Jump to content

Recommended Posts

Hi,

Not sure if I am infected or not but it's the wieredest set of bugs I've ever run across. When I first tried to get into the laptop this morning it would get bogged down and would not start windows 7. I couldn't start in safemode or even with a system recovery cd. When running in safemode it would get stuck at classpnp.sys. Finally I got it to start up by following a post I found online :

"Eventually I found out about <ALT-F10> (just keep hitting it after powering up the system). I was presented with a Boot Options page. It had a line in it that said "/NOEXECUTE=OPTION/MININT". I hit the <delete key> to remove this text and hit

Now my norton internet security is not running, I can't open internet explorer. When I try to run a version of MalwareBYtes previously installed from Dec it will not run. I get a vbaccelerator sgrid II control "run time error 0" error as well as a MalwareBytes run-time error "440" automation error? I have DDS on a flashdrive which I have placed onto the desktop. I do get a report but when it finish's scanning I get "can't find script engine "VBSCRIPT" for script "C:\users\AndrewandRobert\AppData\Local|Temp|MSGB.PIF" Then I can read the scan results in notepad but can't save them. When I hit saveas to save the file I get "Not enough memory available to complete the operation. Quit one or more applications to increase available memory, and then try again." When I run GMER I get a box that pops up and it says:"GMER hasn't found any system modification" and it will not give me a log to save. I can't get hijackthis to even install. I have it trying to install on the c drive and get "installation directory must be on a local hard drive."

I've been playing with this all day and am about to do a restore to factory default settings restore on here. There is no data as it's the laptop my kids play games on and go to allowed web sites on but it's the point of it. The laptop is 9 months old, dell, from best buy. Just not happy right now. If it is a virus, not sure how my son got it on as he is usually restricted with which sites he can go to????? I do have parental controls on here and just can't figure it out.

I'm telling you, this is the wierdest thing. Just not sure if it's a virus, if there is something major wrong with my drive? When I run system check and the like it comes back as all hardware is fine. IF you think this is not a virus issue my next step is to reinstall and see what happens. I appreciate any feedbak. Thank you.

Link to post
Share on other sites

So I managed to get the DDS files saved by copying and pasting them into wordpad. It still would not let me save them in notepad.

DDS:

DDS (Ver_11-03-05.01) - NTFS_AMD64

Run by Andrew and Robert at 21:07:03.70 on Sat 05/14/2011

Internet Explorer: 8.0.7601.17514

Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.2008.914 [GMT -4:00]

.

AV: Norton Internet Security *Disabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF}

SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

SP: Norton Internet Security *Disabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202}

FW: Norton Internet Security *Disabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}

.

============== Running Processes ===============

.

C:\Windows\system32\wininit.exe

C:\Windows\system32\lsm.exe

C:\Windows\system32\svchost.exe -k DcomLaunch

C:\Windows\system32\svchost.exe -k RPCSS

C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted

C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted

C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_afc3018f8cfedd20\STacSV64.exe

C:\Windows\servicing\TrustedInstaller.exe

C:\Windows\system32\svchost.exe -k LocalService

C:\Program Files\Dell\DellDock\DockLogin.exe

C:\Windows\system32\svchost.exe -k NetworkService

C:\Windows\system32\WLANExt.exe

C:\Windows\system32\conhost.exe

C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRYSVC.EXE

C:\Program Files\Dell\Dell Wireless WLAN Card\bcmwltry.exe

C:\Windows\System32\spoolsv.exe

C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork

C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe

C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

C:\Program Files (x86)\Norton Internet Security\Engine\18.5.0.125\ccSvcHst.exe

C:\Program Files (x86)\Norton Online\Engine\2.1.0.23\ccSvcHst.exe

C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe

C:\Windows\System32\svchost.exe -k secsvcs

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe

C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted

C:\Windows\system32\WUDFHost.exe

C:\Windows\system32\SearchIndexer.exe

C:\Windows\system32\wbem\wmiprvse.exe

C:\Windows\system32\sppsvc.exe

C:\Windows\system32\SearchProtocolHost.exe

C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe

C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

C:\Program Files (x86)\Dell Support Center\bin\sprtsvc.exe

C:\Program Files\Windows Media Player\wmpnetwk.exe

C:\Windows\system32\taskhost.exe

C:\Program Files (x86)\Norton Online\Engine\2.1.0.23\ccSvcHst.exe

C:\Windows\system32\Dwm.exe

C:\Windows\system32\taskeng.exe

C:\Windows\Explorer.EXE

C:\Program Files\DellTPad\Apoint.exe

C:\Program Files\IDT\WDM\sttray64.exe

C:\Windows\System32\igfxtray.exe

C:\Windows\System32\igfxpers.exe

C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRAY.EXE

C:\Program Files\Dell\QuickSet\quickset.exe

C:\Program Files\Dell\DellDock\DellDock.exe

C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe

C:\Windows\system32\igfxsrvc.exe

C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe

C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

C:\Program Files\DellTPad\ApMsgFwd.exe

C:\Program Files\DellTPad\HidFind.exe

C:\Program Files\DellTPad\Apntex.exe

C:\Windows\system32\conhost.exe

C:\Windows\System32\svchost.exe -k LocalServicePeerNet

C:\Program Files (x86)\Dell Support Center\gs_agent\dsc.exe

C:\Windows\system32\SearchFilterHost.exe

C:\Program Files (x86)\Norton Internet Security\Engine\18.5.0.125\uiStub.exe

C:\Windows\system32\DllHost.exe

C:\Windows\system32\DllHost.exe

C:\Users\Andrew and Robert\Desktop\dds.scr

C:\Windows\system32\conhost.exe

C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe

C:\Windows\system32\wbem\wmiprvse.exe

.

============== Pseudo HJT Report ===============

.

uStart Page = hxxp://www.yahoo.com/

uURLSearchHooks: H - No File

mWinlogon: Userinit=userinit.exe

BHO: {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - No File

BHO: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - No File

BHO: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - No File

BHO: {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - No File

BHO: {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - No File

BHO: {9030D464-4C02-4ABF-8ECC-5164760863C6} - No File

BHO: {AA58ED58-01DD-4d91-8333-CF10577473F7} - No File

BHO: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - No File

BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - No File

BHO: {B8E07826-0971-4f16-B133-047B88034E89} - No File

BHO: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - No File

BHO: {DBC80044-A445-435b-BC74-9C25C1C588A9} - No File

BHO: {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - No File

TB: {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - No File

TB: {2E5E800E-6AC0-411E-940A-369530A35E43} - No File

TB: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - No File

TB: {8dcb7100-df86-4384-8842-8fa844297b3f} - No File

TB: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File

TB: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File

uRun: [DW6] "C:\Program Files (x86)\The Weather Channel FW\Desktop\DesktopWeather.exe"

uRun: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"

mRun: [PDVDDXSrv] "C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe"

mRun: [DellSupportCenter] "C:\Program Files (x86)\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter

mRun: [searchSettings] C:\Program Files (x86)\Dealio Toolbar\SearchSettings.exe

mRun: [Microsoft Default Manager] "C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume

mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

mRun: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime

mRunOnce: ["C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpdate.exe"] "C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpdate.exe"

StartupFolder: C:\Users\ANDREW~1\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\DELLDO~1.LNK - C:\Program Files\Dell\DellDock\DellDock.exe

mPolicies-explorer: NoActiveDesktop = 1 (0x1)

mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)

mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)

mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)

mPolicies-system: EnableUIADesktopToggle = 0 (0x0)

mPolicies-system: PromptOnSecureDesktop = 0 (0x0)

IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000

IE: Google Sidewiki... - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html

IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC}

IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C}

IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5}

IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}

DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab

DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab

DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab

DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab

DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} - hxxps://secure.logmein.com/activex/ractrl.cab?lmi=100

BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

BHO-X64: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll

BHO-X64: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5612.1312\swg64.dll

BHO-X64: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

TB-X64: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll

TB-X64: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File

TB-X64: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File

mRun-x64: [Apoint] C:\Program Files\DellTPad\Apoint.exe

mRun-x64: [sysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe

mRun-x64: [igfxTray] C:\Windows\system32\igfxtray.exe

mRun-x64: [HotKeysCmds] C:\Windows\system32\hkcmd.exe

mRun-x64: [Persistence] C:\Windows\system32\igfxpers.exe

mRun-x64: [broadcom Wireless Manager UI] C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRAY.exe

mRun-x64: [QuickSet] C:\Program Files\Dell\QuickSet\QuickSet.exe

mRun-x64: [iAAnotif] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe

.

================= FIREFOX ===================

.

FF - ProfilePath - C:\Users\ANDREW~1\AppData\Roaming\Mozilla\Firefox\Profiles\handrxzz.default\

FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

FF - plugin: C:\Program Files (x86)\Google\Update\1.2.183.39\npGoogleOneClick8.dll

FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll

FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\4.0.60129.0\npctrlui.dll

FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

FF - plugin: C:\Users\Andrew and Robert\AppData\Local\Yahoo!\BrowserPlus\2.9.8\Plugins\npybrowserplus_2.9.8.dll

.

============= SERVICES / DRIVERS ===============

.

R0 PxHlpa64;PxHlpa64;C:\Windows\System32\drivers\PxHlpa64.sys [2010-6-13 55280]

R0 SymDS;Symantec Data Store;C:\Windows\System32\drivers\NISx64\1205000.07D\SymDS64.sys [2011-2-12 450608]

R0 SymEFA;Symantec Extended File Attributes;C:\Windows\System32\drivers\NISx64\1205000.07D\SymEFA64.sys [2011-2-12 802864]

R1 IDSVia64;IDSVia64;C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.5.0.125\Definitions\IPSDefs\20110415.003\IDSviA64.sys [2011-4-16 476792]

R1 SymIRON;Symantec Iron Driver;C:\Windows\System32\drivers\NISx64\1205000.07D\Ironx64.sys [2011-2-12 171128]

R1 SymNetS;Symantec Network Security WFP Driver;C:\Windows\System32\drivers\NISx64\1205000.07D\symnets.sys [2011-2-12 382072]

R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\System32\drivers\vwififlt.sys [2009-7-13 59904]

R2 Application Updater;Application Updater;C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe [2010-1-8 380928]

R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]

R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]

R2 DockLoginService;Dock Login Service;C:\Program Files\Dell\DellDock\DockLogin.exe [2009-6-9 155648]

R2 NIS;Norton Internet Security;C:\Program Files (x86)\Norton Internet Security\Engine\18.5.0.125\ccSvcHst.exe [2011-2-12 130000]

R2 NOF;Norton Online;C:\Program Files (x86)\Norton Online\Engine\2.1.0.23\ccsvchst.exe [2011-3-9 126904]

R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\System32\drivers\RtsUStor.sys [2010-5-3 215552]

R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;C:\Windows\System32\drivers\yk62x64.sys [2010-5-3 393728]

S1 BHDrvx64;BHDrvx64;C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.5.0.125\Definitions\BASHDefs\20110309.001\BHDrvx64.sys [2011-3-12 1124472]

S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-7-22 135664]

S3 AdobeActiveFileMonitor8.0;Adobe Active File Monitor V8;C:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [2009-9-18 169312]

S3 EraserUtilRebootDrv;EraserUtilRebootDrv;C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2011-2-17 132656]

S3 SYMRDR_{78CA3BF0-9C3B-40e1-B46D-38C877EF059A};Symantec Redirector - Norton Safety Minder;C:\Windows\System32\drivers\NSMx64\0201000.034\symrdrs.sys [2011-3-30 191024]

S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2011-5-14 59392]

S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2010-7-24 1255736]

.

=============== Created Last 30 ================

.

2011-05-15 00:30:39 -------- d-----w- C:\Windows\System32\SPReview

2011-05-15 00:29:12 -------- d-----w- C:\Windows\System32\EventProviders

2011-05-15 00:25:59 787968 ----a-w- C:\Windows\System32\d3d11.dll

2011-05-15 00:24:59 859648 ----a-w- C:\Windows\SysWow64\OobeFldr.dll

2011-05-15 00:22:23 529408 ----a-w- C:\Windows\System32\wbemcomn.dll

2011-05-15 00:22:23 524288 ----a-w- C:\Windows\System32\wmicmiplugin.dll

2011-05-15 00:22:23 1225216 ----a-w- C:\Windows\System32\wbem\wbemcore.dll

2011-05-15 00:22:18 933376 ----a-w- C:\Windows\System32\SmiEngine.dll

2011-05-15 00:22:16 199168 ----a-w- C:\Windows\System32\PkgMgr.exe

2011-05-15 00:22:05 422912 ----a-w- C:\Windows\System32\drvstore.dll

2011-05-15 00:22:04 399872 ----a-w- C:\Windows\System32\dpx.dll

2011-05-14 23:54:14 8802128 ----a-w- C:\PROGRA~3\Microsoft\Windows Defender\Definition Updates\{603E03E3-CABE-4AD8-9229-BCC97547C955}\mpengine.dll

2011-05-14 22:25:50 46080 ----a-w- C:\Windows\System32\atmlib.dll

2011-05-14 22:22:56 974336 ----a-w- C:\Windows\System32\WFS.exe

2011-05-14 22:22:56 267776 ----a-w- C:\Windows\System32\FXSCOVER.exe

2011-05-14 22:22:56 158208 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys

2011-05-14 22:22:56 128000 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys

2011-05-14 22:22:55 90624 ----a-w- C:\Windows\System32\drivers\bowser.sys

2011-05-14 22:22:55 287744 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys

2011-05-14 19:47:18 38224 ----a-w- C:\Windows\SysWow64\drivers\mbamswissarmy.sys

2011-05-14 19:47:14 24152 ----a-w- C:\Windows\System32\drivers\mbam.sys

2011-05-14 18:04:28 142336 ----a-w- C:\Windows\System32\poqexec.exe

2011-05-14 18:04:28 123904 ----a-w- C:\Windows\SysWow64\poqexec.exe

2011-05-14 17:29:41 -------- d-----w- C:\d180a1fbedd69b672ba6

2011-05-14 17:26:21 -------- d-----w- C:\Users\Andrew and Robert\Tracing

2011-05-14 16:23:39 -------- d-----w- C:\PROGRA~3\Malwarebytes

2011-05-14 16:23:36 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware

2011-05-14 16:01:00 -------- d-----w- C:\Program Files (x86)\NeoSmart Technologies

2011-05-14 15:44:53 -------- d-----w- C:\Users\ANDREW~1\AppData\Local\CrashDumps

2011-05-14 14:04:58 -------- d-----w- C:\Emergency

2011-04-18 11:48:24 -------- d-----w- C:\Program Files\Dell Support Center

2011-04-16 15:52:00 159080 ----a-w- C:\PROGRA~3\Microsoft\Windows\Sqm\Manifest\Sqm10138.bin

.

==================== Find3M ====================

.

2011-05-15 00:39:40 152576 ----a-w- C:\Windows\SysWow64\msclmd.dll

2011-05-15 00:39:39 175616 ----a-w- C:\Windows\System32\msclmd.dll

2011-04-09 07:02:55 5562240 ----a-w- C:\Windows\System32\ntoskrnl.exe

2011-04-09 06:02:25 3967872 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe

2011-04-09 06:02:25 3912576 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe

2011-03-18 14:04:38 69632 ----a-w- C:\Windows\SysWow64\Clifford Uninstall.exe

2011-03-12 12:08:49 1465344 ----a-w- C:\Windows\System32\XpsPrint.dll

2011-03-12 11:23:45 870912 ----a-w- C:\Windows\SysWow64\XpsPrint.dll

2011-03-11 06:34:51 1359872 ----a-w- C:\Windows\System32\mfc42u.dll

2011-03-11 06:34:50 1395712 ----a-w- C:\Windows\System32\mfc42.dll

2011-03-11 05:33:59 1164288 ----a-w- C:\Windows\SysWow64\mfc42u.dll

2011-03-11 05:33:59 1137664 ----a-w- C:\Windows\SysWow64\mfc42.dll

2011-03-08 06:29:32 976896 ----a-w- C:\Windows\System32\inetcomm.dll

2011-03-08 05:28:29 741376 ----a-w- C:\Windows\SysWow64\inetcomm.dll

2011-03-07 06:31:44 1188864 ----a-w- C:\Windows\System32\wininet.dll

2011-03-07 05:33:13 981504 ----a-w- C:\Windows\SysWow64\wininet.dll

2011-03-07 04:24:34 1638912 ----a-w- C:\Windows\System32\mshtml.tlb

2011-03-07 03:52:25 1638912 ----a-w- C:\Windows\SysWow64\mshtml.tlb

2011-03-04 06:19:28 135168 ----a-w- C:\Windows\apppatch\AppPatch64\AcXtrnal.dll

2011-03-04 06:19:27 350208 ----a-w- C:\Windows\apppatch\AppPatch64\AcLayers.dll

2011-03-03 06:24:16 183296 ----a-w- C:\Windows\System32\dnsrslvr.dll

2011-03-03 06:21:57 30208 ----a-w- C:\Windows\System32\dnscacheugc.exe

2011-03-03 05:36:16 28672 ----a-w- C:\Windows\SysWow64\dnscacheugc.exe

2011-03-03 03:52:08 3135488 ----a-w- C:\Windows\System32\win32k.sys

2011-02-24 06:15:44 476160 ----a-w- C:\Windows\System32\XpsGdiConverter.dll

2011-02-24 05:38:54 288256 ----a-w- C:\Windows\SysWow64\XpsGdiConverter.dll

2011-02-23 04:56:27 467456 ----a-w- C:\Windows\System32\drivers\srv.sys

2011-02-23 04:56:03 411648 ----a-w- C:\Windows\System32\drivers\srv2.sys

2011-02-23 04:55:47 167936 ----a-w- C:\Windows\System32\drivers\srvnet.sys

2011-02-19 12:05:15 1139200 ----a-w- C:\Windows\System32\FntCache.dll

2011-02-19 12:04:37 1544192 ----a-w- C:\Windows\System32\DWrite.dll

2011-02-19 12:04:17 902656 ----a-w- C:\Windows\System32\d2d1.dll

2011-02-19 09:00:32 367616 ----a-w- C:\Windows\System32\atmfd.dll

2011-02-19 06:30:51 1076736 ----a-w- C:\Windows\SysWow64\DWrite.dll

2011-02-19 06:30:50 739840 ----a-w- C:\Windows\SysWow64\d2d1.dll

2011-02-19 06:30:46 34304 ----a-w- C:\Windows\SysWow64\atmlib.dll

2011-02-19 04:34:54 294912 ----a-w- C:\Windows\SysWow64\atmfd.dll

2011-02-18 10:56:44 613376 ----a-w- C:\Windows\System32\vbscript.dll

2011-02-18 10:51:16 31232 ----a-w- C:\Windows\System32\prevhost.exe

2011-02-18 05:43:28 428032 ----a-w- C:\Windows\SysWow64\vbscript.dll

2011-02-18 05:39:44 31232 ----a-w- C:\Windows\SysWow64\prevhost.exe

.

============= FINISH: 21:08:41.56 ===============

Attach:

==== Installed Programs ======================

.

Adobe AIR

Adobe Flash Player 10 ActiveX

Adobe Flash Player 10 Plugin

Adobe Photoshop Elements 8.0

Adobe Reader 9.4.2

Adobe Shockwave Player 11.5

Apple Software Update

Arthur's Wilderness Rescue

Bear's Imagine That!

Bing Bar

Bing Bar Platform

Bing Rewards Client Installer

Blues Clues School

Cisco EAP-FAST Module

Cisco LEAP Module

Cisco PEAP Module

Clifford Thinking Adventures

Compatibility Pack for the 2007 Office system

Consumer In-Home Service Agreement

Cozi

D3DX10

Dealio Toolbar v4.0.2

Dell DataSafe Local Backup - Support Software

Dell Dock

Dell Getting Started Guide

Dell Support Center (Support Software)

Google Earth

Google Toolbar for Internet Explorer

Google Update Helper

GoToAssist 8.0.0.514

Java Auto Updater

Java 6 Update 24

Jay Jay Sky Heroes to the Rescue

Junk Mail filter update

Kid Pix Deluxe 4

L&H TTS3000 Espa

Link to post
Share on other sites

So I managed to get the DDS files saved by copying and pasting them into wordpad. It still would not let me save them in notepad.

DDS:

DDS (Ver_11-03-05.01) - NTFS_AMD64

Run by Andrew and Robert at 21:07:03.70 on Sat 05/14/2011

Internet Explorer: 8.0.7601.17514

Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.2008.914 [GMT -4:00]

.

AV: Norton Internet Security *Disabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF}

SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

SP: Norton Internet Security *Disabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202}

FW: Norton Internet Security *Disabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}

.

============== Running Processes ===============

.

C:\Windows\system32\wininit.exe

C:\Windows\system32\lsm.exe

C:\Windows\system32\svchost.exe -k DcomLaunch

C:\Windows\system32\svchost.exe -k RPCSS

C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted

C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted

C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_afc3018f8cfedd20\STacSV64.exe

C:\Windows\servicing\TrustedInstaller.exe

C:\Windows\system32\svchost.exe -k LocalService

C:\Program Files\Dell\DellDock\DockLogin.exe

C:\Windows\system32\svchost.exe -k NetworkService

C:\Windows\system32\WLANExt.exe

C:\Windows\system32\conhost.exe

C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRYSVC.EXE

C:\Program Files\Dell\Dell Wireless WLAN Card\bcmwltry.exe

C:\Windows\System32\spoolsv.exe

C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork

C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe

C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation

C:\Program Files (x86)\Norton Internet Security\Engine\18.5.0.125\ccSvcHst.exe

C:\Program Files (x86)\Norton Online\Engine\2.1.0.23\ccSvcHst.exe

C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe

C:\Windows\System32\svchost.exe -k secsvcs

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE

C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe

C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe

C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted

C:\Windows\system32\WUDFHost.exe

C:\Windows\system32\SearchIndexer.exe

C:\Windows\system32\wbem\wmiprvse.exe

C:\Windows\system32\sppsvc.exe

C:\Windows\system32\SearchProtocolHost.exe

C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe

C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe

C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

C:\Program Files (x86)\Dell Support Center\bin\sprtsvc.exe

C:\Program Files\Windows Media Player\wmpnetwk.exe

C:\Windows\system32\taskhost.exe

C:\Program Files (x86)\Norton Online\Engine\2.1.0.23\ccSvcHst.exe

C:\Windows\system32\Dwm.exe

C:\Windows\system32\taskeng.exe

C:\Windows\Explorer.EXE

C:\Program Files\DellTPad\Apoint.exe

C:\Program Files\IDT\WDM\sttray64.exe

C:\Windows\System32\igfxtray.exe

C:\Windows\System32\igfxpers.exe

C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRAY.EXE

C:\Program Files\Dell\QuickSet\quickset.exe

C:\Program Files\Dell\DellDock\DellDock.exe

C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe

C:\Windows\system32\igfxsrvc.exe

C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe

C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe

C:\Program Files\DellTPad\ApMsgFwd.exe

C:\Program Files\DellTPad\HidFind.exe

C:\Program Files\DellTPad\Apntex.exe

C:\Windows\system32\conhost.exe

C:\Windows\System32\svchost.exe -k LocalServicePeerNet

C:\Program Files (x86)\Dell Support Center\gs_agent\dsc.exe

C:\Windows\system32\SearchFilterHost.exe

C:\Program Files (x86)\Norton Internet Security\Engine\18.5.0.125\uiStub.exe

C:\Windows\system32\DllHost.exe

C:\Windows\system32\DllHost.exe

C:\Users\Andrew and Robert\Desktop\dds.scr

C:\Windows\system32\conhost.exe

C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe

C:\Windows\system32\wbem\wmiprvse.exe

.

============== Pseudo HJT Report ===============

.

uStart Page = hxxp://www.yahoo.com/

uURLSearchHooks: H - No File

mWinlogon: Userinit=userinit.exe

BHO: {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - No File

BHO: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - No File

BHO: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - No File

BHO: {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - No File

BHO: {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - No File

BHO: {9030D464-4C02-4ABF-8ECC-5164760863C6} - No File

BHO: {AA58ED58-01DD-4d91-8333-CF10577473F7} - No File

BHO: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - No File

BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - No File

BHO: {B8E07826-0971-4f16-B133-047B88034E89} - No File

BHO: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - No File

BHO: {DBC80044-A445-435b-BC74-9C25C1C588A9} - No File

BHO: {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - No File

TB: {01398B87-61AF-4FFB-9AB5-1A1C5FB39A9C} - No File

TB: {2E5E800E-6AC0-411E-940A-369530A35E43} - No File

TB: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - No File

TB: {8dcb7100-df86-4384-8842-8fa844297b3f} - No File

TB: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File

TB: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File

uRun: [DW6] "C:\Program Files (x86)\The Weather Channel FW\Desktop\DesktopWeather.exe"

uRun: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"

mRun: [PDVDDXSrv] "C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe"

mRun: [DellSupportCenter] "C:\Program Files (x86)\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter

mRun: [searchSettings] C:\Program Files (x86)\Dealio Toolbar\SearchSettings.exe

mRun: [Microsoft Default Manager] "C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume

mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"

mRun: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"

mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime

mRunOnce: ["C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpdate.exe"] "C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpdate.exe"

StartupFolder: C:\Users\ANDREW~1\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\DELLDO~1.LNK - C:\Program Files\Dell\DellDock\DellDock.exe

mPolicies-explorer: NoActiveDesktop = 1 (0x1)

mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)

mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)

mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)

mPolicies-system: EnableUIADesktopToggle = 0 (0x0)

mPolicies-system: PromptOnSecureDesktop = 0 (0x0)

IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000

IE: Google Sidewiki... - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html

IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC}

IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C}

IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5}

IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}

DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab

DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab

DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab

DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab

DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab

DPF: {FD0B6769-6490-4A91-AA0A-B5AE0DC75AC9} - hxxps://secure.logmein.com/activex/ractrl.cab?lmi=100

BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

BHO-X64: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll

BHO-X64: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5612.1312\swg64.dll

BHO-X64: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

TB-X64: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll

TB-X64: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File

TB-X64: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File

mRun-x64: [Apoint] C:\Program Files\DellTPad\Apoint.exe

mRun-x64: [sysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe

mRun-x64: [igfxTray] C:\Windows\system32\igfxtray.exe

mRun-x64: [HotKeysCmds] C:\Windows\system32\hkcmd.exe

mRun-x64: [Persistence] C:\Windows\system32\igfxpers.exe

mRun-x64: [broadcom Wireless Manager UI] C:\Program Files\Dell\Dell Wireless WLAN Card\WLTRAY.exe

mRun-x64: [QuickSet] C:\Program Files\Dell\QuickSet\QuickSet.exe

mRun-x64: [iAAnotif] C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe

.

================= FIREFOX ===================

.

FF - ProfilePath - C:\Users\ANDREW~1\AppData\Roaming\Mozilla\Firefox\Profiles\handrxzz.default\

FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll

FF - plugin: C:\Program Files (x86)\Google\Update\1.2.183.39\npGoogleOneClick8.dll

FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll

FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\4.0.60129.0\npctrlui.dll

FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

FF - plugin: C:\Users\Andrew and Robert\AppData\Local\Yahoo!\BrowserPlus\2.9.8\Plugins\npybrowserplus_2.9.8.dll

.

============= SERVICES / DRIVERS ===============

.

R0 PxHlpa64;PxHlpa64;C:\Windows\System32\drivers\PxHlpa64.sys [2010-6-13 55280]

R0 SymDS;Symantec Data Store;C:\Windows\System32\drivers\NISx64\1205000.07D\SymDS64.sys [2011-2-12 450608]

R0 SymEFA;Symantec Extended File Attributes;C:\Windows\System32\drivers\NISx64\1205000.07D\SymEFA64.sys [2011-2-12 802864]

R1 IDSVia64;IDSVia64;C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.5.0.125\Definitions\IPSDefs\20110415.003\IDSviA64.sys [2011-4-16 476792]

R1 SymIRON;Symantec Iron Driver;C:\Windows\System32\drivers\NISx64\1205000.07D\Ironx64.sys [2011-2-12 171128]

R1 SymNetS;Symantec Network Security WFP Driver;C:\Windows\System32\drivers\NISx64\1205000.07D\symnets.sys [2011-2-12 382072]

R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\System32\drivers\vwififlt.sys [2009-7-13 59904]

R2 Application Updater;Application Updater;C:\Program Files (x86)\Application Updater\ApplicationUpdater.exe [2010-1-8 380928]

R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]

R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]

R2 DockLoginService;Dock Login Service;C:\Program Files\Dell\DellDock\DockLogin.exe [2009-6-9 155648]

R2 NIS;Norton Internet Security;C:\Program Files (x86)\Norton Internet Security\Engine\18.5.0.125\ccSvcHst.exe [2011-2-12 130000]

R2 NOF;Norton Online;C:\Program Files (x86)\Norton Online\Engine\2.1.0.23\ccsvchst.exe [2011-3-9 126904]

R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\System32\drivers\RtsUStor.sys [2010-5-3 215552]

R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;C:\Windows\System32\drivers\yk62x64.sys [2010-5-3 393728]

S1 BHDrvx64;BHDrvx64;C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.5.0.125\Definitions\BASHDefs\20110309.001\BHDrvx64.sys [2011-3-12 1124472]

S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-7-22 135664]

S3 AdobeActiveFileMonitor8.0;Adobe Active File Monitor V8;C:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [2009-9-18 169312]

S3 EraserUtilRebootDrv;EraserUtilRebootDrv;C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2011-2-17 132656]

S3 SYMRDR_{78CA3BF0-9C3B-40e1-B46D-38C877EF059A};Symantec Redirector - Norton Safety Minder;C:\Windows\System32\drivers\NSMx64\0201000.034\symrdrs.sys [2011-3-30 191024]

S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2011-5-14 59392]

S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2010-7-24 1255736]

.

=============== Created Last 30 ================

.

2011-05-15 00:30:39 -------- d-----w- C:\Windows\System32\SPReview

2011-05-15 00:29:12 -------- d-----w- C:\Windows\System32\EventProviders

2011-05-15 00:25:59 787968 ----a-w- C:\Windows\System32\d3d11.dll

2011-05-15 00:24:59 859648 ----a-w- C:\Windows\SysWow64\OobeFldr.dll

2011-05-15 00:22:23 529408 ----a-w- C:\Windows\System32\wbemcomn.dll

2011-05-15 00:22:23 524288 ----a-w- C:\Windows\System32\wmicmiplugin.dll

2011-05-15 00:22:23 1225216 ----a-w- C:\Windows\System32\wbem\wbemcore.dll

2011-05-15 00:22:18 933376 ----a-w- C:\Windows\System32\SmiEngine.dll

2011-05-15 00:22:16 199168 ----a-w- C:\Windows\System32\PkgMgr.exe

2011-05-15 00:22:05 422912 ----a-w- C:\Windows\System32\drvstore.dll

2011-05-15 00:22:04 399872 ----a-w- C:\Windows\System32\dpx.dll

2011-05-14 23:54:14 8802128 ----a-w- C:\PROGRA~3\Microsoft\Windows Defender\Definition Updates\{603E03E3-CABE-4AD8-9229-BCC97547C955}\mpengine.dll

2011-05-14 22:25:50 46080 ----a-w- C:\Windows\System32\atmlib.dll

2011-05-14 22:22:56 974336 ----a-w- C:\Windows\System32\WFS.exe

2011-05-14 22:22:56 267776 ----a-w- C:\Windows\System32\FXSCOVER.exe

2011-05-14 22:22:56 158208 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys

2011-05-14 22:22:56 128000 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys

2011-05-14 22:22:55 90624 ----a-w- C:\Windows\System32\drivers\bowser.sys

2011-05-14 22:22:55 287744 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys

2011-05-14 19:47:18 38224 ----a-w- C:\Windows\SysWow64\drivers\mbamswissarmy.sys

2011-05-14 19:47:14 24152 ----a-w- C:\Windows\System32\drivers\mbam.sys

2011-05-14 18:04:28 142336 ----a-w- C:\Windows\System32\poqexec.exe

2011-05-14 18:04:28 123904 ----a-w- C:\Windows\SysWow64\poqexec.exe

2011-05-14 17:29:41 -------- d-----w- C:\d180a1fbedd69b672ba6

2011-05-14 17:26:21 -------- d-----w- C:\Users\Andrew and Robert\Tracing

2011-05-14 16:23:39 -------- d-----w- C:\PROGRA~3\Malwarebytes

2011-05-14 16:23:36 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware

2011-05-14 16:01:00 -------- d-----w- C:\Program Files (x86)\NeoSmart Technologies

2011-05-14 15:44:53 -------- d-----w- C:\Users\ANDREW~1\AppData\Local\CrashDumps

2011-05-14 14:04:58 -------- d-----w- C:\Emergency

2011-04-18 11:48:24 -------- d-----w- C:\Program Files\Dell Support Center

2011-04-16 15:52:00 159080 ----a-w- C:\PROGRA~3\Microsoft\Windows\Sqm\Manifest\Sqm10138.bin

.

==================== Find3M ====================

.

2011-05-15 00:39:40 152576 ----a-w- C:\Windows\SysWow64\msclmd.dll

2011-05-15 00:39:39 175616 ----a-w- C:\Windows\System32\msclmd.dll

2011-04-09 07:02:55 5562240 ----a-w- C:\Windows\System32\ntoskrnl.exe

2011-04-09 06:02:25 3967872 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe

2011-04-09 06:02:25 3912576 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe

2011-03-18 14:04:38 69632 ----a-w- C:\Windows\SysWow64\Clifford Uninstall.exe

2011-03-12 12:08:49 1465344 ----a-w- C:\Windows\System32\XpsPrint.dll

2011-03-12 11:23:45 870912 ----a-w- C:\Windows\SysWow64\XpsPrint.dll

2011-03-11 06:34:51 1359872 ----a-w- C:\Windows\System32\mfc42u.dll

2011-03-11 06:34:50 1395712 ----a-w- C:\Windows\System32\mfc42.dll

2011-03-11 05:33:59 1164288 ----a-w- C:\Windows\SysWow64\mfc42u.dll

2011-03-11 05:33:59 1137664 ----a-w- C:\Windows\SysWow64\mfc42.dll

2011-03-08 06:29:32 976896 ----a-w- C:\Windows\System32\inetcomm.dll

2011-03-08 05:28:29 741376 ----a-w- C:\Windows\SysWow64\inetcomm.dll

2011-03-07 06:31:44 1188864 ----a-w- C:\Windows\System32\wininet.dll

2011-03-07 05:33:13 981504 ----a-w- C:\Windows\SysWow64\wininet.dll

2011-03-07 04:24:34 1638912 ----a-w- C:\Windows\System32\mshtml.tlb

2011-03-07 03:52:25 1638912 ----a-w- C:\Windows\SysWow64\mshtml.tlb

2011-03-04 06:19:28 135168 ----a-w- C:\Windows\apppatch\AppPatch64\AcXtrnal.dll

2011-03-04 06:19:27 350208 ----a-w- C:\Windows\apppatch\AppPatch64\AcLayers.dll

2011-03-03 06:24:16 183296 ----a-w- C:\Windows\System32\dnsrslvr.dll

2011-03-03 06:21:57 30208 ----a-w- C:\Windows\System32\dnscacheugc.exe

2011-03-03 05:36:16 28672 ----a-w- C:\Windows\SysWow64\dnscacheugc.exe

2011-03-03 03:52:08 3135488 ----a-w- C:\Windows\System32\win32k.sys

2011-02-24 06:15:44 476160 ----a-w- C:\Windows\System32\XpsGdiConverter.dll

2011-02-24 05:38:54 288256 ----a-w- C:\Windows\SysWow64\XpsGdiConverter.dll

2011-02-23 04:56:27 467456 ----a-w- C:\Windows\System32\drivers\srv.sys

2011-02-23 04:56:03 411648 ----a-w- C:\Windows\System32\drivers\srv2.sys

2011-02-23 04:55:47 167936 ----a-w- C:\Windows\System32\drivers\srvnet.sys

2011-02-19 12:05:15 1139200 ----a-w- C:\Windows\System32\FntCache.dll

2011-02-19 12:04:37 1544192 ----a-w- C:\Windows\System32\DWrite.dll

2011-02-19 12:04:17 902656 ----a-w- C:\Windows\System32\d2d1.dll

2011-02-19 09:00:32 367616 ----a-w- C:\Windows\System32\atmfd.dll

2011-02-19 06:30:51 1076736 ----a-w- C:\Windows\SysWow64\DWrite.dll

2011-02-19 06:30:50 739840 ----a-w- C:\Windows\SysWow64\d2d1.dll

2011-02-19 06:30:46 34304 ----a-w- C:\Windows\SysWow64\atmlib.dll

2011-02-19 04:34:54 294912 ----a-w- C:\Windows\SysWow64\atmfd.dll

2011-02-18 10:56:44 613376 ----a-w- C:\Windows\System32\vbscript.dll

2011-02-18 10:51:16 31232 ----a-w- C:\Windows\System32\prevhost.exe

2011-02-18 05:43:28 428032 ----a-w- C:\Windows\SysWow64\vbscript.dll

2011-02-18 05:39:44 31232 ----a-w- C:\Windows\SysWow64\prevhost.exe

.

============= FINISH: 21:08:41.56 ===============

Attach:

==== Installed Programs ======================

.

Adobe AIR

Adobe Flash Player 10 ActiveX

Adobe Flash Player 10 Plugin

Adobe Photoshop Elements 8.0

Adobe Reader 9.4.2

Adobe Shockwave Player 11.5

Apple Software Update

Arthur's Wilderness Rescue

Bear's Imagine That!

Bing Bar

Bing Bar Platform

Bing Rewards Client Installer

Blues Clues School

Cisco EAP-FAST Module

Cisco LEAP Module

Cisco PEAP Module

Clifford Thinking Adventures

Compatibility Pack for the 2007 Office system

Consumer In-Home Service Agreement

Cozi

D3DX10

Dealio Toolbar v4.0.2

Dell DataSafe Local Backup - Support Software

Dell Dock

Dell Getting Started Guide

Dell Support Center (Support Software)

Google Earth

Google Toolbar for Internet Explorer

Google Update Helper

GoToAssist 8.0.0.514

Java Auto Updater

Java 6 Update 24

Jay Jay Sky Heroes to the Rescue

Junk Mail filter update

Kid Pix Deluxe 4

L&H TTS3000 Espa

Link to post
Share on other sites

  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.