Creativeinnature Posted March 3, 2012 ID:532419 Share Posted March 3, 2012 Hi everyone,I have been struggling to get rid of a virus that seems to be affecting my internet as well as the speed of my computer. I ran a malware quick scan and got 2 hits.trojan.agent file C:\Windows\svchost.exetrojan.agent memory process c:\Windows\svchost.exe 5876I tried to ask malware to remove it but it was unsuccessful so I followd the next step and here is what the dds and attach files are..DDS (Ver_2011-08-26.01) - NTFSAMD64Internet Explorer: 9.0.8112.16421Run by Chelsea at 11:19:44 on 2012-03-03Microsoft Windows 7 Home Premium 6.1.7600.0.1252.1.1033.18.8180.5651 [GMT -5:00].AV: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {86355677-4064-3EA7-ABB3-1B136EB04637}SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}SP: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {3D54B793-665E-3129-9103-206115370C8A}FW: McAfee Firewall *Enabled* {BE0ED752-0A0B-3FFF-80EC-B2269063014C}.============== Running Processes ===============.C:\Windows\system32\wininit.exeC:\Windows\system32\lsm.exeC:\Windows\system32\svchost.exe -k DcomLaunchC:\Windows\system32\svchost.exe -k RPCSSC:\Windows\system32\atiesrxx.exeC:\Windows\System32\svchost.exe -k LocalServiceNetworkRestrictedC:\Windows\System32\svchost.exe -k LocalSystemNetworkRestrictedC:\Program Files\Alienware\Command Center\AlienSense\FAService.exeC:\Windows\system32\svchost.exe -k netsvcsC:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ec0230c23ac63514\STacSV64.exeC:\Windows\system32\svchost.exe -k LocalServiceC:\Windows\system32\svchost.exe -k NetworkServiceC:\Windows\system32\atieclxx.exeC:\Program Files\Dell\DW WLAN Card\WLTRYSVC.EXEC:\Windows\system32\WLANExt.exeC:\Windows\system32\conhost.exeC:\Program Files\Dell\DW WLAN Card\bcmwltry.exeC:\Windows\System32\spoolsv.exeC:\Windows\system32\svchost.exe -k LocalServiceNoNetworkC:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ec0230c23ac63514\AESTSr64.exeC:\Windows\SysWOW64\svchost.exe -k AkamaiC:\Program Files\Alienware\Command Center\AlienFusionService.exeC:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exeC:\Windows\system32\taskhost.exeC:\Windows\system32\Dwm.exeC:\Windows\Explorer.EXEC:\Program Files (x86)\Bonjour\mDNSResponder.exec:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exeC:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonationC:\Program Files (x86)\OSD\OSD_Service.exeC:\Program Files (x86)\STMicroelectronics\Accelerometer\InstallFilterService.exeC:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exeC:\Program Files (x86)\AlienRespawn\sftservice.EXEC:\Windows\system32\svchost.exe -k imgsvcC:\Program Files\Common Files\McAfee\SystemCore\mcshield.exeC:\Windows\system32\wbem\wmiprvse.exeC:\Program Files\Common Files\McAfee\SystemCore\mfefire.exeC:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exeC:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exeC:\Program Files (x86)\AlienRespawn\COMPONENTS\SCHEDULER\STSERVICE.EXEC:\Program Files (x86)\AlienRespawn\Components\DSUpdate\DSUpd.exeC:\Program Files (x86)\AlienRespawn\Toaster.exeC:\Windows\system32\UI0Detect.exeC:\Windows\system32\svchost.exe -k bthsvcsC:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestrictedC:\Program Files\Alienware\Command Center\AlienFusionController.exeC:\Windows\system32\wbem\wmiprvse.exeC:\Program Files\Synaptics\SynTP\SynTPEnh.exeC:\Program Files\IDT\WDM\sttray64.exeC:\Program Files\Alienware\Command Center\AlienwareAlienFXController.exeC:\Program Files\Dell\DW WLAN Card\WLTRAY.EXEC:\Program Files (x86)\STMicroelectronics\Accelerometer\FF_Protection.exeC:\Program Files\Synaptics\SynTP\SynTPHelper.exeC:\Users\Chelsea\AppData\Local\Akamai\netsession_win.exeC:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exeC:\Users\Chelsea\AppData\Local\Akamai\netsession_win.exeC:\Program Files\Alienware\Command Center\AlienSense\FATrayMon.exeC:\Windows\system32\SearchIndexer.exeC:\Program Files\Alienware\Command Center\AlienSense\FATrayAlert.exeC:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exec:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exeC:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exeC:\Program Files\Windows Media Player\wmpnetwk.exec:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exeC:\Program Files (x86)\OSD\OSD.exeC:\Windows\System32\svchost.exe -k LocalServicePeerNetc:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exeC:\Program Files\mcafee.com\agent\mcagent.exeC:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exeC:\Program Files (x86)\Integrated Webcam\Live! Central\WebcamInt.exeC:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exeC:\Program Files (x86)\iTunes\iTunesHelper.exeC:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exeC:\Program Files\iPod\bin\iPodService.exeC:\Program Files\Alienware\Command Center\AlienFXHook32Mngr.exeC:\Windows\system32\conhost.exeC:\Program Files\Alienware\Command Center\AlienFXHook64Mngr.exeC:\Windows\system32\conhost.exeC:\Windows\system32\taskmgr.exeC:\Windows\system32\taskeng.exeC:\Program Files (x86)\Common Files\Java\Java Update\jusched.exeC:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exeC:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exeC:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exeC:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exeC:\Windows\system32\wuauclt.exe-netsvcsC:\Windows\system32\conhost.exeC:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\system32\SearchProtocolHost.exeC:\Windows\system32\SearchFilterHost.exeC:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cmd.exeC:\Windows\system32\conhost.exeC:\Windows\SysWOW64\cscript.exe.============== Pseudo HJT Report ===============.uStart Page = hxxp://www.alienware.com/uDefault_Page_URL = hxxp://www.alienware.com/uInternet Settings,ProxyOverride = *.local;127.0.0.1:9421;mWinlogon: Userinit=userinit.exe,BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dllBHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dllBHO: scriptproxy: {7db2d5a0-7241-4e79-b68d-6309f01c5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20120302065857.dllBHO: Skype Browser Helper: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dllBHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLLBHO: SSOIEAddonBHO Class: {da5bce70-d057-4d63-943d-5f3927ec59f1} - C:\Program Files\Alienware\Command Center\AlienSense\FAIESSO.dllBHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dlluRun: [Akamai NetSession Interface] "C:\Users\Chelsea\AppData\Local\Akamai\netsession_win.exe"uRun: [spybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exemRun: [FATrayAlert] C:\Program Files\Alienware\Command Center\AlienSense\FATrayMon.exemRun: [FAStartup]mRun: [OSD_LAUNCH] c:\Program Files (x86)\OSD\Launch_OSD.exemRun: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exemRun: [startCCC] "c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRunmRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"mRun: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkeymRun: [RemoteControl9] "C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe"mRun: [PDVD9LanguageShortcut] "C:\Program Files (x86)\CyberLink\PowerDVD9\Language\Language.exe"mRun: [integrated Webcam Live! Central] "C:\Program Files (x86)\Integrated Webcam\Live! Central\WebcamInt.exe" /mode2mRun: [<NO NAME>]mRun: [RoxWatchTray] "C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe"mRun: [Desktop Disc Tool] "C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe"mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottimemRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"mRunOnce: [Launcher] C:\Program Files (x86)\AlienRespawn\Components\Scheduler\Launcher.exeStartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\BLUETO~1.LNK - C:\Program Files (x86)\WIDCOMM\Bluetooth Software\BTTray.exemPolicies-explorer: NoActiveDesktop = 1 (0x1)mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)mPolicies-system: EnableUIADesktopToggle = 0 (0x0)IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000IE: Se&nd to OneNote - C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105IE: Send image to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htmIE: Send page to &Bluetooth Device... - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htmIE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htmIE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dllIE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dllIE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dllIE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dllDPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cabDPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cabDPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cabTCP: DhcpNameServer = 192.168.0.1TCP: Interfaces\{5639D2F7-0991-42DC-BFAA-33D114249D8D} : DhcpNameServer = 192.168.0.1TCP: Interfaces\{5639D2F7-0991-42DC-BFAA-33D114249D8D}\24142524 : DhcpNameServer = 192.168.2.1TCP: Interfaces\{5639D2F7-0991-42DC-BFAA-33D114249D8D}\35F646F6D697 : DhcpNameServer = 10.0.0.99TCP: Interfaces\{5639D2F7-0991-42DC-BFAA-33D114249D8D}\751405021343 : DhcpNameServer = 63.162.197.99 71.2.28.14TCP: Interfaces\{5639D2F7-0991-42DC-BFAA-33D114249D8D}\96E63796768647F577966696F503939323 : DhcpNameServer = 192.168.2.1 209.18.47.61 209.18.47.62TCP: Interfaces\{5639D2F7-0991-42DC-BFAA-33D114249D8D}\C4F66756548707C6F63796F6E6 : DhcpNameServer = 209.18.47.61 209.18.47.62TCP: Interfaces\{5639D2F7-0991-42DC-BFAA-33D114249D8D}\E4544574541425 : DhcpNameServer = 192.168.1.1TCP: Interfaces\{897C26D5-C169-4C0C-8F17-92C39A4BAD81} : DhcpNameServer = 192.168.0.1Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\McAfee\msc\McSnIePl.dllFilter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLLHandler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dllNotify: FastAccess - C:\Program Files\Alienware\Command Center\AlienSense\FALogNot.dllLSA: Notification Packages = scecli FAPassSyncBHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dllBHO-X64: AcroIEHelperStub - No FileBHO-X64: Spybot-S&D IE Protection: {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dllBHO-X64: scriptproxy: {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20120302065857.dllBHO-X64: scriptproxy - No FileBHO-X64: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dllBHO-X64: SkypeIEPluginBHO - No FileBHO-X64: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLLBHO-X64: URLRedirectionBHO - No FileBHO-X64: SSOIEAddonBHO Class: {DA5BCE70-D057-4D63-943D-5F3927EC59F1} - C:\Program Files\Alienware\Command Center\AlienSense\FAIESSO.dllBHO-X64: SSOIEAddonBHO - No FileBHO-X64: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dllmRun-x64: [FATrayAlert] C:\Program Files\Alienware\Command Center\AlienSense\FATrayMon.exemRun-x64: [FAStartup]mRun-x64: [OSD_LAUNCH] c:\Program Files (x86)\OSD\Launch_OSD.exemRun-x64: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exemRun-x64: [startCCC] "c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRunmRun-x64: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"mRun-x64: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkeymRun-x64: [RemoteControl9] "C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe"mRun-x64: [PDVD9LanguageShortcut] "C:\Program Files (x86)\CyberLink\PowerDVD9\Language\Language.exe"mRun-x64: [integrated Webcam Live! Central] "C:\Program Files (x86)\Integrated Webcam\Live! Central\WebcamInt.exe" /mode2mRun-x64: [(Default)]mRun-x64: [RoxWatchTray] "C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe"mRun-x64: [Desktop Disc Tool] "C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe"mRun-x64: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottimemRun-x64: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"mRunOnce-x64: [Launcher] C:\Program Files (x86)\AlienRespawn\Components\Scheduler\Launcher.exeIE-X64: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm.============= SERVICES / DRIVERS ===============.R0 ioatdma;Intel® QuickData Technology device;C:\Windows\system32\Drivers\ioatdma.sys --> C:\Windows\system32\Drivers\ioatdma.sys [?]R3 Acceler;Accelerometer Service;C:\Windows\system32\DRIVERS\Acceler.sys --> C:\Windows\system32\DRIVERS\Acceler.sys [?]R3 amdkmdag;amdkmdag;C:\Windows\system32\DRIVERS\atikmdag.sys --> C:\Windows\system32\DRIVERS\atikmdag.sys [?]R3 amdkmdap;amdkmdap;C:\Windows\system32\DRIVERS\atikmpag.sys --> C:\Windows\system32\DRIVERS\atikmpag.sys [?]R3 AtiHDAudioService;ATI Function Driver for HD Audio Service;C:\Windows\system32\drivers\AtihdW76.sys --> C:\Windows\system32\drivers\AtihdW76.sys [?]R3 btwl2cap;Bluetooth L2CAP Service;C:\Windows\system32\DRIVERS\btwl2cap.sys --> C:\Windows\system32\DRIVERS\btwl2cap.sys [?]R3 cfwids;McAfee Inc. cfwids;C:\Windows\system32\drivers\cfwids.sys --> C:\Windows\system32\drivers\cfwids.sys [?]R3 CtClsFlt;Creative Camera Class Upper Filter Driver;C:\Windows\system32\DRIVERS\CtClsFlt.sys --> C:\Windows\system32\DRIVERS\CtClsFlt.sys [?]R3 e1kexpress;Intel® PRO/1000 PCI Express Network Connection Driver K;C:\Windows\system32\DRIVERS\e1k62x64.sys --> C:\Windows\system32\DRIVERS\e1k62x64.sys [?]S3 FACAP;facap, FastAccess Video Capture;C:\Windows\system32\DRIVERS\facap.sys --> C:\Windows\system32\DRIVERS\facap.sys [?]S3 IAMTVE;Driver for Intel® Active Management Technology - KCS;C:\Windows\system32\DRIVERS\IAMTVE.sys --> C:\Windows\system32\DRIVERS\IAMTVE.sys [?]S3 IAMTXPE;Driver for Intel® Active Management Technology - KCS;C:\Windows\system32\DRIVERS\IAMTXPE.sys --> C:\Windows\system32\DRIVERS\IAMTXPE.sys [?]S3 ioatdma1;ioatdma1;C:\Windows\system32\Drivers\qd162x64.sys --> C:\Windows\system32\Drivers\qd162x64.sys [?].=============== Created Last 30 ================.2012-03-03 16:03:57 20480 ----a-w- C:\Windows\svchost.exe2012-03-03 15:49:50 -------- d-----w- C:\Users\Chelsea\AppData\Roaming\Malwarebytes2012-03-03 15:49:04 -------- d-----w- C:\ProgramData\Malwarebytes2012-03-03 15:48:56 23152 ----a-w- C:\Windows\System32\drivers\mbam.sys2012-03-03 15:48:54 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware2012-03-02 11:59:13 1328640 ----a-w- C:\Windows\SysWow64\quartz.dll2012-03-02 11:59:12 1572864 ----a-w- C:\Windows\System32\quartz.dll2012-03-02 11:59:07 340992 ----a-w- C:\Windows\System32\schannel.dll2012-03-02 11:59:06 460296 ----a-w- C:\Windows\System32\drivers\cng.sys2012-03-02 11:59:06 152432 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys2012-03-02 11:59:06 1446912 ----a-w- C:\Windows\System32\lsasrv.dll2012-03-02 11:59:05 314368 ----a-w- C:\Windows\SysWow64\webio.dll2012-03-02 11:59:04 395776 ----a-w- C:\Windows\System32\webio.dll2012-03-02 11:59:04 136192 ----a-w- C:\Windows\System32\sspicli.dll2012-03-02 11:59:03 28160 ----a-w- C:\Windows\System32\secur32.dll2012-03-02 11:59:03 22016 ----a-w- C:\Windows\SysWow64\secur32.dll2012-03-02 11:58:57 28760 ----a-w- C:\Program Files (x86)\Mozilla Firefox\distribution\bundles\{D19CA586-DD6C-4a0a-96F8-14644F340D60}\components\scriptff.dll2012-03-02 11:56:35 1739160 ----a-w- C:\Windows\System32\ntdll.dll2012-03-02 11:56:33 1292592 ----a-w- C:\Windows\SysWow64\ntdll.dll2012-03-02 02:05:09 -------- d-----w- C:\Program Files\WiseFixer2012-03-02 01:04:10 -------- d-----w- C:\ProgramData\Spybot - Search & Destroy2012-03-02 01:04:10 -------- d-----w- C:\Program Files (x86)\Spybot - Search & Destroy2012-02-04 16:33:40 514560 ----a-w- C:\Windows\SysWow64\qdvd.dll2012-02-04 16:33:38 366592 ----a-w- C:\Windows\System32\qdvd.dll2012-02-04 16:30:18 95088 ----a-w- C:\Windows\System32\drivers\ksecdd.sys2012-02-04 16:30:18 224768 ----a-w- C:\Windows\SysWow64\schannel.dll2012-02-04 16:30:17 96768 ----a-w- C:\Windows\SysWow64\sspicli.dll2012-02-04 16:30:17 31232 ----a-w- C:\Windows\System32\lsass.exe2012-02-04 16:30:17 28672 ----a-w- C:\Windows\System32\sspisrv.dll.==================== Find3M ====================..============= FINISH: 11:22:49.30 ===============.UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.IF REQUESTED, ZIP IT UP & ATTACH IT.DDS (Ver_2011-08-26.01).Microsoft Windows 7 Home PremiumBoot Device: \Device\HarddiskVolume2Install Date: 3/1/2011 6:36:55 PMSystem Uptime: 3/3/2012 11:02:27 AM (0 hours ago).Motherboard: Alienware | | Processor: Intel® Core i7 CPU Q 740 @ 1.73GHz | CPU 1 | 1730/133mhz.==== Disk Partitions =========================.C: is FIXED (NTFS) - 917 GiB total, 816.404 GiB free.D: is CDROM ()Y: is FIXED (NTFS) - 15 GiB total, 8.199 GiB free..==== Disabled Device Manager Items =============.Class GUID: {6bdd1fc6-810f-11d0-bec7-08002be2092f}Description: facap, FastAccess Video CaptureDevice ID: ROOT\IMAGE\0000Manufacturer: Sensible VisionName: facap, FastAccess Video CapturePNP Device ID: ROOT\IMAGE\0000Service: FACAP.==== System Restore Points ===================.RP70: 1/25/2012 7:39:06 PM - Windows Modules InstallerRP71: 1/25/2012 7:39:55 PM - Windows Modules InstallerRP72: 2/4/2012 12:08:34 PM - Windows UpdateRP73: 2/27/2012 7:37:18 AM - Windows UpdateRP74: 3/1/2012 7:38:54 PM - Windows UpdateRP75: 3/2/2012 6:52:23 AM - Windows UpdateRP76: 3/3/2012 8:05:04 AM - Windows Update.==== Installed Programs ======================.µTorrentAccelerometerAdd or Remove Adobe Creative Suite 3 Production PremiumAdobe After Effects CS3Adobe After Effects CS3 PresetsAdobe After Effects CS3 Template Projects & FootageAdobe After Effects CS3 Third Party ContentAdobe Anchor Service CS3Adobe Asset Services CS3Adobe Bridge CS3Adobe Bridge Start MeetingAdobe Camera Raw 4.0Adobe CMapsAdobe Color - Photoshop SpecificAdobe Color Common SettingsAdobe Color EU Extra SettingsAdobe Color JA Extra SettingsAdobe Color NA Recommended SettingsAdobe Creative Suite 3 Production PremiumAdobe Default Language CS3Adobe Device Central CS3Adobe Encore CS3Adobe Encore CS3 CodecsAdobe Encore CS3 LibraryAdobe ExtendScript Toolkit 2Adobe Extension Manager CS3Adobe Flash CS3Adobe Flash Player 10 ActiveXAdobe Flash Player 10 PluginAdobe Flash Player 9 ActiveXAdobe Flash Video EncoderAdobe Fonts AllAdobe Glyphlet Creation Tool CS3Adobe Help Viewer CS3Adobe Illustrator CS3Adobe Linguistics CS3Adobe MotionPicture Color FilesAdobe PDF Library FilesAdobe Photoshop CS3Adobe Premiere Pro CS3Adobe Premiere Pro CS3 Functional ContentAdobe Premiere Pro CS3 Third Party ContentAdobe Reader 9.1.2Adobe SetupAdobe Soundbooth CS3Adobe Soundbooth CS3 CodecsAdobe Soundbooth CS3 ScoresAdobe Stock Photos CS3Adobe Type SupportAdobe Update Manager CS3Adobe Version Cue CS3 ClientAdobe Video ProfilesAdobe WAS CS3Adobe WinSoft Linguistics PluginAdobe XMP DVA Panels CS3Adobe XMP Panels CS3Advanced Audio FX EngineAHV content for Acrobat and FlashAIM 7Akamai NetSession InterfaceAkamai NetSession Interface ServiceAlienRespawnAlienRespawn - Support SoftwareApple Application SupportApple Software UpdateCatalyst Control Center - BrandingCatalyst Control Center Graphics Previews CommonCatalyst Control Center Graphics Previews VistaCatalyst Control Center InstallProxyCatalyst Control Center Localization Allccc-core-staticCCC Help Chinese StandardCCC Help Chinese TraditionalCCC Help DanishCCC Help DutchCCC Help EnglishCCC Help FinnishCCC Help FrenchCCC Help GermanCCC Help ItalianCCC Help JapaneseCCC Help KoreanCCC Help NorwegianCCC Help PortugueseCCC Help RussianCCC Help SpanishCCC Help SwedishCisco EAP-FAST ModuleCisco LEAP ModuleCisco PEAP ModuleCommand CenterCyberLink PowerDVD 9.5Definition Update for Microsoft Office 2010 (KB982726) 32-Bit EditionDell InHome Service AgreementDirectX 9 RuntimeDownload Updater (AOL LLC)Integrated Webcam Live! CentralIntel® Control CenterIntel® Rapid Storage TechnologyJava Auto UpdaterJava 6 Update 22LoJack Factory InstallerMalwarebytes Anti-Malware version 1.60.1.1000McAfee SecurityCenterMicrosoft Office 2010 Service Pack 1 (SP1)Microsoft Office Access MUI (English) 2010Microsoft Office Access Setup Metadata MUI (English) 2010Microsoft Office Excel MUI (English) 2010Microsoft Office Home and Student 2010Microsoft Office OneNote MUI (English) 2010Microsoft Office Outlook MUI (English) 2010Microsoft Office PowerPoint MUI (English) 2010Microsoft Office Proof (English) 2010Microsoft Office Proof (French) 2010Microsoft Office Proof (Spanish) 2010Microsoft Office Proofing (English) 2010Microsoft Office Publisher MUI (English) 2010Microsoft Office Shared MUI (English) 2010Microsoft Office Shared Setup Metadata MUI (English) 2010Microsoft Office Single Image 2010Microsoft Office Word MUI (English) 2010Microsoft SilverlightMicrosoft Visual C++ 2005 RedistributableMicrosoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161MSXML 4.0 SP2 (KB954430)MSXML 4.0 SP2 (KB973688)OSD SetupPDF SettingsPhotoShowExpressQuickTimeRoxio Activation ModuleRoxio BackOnTrackRoxio BurnRoxio Creator StarterRoxio Express Labeler 3Security Update for Microsoft .NET Framework 4 Client Profile (KB2160841)Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)Security Update for Microsoft Office 2010 (KB2553091)Security Update for Microsoft Office 2010 (KB2553096)Security Update for Microsoft Office 2010 (KB2589320) 32-Bit EditionSecurity Update for Microsoft PowerPoint 2010 (KB2553185) 32-Bit EditionSecurity Update for Microsoft SharePoint Workspace 2010 (KB2566445)Security Update for Microsoft Visio Viewer 2010 (KB2597170) 32-Bit EditionSkype ToolbarsSkype™ 5.3Sonic CinePlayer Decoder PackSpybot - Search & DestroySteamUpdate for Microsoft .NET Framework 4 Client Profile (KB2468871)Update for Microsoft .NET Framework 4 Client Profile (KB2473228)Update for Microsoft .NET Framework 4 Client Profile (KB2533523)Update for Microsoft Excel 2010 (KB2553439) 32-Bit EditionUpdate for Microsoft Office 2010 (KB2494150)Update for Microsoft Office 2010 (KB2553065)Update for Microsoft Office 2010 (KB2553181) 32-Bit EditionUpdate for Microsoft Office 2010 (KB2553270) 32-Bit EditionUpdate for Microsoft Office 2010 (KB2553310) 32-Bit EditionUpdate for Microsoft Office 2010 (KB2553385) 32-Bit EditionUpdate for Microsoft Office 2010 (KB2566458)Update for Microsoft Office 2010 (KB2596964) 32-Bit EditionUpdate for Microsoft Office 2010 (KB2597091) 32-Bit EditionUpdate for Microsoft OneNote 2010 (KB2553290) 32-Bit EditionUpdate for Microsoft Outlook 2010 (KB2553323) 32-Bit EditionUpdate for Microsoft Outlook Social Connector (KB2583935).==== Event Viewer Messages From Past Week ========.3/2/2012 7:11:12 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2640148).3/2/2012 7:02:12 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2660075).3/2/2012 6:58:21 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2660465).3/2/2012 6:58:00 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2645640).3/2/2012 6:57:59 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2654428).3/2/2012 6:57:59 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Microsoft .NET Framework 3.5.1 on Windows 7 and Windows Server 2008 R2 for x64-based Systems (KB2633879).3/2/2012 6:57:59 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Cumulative Security Update for Internet Explorer 8 for Windows 7 for x64-based Systems (KB2647516).3/2/2012 6:51:44 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800f0816: Update for Windows 7 for x64-based Systems (KB2632503).3/2/2012 6:51:44 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800f0816: Security Update for Windows 7 for x64-based Systems (KB2644615).3/2/2012 6:51:44 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800f0816: Security Update for Windows 7 for x64-based Systems (KB2631813).3/2/2012 6:51:44 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800f0816: Security Update for Windows 7 for x64-based Systems (KB2585542).3/2/2012 6:51:44 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800f0816: Security Update for Microsoft .NET Framework 3.5.1 on Windows 7 and Windows Server 2008 R2 for x64-based Systems (KB2656355).3/2/2012 6:48:23 AM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Alienware Fusion Service service to connect.3/2/2012 6:48:23 AM, Error: Service Control Manager [7000] - The Alienware Fusion Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.3/1/2012 10:30:39 PM, Error: BTHUSB [17] - The local Bluetooth adapter has failed in an undetermined manner and will not be used. The driver has been unloaded..==== End Of File ===========================Please help!! My computer is only 1 years old and should not be so slow and sad. Thank you soo much in advance!! Link to post Share on other sites More sharing options...
LDTate Posted March 5, 2012 ID:532906 Share Posted March 5, 2012 Logs will be closed if you haven't replied within 3 days Please don't attach the scans / logs for these tools, use "copy/paste".DO NOT use any TOOLS such as Combofix or HijackThis fixes without supervision.Doing so could make your pc inoperatible and could require a full reinstall of your OS, losing all your programs and data.Please run a new MBAM scan being sure to update before scanning.Post the scan resultsAlso please describe how your computer behaves at the moment.Please don't attach the scans / logs, use "copy/paste". Link to post Share on other sites More sharing options...
LDTate Posted March 11, 2012 ID:533990 Share Posted March 11, 2012 Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread. Other members who need assistance please start your own topic in a new thread. Thanks! Link to post Share on other sites More sharing options...
Recommended Posts