Either got from a subtitles website with green web of trust, or I just accidentally clicked the wrong thing on some random cooking site. I get bizarre fake websites and install this and that on web pages.
ran malawarebytes . it found 2, then 5 then 30 plus in heuristics . 50 or so total. quarantined all. will provide that log also. malawarebytes reads clear now and so does ms security.
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 2/18/2015
Scan Time: 3:59:29 PM
Logfile:
Administrator: Yes
Version: 2.00.4.1028
Malware Database: v2015.02.18.08
Rootkit Database: v2015.02.03.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Gerald
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 343605
Time Elapsed: 6 min, 18 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 1
PUP.Optional.MultiPlug.A, C:\ProgramData\{e772cbb8-3d1e-a306-e772-2cbb83d12ee0}\interstellar-eng-6028896.exe, 3868, Delete-on-Reboot, [d24058c2ed9df93d96a626fe986a13ed]
Modules: 0
(No malicious items detected)
Registry Keys: 33
PUP.Optional.Booster.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{891e9dd5}, Quarantined, [868cf228b0da1d190b8c29905da69070],
PUP.Optional.MultiPlug, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{4820778D-AB0D-6D18-C316-52A6A0E1D507}, Quarantined, [20f2ad6d65258caab5067a32d72c04fc],
PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{8117bad3-e457-40a1-862d-def8fe14920c}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{8117BAD3-E457-40A1-862D-DEF8FE14920C}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{8117BAD3-E457-40A1-862D-DEF8FE14920C}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\P8117bad3_e457_40a1_862d_def8fe14920c_.P8117bad3_e457_40a1_862d_def8fe14920c_, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\P8117bad3_e457_40a1_862d_def8fe14920c_.P8117bad3_e457_40a1_862d_def8fe14920c_.9, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\CLASSES\P8117bad3_e457_40a1_862d_def8fe14920c_.P8117bad3_e457_40a1_862d_def8fe14920c_, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\CLASSES\P8117bad3_e457_40a1_862d_def8fe14920c_.P8117bad3_e457_40a1_862d_def8fe14920c_.9, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\CLSID\{8117BAD3-E457-40A1-862D-DEF8FE14920C}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\CLSID\{8117BAD3-E457-40A1-862D-DEF8FE14920C}\INPROCSERVER32, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{8117BAD3-E457-40A1-862D-DEF8FE14920C}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{8117BAD3-E457-40A1-862D-DEF8FE14920C}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\TYPELIB\{57B0DCF0-8B40-4449-8AA4-E297D6E779D4}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\INTERFACE\{002FF249-4A02-44F8-BD0F-7389AC5F3E70}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\INTERFACE\{8F99377E-3B52-45E7-AC41-ACCAA945F8B1}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\INTERFACE\{9B2BBEAD-1A03-4927-8EB7-AC8292E4EB2F}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{002FF249-4A02-44F8-BD0F-7389AC5F3E70}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{8F99377E-3B52-45E7-AC41-ACCAA945F8B1}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{9B2BBEAD-1A03-4927-8EB7-AC8292E4EB2F}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{57B0DCF0-8B40-4449-8AA4-E297D6E779D4}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{4c596f79-171d-4030-9ad5-61a5272bd464}, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{4C596F79-171D-4030-9AD5-61A5272BD464}, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{4C596F79-171D-4030-9AD5-61A5272BD464}, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\CLASSES\P4c596f79_171d_4030_9ad5_61a5272bd464_.P4c596f79_171d_4030_9ad5_61a5272bd464_, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\CLASSES\P4c596f79_171d_4030_9ad5_61a5272bd464_.P4c596f79_171d_4030_9ad5_61a5272bd464_.9, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\P4c596f79_171d_4030_9ad5_61a5272bd464_.P4c596f79_171d_4030_9ad5_61a5272bd464_, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\P4c596f79_171d_4030_9ad5_61a5272bd464_.P4c596f79_171d_4030_9ad5_61a5272bd464_.9, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\CLASSES\CLSID\{4C596F79-171D-4030-9AD5-61A5272BD464}, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\CLASSES\CLSID\{4C596F79-171D-4030-9AD5-61A5272BD464}\INPROCSERVER32, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{4C596F79-171D-4030-9AD5-61A5272BD464}, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{4C596F79-171D-4030-9AD5-61A5272BD464}, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{11F6D5AB-263F-388E-74DE-E3DECD390E3F}, Quarantined, [b85af9214941c1755c33c9b946bdc937],
Registry Values: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Folders: 2
PUP.Optional.Multiplug, C:\Program Files (x86)\youtubeadblocker, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.UniDeals.A, C:\Program Files (x86)\UniDeals, Quarantined, [b85af9214941c1755c33c9b946bdc937],
Files: 14
PUP.Optional.MultiPlug.A, C:\ProgramData\{e772cbb8-3d1e-a306-e772-2cbb83d12ee0}\interstellar-eng-6028896.exe, Delete-on-Reboot, [d24058c2ed9df93d96a626fe986a13ed],
PUP.Optional.MultiPlug.A, C:\Users\Gerald\AppData\Local\Temp\E8A4d5D00.exe, Quarantined, [3fd3a872f694f343281444e062a0b54b],
PUP.Optional.MultiPlug.A, C:\Users\Gerald\AppData\Local\Temp\4bA45\temp\interstellar-eng-6028896.exe, Quarantined, [27eb40da7e0c67cf41fb45df23df16ea],
PUP.Optional.MultiPlug.A, C:\Users\Gerald\Downloads\interstellar-eng-6028896.exe, Quarantined, [d93958c23b4f3afc4fed6aba21e103fd],
PUP.Optional.Multiplug, C:\Program Files (x86)\youtubeadblocker\06r0kISjxoJGTG.dat, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, C:\Program Files (x86)\youtubeadblocker\06r0kISjxoJGTG.dll, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, C:\Program Files (x86)\youtubeadblocker\06r0kISjxoJGTG.x64.dll, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, C:\Program Files (x86)\youtubeadblocker\06r0kISjxoJGTG.exe, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, C:\Program Files (x86)\youtubeadblocker\06r0kISjxoJGTG.tlb, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.UniDeals.A, C:\Program Files (x86)\UniDeals\2wZCLzqUXbqTfg.dat, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, C:\Program Files (x86)\UniDeals\2wZCLzqUXbqTfg.dll, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, C:\Program Files (x86)\UniDeals\2wZCLzqUXbqTfg.x64.dll, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, C:\Program Files (x86)\UniDeals\2wZCLzqUXbqTfg.exe, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, C:\Program Files (x86)\UniDeals\2wZCLzqUXbqTfg.tlb, Quarantined, [b85af9214941c1755c33c9b946bdc937],
Physical Sectors: 0
(No malicious items detected)
(end)
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 2/18/2015
Scan Time: 5:39:16 PM
Logfile:
Administrator: Yes
Version: 2.00.4.1028
Malware Database: v2015.02.18.09
Rootkit Database: v2015.02.03.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Gerald
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 343504
Time Elapsed: 3 min, 32 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 0
(No malicious items detected)
Registry Values: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Folders: 0
(No malicious items detected)
Files: 0
(No malicious items detected)
Physical Sectors: 0
(No malicious items detected)
(end)
DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 11.0.9600.17239
Run by Gerald at 19:39:10 on 2015-02-18
Microsoft Windows 7 Professional 6.1.7601.1.1252.1.1033.18.8098.5659 [GMT -5:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {4F35CFC4-45A3-FC37-EF17-759A02E39AB1}
SP: Microsoft Security Essentials *Enabled/Updated* {F4542E20-6399-F3B9-D5A7-4EE87964D00C}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
c:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\atieclxx.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\rundll32.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe
C:\Program Files (x86)\GIGABYTE\CloudStation\HomeCloud\GCloud.exe
C:\Program Files (x86)\Gigabyte\CloudStation\HomeCloud\HCLOUD.exe
C:\Program Files (x86)\GIGABYTE\Smart TimeLock\TimeMgmtDaemon.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files (x86)\Gigabyte\CloudStation\RemoteControl\grckm.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
c:\Program Files\Microsoft Security Client\NisSrv.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files (x86)\Gigabyte\CloudStation\RemoteOC\ubssrv_oc_only.exe
C:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe
C:\Program Files\Logitech Gaming Software\LCore.exe
C:\Program Files\Logitech\SetPointP\SetPoint.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe
C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Gigabyte\SmartRecovery2\RPMDaemon.exe
C:\Program Files\CCleaner\CCleaner64.exe
C:\Program Files (x86)\GIGABYTE\Smart TimeLock\AlarmClock.exe
C:\Program Files (x86)\Gigabyte\SIV\thermald.exe
C:\Windows\sysWOW64\wbem\wmiprvse.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_16_0_0_305.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_16_0_0_305.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = www.google.com
BHO: Logitech SetPoint: {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll
uRun: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
mRun: [StartCCC] "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
mRunOnce: [EasyTune] C:\Program Files (x86)\Gigabyte\EasyTune\RunOnceTask.exe
mRunOnce: [SIV] C:\Program Files (x86)\Gigabyte\SIV\RunOnceTc.exe
mRunOnce: [PreRun] C:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe
StartupFolder: C:\Users\Gerald\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\INTERS~1.LNK - C:\ProgramData\{e772cbb8-3d1e-a306-e772-2cbb83d12ee0}\interstellar-eng-6028896.exe
uPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: NoDrives = dword:0
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-Windows\System: UseOEMBackground = dword:1
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab
TCP: NameServer = 167.206.13.180 167.206.13.181
TCP: Interfaces\{29F87BE4-B545-429A-8124-336849C96825} : DHCPNameServer = 167.206.13.180 167.206.13.181
SSODL: WebCheck - <orphaned>
x64-BHO: GBHO.BHO: {45d30484-7ded-43d9-957a-d2fd1f046511} -
x64-BHO: Logitech SetPoint: {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll
x64-TB: Smart Recovery 2: {1d09c093-f71e-43c3-b948-19316cbd695e} -
x64-Run: [Launch LCore] C:\Program Files\Logitech Gaming Software\LCore.exe /minimized
x64-Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming
x64-Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
x64-RunOnce: [RPMKickstart] C:\Program Files\Gigabyte\SmartRecovery2\RPMKickstartEx.exe
x64-Notify: LBTWlgn - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
x64-SSODL: WebCheck - <orphaned>
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Gerald\AppData\Roaming\Mozilla\Firefox\Profiles\5azw04gs.default\
FF - plugin: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
FF - plugin: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll
.
============= SERVICES / DRIVERS ===============
.
R0 iaStorA;iaStorA;C:\Windows\System32\drivers\iaStorA.sys [2014-4-11 645480]
R0 iaStorF;iaStorF;C:\Windows\System32\drivers\iaStorF.sys [2014-4-11 28008]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver;C:\Windows\System32\drivers\iusb3hcs.sys [2014-10-4 20464]
R0 MpFilter;Microsoft Malware Protection Driver;C:\Windows\System32\drivers\MpFilter.sys [2014-7-17 269008]
R1 AppleCharger;AppleCharger;C:\Windows\System32\drivers\AppleCharger.sys [2014-10-16 22240]
R1 BfLwf;Qualcomm Atheros Bandwidth Control;C:\Windows\System32\drivers\bflwfx64.sys [2013-2-13 67888]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver;C:\Windows\System32\drivers\HWiNFO64A.SYS [2015-1-1 27552]
R2 891e9dd5;TampaModule;C:\Windows\System32\rundll32.exe [2009-7-13 45568]
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2014-11-20 244736]
R2 gadjservice;GIGABYTE Adjust;C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe [2014-4-16 16384]
R2 GCloud;GCloud;C:\Program Files (x86)\Gigabyte\CloudStation\HomeCloud\GCloud.exe [2014-3-27 12800]
R2 GhFlt;GhFlt;C:\Windows\System32\drivers\ghflt.sys [2014-10-16 16856]
R2 NisDrv;Microsoft Network Inspection System;C:\Windows\System32\drivers\NisDrvWFP.sys [2014-7-17 125584]
R2 Smart TimeLock;Smart TimeLock Service;C:\Program Files (x86)\Gigabyte\Smart TimeLock\TimeMgmtDaemon.exe [2013-2-22 102400]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;C:\Windows\System32\drivers\AtihdW76.sys [2014-6-21 94720]
R3 etdrv;etdrv;C:\Windows\etdrv.sys [2014-10-16 25640]
R3 etocdrv;etocdrv;C:\Windows\etocdrv.sys [2014-10-16 15584]
R3 GVTDrv64;GVTDrv64;C:\Windows\GVTDrv64.sys [2014-10-16 30528]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2014-10-16 171632]
R3 IntcDAud;Intel(R) Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2014-10-4 450520]
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver;C:\Windows\System32\drivers\iusb3hub.sys [2014-10-4 370672]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver;C:\Windows\System32\drivers\iusb3xhc.sys [2014-10-4 791024]
R3 Ke2200;NDIS Miniport Driver for the Killer e2200 PCI-E Ethernet Controller;C:\Windows\System32\drivers\e22W7x64.sys [2013-3-20 154320]
R3 LGBusEnum;Logitech GamePanel Virtual Bus Enumerator Driver;C:\Windows\System32\drivers\LGBusEnum.sys [2009-11-23 22408]
R3 LGSHidFilt;Logitech Gaming KMDF HID Filter Driver;C:\Windows\System32\drivers\LGSHidFilt.Sys [2013-5-30 64280]
R3 LGVirHid;Logitech Gamepanel Virtual HID Device Driver;C:\Windows\System32\drivers\LGVirHid.sys [2009-11-23 16008]
R3 MBfilt;MBfilt;C:\Windows\System32\drivers\MBfilt64.sys [2014-10-4 32344]
R3 NisSrv;Microsoft Network Inspection;C:\Program Files\Microsoft Security Client\NisSrv.exe [2014-8-22 368624]
S1 UsbCharger;UsbCharger;C:\Windows\System32\drivers\UsbCharger.sys [2014-10-16 22240]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-7-8 104912]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-7-8 123856]
S3 AppleChargerSrv;AppleChargerSrv;system32\AppleChargerSrv.exe --> system32\AppleChargerSrv.exe [?]
S3 dmvsc;dmvsc;C:\Windows\System32\drivers\dmvsc.sys [2011-4-12 71168]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service;C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [2014-12-10 614624]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\ieetwcollector.exe [2014-8-16 111616]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2014-8-16 19456]
S3 StorSvc;Storage Service;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-13 27136]
S3 terminpt;Microsoft Remote Desktop Input Driver;C:\Windows\System32\drivers\terminpt.sys [2014-8-16 29696]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2014-8-16 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2014-8-16 29696]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2014-8-16 1255736]
S4 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service;C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2014-10-4 79360]
S4 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2014-10-4 79360]
S4 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-4-11 16232]
S4 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service;C:\Windows\System32\igfxCUIService.exe [2014-10-4 296432]
S4 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-1-31 887232]
S4 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-3-20 154584]
S4 Qualcomm Atheros Killer Service V2;Qualcomm Atheros Killer Service V2;C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [2013-8-8 343040]
.
=============== Created Last 30 ================
.
2015-02-18 06:05:34 11910896 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{85AD0123-D014-4FA3-8F40-338083F84108}\mpengine.dll
2015-02-17 18:05:09 -------- d-----w- C:\Program Files (x86)\TampaModule
2015-02-17 18:04:50 -------- d-----w- C:\Program Files (x86)\Bing Translate To English
2015-02-17 18:04:25 -------- d-----w- C:\ProgramData\3646957502458357237
2015-02-17 18:04:25 -------- d-----w- C:\Program Files (x86)\UniiDealse
2015-02-17 18:03:58 -------- d-----w- C:\ProgramData\{e772cbb8-3d1e-a306-e772-2cbb83d12ee0}
2015-02-16 14:47:01 11870360 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2015-02-11 14:17:36 1188440 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7F0FB120-C6D4-48BB-8F07-7511B8093E6A}\gapaengine.dll
2015-02-09 18:36:38 -------- d-----w- C:\Users\Gerald\AppData\Roaming\library_dir
2015-02-09 18:36:25 -------- d-----w- C:\Program Files (x86)\AMD AVT
2015-02-09 18:36:15 -------- d-----w- C:\Program Files (x86)\AMD
2015-02-03 18:39:23 -------- d-----w- C:\Program Files\CCleaner
.
==================== Find3M ====================
.
2015-02-19 00:29:13 129752 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys
2015-02-19 00:07:14 25640 ----a-w- C:\Windows\gdrv.sys
2015-02-19 00:07:12 25640 ----a-w- C:\Windows\etdrv.sys
2015-02-19 00:04:35 30528 ----a-w- C:\Windows\GVTDrv64.sys
2015-02-07 00:50:44 71344 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2015-02-07 00:50:44 701616 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2015-01-25 03:27:57 18960 ----a-w- C:\Windows\System32\drivers\LNonPnP.sys
2015-01-02 01:25:46 27552 ----a-w- C:\Windows\System32\drivers\HWiNFO64A.SYS
2014-11-21 11:14:22 63704 ----a-w- C:\Windows\System32\drivers\mwac.sys
2014-11-21 11:14:12 93400 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys
2014-11-21 11:14:08 25816 ----a-w- C:\Windows\System32\drivers\mbam.sys
2014-11-21 02:44:42 78432 ----a-w- C:\Windows\System32\atimpc64.dll
2014-11-21 02:44:42 78432 ----a-w- C:\Windows\System32\amdpcom64.dll
2014-11-21 02:44:40 71704 ----a-w- C:\Windows\SysWow64\atimpc32.dll
2014-11-21 02:44:40 71704 ----a-w- C:\Windows\SysWow64\amdpcom32.dll
2014-11-21 02:44:28 144328 ----a-w- C:\Windows\System32\atiuxp64.dll
2014-11-21 02:44:26 126848 ----a-w- C:\Windows\SysWow64\atiuxpag.dll
2014-11-21 02:44:24 118096 ----a-w- C:\Windows\System32\atiu9p64.dll
2014-11-21 02:44:22 100032 ----a-w- C:\Windows\SysWow64\atiu9pag.dll
2014-11-21 02:44:20 1348928 ----a-w- C:\Windows\System32\aticfx64.dll
2014-11-21 02:44:16 1127496 ----a-w- C:\Windows\SysWow64\aticfx32.dll
2014-11-21 02:44:10 11076784 ----a-w- C:\Windows\System32\atidxx64.dll
2014-11-21 02:44:04 9401480 ----a-w- C:\Windows\SysWow64\atidxx32.dll
2014-11-21 02:43:56 7558816 ----a-w- C:\Windows\SysWow64\atiumdva.dll
2014-11-21 02:43:50 7077776 ----a-w- C:\Windows\SysWow64\atiumdag.dll
2014-11-21 02:43:42 8379720 ----a-w- C:\Windows\System32\atiumd6a.dll
2014-11-21 02:43:38 8369408 ----a-w- C:\Windows\System32\atiumd64.dll
2014-11-21 02:41:36 294600 ----a-w- C:\Windows\System32\drivers\amdacpksd.sys
2014-11-21 02:40:00 18959360 ----a-w- C:\Windows\System32\drivers\atikmdag.sys
2014-11-21 02:36:32 51200 ----a-w- C:\Windows\System32\kdbsdk64.dll
2014-11-21 02:35:00 38912 ----a-w- C:\Windows\SysWow64\kdbsdk32.dll
2014-11-21 02:33:12 235008 ----a-w- C:\Windows\System32\clinfo.exe
2014-11-21 02:33:06 98816 ----a-w- C:\Windows\System32\OpenVideo64.dll
2014-11-21 02:33:06 83456 ----a-w- C:\Windows\SysWow64\OpenVideo.dll
2014-11-21 02:33:04 86528 ----a-w- C:\Windows\System32\OVDecode64.dll
2014-11-21 02:33:02 73216 ----a-w- C:\Windows\SysWow64\OVDecode.dll
2014-11-21 02:33:00 47899136 ----a-w- C:\Windows\System32\amdocl64.dll
2014-11-21 02:32:08 40987136 ----a-w- C:\Windows\SysWow64\amdocl.dll
2014-11-21 02:31:18 65024 ----a-w- C:\Windows\System32\OpenCL.dll
2014-11-21 02:31:16 58880 ----a-w- C:\Windows\SysWow64\OpenCL.dll
2014-11-21 02:24:50 28354560 ----a-w- C:\Windows\System32\atio6axx.dll
2014-11-21 02:19:36 23621632 ----a-w- C:\Windows\SysWow64\atioglxx.dll
2014-11-21 02:19:26 49664 ----a-w- C:\Windows\System32\amdmmcl6.dll
2014-11-21 02:19:22 38912 ----a-w- C:\Windows\SysWow64\amdmmcl.dll
2014-11-21 02:18:46 127488 ----a-w- C:\Windows\System32\mantle64.dll
2014-11-21 02:18:42 113664 ----a-w- C:\Windows\SysWow64\mantle32.dll
2014-11-21 02:18:36 5837312 ----a-w- C:\Windows\System32\amdmantle64.dll
2014-11-21 02:17:04 367104 ----a-w- C:\Windows\System32\atiapfxx.exe
2014-11-21 02:17:02 62464 ----a-w- C:\Windows\System32\aticalrt64.dll
2014-11-21 02:17:02 52224 ----a-w- C:\Windows\SysWow64\aticalrt.dll
2014-11-21 02:16:58 55808 ----a-w- C:\Windows\System32\aticalcl64.dll
2014-11-21 02:16:58 49152 ----a-w- C:\Windows\SysWow64\aticalcl.dll
2014-11-21 02:16:52 15716352 ----a-w- C:\Windows\System32\aticaldd64.dll
2014-11-21 02:16:04 14302208 ----a-w- C:\Windows\SysWow64\aticaldd.dll
2014-11-21 02:15:42 4590592 ----a-w- C:\Windows\SysWow64\amdmantle32.dll
2014-11-21 02:13:12 91648 ----a-w- C:\Windows\System32\mantleaxl64.dll
2014-11-21 02:13:10 85504 ----a-w- C:\Windows\SysWow64\mantleaxl32.dll
2014-11-21 02:12:50 442368 ----a-w- C:\Windows\System32\atidemgy.dll
2014-11-21 02:12:50 31232 ----a-w- C:\Windows\System32\atimuixx.dll
2014-11-21 02:12:48 774656 ----a-w- C:\Windows\System32\atieclxx.exe
2014-11-21 02:12:40 244736 ----a-w- C:\Windows\System32\atiesrxx.exe
2014-11-21 02:12:26 190976 ----a-w- C:\Windows\System32\atitmm64.dll
2014-11-21 02:10:02 843776 ----a-w- C:\Windows\System32\coinst_14.50.dll
2014-11-21 02:09:06 1214976 ----a-w- C:\Windows\System32\atiadlxx.dll
2014-11-21 02:09:04 903168 ----a-w- C:\Windows\SysWow64\atiadlxy.dll
2014-11-21 02:09:00 75264 ----a-w- C:\Windows\System32\atig6pxx.dll
2014-11-21 02:09:00 69632 ----a-w- C:\Windows\SysWow64\atiglpxx.dll
2014-11-21 02:09:00 69632 ----a-w- C:\Windows\System32\atiglpxx.dll
2014-11-21 02:08:58 146944 ----a-w- C:\Windows\System32\atig6txx.dll
2014-11-21 02:08:56 133632 ----a-w- C:\Windows\SysWow64\atigktxx.dll
2014-11-21 02:08:54 589312 ----a-w- C:\Windows\System32\drivers\atikmpag.sys
2014-11-21 02:08:54 43520 ----a-w- C:\Windows\System32\drivers\ati2erec.dll
.
============= FINISH: 19:39:18.42 ===============
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 10/4/2014 2:45:47 PM
System Uptime: 2/18/2015 7:04:04 PM (0 hours ago)
.
Motherboard: Gigabyte Technology Co., Ltd. | | Z97X-Gaming 7
Processor: Intel(R) Core(TM) i7-4790K CPU @ 4.00GHz | SOCKET 0 | 4000/100mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 112 GiB total, 29.522 GiB free.
D: is CDROM (CDFS)
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP190: 2/18/2015 1:56:41 AM - Software Distribution Service 3.0
RP191: 2/18/2015 5:53:34 PM - Software Distribution Service 3.0
.
==== Installed Programs ======================
.
@Bios B14.0418.1
3DMark
3DP Chip v14.08
Adobe Flash Player 15 ActiveX
Adobe Flash Player 16 NPAPI
AMD Accelerated Video Transcoding
AMD Catalyst Control Center
AMD Catalyst Install Manager
AMD Drag and Drop Transcoding
AMD Wireless Display v3.0
APP Center
Bing Translate To English
Bonjour
BUSB
Catalyst Control Center - Branding
Catalyst Control Center Graphics Previews Common
Catalyst Control Center Localization All
CCC Help Chinese Standard
CCC Help Chinese Traditional
CCC Help Czech
CCC Help Danish
CCC Help Dutch
CCC Help English
CCC Help Finnish
CCC Help French
CCC Help German
CCC Help Greek
CCC Help Hungarian
CCC Help Italian
CCC Help Japanese
CCC Help Korean
CCC Help Norwegian
CCC Help Polish
CCC Help Portuguese
CCC Help Russian
CCC Help Spanish
CCC Help Swedish
CCC Help Thai
CCC Help Turkish
CCleaner
Cloud Station
Core Temp 1.0 RC6
CPUID CPU-Z 1.71
EasyTune
ESET Online Scanner v3
EZSetup B14.0416.1
Fast Boot
Futuremark SystemInfo
GameCtrl B14.0410.1
Intel(R) Chipset Device Software
Intel(R) Management Engine Components
Intel(R) Processor Graphics
Intel(R) Rapid Storage Technology
Intel(R) USB 3.0 eXtensible Host Controller Driver
Intel® Trusted Connect Service Client
Logitech Gaming Software
Logitech Gaming Software 8.56
Logitech SetPoint 6.65
Malwarebytes Anti-Malware version 2.0.4.1028
marvell 91xx driver
MechWarrior Online
Microsoft .NET Framework 4.5
Microsoft Security Client
Microsoft Security Essentials
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727
Mozilla Firefox 35.0.1 (x86 en-US)
Mozilla Maintenance Service
MSI Afterburner 4.0.0
ON_OFF Charge 2 B14.0217.1
PerformanceTest v7.0 (64-bit)
Qualcomm Atheros Bandwidth Control Filter Driver
Qualcomm Atheros Killer E220x Drivers
Qualcomm Atheros Killer Network Manager Suite
Qualcomm Atheros Network Manager
Realtek High Definition Audio Driver
RivaTuner Statistics Server 6.2.0
SIV
Smart Recovery 2 B14.0418.3 (x64)
Smart TimeLock B14.0416.2
Sound Blaster X-Fi MB3
TeamSpeak 3 Client
VLC media player
WhoCrashed 5.02
WizTree v1.07
.
==== Event Viewer Messages From Past Week ========
.
2/18/2015 7:04:23 PM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: UsbCharger
2/18/2015 5:37:18 PM, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.193.139.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.11400.0 Error code: 0x800700d8 Error description: This version of the software is not compatible with the version of Windows you're running. Check your computer's system information to see whether you need a x86 (32-bit) or x64 (64-bit) version of the program, and then contact the software publisher.
2/18/2015 4:08:49 PM, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.193.139.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.11400.0 Error code: 0x800700d8 Error description: This version of the software is not compatible with the version of Windows you're running. Check your computer's system information to see whether you need a x86 (32-bit) or x64 (64-bit) version of the program, and then contact the software publisher.
2/18/2015 3:58:23 PM, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.193.139.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.11400.0 Error code: 0x800700d8 Error description: This version of the software is not compatible with the version of Windows you're running. Check your computer's system information to see whether you need a x86 (32-bit) or x64 (64-bit) version of the program, and then contact the software publisher.
2/18/2015 3:57:04 PM, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.193.139.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.11400.0 Error code: 0x800700d8 Error description: This version of the software is not compatible with the version of Windows you're running. Check your computer's system information to see whether you need a x86 (32-bit) or x64 (64-bit) version of the program, and then contact the software publisher.
2/18/2015 1:05:21 AM, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.191.5077.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.11302.0 Error code: 0x800700d8 Error description: This version of the software is not compatible with the version of Windows you're running. Check your computer's system information to see whether you need a x86 (32-bit) or x64 (64-bit) version of the program, and then contact the software publisher.
2/17/2015 8:28:17 AM, Error: Microsoft-Windows-HttpEvent [15005] - Unable to bind to the underlying transport for 169.254.208.75:8988. The IP Listen-Only list may contain a reference to an interface which may not exist on this machine. The data field contains the error number.
2/16/2015 9:46:58 AM, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.191.5019.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.11302.0 Error code: 0x800700d8 Error description: This version of the software is not compatible with the version of Windows you're running. Check your computer's system information to see whether you need a x86 (32-bit) or x64 (64-bit) version of the program, and then contact the software publisher.
2/16/2015 8:32:57 AM, Error: Service Control Manager [7000] - The etdrv service failed to start due to the following error: The process cannot access the file because it is being used by another process.
2/15/2015 1:30:52 PM, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.191.4952.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.11302.0 Error code: 0x800700d8 Error description: This version of the software is not compatible with the version of Windows you're running. Check your computer's system information to see whether you need a x86 (32-bit) or x64 (64-bit) version of the program, and then contact the software publisher.
2/14/2015 9:21:20 AM, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.191.4848.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.11302.0 Error code: 0x800700d8 Error description: This version of the software is not compatible with the version of Windows you're running. Check your computer's system information to see whether you need a x86 (32-bit) or x64 (64-bit) version of the program, and then contact the software publisher.
2/13/2015 7:51:46 AM, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.191.4651.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.11302.0 Error code: 0x800700d8 Error description: This version of the software is not compatible with the version of Windows you're running. Check your computer's system information to see whether you need a x86 (32-bit) or x64 (64-bit) version of the program, and then contact the software publisher.
2/11/2015 9:17:26 AM, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.191.4502.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.11302.0 Error code: 0x800700d8 Error description: This version of the software is not compatible with the version of Windows you're running. Check your computer's system information to see whether you need a x86 (32-bit) or x64 (64-bit) version of the program, and then contact the software publisher.
.
==== End Of File ===========================
ran malawarebytes . it found 2, then 5 then 30 plus in heuristics . 50 or so total. quarantined all. will provide that log also. malawarebytes reads clear now and so does ms security.
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 2/18/2015
Scan Time: 3:59:29 PM
Logfile:
Administrator: Yes
Version: 2.00.4.1028
Malware Database: v2015.02.18.08
Rootkit Database: v2015.02.03.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Gerald
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 343605
Time Elapsed: 6 min, 18 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 1
PUP.Optional.MultiPlug.A, C:\ProgramData\{e772cbb8-3d1e-a306-e772-2cbb83d12ee0}\interstellar-eng-6028896.exe, 3868, Delete-on-Reboot, [d24058c2ed9df93d96a626fe986a13ed]
Modules: 0
(No malicious items detected)
Registry Keys: 33
PUP.Optional.Booster.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{891e9dd5}, Quarantined, [868cf228b0da1d190b8c29905da69070],
PUP.Optional.MultiPlug, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{4820778D-AB0D-6D18-C316-52A6A0E1D507}, Quarantined, [20f2ad6d65258caab5067a32d72c04fc],
PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{8117bad3-e457-40a1-862d-def8fe14920c}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{8117BAD3-E457-40A1-862D-DEF8FE14920C}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{8117BAD3-E457-40A1-862D-DEF8FE14920C}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\P8117bad3_e457_40a1_862d_def8fe14920c_.P8117bad3_e457_40a1_862d_def8fe14920c_, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\P8117bad3_e457_40a1_862d_def8fe14920c_.P8117bad3_e457_40a1_862d_def8fe14920c_.9, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\CLASSES\P8117bad3_e457_40a1_862d_def8fe14920c_.P8117bad3_e457_40a1_862d_def8fe14920c_, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\CLASSES\P8117bad3_e457_40a1_862d_def8fe14920c_.P8117bad3_e457_40a1_862d_def8fe14920c_.9, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\CLSID\{8117BAD3-E457-40A1-862D-DEF8FE14920C}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\CLSID\{8117BAD3-E457-40A1-862D-DEF8FE14920C}\INPROCSERVER32, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{8117BAD3-E457-40A1-862D-DEF8FE14920C}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{8117BAD3-E457-40A1-862D-DEF8FE14920C}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\TYPELIB\{57B0DCF0-8B40-4449-8AA4-E297D6E779D4}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\INTERFACE\{002FF249-4A02-44F8-BD0F-7389AC5F3E70}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\INTERFACE\{8F99377E-3B52-45E7-AC41-ACCAA945F8B1}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\CLASSES\INTERFACE\{9B2BBEAD-1A03-4927-8EB7-AC8292E4EB2F}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{002FF249-4A02-44F8-BD0F-7389AC5F3E70}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{8F99377E-3B52-45E7-AC41-ACCAA945F8B1}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{9B2BBEAD-1A03-4927-8EB7-AC8292E4EB2F}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{57B0DCF0-8B40-4449-8AA4-E297D6E779D4}, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{4c596f79-171d-4030-9ad5-61a5272bd464}, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{4C596F79-171D-4030-9AD5-61A5272BD464}, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{4C596F79-171D-4030-9AD5-61A5272BD464}, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\CLASSES\P4c596f79_171d_4030_9ad5_61a5272bd464_.P4c596f79_171d_4030_9ad5_61a5272bd464_, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\CLASSES\P4c596f79_171d_4030_9ad5_61a5272bd464_.P4c596f79_171d_4030_9ad5_61a5272bd464_.9, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\P4c596f79_171d_4030_9ad5_61a5272bd464_.P4c596f79_171d_4030_9ad5_61a5272bd464_, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\P4c596f79_171d_4030_9ad5_61a5272bd464_.P4c596f79_171d_4030_9ad5_61a5272bd464_.9, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\CLASSES\CLSID\{4C596F79-171D-4030-9AD5-61A5272BD464}, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\CLASSES\CLSID\{4C596F79-171D-4030-9AD5-61A5272BD464}\INPROCSERVER32, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{4C596F79-171D-4030-9AD5-61A5272BD464}, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{4C596F79-171D-4030-9AD5-61A5272BD464}, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{11F6D5AB-263F-388E-74DE-E3DECD390E3F}, Quarantined, [b85af9214941c1755c33c9b946bdc937],
Registry Values: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Folders: 2
PUP.Optional.Multiplug, C:\Program Files (x86)\youtubeadblocker, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.UniDeals.A, C:\Program Files (x86)\UniDeals, Quarantined, [b85af9214941c1755c33c9b946bdc937],
Files: 14
PUP.Optional.MultiPlug.A, C:\ProgramData\{e772cbb8-3d1e-a306-e772-2cbb83d12ee0}\interstellar-eng-6028896.exe, Delete-on-Reboot, [d24058c2ed9df93d96a626fe986a13ed],
PUP.Optional.MultiPlug.A, C:\Users\Gerald\AppData\Local\Temp\E8A4d5D00.exe, Quarantined, [3fd3a872f694f343281444e062a0b54b],
PUP.Optional.MultiPlug.A, C:\Users\Gerald\AppData\Local\Temp\4bA45\temp\interstellar-eng-6028896.exe, Quarantined, [27eb40da7e0c67cf41fb45df23df16ea],
PUP.Optional.MultiPlug.A, C:\Users\Gerald\Downloads\interstellar-eng-6028896.exe, Quarantined, [d93958c23b4f3afc4fed6aba21e103fd],
PUP.Optional.Multiplug, C:\Program Files (x86)\youtubeadblocker\06r0kISjxoJGTG.dat, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, C:\Program Files (x86)\youtubeadblocker\06r0kISjxoJGTG.dll, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, C:\Program Files (x86)\youtubeadblocker\06r0kISjxoJGTG.x64.dll, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, C:\Program Files (x86)\youtubeadblocker\06r0kISjxoJGTG.exe, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.Multiplug, C:\Program Files (x86)\youtubeadblocker\06r0kISjxoJGTG.tlb, Quarantined, [e42e4bcf39511b1be63780da56ad58a8],
PUP.Optional.UniDeals.A, C:\Program Files (x86)\UniDeals\2wZCLzqUXbqTfg.dat, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, C:\Program Files (x86)\UniDeals\2wZCLzqUXbqTfg.dll, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, C:\Program Files (x86)\UniDeals\2wZCLzqUXbqTfg.x64.dll, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, C:\Program Files (x86)\UniDeals\2wZCLzqUXbqTfg.exe, Quarantined, [b85af9214941c1755c33c9b946bdc937],
PUP.Optional.UniDeals.A, C:\Program Files (x86)\UniDeals\2wZCLzqUXbqTfg.tlb, Quarantined, [b85af9214941c1755c33c9b946bdc937],
Physical Sectors: 0
(No malicious items detected)
(end)
Malwarebytes Anti-Malware
www.malwarebytes.org
Scan Date: 2/18/2015
Scan Time: 5:39:16 PM
Logfile:
Administrator: Yes
Version: 2.00.4.1028
Malware Database: v2015.02.18.09
Rootkit Database: v2015.02.03.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled
OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Gerald
Scan Type: Threat Scan
Result: Completed
Objects Scanned: 343504
Time Elapsed: 3 min, 32 sec
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Enabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled
Processes: 0
(No malicious items detected)
Modules: 0
(No malicious items detected)
Registry Keys: 0
(No malicious items detected)
Registry Values: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Folders: 0
(No malicious items detected)
Files: 0
(No malicious items detected)
Physical Sectors: 0
(No malicious items detected)
(end)
DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 11.0.9600.17239
Run by Gerald at 19:39:10 on 2015-02-18
Microsoft Windows 7 Professional 6.1.7601.1.1252.1.1033.18.8098.5659 [GMT -5:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {4F35CFC4-45A3-FC37-EF17-759A02E39AB1}
SP: Microsoft Security Essentials *Enabled/Updated* {F4542E20-6399-F3B9-D5A7-4EE87964D00C}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
c:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\atieclxx.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\rundll32.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe
C:\Program Files (x86)\GIGABYTE\CloudStation\HomeCloud\GCloud.exe
C:\Program Files (x86)\Gigabyte\CloudStation\HomeCloud\HCLOUD.exe
C:\Program Files (x86)\GIGABYTE\Smart TimeLock\TimeMgmtDaemon.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files (x86)\Gigabyte\CloudStation\RemoteControl\grckm.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
c:\Program Files\Microsoft Security Client\NisSrv.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files (x86)\Gigabyte\CloudStation\RemoteOC\ubssrv_oc_only.exe
C:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe
C:\Program Files\Logitech Gaming Software\LCore.exe
C:\Program Files\Logitech\SetPointP\SetPoint.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe
C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Gigabyte\SmartRecovery2\RPMDaemon.exe
C:\Program Files\CCleaner\CCleaner64.exe
C:\Program Files (x86)\GIGABYTE\Smart TimeLock\AlarmClock.exe
C:\Program Files (x86)\Gigabyte\SIV\thermald.exe
C:\Windows\sysWOW64\wbem\wmiprvse.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_16_0_0_305.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_16_0_0_305.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = www.google.com
BHO: Logitech SetPoint: {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll
uRun: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
mRun: [StartCCC] "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
mRunOnce: [EasyTune] C:\Program Files (x86)\Gigabyte\EasyTune\RunOnceTask.exe
mRunOnce: [SIV] C:\Program Files (x86)\Gigabyte\SIV\RunOnceTc.exe
mRunOnce: [PreRun] C:\Program Files (x86)\Gigabyte\AppCenter\PreRun.exe
StartupFolder: C:\Users\Gerald\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\INTERS~1.LNK - C:\ProgramData\{e772cbb8-3d1e-a306-e772-2cbb83d12ee0}\interstellar-eng-6028896.exe
uPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: NoDrives = dword:0
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-Windows\System: UseOEMBackground = dword:1
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab
TCP: NameServer = 167.206.13.180 167.206.13.181
TCP: Interfaces\{29F87BE4-B545-429A-8124-336849C96825} : DHCPNameServer = 167.206.13.180 167.206.13.181
SSODL: WebCheck - <orphaned>
x64-BHO: GBHO.BHO: {45d30484-7ded-43d9-957a-d2fd1f046511} -
x64-BHO: Logitech SetPoint: {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll
x64-TB: Smart Recovery 2: {1d09c093-f71e-43c3-b948-19316cbd695e} -
x64-Run: [Launch LCore] C:\Program Files\Logitech Gaming Software\LCore.exe /minimized
x64-Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming
x64-Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
x64-RunOnce: [RPMKickstart] C:\Program Files\Gigabyte\SmartRecovery2\RPMKickstartEx.exe
x64-Notify: LBTWlgn - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
x64-SSODL: WebCheck - <orphaned>
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Gerald\AppData\Roaming\Mozilla\Firefox\Profiles\5azw04gs.default\
FF - plugin: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
FF - plugin: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll
.
============= SERVICES / DRIVERS ===============
.
R0 iaStorA;iaStorA;C:\Windows\System32\drivers\iaStorA.sys [2014-4-11 645480]
R0 iaStorF;iaStorF;C:\Windows\System32\drivers\iaStorF.sys [2014-4-11 28008]
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver;C:\Windows\System32\drivers\iusb3hcs.sys [2014-10-4 20464]
R0 MpFilter;Microsoft Malware Protection Driver;C:\Windows\System32\drivers\MpFilter.sys [2014-7-17 269008]
R1 AppleCharger;AppleCharger;C:\Windows\System32\drivers\AppleCharger.sys [2014-10-16 22240]
R1 BfLwf;Qualcomm Atheros Bandwidth Control;C:\Windows\System32\drivers\bflwfx64.sys [2013-2-13 67888]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver;C:\Windows\System32\drivers\HWiNFO64A.SYS [2015-1-1 27552]
R2 891e9dd5;TampaModule;C:\Windows\System32\rundll32.exe [2009-7-13 45568]
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2014-11-20 244736]
R2 gadjservice;GIGABYTE Adjust;C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe [2014-4-16 16384]
R2 GCloud;GCloud;C:\Program Files (x86)\Gigabyte\CloudStation\HomeCloud\GCloud.exe [2014-3-27 12800]
R2 GhFlt;GhFlt;C:\Windows\System32\drivers\ghflt.sys [2014-10-16 16856]
R2 NisDrv;Microsoft Network Inspection System;C:\Windows\System32\drivers\NisDrvWFP.sys [2014-7-17 125584]
R2 Smart TimeLock;Smart TimeLock Service;C:\Program Files (x86)\Gigabyte\Smart TimeLock\TimeMgmtDaemon.exe [2013-2-22 102400]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;C:\Windows\System32\drivers\AtihdW76.sys [2014-6-21 94720]
R3 etdrv;etdrv;C:\Windows\etdrv.sys [2014-10-16 25640]
R3 etocdrv;etocdrv;C:\Windows\etocdrv.sys [2014-10-16 15584]
R3 GVTDrv64;GVTDrv64;C:\Windows\GVTDrv64.sys [2014-10-16 30528]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2014-10-16 171632]
R3 IntcDAud;Intel(R) Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2014-10-4 450520]
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver;C:\Windows\System32\drivers\iusb3hub.sys [2014-10-4 370672]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver;C:\Windows\System32\drivers\iusb3xhc.sys [2014-10-4 791024]
R3 Ke2200;NDIS Miniport Driver for the Killer e2200 PCI-E Ethernet Controller;C:\Windows\System32\drivers\e22W7x64.sys [2013-3-20 154320]
R3 LGBusEnum;Logitech GamePanel Virtual Bus Enumerator Driver;C:\Windows\System32\drivers\LGBusEnum.sys [2009-11-23 22408]
R3 LGSHidFilt;Logitech Gaming KMDF HID Filter Driver;C:\Windows\System32\drivers\LGSHidFilt.Sys [2013-5-30 64280]
R3 LGVirHid;Logitech Gamepanel Virtual HID Device Driver;C:\Windows\System32\drivers\LGVirHid.sys [2009-11-23 16008]
R3 MBfilt;MBfilt;C:\Windows\System32\drivers\MBfilt64.sys [2014-10-4 32344]
R3 NisSrv;Microsoft Network Inspection;C:\Program Files\Microsoft Security Client\NisSrv.exe [2014-8-22 368624]
S1 UsbCharger;UsbCharger;C:\Windows\System32\drivers\UsbCharger.sys [2014-10-16 22240]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2012-7-8 104912]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2012-7-8 123856]
S3 AppleChargerSrv;AppleChargerSrv;system32\AppleChargerSrv.exe --> system32\AppleChargerSrv.exe [?]
S3 dmvsc;dmvsc;C:\Windows\System32\drivers\dmvsc.sys [2011-4-12 71168]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service;C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [2014-12-10 614624]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;C:\Windows\System32\ieetwcollector.exe [2014-8-16 111616]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2014-8-16 19456]
S3 StorSvc;Storage Service;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-13 27136]
S3 terminpt;Microsoft Remote Desktop Input Driver;C:\Windows\System32\drivers\terminpt.sys [2014-8-16 29696]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2014-8-16 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\System32\drivers\TsUsbGD.sys [2014-8-16 29696]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2014-8-16 1255736]
S4 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service;C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2014-10-4 79360]
S4 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2014-10-4 79360]
S4 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2014-4-11 16232]
S4 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service;C:\Windows\System32\igfxCUIService.exe [2014-10-4 296432]
S4 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2014-1-31 887232]
S4 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2014-3-20 154584]
S4 Qualcomm Atheros Killer Service V2;Qualcomm Atheros Killer Service V2;C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [2013-8-8 343040]
.
=============== Created Last 30 ================
.
2015-02-18 06:05:34 11910896 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{85AD0123-D014-4FA3-8F40-338083F84108}\mpengine.dll
2015-02-17 18:05:09 -------- d-----w- C:\Program Files (x86)\TampaModule
2015-02-17 18:04:50 -------- d-----w- C:\Program Files (x86)\Bing Translate To English
2015-02-17 18:04:25 -------- d-----w- C:\ProgramData\3646957502458357237
2015-02-17 18:04:25 -------- d-----w- C:\Program Files (x86)\UniiDealse
2015-02-17 18:03:58 -------- d-----w- C:\ProgramData\{e772cbb8-3d1e-a306-e772-2cbb83d12ee0}
2015-02-16 14:47:01 11870360 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2015-02-11 14:17:36 1188440 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{7F0FB120-C6D4-48BB-8F07-7511B8093E6A}\gapaengine.dll
2015-02-09 18:36:38 -------- d-----w- C:\Users\Gerald\AppData\Roaming\library_dir
2015-02-09 18:36:25 -------- d-----w- C:\Program Files (x86)\AMD AVT
2015-02-09 18:36:15 -------- d-----w- C:\Program Files (x86)\AMD
2015-02-03 18:39:23 -------- d-----w- C:\Program Files\CCleaner
.
==================== Find3M ====================
.
2015-02-19 00:29:13 129752 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys
2015-02-19 00:07:14 25640 ----a-w- C:\Windows\gdrv.sys
2015-02-19 00:07:12 25640 ----a-w- C:\Windows\etdrv.sys
2015-02-19 00:04:35 30528 ----a-w- C:\Windows\GVTDrv64.sys
2015-02-07 00:50:44 71344 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2015-02-07 00:50:44 701616 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2015-01-25 03:27:57 18960 ----a-w- C:\Windows\System32\drivers\LNonPnP.sys
2015-01-02 01:25:46 27552 ----a-w- C:\Windows\System32\drivers\HWiNFO64A.SYS
2014-11-21 11:14:22 63704 ----a-w- C:\Windows\System32\drivers\mwac.sys
2014-11-21 11:14:12 93400 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys
2014-11-21 11:14:08 25816 ----a-w- C:\Windows\System32\drivers\mbam.sys
2014-11-21 02:44:42 78432 ----a-w- C:\Windows\System32\atimpc64.dll
2014-11-21 02:44:42 78432 ----a-w- C:\Windows\System32\amdpcom64.dll
2014-11-21 02:44:40 71704 ----a-w- C:\Windows\SysWow64\atimpc32.dll
2014-11-21 02:44:40 71704 ----a-w- C:\Windows\SysWow64\amdpcom32.dll
2014-11-21 02:44:28 144328 ----a-w- C:\Windows\System32\atiuxp64.dll
2014-11-21 02:44:26 126848 ----a-w- C:\Windows\SysWow64\atiuxpag.dll
2014-11-21 02:44:24 118096 ----a-w- C:\Windows\System32\atiu9p64.dll
2014-11-21 02:44:22 100032 ----a-w- C:\Windows\SysWow64\atiu9pag.dll
2014-11-21 02:44:20 1348928 ----a-w- C:\Windows\System32\aticfx64.dll
2014-11-21 02:44:16 1127496 ----a-w- C:\Windows\SysWow64\aticfx32.dll
2014-11-21 02:44:10 11076784 ----a-w- C:\Windows\System32\atidxx64.dll
2014-11-21 02:44:04 9401480 ----a-w- C:\Windows\SysWow64\atidxx32.dll
2014-11-21 02:43:56 7558816 ----a-w- C:\Windows\SysWow64\atiumdva.dll
2014-11-21 02:43:50 7077776 ----a-w- C:\Windows\SysWow64\atiumdag.dll
2014-11-21 02:43:42 8379720 ----a-w- C:\Windows\System32\atiumd6a.dll
2014-11-21 02:43:38 8369408 ----a-w- C:\Windows\System32\atiumd64.dll
2014-11-21 02:41:36 294600 ----a-w- C:\Windows\System32\drivers\amdacpksd.sys
2014-11-21 02:40:00 18959360 ----a-w- C:\Windows\System32\drivers\atikmdag.sys
2014-11-21 02:36:32 51200 ----a-w- C:\Windows\System32\kdbsdk64.dll
2014-11-21 02:35:00 38912 ----a-w- C:\Windows\SysWow64\kdbsdk32.dll
2014-11-21 02:33:12 235008 ----a-w- C:\Windows\System32\clinfo.exe
2014-11-21 02:33:06 98816 ----a-w- C:\Windows\System32\OpenVideo64.dll
2014-11-21 02:33:06 83456 ----a-w- C:\Windows\SysWow64\OpenVideo.dll
2014-11-21 02:33:04 86528 ----a-w- C:\Windows\System32\OVDecode64.dll
2014-11-21 02:33:02 73216 ----a-w- C:\Windows\SysWow64\OVDecode.dll
2014-11-21 02:33:00 47899136 ----a-w- C:\Windows\System32\amdocl64.dll
2014-11-21 02:32:08 40987136 ----a-w- C:\Windows\SysWow64\amdocl.dll
2014-11-21 02:31:18 65024 ----a-w- C:\Windows\System32\OpenCL.dll
2014-11-21 02:31:16 58880 ----a-w- C:\Windows\SysWow64\OpenCL.dll
2014-11-21 02:24:50 28354560 ----a-w- C:\Windows\System32\atio6axx.dll
2014-11-21 02:19:36 23621632 ----a-w- C:\Windows\SysWow64\atioglxx.dll
2014-11-21 02:19:26 49664 ----a-w- C:\Windows\System32\amdmmcl6.dll
2014-11-21 02:19:22 38912 ----a-w- C:\Windows\SysWow64\amdmmcl.dll
2014-11-21 02:18:46 127488 ----a-w- C:\Windows\System32\mantle64.dll
2014-11-21 02:18:42 113664 ----a-w- C:\Windows\SysWow64\mantle32.dll
2014-11-21 02:18:36 5837312 ----a-w- C:\Windows\System32\amdmantle64.dll
2014-11-21 02:17:04 367104 ----a-w- C:\Windows\System32\atiapfxx.exe
2014-11-21 02:17:02 62464 ----a-w- C:\Windows\System32\aticalrt64.dll
2014-11-21 02:17:02 52224 ----a-w- C:\Windows\SysWow64\aticalrt.dll
2014-11-21 02:16:58 55808 ----a-w- C:\Windows\System32\aticalcl64.dll
2014-11-21 02:16:58 49152 ----a-w- C:\Windows\SysWow64\aticalcl.dll
2014-11-21 02:16:52 15716352 ----a-w- C:\Windows\System32\aticaldd64.dll
2014-11-21 02:16:04 14302208 ----a-w- C:\Windows\SysWow64\aticaldd.dll
2014-11-21 02:15:42 4590592 ----a-w- C:\Windows\SysWow64\amdmantle32.dll
2014-11-21 02:13:12 91648 ----a-w- C:\Windows\System32\mantleaxl64.dll
2014-11-21 02:13:10 85504 ----a-w- C:\Windows\SysWow64\mantleaxl32.dll
2014-11-21 02:12:50 442368 ----a-w- C:\Windows\System32\atidemgy.dll
2014-11-21 02:12:50 31232 ----a-w- C:\Windows\System32\atimuixx.dll
2014-11-21 02:12:48 774656 ----a-w- C:\Windows\System32\atieclxx.exe
2014-11-21 02:12:40 244736 ----a-w- C:\Windows\System32\atiesrxx.exe
2014-11-21 02:12:26 190976 ----a-w- C:\Windows\System32\atitmm64.dll
2014-11-21 02:10:02 843776 ----a-w- C:\Windows\System32\coinst_14.50.dll
2014-11-21 02:09:06 1214976 ----a-w- C:\Windows\System32\atiadlxx.dll
2014-11-21 02:09:04 903168 ----a-w- C:\Windows\SysWow64\atiadlxy.dll
2014-11-21 02:09:00 75264 ----a-w- C:\Windows\System32\atig6pxx.dll
2014-11-21 02:09:00 69632 ----a-w- C:\Windows\SysWow64\atiglpxx.dll
2014-11-21 02:09:00 69632 ----a-w- C:\Windows\System32\atiglpxx.dll
2014-11-21 02:08:58 146944 ----a-w- C:\Windows\System32\atig6txx.dll
2014-11-21 02:08:56 133632 ----a-w- C:\Windows\SysWow64\atigktxx.dll
2014-11-21 02:08:54 589312 ----a-w- C:\Windows\System32\drivers\atikmpag.sys
2014-11-21 02:08:54 43520 ----a-w- C:\Windows\System32\drivers\ati2erec.dll
.
============= FINISH: 19:39:18.42 ===============
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 10/4/2014 2:45:47 PM
System Uptime: 2/18/2015 7:04:04 PM (0 hours ago)
.
Motherboard: Gigabyte Technology Co., Ltd. | | Z97X-Gaming 7
Processor: Intel(R) Core(TM) i7-4790K CPU @ 4.00GHz | SOCKET 0 | 4000/100mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 112 GiB total, 29.522 GiB free.
D: is CDROM (CDFS)
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP190: 2/18/2015 1:56:41 AM - Software Distribution Service 3.0
RP191: 2/18/2015 5:53:34 PM - Software Distribution Service 3.0
.
==== Installed Programs ======================
.
@Bios B14.0418.1
3DMark
3DP Chip v14.08
Adobe Flash Player 15 ActiveX
Adobe Flash Player 16 NPAPI
AMD Accelerated Video Transcoding
AMD Catalyst Control Center
AMD Catalyst Install Manager
AMD Drag and Drop Transcoding
AMD Wireless Display v3.0
APP Center
Bing Translate To English
Bonjour
BUSB
Catalyst Control Center - Branding
Catalyst Control Center Graphics Previews Common
Catalyst Control Center Localization All
CCC Help Chinese Standard
CCC Help Chinese Traditional
CCC Help Czech
CCC Help Danish
CCC Help Dutch
CCC Help English
CCC Help Finnish
CCC Help French
CCC Help German
CCC Help Greek
CCC Help Hungarian
CCC Help Italian
CCC Help Japanese
CCC Help Korean
CCC Help Norwegian
CCC Help Polish
CCC Help Portuguese
CCC Help Russian
CCC Help Spanish
CCC Help Swedish
CCC Help Thai
CCC Help Turkish
CCleaner
Cloud Station
Core Temp 1.0 RC6
CPUID CPU-Z 1.71
EasyTune
ESET Online Scanner v3
EZSetup B14.0416.1
Fast Boot
Futuremark SystemInfo
GameCtrl B14.0410.1
Intel(R) Chipset Device Software
Intel(R) Management Engine Components
Intel(R) Processor Graphics
Intel(R) Rapid Storage Technology
Intel(R) USB 3.0 eXtensible Host Controller Driver
Intel® Trusted Connect Service Client
Logitech Gaming Software
Logitech Gaming Software 8.56
Logitech SetPoint 6.65
Malwarebytes Anti-Malware version 2.0.4.1028
marvell 91xx driver
MechWarrior Online
Microsoft .NET Framework 4.5
Microsoft Security Client
Microsoft Security Essentials
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727
Mozilla Firefox 35.0.1 (x86 en-US)
Mozilla Maintenance Service
MSI Afterburner 4.0.0
ON_OFF Charge 2 B14.0217.1
PerformanceTest v7.0 (64-bit)
Qualcomm Atheros Bandwidth Control Filter Driver
Qualcomm Atheros Killer E220x Drivers
Qualcomm Atheros Killer Network Manager Suite
Qualcomm Atheros Network Manager
Realtek High Definition Audio Driver
RivaTuner Statistics Server 6.2.0
SIV
Smart Recovery 2 B14.0418.3 (x64)
Smart TimeLock B14.0416.2
Sound Blaster X-Fi MB3
TeamSpeak 3 Client
VLC media player
WhoCrashed 5.02
WizTree v1.07
.
==== Event Viewer Messages From Past Week ========
.
2/18/2015 7:04:23 PM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: UsbCharger
2/18/2015 5:37:18 PM, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.193.139.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.11400.0 Error code: 0x800700d8 Error description: This version of the software is not compatible with the version of Windows you're running. Check your computer's system information to see whether you need a x86 (32-bit) or x64 (64-bit) version of the program, and then contact the software publisher.
2/18/2015 4:08:49 PM, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.193.139.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.11400.0 Error code: 0x800700d8 Error description: This version of the software is not compatible with the version of Windows you're running. Check your computer's system information to see whether you need a x86 (32-bit) or x64 (64-bit) version of the program, and then contact the software publisher.
2/18/2015 3:58:23 PM, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.193.139.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.11400.0 Error code: 0x800700d8 Error description: This version of the software is not compatible with the version of Windows you're running. Check your computer's system information to see whether you need a x86 (32-bit) or x64 (64-bit) version of the program, and then contact the software publisher.
2/18/2015 3:57:04 PM, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.193.139.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.11400.0 Error code: 0x800700d8 Error description: This version of the software is not compatible with the version of Windows you're running. Check your computer's system information to see whether you need a x86 (32-bit) or x64 (64-bit) version of the program, and then contact the software publisher.
2/18/2015 1:05:21 AM, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.191.5077.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.11302.0 Error code: 0x800700d8 Error description: This version of the software is not compatible with the version of Windows you're running. Check your computer's system information to see whether you need a x86 (32-bit) or x64 (64-bit) version of the program, and then contact the software publisher.
2/17/2015 8:28:17 AM, Error: Microsoft-Windows-HttpEvent [15005] - Unable to bind to the underlying transport for 169.254.208.75:8988. The IP Listen-Only list may contain a reference to an interface which may not exist on this machine. The data field contains the error number.
2/16/2015 9:46:58 AM, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.191.5019.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.11302.0 Error code: 0x800700d8 Error description: This version of the software is not compatible with the version of Windows you're running. Check your computer's system information to see whether you need a x86 (32-bit) or x64 (64-bit) version of the program, and then contact the software publisher.
2/16/2015 8:32:57 AM, Error: Service Control Manager [7000] - The etdrv service failed to start due to the following error: The process cannot access the file because it is being used by another process.
2/15/2015 1:30:52 PM, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.191.4952.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.11302.0 Error code: 0x800700d8 Error description: This version of the software is not compatible with the version of Windows you're running. Check your computer's system information to see whether you need a x86 (32-bit) or x64 (64-bit) version of the program, and then contact the software publisher.
2/14/2015 9:21:20 AM, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.191.4848.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.11302.0 Error code: 0x800700d8 Error description: This version of the software is not compatible with the version of Windows you're running. Check your computer's system information to see whether you need a x86 (32-bit) or x64 (64-bit) version of the program, and then contact the software publisher.
2/13/2015 7:51:46 AM, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.191.4651.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.11302.0 Error code: 0x800700d8 Error description: This version of the software is not compatible with the version of Windows you're running. Check your computer's system information to see whether you need a x86 (32-bit) or x64 (64-bit) version of the program, and then contact the software publisher.
2/11/2015 9:17:26 AM, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.191.4502.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.11302.0 Error code: 0x800700d8 Error description: This version of the software is not compatible with the version of Windows you're running. Check your computer's system information to see whether you need a x86 (32-bit) or x64 (64-bit) version of the program, and then contact the software publisher.
.
==== End Of File ===========================