanks for the reply.; Unfortunatly, I cleared the log files yesterday-without thinking. But I do have a small sample from today. I will start checking the files more reguarly for any incidents. As soon as I have another incident, I'll send you the logs, but for now, I can send you the small sample that is there now. Here they are: 2014/02/27 10:32:07 -0500 BUBBA-PC (null) MESSAGE Executing scheduled update: Daily 2014/02/27 10:32:11 -0500 BUBBA-PC (null) MESSAGE Starting protection 2014/02/27 10:32:11 -0500 BUBBA-PC (null) MESSAGE Protection started successfully 2014/02/27 10:32:11 -0500 BUBBA-PC (null) MESSAGE Starting IP protection 2014/02/27 10:32:14 -0500 BUBBA-PC (null) MESSAGE IP Protection started successfully 2014/02/27 10:32:21 -0500 BUBBA-PC Bubba MESSAGE Starting database refresh 2014/02/27 10:32:21 -0500 BUBBA-PC Bubba MESSAGE Scheduled update executed successfully: database updated from version v2014.02.26.10 to version v2014.02.27.05 2014/02/27 10:32:21 -0500 BUBBA-PC Bubba MESSAGE Stopping IP protection 2014/02/27 10:32:22 -0500 BUBBA-PC Bubba MESSAGE IP Protection stopped successfully 2014/02/27 10:32:24 -0500 BUBBA-PC Bubba MESSAGE Database refreshed successfully 2014/02/27 10:32:24 -0500 BUBBA-PC Bubba MESSAGE Starting IP protection 2014/02/27 10:32:27 -0500 BUBBA-PC Bubba MESSAGE IP Protection started successfully 2014/02/27 16:39:18 -0500 BUBBA-PC (null) MESSAGE Starting protection 2014/02/27 16:39:18 -0500 BUBBA-PC (null) MESSAGE Protection started successfully 2014/02/27 16:39:18 -0500 BUBBA-PC (null) MESSAGE Starting IP protection 2014/02/27 16:39:21 -0500 BUBBA-PC (null) MESSAGE IP Protection started successfully Thanks for your time. dwdraw2
  7. Thanks for the reply. I don't recall seeing any update screen apearing along side Malwarebyte's window, however; it's possible that the update screen cleared off before Malwarebyte's window fully implemented to it's full window format. I'll try watching that closer to see if that is the case. Being that this does not frequently happen it's possible that it could be updating at those selected times that I opened it. I appreciate your advice and help in this matter. Thanks for your time, dwdraw2
  8. Not to often, but sometimes, when I manually start up Malwarebyte's window, and click on protection status, I notice that "Enable Malicious Website Blocking" will be unchecked? This doesn't happen often, and only after coming off the Web. I run Avast for my full-time "Internet Security Protection." I also use Hitman Pro, paid version, as my second opinion, but I run that only on manual after being on the Web for extended times, for an brief check. I don't think Hitman Pro would do any unchecking on Malwarebyte's because it not on auto, but do you think Avast might be doing the unchecking on Malwarebyte's since it runs full-time? I have run various utility checks: tdsskiller, junk removal tool, Norton Power Eraser, rkill; besides the three mentioned above, and found nothing? Now this unchecking happens far-apart, so far about 5 times. Anybody have any ideas or the same experience? Today when I discovered it unchecked, it quickly re-checked itself before I could do it? Thanks for your time. dwdraw2
  9. Hello Spam Hunter, Here are the two dds.text files: DDS (Ver_2012-11-20.01) - NTFS_AMD64 Internet Explorer: 10.0.9200.16720Run by Dan at 22:33:17 on 2013-10-31Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.6077.4547 [GMT -4:00].AV: avast! Internet Security *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}SP: avast! Internet Security *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}FW: avast! Internet Security *Disabled* {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}.============== Running Processes ===============.C:\Windows\system32\lsm.exeC:\Windows\system32\svchost.exe -k DcomLaunchC:\Windows\system32\svchost.exe -k RPCSSC:\Windows\system32\atiesrxx.exeC:\Windows\System32\svchost.exe -k LocalServiceNetworkRestrictedC:\Windows\System32\svchost.exe -k LocalSystemNetworkRestrictedC:\Windows\system32\svchost.exe -k LocalServiceC:\Windows\system32\svchost.exe -k netsvcsC:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_42d83e1760b1e973\STacSV64.exeC:\Windows\system32\svchost.exe -k GPSvcGroupC:\Windows\system32\atieclxx.exeC:\Program Files\Tablet\Wacom\WTabletServicePro.exeC:\Program Files\HitmanPro\hmpsched.exeC:\Windows\system32\svchost.exe -k NetworkServiceC:\Program Files\AVAST Software\Avast\AvastSvc.exeC:\Windows\system32\WLANExt.exeC:\Program Files\AVAST Software\Avast\afwServ.exeC:\Windows\System32\spoolsv.exeC:\Windows\system32\svchost.exe -k LocalServiceNoNetworkC:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exeC:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_42d83e1760b1e973\AESTSr64.exeC:\Program Files\Intel\WiFi\bin\EvtEng.exeC:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonationC:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exeC:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exeC:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exeC:\Windows\System32\svchost.exe -k HPZ12C:\Program Files (x86)\Novatel Wireless\Novacore\Server\NvtlSrvr.exeC:\Windows\System32\svchost.exe -k HPZ12C:\Program Files (x86)\QUALCOMM\QDLService2k\QDLService2kDell.exeC:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exeC:\Windows\system32\svchost.exe -k imgsvcC:\Windows\system32\taskhost.exeC:\Windows\Explorer.EXEC:\Windows\system32\Dwm.exeC:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestrictedC:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exeC:\Windows\system32\wbem\unsecapp.exeC:\Windows\system32\wbem\wmiprvse.exeC:\Program Files\Dell\QuickSet\quickset.exeC:\Program Files\IDT\WDM\sttray64.exeC:\Program Files\Synaptics\SynTP\SynTPEnh.exeC:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exeC:\Program Files (x86)\WORDsearch 10\ZipScript.exeC:\Program Files\Tablet\Wacom\Wacom_TabletUser.exeC:\Program Files\Tablet\Wacom\WacomHost.exeC:\Program Files (x86)\Dell Support Center\bin\sprtcmd.exeC:\Program Files\Tablet\Wacom\Wacom_Tablet.exeC:\Program Files\Synaptics\SynTP\SynTPHelper.exeC:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exeC:\Program Files\Tablet\Wacom\Wacom_TouchUser.exeC:\Program Files\AVAST Software\Avast\AvastUI.exeC:\Windows\system32\wbem\unsecapp.exeC:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exeC:\Windows\System32\WUDFHost.exeC:\Windows\system32\SearchIndexer.exeC:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exeC:\Windows\system32\svchost.exe -k HPServiceC:\Program Files (x86)\Dell Support Center\bin\sprtsvc.exeC:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exeC:\Windows\System32\svchost.exe -k secsvcsC:\Program Files\Windows Media Player\wmpnetwk.exeC:\Windows\system32\svchost.exe -k SDRSVCC:\Windows\SysWOW64\NOTEPAD.EXEC:\Windows\SysWOW64\NOTEPAD.EXEC:\Windows\system32\taskeng.exeC:\Windows\system32\wbem\wmiprvse.exeC:\Windows\system32\vssvc.exeC:\Windows\System32\svchost.exe -k swprvC:\Windows\System32\cscript.exe.============== Pseudo HJT Report ===============.mWinlogon: Userinit = userinit.exe,BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dllBHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLLBHO: JQSIEStartDetectorImpl Class: {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files (x86)\MasterWriter 2.0\jre6\lib\deploy\jqs\ie\jqs_plugin.dllTB: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dlluRun: [ZipScript] C:\Program Files (x86)\WORDsearch 10\ZipScript.exeuRun: [GoogleChromeAutoLaunch_31FA44FE943CF384B13C12A03C90A9AD] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-windowmRun: [dellsupportcenter] "C:\Program Files (x86)\Dell Support Center\bin\sprtcmd.exe" /P dellsupportcentermRun: [startCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRunmRun: [PDVDDXSrv] "C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe"mRun: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /noguimRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"dRun: [20090604] C:\Program Files (x86)\Broderbund\Mavis Beacon Deluxe - 25th Anniversary Edition\RegApp\encore_reg.exe /r "C:\Program Files (x86)\Broderbund\Mavis Beacon Deluxe - 25th Anniversary Edition\RegApp\encore_reg.rpd"dRunOnce: [sPReview] "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"http://go.microsoft.com/fwlink/?LinkID=122915" /build:7601mPolicies-Explorer: NoActiveDesktop = dword:1mPolicies-System: ConsentPromptBehaviorAdmin = dword:5mPolicies-System: ConsentPromptBehaviorUser = dword:3mPolicies-System: EnableUIADesktopToggle = dword:0IE: E&xport to Microsoft Excel - C:\PROGRA~1\MICROS~3\Office14\EXCEL.EXE/3000IE: Se&nd to OneNote - C:\PROGRA~1\MICROS~3\Office14\ONBttnIE.dll/105IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dllIE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dllTrusted Zone: dell.comTCP: NameServer = 192.168.1.254TCP: Interfaces\{767AEDBE-136C-4C8C-A93D-326BD869155F} : DHCPNameServer = 192.168.1.254TCP: Interfaces\{A26C228B-C460-422A-9CBE-697A5F7A5147} : DHCPNameServer = 192.168.1.254Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLLSSODL: WebCheck - <orphaned>mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chromex64-BHO: avast! Online Security: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dllx64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLLx64-TB: avast! Online Security: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dllx64-Run: [QuickSet] C:\Program Files\Dell\QuickSet\QuickSet.exex64-Run: [sysTrayApp] C:\Program Files\IDT\WDM\sttray64.exex64-Run: [synTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exex64-Run: [intelWireless] "C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel Wireless Trayx64-Run: [Logitech Download Assistant] C:\Windows\System32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetchx64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dllx64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dllx64-Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLLx64-SSODL: WebCheck - <orphaned>.============= SERVICES / DRIVERS ===============.R0 aswRvrt;avast! Revert;C:\Windows\System32\drivers\aswRvrt.sys [2013-10-18 65776]R0 aswVmm;avast! VM Monitor;C:\Windows\System32\drivers\aswVmm.sys [2013-10-18 205320]R1 aswKbd;aswKbd;C:\Windows\System32\drivers\aswKbd.sys [2013-10-18 28184]R1 aswNdisFlt;Avast! Firewall Driver;C:\Windows\System32\drivers\aswNdisFlt.sys [2013-10-18 447888]R1 aswSnx;aswSnx;C:\Windows\System32\drivers\aswSnx.sys [2013-10-18 1032416]R1 aswSP;aswSP;C:\Windows\System32\drivers\aswSP.sys [2013-10-18 409832]R2 AESTFilters;Andrea ST Filters Service;C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_42d83e1760b1e973\AESTSr64.exe [2013-9-28 89600]R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2013-1-17 202752]R2 aswFsBlk;aswFsBlk;C:\Windows\System32\drivers\aswFsBlk.sys [2013-10-18 38984]R2 aswMonFlt;aswMonFlt;C:\Windows\System32\drivers\aswMonFlt.sys [2013-10-18 84328]R2 avast! Antivirus;avast! Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-10-18 50344]R2 avast! Firewall;avast! Firewall;C:\Program Files\AVAST Software\Avast\afwServ.exe [2013-10-18 179088]R2 HitmanProScheduler;HitmanPro Scheduler;C:\Program Files\HitmanPro\hmpsched.exe [2013-10-25 109352]R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-9-30 418376]R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-9-30 701512]R2 NvtlService;NovaCore SDK Service;C:\Program Files (x86)\Novatel Wireless\Novacore\Server\NvtlSrvr.exe [2009-10-29 82432]R2 QDLService2kDell;Qualcomm Gobi 2000 Download Service (Dell);C:\Program Files (x86)\QUALCOMM\QDLService2k\QDLService2kDell.exe [2009-10-9 329976]R2 UNS;Intel® Management & Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2013-9-28 2320920]R2 WTabletServicePro;Wacom Professional Service;C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [2013-10-13 621336]R3 HECIx64;Intel® Management Engine Interface;C:\Windows\System32\drivers\HECIx64.sys [2012-3-16 56344]R3 MBAMProtector;MBAMProtector;C:\Windows\System32\drivers\mbam.sys [2013-9-30 25928]R3 NETw5s64;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit;C:\Windows\System32\drivers\NETw5s64.sys [2009-9-15 6952960]R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2011-6-10 539240]S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]S3 mbamchameleon;mbamchameleon;C:\Windows\System32\drivers\mbamchameleon.sys [2013-10-18 36680]S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2009-9-21 315664]S3 ose64;Office 64 Source Engine;C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-1-9 174440]S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2013-10-23 19456]S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2013-10-23 57856]S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2013-9-29 1255736]S3 WDC_SAM;WD SCSI Pass Thru driver;C:\Windows\System32\drivers\wdcsam64.sys [2008-5-6 14464].=============== Created Last 30 ================.2013-10-31 08:21:08 -------- d-----w- C:\Users\Dan\AppData\Local\NPE2013-10-31 08:21:07 -------- d-----w- C:\ProgramData\Norton2013-10-31 07:45:11 -------- d-----w- C:\ProgramData\Innovative Solutions2013-10-31 07:45:07 -------- d-----w- C:\Users\Dan\AppData\Local\Innovative Solutions2013-10-31 07:45:05 -------- d-----w- C:\Program Files (x86)\Common Files\Innovative Solutions2013-10-29 13:18:45 10280728 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CA49623B-FAC7-475D-8630-66DBE68B11E7}\mpengine.dll2013-10-27 01:06:00 -------- d-----w- C:\Program Files (x86)\MSXML 4.02013-10-27 00:44:51 -------- d-----w- C:\Users\Dan\AppData\Local\Secunia PSI2013-10-25 18:32:11 -------- d-----w- C:\Users\Dan\AppData\Local\Adobe2013-10-25 04:20:19 -------- d-----w- C:\AdwCleaner2013-10-25 04:12:19 -------- d-----w- C:\Program Files\HitmanPro2013-10-25 04:09:52 -------- d-----w- C:\ProgramData\HitmanPro2013-10-24 02:16:34 2560 ----a-w- C:\Windows\System32\drivers\en-US\wdf01000.sys.mui2013-10-24 02:11:26 87040 ----a-w- C:\Windows\System32\drivers\WUDFPf.sys2013-10-24 02:11:26 84992 ----a-w- C:\Windows\System32\WUDFSvc.dll2013-10-24 02:11:26 198656 ----a-w- C:\Windows\System32\drivers\WUDFRd.sys2013-10-24 02:11:26 194048 ----a-w- C:\Windows\System32\WUDFPlatform.dll2013-10-24 02:11:25 744448 ----a-w- C:\Windows\System32\WUDFx.dll2013-10-24 02:11:25 45056 ----a-w- C:\Windows\System32\WUDFCoinstaller.dll2013-10-24 02:11:25 229888 ----a-w- C:\Windows\System32\WUDFHost.exe2013-10-24 02:10:34 -------- d-----w- C:\history2013-10-24 00:42:06 70656 ----a-w- C:\Windows\System32\nlaapi.dll2013-10-24 00:42:06 569344 ----a-w- C:\Windows\System32\iphlpsvc.dll2013-10-24 00:42:06 52224 ----a-w- C:\Windows\SysWow64\nlaapi.dll2013-10-24 00:42:06 45568 ----a-w- C:\Windows\System32\drivers\tcpipreg.sys2013-10-24 00:42:06 303104 ----a-w- C:\Windows\System32\nlasvc.dll2013-10-24 00:42:06 246272 ----a-w- C:\Windows\System32\netcorehc.dll2013-10-24 00:42:06 216576 ----a-w- C:\Windows\System32\ncsi.dll2013-10-24 00:42:06 18944 ----a-w- C:\Windows\SysWow64\netevent.dll2013-10-24 00:42:06 18944 ----a-w- C:\Windows\System32\netevent.dll2013-10-24 00:42:06 175104 ----a-w- C:\Windows\SysWow64\netcorehc.dll2013-10-24 00:42:06 156672 ----a-w- C:\Windows\SysWow64\ncsi.dll2013-10-24 00:41:56 96768 ----a-w- C:\Windows\SysWow64\sspicli.dll2013-10-24 00:41:56 458712 ----a-w- C:\Windows\System32\drivers\cng.sys2013-10-24 00:41:56 340992 ----a-w- C:\Windows\System32\schannel.dll2013-10-24 00:41:56 247808 ----a-w- C:\Windows\SysWow64\schannel.dll2013-10-24 00:41:56 22016 ----a-w- C:\Windows\SysWow64\secur32.dll2013-10-24 00:41:56 154480 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys2013-10-24 00:41:56 1448448 ----a-w- C:\Windows\System32\lsasrv.dll2013-10-24 00:39:01 30720 ----a-w- C:\Windows\System32\cryptdlg.dll2013-10-24 00:39:01 24576 ----a-w- C:\Windows\SysWow64\cryptdlg.dll2013-10-24 00:35:48 509952 ----a-w- C:\Windows\System32\ntshrui.dll2013-10-24 00:35:48 442880 ----a-w- C:\Windows\SysWow64\ntshrui.dll2013-10-24 00:35:10 1424384 ----a-w- C:\Windows\System32\WindowsCodecs.dll2013-10-24 00:35:10 1230336 ----a-w- C:\Windows\SysWow64\WindowsCodecs.dll2013-10-24 00:34:52 497152 ----a-w- C:\Windows\System32\drivers\afd.sys2013-10-24 00:34:52 327168 ----a-w- C:\Windows\System32\mswsock.dll2013-10-24 00:34:52 1903552 ----a-w- C:\Windows\System32\drivers\tcpip.sys2013-10-24 00:34:51 231424 ----a-w- C:\Windows\SysWow64\mswsock.dll2013-10-24 00:32:29 503808 ----a-w- C:\Windows\System32\srcore.dll2013-10-24 00:32:29 43008 ----a-w- C:\Windows\SysWow64\srclient.dll2013-10-24 00:32:28 67072 ----a-w- C:\Windows\splwow64.exe2013-10-24 00:32:28 559104 ----a-w- C:\Windows\System32\spoolsv.exe2013-10-24 00:32:27 461312 ----a-w- C:\Windows\System32\scavengeui.dll2013-10-24 00:32:10 2871808 ----a-w- C:\Windows\explorer.exe2013-10-24 00:32:10 2616320 ----a-w- C:\Windows\SysWow64\explorer.exe2013-10-24 00:30:52 31232 ----a-w- C:\Windows\SysWow64\prevhost.exe2013-10-24 00:30:52 31232 ----a-w- C:\Windows\System32\prevhost.exe2013-10-24 00:30:39 27520 ----a-w- C:\Windows\System32\drivers\Diskdump.sys2013-10-24 00:30:05 48640 ----a-w- C:\Windows\System32\wwanprotdim.dll2013-10-24 00:30:05 230400 ----a-w- C:\Windows\System32\wwansvc.dll2013-10-23 17:03:38 10280728 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll2013-10-22 23:54:59 -------- d-----w- C:\Users\Dan\AppData\Local\Dell2013-10-18 19:29:00 36680 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys2013-10-18 19:02:42 28184 ----a-w- C:\Windows\System32\drivers\aswKbd.sys2013-10-18 19:02:17 447888 ----a-w- C:\Windows\System32\drivers\aswNdisFlt.sys2013-10-18 17:24:00 -------- d-----w- C:\Users\Dan\AppData\Roaming\AVAST Software2013-10-18 17:13:44 -------- d-----w- C:\Users\Dan\AppData\Local\Google2013-10-18 17:13:35 205320 ----a-w- C:\Windows\System32\drivers\aswVmm.sys2013-10-18 17:13:34 65776 ----a-w- C:\Windows\System32\drivers\aswRvrt.sys2013-10-18 17:13:33 1032416 ----a-w- C:\Windows\System32\drivers\aswSnx.sys2013-10-18 17:13:30 84328 ----a-w- C:\Windows\System32\drivers\aswMonFlt.sys2013-10-18 17:13:26 92544 ----a-w- C:\Windows\System32\drivers\aswRdr2.sys2013-10-18 17:13:18 43152 ----a-w- C:\Windows\avastSS.scr2013-10-18 17:13:01 -------- d-----w- C:\Program Files\AVAST Software2013-10-18 17:11:58 -------- d-----w- C:\ProgramData\AVAST Software2013-10-18 16:26:28 -------- d-----w- C:\Users\Dan\AppData\Roaming\EurekaLog2013-10-18 00:17:14 -------- d-----w- C:\Users\Dan\AppData\Local\CRE2013-10-17 21:44:27 -------- d-----w- C:\Users\Dan\AppData\Local\PrivaZer2013-10-17 21:44:27 -------- d-----w- C:\Program Files (x86)\PrivaZer2013-10-17 18:41:42 -------- d-----w- C:\wifidata2013-10-15 18:47:48 -------- d-----w- C:\Users\Dan\.android2013-10-13 04:23:10 -------- d-----w- C:\Users\Dan\AppData\Roaming\WTablet2013-10-13 04:20:45 -------- d-----w- C:\Program Files\TabletPlugins2013-10-13 04:20:45 -------- d-----w- C:\Program Files (x86)\TabletPlugins2013-10-13 04:20:23 1945880 ----a-w- C:\Windows\System32\Wacom_Tablet.dll2013-10-13 04:20:23 1938712 ----a-w- C:\Windows\System32\Wacom_Touch_Tablet.dll2013-10-13 04:20:23 1808152 ----a-w- C:\Windows\System32\Wintab32.dll2013-10-13 04:20:23 1805080 ----a-w- C:\Windows\System32\WacomMT.dll2013-10-13 04:20:23 1604376 ----a-w- C:\Windows\SysWow64\Wacom_Tablet.dll2013-10-13 04:20:23 1596696 ----a-w- C:\Windows\SysWow64\Wacom_Touch_Tablet.dll2013-10-13 04:20:23 1483032 ----a-w- C:\Windows\SysWow64\Wintab32.dll2013-10-13 04:20:23 1479960 ----a-w- C:\Windows\SysWow64\WacomMT.dll2013-10-13 04:20:18 -------- d-----w- C:\Program Files\Tablet2013-10-12 13:09:11 -------- d-----w- C:\Users\Dan\AppData\Roaming\TaxCut2013-10-12 13:09:11 -------- d-----w- C:\ProgramData\TaxCut2013-10-10 22:44:46 -------- d-----w- C:\Program Files\Power Structure2013-10-10 22:02:57 -------- d-----w- C:\Users\Dan\AppData\Roaming\Power Writer2013-10-10 22:02:57 -------- d-----w- C:\Program Files\Power Writer2013-10-10 22:02:56 -------- d-----w- C:\ProgramData\Common Resources2013-10-09 12:10:39 633856 ----a-w- C:\Windows\System32\comctl32.dll2013-10-09 12:10:39 530432 ----a-w- C:\Windows\SysWow64\comctl32.dll2013-10-09 12:05:38 70656 ----a-w- C:\Windows\SysWow64\fontsub.dll2013-10-09 12:05:38 46080 ----a-w- C:\Windows\System32\atmlib.dll2013-10-09 12:05:38 41472 ----a-w- C:\Windows\System32\lpk.dll2013-10-09 12:05:38 368128 ----a-w- C:\Windows\System32\atmfd.dll2013-10-09 12:05:38 34304 ----a-w- C:\Windows\SysWow64\atmlib.dll2013-10-09 12:05:38 295424 ----a-w- C:\Windows\SysWow64\atmfd.dll2013-10-09 12:05:38 25600 ----a-w- C:\Windows\SysWow64\lpk.dll2013-10-09 12:05:38 14336 ----a-w- C:\Windows\System32\dciman32.dll2013-10-09 12:05:38 10240 ----a-w- C:\Windows\SysWow64\dciman32.dll2013-10-09 12:05:38 100864 ----a-w- C:\Windows\System32\fontsub.dll2013-10-09 12:00:37 9728 ----a-w- C:\Windows\System32\Wdfres.dll2013-10-09 12:00:36 785624 ----a-w- C:\Windows\System32\drivers\Wdf01000.sys2013-10-09 12:00:36 54376 ----a-w- C:\Windows\System32\drivers\WdfLdr.sys2013-10-09 12:00:23 185344 ----a-w- C:\Windows\System32\drivers\usbvideo.sys2013-10-09 12:00:23 100864 ----a-w- C:\Windows\System32\drivers\usbcir.sys2013-10-09 12:00:21 76800 ----a-w- C:\Windows\System32\drivers\hidclass.sys2013-10-09 12:00:21 42496 ----a-w- C:\Windows\System32\drivers\usbscan.sys2013-10-09 12:00:21 32896 ----a-w- C:\Windows\System32\drivers\hidparse.sys2013-10-09 11:54:06 3155968 ----a-w- C:\Windows\System32\win32k.sys2013-10-09 11:51:08 124112 ----a-w- C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll2013-10-09 11:51:08 102608 ----a-w- C:\Windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll2013-10-09 11:51:06 983488 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys2013-10-09 11:51:05 99840 ----a-w- C:\Windows\System32\drivers\usbccgp.sys2013-10-09 11:51:05 7808 ----a-w- C:\Windows\System32\drivers\usbd.sys2013-10-09 11:51:05 52736 ----a-w- C:\Windows\System32\drivers\usbehci.sys2013-10-09 11:51:05 343040 ----a-w- C:\Windows\System32\drivers\usbhub.sys2013-10-09 11:51:05 325120 ----a-w- C:\Windows\System32\drivers\usbport.sys2013-10-09 11:51:05 30720 ----a-w- C:\Windows\System32\drivers\usbuhci.sys2013-10-09 11:51:05 25600 ----a-w- C:\Windows\System32\drivers\usbohci.sys2013-10-07 15:10:34 -------- d-----w- C:\CCleaner File Fixing Saves2013-10-03 18:37:54 -------- d-----w- C:\Users\Dan\MasterWriter 2.02013-10-02 23:14:21 -------- d-----w- C:\ProgramData\MasterWriter 2.02013-10-02 23:10:57 -------- d-----w- C:\Program Files (x86)\MasterWriter 2.02013-10-02 21:22:38 250368 ----a-w- C:\Windows\System32\Spool\prtprocs\x64\hpfpp101.dll2013-10-02 21:21:15 -------- d-----w- C:\Program Files (x86)\Common Files\HP2013-10-02 21:20:48 -------- d-----w- C:\Program Files (x86)\Common Files\Hewlett-Packard2013-10-02 21:19:35 136704 ----a-w- C:\Windows\System32\hpf3l101.dll2013-10-02 21:18:34 -------- d-----w- C:\Program Files (x86)\HP2013-10-02 21:17:40 -------- d-----w- C:\Program Files\HP2013-10-02 21:15:25 641664 ----a-w- C:\Windows\System32\hpzids40.dll2013-10-02 21:15:25 551424 ----a-w- C:\Windows\System32\hppldcoi.dll2013-10-02 21:15:23 515072 ----a-w- C:\Windows\System32\hposc_p03a.dll2013-10-02 21:15:23 1403904 ----a-w- C:\Windows\System32\hpost_p03b.dll2013-10-02 21:15:23 1175040 ----a-w- C:\Windows\System32\hposwia_p03b.dll2013-10-02 20:04:55 1643520 ----a-w- C:\Windows\System32\DWrite.dll2013-10-02 20:04:54 1247744 ----a-w- C:\Windows\SysWow64\DWrite.dll2013-10-02 19:41:01 9728 ---ha-w- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll2013-10-02 19:40:58 221184 ----a-w- C:\Windows\System32\UIAnimation.dll2013-10-02 19:40:58 187392 ----a-w- C:\Windows\SysWow64\UIAnimation.dll2013-10-02 19:38:24 1887232 ----a-w- C:\Windows\System32\d3d11.dll2013-10-02 19:38:24 1505280 ----a-w- C:\Windows\SysWow64\d3d11.dll.==================== Find3M ====================.2013-10-09 05:10:16 71048 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl2013-10-09 05:10:16 692616 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe2013-10-02 19:41:01 9728 ---ha-w- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll2013-09-30 11:28:13 152576 ----a-w- C:\Windows\SysWow64\msclmd.dll2013-09-30 11:28:11 175616 ----a-w- C:\Windows\System32\msclmd.dll2013-09-28 06:09:46 0 ----a-w- C:\Windows\ativpsrm.bin2013-09-22 23:28:06 1767936 ----a-w- C:\Windows\SysWow64\wininet.dll2013-09-22 23:27:49 2876928 ----a-w- C:\Windows\SysWow64\jscript9.dll2013-09-22 23:27:48 61440 ----a-w- C:\Windows\SysWow64\iesetup.dll2013-09-22 23:27:48 109056 ----a-w- C:\Windows\SysWow64\iesysprep.dll2013-09-22 22:55:10 2241024 ----a-w- C:\Windows\System32\wininet.dll2013-09-22 22:54:51 3959296 ----a-w- C:\Windows\System32\jscript9.dll2013-09-22 22:54:50 67072 ----a-w- C:\Windows\System32\iesetup.dll2013-09-22 22:54:50 136704 ----a-w- C:\Windows\System32\iesysprep.dll2013-09-21 03:38:39 2706432 ----a-w- C:\Windows\System32\mshtml.tlb2013-09-21 03:30:24 2706432 ----a-w- C:\Windows\SysWow64\mshtml.tlb2013-09-21 02:48:36 89600 ----a-w- C:\Windows\System32\RegisterIEPKEYs.exe2013-09-21 02:39:47 71680 ----a-w- C:\Windows\SysWow64\RegisterIEPKEYs.exe2013-09-03 18:35:10 278800 ------w- C:\Windows\System32\MpSigStub.exe2013-08-29 02:17:48 5549504 ----a-w- C:\Windows\System32\ntoskrnl.exe2013-08-29 02:16:35 1732032 ----a-w- C:\Windows\System32\ntdll.dll2013-08-29 02:16:28 243712 ----a-w- C:\Windows\System32\wow64.dll2013-08-29 02:16:14 859648 ----a-w- C:\Windows\System32\tdh.dll2013-08-29 02:13:28 878080 ----a-w- C:\Windows\System32\advapi32.dll2013-08-29 01:51:45 3969472 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe2013-08-29 01:51:45 3914176 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe2013-08-29 01:50:31 5120 ----a-w- C:\Windows\SysWow64\wow32.dll2013-08-29 01:50:30 1292192 ----a-w- C:\Windows\SysWow64\ntdll.dll2013-08-29 01:50:16 619520 ----a-w- C:\Windows\SysWow64\tdh.dll2013-08-29 01:48:17 640512 ----a-w- C:\Windows\SysWow64\advapi32.dll2013-08-29 01:48:15 44032 ----a-w- C:\Windows\apppatch\acwow64.dll2013-08-29 00:49:53 25600 ----a-w- C:\Windows\SysWow64\setup16.exe2013-08-29 00:49:52 7680 ----a-w- C:\Windows\SysWow64\instnm.exe2013-08-29 00:49:52 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll2013-08-29 00:49:49 2048 ----a-w- C:\Windows\SysWow64\user.exe2013-08-05 02:25:45 155584 ----a-w- C:\Windows\System32\drivers\ataport.sys2013-03-19 22:04:52 5823008 ----a-w- C:\Program Files\HRBlock2012.exe.============= FINISH: 22:33:29.10 =============== .UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.IF REQUESTED, ZIP IT UP & ATTACH IT.DDS (Ver_2012-11-20.01).Microsoft Windows 7 Home Premium Boot Device: \Device\HarddiskVolume1Install Date: 9/28/2013 12:52:37 AMSystem Uptime: 10/31/2013 10:10:47 PM (0 hours ago).Motherboard: Dell Inc. | | 0874P6Processor: Intel® Core i7 CPU Q 720 @ 1.60GHz | U2E1 | 1600/133mhz.==== Disk Partitions =========================.C: is FIXED (NTFS) - 466 GiB total, 407.276 GiB free.D: is CDROM ()E: is Removable.==== Disabled Device Manager Items =============.Class GUID: Description: Base System DeviceDevice ID: PCI\VEN_1180&DEV_E230&SUBSYS_04131028&REV_01\4&339CFF4&0&01E4Manufacturer: Name: Base System DevicePNP Device ID: PCI\VEN_1180&DEV_E230&SUBSYS_04131028&REV_01\4&339CFF4&0&01E4Service: .Class GUID: Description: Device ID: ACPI\SMO8800\1Manufacturer: Name: PNP Device ID: ACPI\SMO8800\1Service: .Class GUID: Description: Base System DeviceDevice ID: PCI\VEN_1180&DEV_E852&SUBSYS_04131028&REV_01\4&339CFF4&0&02E4Manufacturer: Name: Base System DevicePNP Device ID: PCI\VEN_1180&DEV_E852&SUBSYS_04131028&REV_01\4&339CFF4&0&02E4Service: .==== System Restore Points ===================.RP95: 10/26/2013 9:05:33 PM - Installed MSXML 4.0 SP3 ParserRP96: 10/27/2013 7:00:07 PM - Windows BackupRP97: 10/27/2013 7:21:43 PM - Windows BackupRP98: 10/27/2013 10:12:01 PM - Windows UpdateRP99: 10/31/2013 12:52:12 AM - Installed System Requirements Lab for IntelRP100: 10/31/2013 1:27:34 AM - Revo Uninstaller's restore point - Secunia PSI (3.0.0.8013)RP101: 10/31/2013 3:45:28 AM - After installing Advanced Uninstaller PRORP102: 10/31/2013 4:06:01 AM - Revo Uninstaller's restore point - Advanced Uninstaller PRO - Version 11RP103: 10/31/2013 12:28:55 PM - Revo Uninstaller's restore point - Max Uninstaller version 2.1.==== Installed Programs ======================.64 Bit HP CIO Components InstallerAdobe Flash Player 11 ActiveXAdobe Flash Player 11 PluginAdobe Reader XI (11.0.05)Apple Application SupportApple Software UpdateATI AVIVO64 CodecsATI Catalyst Install Manageravast! Internet SecurityCatalyst Control Center - BrandingCatalyst Control Center Core ImplementationCatalyst Control Center Graphics Full ExistingCatalyst Control Center Graphics Full NewCatalyst Control Center Graphics LightCatalyst Control Center Graphics Previews CommonCatalyst Control Center Graphics Previews VistaCatalyst Control Center InstallProxyCatalyst Control Center Localization Allccc-core-staticccc-utility64CCC Help Chinese StandardCCC Help Chinese TraditionalCCC Help DanishCCC Help DutchCCC Help EnglishCCC Help FinnishCCC Help FrenchCCC Help GermanCCC Help ItalianCCC Help JapaneseCCC Help KoreanCCC Help NorwegianCCC Help PortugueseCCC Help RussianCCC Help SpanishCCC Help SwedishCCleanerDefinition Update for Microsoft Office 2010 (KB982726) 64-Bit EditionDell Mobile Broadband ManagerDell Mobile Broadband UtilityDell Support Center (Support Software)Dell TouchpadGoogle ChromeGoogle Update HelperHitmanPro 3.7Hoyle Card Games 2010 (remove only)HP Photosmart Premium C309g-m All-in-One Driver 14.0 Rel. 6IDT AudioInstallVC90SupportIntel PROSet WirelessIntel® Management Engine ComponentsIntel® PROSet/Wireless WiFi SoftwareLogos 4 PrerequisitesLogos Bible Software 4Malwarebytes Anti-Malware version 1.75.0.1300MasterWriter 2.0Mavis Beacon Deluxe - 25th Anniv. Ed.Microsoft .NET Framework 4 Client ProfileMicrosoft .NET Framework 4 ExtendedMicrosoft Money PlusMicrosoft Money Shared LibrariesMicrosoft Office Access MUI (English) 2010Microsoft Office Access Setup Metadata MUI (English) 2010Microsoft Office Excel MUI (English) 2010Microsoft Office Home and Student 2010Microsoft Office Office 32-bit Components 2010Microsoft Office OneNote MUI (English) 2010Microsoft Office Outlook MUI (English) 2010Microsoft Office PowerPoint MUI (English) 2010Microsoft Office Proof (English) 2010Microsoft Office Proof (French) 2010Microsoft Office Proof (Spanish) 2010Microsoft Office Proofing (English) 2010Microsoft Office Publisher MUI (English) 2010Microsoft Office Shared 32-bit MUI (English) 2010Microsoft Office Shared MUI (English) 2010Microsoft Office Shared Setup Metadata MUI (English) 2010Microsoft Office Single Image 2010Microsoft Office Word MUI (English) 2010Microsoft Report Viewer Redistributable 2005Microsoft SilverlightMicrosoft SQL Server Compact 3.5 SP2 ENUMicrosoft SQL Server Compact 3.5 SP2 x64 ENUMicrosoft Visual C++ 2005 RedistributableMicrosoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161MSXML 4.0 SP2 (KB954430)MSXML 4.0 SP2 (KB973688)MSXML 4.0 SP3 ParserMSXML 4.0 SP3 Parser (KB2758694)Network64Power StructurePower WriterPowerDVDPrivaZerPS_AIO_06_C309g-m_SW_MinQualcomm Gobi 2000 Package for DellQuickset64Revo Uninstaller 1.91ScanSecurity Update for Microsoft .NET Framework 4 Client Profile (KB2604121)Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)Security Update for Microsoft .NET Framework 4 Client Profile (KB2736428)Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)Security Update for Microsoft .NET Framework 4 Client Profile (KB2804576)Security Update for Microsoft .NET Framework 4 Client Profile (KB2835393)Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628v2)Security Update for Microsoft .NET Framework 4 Client Profile (KB2858302v2)Security Update for Microsoft .NET Framework 4 Extended (KB2487367)Security Update for Microsoft .NET Framework 4 Extended (KB2656351)Security Update for Microsoft .NET Framework 4 Extended (KB2736428)Security Update for Microsoft .NET Framework 4 Extended (KB2742595)Security Update for Microsoft .NET Framework 4 Extended (KB2858302v2)Security Update for Microsoft Excel 2010 (KB2826033) 64-Bit EditionSecurity Update for Microsoft Office 2010 (KB2687423) 64-Bit EditionSecurity Update for Microsoft Office 2010 (KB2826023) 64-Bit EditionSecurity Update for Microsoft Office 2010 (KB2826035) 64-Bit EditionSecurity Update for Microsoft Outlook 2010 (KB2794707) 64-Bit EditionService Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit EditionStyleWriter 4System Requirements Lab for IntelToolboxUpdate for Microsoft .NET Framework 4 Client Profile (KB2468871)Update for Microsoft .NET Framework 4 Client Profile (KB2533523)Update for Microsoft .NET Framework 4 Client Profile (KB2600217)Update for Microsoft .NET Framework 4 Extended (KB2468871)Update for Microsoft .NET Framework 4 Extended (KB2533523)Update for Microsoft .NET Framework 4 Extended (KB2600217)Update for Microsoft Access 2010 (KB2553446) 64-Bit EditionUpdate for Microsoft Filter Pack 2.0 (KB2810071) 64-Bit EditionUpdate for Microsoft Office 2010 (KB2589298) 64-Bit EditionUpdate for Microsoft Office 2010 (KB2589375) 64-Bit EditionUpdate for Microsoft Office 2010 (KB2760598) 64-Bit EditionUpdate for Microsoft Office 2010 (KB2760631) 64-Bit EditionUpdate for Microsoft Office 2010 (KB2794737) 64-Bit EditionUpdate for Microsoft Office 2010 (KB2826026) 64-Bit EditionUpdate for Microsoft OneNote 2010 (KB2810072) 64-Bit EditionUpdate for Microsoft PowerPoint 2010 (KB2553145) 64-Bit EditionUpdate for Microsoft Visio Viewer 2010 (KB2810066) 64-Bit EditionUpdate for Microsoft Word 2010 (KB2827323) 64-Bit EditionWacom TabletWebTablet FB Plugin 32 bitWebTablet FB Plugin 64 bitWriteWayWS10 Basic Edition.==== Event Viewer Messages From Past Week ========.10/31/2013 12:27:10 PM, Error: Disk [11] - The driver detected a controller error on \Device\Harddisk1\DR1..==== End Of File =========================== Thanks for your time.
  10. Hello Spam Hunter, I'm going to have to use two seperate windows. Below will be the "Check Result." Look for another window with the "dds.texts." mbam-check result log version: 2.0.0.1000 Malwarebytes Version: REG_SZ 1.75.0.1300 Date Log Created: 10/31/13Time Log Created: 13:12:00 User Account type: Administrator 64 bit Operating System Product Name: REG_SZ Windows 7 Home Premium Current Build Number: 7601 Current Version Number: 6.1 Current CSDVersion: Service Pack 1 Proxy Status: No proxy is Set LAN Settings:============= only 'Automatically detect settings' is selected SystemPartition:================ HKEY_LOCAL_MACHINE\SYSTEM\Setup\SystemPartition REG_SZ \Device\HarddiskVolume1 Balloon Tips Status:==================== Enabled Time Format Settings:===================== Should be:h:mm:ss ttAM PM : Currently:REG_SZ h:mm:ss ttREG_SZ AMREG_SZ PMREG_SZ : Language and Regional Settings:=============================== ACP: Language is English (United States)MACCP: Language is English (United States)OEMCP: Language is English (United States) Startup Folders for Error_Expanding_Variables Check:==================================================== All Users Startup Folder Exists.Current User's Startup Folder Exists. Terminal Services Status for (null) entries in PM logs and GetUserToken errors:=============================================================================== TERMService:==============Type : 32State : 1 (The service is not running.) (State is stopped)WIN32_EXIT_CODE : 1077SERVICE_EXIT_CODE : 0CHECKPOINT : 0WAIT_HINT : 0 TermService Start is set to: 3 (Manual Startup) Compatibility Flag Settings (Any MBAM file listings should be removed):======================================================================= HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\appCompatFlags\LayersSIGN.MEDIA=A41A6274 HoyleCardGames2010.exeREG_SZ VISTARTMC:\Users\Dan\Downloads\USMoneyDlxSunset.exeREG_SZ WINXPSP2C:\Program Files (x86)\VS Revo Group\Revo Uninstaller\Revouninstaller.exeREG_SZ VISTARTMC:\Program Files\Power Structure\Uninstall.exeREG_SZ WINXPSP2HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\appCompatFlags\LayersHKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\appCompatFlags\Layers Malwarebytes Anti-Malware Shell Extension Block Check:====================================================== MBAM Startup Entries: =====================HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunHKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnceHKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunHKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce Service and Driver Status:========================== MBAMProtector:==============Type : 2State : 4 (The service is running.) (STOPPABLE, NOT_PAUSABLE, IGNORES_SHUTDOWN)WIN32_EXIT_CODE : 0SERVICE_EXIT_CODE : 0CHECKPOINT : 0WAIT_HINT : 0 MBAMService:==============Type : 16State : 4 (The service is running.)WIN32_EXIT_CODE : 0SERVICE_EXIT_CODE : 0CHECKPOINT : 0WAIT_HINT : 0 MBAMScheduler:==============Type : 16State : 4 (The service is running.)WIN32_EXIT_CODE : 0SERVICE_EXIT_CODE : 0CHECKPOINT : 0WAIT_HINT : 0 MBAMChameleon:==============Type : 2State : 1 (The service is not running.) (State is stopped)WIN32_EXIT_CODE : 1077SERVICE_EXIT_CODE : 0CHECKPOINT : 0WAIT_HINT : 0 MBAMProtector Registry Values:============================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtectorType REG_DWORD 2Start REG_DWORD 3ErrorControl REG_DWORD 1ImagePath REG_EXPAND_SZ \??\C:\Windows\system32\drivers\mbam.sysGroup REG_SZ FSFilter Anti-VirusDependOnService REG_MULTI_SZ FltMgr WOW64 REG_DWORD 1HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtector\InstancesDefaultInstance REG_SZ MBAMProtector InstanceHKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtector\Instances\MBAMProtector InstanceAltitude REG_SZ 328800Flags REG_DWORD 0HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMProtector\Enum0 REG_SZ Root\LEGACY_MBAMPROTECTOR\0000Count REG_DWORD 1NextInstance REG_DWORD 1MBAMService Registry Values:============================ HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMServiceType REG_DWORD 16Start REG_DWORD 2ErrorControl REG_DWORD 1ImagePath REG_EXPAND_SZ "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe"DependOnService REG_MULTI_SZ MBAMProtector WOW64 REG_DWORD 1ObjectName REG_SZ LocalSystemDescription REG_SZ Malwarebytes Anti-Malware serviceDelayedAutostart REG_DWORD 0MBAMScheduler Registry Values:============================== HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\MBAMSchedulerType REG_DWORD 16Start REG_DWORD 2ErrorControl REG_DWORD 1ImagePath REG_EXPAND_SZ "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe"WOW64 REG_DWORD 1ObjectName REG_SZ LocalSystemDescription REG_SZ Malwarebytes Anti-Malware scheduler MBAM DLL's and Runtime Files:============================= HKEY_CLASSES_ROOT\vbAcceleratorSGrid6.vbalGrid(Default): REG_SZ vbAccelerator Grid ControlHKEY_CLASSES_ROOT\vbAcceleratorSGrid6.vbalGrid\Clsid(Default): REG_SZ {C5DA1F2B-B2BF-4DFC-BC9A-439133543A67} HKEY_CLASSES_ROOT\SSubTimer6.GSubclass(Default): REG_SZ SSubTimer6.GSubclassHKEY_CLASSES_ROOT\SSubTimer6.GSubclass\Clsid(Default): REG_SZ {71A27032-C7D8-11D2-BEF8-525400DFB47A} HKEY_CLASSES_ROOT\SSubTimer6.CTimer(Default): REG_SZ SSubTimer6.CTimerHKEY_CLASSES_ROOT\SSubTimer6.CTimer\Clsid(Default): REG_SZ {71A27034-C7D8-11D2-BEF8-525400DFB47A} HKEY_CLASSES_ROOT\SSubTimer6.ISubclass(Default): REG_SZ SSubTimer6.ISubclassHKEY_CLASSES_ROOT\SSubTimer6.ISubclass\Clsid(Default): REG_SZ {71A2702F-C7D8-11D2-BEF8-525400DFB47A} HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A2702F-C7D8-11D2-BEF8-525400DFB47A}(Default): REG_SZ SSubTimer6.ISubclassHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A2702F-C7D8-11D2-BEF8-525400DFB47A}\Implemented CategoriesHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A2702F-C7D8-11D2-BEF8-525400DFB47A}\Implemented Categories\{40FC6ED5-2438-11CF-A3DB-080036F12502}HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A2702F-C7D8-11D2-BEF8-525400DFB47A}\ProgID(Default): REG_SZ SSubTimer6.ISubclassHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A2702F-C7D8-11D2-BEF8-525400DFB47A}\ProgrammableHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A2702F-C7D8-11D2-BEF8-525400DFB47A}\TypeLib(Default): REG_SZ {71A2702D-C7D8-11D2-BEF8-525400DFB47A}HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A2702F-C7D8-11D2-BEF8-525400DFB47A}\VERSION(Default): REG_SZ 1.0 HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27032-C7D8-11D2-BEF8-525400DFB47A}(Default): REG_SZ SSubTimer6.GSubclassHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27032-C7D8-11D2-BEF8-525400DFB47A}\Implemented CategoriesHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27032-C7D8-11D2-BEF8-525400DFB47A}\Implemented Categories\{40FC6ED5-2438-11CF-A3DB-080036F12502}HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27032-C7D8-11D2-BEF8-525400DFB47A}\InprocServer32(Default): REG_SZ C:\Program Files (x86)\Malwarebytes' Anti-Malware\ssubtmr6.dllThreadingModel REG_SZ ApartmentHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27032-C7D8-11D2-BEF8-525400DFB47A}\ProgID(Default): REG_SZ SSubTimer6.GSubclassHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27032-C7D8-11D2-BEF8-525400DFB47A}\ProgrammableHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27032-C7D8-11D2-BEF8-525400DFB47A}\TypeLib(Default): REG_SZ {71A2702D-C7D8-11D2-BEF8-525400DFB47A}HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27032-C7D8-11D2-BEF8-525400DFB47A}\VERSION(Default): REG_SZ 1.0 HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27034-C7D8-11D2-BEF8-525400DFB47A}(Default): REG_SZ SSubTimer6.CTimerHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27034-C7D8-11D2-BEF8-525400DFB47A}\Implemented CategoriesHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27034-C7D8-11D2-BEF8-525400DFB47A}\Implemented Categories\{40FC6ED5-2438-11CF-A3DB-080036F12502}HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27034-C7D8-11D2-BEF8-525400DFB47A}\InprocServer32(Default): REG_SZ C:\Program Files (x86)\Malwarebytes' Anti-Malware\ssubtmr6.dllThreadingModel REG_SZ ApartmentHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27034-C7D8-11D2-BEF8-525400DFB47A}\ProgID(Default): REG_SZ SSubTimer6.CTimerHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27034-C7D8-11D2-BEF8-525400DFB47A}\ProgrammableHKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27034-C7D8-11D2-BEF8-525400DFB47A}\TypeLib(Default): REG_SZ {71A2702D-C7D8-11D2-BEF8-525400DFB47A}HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{71A27034-C7D8-11D2-BEF8-525400DFB47A}\VERSION(Default): REG_SZ 1.0 HKEY_CLASSES_ROOT\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}HKEY_CLASSES_ROOT\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}\1.1(Default): REG_SZ vbAccelerator VB6 SGrid Control 2.0HKEY_CLASSES_ROOT\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}\1.1\0HKEY_CLASSES_ROOT\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}\1.1\0\win32(Default): REG_SZ C:\Program Files (x86)\Malwarebytes' Anti-Malware\vbalsgrid6.ocxHKEY_CLASSES_ROOT\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}\1.1\FLAGS(Default): REG_SZ 2HKEY_CLASSES_ROOT\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}\1.1\HELPDIR(Default): REG_SZ C:\Program Files (x86)\Malwarebytes' Anti-MalwareHKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}\1.1(Default): REG_SZ vbAccelerator VB6 SGrid Control 2.0HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}\1.1\0HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}\1.1\0\win32(Default): REG_SZ C:\Program Files (x86)\Malwarebytes' Anti-Malware\vbalsgrid6.ocxHKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}\1.1\FLAGS(Default): REG_SZ 2HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{DE8CE233-DD83-481D-844C-C07B96589D3A}\1.1\HELPDIR(Default): REG_SZ C:\Program Files (x86)\Malwarebytes' Anti-MalwareHKEY_CLASSES_ROOT\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}HKEY_CLASSES_ROOT\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}\1.0(Default): REG_SZ vbAccelerator VB6 Subclassing and Timer Assistant (with configurable message response, multi-control support + timer bug fix)HKEY_CLASSES_ROOT\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}\1.0\0HKEY_CLASSES_ROOT\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}\1.0\0\win32(Default): REG_SZ C:\Program Files (x86)\Malwarebytes' Anti-Malware\ssubtmr6.dllHKEY_CLASSES_ROOT\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}\1.0\FLAGS(Default): REG_SZ 0HKEY_CLASSES_ROOT\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}\1.0\HELPDIR(Default): REG_SZ C:\Program Files (x86)\Malwarebytes' Anti-MalwareHKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}\1.0(Default): REG_SZ vbAccelerator VB6 Subclassing and Timer Assistant (with configurable message response, multi-control support + timer bug fix)HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}\1.0\0HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}\1.0\0\win32(Default): REG_SZ C:\Program Files (x86)\Malwarebytes' Anti-Malware\ssubtmr6.dllHKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}\1.0\FLAGS(Default): REG_SZ 0HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{71A2702D-C7D8-11D2-BEF8-525400DFB47A}\1.0\HELPDIR(Default): REG_SZ C:\Program Files (x86)\Malwarebytes' Anti-MalwareHKEY_CLASSES_ROOT\Interface\{71A2702E-C7D8-11D2-BEF8-525400DFB47A}(Default): REG_SZ _ISubclassHKEY_CLASSES_ROOT\Interface\{71A2702E-C7D8-11D2-BEF8-525400DFB47A}\ProxyStubClsid32(Default): REG_SZ {00020424-0000-0000-C000-000000000046}HKEY_CLASSES_ROOT\Interface\{71A2702E-C7D8-11D2-BEF8-525400DFB47A}\TypeLib(Default): REG_SZ {71A2702D-C7D8-11D2-BEF8-525400DFB47A}Version REG_SZ 1.0HKEY_CLASSES_ROOT\Wow6432Node\Interface\{71A2702E-C7D8-11D2-BEF8-525400DFB47A}(Default): REG_SZ ISubclassHKEY_CLASSES_ROOT\Wow6432Node\Interface\{71A2702E-C7D8-11D2-BEF8-525400DFB47A}\ProxyStubClsid(Default): REG_SZ {00020424-0000-0000-C000-000000000046}HKEY_CLASSES_ROOT\Wow6432Node\Interface\{71A2702E-C7D8-11D2-BEF8-525400DFB47A}\ProxyStubClsid32(Default): REG_SZ {00020424-0000-0000-C000-000000000046}HKEY_CLASSES_ROOT\Wow6432Node\Interface\{71A2702E-C7D8-11D2-BEF8-525400DFB47A}\TypeLib(Default): REG_SZ {71A2702D-C7D8-11D2-BEF8-525400DFB47A}Version REG_SZ 1.0HKEY_CLASSES_ROOT\Interface\{71A27036-C7D8-11D2-BEF8-525400DFB47A}(Default): REG_SZ __CTimerHKEY_CLASSES_ROOT\Interface\{71A27036-C7D8-11D2-BEF8-525400DFB47A}\ProxyStubClsid32(Default): REG_SZ {00020420-0000-0000-C000-000000000046}HKEY_CLASSES_ROOT\Interface\{71A27036-C7D8-11D2-BEF8-525400DFB47A}\TypeLib(Default): REG_SZ {71A2702D-C7D8-11D2-BEF8-525400DFB47A}Version REG_SZ 1.0HKEY_CLASSES_ROOT\Wow6432Node\Interface\{71A27036-C7D8-11D2-BEF8-525400DFB47A}(Default): REG_SZ CTimerHKEY_CLASSES_ROOT\Wow6432Node\Interface\{71A27036-C7D8-11D2-BEF8-525400DFB47A}\ProxyStubClsid(Default): REG_SZ {00020420-0000-0000-C000-000000000046}HKEY_CLASSES_ROOT\Wow6432Node\Interface\{71A27036-C7D8-11D2-BEF8-525400DFB47A}\ProxyStubClsid32(Default): REG_SZ {00020420-0000-0000-C000-000000000046}HKEY_CLASSES_ROOT\Wow6432Node\Interface\{71A27036-C7D8-11D2-BEF8-525400DFB47A}\TypeLib(Default): REG_SZ {71A2702D-C7D8-11D2-BEF8-525400DFB47A}Version REG_SZ 1.0HKEY_CLASSES_ROOT\Interface\{1EDFD7DF-030D-4144-952E-9D7D86691CDB}(Default): REG_SZ __vbalGridHKEY_CLASSES_ROOT\Interface\{1EDFD7DF-030D-4144-952E-9D7D86691CDB}\ProxyStubClsid32(Default): REG_SZ {00020420-0000-0000-C000-000000000046}HKEY_CLASSES_ROOT\Interface\{1EDFD7DF-030D-4144-952E-9D7D86691CDB}\TypeLib(Default): REG_SZ {DE8CE233-DD83-481D-844C-C07B96589D3A}Version REG_SZ 1.1HKEY_CLASSES_ROOT\Wow6432Node\Interface\{1EDFD7DF-030D-4144-952E-9D7D86691CDB}(Default): REG_SZ vbalGridHKEY_CLASSES_ROOT\Wow6432Node\Interface\{1EDFD7DF-030D-4144-952E-9D7D86691CDB}\ProxyStubClsid(Default): REG_SZ {00020420-0000-0000-C000-000000000046}HKEY_CLASSES_ROOT\Wow6432Node\Interface\{1EDFD7DF-030D-4144-952E-9D7D86691CDB}\ProxyStubClsid32(Default): REG_SZ {00020420-0000-0000-C000-000000000046}HKEY_CLASSES_ROOT\Wow6432Node\Interface\{1EDFD7DF-030D-4144-952E-9D7D86691CDB}\TypeLib(Default): REG_SZ {DE8CE233-DD83-481D-844C-C07B96589D3A}Version REG_SZ 1.1MBAM Registry Settings and License Info:======================================== HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malwareadvancedheuristics REG_DWORD 1downloadprogram REG_DWORD 1hidereg REG_DWORD 0detectp2p REG_DWORD 0detectpum REG_DWORD 1detectpup REG_DWORD 1updatewarn REG_DWORD 1updatewarndays REG_DWORD 1useproxy REG_DWORD 0useauthentication REG_DWORD 0contextmenu REG_DWORD 1reportthreats REG_DWORD 1startwithwindows REG_DWORD 1startfsdisabled REG_DWORD 0startipdisabled REG_DWORD 0silentipmode REG_DWORD 0autoquarantine REG_DWORD 1notifyinstallprogram REG_DWORD 1trialpromptshown REG_DWORD 1autoquarantinenotify REG_DWORD 1alwaysscanarchives REG_DWORD 1InstallPath REG_SZ C:\Program Files (x86)\Malwarebytes' Anti-Malwaredbdate REG_SZ Thu, 31 Oct 2013 15:35:30 GMTdbversion REG_SZ v2013.10.31.05programversion REG_SZ 1.75.0.1300programbuild REG_SZ consumertrialended REG_DWORD 0SchedulerQueue REG_MULTI_SZ 6148, 30326235, 1974309440, 1, 23 | 30332504, 802314165 ID XXXXX-XXXXX This is hidden data.Key XXXX-XXXX-XXXX-XXXX This is hidden data. HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware (Trial)TrialId There is data here but it is hidden.StartDate REG_SZ Mon, 30 Sep 2013 18:40:24 UTCEndDate REG_SZ Mon, 14 Oct 2013 18:40:24 UTCHKEY_CURRENT_USER\SOFTWARE\Malwarebytes' Anti-Malwarealwaysscanfiles REG_DWORD 1alwaysscanheuristics REG_DWORD 1alwaysscanmemory REG_DWORD 1alwaysscanregistry REG_DWORD 1alwaysscanstartups REG_DWORD 1autosavelog REG_DWORD 1openlog REG_DWORD 1defaultscan REG_DWORD 0terminateie REG_DWORD 1Language REG_SZ English.lngselectedrives REG_SZ C:\|HKEY_USERS\S-1-5-18\SOFTWARE\Malwarebytes' Anti-Malwarealwaysscanfiles REG_DWORD 1alwaysscanheuristics REG_DWORD 1alwaysscanmemory REG_DWORD 1alwaysscanregistry REG_DWORD 1alwaysscanstartups REG_DWORD 1autosavelog REG_DWORD 1openlog REG_DWORD 1defaultscan REG_DWORD 0terminateie REG_DWORD 0HKEY_USERS\.DEFAULT\SOFTWARE\Malwarebytes' Anti-Malwarealwaysscanfiles REG_DWORD 1alwaysscanheuristics REG_DWORD 1alwaysscanmemory REG_DWORD 1alwaysscanregistry REG_DWORD 1alwaysscanstartups REG_DWORD 1autosavelog REG_DWORD 1openlog REG_DWORD 1defaultscan REG_DWORD 0terminateie REG_DWORD 0 HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Malwarebytes' Anti-Malware_is1Inno Setup: Setup Version REG_SZ 5.5.3-dev (a)Inno Setup: App Path REG_SZ C:\Program Files (x86)\Malwarebytes' Anti-MalwareInstallLocation REG_SZ C:\Program Files (x86)\Malwarebytes' Anti-Malware\Inno Setup: Icon Group REG_SZ Malwarebytes' Anti-MalwareInno Setup: User REG_SZ DanInno Setup: Selected Tasks REG_SZ desktopicon,quicklaunchiconInno Setup: Deselected Tasks REG_DWORD 0Inno Setup: Language REG_SZ EnglishDisplayName REG_SZ Malwarebytes Anti-Malware version 1.75.0.1300DisplayIcon REG_SZ C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exeUninstallString REG_SZ "C:\Program Files (x86)\Malwarebytes' Anti-Malware\unins000.exe"QuietUninstallString REG_SZ "C:\Program Files (x86)\Malwarebytes' Anti-Malware\unins000.exe" /SILENTDisplayVersion REG_SZ 1.75.0.1300Publisher REG_SZ Malwarebytes CorporationURLInfoAbout REG_SZ http://www.malwarebytes.orgNoModify REG_DWORD 1NoRepair REG_DWORD 1InstallDate REG_SZ 20130930MajorVersion REG_DWORD 1MinorVersion REG_DWORD 75EstimatedSize REG_DWORD 19743Pending File Rename Operations: ================================If any Malwarebytes Anti-Malware items are listed below, the user must reboot to complete a Malwarebytes Anti-Malware upgrade installation. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\PendingFileRenameOperations REG_MULTI_SZ \??\C:\Users\Dan\AppData\Local\Temp\_iu14D2N.tmp Scheduler Queue:================ Scheduled Item: Update Schedule Options: | Daily | Random Start Time: 2013-09-30 12:49 Repeating Every: 1 Recover if missed by: 23 Context Menu Entries:===================== HKEY_CLASSES_ROOT\AllFilesystemObjects\shellex\ContextMenuHandlers\MBAMShlExt(Default): REG_SZ {57CE581A-0CB6-4266-9CA0-19364C90A0B3} HKEY_CLASSES_ROOT\Folder\shellex\ContextMenuHandlers\MBAMShlExt(Default): REG_SZ {57CE581A-0CB6-4266-9CA0-19364C90A0B3} HKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt(Default): REG_SZ MBAMShlExt ClassHKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt\CLSID(Default): REG_SZ {57CE581A-0CB6-4266-9CA0-19364C90A0B3}HKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt\CurVer(Default): REG_SZ MBAMExt.MBAMShlExt.1HKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt.1(Default): REG_SZ MBAMShlExt ClassHKEY_CLASSES_ROOT\MBAMExt.MBAMShlExt.1\CLSID(Default): REG_SZ {57CE581A-0CB6-4266-9CA0-19364C90A0B3} HKEY_CLASSES_ROOT\Interface\{015FAC74-0374-494A-A02D-316D562C0FCE}(Default): REG_SZ IMBAMShlExtHKEY_CLASSES_ROOT\Interface\{015FAC74-0374-494A-A02D-316D562C0FCE}\ProxyStubClsid32(Default): REG_SZ {00020424-0000-0000-C000-000000000046}HKEY_CLASSES_ROOT\Interface\{015FAC74-0374-494A-A02D-316D562C0FCE}\TypeLib(Default): REG_SZ {AFF1A83B-6C83-4342-8E68-1648DE06CB65}Version REG_SZ 1.0HKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}(Default): REG_SZ MBAMShlExt ClassHKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}\InprocServer32(Default): REG_SZ C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamext.dllThreadingModel REG_SZ ApartmentHKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}\ProgID(Default): REG_SZ MBAMExt.MBAMShlExt.1HKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}\TypeLib(Default): REG_SZ {AFF1A83B-6C83-4342-8E68-1648DE06CB65}HKEY_CLASSES_ROOT\CLSID\{57CE581A-0CB6-4266-9CA0-19364C90A0B3}\VersionIndependentProgID(Default): REG_SZ MBAMExt.MBAMShlExt HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0(Default): REG_SZ MBAMExt 1.0 Type LibraryHKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0\win64(Default): REG_SZ C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamext.dllHKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\FLAGS(Default): REG_SZ 0HKEY_CLASSES_ROOT\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\HELPDIR(Default): REG_SZ C:\Program Files (x86)\Malwarebytes' Anti-MalwareHKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0(Default): REG_SZ MBAMExt 1.0 Type LibraryHKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\0\win64(Default): REG_SZ C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamext.dllHKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\FLAGS(Default): REG_SZ 0HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{AFF1A83B-6C83-4342-8E68-1648DE06CB65}\1.0\HELPDIR(Default): REG_SZ C:\Program Files (x86)\Malwarebytes' Anti-Malware MBAM Drivers:============= C:\Windows\system32\drivers\mbam.sys File Size: 25928 BYTES FileVersion: 1.60.2.0C:\Windows\system32\drivers\mbamchameleon.sys File Size: 36680 BYTES Required Dependencies:====================== BFE:==============Type : 32State : 4 (The service is running.)WIN32_EXIT_CODE : 0SERVICE_EXIT_CODE : 0CHECKPOINT : 0WAIT_HINT : 0 HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFEDisplayName REG_SZ @%SystemRoot%\system32\bfe.dll,-1001Group REG_SZ NetworkProviderImagePath REG_EXPAND_SZ %systemroot%\system32\svchost.exe -k LocalServiceNoNetworkDescription REG_SZ @%SystemRoot%\system32\bfe.dll,-1002ObjectName REG_SZ NT AUTHORITY\LocalServiceErrorControl REG_DWORD 1Start REG_DWORD 2Type REG_DWORD 32DependOnService REG_MULTI_SZ RpcSs ServiceSidType REG_DWORD 3RequiredPrivileges REG_MULTI_SZ SeAuditPrivilege FailureActions REG_BINARY Binary Data HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\BFE\ParametersServiceDll REG_EXPAND_SZ %SystemRoot%\System32\bfe.dllServiceDllUnloadOnStop REG_DWORD 1ServiceMain REG_SZ BfeServiceMain fltmgr:==============Type : 2State : 4 (The service is running.) (STOPPABLE, NOT_PAUSABLE, IGNORES_SHUTDOWN)WIN32_EXIT_CODE : 0SERVICE_EXIT_CODE : 0CHECKPOINT : 0WAIT_HINT : 0 HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\FltMgrAttachWhenLoaded REG_DWORD 1DisplayName REG_SZ @%SystemRoot%\system32\drivers\fltmgr.sys,-10001Group REG_SZ FSFilter InfrastructureImagePath REG_EXPAND_SZ system32\drivers\fltmgr.sysDescription REG_SZ @%SystemRoot%\system32\drivers\fltmgr.sys,-10000ErrorControl REG_DWORD 3Start REG_DWORD 0Tag REG_DWORD 1Type REG_DWORD 2HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\FltMgr\Enum0 REG_SZ Root\LEGACY_FLTMGR\0000Count REG_DWORD 1NextInstance REG_DWORD 1C:\Windows\system32\drivers\fltmgr.sys File Size: 289664 BYTES FileVersion: 6.1.7601.17514C:\Windows\SysWOW64\mscomctl.ocx File Size: 1071088 BYTES FileVersion: 6.1.97.86C:\Windows\SysWOW64\olepro32.dll File Size: 90112 BYTES FileVersion: 6.1.7601.17514 List of MBAM Related Directories:================================= C:\Program Files (x86)\Malwarebytes' Anti-Malware7z.dll File Size: 914432 BYTES FileVersion: 9.20.0.0changes.txt File Size: 200 BYTESlicense.rtf File Size: 17916 BYTESmbam.chm File Size: 474148 BYTESmbam.dll File Size: 527944 BYTES FileVersion: 1.70.0.0mbam.exe File Size: 887432 BYTES FileVersion: 1.75.0.1mbamcore.dll File Size: 1127496 BYTES FileVersion: 1.70.0.0mbamext.dll File Size: 95304 BYTES FileVersion: 1.70.0.0mbamgui.exe File Size: 532040 BYTES FileVersion: 1.70.0.0mbamnet.dll File Size: 2191944 BYTES FileVersion: 1.70.0.0mbampt.exe File Size: 40008 BYTES FileVersion: 1.70.0.0mbamscheduler.exe File Size: 418376 BYTES FileVersion: 1.70.0.0mbamservice.exe File Size: 701512 BYTES FileVersion: 1.70.0.0ssubtmr6.dll File Size: 46416 BYTES FileVersion: 1.1.0.3unins000.dat File Size: 15737 BYTESunins000.exe File Size: 712264 BYTES FileVersion: 51.52.0.0unins000.msg File Size: 11277 BYTESvbalsgrid6.ocx File Size: 496976 BYTES FileVersion: 2.0.0.40 C:\Program Files (x86)\Malwarebytes' Anti-Malware\Chameleonchameleon.chm File Size: 186068 BYTESfirefox.com File Size: 218184 BYTESfirefox.exe File Size: 218184 BYTESfirefox.pif File Size: 218184 BYTESfirefox.scr File Size: 218184 BYTESiexplore.exe File Size: 218184 BYTESmbam-chameleon.com File Size: 218184 BYTESmbam-chameleon.exe File Size: 218184 BYTESmbam-chameleon.pif File Size: 218184 BYTESmbam-chameleon.scr File Size: 218184 BYTESmbam-killer.exe File Size: 896072 BYTESrundll32.exe File Size: 218184 BYTESsvchost.exe File Size: 218184 BYTESwinlogon.exe File Size: 218184 BYTES C:\Program Files (x86)\Malwarebytes' Anti-Malware\Languagesarabic.lng File Size: 21894 BYTESbelarusian.lng File Size: 26884 BYTESbosnian.lng File Size: 27108 BYTESbulgarian.lng File Size: 27574 BYTEScatalan.lng File Size: 28252 BYTESchineseSI.lng File Size: 11024 BYTESchineseTR.lng File Size: 11952 BYTEScroatian.lng File Size: 26670 BYTESczech.lng File Size: 24874 BYTESdanish.lng File Size: 26582 BYTESdutch.lng File Size: 28342 BYTESenglish.lng File Size: 24542 BYTESestonian.lng File Size: 25146 BYTESfinnish.lng File Size: 25950 BYTESfrench.lng File Size: 29830 BYTESgerman.lng File Size: 29894 BYTESgreek.lng File Size: 29300 BYTEShebrew.lng File Size: 19362 BYTEShungarian.lng File Size: 28666 BYTESindonesian.lng File Size: 26854 BYTESitalian.lng File Size: 28194 BYTESjapanese.lng File Size: 16266 BYTESkorean.lng File Size: 14188 BYTESlatvian.lng File Size: 27100 BYTESlithuanian.lng File Size: 27838 BYTESnorwegian.lng File Size: 25116 BYTESpolish.lng File Size: 26644 BYTESportugueseBR.lng File Size: 28654 BYTESportuguesePT.lng File Size: 29062 BYTESromanian.lng File Size: 28290 BYTESrussian.lng File Size: 27302 BYTESserbian.lng File Size: 26804 BYTESslovak.lng File Size: 25644 BYTESslovenian.lng File Size: 24852 BYTESspanish.lng File Size: 30060 BYTESswedish.lng File Size: 25992 BYTESthai.lng File Size: 26092 BYTESturkish.lng File Size: 25876 BYTESvietnamese.lng File Size: 29528 BYTES C:\Users\Dan\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware C:\Users\Dan\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Logsmbam-log-2013-10-26 (17-20-39).txt File Size: 1992 BYTESmbam-log-2013-10-26 (18-16-34).txt File Size: 1906 BYTESmbam-log-2013-10-26 (23-33-12).txt File Size: 1910 BYTESmbam-log-2013-10-27 (01-50-13).txt File Size: 1908 BYTESmbam-log-2013-10-27 (10-09-47).txt File Size: 1908 BYTESmbam-log-2013-10-28 (01-29-01).txt File Size: 1908 BYTESmbam-log-2013-10-28 (01-53-50).txt File Size: 1946 BYTESmbam-log-2013-10-28 (23-32-04).txt File Size: 1910 BYTESmbam-log-2013-10-29 (21-16-19).txt File Size: 1908 BYTESmbam-log-2013-10-30 (13-35-38).txt File Size: 1934 BYTESmbam-log-2013-10-30 (13-54-45).txt File Size: 1882 BYTESmbam-log-2013-10-30 (13-55-29).txt File Size: 1908 BYTESmbam-log-2013-10-30 (16-02-28).txt File Size: 1964 BYTESmbam-log-2013-10-30 (16-03-43).txt File Size: 1940 BYTESmbam-log-2013-10-30 (16-05-27).txt File Size: 1966 BYTESmbam-log-2013-10-30 (16-06-53).txt File Size: 1986 BYTESmbam-log-2013-10-30 (16-14-30).txt File Size: 2002 BYTESmbam-log-2013-10-30 (22-30-56).txt File Size: 1922 BYTES C:\Users\Dan\AppData\Roaming\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malwareexclusions.dat File Size: 191 BYTESrules.ref File Size: 6793573 BYTES C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\Configurationbuild.conf File Size: 140 BYTESconfig.conf File Size: 4076 BYTEScustom.conf File Size: 20 BYTESdatabase.conf File Size: 432 BYTEShtml.conf File Size: 2904 BYTESlocal.conf File Size: 1446 BYTESmanifest.conf File Size: 1752 BYTESmessaging.conf File Size: 1430 BYTESnews.conf File Size: 265 BYTES C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\Logsprotection-log-2013-10-26.txt File Size: 1208 BYTESprotection-log-2013-10-27.txt File Size: 6394 BYTESprotection-log-2013-10-28.txt File Size: 3742 BYTESprotection-log-2013-10-29.txt File Size: 3458 BYTESprotection-log-2013-10-30.txt File Size: 3898 BYTESprotection-log-2013-10-31.txt File Size: 18652 BYTES C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\Quarantine ===============================================================END OF FILE Thanks for your time.
  11. Hello anybody, I have noticed that my Malwarebyte's Pro is sometimes shut off fully or partially. This sometimes occurs when I shut Windows down and sometimes when I am out browsing on the net. But this does not happen often, just occasionally. I do have another virus scanner-Avast. I noticed when I had ZoneAlarm, it would shut Malwarebyte's down only when I shut the computer down, but being shut down on the net is puzzling to me. Again, this is rare but I thought someone would have an answer for this peculiar behavior. I no longer use ZoneAlarm- subscription ran out, but now use Avast and Malwarebyte's Pro. I ran various scans: Malwarebyte's Pro, Avast, Adware and HitmanPro-nothing shows. I even ran Malwarebyte's Pro in "safe mode." I ran: sfc /scannow-nothing came up. I wonder if this is just a glitch? Again, this is rare, but I thought I would get a second opinion. Thanks for anybody's time
  12. I have noticed recently that while running Malwarebytes Pro, that during the scan, Malwarebytes will pause. During this pause, on the top of Malwarebytes window it will show "not responding?" However, after about a minute, it will continues to scan. It might do this about three times then move on to finish the scan. Is this normal, or is Malwarebytes being blocked from scanning those particular items. Could this be a virus or Windows instituted? thanks for your time. dwdraw2
  13. Thanks for the reply Ron. I had already deleted them using Malwarebytes. What I was wanting to know is what specifically does this particular Of "Trojan.Small.Gen" do to the performance of your operating system? I did a internet search on it but did not find this particular Trojan. I thought that somebody might be familiar with this type of Trojan that would elaborate a little on it. But, thanks for your help. dwdraw2
  14. I just got done scanning with Malwarebytes. It discovered 11 malwares. Within the listing of some of the (PUPs) listing had the word "Roaming". What does it mean by roaming? Does it mean the PUPs (puppys) actually move randomly around, or is it a name given to them? After the scan, I saved a log of the scan, then I deleted all listed malware, then restarted computer. Can someone tell me what type of Trojan that I was infected with? And what does it do? Below is a copy of the scan. Malwarebytes Anti-Malware (PRO) 1.75.0.1300www.malwarebytes.org Database version: v2013.10.01.06 Windows 7 Service Pack 1 x64 NTFSInternet Explorer 9.0.8112.16421Dan :: BUBBA [administrator] Protection: Enabled 10/1/2013 3:40:00 PMMBAM-log-2013-10-01 (19-31-05) PUP's and more.txt Scan type: Full scan (C:\|)Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUMScan options disabled: P2PObjects scanned: 793779Time elapsed: 3 hour(s), 39 minute(s), 12 second(s) Memory Processes Detected: 0(No malicious items detected) Memory Modules Detected: 0(No malicious items detected) Registry Keys Detected: 0(No malicious items detected) Registry Values Detected: 0(No malicious items detected) Registry Data Items Detected: 0(No malicious items detected) Folders Detected: 0(No malicious items detected) Files Detected: 11C:\Windows.old\Users\Dan\AppData\Roaming\DefaultTab\DefaultTab\DefaultTabBHO.dll (PUP.Optional.DefaultTab) -> No action taken.C:\Windows.old\Users\Dan\AppData\Roaming\DefaultTab\DefaultTab\DefaultTabStart.exe (PUP.Optional.DefaultTab) -> No action taken.C:\Windows.old\Users\Dan\AppData\Roaming\DefaultTab\DefaultTab\DefaultTabStart64.exe (PUP.Optional.DefaultTab) -> No action taken.C:\Windows.old\Users\Dan\AppData\Roaming\DefaultTab\DefaultTab\DefaultTabWrap.dll (PUP.Optional.DefaultTab) -> No action taken.C:\Windows.old\Users\Dan\AppData\Roaming\DefaultTab\DefaultTab\DefaultTabWrap64.dll (PUP.Optional.DefaultTab) -> No action taken.C:\Windows.old\Users\Dan\AppData\Roaming\DefaultTab\DefaultTab\DTUpdate.exe (PUP.Optional.DefaultTab.A) -> No action taken.C:\Windows.old\Users\Dan\AppData\Roaming\DefaultTab\DefaultTab\update.exe (PUP.Optional.DefaultTab) -> No action taken.C:\Windows.old.000\ProgramData\WORDsearch\Library\RyrieNotes\Linked\images\coverimage.jpg (Extension.Mismatch) -> No action taken.C:\Windows.old.000\Windows\Logs\CBS\CBS.log (Extension.Mismatch) -> No action taken.C:\Windows.old.000\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\SkywalkerSetup[1].exe (PUP.Optional.Sweetim) -> No action taken.C:\Windows.old.000\Windows\Temp\HPSLPSVC0003.log (Trojan.Small.Gen) -> No action taken. (end) By-the-way, I want to thank the folks here at Malwarebytes for an outstanding malware scanning program. Thanks for your time. dwdraw2
  15. "It's true." Malwarebytes Exploit does block Silverlight. I just tried to stream on Netflix and was blocked. I use Microsoft Security Essentials as my main Virus/Spyware protector, ZoneAlarm firewall, Malwarebytes Pro for malware protection and just added Malware Exploits, version: 0.09.3.1000: I have been using Netfix this past month for my movie viewing, but today after downloading "Malware Exploits," the movies were blocked. I have the current Chrome browser. dwdraw2
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.