jaysbar Posted July 31, 2012 ID:579206 Share Posted July 31, 2012 I've got some junk on this laptop. Can you please assist?Thanks in advance.Please find in orderdssattachrkill report Link to post Share on other sites More sharing options...
jaysbar Posted July 31, 2012 Author ID:579207 Share Posted July 31, 2012 .DDS (Ver_2011-08-26.01) - NTFSAMD64Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 10.4.1Run by Lexi laptop at 17:17:26 on 2012-07-31Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.3003.2041 [GMT -4:00].AV: Microsoft Security Essentials *Disabled/Updated* {9765EA51-0D3C-7DFB-6091-10E4E1F341F6}SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}SP: Microsoft Security Essentials *Enabled/Updated* {2C040BB5-2B06-7275-5A21-2B969A740B4B}.============== Running Processes ===============.C:\Windows\system32\wininit.exeC:\Windows\system32\lsm.exeC:\Windows\system32\svchost.exe -k DcomLaunchC:\Windows\system32\svchost.exe -k RPCSSC:\Windows\System32\svchost.exe -k LocalServiceNetworkRestrictedC:\Windows\System32\svchost.exe -k LocalSystemNetworkRestrictedC:\Windows\system32\svchost.exe -k netsvcsC:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exeC:\Windows\system32\svchost.exe -k LocalServiceC:\Windows\system32\svchost.exe -k NetworkServiceC:\Windows\System32\spoolsv.exeC:\Program Files\SUPERAntiSpyware\SASCORE64.EXEC:\Program Files\Realtek\Audio\HDA\AERTSr64.exeC:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exeC:\Program Files\Bonjour\mDNSResponder.exeC:\Windows\System32\svchost.exe -k LocalServiceNoNetworkC:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exeC:\Program Files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exeC:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exeC:\Windows\system32\msiexec.exeC:\Windows\system32\taskhost.exeC:\Program Files (x86)\CyberLink\Shared files\RichVideo.exeC:\Program Files (x86)\Photodex\ProShowGold\ScsiAccess.exeC:\Windows\system32\svchost.exe -k imgsvcC:\Windows\system32\Dwm.exeC:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXEC:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exeC:\Windows\System32\igfxtray.exeC:\Windows\System32\hkcmd.exeC:\Windows\System32\igfxpers.exeC:\Program Files\Synaptics\SynTP\SynTPEnh.exeC:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exeC:\Program Files (x86)\Realtek\Audio\OSD\RtVOsd64.exeC:\Program Files\Java\jre6\bin\jusched.exeC:\Windows\System32\rundll32.exeC:\Windows\SysWOW64\rundll32.exeC:\Program Files (x86)\PIXELA\Everio MediaBrowser 3\MBCameraMonitor.exeC:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exeC:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exeC:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exeC:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files\Synaptics\SynTP\SynTPHelper.exeC:\Windows\system32\SearchIndexer.exeC:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonationC:\Windows\system32\wbem\wmiprvse.exeC:\Program Files\iPod\bin\iPodService.exeC:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\system32\taskeng.exeC:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exeC:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exeC:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exeC:\Windows\system32\DllHost.exeC:\Windows\system32\sppsvc.exeC:\Program Files\Windows Media Player\wmpnetwk.exeC:\Windows\system32\wbem\wmiprvse.exeC:\Windows\system32\SearchProtocolHost.exeC:\Windows\system32\SearchFilterHost.exeC:\Windows\explorer.exe"C:\Windows\SysWOW64\svchost.exe" -k LocalServiceDnsC:\Windows\system32\DllHost.exeC:\Windows\system32\DllHost.exeC:\Windows\SysWOW64\cmd.exeC:\Windows\system32\conhost.exeC:\Windows\SysWOW64\cscript.exe.============== Pseudo HJT Report ===============.uStart Page = hxxp://www.google.com/uInternet Settings,ProxyOverride = *.localmWinlogon: Userinit=userinit.exe,BHO: HP Print Enhancer: {0347c33e-8762-4905-bf09-768834316c61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dllBHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dllBHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLLBHO: Java Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dllBHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dllBHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLLBHO: Microsoft Live Search Toolbar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files (x86)\MSN\Toolbar\3.0.0566.0\msneshellx.dllBHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dllBHO: HP Smart BHO Class: {ffffffff-cf4e-4f2b-bdc2-0e72e116a856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dllTB: Microsoft Live Search Toolbar: {1e61ed7c-7cb8-49d6-b9e9-ab4c880c8414} - c:\Program Files (x86)\MSN\Toolbar\3.0.0566.0\msneshellx.dllTB: ShopAtHome.com Toolbar: {98279c38-de4b-4bcf-93c9-8ec26069d6f4} - C:\Program Files (x86)\SelectRebates\Toolbar\ShopAtHomeToolbar.dllTB: {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No FileEB: HP Smart Web Printing: {555d4d79-4bd2-4094-a395-cfc534424a05} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_bho.dlluRun: [cetape] "C:\Windows\System32\rundll32.exe" "C:\Users\Lexi laptop\AppData\Roaming\cetape.dll",get_sCALuRun: [sUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exemRun: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exemRun: [<NO NAME>]mRun: [WirelessAssistant] C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exemRun: [selectRebates] C:\Program Files (x86)\SelectRebates\SelectRebates.exemRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottimemRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"mRun: [bCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServicesStartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\DEVICE~1.LNK - C:\Program Files (x86)\PIXELA\Everio MediaBrowser 3\MBCameraMonitor.exemPolicies-explorer: NoActiveDesktop = 1 (0x1)mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)mPolicies-system: EnableUIADesktopToggle = 0 (0x0)mPolicies-system: PromptOnSecureDesktop = 0 (0x0)IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~3\Office14\EXCEL.EXE/3000IE: Se&nd to OneNote - C:\PROGRA~2\MICROS~3\Office14\ONBttnIE.dll/105IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dllIE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dllIE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dllIE: {DDE87865-83C5-48c4-8357-2F5B1AA84522} - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dllLSP: mswsock.dllTrusted Zone: darden.com\bosclusterTrusted Zone: darden.com\gpweb2Trusted Zone: darden.com\laborTrusted Zone: darden.com\parpullTrusted Zone: darden.com\secureaccessTrusted Zone: intuit.com\ttlcTrusted Zone: rhapsody.com\rhap-app-4-0Trusted Zone: rhapsody.com\rhapregDPF: {1663ed61-23eb-11d2-b92f-008048fdd814} - hxxps://pconweb.darden.com/includes/smsx_6_3_436_30.cabDPF: {88D969C0-F192-11D4-A65F-0040963251E5} - file:///C:/Program%20Files%20(x86)/FastVideoIndexer/data/dialogs/msxml4.cabDPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_04-windows-i586.cabDPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} - hxxp://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework//microsoft/wrc32.ocxDPF: {CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cabDPF: {CAFEEFAC-0017-0000-0004-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_04-windows-i586.cabDPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cabDPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cabDPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} - hxxps://secureaccess.darden.com/dana-cached/sc/JuniperSetupClient.cabTCP: Interfaces\{3D365F3F-3BAF-47E1-928C-7A36D79806C6} : DhcpNameServer = 74.128.17.114 74.128.19.102TCP: Interfaces\{3D365F3F-3BAF-47E1-928C-7A36D79806C6}\2656C6B696E6534376 : DhcpNameServer = 192.168.2.1 205.152.37.23 205.152.132.23 12.127.16.67TCP: Interfaces\{3D365F3F-3BAF-47E1-928C-7A36D79806C6}\2656C6B696E6E2036326 : DhcpNameServer = 192.168.2.1TCP: Interfaces\{3D365F3F-3BAF-47E1-928C-7A36D79806C6}\34F6D666F627470294E6E6 : DhcpNameServer = 8.8.8.8 4.2.2.2TCP: Interfaces\{3D365F3F-3BAF-47E1-928C-7A36D79806C6}\54C602E4F60716C60233 : DhcpNameServer = 192.168.1.1TCP: Interfaces\{3D365F3F-3BAF-47E1-928C-7A36D79806C6}\C456567237 : DhcpNameServer = 184.16.4.22 184.16.4.23Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLLHandler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dllSEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLLmASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "C:\Program Files (x86)\Common Files\LightScribe\LSRunOnce.exe"BHO-X64: HP Print Enhancer: {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dllBHO-X64: HP Print Enhancer - No FileBHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dllBHO-X64: AcroIEHelperStub - No FileBHO-X64: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLLBHO-X64: Java Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dllBHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dllBHO-X64: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLLBHO-X64: URLRedirectionBHO - No FileBHO-X64: Microsoft Live Search Toolbar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files (x86)\MSN\Toolbar\3.0.0566.0\msneshellx.dllBHO-X64: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dllBHO-X64: HP Smart BHO Class: {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dllBHO-X64: HP Smart BHO Class - No FileTB-X64: Microsoft Live Search Toolbar: {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - c:\Program Files (x86)\MSN\Toolbar\3.0.0566.0\msneshellx.dllTB-X64: ShopAtHome.com Toolbar: {98279C38-DE4B-4bcf-93C9-8EC26069D6F4} - C:\Program Files (x86)\SelectRebates\Toolbar\ShopAtHomeToolbar.dllTB-X64: {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No FileEB-X64: {555D4D79-4BD2-4094-A395-CFC534424A05} - No FilemRun-x64: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exemRun-x64: [(Default)]mRun-x64: [WirelessAssistant] C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exemRun-x64: [selectRebates] C:\Program Files (x86)\SelectRebates\SelectRebates.exemRun-x64: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottimemRun-x64: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"mRun-x64: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"mRun-x64: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"mRun-x64: [bCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServicesSEH-X64: Groove GFS Stub Execution Hook: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~2\MICROS~3\Office14\GROOVEEX.DLLHosts: 127.0.1.11 boscluster.darden.comHosts: 127.0.1.13 parpull.darden.comHosts: 127.0.1.12 labor.darden.comHosts: 127.0.1.10 gpweb2.darden.comHosts: 65.196.165.254 secureaccess.darden.com.================= FIREFOX ===================.FF - ProfilePath - C:\Users\Lexi laptop\AppData\Roaming\Mozilla\Firefox\Profiles\erltjssn.default\FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/FF - prefs.js: network.proxy.type - 0FF - component: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpClipBook.dllFF - component: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpClipBookDB.dllFF - component: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpNeoLogger.dllFF - component: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSaturn.dllFF - component: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSeymour.dllFF - component: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSmartSelect.dllFF - component: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSmartWebPrinting.dllFF - component: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpSWPOperation.dllFF - component: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPLogging.dllFF - component: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPMTC.dllFF - component: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXPMTL.dllFF - component: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3\components\hpXREStub.dllFF - plugin: C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLLFF - plugin: C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLLFF - plugin: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dllFF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dllFF - plugin: c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrlui.dllFF - plugin: C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dllFF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dllFF - plugin: C:\Users\Lexi laptop\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dllFF - plugin: C:\Users\Lexi laptop\AppData\Roaming\Mozilla\plugins\npPxPlay.dllFF - plugin: C:\Windows\SysWOW64\Adobe\Director\np32dsw.dllFF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_268.dllFF - plugin: C:\Windows\SysWOW64\npDeployJava1.dllFF - plugin: C:\Windows\SysWOW64\npmproxy.dll.============= SERVICES / DRIVERS ===============.R1 SASDIFSV;SASDIFSV;C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys [2011-7-22 14928]R1 SASKUTIL;SASKUTIL;C:\Program Files\SUPERAntiSpyware\saskutil64.sys [2011-7-12 12368]R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys --> C:\Windows\system32\DRIVERS\vwififlt.sys [?]R2 !SASCORE;SAS Core Service;C:\Program Files\SUPERAntiSpyware\SASCore64.exe [2011-8-11 140672]R2 AERTFilters;Andrea RT Filters Service;C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2010-4-27 98208]R2 HP Support Assistant Service;HP Support Assistant Service;C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe [2011-9-9 86072]R2 HPDrvMntSvc.exe;HP Quick Synchronization Service;C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2011-3-28 94264]R2 HPWMISVC;HPWMISVC;C:\Program Files\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2010-1-18 20480]R2 UMVPFSrv;UMVPFSrv;C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [2011-8-19 450848]R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\system32\DRIVERS\Rt64win7.sys --> C:\Windows\system32\DRIVERS\Rt64win7.sys [?]R3 rtl8192se;Realtek Wireless LAN 802.11n PCI-E NIC NT Driver;C:\Windows\system32\DRIVERS\rtl8192se.sys --> C:\Windows\system32\DRIVERS\rtl8192se.sys [?]R3 vwifimp;Microsoft Virtual WiFi Miniport Service;C:\Windows\system32\DRIVERS\vwifimp.sys --> C:\Windows\system32\DRIVERS\vwifimp.sys [?]S1 pjlskfxa;pjlskfxa;\??\C:\Windows\system32\drivers\pjlskfxa.sys --> C:\Windows\system32\drivers\pjlskfxa.sys [?]S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]S2 IntuitUpdateServiceV4;Intuit Update Service v4;C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe [2011-8-25 13672]S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-5-24 250056]S3 LVRS64;Logitech RightSound Filter Driver;C:\Windows\system32\DRIVERS\lvrs64.sys --> C:\Windows\system32\DRIVERS\lvrs64.sys [?]S3 LVUVC64;Logitech HD Webcam C270(UVC);C:\Windows\system32\DRIVERS\lvuvc64.sys --> C:\Windows\system32\DRIVERS\lvuvc64.sys [?]S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2011-6-12 31125880]S3 MozillaMaintenance;Mozilla Maintenance Service;C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-5-4 113120]S3 netw5v64;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;C:\Windows\system32\DRIVERS\netw5v64.sys --> C:\Windows\system32\DRIVERS\netw5v64.sys [?]S3 osppsvc;Office Software Protection Platform;C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-1-9 4925184]S3 SrvHsfHDA;SrvHsfHDA;C:\Windows\system32\DRIVERS\VSTAZL6.SYS --> C:\Windows\system32\DRIVERS\VSTAZL6.SYS [?]S3 SrvHsfV92;SrvHsfV92;C:\Windows\system32\DRIVERS\VSTDPV6.SYS --> C:\Windows\system32\DRIVERS\VSTDPV6.SYS [?]S3 SrvHsfWinac;SrvHsfWinac;C:\Windows\system32\DRIVERS\VSTCNXT6.SYS --> C:\Windows\system32\DRIVERS\VSTCNXT6.SYS [?]S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys --> C:\Windows\system32\drivers\tsusbflt.sys [?]S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\system32\Drivers\usbaapl64.sys --> C:\Windows\system32\Drivers\usbaapl64.sys [?]S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;C:\Windows\system32\DRIVERS\yk62x64.sys --> C:\Windows\system32\DRIVERS\yk62x64.sys [?].=============== Created Last 30 ================.2012-07-31 21:15:30 50392 ----a-w- C:\Windows\System32\drivers\pjlskfxa.sys2012-07-31 21:04:41 328704 ----a-w- C:\Windows\System32\services.exe.530381D50A8282902012-07-31 20:38:04 328704 ----a-w- C:\Windows\System32\services.exe.A57BBFBC5515A7912012-07-31 20:09:04 328704 ----a-w- C:\Windows\System32\services.exe.09BBA19C028C92B12012-07-31 20:03:15 328704 ----a-w- C:\Windows\System32\services.exe.C26392310BCF0D752012-07-31 19:58:23 328704 ----a-w- C:\Windows\System32\services.exe.56891DC9D94053D92012-07-31 19:56:06 -------- d-----w- C:\Users\Lexi laptop\AppData\Roaming\SUPERAntiSpyware.com2012-07-31 19:55:36 -------- d-----w- C:\ProgramData\SUPERAntiSpyware.com2012-07-31 19:55:36 -------- d-----w- C:\Program Files\SUPERAntiSpyware2012-07-27 17:39:13 -------- d-----w- C:\Users\Lexi laptop\AppData\Local\{F5FC4D00-D811-11E1-8270-B8AC6F996F26}2012-07-27 17:39:11 428544 ----a-w- C:\Users\Lexi laptop\AppData\Roaming\cetape.dll2012-07-27 17:37:53 -------- d-----w- C:\Users\Lexi laptop\AppData\Roaming\xsecva2012-07-26 23:35:10 -------- d-sh--w- C:\Windows\SysWow64\%APPDATA%2012-07-22 16:07:21 -------- d-----w- C:\Program Files (x86)\Microsoft Synchronization Services2012-07-22 16:06:40 -------- d-----w- C:\Windows\PCHEALTH2012-07-22 16:02:31 -------- d-----w- C:\Program Files (x86)\Microsoft Visual Studio 82012-07-22 16:02:03 -------- d-----w- C:\Program Files (x86)\Microsoft Analysis Services2012-07-20 02:32:53 -------- d-----w- C:\Users\Lexi laptop\AppData\Local\{ECC7152B-D88C-4B8A-B498-E8C76EAA6BF3}2012-07-20 02:32:28 -------- d-----w- C:\Users\Lexi laptop\AppData\Local\{DD0A565F-E20B-4B6C-8300-7BF195A0CF31}2012-07-20 01:24:48 -------- d-----w- C:\Users\Lexi laptop\AppData\Local\{F49DD4A6-3835-42D0-9D95-58DABE319BBB}2012-07-20 01:24:25 -------- d-----w- C:\Users\Lexi laptop\AppData\Local\{B8A3C476-67C4-476D-812B-6C9500D10045}2012-07-14 17:33:15 -------- d-----w- C:\Users\Lexi laptop\AppData\Local\Apple Computer2012-07-14 17:33:11 34152 ----a-w- C:\Windows\System32\drivers\GEARAspiWDM.sys2012-07-14 17:33:11 126312 ----a-w- C:\Windows\System32\GEARAspi64.dll2012-07-14 17:33:11 107368 ----a-w- C:\Windows\SysWow64\GEARAspi.dll2012-07-14 17:31:55 -------- d-----w- C:\Program Files\iPod2012-07-14 17:31:53 -------- d-----w- C:\ProgramData\{93E26451-CD9A-43A5-A2FA-C42392EA4001}2012-07-14 17:31:53 -------- d-----w- C:\Program Files\iTunes2012-07-14 17:31:53 -------- d-----w- C:\Program Files (x86)\iTunes2012-07-14 17:30:29 -------- d-----w- C:\Program Files\Bonjour2012-07-14 13:12:23 -------- d-----w- C:\Users\Lexi laptop\AppData\Local\{23347C68-89FD-4608-A4BA-5EAACB3AAC11}2012-07-14 13:12:01 -------- d-----w- C:\Users\Lexi laptop\AppData\Local\{48FFCC4C-A195-4C00-8526-EBC97458E6DF}2012-07-14 09:47:20 3148800 ----a-w- C:\Windows\System32\win32k.sys2012-07-14 02:01:00 -------- d-----w- C:\Users\Lexi laptop\AppData\Local\{8C7075FF-B756-4621-B192-4A0A72228509}2012-07-14 02:00:38 -------- d-----w- C:\Users\Lexi laptop\AppData\Local\{202A2C42-B89F-4263-84F6-9F3CF23D660A}2012-07-13 23:22:58 -------- d-----w- C:\Users\Lexi laptop\AppData\Local\{94760E9E-C64D-439F-9CD3-87EFD320DDC4}2012-07-13 23:22:37 -------- d-----w- C:\Users\Lexi laptop\AppData\Local\{85E528A6-FFDF-4124-BC77-AD965A6C690B}2012-07-12 10:45:06 458704 ----a-w- C:\Windows\System32\drivers\cng.sys2012-07-12 10:45:06 340992 ----a-w- C:\Windows\System32\schannel.dll2012-07-12 10:45:06 307200 ----a-w- C:\Windows\System32\ncrypt.dll2012-07-12 10:45:06 225280 ----a-w- C:\Windows\SysWow64\schannel.dll2012-07-12 10:45:06 219136 ----a-w- C:\Windows\SysWow64\ncrypt.dll2012-07-12 10:45:06 151920 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys2012-07-12 10:45:05 96768 ----a-w- C:\Windows\SysWow64\sspicli.dll2012-07-12 10:45:05 95600 ----a-w- C:\Windows\System32\drivers\ksecdd.sys2012-07-12 10:45:05 22016 ----a-w- C:\Windows\SysWow64\secur32.dll2012-07-11 12:46:10 2004480 ----a-w- C:\Windows\System32\msxml6.dll2012-07-11 12:45:59 57344 ----a-w- C:\Program Files (x86)\Common Files\System\ado\msador15.dll2012-07-11 12:45:59 372736 ----a-w- C:\Program Files (x86)\Common Files\System\ado\msadox.dll2012-07-11 12:45:59 212992 ----a-w- C:\Program Files (x86)\Common Files\System\msadc\msadco.dll2012-07-11 12:45:59 143360 ----a-w- C:\Program Files (x86)\Common Files\System\ado\msjro.dll2012-07-11 12:45:59 1133568 ----a-w- C:\Windows\System32\cdosys.dll2012-07-04 18:56:30 770384 ----a-w- C:\Program Files (x86)\Mozilla Firefox\msvcr100.dll2012-07-04 18:56:30 421200 ----a-w- C:\Program Files (x86)\Mozilla Firefox\msvcp100.dll.==================== Find3M ====================.2012-07-26 20:34:25 70344 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl2012-07-26 20:34:25 426184 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe2012-07-03 17:46:44 24904 ----a-w- C:\Windows\System32\drivers\mbam.sys2012-06-06 06:06:16 1881600 ----a-w- C:\Windows\System32\msxml3.dll2012-06-06 05:05:52 1390080 ----a-w- C:\Windows\SysWow64\msxml6.dll2012-06-06 05:05:52 1236992 ----a-w- C:\Windows\SysWow64\msxml3.dll2012-06-06 05:03:06 805376 ----a-w- C:\Windows\SysWow64\cdosys.dll2012-06-02 22:15:31 2622464 ----a-w- C:\Windows\System32\wucltux.dll2012-06-02 22:15:08 99840 ----a-w- C:\Windows\System32\wudriver.dll2012-06-02 19:19:42 186752 ----a-w- C:\Windows\System32\wuwebv.dll2012-06-02 19:15:12 36864 ----a-w- C:\Windows\System32\wuapp.exe2012-06-02 12:12:17 2311680 ----a-w- C:\Windows\System32\jscript9.dll2012-06-02 12:05:28 1392128 ----a-w- C:\Windows\System32\wininet.dll2012-06-02 12:04:50 1494528 ----a-w- C:\Windows\System32\inetcpl.cpl2012-06-02 12:01:40 173056 ----a-w- C:\Windows\System32\ieUnatt.exe2012-06-02 11:57:08 2382848 ----a-w- C:\Windows\System32\mshtml.tlb2012-06-02 08:33:25 1800192 ----a-w- C:\Windows\SysWow64\jscript9.dll2012-06-02 08:25:08 1129472 ----a-w- C:\Windows\SysWow64\wininet.dll2012-06-02 08:25:03 1427968 ----a-w- C:\Windows\SysWow64\inetcpl.cpl2012-06-02 08:20:33 142848 ----a-w- C:\Windows\SysWow64\ieUnatt.exe2012-06-02 08:16:52 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb2012-05-04 11:06:22 5559664 ----a-w- C:\Windows\System32\ntoskrnl.exe2012-05-04 10:03:53 3968368 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe2012-05-04 10:03:50 3913072 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe.============= FINISH: 17:19:28.69 =============== Link to post Share on other sites More sharing options...
jaysbar Posted July 31, 2012 Author ID:579208 Share Posted July 31, 2012 .UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.IF REQUESTED, ZIP IT UP & ATTACH IT.DDS (Ver_2011-08-26.01).Microsoft Windows 7 Home PremiumBoot Device: \Device\HarddiskVolume1Install Date: 8/3/2010 12:51:02 PMSystem Uptime: 7/31/2012 5:05:40 PM (0 hours ago).Motherboard: Hewlett-Packard | | 1484Processor: Intel® Celeron® CPU 900 @ 2.20GHz | CPU | 1097/800mhz.==== Disk Partitions =========================.C: is FIXED (NTFS) - 219 GiB total, 120.12 GiB free.D: is FIXED (NTFS) - 14 GiB total, 2.308 GiB free.E: is FIXED (FAT32) - 0 GiB total, 0.09 GiB free.F: is CDROM (UDF).==== Disabled Device Manager Items =============.==== System Restore Points ===================.RP434: 7/4/2012 1:09:20 PM - Windows UpdateRP435: 7/8/2012 12:06:59 AM - Windows UpdateRP436: 7/11/2012 7:13:25 PM - Windows UpdateRP437: 7/12/2012 6:25:22 AM - Windows UpdateRP438: 7/12/2012 7:00:25 AM - Installed Java 6 Update 33RP440: 7/14/2012 5:45:59 AM - Windows Modules InstallerRP441: 7/14/2012 1:31:12 PM - Installed iTunesRP442: 7/15/2012 9:10:30 AM - Windows UpdateRP443: 7/18/2012 5:46:16 PM - Windows UpdateRP444: 7/22/2012 8:10:15 AM - Windows UpdateRP445: 7/22/2012 11:59:54 AM - Installed Microsoft Office Professional Plus 2010RP446: 7/25/2012 3:07:16 PM - Windows UpdateRP447: 7/26/2012 12:22:03 PM - Windows Update.==== Installed Programs ======================..Acrobat.comAdobe AIRAdobe Anchor Service CS3Adobe Asset Services CS3Adobe Bridge CS3Adobe Bridge Start MeetingAdobe Camera Raw 4.0Adobe CMapsAdobe Color - Photoshop SpecificAdobe Color Common SettingsAdobe Color EU Extra SettingsAdobe Color JA Extra SettingsAdobe Color NA Recommended SettingsAdobe Default Language CS3Adobe Device Central CS3Adobe ExtendScript Toolkit 2Adobe Flash Player 11 ActiveXAdobe Flash Player 11 PluginAdobe Fonts AllAdobe Help Viewer CS3Adobe Linguistics CS3Adobe PDF Library FilesAdobe Photoshop CS3Adobe Reader 9.5.1Adobe SetupAdobe Shockwave PlayerAdobe Stock Photos CS3Adobe Type SupportAdobe Update Manager CS3Adobe Version Cue CS3 ClientAdobe WinSoft Linguistics PluginAdobe XMP Panels CS3Apple Application SupportApple Software UpdateAudacity 2.0CameraHelperMsiCisco EAP-FAST ModuleCisco LEAP ModuleCisco PEAP ModuleCloneCDCompatibility Pack for the 2007 Office systemCyberLink DVD SuiteCyberLink MediaShowCyberLink PowerDVD 8CyberLink YouCamD3DX10Definition Update for Microsoft Office 2010 (KB982726) 32-Bit EditionerLTESU for Microsoft Windows 7Everio MediaBrowser 3ffdshow v1.1.3949 [2011-07-25]Garmin USB DriversGarmin WebUpdaterHewlett-Packard ACLM.NET v1.1.2.0HP AdvisorHP Customer Experience EnhancementsHP GamesHP SetupHP Smart Web PrintingHP Software FrameworkHP Support AssistantHP UpdateHP User Guides 0178HP Wireless AssistantIntel® Control CenterIntel® Graphics Media Accelerator DriverJava Auto UpdaterJava 6 Update 33Java 7 Update 4JavaFX 2.1.0Juniper Networks Setup ClientJunk Mail filter updateLabelPrintLAME v3.99.3 (for Windows)LightScribe System SoftwareLogitech Webcam SoftwareLWS FacebookLWS GalleryLWS Help_mainLWS LauncherLWS Motion DetectionLWS Pictures And VideoLWS TwitterLWS Video Mask MakerLWS Webcam SoftwareLWS WLM PluginLWS YouTube PluginMalwarebytes Anti-Malware version 1.62.0.1300Microsoft Live Search ToolbarMicrosoft Office 2010 Service Pack 1 (SP1)Microsoft Office Access MUI (English) 2010Microsoft Office Access Setup Metadata MUI (English) 2010Microsoft Office Excel MUI (English) 2010Microsoft Office File Validation Add-InMicrosoft Office Groove MUI (English) 2010Microsoft Office InfoPath MUI (English) 2010Microsoft Office OneNote MUI (English) 2010Microsoft Office Outlook MUI (English) 2010Microsoft Office PowerPoint MUI (English) 2010Microsoft Office PowerPoint Viewer 2007 (English)Microsoft Office Professional Plus 2010Microsoft Office Proof (English) 2010Microsoft Office Proof (French) 2010Microsoft Office Proof (Spanish) 2010Microsoft Office Proofing (English) 2010Microsoft Office Publisher MUI (English) 2010Microsoft Office Shared MUI (English) 2010Microsoft Office Shared Setup Metadata MUI (English) 2010Microsoft Office Suite Activation AssistantMicrosoft Office Word MUI (English) 2010Microsoft SilverlightMicrosoft SQL Server 2005 Compact Edition [ENU]Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053Microsoft Visual C++ 2005 RedistributableMicrosoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161Microsoft WorksMozilla Firefox 14.0.1 (x86 en-US)Mozilla Maintenance ServiceMSVCRTMSVCRT_amd64MSXML 4.0 SP2 (KB954430)MSXML 4.0 SP2 (KB973688)muvee RevealOpenOffice.org 3.3PDF SettingsPhotodex PresenterPower2GoPowerDirectorProShow GoldQuickTimeRealtek Ethernet Controller Driver For Windows 7Realtek High Definition Audio DriverRealtek USB 2.0 Card ReaderREALTEK Wireless LAN SoftwareRecovery ManagerRhapsodySamsung PC Studio 3 USB Driver InstallerSecurity Update for CAPICOM (KB931906)Security Update for Microsoft .NET Framework 4 Client Profile (KB2160841)Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)Security Update for Microsoft Excel 2010 (KB2597166) 32-Bit EditionSecurity Update for Microsoft InfoPath 2010 (KB2553322) 32-Bit EditionSecurity Update for Microsoft InfoPath 2010 (KB2553431) 32-Bit EditionSecurity Update for Microsoft Office 2010 (KB2553091)Security Update for Microsoft Office 2010 (KB2553096)Security Update for Microsoft Office 2010 (KB2553371) 32-Bit EditionSecurity Update for Microsoft Office 2010 (KB2553447) 32-Bit EditionSecurity Update for Microsoft Office 2010 (KB2589320) 32-Bit EditionSecurity Update for Microsoft Office 2010 (KB2598039) 32-Bit EditionSecurity Update for Microsoft Office 2010 (KB2598243) 32-Bit EditionSecurity Update for Microsoft PowerPoint 2010 (KB2553185) 32-Bit EditionSecurity Update for Microsoft SharePoint Workspace 2010 (KB2566445)Security Update for Microsoft Visio Viewer 2010 (KB2597981) 32-Bit EditionShopAtHome.com ToolbarTurboTax 2011TurboTax 2011 winiperTurboTax 2011 WinPerFedFormsetTurboTax 2011 WinPerReleaseEngineTurboTax 2011 WinPerTaxSupportTurboTax 2011 wkyiperTurboTax 2011 wrapperUnity Web PlayerUpdate for Microsoft .NET Framework 4 Client Profile (KB2468871)Update for Microsoft .NET Framework 4 Client Profile (KB2533523)Update for Microsoft .NET Framework 4 Client Profile (KB2600217)Update for Microsoft Office 2010 (KB2553065)Update for Microsoft Office 2010 (KB2553092)Update for Microsoft Office 2010 (KB2553181) 32-Bit EditionUpdate for Microsoft Office 2010 (KB2553267) 32-Bit EditionUpdate for Microsoft Office 2010 (KB2553270) 32-Bit EditionUpdate for Microsoft Office 2010 (KB2553310) 32-Bit EditionUpdate for Microsoft Office 2010 (KB2566458)Update for Microsoft Office 2010 (KB2596964) 32-Bit EditionUpdate for Microsoft Office 2010 (KB2597091) 32-Bit EditionUpdate for Microsoft OneNote 2010 (KB2553290) 32-Bit EditionUpdate for Microsoft OneNote 2010 (KB2589345) 32-Bit EditionUpdate for Microsoft Outlook 2010 (KB2553248) 32-Bit EditionUpdate for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit EditionWindows Live Communications PlatformWindows Live EssentialsWindows Live InstallerWindows Live MailWindows Live MessengerWindows Live Movie MakerWindows Live Photo CommonWindows Live Photo GalleryWindows Live PIMT PlatformWindows Live SOXEWindows Live SOXE DefinitionsWindows Live SyncWindows Live UX PlatformWindows Live UX Platform Language PackWindows Live WriterWindows Live Writer Resources.==== Event Viewer Messages From Past Week ========.7/31/2012 5:09:21 PM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Intuit Update Service v4 service to connect.7/31/2012 5:09:21 PM, Error: Service Control Manager [7000] - The Intuit Update Service v4 service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.7/31/2012 5:07:12 PM, Error: Service Control Manager [7023] - The iPod Service service terminated with the following error: %%-21474178317/31/2012 5:06:15 PM, Error: Service Control Manager [7003] - The IPsec Policy Agent service depends the following service: BFE. This service might not be installed.7/31/2012 5:06:14 PM, Error: Service Control Manager [7003] - The IKE and AuthIP IPsec Keying Modules service depends the following service: BFE. This service might not be installed.7/31/2012 5:06:13 PM, Error: Service Control Manager [7023] - The Computer Browser service terminated with the following error: The specified service does not exist as an installed service.7/31/2012 4:57:22 PM, Error: Service Control Manager [7023] - The Function Discovery Resource Publication service terminated with the following error: %%-21470248917/31/2012 4:57:22 PM, Error: Service Control Manager [7001] - The HomeGroup Provider service depends on the Function Discovery Resource Publication service which failed to start because of the following error: %%-21470248917/31/2012 4:42:59 PM, Error: Service Control Manager [7001] - The HomeGroup Provider service depends on the Function Discovery Provider Host service which failed to start because of the following error: The dependency service or group failed to start.7/31/2012 4:42:58 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}7/31/2012 4:42:58 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}7/31/2012 4:42:56 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}7/31/2012 4:42:50 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC}7/31/2012 4:39:26 PM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: discache ElbyCDIO MpFilter SASDIFSV SASKUTIL spldr Wanarpv67/31/2012 4:39:19 PM, Error: Service Control Manager [7001] - The Computer Browser service depends on the Server service which failed to start because of the following error: The dependency service or group failed to start.7/31/2012 4:01:35 PM, Error: Microsoft Antimalware [1119] -7/28/2012 9:10:58 AM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Wlansvc service.7/27/2012 7:39:02 PM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the ShellHWDetection service.7/27/2012 6:28:41 PM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Netman service.7/27/2012 1:59:33 PM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the UMVPFSrv service..==== End Of File =========================== Link to post Share on other sites More sharing options...
jaysbar Posted July 31, 2012 Author ID:579209 Share Posted July 31, 2012 RogueKiller V7.6.4 [07/17/2012] by Tigzymail: tigzyRK<at>gmail<dot>comFeedback: http://www.geekstogo.com/forum/files/file/413-roguekiller/Blog: http://tigzyrk.blogspot.comOperating System: Windows 7 (6.1.7601 Service Pack 1) 64 bits versionStarted in : Normal modeUser: Lexi laptop [Admin rights]Mode: Scan -- Date: 07/31/2012 17:28:43¤¤¤ Bad processes: 0 ¤¤¤¤¤¤ Registry Entries: 5 ¤¤¤[bLACKLIST DLL] HKCU\[...]\Run : cetape ("C:\Windows\System32\rundll32.exe" "C:\Users\Lexi laptop\AppData\Roaming\cetape.dll",get_sCAL) -> FOUND[bLACKLIST DLL] HKUS\S-1-5-21-3288229863-2875174449-3974300954-1000[...]\Run : cetape ("C:\Windows\System32\rundll32.exe" "C:\Users\Lexi laptop\AppData\Roaming\cetape.dll",get_sCAL) -> FOUND[ZeroAccess] HKCR\[...]\InprocServer32 : (C:\Users\Lexi laptop\AppData\Local\{a5dbb9fd-7ad8-32b0-0ccd-205659c2bd7e}\n.) -> FOUND[HJ] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND[HJ] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND¤¤¤ Particular Files / Folders: ¤¤¤[Tr.Karagany][FOLDER] plugs : c:\users\lexi laptop\appdata\roaming\adobe\plugs --> FOUND[Tr.Karagany][FOLDER] shed : c:\users\lexi laptop\appdata\roaming\adobe\shed --> FOUND[ZeroAccess][FILE] @ : c:\windows\installer\{a5dbb9fd-7ad8-32b0-0ccd-205659c2bd7e}\@ --> FOUND[ZeroAccess][FOLDER] U : c:\windows\installer\{a5dbb9fd-7ad8-32b0-0ccd-205659c2bd7e}\U --> FOUND[ZeroAccess][FOLDER] L : c:\windows\installer\{a5dbb9fd-7ad8-32b0-0ccd-205659c2bd7e}\L --> FOUND[ZeroAccess][FILE] @ : c:\users\lexi laptop\appdata\local\{a5dbb9fd-7ad8-32b0-0ccd-205659c2bd7e}\@ --> FOUND[ZeroAccess][FOLDER] U : c:\users\lexi laptop\appdata\local\{a5dbb9fd-7ad8-32b0-0ccd-205659c2bd7e}\U --> FOUND[ZeroAccess][FOLDER] L : c:\users\lexi laptop\appdata\local\{a5dbb9fd-7ad8-32b0-0ccd-205659c2bd7e}\L --> FOUND[ZeroAccess][FILE] Desktop.ini : c:\windows\assembly\gac_32\desktop.ini --> FOUND[ZeroAccess][FILE] Desktop.ini : c:\windows\assembly\gac_64\desktop.ini --> FOUND¤¤¤ Driver: [NOT LOADED] ¤¤¤¤¤¤ Infection : ZeroAccess ¤¤¤¤¤¤ HOSTS File: ¤¤¤127.0.1.11 boscluster.darden.com127.0.1.13 parpull.darden.com127.0.1.12 labor.darden.com127.0.1.10 gpweb2.darden.com65.196.165.254 secureaccess.darden.com¤¤¤ MBR Check: ¤¤¤+++++ PhysicalDrive0: SAMSUNG HM250HI +++++--- User ---[MBR] 0efe7c268df9305e87d482d1c48880e0[bSP] 38af9ee47f3df132f5ae3c6db44bb59f : Windows Vista/7 MBR CodePartition table:0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 199 Mo1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 409600 | Size: 223877 Mo2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 458909696 | Size: 14294 Mo3 - [XXXXXX] FAT32-LBA (0x0c) [VISIBLE] Offset (sectors): 488183808 | Size: 103 MoUser = LL1 ... OK!User = LL2 ... OK!Finished : << RKreport[1].txt >>RKreport[1].txt Link to post Share on other sites More sharing options...
jaysbar Posted July 31, 2012 Author ID:579234 Share Posted July 31, 2012 My son didn't know I was troubleshooting this and did a system restore back a few days ago. It seems to have solved the problem. All of my scans (virus, malwarebytes, etc) come up clean. How can I be sure it's gone? What are the risks? Thanks. Link to post Share on other sites More sharing options...
Staff screen317 Posted August 7, 2012 Staff ID:581894 Share Posted August 7, 2012 Hi and welcome to Malwarebytes. Please update MBAM, run a Quick Scan, and post its log. Next, download DDS by sUBs and save it to your Desktop. Double-click on the DDS icon and let the scan run. When it has run two logs will be produced, please post only DDS.txt directly into your reply. Link to post Share on other sites More sharing options...
Staff screen317 Posted August 15, 2012 Staff ID:585394 Share Posted August 15, 2012 Are you still with us? This topic will be closed in a few days if we do not hear back from you. Link to post Share on other sites More sharing options...
Staff screen317 Posted August 22, 2012 Staff ID:588826 Share Posted August 22, 2012 Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread. Other members who need assistance please start your own topic in a new thread. Thanks! Link to post Share on other sites More sharing options...
Recommended Posts