Jump to content

vasant

Members
  • Posts

    17
  • Joined

  • Last visited

Reputation

0 Neutral
  1. Results of screen317's Security Check version 0.99.79 Windows 7 Service Pack 1 x64 (UAC is enabled) ``````````````Antivirus/Firewall Check:`````````````` Windows Security Center service is not running! This report may not be accurate! Norton Internet Security WMI entry may not exist for antivirus; attempting automatic update. `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware version 1.75.0.1300 Java 6 Update 20 Java 7 Update 40 Java version out of Date! Adobe Flash Player 11.9.900.170 Adobe Reader 9 Adobe Reader out of Date! Google Chrome 32.0.1700.102 Google Chrome 32.0.1700.107 ````````Process Check: objlist.exe by Laurent```````` Malwarebytes Anti-Malware mbamservice.exe Malwarebytes Anti-Malware mbamgui.exe Malwarebytes Anti-Malware mbam.exe Malwarebytes' Anti-Malware mbamscheduler.exe Symantec Norton Online Backup NOBuAgent.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: 6% ````````````````````End of Log`````````````````````` I'm sorry, I will run the scan tomorrow as I have a big paper due tomorrow.
  2. Currently I am not experiencing any audio ads anymore. Fixlog.txt JRT.txt mbam-log-2014-02-03 (16-39-52).txt checkup.txt
  3. Farbar Recovery Scan Tool (x64) Version: 01-02-2014 04 Ran by vasant2 at 2014-02-02 18:29:19 Running from C:\Users\vasant2\Downloads Boot Mode: Normal ================== Search: "rpcss.dll" =================== C:\Windows\winsxs\amd64_microsoft-windows-com-base-qfe-rpcss_31bf3856ad364e35_6.1.7601.17514_none_c7f0e16b547f887d\rpcss.dll [2011-07-03 11:40] - [2010-11-20 03:27] - 0512000 ____A (Microsoft Corporation) 5C627D1B1138676C0A7AB2C2C190D123 C:\Windows\winsxs\amd64_microsoft-windows-com-base-qfe-rpcss_31bf3856ad364e35_6.1.7600.16385_none_c5bfcda3579104e3\rpcss.dll [2009-07-13 14:00] - [2009-07-13 15:41] - 0509440 ____A (Microsoft Corporation) 7266972E86890E2B30C0C322E906B027 C:\Windows\System32\rpcss.dll [2011-07-03 11:40] - [2010-11-20 03:27] - 0512512 ____A (Microsoft Corporation) BE973DF7863CD9DE8B9D85DDFDFD6BCB ====== End Of Search ======
  4. ==================== One Month Modified Files and Folders ======= 2014-02-02 18:01 - 2014-02-02 17:48 - 00035568 _____ () C:\Users\vasant2\Downloads\FRST.txt 2014-02-02 18:00 - 2014-01-18 21:19 - 00000000 ____D () C:\FRST 2014-02-02 17:56 - 2010-11-13 11:35 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log 2014-02-02 17:55 - 2011-11-05 09:16 - 00000000 _____ () C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt 2014-02-02 17:50 - 2009-07-13 18:45 - 00023248 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-02-02 17:50 - 2009-07-13 18:45 - 00023248 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-02-02 17:48 - 2012-08-13 19:32 - 00001844 _____ () C:\Users\Public\Desktop\McAfee Total Protection.lnk 2014-02-02 17:47 - 2014-02-02 17:47 - 02080256 _____ (Farbar) C:\Users\vasant2\Downloads\FRST64.exe 2014-02-02 17:44 - 2012-08-14 20:03 - 00000000 __RSD () C:\Users\vasant2\Documents\McAfee Vaults 2014-02-02 17:41 - 2013-10-07 15:56 - 00000894 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cec3c98ecdf203.job 2014-02-02 17:40 - 2014-01-01 08:16 - 00000078 _____ () C:\Windows\system32\wyhiqpq.kzj 2014-02-02 17:40 - 2009-07-13 19:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-02-02 17:40 - 2009-07-13 18:51 - 00124022 _____ () C:\Windows\setupact.log 2014-02-01 20:32 - 2012-06-01 17:58 - 00000932 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-957469872-3237515546-2626920404-1000UA.job 2014-02-01 20:32 - 2012-04-16 15:33 - 00000898 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-02-01 20:32 - 2012-04-16 15:33 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-02-01 16:05 - 2013-09-05 13:02 - 00000000 ____D () C:\Users\vasant2\Documents\Medical Club 2014-01-31 16:04 - 2012-06-01 17:58 - 00000910 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-957469872-3237515546-2626920404-1000Core.job 2014-01-31 05:01 - 2010-09-04 22:50 - 01225542 _____ () C:\Windows\PFRO.log 2014-01-31 02:55 - 2009-07-13 19:13 - 00731224 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-01-30 23:40 - 2014-01-30 23:40 - 00480760 _____ () C:\Windows\Minidump\013014-23712-01.dmp 2014-01-30 23:40 - 2010-12-16 22:00 - 430801101 _____ () C:\Windows\MEMORY.DMP 2014-01-30 23:40 - 2010-12-16 22:00 - 00000000 ____D () C:\Windows\Minidump 2014-01-30 20:29 - 2013-08-24 14:55 - 00000000 ____D () C:\Users\vasant2\Documents\Business 2014-01-30 19:39 - 2013-06-11 21:03 - 00003198 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForvasant2 2014-01-30 19:39 - 2013-06-11 21:03 - 00000340 _____ () C:\Windows\Tasks\HPCeeScheduleForvasant2.job 2014-01-30 18:56 - 2014-01-30 18:56 - 00000000 ____D () C:\Program Files\McAfee Security Scan 2014-01-29 17:17 - 2013-11-30 22:58 - 00009085 _____ () C:\Users\vasant2\Documents\Student Athletic Trainer hours.xlsx 2014-01-29 15:34 - 2012-09-01 14:03 - 00000000 ____D () C:\Users\vasant2\AppData\Local\CrashDumps 2014-01-28 22:29 - 2012-04-23 21:25 - 00002183 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-01-28 20:24 - 2013-03-10 22:24 - 00000000 ____D () C:\Users\vasant2\Desktop\Piano 2014-01-27 17:47 - 2013-08-13 19:43 - 00000000 ____D () C:\Users\vasant2\Documents\Western Civ 2014-01-26 16:42 - 2014-01-26 16:42 - 00000000 ____D () C:\TDSSKiller_Quarantine 2014-01-23 19:25 - 2014-01-23 19:25 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\vasant2\Downloads\mbam-setup-1.75.0.1300 (2).exe 2014-01-23 17:34 - 2014-01-23 17:34 - 00001109 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2014-01-23 17:34 - 2014-01-23 17:34 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-01-23 17:33 - 2014-01-23 17:33 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\vasant2\Downloads\mbam-setup-1.75.0.1300 (1).exe 2014-01-21 23:46 - 2013-12-17 17:29 - 00000000 ____D () C:\Users\vasant2\Documents\Colleges 2014-01-20 23:06 - 2013-09-14 16:08 - 00000000 ____D () C:\Users\vasant2\Documents\AP English 2014-01-20 22:52 - 2013-09-22 22:03 - 00000000 ____D () C:\ProgramData\Oracle 2014-01-20 22:50 - 2014-01-20 22:50 - 00921000 _____ (Oracle Corporation) C:\Users\vasant2\Downloads\chromeinstall-7u51.exe 2014-01-19 21:22 - 2014-01-19 21:22 - 00597304 _____ () C:\Users\vasant2\Downloads\flux-setup.exe 2014-01-19 21:22 - 2014-01-19 21:22 - 00000000 ____D () C:\Users\vasant2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flux 2014-01-19 21:22 - 2014-01-19 21:22 - 00000000 ____D () C:\Users\vasant2\AppData\Local\FluxSoftware 2014-01-19 21:18 - 2014-01-19 21:15 - 143485940 _____ () C:\Users\vasant2\Downloads\Apache_OpenOffice_4.0.1_Win_x86_install_en-US.exe 2014-01-18 20:57 - 2010-11-12 19:25 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-01-18 20:57 - 2010-09-02 19:36 - 00000000 ____D () C:\ProgramData\Skype 2014-01-18 20:56 - 2013-01-09 21:48 - 00000000 ____D () C:\Users\vasant2\AppData\Roaming\Skype 2014-01-18 14:13 - 2014-01-18 14:13 - 00000000 ____D () C:\Users\vasant2\Downloads\tdsskiller 2014-01-18 14:12 - 2014-01-18 14:12 - 04101441 _____ () C:\Users\vasant2\Downloads\tdsskiller.zip 2014-01-18 09:19 - 2012-08-14 20:04 - 00000000 ____D () C:\Users\vasant2\AppData\Local\Google 2014-01-18 08:38 - 2012-04-16 15:34 - 00000000 ____D () C:\Program Files\Google 2014-01-18 08:38 - 2012-04-16 15:33 - 00000000 ____D () C:\Program Files (x86)\Google 2014-01-18 08:37 - 2013-12-19 23:15 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-01-18 08:23 - 2012-08-14 20:02 - 00000000 ____D () C:\Users\vasant2\AppData\Roaming\Mozilla 2014-01-18 08:21 - 2012-04-16 15:33 - 00000000 ____D () C:\ProgramData\Google 2014-01-18 08:19 - 2013-02-11 17:20 - 00000000 ____D () C:\Users\vasant2\AppData\Local\Deals Plugin Extension 2014-01-18 07:52 - 2014-01-18 07:52 - 00000000 ____S () C:\Windows\system32\vdngs.wjf 2014-01-18 07:52 - 2009-07-13 17:20 - 00000000 ____D () C:\Windows\system32\sysprep 2014-01-14 15:09 - 2012-09-07 20:27 - 00000000 ____D () C:\Users\vasant2\AppData\Local\Facebook 2014-01-13 17:53 - 2014-01-13 17:53 - 01918320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 01485312 _____ (Conexant Systems, Inc.) C:\Windows\system32\Drivers\VSTDPV6.SYS.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 01390640 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\SynTP.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00764264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Sftfslh.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00740864 _____ (Conexant Systems, Inc.) C:\Windows\system32\Drivers\VSTCNXT6.SYS.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00654928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00515584 _____ (IDT, Inc.) C:\Windows\system32\Drivers\stwrt64.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00426496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spsys.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00389120 _____ (Marvell) C:\Windows\system32\Drivers\yk62x64.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00363392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgrx.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00328192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00309248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00295808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00295424 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00292864 _____ (Conexant Systems, Inc.) C:\Windows\system32\Drivers\VSTAZL6.SYS.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00268648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Sftplaylh.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00239136 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RtsUStor.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00215936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00213888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00189824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00184960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00171392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scsiport.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00161872 _____ (VIA Technologies Inc.,Ltd) C:\Windows\system32\Drivers\vsmraid.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00125440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tunnel.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00111104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\raspptp.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00109696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBAUDIO.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00103808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sbp2port.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00094208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\serial.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\smb.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rassstp.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00080464 _____ (Silicon Integrated Systems) C:\Windows\system32\Drivers\sisraid4.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rspndr.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00071552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00068864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00064592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ULIAGPKX.SYS.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00064080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UAGP35.SYS.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00063360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\termdd.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwififlt.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00054784 _____ (Apple, Inc.) C:\Windows\system32\Drivers\usbaapl64.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\umbus.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00043584 _____ (Silicon Integrated Systems Corp.) C:\Windows\system32\Drivers\sisraid2.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\watchdog.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00042064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winusb.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbscan.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00038456 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\usbfilter.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00036432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vdrvroot.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD2.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbrpm.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scfilter.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vgapnp.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vga.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tape.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00027776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wacompen.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdi.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sermouse.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00025960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Sftredirlh.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbprint.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00024656 _____ (Promise Technology) C:\Windows\system32\Drivers\stexstor.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifibus.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpbus.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\serenum.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00023040 _____ (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) C:\Windows\system32\Drivers\secdrv.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00022376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Sftvollh.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00022096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wimmount.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ws2ifsl.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00021056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wd.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\smclib.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00019008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spldr.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifimp.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00017488 _____ (VIA Technologies, Inc.) C:\Windows\system32\Drivers\viaide.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sfloppy.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00016464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wmilib.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdpipe.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wmiacpi.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sffp_sd.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sffdisk.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sffp_mmc.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwf.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00012496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\swenum.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\serscan.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rootmdm.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\umpass.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RDPREFMP.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00007936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RDPENCDD.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RDPCDD.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 06403584 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\atipmdag.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 06403584 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\atikmdag.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 06108416 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 05434368 _____ (Intel Corporation) C:\Windows\system32\Drivers\netw5v64.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 03286016 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\evbda.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 01659776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 01524816 _____ (QLogic Corporation) C:\Windows\system32\Drivers\ql2300.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00982912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00951680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00782360 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfehidk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00753664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00651264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00530496 _____ (Emulex) C:\Windows\system32\Drivers\elxstor.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00519576 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfefirek.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00468480 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\bxvbda.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00458704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00411944 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfencbdc.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00410496 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00376192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00366976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00350208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HdAudio.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00343696 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfewfpk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00318976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00311120 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfeavfk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00289664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00288768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00288640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00286720 _____ (Brother Industries Ltd.) C:\Windows\system32\Drivers\BrSerId.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00284736 _____ (LSI Corporation, Inc.) C:\Windows\system32\Drivers\MegaSR.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00273792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00270848 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\b57nd60a.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00261632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00258048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00223248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00220752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pcmcia.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00197704 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\HipShieldK.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00195072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00188928 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00184704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00179792 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfeapfk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00179072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00166272 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00155008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpio.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00151920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00148352 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdrom.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Dot4.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00140672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msdsm.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pacer.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasl2tp.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00128592 _____ (QLogic Corporation) C:\Windows\system32\Drivers\ql40xx.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00122960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NV_AGP.SYS.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00122368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\irda.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00116224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipnat.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00116224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00115776 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_scsi.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00114752 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_fc.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\luafv.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00106560 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_sas.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00106112 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mferkdet.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\i8042prt.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidbth.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxg.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\parport.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00096112 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfencrk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00095600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00094592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\raspppoe.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdfs.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipfltdrv.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00078720 _____ (Hewlett-Packard Company) C:\Windows\system32\Drivers\HpSAMD.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00075120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00074560 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\McPvDrv.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00073280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\disk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00072832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ohci1394.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthmodem.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00070224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fileinfo.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00070112 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\cfwids.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00065600 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_sas2.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00065088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\GAGP30KX.SYS.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\lltdio.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00060496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mup.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndisuio.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00055376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fsdepends.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00055128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpfve.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00051264 _____ (IBM Corporation) C:\Windows\system32\Drivers\nfrd960.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00050768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pcw.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00050768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdclass.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00049216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mouclass.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00048720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pciidex.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00048488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fssfltr.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00047104 _____ (Brother Industries Ltd.) C:\Windows\system32\Drivers\BrSerWdm.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\qwavedrv.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidir.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\circlass.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\blbdrive.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbios.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00044112 _____ (Intel Corp./ICP vortex GmbH) C:\Windows\system32\Drivers\iirsp.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Dot4usb.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\modem.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\discache.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00039504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crashdmp.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\CompositeBus.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00035392 _____ (LSI Corporation) C:\Windows\system32\Drivers\megasas.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiscap.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\filetrace.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00032880 _____ (Windows ® Win 7 DDK provider) C:\Windows\system32\Drivers\clwvd.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00032320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mssmbios.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mouhid.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00031232 _____ (Hauppauge Computer Works, Inc.) C:\Windows\system32\Drivers\hcw85cir.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00031104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msahci.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\monitor.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00030008 _____ (Hewlett-Packard) C:\Windows\system32\Drivers\hpdskflt.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fdc.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00028736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Dumpata.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00028240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\battc.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00027520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidbatt.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msfs.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nsiproxy.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\flpydisk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00024144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crcdisk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00023040 _____ (Apple Inc.) C:\Windows\system32\Drivers\netaapl64.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mcd.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00021584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\compbatt.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksthunk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00020544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\isapnp.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Dot4Prt.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00018432 _____ (Brother Industries, Ltd.) C:\Windows\system32\Drivers\BrFiltLo.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\irenum.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00017664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\CmBatt.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00017488 _____ (CMD Technology, Inc.) C:\Windows\system32\Drivers\cmdide.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00016960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelide.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxapi.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00016440 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\Drivers\AtiPcie.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00015424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msisadrv.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\MTConfig.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00014976 _____ (Brother Industries Ltd.) C:\Windows\system32\Drivers\BrUsbMdm.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasacd.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00014720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hwpolicy.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00014720 _____ (Brother Industries Ltd.) C:\Windows\system32\Drivers\BrUsbSer.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00012352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pciide.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00011136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mskssrv.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00010856 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfeclnrk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00010248 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfeclnk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\errdev.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00008704 _____ (Brother Industries, Ltd.) C:\Windows\system32\Drivers\BrFiltUp.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mshidkmdf.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00008064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mstee.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mspclock.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00006784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mspqm.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\beep.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\null.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmkaud.sys.bak 2014-01-13 17:52 - 2014-01-13 17:51 - 00125456 _____ (ATI Technologies, Inc.) C:\Windows\system32\Drivers\AtiHdmi.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 02736640 _____ (Atheros Communications, Inc.) C:\Windows\system32\Drivers\athrx.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00498688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00491088 _____ (Adaptec, Inc.) C:\Windows\system32\Drivers\adp94xx.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00339536 _____ (Adaptec, Inc.) C:\Windows\system32\Drivers\adpahci.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00334208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\1394ohci.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00194128 _____ (AMD Technologies Inc.) C:\Windows\system32\Drivers\amdsbs.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00182864 _____ (Adaptec, Inc.) C:\Windows\system32\Drivers\adpu320.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00155520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00107904 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00097856 _____ (Adaptec, Inc.) C:\Windows\system32\Drivers\arcsas.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00087632 _____ (Adaptec, Inc.) C:\Windows\system32\Drivers\arc.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\1394bus.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00061008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\AGP440.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00041272 _____ (Hewlett-Packard) C:\Windows\system32\Drivers\Accelerometer.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00027008 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00024128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\atapi.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\asyncmac.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00015440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdide.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00015440 _____ (Acer Laboratories Inc.) C:\Windows\system32\Drivers\aliide.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpipmi.sys.bak 2014-01-13 17:45 - 2014-01-13 17:45 - 00000000 ____S () C:\Windows\system32\fnlmp.njc 2014-01-13 07:21 - 2014-01-11 11:22 - 00000000 ____D () C:\Users\vasant2\Documents\American Gov 2014-01-12 20:52 - 2014-01-12 20:52 - 00000000 ____D () C:\Users\vasant2\AppData\Roaming\Malwarebytes 2014-01-12 20:51 - 2014-01-12 20:51 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-01-12 20:50 - 2014-01-12 20:50 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\vasant2\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-12 20:40 - 2014-01-12 20:40 - 02237968 _____ (Kaspersky Lab ZAO) C:\Users\vasant2\Downloads\tdsskiller.exe 2014-01-12 20:20 - 2012-08-14 20:03 - 00000000 ____D () C:\Users\vasant2\AppData\Roaming\hpqLog 2014-01-12 17:45 - 2010-09-04 22:48 - 01265557 _____ () C:\Windows\WindowsUpdate.log 2014-01-12 15:36 - 2012-04-24 15:29 - 00000000 ____D () C:\ProgramData\NCH Software 2014-01-12 15:36 - 2012-04-24 15:29 - 00000000 ____D () C:\Program Files (x86)\NCH Software 2014-01-11 13:53 - 2012-08-22 23:02 - 00000000 ____D () C:\Users\vasant2\AppData\Roaming\HP 2014-01-11 13:53 - 2011-04-28 16:35 - 00207571 _____ () C:\Windows\hpwins28.dat 2014-01-11 13:53 - 2011-04-28 16:35 - 00001292 _____ () C:\ProgramData\hpzinstall.log 2014-01-11 13:35 - 2009-07-13 16:34 - 00000545 _____ () C:\Windows\win.ini 2014-01-08 15:41 - 2012-09-09 21:11 - 00003228 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForPATWARDHAN-HP$ 2014-01-08 15:41 - 2012-09-09 21:11 - 00000352 _____ () C:\Windows\Tasks\HPCeeScheduleForPATWARDHAN-HP$.job ZeroAccess: C:\Users\Vasant\AppData\Local\{a0a99ab8-eb85-13a4-7637-aa156dc951ba} Files to move or delete: ==================== C:\ProgramData\uninstaller.exe Some content of TEMP: ==================== C:\Users\Vasant\AppData\Local\Temp\8583.exe C:\Users\Vasant\AppData\Local\Temp\ApnStub.exe C:\Users\Vasant\AppData\Local\Temp\AskSLib.dll C:\Users\Vasant\AppData\Local\Temp\ask_setup.exe C:\Users\Vasant\AppData\Local\Temp\BearShare_setup.exe C:\Users\Vasant\AppData\Local\Temp\bing.exe C:\Users\Vasant\AppData\Local\Temp\Extract.exe C:\Users\Vasant\AppData\Local\Temp\GoogleToolbarInstaller_en32_signed.exe C:\Users\Vasant\AppData\Local\Temp\HPQSi.exe C:\Users\Vasant\AppData\Local\Temp\InstallFlashPlayer.exe C:\Users\Vasant\AppData\Local\Temp\Installhelper.dll C:\Users\Vasant\AppData\Local\Temp\mpsetup.exe C:\Users\Vasant\AppData\Local\Temp\nsisdt.dll C:\Users\Vasant\AppData\Local\Temp\ooVooTBing.exe C:\Users\Vasant\AppData\Local\Temp\PhotoEditor.exe C:\Users\Vasant\AppData\Local\Temp\prismsetup.exe C:\Users\Vasant\AppData\Local\Temp\Resource.exe C:\Users\Vasant\AppData\Local\Temp\SkypeSetup.exe C:\Users\Vasant\AppData\Local\Temp\SP50365.exe C:\Users\Vasant\AppData\Local\Temp\SP50498.exe C:\Users\Vasant\AppData\Local\Temp\SP50594.exe C:\Users\Vasant\AppData\Local\Temp\SP50595.exe C:\Users\Vasant\AppData\Local\Temp\sp50843.exe.exe C:\Users\Vasant\AppData\Local\Temp\SP51650.exe C:\Users\Vasant\AppData\Local\Temp\sp52110.exe.exe C:\Users\Vasant\AppData\Local\Temp\SP52131.exe C:\Users\Vasant\AppData\Local\Temp\SP52615.exe C:\Users\Vasant\AppData\Local\Temp\SP52971.exe C:\Users\Vasant\AppData\Local\Temp\SP53133.exe C:\Users\Vasant\AppData\Local\Temp\SP53546.exe C:\Users\Vasant\AppData\Local\Temp\sp54373.exe C:\Users\Vasant\AppData\Local\Temp\sp54620.exe C:\Users\Vasant\AppData\Local\Temp\SRAssetsHelper.dll C:\Users\Vasant\AppData\Local\Temp\uninst.exe C:\Users\Vasant\AppData\Local\Temp\UninstallHPSA.exe C:\Users\Vasant\AppData\Local\Temp\UninstallHPTCA.exe C:\Users\Vasant\AppData\Local\Temp\WeCare.exe C:\Users\Vasant\AppData\Local\Temp\wpsetup.exe C:\Users\vasant2\AppData\Local\Temp\21806_updater.exe C:\Users\vasant2\AppData\Local\Temp\6279.exe C:\Users\vasant2\AppData\Local\Temp\9710.exe C:\Users\vasant2\AppData\Local\Temp\A548.exe C:\Users\vasant2\AppData\Local\Temp\ApnStub.exe C:\Users\vasant2\AppData\Local\Temp\AskSLib.dll C:\Users\vasant2\AppData\Local\Temp\DealsPluginROW.exe C:\Users\vasant2\AppData\Local\Temp\default.exe C:\Users\vasant2\AppData\Local\Temp\E59D.exe C:\Users\vasant2\AppData\Local\Temp\FA36.exe C:\Users\vasant2\AppData\Local\Temp\fp_pl_pfs_installer.exe C:\Users\vasant2\AppData\Local\Temp\mssinstaller.exe C:\Users\vasant2\AppData\Local\Temp\ntdll_dump.dll C:\Users\vasant2\AppData\Local\Temp\Second Life Setup.exe C:\Users\vasant2\AppData\Local\Temp\SkypeSetup.exe C:\Users\vasant2\AppData\Local\Temp\sp58915.exe C:\Users\vasant2\AppData\Local\Temp\UninstallHPSA.exe C:\Users\vasant2\AppData\Local\Temp\zipsetup.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll [2011-07-03 11:40] - [2010-11-20 03:27] - 0512512 ____A (Microsoft Corporation) BE973DF7863CD9DE8B9D85DDFDFD6BCB ATTENTION ======> If the system is having audio adware rpcss.dll is patched. Google the MD5, if the MD5 is unique the file is infected. C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-01-31 03:21 ==================== End Of Log ============================
  5. FRST.txt ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\System32\atiesrxx.exe (IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe (Hewlett-Packard) C:\Windows\System32\hpservice.exe (AMD) C:\Windows\System32\atieclxx.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Advanced Micro Devices, Inc.) C:\Windows\System32\atibtmon.exe (Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (CinemaNow, Inc.) C:\Program Files (x86)\CinemaNow\CinemaNow Media Manager\CinemaNowSvc.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe (Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe (Rosetta Stone Ltd.) C:\Program Files (x86)\RosettaStoneLtdServices\RosettaStoneDaemon.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (McAfee, Inc.) C:\Program Files\McAfee\MSC\McAPExe.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe () C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe () C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Dock\HPAdvisorDock.exe (Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Flux Software LLC) C:\Users\vasant2\AppData\Local\FluxSoftware\Flux\flux.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe (CyberLink) C:\Program Files (x86)\Hewlett-Packard\Media\Webcam\YCMMirage.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe (Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe (McAfee, Inc.) C:\Program Files\McAfee\MAT\McPvTray.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [synTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2281256 2011-09-24] (Synaptics Incorporated) HKLM\...\Run: [smartMenu] - C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe [611896 2010-01-20] () HKLM\...\Run: [HPWirelessAssistant] - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe [363064 2010-06-18] (Hewlett-Packard Company) HKLM\...\Run: [sysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [487424 2011-03-19] (IDT, Inc.) HKLM\...\Run: [bcdlof] - ",_ASCII_ATOF HKLM-x32\...\Run: [startCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-04-16] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [Norton Online Backup] - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [1155928 2010-06-01] (Symantec Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [41056 2013-05-08] (Adobe Systems Incorporated) HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [586296 2010-11-09] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2011-05-10] (Hewlett-Packard) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [mcui_exe] - C:\Program Files\McAfee.com\Agent\mcagent.exe [537512 2013-09-24] (McAfee, Inc.) HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) HKLM-x32\...\Run: [mcpltui_exe] - C:\Program Files\McAfee.com\Agent\mcagent.exe [537512 2013-09-24] (McAfee, Inc.) HKLM-x32\...\Run: [sunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-09-17] (Apple Inc.) HKLM\...\RunOnce: [NCPluginUpdater] - "c:\program files (x86)\hewlett-packard\hp health check\activecheck\product_line\NCPluginUpdater.exe" Update [21720 2014-01-28] (Hewlett-Packard) HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKU\S-1-5-21-957469872-3237515546-2626920404-1003\...\Run: [HPAdvisorDock] - C:\Program Files (x86)\Hewlett-Packard\HP Advisor\DOCK\HPAdvisorDock.exe [1712184 2010-02-09] () HKU\S-1-5-21-957469872-3237515546-2626920404-1003\...\Run: [LightScribe Control Panel] - C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2736128 2010-05-19] (Hewlett-Packard Company) HKU\S-1-5-21-957469872-3237515546-2626920404-1003\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.) HKU\S-1-5-21-957469872-3237515546-2626920404-1003\...\Run: [ooVoo.exe] - C:\Program Files (x86)\ooVoo\oovoo.exe [35239488 2013-06-20] (ooVoo LLC) HKU\S-1-5-21-957469872-3237515546-2626920404-1003\...\Run: [GoogleChromeAutoLaunch_03CE7F8AAD5CA85ADFB934E218A1B2F5] - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [866584 2014-01-22] (Google Inc.) HKU\S-1-5-21-957469872-3237515546-2626920404-1003\...\Run: [f.lux] - C:\Users\vasant2\AppData\Local\FluxSoftware\Flux\flux.exe [1017224 2013-10-23] (Flux Software LLC) HKU\S-1-5-21-957469872-3237515546-2626920404-1003\...\MountPoints2: {34c6f6ee-9718-11e2-b56a-e3e0489315ed} - G:\LaunchU3.exe -a ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://g.msn.com/HPNOT/1 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPNOT/1 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPNOT/1 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://g.msn.com/HPNOT/1 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPNOT/1 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://g.msn.com/HPNOT/1 StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD22} URL = http://dts.search-results.com/sr?src=ieb&appid=100&systemid=2&sr=0&q={searchTerms} SearchScopes: HKLM - {E745D89D-F718-47A8-9A8D-91D97D36461E} URL = http://www.ask.com/web?q={searchterms}&l=dis&o=ushpl SearchScopes: HKLM - {F942D719-0606-4D33-8ED1-DB63471A43DE} URL = http://en.wikipedia.org/wiki/Special:Search?search={searchTerms} SearchScopes: HKLM - {FF74930C-3E22-4A47-9FF3-BF0213EF9DE2} URL = http://search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD22} URL = http://dts.search-results.com/sr?src=ieb&appid=100&systemid=2&sr=0&q={searchTerms} SearchScopes: HKLM-x32 - {E745D89D-F718-47A8-9A8D-91D97D36461E} URL = http://www.ask.com/web?q={searchterms}&l=dis&o=ushpl SearchScopes: HKLM-x32 - {F942D719-0606-4D33-8ED1-DB63471A43DE} URL = http://en.wikipedia.org/wiki/Special:Search?search={searchTerms} SearchScopes: HKLM-x32 - {FF74930C-3E22-4A47-9FF3-BF0213EF9DE2} URL = http://search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF SearchScopes: HKCU - {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL = SearchScopes: HKCU - {CA1DC154-6F92-4041-BD18-7CCFCA30EBD7} URL = http://search.yahoo.com/search?fr=mcafee&p={SearchTerms} SearchScopes: HKCU - {E745D89D-F718-47A8-9A8D-91D97D36461E} URL = SearchScopes: HKCU - {F942D719-0606-4D33-8ED1-DB63471A43DE} URL = BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard) BHO-x32: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.) BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.) BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO-x32: Babylon toolbar helper - {2EECD738-5844-4a99-B4B6-146BF802613B} - C:\Program Files (x86)\BabylonToolbar\BabylonToolbar\1.5.3.17\bh\BabylonToolbar.dll (Babylon BHO) BHO-x32: ooVoo Toolbar - {59c6f12b-f004-43e5-9997-08f2123119b6} - C:\Program Files (x86)\oovootoolbar\oovootoolbarX.dll () BHO-x32: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation) BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) BHO-x32: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard) BHO-x32: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll (Yahoo! Inc) BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.) Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Toolbar: HKLM-x32 - ooVoo Toolbar - {59c6f12b-f004-43e5-9997-08f2123119b6} - C:\Program Files (x86)\oovootoolbar\oovootoolbarX.dll () Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) Toolbar: HKLM-x32 - Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.) Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - No File Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File DPF: HKLM-x32 {9AA73F41-EC64-489E-9A73-9CD52E528BC4} http://zone.msn.com/binGame/ZAxRcMgr.cab DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab DPF: HKLM-x32 {D54160C3-DB7B-4534-9B65-190EE4A9C7F7} http://zone.msn.com/bingame/feed/default/SproutLauncher.cab DPF: HKLM-x32 {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} http://zone.msn.com/bingame/popcaploader_v10.cab Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files\McAfee\MSC\McSnIePl64.dll (McAfee, Inc.) Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files (x86)\McAfee\MSC\McSnIePl.dll (McAfee, Inc.) Winsock: Catalog5 01 mswsock.dll File Not found () ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll" Winsock: Catalog5 05 mswsock.dll File Not found () ATTENTION: The LibraryPath should be "%SystemRoot%\System32\mswsock.dll" Winsock: Catalog5-x64 01 mswsock.dll File Not found () ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll" Winsock: Catalog5-x64 05 mswsock.dll File Not found () ATTENTION: The LibraryPath should be "%SystemRoot%\System32\mswsock.dll" Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\vasant2\AppData\Roaming\Mozilla\Firefox\Profiles\7yez747m.default FF DefaultSearchEngine: Secure Search FF SearchEngineOrder.1: Secure Search FF SelectedSearchEngine: Secure Search FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll () FF Plugin: @mcafee.com/MSC,version=10 - c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL () FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.40.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.40.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.130\npMcAfeeMss.dll (McAfee, Inc.) FF Plugin-x32: @mcafee.com/MSC,version=10 - c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL () FF Plugin-x32: @mcafee.com/SAFFPlugin - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @hulu.com/Hulu Desktop - C:\Users\vasant2\AppData\Local\HuluDesktop\instances\0.9.14.1\nphdplg.dll (Hulu LLC) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2013-12-19] FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2013-12-19] FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2011-04-28] FF HKLM-x32\...\Firefox\Extensions: [{D19CA586-DD6C-4a0a-96F8-14644F340D60}] - C:\Program Files (x86)\Common Files\McAfee\SystemCore FF Extension: McAfee ScriptScan for Firefox - C:\Program Files (x86)\Common Files\McAfee\SystemCore [2012-08-13] FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2013-08-13] FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2013-08-13] FF HKCU\...\Firefox\Extensions: [{FE5E1E2A-E503-11E1-8270-B8AC6F996F26}] - C:\Users\vasant2\AppData\Local\{FE5E1E2A-E503-11E1-8270-B8AC6F996F26}\ FF Extension: Mozilla Safe Browsing - C:\Users\vasant2\AppData\Local\{FE5E1E2A-E503-11E1-8270-B8AC6F996F26}\ [] Chrome: ======= CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\21.0.1180.79\PepperFlash\pepflashplayer.dll No File CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.102\gcswf32.dll No File CHR Plugin: (Remoting Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.102\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.102\pdf.dll () CHR Plugin: (McAfee SiteAdvisor) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho\3.50.146.1_0\McChPlg.dll No File CHR Plugin: (McAfee SiteAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.) CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Java Deployment Toolkit 6.0.200.2) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll No File CHR Plugin: (Java Platform SE 6 U20) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll No File CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll No File CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll No File CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (iTunes Application Detector) - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () CHR Plugin: (Hulu Desktop) - C:\Windows\..\Users\Default\AppData\Local\HuluDesktop\instances\0.9.13.1\npHDPlg.dll (Hulu LLC) CHR Plugin: (Shockwave for Director) - C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll No File CHR Plugin: (McAfee SecurityCenter) - c:\progra~2\mcafee\msc\npmcsn~1.dll () CHR Extension: (Entanglement Web App) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\aciahcmjmecflokailenpkdchphgkefd [2012-08-14] CHR Extension: (BIODIGITAL HUMAN) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\agoenciogemlojlhccbcpcfflicgnaak [2012-08-23] CHR Extension: (Desmos Graphing Calculator) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhdheahnajobgndecdbggfmcojekgdko [2013-05-25] CHR Extension: (GeoGebra) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnbaboaihhkjoaolfnfoablhllahjnee [2013-05-25] CHR Extension: (Adblock Plus) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2012-08-19] CHR Extension: (Nitro Type) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\efjibpecmniclffkmjlmboheacepckmf [2013-05-25] CHR Extension: (SiteAdvisor) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2013-08-17] CHR Extension: (AdBlock) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-09-15] CHR Extension: (Fooplot | Online Graphing Calculator) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhomalbbfiopkmhbaffiidabldapkhoe [2013-12-05] CHR Extension: (WarLight) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\hiikfoplnkjhoiafgmcobenlfnbphbee [2013-05-27] CHR Extension: (Color Piano!) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihmigmmflfcbhdpdgbkkeojchjhhphnh [2013-05-27] CHR Extension: (Auto Replay for YouTube™) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\kanbnempkjnhadplbfgdaagijdbdbjeb [2012-08-15] CHR Extension: (Little Alchemy) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\knkapnclbofjjgicpkfoagdjohlfjhpd [2012-12-21] CHR Extension: (Evernote Web) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\lbfehkoinhhcknnbdgnnmjhiladcgbol [2013-08-13] CHR Extension: (Skype Click to Call) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2013-06-13] CHR Extension: (Quick Note) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\mijlebbfndhelmdpmllgcfadlkankhok [2013-04-11] CHR Extension: (Sumon) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\nddpmdmpdcbnnkjfplckngdkhhmmbjaf [2013-05-26] CHR Extension: (Frontline Defense 2 HD) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\nincmkjomngcmklpdkmdkioemlhdieim [2013-05-27] CHR Extension: (Google Wallet) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-25] CHR Extension: (Blue Space Sunset Chrome Theme) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\nndfdjfoclbidmgpmbelcieibgjjfdog [2012-08-14] CHR Extension: (Pandemic 2) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\piamnadekmbodeiimejmegflchadggmh [2013-05-27] CHR Extension: (Evernote Web Clipper) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\pioclpoplcdbaefihamjohnefbikjilc [2013-08-18] CHR Extension: (Anatomicus - Human Anatomy Atlas) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkgfngehhjplndcgejapgknnjpdgfpag [2013-05-27] CHR Extension: (Canvas Rider) - C:\Users\vasant2\AppData\Local\Google\Chrome\User Data\Default\Extensions\poknhlcknimnnbfcombaooklofipaibk [2012-08-14] CHR HKLM-x32\...\Chrome\Extension: [dhkplhfnhceodhffomolpfigojocbpcb] - C:\Users\Vasant\AppData\Roaming\BabylonToolbar\CR\BabylonChrome1.crx [2012-04-22] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2014-01-09] CHR HKLM-x32\...\Chrome\Extension: [kiplfnciaokpcennlkldkdaeaaomamof] - C:\Users\vasant2\AppData\Local\Torch\Plugins\TorchPlugin.crx [2013-03-09] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-05-14] CHR HKLM-x32\...\Chrome\Extension: [loaalbhdjmjgdckmmeflpmbacffgnmme] - C:\Users\vasant2\AppData\Local\Deals Plugin\Chrome\Deals Plugin.crx [2012-07-26] ==================== Services (Whitelisted) ================= S2 CLKMSVC10_C6F09094; C:\Program Files (x86)\Hewlett-Packard\Media\DVD\Kernel\HDDVD\NavFilter\kmsvc.exe [245232 2010-06-29] (CyberLink) R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [249936 2011-01-27] (McAfee, Inc.) R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [178048 2013-11-28] (McAfee, Inc.) S3 McAWFwk; C:\Program Files\McAfee\MSC\McAWFwk.exe [225216 2011-01-28] (McAfee, Inc.) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe [288776 2013-09-06] (McAfee, Inc.) S2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) S3 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [602944 2013-08-02] (McAfee, Inc.) S2 McOobeSv; C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [249936 2011-01-27] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [199304 2012-05-25] (McAfee, Inc.) R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1025232 2013-11-26] (McAfee, Inc.) R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219272 2013-11-04] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [182752 2013-11-04] (McAfee, Inc.) R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.) R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-01] (Symantec Corporation) S2 AdobeFlashPlayerUpdateSvc32; c:\programdata\icmp32.exe [x] S2 ProtectedStorage323232; c:\programdata\icmp32.exe [x] S2 STacSV32; c:\programdata\kbdfa32.exe [x] S2 STacSV3232; c:\programdata\devicepairing32.exe [x] S2 TabletInputService32; c:\programdata\wscmisetup32.exe [x] S2 TapiSrv3232; c:\programdata\api-ms-win-core-io-l1-1-032.exe [x] S2 TBS32; c:\programdata\atimpc3232.exe [x] S2 Themes32; c:\programdata\nlslexicons041432.exe [x] S2 upnphost3232; c:\programdata\netshell32.exe [x] S2 VSS32; c:\programdata\devenum32.exe [x] S2 WbioSrvc32; c:\programdata\msvcrt4032.exe [x] S2 WerSvc32; c:\programdata\api-ms-win-core-rtlsupport-l1-1-032.exe [x] S2 WSearch32; c:\programdata\d3dim32.exe [x] S2 wuauserv3232; c:\programdata\iasrecst32.exe [x] S2 WwanSvc32; c:\programdata\wscproxystub32.exe [x] ==================== Drivers (Whitelisted) ==================== S3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70112 2013-11-04] (McAfee, Inc.) S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R0 McPvDrv; C:\Windows\System32\drivers\McPvDrv.sys [74560 2013-09-09] (McAfee, Inc.) R2 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [179792 2013-11-04] (McAfee, Inc.) U3 mfeapfk01; No ImagePath R2 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [311120 2013-11-04] (McAfee, Inc.) U3 mfeavfk01; No ImagePath R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [519576 2013-11-04] (McAfee, Inc.) R2 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [782360 2013-11-04] (McAfee, Inc.) R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [411944 2013-11-26] (McAfee, Inc.) S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [96112 2013-11-26] (McAfee, Inc.) S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [106112 2013-08-13] (McAfee, Inc.) R2 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [343696 2013-11-04] (McAfee, Inc.) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-02-02 17:48 - 2014-02-02 18:01 - 00035568 _____ () C:\Users\vasant2\Downloads\FRST.txt 2014-02-02 17:47 - 2014-02-02 17:47 - 02080256 _____ (Farbar) C:\Users\vasant2\Downloads\FRST64.exe 2014-01-30 23:40 - 2014-01-30 23:40 - 00480760 _____ () C:\Windows\Minidump\013014-23712-01.dmp 2014-01-30 18:56 - 2014-01-30 18:56 - 00000000 ____D () C:\Program Files\McAfee Security Scan 2014-01-26 16:42 - 2014-01-26 16:42 - 00000000 ____D () C:\TDSSKiller_Quarantine 2014-01-23 19:25 - 2014-01-23 19:25 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\vasant2\Downloads\mbam-setup-1.75.0.1300 (2).exe 2014-01-23 17:34 - 2014-01-23 17:34 - 00001109 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk 2014-01-23 17:34 - 2014-01-23 17:34 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware 2014-01-23 17:34 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-01-23 17:33 - 2014-01-23 17:33 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\vasant2\Downloads\mbam-setup-1.75.0.1300 (1).exe 2014-01-22 23:34 - 2013-09-23 13:49 - 00197704 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\HipShieldK.sys 2014-01-20 22:50 - 2014-01-20 22:50 - 00921000 _____ (Oracle Corporation) C:\Users\vasant2\Downloads\chromeinstall-7u51.exe 2014-01-19 21:22 - 2014-01-19 21:22 - 00597304 _____ () C:\Users\vasant2\Downloads\flux-setup.exe 2014-01-19 21:22 - 2014-01-19 21:22 - 00000000 ____D () C:\Users\vasant2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flux 2014-01-19 21:22 - 2014-01-19 21:22 - 00000000 ____D () C:\Users\vasant2\AppData\Local\FluxSoftware 2014-01-19 21:15 - 2014-01-19 21:18 - 143485940 _____ () C:\Users\vasant2\Downloads\Apache_OpenOffice_4.0.1_Win_x86_install_en-US.exe 2014-01-18 21:19 - 2014-02-02 18:00 - 00000000 ____D () C:\FRST 2014-01-18 14:13 - 2014-01-18 14:13 - 00000000 ____D () C:\Users\vasant2\Downloads\tdsskiller 2014-01-18 14:12 - 2014-01-18 14:12 - 04101441 _____ () C:\Users\vasant2\Downloads\tdsskiller.zip 2014-01-18 07:52 - 2014-01-18 07:52 - 00000000 ____S () C:\Windows\system32\vdngs.wjf 2014-01-13 17:53 - 2014-01-13 17:53 - 01918320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 01485312 _____ (Conexant Systems, Inc.) C:\Windows\system32\Drivers\VSTDPV6.SYS.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 01390640 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\SynTP.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00764264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Sftfslh.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00740864 _____ (Conexant Systems, Inc.) C:\Windows\system32\Drivers\VSTCNXT6.SYS.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00654928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00515584 _____ (IDT, Inc.) C:\Windows\system32\Drivers\stwrt64.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00426496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spsys.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00389120 _____ (Marvell) C:\Windows\system32\Drivers\yk62x64.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00363392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgrx.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00328192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00309248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00295808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00295424 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00292864 _____ (Conexant Systems, Inc.) C:\Windows\system32\Drivers\VSTAZL6.SYS.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00268648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Sftplaylh.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00239136 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RtsUStor.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00215936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00213888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00189824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00184960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00171392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scsiport.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00161872 _____ (VIA Technologies Inc.,Ltd) C:\Windows\system32\Drivers\vsmraid.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00125440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tunnel.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00111104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\raspptp.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00109696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBAUDIO.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00103808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sbp2port.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00094208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\serial.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\smb.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rassstp.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00080464 _____ (Silicon Integrated Systems) C:\Windows\system32\Drivers\sisraid4.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rspndr.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00071552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00068864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stream.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00064592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ULIAGPKX.SYS.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00064080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UAGP35.SYS.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00063360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\termdd.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwififlt.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00054784 _____ (Apple, Inc.) C:\Windows\system32\Drivers\usbaapl64.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\umbus.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00043584 _____ (Silicon Integrated Systems Corp.) C:\Windows\system32\Drivers\sisraid2.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\watchdog.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00042064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winusb.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbscan.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00038456 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\usbfilter.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00036432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vdrvroot.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD2.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbrpm.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scfilter.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vgapnp.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vga.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tape.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00027776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wacompen.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdi.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sermouse.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00025960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Sftredirlh.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbprint.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00024656 _____ (Promise Technology) C:\Windows\system32\Drivers\stexstor.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifibus.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpbus.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\serenum.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00023040 _____ (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) C:\Windows\system32\Drivers\secdrv.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00022376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Sftvollh.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00022096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wimmount.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ws2ifsl.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00021056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wd.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\smclib.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00019008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spldr.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifimp.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00017488 _____ (VIA Technologies, Inc.) C:\Windows\system32\Drivers\viaide.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sfloppy.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00016464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wmilib.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdpipe.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wmiacpi.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sffp_sd.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sffdisk.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sffp_mmc.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwf.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00012496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\swenum.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\serscan.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rootmdm.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\umpass.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RDPREFMP.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00007936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RDPENCDD.sys.bak 2014-01-13 17:53 - 2014-01-13 17:53 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RDPCDD.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 06403584 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\atipmdag.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 06403584 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\atikmdag.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 06108416 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 05434368 _____ (Intel Corporation) C:\Windows\system32\Drivers\netw5v64.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 03286016 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\evbda.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 01659776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 01524816 _____ (QLogic Corporation) C:\Windows\system32\Drivers\ql2300.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00982912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00951680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00782360 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfehidk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00753664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00651264 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00530496 _____ (Emulex) C:\Windows\system32\Drivers\elxstor.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00519576 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfefirek.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00468480 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\bxvbda.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00458704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00411944 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfencbdc.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00410496 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00376192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00366976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00350208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HdAudio.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00343696 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfewfpk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00318976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00311120 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfeavfk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00289664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00288768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00288640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00286720 _____ (Brother Industries Ltd.) C:\Windows\system32\Drivers\BrSerId.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00284736 _____ (LSI Corporation, Inc.) C:\Windows\system32\Drivers\MegaSR.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00273792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00270848 _____ (Broadcom Corporation) C:\Windows\system32\Drivers\b57nd60a.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00261632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00258048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00223248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00220752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pcmcia.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00204800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00197704 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\HipShieldK.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00195072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00188928 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00184704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00179792 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfeapfk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00179072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00166272 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00155008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpio.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00151920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00148352 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdrom.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Dot4.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00140672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msdsm.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pacer.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasl2tp.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00128592 _____ (QLogic Corporation) C:\Windows\system32\Drivers\ql40xx.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00122960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NV_AGP.SYS.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00122368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\irda.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00116224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipnat.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00116224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00115776 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_scsi.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00114752 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_fc.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\luafv.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00106560 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_sas.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00106112 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mferkdet.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\i8042prt.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidbth.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00098816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxg.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\parport.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00096112 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfencrk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00095600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00094592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\raspppoe.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdfs.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipfltdrv.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00078720 _____ (Hewlett-Packard Company) C:\Windows\system32\Drivers\HpSAMD.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00075120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00074560 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\McPvDrv.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00073280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\disk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00072832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ohci1394.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthmodem.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00070224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fileinfo.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00070112 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\cfwids.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00065600 _____ (LSI Corporation) C:\Windows\system32\Drivers\lsi_sas2.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00065088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\GAGP30KX.SYS.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\lltdio.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00060496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mup.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndisuio.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00055376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fsdepends.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00055128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpfve.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00051264 _____ (IBM Corporation) C:\Windows\system32\Drivers\nfrd960.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00050768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pcw.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00050768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdclass.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00049216 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mouclass.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00048720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pciidex.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00048488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fssfltr.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00047104 _____ (Brother Industries Ltd.) C:\Windows\system32\Drivers\BrSerWdm.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\qwavedrv.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidir.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\circlass.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\blbdrive.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbios.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00044112 _____ (Intel Corp./ICP vortex GmbH) C:\Windows\system32\Drivers\iirsp.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Dot4usb.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\modem.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\discache.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00039504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crashdmp.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\CompositeBus.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00035392 _____ (LSI Corporation) C:\Windows\system32\Drivers\megasas.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiscap.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\filetrace.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00032880 _____ (Windows ® Win 7 DDK provider) C:\Windows\system32\Drivers\clwvd.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00032320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mssmbios.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mouhid.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00031232 _____ (Hauppauge Computer Works, Inc.) C:\Windows\system32\Drivers\hcw85cir.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00031104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msahci.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\monitor.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00030008 _____ (Hewlett-Packard) C:\Windows\system32\Drivers\hpdskflt.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fdc.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00028736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Dumpata.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00028240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\battc.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00027520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidbatt.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msfs.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nsiproxy.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\flpydisk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00024144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\crcdisk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00023040 _____ (Apple Inc.) C:\Windows\system32\Drivers\netaapl64.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mcd.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00021584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\compbatt.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksthunk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00020544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\isapnp.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Dot4Prt.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00018432 _____ (Brother Industries, Ltd.) C:\Windows\system32\Drivers\BrFiltLo.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\irenum.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00017664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\CmBatt.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00017488 _____ (CMD Technology, Inc.) C:\Windows\system32\Drivers\cmdide.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00016960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelide.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxapi.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00016440 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\Drivers\AtiPcie.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00015424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msisadrv.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\MTConfig.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00014976 _____ (Brother Industries Ltd.) C:\Windows\system32\Drivers\BrUsbMdm.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasacd.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00014720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hwpolicy.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00014720 _____ (Brother Industries Ltd.) C:\Windows\system32\Drivers\BrUsbSer.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00012352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pciide.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00011136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mskssrv.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00010856 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfeclnrk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00010248 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfeclnk.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\errdev.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00008704 _____ (Brother Industries, Ltd.) C:\Windows\system32\Drivers\BrFiltUp.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mshidkmdf.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00008064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mstee.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mspclock.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00006784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mspqm.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\beep.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\null.sys.bak 2014-01-13 17:52 - 2014-01-13 17:52 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmkaud.sys.bak 2014-01-13 17:51 - 2014-01-13 17:52 - 00125456 _____ (ATI Technologies, Inc.) C:\Windows\system32\Drivers\AtiHdmi.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 02736640 _____ (Atheros Communications, Inc.) C:\Windows\system32\Drivers\athrx.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00498688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00491088 _____ (Adaptec, Inc.) C:\Windows\system32\Drivers\adp94xx.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00339536 _____ (Adaptec, Inc.) C:\Windows\system32\Drivers\adpahci.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00334208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\1394ohci.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00194128 _____ (AMD Technologies Inc.) C:\Windows\system32\Drivers\amdsbs.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00182864 _____ (Adaptec, Inc.) C:\Windows\system32\Drivers\adpu320.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00155520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00107904 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00097856 _____ (Adaptec, Inc.) C:\Windows\system32\Drivers\arcsas.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00087632 _____ (Adaptec, Inc.) C:\Windows\system32\Drivers\arc.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\1394bus.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00061008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\AGP440.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00041272 _____ (Hewlett-Packard) C:\Windows\system32\Drivers\Accelerometer.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00027008 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00024128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\atapi.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\asyncmac.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00015440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdide.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00015440 _____ (Acer Laboratories Inc.) C:\Windows\system32\Drivers\aliide.sys.bak 2014-01-13 17:51 - 2014-01-13 17:51 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpipmi.sys.bak 2014-01-13 17:45 - 2014-01-13 17:45 - 00000000 ____S () C:\Windows\system32\fnlmp.njc 2014-01-12 20:52 - 2014-01-12 20:52 - 00000000 ____D () C:\Users\vasant2\AppData\Roaming\Malwarebytes 2014-01-12 20:51 - 2014-01-12 20:51 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-01-12 20:50 - 2014-01-12 20:50 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\vasant2\Downloads\mbam-setup-1.75.0.1300.exe 2014-01-12 20:40 - 2014-01-12 20:40 - 02237968 _____ (Kaspersky Lab ZAO) C:\Users\vasant2\Downloads\tdsskiller.exe 2014-01-11 11:22 - 2014-01-13 07:21 - 00000000 ____D () C:\Users\vasant2\Documents\American Gov
  6. Additional scan result of Farbar Recovery Scan Tool (x64) Version: 01-02-2014 04 Ran by vasant2 at 2014-02-02 18:02:35 Running from C:\Users\vasant2\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Norton Internet Security (Disabled - Out of date) {63DF5164-9100-186D-2187-8DC619EFD8BF} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Norton Internet Security (Disabled - Out of date) {D8BEB080-B73A-17E3-1B37-B6B462689202} FW: Norton Internet Security (Disabled) {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4} ==================== Installed Programs ====================== 4500_G510nz_Help (x32 Version: 000.0.439.000 - Hewlett-Packard) Hidden 4500G510nz (x32 Version: 000.0.439.000 - Hewlett-Packard) Hidden 4500G510nz_Software_Min (x32 Version: 000.0.423.000 - Hewlett-Packard) Hidden 64 Bit HP CIO Components Installer (Version: 6.2.1 - Hewlett-Packard) Hidden Acrobat.com (x32 Version: 1.6.65 - Adobe Systems Incorporated) Adobe AIR (x32 Version: 3.9.0.1380 - Adobe Systems Incorporated) Adobe AIR (x32 Version: 3.9.0.1380 - Adobe Systems Incorporated) Hidden Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.170 - Adobe Systems Incorporated) Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.170 - Adobe Systems Incorporated) Adobe Reader 9.5.5 MUI (x32 Version: 9.5.5 - Adobe Systems Incorporated) Adobe Shockwave Player 11.5 (x32 Version: 11.5.7.609 - Adobe Systems, Inc) AMD USB Filter Driver (x32 Version: 1.0.15.94 - Advanced Micro Devices, Inc.) Hidden Apple Application Support (x32 Version: 2.3.6 - Apple Inc.) Apple Mobile Device Support (Version: 7.0.0.117 - Apple Inc.) Apple Software Update (x32 Version: 2.1.3.127 - Apple Inc.) Atheros Driver Installation Program (x32 Version: 9.2 - Atheros) ATI Catalyst Install Manager (Version: 3.0.765.0 - ATI Technologies, Inc.) Audacity 1.3.13 (Unicode) (x32 Version: - Audacity Team) BabylonObjectInstaller (x32 Version: 1.0.0.0 - Babylon Ltd) Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Bing Bar (x32 Version: 7.0.609.0 - Microsoft Corporation) Bing Rewards Client Installer (x32 Version: 16.0.345.0 - Microsoft Corporation) Hidden Blackhawk Striker 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden Blasterball 2: Holidays (x32 Version: 2.2.0.95 - WildTangent) Hidden Block Breaker Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Bonjour (Version: 3.0.0.10 - Apple Inc.) BufferChm (x32 Version: 130.0.331.000 - Hewlett-Packard) Hidden Build-a-lot 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden Catalyst Control Center - Branding (x32 Version: 1.00.0000 - ATI) Hidden Catalyst Control Center Core Implementation (x32 Version: 2010.0416.541.8279 - ATI) Hidden Catalyst Control Center Graphics Full Existing (x32 Version: 2010.0416.541.8279 - ATI) Hidden Catalyst Control Center Graphics Full New (x32 Version: 2010.0416.541.8279 - ATI) Hidden Catalyst Control Center Graphics Light (x32 Version: 2010.0416.541.8279 - ATI) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2010.0416.541.8279 - ATI) Hidden Catalyst Control Center Graphics Previews Vista (x32 Version: 2010.0416.541.8279 - ATI) Hidden Catalyst Control Center InstallProxy (x32 Version: 2010.0416.541.8279 - ATI Technologies, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2010.0416.541.8279 - ATI) Hidden CCC Help Chinese Standard (x32 Version: 2010.0416.0540.8279 - ATI) Hidden CCC Help Chinese Traditional (x32 Version: 2010.0416.0540.8279 - ATI) Hidden CCC Help Czech (x32 Version: 2010.0416.0540.8279 - ATI) Hidden CCC Help Danish (x32 Version: 2010.0416.0540.8279 - ATI) Hidden CCC Help Dutch (x32 Version: 2010.0416.0540.8279 - ATI) Hidden CCC Help English (x32 Version: 2010.0416.0540.8279 - ATI) Hidden CCC Help Finnish (x32 Version: 2010.0416.0540.8279 - ATI) Hidden CCC Help French (x32 Version: 2010.0416.0540.8279 - ATI) Hidden CCC Help German (x32 Version: 2010.0416.0540.8279 - ATI) Hidden CCC Help Greek (x32 Version: 2010.0416.0540.8279 - ATI) Hidden CCC Help Hungarian (x32 Version: 2010.0416.0540.8279 - ATI) Hidden CCC Help Italian (x32 Version: 2010.0416.0540.8279 - ATI) Hidden CCC Help Japanese (x32 Version: 2010.0416.0540.8279 - ATI) Hidden CCC Help Korean (x32 Version: 2010.0416.0540.8279 - ATI) Hidden CCC Help Norwegian (x32 Version: 2010.0416.0540.8279 - ATI) Hidden CCC Help Polish (x32 Version: 2010.0416.0540.8279 - ATI) Hidden CCC Help Portuguese (x32 Version: 2010.0416.0540.8279 - ATI) Hidden CCC Help Russian (x32 Version: 2010.0416.0540.8279 - ATI) Hidden CCC Help Spanish (x32 Version: 2010.0416.0540.8279 - ATI) Hidden CCC Help Swedish (x32 Version: 2010.0416.0540.8279 - ATI) Hidden CCC Help Thai (x32 Version: 2010.0416.0540.8279 - ATI) Hidden CCC Help Turkish (x32 Version: 2010.0416.0540.8279 - ATI) Hidden ccc-core-static (x32 Version: 2010.0416.541.8279 - ATI) Hidden ccc-utility64 (Version: 2010.0416.541.8279 - ATI) Hidden Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden CinemaNow Media Manager (x32 Version: 1.9.1.105 - CinemaNow, Inc.) Cisco EAP-FAST Module (x32 Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (x32 Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (x32 Version: 1.1.6 - Cisco Systems, Inc.) CollegeSuccess (x32 Version: 1.2 - Headroom Learning Strategies) CollegeSuccess (x32 Version: 1.2 - Headroom Learning Strategies) Hidden CyberLink DVD Suite (x32 Version: 7.0.3003 - CyberLink Corp.) CyberLink DVD Suite (x32 Version: 7.0.3003 - CyberLink Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (x32 Version: - Microsoft) Destinations (x32 Version: 130.0.0.0 - Hewlett-Packard) Hidden DeviceDiscovery (x32 Version: 130.0.372.000 - Hewlett-Packard) Hidden Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.95 - WildTangent) Hidden DocMgr (x32 Version: 130.0.000.000 - Hewlett-Packard) Hidden DocProc (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden Dora's Carnival Adventure (x32 Version: 2.2.0.95 - WildTangent) Hidden Double Play - The Family Feud Bundle (x32 Version: 2.2.0.95 - WildTangent) Hidden Dress Shop Hop (x32 Version: 2.2.0.95 - WildTangent) Hidden DVD Menu Pack for HP MediaSmart Video (x32 Version: 4.1.4121 - Hewlett-Packard) DVD Menu Pack for HP MediaSmart Video (x32 Version: 4.1.4121 - Hewlett-Packard) Hidden Energy Star Digital Logo (x32 Version: 1.0.1 - Hewlett-Packard) Escape Rosecliff Island (x32 Version: 2.2.0.95 - WildTangent) Hidden ESU for Microsoft Windows 7 (x32 Version: 1.0.0 - Hewlett-Packard) f.lux (HKCU Version: - ) Fab Fashion (x32 Version: 2.2.0.95 - WildTangent) Hidden Facebook Video Calling 1.2.0.159 (x32 Version: 1.2.159 - Skype Limited) Family Feud (x32 Version: 2.2.0.95 - WildTangent) Hidden Fashion Dash (x32 Version: 2.2.0.95 - WildTangent) Hidden FATE (x32 Version: 2.2.0.95 - WildTangent) Hidden Fax (x32 Version: 130.0.418.000 - Hewlett-Packard) Hidden Final Drive Nitro (x32 Version: 2.2.0.95 - WildTangent) Hidden Google Chrome (x32 Version: 32.0.1700.102 - Google Inc.) Google SketchUp 8 (x32 Version: 3.0.11752 - Google, Inc.) Google Update Helper (x32 Version: 1.3.22.3 - Google Inc.) Hidden GPBaseService2 (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden Heroes of Hellas 2 - Olympia (x32 Version: 2.2.0.95 - WildTangent) Hidden Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden HP 3D DriveGuard (Version: 4.0.5.1 - Hewlett-Packard Company) HP Advisor (x32 Version: 3.4.10262.3295 - Hewlett-Packard) HP Customer Experience Enhancements (x32 Version: 6.0.1.7 - Hewlett-Packard) Hidden HP Customer Participation Program 13.0 (Version: 13.0 - HP) HP Document Manager 2.0 (Version: 2.0 - HP) HP Documentation (x32 Version: 1.1.1.0 - Hewlett-Packard) HP DVB-T TV Tuner 8.0.64.43 (x32 Version: 8.0.64.43 - ) HP Game Console (x32 Version: - WildTangent) Hidden HP Games (x32 Version: 1.0.2.4 - WildTangent) HP Imaging Device Functions 13.0 (Version: 13.0 - HP) HP MediaSmart CinemaNow 2.0 (x32 Version: 2.0 - Hewlett-Packard) HP MediaSmart DVD (x32 Version: 4.1.4229 - Hewlett-Packard) HP MediaSmart DVD (x32 Version: 4.1.4229 - Hewlett-Packard) Hidden HP MediaSmart Movies and TV (Version: 1.0.0.10 - Hewlett-Packard) HP MediaSmart Music (x32 Version: 4.1.4215 - Hewlett-Packard) HP MediaSmart Music (x32 Version: 4.1.4215 - Hewlett-Packard) Hidden HP MediaSmart Photo (x32 Version: 4.1.4211 - Hewlett-Packard) HP MediaSmart Photo (x32 Version: 4.1.4211 - Hewlett-Packard) Hidden HP MediaSmart SmartMenu (Version: 3.1.1.12 - Hewlett-Packard) HP MediaSmart Video (x32 Version: 4.1.4214 - Hewlett-Packard) HP MediaSmart Video (x32 Version: 4.1.4214 - Hewlett-Packard) Hidden HP MediaSmart Webcam (x32 Version: 4.1.3024 - Hewlett-Packard) HP MediaSmart Webcam (x32 Version: 4.1.3024 - Hewlett-Packard) Hidden HP MediaSmart/TouchSmart Netflix (x32 Version: 1.0.9.0 - Hewlett-Packard) HP Officejet 4500 G510n-z (Version: 13.0 - HP) HP Photo Creations (x32 Version: 1.0.0.3611 - HP Photo Creations Powered by RocketLife) HP Power Manager (x32 Version: 1.2.3 - Hewlett-Packard Company) HP Quick Launch (x32 Version: 2.3.6 - Hewlett-Packard Company) HP Setup (x32 Version: 8.1.4186.3400 - Hewlett-Packard) HP Smart Web Printing 4.5 (Version: 4.5 - HP) HP Software Framework (x32 Version: 4.1.6.1 - Hewlett-Packard Company) HP Solution Center 13.0 (Version: 13.0 - HP) HP Support Assistant (x32 Version: 7.0.39.15 - Hewlett-Packard Company) HP Update (x32 Version: 5.003.001.001 - Hewlett-Packard) HP Wireless Assistant (Version: 4.0.9.0 - Hewlett-Packard Company) HPProductAssistant (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden HPSSupply (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden Hulu Desktop (HKCU Version: 0.9.14 - Hulu LLC) IDT Audio (x32 Version: 1.0.6292.0 - IDT) iTunes (Version: 11.1.0.126 - Apple Inc.) Java 7 Update 40 (x32 Version: 7.0.400 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden Java 6 Update 20 (64-bit) (Version: 6.0.200 - Sun Microsystems, Inc.) Java 6 Update 20 (x32 Version: 6.0.200 - Sun Microsystems, Inc.) Jewel Quest 3 (x32 Version: 2.2.0.95 - WildTangent) Hidden Jewel Quest Solitaire 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden Jojo's Fashion Show 2 - Las Cruces (x32 Version: 2.2.0.95 - WildTangent) Hidden Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden LabelPrint (x32 Version: 2.5.2907 - CyberLink Corp.) LabelPrint (x32 Version: 2.5.2907 - CyberLink Corp.) Hidden LightScribe System Software (x32 Version: 1.18.15.1 - LightScribe) Malwarebytes Anti-Malware version 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation) MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden McAfee Security Scan Plus (Version: 3.8.130.10 - McAfee, Inc.) McAfee Total Protection (x32 Version: 12.8.903 - McAfee, Inc.) Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Messenger Companion (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Office 2010 Service Pack 1 (SP1) (x32 Version: - Microsoft) Hidden Microsoft Office Access MUI (English) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden Microsoft Office Access Setup Metadata MUI (English) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden Microsoft Office Click-to-Run 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Click-to-Run 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Excel MUI (English) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden Microsoft Office Home and Student 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Microsoft Office Office 64-bit Components 2010 (Version: 14.0.6029.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (English) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook Connector (x32 Version: 14.0.5118.5000 - Microsoft Corporation) Microsoft Office Outlook MUI (English) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (English) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (English) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Spanish) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (English) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden Microsoft Office Publisher MUI (English) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (English) 2010 (Version: 14.0.6029.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010 (Version: 14.0.6029.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (English) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden Microsoft Office Shared Setup Metadata MUI (English) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden Microsoft Office Single Image 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (English) 2010 (x32 Version: 14.0.6029.1000 - Microsoft Corporation) Hidden Microsoft Outlook Social Connector Provider for Windows Live Messenger 32-bit (x32 Version: 14.0.5120.5000 - Microsoft Corporation) Microsoft Silverlight (x32 Version: 5.1.20125.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (x32 Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (Version: 8.0.51011 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (x32 Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0 - Microsoft Corp.) Hidden Movie Theme Pack for HP MediaSmart Video (x32 Version: 4.1.4030 - Hewlett-Packard) Movie Theme Pack for HP MediaSmart Video (x32 Version: 4.1.4030 - Hewlett-Packard) Hidden MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0 - Microsoft Corporation) Network64 (Version: 130.0.374.000 - Hewlett-Packard) Hidden Network64 (Version: 140.0.221.000 - Hewlett-Packard) Hidden Norton Online Backup (x32 Version: 2.1.17869 - Symantec Corporation) OCR Software by I.R.I.S. 13.0 (Version: 13.0 - HP) ooVoo (x32 Version: 3.5.9041 - ooVoo LLC.) ooVoo Toolbar (x32 Version: 2.5.0.3 - Visicom Media Inc.) Penguins! (x32 Version: 2.2.0.95 - WildTangent) Hidden PhotoNow! (x32 Version: 1.1.6904 - CyberLink Corp.) PhotoNow! (x32 Version: 1.1.6904 - CyberLink Corp.) Hidden PhotoStage Slideshow Producer (x32 Version: - NCH Software) Plants vs. Zombies (x32 Version: 2.2.0.95 - WildTangent) Hidden Poker Superstars III (x32 Version: 2.2.0.95 - WildTangent) Hidden Polar Bowler (x32 Version: 2.2.0.95 - WildTangent) Hidden Polar Golfer (x32 Version: 2.2.0.95 - WildTangent) Hidden Power2Go (x32 Version: 6.1.4204 - CyberLink Corp.) Power2Go (x32 Version: 6.1.4204 - CyberLink Corp.) Hidden PowerDirector (x32 Version: 8.0.3003 - CyberLink Corp.) PowerDirector (x32 Version: 8.0.3003 - CyberLink Corp.) Hidden Prism Video File Converter (x32 Version: - NCH Software) QuickTime (x32 Version: 7.74.80.86 - Apple Inc.) Realtek Ethernet Controller Driver For Windows 7 (x32 Version: 7.11.1127.2009 - Realtek) Realtek USB 2.0 Card Reader (x32 Version: 6.1.7600.30113 - Realtek Semiconductor Corp.) Recovery Manager (x32 Version: 5.5.3023 - CyberLink Corp.) Hidden Rosetta Stone Ltd Services (x32 Version: 3.2.21 - Rosetta Stone Ltd.) Rosetta Stone TOTALe (x32 Version: 4.5.5.0 - Rosetta Stone, Ltd) Roxio CinemaNow 2.0 (x32 Version: 1.0.284 - Hewlett-Packard) Hidden Scan (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden Shared C Run-time for x64 (Version: 10.0.0 - McAfee) Shop for HP Supplies (Version: 13.0 - HP) Skype Click to Call (x32 Version: 6.9.12585 - Skype Technologies S.A.) SmartWebPrinting (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden SolutionCenter (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden Status (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden Success (x32 Version: 1.1 - Headroom Learning) Synaptics Pointing Device Driver (Version: 15.1.6.64 - Synaptics Incorporated) Times Reader (x32 Version: 2.061 - The New York Times Company) Times Reader (x32 Version: 2.061 - The New York Times Company) Hidden Toolbox (x32 Version: 130.0.648.000 - Hewlett-Packard) Hidden TrayApp (x32 Version: 130.0.376.000 - Hewlett-Packard) Hidden Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1 - Microsoft Corporation) Update for Microsoft Office 2010 (KB2494150) (x32 Version: - Microsoft) Update for Microsoft Office 2010 (KB2553065) (x32 Version: - Microsoft) Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2010 (KB2553267) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2010 (KB2553270) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2010 (KB2566458) (x32 Version: - Microsoft) Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Office 2010 (KB2597091) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft OneNote 2010 (KB2589345) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Outlook 2010 (KB2553248) 32-Bit Edition (x32 Version: - Microsoft) Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition (x32 Version: - Microsoft) VideoPad Video Editor (x32 Version: - NCH Software) Virtual Families (x32 Version: 2.2.0.95 - WildTangent) Hidden Virtual Villagers - The Secret City (x32 Version: 2.2.0.95 - WildTangent) Hidden VitalSource Bookshelf (x32 Version: 6.02.0024 - Ingram Content Group) WebReg (x32 Version: 130.0.132.017 - Hewlett-Packard) Hidden Wheel of Fortune 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (x32 Version: 15.4.3555.0308 - Microsoft Corporation) Windows Live Family Safety (Version: 15.4.3555.0308 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4232.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Language Selector (Version: 15.4.3555.0308 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mesh ActiveX Control for Remote Connections (x32 Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Messenger (x32 Version: 15.4.3538.0513 - Microsoft Corporation) Hidden Windows Live Messenger Companion Core (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Sync (x32 Version: 14.0.8117.416 - Microsoft Corporation) Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Media Player Firefox Plugin (x32 Version: 1.0.0.8 - Microsoft Corp) Yahoo! Toolbar (x32 Version: - ) Zuma Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden ==================== Restore Points ========================= 14-01-2014 07:59:24 Removed Facebook Video Calling 2.0.0.447 18-01-2014 18:22:14 Removed Google Talk Plugin 19-01-2014 00:22:29 Removed Skype Click to Call 19-01-2014 06:55:21 Removed Skype™ 6.6 19-01-2014 06:58:28 Removed Skype Click to Call 19-01-2014 07:11:31 Removed Skype Click to Call 23-01-2014 06:34:50 Windows Backup 27-01-2014 05:00:09 Windows Backup ==================== Hosts content: ========================== 2009-07-13 16:34 - 2009-06-10 11:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {0CA8B891-6996-4598-B29E-BC890772F360} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework \HPSF.exe [2012-09-27] (Hewlett-Packard Company) Task: {15BD35DA-EFC0-4CC3-B9EA-DA0DB17B9D1B} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21- 957469872-3237515546-2626920404-1000Core => C:\Users\Vasant\AppData\Local\Facebook\Update \FacebookUpdate.exe [2012-07-23] (Facebook Inc.) Task: {1DE07290-F767-46C0-A005-16BE0076F033} - System32\Tasks\ServicePlan => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2010-05-24] () Task: {2EE679F8-37E4-43CC-A8B0-B668A44D2790} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21- 957469872-3237515546-2626920404-1000UA => C:\Users\Vasant\AppData\Local\Facebook\Update \FacebookUpdate.exe [2012-07-23] (Facebook Inc.) Task: {48518D67-804D-4D8A-BF16-6A46076DF29D} - System32\Tasks\Registration => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2010-05-24] () Task: {5334B3D6-EDE4-4970-97BF-21BE95213D63} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2013-11-22] (Hewlett-Packard) Task: {53D2AAF2-0BE9-4554-A3A0-099F8C89F182} - System32\Tasks\Apple\AppleSoftwareUpdate => C: \Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {59C0E02A-1E13-4ED3-903D-5B143C5481CD} - System32\Tasks\Adobe Flash Player Updater => C: \Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-12-10] (Adobe Systems Incorporated) Task: {5A992232-8B4B-49AF-AD90-39716B3B0CC8} - System32\Tasks\{BAFC28C2-9CA7-49AA-98DE- 9AA7A99BA2A3} => C:\Program Files (x86)\Skype\\Phone\Skype.exe Task: {70B9C424-638D-4738-90AF-7A70B8F59283} - System32\Tasks\RecoveryCDWin7 => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2010-05-24] () Task: {946D7051-491A-4656-8F1B-89105A32B6CD} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company) Task: {AEA949C2-913F-4376-9229-1D947D928095} - System32\Tasks\GoogleUpdateTaskMachineUA => C: \Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-04-16] (Google Inc.) Task: {B1F61C0E-4573-4BD2-BF20-72294184912D} - System32\Tasks\HPCeeScheduleForPATWARDHAN-HP$ => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard) Task: {B5FC14A9-90EA-4A77-BC44-05E8BAB18A0A} - System32\Tasks\HPCeeScheduleForvasant2 => C: \Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard) Task: {BD2E1882-62A0-4787-994B-CF0CB7A34C69} - System32\Tasks \GoogleUpdateTaskMachineCore1cec3c98ecdf203 => C:\Program Files (x86)\Google\Update \GoogleUpdate.exe [2012-04-16] (Google Inc.) Task: {CC0DC437-0FF8-42C4-931E-B1D232263205} - System32\Tasks\MirageAgent => C:\Program Files (x86)\Hewlett-Packard\Media\Webcam\YCMMirage.exe [2010-06-24] (CyberLink) Task: {E22C6715-B750-48F1-BCE4-0943B41307B3} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources \Updater7\HPSFUpdater.exe [2012-11-29] (Hewlett-Packard Company) Task: {E7DF0567-3DCB-45E2-9182-C3E3259A67D6} - System32\Tasks\Microsoft\Windows\WindowsBackup \AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash \FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-957469872-3237515546-2626920404- 1000Core.job => C:\Users\Vasant\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-957469872-3237515546-2626920404-1000UA.job => C:\Users\Vasant\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cec3c98ecdf203.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update \GoogleUpdate.exe Task: C:\Windows\Tasks\HPCeeScheduleForPATWARDHAN-HP$.job => C:\Program Files (x86)\Hewlett- Packard\HP Ceement\HPCEE.exe Task: C:\Windows\Tasks\HPCeeScheduleForvasant2.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Loaded Modules (whitelisted) ============= 2010-03-09 11:34 - 2010-03-09 11:34 - 00016384 ____R () C:\Program Files (x86)\ATI Technologies \ATI.ACE\Branding\Branding.dll 2010-09-04 22:46 - 2010-09-04 22:46 - 00270336 _____ () C:\Windows\assembly\GAC_MSIL \CLI.Aspect.CrossDisplay.Graphics.Dashboard\1.0.0.0__90ba9c70f846762e \CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll 2010-06-18 13:26 - 2010-06-18 13:26 - 00030264 _____ () C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_LogicLayer.dll 2010-06-18 13:26 - 2010-06-18 13:26 - 00052280 _____ () C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HardwareAccess.dll 2010-06-18 13:26 - 2010-06-18 13:26 - 00267832 _____ () C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPCommon.XmlSerializers.dll 2012-08-27 21:33 - 2012-08-27 21:33 - 00087912 _____ () C:\Program Files (x86)\Common Files \Apple\Apple Application Support\zlib1.dll 2012-08-27 21:33 - 2012-08-27 21:33 - 01242512 _____ () C:\Program Files (x86)\Common Files \Apple\Apple Application Support\libxml2.dll 2010-05-19 07:05 - 2010-05-19 07:05 - 02121728 _____ () C:\Program Files (x86)\Common Files \LightScribe\QtCore4.dll 2010-05-19 07:05 - 2010-05-19 07:05 - 07745536 _____ () C:\Program Files (x86)\Common Files \LightScribe\QtGui4.dll 2010-05-19 07:05 - 2010-05-19 07:05 - 00135168 _____ () C:\Program Files (x86)\Common Files \LightScribe\plugins\imageformats\qjpeg4.dll 2014-01-28 22:29 - 2014-01-22 19:56 - 00715544 _____ () C:\Program Files (x86)\Google\Chrome \Application\32.0.1700.102\libglesv2.dll 2014-01-28 22:29 - 2014-01-22 19:56 - 00100120 _____ () C:\Program Files (x86)\Google\Chrome \Application\32.0.1700.102\libegl.dll 2014-01-28 22:29 - 2014-01-22 19:56 - 04055320 _____ () C:\Program Files (x86)\Google\Chrome \Application\32.0.1700.102\pdf.dll 2014-01-28 22:29 - 2014-01-22 19:57 - 00399640 _____ () C:\Program Files (x86)\Google\Chrome \Application\32.0.1700.102\ppGoogleNaClPluginChrome.dll 2014-01-28 22:29 - 2014-01-22 19:55 - 01634584 _____ () C:\Program Files (x86)\Google\Chrome \Application\32.0.1700.102\ffmpegsumo.dll 2010-02-09 15:58 - 2010-02-09 15:58 - 00061440 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Pillars\PCAlerts\PCAlertsPillar.dll 2010-02-09 15:58 - 2010-02-09 15:58 - 00131072 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Pillars\ECenter\ECLibrary.dll 2010-02-09 15:58 - 2010-02-09 15:58 - 00040960 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Advisor\MessagingServer.dll 2010-02-09 15:58 - 2010-02-09 15:58 - 00005632 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Advisor\MessagingInterface.dll 2010-02-09 15:58 - 2010-02-09 15:58 - 00018944 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Advisor\MessagingMessages.dll 2010-02-09 15:58 - 2010-02-09 15:58 - 00036864 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Advisor\MessagingClients.dll 2010-02-09 15:58 - 2010-02-09 15:58 - 00028672 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Advisor\Microsoft.Practices.EnterpriseLibrary.ExceptionHandling.Logging.dll 2010-02-09 15:58 - 2010-02-09 15:58 - 00007680 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Advisor\RemotingClient.dll 2014-01-28 22:29 - 2014-01-22 19:56 - 13615896 _____ () C:\Program Files (x86)\Google\Chrome \Application\32.0.1700.102\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver" ==================== Faulty Device Manager Devices ============= Name: McAfee Inc. mfeapfk Description: McAfee Inc. mfeapfk Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: mfeapfk Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Officejet 4500 G510n-z Description: Officejet 4500 G510n-z Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318} Manufacturer: HP Service: Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (02/02/2014 05:40:39 PM) (Source: McLogEvent) (User: NT AUTHORITY) Description: MCSCAN32 Engine Initialisation failed. Engine returned error : 1 Error: (02/01/2014 08:31:00 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 9722045 Error: (02/01/2014 08:31:00 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 9722045 Error: (02/01/2014 08:31:00 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (02/01/2014 08:30:59 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 9721047 Error: (02/01/2014 08:30:59 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 9721047 Error: (02/01/2014 08:30:59 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (02/01/2014 05:49:46 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 47846 Error: (02/01/2014 05:49:46 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 47846 Error: (02/01/2014 05:49:46 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second System errors: ============= Error: (02/02/2014 05:45:58 PM) (Source: Service Control Manager) (User: ) Description: The McAfee Personal Firewall Service service depends the following service: MpsSvc. This service might not be installed. Error: (02/02/2014 05:42:07 PM) (Source: Service Control Manager) (User: ) Description: The HomeGroup Provider service depends on the Function Discovery Resource Publication service which failed to start because of the following error: %%-2147024891 Error: (02/02/2014 05:42:07 PM) (Source: Service Control Manager) (User: ) Description: The Function Discovery Resource Publication service terminated with the following error: %%-2147024891 Error: (02/02/2014 05:40:37 PM) (Source: Service Control Manager) (User: ) Description: The Power service terminated with the following error: %%4203 Error: (02/02/2014 05:40:35 PM) (Source: Service Control Manager) (User: ) Description: The IPsec Policy Agent service depends the following service: BFE. This service might not be installed. Error: (02/02/2014 05:40:34 PM) (Source: Service Control Manager) (User: ) Description: The McAfee Inc. mfeapfk service failed to start due to the following error: %%1243 Error: (02/02/2014 05:40:34 PM) (Source: Service Control Manager) (User: ) Description: The McAfee Personal Firewall Service service depends the following service: MpsSvc. This service might not be installed. Error: (02/02/2014 05:40:34 PM) (Source: Service Control Manager) (User: ) Description: The Function Discovery Resource Publication service terminated with the following error: %%-2147024891 Error: (02/02/2014 05:40:34 PM) (Source: Service Control Manager) (User: ) Description: The IKE and AuthIP IPsec Keying Modules service depends the following service: BFE. This service might not be installed. Error: (02/02/2014 05:40:32 PM) (Source: Service Control Manager) (User: ) Description: The Computer Browser service terminated with the following error: %%1060 Microsoft Office Sessions: ========================= Error: (02/02/2014 05:40:39 PM) (Source: McLogEvent)(User: NT AUTHORITY) Description: 1 Error: (02/01/2014 08:31:00 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 9722045 Error: (02/01/2014 08:31:00 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledEvent 9722045 Error: (02/01/2014 08:31:00 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (02/01/2014 08:30:59 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 9721047 Error: (02/01/2014 08:30:59 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledEvent 9721047 Error: (02/01/2014 08:30:59 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (02/01/2014 05:49:46 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 47846 Error: (02/01/2014 05:49:46 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledEvent 47846 Error: (02/01/2014 05:49:46 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: Continuously busy for more than a second ==================== Memory info =========================== Percentage of memory in use: 86% Total physical RAM: 3834.9 MB Available physical RAM: 536.49 MB Total Pagefile: 7668 MB Available Pagefile: 3122.02 MB Total Virtual: 8192 MB Available Virtual: 8191.83 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:577.12 GB) (Free:490.14 GB) NTFS ==>[system with boot components (obtained from reading drive)] Drive d: (RECOVERY) (Fixed) (Total:18.75 GB) (Free:2.72 GB) NTFS ==>[system with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 596 GB) (Disk ID: 99FD87A4) Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=577 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=19 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=103 MB) - (Type=0C) ==================== End Of Log ============================
  7. I have recurring audio ads that play in my background with no programs running. Sometimes I go a week without the problem but it keeps coming back. I've run tdsskiller and quarantined a couple files. Each time audio ads are playing CPU usage jumps to at least 95%. Do I still follow the instructions in reply 2?
  8. I have recurring audio ads that play in my background with no programs running. Sometimes I go a week without the problem but it keeps coming back. I've run tdsskiller and quarantined a couple files. Each time audio ads are playing CPU usage jumps to at least 95%. Please help.
  9. I ran tdsskiller and quarantined a few files. Currently I haven't had any problems with the audio ads
  10. Documents such as my schoolwork folders
  11. If I back up my files to an external hard drive, then get a new computer and transfer the files on the hard drive to the new computer, will a trojan be on the new computer?
  12. Is csrss.mui a trojan or any other harmful files? Audio ads are currently playing in the background with no programs running.
  13. Audio ads are playing on my computer without a browser or anything open. I have windows 7 and don't know how to fix this. Please help
  14. Thank you MrC, I just had to uninstall a program and it was fixed, thanks again!
  15. RogueKiller V8.8.0 _x64_ [Dec 27 2013] by Tigzy mail : tigzyRK<at>gmail<dot>com Feedback : http://www.adlice.com/forum/ Website : http://www.adlice.com/softwares/roguekiller/ Blog : http://www.adlice.com Operating System : Windows 7 (6.1.7601 Service Pack 1) 64 bits version Started in : Normal mode User : vasant2 [Admin rights] Mode : Remove -- Date : 01/13/2014 17:54:22 | ARK || FAK || MBR | ¤¤¤ Bad processes : 1 ¤¤¤ [HJNAME] notepad.exe -- C:\Windows\Temp\notepad.exe [-] -> KILLED [TermProc] ¤¤¤ Registry Entries : 8 ¤¤¤ [HJ POL][PUM] HKLM\[...]\System : DisableTaskMgr (0) -> DELETED [HJ POL][PUM] HKLM\[...]\System : DisableRegistryTools (0) -> DELETED [HJ POL][PUM] HKLM\[...]\System : EnableLUA (0) -> REPLACED (1) [HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : DisableTaskMgr (0) -> [0x2] The system cannot find the file specified. [HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : DisableRegistryTools (0) -> [0x2] The system cannot find the file specified. [HJ POL][PUM] HKLM\[...]\Wow6432Node\[...]\System : EnableLUA (0) -> REPLACED (1) [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> REPLACED (0) [HJ DESK][PUM] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> REPLACED (0) ¤¤¤ Scheduled tasks : 1 ¤¤¤ [V2][sUSP PATH] Updater21806.exe : C:\Users\vasant2\AppData\Local\Updater21806\Updater21806.exe - /extensionid=21806 /extensionname="Deals Plugin Extension" /chromeid=bbhgoadfgiandmaieopaphefbhcdpfaf [x][x] -> DELETED ¤¤¤ Startup Entries : 0 ¤¤¤ ¤¤¤ Web browsers : 0 ¤¤¤ ¤¤¤ Browser Addons : 0 ¤¤¤ ¤¤¤ Particular Files / Folders: ¤¤¤ [ZeroAccess][Folder] U : C:\Windows\Installer\{a0a99ab8-eb85-13a4-7637-aa156dc951ba}\U [-] --> DELETED [ZeroAccess][Folder] L : C:\Windows\Installer\{a0a99ab8-eb85-13a4-7637-aa156dc951ba}\L [-] --> DELETED [ZeroAccess][File] 201d3dde : C:\Windows\INSTAL~1\{A0A99~1\L\201d3dde [-] --> DELETED ¤¤¤ Driver : [NOT LOADED 0x0] ¤¤¤ ¤¤¤ External Hives: ¤¤¤ ¤¤¤ Infection : ZeroAccess ¤¤¤ ¤¤¤ HOSTS File: ¤¤¤ --> %SystemRoot%\System32\drivers\etc\hosts ¤¤¤ MBR Check: ¤¤¤ +++++ PhysicalDrive0: (\\.\PHYSICALDRIVE0 @ IDE) ST9640320AS ATA Device +++++ --- User --- [MBR] dce9e972fac30937656234fb35a0b9e4 [bSP] 101a29db0b1aaa2b1ddddff9c19f926b : Windows Vista/7/8 MBR Code Partition table: 0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 199 Mo 1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 409600 | Size: 590973 Mo 2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 1210722304 | Size: 19203 Mo 3 - [XXXXXX] FAT32-LBA (0x0c) [VISIBLE] Offset (sectors): 1250050048 | Size: 103 Mo User = LL1 ... OK! User = LL2 ... OK! Finished : << RKreport[0]_D_01132014_175422.txt >> RKreport[0]_S_01132014_175331.txt
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.