Jump to content

Am I infected? DDS included


Rhoryn

Recommended Posts

Im not sure whether this is because of the free trial that randomly activated or not but this has never happened before today and im skeptical of what it could be, i keep getting a lot of pop ups saying a site has been blocked so here's my DDS thing..

Ok so just today randomly i have been getting pop ups saying malwarebytes has blocked malware sites in the bottom right of my screen and i have been looking on the internet and it looks like its a sign i'm infected so heres the dds thing..

DDS (Ver_2011-08-26.01) - NTFSAMD64

Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 10.7.2

Run by Josh at 23:56:29 on 2012-09-15

Microsoft Windows 7 Home Premium 6.1.7601.1.1252.44.1033.18.8094.5169 [GMT 1:00]

.

AV: avast! Internet Security *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}

SP: avast! Internet Security *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}

SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

FW: avast! Internet Security *Enabled* {131692B0-0864-D491-4E21-3A3A1D8BBB47}

.

============== Running Processes ===============

.

C:\Windows\system32\wininit.exe

C:\Windows\system32\lsm.exe

C:\Windows\system32\svchost.exe -k DcomLaunch

C:\Windows\system32\nvvsvc.exe

C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

C:\Windows\system32\svchost.exe -k RPCSS

C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted

C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted

C:\Windows\system32\svchost.exe -k netsvcs

c:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe

C:\Windows\system32\svchost.exe -k LocalService

C:\Windows\system32\svchost.exe -k NetworkService

C:\Program Files\AVAST Software\Avast\AvastSvc.exe

C:\Program Files\AVAST Software\Avast\afwServ.exe

C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe

C:\Windows\system32\nvvsvc.exe

C:\Windows\System32\spoolsv.exe

C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork

C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE

C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

C:\Program Files (x86)\Bluetooth Suite\adminservice.exe

C:\Windows\sysWow64\CtHdaSvc.exe

c:\Program Files\Intel\iCLS Client\HeciServer.exe

C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe

C:\Windows\SysWOW64\PnkBstrA.exe

C:\Windows\system32\taskhost.exe

C:\Program Files\Bigfoot Networks\Killer Network Manager\BFNService.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe

C:\Program Files (x86)\AlienRespawn\sftservice.EXE

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

C:\Windows\system32\Dwm.exe

C:\Windows\Explorer.EXE

C:\Windows\system32\wbem\wmiprvse.exe

C:\Program Files (x86)\AlienRespawn\TOASTER.EXE

C:\Program Files (x86)\AlienRespawn\COMPONENTS\SCHEDULER\STSERVICE.EXE

C:\Program Files (x86)\AlienRespawn\Components\DSUpdate\DSUpd.exe

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe

C:\Windows\system32\svchost.exe -k bthsvcs

C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted

C:\Program Files\NVIDIA Corporation\Display\nvtray.exe

C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe

C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe

C:\Windows\System32\igfxtray.exe

C:\Windows\System32\hkcmd.exe

C:\Windows\System32\igfxpers.exe

C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE

C:\Program Files\Alienware\Alienware TactX Mouse CI\AWMouseCI.exe

C:\Windows\system32\SearchIndexer.exe

C:\Program Files\Bigfoot Networks\Killer Network Manager\KillerNetManager.exe

C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE

C:\Program Files\Alienware\Command Center\AWCCServiceController.exe

C:\Program Files (x86)\Creative\Sound Blaster Recon3Di\Sound Blaster Recon3Di Control Panel\SBRcni.exe

C:\Program Files (x86)\Creative\Sound Blaster Recon3Di\Sound Blaster Recon3Di Control Panel\CTJckCfg.exe

C:\Program Files (x86)\Alienware On-Screen Display\AlienwareOn-ScreenDisplay.exe

C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE

C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe

C:\Program Files (x86)\Integrated Webcam\Live! Central\WebcamInt.exe

C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe

C:\Program Files (x86)\CyberLink\Shared files\brs.exe

C:\Program Files\AVAST Software\Avast\AvastUI.exe

C:\Program Files\Windows Media Player\wmpnetwk.exe

C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

C:\Program Files\Alienware\Command Center\AlienwareAlienFXController.exe

C:\Program Files\Alienware\Command Center\AWCCApplicationWatcher32.exe

C:\Program Files\Alienware\Command Center\AWCCApplicationWatcher64.exe

C:\Windows\system32\conhost.exe

C:\Windows\system32\conhost.exe

C:\Program Files\Alienware\Command Center\AlienFusionService.exe

C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

C:\Program Files\Alienware\Command Center\AlienFusionController.exe

C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe

C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe

C:\Windows\System32\svchost.exe -k secsvcs

C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe

C:\Program Files (x86)\Steam\steam.exe

C:\Program Files (x86)\Common Files\Steam\SteamService.exe

C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe

C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe

C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

C:\Windows\system32\SearchProtocolHost.exe

C:\Windows\system32\SearchFilterHost.exe

C:\Windows\system32\DllHost.exe

C:\Windows\system32\DllHost.exe

C:\Windows\SysWOW64\cmd.exe

C:\Windows\system32\conhost.exe

C:\Windows\SysWOW64\cscript.exe

.

============== Pseudo HJT Report ===============

.

uStart Page = hxxp://www.alienwarearena.com/welcome-uk

uDefault_Page_URL = hxxp://www.alienwarearena.com/welcome-uk

mWinlogon: Userinit=userinit.exe

BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

BHO: Java™ Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll

BHO: CIESpeechBHO Class: {8d10f6c4-0e01-4bd4-8601-11ac1fdf8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll

BHO: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll

BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll

TB: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll

uRun: [sUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe

uRun: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background

mRun: [updReg] C:\Windows\UpdReg.EXE

mRun: [sound Blaster Recon3Di Control Panel] "c:\Program Files (x86)\Creative\Sound Blaster Recon3Di\Sound Blaster Recon3Di Control Panel\SBRcni.exe" /r

mRun: [AlienwareOn-ScreenDisplay] C:\Program Files (x86)\Alienware On-Screen Display\AlienwareOn-ScreenDisplay.exe

mRun: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

mRun: [uSB3MON] "C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"

mRun: [integrated Webcam Live! Central] "C:\Program Files (x86)\Integrated Webcam\Live! Central\WebcamInt.exe" /mode2

mRun: [RemoteControl9] "C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe"

mRun: [PDVD9LanguageShortcut] "C:\Program Files (x86)\CyberLink\PowerDVD9\Language\Language.exe"

mRun: [bDRegion] C:\Program Files (x86)\Cyberlink\Shared Files\brs.exe

mRun: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui

mRun: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\AWMOUS~1.LNK - C:\Program Files (x86)\Alienware\Alienware TactX Mouse CI\AWMouseCI.exe

StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\QUALCO~1.LNK - C:\Program Files (x86)\Bigfoot Networks\Killer Network Manager\KillerNetManager.exe

mPolicies-explorer: NoActiveDesktop = 1 (0x1)

mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)

mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)

mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)

mPolicies-system: EnableUIADesktopToggle = 0 (0x0)

IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll

IE: {7815BE26-237D-41A8-A98F-F7BD75F71086} - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll

LSP: %SYSTEMROOT%\system32\BfLLR.dll

Trusted Zone: clonewarsadventures.com

Trusted Zone: freerealms.com

Trusted Zone: soe.com

Trusted Zone: sony.com

TCP: DhcpNameServer = 62.24.202.69 62.24.134.6

TCP: Interfaces\{5E1ADC20-5BB7-4C76-BD99-7109D0C52C8E} : DhcpNameServer = 62.24.202.69 62.24.134.6

Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL

Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll

AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll

BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll

BHO-X64: AcroIEHelperStub - No File

BHO-X64: Java™ Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll

BHO-X64: CIESpeechBHO Class: {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll

BHO-X64: IESpeakDoc - No File

BHO-X64: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll

BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

BHO-X64: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll

TB-X64: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll

mRun-x64: [updReg] C:\Windows\UpdReg.EXE

mRun-x64: [sound Blaster Recon3Di Control Panel] "c:\Program Files (x86)\Creative\Sound Blaster Recon3Di\Sound Blaster Recon3Di Control Panel\SBRcni.exe" /r

mRun-x64: [AlienwareOn-ScreenDisplay] C:\Program Files (x86)\Alienware On-Screen Display\AlienwareOn-ScreenDisplay.exe

mRun-x64: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

mRun-x64: [uSB3MON] "C:\Program Files (x86)\Intel\Intel® USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"

mRun-x64: [integrated Webcam Live! Central] "C:\Program Files (x86)\Integrated Webcam\Live! Central\WebcamInt.exe" /mode2

mRun-x64: [RemoteControl9] "C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe"

mRun-x64: [PDVD9LanguageShortcut] "C:\Program Files (x86)\CyberLink\PowerDVD9\Language\Language.exe"

mRun-x64: [bDRegion] C:\Program Files (x86)\Cyberlink\Shared Files\brs.exe

mRun-x64: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui

mRun-x64: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

AppInit_DLLs-X64: C:\Windows\SysWOW64\nvinit.dll

.

================= FIREFOX ===================

.

FF - ProfilePath - C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\b60o4k7j.default\

FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll

FF - plugin: C:\Program Files (x86)\Battlelog Web Plugins\1.132.0\npesnlaunch.dll

FF - plugin: C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll

FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll

FF - plugin: C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll

FF - plugin: C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll

FF - plugin: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrlui.dll

FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

FF - plugin: C:\Users\Josh\AppData\Roaming\Mozilla\Firefox\Profiles\b60o4k7j.default\extensions\battlefieldheroespatcher@ea.com\plugins\npBFHUpdater.dll

FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_265.dll

FF - plugin: C:\Windows\SysWOW64\npDeployJava1.dll

FF - plugin: C:\Windows\SysWOW64\npmproxy.dll

.

============= SERVICES / DRIVERS ===============

.

R0 aswNdis;avast! Firewall NDIS Filter Service;C:\Windows\system32\DRIVERS\aswNdis.sys --> C:\Windows\system32\DRIVERS\aswNdis.sys [?]

R0 aswNdis2;avast! Firewall Core Firewall Service;C:\Windows\system32\drivers\aswNdis2.sys --> C:\Windows\system32\drivers\aswNdis2.sys [?]

R0 EMSC;COMPAL Embedded System Control;C:\Windows\System32\drivers\EMSC.sys [2009-6-26 13680]

R0 iusb3hcs;Intel® USB 3.0 Host Controller Switch Driver;C:\Windows\system32\DRIVERS\iusb3hcs.sys --> C:\Windows\system32\DRIVERS\iusb3hcs.sys [?]

R0 nvpciflt;nvpciflt;C:\Windows\system32\DRIVERS\nvpciflt.sys --> C:\Windows\system32\DRIVERS\nvpciflt.sys [?]

R0 stdcfltn;Disk Class Filter Driver for Accelerometer;C:\Windows\system32\DRIVERS\stdcfltn.sys --> C:\Windows\system32\DRIVERS\stdcfltn.sys [?]

R1 aswFW;avast! TDI Firewall driver;C:\Windows\system32\drivers\aswFW.sys --> C:\Windows\system32\drivers\aswFW.sys [?]

R1 aswKbd;aswKbd;C:\Windows\system32\drivers\aswKbd.sys --> C:\Windows\system32\drivers\aswKbd.sys [?]

R1 aswSnx;aswSnx;C:\Windows\system32\drivers\aswSnx.sys --> C:\Windows\system32\drivers\aswSnx.sys [?]

R1 aswSP;aswSP;C:\Windows\system32\drivers\aswSP.sys --> C:\Windows\system32\drivers\aswSP.sys [?]

R1 BfLwf;Bigfoot Networks Bandwidth Control;C:\Windows\system32\DRIVERS\bflwfx64.sys --> C:\Windows\system32\DRIVERS\bflwfx64.sys [?]

R1 nvkflt;nvkflt;C:\Windows\system32\DRIVERS\nvkflt.sys --> C:\Windows\system32\DRIVERS\nvkflt.sys [?]

R1 SASDIFSV;SASDIFSV;C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys [2011-7-22 14928]

R1 SASKUTIL;SASKUTIL;C:\Program Files\SUPERAntiSpyware\saskutil64.sys [2011-7-12 12368]

R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys --> C:\Windows\system32\DRIVERS\vwififlt.sys [?]

R2 !SASCORE;SAS Core Service;C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [2011-8-12 140672]

R2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-7-27 63960]

R2 AlienFusionService;Alienware Fusion Service;C:\Program Files\Alienware\Command Center\AlienFusionService.exe [2012-2-9 14664]

R2 aswFsBlk;aswFsBlk;C:\Windows\system32\drivers\aswFsBlk.sys --> C:\Windows\system32\drivers\aswFsBlk.sys [?]

R2 aswMonFlt;aswMonFlt;\??\C:\Windows\system32\drivers\aswMonFlt.sys --> C:\Windows\system32\drivers\aswMonFlt.sys [?]

R2 AtherosSvc;AtherosSvc;C:\Program Files (x86)\Bluetooth Suite\AdminService.exe [2012-2-13 106144]

R2 avast! Antivirus;avast! Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-8-31 44808]

R2 avast! Firewall;avast! Firewall;C:\Program Files\AVAST Software\Avast\afwServ.exe [2012-8-31 133912]

R2 CtHdaSvc;Sound Core3D Service;C:\Windows\SysWOW64\CtHdaSvc.exe [2012-8-28 122880]

R2 IAStorDataMgrSvc;Intel® Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2012-8-28 13592]

R2 Intel® Capability Licensing Service Interface;Intel® Capability Licensing Service Interface;C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-1-11 627936]

R2 jhi_service;Intel® Dynamic Application Loader Host Interface Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\Jhi_service.exe [2012-8-28 161560]

R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2012-9-13 399432]

R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-8-31 676936]

R2 nvUpdatusService;NVIDIA Update Service Daemon;C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-8-28 1258856]

R2 Qualcomm Atheros Killer Service;Qualcomm Atheros Killer Service;C:\Program Files\Bigfoot Networks\Killer Network Manager\BFNService.exe [2012-2-24 492032]

R2 SftService;SoftThinks Agent Service;C:\Program Files (x86)\AlienRespawn\SftService.exe [2012-8-28 1695040]

R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-8-30 382312]

R2 UNS;Intel® Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2012-8-28 363800]

R3 Ak27x64;Killer Wireless-N 1102 device driver;C:\Windows\system32\DRIVERS\Ak27x64.sys --> C:\Windows\system32\DRIVERS\Ak27x64.sys [?]

R3 AthBTPort;Atheros Virtual Bluetooth Class;C:\Windows\system32\DRIVERS\btath_flt.sys --> C:\Windows\system32\DRIVERS\btath_flt.sys [?]

R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;C:\Windows\system32\drivers\btath_a2dp.sys --> C:\Windows\system32\drivers\btath_a2dp.sys [?]

R3 btath_avdt;Atheros Bluetooth AVDT Service;C:\Windows\system32\drivers\btath_avdt.sys --> C:\Windows\system32\drivers\btath_avdt.sys [?]

R3 BTATH_BUS;Atheros Bluetooth Bus;C:\Windows\system32\DRIVERS\btath_bus.sys --> C:\Windows\system32\DRIVERS\btath_bus.sys [?]

R3 BTATH_HCRP;Bluetooth HCRP Server driver;C:\Windows\system32\DRIVERS\btath_hcrp.sys --> C:\Windows\system32\DRIVERS\btath_hcrp.sys [?]

R3 BTATH_LWFLT;Bluetooth LWFLT Device;C:\Windows\system32\DRIVERS\btath_lwflt.sys --> C:\Windows\system32\DRIVERS\btath_lwflt.sys [?]

R3 BTATH_RCP;Bluetooth AVRCP Device;C:\Windows\system32\DRIVERS\btath_rcp.sys --> C:\Windows\system32\DRIVERS\btath_rcp.sys [?]

R3 BtFilter;BtFilter;C:\Windows\system32\DRIVERS\btfilter.sys --> C:\Windows\system32\DRIVERS\btfilter.sys [?]

R3 CtClsFlt;Creative Camera Class Upper Filter Driver;C:\Windows\system32\DRIVERS\CtClsFlt.sys --> C:\Windows\system32\DRIVERS\CtClsFlt.sys [?]

R3 cthda;Sound Core3D(CtHda.sys);C:\Windows\system32\drivers\cthda.sys --> C:\Windows\system32\drivers\cthda.sys [?]

R3 IntcDAud;Intel® Display Audio;C:\Windows\system32\DRIVERS\IntcDAud.sys --> C:\Windows\system32\DRIVERS\IntcDAud.sys [?]

R3 iusb3hub;Intel® USB 3.0 Hub Driver;C:\Windows\system32\DRIVERS\iusb3hub.sys --> C:\Windows\system32\DRIVERS\iusb3hub.sys [?]

R3 iusb3xhc;Intel® USB 3.0 eXtensible Host Controller Driver;C:\Windows\system32\DRIVERS\iusb3xhc.sys --> C:\Windows\system32\DRIVERS\iusb3xhc.sys [?]

R3 L1C;NDIS Miniport Driver for Atheros AR81xx PCI-E Ethernet Controller;C:\Windows\system32\DRIVERS\L1C62x64.sys --> C:\Windows\system32\DRIVERS\L1C62x64.sys [?]

R3 MBAMProtector;MBAMProtector;\??\C:\Windows\system32\drivers\mbam.sys --> C:\Windows\system32\drivers\mbam.sys [?]

R3 MEIx64;Intel® Management Engine Interface ;C:\Windows\system32\DRIVERS\HECIx64.sys --> C:\Windows\system32\DRIVERS\HECIx64.sys [?]

R3 RSPCIESTOR;Realtek PCIE CardReader Driver;C:\Windows\system32\DRIVERS\RtsPStor.sys --> C:\Windows\system32\DRIVERS\RtsPStor.sys [?]

R3 ST_ACCEL;STMicroelectronics Accelerometer Service;C:\Windows\system32\DRIVERS\ST_ACCEL.sys --> C:\Windows\system32\DRIVERS\ST_ACCEL.sys [?]

S2 CLKMSVC10_9EC60124;CyberLink Product - 2012/08/27 18:37:02;C:\Program Files (x86)\CyberLink\PowerDVD9\NavFilter\kmsvc.exe [2012-3-27 242448]

S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]

S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]

S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-8-31 136176]

S2 McMPFSvc;McAfee Personal Firewall Service;"C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc --> C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [?]

S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-7-13 160944]

S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-8-27 250056]

S3 cphs;Intel® Content Protection HECI Service;C:\Windows\SysWOW64\IntelCpHeciSvc.exe [2012-3-19 276248]

S3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service;C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2012-8-28 79360]

S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2012-8-28 79360]

S3 fssfltr;fssfltr;C:\Windows\system32\DRIVERS\fssfltr.sys --> C:\Windows\system32\DRIVERS\fssfltr.sys [?]

S3 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2012-7-28 1511872]

S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-8-31 136176]

S3 MozillaMaintenance;Mozilla Maintenance Service;C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-8-31 114144]

S3 NVHDA;Service for NVIDIA High Definition Audio Driver;C:\Windows\system32\drivers\nvhda64v.sys --> C:\Windows\system32\drivers\nvhda64v.sys [?]

S3 NvStUSB;NVIDIA Stereoscopic 3D USB driver;C:\Windows\system32\drivers\nvstusb.sys --> C:\Windows\system32\drivers\nvstusb.sys [?]

S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys --> C:\Windows\system32\drivers\tsusbflt.sys [?]

S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\system32\drivers\TsUsbGD.sys --> C:\Windows\system32\drivers\TsUsbGD.sys [?]

S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]

.

=============== Created Last 30 ================

.

2012-09-15 22:55:07 467984 ----a-w- C:\Windows\SysWow64\d3dx10_39.dll

2012-09-15 22:55:07 1493528 ----a-w- C:\Windows\SysWow64\D3DCompiler_39.dll

2012-09-15 22:55:06 3851784 ----a-w- C:\Windows\SysWow64\D3DX9_39.dll

2012-09-15 22:47:43 -------- d-----w- C:\Riot Games

2012-09-15 21:37:29 -------- d-----w- C:\Users\Josh\AppData\Local\PMB Files

2012-09-15 21:37:27 -------- d-----w- C:\ProgramData\PMB Files

2012-09-15 21:37:10 -------- d-----w- C:\Program Files (x86)\Pando Networks

2012-09-14 15:31:57 9310152 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9D408080-07E3-47ED-97CA-9A99ADFCF7F6}\mpengine.dll

2012-09-12 18:05:03 950128 ----a-w- C:\Windows\System32\drivers\ndis.sys

2012-09-12 18:05:03 574464 ----a-w- C:\Windows\System32\d3d10level9.dll

2012-09-12 18:05:03 490496 ----a-w- C:\Windows\SysWow64\d3d10level9.dll

2012-09-12 18:05:03 41472 ----a-w- C:\Windows\System32\drivers\RNDISMP.sys

2012-09-12 18:05:02 376688 ----a-w- C:\Windows\System32\drivers\netio.sys

2012-09-12 18:05:02 1913200 ----a-w- C:\Windows\System32\drivers\tcpip.sys

2012-09-12 18:05:01 288624 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS

2012-09-10 09:28:30 -------- d-----w- C:\Users\Josh\jagexcache1

2012-09-08 21:23:03 -------- d-----w- C:\Program Files (x86)\EA Games

2012-09-07 10:22:00 514560 ----a-w- C:\Windows\SysWow64\qdvd.dll

2012-09-07 10:22:00 366592 ----a-w- C:\Windows\System32\qdvd.dll

2012-09-07 10:18:19 -------- d-----w- C:\Users\Josh\My Backup Files

2012-09-06 21:27:34 -------- d-----w- C:\Users\Josh\Tracing

2012-09-06 21:19:55 -------- d-----w- C:\Windows\en

2012-09-06 21:17:07 -------- d-----w- C:\Program Files (x86)\Microsoft SQL Server Compact Edition

2012-09-06 21:15:11 57280 ----a-w- C:\Windows\System32\drivers\fssfltr.sys

2012-09-06 21:14:58 -------- d-----w- C:\Windows\PCHEALTH

2012-09-06 21:12:51 5563840 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\59572e7b1cd8c7407\skydrivesetup.exe

2012-09-06 21:12:51 -------- d-----w- C:\Program Files (x86)\Microsoft SkyDrive

2012-09-06 21:12:51 -------- d-----r- C:\Users\Josh\SkyDrive

2012-09-06 21:12:45 -------- d-----w- C:\ProgramData\Microsoft SkyDrive

2012-09-06 21:12:21 94040 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\4cf068ae1cd8c7406\DSETUP.dll

2012-09-06 21:12:21 525656 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\4cf068ae1cd8c7406\DXSETUP.exe

2012-09-06 21:12:21 1691480 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\4cf068ae1cd8c7406\dsetup32.dll

2012-09-06 21:12:02 89944 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\422075771cd8c7404\DSETUP.dll

2012-09-06 21:12:02 537432 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\422075771cd8c7404\DXSETUP.exe

2012-09-06 21:12:02 1801048 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\422075771cd8c7404\dsetup32.dll

2012-09-06 21:10:41 89944 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\11c55d041cd8c7401\DSETUP.dll

2012-09-06 21:10:41 537432 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\11c55d041cd8c7401\DXSETUP.exe

2012-09-06 21:10:41 1801048 -c--a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\11c55d041cd8c7401\dsetup32.dll

2012-09-06 21:10:29 -------- d-----w- C:\Users\Josh\AppData\Local\Windows Live

2012-09-06 21:10:10 -------- d-----w- C:\Program Files (x86)\Common Files\Windows Live

2012-09-06 20:50:53 -------- d-----w- C:\Users\Josh\AppData\Local\SCE

2012-09-06 20:50:53 -------- d-----w- C:\Crash

2012-09-06 20:50:44 -------- d--h--w- C:\Windows\msdownld.tmp

2012-09-06 20:50:43 -------- d-----w- C:\Windows\SysWow64\directx

2012-09-06 09:32:11 447752 ----a-w- C:\Windows\SysWow64\vp6vfw.dll

2012-09-06 09:32:06 -------- d-----w- C:\Program Files (x86)\Microsoft WSE

2012-09-03 18:22:28 -------- d-----w- C:\Users\Josh\AppData\Local\Skyrim

2012-09-03 15:46:54 -------- d-----w- C:\Users\Josh\AppData\Roaming\Reallusion

2012-09-02 22:04:17 -------- d-----w- C:\Users\Josh\AppData\Local\Spotify

2012-09-02 22:03:24 -------- d-----w- C:\Users\Josh\AppData\Roaming\Spotify

2012-09-02 21:14:24 -------- d-----w- C:\.jagex_cache_32

2012-09-02 14:56:55 -------- d-----w- C:\Users\Josh\AppData\Local\DayZCommander

2012-09-02 14:56:48 -------- d-----w- C:\Program Files (x86)\Dotjosh Studios

2012-09-02 11:37:08 -------- d-----w- C:\Users\Josh\AppData\Local\Play withSIX

2012-09-02 11:33:24 -------- d-----w- C:\Users\Josh\AppData\Local\ArmA 2 OA

2012-09-02 11:33:21 -------- d-----w- C:\Program Files (x86)\Bohemia Interactive

2012-09-02 11:29:01 -------- d-----w- C:\Users\Josh\AppData\Local\ArmA 2

2012-09-02 11:26:45 -------- d-----w- C:\Users\Josh\AppData\Roaming\six-zsync

2012-09-02 11:26:40 -------- d-----w- C:\Users\Josh\AppData\Roaming\Play withSIX

2012-09-02 11:26:20 -------- d-----w- C:\Program Files (x86)\SIX Networks

2012-09-01 12:48:47 -------- d-----w- C:\Users\Josh\jagexcache

2012-09-01 08:18:54 821736 ----a-w- C:\Windows\SysWow64\npDeployJava1.dll

2012-09-01 08:18:54 746984 ----a-w- C:\Windows\SysWow64\deployJava1.dll

2012-09-01 08:18:47 95208 ----a-w- C:\Windows\SysWow64\WindowsAccessBridge-32.dll

2012-09-01 08:11:32 -------- d-----w- C:\Users\Josh\AppData\Local\TactXMouseCI

2012-09-01 08:10:55 -------- d-----w- C:\Program Files (x86)\Alienware

2012-09-01 08:10:41 -------- d-----w- C:\ProgramData\TactXMouseCI

2012-09-01 08:10:28 -------- d-----w- C:\Users\Josh\AppData\Local\Downloaded Installations

2012-09-01 08:05:46 -------- d-----w- C:\Windows\SysWow64\Wat

2012-09-01 08:05:46 -------- d-----w- C:\Windows\System32\Wat

2012-09-01 08:04:11 552960 ----a-w- C:\Windows\System32\drivers\bthport.sys

2012-09-01 07:59:30 294912 ----a-w- C:\Windows\System32\browserchoice.exe

2012-09-01 07:36:41 956928 ----a-w- C:\Windows\System32\localspl.dll

2012-09-01 01:33:15 283304 ----a-w- C:\Windows\SysWow64\PnkBstrB.xtr

2012-09-01 01:33:12 -------- d-----w- C:\Users\Josh\AppData\Local\PunkBuster

2012-09-01 01:29:44 -------- d-----w- C:\Program Files (x86)\Battlelog Web Plugins

2012-09-01 01:28:07 -------- d-----w- C:\ProgramData\EA Logs

2012-09-01 01:28:07 -------- d-----w- C:\ProgramData\EA Core

2012-09-01 01:27:26 -------- d--h--w- C:\Program Files (x86)\Common Files\EAInstaller

2012-08-31 13:05:53 9232584 ----a-w- C:\Windows\SysWow64\FlashPlayerInstaller.exe

2012-08-31 12:40:51 -------- d-----w- C:\Users\Josh\AppData\Roaming\Origin

2012-08-31 12:40:51 -------- d-----w- C:\Program Files (x86)\Origin Games

2012-08-31 12:40:30 -------- d-----w- C:\Users\Josh\AppData\Local\Origin

2012-08-31 12:38:25 -------- d-----w- C:\ProgramData\Origin

2012-08-31 12:38:24 -------- d-----w- C:\ProgramData\Electronic Arts

2012-08-31 12:38:21 -------- d-----w- C:\Program Files (x86)\Origin

2012-08-31 12:27:37 -------- d-----w- C:\Users\Josh\AppData\Local\Macromedia

2012-08-31 11:47:49 -------- d-----w- C:\Users\Josh\AppData\Roaming\SUPERAntiSpyware.com

2012-08-31 11:47:41 -------- d-----w- C:\Users\Josh\AppData\Local\CrashDumps

2012-08-31 11:47:32 -------- d-----w- C:\Users\Josh\AppData\Local\Google

2012-08-31 11:47:26 -------- d-----w- C:\ProgramData\SUPERAntiSpyware.com

2012-08-31 11:47:26 -------- d-----w- C:\Program Files\SUPERAntiSpyware

2012-08-31 11:47:18 -------- d-----w- C:\ProgramData\SUPERSetup

2012-08-31 11:41:43 -------- d-----w- C:\Users\Josh\AppData\Roaming\Malwarebytes

2012-08-31 11:41:28 -------- d-----w- C:\ProgramData\Malwarebytes

2012-08-31 11:41:27 25928 ----a-w- C:\Windows\System32\drivers\mbam.sys

2012-08-31 11:41:27 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware

2012-08-31 11:33:31 -------- d-----w- C:\Users\Josh\AppData\Local\Diagnostics

2012-08-31 11:04:37 -------- d-----w- C:\Users\Josh\AppData\Roaming\Dell

2012-08-31 11:04:33 -------- d-----w- C:\ProgramData\PC-Doctor for Windows

2012-08-31 11:03:49 -------- d-----w- C:\Program Files\AlienAutopsy

2012-08-31 11:00:44 -------- d-----w- C:\Users\Josh\AppData\Roaming\PCDr

2012-08-31 11:00:05 -------- d-----w- C:\ProgramData\PCDr

2012-08-31 10:24:42 -------- d-----w- C:\Users\Josh\AppData\Local\Mozilla

2012-08-31 10:24:38 -------- d-----w- C:\Program Files (x86)\Mozilla Maintenance Service

2012-08-31 10:21:33 23552 ----a-w- C:\Windows\System32\drivers\tdtcp.sys

2012-08-31 10:17:36 2622464 ----a-w- C:\Windows\System32\wucltux.dll

2012-08-31 10:17:31 99840 ----a-w- C:\Windows\System32\wudriver.dll

2012-08-31 10:17:24 36864 ----a-w- C:\Windows\System32\wuapp.exe

2012-08-31 10:17:24 186752 ----a-w- C:\Windows\System32\wuwebv.dll

2012-08-31 09:14:59 -------- d-sh--w- C:\System Recovery

2012-08-31 09:13:31 -------- d-----w- C:\Users\Josh\AppData\Local\BMExplorer

2012-08-31 09:13:23 -------- d-----w- C:\Users\Josh\AppData\Roaming\Intel Corporation

2012-08-31 09:13:23 -------- d-----w- C:\Users\Josh\AppData\Roaming\Atheros

2012-08-31 09:12:53 -------- d-----w- C:\Users\Josh\AppData\Local\VirtualStore

2012-08-30 09:40:14 429416 ----a-w- C:\Windows\SysWow64\nvStreaming.exe

2012-08-28 00:40:39 891240 ----a-w- C:\Windows\System32\nvvsvc.exe

2012-08-28 00:40:39 865640 ----a-w- C:\Windows\System32\nv3dappshext.dll

2012-08-28 00:40:39 63336 ----a-w- C:\Windows\System32\nvshext.dll

2012-08-28 00:40:39 6198120 ----a-w- C:\Windows\System32\nvcpl.dll

2012-08-28 00:40:39 55144 ----a-w- C:\Windows\System32\nv3dappshextr.dll

2012-08-28 00:40:39 3487434 ----a-w- C:\Windows\System32\nvcoproc.bin

2012-08-28 00:40:39 3266920 ----a-w- C:\Windows\System32\nvsvc64.dll

2012-08-28 00:40:39 2557800 ----a-w- C:\Windows\System32\nvsvcr.dll

2012-08-28 00:40:39 118120 ----a-w- C:\Windows\System32\nvmctray.dll

2012-08-28 00:40:16 -------- d-----w- C:\ProgramData\NVIDIA Corporation

2012-08-28 00:40:12 -------- d-----w- C:\Program Files\NVIDIA Corporation

2012-08-28 00:40:12 -------- d-----w- C:\Program Files (x86)\NVIDIA Corporation

2012-08-28 00:39:46 -------- d-----w- C:\Program Files\Common Files\Intel

2012-08-28 00:39:45 -------- d-----w- C:\Program Files (x86)\Common Files\Intel

2012-08-28 00:39:43 -------- d-----w- C:\Intel

2012-08-28 00:35:11 -------- d-----w- C:\Program Files\Synaptics

2012-08-28 00:33:59 3958272 ----a-w- C:\Windows\System32\WinSAT.exe

2012-08-28 00:30:15 -------- d-----w- C:\Apps

2012-08-28 00:28:38 568600 ----a-w- C:\Windows\System32\drivers\iaStor.sys

2012-08-28 00:27:22 995328 ----a-w- C:\Program Files\Common Files\Microsoft Shared\VGX\VGX.dll

2012-08-28 00:25:16 -------- d-----w- C:\Windows\System32\oem

2012-08-27 23:45:51 -------- d-----w- C:\ProgramData\Atheros

2012-08-27 23:36:49 -------- d-----w- C:\Program Files (x86)\Common Files\CyberLink

2012-08-27 23:36:11 505128 ----a-w- C:\Windows\SysWow64\msvcp71.dll

2012-08-27 23:36:11 353576 ----a-w- C:\Windows\SysWow64\msvcr71.dll

2012-08-27 23:36:11 29480 ----a-w- C:\Windows\SysWow64\msxml3a.dll

2012-08-27 23:33:22 224768 ----a-w- C:\Windows\System32\drivers\CtAudDrv.sys

2012-08-27 23:33:22 176000 ----a-w- C:\Windows\System32\drivers\CtClsFlt.sys

2012-08-27 23:33:22 -------- d-----w- C:\Program Files (x86)\Integrated Webcam

2012-08-27 23:33:18 -------- d-----w- C:\Program Files (x86)\Creative Live! Cam

2012-08-27 23:32:56 -------- d-----w- C:\Program Files (x86)\Common Files\Steam

2012-08-27 23:32:55 -------- d-----w- C:\Program Files (x86)\Steam

2012-08-27 23:32:27 -------- d-----r- C:\Program Files (x86)\Skype

2012-08-27 23:31:29 -------- d-----w- C:\Program Files (x86)\Common Files\Intel Corporation

2012-08-27 23:30:11 -------- d-----w- C:\Temp

2012-08-27 23:29:57 151656 ----a-w- C:\Windows\System32\drivers\WimFltr.sys

2012-08-27 23:29:37 -------- d-----w- C:\Program Files (x86)\AlienRespawn

2012-08-27 23:22:30 -------- d-----w- C:\Program Files\Alienware

2012-08-27 23:12:13 -------- d-----w- C:\Program Files (x86)\Common Files\Atheros

2012-08-27 23:12:08 -------- d-----w- C:\Program Files (x86)\Bluetooth Suite

2012-08-27 23:11:45 -------- d-----w- C:\ProgramData\Bigfoot Networks

2012-08-27 23:11:45 -------- d-----w- C:\Program Files\Bigfoot Networks

2012-08-27 23:10:37 41984 ----a-w- C:\Windows\System32\drivers\USB3Ver.dll

2012-08-27 23:10:36 787736 ----a-w- C:\Windows\System32\drivers\iusb3xhc.sys

2012-08-27 23:10:36 356120 ----a-w- C:\Windows\System32\drivers\iusb3hub.sys

2012-08-27 23:10:36 16152 ----a-w- C:\Windows\System32\drivers\iusb3hcs.sys

2012-08-27 23:08:15 15128 ----a-w- C:\Windows\System32\drivers\IntelMEFWVer.dll

2012-08-27 23:07:16 -------- d-----w- C:\Program Files (x86)\Common Files\postureAgent

2012-08-27 23:07:00 -------- d-----w- C:\ProgramData\XP32

2012-08-27 23:07:00 -------- d-----w- C:\ProgramData\Win764

2012-08-27 23:07:00 -------- d-----w- C:\ProgramData\Win732

2012-08-27 23:07:00 -------- d-----w- C:\ProgramData\Vista64

2012-08-27 23:07:00 -------- d-----w- C:\ProgramData\Vista32

2012-08-27 23:06:34 -------- d-----w- C:\Program Files (x86)\Alienware On-Screen Display

2012-08-27 23:06:22 -------- d-----w- C:\Windows\Downloaded Installations

2012-08-27 23:05:15 22128 ----a-w- C:\Windows\System32\drivers\stdcfltn.sys

2012-08-27 23:05:12 -------- d-----w- C:\Program Files\STMicroelectronics

2012-08-27 23:05:08 67184 ----a-w- C:\Windows\System32\drivers\ST_ACCEL.sys

2012-08-27 23:05:08 65136 ----a-w- C:\Windows\System32\stdcfltnco02.dll

2012-08-27 23:05:01 -------- d-----w- C:\Program Files (x86)\ST Microelectronics

2012-08-27 23:04:52 25088 ----a-w- C:\Windows\FUNC_01&VEN_1102&DEV_0011&SUBSYS_10280552.reg

2012-08-27 23:04:16 90112 ------w- C:\Windows\Updreg.EXE

2012-08-27 23:04:15 466520 ----a-w- C:\Windows\System32\wrap_oal.dll

2012-08-27 23:04:15 445016 ----a-w- C:\Windows\SysWow64\wrap_oal.dll

2012-08-27 23:04:15 123480 ----a-w- C:\Windows\System32\OpenAL32.dll

2012-08-27 23:04:15 109144 ----a-w- C:\Windows\SysWow64\OpenAL32.dll

2012-08-27 23:04:12 2906586 ------w- C:\Windows\SysWow64\Sens_oal.dll

2012-08-27 23:04:11 1944064 ------w- C:\Windows\System32\Sens_oal.dll

2012-08-27 23:04:10 7062 ----a-w- C:\Windows\SysWow64\audiopid.vxd

2012-08-27 23:04:06 -------- d-----w- C:\Program Files (x86)\Common Files\Creative Labs Shared

2012-08-27 22:50:28 70344 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl

2012-08-27 22:50:28 426184 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe

2012-08-27 22:48:40 142336 ----a-w- C:\Windows\System32\poqexec.exe

2012-08-27 22:48:40 123904 ----a-w- C:\Windows\SysWow64\poqexec.exe

2012-08-27 22:44:55 -------- d-----w- C:\Windows\SysWow64\NV

2012-08-27 22:44:55 -------- d-----w- C:\Windows\System32\NV

.

==================== Find3M ====================

.

2012-09-15 15:10:05 283304 ----a-w- C:\Windows\SysWow64\PnkBstrB.exe

2012-09-15 15:09:40 280904 ----a-w- C:\Windows\SysWow64\PnkBstrB.ex0

2012-09-11 16:45:01 76888 ----a-w- C:\Windows\SysWow64\PnkBstrA.exe

2012-08-28 00:34:13 86528 ----a-w- C:\Windows\SysWow64\SearchFilterHost.exe

2012-08-28 00:33:59 246784 ----a-w- C:\Windows\System32\input.dll

2012-08-28 00:27:22 91648 ----a-w- C:\Windows\System32\SetIEInstalledDate.exe

2012-08-21 09:13:13 969200 ----a-w- C:\Windows\System32\drivers\aswSnx.sys

2012-08-21 09:13:12 71600 ----a-w- C:\Windows\System32\drivers\aswMonFlt.sys

2012-08-21 09:13:12 54072 ----a-w- C:\Windows\System32\drivers\aswRdr2.sys

2012-08-21 09:13:12 266776 ----a-w- C:\Windows\System32\drivers\aswNdis2.sys

2012-08-21 09:13:11 19600 ----a-w- C:\Windows\System32\drivers\aswKbd.sys

2012-08-21 09:13:11 142128 ----a-w- C:\Windows\System32\drivers\aswFW.sys

2012-08-21 09:12:33 41224 ----a-w- C:\Windows\avastSS.scr

2012-07-28 02:09:02 57792 ----a-w- C:\Windows\SysWow64\sirenacm.dll

2012-07-28 01:54:00 321472 ----a-w- C:\Windows\WLXPGSS.SCR

2012-07-26 18:08:06 862664 ----a-w- C:\Windows\SysWow64\msvcr110.dll

2012-07-26 18:08:06 534480 ----a-w- C:\Windows\SysWow64\msvcp110.dll

2012-07-26 18:08:06 251864 ----a-w- C:\Windows\SysWow64\vccorlib110.dll

2012-07-26 18:08:06 153536 ----a-w- C:\Windows\SysWow64\atl110.dll

2012-07-26 18:08:06 115656 ----a-w- C:\Windows\SysWow64\vcomp110.dll

2012-07-26 14:22:10 828872 ----a-w- C:\Windows\System32\msvcr110.dll

2012-07-26 14:22:10 661448 ----a-w- C:\Windows\System32\msvcp110.dll

2012-07-26 14:22:10 354264 ----a-w- C:\Windows\System32\vccorlib110.dll

2012-07-26 14:22:10 177096 ----a-w- C:\Windows\System32\atl110.dll

2012-07-26 14:22:10 124360 ----a-w- C:\Windows\System32\vcomp110.dll

2012-07-18 18:15:06 3148800 ----a-w- C:\Windows\System32\win32k.sys

2012-07-17 14:14:44 253184 ----a-w- C:\Windows\System32\LIVESSP.DLL

2012-07-17 13:49:00 209648 ----a-w- C:\Windows\SysWow64\LIVESSP.DLL

2012-07-13 10:47:42 12368 ----a-w- C:\Windows\System32\drivers\aswNdis.sys

2012-07-04 22:13:27 59392 ----a-w- C:\Windows\System32\browcli.dll

2012-07-04 22:13:27 136704 ----a-w- C:\Windows\System32\browser.dll

2012-07-04 21:14:34 41984 ----a-w- C:\Windows\SysWow64\browcli.dll

2012-06-29 03:56:34 2312704 ----a-w- C:\Windows\System32\jscript9.dll

2012-06-29 03:49:11 1392128 ----a-w- C:\Windows\System32\wininet.dll

2012-06-29 03:48:07 1494528 ----a-w- C:\Windows\System32\inetcpl.cpl

2012-06-29 03:43:49 173056 ----a-w- C:\Windows\System32\ieUnatt.exe

2012-06-29 03:39:48 2382848 ----a-w- C:\Windows\System32\mshtml.tlb

2012-06-29 00:16:58 1800704 ----a-w- C:\Windows\SysWow64\jscript9.dll

2012-06-29 00:09:01 1129472 ----a-w- C:\Windows\SysWow64\wininet.dll

2012-06-29 00:08:59 1427968 ----a-w- C:\Windows\SysWow64\inetcpl.cpl

2012-06-29 00:04:43 142848 ----a-w- C:\Windows\SysWow64\ieUnatt.exe

2012-06-29 00:00:45 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb

.

============= FINISH: 23:57:26.06 ===============

Link to post
Share on other sites

post-32477-1261866970.gif

Logs will be closed if you haven't replied within 3 days

Please do not attach the scan results from Combofx. Use copy/paste.

Vista and Windows 7 users:

1. These tools MUST be run from the executable. (.exe) every time you run them

2. With Admin Rights (Right click, choose "Run as Administrator")

Download ComboFix from this link

Link 1

* IMPORTANT !!! Save ComboFix.exe to your Desktop

  • Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools. Note: If you are having difficulty properly disabling your protective programs, or are unsure as to what programs need to be disabled, please refer to the information available through this link : Protective Programs
  • Double click on ComboFix.exe & follow the prompts.
    Notes: Combofix will run without the Recovery Console installed. Skip the Recovery Console part if you're running Vista or Windows 7.
    Note: If you have XP SP3, use the XP SP2 package.
    If Vista or Windows 7, skip the Recovery Console part
  • As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it's strongly recommended to have this pre-installed on your machine before doing any malware removal. It will allow you to boot up into a special recovery/repair mode that will allow us to more easily help you should your computer have a problem after an attempted removal of malware.
  • Follow the prompts to allow ComboFix to download and install the Microsoft Windows Recovery Console, and when prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console.

**Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will continue it's malware removal procedures.

RC1.png

Once the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message:

RC2-1.png

Click on Yes, to continue scanning for malware.

When finished, it shall produce a log for you. Please include the C:\ComboFix.txt using Copy / Paste in your next reply.

Notes:

1.Do not mouse-click Combofix's window while it is running. That may cause it to stall.

2. ComboFix may reset a number of Internet Explorer's settings, including making I-E the default browser.

3. Combofix prevents autorun of ALL CD, floppy and USB devices to assist with malware removal & increase security. If this is an issue or makes it difficult for you -- please tell your helper.

4. CF disconnects your machine from the internet. The connection is automatically restored before CF completes its run. If CF runs into difficulty and terminates prematurely, the connection can be manually restored by restarting your machine.

Give it atleast 20-30 minutes to finish if needed.

Please do not attach the scan results from Combofx. Use copy/paste.

Also please describe how your computer behaves at the moment.

Link to post
Share on other sites

Due to the lack of feedback this topic is closed to prevent others from posting here. If you need this topic reopened, please send a Private Message to any one of the moderating team members. Please include a link to this thread with your request. This applies only to the originator of this thread.

Other members who need assistance please start your own topic in a new thread. Thanks!

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.