Hello, here are the mbam, GMER and DDS logs as requested in the 7-step removal thread.
There have been two iexplore.exe processes running in the background, and google is redirecting me whenever I try to click on links. Sometimes random IE windows pop up too.
Thanks for your help.
Malwarebytes' Anti-Malware 1.51.0.1200
www.malwarebytes.org
Database version: 6956
Windows 6.0.6001 Service Pack 1
Internet Explorer 7.0.6001.18000
6/26/2011 8:37:09 PM
mbam-log-2011-06-26 (20-37-09).txt
Scan type: Quick scan
Objects scanned: 162236
Time elapsed: 4 minute(s), 25 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
GMER 1.0.15.15640 - http://www.gmer.net
Rootkit quick scan 2011-06-26 20:40:16
Windows 6.0.6001 Service Pack 1 Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 WDC_WD25 rev.11.0
Running: uvvpb1qu.exe; Driver: C:\Users\Rukan\AppData\Local\Temp\fwtcqpoc.sys
---- Devices - GMER 1.0.15 ----
AttachedDevice \FileSystem\Ntfs \Ntfs dwprot.sys (Dr.Web Protection for Windows/Doctor Web, Ltd.)
AttachedDevice \FileSystem\fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)
AttachedDevice \FileSystem\fastfat \Fat dwprot.sys (Dr.Web Protection for Windows/Doctor Web, Ltd.)
AttachedDevice \Driver\tdx \Device\Ip dwprot.sys (Dr.Web Protection for Windows/Doctor Web, Ltd.)
AttachedDevice \Driver\tdx \Device\Tcp dwprot.sys (Dr.Web Protection for Windows/Doctor Web, Ltd.)
AttachedDevice \Driver\tdx \Device\Udp dwprot.sys (Dr.Web Protection for Windows/Doctor Web, Ltd.)
AttachedDevice \Driver\tdx \Device\RawIp dwprot.sys (Dr.Web Protection for Windows/Doctor Web, Ltd.)
---- Threads - GMER 1.0.15 ----
Thread System [4:272] 864F2E7A
Thread System [4:276] 864F5008
---- EOF - GMER 1.0.15 ----
.
DDS (Ver_2011-06-23.01) - NTFSx86
Internet Explorer: 7.0.6001.18000
Run by Rukan at 20:41:08 on 2011-06-26
Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1252.1.1033.18.3034.1594 [GMT -4:00]
.
AV: Doctor Web Anti-Virus *Enabled/Updated* {6CC6AE29-BD86-6306-5444-113FA6A626D8}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Doctor Web Anti-Virus *Enabled/Updated* {D7A74FCD-9BBC-6C88-6EF4-2A4DDD216C65}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_f6ef8056\STacSV.exe
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Program Files\Dell\DellDock\DockLogin.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\WLTRYSVC.EXE
C:\Windows\system32\WLANExt.exe
C:\Windows\System32\bcmwltry.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\Common Files\Doctor Web\Scanning Engine\dwengine.exe
C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_f6ef8056\aestsrv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
c:\Program Files\Common Files\Dell\Advanced Networking Service\hnm_svc.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\Dell\DellDock\DellDock.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\SMINST\sftservice.EXE
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\RUNDLL32.EXE
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\Windows Live\Toolbar\wltuser.exe
C:\Program Files\Common Files\Doctor Web\Scanning Engine\dwengine.exe
C:\windows\SMINST\Components\scheduler\STService.exe
C:\Program Files\DellTPad\Apoint.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\WINDOWS\System32\igfxtray.exe
C:\Windows\system32\igfxsrvc.exe
C:\WINDOWS\System32\hkcmd.exe
C:\WINDOWS\System32\igfxpers.exe
C:\WINDOWS\System32\WLTRAY.EXE
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Dell DataSafe Online\DataSafeOnline.exe
C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
C:\Program Files\Dell Webcam\Dell Webcam Central\WebcamDell2.exe
C:\Program Files\Dell Support Center\bin\sprtcmd.exe
C:\Program Files\AIM\aim.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\DellTPad\ApMsgFwd.exe
C:\Program Files\DrWeb\spiderml.exe
C:\Program Files\DrWeb\spidergate.exe
C:\Program Files\DrWeb\spideragent.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Dell Remote Access\ezi_ra.exe
C:\Program Files\DellTPad\Apntex.exe
C:\Program Files\DellTPad\HidFind.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Dell Support Center\bin\sprtsvc.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uInternet Settings,ProxyOverride = *.local
uURLSearchHooks: H - No File
uURLSearchHooks: FCToolbarURLSearchHook Class: {edc8d02a-7ae5-1094-ddc0-16d2381944d0} - c:\program files\socialribbons lp 1\Helper.dll
uURLSearchHooks: H - No File
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: SocialRibbons LP 1: {2f3d5040-d8e1-f5b4-150e-f532a5f23615} - c:\program files\socialribbons lp 1\Toolbar.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SearchHelper.dll
BHO: Java(tm) Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Easy Gif Animator Toolbar Helper: {96372ab6-15eb-4316-b497-71c741bc548c} - c:\program files\easy gif animator extension\v3.3.0.3\EasyGifAnimator_Toolbar.dll
BHO: Skype Browser Helper: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
BHO: DCA BHO: {b49699fc-1665-4414-a1cb-c4a2a4a13eec} - c:\program files\common files\freecause\dca\dca-bho.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: Windows Live Toolbar Helper: {e15a8dc0-8516-42a1-81ea-dc94ec1acf10} - c:\program files\windows live\toolbar\wltcore.dll
TB: &Windows Live Toolbar: {21fa44ef-376d-4d53-9b0f-8a89d3229068} - c:\program files\windows live\toolbar\wltcore.dll
TB: Easy Gif Animator Toolbar: {35065594-9169-4a34-b167-fc4865038e53} - c:\program files\easy gif animator extension\v3.3.0.3\EasyGifAnimator_Toolbar.dll
TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
TB: {C5BA4085-A224-412A-B91F-08543F6212EC} - No File
uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun
uRun: [Aim] "c:\program files\aim\aim.exe" /d locale=en-US
uRun: [SUPERAntiSpyware] c:\program files\superantispyware\SUPERAntiSpyware.exe
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
mRun: [Apoint] c:\program files\delltpad\Apoint.exe
mRun: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [Broadcom Wireless Manager UI] c:\windows\system32\WLTRAY.exe
mRun: [QuickSet] c:\program files\dell\quickset\QuickSet.exe
mRun: [IAAnotif] c:\program files\intel\intel matrix storage manager\iaanotif.exe
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [Dell DataSafe Online] "c:\program files\dell datasafe online\DataSafeOnline.exe" /m
mRun: [PDVDDXSrv] "c:\program files\cyberlink\powerdvd dx\PDVDDXSrv.exe"
mRun: [Dell Webcam Central] "c:\program files\dell webcam\dell webcam central\WebcamDell2.exe" /mode2
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [dellsupportcenter] "c:\program files\dell support center\bin\sprtcmd.exe" /P dellsupportcenter
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [Malwarebytes' Anti-Malware (reboot)] "c:\program files\malwarebytes' anti-malware\mbam.exe" /runcleanupscript
mRun: [SpIDerMail] "c:\program files\drweb\spiderml.exe" -autorun
mRun: [SpIDerGate] "c:\program files\drweb\spidergate.exe" -autorun
mRun: [SpIDerAgent] "c:\program files\drweb\SpIDerAgent.exe"
mRunOnce: [DSUpdateLauncher] "c:\program files\dell datasafe local backup\components\dsupdate\runhstart.bat"
mRunOnce: [Launcher] %WINDIR%\SMINST\Components\scheduler\Launcher.exe
StartupFolder: c:\users\rukan\appdata\roaming\micros~1\windows\startm~1\programs\startup\delldo~1.lnk - c:\program files\dell\delldock\DellDock.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\dellre~1.lnk - c:\windows\installer\{f66a31d9-7831-4fba-ba02-c411c0047cc5}\NewShortcut4_F66A31D978314FBABA02C411C0047CC5.exe
mPolicies-system: EnableLUA = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office12\EXCEL.EXE/3000
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~3\office12\ONBttnIE.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~3\office12\REFIEBAR.DLL
LSP: c:\program files\drweb\drwebsp.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
TCP: DhcpNameServer = 192.168.2.1 209.18.47.61 209.18.47.62
TCP: Interfaces\{6E10441E-E40F-4420-B00E-0421FD555782} : DhcpNameServer = 192.168.2.1 209.18.47.61 209.18.47.62
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
Notify: GoToAssist - c:\program files\citrix\gotoassist\514\G2AWinLogon.dll
Notify: igfxcui - igfxdev.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\rukan\appdata\roaming\mozilla\firefox\profiles\jk9b0yby.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2260173&SearchSource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - Search the Web
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2260173&q=
FF - prefs.js: network.proxy.type - 0
FF - plugin: c:\program files\google\update\1.2.183.23\npGoogleOneClick8.dll
FF - plugin: c:\program files\microsoft silverlight\4.0.60531.0\npctrlui.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
.
============= SERVICES / DRIVERS ===============
.
R0 DwProt;DrWeb Protection;c:\windows\system32\drivers\dwprot.sys [2011-6-26 139768]
R0 SpiderG3;DrWeb file system scanner;c:\windows\system32\drivers\spiderg3.sys [2011-6-26 93944]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2010-2-17 12872]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2010-5-10 67656]
R2 AESTFilters;Andrea ST Filters Service;c:\windows\system32\driverstore\filerepository\stwrt.inf_f6ef8056\AEstSrv.exe [2009-6-6 81920]
R2 DockLoginService;Dock Login Service;c:\program files\dell\delldock\DockLogin.exe [2008-12-18 155648]
R2 DrWebEngine;Dr.Web Scanning Engine (DrWebEngine);c:\program files\common files\doctor web\scanning engine\dwengine.exe [2011-5-4 1667416]
R2 SftService;SoftThinks Agent Service;c:\windows\sminst\SftService.exe [2009-6-6 632048]
R2 yksvc;Marvell Yukon Service;RUNDLL32.EXE ykx32coinst,serviceStartProc --> RUNDLL32.EXE ykx32coinst,serviceStartProc [?]
R3 CtClsFlt;Creative Camera Class Upper Filter Driver;c:\windows\system32\drivers\CtClsFlt.sys [2009-6-6 144128]
R3 ManyCam;ManyCam Virtual Webcam, WDM Video Capture Driver;c:\windows\system32\drivers\ManyCam.sys [2008-1-14 21632]
R3 OA009Ufd;Creative Camera OA009 Upper Filter Driver;c:\windows\system32\drivers\OA009Ufd.sys [2009-6-6 144672]
R3 OA009Vid;Creative Camera OA009 Function Driver;c:\windows\system32\drivers\OA009Vid.sys [2009-6-6 269216]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 gupdate;Google Update Service (gupdate);c:\program files\google\update\GoogleUpdate.exe [2011-6-20 136176]
S3 PCD5SRVC{3F6A8B78-EC003E00-05040104};PCD5SRVC{3F6A8B78-EC003E00-05040104} - PCDR Kernel Mode Service Helper Driver;c:\progra~1\dellsu~1\hwdiag\bin\PCD5SRVC.pkms [2008-11-4 22904]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
.
=============== Created Last 30 ================
.
2011-06-26 13:22:44 139768 ----a-w- c:\windows\system32\drivers\dwprot.sys
2011-06-26 13:22:10 93944 ----a-w- c:\windows\system32\drivers\spiderg3.sys
2011-06-26 13:21:17 -------- d-----w- c:\programdata\Doctor Web
2011-06-26 13:21:16 -------- d-----w- c:\program files\DrWeb
2011-06-26 13:21:16 -------- d-----w- c:\program files\common files\Doctor Web
2011-06-26 13:17:48 -------- d-----w- c:\users\rukan\appdata\local\Downloaded Installations
2011-06-26 04:15:56 -------- d-----w- c:\users\rukan\DoctorWeb
2011-06-25 16:37:09 -------- d-----w- c:\program files\CCleaner
2011-06-25 16:35:00 190032 ----a-w- c:\windows\system32\drivers\tmcomm.sys
2011-06-25 16:19:34 -------- d-----w- c:\windows\system32\Profiles
2011-06-25 15:37:28 -------- d--h--w- C:\$AVG
2011-06-25 05:53:31 -------- d-----w- c:\users\rukan\appdata\roaming\AVG10
2011-06-25 05:50:09 -------- d--h--w- c:\programdata\Common Files
2011-06-25 05:47:02 -------- d-----w- c:\programdata\AVG10
2011-06-25 05:44:35 -------- d-----w- c:\program files\AVG
2011-06-25 05:34:31 -------- d-----w- c:\programdata\MFAData
2011-06-24 05:44:12 7074640 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{c625cb73-1364-431e-9975-14b0a0be8e07}\mpengine.dll
2011-06-24 02:25:44 2106216 ----a-w- c:\program files\mozilla firefox\D3DCompiler_43.dll
2011-06-24 02:25:44 1998168 ----a-w- c:\program files\mozilla firefox\d3dx9_43.dll
2011-06-22 18:43:39 26600 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
2011-06-22 18:43:39 107368 ----a-w- c:\windows\system32\GEARAspi.dll
2011-06-22 07:02:21 99176 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2011-06-22 07:02:21 49472 ----a-w- c:\windows\system32\netfxperf.dll
2011-06-22 07:02:21 297808 ----a-w- c:\windows\system32\mscoree.dll
2011-06-22 07:02:21 295264 ----a-w- c:\windows\system32\PresentationHost.exe
2011-06-22 07:02:21 1130824 ----a-w- c:\windows\system32\dfshim.dll
2011-06-22 02:16:16 -------- d-----w- c:\program files\SocialRibbons LP 1
2011-06-22 02:16:16 -------- d-----w- c:\program files\common files\FreeCause
2011-06-22 02:16:09 -------- d--h--w- c:\programdata\Tarma Installer
2011-06-22 02:15:55 0 ----a-w- c:\windows\system32\ConduitEngine.tmp
2011-06-22 02:15:55 -------- d--h--w- c:\users\rukan\appdata\local\Conduit
2011-06-21 22:33:34 17920 ----a-w- c:\windows\system32\netevent.dll
2011-06-21 22:33:34 125952 ----a-w- c:\windows\system32\srvsvc.dll
2011-06-21 22:33:32 378368 ----a-w- c:\windows\system32\winhttp.dll
2011-06-21 20:33:02 445008 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
2011-06-21 20:33:02 38480 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2011-06-21 20:31:33 1461992 ----a-w- c:\windows\system32\WdfCoInstaller01009.dll
2011-06-21 20:31:31 252536 ----a-w- c:\windows\system32\drivers\Apfiltr.sys
2011-06-21 14:58:05 -------- d--h--w- c:\users\rukan\appdata\roaming\Jasc
2011-06-21 14:01:37 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll
2011-06-21 14:01:37 28672 ----a-w- c:\windows\system32\Apphlpdm.dll
2011-06-21 07:29:47 80896 ----a-w- c:\windows\system32\MSNP.ax
2011-06-21 07:29:47 69632 ----a-w- c:\windows\system32\Mpeg2Data.ax
2011-06-21 07:29:47 57856 ----a-w- c:\windows\system32\MSDvbNP.ax
2011-06-21 07:29:45 293376 ----a-w- c:\windows\system32\psisdecd.dll
2011-06-21 07:29:45 217088 ----a-w- c:\windows\system32\psisrndr.ax
2011-06-21 07:10:06 97800 ----a-w- c:\windows\system32\infocardapi.dll
2011-06-21 07:10:06 622080 ----a-w- c:\windows\system32\icardagt.exe
2011-06-21 07:10:06 37384 ----a-w- c:\windows\system32\infocardcpl.cpl
2011-06-21 07:10:06 11264 ----a-w- c:\windows\system32\icardres.dll
2011-06-21 07:10:06 105016 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2011-06-21 07:10:05 781344 ----a-w- c:\windows\system32\PresentationNative_v0300.dll
2011-06-21 07:06:28 158720 ----a-w- c:\windows\system32\mscorier.dll
2011-06-21 07:06:26 83968 ----a-w- c:\windows\system32\mscories.dll
2011-06-21 07:05:08 411136 ----a-w- c:\windows\system32\drivers\http.sys
2011-06-21 07:05:08 31232 ----a-w- c:\windows\system32\httpapi.dll
2011-06-21 07:05:08 24064 ----a-w- c:\windows\system32\nshhttp.dll
2011-06-21 07:04:15 231936 ----a-w- c:\windows\system32\msshsq.dll
2011-06-20 23:11:50 7074640 ----a-w- c:\programdata\microsoft\windows defender\definition updates\backup\mpengine.dll
2011-06-20 23:11:43 222080 ------w- c:\windows\system32\MpSigStub.exe
2011-06-20 22:25:29 -------- d-----w- c:\program files\uTorrent
2011-06-20 22:25:00 -------- d--h--w- c:\users\rukan\appdata\roaming\uTorrent
2011-06-20 21:52:14 -------- d--h--w- c:\programdata\Blumentals
2011-06-20 21:50:44 236159 ----a-w- c:\windows\EasyGifAnimator_Toolbar_Uninstaller_8096.exe
2011-06-20 21:50:43 -------- d-----w- c:\program files\Easy Gif Animator Extension
2011-06-20 21:40:11 -------- d--h--w- c:\programdata\Spybot - Search & Destroy
2011-06-20 21:35:31 -------- d--h--w- c:\users\rukan\appdata\local\ManyCam
2011-06-20 21:35:30 -------- d--h--w- c:\users\rukan\appdata\roaming\ManyCam
2011-06-20 21:33:27 39984 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-06-20 21:32:58 -------- d--h--w- c:\users\rukan\appdata\roaming\SUPERAntiSpyware.com
2011-06-20 21:32:58 -------- d--h--w- c:\programdata\SUPERAntiSpyware.com
2011-06-20 21:28:57 417792 ----a-w- c:\program files\windows media player\plugins\wmp_scrobbler.dll
2011-06-20 21:28:54 -------- d--h--w- c:\programdata\Last.fm
2011-06-20 21:27:23 -------- d--h--w- c:\users\rukan\appdata\local\Last.fm
2011-06-20 20:29:31 -------- d-----r- c:\program files\Skype
2011-06-20 19:46:12 -------- d-----w- c:\users\rukan\stuff
2011-06-20 19:28:39 -------- d--h--w- c:\users\rukan\appdata\local\Apple
2011-06-20 19:04:03 -------- d--h--w- c:\users\rukan\Dexter
2011-06-20 17:25:59 -------- d--h--w- c:\users\rukan\.thumbnails
2011-06-20 17:24:46 -------- d-----w- c:\program files\ManyCam
2011-06-20 17:24:46 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-06-20 17:24:45 -------- d-----w- c:\program files\LeeGTs Software
2011-06-20 17:24:44 -------- d-----w- c:\program files\Last.fm
2011-06-20 17:24:44 -------- d-----w- c:\program files\Lame for Audacity
2011-06-20 17:24:44 -------- d-----w- c:\program files\Jasc Software Inc
2011-06-20 17:24:40 -------- d-----w- c:\program files\Hitachi
2011-06-20 17:24:40 -------- d-----w- c:\program files\Griffin Technology
2011-06-20 17:24:36 -------- d-----w- c:\program files\GIMP-2.0
2011-06-20 17:24:35 -------- d-----w- c:\program files\Free M4a to MP3 Converter
2011-06-20 17:24:33 -------- d-----w- c:\program files\Easy GIF Animator
2011-06-20 17:22:56 -------- d-----w- c:\program files\CamStudio
2011-06-20 17:22:55 -------- d-----w- c:\program files\Bonjour
2011-06-20 17:22:54 -------- d-----w- c:\program files\AviSynth 2.5
2011-06-20 17:22:52 -------- d-----w- c:\program files\Audacity 1.3 Beta (Unicode)
2011-06-20 17:22:52 -------- d-----w- c:\program files\Ape Ripper
2011-06-20 17:21:07 -------- d--h--w- C:\.hitachi-lifestudio
2011-06-20 14:48:51 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-06-20 14:35:29 -------- d--h--w- c:\users\rukan\appdata\local\Apps
2011-06-20 14:34:50 -------- d-----w- c:\program files\Active Data Recovery Software
2011-06-20 13:34:56 75264 ----a-w- c:\windows\system32\drivers\dfsc.sys
2011-06-20 13:33:53 104960 ----a-w- c:\windows\system32\netiohlp.dll
2011-06-20 13:33:52 9728 ----a-w- c:\windows\system32\TCPSVCS.EXE
2011-06-20 13:33:52 8704 ----a-w- c:\windows\system32\HOSTNAME.EXE
2011-06-20 13:33:52 27136 ----a-w- c:\windows\system32\NETSTAT.EXE
2011-06-20 13:33:52 19968 ----a-w- c:\windows\system32\ARP.EXE
2011-06-20 13:33:52 17920 ----a-w- c:\windows\system32\ROUTE.EXE
2011-06-20 13:33:52 11264 ----a-w- c:\windows\system32\MRINFO.EXE
2011-06-20 13:33:52 10240 ----a-w- c:\windows\system32\finger.exe
2011-06-20 13:31:54 513024 ----a-w- c:\windows\system32\wlansvc.dll
2011-06-20 13:30:59 304640 ----a-w- c:\windows\system32\drivers\srv.sys
2011-06-20 13:29:59 714240 ----a-w- c:\windows\system32\timedate.cpl
2011-06-20 13:28:51 866816 ----a-w- c:\windows\system32\wmpmde.dll
2011-06-20 13:27:59 1257472 ----a-w- c:\windows\system32\msxml3.dll
2011-06-20 13:26:59 79360 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2011-06-20 04:52:53 171520 ----a-w- c:\windows\system32\wintrust.dll
2011-06-20 04:52:50 98304 ----a-w- c:\windows\system32\cabview.dll
2011-06-20 04:47:43 -------- d--h--w- c:\users\rukan\appdata\local\AOL
2011-06-20 04:47:43 -------- d--h--w- c:\users\rukan\appdata\local\AIM
2011-06-20 04:47:35 -------- d--h--w- c:\programdata\AIM
2011-06-20 04:47:29 -------- d-----w- c:\program files\common files\Software Update Utility
2011-06-20 04:47:29 -------- d-----w- c:\program files\AIM
2011-06-20 04:47:28 -------- d-----w- c:\program files\common files\AOL
2011-06-20 04:45:17 2421760 ----a-w- c:\windows\system32\wucltux.dll
2011-06-20 04:45:00 87552 ----a-w- c:\windows\system32\wudriver.dll
2011-06-20 04:44:52 33792 ----a-w- c:\windows\system32\wuapp.exe
2011-06-20 04:44:52 171608 ----a-w- c:\windows\system32\wuwebv.dll
2011-06-20 04:44:31 -------- d--h--w- c:\users\rukan\My Backup Files
2011-06-20 04:43:51 -------- d--h--w- c:\users\rukan\appdata\local\DataSafeOnline
2011-06-20 04:43:28 -------- d--h--w- c:\users\rukan\appdata\local\PowerDVD DX
2011-06-20 04:43:20 -------- d-sh--w- C:\$RECYCLE.BIN
2011-06-20 04:42:57 -------- d--h--w- c:\users\rukan\appdata\local\VirtualStore
2011-06-20 04:42:32 -------- d-sh--w- C:\System Recovery
.
==================== Find3M ====================
.
2011-05-02 15:58:28 738816 ----a-w- c:\windows\system32\inetcomm.dll
2011-04-29 12:49:57 146432 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-04-29 12:49:55 102400 ----a-w- c:\windows\system32\drivers\srvnet.sys
2011-04-29 12:49:51 213504 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2011-04-29 12:49:35 105984 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-04-21 15:00:34 833024 ----a-w- c:\windows\system32\wininet.dll
2011-04-21 14:57:48 78336 ----a-w- c:\windows\system32\ieencode.dll
2011-04-21 13:28:42 389632 ----a-w- c:\windows\system32\html.iec
2011-04-21 13:16:42 273408 ----a-w- c:\windows\system32\drivers\afd.sys
2011-04-21 13:08:37 1383424 ----a-w- c:\windows\system32\mshtml.tlb
2011-04-06 20:20:16 91424 ----a-w- c:\windows\system32\dnssd.dll
2011-04-06 20:20:16 75040 ----a-w- c:\windows\system32\jdns_sd.dll
2011-04-06 20:20:16 197920 ----a-w- c:\windows\system32\dnssdX.dll
2011-04-06 20:20:16 107808 ----a-w- c:\windows\system32\dns-sd.exe
.
============= FINISH: 20:42:50.11 ===============
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-06-23.01)
.
Microsoft® Windows Vista™ Home Premium
Boot Device: \Device\HarddiskVolume3
Install Date: 6/5/2009 8:25:21 PM
System Uptime: 6/26/2011 8:13:51 PM (0 hours ago)
.
Motherboard: Dell Inc. | | 0G848F
Processor: Intel(R) Core(TM)2 Duo CPU T6400 @ 2.00GHz | Microprocessor | 2000/200mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 218 GiB total, 66.615 GiB free.
E: is FIXED (NTFS) - 15 GiB total, 4.122 GiB free.
F: is CDROM ()
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
.
==== Installed Programs ======================
.
Update for Microsoft Office 2007 (KB2508958)
µTorrent
Acrobat.com
Active@ UNDELETE 7 Enterprise
Adobe AIR
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Reader 9
Advanced Audio FX Engine
AIM 7
Apple Application Support
Apple Mobile Device Support
Apple Software Update
Banctec Service Agreement
Bonjour
CCleaner
Choice Guard
Cisco EAP-FAST Module
Cisco LEAP Module
Cisco PEAP Module
Compatibility Pack for the 2007 Office system
Dell-eBay
Dell DataSafe Local Backup
Dell DataSafe Local Backup - Support Software
Dell DataSafe Online
Dell Dock
Dell Edoc Viewer
Dell Getting Started Guide
Dell Remote Access
Dell Support Center (Support Software)
Dell Touchpad
Dell Video Chat
Dell Webcam Central
Dell Wireless WLAN Card Utility
Download Updater (AOL LLC)
Dr.Web Security Space 6.0 (x86)
Easy GIF Animator 5.1
Easy Gif Animator Extension
GIMP 2.6.11
Google Chrome
Google Update Helper
GoToAssist 8.0.0.514
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Integrated Webcam Driver (1.00.02.0825)
Intel(R) TV Wizard
Intel® Matrix Storage Manager
iTunes
Jasc Animation Shop 3
Java(TM) 6 Update 11
Junk Mail filter update
Last.fm 1.5.4.27091
Malwarebytes' Anti-Malware version 1.51.0.1200
ManyCam 2.6.55 (remove only)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4 Client Profile
Microsoft Application Error Reporting
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office Excel MUI (English) 2007
Microsoft Office Home and Student 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office PowerPoint Viewer 2007 (English)
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Suite Activation Assistant
Microsoft Office Word MUI (English) 2007
Microsoft Search Enhancement Pack
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Sync Framework Runtime Native v1.0 (x86)
Microsoft Sync Framework Services Native v1.0 (x86)
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Works
Mozilla Firefox 5.0 (x86 en-US)
MSVCRT
PowerDVD DX
QuickSet
QuickTime
Roxio Creator Audio
Roxio Creator Copy
Roxio Creator Data
Roxio Creator DE
Roxio Creator Tools
Roxio Express Labeler 3
Roxio Update Manager
Security Update for 2007 Microsoft Office System (KB2288621)
Security Update for 2007 Microsoft Office System (KB2288931)
Security Update for 2007 Microsoft Office System (KB2345043)
Security Update for 2007 Microsoft Office System (KB2509488)
Security Update for 2007 Microsoft Office System (KB969559)
Security Update for 2007 Microsoft Office System (KB976321)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)
Security Update for Microsoft Office 2007 System (KB2541012)
Security Update for Microsoft Office Excel 2007 (KB2541007)
Security Update for Microsoft Office InfoPath 2007 (KB979441)
Security Update for Microsoft Office PowerPoint 2007 (KB2535818)
Security Update for Microsoft Office PowerPoint Viewer 2007 (KB2464623)
Security Update for Microsoft Office system 2007 (972581)
Security Update for Microsoft Office system 2007 (KB974234)
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)
Security Update for Microsoft Office Word 2007 (KB2344993)
Skype Toolbars
Skype™ 5.3
SocialRibbons LP 1
SopCast 3.4.0
Spybot - Search & Destroy
SUPERAntiSpyware
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office 2007 System (KB2539530)
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office OneNote 2007 (KB980729)
Update for Microsoft Office OneNote 2007 Help (KB963670)
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 Help (KB963665)
VLC media player 1.1.10
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live Mail
Windows Live Messenger
Windows Live Photo Gallery
Windows Live Sign-in Assistant
Windows Live Sync
Windows Live Toolbar
Windows Live Upload Tool
Windows Live Writer
WinRAR 4.01 (32-bit)
.
==== Event Viewer Messages From Past Week ========
.
6/21/2011 3:21:36 AM, Error: Service Control Manager [7000] - The Windows Search service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
6/21/2011 3:21:35 AM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Windows Search service to connect.
6/21/2011 3:21:35 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1053" attempting to start the service WSearch with arguments "" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
6/21/2011 11:33:43 AM, Error: netbt [4321] - The name "JK-MACBOOK :0" could not be registered on the interface with IP address 192.168.2.11. The computer with the IP address 192.168.2.3 did not allow the name to be claimed by this computer.
6/21/2011 10:00:17 AM, Error: Microsoft-Windows-Dhcp-Client [1002] - The IP address lease 192.168.2.11 for the Network Card with network address 00255631EA6C has been denied by the DHCP server 0.0.0.0 (The DHCP Server sent a DHCPNACK message).
6/20/2011 9:32:52 PM, Error: netbt [4321] - The name "IMAN-PC :0" could not be registered on the interface with IP address 192.168.2.11. The computer with the IP address 192.168.2.9 did not allow the name to be claimed by this computer.
6/20/2011 9:14:04 AM, Error: bowser [8003] - The master browser has received a server announcement from the computer JK-MACBOOK that believes that it is the master browser for the domain on transport NetBT_Tcpip_{6E10441E-E40F-4420-B00E-0421FD5. The master browser is stopping or an election is being forced.
6/20/2011 9:10:59 AM, Error: netbt [4321] - The name "JK-MACBOOK :0" could not be registered on the interface with IP address 192.168.2.11. The computer with the IP address 192.168.2.7 did not allow the name to be claimed by this computer.
6/20/2011 4:03:35 PM, Error: Service Control Manager [7022] - The Windows Update service hung on starting.
6/20/2011 3:56:42 PM, Error: Service Control Manager [7000] - The Intel(R) PRO/1000 PCI Express Network Connection Driver service failed to start due to the following error: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.
6/20/2011 3:56:42 PM, Error: Service Control Manager [7000] - The Intel(R) PRO/1000 NDIS 6 Adapter Driver service failed to start due to the following error: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.
6/20/2011 3:25:23 PM, Error: Service Control Manager [7000] - The Apple Mobile Device service failed to start due to the following error: The application has failed to start because its side-by-side configuration is incorrect. Please see the application event log for more detail.
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-zh-tw-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-zh-hk-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-zh-cn-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-uk-ua-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-tr-tr-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-th-th-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-sv-se-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-sr-latn-cs-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-sl-si-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-sk-sk-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-ru-ru-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-ro-ro-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-pt-pt-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-pt-br-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-ps-ps-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-pl-pl-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-nl-nl-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-Neutral from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Staged(Staged) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-nb-no-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-lv-lv-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-lt-lt-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-ko-kr-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-ja-jp-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-it-it-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-hu-hu-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-hr-hr-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-he-il-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-fr-fr-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-fi-fi-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-et-ee-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-es-es-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-en-us-LP from package WUClient-SelfUpdate-Aux-Package-en-us-MiniLP(Feature Pack) into Staged(Staged) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-en-us-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Staged(Staged) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-el-gr-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-de-de-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-da-dk-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-cs-cz-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-bg-bg-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-ar-sa-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update AuxResourcesLP from package WindowsUpdateClient-SelfUpdate-Aux-Package(Language Pack) into Staged(Staged) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update AuxComp from package WindowsUpdateClient-SelfUpdate-Aux-Package(Update) into Staged(Staged) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update Aux from package WindowsUpdateClient-SelfUpdate-Aux-AuxComp-Package_en-US(Language Pack) into Staged(Staged) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update Aux from package WindowsUpdateClient-SelfUpdate-Aux-AuxComp-Package(Update) into Staged(Staged) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4375] - Windows Servicing failed to complete the process of setting package WUClient-SelfUpdate-Aux-Package-en-us-MiniLP (Feature Pack) into Install Requested(Install Requested) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4375] - Windows Servicing failed to complete the process of setting package WindowsUpdateClient-SelfUpdate-Aux-Package (Update) into Install Requested(Install Requested) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4375] - Windows Servicing failed to complete the process of setting package WindowsUpdateClient-SelfUpdate-Aux-Package (Language Pack) into Install Requested(Install Requested) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4375] - Windows Servicing failed to complete the process of setting package WindowsUpdateClient-SelfUpdate-Aux-AuxComp-Package_en-US (Language Pack) into Install Requested(Install Requested) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4375] - Windows Servicing failed to complete the process of setting package WindowsUpdateClient-SelfUpdate-Aux-AuxComp-Package (Update) into Install Requested(Install Requested) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4375] - Windows Servicing failed to complete the process of setting package KBWUClient-SelfUpdate-Aux (Feature Pack) into Install Requested(Install Requested) state
.
==== End Of File ===========================
There have been two iexplore.exe processes running in the background, and google is redirecting me whenever I try to click on links. Sometimes random IE windows pop up too.
Thanks for your help.
Malwarebytes' Anti-Malware 1.51.0.1200
www.malwarebytes.org
Database version: 6956
Windows 6.0.6001 Service Pack 1
Internet Explorer 7.0.6001.18000
6/26/2011 8:37:09 PM
mbam-log-2011-06-26 (20-37-09).txt
Scan type: Quick scan
Objects scanned: 162236
Time elapsed: 4 minute(s), 25 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
GMER 1.0.15.15640 - http://www.gmer.net
Rootkit quick scan 2011-06-26 20:40:16
Windows 6.0.6001 Service Pack 1 Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 WDC_WD25 rev.11.0
Running: uvvpb1qu.exe; Driver: C:\Users\Rukan\AppData\Local\Temp\fwtcqpoc.sys
---- Devices - GMER 1.0.15 ----
AttachedDevice \FileSystem\Ntfs \Ntfs dwprot.sys (Dr.Web Protection for Windows/Doctor Web, Ltd.)
AttachedDevice \FileSystem\fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)
AttachedDevice \FileSystem\fastfat \Fat dwprot.sys (Dr.Web Protection for Windows/Doctor Web, Ltd.)
AttachedDevice \Driver\tdx \Device\Ip dwprot.sys (Dr.Web Protection for Windows/Doctor Web, Ltd.)
AttachedDevice \Driver\tdx \Device\Tcp dwprot.sys (Dr.Web Protection for Windows/Doctor Web, Ltd.)
AttachedDevice \Driver\tdx \Device\Udp dwprot.sys (Dr.Web Protection for Windows/Doctor Web, Ltd.)
AttachedDevice \Driver\tdx \Device\RawIp dwprot.sys (Dr.Web Protection for Windows/Doctor Web, Ltd.)
---- Threads - GMER 1.0.15 ----
Thread System [4:272] 864F2E7A
Thread System [4:276] 864F5008
---- EOF - GMER 1.0.15 ----
.
DDS (Ver_2011-06-23.01) - NTFSx86
Internet Explorer: 7.0.6001.18000
Run by Rukan at 20:41:08 on 2011-06-26
Microsoft® Windows Vista™ Home Premium 6.0.6001.1.1252.1.1033.18.3034.1594 [GMT -4:00]
.
AV: Doctor Web Anti-Virus *Enabled/Updated* {6CC6AE29-BD86-6306-5444-113FA6A626D8}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Doctor Web Anti-Virus *Enabled/Updated* {D7A74FCD-9BBC-6C88-6EF4-2A4DDD216C65}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_f6ef8056\STacSV.exe
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Program Files\Dell\DellDock\DockLogin.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\WLTRYSVC.EXE
C:\Windows\system32\WLANExt.exe
C:\Windows\System32\bcmwltry.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\Common Files\Doctor Web\Scanning Engine\dwengine.exe
C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_f6ef8056\aestsrv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
c:\Program Files\Common Files\Dell\Advanced Networking Service\hnm_svc.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\Dell\DellDock\DellDock.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\SMINST\sftservice.EXE
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\RUNDLL32.EXE
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\Windows Live\Toolbar\wltuser.exe
C:\Program Files\Common Files\Doctor Web\Scanning Engine\dwengine.exe
C:\windows\SMINST\Components\scheduler\STService.exe
C:\Program Files\DellTPad\Apoint.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\WINDOWS\System32\igfxtray.exe
C:\Windows\system32\igfxsrvc.exe
C:\WINDOWS\System32\hkcmd.exe
C:\WINDOWS\System32\igfxpers.exe
C:\WINDOWS\System32\WLTRAY.EXE
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Dell DataSafe Online\DataSafeOnline.exe
C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
C:\Program Files\Dell Webcam\Dell Webcam Central\WebcamDell2.exe
C:\Program Files\Dell Support Center\bin\sprtcmd.exe
C:\Program Files\AIM\aim.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\DellTPad\ApMsgFwd.exe
C:\Program Files\DrWeb\spiderml.exe
C:\Program Files\DrWeb\spidergate.exe
C:\Program Files\DrWeb\spideragent.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Dell Remote Access\ezi_ra.exe
C:\Program Files\DellTPad\Apntex.exe
C:\Program Files\DellTPad\HidFind.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Dell Support Center\bin\sprtsvc.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uInternet Settings,ProxyOverride = *.local
uURLSearchHooks: H - No File
uURLSearchHooks: FCToolbarURLSearchHook Class: {edc8d02a-7ae5-1094-ddc0-16d2381944d0} - c:\program files\socialribbons lp 1\Helper.dll
uURLSearchHooks: H - No File
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: SocialRibbons LP 1: {2f3d5040-d8e1-f5b4-150e-f532a5f23615} - c:\program files\socialribbons lp 1\Toolbar.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SearchHelper.dll
BHO: Java(tm) Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Easy Gif Animator Toolbar Helper: {96372ab6-15eb-4316-b497-71c741bc548c} - c:\program files\easy gif animator extension\v3.3.0.3\EasyGifAnimator_Toolbar.dll
BHO: Skype Browser Helper: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
BHO: DCA BHO: {b49699fc-1665-4414-a1cb-c4a2a4a13eec} - c:\program files\common files\freecause\dca\dca-bho.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: Windows Live Toolbar Helper: {e15a8dc0-8516-42a1-81ea-dc94ec1acf10} - c:\program files\windows live\toolbar\wltcore.dll
TB: &Windows Live Toolbar: {21fa44ef-376d-4d53-9b0f-8a89d3229068} - c:\program files\windows live\toolbar\wltcore.dll
TB: Easy Gif Animator Toolbar: {35065594-9169-4a34-b167-fc4865038e53} - c:\program files\easy gif animator extension\v3.3.0.3\EasyGifAnimator_Toolbar.dll
TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
TB: {C5BA4085-A224-412A-B91F-08543F6212EC} - No File
uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun
uRun: [Aim] "c:\program files\aim\aim.exe" /d locale=en-US
uRun: [SUPERAntiSpyware] c:\program files\superantispyware\SUPERAntiSpyware.exe
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
mRun: [Apoint] c:\program files\delltpad\Apoint.exe
mRun: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [Broadcom Wireless Manager UI] c:\windows\system32\WLTRAY.exe
mRun: [QuickSet] c:\program files\dell\quickset\QuickSet.exe
mRun: [IAAnotif] c:\program files\intel\intel matrix storage manager\iaanotif.exe
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [Dell DataSafe Online] "c:\program files\dell datasafe online\DataSafeOnline.exe" /m
mRun: [PDVDDXSrv] "c:\program files\cyberlink\powerdvd dx\PDVDDXSrv.exe"
mRun: [Dell Webcam Central] "c:\program files\dell webcam\dell webcam central\WebcamDell2.exe" /mode2
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [dellsupportcenter] "c:\program files\dell support center\bin\sprtcmd.exe" /P dellsupportcenter
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [Malwarebytes' Anti-Malware (reboot)] "c:\program files\malwarebytes' anti-malware\mbam.exe" /runcleanupscript
mRun: [SpIDerMail] "c:\program files\drweb\spiderml.exe" -autorun
mRun: [SpIDerGate] "c:\program files\drweb\spidergate.exe" -autorun
mRun: [SpIDerAgent] "c:\program files\drweb\SpIDerAgent.exe"
mRunOnce: [DSUpdateLauncher] "c:\program files\dell datasafe local backup\components\dsupdate\runhstart.bat"
mRunOnce: [Launcher] %WINDIR%\SMINST\Components\scheduler\Launcher.exe
StartupFolder: c:\users\rukan\appdata\roaming\micros~1\windows\startm~1\programs\startup\delldo~1.lnk - c:\program files\dell\delldock\DellDock.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\dellre~1.lnk - c:\windows\installer\{f66a31d9-7831-4fba-ba02-c411c0047cc5}\NewShortcut4_F66A31D978314FBABA02C411C0047CC5.exe
mPolicies-system: EnableLUA = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office12\EXCEL.EXE/3000
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~3\office12\ONBttnIE.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~3\office12\REFIEBAR.DLL
LSP: c:\program files\drweb\drwebsp.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
TCP: DhcpNameServer = 192.168.2.1 209.18.47.61 209.18.47.62
TCP: Interfaces\{6E10441E-E40F-4420-B00E-0421FD555782} : DhcpNameServer = 192.168.2.1 209.18.47.61 209.18.47.62
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
Notify: GoToAssist - c:\program files\citrix\gotoassist\514\G2AWinLogon.dll
Notify: igfxcui - igfxdev.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\rukan\appdata\roaming\mozilla\firefox\profiles\jk9b0yby.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2260173&SearchSource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - Search the Web
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2260173&q=
FF - prefs.js: network.proxy.type - 0
FF - plugin: c:\program files\google\update\1.2.183.23\npGoogleOneClick8.dll
FF - plugin: c:\program files\microsoft silverlight\4.0.60531.0\npctrlui.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
.
============= SERVICES / DRIVERS ===============
.
R0 DwProt;DrWeb Protection;c:\windows\system32\drivers\dwprot.sys [2011-6-26 139768]
R0 SpiderG3;DrWeb file system scanner;c:\windows\system32\drivers\spiderg3.sys [2011-6-26 93944]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2010-2-17 12872]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2010-5-10 67656]
R2 AESTFilters;Andrea ST Filters Service;c:\windows\system32\driverstore\filerepository\stwrt.inf_f6ef8056\AEstSrv.exe [2009-6-6 81920]
R2 DockLoginService;Dock Login Service;c:\program files\dell\delldock\DockLogin.exe [2008-12-18 155648]
R2 DrWebEngine;Dr.Web Scanning Engine (DrWebEngine);c:\program files\common files\doctor web\scanning engine\dwengine.exe [2011-5-4 1667416]
R2 SftService;SoftThinks Agent Service;c:\windows\sminst\SftService.exe [2009-6-6 632048]
R2 yksvc;Marvell Yukon Service;RUNDLL32.EXE ykx32coinst,serviceStartProc --> RUNDLL32.EXE ykx32coinst,serviceStartProc [?]
R3 CtClsFlt;Creative Camera Class Upper Filter Driver;c:\windows\system32\drivers\CtClsFlt.sys [2009-6-6 144128]
R3 ManyCam;ManyCam Virtual Webcam, WDM Video Capture Driver;c:\windows\system32\drivers\ManyCam.sys [2008-1-14 21632]
R3 OA009Ufd;Creative Camera OA009 Upper Filter Driver;c:\windows\system32\drivers\OA009Ufd.sys [2009-6-6 144672]
R3 OA009Vid;Creative Camera OA009 Function Driver;c:\windows\system32\drivers\OA009Vid.sys [2009-6-6 269216]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 gupdate;Google Update Service (gupdate);c:\program files\google\update\GoogleUpdate.exe [2011-6-20 136176]
S3 PCD5SRVC{3F6A8B78-EC003E00-05040104};PCD5SRVC{3F6A8B78-EC003E00-05040104} - PCDR Kernel Mode Service Helper Driver;c:\progra~1\dellsu~1\hwdiag\bin\PCD5SRVC.pkms [2008-11-4 22904]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
.
=============== Created Last 30 ================
.
2011-06-26 13:22:44 139768 ----a-w- c:\windows\system32\drivers\dwprot.sys
2011-06-26 13:22:10 93944 ----a-w- c:\windows\system32\drivers\spiderg3.sys
2011-06-26 13:21:17 -------- d-----w- c:\programdata\Doctor Web
2011-06-26 13:21:16 -------- d-----w- c:\program files\DrWeb
2011-06-26 13:21:16 -------- d-----w- c:\program files\common files\Doctor Web
2011-06-26 13:17:48 -------- d-----w- c:\users\rukan\appdata\local\Downloaded Installations
2011-06-26 04:15:56 -------- d-----w- c:\users\rukan\DoctorWeb
2011-06-25 16:37:09 -------- d-----w- c:\program files\CCleaner
2011-06-25 16:35:00 190032 ----a-w- c:\windows\system32\drivers\tmcomm.sys
2011-06-25 16:19:34 -------- d-----w- c:\windows\system32\Profiles
2011-06-25 15:37:28 -------- d--h--w- C:\$AVG
2011-06-25 05:53:31 -------- d-----w- c:\users\rukan\appdata\roaming\AVG10
2011-06-25 05:50:09 -------- d--h--w- c:\programdata\Common Files
2011-06-25 05:47:02 -------- d-----w- c:\programdata\AVG10
2011-06-25 05:44:35 -------- d-----w- c:\program files\AVG
2011-06-25 05:34:31 -------- d-----w- c:\programdata\MFAData
2011-06-24 05:44:12 7074640 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{c625cb73-1364-431e-9975-14b0a0be8e07}\mpengine.dll
2011-06-24 02:25:44 2106216 ----a-w- c:\program files\mozilla firefox\D3DCompiler_43.dll
2011-06-24 02:25:44 1998168 ----a-w- c:\program files\mozilla firefox\d3dx9_43.dll
2011-06-22 18:43:39 26600 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
2011-06-22 18:43:39 107368 ----a-w- c:\windows\system32\GEARAspi.dll
2011-06-22 07:02:21 99176 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2011-06-22 07:02:21 49472 ----a-w- c:\windows\system32\netfxperf.dll
2011-06-22 07:02:21 297808 ----a-w- c:\windows\system32\mscoree.dll
2011-06-22 07:02:21 295264 ----a-w- c:\windows\system32\PresentationHost.exe
2011-06-22 07:02:21 1130824 ----a-w- c:\windows\system32\dfshim.dll
2011-06-22 02:16:16 -------- d-----w- c:\program files\SocialRibbons LP 1
2011-06-22 02:16:16 -------- d-----w- c:\program files\common files\FreeCause
2011-06-22 02:16:09 -------- d--h--w- c:\programdata\Tarma Installer
2011-06-22 02:15:55 0 ----a-w- c:\windows\system32\ConduitEngine.tmp
2011-06-22 02:15:55 -------- d--h--w- c:\users\rukan\appdata\local\Conduit
2011-06-21 22:33:34 17920 ----a-w- c:\windows\system32\netevent.dll
2011-06-21 22:33:34 125952 ----a-w- c:\windows\system32\srvsvc.dll
2011-06-21 22:33:32 378368 ----a-w- c:\windows\system32\winhttp.dll
2011-06-21 20:33:02 445008 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
2011-06-21 20:33:02 38480 ----a-w- c:\windows\system32\drivers\WdfLdr.sys
2011-06-21 20:31:33 1461992 ----a-w- c:\windows\system32\WdfCoInstaller01009.dll
2011-06-21 20:31:31 252536 ----a-w- c:\windows\system32\drivers\Apfiltr.sys
2011-06-21 14:58:05 -------- d--h--w- c:\users\rukan\appdata\roaming\Jasc
2011-06-21 14:01:37 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll
2011-06-21 14:01:37 28672 ----a-w- c:\windows\system32\Apphlpdm.dll
2011-06-21 07:29:47 80896 ----a-w- c:\windows\system32\MSNP.ax
2011-06-21 07:29:47 69632 ----a-w- c:\windows\system32\Mpeg2Data.ax
2011-06-21 07:29:47 57856 ----a-w- c:\windows\system32\MSDvbNP.ax
2011-06-21 07:29:45 293376 ----a-w- c:\windows\system32\psisdecd.dll
2011-06-21 07:29:45 217088 ----a-w- c:\windows\system32\psisrndr.ax
2011-06-21 07:10:06 97800 ----a-w- c:\windows\system32\infocardapi.dll
2011-06-21 07:10:06 622080 ----a-w- c:\windows\system32\icardagt.exe
2011-06-21 07:10:06 37384 ----a-w- c:\windows\system32\infocardcpl.cpl
2011-06-21 07:10:06 11264 ----a-w- c:\windows\system32\icardres.dll
2011-06-21 07:10:06 105016 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2011-06-21 07:10:05 781344 ----a-w- c:\windows\system32\PresentationNative_v0300.dll
2011-06-21 07:06:28 158720 ----a-w- c:\windows\system32\mscorier.dll
2011-06-21 07:06:26 83968 ----a-w- c:\windows\system32\mscories.dll
2011-06-21 07:05:08 411136 ----a-w- c:\windows\system32\drivers\http.sys
2011-06-21 07:05:08 31232 ----a-w- c:\windows\system32\httpapi.dll
2011-06-21 07:05:08 24064 ----a-w- c:\windows\system32\nshhttp.dll
2011-06-21 07:04:15 231936 ----a-w- c:\windows\system32\msshsq.dll
2011-06-20 23:11:50 7074640 ----a-w- c:\programdata\microsoft\windows defender\definition updates\backup\mpengine.dll
2011-06-20 23:11:43 222080 ------w- c:\windows\system32\MpSigStub.exe
2011-06-20 22:25:29 -------- d-----w- c:\program files\uTorrent
2011-06-20 22:25:00 -------- d--h--w- c:\users\rukan\appdata\roaming\uTorrent
2011-06-20 21:52:14 -------- d--h--w- c:\programdata\Blumentals
2011-06-20 21:50:44 236159 ----a-w- c:\windows\EasyGifAnimator_Toolbar_Uninstaller_8096.exe
2011-06-20 21:50:43 -------- d-----w- c:\program files\Easy Gif Animator Extension
2011-06-20 21:40:11 -------- d--h--w- c:\programdata\Spybot - Search & Destroy
2011-06-20 21:35:31 -------- d--h--w- c:\users\rukan\appdata\local\ManyCam
2011-06-20 21:35:30 -------- d--h--w- c:\users\rukan\appdata\roaming\ManyCam
2011-06-20 21:33:27 39984 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-06-20 21:32:58 -------- d--h--w- c:\users\rukan\appdata\roaming\SUPERAntiSpyware.com
2011-06-20 21:32:58 -------- d--h--w- c:\programdata\SUPERAntiSpyware.com
2011-06-20 21:28:57 417792 ----a-w- c:\program files\windows media player\plugins\wmp_scrobbler.dll
2011-06-20 21:28:54 -------- d--h--w- c:\programdata\Last.fm
2011-06-20 21:27:23 -------- d--h--w- c:\users\rukan\appdata\local\Last.fm
2011-06-20 20:29:31 -------- d-----r- c:\program files\Skype
2011-06-20 19:46:12 -------- d-----w- c:\users\rukan\stuff
2011-06-20 19:28:39 -------- d--h--w- c:\users\rukan\appdata\local\Apple
2011-06-20 19:04:03 -------- d--h--w- c:\users\rukan\Dexter
2011-06-20 17:25:59 -------- d--h--w- c:\users\rukan\.thumbnails
2011-06-20 17:24:46 -------- d-----w- c:\program files\ManyCam
2011-06-20 17:24:46 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-06-20 17:24:45 -------- d-----w- c:\program files\LeeGTs Software
2011-06-20 17:24:44 -------- d-----w- c:\program files\Last.fm
2011-06-20 17:24:44 -------- d-----w- c:\program files\Lame for Audacity
2011-06-20 17:24:44 -------- d-----w- c:\program files\Jasc Software Inc
2011-06-20 17:24:40 -------- d-----w- c:\program files\Hitachi
2011-06-20 17:24:40 -------- d-----w- c:\program files\Griffin Technology
2011-06-20 17:24:36 -------- d-----w- c:\program files\GIMP-2.0
2011-06-20 17:24:35 -------- d-----w- c:\program files\Free M4a to MP3 Converter
2011-06-20 17:24:33 -------- d-----w- c:\program files\Easy GIF Animator
2011-06-20 17:22:56 -------- d-----w- c:\program files\CamStudio
2011-06-20 17:22:55 -------- d-----w- c:\program files\Bonjour
2011-06-20 17:22:54 -------- d-----w- c:\program files\AviSynth 2.5
2011-06-20 17:22:52 -------- d-----w- c:\program files\Audacity 1.3 Beta (Unicode)
2011-06-20 17:22:52 -------- d-----w- c:\program files\Ape Ripper
2011-06-20 17:21:07 -------- d--h--w- C:\.hitachi-lifestudio
2011-06-20 14:48:51 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-06-20 14:35:29 -------- d--h--w- c:\users\rukan\appdata\local\Apps
2011-06-20 14:34:50 -------- d-----w- c:\program files\Active Data Recovery Software
2011-06-20 13:34:56 75264 ----a-w- c:\windows\system32\drivers\dfsc.sys
2011-06-20 13:33:53 104960 ----a-w- c:\windows\system32\netiohlp.dll
2011-06-20 13:33:52 9728 ----a-w- c:\windows\system32\TCPSVCS.EXE
2011-06-20 13:33:52 8704 ----a-w- c:\windows\system32\HOSTNAME.EXE
2011-06-20 13:33:52 27136 ----a-w- c:\windows\system32\NETSTAT.EXE
2011-06-20 13:33:52 19968 ----a-w- c:\windows\system32\ARP.EXE
2011-06-20 13:33:52 17920 ----a-w- c:\windows\system32\ROUTE.EXE
2011-06-20 13:33:52 11264 ----a-w- c:\windows\system32\MRINFO.EXE
2011-06-20 13:33:52 10240 ----a-w- c:\windows\system32\finger.exe
2011-06-20 13:31:54 513024 ----a-w- c:\windows\system32\wlansvc.dll
2011-06-20 13:30:59 304640 ----a-w- c:\windows\system32\drivers\srv.sys
2011-06-20 13:29:59 714240 ----a-w- c:\windows\system32\timedate.cpl
2011-06-20 13:28:51 866816 ----a-w- c:\windows\system32\wmpmde.dll
2011-06-20 13:27:59 1257472 ----a-w- c:\windows\system32\msxml3.dll
2011-06-20 13:26:59 79360 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2011-06-20 04:52:53 171520 ----a-w- c:\windows\system32\wintrust.dll
2011-06-20 04:52:50 98304 ----a-w- c:\windows\system32\cabview.dll
2011-06-20 04:47:43 -------- d--h--w- c:\users\rukan\appdata\local\AOL
2011-06-20 04:47:43 -------- d--h--w- c:\users\rukan\appdata\local\AIM
2011-06-20 04:47:35 -------- d--h--w- c:\programdata\AIM
2011-06-20 04:47:29 -------- d-----w- c:\program files\common files\Software Update Utility
2011-06-20 04:47:29 -------- d-----w- c:\program files\AIM
2011-06-20 04:47:28 -------- d-----w- c:\program files\common files\AOL
2011-06-20 04:45:17 2421760 ----a-w- c:\windows\system32\wucltux.dll
2011-06-20 04:45:00 87552 ----a-w- c:\windows\system32\wudriver.dll
2011-06-20 04:44:52 33792 ----a-w- c:\windows\system32\wuapp.exe
2011-06-20 04:44:52 171608 ----a-w- c:\windows\system32\wuwebv.dll
2011-06-20 04:44:31 -------- d--h--w- c:\users\rukan\My Backup Files
2011-06-20 04:43:51 -------- d--h--w- c:\users\rukan\appdata\local\DataSafeOnline
2011-06-20 04:43:28 -------- d--h--w- c:\users\rukan\appdata\local\PowerDVD DX
2011-06-20 04:43:20 -------- d-sh--w- C:\$RECYCLE.BIN
2011-06-20 04:42:57 -------- d--h--w- c:\users\rukan\appdata\local\VirtualStore
2011-06-20 04:42:32 -------- d-sh--w- C:\System Recovery
.
==================== Find3M ====================
.
2011-05-02 15:58:28 738816 ----a-w- c:\windows\system32\inetcomm.dll
2011-04-29 12:49:57 146432 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-04-29 12:49:55 102400 ----a-w- c:\windows\system32\drivers\srvnet.sys
2011-04-29 12:49:51 213504 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2011-04-29 12:49:35 105984 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-04-21 15:00:34 833024 ----a-w- c:\windows\system32\wininet.dll
2011-04-21 14:57:48 78336 ----a-w- c:\windows\system32\ieencode.dll
2011-04-21 13:28:42 389632 ----a-w- c:\windows\system32\html.iec
2011-04-21 13:16:42 273408 ----a-w- c:\windows\system32\drivers\afd.sys
2011-04-21 13:08:37 1383424 ----a-w- c:\windows\system32\mshtml.tlb
2011-04-06 20:20:16 91424 ----a-w- c:\windows\system32\dnssd.dll
2011-04-06 20:20:16 75040 ----a-w- c:\windows\system32\jdns_sd.dll
2011-04-06 20:20:16 197920 ----a-w- c:\windows\system32\dnssdX.dll
2011-04-06 20:20:16 107808 ----a-w- c:\windows\system32\dns-sd.exe
.
============= FINISH: 20:42:50.11 ===============
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-06-23.01)
.
Microsoft® Windows Vista™ Home Premium
Boot Device: \Device\HarddiskVolume3
Install Date: 6/5/2009 8:25:21 PM
System Uptime: 6/26/2011 8:13:51 PM (0 hours ago)
.
Motherboard: Dell Inc. | | 0G848F
Processor: Intel(R) Core(TM)2 Duo CPU T6400 @ 2.00GHz | Microprocessor | 2000/200mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 218 GiB total, 66.615 GiB free.
E: is FIXED (NTFS) - 15 GiB total, 4.122 GiB free.
F: is CDROM ()
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
.
==== Installed Programs ======================
.
Update for Microsoft Office 2007 (KB2508958)
µTorrent
Acrobat.com
Active@ UNDELETE 7 Enterprise
Adobe AIR
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Reader 9
Advanced Audio FX Engine
AIM 7
Apple Application Support
Apple Mobile Device Support
Apple Software Update
Banctec Service Agreement
Bonjour
CCleaner
Choice Guard
Cisco EAP-FAST Module
Cisco LEAP Module
Cisco PEAP Module
Compatibility Pack for the 2007 Office system
Dell-eBay
Dell DataSafe Local Backup
Dell DataSafe Local Backup - Support Software
Dell DataSafe Online
Dell Dock
Dell Edoc Viewer
Dell Getting Started Guide
Dell Remote Access
Dell Support Center (Support Software)
Dell Touchpad
Dell Video Chat
Dell Webcam Central
Dell Wireless WLAN Card Utility
Download Updater (AOL LLC)
Dr.Web Security Space 6.0 (x86)
Easy GIF Animator 5.1
Easy Gif Animator Extension
GIMP 2.6.11
Google Chrome
Google Update Helper
GoToAssist 8.0.0.514
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Integrated Webcam Driver (1.00.02.0825)
Intel(R) TV Wizard
Intel® Matrix Storage Manager
iTunes
Jasc Animation Shop 3
Java(TM) 6 Update 11
Junk Mail filter update
Last.fm 1.5.4.27091
Malwarebytes' Anti-Malware version 1.51.0.1200
ManyCam 2.6.55 (remove only)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4 Client Profile
Microsoft Application Error Reporting
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office Excel MUI (English) 2007
Microsoft Office Home and Student 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office PowerPoint Viewer 2007 (English)
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Suite Activation Assistant
Microsoft Office Word MUI (English) 2007
Microsoft Search Enhancement Pack
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Sync Framework Runtime Native v1.0 (x86)
Microsoft Sync Framework Services Native v1.0 (x86)
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Works
Mozilla Firefox 5.0 (x86 en-US)
MSVCRT
PowerDVD DX
QuickSet
QuickTime
Roxio Creator Audio
Roxio Creator Copy
Roxio Creator Data
Roxio Creator DE
Roxio Creator Tools
Roxio Express Labeler 3
Roxio Update Manager
Security Update for 2007 Microsoft Office System (KB2288621)
Security Update for 2007 Microsoft Office System (KB2288931)
Security Update for 2007 Microsoft Office System (KB2345043)
Security Update for 2007 Microsoft Office System (KB2509488)
Security Update for 2007 Microsoft Office System (KB969559)
Security Update for 2007 Microsoft Office System (KB976321)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)
Security Update for Microsoft Office 2007 System (KB2541012)
Security Update for Microsoft Office Excel 2007 (KB2541007)
Security Update for Microsoft Office InfoPath 2007 (KB979441)
Security Update for Microsoft Office PowerPoint 2007 (KB2535818)
Security Update for Microsoft Office PowerPoint Viewer 2007 (KB2464623)
Security Update for Microsoft Office system 2007 (972581)
Security Update for Microsoft Office system 2007 (KB974234)
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)
Security Update for Microsoft Office Word 2007 (KB2344993)
Skype Toolbars
Skype™ 5.3
SocialRibbons LP 1
SopCast 3.4.0
Spybot - Search & Destroy
SUPERAntiSpyware
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office 2007 System (KB2539530)
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office OneNote 2007 (KB980729)
Update for Microsoft Office OneNote 2007 Help (KB963670)
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 Help (KB963665)
VLC media player 1.1.10
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live Mail
Windows Live Messenger
Windows Live Photo Gallery
Windows Live Sign-in Assistant
Windows Live Sync
Windows Live Toolbar
Windows Live Upload Tool
Windows Live Writer
WinRAR 4.01 (32-bit)
.
==== Event Viewer Messages From Past Week ========
.
6/21/2011 3:21:36 AM, Error: Service Control Manager [7000] - The Windows Search service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
6/21/2011 3:21:35 AM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Windows Search service to connect.
6/21/2011 3:21:35 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1053" attempting to start the service WSearch with arguments "" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
6/21/2011 11:33:43 AM, Error: netbt [4321] - The name "JK-MACBOOK :0" could not be registered on the interface with IP address 192.168.2.11. The computer with the IP address 192.168.2.3 did not allow the name to be claimed by this computer.
6/21/2011 10:00:17 AM, Error: Microsoft-Windows-Dhcp-Client [1002] - The IP address lease 192.168.2.11 for the Network Card with network address 00255631EA6C has been denied by the DHCP server 0.0.0.0 (The DHCP Server sent a DHCPNACK message).
6/20/2011 9:32:52 PM, Error: netbt [4321] - The name "IMAN-PC :0" could not be registered on the interface with IP address 192.168.2.11. The computer with the IP address 192.168.2.9 did not allow the name to be claimed by this computer.
6/20/2011 9:14:04 AM, Error: bowser [8003] - The master browser has received a server announcement from the computer JK-MACBOOK that believes that it is the master browser for the domain on transport NetBT_Tcpip_{6E10441E-E40F-4420-B00E-0421FD5. The master browser is stopping or an election is being forced.
6/20/2011 9:10:59 AM, Error: netbt [4321] - The name "JK-MACBOOK :0" could not be registered on the interface with IP address 192.168.2.11. The computer with the IP address 192.168.2.7 did not allow the name to be claimed by this computer.
6/20/2011 4:03:35 PM, Error: Service Control Manager [7022] - The Windows Update service hung on starting.
6/20/2011 3:56:42 PM, Error: Service Control Manager [7000] - The Intel(R) PRO/1000 PCI Express Network Connection Driver service failed to start due to the following error: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.
6/20/2011 3:56:42 PM, Error: Service Control Manager [7000] - The Intel(R) PRO/1000 NDIS 6 Adapter Driver service failed to start due to the following error: The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.
6/20/2011 3:25:23 PM, Error: Service Control Manager [7000] - The Apple Mobile Device service failed to start due to the following error: The application has failed to start because its side-by-side configuration is incorrect. Please see the application event log for more detail.
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-zh-tw-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-zh-hk-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-zh-cn-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-uk-ua-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-tr-tr-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-th-th-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-sv-se-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-sr-latn-cs-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-sl-si-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-sk-sk-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-ru-ru-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-ro-ro-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-pt-pt-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-pt-br-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-ps-ps-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-pl-pl-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-nl-nl-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-Neutral from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Staged(Staged) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-nb-no-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-lv-lv-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-lt-lt-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-ko-kr-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-ja-jp-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-it-it-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-hu-hu-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-hr-hr-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-he-il-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-fr-fr-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-fi-fi-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-et-ee-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-es-es-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-en-us-LP from package WUClient-SelfUpdate-Aux-Package-en-us-MiniLP(Feature Pack) into Staged(Staged) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-en-us-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Staged(Staged) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-el-gr-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-de-de-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-da-dk-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-cs-cz-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-bg-bg-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update WUClient-SelfUpdate-Aux-ar-sa-LP-Toplevel from package KBWUClient-SelfUpdate-Aux(Feature Pack) into Absent(Absent) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update AuxResourcesLP from package WindowsUpdateClient-SelfUpdate-Aux-Package(Language Pack) into Staged(Staged) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update AuxComp from package WindowsUpdateClient-SelfUpdate-Aux-Package(Update) into Staged(Staged) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update Aux from package WindowsUpdateClient-SelfUpdate-Aux-AuxComp-Package_en-US(Language Pack) into Staged(Staged) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4385] - Windows Servicing failed to complete the process of changing update Aux from package WindowsUpdateClient-SelfUpdate-Aux-AuxComp-Package(Update) into Staged(Staged) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4375] - Windows Servicing failed to complete the process of setting package WUClient-SelfUpdate-Aux-Package-en-us-MiniLP (Feature Pack) into Install Requested(Install Requested) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4375] - Windows Servicing failed to complete the process of setting package WindowsUpdateClient-SelfUpdate-Aux-Package (Update) into Install Requested(Install Requested) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4375] - Windows Servicing failed to complete the process of setting package WindowsUpdateClient-SelfUpdate-Aux-Package (Language Pack) into Install Requested(Install Requested) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4375] - Windows Servicing failed to complete the process of setting package WindowsUpdateClient-SelfUpdate-Aux-AuxComp-Package_en-US (Language Pack) into Install Requested(Install Requested) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4375] - Windows Servicing failed to complete the process of setting package WindowsUpdateClient-SelfUpdate-Aux-AuxComp-Package (Update) into Install Requested(Install Requested) state
6/20/2011 12:46:13 AM, Error: Microsoft-Windows-Servicing [4375] - Windows Servicing failed to complete the process of setting package KBWUClient-SelfUpdate-Aux (Feature Pack) into Install Requested(Install Requested) state
.
==== End Of File ===========================