Jump to content

Unable to open windows action center, AlienwareAlienFXController.exe does not work properly, an no sound from any internet browser


Recommended Posts

I used a similar forum to this a few years ago and this is the first time I'm having an issue with my newest laptop, and I can't seem to figure out what the problem is.

I'm using an Alienware M17x and recently the AlienwareAlienFXController stopped working so that I can't change the volume of my laptop through the keyboard shortcuts. I thought that was everything, but I kept noticing more and more problems happening. For example, I can't open the windows action center like I used to be able to, my Comcast Constant Guard keeps crashing, I get no sound out of my internet browser or my iTunes with or without plugging headphones in (but other programs like computer games still play sound), and my laptop resorted to only typing numbers no matter what key I pressed in any program (that issue resolved itself after I attempted to restart my laptop in safe mode just to see a failure to boot safe mode). I'm not sure if it's just an issue with the sound drivers or alienware itself or if I caught something worse, but I have exhausted the extent of my knowledge and am turning here to see if there is some form of malware attached to my issues.

It's also not letting me attach a file to this (neither advanced nor basic up-loader are working for me), so I'm going to just copy and paste the details of my hijackthis log file:

Logfile of Trend Micro HijackThis v2.0.4

Scan saved at 3:20:36 PM, on 1/23/2013

Platform: Windows 7 SP1 (WinNT 6.00.3505)

MSIE: Internet Explorer v9.00 (9.00.8112.16457)

Boot mode: Normal

Running processes:

C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe

C:\Program Files (x86)\STMicroelectronics\AccelerometerP11\FF_Protection.exe

C:\Program Files (x86)\comcasttb\ComcastSpywareScan\ComcastAntiSpy.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Update\GoogleUpdate.exe

C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe

C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe

C:\Program Files (x86)\Motorola Mobility\MotoCast\MotoCast.exe

C:\Program Files (x86)\Constant Guard Protection Suite\IDVault.exe

C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

C:\Program Files (x86)\Integrated Webcam\Live! Central\WebcamInt.exe

C:\Program Files (x86)\Clarus\Samsung Drive Manager\ABRTMon.exe

C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Update\GoogleUpdate.exe

C:\Program Files (x86)\SFT\GuardedID\GIDD.exe

C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe

C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

C:\Program Files\Alienware\Command Center\AlienwareAlienFXController.exe

C:\Program Files (x86)\Motorola Mobility\MotoCast\bin\MotoCast-thumbnailer.exe

C:\PROGRA~2\Raptr\raptr_im.exe

C:\Program Files\Alienware\Command Center\AlienFusionController.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\Downloads\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://AlienwareArena.com

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://searchab.com/...5f-74de2b9af99f

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft....k/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft....k/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://searchab.com/...5f-74de2b9af99f

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local;192.168.*.*

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =

R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)

R3 - URLSearchHook: (no name) - {b6ac5e3c-5ceb-4e72-b451-f0e1ba983c14} - (no file)

F2 - REG:system.ini: UserInit=userinit.exe

O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)

O2 - BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - (no file)

O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - (no file)

O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - (no file)

O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - (no file)

O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - (no file)

O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - (no file)

O2 - BHO: BitTorrentControl_v12 - {b6ac5e3c-5ceb-4e72-b451-f0e1ba983c14} - (no file)

O2 - BHO: Constant Guard Protection Suite - {B84CDBE7-1B46-494B-A188-01D4C52DEB61} - C:\ProgramData\White Sky, Inc\ID Vault\IEBHO1.13.111.1\NativeBHO.dll

O2 - BHO: Updater For XFIN_PORTAL - {bb46be07-13eb-4c49-b0f0-fc78b9ea4983} - (no file)

O2 - BHO: (no name) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - (no file)

O2 - BHO: (no name) - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - (no file)

O2 - BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - (no file)

O3 - Toolbar: (no name) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - (no file)

O3 - Toolbar: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)

O3 - Toolbar: (no name) - {b6ac5e3c-5ceb-4e72-b451-f0e1ba983c14} - (no file)

O4 - HKLM\..\Run: [AlienwareOn-ScreenDisplay] C:\Program Files (x86)\Alienware On-Screen Display\AlienwareOn-ScreenDisplay.exe

O4 - HKLM\..\Run: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

O4 - HKLM\..\Run: [integrated Webcam Live! Central] "C:\Program Files (x86)\Integrated Webcam\Live! Central\WebcamInt.exe" /mode2

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe"

O4 - HKLM\..\Run: [Desktop Disc Tool] "C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe"

O4 - HKLM\..\Run: [GIDDesktop] C:\Program Files (x86)\SFT\GuardedID\gidd.exe /s

O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"

O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"

O4 - HKCU\..\Run: [ComcastAntispyClient] "C:\Program Files (x86)\comcasttb\ComcastSpywareScan\ComcastAntispy.exe" /hide

O4 - HKCU\..\Run: [Google Update] "C:\Users\Brian Atkinson\AppData\Local\Google\Update\GoogleUpdate.exe" /c

O4 - HKCU\..\Run: [Aim] "C:\Program Files (x86)\AIM\aim.exe" /d locale=en-US

O4 - HKCU\..\Run: [Raptr] C:\PROGRA~2\Raptr\raptrstub.exe --startup

O4 - HKCU\..\Run: [MobileDocuments] C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe

O4 - HKCU\..\Run: [MotoCast] "C:\Program Files (x86)\Motorola Mobility\MotoCast\MotoLauncher.lnk"

O4 - HKUS\S-1-5-21-796171291-733705223-3346595275-1001\..\Run: [ComcastAntispyClient] "C:\Program Files (x86)\comcasttb\ComcastSpywareScan\ComcastAntispy.exe" /hide (User '?')

O4 - HKUS\S-1-5-21-796171291-733705223-3346595275-1001\..\Run: [Google Update] "C:\Users\Brian Atkinson\AppData\Local\Google\Update\GoogleUpdate.exe" /c (User '?')

O4 - HKUS\S-1-5-21-796171291-733705223-3346595275-1001\..\Run: [Aim] "C:\Program Files (x86)\AIM\aim.exe" /d locale=en-US (User '?')

O4 - HKUS\S-1-5-21-796171291-733705223-3346595275-1001\..\Run: [Raptr] C:\PROGRA~2\Raptr\raptrstub.exe --startup (User '?')

O4 - HKUS\S-1-5-21-796171291-733705223-3346595275-1001\..\Run: [MobileDocuments] C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe (User '?')

O4 - HKUS\S-1-5-21-796171291-733705223-3346595275-1001\..\Run: [MotoCast] "C:\Program Files (x86)\Motorola Mobility\MotoCast\MotoLauncher.lnk" (User '?')

O4 - Global Startup: Constant Guard.lnk = C:\Program Files (x86)\Constant Guard Protection Suite\IDVault.exe

O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe

O4 - Global Startup: Samsung Drive Manager Real-Time.lnk = ?

O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Brian Atkinson\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm

O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - (no file)

O9 - Extra button: Show or hide HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - (no file)

O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics

O15 - Trusted Zone: *.clonewarsadventures.com

O15 - Trusted Zone: *.freerealms.com

O15 - Trusted Zone: *.soe.com

O15 - Trusted Zone: *.sony.com

O16 - DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} - http://ccfiles.creat...102/CTSUEng.cab

O16 - DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} - http://ccfiles.creat...13/CTPIDPDE.cab

O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} - http://ccfiles.creat...10926/CTPID.cab

O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - (no file)

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - (no file)

O20 - AppInit_DLLs: C:\PROGRA~2\KEYCRY~1\KEYCRY~3.DLL,c:\windows\syswow64\nvinit.dll

O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

O23 - Service: Andrea RT Filters Service (AERTFilters) - Andrea Electronics Corporation - C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe

O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)

O23 - Service: Alienware Fusion Service (AlienFusionService) - Alienware - C:\Program Files\Alienware\Command Center\AlienFusionService.exe

O23 - Service: Comcast AntiSpyware (AntiSpywareService) - Unknown owner - C:\Program Files (x86)\comcasttb\ComcastSpywareScan\ComcastAntiSpyService.exe

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: Dragon Age: Origins - Content Updater (DAUpdaterSvc) - BioWare - C:\Program Files (x86)\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe

O23 - Service: DeviceMonitorService - Nero AG - C:\Program Files (x86)\Motorola Media Link\Lite\NServiceEntry.exe

O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)

O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe

O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)

O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

O23 - Service: Intel® Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe

O23 - Service: CGPS Service (IDVaultSvc) - White Sky, Inc. - C:\Program Files (x86)\Constant Guard Protection Suite\IDVaultSvc.exe

O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: CA Pest Patrol Realtime Protection Service (ITMRTSVC) - CA, Inc. - C:\Program Files (x86)\CA\PPRT\bin\ITMRTSVC.exe

O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: Motorola Device Manager Service (Motorola Device Manager) - Unknown owner - C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe

O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)

O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe

O23 - Service: Norton Security Suite (N360) - Symantec Corporation - C:\Program Files (x86)\Norton Security Suite\Engine\5.2.2.3\ccSvcHst.exe

O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: NVIDIA Driver Helper Service (NVSvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)

O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe

O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe

O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: PST Service - Motorola - C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe

O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel® Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe

O23 - Service: RoxMediaDB12OEM - Sonic Solutions - C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe

O23 - Service: Roxio Hard Drive Watcher 12 (RoxWatch12) - Sonic Solutions - C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe

O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)

O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: SoftThinks Agent Service (SftService) - SoftThinks SAS - C:\Program Files (x86)\AlienRespawn\sftservice.EXE

O23 - Service: Skype C2C Service - Skype Technologies S.A. - C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe

O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe

O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)

O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)

O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)

O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe

O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files (x86)\Common Files\SureThing Shared\stllssvr.exe

O23 - Service: TabletServicePen - Unknown owner - C:\Windows\system32\Pen_Tablet.exe (file missing)

O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)

O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)

O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)

O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)

O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)

O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)

O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)

O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--

End of file - 17365 bytes

Link to post
Share on other sites

Hello Atko319 and :welcome:! My name is Maniac and I will be glad to help you solve your malware problem.

Please note:

  • If you are a paying customer, you have the privilege to contact the help desk at Consumer Support. If you choose this option to get help, please let me know.
  • I recommend you to keep the instructions I will be giving you so that they are available to you at any time. You can save them in a text file or print them.
  • Make sure you read all of the instructions and fixes thoroughly before continuing with them.
  • Follow my instructions strictly and don’t hesitate to stop and ask me if you have any questions.
  • Post your log files, don't attach them. Every log file should be copy/pasted in your next reply.
  • Do not perform any kind of scanning and fixing without my instructions. If you want to proceed on your own, please let me know.

Please follow the instructions here and post the log files in your next reply:

http://forums.malwarebytes.org/index.php?showtopic=9573

Link to post
Share on other sites

Hmm... when I tried to install Malwarebytes' Anti-Malware I got an error saying:

CoCreateInstance failed; code 0x80040154. Class not registered.

It continued to install from there and when it attempted to launch the program I got another message saying:

Run-time error '440': Automation Error

Then it appears to have only installed empty folders

Link to post
Share on other sites

DDS (Ver_2012-11-20.01) - NTFS_AMD64

Internet Explorer: 9.0.8112.16457

Run by Brian Atkinson at 16:31:09 on 2013-01-24

.

============== Running Processes ================

.

C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe

C:\Program Files (x86)\comcasttb\ComcastSpywareScan\ComcastAntiSpyService.exe

C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe

C:\Program Files (x86)\Motorola Media Link\Lite\NServiceEntry.exe

C:\Program Files (x86)\CA\PPRT\bin\ITMRTSVC.exe

C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe

C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe

C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

C:\Program Files (x86)\Norton Security Suite\Engine\5.2.2.3\ccSvcHst.exe

C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe

C:\Program Files (x86)\STMicroelectronics\AccelerometerP11\FF_Protection.exe

C:\Program Files (x86)\comcasttb\ComcastSpywareScan\ComcastAntiSpy.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Update\GoogleUpdate.exe

C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe

C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe

C:\Program Files (x86)\Motorola Mobility\MotoCast\MotoCast.exe

C:\Program Files (x86)\Constant Guard Protection Suite\IDVault.exe

C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

C:\Program Files (x86)\Integrated Webcam\Live! Central\WebcamInt.exe

C:\Program Files (x86)\Norton Security Suite\Engine\5.2.2.3\ccSvcHst.exe

C:\Program Files (x86)\Clarus\Samsung Drive Manager\ABRTMon.exe

C:\Windows\SysWOW64\PnkBstrA.exe

C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe

C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Update\GoogleUpdate.exe

C:\Program Files (x86)\SFT\GuardedID\GIDD.exe

C:\Program Files (x86)\AlienRespawn\sftservice.EXE

C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe

C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe

C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe

C:\Program Files\Alienware\Command Center\AlienwareAlienFXController.exe

C:\Program Files (x86)\Constant Guard Protection Suite\IDVaultSvc.exe

C:\Program Files (x86)\Motorola Mobility\MotoCast\bin\MotoCast-thumbnailer.exe

C:\PROGRA~2\Raptr\raptr.exe

C:\PROGRA~2\Raptr\raptr_im.exe

C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe

C:\Program Files\Alienware\Command Center\AlienFusionController.exe

C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\Application\chrome.exe

C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt

.

============== Pseudo HJT Report ===============

.

uStart Page = hxxp://searchab.com/?aff=7&uid=319183f6-64c4-11e2-ae5f-74de2b9af99f

uDefault_Page_URL = hxxp://AlienwareArena.com

mStart Page = hxxp://searchab.com/?aff=7&uid=319183f6-64c4-11e2-ae5f-74de2b9af99f

uURLSearchHooks: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - <orphaned>

uURLSearchHooks: {b6ac5e3c-5ceb-4e72-b451-f0e1ba983c14} - <orphaned>

mURLSearchHooks: {b6ac5e3c-5ceb-4e72-b451-f0e1ba983c14} - <orphaned>

mWinlogon: Userinit = userinit.exe

BHO: {02478D38-C3F9-4efb-9B51-7695ECA05670} - <orphaned>

BHO: {0347C33E-8762-4905-BF09-768834316C61} - <orphaned>

BHO: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - <orphaned>

BHO: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - <orphaned>

BHO: {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - <orphaned>

BHO: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - <orphaned>

BHO: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - <orphaned>

BHO: {b6ac5e3c-5ceb-4e72-b451-f0e1ba983c14} - <orphaned>

BHO: Constant Guard Protection Suite: {B84CDBE7-1B46-494B-A188-01D4C52DEB61} - C:\ProgramData\White Sky, Inc\ID Vault\IEBHO1.13.111.1\NativeBHO.dll

BHO: {bb46be07-13eb-4c49-b0f0-fc78b9ea4983} - <orphaned>

BHO: {DBC80044-A445-435b-BC74-9C25C1C588A9} - <orphaned>

BHO: {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - <orphaned>

BHO: {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - <orphaned>

EB: {555D4D79-4BD2-4094-A395-CFC534424A05} - <orphaned>

EB: {555D4D79-4BD2-4094-A395-CFC534424A05} - <orphaned>

uRun: [ComcastAntispyClient] "C:\Program Files (x86)\comcasttb\ComcastSpywareScan\ComcastAntispy.exe" /hide

uRun: [Google Update] "C:\Users\Brian Atkinson\AppData\Local\Google\Update\GoogleUpdate.exe" /c

uRun: [Aim] "C:\Program Files (x86)\AIM\aim.exe" /d locale=en-US

uRun: [Raptr] C:\PROGRA~2\Raptr\raptrstub.exe --startup

uRun: [MobileDocuments] C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe

uRun: [MotoCast] "C:\Program Files (x86)\Motorola Mobility\MotoCast\MotoLauncher.lnk"

mRun: [AlienwareOn-ScreenDisplay] C:\Program Files (x86)\Alienware On-Screen Display\AlienwareOn-ScreenDisplay.exe

mRun: [iAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe

mRun: [integrated Webcam Live! Central] "C:\Program Files (x86)\Integrated Webcam\Live! Central\WebcamInt.exe" /mode2

mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"

mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

mRun: [RoxWatchTray] "C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe"

mRun: [Desktop Disc Tool] "C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe"

mRun: [GIDDesktop] C:\Program Files (x86)\SFT\GuardedID\gidd.exe /s

mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"

mRun: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe

mRun: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime

mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"

mRunOnce: [Malwarebytes Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent

mPolicies-Explorer: NoActiveDesktop = dword:1

mPolicies-Explorer: NoActiveDesktopChanges = dword:1

mPolicies-System: ConsentPromptBehaviorAdmin = dword:5

mPolicies-System: ConsentPromptBehaviorUser = dword:3

mPolicies-System: EnableUIADesktopToggle = dword:0

mPolicies-System: PromptOnSecureDesktop = dword:0

IE: Free YouTube to MP3 Converter - C:\Users\Brian Atkinson\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm

IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - <orphaned>

IE: {DDE87865-83C5-48c4-8357-2F5B1AA84522} - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - <orphaned>

Trusted Zone: clonewarsadventures.com

Trusted Zone: freerealms.com

Trusted Zone: soe.com

Trusted Zone: sony.com

DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} - hxxp://ccfiles.creative.com/Web/softwareupdate/su/ocx/15102/CTSUEng.cab

DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab

DPF: {CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab

DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab

DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} - hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab

DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} - hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/110926/CTPID.cab

TCP: NameServer = 75.75.75.75 75.75.76.76

TCP: Interfaces\{F7087BF3-2FA8-4A92-987D-9165EE182134} : DHCPNameServer = 75.75.75.75 75.75.76.76

TCP: Interfaces\{F7087BF3-2FA8-4A92-987D-9165EE182134}\74F6C64644F6C6078696E6 : DHCPNameServer = 207.255.0.43 207.255.0.45

TCP: Interfaces\{F7087BF3-2FA8-4A92-987D-9165EE182134}\74F6C64644F6C6078696E6D27657563747 : DHCPNameServer = 207.255.0.43 207.255.0.45

TCP: Interfaces\{F7087BF3-2FA8-4A92-987D-9165EE182134}\7756374756C6C603333323 : DHCPNameServer = 10.0.0.1

TCP: Interfaces\{F7087BF3-2FA8-4A92-987D-9165EE182134}\C696E6B6379737 : DHCPNameServer = 207.255.0.43 207.255.0.45

Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - <orphaned>

Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>

AppInit_DLLs= C:\PROGRA~2\KEYCRY~1\KEYCRY~3.DLL,c:\windows\syswow64\nvinit.dll

SSODL: WebCheck - <orphaned>

mASetup: {9191979D-821C-4EA8-B021-2DA1D859A7C5}-3Reg - C:\Program Files (x86)\SFT\GuardedID\gidi.exe /v

CLSID: {603D3801-BD81-11d0-A3A5-00C04FD706EC} - <is not referencing any dll>

x64-BHO: Skype add-on for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll

x64-BHO: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

x64-Run: [synTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe

x64-Run: [igfxTray] C:\Windows\System32\igfxtray.exe

x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe

x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe

x64-Run: [NVHotkey] rundll32.exe C:\Windows\System32\nvHotkey.dll,Start

x64-Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s

x64-Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /MAXX3

x64-Run: [FreeFallProtection] C:\Program Files (x86)\STMicroelectronics\AccelerometerP11\FF_Protection.exe

x64-Run: [intelWireless] "C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel Wireless Tray

x64-Run: [Command Center Controllers] "C:\Program Files\Alienware\Command Center\AWCCStartupOrchestrator.exe"

x64-IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll

x64-DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab

x64-DPF: {CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab

x64-DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab

x64-Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll

x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>

x64-Notify: igfxcui - igfxdev.dll

x64-SSODL: WebCheck - <orphaned>

.

============= SERVICES / DRIVERS ===============

.

R? clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86

R? clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64

R? DAUpdaterSvc;Dragon Age: Origins - Content Updater

R? Impcd;Impcd

R? mdf16;mdf16

R? mvd23;mvd23

R? MyWiFiDHCPDNS;Wireless PAN DHCP Server

R? RoxMediaDB12OEM;RoxMediaDB12OEM

R? RoxWatch12;Roxio Hard Drive Watcher 12

R? SkypeUpdate;Skype Updater

R? TsUsbFlt;TsUsbFlt

R? TsUsbGD;Remote Desktop Generic USB Device

R? USBAAPL64;Apple Mobile USB Driver

R? wacmoumonitor;Wacom Mode Helper

R? WatAdminSvc;Windows Activation Technologies Service

S? Acceler;Accelerometer Service

S? AERTFilters;Andrea RT Filters Service

S? AlienFusionService;Alienware Fusion Service

S? AntiLog32;AntiLog32

S? AntiSpywareService;Comcast AntiSpyware

S? BHDrvx64;BHDrvx64

S? btwampfl;Bluetooth AMP USB Filter

S? CtClsFlt;Creative Camera Class Upper Filter Driver

S? DeviceMonitorService;DeviceMonitorService

S? EMSC;COMPAL Embedded System Control

S? EraserUtilRebootDrv;EraserUtilRebootDrv

S? GIDv2;GIDv2

S? IAStorDataMgrSvc;Intel® Rapid Storage Technology

S? IDSVia64;IDSVia64

S? IDVaultSvc;CGPS Service

S? IntcDAud;Intel® Display Audio

S? keycrypt;keycrypt

S? L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller

S? Motorola Device Manager;Motorola Device Manager Service

S? N360;Norton Security Suite

S? nusb3hub;Renesas Electronics USB 3.0 Hub Driver

S? nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver

S? nvpciflt;nvpciflt

S? PST Service;PST Service

S? PxHlpa64;PxHlpa64

S? RSPCIESTOR;Realtek PCIE CardReader Driver

S? SftService;SoftThinks Agent Service

S? Skype C2C Service;Skype C2C Service

S? stdcfltn;Disk Class Filter Driver for Accelerometer

S? Stereo Service;NVIDIA Stereoscopic 3D Driver Service

S? SymDS;Symantec Data Store

S? SymEFA;Symantec Extended File Attributes

S? SymIRON;Symantec Iron Driver

S? SymNetS;Symantec Network Security WFP Driver

S? TabletServicePen;TabletServicePen

S? wdkmd;Intel WiDi KMD

.

=============== Created Last 30 ================

.

2013-01-24 15:30:15 -------- d-----w- C:\Users\Brian Atkinson\AppData\Roaming\Malwarebytes

2013-01-24 15:28:26 -------- d-----w- C:\ProgramData\Malwarebytes

2013-01-24 15:28:25 24176 ----a-w- C:\Windows\System32\drivers\mbam.sys

2013-01-24 15:28:25 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware

2013-01-24 15:27:56 -------- d-----w- C:\Users\Brian Atkinson\AppData\Local\Programs

2013-01-23 21:57:12 -------- d-----w- C:\Users\Brian Atkinson\AppData\Roaming\Uniblue

2013-01-23 21:57:05 -------- d-----w- C:\Program Files (x86)\Uniblue

2013-01-23 19:31:46 -------- d-----w- C:\Users\Brian Atkinson\AppData\Local\Zemana

2013-01-23 19:10:53 -------- d-----w- C:\ProgramData\ErrorEND64

2013-01-23 19:10:46 -------- d-----w- C:\Program Files\ErrorEND

2013-01-23 19:09:41 7369552 ----a-w- C:\Windows\SysWow64\ZALSDKCore.dll

2013-01-23 19:09:41 26448 ----a-w- C:\Windows\System32\drivers\KeyCrypt64.sys

2013-01-23 19:09:41 -------- d-----w- C:\Windows\SysWow64\ZALSDK_uninst

2013-01-23 19:09:41 -------- d-----w- C:\Program Files (x86)\KeyCryptSDK

2013-01-23 19:09:39 45968 ----a-w- C:\Windows\System32\drivers\AntiLog64.sys

2013-01-23 03:38:42 -------- d-----w- C:\Program Files (x86)\Eusing Free Registry Cleaner

2013-01-23 01:14:13 76232 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2C481B90-CB3B-44DF-A74C-E72BD04EF754}\offreg.dll

2013-01-23 01:09:07 8199504 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll

2013-01-23 01:09:04 9161176 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2C481B90-CB3B-44DF-A74C-E72BD04EF754}\mpengine.dll

2013-01-23 00:34:33 -------- d-----w- C:\Users\Brian Atkinson\AppData\Local\ElevatedDiagnostics

2013-01-23 00:34:03 -------- d-----w- C:\Users\Brian Atkinson\AppData\Local\Downloaded Installations

2013-01-23 00:33:51 -------- d-----w- C:\Dell

2013-01-22 19:10:40 -------- d-----w- C:\Users\Brian Atkinson\AppData\Local\CRE

2013-01-22 19:10:31 -------- d-----w- C:\Program Files (x86)\Conduit

2013-01-22 19:10:25 -------- d-----w- C:\Users\Brian Atkinson\AppData\Local\Conduit

2013-01-22 19:09:03 -------- d-----w- C:\Users\Brian Atkinson\AppData\Roaming\BitTorrent

2013-01-22 18:48:26 -------- d-----w- C:\ProgramData\CLSoft LTD

2013-01-22 18:48:12 -------- d-----w- C:\ProgramData\Zoomex

2013-01-22 18:48:09 -------- d-----w- C:\ProgramData\InstallMate

2013-01-22 18:11:00 -------- d-----w- C:\data

2013-01-19 08:38:51 834544 ----a-w- C:\Windows\System32\drivers\sptd.sys

2013-01-19 08:37:16 -------- d-----w- C:\Users\Brian Atkinson\AppData\Roaming\DAEMON Tools Lite

2013-01-09 16:16:20 750592 ----a-w- C:\Windows\System32\win32spl.dll

2013-01-09 16:16:20 492032 ----a-w- C:\Windows\SysWow64\win32spl.dll

2013-01-09 16:14:57 68608 ----a-w- C:\Windows\System32\taskhost.exe

2013-01-09 16:14:56 3149824 ----a-w- C:\Windows\System32\win32k.sys

2013-01-08 21:12:12 16369160 ----a-w- C:\Windows\SysWow64\FlashPlayerInstaller.exe

2013-01-03 17:41:45 -------- d-----w- C:\Users\Brian Atkinson\AppData\Roaming\RenPy

.

==================== Find3M ====================

.

2013-01-08 21:12:22 74248 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl

2013-01-08 21:12:22 697864 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe

2012-12-16 17:11:22 46080 ----a-w- C:\Windows\System32\atmlib.dll

2012-12-16 14:45:03 367616 ----a-w- C:\Windows\System32\atmfd.dll

2012-12-16 14:13:28 295424 ----a-w- C:\Windows\SysWow64\atmfd.dll

2012-12-16 14:13:20 34304 ----a-w- C:\Windows\SysWow64\atmlib.dll

2012-12-07 13:20:16 441856 ----a-w- C:\Windows\System32\Wpc.dll

2012-12-07 13:15:31 2746368 ----a-w- C:\Windows\System32\gameux.dll

2012-12-07 12:26:17 308736 ----a-w- C:\Windows\SysWow64\Wpc.dll

2012-12-07 12:20:43 2576384 ----a-w- C:\Windows\SysWow64\gameux.dll

2012-12-07 11:20:04 30720 ----a-w- C:\Windows\System32\usk.rs

2012-12-07 11:20:03 43520 ----a-w- C:\Windows\System32\csrr.rs

2012-12-07 11:20:03 23552 ----a-w- C:\Windows\System32\oflc.rs

2012-12-07 11:20:01 45568 ----a-w- C:\Windows\System32\oflc-nz.rs

2012-12-07 11:20:01 44544 ----a-w- C:\Windows\System32\pegibbfc.rs

2012-12-07 11:20:01 20480 ----a-w- C:\Windows\System32\pegi-fi.rs

2012-12-07 11:20:00 20480 ----a-w- C:\Windows\System32\pegi-pt.rs

2012-12-07 11:19:59 20480 ----a-w- C:\Windows\System32\pegi.rs

2012-12-07 11:19:58 46592 ----a-w- C:\Windows\System32\fpb.rs

2012-12-07 11:19:57 40960 ----a-w- C:\Windows\System32\cob-au.rs

2012-12-07 11:19:57 21504 ----a-w- C:\Windows\System32\grb.rs

2012-12-07 11:19:57 15360 ----a-w- C:\Windows\System32\djctq.rs

2012-12-07 11:19:56 55296 ----a-w- C:\Windows\System32\cero.rs

2012-12-07 11:19:55 51712 ----a-w- C:\Windows\System32\esrb.rs

2012-11-30 05:45:35 362496 ----a-w- C:\Windows\System32\wow64win.dll

2012-11-30 05:45:35 243200 ----a-w- C:\Windows\System32\wow64.dll

2012-11-30 05:45:35 13312 ----a-w- C:\Windows\System32\wow64cpu.dll

2012-11-30 05:45:14 215040 ----a-w- C:\Windows\System32\winsrv.dll

2012-11-30 05:43:12 16384 ----a-w- C:\Windows\System32\ntvdm64.dll

2012-11-30 05:41:07 424448 ----a-w- C:\Windows\System32\KernelBase.dll

2012-11-30 04:54:00 5120 ----a-w- C:\Windows\SysWow64\wow32.dll

2012-11-30 04:53:59 274944 ----a-w- C:\Windows\SysWow64\KernelBase.dll

2012-11-30 03:23:48 338432 ----a-w- C:\Windows\System32\conhost.exe

2012-11-30 02:44:06 25600 ----a-w- C:\Windows\SysWow64\setup16.exe

2012-11-30 02:44:04 7680 ----a-w- C:\Windows\SysWow64\instnm.exe

2012-11-30 02:44:04 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll

2012-11-30 02:44:03 2048 ----a-w- C:\Windows\SysWow64\user.exe

2012-11-30 02:38:59 6144 ---ha-w- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll

2012-11-30 02:38:59 4608 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll

2012-11-30 02:38:59 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll

2012-11-30 02:38:59 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll

2012-11-22 05:44:23 800768 ----a-w- C:\Windows\System32\usp10.dll

2012-11-22 04:45:03 626688 ----a-w- C:\Windows\SysWow64\usp10.dll

2012-11-20 05:48:49 307200 ----a-w- C:\Windows\System32\ncrypt.dll

2012-11-20 04:51:09 220160 ----a-w- C:\Windows\SysWow64\ncrypt.dll

2012-11-14 06:11:44 2312704 ----a-w- C:\Windows\System32\jscript9.dll

2012-11-14 06:04:11 1392128 ----a-w- C:\Windows\System32\wininet.dll

2012-11-14 06:02:49 1494528 ----a-w- C:\Windows\System32\inetcpl.cpl

2012-11-14 05:57:46 599040 ----a-w- C:\Windows\System32\vbscript.dll

2012-11-14 05:57:35 173056 ----a-w- C:\Windows\System32\ieUnatt.exe

2012-11-14 05:52:40 2382848 ----a-w- C:\Windows\System32\mshtml.tlb

2012-11-14 02:09:22 1800704 ----a-w- C:\Windows\SysWow64\jscript9.dll

2012-11-14 01:58:15 1427968 ----a-w- C:\Windows\SysWow64\inetcpl.cpl

2012-11-14 01:57:37 1129472 ----a-w- C:\Windows\SysWow64\wininet.dll

2012-11-14 01:49:25 142848 ----a-w- C:\Windows\SysWow64\ieUnatt.exe

2012-11-14 01:48:27 420864 ----a-w- C:\Windows\SysWow64\vbscript.dll

2012-11-14 01:44:42 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb

2012-11-09 05:45:09 2048 ----a-w- C:\Windows\System32\tzres.dll

2012-11-09 04:42:49 2048 ----a-w- C:\Windows\SysWow64\tzres.dll

2012-11-08 16:29:12 1402312 ----a-w- C:\Windows\SysWow64\msxml4.dll

2012-11-02 05:59:11 478208 ----a-w- C:\Windows\System32\dpnet.dll

2012-11-02 05:11:31 376832 ----a-w- C:\Windows\SysWow64\dpnet.dll

2012-11-01 05:43:42 2002432 ----a-w- C:\Windows\System32\msxml6.dll

2012-11-01 05:43:42 1882624 ----a-w- C:\Windows\System32\msxml3.dll

2012-11-01 04:47:54 1389568 ----a-w- C:\Windows\SysWow64\msxml6.dll

2012-11-01 04:47:54 1236992 ----a-w- C:\Windows\SysWow64\msxml3.dll

.

============= FINISH: 16:31:45.80 ===============

.

==== Installed Programs ======================

.

64 Bit HP CIO Components Installer

7-Zip 9.20

AccelerometerP11

Adobe AIR

Adobe Flash Player 11 ActiveX

Adobe Flash Player 11 Plugin

Adobe Reader X (10.1.4) MUI

Advanced Audio FX Engine

AIM 7

Alice: Madness Returns

AlienAutopsy

AlienRespawn

AlienRespawn - Support Software

Alienware M14x Manual

Alienware On-Screen Display

AntiLogger SDK version 1.4.6.637

Apple Application Support

Apple Mobile Device Support

Apple Software Update

Banctec Service Agreement

BitTorrent

BitTorrentControl_v12 Toolbar

Bonjour

BufferChm

C4700

CA Pest Patrol Realtime Protection

Chica Password Manager 1.10.0.6

Command Center

Constant Guard Protection Suite

Coupon Printer for Windows

DC Universe Online

Destinations

DeviceDiscovery

Diablo III

DirectX 9 Runtime

Download Updater (AOL LLC)

Dragon Age: Origins - Ultimate Edition

EMSC

ErrorEND

Eusing Free Registry Cleaner

File Type Assistant

FinalTorrent 2011

Free RAR Extract Frog

Free YouTube to MP3 Converter version 3.11.27.821

GIMP 2.8.2

Google Chrome

Google Drive

Google Update Helper

GPBaseService2

GuardedID

Hewlett-Packard ACLM.NET v1.1.0.0

HP Customer Participation Program 13.0

HP Imaging Device Functions 13.0

HP Photosmart C4700 All-In-One Driver Software 13.0 Rel .6

HP Print Projects 1.0

HP Product Detection

HP Smart Web Printing 4.5

HP Solution Center 13.0

HP Update

HPDiagnosticAlert

HPPhotoGadget

hpPrintProjects

HPProductAssistant

HPSSupply

hpWLPGInstaller

iCloud

Integrated Webcam Live! Central

Intel PROSet Wireless

Intel® Control Center

Intel® Processor Graphics

Intel® PROSet/Wireless WiFi Software

Intel® Rapid Storage Technology

Intel® Wireless Display

iTunes

Java Auto Updater

Java 6 Update 27 (64-bit)

Java 6 Update 33

League of Legends

Left 4 Dead

Left 4 Dead 2

Loren The Amazon Princess version 1.2

Malwarebytes Anti-Malware version 1.70.0.1100

MarketResearch

Microsoft .NET Framework 4 Client Profile

Microsoft .NET Framework 4 Extended

Microsoft Games for Windows - LIVE Redistributable

Microsoft Silverlight

Microsoft Visual C++ 2005 Redistributable

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17

Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161

Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148

Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161

Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219

Microsoft XNA Framework Redistributable 4.0 Refresh

MotoCast

Motorola Device Manager

Motorola Device Software Update

MOTOROLA MEDIA LINK

Motorola Mobile Drivers Installation 5.9.0

MSXML 4.0 SP2 (KB954430)

MSXML 4.0 SP2 (KB973688)

MSXML 4.0 SP3 Parser

MSXML 4.0 SP3 Parser (KB2721691)

MSXML 4.0 SP3 Parser (KB2758694)

Network64

Nexus Mod Manager

Norton Security Suite

NVIDIA 3D Vision Driver 269.37

NVIDIA Control Panel 269.37

NVIDIA Graphics Driver 269.37

NVIDIA Install Application

NVIDIA Optimus 1.0.23

NVIDIA PhysX

NVIDIA PhysX System Software 9.11.0621

NVIDIA Stereoscopic 3D Driver

NVIDIA Update Components

OpenAL

Orcs Must Die!

Pen Tablet

PhotoShowExpress

Portal

Portal 2

PS_AIO_06_C4700_SW_Min

PunkBuster Services

QuickTime

Raptr

RBVirtualFolder64Inst

Realtek High Definition Audio Driver

Roxio Activation Module

Roxio BackOnTrack

Roxio Burn

Roxio Creator Starter

Roxio Express Labeler 3

Roxio File Backup

Samsung Drive Manager

Scan

Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2736428)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)

Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)

Security Update for Microsoft .NET Framework 4 Extended (KB2487367)

Security Update for Microsoft .NET Framework 4 Extended (KB2656351)

Security Update for Microsoft .NET Framework 4 Extended (KB2736428)

Security Update for Microsoft .NET Framework 4 Extended (KB2742595)

Shop for HP Supplies

Skype Click to Call

Skype™ 5.10

SmartWebPrinting

SolutionCenter

Sonic CinePlayer Decoder Pack

StarCraft II

Status

Steam

Synaptics Pointing Device Driver

The Elder Scrolls V: Skyrim

The Weather Channel Desktop 6

Tomb Raider: Legend

Tomb Raider: Underworld

Toolbox

TrayApp

Uniblue RegistryBooster

Update for Microsoft .NET Framework 4 Client Profile (KB2468871)

Update for Microsoft .NET Framework 4 Client Profile (KB2533523)

Update for Microsoft .NET Framework 4 Client Profile (KB2600217)

Update for Microsoft .NET Framework 4 Extended (KB2468871)

Update for Microsoft .NET Framework 4 Extended (KB2533523)

Update for Microsoft .NET Framework 4 Extended (KB2600217)

Ventrilo Client for Windows x64

WebReg

World of Warcraft

.

==== End Of File ===========================

Link to post
Share on other sites

Step 1

Please uninstall the following applications:

BitTorrent

BitTorrentControl_v12 Toolbar

Coupon Printer for Windows

ErrorEND

FinalTorrent 2011

Uniblue RegistryBooster

Step 2

Please download Junkware Removal Tool to your desktop.

  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista or Seven, right-mouse click it and select Run as Administrator.
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.

Step 3

  • Launch Malwarebytes' Anti-Malware
  • Go to Update tab and select Check for Updates. If an update is found, it will download and install the latest version.
  • Go to Scanner tab and select Perform Quick Scan, then click Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy&Paste the entire report in your next reply.

Extra Note: If MBAM encounters a file that is difficult to remove, you will be presented with 1 of 2 prompts, click OK to either and let MBAM proceed with the disinfection process, if asked to restart the computer,please do so immediately.

In your next reply, post the following log files:

  • Malwarebytes' Anti-Malware log
  • a new fresh DDS log

Link to post
Share on other sites

I might need assistance with figuring out how to properly remove a couple of those because some of them I didn't properly uninstall from way before I started having issues and when they show up in Programs and Features it says they "... may have already been uninstalled. Would you like to remove [program] from the Programs and Features list." Then when I try and accept the program does not disappear from the Programs and Features window.

I did not get very far on this today because I've been extremely busy, but I will give another crack at this in a day or two (Monday evening at the latest) and continue with the rest of the steps you detailed and post the proper logs when I can.

Just wanted to say thank you for your help thus far and for whatever future assistance you will be offering me in the continuing process.

Link to post
Share on other sites

I might need assistance with figuring out how to properly remove a couple of those because some of them I didn't properly uninstall from way before I started having issues and when they show up in Programs and Features it says they "... may have already been uninstalled. Would you like to remove [program] from the Programs and Features list." Then when I try and accept the program does not disappear from the Programs and Features window.

That's a good news, because this is a leftover, not a fully-functional application. Please proceed further. :)

Link to post
Share on other sites

I still can not launch Malwarebyte's Anti-Malware (even after running Junkware Removal Tool). Any time I try to re-install it and run it I still get error messages.

When installing it i get several messages saying something like: CoCreateInstance failed; code 0x80040154. Class not registered.

And any time I try to run it from inside my Program Files(x86) folder, i get two messages saying:

Run-time error '0'

Run-time error '440': Automation Error

Is there any way I can work around this issue to get Malwarebyte's Anti-Malware to work?

However, here is the JRT.txt

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Junkware Removal Tool (JRT) by Thisisu

Version: 4.5.2 (01.26.2013:2)

OS: Windows 7 Home Premium x64

Ran by Brian Atkinson on Sun 01/27/2013 at 13:16:03.37

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

~~~ Services

~~~ Registry Values

Successfully deleted: [Registry Value] hkey_current_user\software\microsoft\internet explorer\urlsearchhooks\\{b6ac5e3c-5ceb-4e72-b451-f0e1ba983c14}

Successfully deleted: [Registry Value] hkey_local_machine\software\microsoft\internet explorer\toolbar\\{b6ac5e3c-5ceb-4e72-b451-f0e1ba983c14}

Successfully deleted: [Registry Value] hkey_local_machine\software\microsoft\internet explorer\urlsearchhooks\\{b6ac5e3c-5ceb-4e72-b451-f0e1ba983c14}

Successfully deleted: [Registry Value] hkey_current_user\software\microsoft\internet explorer\urlsearchhooks\\{ef99bd32-c1fb-11d2-892f-0090271d4f88}

Successfully deleted: [Registry Value] hkey_local_machine\software\microsoft\internet explorer\toolbar\\{ef99bd32-c1fb-11d2-892f-0090271d4f88}

~~~ Registry Keys

Successfully deleted: [Registry Key] hkey_current_user\software\conduit

Successfully deleted: [Registry Key] hkey_local_machine\software\conduit

Successfully deleted: [Registry Key] hkey_local_machine\software\freeze.com

Successfully deleted: [Registry Key] hkey_current_user\software\softonic

Successfully deleted: [Registry Key] hkey_current_user\software\startsearch

Successfully deleted: [Registry Key] hkey_current_user\software\appdatalow\software\conduit

Successfully deleted: [Registry Key] hkey_current_user\software\appdatalow\software\smartbar

Successfully deleted: [Registry Key] hkey_local_machine\software\classes\appid\dnu.exe

Successfully deleted: [Registry Key] hkey_local_machine\software\classes\dnupdate

Successfully deleted: [Registry Key] hkey_local_machine\software\classes\dnupdater.downloaduibrowser

Successfully deleted: [Registry Key] hkey_local_machine\software\classes\dnupdater.downloaduibrowser.1

Successfully deleted: [Registry Key] hkey_local_machine\software\classes\dnupdater.downloadupdcontroller

Successfully deleted: [Registry Key] hkey_local_machine\software\classes\dnupdater.downloadupdcontroller.1

Successfully deleted: [Registry Key] hkey_local_machine\software\wow6432node\sp global

Successfully deleted: [Registry Key] hkey_local_machine\software\wow6432node\sprotector

Successfully deleted: [Registry Key-Heur] HKEY_LOCAL_MACHINE\software\classes\Toolbar.CT3225826

Successfully deleted: [Registry Key] hkey_local_machine\software\microsoft\windows\currentversion\explorer\browser helper objects\{02478d38-c3f9-4efb-9b51-7695eca05670}

Successfully deleted: [Registry Key] hkey_local_machine\software\microsoft\windows\currentversion\explorer\browser helper objects\{b6ac5e3c-5ceb-4e72-b451-f0e1ba983c14}

~~~ Files

Successfully deleted: [File] C:\eula.1028.txt

Successfully deleted: [File] C:\eula.1031.txt

Successfully deleted: [File] C:\eula.1033.txt

Successfully deleted: [File] C:\eula.1036.txt

Successfully deleted: [File] C:\eula.1040.txt

Successfully deleted: [File] C:\eula.1041.txt

Successfully deleted: [File] C:\eula.1042.txt

Successfully deleted: [File] C:\eula.2052.txt

Successfully deleted: [File] C:\install.res.1028.dll

Successfully deleted: [File] C:\install.res.1031.dll

Successfully deleted: [File] C:\install.res.1033.dll

Successfully deleted: [File] C:\install.res.1036.dll

Successfully deleted: [File] C:\install.res.1040.dll

Successfully deleted: [File] C:\install.res.1041.dll

Successfully deleted: [File] C:\install.res.1042.dll

Successfully deleted: [File] C:\install.res.2052.dll

Successfully deleted: [File] C:\install.res.3082.dll

~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\clsoft ltd"

Successfully deleted: [Folder] "C:\ProgramData\ibupdaterservice"

Successfully deleted: [Folder] "C:\ProgramData\installmate"

Successfully deleted: [Folder] "C:\ProgramData\wecarereminder"

Successfully deleted: [Folder] "C:\ProgramData\zoomex"

Successfully deleted: [Folder] "C:\Users\Brian Atkinson\AppData\Roaming\dvdvideosoftiehelpers"

Successfully deleted: [Folder] "C:\Users\Brian Atkinson\appdata\local\conduit"

Successfully deleted: [Folder] "C:\Users\Brian Atkinson\appdata\locallow\comcasttb"

Successfully deleted: [Folder] "C:\Users\Brian Atkinson\appdata\locallow\conduit"

Failed to delete: [Folder] "C:\Program Files (x86)\comcasttb"

Successfully deleted: [Folder] "C:\Program Files (x86)\conduit"

Successfully deleted: [Folder] "C:\Program Files (x86)\coupons"

Successfully deleted: [Folder] "C:\Program Files (x86)\Common Files\software update utility"

Successfully deleted: [Folder] "C:\Windows\syswow64\ai_recyclebin"

~~~ Chrome

Successfully deleted: [Registry Key] hkey_current_user\software\google\chrome\extensions\dknkjnkhedbanphkkpbpcgoblmkbfhlf

Successfully deleted: [Registry Key] hkey_local_machine\software\google\chrome\extensions\dknkjnkhedbanphkkpbpcgoblmkbfhlf

~~~ Event Viewer Logs were cleared

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Scan was completed on Sun 01/27/2013 at 13:23:52.96

End of JRT log

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Link to post
Share on other sites

And any time I try to run it from inside my Program Files(x86) folder, i get two messages saying:

Run-time error '0'

Run-time error '440': Automation Error

I actually found my way over to the FAQ page (http://forums.malwarebytes.org/index.php?showtopic=10138) and attempted to do the fix in step 15 to no success. I followed the instructions to the letter and still get the run-time errors/

Link to post
Share on other sites

Note: Please do not run this tool without special supervision and instructions of someone authorized to do so. Otherwise, you could end up with serious problems. For more details, read this article: ComboFix usage, Questions, Help? - Look here

Please visit this webpage for download links, and instructions for running the tool:

http://www.bleepingc...to-use-combofix

* Ensure you have disabled all anti virus and anti malware programs so they do not interfere with the running of ComboFix.

Please post the C:\ComboFix.txt in your next reply for further review.

Note: If you encounter a message "illegal operation attempted on registry key that has been marked for deletion" and no programs will run - please just reboot and that will resolve that error.

Link to post
Share on other sites

Here's the combofix log

ComboFix 13-01-30.04 - Brian Atkinson 01/30/2013 16:25:37.2.4 - x64

Running from: c:\users\Brian Atkinson\Downloads\ComboFix.exe

* Created a new restore point

.

.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))

.

.

---- Previous Run -------

.

C:\data

c:\data\IluPak.exe

C:\Install.exe

C:\prefs.js

c:\programdata\Roaming

c:\users\Brian Atkinson\AppData\Local\._Revolution_

c:\windows\SysWow64\SET63B1.tmp

c:\windows\SysWow64\SET644E.tmp

c:\windows\SysWow64\SETBF1A.tmp

c:\windows\SysWow64\SETBF69.tmp

.

.

((((((((((((((((((((((((( Files Created from 2012-12-28 to 2013-01-30 )))))))))))))))))))))))))))))))

.

.

2013-01-30 21:40 . 2013-01-30 21:40 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp

2013-01-30 21:40 . 2013-01-30 21:40 -------- d-----w- c:\users\DefaultAppPool\AppData\Local\temp

2013-01-29 16:36 . 2013-01-15 07:45 9161176 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{68C26876-D111-4D92-B773-AE1F7F6CF8E2}\mpengine.dll

2013-01-29 06:19 . 2013-01-29 06:19 737072 ----a-w- c:\programdata\Microsoft\eHome\Packages\SportsV2\SportsTemplateCore\Microsoft.MediaCenter.Sports.UI.dll

2013-01-29 06:19 . 2013-01-29 06:19 2876528 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll

2013-01-29 06:19 . 2013-01-29 06:19 42776 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM\StartResources.dll

2013-01-29 06:19 . 2013-01-29 06:19 539984 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll

2013-01-27 18:39 . 2013-01-27 18:39 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware

2013-01-27 18:39 . 2012-12-14 21:49 24176 ----a-w- c:\windows\system32\drivers\mbam.sys

2013-01-27 18:15 . 2013-01-27 18:15 -------- d-----w- c:\windows\ERUNT

2013-01-27 18:15 . 2013-01-27 18:15 -------- d-----w- C:\JRT

2013-01-24 15:30 . 2013-01-24 15:30 -------- d-----w- c:\users\Brian Atkinson\AppData\Roaming\Malwarebytes

2013-01-24 15:28 . 2013-01-24 15:28 -------- d-----w- c:\programdata\Malwarebytes

2013-01-24 15:27 . 2013-01-24 15:27 -------- d-----w- c:\users\Brian Atkinson\AppData\Local\Programs

2013-01-23 21:57 . 2013-01-23 21:57 -------- d-----w- c:\users\Brian Atkinson\AppData\Roaming\Uniblue

2013-01-23 21:57 . 2013-01-23 21:57 -------- d-----w- c:\program files (x86)\Uniblue

2013-01-23 19:31 . 2013-01-23 19:31 -------- d-----w- c:\users\Brian Atkinson\AppData\Local\Zemana

2013-01-23 19:10 . 2013-01-23 19:10 -------- d-----w- c:\programdata\ErrorEND64

2013-01-23 19:09 . 2013-01-23 19:09 -------- d-----w- c:\windows\SysWow64\ZALSDK_uninst

2013-01-23 19:09 . 2013-01-23 19:09 -------- d-----w- c:\program files (x86)\KeyCryptSDK

2013-01-23 19:09 . 2013-01-06 01:39 7369552 ----a-w- c:\windows\SysWow64\ZALSDKCore.dll

2013-01-23 19:09 . 2013-01-06 01:39 26448 ----a-w- c:\windows\system32\drivers\KeyCrypt64.sys

2013-01-23 19:09 . 2013-01-23 19:09 45968 ----a-w- c:\windows\system32\drivers\AntiLog64.sys

2013-01-23 03:38 . 2013-01-23 03:44 -------- d-----w- c:\program files (x86)\Eusing Free Registry Cleaner

2013-01-23 00:34 . 2013-01-23 00:34 -------- d-----w- c:\users\Brian Atkinson\AppData\Local\ElevatedDiagnostics

2013-01-23 00:34 . 2013-01-23 00:34 -------- d-----w- c:\users\Brian Atkinson\AppData\Local\Downloaded Installations

2013-01-23 00:33 . 2013-01-23 00:33 -------- d-----w- C:\Dell

2013-01-22 19:10 . 2013-01-22 19:10 -------- d-----w- c:\users\Brian Atkinson\AppData\Local\CRE

2013-01-22 19:09 . 2013-01-23 19:30 -------- d-----w- c:\users\Brian Atkinson\AppData\Roaming\BitTorrent

2013-01-19 08:38 . 2013-01-19 08:38 834544 ----a-w- c:\windows\system32\drivers\sptd.sys

2013-01-19 08:37 . 2013-01-19 08:59 -------- d-----w- c:\users\Brian Atkinson\AppData\Roaming\DAEMON Tools Lite

2013-01-09 16:16 . 2012-11-09 05:45 750592 ----a-w- c:\windows\system32\win32spl.dll

2013-01-09 16:16 . 2012-11-09 04:43 492032 ----a-w- c:\windows\SysWow64\win32spl.dll

2013-01-09 16:14 . 2012-11-23 03:13 68608 ----a-w- c:\windows\system32\taskhost.exe

2013-01-09 16:14 . 2012-11-23 03:26 3149824 ----a-w- c:\windows\system32\win32k.sys

2013-01-08 21:12 . 2013-01-08 21:12 16369160 ----a-w- c:\windows\SysWow64\FlashPlayerInstaller.exe

2013-01-03 17:41 . 2013-01-08 19:23 -------- d-----w- c:\users\Brian Atkinson\AppData\Roaming\RenPy

.

.

.

(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))

.

2013-01-10 17:32 . 2011-12-31 03:22 67599240 ----a-w- c:\windows\system32\MRT.exe

2013-01-08 21:12 . 2012-04-09 14:56 697864 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe

2013-01-08 21:12 . 2011-12-19 13:36 74248 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl

2012-12-16 17:11 . 2012-12-22 16:24 46080 ----a-w- c:\windows\system32\atmlib.dll

2012-12-16 14:45 . 2012-12-22 16:24 367616 ----a-w- c:\windows\system32\atmfd.dll

2012-12-16 14:13 . 2012-12-22 16:24 295424 ----a-w- c:\windows\SysWow64\atmfd.dll

2012-12-16 14:13 . 2012-12-22 16:24 34304 ----a-w- c:\windows\SysWow64\atmlib.dll

2012-11-30 04:45 . 2013-01-09 16:15 44032 ----a-w- c:\windows\apppatch\acwow64.dll

2012-11-14 07:06 . 2012-12-13 16:06 17811968 ----a-w- c:\windows\system32\mshtml.dll

2012-11-14 06:32 . 2012-12-13 16:06 10925568 ----a-w- c:\windows\system32\ieframe.dll

2012-11-14 06:11 . 2012-12-13 16:06 2312704 ----a-w- c:\windows\system32\jscript9.dll

2012-11-14 06:04 . 2012-12-13 16:06 1346048 ----a-w- c:\windows\system32\urlmon.dll

2012-11-14 06:04 . 2012-12-13 16:06 1392128 ----a-w- c:\windows\system32\wininet.dll

2012-11-14 06:02 . 2012-12-13 16:06 1494528 ----a-w- c:\windows\system32\inetcpl.cpl

2012-11-14 06:02 . 2012-12-13 16:06 237056 ----a-w- c:\windows\system32\url.dll

2012-11-14 05:59 . 2012-12-13 16:06 85504 ----a-w- c:\windows\system32\jsproxy.dll

2012-11-14 05:58 . 2012-12-13 16:06 816640 ----a-w- c:\windows\system32\jscript.dll

2012-11-14 05:57 . 2012-12-13 16:06 599040 ----a-w- c:\windows\system32\vbscript.dll

2012-11-14 05:57 . 2012-12-13 16:06 173056 ----a-w- c:\windows\system32\ieUnatt.exe

2012-11-14 05:55 . 2012-12-13 16:06 2144768 ----a-w- c:\windows\system32\iertutil.dll

2012-11-14 05:55 . 2012-12-13 16:06 729088 ----a-w- c:\windows\system32\msfeeds.dll

2012-11-14 05:53 . 2012-12-13 16:06 96768 ----a-w- c:\windows\system32\mshtmled.dll

2012-11-14 05:52 . 2012-12-13 16:06 2382848 ----a-w- c:\windows\system32\mshtml.tlb

2012-11-14 05:46 . 2012-12-13 16:06 248320 ----a-w- c:\windows\system32\ieui.dll

2012-11-14 02:09 . 2012-12-13 16:06 1800704 ----a-w- c:\windows\SysWow64\jscript9.dll

2012-11-14 01:58 . 2012-12-13 16:06 1427968 ----a-w- c:\windows\SysWow64\inetcpl.cpl

2012-11-14 01:57 . 2012-12-13 16:06 1129472 ----a-w- c:\windows\SysWow64\wininet.dll

2012-11-14 01:49 . 2012-12-13 16:06 142848 ----a-w- c:\windows\SysWow64\ieUnatt.exe

2012-11-14 01:48 . 2012-12-13 16:06 420864 ----a-w- c:\windows\SysWow64\vbscript.dll

2012-11-14 01:44 . 2012-12-13 16:06 2382848 ----a-w- c:\windows\SysWow64\mshtml.tlb

2012-11-09 05:45 . 2012-12-12 17:39 2048 ----a-w- c:\windows\system32\tzres.dll

2012-11-09 04:42 . 2012-12-12 17:39 2048 ----a-w- c:\windows\SysWow64\tzres.dll

2012-11-08 16:29 . 2012-11-08 16:29 1402312 ----a-w- c:\windows\SysWow64\msxml4.dll

2012-11-02 05:59 . 2012-12-12 17:38 478208 ----a-w- c:\windows\system32\dpnet.dll

2012-11-02 05:11 . 2012-12-12 17:38 376832 ----a-w- c:\windows\SysWow64\dpnet.dll

.

.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))

.

.

*Note* empty entries & legit default entries are not shown

REGEDIT4

.

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"ComcastAntispyClient"="c:\program files (x86)\comcasttb\ComcastSpywareScan\ComcastAntispy.exe" [2009-08-19 1589208]

"Aim"="c:\program files (x86)\AIM\aim.exe" [2011-05-03 4321112]

"Raptr"="c:\progra~2\Raptr\raptrstub.exe" [2013-01-29 55360]

"MobileDocuments"="c:\program files (x86)\Common Files\Apple\Internet Services\ubd.exe" [2012-02-23 59240]

"MotoCast"="c:\program files (x86)\Motorola Mobility\MotoCast\MotoLauncher.lnk" [2012-10-26 2013]

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]

"AlienwareOn-ScreenDisplay"="c:\program files (x86)\Alienware On-Screen Display\AlienwareOn-ScreenDisplay.exe" [2011-01-10 1545584]

"IAStorIcon"="c:\program files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe" [2010-11-06 283160]

"Integrated Webcam Live! Central"="c:\program files (x86)\Integrated Webcam\Live! Central\WebcamInt.exe" [2011-04-13 503942]

"Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe" [2012-07-27 35768]

"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-12-03 946352]

"RoxWatchTray"="c:\program files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe" [2010-11-25 240112]

"Desktop Disc Tool"="c:\program files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe" [2010-11-17 514544]

"GIDDesktop"="c:\program files (x86)\SFT\GuardedID\gidd.exe" [2011-07-05 395528]

"APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-11-28 59280]

"HP Software Update"="c:\program files (x86)\HP\HP Software Update\HPWuSchd2.exe" [2011-05-10 49208]

"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2012-01-18 254696]

"QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2012-10-25 421888]

"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2012-12-12 152544]

.

c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\

Constant Guard.lnk - [N/A]

HP Digital Imaging Monitor.lnk - [N/A]

Samsung Drive Manager Real-Time.lnk - [N/A]

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]

"ConsentPromptBehaviorAdmin"= 5 (0x5)

"ConsentPromptBehaviorUser"= 3 (0x3)

"EnableUIADesktopToggle"= 0 (0x0)

"PromptOnSecureDesktop"= 0 (0x0)

.

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]

"LoadAppInit_DLLs"=1 (0x1)

"AppInit_DLLs"=c:\progra~2\KEYCRY~1\KeyCrypt32(1).dll c:\windows\SysWOW64\nvinit.dll

.

R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]

R2 IDVaultSvc;CGPS Service;c:\program files (x86)\Constant Guard Protection Suite\IDVaultSvc.exe [2013-01-14 66600]

R2 RoxWatch12;Roxio Hard Drive Watcher 12;c:\program files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe [2010-11-25 219632]

R2 Skype C2C Service;Skype C2C Service;c:\programdata\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-12-13 3290896]

R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-07-03 160944]

R3 DAUpdaterSvc;Dragon Age: Origins - Content Updater;c:\program files (x86)\Steam\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe [2012-02-09 25832]

R3 Impcd;Impcd;c:\windows\system32\drivers\Impcd.sys [2010-02-27 158976]

R3 mdf16;mdf16;c:\users\Brian Atkinson\AppData\Local\Temp\mdf16.sys [x]

R3 mvd23;mvd23;c:\users\Brian Atkinson\AppData\Local\Temp\mvd23.sys [x]

R3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;c:\program files\Intel\WiFi\bin\PanDhcpDns.exe [2010-12-17 340240]

R3 RoxMediaDB12OEM;RoxMediaDB12OEM;c:\program files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe [2010-11-25 1116656]

R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]

R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]

R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [2012-07-09 52736]

R3 wacmoumonitor;Wacom Mode Helper;c:\windows\system32\DRIVERS\wacmoumonitor.sys [2008-03-17 17192]

R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [2011-12-26 1255736]

S0 EMSC;COMPAL Embedded System Control;c:\windows\system32\DRIVERS\EMSC.SYS [2009-06-26 16752]

S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys [2011-09-29 25960]

S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys [2010-03-19 55856]

S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2013-01-19 834544]

S0 stdcfltn;Disk Class Filter Driver for Accelerometer;c:\windows\system32\DRIVERS\stdcfltn.sys [2010-08-20 21616]

S0 SymDS;Symantec Data Store;c:\windows\system32\drivers\N360x64\0502020.003\SYMDS64.SYS [2011-01-27 450680]

S0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\N360x64\0502020.003\SYMEFA64.SYS [2011-03-15 912504]

S1 AntiLog32;AntiLog32;c:\windows\system32\drivers\AntiLog64.sys [2013-01-23 45968]

S1 BHDrvx64;BHDrvx64;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.0.0.125\Definitions\BASHDefs\20130116.013\BHDrvx64.sys [2013-01-16 1388120]

S1 GIDv2;GIDv2; [x]

S1 IDSVia64;IDSVia64;c:\programdata\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.0.0.125\Definitions\IPSDefs\20130129.001\IDSvia64.sys [2012-09-06 513184]

S1 SymIRON;Symantec Iron Driver;c:\windows\system32\drivers\N360x64\0502020.003\Ironx64.SYS [2010-11-16 171128]

S1 SymNetS;Symantec Network Security WFP Driver;c:\windows\System32\Drivers\N360x64\0502020.003\SYMNETS.SYS [2011-04-21 386168]

S2 AERTFilters;Andrea RT Filters Service;c:\program files\Realtek\Audio\HDA\AERTSr64.exe [2011-02-01 98208]

S2 AlienFusionService;Alienware Fusion Service;c:\program files\Alienware\Command Center\AlienFusionService.exe [2011-03-22 15296]

S2 AntiSpywareService;Comcast AntiSpyware;c:\program files (x86)\comcasttb\ComcastSpywareScan\ComcastAntiSpyService.exe [2009-06-17 616408]

S2 DeviceMonitorService;DeviceMonitorService;c:\program files (x86)\Motorola Media Link\Lite\NServiceEntry.exe [2012-09-08 87992]

S2 IAStorDataMgrSvc;Intel® Rapid Storage Technology;c:\program files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-11-06 13336]

S2 Motorola Device Manager;Motorola Device Manager Service;c:\program files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe [2012-10-23 120728]

S2 N360;Norton Security Suite;c:\program files (x86)\Norton Security Suite\Engine\5.2.2.3\ccSvcHst.exe [2011-04-17 130008]

S2 PST Service;PST Service;c:\program files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe [2011-09-02 65657]

S2 SftService;SoftThinks Agent Service;c:\program files (x86)\AlienRespawn\sftservice.EXE [2011-09-22 1692480]

S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-08-12 378472]

S2 TabletServicePen;TabletServicePen;c:\windows\system32\Pen_Tablet.exe [2008-05-01 4510504]

S3 Acceler;Accelerometer Service;c:\windows\system32\DRIVERS\Accelern.sys [2010-12-27 27760]

S3 btwampfl;Bluetooth AMP USB Filter;c:\windows\system32\drivers\btwampfl.sys [2010-08-17 344616]

S3 CtClsFlt;Creative Camera Class Upper Filter Driver;c:\windows\system32\DRIVERS\CtClsFlt.sys [2011-01-20 176096]

S3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2012-11-08 138912]

S3 IntcDAud;Intel® Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [2010-10-15 317440]

S3 keycrypt;keycrypt;c:\windows\system32\DRIVERS\KeyCrypt64.sys [2013-01-06 26448]

S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys [2010-12-26 76912]

S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [2011-03-04 82432]

S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [2011-03-04 181760]

S3 RSPCIESTOR;Realtek PCIE CardReader Driver;c:\windows\system32\DRIVERS\RtsPStor.sys [2011-05-04 337512]

S3 wdkmd;Intel WiDi KMD;c:\windows\system32\DRIVERS\WDKMD.sys [2010-12-01 42392]

.

.

--- Other Services/Drivers In Memory ---

.

*NewlyCreated* - WS2IFSL

.

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]

hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc

iissvcs REG_MULTI_SZ w3svc was

apphost REG_MULTI_SZ apphostsvc

.

[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{9191979D-821C-4EA8-B021-2DA1D859A7C5}-3Reg]

2011-07-05 15:26 435976 ----a-w- c:\program files (x86)\SFT\GuardedID\GIDI.exe

.

Contents of the 'Scheduled Tasks' folder

.

2013-01-30 c:\windows\Tasks\Adobe Flash Player Updater.job

- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-09 21:12]

.

2013-01-30 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job

- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-09-20 18:31]

.

2013-01-30 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job

- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-09-20 18:31]

.

2013-01-30 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-796171291-733705223-3346595275-1001Core.job

- c:\users\Brian Atkinson\AppData\Local\Google\Update\GoogleUpdate.exe [2011-12-25 16:04]

.

2013-01-30 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-796171291-733705223-3346595275-1001UA.job

- c:\users\Brian Atkinson\AppData\Local\Google\Update\GoogleUpdate.exe [2011-12-25 16:04]

.

.

--------- X64 Entries -----------

.

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveBlacklistedOverlay]

@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"

[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]

2012-12-18 00:50 755816 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedOverlay]

@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}"

[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}]

2012-12-18 00:50 755816 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncedOverlay]

@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"

[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]

2012-12-18 00:50 755816 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll

.

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncingOverlay]

@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"

[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]

2012-12-18 00:50 755816 ----a-w- c:\program files (x86)\Google\Drive\googledrivesync64.dll

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

"IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-04-13 168216]

"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-04-13 392472]

"Persistence"="c:\windows\system32\igfxpers.exe" [2011-04-13 416024]

"NVHotkey"="c:\windows\system32\nvHotkey.dll" [2011-08-12 315496]

"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2011-02-01 6602856]

"RtHDVBg"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2011-02-01 2186856]

"FreeFallProtection"="c:\program files (x86)\STMicroelectronics\AccelerometerP11\FF_Protection.exe" [2010-12-17 703088]

"IntelWireless"="c:\program files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" [2010-12-17 1933584]

"Command Center Controllers"="c:\program files\Alienware\Command Center\AWCCStartupOrchestrator.exe" [2011-04-13 13256]

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]

"AppInit_DLLs"=c:\progra~2\KEYCRY~1\KeyCrypt64(1).dll c:\windows\System32\nvinitx.dll

.

------- Supplementary Scan -------

.

uLocal Page = c:\windows\system32\blank.htm

uStart Page = hxxp://searchab.com/?aff=7&uid=319183f6-64c4-11e2-ae5f-74de2b9af99f

mStart Page = hxxp://searchab.com/?aff=7&uid=319183f6-64c4-11e2-ae5f-74de2b9af99f

mLocal Page = c:\windows\SysWOW64\blank.htm

uInternet Settings,ProxyOverride = *.local;192.168.*.*

IE: Free YouTube to MP3 Converter - c:\users\Brian Atkinson\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm

Trusted Zone: clonewarsadventures.com

Trusted Zone: freerealms.com

Trusted Zone: soe.com

Trusted Zone: sony.com

TCP: DhcpNameServer = 75.75.75.75 75.75.76.76

.

- - - - ORPHANS REMOVED - - - -

.

Toolbar-Locked - (no file)

Wow6432Node-HKLM-Run-<NO NAME> - (no file)

Toolbar-Locked - (no file)

HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe

AddRemove-3Dsex - c:\users\Brian Atkinson\Saved Games\New folder\Utherverse VWW Client\Branding\{d3c09559-e7b6-4c91-929b-3bc77b175a22}\uninst.exe

AddRemove-BitTorrent - c:\program files (x86)\BitTorrent\BitTorrent.exe

AddRemove-BitTorrentControl_v12 Toolbar - c:\program files (x86)\BitTorrentControl_v12\uninstall.exe

AddRemove-Chica Password Manager_is1 - c:\program files (x86)\ChicaLogic\Chica Password Manager\unins000.exe

AddRemove-Coupon Printer for Windows5.0.0.1 - c:\program files (x86)\Coupons\uninstall.exe

AddRemove-FinalTorrent_is1 - c:\program files (x86)\FinalTorrent\unins000.exe

AddRemove-PunkBusterSvc - c:\program files (x86)\STEAM\STEAMAPPS\COMMON\APB RELOADED\Binaries\pbsvc_apb.exe

AddRemove-Sex Sim1.0j - c:\users\Brian Atkinson\Saved Games\New folder\Sex Sim\uninstall.exe

AddRemove-SoftwareUpdUtility - c:\program files (x86)\Common Files\Software Update Utility\uninstall.exe

AddRemove-The Weather Channel Desktop 6 - c:\program files (x86)\The Weather Channel FW\Desktop\TheWeatherChannelCustomUninstall.exe

AddRemove-Yahoo! Toolbar - c:\progra~2\Yahoo!\Common\UNYT_W~1.EXE

.

.

.

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\N360]

"ImagePath"="\"c:\program files (x86)\Norton Security Suite\Engine\5.2.2.3\ccSvcHst.exe\" /s \"N360\" /m \"c:\program files (x86)\Norton Security Suite\Engine\5.2.2.3\diMaster.dll\" /prefetch:1"

.

--------------------- LOCKED REGISTRY KEYS ---------------------

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]

@Denied: (A 2) (Everyone)

@="FlashBroker"

"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_5_502_146_ActiveX.exe,-101"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]

"Enabled"=dword:00000001

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]

@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_5_502_146_ActiveX.exe"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]

@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]

@Denied: (A 2) (Everyone)

@="IFlashBroker5"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]

@="{00020424-0000-0000-C000-000000000046}"

.

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]

@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

"Version"="1.0"

.

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]

@Denied: (A) (Users)

@Denied: (A) (Everyone)

@Allowed: (B 1 2 3 4 5) (S-1-5-20)

"BlindDial"=dword:00000000

.

[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]

@Denied: (Full) (Everyone)

.

Completion time: 2013-01-30 17:07:08

ComboFix-quarantined-files.txt 2013-01-30 22:07

.

Pre-Run: 223,947,976,704 bytes free

Post-Run: 223,562,891,264 bytes free

.

- - End Of File - - 6F8A89D60B9A9C50280348DC38A410BA

Link to post
Share on other sites

Please run a free online scan with the ESET Online Scanner

Note: You will need to use Internet Explorer for this scan

  • Tick the box next to YES, I accept the Terms of Use
  • Click Start
  • When asked, allow the ActiveX control to install
  • Click Start
  • Make sure that the options Remove found threats and the option Scan unwanted applications is checked
  • Click Scan (This scan can take several hours, so please be patient)
  • Once the scan is completed, you may close the window
  • Use Notepad to open the logfile located at C:\Program Files\ESET\Eset Online Scanner\log.txt
  • Copy and paste that log as a reply to this topic

Link to post
Share on other sites

<p> </p>

<div>Just a note, I used Google Chrome to access the website because I discovered since my first post that whatever is wrong is preventing me from launching my Internet Explorer web browser.</div>

<div> </div>

<div>ESETSmartInstaller@High as downloader log:</div>

<div>all ok</div>

<div># version=8</div>

<div># OnlineScannerApp.exe=1.0.0.1</div>

<div># OnlineScanner.ocx=1.0.0.6889</div>

<div># api_version=3.0.2</div>

<div># EOSSerial=694e301f450914409306ee2d3979d3a4</div>

<div># end=finished</div>

<div># remove_checked=true</div>

<div># archives_checked=false</div>

<div># unwanted_checked=true</div>

<div># unsafe_checked=false</div>

<div># antistealth_checked=true</div>

<div># utc_time=2013-01-31 03:04:01</div>

<div># local_time=2013-01-30 10:04:01 (-0500, Eastern Standard Time)</div>

<div># country="United States"</div>

<div># lang=1033</div>

<div># osver=6.1.7601 NT Service Pack 1</div>

<div># compatibility_mode=3589 16777213 80 80 8884143 110177537 0 0</div>

<div># compatibility_mode=5893 16776573 100 94 0 111144891 0 0</div>

<div># scanned=343922</div>

<div># found=1</div>

<div># cleaned=1</div>

<div># scan_time=5837</div>

<div>C:\Users\Brian Atkinson\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccllcblhfiljepjahgjbccghmfoiefid\1\50fee46b0b6082.10548866.js<span class="Apple-tab-span" style="white-space:pre"> </span>Win32/Adware.MultiPlug.H application (cleaned by deleting - quarantined)<span class="Apple-tab-span" style="white-space:pre"> </span>DCAF5145EC14B6826CE9BB4C1AF332F5B28B1009<span class="Apple-tab-span" style="white-space:pre"> </span>C</div>

<div> </div>

Link to post
Share on other sites

Please download MiniToolBox, save it to your desktop and run it.

Checkmark the following checkboxes:

  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Devices
  • List Users, Partitions and Memory size.
  • List Minidump Files

Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.

Note: When using "Reset FF Proxy Settings" option Firefox should be closed.

Link to post
Share on other sites

<p> </p>

<div>MiniToolBox by Farbar  Version:10-01-2013</div>

<div>Ran by Brian Atkinson (administrator) on 31-01-2013 at 12:51:37</div>

<div>Running from "C:\Users\Brian Atkinson\Desktop"</div>

<div>Windows 7 Home Premium Service Pack 1 (X64)</div>

<div>Boot Mode: Normal</div>

<div>***************************************************************************</div>

<div> </div>

<div>========================= Flush DNS: ===================================</div>

<div> </div>

<div>Windows IP Configuration</div>

<div> </div>

<div>Successfully flushed the DNS Resolver Cache.</div>

<div> </div>

<div>========================= IE Proxy Settings: ============================== </div>

<div> </div>

<div>Proxy is not enabled.</div>

<div>No Proxy Server is set.</div>

<div> </div>

<div>"Reset IE Proxy Settings": IE Proxy Settings were reset.</div>

<div>========================= Hosts content: =================================</div>

<div> </div>

<div>127.0.0.1       localhost</div>

<div> </div>

<div>========================= IP Configuration: ================================</div>

<div> </div>

<div> </div>

<div> </div>

<div># ----------------------------------</div>

<div># IPv4 Configuration</div>

<div># ----------------------------------</div>

<div>pushd interface ipv4</div>

<div> </div>

<div>reset</div>

<div>set global</div>

<div> </div>

<div> </div>

<div>popd</div>

<div># End of IPv4 configuration</div>

<div> </div>

<div> </div>

<div> </div>

<div>Windows IP Configuration</div>

<div> </div>

<div>   Host Name . . . . . . . . . . . . : BrianAtkinson</div>

<div>   Primary Dns Suffix  . . . . . . . : </div>

<div>   Node Type . . . . . . . . . . . . : Hybrid</div>

<div>   IP Routing Enabled. . . . . . . . : No</div>

<div>   WINS Proxy Enabled. . . . . . . . : No</div>

<div> </div>

<div>Wireless LAN adapter Wireless Network Connection 3:</div>

<div> </div>

<div>   Media State . . . . . . . . . . . : Media disconnected</div>

<div>   Connection-specific DNS Suffix  . : </div>

<div>   Description . . . . . . . . . . . : Microsoft Virtual WiFi Miniport Adapter #2</div>

<div>   Physical Address. . . . . . . . . : 74-E5-0B-75-AA-35</div>

<div>   DHCP Enabled. . . . . . . . . . . : Yes</div>

<div>   Autoconfiguration Enabled . . . . : Yes</div>

<div> </div>

<div>Wireless LAN adapter Wireless Network Connection 2:</div>

<div> </div>

<div>   Media State . . . . . . . . . . . : Media disconnected</div>

<div>   Connection-specific DNS Suffix  . : </div>

<div>   Description . . . . . . . . . . . : Microsoft Virtual WiFi Miniport Adapter</div>

<div>   Physical Address. . . . . . . . . : 74-E5-0B-75-AA-35</div>

<div>   DHCP Enabled. . . . . . . . . . . : Yes</div>

<div>   Autoconfiguration Enabled . . . . : Yes</div>

<div> </div>

<div>Ethernet adapter Bluetooth Network Connection:</div>

<div> </div>

<div>   Media State . . . . . . . . . . . : Media disconnected</div>

<div>   Connection-specific DNS Suffix  . : </div>

<div>   Description . . . . . . . . . . . : Bluetooth Device (Personal Area Network)</div>

<div>   Physical Address. . . . . . . . . : 74-DE-2B-9A-F9-9F</div>

<div>   DHCP Enabled. . . . . . . . . . . : Yes</div>

<div>   Autoconfiguration Enabled . . . . : Yes</div>

<div> </div>

<div>Wireless LAN adapter Wireless Network Connection:</div>

<div> </div>

<div>   Connection-specific DNS Suffix  . : </div>

<div>   Description . . . . . . . . . . . : Intel® WiFi Link 1000 BGN</div>

<div>   Physical Address. . . . . . . . . : 74-E5-0B-75-AA-34</div>

<div>   DHCP Enabled. . . . . . . . . . . : Yes</div>

<div>   Autoconfiguration Enabled . . . . : Yes</div>

<div>   Link-local IPv6 Address . . . . . : fe80::a88b:987e:6898:4d3f%12(Preferred) </div>

<div>   IPv4 Address. . . . . . . . . . . : 192.168.1.104(Preferred) </div>

<div>   Subnet Mask . . . . . . . . . . . : 255.255.255.0</div>

<div>   Lease Obtained. . . . . . . . . . : Wednesday, January 30, 2013 4:02:40 PM</div>

<div>   Lease Expires . . . . . . . . . . : Friday, February 01, 2013 12:06:57 PM</div>

<div>   Default Gateway . . . . . . . . . : 192.168.1.1</div>

<div>   DHCP Server . . . . . . . . . . . : 192.168.1.1</div>

<div>   DHCPv6 IAID . . . . . . . . . . . : 225764619</div>

<div>   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-16-81-10-0C-D4-BE-D9-0E-D4-C8</div>

<div>   DNS Servers . . . . . . . . . . . : 75.75.75.75</div>

<div>                                       75.75.76.76</div>

<div>   NetBIOS over Tcpip. . . . . . . . : Enabled</div>

<div> </div>

<div>Ethernet adapter Local Area Connection:</div>

<div> </div>

<div>   Media State . . . . . . . . . . . : Media disconnected</div>

<div>   Connection-specific DNS Suffix  . : </div>

<div>   Description . . . . . . . . . . . : Atheros AR8151 PCI-E Gigabit Ethernet Controller (NDIS 6.20)</div>

<div>   Physical Address. . . . . . . . . : D4-BE-D9-0E-D4-C8</div>

<div>   DHCP Enabled. . . . . . . . . . . : Yes</div>

<div>   Autoconfiguration Enabled . . . . : Yes</div>

<div> </div>

<div>Tunnel adapter Local Area Connection* 14:</div>

<div> </div>

<div>   Media State . . . . . . . . . . . : Media disconnected</div>

<div>   Connection-specific DNS Suffix  . : </div>

<div>   Description . . . . . . . . . . . : Microsoft 6to4 Adapter</div>

<div>   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0</div>

<div>   DHCP Enabled. . . . . . . . . . . : No</div>

<div>   Autoconfiguration Enabled . . . . : Yes</div>

<div> </div>

<div>Tunnel adapter Reusable ISATAP Interface {347482C2-E8E6-4941-B480-D7AA166AFD76}:</div>

<div> </div>

<div>   Media State . . . . . . . . . . . : Media disconnected</div>

<div>   Connection-specific DNS Suffix  . : </div>

<div>   Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2</div>

<div>   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0</div>

<div>   DHCP Enabled. . . . . . . . . . . : No</div>

<div>   Autoconfiguration Enabled . . . . : Yes</div>

<div> </div>

<div>Tunnel adapter Local Area Connection* 11:</div>

<div> </div>

<div>   Media State . . . . . . . . . . . : Media disconnected</div>

<div>   Connection-specific DNS Suffix  . : </div>

<div>   Description . . . . . . . . . . . : Microsoft 6to4 Adapter #2</div>

<div>   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0</div>

<div>   DHCP Enabled. . . . . . . . . . . : No</div>

<div>   Autoconfiguration Enabled . . . . : Yes</div>

<div> </div>

<div>Tunnel adapter Teredo Tunneling Pseudo-Interface:</div>

<div> </div>

<div>   Connection-specific DNS Suffix  . : </div>

<div>   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface</div>

<div>   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0</div>

<div>   DHCP Enabled. . . . . . . . . . . : No</div>

<div>   Autoconfiguration Enabled . . . . : Yes</div>

<div>   IPv6 Address. . . . . . . . . . . : 2001:0:4137:9e76:c36:36d9:bbab:20a2(Preferred) </div>

<div>   Link-local IPv6 Address . . . . . : fe80::c36:36d9:bbab:20a2%19(Preferred) </div>

<div>   Default Gateway . . . . . . . . . : ::</div>

<div>   NetBIOS over Tcpip. . . . . . . . : Disabled</div>

<div> </div>

<div>Tunnel adapter isatap.{3EF8BA02-8661-487A-B906-DBE9C38571EF}:</div>

<div> </div>

<div>   Media State . . . . . . . . . . . : Media disconnected</div>

<div>   Connection-specific DNS Suffix  . : </div>

<div>   Description . . . . . . . . . . . : Microsoft ISATAP Adapter #3</div>

<div>   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0</div>

<div>   DHCP Enabled. . . . . . . . . . . : No</div>

<div>   Autoconfiguration Enabled . . . . : Yes</div>

<div> </div>

<div>Tunnel adapter isatap.{A0FD1139-16B5-4189-ACCE-262366BD3DF8}:</div>

<div> </div>

<div>   Media State . . . . . . . . . . . : Media disconnected</div>

<div>   Connection-specific DNS Suffix  . : </div>

<div>   Description . . . . . . . . . . . : Microsoft ISATAP Adapter #4</div>

<div>   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0</div>

<div>   DHCP Enabled. . . . . . . . . . . : No</div>

<div>   Autoconfiguration Enabled . . . . : Yes</div>

<div> </div>

<div>Tunnel adapter isatap.{2C637D9F-F9E4-4F22-B9E6-C7B52B0331E7}:</div>

<div> </div>

<div>   Media State . . . . . . . . . . . : Media disconnected</div>

<div>   Connection-specific DNS Suffix  . : </div>

<div>   Description . . . . . . . . . . . : Microsoft ISATAP Adapter #5</div>

<div>   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0</div>

<div>   DHCP Enabled. . . . . . . . . . . : No</div>

<div>   Autoconfiguration Enabled . . . . : Yes</div>

<div> </div>

<div>Tunnel adapter isatap.{DFC3CF61-560D-45E7-AC90-5C8D8654E274}:</div>

<div> </div>

<div>   Media State . . . . . . . . . . . : Media disconnected</div>

<div>   Connection-specific DNS Suffix  . : </div>

<div>   Description . . . . . . . . . . . : Microsoft ISATAP Adapter #6</div>

<div>   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0</div>

<div>   DHCP Enabled. . . . . . . . . . . : No</div>

<div>   Autoconfiguration Enabled . . . . : Yes</div>

<div>Server:  cdns01.comcast.net</div>

<div>Address:  75.75.75.75</div>

<div> </div>

<div>Name:    google.com</div>

<div>Addresses:  2607:f8b0:4006:802::1002</div>

<div> 74.125.226.198</div>

<div> 74.125.226.201</div>

<div> 74.125.226.195</div>

<div> 74.125.226.192</div>

<div> 74.125.226.206</div>

<div> 74.125.226.197</div>

<div> 74.125.226.199</div>

<div> 74.125.226.196</div>

<div> 74.125.226.200</div>

<div> 74.125.226.193</div>

<div> 74.125.226.194</div>

<div> </div>

<div> </div>

<div>Pinging google.com [74.125.226.199] with 32 bytes of data:</div>

<div>Reply from 74.125.226.199: bytes=32 time=23ms TTL=54</div>

<div>Reply from 74.125.226.199: bytes=32 time=17ms TTL=54</div>

<div> </div>

<div>Ping statistics for 74.125.226.199:</div>

<div>    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),</div>

<div>Approximate round trip times in milli-seconds:</div>

<div>    Minimum = 17ms, Maximum = 23ms, Average = 20ms</div>

<div>Server:  cdns01.comcast.net</div>

<div>Address:  75.75.75.75</div>

<div> </div>

<div>Name:    yahoo.com</div>

<div>Addresses:  206.190.36.45</div>

<div> 98.138.253.109</div>

<div> 98.139.183.24</div>

<div> </div>

<div> </div>

<div>Pinging yahoo.com [206.190.36.45] with 32 bytes of data:</div>

<div>Reply from 206.190.36.45: bytes=32 time=111ms TTL=48</div>

<div>Reply from 206.190.36.45: bytes=32 time=199ms TTL=48</div>

<div> </div>

<div>Ping statistics for 206.190.36.45:</div>

<div>    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),</div>

<div>Approximate round trip times in milli-seconds:</div>

<div>    Minimum = 111ms, Maximum = 199ms, Average = 155ms</div>

<div> </div>

<div>Pinging 127.0.0.1 with 32 bytes of data:</div>

<div>Reply from 127.0.0.1: bytes=32 time<1ms TTL=128</div>

<div>Reply from 127.0.0.1: bytes=32 time<1ms TTL=128</div>

<div> </div>

<div>Ping statistics for 127.0.0.1:</div>

<div>    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),</div>

<div>Approximate round trip times in milli-seconds:</div>

<div>    Minimum = 0ms, Maximum = 0ms, Average = 0ms</div>

<div>===========================================================================</div>

<div>Interface List</div>

<div> 17...74 e5 0b 75 aa 35 ......Microsoft Virtual WiFi Miniport Adapter #2</div>

<div> 16...74 e5 0b 75 aa 35 ......Microsoft Virtual WiFi Miniport Adapter</div>

<div> 15...74 de 2b 9a f9 9f ......Bluetooth Device (Personal Area Network)</div>

<div> 12...74 e5 0b 75 aa 34 ......Intel® WiFi Link 1000 BGN</div>

<div> 11...d4 be d9 0e d4 c8 ......Atheros AR8151 PCI-E Gigabit Ethernet Controller (NDIS 6.20)</div>

<div>  1...........................Software Loopback Interface 1</div>

<div> 13...00 00 00 00 00 00 00 e0 Microsoft 6to4 Adapter</div>

<div> 21...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #2</div>

<div> 18...00 00 00 00 00 00 00 e0 Microsoft 6to4 Adapter #2</div>

<div> 19...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface</div>

<div> 22...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #3</div>

<div> 23...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #4</div>

<div> 24...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #5</div>

<div> 25...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #6</div>

<div>===========================================================================</div>

<div> </div>

<div>IPv4 Route Table</div>

<div>===========================================================================</div>

<div>Active Routes:</div>

<div>Network Destination        Netmask          Gateway       Interface  Metric</div>

<div>          0.0.0.0          0.0.0.0      192.168.1.1    192.168.1.104     26</div>

<div>        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306</div>

<div>        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306</div>

<div>  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306</div>

<div>      192.168.1.0    255.255.255.0         On-link     192.168.1.104    281</div>

<div>    192.168.1.104  255.255.255.255         On-link     192.168.1.104    281</div>

<div>    192.168.1.255  255.255.255.255         On-link     192.168.1.104    281</div>

<div>        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306</div>

<div>        224.0.0.0        240.0.0.0         On-link     192.168.1.104    281</div>

<div>  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306</div>

<div>  255.255.255.255  255.255.255.255         On-link     192.168.1.104    281</div>

<div>===========================================================================</div>

<div>Persistent Routes:</div>

<div>  None</div>

<div> </div>

<div>IPv6 Route Table</div>

<div>===========================================================================</div>

<div>Active Routes:</div>

<div> If Metric Network Destination      Gateway</div>

<div> 19     58 ::/0                     On-link</div>

<div>  1    306 ::1/128                  On-link</div>

<div> 19     58 2001::/32                On-link</div>

<div> 19    306 2001:0:4137:9e76:c36:36d9:bbab:20a2/128</div>

<div>                                    On-link</div>

<div> 12    281 fe80::/64                On-link</div>

<div> 19    306 fe80::/64                On-link</div>

<div> 19    306 fe80::c36:36d9:bbab:20a2/128</div>

<div>                                    On-link</div>

<div> 12    281 fe80::a88b:987e:6898:4d3f/128</div>

<div>                                    On-link</div>

<div>  1    306 ff00::/8                 On-link</div>

<div> 19    306 ff00::/8                 On-link</div>

<div> 12    281 ff00::/8                 On-link</div>

<div>===========================================================================</div>

<div>Persistent Routes:</div>

<div>  None</div>

<div>========================= Winsock entries =====================================</div>

<div> </div>

<div>Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation)</div>

<div>Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation)</div>

<div>Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)</div>

<div>Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)</div>

<div>Catalog5 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)</div>

<div>Catalog5 06 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)</div>

<div>Catalog5 07 C:\Windows\SysWOW64\wshbth.dll [36352] (Microsoft Corporation)</div>

<div>Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)</div>

<div>Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)</div>

<div>Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)</div>

<div>Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)</div>

<div>Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)</div>

<div>Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)</div>

<div>Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)</div>

<div>Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)</div>

<div>Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)</div>

<div>Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)</div>

<div>Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)</div>

<div>Catalog9 11 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)</div>

<div>x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation)</div>

<div>x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)</div>

<div>x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)</div>

<div>x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)</div>

<div>x64-Catalog5 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)</div>

<div>x64-Catalog5 06 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)</div>

<div>x64-Catalog5 07 C:\Windows\System32\wshbth.dll [47104] (Microsoft Corporation)</div>

<div>x64-Catalog5 08 C:\Program Files\Bonjour\mdnsNSP.dll [132968] (Apple Inc.)</div>

<div>x64-Catalog9 01 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)</div>

<div>x64-Catalog9 02 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)</div>

<div>x64-Catalog9 03 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)</div>

<div>x64-Catalog9 04 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)</div>

<div>x64-Catalog9 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)</div>

<div>x64-Catalog9 06 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)</div>

<div>x64-Catalog9 07 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)</div>

<div>x64-Catalog9 08 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)</div>

<div>x64-Catalog9 09 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)</div>

<div>x64-Catalog9 10 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)</div>

<div>x64-Catalog9 11 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)</div>

<div> </div>

<div>========================= Event log errors: ===============================</div>

<div> </div>

<div>Application errors:</div>

<div>==================</div>

<div>Error: (01/31/2013 02:28:53 AM) (Source: Bonjour Service) (User: )</div>

<div>Description: Task Scheduling Error: m->NextScheduledSPRetry 2091</div>

<div> </div>

<div>Error: (01/31/2013 02:28:53 AM) (Source: Bonjour Service) (User: )</div>

<div>Description: Task Scheduling Error: m->NextScheduledEvent 2091</div>

<div> </div>

<div>Error: (01/31/2013 02:28:53 AM) (Source: Bonjour Service) (User: )</div>

<div>Description: Task Scheduling Error: Continuously busy for more than a second</div>

<div> </div>

<div>Error: (01/31/2013 02:28:52 AM) (Source: Bonjour Service) (User: )</div>

<div>Description: Task Scheduling Error: m->NextScheduledSPRetry 1061</div>

<div> </div>

<div>Error: (01/31/2013 02:28:52 AM) (Source: Bonjour Service) (User: )</div>

<div>Description: Task Scheduling Error: m->NextScheduledEvent 1061</div>

<div> </div>

<div>Error: (01/31/2013 02:28:52 AM) (Source: Bonjour Service) (User: )</div>

<div>Description: Task Scheduling Error: Continuously busy for more than a second</div>

<div> </div>

<div>Error: (01/31/2013 01:21:41 AM) (Source: Bonjour Service) (User: )</div>

<div>Description: Task Scheduling Error: m->NextScheduledSPRetry 2184</div>

<div> </div>

<div>Error: (01/31/2013 01:21:41 AM) (Source: Bonjour Service) (User: )</div>

<div>Description: Task Scheduling Error: m->NextScheduledEvent 2184</div>

<div> </div>

<div>Error: (01/31/2013 01:21:41 AM) (Source: Bonjour Service) (User: )</div>

<div>Description: Task Scheduling Error: Continuously busy for more than a second</div>

<div> </div>

<div>Error: (01/31/2013 01:21:40 AM) (Source: Bonjour Service) (User: )</div>

<div>Description: Task Scheduling Error: m->NextScheduledSPRetry 1046</div>

<div> </div>

<div> </div>

<div>System errors:</div>

<div>=============</div>

<div>Error: (01/31/2013 00:24:36 PM) (Source: WMPNetworkSvc) (User: )</div>

<div>Description: WMPNetworkSvc0x8002801d</div>

<div> </div>

<div>Error: (01/31/2013 11:51:06 AM) (Source: WMPNetworkSvc) (User: )</div>

<div>Description: WMPNetworkSvc0x8002801d</div>

<div> </div>

<div>Error: (01/31/2013 11:51:06 AM) (Source: WMPNetworkSvc) (User: )</div>

<div>Description: WMPNetworkSvc0x8002801d</div>

<div> </div>

<div>Error: (01/31/2013 11:51:06 AM) (Source: WMPNetworkSvc) (User: )</div>

<div>Description: WMPNetworkSvc0x8002801d</div>

<div> </div>

<div>Error: (01/31/2013 11:51:05 AM) (Source: WMPNetworkSvc) (User: )</div>

<div>Description: WMPNetworkSvc0x8002801d</div>

<div> </div>

<div>Error: (01/31/2013 02:02:39 AM) (Source: WMPNetworkSvc) (User: )</div>

<div>Description: WMPNetworkSvc0x8002801d</div>

<div> </div>

<div>Error: (01/31/2013 00:50:20 AM) (Source: WMPNetworkSvc) (User: )</div>

<div>Description: WMPNetworkSvc0x8002801d</div>

<div> </div>

<div>Error: (01/30/2013 08:43:44 PM) (Source: WMPNetworkSvc) (User: )</div>

<div>Description: WMPNetworkSvc0x8002801d</div>

<div> </div>

<div>Error: (01/30/2013 08:40:12 PM) (Source: WMPNetworkSvc) (User: )</div>

<div>Description: WMPNetworkSvc0x8002801d</div>

<div> </div>

<div>Error: (01/30/2013 08:19:25 PM) (Source: WMPNetworkSvc) (User: )</div>

<div>Description: WMPNetworkSvc0x8002801d</div>

<div> </div>

<div> </div>

<div>Microsoft Office Sessions:</div>

<div>=========================</div>

<div>Error: (01/31/2013 02:28:53 AM) (Source: Bonjour Service)(User: )</div>

<div>Description: Task Scheduling Error: m->NextScheduledSPRetry 2091</div>

<div> </div>

<div>Error: (01/31/2013 02:28:53 AM) (Source: Bonjour Service)(User: )</div>

<div>Description: Task Scheduling Error: m->NextScheduledEvent 2091</div>

<div> </div>

<div>Error: (01/31/2013 02:28:53 AM) (Source: Bonjour Service)(User: )</div>

<div>Description: Task Scheduling Error: Continuously busy for more than a second</div>

<div> </div>

<div>Error: (01/31/2013 02:28:52 AM) (Source: Bonjour Service)(User: )</div>

<div>Description: Task Scheduling Error: m->NextScheduledSPRetry 1061</div>

<div> </div>

<div>Error: (01/31/2013 02:28:52 AM) (Source: Bonjour Service)(User: )</div>

<div>Description: Task Scheduling Error: m->NextScheduledEvent 1061</div>

<div> </div>

<div>Error: (01/31/2013 02:28:52 AM) (Source: Bonjour Service)(User: )</div>

<div>Description: Task Scheduling Error: Continuously busy for more than a second</div>

<div> </div>

<div>Error: (01/31/2013 01:21:41 AM) (Source: Bonjour Service)(User: )</div>

<div>Description: Task Scheduling Error: m->NextScheduledSPRetry 2184</div>

<div> </div>

<div>Error: (01/31/2013 01:21:41 AM) (Source: Bonjour Service)(User: )</div>

<div>Description: Task Scheduling Error: m->NextScheduledEvent 2184</div>

<div> </div>

<div>Error: (01/31/2013 01:21:41 AM) (Source: Bonjour Service)(User: )</div>

<div>Description: Task Scheduling Error: Continuously busy for more than a second</div>

<div> </div>

<div>Error: (01/31/2013 01:21:40 AM) (Source: Bonjour Service)(User: )</div>

<div>Description: Task Scheduling Error: m->NextScheduledSPRetry 1046</div>

<div> </div>

<div> </div>

<div>CodeIntegrity Errors:</div>

<div>===================================</div>

<div>  Date: 2013-01-30 15:49:32.859</div>

<div>  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.</div>

<div> </div>

<div>  Date: 2013-01-30 15:49:32.830</div>

<div>  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\ComboFix\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.</div>

<div> </div>

<div> </div>

<div>=========================== Installed Programs ============================</div>

<div> </div>

<div>64 Bit HP CIO Components Installer (Version: 7.2.8)</div>

<div>7-Zip 9.20</div>

<div>AccelerometerP11 (Version: 2.00.11.22)</div>

<div>Adobe AIR (Version: 3.1.0.4880)</div>

<div>Adobe Flash Player 11 ActiveX (Version: 11.5.502.146)</div>

<div>Adobe Flash Player 11 Plugin (Version: 11.5.502.146)</div>

<div>Adobe Reader X (10.1.4) MUI (Version: 10.1.4)</div>

<div>Advanced Audio FX Engine (Version: 1.12.05)</div>

<div>AIM 7</div>

<div>Alice: Madness Returns</div>

<div>AlienAutopsy (Version: 3.2.6032.102)</div>

<div>AlienRespawn - Support Software (Version: 9.4.61)</div>

<div>AlienRespawn (Version: 9.4.61)</div>

<div>Alienware M14x Manual (Version: 1.0.1.0)</div>

<div>Alienware On-Screen Display (Version: 0.31.1.8C)</div>

<div>AntiLogger SDK version 1.4.6.637 (Version: 1.4.6.637)</div>

<div>Apple Application Support (Version: 2.3.2)</div>

<div>Apple Mobile Device Support (Version: 6.0.1.3)</div>

<div>Apple Software Update (Version: 2.1.3.127)</div>

<div>Banctec Service Agreement (Version: 2.0.0)</div>

<div>BitTorrent (Version: 7.7.3.28796)</div>

<div>BitTorrentControl_v12 Toolbar (Version: 6.9.0.16)</div>

<div>Bonjour (Version: 3.0.0.10)</div>

<div>BufferChm (Version: 130.0.331.000)</div>

<div>C4700 (Version: 130.0.373.000)</div>

<div>CA Pest Patrol Realtime Protection (Version: 001.001.0034)</div>

<div>Chica Password Manager 1.10.0.6 (Version: 1.10)</div>

<div>Command Center (Version: 2.6.14.0)</div>

<div>Constant Guard Protection Suite (Version: 1.13.111.1)</div>

<div>Coupon Printer for Windows (Version: 5.0.0.1)</div>

<div>DC Universe Online</div>

<div>Destinations (Version: 130.0.0.0)</div>

<div>DeviceDiscovery (Version: 130.0.372.000)</div>

<div>Diablo III (Version: 1.0.5.12811)</div>

<div>DirectX 9 Runtime (Version: 1.00.0000)</div>

<div>Download Updater (AOL LLC)</div>

<div>Dragon Age: Origins - Ultimate Edition</div>

<div>EMSC (Version: 0.0.0.22C)</div>

<div>File Type Assistant</div>

<div>FinalTorrent 2011</div>

<div>Free RAR Extract Frog (Version: 3.23)</div>

<div>Free YouTube to MP3 Converter version 3.11.27.821 (Version: 3.11.27.821)</div>

<div>GIMP 2.8.2 (Version: 2.8.2)</div>

<div>Google Chrome (Version: 24.0.1312.52)</div>

<div>Google Drive (Version: 1.7.4018.3496)</div>

<div>Google Update Helper (Version: 1.3.21.123)</div>

<div>GPBaseService2 (Version: 130.0.371.000)</div>

<div>GuardedID (Version: 0.03.1038)</div>

<div>Hewlett-Packard ACLM.NET v1.1.0.0 (Version: 1.00.0000)</div>

<div>HP Customer Participation Program 13.0 (Version: 13.0)</div>

<div>HP Imaging Device Functions 13.0 (Version: 13.0)</div>

<div>HP Photosmart C4700 All-In-One Driver Software 13.0 Rel .6 (Version: 13.0)</div>

<div>HP Print Projects 1.0 (Version: 1.0)</div>

<div>HP Product Detection (Version: 11.14.0001)</div>

<div>HP Smart Web Printing 4.5 (Version: 4.5)</div>

<div>HP Solution Center 13.0 (Version: 13.0)</div>

<div>HP Update (Version: 5.003.001.001)</div>

<div>HPDiagnosticAlert (Version: 1.00.0000)</div>

<div>HPPhotoGadget (Version: 130.0.282.000)</div>

<div>hpPrintProjects (Version: 130.0.303.000)</div>

<div>HPProductAssistant (Version: 130.0.371.000)</div>

<div>HPSSupply (Version: 130.0.371.000)</div>

<div>hpWLPGInstaller (Version: 130.0.303.000)</div>

<div>iCloud (Version: 1.1.0.40)</div>

<div>Integrated Webcam Live! Central (Version: 2.00.44)</div>

<div>Intel PROSet Wireless</div>

<div>Intel® Control Center (Version: 1.2.1.1007)</div>

<div>Intel® Processor Graphics (Version: 8.15.10.2361)</div>

<div>Intel® PROSet/Wireless WiFi Software (Version: 14.00.1000)</div>

<div>Intel® Rapid Storage Technology (Version: 10.1.0.1008)</div>

<div>Intel® Wireless Display</div>

<div>Intel® Wireless Display (Version: 2.0.27.0)</div>

<div>iTunes (Version: 11.0.1.12)</div>

<div>Java Auto Updater (Version: 2.0.7.1)</div>

<div>Java 6 Update 27 (64-bit) (Version: 6.0.270)</div>

<div>Java 6 Update 33 (Version: 6.0.330)</div>

<div>League of Legends (Version: 1.3)</div>

<div>Left 4 Dead</div>

<div>Left 4 Dead 2</div>

<div>Loren The Amazon Princess version 1.2 (Version: 1.2)</div>

<div>Malwarebytes Anti-Malware version 1.70.0.1100 (Version: 1.70.0.1100)</div>

<div>MarketResearch (Version: 130.0.374.000)</div>

<div>Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)</div>

<div>Microsoft .NET Framework 4 Extended (Version: 4.0.30319)</div>

<div>Microsoft Games for Windows - LIVE Redistributable (Version: 2.0.672.0)</div>

<div>Microsoft Silverlight (Version: 5.1.10411.0)</div>

<div>Microsoft Visual C++ 2005 Redistributable (Version: 8.0.59193)</div>

<div>Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)</div>

<div>Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)</div>

<div>Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)</div>

<div>Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022)</div>

<div>Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (Version: 9.0.30729)</div>

<div>Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)</div>

<div>Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)</div>

<div>Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)</div>

<div>Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (Version: 10.0.40219)</div>

<div>Microsoft XNA Framework Redistributable 4.0 Refresh (Version: 4.0.30901.0)</div>

<div>MotoCast (Version: 2.0.31)</div>

<div>Motorola Device Manager (Version: 2.3.4)</div>

<div>Motorola Device Software Update (Version: 12.10.3002)</div>

<div>MOTOROLA MEDIA LINK (Version: 1.9.0002.0)</div>

<div>Motorola Mobile Drivers Installation 5.9.0 (Version: 5.9.0)</div>

<div>MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)</div>

<div>MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)</div>

<div>MSXML 4.0 SP3 Parser (KB2721691) (Version: 4.30.2114.0)</div>

<div>MSXML 4.0 SP3 Parser (KB2758694) (Version: 4.30.2117.0)</div>

<div>MSXML 4.0 SP3 Parser (Version: 4.30.2100.0)</div>

<div>Network64 (Version: 130.0.572.000)</div>

<div>Network64 (Version: 140.0.221.000)</div>

<div>Nexus Mod Manager (Version: 0.33.1)</div>

<div>Norton Security Suite (Version: 5.2.2.3)</div>

<div>NVIDIA 3D Vision Driver 269.37 (Version: 269.37)</div>

<div>NVIDIA Control Panel 269.37 (Version: 269.37)</div>

<div>NVIDIA Graphics Driver 269.37 (Version: 269.37)</div>

<div>NVIDIA Install Application (Version: 2.265.42.0)</div>

<div>NVIDIA Optimus 1.0.23 (Version: 1.0.23)</div>

<div>NVIDIA PhysX (Version: 9.11.0621)</div>

<div>NVIDIA PhysX System Software 9.11.0621 (Version: 9.11.0621)</div>

<div>NVIDIA Stereoscopic 3D Driver (Version: 7.17.12.6937)</div>

<div>NVIDIA Update Components (Version: 1.0.23)</div>

<div>OpenAL</div>

<div>Orcs Must Die!</div>

<div>Pen Tablet</div>

<div>PhotoShowExpress (Version: 2.0.063)</div>

<div>Portal</div>

<div>Portal 2</div>

<div>PS_AIO_06_C4700_SW_Min (Version: 130.0.373.000)</div>

<div>PunkBuster Services (Version: 0.993)</div>

<div>QuickTime (Version: 7.73.80.64)</div>

<div>Raptr</div>

<div>RBVirtualFolder64Inst (Version: 1.00.0000)</div>

<div>Realtek High Definition Audio Driver (Version: 6.0.1.6291)</div>

<div>Roxio Activation Module (Version: 1.0)</div>

<div>Roxio BackOnTrack (Version: 1.3.3)</div>

<div>Roxio Burn (Version: 1.8)</div>

<div>Roxio Creator Starter (Version: 1.0.439)</div>

<div>Roxio Creator Starter (Version: 12.1.77.0)</div>

<div>Roxio Creator Starter (Version: 5.0.0)</div>

<div>Roxio Express Labeler 3 (Version: 3.2.2)</div>

<div>Roxio File Backup (Version: 1.3.2)</div>

<div>Samsung Drive Manager (Version: 1.0.145)</div>

<div>Scan (Version: 13.0.0.0)</div>

<div>Shop for HP Supplies (Version: 13.0)</div>

<div>Skype Click to Call (Version: 6.5.11422)</div>

<div>Skype™ 5.10 (Version: 5.10.116)</div>

<div>SmartWebPrinting (Version: 130.0.373.000)</div>

<div>SolutionCenter (Version: 130.0.373.000)</div>

<div>Sonic CinePlayer Decoder Pack (Version: 4.3.0)</div>

<div>StarCraft II (Version: 1.4.3.21029)</div>

<div>Status (Version: 130.0.373.000)</div>

<div>Steam (Version: 1.0.0.0)</div>

<div>Synaptics Pointing Device Driver (Version: 15.1.19.0)</div>

<div>The Elder Scrolls V: Skyrim</div>

<div>The Weather Channel Desktop 6</div>

<div>Tomb Raider: Legend</div>

<div>Tomb Raider: Underworld</div>

<div>Toolbox (Version: 130.0.648.000)</div>

<div>TrayApp (Version: 130.0.376.000)</div>

<div>Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)</div>

<div>Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)</div>

<div>Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)</div>

<div>Update for Microsoft .NET Framework 4 Extended (KB2468871) (Version: 1)</div>

<div>Update for Microsoft .NET Framework 4 Extended (KB2533523) (Version: 1)</div>

<div>Update for Microsoft .NET Framework 4 Extended (KB2600217) (Version: 1)</div>

<div>Ventrilo Client for Windows x64 (Version: 3.0.8.0)</div>

<div>WebReg (Version: 130.0.132.017)</div>

<div>World of Warcraft (Version: 5.1.0.16357)</div>

<div> </div>

<div>========================= Devices: ================================</div>

<div> </div>

<div>Could not list devices.</div>

<div> </div>

<div>========================= Memory info: ===================================</div>

<div> </div>

<div>Percentage of memory in use: 56%</div>

<div>Total physical RAM: 4043.86 MB</div>

<div>Available physical RAM: 1776.43 MB</div>

<div>Total Pagefile: 8085.91 MB</div>

<div>Available Pagefile: 4739.89 MB</div>

<div>Total Virtual: 4095.88 MB</div>

<div>Available Virtual: 3967.63 MB</div>

<div> </div>

<div>========================= Partitions: =====================================</div>

<div> </div>

<div>1 Drive c: (OS) (Fixed) (Total:445.99 GB) (Free:214.74 GB) NTFS</div>

<div> </div>

<div>========================= Users: ========================================</div>

<div> </div>

<div>User accounts for \\BRIANATKINSON</div>

<div> </div>

<div>Administrator            Brian Atkinson           Guest                    </div>

<div>UpdatusUser              </div>

<div> </div>

<div>========================= Minidump Files ==================================</div>

<div> </div>

<div>No minidump file found</div>

<div> </div>

<div> </div>

<div>**** End of log ****</div>

<div> </div>

Link to post
Share on other sites

Actually, from here, I think I'm going to proceed to just reset my laptop to factory settings. I noticed that more programs aren't working anymore that were working earlier so I think it's time to bite the bullet on this one.

Thank you again for all your help and time invested in my problem, just sorry that it didn't pan out.

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.