Jump to content

Search the Community

Showing results for tags 'Load'.

  • Search By Tags

    Type tags separated by commas.
  • Search By Author

Content Type


Forums

  • Announcements
    • Malwarebytes News
    • Beta Testing Program
  • Malware Removal Help
    • Windows Malware Removal Help & Support
    • Mac Malware Removal Help & Support
    • Mobile Malware Removal Help & Support
    • Malware Removal Self-Help Guides
  • Malwarebytes for Home Support
    • Malwarebytes for Windows Support Forum
    • Malwarebytes for Mac Support Forum
    • Malwarebytes for Android Support Forum
    • Malwarebytes for iOS Support
    • Malwarebytes Privacy
    • Malwarebytes Browser Guard
    • False Positives
    • Comments and Suggestions
  • Malwarebytes for Business Support
    • Malwarebytes Endpoint Protection
    • Malwarebytes Incident Response (includes Breach Remediation)
    • Malwarebytes Endpoint Security
    • Malwarebytes Business Products Comments and Suggestions
  • Malwarebytes Tools and Other Products
    • Malwarebytes AdwCleaner
    • Malwarebytes Junkware Removal Tool Support
    • Malwarebytes Anti-Rootkit BETA Support
    • Malwarebytes Techbench USB (Legacy)
    • Malwarebytes Secure Backup discontinued
    • Other Tools
    • Malwarebytes Tools Comments and Suggestions
  • General Computer Help and Security Updates
    • BSOD, Crashes, Kernel Debugging
    • General Windows PC Help
  • Research Center
    • Newest Rogue-Ransomware Threats
    • Newest Malware Threats
    • Newest Mobile Threats
    • Newest IP or URL Threats
    • Newest Mac Threats
    • Report Scam Phone Numbers
  • General
    • General Chat
    • Forums Announcements & Feedback

Find results in...

Find results that contain...


Date Created

  • Start

    End


Last Updated

  • Start

    End


Filter by number of...

Joined

  • Start

    End


Group


AIM


MSN


Website URL


ICQ


Yahoo


Jabber


Location


Interests

Found 9 results

  1. Screen recording: 2019-09-07 10:02.mp4 Environment root@momh167-gjp4-8570p:~ # date ; uname -v Sat Sep 7 10:39:13 BST 2019 FreeBSD 13.0-CURRENT r351708 GENERIC-NODEBUG root@momh167-gjp4-8570p:~ # pkg query '%o %v %R' firefox www/firefox 69.0,1 FreeBSD root@momh167-gjp4-8570p:~ # Thoughts The effectiveness of extensions such as Malwarebytes Browser Guard might be limited – in Firefox and the like – by this Mozilla bug: 1378459 - (webextensions-startup) [meta] Allow some addon functionality to load prior to any content loading From https://bugzilla.mozilla.org/show_bug.cgi?id=1378459#c51:
  2. After the Anit-Ransomware Beta has been running for a while. One to Two days....... The CSRSS.exe process goes to 70-85% and makes my PC unusable. It take me about 5 minutes to get the Anti-Ransomware Beta open and "Stop Protection". After stopping Anti-Ransomware Beta, the CSRSS.exe returns to 0% CPU and my system returns to normal. I can click Start Protection in Anti-Ransomware Beta and the CSRSS.exe goes back to 70-85% and my system becomes sluggish. I can repeat this on demand until I reboot, then it takes another day or two before it happens again. This whole thing is full reproducible. mbarwind-crash.zip logs.zip
  3. Hello, I have an i7 computer with 16Go of RAM and Windows 8.1 Pro. I have Windows Defender as my antivirus Just today I noticed that MBAM was not loading. I don't know how long this has been going on for. I read through the forums here and did the usual stuff (Chameleon all the way through, MBAM clean and antivirus deactivation and re-install etc.). Nothing worked. MBAM refuses to load. Finally I tried a safe boot and I started to run Chameleon got a dialog box with the following details as soon as it tried to load MBAM. Dialog box title : mbam.exe - Application Error Content : The instruction at 0x00fdedba referenced memory at 0x00000000. The memory could not be read. Click on OK to terminate the program. Do you think I have a RAM error or is this bogus ? I have not seen any problem with other software on my computer which of course doesn't mean that I might not come across a problem later. Many thanks
  4. Hi, my GPU Load is spiking to 85% every 8 minutes while I game, and it stays at 85% for about a minute, then goes back to 20% GPU Load. Here are the Checkresult files, FRST file, and Addition file. It may or may not be a bitcoin miner, but if it isn't please tell me the problem. Thanks! Addition.txt CheckResults.txt FRST.txt
  5. Hi guys, this is my first time posting here... hopefully I can get some great help from you guys. Lately my fps started dropping badly, if I play a game for more than an hour - a problem consists. This problem started happening around 2 weeks ago. At first, it was very minimal, so I didn't care. But then my fps started to drop to under 20 degrees every 3-5 minutes. My computer specs are (I know they aren't that good): Processor : Intel® Core i7 CPU Installed memory (RAM): 4.00 GB System Type: 32-bit Operating System, x64-based processor with Nvidia GeForce 310m --------------------------- *I've had this laptop since 2010 and I can't really afford a new one* --------------------------- - Last time I've applied thermal paste (Artic MX-2) was 3-4 months ago. - Cleaned out my fan 3-4 months ago - I've used GPU-Z to monitor my temperatures / clocks of my GPU, and according to GPU-Z I have one card (which is my Nvidia 310m). - My GPU temperature is around 75-80 degrees. - My GPU load randomly spikes to 85 after it is on 20 Here is a screenshot of GPU-Z : http://imgur.com/zf2TIGc Here is the list of my task manager: Image Name PID Session Name Session# Mem Usage ========================= ======== ================ =========== ============ System Idle Process 0 Services 0 28 K System 4 Services 0 776 K smss.exe 320 Services 0 776 K csrss.exe 460 Services 0 3,816 K wininit.exe 564 Services 0 3,420 K services.exe 604 Services 0 8,584 K lsass.exe 612 Services 0 9,944 K svchost.exe 788 Services 0 7,568 K nvvsvc.exe 832 Services 0 5,744 K nvSCPAPISvr.exe 856 Services 0 4,796 K svchost.exe 900 Services 0 6,980 K svchost.exe 980 Services 0 17,100 K svchost.exe 1004 Services 0 45,388 K svchost.exe 1040 Services 0 180,396 K svchost.exe 1088 Services 0 12,128 K svchost.exe 1380 Services 0 19,464 K audiodg.exe 1560 Services 0 8,180 K spoolsv.exe 2012 Services 0 9,476 K svchost.exe 2040 Services 0 18,280 K armsvc.exe 560 Services 0 3,032 K dasHost.exe 1152 Services 0 5,956 K GameScannerService.exe 1352 Services 0 23,420 K RzKLService.exe 1284 Services 0 2,428 K svchost.exe 2116 Services 0 5,864 K MsMpEng.exe 2144 Services 0 65,140 K svchost.exe 2532 Services 0 10,820 K SearchIndexer.exe 3024 Services 0 31,916 K daemonu.exe 4548 Services 0 6,008 K wmpnetwk.exe 5396 Services 0 3,240 K csrss.exe 4192 Console 2 5,732 K winlogon.exe 6128 Console 2 3,972 K dwm.exe 5972 Console 2 28,928 K nvxdsync.exe 3212 Console 2 14,140 K nvvsvc.exe 36 Console 2 9,872 K taskhostex.exe 800 Console 2 9,040 K explorer.exe 348 Console 2 91,992 K nvtray.exe 5920 Console 2 7,840 K GrooveMonitor.exe 4756 Console 2 6,588 K nw.exe 5464 Console 2 37,748 K nw.exe 2092 Console 2 47,724 K nw.exe 948 Console 2 15,388 K nw.exe 268 Console 2 46,888 K Game.exe 4380 Console 2 532,396 K LiveComm.exe 2592 Console 2 3,044 K RuntimeBroker.exe 2968 Console 2 7,024 K chrome.exe 1992 Console 2 105,996 K chrome.exe 1108 Console 2 111,864 K chrome.exe 5600 Console 2 45,524 K chrome.exe 92 Console 2 21,048 K chrome.exe 4892 Console 2 24,516 K chrome.exe 224 Console 2 23,748 K chrome.exe 5616 Console 2 116,136 K chrome.exe 2964 Console 2 423,084 K GPU-Z.0.8.3.exe 2652 Console 2 16,436 K Taskmgr.exe 5340 Console 2 21,708 K wuauclt.exe 1696 Console 2 5,432 K chrome.exe 1400 Console 2 226,328 K chrome.exe 628 Console 2 8,476 K svchost.exe 2676 Services 0 4,416 K SrTasks.exe 6220 Services 0 3,744 K wuauclt.exe 6240 Services 0 20,132 K conhost.exe 6248 Services 0 2,212 K taskhost.exe 6528 Console 2 7,244 K chrome.exe 8112 Console 2 62,608 K mbamservice.exe 8088 Services 0 56,060 K mbamscheduler.exe 2936 Services 0 9,124 K mbam.exe 7384 Console 2 252,544 K GPU-Z.0.8.3.exe 7704 Console 2 14,420 K chrome.exe 8036 Console 2 41,800 K msiexec.exe 7516 Services 0 12,964 K chrome.exe 6876 Console 2 49,072 K TrustedInstaller.exe 7236 Services 0 4,220 K TiWorker.exe 308 Services 0 99,300 K VSSVC.exe 6964 Services 0 4,912 K cmd.exe 7048 Console 2 1,884 K conhost.exe 6640 Console 2 4,624 K tasklist.exe 6440 Console 2 4,616 K WmiPrvSE.exe 6404 Services 0 4,876 K ==================================================================== SO: What is the main problem here? Is my computer overheating? Is there a program I need to kill? What is spiking my GPU load so much? Also: Thank you guys for reading this post, and thank you for your time.
  6. I see that this problem was occurring in 2009, and was fixed in later versions. I have version 2.0.1.1004 and MB is set to "Automatic" in services. A minor annoyance that I would like to eliminate, if possible.
  7. I have noticed that when ever I shut down my PC and start again MBAE has to be opened again. It does not load by it self and has to be done manually. Doesn't it load automatically like other security software? If this is so then I will not be protected unless I manually load MBAE after every start up. Please keep me posted on this issue. Thanks, George... ...
  8. Hello again, So the thing is that my Gpu is a constant high load even when idle. Temp goes up to 60° + idle. Some research brought me here and the knowledge of possible bitcoinminer virusses. So here are the first results of dds: DDS (Ver_2012-11-20.01) - NTFS_AMD64 Internet Explorer: 10.0.9200.16618Run by gABBY at 22:08:06 on 2013-07-09Microsoft Windows 7 Ultimate 6.1.7601.1.1252.32.1033.18.8146.5658 [GMT 2:00].AV: Microsoft Security Essentials *Disabled/Updated* {3F839487-C7A2-C958-E30C-E2825BA31FB5}SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}SP: Microsoft Security Essentials *Disabled/Updated* {84E27563-E198-C6D6-D9BC-D9F020245508}.============== Running Processes ===============.C:\Windows\system32\lsm.exeC:\Windows\system32\svchost.exe -k DcomLaunchC:\Windows\system32\nvvsvc.exeC:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exeC:\Windows\system32\svchost.exe -k RPCSSC:\Program Files\Microsoft Security Client\MsMpEng.exeC:\Windows\System32\svchost.exe -k LocalServiceNetworkRestrictedC:\Windows\System32\svchost.exe -k LocalSystemNetworkRestrictedC:\Windows\system32\svchost.exe -k LocalServiceC:\Windows\system32\svchost.exe -k netsvcsC:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exeC:\Windows\system32\svchost.exe -k NetworkServiceC:\Program Files\NVIDIA Corporation\Display\nvxdsync.exeC:\Windows\system32\nvvsvc.exeC:\Windows\System32\spoolsv.exeC:\Windows\system32\svchost.exe -k LocalServiceNoNetworkC:\Windows\system32\taskhost.exeC:\Windows\system32\Dwm.exeC:\Windows\Explorer.EXEC:\Windows\SysWOW64\ASGT.exeC:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exeC:\Windows\SysWOW64\PnkBstrA.exeC:\Windows\system32\svchost.exe -k imgsvcC:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exeC:\Program Files\Microsoft Security Client\msseces.exeC:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXEC:\Program Files (x86)\Origin\Origin.exeC:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exeC:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exeC:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exeG:\gABBY\Stiem\Steam.exeC:\Users\gABBY\AppData\Local\Akamai\netsession_win.exeC:\Program Files (x86)\Creative\Shared Files\CTSched.exeC:\Users\gABBY\AppData\Local\Akamai\netsession_win.exeC:\Program Files (x86)\Razer\Synapse\RzSynapse.exeC:\Windows\SysWOW64\Ctxfihlp.exeC:\Windows\system32\wbem\wmiprvse.exeC:\Users\gABBY\AppData\Roaming\Dropbox\bin\Dropbox.exeC:\Program Files (x86)\Google\Update\1.3.21.149\GoogleCrashHandler.exeC:\Program Files (x86)\Google\Update\1.3.21.149\GoogleCrashHandler64.exeC:\Windows\SysWOW64\CTXFISPI.EXEC:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestrictedC:\Program Files\NVIDIA Corporation\Display\nvtray.exeC:\Windows\system32\SearchIndexer.exeC:\Program Files\Windows Media Player\wmpnetwk.exeC:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonationC:\Windows\System32\svchost.exe -k LocalServicePeerNetC:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Program Files (x86)\Google\Chrome\Application\chrome.exeC:\Windows\System32\cscript.exe.============== Pseudo HJT Report ===============.uProxyOverride = <local>mWinlogon: Userinit = userinit.exe,BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dlluRun: [EADM] "C:\Program Files (x86)\Origin\Origin.exe" -AutoStartuRun: [steam] "G:\gABBY\Stiem\Steam.exe" -silentuRun: [Akamai NetSession Interface] "C:\Users\gABBY\AppData\Local\Akamai\netsession_win.exe"uRun: [DAEMON Tools Pro Agent] "C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe" -autorunuRun: [CreativeTaskScheduler] "C:\Program Files (x86)\Creative\Shared Files\CTSched.exe" /logonmRun: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"mRun: [CTxfiHlp] CTXFIHLP.EXEStartupFolder: C:\Users\gABBY\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\Dropbox.lnk - C:\Users\gABBY\AppData\Roaming\Dropbox\bin\Dropbox.exeuPolicies-Explorer: NoDriveTypeAutoRun = dword:145mPolicies-Explorer: NoActiveDesktop = dword:1mPolicies-Explorer: NoActiveDesktopChanges = dword:1mPolicies-System: ConsentPromptBehaviorAdmin = dword:0mPolicies-System: ConsentPromptBehaviorUser = dword:3mPolicies-System: EnableLUA = dword:0mPolicies-System: EnableUIADesktopToggle = dword:0mPolicies-System: PromptOnSecureDesktop = dword:0TCP: NameServer = 192.168.0.1TCP: Interfaces\{FE940914-2182-427D-ABE4-B20A871B09D3} : DHCPNameServer = 192.168.0.1Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dllSSODL: WebCheck - <orphaned>mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\27.0.1453.116\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chromex64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dllx64-Run: [Nvtmru] "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"x64-Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkeyx64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>x64-SSODL: WebCheck - <orphaned>.============= SERVICES / DRIVERS ===============.R0 MpFilter;Microsoft Malware Protection Driver;C:\Windows\System32\drivers\MpFilter.sys [2013-1-20 230320]R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;C:\Windows\System32\drivers\dtsoftbus01.sys [2013-6-28 283200]R2 ASGT;ASGT;C:\Windows\SysWOW64\ASGT.exe [2012-1-17 55296]R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-6-21 413472]R2 uxpatch;uxpatch;C:\Windows\System32\drivers\uxpatch.sys [2009-7-13 30568]R3 CT20XUT.SYS;CT20XUT.SYS;C:\Windows\System32\drivers\CT20XUT.sys [2010-7-7 230488]R3 CTEXFIFX.SYS;CTEXFIFX.SYS;C:\Windows\System32\drivers\CTEXFIFX.sys [2010-7-7 1445976]R3 CTHWIUT.SYS;CTHWIUT.SYS;C:\Windows\System32\drivers\CTHWIUT.sys [2010-7-7 95320]R3 ha20x22k;Creative 20X2 HAL Driver;C:\Windows\System32\drivers\ha20x22k.sys [2010-7-7 1612888]R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2013-6-28 769168]R3 rzendpt;rzendpt;C:\Windows\System32\drivers\rzendpt.sys [2013-6-7 31232]R3 rzudd;Razer Mouse Driver;C:\Windows\System32\drivers\rzudd.sys [2013-6-7 126464]R4 IOMap;IOMap;C:\Windows\System32\drivers\IOMap64.sys [2013-6-28 23680]S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]S2 Time;Time;C:\ProgramData\Microsoft\Windows\Time\Time-svc.exe [2013-7-9 10752]S2 UnsignedThemes;Unsigned Themes;C:\Windows\UnsignedThemesSvc.exe [2009-7-13 24168]S3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service;C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2013-6-29 79360]S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2013-6-28 79360]S3 CT20XUT;CT20XUT;C:\Windows\System32\drivers\CT20XUT.sys [2010-7-7 230488]S3 CTEXFIFX;CTEXFIFX;C:\Windows\System32\drivers\CTEXFIFX.sys [2010-7-7 1445976]S3 CTHWIUT;CTHWIUT;C:\Windows\System32\drivers\CTHWIUT.sys [2010-7-7 95320]S3 hitmanpro37;HitmanPro 3.7 Support Driver;C:\Windows\System32\drivers\hitmanpro37.sys [2013-7-9 32000]S3 NisDrv;Microsoft Network Inspection System;C:\Windows\System32\drivers\NisDrvWFP.sys [2013-1-20 130008]S3 NisSrv;Microsoft Network Inspection;C:\Program Files\Microsoft Security Client\NisSrv.exe [2013-1-27 379360]S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2013-6-28 20992]S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2013-6-28 59392]S3 WatAdminSvc;Windows Activation Technologies-service;C:\Windows\System32\Wat\WatAdminSvc.exe [2013-6-28 1255736]S3 WSDScan;WSD Scan Support via UMB;C:\Windows\System32\drivers\WSDScan.sys [2009-7-14 25088]S3 XENfiltv;XENfiltv;C:\Windows\System32\drivers\XENfiltv.sys [2009-7-31 25600]SUnknown tsusbhub;tsusbhub; [x].=============== Created Last 30 ================.2013-07-09 20:05:58 15208 ----a-w- C:\Windows\System32\drivers\nvflash.sys2013-07-09 17:03:21 -------- d-----w- C:\Malware removel2013-07-09 15:55:32 32000 ----a-w- C:\Windows\System32\drivers\hitmanpro37.sys2013-07-09 15:49:58 -------- d-----w- C:\Program Files\HitmanPro2013-07-09 15:49:45 -------- d-----w- C:\ProgramData\HitmanPro2013-07-09 14:51:19 -------- d-----w- C:\Users\gABBY\AppData\Roaming\Malwarebytes2013-07-09 14:51:07 -------- d-----w- C:\ProgramData\Malwarebytes2013-07-09 14:51:06 25928 ----a-w- C:\Windows\System32\drivers\mbam.sys2013-07-09 14:51:06 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware2013-07-09 14:39:45 -------- d-----w- C:\ProgramData\NVIDIA_Inspector2013-07-09 14:04:29 -------- d-----w- C:\Users\gABBY\AppData\Roaming\MKKE2013-07-09 12:52:00 569680 ----a-w- C:\ProgramData\Microsoft\Windows\Time\msvcp90.dll2013-07-09 12:52:00 49664 ----a-w- C:\ProgramData\Microsoft\Windows\Time\w9xpopen.exe2013-07-09 12:52:00 24064 ----a-w- C:\ProgramData\Microsoft\Windows\Time\TimeServer.exe2013-07-09 12:52:00 2303488 ----a-w- C:\ProgramData\Microsoft\Windows\Time\python27.dll2013-07-09 12:52:00 219648 ----a-w- C:\ProgramData\Microsoft\Windows\Time\boost_python-vc90-mt-1_48.dll2013-07-09 12:52:00 10752 ----a-w- C:\ProgramData\Microsoft\Windows\Time\Time-svc.exe2013-07-09 12:52:00 10240 ----a-w- C:\ProgramData\Microsoft\Windows\Time\WindowsTime.exe2013-07-09 08:18:56 9552976 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{38677760-460E-47D2-80AB-ECC8EFC63DC1}\mpengine.dll2013-07-03 08:46:06 9552976 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll2013-07-01 14:04:10 964552 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{BB094481-049E-4D8E-AB1C-2473ECAA55EA}\gapaengine.dll2013-06-29 16:48:30 -------- d-----r- C:\Users\gABBY\Dropbox2013-06-29 16:47:32 -------- d-----w- C:\Users\gABBY\AppData\Roaming\Dropbox2013-06-29 12:29:33 -------- d-----w- C:\Users\gABBY\AppData\Local\Soulseek Chat Logs2013-06-29 12:25:02 -------- d-----w- C:\Program Files (x86)\SoulseekQt2013-06-29 12:18:08 -------- d-----w- C:\Users\gABBY\AppData\Local\QuickPar2013-06-28 23:15:19 -------- d-----w- C:\Users\gABBY\AppData\Roaming\Wargaming.net2013-06-28 23:03:39 -------- d-----w- C:\Users\gABBY\AppData\Roaming\Windows Live Writer2013-06-28 23:03:39 -------- d-----w- C:\Users\gABBY\AppData\Local\Windows Live Writer2013-06-28 23:03:20 -------- d-----w- C:\Windows\SysWow64\xlive2013-06-28 23:03:17 -------- d-----w- C:\Program Files (x86)\Microsoft Games for Windows - LIVE2013-06-28 23:01:21 -------- d-----w- C:\Windows\nl2013-06-28 23:01:06 -------- d-----w- C:\Program Files (x86)\Microsoft SQL Server Compact Edition2013-06-28 23:00:52 -------- d-----w- C:\Windows\PCHEALTH2013-06-28 22:57:34 99840 ----a-w- C:\Windows\System32\Spool\prtprocs\x64\CNMPPAG.DLL2013-06-28 22:57:34 30208 ----a-w- C:\Windows\System32\Spool\prtprocs\x64\CNMPDAG.DLL2013-06-28 22:57:25 385024 ----a-w- C:\Windows\System32\CNMLMAG.DLL2013-06-28 22:54:04 -------- d-----w- C:\Users\gABBY\AppData\Roaming\NVIDIA2013-06-28 22:40:17 291088 ----a-w- C:\Windows\SysWow64\PnkBstrB.exe2013-06-28 22:40:17 280904 ----a-w- C:\Windows\SysWow64\PnkBstrB.ex02013-06-28 22:39:58 291088 ----a-w- C:\Windows\SysWow64\PnkBstrB.xtr2013-06-28 22:39:52 76888 ----a-w- C:\Windows\SysWow64\PnkBstrA.exe2013-06-28 22:39:52 -------- d-----w- C:\Users\gABBY\AppData\Local\PunkBuster2013-06-28 22:39:31 -------- d-----w- C:\ProgramData\EA Core2013-06-28 22:39:20 -------- d-----w- C:\ProgramData\EA Logs2013-06-28 22:30:06 -------- d-----w- C:\Program Files (x86)\Winamp Detect2013-06-28 22:27:25 2906586 ------w- C:\Windows\SysWow64\Sens_oal.dll2013-06-28 22:27:25 1944064 ------w- C:\Windows\System32\Sens_oal.dll2013-06-28 22:27:23 647872 ------w- C:\Windows\SysWow64\Mscomct2.ocx2013-06-28 22:27:23 53248 ------w- C:\Windows\Ctregrun.exe2013-06-28 22:24:11 61440 ------w- C:\Windows\SysWow64\CTChkAud.dll2013-06-28 22:24:11 49664 ------w- C:\Windows\System32\CTChkAud.dll2013-06-28 22:24:11 42496 ------w- C:\Windows\System32\AddCat.exe2013-06-28 22:24:11 183296 ------w- C:\Windows\System32\CTOPT352.dll2013-06-28 22:24:11 166912 ------w- C:\Windows\SysWow64\CTOPT352.dll2013-06-28 21:45:07 -------- d-----w- C:\Users\gABBY\AppData\Local\NVIDIA2013-06-28 21:20:57 1424384 ----a-w- C:\Windows\System32\WindowsCodecs.dll2013-06-28 21:20:57 1230336 ----a-w- C:\Windows\SysWow64\WindowsCodecs.dll2013-06-28 21:16:55 -------- d-----w- C:\ProgramData\Blizzard Entertainment2013-06-28 21:16:55 -------- d-----w- C:\Program Files (x86)\Common Files\Blizzard Entertainment2013-06-28 21:15:00 -------- d-----w- C:\ProgramData\Battle.net2013-06-28 21:14:19 283200 ----a-w- C:\Windows\System32\drivers\dtsoftbus01.sys2013-06-28 21:11:38 564824 ----a-w- C:\Windows\System32\drivers\sptd.sys2013-06-28 21:11:38 -------- d-----w- C:\Users\gABBY\AppData\Roaming\DAEMON Tools Pro2013-06-28 21:11:34 -------- d-----w- C:\Program Files (x86)\DAEMON Tools Pro2013-06-28 21:11:09 -------- d-----w- C:\ProgramData\DAEMON Tools Pro2013-06-28 21:08:53 9728 ---ha-w- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll2013-06-28 20:56:55 -------- d-----w- C:\Program Files (x86)\ASUS2013-06-28 20:54:52 2560 ----a-w- C:\Windows\System32\drivers\nl-NL\wdf01000.sys.mui2013-06-28 20:39:12 44032 ----a-w- C:\Windows\SysWow64\dhcpcsvc6.dll2013-06-28 20:39:12 193536 ----a-w- C:\Windows\SysWow64\dhcpcore6.dll2013-06-28 20:39:11 55296 ----a-w- C:\Windows\System32\dhcpcsvc6.dll2013-06-28 20:39:11 226816 ----a-w- C:\Windows\System32\dhcpcore6.dll2013-06-28 20:25:30 6656 ----a-w- C:\Windows\System32\drivers\nl-NL\rdvgkmd.sys.mui2013-06-28 20:25:30 2560 ----a-w- C:\Windows\System32\drivers\nl-NL\rdpwd.sys.mui2013-06-28 20:25:29 4608 ----a-w- C:\Windows\System32\drivers\nl-NL\tsusbhub.sys.mui2013-06-28 20:25:29 3584 ----a-w- C:\Windows\System32\drivers\nl-NL\tsusbflt.sys.mui2013-06-28 20:25:27 3072 ----a-w- C:\Windows\System32\drivers\nl-NL\Dot4usb.sys.mui2013-06-28 20:23:22 1910632 ----a-w- C:\Windows\System32\drivers\tcpip.sys2013-06-28 20:23:21 983400 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys2013-06-28 20:23:21 950128 ----a-w- C:\Windows\System32\drivers\ndis.sys2013-06-28 20:23:21 265064 ----a-w- C:\Windows\System32\drivers\dxgmms1.sys2013-06-28 20:23:21 144384 ----a-w- C:\Windows\System32\cdd.dll2013-06-28 20:23:20 41472 ----a-w- C:\Windows\System32\drivers\RNDISMP.sys2013-06-28 20:23:18 48640 ----a-w- C:\Windows\System32\wwanprotdim.dll2013-06-28 20:23:18 3153920 ----a-w- C:\Windows\System32\win32k.sys2013-06-28 20:23:18 230400 ----a-w- C:\Windows\System32\wwansvc.dll2013-06-28 20:23:17 751104 ----a-w- C:\Windows\System32\win32spl.dll2013-06-28 20:23:17 68608 ----a-w- C:\Windows\System32\taskhost.exe2013-06-28 20:23:17 492544 ----a-w- C:\Windows\SysWow64\win32spl.dll2013-06-28 20:08:10 -------- d-----w- C:\Windows\nl-NL2013-06-28 20:01:50 -------- d-----w- C:\Users\gABBY\AppData\Local\Razer2013-06-28 19:53:16 -------- d-----w- C:\Windows\System32\SPReview2013-06-28 19:53:14 -------- d-----w- C:\Windows\System32\EventProviders2013-06-28 19:53:00 -------- d-----w- C:\Program Files (x86)\Microsoft Security Client2013-06-28 19:52:59 -------- d-----w- C:\Program Files\Microsoft Security Client2013-06-28 19:19:11 98816 ----a-w- C:\Windows\System32\drivers\usbccgp.sys2013-06-28 18:54:56 9728 ----a-w- C:\Windows\System32\Wdfres.dll2013-06-28 18:54:56 785512 ----a-w- C:\Windows\System32\drivers\Wdf01000.sys2013-06-28 18:54:56 54376 ----a-w- C:\Windows\System32\drivers\WdfLdr.sys2013-06-28 18:54:56 2560 ----a-w- C:\Windows\System32\drivers\en-US\wdf01000.sys.mui2013-06-28 18:49:35 294912 ----a-w- C:\Windows\System32\browserchoice.exe2013-06-28 18:48:59 6219088 ------w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll2013-06-28 18:48:58 9552976 ------w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DB752D9D-BB05-496F-A2BC-BF4933E21717}\mpengine.dll2013-06-28 18:42:42 2414360 ----a-w- C:\Windows\SysWow64\d3dx9_31.dll2013-06-28 18:42:42 1892184 ----a-w- C:\Windows\SysWow64\D3DX9_42.dll2013-06-28 18:42:38 -------- d-----w- C:\Program Files (x86)\Common Files\PX Storage Engine2013-06-28 18:41:02 70656 ----a-w- C:\Windows\SysWow64\fontsub.dll2013-06-28 18:41:02 46080 ----a-w- C:\Windows\System32\atmlib.dll2013-06-28 18:41:02 367616 ----a-w- C:\Windows\System32\atmfd.dll2013-06-28 18:41:02 34304 ----a-w- C:\Windows\SysWow64\atmlib.dll2013-06-28 18:41:02 295424 ----a-w- C:\Windows\SysWow64\atmfd.dll2013-06-28 18:41:02 100864 ----a-w- C:\Windows\System32\fontsub.dll2013-06-28 18:40:20 87040 ----a-w- C:\Windows\System32\drivers\WUDFPf.sys2013-06-28 18:40:20 84992 ----a-w- C:\Windows\System32\WUDFSvc.dll2013-06-28 18:40:20 198656 ----a-w- C:\Windows\System32\drivers\WUDFRd.sys2013-06-28 18:40:20 194048 ----a-w- C:\Windows\System32\WUDFPlatform.dll2013-06-28 18:40:19 744448 ----a-w- C:\Windows\System32\WUDFx.dll2013-06-28 18:40:19 45056 ----a-w- C:\Windows\System32\WUDFCoinstaller.dll2013-06-28 18:40:19 229888 ----a-w- C:\Windows\System32\WUDFHost.exe2013-06-28 18:38:05 77656 ----a-w- C:\Windows\System32\XAPOFX1_5.dll2013-06-28 18:38:05 74072 ----a-w- C:\Windows\SysWow64\XAPOFX1_5.dll2013-06-28 18:38:05 527192 ----a-w- C:\Windows\SysWow64\XAudio2_7.dll2013-06-28 18:38:05 523088 ----a-w- C:\Windows\System32\d3dx10_42.dll2013-06-28 18:38:05 518488 ----a-w- C:\Windows\System32\XAudio2_7.dll2013-06-28 18:38:05 453456 ----a-w- C:\Windows\SysWow64\d3dx10_42.dll2013-06-28 18:38:05 276832 ----a-w- C:\Windows\System32\d3dx11_43.dll2013-06-28 18:38:05 2526056 ----a-w- C:\Windows\System32\D3DCompiler_43.dll2013-06-28 18:38:05 248672 ----a-w- C:\Windows\SysWow64\d3dx11_43.dll2013-06-28 18:38:05 2106216 ----a-w- C:\Windows\SysWow64\D3DCompiler_43.dll2013-06-28 18:38:01 4398360 ----a-w- C:\Windows\System32\d3dx9_32.dll2013-06-28 18:38:01 3426072 ----a-w- C:\Windows\SysWow64\d3dx9_32.dll2013-06-28 18:36:46 -------- d-----w- C:\Users\gABBY\AppData\Local\Akamai2013-06-28 18:35:58 -------- d-----w- C:\Program Files (x86)\Common Files\Steam2013-06-28 18:34:23 6656 ----a-w- C:\Windows\SysWow64\apisetschema.dll2013-06-28 18:33:59 67072 ----a-w- C:\Windows\splwow64.exe2013-06-28 18:32:36 -------- d-----w- C:\Program Files (x86)\QuickPar2013-06-28 18:31:33 -------- d-----w- C:\Users\gABBY\AppData\Roaming\GrabIt2013-06-28 18:31:08 -------- d-----w- C:\Program Files (x86)\GrabIt2013-06-28 18:30:10 23680 ----a-w- C:\Windows\System32\drivers\IOMap64.sys2013-06-28 18:27:56 -------- d-----w- C:\Windows\Downloaded Installations2013-06-28 18:26:27 -------- d-----w- C:\Program Files\NVIDIA Corporation2013-06-28 18:26:13 -------- d-----w- C:\NVIDIA2013-06-28 18:25:13 826880 ----a-w- C:\Windows\SysWow64\rdpcore.dll2013-06-28 18:25:13 23552 ----a-w- C:\Windows\System32\drivers\tdtcp.sys2013-06-28 18:25:13 20992 ----a-w- C:\Windows\System32\drivers\rdpvideominiport.sys2013-06-28 18:25:13 162816 ----a-w- C:\Windows\System32\rdpudd.dll2013-06-28 18:25:13 1031680 ----a-w- C:\Windows\System32\rdpcore.dll2013-06-28 18:23:36 -------- d-----w- C:\Users\gABBY\AppData\Local\Google2013-06-28 18:23:32 -------- d-----w- C:\Users\gABBY\AppData\Local\Deployment2013-06-28 18:23:32 -------- d-----w- C:\Users\gABBY\AppData\Local\Apps2013-06-28 18:23:03 2622464 ----a-w- C:\Windows\System32\wucltux.dll2013-06-28 18:21:54 99840 ----a-w- C:\Windows\System32\wudriver.dll2013-06-28 18:21:53 36864 ----a-w- C:\Windows\System32\wuapp.exe2013-06-28 18:21:53 186752 ----a-w- C:\Windows\System32\wuwebv.dll2013-06-28 18:21:18 769168 ----a-w- C:\Windows\System32\drivers\Rt64win7.sys2013-06-28 18:21:18 74344 ----a-w- C:\Windows\System32\RtNicProp64.dll2013-06-28 18:21:18 107552 ----a-w- C:\Windows\System32\RTNUninst64.dll2013-06-28 18:21:14 -------- d-----w- C:\Program Files (x86)\Realtek2013-06-28 18:20:40 -------- d-----w- C:\gABBY2013-06-28 18:12:36 -------- d-sh--we C:\Documents and Settings2013-06-28 18:12:36 -------- d-sh--w- C:\Recovery2013-06-24 11:20:22 768000 ----a-w- C:\Windows\SysWow64\rzdevicedll.dll2013-06-21 03:16:02 566048 ----a-w- C:\Windows\SysWow64\nvStreaming.exe2013-06-17 06:43:32 56832 ----a-w- C:\Windows\SysWow64\rzdevinfo.dll2013-06-17 06:43:32 154112 ----a-w- C:\Windows\SysWow64\rztouchdll.dll2013-06-17 06:43:28 117248 ----a-w- C:\Windows\SysWow64\rzdisplaydll.dll2013-06-17 06:43:26 296448 ----a-w- C:\Windows\SysWow64\rzaudiodll.dll.==================== Find3M ====================.2013-06-28 22:27:26 466520 ----a-w- C:\Windows\System32\wrap_oal.dll2013-06-28 22:27:26 445016 ----a-w- C:\Windows\SysWow64\wrap_oal.dll2013-06-28 22:27:26 123480 ----a-w- C:\Windows\System32\OpenAL32.dll2013-06-28 22:27:26 109144 ----a-w- C:\Windows\SysWow64\OpenAL32.dll2013-06-28 21:08:53 9728 ---ha-w- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll2013-06-28 20:14:30 152576 ----a-w- C:\Windows\SysWow64\msclmd.dll2013-06-28 20:14:29 175616 ----a-w- C:\Windows\System32\msclmd.dll2013-06-21 10:23:16 6496544 ----a-w- C:\Windows\System32\nvcpl.dll2013-06-21 10:23:16 3514656 ----a-w- C:\Windows\System32\nvsvc64.dll2013-06-21 10:23:11 884512 ----a-w- C:\Windows\System32\nvvsvc.exe2013-06-21 10:23:10 63776 ----a-w- C:\Windows\System32\nvshext.dll2013-06-21 10:23:10 2555680 ----a-w- C:\Windows\System32\nvsvcr.dll2013-06-21 10:23:10 237856 ----a-w- C:\Windows\System32\nvmctray.dll2013-06-20 04:17:49 3253909 ----a-w- C:\Windows\System32\nvcoproc.bin2013-06-07 03:29:52 126464 ----a-w- C:\Windows\System32\drivers\rzudd.sys2013-06-07 03:29:50 31232 ----a-w- C:\Windows\System32\drivers\rzendpt.sys2013-05-13 05:51:01 184320 ----a-w- C:\Windows\System32\cryptsvc.dll2013-05-13 05:51:00 1464320 ----a-w- C:\Windows\System32\crypt32.dll2013-05-13 05:51:00 139776 ----a-w- C:\Windows\System32\cryptnet.dll2013-05-13 05:50:40 52224 ----a-w- C:\Windows\System32\certenc.dll2013-05-13 04:45:55 140288 ----a-w- C:\Windows\SysWow64\cryptsvc.dll2013-05-13 04:45:55 1160192 ----a-w- C:\Windows\SysWow64\crypt32.dll2013-05-13 04:45:55 103936 ----a-w- C:\Windows\SysWow64\cryptnet.dll2013-05-13 03:43:55 1192448 ----a-w- C:\Windows\System32\certutil.exe2013-05-13 03:08:10 903168 ----a-w- C:\Windows\SysWow64\certutil.exe2013-05-13 03:08:06 43008 ----a-w- C:\Windows\SysWow64\certenc.dll2013-05-10 05:49:27 30720 ----a-w- C:\Windows\System32\cryptdlg.dll2013-05-10 03:20:54 24576 ----a-w- C:\Windows\SysWow64\cryptdlg.dll2013-05-02 15:29:56 278800 ------w- C:\Windows\System32\MpSigStub.exe2013-04-25 23:30:32 1505280 ----a-w- C:\Windows\SysWow64\d3d11.dll2013-04-13 05:49:23 135168 ----a-w- C:\Windows\apppatch\AppPatch64\AcXtrnal.dll2013-04-13 05:49:19 350208 ----a-w- C:\Windows\apppatch\AppPatch64\AcLayers.dll2013-04-13 05:49:19 308736 ----a-w- C:\Windows\apppatch\AppPatch64\AcGenral.dll2013-04-13 05:49:19 111104 ----a-w- C:\Windows\apppatch\AppPatch64\acspecfc.dll2013-04-13 04:45:16 474624 ----a-w- C:\Windows\apppatch\AcSpecfc.dll2013-04-13 04:45:15 2176512 ----a-w- C:\Windows\apppatch\AcGenral.dll2013-04-12 14:45:08 1656680 ----a-w- C:\Windows\System32\drivers\ntfs.sys.============= FINISH: 22:08:11,31 ===============
  9. Hello, I recently cleaned my infected pc my downloading and mbam v1.75 but it seems that all threats except the pum.wload were removed. I kept scanning and cleaning but after restarting, the virus is still there! However, after looking pum.wload on the net, which apparantly infect the computer in several places, it seems the one I have only infects a certain registry key - ( ...>currentversion>window-->load - usWMV.exe) so should I just use regassasin to delete this key? Anyway here's the Hijackthis log: hijackthis.log Thank you for your time!
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.