Ok, so while on break I decided to browse one of the wikis I haven't been to in a while but have never had a problem before and WoT stated was safe.
next thing I know, I'm taken to what looks like a download adobe site (however I knew otherwise.) and at the same time zone alarm flags that the built in antivirus (using the kasperski engine) also picked up something in the temp folder, after deleting it my adobe then sas it needs an undate, however I would rather make sure my machine is clean before thying to update.
------------------------------------------------------------------------------------------------------------------------------------------
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 17/10/2014
Scan Time: 15:29:50
Logfile: MBAM AV log.txt
Administrator: Yes
Version: 2.00.2.1012
Malware Database: v2014.10.17.05
Rootkit Database: v2014.10.15.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Luke Fitton
Scan Type: Custom Scan
Result: Completed
Objects Scanned: 560326
Time Elapsed: 1 hr, 52 min, 1 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 0
(No malicious items detected)
Registry Values: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Folders: 0
(No malicious items detected)
Files: 0
(No malicious items detected)
Physical Sectors: 0
(No malicious items detected)
(end)
------------------------------------------------------------------------
DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 11.0.9600.17344
Run by Luke Fitton at 17:42:55 on 2014-10-17
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.44.1033.18.8133.5678 [GMT 1:00]
.
AV: ZoneAlarm Extreme Security Antivirus *Enabled/Updated* {23B6D20A-C2DE-B3F5-C67D-07ECD854E6A9}
SP: ZoneAlarm Extreme Security Anti-Spyware *Enabled/Updated* {98D733EE-E4E4-BC7B-FCCD-3C9EA3D3AC14}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ZoneAlarm Extreme Security Firewall *Enabled* {1B8D532F-88B1-B2AD-ED22-AED92687A1D2}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\atieclxx.exe
C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files (x86)\CheckPoint\AKL\AkSVC.exe
C:\Program Files (x86)\CheckPoint\AKL\AkSA.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Intel\iCLS Client\HeciServer.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZaPrivacyService.exe
C:\Program Files (x86)\CheckPoint\AntiTheft\Antitheft.exe
C:\Program Files (x86)\CheckPoint\ZoneAlarm\ThreatEmulation.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_152.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_152.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uSearch Bar = Preserve
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\office15\URLREDIR.DLL
uRun: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
mRun: [ZoneAlarm] "C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe"
mRun: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
uPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: NoDrives = dword:0
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: EnableSecureUIAPath = dword:1
IE: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
IE: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIELinkedNotes.dll
TCP: NameServer = 192.168.0.1
TCP: Interfaces\{69811E27-1133-44DD-B9F8-0A928A5D3582} : DHCPNameServer = 192.168.3.1
TCP: Interfaces\{E5414010-5DBE-4DEA-AD4E-AE82AECD1FC6} : DHCPNameServer = 192.168.0.1
TCP: Interfaces\{F4B222B5-DF14-4703-8CAF-0BB117DBAB24} : DHCPNameServer = 192.168.0.1
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\office15\MSOSB.DLL
SSODL: WebCheck - <orphaned>
x64-BHO: Lync Browser Helper: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL
x64-BHO: Microsoft SkyDrive Pro Browser Helper: {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
x64-Run: [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
x64-Run: [Persistence] "C:\Windows\System32\igfxpers.exe"
x64-Run: [NUSB3MON] "C:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe"
x64-Run: [ISW] "C:\Program Files (x86)\CheckPoint\AKL\AkSA.exe" /icon="hidden"
x64-Run: [IgfxTray] "C:\Windows\System32\igfxtray.exe"
x64-Run: [HotKeysCmds] "C:\Windows\System32\hkcmd.exe"
x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
x64-IE: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
x64-Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - <orphaned>
x64-Notify: igfxcui - igfxdev.dll
x64-SSODL: WebCheck - <orphaned>
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Luke Fitton\AppData\Roaming\Mozilla\Firefox\Profiles\ahruq7t2.default\
FF - prefs.js: browser.startup.homepage - hxxps://www.google.co.uk/
FF - plugin: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
FF - plugin: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrlui.dll
FF - plugin: C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll
.
============= SERVICES / DRIVERS ===============
.
R0 amd_sata;amd_sata;C:\Windows\System32\drivers\amd_sata.sys [2013-11-6 83176]
R0 amd_xata;amd_xata;C:\Windows\System32\drivers\amd_xata.sys [2013-11-6 43240]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver;C:\Windows\System32\drivers\iusb3hcs.sys [2014-4-25 20464]
R1 kltdi;kltdi;C:\Windows\System32\drivers\kltdi.sys [2014-7-9 54104]
R1 kneps;kneps;C:\Windows\System32\drivers\kneps.sys [2014-7-9 177760]
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2014-4-16 239616]
R2 AMD FUEL Service;AMD FUEL Service;C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2014-4-15 344064]
R2 AODDriver4.3;AODDriver4.3;C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys [2014-2-11 59616]
R2 asComSvc;ASUS Com Service;C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [2014-6-20 936728]
R2 ClickToRunSvc;Microsoft Office ClickToRun Service;C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe [2014-9-21 2428088]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-8-27 747520]
R2 IpOverUsbSvc;Windows Phone IP over USB Transport (IpOverUsbSvc);C:\Program Files (x86)\Common Files\microsoft shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [2014-4-17 22768]
R2 ISWKL;ZoneAlarm AntiKeylogger ISWKL;C:\Program Files (x86)\CheckPoint\AKL\ISWKL.sys [2014-7-17 54144]
R2 IswSvc;ZoneAlarm AntiKeylogger IswSvc;C:\Program Files (x86)\CheckPoint\AKL\AkSVC.exe [2014-7-17 1144952]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-6-20 169432]
R2 ZAPrivacyService;ZoneAlarm Privacy Service;C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZAPrivacyService.exe [2014-8-13 96272]
R2 ZoneAlarm AntiTheft;ZoneAlarm AntiTheft;C:\Program Files (x86)\CheckPoint\AntiTheft\Antitheft.exe [2014-8-13 3129992]
R3 amdhub30;AMD USB 3.0 Hub Driver;C:\Windows\System32\drivers\amdhub30.sys [2013-5-27 106816]
R3 amdxhc;AMD USB 3.0 Host Controller Driver;C:\Windows\System32\drivers\amdxhc.sys [2013-5-27 227648]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;C:\Windows\System32\drivers\AtihdW76.sys [2013-12-19 94720]
R3 MBAMSwissArmy;MBAMSwissArmy;C:\Windows\System32\drivers\MBAMSwissArmy.sys [2014-6-27 122584]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2014-6-27 936664]
R3 usbfilter;AMD USB Filter Driver;C:\Windows\System32\drivers\usbfilter.sys [2014-6-25 58536]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-9-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-9-11 124088]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-4-3 315008]
S3 asmthub3;ASMedia USB3 Hub Service;C:\Windows\System32\drivers\asmthub3.sys [2012-8-20 138568]
S3 asmtxhci;ASMEDIA XHCI Service;C:\Windows\System32\drivers\asmtxhci.sys [2012-8-20 416072]
S3 c2wts;Claims to Windows Token Service;C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [2014-9-21 15768]
S3 icsak;icsak;C:\Program Files (x86)\CheckPoint\AKL\AK\icsak.sys [2014-7-17 48512]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\ieetwcollector.exe [2014-10-15 111616]
S3 IntcDAud;Intel(R) Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2014-4-25 449496]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-8-27 828376]
S3 iusb3hub;Intel(R) USB 3.0 Hub Driver;C:\Windows\System32\drivers\iusb3hub.sys [2014-4-25 368624]
S3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver;C:\Windows\System32\drivers\iusb3xhc.sys [2014-4-25 790000]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2014-4-25 19456]
S3 RTL8192Ce;Realtek Wireless LAN 802.11n PCI-E NIC Driver;C:\Windows\System32\drivers\rtl8192Ce.sys [2011-2-23 1142376]
S3 Te.Service;Te.Service;C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [2013-8-22 119808]
S3 terminpt;Microsoft Remote Desktop Input Driver;C:\Windows\System32\drivers\terminpt.sys [2014-4-25 29696]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2014-4-25 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2014-4-25 29696]
S3 VsEtwService120;Visual Studio ETW Event Collection Service;C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [2014-7-22 89232]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2014-4-25 1255736]
.
=============== Created Last 30 ================
.
2014-10-17 09:45:46 11578928 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{01C79011-F4F0-4202-8DE7-E1238FBA760A}\mpengine.dll
2014-10-15 10:53:50 51200 ----a-w- C:\Windows\SysWow64\ieetwproxystub.dll
2014-10-15 10:50:53 6583296 ----a-w- C:\Windows\System32\mstscax.dll
2014-09-29 10:07:19 -------- d-----w- C:\Program Files (x86)\Microsoft OneDrive
2014-09-29 10:07:18 -------- d-----r- C:\Users\Luke Fitton\OneDrive
2014-09-29 10:07:03 -------- d-----w- C:\ProgramData\Microsoft OneDrive
2014-09-29 09:34:54 -------- d-----w- C:\Users\Luke Fitton\AppData\Local\LogMeIn Rescue Applet
2014-09-21 14:06:18 -------- d-----w- C:\Users\Luke Fitton\AppData\Roaming\NuGet
2014-09-21 12:50:25 -------- d-----w- C:\Program Files (x86)\Microsoft Visual Studio 11.0
2014-09-21 12:48:41 -------- d-----w- C:\Program Files (x86)\Windows Phone Silverlight Kits
2014-09-21 12:48:26 2941888 ----a-w- C:\ProgramData\Microsoft\VisualStudio\12.0\1033\ResourceCache.dll
2014-09-21 12:46:34 -------- d-----w- C:\Program Files (x86)\Microsoft XDE
2014-09-21 12:40:48 -------- d-----w- C:\Program Files (x86)\AppInsights
2014-09-21 12:37:02 -------- d-----w- C:\Program Files (x86)\Windows Phone Kits
2014-09-21 12:19:12 -------- d-----w- C:\Program Files (x86)\Workflow Manager Tools
2014-09-21 12:19:07 -------- d-----w- C:\Program Files (x86)\Open XML SDK
2014-09-21 12:19:06 -------- d-----w- C:\Program Files\Microsoft Identity Extensions
2014-09-21 12:18:48 -------- d-----w- C:\Program Files\Windows Identity Foundation
2014-09-21 12:18:48 -------- d-----w- C:\Program Files (x86)\Windows Identity Foundation
2014-09-21 12:18:22 -------- d-----w- C:\Program Files\SharePoint Client Components
2014-09-21 12:18:19 -------- d-----w- C:\Program Files (x86)\Microsoft
2014-09-21 12:17:31 -------- d-----w- C:\Program Files\Microsoft SQL Server Compact Edition
2014-09-21 12:17:29 -------- d-----w- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2014-09-21 12:13:11 -------- d-----w- C:\Program Files\Application Verifier
2014-09-21 12:13:11 -------- d-----w- C:\Program Files (x86)\Application Verifier
2014-09-21 12:12:58 -------- d-----w- C:\ProgramData\Windows App Certification Kit
2014-09-21 12:10:00 -------- d-----w- C:\Program Files (x86)\Common Files\Microsoft
2014-09-21 12:05:22 -------- d-----w- C:\ProgramData\PreEmptive Solutions
2014-09-21 12:01:33 -------- d-----w- C:\Program Files (x86)\Microsoft ASP.NET
2014-09-21 12:00:18 -------- d-----w- C:\Program Files (x86)\Microsoft Web Tools
2014-09-21 11:59:22 -------- d-----w- C:\Program Files\IIS Express
2014-09-21 11:59:22 -------- d-----w- C:\Program Files (x86)\IIS Express
2014-09-21 11:58:40 -------- d-----w- C:\ProgramData\NuGet
2014-09-21 11:58:40 -------- d-----w- C:\Program Files (x86)\NuGet
2014-09-21 11:58:35 -------- d-----w- C:\Program Files (x86)\Microsoft WCF Data Services
2014-09-21 11:58:24 -------- d-----w- C:\Program Files\IIS
2014-09-21 11:58:24 -------- d-----w- C:\Program Files (x86)\IIS
2014-09-21 11:55:25 1998168 ----a-w- C:\Windows\SysWow64\D3DX9_43.dll
2014-09-21 11:54:50 -------- d-----w- C:\Program Files (x86)\Windows Kits
2014-09-21 11:48:27 -------- d-----w- C:\Program Files (x86)\HTML Help Workshop
2014-09-21 11:48:06 -------- d-----w- C:\Program Files (x86)\Microsoft Help Viewer
2014-09-21 11:40:53 -------- d-----w- C:\Windows\SysWow64\1033
2014-09-21 11:40:51 -------- d-----w- C:\Program Files\Microsoft SQL Server
2014-09-21 11:40:51 -------- d-----w- C:\Program Files (x86)\Microsoft SQL Server
2014-09-21 11:31:13 -------- d-----w- C:\Program Files (x86)\Common Files\Merge Modules
2014-09-21 11:27:40 -------- d-----w- C:\Program Files (x86)\Microsoft Visual Studio 12.0
2014-09-21 11:27:14 -------- d-----w- C:\Windows\System32\1033
2014-09-21 11:27:08 -------- d-----w- C:\Program Files\Microsoft Visual Studio 12.0
2014-09-21 11:01:32 -------- d-----w- C:\ProgramData\regid.1991-06.com.microsoft
2014-09-21 11:01:08 590536 ----a-w- C:\ProgramData\Microsoft\ClickToRun\{9AC08E99-230B-47e8-9721-4577B7F124EA}\integrator.exe
2014-09-21 10:54:33 -------- d-----w- C:\Program Files\Microsoft Office 15
.
==================== Find3M ====================
.
2014-10-17 14:29:50 122584 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys
2014-09-29 00:58:48 3198976 ----a-w- C:\Windows\System32\win32k.sys
2014-09-25 22:32:04 2017280 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
2014-09-25 22:31:02 2108416 ----a-w- C:\Windows\System32\inetcpl.cpl
2014-09-24 13:23:18 71344 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2014-09-24 13:23:18 701104 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2014-09-19 01:56:02 2724864 ----a-w- C:\Windows\System32\mshtml.tlb
2014-09-19 01:55:49 4096 ----a-w- C:\Windows\System32\ieetwcollectorres.dll
2014-09-19 01:40:43 66048 ----a-w- C:\Windows\System32\iesetup.dll
2014-09-19 01:40:03 547328 ----a-w- C:\Windows\System32\vbscript.dll
2014-09-19 01:39:58 48640 ----a-w- C:\Windows\System32\ieetwproxystub.dll
2014-09-19 01:38:27 83968 ----a-w- C:\Windows\System32\MshtmlDac.dll
2014-09-19 01:36:57 5829632 ----a-w- C:\Windows\System32\jscript9.dll
2014-09-19 01:26:00 139264 ----a-w- C:\Windows\System32\ieUnatt.exe
2014-09-19 01:25:49 111616 ----a-w- C:\Windows\System32\ieetwcollector.exe
2014-09-19 01:25:12 4201472 ----a-w- C:\Windows\SysWow64\jscript9.dll
2014-09-19 01:25:09 758272 ----a-w- C:\Windows\System32\jscript9diag.dll
2014-09-19 01:18:02 940032 ----a-w- C:\Windows\System32\MsSpellCheckingFacility.exe
2014-09-19 01:14:57 2724864 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2014-09-19 01:06:47 72704 ----a-w- C:\Windows\System32\JavaScriptCollectionAgent.dll
2014-09-19 01:02:07 454656 ----a-w- C:\Windows\SysWow64\vbscript.dll
2014-09-19 01:01:47 61952 ----a-w- C:\Windows\SysWow64\iesetup.dll
2014-09-19 00:59:40 61952 ----a-w- C:\Windows\SysWow64\MshtmlDac.dll
2014-09-19 00:50:16 112128 ----a-w- C:\Windows\SysWow64\ieUnatt.exe
2014-09-19 00:49:31 597504 ----a-w- C:\Windows\SysWow64\jscript9diag.dll
2014-09-19 00:40:12 1249280 ----a-w- C:\Windows\System32\mshtmlmedia.dll
2014-09-19 00:36:23 60416 ----a-w- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
2014-09-19 00:33:18 2309632 ----a-w- C:\Windows\System32\wininet.dll
2014-09-19 00:18:55 1068032 ----a-w- C:\Windows\SysWow64\mshtmlmedia.dll
2014-09-18 23:59:11 1810944 ----a-w- C:\Windows\SysWow64\wininet.dll
2014-09-15 08:06:02 278152 ------w- C:\Windows\System32\MpSigStub.exe
2014-09-13 01:58:18 77312 ----a-w- C:\Windows\System32\packager.dll
2014-09-13 01:40:05 67072 ----a-w- C:\Windows\SysWow64\packager.dll
2014-09-12 13:12:09 122584 ----a-w- C:\Windows\System32\drivers\7D835EB5.sys
2014-09-04 09:24:41 92888 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys
2014-09-04 09:09:31 33512 ----a-w- C:\Windows\SysWow64\drivers\TrueSight.sys
2014-09-04 05:23:20 424448 ----a-w- C:\Windows\System32\rastls.dll
2014-09-04 05:04:15 372736 ----a-w- C:\Windows\SysWow64\rastls.dll
2014-09-01 12:03:07 122584 ----a-w- C:\Windows\System32\drivers\609A1B00.sys
2014-08-30 01:50:57 5702656 ----a-w- C:\Windows\SysWow64\mstscax.dll
2014-08-29 02:07:13 3179520 ----a-w- C:\Windows\System32\rdpcorets.dll
2014-08-23 02:07:00 404480 ----a-w- C:\Windows\System32\gdi32.dll
2014-08-23 01:45:55 311808 ----a-w- C:\Windows\SysWow64\gdi32.dll
2014-08-19 03:11:28 693176 ----a-w- C:\Windows\System32\winload.efi
2014-08-19 03:10:10 616352 ----a-w- C:\Windows\System32\winresume.efi
2014-08-19 03:08:04 503808 ----a-w- C:\Windows\System32\srcore.dll
2014-08-19 03:08:04 50176 ----a-w- C:\Windows\System32\srclient.dll
2014-08-19 03:08:03 63488 ----a-w- C:\Windows\System32\setbcdlocale.dll
2014-08-19 03:07:51 58880 ----a-w- C:\Windows\System32\appidapi.dll
2014-08-19 03:07:51 32256 ----a-w- C:\Windows\System32\appidsvc.dll
2014-08-19 03:07:33 296960 ----a-w- C:\Windows\System32\rstrui.exe
2014-08-19 03:07:11 17920 ----a-w- C:\Windows\System32\appidcertstorecheck.exe
2014-08-19 03:07:11 146944 ----a-w- C:\Windows\System32\appidpolicyconverter.exe
2014-08-19 02:41:39 43008 ----a-w- C:\Windows\SysWow64\srclient.dll
2014-08-19 02:41:22 50688 ----a-w- C:\Windows\SysWow64\appidapi.dll
2014-08-19 02:06:56 61440 ----a-w- C:\Windows\System32\drivers\appid.sys
2014-08-13 10:21:10 646280 ----a-w- C:\Windows\System32\AntiTheftCredentialProvider.dll
2014-08-13 09:16:02 450456 ----a-w- C:\Windows\System32\drivers\vsdatant.sys
2014-07-25 01:35:46 875688 ----a-w- C:\Windows\SysWow64\msvcr120_clr0400.dll
2014-07-24 22:47:06 869544 ----a-w- C:\Windows\System32\msvcr120_clr0400.dll
2014-07-23 01:27:02 699544 ----a-w- C:\Windows\SysWow64\PUGAExperiment.dll
2014-07-23 01:27:02 1769632 ----a-w- C:\Windows\SysWow64\VsGraphicsHelper.dll
2014-07-22 20:17:28 3036320 ----a-w- C:\Windows\System32\VSGraphicsHelper.dll
2014-07-22 20:17:28 1359520 ----a-w- C:\Windows\System32\PUGAExperiment.dll
2014-07-22 14:14:46 137376 ----a-w- C:\Windows\System32\vcomp120.dll
.
============= FINISH: 17:43:20.26 ===============
-----------------------------------------------
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume1
Install Date: 25/06/2014 17:43:52
System Uptime: 17/10/2014 15:27:26 (2 hours ago)
.
Motherboard: ASUSTeK COMPUTER INC. | | A88XM-A
Processor: AMD A4-4000 APU with Radeon(tm) HD Graphics | FM2+ | 3000/100mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 119 GiB total, 65.489 GiB free.
D: is FIXED (NTFS) - 466 GiB total, 465.657 GiB free.
E: is CDROM ()
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP29: 16/09/2014 10:11:12 - Windows Update
RP30: 21/09/2014 12:20:01 - Microsoft Visual Studio Professional 2013 with Update 3
RP31: 21/09/2014 12:20:56 - Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610
RP32: 21/09/2014 12:21:30 - Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727
RP33: 21/09/2014 12:21:46 - Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610
RP34: 21/09/2014 12:22:22 - Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727
RP35: 21/09/2014 12:55:04 - Installed DirectX
RP36: 21/09/2014 13:18:30 - Windows Update
RP37: 26/09/2014 11:23:12 - Windows Update
RP38: 30/09/2014 10:22:29 - Windows Update
RP39: 03/10/2014 11:20:12 - Windows Update
RP40: 07/10/2014 10:27:53 - Windows Update
RP41: 14/10/2014 11:12:20 - Windows Update
RP42: 15/10/2014 16:26:35 - Windows Update
.
==== Installed Programs ======================
.
Tools for .Net 3.5
????? Visual Studio 2012 Verification SDK - rus
7-Zip 9.20 (x64 edition)
Adobe Flash Player 15 ActiveX
Adobe Flash Player 15 Plugin
AMD Accelerated Video Transcoding
AMD Catalyst Control Center
AMD Catalyst Install Manager
AMD Drag and Drop Transcoding
AMD Fuel
AMD USB 3.0 Device Detector
AMD Wireless Display v3.0
Application Insights Tools for Visual Studio 2013
Asmedia ASM104x USB 3.0 Host Controller Driver
AzureTools.Notifications
Behaviors SDK (Windows Phone) for Visual Studio 2013
Behaviors SDK (Windows) for Visual Studio 2013
Blend for Visual Studio 2013
Blend for Visual Studio 2013 ENU resources
Blend for Visual Studio SDK for .NET 4.5
Blend for Visual Studio SDK for Silverlight 5
Build Tools - amd64
Build Tools - x86
Build Tools Language Resources - amd64
Build Tools Language Resources - x86
Catalyst Control Center - Branding
Catalyst Control Center Graphics Previews Common
Catalyst Control Center InstallProxy
Catalyst Control Center Localization All
ccc-utility64
CCC Help Chinese Standard
CCC Help Chinese Traditional
CCC Help Czech
CCC Help Danish
CCC Help Dutch
CCC Help English
CCC Help Finnish
CCC Help French
CCC Help German
CCC Help Greek
CCC Help Hungarian
CCC Help Italian
CCC Help Japanese
CCC Help Korean
CCC Help Norwegian
CCC Help Polish
CCC Help Portuguese
CCC Help Russian
CCC Help Spanish
CCC Help Swedish
CCC Help Thai
CCC Help Turkish
Dotfuscator and Analytics Community Edition
Entity Framework 6.1.1 Tools for Visual Studio 2013
FileZilla Client 3.8.1
IIS 8.0 Express
IIS Express Application Compatibility Database for x64
IIS Express Application Compatibility Database for x86
Intel(R) Management Engine Components
Intel(R) Processor Graphics
Intel(R) USB 3.0 eXtensible Host Controller Driver
Intel® Trusted Connect Service Client
Kit SDK de vérification de Visual Studio 2012 - fra
LocalESPC
LocalESPC Dev12
LocalESPCui for en-us Dev12
Malwarebytes Anti-Malware version 2.0.2.1012
Memory Profiler
Microsoft .NET Framework 4 Multi-Targeting Pack
Microsoft .NET Framework 4.5 Multi-Targeting Pack
Microsoft .NET Framework 4.5 SDK
Microsoft .NET Framework 4.5.1
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU)
Microsoft .NET Framework 4.5.1 RC Multi-Targeting Pack for Windows Store Apps
Microsoft .NET Framework 4.5.1 RC Multi-Targeting Pack for Windows Store Apps (ENU)
Microsoft .NET Framework 4.5.1 SDK
Microsoft Access 2013 - en-us
Microsoft Advertising SDK for Windows 8.1 - ENU
Microsoft Advertising SDK for Windows Phone 8.1 XAML - ENU
Microsoft Advertising Service Extension for Visual Studio
Microsoft ASP.NET and Web Tools 2013.3 - Visual Studio 12
Microsoft ASP.NET MVC 4 - Visual Studio 2013 - ENU
Microsoft ASP.NET MVC 4 Runtime
Microsoft ASP.NET Web Frameworks and Tools - Visual Studio 2013 - ENU
Microsoft ASP.NET Web Pages 2 - Visual Studio 2013 - ENU
Microsoft ASP.NET Web Pages 2 Runtime
Microsoft Azure Mobile Services SDK
Microsoft Azure Mobile Services Tools for Visual Studio - v1.2
Microsoft Azure Shared Components for Visual Studio 2013 - v1.2
Microsoft Azure Tools for LightSwitch for Visual Studio 2013 - June 2014 Update - v2.4
Microsoft C++ REST SDK for Visual Studio 2013
Microsoft Exchange Web Services Managed API 2.1
Microsoft Expression Blend SDK for .NET 4
Microsoft Help Viewer 2.1
Microsoft Identity Extensions
Microsoft LightSwitch for Visual Studio 2013 Core
Microsoft LightSwitch for Visual Studio 2013 CoreRes - ENU
Microsoft LightSwitch for Visual Studio 2013 v4.5 Tools
Microsoft LightSwitch for Visual Studio 2013 v4.5 ToolsRes - ENU
Microsoft LightSwitch v4.5 SDK
Microsoft NuGet - Visual Studio 2013
Microsoft Office 2013 Developer Tools for Microsoft Visual Studio (x64)
Microsoft Office 2013 Developer Tools for Microsoft Visual Studio (x64) - ENU Language Pack
Microsoft Office Developer Tools for Visual Studio
Microsoft Office Developer Tools for Visual Studio ENU Language Pack
Microsoft Office Home and Student 2013 - en-us
Microsoft OneDrive
Microsoft Portable Library Multi-Targeting Pack
Microsoft Portable Library Multi-Targeting Pack Language Pack - enu
Microsoft Report Viewer Add-On for Visual Studio 2013
Microsoft SharePoint 2013 Developer Tools for Visual Studio 2012 Nuget Package
Microsoft Silverlight
Microsoft Silverlight 5 SDK
Microsoft SQL Server 2012 Command Line Utilities
Microsoft SQL Server 2012 Data-Tier App Framework
Microsoft SQL Server 2012 Data-Tier App Framework (x64)
Microsoft SQL Server 2012 Express LocalDB
Microsoft SQL Server 2012 Management Objects
Microsoft SQL Server 2012 Management Objects (x64)
Microsoft SQL Server 2012 Native Client
Microsoft SQL Server 2012 T-SQL Language Service
Microsoft SQL Server 2012 Transact-SQL ScriptDom
Microsoft SQL Server Compact 4.0 SP1 x64 ENU
Microsoft SQL Server Data Tools - enu (12.0.30919.1)
Microsoft SQL Server Data Tools Build Utilities - enu (12.0.30919.1)
Microsoft SQL Server System CLR Types
Microsoft SQL Server System CLR Types (x64)
Microsoft System CLR Types for SQL Server 2012
Microsoft System CLR Types for SQL Server 2012 (x64)
Microsoft Team Foundation Server 2013 Update 3 Object Model (x64)
Microsoft Team Foundation Server 2013 Update 3 Object Model Language Pack (x64) - ENU
Microsoft Visual C++ ARM Libraries
Microsoft Visual C++ x64-arm Cross Compilers
Microsoft Visual C++ x64-arm Cross Compilers - ENU Resources
Microsoft Visual C++ x64-x86 Cross Compilers
Microsoft Visual C++ x64-x86 Cross Compilers - ENU Resources
Microsoft Visual C++ x64 Libraries
Microsoft Visual C++ x64 Native Compilers
Microsoft Visual C++ x64 Native Compilers - ENU Resources
Microsoft Visual C++ x86 Libraries
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Microsoft Visual C++ 2012 32bit Compilers - ENU Resources
Microsoft Visual C++ 2012 Compilers
Microsoft Visual C++ 2012 Compilers - ENU Resources
Microsoft Visual C++ 2012 Core Libraries
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610
Microsoft Visual C++ 2012 x64 Debug Runtime - 11.0.60610
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610
Microsoft Visual C++ 2012 x86-x64 Compilers
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610
Microsoft Visual C++ 2012 x86 Debug Runtime - 11.0.60610
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610
Microsoft Visual C++ 2013 x64 Designtime - 12.0.21005
Microsoft Visual C++ 2013 32bit Compilers - ENU Resources
Microsoft Visual C++ 2013 Compilers
Microsoft Visual C++ 2013 Compilers - ENU Resources
Microsoft Visual C++ 2013 Core Libraries
Microsoft Visual C++ 2013 Extended Libraries
Microsoft Visual C++ 2013 Microsoft Foundation Class Libraries
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005
Microsoft Visual C++ 2013 x64 Debug Runtime - 12.0.21005
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005
Microsoft Visual C++ 2013 x86-x64 Compilers
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005
Microsoft Visual C++ 2013 x86 Debug Runtime - 12.0.21005
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005
Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
Microsoft Visual Studio 2013 Devenv
Microsoft Visual Studio 2013 Devenv Resources
Microsoft Visual Studio 2013 Diagnostic Tools - amd64
Microsoft Visual Studio 2013 Diagnostic Tools - x86
Microsoft Visual Studio 2013 Performance Collection Tools
Microsoft Visual Studio 2013 Performance Collection Tools - ENU
Microsoft Visual Studio 2013 Preparation
Microsoft Visual Studio 2013 Profiling Tools
Microsoft Visual Studio 2013 Shell (Minimum)
Microsoft Visual Studio 2013 Shell (Minimum) Interop Assemblies
Microsoft Visual Studio 2013 Shell (Minimum) Resources
Microsoft Visual Studio 2013 Team Explorer Language Pack - ENU
Microsoft Visual Studio 2013 VsGraphics Helper Dependencies
Microsoft Visual Studio 2013 XAML UI Designer
Microsoft Visual Studio 2013 XAML UI Designer - ENU
Microsoft Visual Studio Professional 2013
Microsoft Visual Studio Professional 2013 - ENU
Microsoft Visual Studio Professional 2013 with Update 3
Microsoft Web Deploy 3.5
Mozilla Firefox 32.0.3 (x86 en-GB)
Mozilla Maintenance Service
Office 15 Click-to-Run Extensibility Component
Office 15 Click-to-Run Licensing Component
Office 15 Click-to-Run Localization Component
Open XML SDK 2.5 for Microsoft Office
paint.net
PC Tune-Up
PreEmptive Analytics Visual Studio Components
Prerequisites for SSDT
Python Tools Redirection Template
Realtek Ethernet Controller Driver
Realtek High Definition Audio Driver
SDK de comprobación de Visual Studio 2012 - esn
Security Update for Microsoft .NET Framework 4.5.1 (KB2894854v2)
Security Update for Microsoft .NET Framework 4.5.1 (KB2898869)
Security Update for Microsoft .NET Framework 4.5.1 (KB2901126)
Security Update for Microsoft .NET Framework 4.5.1 (KB2931368)
Security Update for Microsoft .NET Framework 4.5.1 (KB2972107)
Security Update for Microsoft .NET Framework 4.5.1 (KB2972216)
Security Update for Microsoft .NET Framework 4.5.1 (KB2979578v2)
SharePoint Client Components
Skype™ 6.18
Team Explorer for Microsoft Visual Studio 2013
TypeScript Power Tool
TypeScript Tools for Microsoft Visual Studio 2013
Update for (KB2504637)
Visual F# 3.1 SDK
Visual F# 3.1 VS
Visual Studio 2012-Verifizierungs-SDK - deu
Visual Studio 2012 ?? SDK - cht
Visual Studio 2012 ??? ?? SDK - kor
Visual Studio 2012 Verification SDK
Visual Studio 2012 Verification SDK - chs
Visual Studio 2012 Verification SDK - enu
Visual Studio 2012 Verification SDK - ita
Visual Studio 2012 Verification SDK - jpn
Visual Studio 2013 Prerequisites
Visual Studio 2013 Prerequisites - ENU Language Pack
Visual Studio 2013 Update 3 (KB2829760)
Visual Studio Extensions for Windows Library for JavaScript
VS Update core components
WCF Data Services 5.6.0 Runtime
WCF Data Services Tools for Microsoft Visual Studio 2013
WCF RIA Services V1.0 SP2
Windows App Certification Kit Native Components
Windows App Certification Kit x64
Windows Azure Tools for LightSwitch for Visual Studio 2013 - v2.1
Windows Phone 8.1 SDK - ARM
Windows Phone 8.1 SDK - Desktop
Windows Phone 8.1 SDK - x64
Windows Phone 8.1 SDK - x86
Windows Phone 8.1 Tools for Visual Studio 2013
Windows Phone 8.1 Tools for Visual Studio 2013 - ENU
Windows Phone 8.1 Tools for Visual Studio Professional 2013
Windows Phone 8.1 Tools for Visual Studio Professionald 2013 - ENU
Windows Phone SDK 8.0 Assemblies
Windows Runtime Intellisense Content - en-us
Windows Software Development Kit
Windows Software Development Kit DirectX x64 Remote
Windows Software Development Kit DirectX x86 Remote
Windows Software Development Kit for Windows Store Apps
Windows Software Development Kit for Windows Store Apps DirectX x64 Remote
Windows Software Development Kit for Windows Store Apps DirectX x86 Remote
Windows XP Targeting with C++
Workflow Manager Client 1.0
Workflow Manager Tools 1.0 for Visual Studio
ZoneAlarm Antivirus
ZoneAlarm Extreme Security
ZoneAlarm Find My Laptop
ZoneAlarm Firewall
ZoneAlarm Security
.
==== End Of File ===========================
next thing I know, I'm taken to what looks like a download adobe site (however I knew otherwise.) and at the same time zone alarm flags that the built in antivirus (using the kasperski engine) also picked up something in the temp folder, after deleting it my adobe then sas it needs an undate, however I would rather make sure my machine is clean before thying to update.
------------------------------------------------------------------------------------------------------------------------------------------
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 17/10/2014
Scan Time: 15:29:50
Logfile: MBAM AV log.txt
Administrator: Yes
Version: 2.00.2.1012
Malware Database: v2014.10.17.05
Rootkit Database: v2014.10.15.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Luke Fitton
Scan Type: Custom Scan
Result: Completed
Objects Scanned: 560326
Time Elapsed: 1 hr, 52 min, 1 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 0
(No malicious items detected)
Registry Values: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Folders: 0
(No malicious items detected)
Files: 0
(No malicious items detected)
Physical Sectors: 0
(No malicious items detected)
(end)
------------------------------------------------------------------------
DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 11.0.9600.17344
Run by Luke Fitton at 17:42:55 on 2014-10-17
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.44.1033.18.8133.5678 [GMT 1:00]
.
AV: ZoneAlarm Extreme Security Antivirus *Enabled/Updated* {23B6D20A-C2DE-B3F5-C67D-07ECD854E6A9}
SP: ZoneAlarm Extreme Security Anti-Spyware *Enabled/Updated* {98D733EE-E4E4-BC7B-FCCD-3C9EA3D3AC14}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ZoneAlarm Extreme Security Firewall *Enabled* {1B8D532F-88B1-B2AD-ED22-AED92687A1D2}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\atieclxx.exe
C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files (x86)\CheckPoint\AKL\AkSVC.exe
C:\Program Files (x86)\CheckPoint\AKL\AkSA.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe
C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Intel\iCLS Client\HeciServer.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZaPrivacyService.exe
C:\Program Files (x86)\CheckPoint\AntiTheft\Antitheft.exe
C:\Program Files (x86)\CheckPoint\ZoneAlarm\ThreatEmulation.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_152.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_152.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uSearch Bar = Preserve
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\office15\URLREDIR.DLL
uRun: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
mRun: [ZoneAlarm] "C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe"
mRun: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
uPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: NoDrives = dword:0
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: EnableSecureUIAPath = dword:1
IE: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
IE: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIELinkedNotes.dll
TCP: NameServer = 192.168.0.1
TCP: Interfaces\{69811E27-1133-44DD-B9F8-0A928A5D3582} : DHCPNameServer = 192.168.3.1
TCP: Interfaces\{E5414010-5DBE-4DEA-AD4E-AE82AECD1FC6} : DHCPNameServer = 192.168.0.1
TCP: Interfaces\{F4B222B5-DF14-4703-8CAF-0BB117DBAB24} : DHCPNameServer = 192.168.0.1
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\office15\MSOSB.DLL
SSODL: WebCheck - <orphaned>
x64-BHO: Lync Browser Helper: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL
x64-BHO: Microsoft SkyDrive Pro Browser Helper: {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL
x64-Run: [RTHDVCPL] "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
x64-Run: [Persistence] "C:\Windows\System32\igfxpers.exe"
x64-Run: [NUSB3MON] "C:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe"
x64-Run: [ISW] "C:\Program Files (x86)\CheckPoint\AKL\AkSA.exe" /icon="hidden"
x64-Run: [IgfxTray] "C:\Windows\System32\igfxtray.exe"
x64-Run: [HotKeysCmds] "C:\Windows\System32\hkcmd.exe"
x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll
x64-IE: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll
x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
x64-Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - <orphaned>
x64-Notify: igfxcui - igfxdev.dll
x64-SSODL: WebCheck - <orphaned>
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Luke Fitton\AppData\Roaming\Mozilla\Firefox\Profiles\ahruq7t2.default\
FF - prefs.js: browser.startup.homepage - hxxps://www.google.co.uk/
FF - plugin: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
FF - plugin: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrlui.dll
FF - plugin: C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll
.
============= SERVICES / DRIVERS ===============
.
R0 amd_sata;amd_sata;C:\Windows\System32\drivers\amd_sata.sys [2013-11-6 83176]
R0 amd_xata;amd_xata;C:\Windows\System32\drivers\amd_xata.sys [2013-11-6 43240]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver;C:\Windows\System32\drivers\iusb3hcs.sys [2014-4-25 20464]
R1 kltdi;kltdi;C:\Windows\System32\drivers\kltdi.sys [2014-7-9 54104]
R1 kneps;kneps;C:\Windows\System32\drivers\kneps.sys [2014-7-9 177760]
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2014-4-16 239616]
R2 AMD FUEL Service;AMD FUEL Service;C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2014-4-15 344064]
R2 AODDriver4.3;AODDriver4.3;C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys [2014-2-11 59616]
R2 asComSvc;ASUS Com Service;C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [2014-6-20 936728]
R2 ClickToRunSvc;Microsoft Office ClickToRun Service;C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe [2014-9-21 2428088]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;C:\Program Files\Intel\iCLS Client\HeciServer.exe [2013-8-27 747520]
R2 IpOverUsbSvc;Windows Phone IP over USB Transport (IpOverUsbSvc);C:\Program Files (x86)\Common Files\microsoft shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [2014-4-17 22768]
R2 ISWKL;ZoneAlarm AntiKeylogger ISWKL;C:\Program Files (x86)\CheckPoint\AKL\ISWKL.sys [2014-7-17 54144]
R2 IswSvc;ZoneAlarm AntiKeylogger IswSvc;C:\Program Files (x86)\CheckPoint\AKL\AkSVC.exe [2014-7-17 1144952]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-6-20 169432]
R2 ZAPrivacyService;ZoneAlarm Privacy Service;C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZAPrivacyService.exe [2014-8-13 96272]
R2 ZoneAlarm AntiTheft;ZoneAlarm AntiTheft;C:\Program Files (x86)\CheckPoint\AntiTheft\Antitheft.exe [2014-8-13 3129992]
R3 amdhub30;AMD USB 3.0 Hub Driver;C:\Windows\System32\drivers\amdhub30.sys [2013-5-27 106816]
R3 amdxhc;AMD USB 3.0 Host Controller Driver;C:\Windows\System32\drivers\amdxhc.sys [2013-5-27 227648]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;C:\Windows\System32\drivers\AtihdW76.sys [2013-12-19 94720]
R3 MBAMSwissArmy;MBAMSwissArmy;C:\Windows\System32\drivers\MBAMSwissArmy.sys [2014-6-27 122584]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2014-6-27 936664]
R3 usbfilter;AMD USB Filter Driver;C:\Windows\System32\drivers\usbfilter.sys [2014-6-25 58536]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-9-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-9-11 124088]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-4-3 315008]
S3 asmthub3;ASMedia USB3 Hub Service;C:\Windows\System32\drivers\asmthub3.sys [2012-8-20 138568]
S3 asmtxhci;ASMEDIA XHCI Service;C:\Windows\System32\drivers\asmtxhci.sys [2012-8-20 416072]
S3 c2wts;Claims to Windows Token Service;C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [2014-9-21 15768]
S3 icsak;icsak;C:\Program Files (x86)\CheckPoint\AKL\AK\icsak.sys [2014-7-17 48512]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\ieetwcollector.exe [2014-10-15 111616]
S3 IntcDAud;Intel(R) Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2014-4-25 449496]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2013-8-27 828376]
S3 iusb3hub;Intel(R) USB 3.0 Hub Driver;C:\Windows\System32\drivers\iusb3hub.sys [2014-4-25 368624]
S3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver;C:\Windows\System32\drivers\iusb3xhc.sys [2014-4-25 790000]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2014-4-25 19456]
S3 RTL8192Ce;Realtek Wireless LAN 802.11n PCI-E NIC Driver;C:\Windows\System32\drivers\rtl8192Ce.sys [2011-2-23 1142376]
S3 Te.Service;Te.Service;C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [2013-8-22 119808]
S3 terminpt;Microsoft Remote Desktop Input Driver;C:\Windows\System32\drivers\terminpt.sys [2014-4-25 29696]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2014-4-25 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2014-4-25 29696]
S3 VsEtwService120;Visual Studio ETW Event Collection Service;C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [2014-7-22 89232]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2014-4-25 1255736]
.
=============== Created Last 30 ================
.
2014-10-17 09:45:46 11578928 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{01C79011-F4F0-4202-8DE7-E1238FBA760A}\mpengine.dll
2014-10-15 10:53:50 51200 ----a-w- C:\Windows\SysWow64\ieetwproxystub.dll
2014-10-15 10:50:53 6583296 ----a-w- C:\Windows\System32\mstscax.dll
2014-09-29 10:07:19 -------- d-----w- C:\Program Files (x86)\Microsoft OneDrive
2014-09-29 10:07:18 -------- d-----r- C:\Users\Luke Fitton\OneDrive
2014-09-29 10:07:03 -------- d-----w- C:\ProgramData\Microsoft OneDrive
2014-09-29 09:34:54 -------- d-----w- C:\Users\Luke Fitton\AppData\Local\LogMeIn Rescue Applet
2014-09-21 14:06:18 -------- d-----w- C:\Users\Luke Fitton\AppData\Roaming\NuGet
2014-09-21 12:50:25 -------- d-----w- C:\Program Files (x86)\Microsoft Visual Studio 11.0
2014-09-21 12:48:41 -------- d-----w- C:\Program Files (x86)\Windows Phone Silverlight Kits
2014-09-21 12:48:26 2941888 ----a-w- C:\ProgramData\Microsoft\VisualStudio\12.0\1033\ResourceCache.dll
2014-09-21 12:46:34 -------- d-----w- C:\Program Files (x86)\Microsoft XDE
2014-09-21 12:40:48 -------- d-----w- C:\Program Files (x86)\AppInsights
2014-09-21 12:37:02 -------- d-----w- C:\Program Files (x86)\Windows Phone Kits
2014-09-21 12:19:12 -------- d-----w- C:\Program Files (x86)\Workflow Manager Tools
2014-09-21 12:19:07 -------- d-----w- C:\Program Files (x86)\Open XML SDK
2014-09-21 12:19:06 -------- d-----w- C:\Program Files\Microsoft Identity Extensions
2014-09-21 12:18:48 -------- d-----w- C:\Program Files\Windows Identity Foundation
2014-09-21 12:18:48 -------- d-----w- C:\Program Files (x86)\Windows Identity Foundation
2014-09-21 12:18:22 -------- d-----w- C:\Program Files\SharePoint Client Components
2014-09-21 12:18:19 -------- d-----w- C:\Program Files (x86)\Microsoft
2014-09-21 12:17:31 -------- d-----w- C:\Program Files\Microsoft SQL Server Compact Edition
2014-09-21 12:17:29 -------- d-----w- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2014-09-21 12:13:11 -------- d-----w- C:\Program Files\Application Verifier
2014-09-21 12:13:11 -------- d-----w- C:\Program Files (x86)\Application Verifier
2014-09-21 12:12:58 -------- d-----w- C:\ProgramData\Windows App Certification Kit
2014-09-21 12:10:00 -------- d-----w- C:\Program Files (x86)\Common Files\Microsoft
2014-09-21 12:05:22 -------- d-----w- C:\ProgramData\PreEmptive Solutions
2014-09-21 12:01:33 -------- d-----w- C:\Program Files (x86)\Microsoft ASP.NET
2014-09-21 12:00:18 -------- d-----w- C:\Program Files (x86)\Microsoft Web Tools
2014-09-21 11:59:22 -------- d-----w- C:\Program Files\IIS Express
2014-09-21 11:59:22 -------- d-----w- C:\Program Files (x86)\IIS Express
2014-09-21 11:58:40 -------- d-----w- C:\ProgramData\NuGet
2014-09-21 11:58:40 -------- d-----w- C:\Program Files (x86)\NuGet
2014-09-21 11:58:35 -------- d-----w- C:\Program Files (x86)\Microsoft WCF Data Services
2014-09-21 11:58:24 -------- d-----w- C:\Program Files\IIS
2014-09-21 11:58:24 -------- d-----w- C:\Program Files (x86)\IIS
2014-09-21 11:55:25 1998168 ----a-w- C:\Windows\SysWow64\D3DX9_43.dll
2014-09-21 11:54:50 -------- d-----w- C:\Program Files (x86)\Windows Kits
2014-09-21 11:48:27 -------- d-----w- C:\Program Files (x86)\HTML Help Workshop
2014-09-21 11:48:06 -------- d-----w- C:\Program Files (x86)\Microsoft Help Viewer
2014-09-21 11:40:53 -------- d-----w- C:\Windows\SysWow64\1033
2014-09-21 11:40:51 -------- d-----w- C:\Program Files\Microsoft SQL Server
2014-09-21 11:40:51 -------- d-----w- C:\Program Files (x86)\Microsoft SQL Server
2014-09-21 11:31:13 -------- d-----w- C:\Program Files (x86)\Common Files\Merge Modules
2014-09-21 11:27:40 -------- d-----w- C:\Program Files (x86)\Microsoft Visual Studio 12.0
2014-09-21 11:27:14 -------- d-----w- C:\Windows\System32\1033
2014-09-21 11:27:08 -------- d-----w- C:\Program Files\Microsoft Visual Studio 12.0
2014-09-21 11:01:32 -------- d-----w- C:\ProgramData\regid.1991-06.com.microsoft
2014-09-21 11:01:08 590536 ----a-w- C:\ProgramData\Microsoft\ClickToRun\{9AC08E99-230B-47e8-9721-4577B7F124EA}\integrator.exe
2014-09-21 10:54:33 -------- d-----w- C:\Program Files\Microsoft Office 15
.
==================== Find3M ====================
.
2014-10-17 14:29:50 122584 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys
2014-09-29 00:58:48 3198976 ----a-w- C:\Windows\System32\win32k.sys
2014-09-25 22:32:04 2017280 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
2014-09-25 22:31:02 2108416 ----a-w- C:\Windows\System32\inetcpl.cpl
2014-09-24 13:23:18 71344 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2014-09-24 13:23:18 701104 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2014-09-19 01:56:02 2724864 ----a-w- C:\Windows\System32\mshtml.tlb
2014-09-19 01:55:49 4096 ----a-w- C:\Windows\System32\ieetwcollectorres.dll
2014-09-19 01:40:43 66048 ----a-w- C:\Windows\System32\iesetup.dll
2014-09-19 01:40:03 547328 ----a-w- C:\Windows\System32\vbscript.dll
2014-09-19 01:39:58 48640 ----a-w- C:\Windows\System32\ieetwproxystub.dll
2014-09-19 01:38:27 83968 ----a-w- C:\Windows\System32\MshtmlDac.dll
2014-09-19 01:36:57 5829632 ----a-w- C:\Windows\System32\jscript9.dll
2014-09-19 01:26:00 139264 ----a-w- C:\Windows\System32\ieUnatt.exe
2014-09-19 01:25:49 111616 ----a-w- C:\Windows\System32\ieetwcollector.exe
2014-09-19 01:25:12 4201472 ----a-w- C:\Windows\SysWow64\jscript9.dll
2014-09-19 01:25:09 758272 ----a-w- C:\Windows\System32\jscript9diag.dll
2014-09-19 01:18:02 940032 ----a-w- C:\Windows\System32\MsSpellCheckingFacility.exe
2014-09-19 01:14:57 2724864 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2014-09-19 01:06:47 72704 ----a-w- C:\Windows\System32\JavaScriptCollectionAgent.dll
2014-09-19 01:02:07 454656 ----a-w- C:\Windows\SysWow64\vbscript.dll
2014-09-19 01:01:47 61952 ----a-w- C:\Windows\SysWow64\iesetup.dll
2014-09-19 00:59:40 61952 ----a-w- C:\Windows\SysWow64\MshtmlDac.dll
2014-09-19 00:50:16 112128 ----a-w- C:\Windows\SysWow64\ieUnatt.exe
2014-09-19 00:49:31 597504 ----a-w- C:\Windows\SysWow64\jscript9diag.dll
2014-09-19 00:40:12 1249280 ----a-w- C:\Windows\System32\mshtmlmedia.dll
2014-09-19 00:36:23 60416 ----a-w- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
2014-09-19 00:33:18 2309632 ----a-w- C:\Windows\System32\wininet.dll
2014-09-19 00:18:55 1068032 ----a-w- C:\Windows\SysWow64\mshtmlmedia.dll
2014-09-18 23:59:11 1810944 ----a-w- C:\Windows\SysWow64\wininet.dll
2014-09-15 08:06:02 278152 ------w- C:\Windows\System32\MpSigStub.exe
2014-09-13 01:58:18 77312 ----a-w- C:\Windows\System32\packager.dll
2014-09-13 01:40:05 67072 ----a-w- C:\Windows\SysWow64\packager.dll
2014-09-12 13:12:09 122584 ----a-w- C:\Windows\System32\drivers\7D835EB5.sys
2014-09-04 09:24:41 92888 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys
2014-09-04 09:09:31 33512 ----a-w- C:\Windows\SysWow64\drivers\TrueSight.sys
2014-09-04 05:23:20 424448 ----a-w- C:\Windows\System32\rastls.dll
2014-09-04 05:04:15 372736 ----a-w- C:\Windows\SysWow64\rastls.dll
2014-09-01 12:03:07 122584 ----a-w- C:\Windows\System32\drivers\609A1B00.sys
2014-08-30 01:50:57 5702656 ----a-w- C:\Windows\SysWow64\mstscax.dll
2014-08-29 02:07:13 3179520 ----a-w- C:\Windows\System32\rdpcorets.dll
2014-08-23 02:07:00 404480 ----a-w- C:\Windows\System32\gdi32.dll
2014-08-23 01:45:55 311808 ----a-w- C:\Windows\SysWow64\gdi32.dll
2014-08-19 03:11:28 693176 ----a-w- C:\Windows\System32\winload.efi
2014-08-19 03:10:10 616352 ----a-w- C:\Windows\System32\winresume.efi
2014-08-19 03:08:04 503808 ----a-w- C:\Windows\System32\srcore.dll
2014-08-19 03:08:04 50176 ----a-w- C:\Windows\System32\srclient.dll
2014-08-19 03:08:03 63488 ----a-w- C:\Windows\System32\setbcdlocale.dll
2014-08-19 03:07:51 58880 ----a-w- C:\Windows\System32\appidapi.dll
2014-08-19 03:07:51 32256 ----a-w- C:\Windows\System32\appidsvc.dll
2014-08-19 03:07:33 296960 ----a-w- C:\Windows\System32\rstrui.exe
2014-08-19 03:07:11 17920 ----a-w- C:\Windows\System32\appidcertstorecheck.exe
2014-08-19 03:07:11 146944 ----a-w- C:\Windows\System32\appidpolicyconverter.exe
2014-08-19 02:41:39 43008 ----a-w- C:\Windows\SysWow64\srclient.dll
2014-08-19 02:41:22 50688 ----a-w- C:\Windows\SysWow64\appidapi.dll
2014-08-19 02:06:56 61440 ----a-w- C:\Windows\System32\drivers\appid.sys
2014-08-13 10:21:10 646280 ----a-w- C:\Windows\System32\AntiTheftCredentialProvider.dll
2014-08-13 09:16:02 450456 ----a-w- C:\Windows\System32\drivers\vsdatant.sys
2014-07-25 01:35:46 875688 ----a-w- C:\Windows\SysWow64\msvcr120_clr0400.dll
2014-07-24 22:47:06 869544 ----a-w- C:\Windows\System32\msvcr120_clr0400.dll
2014-07-23 01:27:02 699544 ----a-w- C:\Windows\SysWow64\PUGAExperiment.dll
2014-07-23 01:27:02 1769632 ----a-w- C:\Windows\SysWow64\VsGraphicsHelper.dll
2014-07-22 20:17:28 3036320 ----a-w- C:\Windows\System32\VSGraphicsHelper.dll
2014-07-22 20:17:28 1359520 ----a-w- C:\Windows\System32\PUGAExperiment.dll
2014-07-22 14:14:46 137376 ----a-w- C:\Windows\System32\vcomp120.dll
.
============= FINISH: 17:43:20.26 ===============
-----------------------------------------------
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume1
Install Date: 25/06/2014 17:43:52
System Uptime: 17/10/2014 15:27:26 (2 hours ago)
.
Motherboard: ASUSTeK COMPUTER INC. | | A88XM-A
Processor: AMD A4-4000 APU with Radeon(tm) HD Graphics | FM2+ | 3000/100mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 119 GiB total, 65.489 GiB free.
D: is FIXED (NTFS) - 466 GiB total, 465.657 GiB free.
E: is CDROM ()
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP29: 16/09/2014 10:11:12 - Windows Update
RP30: 21/09/2014 12:20:01 - Microsoft Visual Studio Professional 2013 with Update 3
RP31: 21/09/2014 12:20:56 - Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610
RP32: 21/09/2014 12:21:30 - Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727
RP33: 21/09/2014 12:21:46 - Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610
RP34: 21/09/2014 12:22:22 - Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727
RP35: 21/09/2014 12:55:04 - Installed DirectX
RP36: 21/09/2014 13:18:30 - Windows Update
RP37: 26/09/2014 11:23:12 - Windows Update
RP38: 30/09/2014 10:22:29 - Windows Update
RP39: 03/10/2014 11:20:12 - Windows Update
RP40: 07/10/2014 10:27:53 - Windows Update
RP41: 14/10/2014 11:12:20 - Windows Update
RP42: 15/10/2014 16:26:35 - Windows Update
.
==== Installed Programs ======================
.
Tools for .Net 3.5
????? Visual Studio 2012 Verification SDK - rus
7-Zip 9.20 (x64 edition)
Adobe Flash Player 15 ActiveX
Adobe Flash Player 15 Plugin
AMD Accelerated Video Transcoding
AMD Catalyst Control Center
AMD Catalyst Install Manager
AMD Drag and Drop Transcoding
AMD Fuel
AMD USB 3.0 Device Detector
AMD Wireless Display v3.0
Application Insights Tools for Visual Studio 2013
Asmedia ASM104x USB 3.0 Host Controller Driver
AzureTools.Notifications
Behaviors SDK (Windows Phone) for Visual Studio 2013
Behaviors SDK (Windows) for Visual Studio 2013
Blend for Visual Studio 2013
Blend for Visual Studio 2013 ENU resources
Blend for Visual Studio SDK for .NET 4.5
Blend for Visual Studio SDK for Silverlight 5
Build Tools - amd64
Build Tools - x86
Build Tools Language Resources - amd64
Build Tools Language Resources - x86
Catalyst Control Center - Branding
Catalyst Control Center Graphics Previews Common
Catalyst Control Center InstallProxy
Catalyst Control Center Localization All
ccc-utility64
CCC Help Chinese Standard
CCC Help Chinese Traditional
CCC Help Czech
CCC Help Danish
CCC Help Dutch
CCC Help English
CCC Help Finnish
CCC Help French
CCC Help German
CCC Help Greek
CCC Help Hungarian
CCC Help Italian
CCC Help Japanese
CCC Help Korean
CCC Help Norwegian
CCC Help Polish
CCC Help Portuguese
CCC Help Russian
CCC Help Spanish
CCC Help Swedish
CCC Help Thai
CCC Help Turkish
Dotfuscator and Analytics Community Edition
Entity Framework 6.1.1 Tools for Visual Studio 2013
FileZilla Client 3.8.1
IIS 8.0 Express
IIS Express Application Compatibility Database for x64
IIS Express Application Compatibility Database for x86
Intel(R) Management Engine Components
Intel(R) Processor Graphics
Intel(R) USB 3.0 eXtensible Host Controller Driver
Intel® Trusted Connect Service Client
Kit SDK de vérification de Visual Studio 2012 - fra
LocalESPC
LocalESPC Dev12
LocalESPCui for en-us Dev12
Malwarebytes Anti-Malware version 2.0.2.1012
Memory Profiler
Microsoft .NET Framework 4 Multi-Targeting Pack
Microsoft .NET Framework 4.5 Multi-Targeting Pack
Microsoft .NET Framework 4.5 SDK
Microsoft .NET Framework 4.5.1
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack
Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU)
Microsoft .NET Framework 4.5.1 RC Multi-Targeting Pack for Windows Store Apps
Microsoft .NET Framework 4.5.1 RC Multi-Targeting Pack for Windows Store Apps (ENU)
Microsoft .NET Framework 4.5.1 SDK
Microsoft Access 2013 - en-us
Microsoft Advertising SDK for Windows 8.1 - ENU
Microsoft Advertising SDK for Windows Phone 8.1 XAML - ENU
Microsoft Advertising Service Extension for Visual Studio
Microsoft ASP.NET and Web Tools 2013.3 - Visual Studio 12
Microsoft ASP.NET MVC 4 - Visual Studio 2013 - ENU
Microsoft ASP.NET MVC 4 Runtime
Microsoft ASP.NET Web Frameworks and Tools - Visual Studio 2013 - ENU
Microsoft ASP.NET Web Pages 2 - Visual Studio 2013 - ENU
Microsoft ASP.NET Web Pages 2 Runtime
Microsoft Azure Mobile Services SDK
Microsoft Azure Mobile Services Tools for Visual Studio - v1.2
Microsoft Azure Shared Components for Visual Studio 2013 - v1.2
Microsoft Azure Tools for LightSwitch for Visual Studio 2013 - June 2014 Update - v2.4
Microsoft C++ REST SDK for Visual Studio 2013
Microsoft Exchange Web Services Managed API 2.1
Microsoft Expression Blend SDK for .NET 4
Microsoft Help Viewer 2.1
Microsoft Identity Extensions
Microsoft LightSwitch for Visual Studio 2013 Core
Microsoft LightSwitch for Visual Studio 2013 CoreRes - ENU
Microsoft LightSwitch for Visual Studio 2013 v4.5 Tools
Microsoft LightSwitch for Visual Studio 2013 v4.5 ToolsRes - ENU
Microsoft LightSwitch v4.5 SDK
Microsoft NuGet - Visual Studio 2013
Microsoft Office 2013 Developer Tools for Microsoft Visual Studio (x64)
Microsoft Office 2013 Developer Tools for Microsoft Visual Studio (x64) - ENU Language Pack
Microsoft Office Developer Tools for Visual Studio
Microsoft Office Developer Tools for Visual Studio ENU Language Pack
Microsoft Office Home and Student 2013 - en-us
Microsoft OneDrive
Microsoft Portable Library Multi-Targeting Pack
Microsoft Portable Library Multi-Targeting Pack Language Pack - enu
Microsoft Report Viewer Add-On for Visual Studio 2013
Microsoft SharePoint 2013 Developer Tools for Visual Studio 2012 Nuget Package
Microsoft Silverlight
Microsoft Silverlight 5 SDK
Microsoft SQL Server 2012 Command Line Utilities
Microsoft SQL Server 2012 Data-Tier App Framework
Microsoft SQL Server 2012 Data-Tier App Framework (x64)
Microsoft SQL Server 2012 Express LocalDB
Microsoft SQL Server 2012 Management Objects
Microsoft SQL Server 2012 Management Objects (x64)
Microsoft SQL Server 2012 Native Client
Microsoft SQL Server 2012 T-SQL Language Service
Microsoft SQL Server 2012 Transact-SQL ScriptDom
Microsoft SQL Server Compact 4.0 SP1 x64 ENU
Microsoft SQL Server Data Tools - enu (12.0.30919.1)
Microsoft SQL Server Data Tools Build Utilities - enu (12.0.30919.1)
Microsoft SQL Server System CLR Types
Microsoft SQL Server System CLR Types (x64)
Microsoft System CLR Types for SQL Server 2012
Microsoft System CLR Types for SQL Server 2012 (x64)
Microsoft Team Foundation Server 2013 Update 3 Object Model (x64)
Microsoft Team Foundation Server 2013 Update 3 Object Model Language Pack (x64) - ENU
Microsoft Visual C++ ARM Libraries
Microsoft Visual C++ x64-arm Cross Compilers
Microsoft Visual C++ x64-arm Cross Compilers - ENU Resources
Microsoft Visual C++ x64-x86 Cross Compilers
Microsoft Visual C++ x64-x86 Cross Compilers - ENU Resources
Microsoft Visual C++ x64 Libraries
Microsoft Visual C++ x64 Native Compilers
Microsoft Visual C++ x64 Native Compilers - ENU Resources
Microsoft Visual C++ x86 Libraries
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Microsoft Visual C++ 2012 32bit Compilers - ENU Resources
Microsoft Visual C++ 2012 Compilers
Microsoft Visual C++ 2012 Compilers - ENU Resources
Microsoft Visual C++ 2012 Core Libraries
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610
Microsoft Visual C++ 2012 x64 Debug Runtime - 11.0.60610
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610
Microsoft Visual C++ 2012 x86-x64 Compilers
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.60610
Microsoft Visual C++ 2012 x86 Debug Runtime - 11.0.60610
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.60610
Microsoft Visual C++ 2013 x64 Designtime - 12.0.21005
Microsoft Visual C++ 2013 32bit Compilers - ENU Resources
Microsoft Visual C++ 2013 Compilers
Microsoft Visual C++ 2013 Compilers - ENU Resources
Microsoft Visual C++ 2013 Core Libraries
Microsoft Visual C++ 2013 Extended Libraries
Microsoft Visual C++ 2013 Microsoft Foundation Class Libraries
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005
Microsoft Visual C++ 2013 x64 Debug Runtime - 12.0.21005
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005
Microsoft Visual C++ 2013 x86-x64 Compilers
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005
Microsoft Visual C++ 2013 x86 Debug Runtime - 12.0.21005
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005
Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
Microsoft Visual Studio 2013 Devenv
Microsoft Visual Studio 2013 Devenv Resources
Microsoft Visual Studio 2013 Diagnostic Tools - amd64
Microsoft Visual Studio 2013 Diagnostic Tools - x86
Microsoft Visual Studio 2013 Performance Collection Tools
Microsoft Visual Studio 2013 Performance Collection Tools - ENU
Microsoft Visual Studio 2013 Preparation
Microsoft Visual Studio 2013 Profiling Tools
Microsoft Visual Studio 2013 Shell (Minimum)
Microsoft Visual Studio 2013 Shell (Minimum) Interop Assemblies
Microsoft Visual Studio 2013 Shell (Minimum) Resources
Microsoft Visual Studio 2013 Team Explorer Language Pack - ENU
Microsoft Visual Studio 2013 VsGraphics Helper Dependencies
Microsoft Visual Studio 2013 XAML UI Designer
Microsoft Visual Studio 2013 XAML UI Designer - ENU
Microsoft Visual Studio Professional 2013
Microsoft Visual Studio Professional 2013 - ENU
Microsoft Visual Studio Professional 2013 with Update 3
Microsoft Web Deploy 3.5
Mozilla Firefox 32.0.3 (x86 en-GB)
Mozilla Maintenance Service
Office 15 Click-to-Run Extensibility Component
Office 15 Click-to-Run Licensing Component
Office 15 Click-to-Run Localization Component
Open XML SDK 2.5 for Microsoft Office
paint.net
PC Tune-Up
PreEmptive Analytics Visual Studio Components
Prerequisites for SSDT
Python Tools Redirection Template
Realtek Ethernet Controller Driver
Realtek High Definition Audio Driver
SDK de comprobación de Visual Studio 2012 - esn
Security Update for Microsoft .NET Framework 4.5.1 (KB2894854v2)
Security Update for Microsoft .NET Framework 4.5.1 (KB2898869)
Security Update for Microsoft .NET Framework 4.5.1 (KB2901126)
Security Update for Microsoft .NET Framework 4.5.1 (KB2931368)
Security Update for Microsoft .NET Framework 4.5.1 (KB2972107)
Security Update for Microsoft .NET Framework 4.5.1 (KB2972216)
Security Update for Microsoft .NET Framework 4.5.1 (KB2979578v2)
SharePoint Client Components
Skype™ 6.18
Team Explorer for Microsoft Visual Studio 2013
TypeScript Power Tool
TypeScript Tools for Microsoft Visual Studio 2013
Update for (KB2504637)
Visual F# 3.1 SDK
Visual F# 3.1 VS
Visual Studio 2012-Verifizierungs-SDK - deu
Visual Studio 2012 ?? SDK - cht
Visual Studio 2012 ??? ?? SDK - kor
Visual Studio 2012 Verification SDK
Visual Studio 2012 Verification SDK - chs
Visual Studio 2012 Verification SDK - enu
Visual Studio 2012 Verification SDK - ita
Visual Studio 2012 Verification SDK - jpn
Visual Studio 2013 Prerequisites
Visual Studio 2013 Prerequisites - ENU Language Pack
Visual Studio 2013 Update 3 (KB2829760)
Visual Studio Extensions for Windows Library for JavaScript
VS Update core components
WCF Data Services 5.6.0 Runtime
WCF Data Services Tools for Microsoft Visual Studio 2013
WCF RIA Services V1.0 SP2
Windows App Certification Kit Native Components
Windows App Certification Kit x64
Windows Azure Tools for LightSwitch for Visual Studio 2013 - v2.1
Windows Phone 8.1 SDK - ARM
Windows Phone 8.1 SDK - Desktop
Windows Phone 8.1 SDK - x64
Windows Phone 8.1 SDK - x86
Windows Phone 8.1 Tools for Visual Studio 2013
Windows Phone 8.1 Tools for Visual Studio 2013 - ENU
Windows Phone 8.1 Tools for Visual Studio Professional 2013
Windows Phone 8.1 Tools for Visual Studio Professionald 2013 - ENU
Windows Phone SDK 8.0 Assemblies
Windows Runtime Intellisense Content - en-us
Windows Software Development Kit
Windows Software Development Kit DirectX x64 Remote
Windows Software Development Kit DirectX x86 Remote
Windows Software Development Kit for Windows Store Apps
Windows Software Development Kit for Windows Store Apps DirectX x64 Remote
Windows Software Development Kit for Windows Store Apps DirectX x86 Remote
Windows XP Targeting with C++
Workflow Manager Client 1.0
Workflow Manager Tools 1.0 for Visual Studio
ZoneAlarm Antivirus
ZoneAlarm Extreme Security
ZoneAlarm Find My Laptop
ZoneAlarm Firewall
ZoneAlarm Security
.
==== End Of File ===========================