TechSpot

Super lag while playing games... sort of (see inside)

By scraypeeraypees
Aug 14, 2011
  1. Hi, recently I've been been trying to play a few games with friends over steam/origin and I've encountered quite the problem. WoW runs perfectly fine 60+ fps everywhere and Magicka, Borderlands, Battlefield: BC2 all will play perfectly (45+fps) for about 10 minutes and then they will begin to lag beyond use. I'm talking lag to the point where you get mad at how long it takes to exit the game.

    I've run Avira and MBAM and have found absolutely nothing.

    Might want to add that I have played these games before with absolutely NO problem/lag what so ever and to encounter it now is just annoying :p
     
  2. Bobbye

    Bobbye Helper on the Fringe Posts: 16,335   +36

    Welcome to TechSpot! You have posted in the Virus and Malware Forum. What we do here is try to find and remove malware- or rule it out. If you are not looking to do this, please let me know and I'll have your thread moved to a more appropriate forum.

    If you would like us to check the system for malware, please follow the steps in the Preliminary Virus and Malware Removal thread HERE.

    NOTE: If you already have any of the scanning programs on the computer, please remove them and download the versions in these links.

    When you have finished, leave the logs for review in your next reply .
    NOTE: Logs must be pasted in the replies. Attached logs will not be reviewed.
    ==============================================
    My Guidelines: please read and follow:
    • Be patient. Malware cleaning takes time and I am also working with other members while I am helping you.
    • Read my instructions carefully. If you don't understand or have a problem, ask me.
    • If you have questions, or if a program doesn't work, stop and tell me about it. Don't try to get around it yourself.
    • Follow the order of the tasks I give you. Order is crucial in cleaning process.
    • File sharing programs should be uninstalled or disabled during the cleaning process..
    • Observe these:
      [o] Don't use any other cleaning programs or scans while I'm helping you.
      [o] Don't use a Registry cleaner or make any changes in the Registry.
      [o] Don't download and install new programs- except those I give you.
    • Please let me know if there is any change in the system.

    If I don't get a reply from you in 5 days, the thread will be closed. If your problem persist, you can send a PM to reopen it.
    =====================================
     
  3. scraypeeraypees

    scraypeeraypees TS Rookie Topic Starter

    Malwarebytes' Anti-Malware 1.51.1.1800
    www.malwarebytes.org

    Database version: 7424

    Windows 6.0.6002 Service Pack 2
    Internet Explorer 7.0.6002.18005

    8/14/2011 9:20:27 PM
    mbam-log-2011-08-14 (21-20-27).txt

    Scan type: Quick scan
    Objects scanned: 182485
    Time elapsed: 4 minute(s), 28 second(s)

    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 0
    Registry Values Infected: 0
    Registry Data Items Infected: 0
    Folders Infected: 0
    Files Infected: 0

    Memory Processes Infected:
    (No malicious items detected)

    Memory Modules Infected:
    (No malicious items detected)

    Registry Keys Infected:
    (No malicious items detected)

    Registry Values Infected:
    (No malicious items detected)

    Registry Data Items Infected:
    (No malicious items detected)

    Folders Infected:
    (No malicious items detected)

    Files Infected:
    (No malicious items detected)


    Malwarebytes' Anti-Malware 1.51.1.1800
    www.malwarebytes.org

    Database version: 7424

    Windows 6.0.6002 Service Pack 2
    Internet Explorer 7.0.6002.18005

    8/14/2011 9:20:27 PM
    mbam-log-2011-08-14 (21-20-27).txt

    Scan type: Quick scan
    Objects scanned: 182485
    Time elapsed: 4 minute(s), 28 second(s)

    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 0
    Registry Values Infected: 0
    Registry Data Items Infected: 0
    Folders Infected: 0
    Files Infected: 0

    Memory Processes Infected:
    (No malicious items detected)

    Memory Modules Infected:
    (No malicious items detected)

    Registry Keys Infected:
    (No malicious items detected)

    Registry Values Infected:
    (No malicious items detected)

    Registry Data Items Infected:
    (No malicious items detected)

    Folders Infected:
    (No malicious items detected)

    Files Infected:
    (No malicious items detected)

    GMER had no findings so the log was just a blank log file.
     
  4. scraypeeraypees

    scraypeeraypees TS Rookie Topic Starter

    .
    DDS (Ver_2011-06-23.01) - NTFSAMD64
    Internet Explorer: 7.0.6002.18005
    Run by Tyler at 21:46:30 on 2011-08-14
    Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.1.1033.18.4094.2311 [GMT -5:00]
    .
    AV: AntiVir Desktop *Disabled/Outdated* {090F9C29-64CE-6C6F-379C-5901B49A85B7}
    SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    SP: AntiVir Desktop *Disabled/Outdated* {B26E7DCD-42F4-63E1-0D2C-6273CF1DCF0A}
    .
    ============== Running Processes ===============
    .
    C:\Windows\system32\wininit.exe
    C:\Windows\system32\lsm.exe
    C:\Windows\system32\svchost.exe -k DcomLaunch
    C:\Windows\system32\nvvsvc.exe
    C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
    C:\Windows\system32\svchost.exe -k rpcss
    C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
    C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
    C:\Windows\system32\svchost.exe -k netsvcs
    C:\Windows\system32\SLsvc.exe
    C:\Windows\system32\svchost.exe -k LocalService
    C:\Windows\system32\svchost.exe -k NetworkService
    C:\Windows\System32\spoolsv.exe
    C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
    C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
    C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
    C:\Windows\system32\nvvsvc.exe
    C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
    C:\Windows\SysWOW64\PnkBstrA.exe
    C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
    C:\Windows\SysWOW64\rpcnet.exe
    C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
    C:\Windows\System32\svchost.exe -k WerSvcGroup
    C:\Windows\system32\SearchIndexer.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\Explorer.EXE
    C:\Program Files (x86)\ASUS\Direct Console\DCHelper.exe
    C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
    C:\Windows\sysWOW64\wbem\wmiprvse.exe
    C:\Windows\RAVCpl64.exe
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\Program Files (x86)\Origin\Origin.exe
    C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
    C:\Program Files (x86)\ASUS\Direct Console\Direct Console.exe
    C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
    C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
    C:\Windows\system32\wbem\unsecapp.exe
    C:\Windows\system32\wbem\wmiprvse.exe
    C:\Windows\sysWOW64\wbem\wmiprvse.exe
    C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
    C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
    C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
    C:\Users\Tyler\AppData\Local\Google\Chrome\Application\chrome.exe
    C:\Users\Tyler\AppData\Local\Google\Chrome\Application\chrome.exe
    C:\Windows\SysWOW64\rundll32.exe
    C:\Users\Tyler\AppData\Local\Google\Chrome\Application\chrome.exe
    C:\Users\Tyler\AppData\Local\Google\Chrome\Application\chrome.exe
    C:\Users\Tyler\AppData\Local\Google\Chrome\Application\chrome.exe
    C:\Users\Tyler\AppData\Local\Google\Chrome\Application\chrome.exe
    C:\Windows\system32\SearchProtocolHost.exe
    C:\Windows\system32\SearchFilterHost.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\SysWOW64\cmd.exe
    C:\Windows\SysWOW64\cscript.exe
    C:\Windows\system32\wbem\wmiprvse.exe
    .
    ============== Pseudo HJT Report ===============
    .
    uStart Page = hxxp://www.google.com/ig/redirectdomain?brand=ASUS&bmod=ASUS
    mStart Page = hxxp://www.google.com/ig/redirectdomain?brand=ASUS&bmod=ASUS
    BHO: {7E853D72-626A-48EC-A868-BA8D5E23E045} - No File
    BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
    uRun: [Dxtory Update Checker 2.0] C:\Program Files (x86)\Dxtory Software\Dxtory2.0\UpdateChecker.exe
    uRun: [EADM] "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart
    mRun: [DirectConsole2] C:\Program Files (x86)\ASUS\Direct Console\Direct Console.exe
    mRun: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
    mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
    mPolicies-explorer: BindDirectlyToPropertySetStorage = 0 (0x0)
    mPolicies-system: EnableLUA = 0 (0x0)
    mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
    IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
    IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
    DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} - hxxp://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab
    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
    DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab
    TCP: DhcpNameServer = 24.177.176.38 97.81.22.195 24.178.162.3
    TCP: Interfaces\{2EC49E8B-D99C-42AE-BB3F-6EAE3C303208} : DhcpNameServer = 24.177.176.38 97.81.22.195 24.178.162.3
    TCP: Interfaces\{E0B1D177-D8A8-4EFF-807F-55F01C2ECEC3} : DhcpNameServer = 24.177.176.38 97.81.22.195 24.178.162.3
    AppInit_DLLs: C:\PROGRA~2\Google\GOOGLE~1\GoogleDesktopNetwork3.dll
    BHO-X64: {7E853D72-626A-48EC-A868-BA8D5E23E045} - No File
    BHO-X64: Windows Live Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    BHO-X64: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
    mRun-x64: [DirectConsole2] C:\Program Files (x86)\ASUS\Direct Console\Direct Console.exe
    mRun-x64: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
    mRun-x64: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
    AppInit_DLLs-X64: C:\PROGRA~2\Google\GOOGLE~1\GoogleDesktopNetwork3.dll
    .
    ============= SERVICES / DRIVERS ===============
    .
    R2 AntiVirSchedulerService;Avira AntiVir Scheduler;C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2011-8-9 136360]
    R2 AntiVirService;Avira AntiVir Guard;C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2011-8-9 269480]
    R2 avgntflt;avgntflt;C:\Windows\system32\DRIVERS\avgntflt.sys --> C:\Windows\system32\DRIVERS\avgntflt.sys [?]
    R2 FontCache;Windows Font Cache Service;C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [2008-1-20 21504]
    R2 nvUpdatusService;NVIDIA Update Service Daemon;C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-8-10 2255464]
    R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-8-3 379496]
    R3 DAdderFltr;DeathAdder Mouse;C:\Windows\system32\drivers\dadder.sys --> C:\Windows\system32\drivers\dadder.sys [?]
    R3 itecir;ITECIR Infrared Receiver;C:\Windows\system32\DRIVERS\itecir.sys --> C:\Windows\system32\DRIVERS\itecir.sys [?]
    R3 NETw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;C:\Windows\system32\DRIVERS\NETw5v64.sys --> C:\Windows\system32\DRIVERS\NETw5v64.sys [?]
    R3 NVHDA;Service for NVIDIA High Definition Audio Driver;C:\Windows\system32\drivers\nvhda64v.sys --> C:\Windows\system32\drivers\nvhda64v.sys [?]
    S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
    S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
    S3 PerfHost;Performance Counter DLL Host;C:\Windows\SysWOW64\perfhost.exe [2008-1-20 19968]
    S3 RivaTuner64;RivaTuner64;C:\Program Files (x86)\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner64.sys [2009-8-22 19952]
    S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-3-18 1020768]
    S3 yukonx64;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller;C:\Windows\system32\DRIVERS\yk60x64.sys --> C:\Windows\system32\DRIVERS\yk60x64.sys [?]
    S4 clr_optimization_v2.0.50727_64;Microsoft .NET Framework NGEN v2.0.50727_X64;C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe [2011-7-26 89920]
    .
    =============== Created Last 30 ================
    .
    2011-08-10 09:45:56 -------- d-----w- C:\Program Files (x86)\NVIDIA Corporation
    2011-08-10 09:45:29 980072 ----a-w- C:\Windows\System32\nvvsvc.exe
    2011-08-10 09:45:29 836200 ----a-w- C:\Windows\System32\easyupdatusapiu64.dll
    2011-08-10 09:45:29 61544 ----a-w- C:\Windows\System32\nvshext.dll
    2011-08-10 09:45:29 6136936 ----a-w- C:\Windows\System32\nvcpl.dll
    2011-08-10 09:45:29 335976 ----a-w- C:\Windows\System32\nvhotkey.dll
    2011-08-10 09:45:29 3021416 ----a-w- C:\Windows\System32\nvsvc64.dll
    2011-08-10 09:45:29 2560616 ----a-w- C:\Windows\System32\nvsvcr.dll
    2011-08-10 09:45:29 117864 ----a-w- C:\Windows\System32\nvmctray.dll
    2011-08-10 09:42:44 29288 ----a-w- C:\Windows\System32\nvhdap64.dll
    2011-08-10 09:42:44 174184 ----a-w- C:\Windows\System32\drivers\nvhda64v.sys
    2011-08-10 09:42:43 1426536 ----a-w- C:\Windows\System32\nvhdagenco642040.dll
    2011-08-10 09:42:42 70760 ----a-w- C:\Windows\System32\nvapo64v.dll
    2011-08-10 09:33:10 -------- d-----w- C:\ProgramData\NVIDIA Corporation
    2011-08-10 09:30:33 -------- d-----w- C:\Program Files\NVIDIA Corporation
    2011-08-10 09:25:30 404640 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
    2011-08-10 08:50:27 -------- d-----w- C:\Users\Tyler\AppData\Local\Adobe
    2011-08-10 08:32:34 -------- d-----w- C:\Program Files (x86)\Foxit Software
    2011-08-10 07:50:52 -------- d-----w- C:\$RECYCLE.BIN
    2011-08-10 07:41:50 -------- d-----w- C:\ComboFix
    2011-08-10 07:17:07 -------- d-----w- C:\2dfcd969581f099dbdd650082ae8
    2011-08-10 07:10:49 518144 ----a-w- C:\Windows\SWREG.exe
    2011-08-10 07:10:49 256000 ----a-w- C:\Windows\PEV.exe
    2011-08-10 07:10:49 208896 ----a-w- C:\Windows\MBR.exe
    2011-08-10 07:10:48 98816 ----a-w- C:\Windows\sed.exe
    2011-08-10 06:09:14 -------- d-----w- C:\Users\Tyler\AppData\Roaming\Malwarebytes
    2011-08-10 06:09:06 41272 ----a-w- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
    2011-08-10 06:09:05 -------- d-----w- C:\ProgramData\Malwarebytes
    2011-08-10 06:09:01 25912 ----a-w- C:\Windows\System32\drivers\mbam.sys
    2011-08-10 06:09:01 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
    2011-08-10 04:55:05 -------- d-----w- C:\Users\Tyler\AppData\Roaming\Avira
    2011-08-10 04:51:37 83120 ----a-w- C:\Windows\System32\drivers\avgntflt.sys
    2011-08-10 04:51:37 -------- d-----w- C:\ProgramData\Avira
    2011-08-10 04:51:37 -------- d-----w- C:\Program Files (x86)\Avira
    2011-08-10 04:13:58 280736 ----a-w- C:\Windows\SysWow64\PnkBstrB.xtr
    2011-08-10 04:13:55 -------- d-----w- C:\Users\Tyler\AppData\Local\PunkBuster
    2011-08-10 04:09:39 280736 ----a-w- C:\Windows\SysWow64\PnkBstrB.exe
    2011-08-10 04:09:39 215128 ----a-w- C:\Windows\SysWow64\PnkBstrB.ex0
    2011-08-10 04:09:38 75136 ----a-w- C:\Windows\SysWow64\PnkBstrA.exe
    2011-08-10 04:09:37 2434856 ----a-w- C:\Windows\SysWow64\pbsvc_bc2.exe
    2011-08-10 00:43:09 -------- d-----w- C:\Users\Tyler\AppData\Roaming\Origin
    2011-08-10 00:42:51 -------- d-----w- C:\Users\Tyler\AppData\Local\Origin
    2011-08-10 00:42:36 -------- d-----w- C:\ProgramData\Origin
    2011-08-10 00:42:36 -------- d-----w- C:\ProgramData\Electronic Arts
    2011-08-10 00:42:36 -------- d-----w- C:\Program Files (x86)\Origin Games
    2011-08-10 00:42:14 -------- d-----w- C:\Program Files (x86)\Origin
    2011-08-09 20:16:07 2409784 ----a-w- C:\Program Files\Windows Mail\OESpamFilter.dat
    2011-08-09 20:16:07 2409784 ----a-w- C:\Program Files (x86)\Windows Mail\OESpamFilter.dat
    2011-08-09 20:16:05 451072 ----a-w- C:\Windows\System32\winsrv.dll
    2011-08-09 20:16:04 275456 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys
    2011-08-09 20:16:03 1427344 ----a-w- C:\Windows\System32\drivers\tcpip.sys
    2011-08-09 07:16:21 8578896 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{048D2C9D-CE3F-43BB-9021-185977250467}\mpengine.dll
    2011-08-03 08:31:54 311912 ----a-w- C:\Windows\SysWow64\nvStreaming.exe
    2011-07-31 01:02:31 -------- d-----w- C:\Program Files (x86)\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition
    2011-07-31 00:12:27 -------- d-----w- C:\Users\Tyler\AppData\Roaming\NVIDIA
    2011-07-28 04:50:15 -------- d-----w- C:\Program Files\Ventrilo
    2011-07-28 04:49:46 -------- d-----w- C:\Program Files (x86)\Common Files\Wise Installation Wizard
    2011-07-27 08:17:39 -------- d-----w- C:\Users\Tyler\AppData\Local\Dxtory Software
    2011-07-27 08:17:38 3849728 ----a-w- C:\Windows\System32\DxtoryCodec64.dll
    2011-07-27 08:17:38 3278336 ----a-w- C:\Windows\SysWow64\DxtoryCodec.dll
    2011-07-27 08:17:37 -------- d-----w- C:\Program Files (x86)\Dxtory Software
    2011-07-27 06:20:33 876032 ----a-w- C:\Windows\SysWow64\XpsPrint.dll
    2011-07-27 06:20:33 1653760 ----a-w- C:\Windows\System32\XpsPrint.dll
    2011-07-27 06:09:09 -------- d-----w- C:\Windows\SysWow64\spool
    2011-07-27 06:09:09 -------- d-----w- C:\Program Files (x86)\Windows Portable Devices
    2011-07-27 06:09:08 -------- d-----w- C:\Program Files\Windows Portable Devices
    2011-07-27 06:06:58 167424 ----a-w- C:\Program Files\Windows Portable Devices\sqmapi.dll
    2011-07-27 05:47:31 92672 ----a-w- C:\Windows\SysWow64\UIAnimation.dll
    2011-07-27 05:47:31 103424 ----a-w- C:\Windows\System32\UIAnimation.dll
    2011-07-27 05:47:30 3815424 ----a-w- C:\Windows\System32\UIRibbon.dll
    2011-07-27 05:47:30 3023360 ----a-w- C:\Windows\SysWow64\UIRibbon.dll
    2011-07-27 05:47:30 1164800 ----a-w- C:\Windows\SysWow64\UIRibbonRes.dll
    2011-07-27 05:47:30 1164800 ----a-w- C:\Windows\System32\UIRibbonRes.dll
    2011-07-27 05:45:59 479744 ----a-w- C:\Windows\System32\XpsGdiConverter.dll
    2011-07-27 05:45:59 288768 ----a-w- C:\Windows\SysWow64\XpsGdiConverter.dll
    2011-07-27 05:45:58 1555968 ----a-w- C:\Windows\System32\DWrite.dll
    2011-07-27 05:45:58 1149440 ----a-w- C:\Windows\System32\FntCache.dll
    2011-07-27 05:45:58 1068544 ----a-w- C:\Windows\SysWow64\DWrite.dll
    2011-07-27 05:45:53 316928 ----a-w- C:\Windows\System32\msshsq.dll
    2011-07-27 05:45:53 231424 ----a-w- C:\Windows\SysWow64\msshsq.dll
    2011-07-27 05:04:28 -------- d-----w- C:\Windows\SysWow64\vi-VN
    2011-07-27 05:04:28 -------- d-----w- C:\Windows\SysWow64\eu-ES
    2011-07-27 05:04:28 -------- d-----w- C:\Windows\SysWow64\ca-ES
    2011-07-27 05:04:28 -------- d-----w- C:\Windows\System32\vi-VN
    2011-07-27 05:04:28 -------- d-----w- C:\Windows\System32\eu-ES
    2011-07-27 05:04:28 -------- d-----w- C:\Windows\System32\ca-ES
    2011-07-27 04:22:58 -------- d-----w- C:\Windows\System32\EventProviders
    2011-07-27 03:49:53 -------- d-----w- C:\Windows\SysWow64\directx
    2011-07-27 03:28:02 12240896 ----a-w- C:\Windows\SysWow64\NlsLexicons0007.dll
    2011-07-27 03:28:02 12240896 ----a-w- C:\Windows\System32\NlsLexicons0007.dll
    2011-07-27 03:26:59 88064 ----a-w- C:\Windows\SysWow64\fdBth.dll
    2011-07-27 03:25:59 98816 ----a-w- C:\Windows\System32\drivers\dxg.sys
    2011-07-27 03:24:55 891392 ----a-w- C:\Windows\System32\wbem\fastprox.dll
    2011-07-27 03:24:55 43520 ----a-w- C:\Windows\System32\wbem\wbemprox.dll
    2011-07-27 03:24:55 1172992 ----a-w- C:\Windows\System32\wbem\wbemcore.dll
    2011-07-27 03:24:54 936448 ----a-w- C:\Windows\System32\SmiEngine.dll
    2011-07-27 03:24:50 293888 ----a-w- C:\Windows\System32\wdscore.dll
    2011-07-27 03:24:50 138752 ----a-w- C:\Windows\System32\PkgMgr.exe
    2011-07-27 03:24:39 315904 ----a-w- C:\Windows\System32\drvstore.dll
    2011-07-27 03:24:26 -------- d-----w- C:\Program Files (x86)\SystemRequirementsLab
    2011-07-27 03:22:50 472808 ----a-w- C:\Windows\SysWow64\deployJava1.dll
    2011-07-27 03:21:17 442368 ----a-w- C:\Windows\System32\winhttp.dll
    2011-07-27 03:21:17 377344 ----a-w- C:\Windows\SysWow64\winhttp.dll
    2011-07-27 03:21:15 28160 ----a-w- C:\Windows\System32\drivers\en-US\http.sys.mui
    2011-07-27 03:20:31 9728 ----a-w- C:\Windows\SysWow64\sscore.dll
    2011-07-27 03:20:31 179712 ----a-w- C:\Windows\System32\srvsvc.dll
    2011-07-27 03:20:31 17920 ----a-w- C:\Windows\SysWow64\netevent.dll
    2011-07-27 03:20:31 17920 ----a-w- C:\Windows\System32\netevent.dll
    2011-07-27 03:20:31 12288 ----a-w- C:\Windows\System32\sscore.dll
    2011-07-27 03:15:30 99176 ----a-w- C:\Windows\SysWow64\PresentationHostProxy.dll
    2011-07-27 03:15:30 49472 ----a-w- C:\Windows\SysWow64\netfxperf.dll
    2011-07-27 03:15:30 444752 ----a-w- C:\Windows\System32\mscoree.dll
    2011-07-27 03:15:30 320352 ----a-w- C:\Windows\System32\PresentationHost.exe
    2011-07-27 03:15:30 297808 ----a-w- C:\Windows\SysWow64\mscoree.dll
    2011-07-27 03:15:30 295264 ----a-w- C:\Windows\SysWow64\PresentationHost.exe
    2011-07-27 03:15:30 1130824 ----a-w- C:\Windows\SysWow64\dfshim.dll
    2011-07-27 03:15:30 109912 ----a-w- C:\Windows\System32\PresentationHostProxy.dll
    2011-07-27 03:15:29 48960 ----a-w- C:\Windows\System32\netfxperf.dll
    2011-07-27 03:15:29 1942856 ----a-w- C:\Windows\System32\dfshim.dll
    2011-07-26 23:39:54 -------- d-----w- C:\NVIDIA
    2011-07-26 23:17:59 409960 ----a-w- C:\Windows\System32\xactengine2_8.dll
    2011-07-26 23:16:14 81768 ----a-w- C:\Windows\SysWow64\xinput1_3.dll
    2011-07-26 23:16:14 517448 ----a-w- C:\Windows\SysWow64\XAudio2_4.dll
    2011-07-26 23:16:14 235352 ----a-w- C:\Windows\SysWow64\xactengine3_4.dll
    2011-07-26 23:16:14 22360 ----a-w- C:\Windows\SysWow64\X3DAudio1_6.dll
    2011-07-26 23:16:13 3495784 ----a-w- C:\Windows\SysWow64\d3dx9_33.dll
    2011-07-26 23:16:13 2414360 ----a-w- C:\Windows\SysWow64\d3dx9_31.dll
    2011-07-26 23:15:56 -------- d-----w- C:\Program Files (x86)\Microsoft XNA
    2011-07-26 22:50:36 -------- d-----w- C:\Program Files (x86)\Common Files\Steam
    2011-07-26 22:50:35 -------- d-----w- C:\Program Files (x86)\Steam
    2011-07-26 07:23:06 -------- d-----w- C:\Program Files (x86)\World of Warcraft
    2011-07-26 07:23:06 -------- d-----w- C:\Program Files (x86)\Common Files\Blizzard Entertainment
    2011-07-26 07:21:57 -------- d-----w- C:\ProgramData\Blizzard Entertainment
    2011-07-26 07:19:15 1048576 ------w- C:\G50V.BIN
    2011-07-26 07:19:12 17464 ----a-w- C:\Windows\System32\drivers\kbfiltr.sys
    2011-07-26 07:19:12 13680 ----a-w- C:\Windows\System32\drivers\ATK64AMD.sys
    2011-07-26 07:10:49 18904 ----a-w- C:\Windows\SysWow64\StructuredQuerySchemaTrivial.bin
    2011-07-26 07:10:49 18904 ----a-w- C:\Windows\System32\StructuredQuerySchemaTrivial.bin
    2011-07-26 06:59:53 4240384 ----a-w- C:\Windows\SysWow64\GameUXLegacyGDFs.dll
    2011-07-26 06:59:53 32256 ----a-w- C:\Windows\System32\Apphlpdm.dll
    2011-07-26 06:59:53 28672 ----a-w- C:\Windows\SysWow64\Apphlpdm.dll
    2011-07-26 06:59:52 4240384 ----a-w- C:\Windows\System32\GameUXLegacyGDFs.dll
    2011-07-26 06:54:39 -------- d-----w- C:\Users\Tyler\AppData\Local\Deployment
    2011-07-26 06:54:39 -------- d-----w- C:\Users\Tyler\AppData\Local\Apps
    2011-07-26 06:36:03 17408 ----a-w- C:\Windows\SysWow64\rpcnetp.dll
    2011-07-26 06:33:51 17408 ----a-w- C:\Windows\SysWow64\rpcnetp.exe
    2011-07-26 06:33:51 17408 ----a-w- C:\Windows\System32\rpcnetp.exe
    2011-07-26 06:12:15 32768 ----a-w- C:\Windows\System32\nshhttp.dll
    2011-07-26 06:12:15 24064 ----a-w- C:\Windows\SysWow64\nshhttp.dll
    2011-07-26 06:12:14 620032 ----a-w- C:\Windows\System32\drivers\http.sys
    2011-07-26 06:12:14 33792 ----a-w- C:\Windows\System32\httpapi.dll
    2011-07-26 06:12:14 30720 ----a-w- C:\Windows\SysWow64\httpapi.dll
    2011-07-26 05:47:59 129024 ----a-w- C:\Program Files (x86)\Internet Explorer\sqmapi.dll
    2011-07-26 05:47:58 86528 ----a-w- C:\Windows\System32\ieencode.dll
    2011-07-26 05:47:58 78336 ----a-w- C:\Windows\SysWow64\ieencode.dll
    2011-07-26 05:47:58 176128 ----a-w- C:\Program Files\Internet Explorer\sqmapi.dll
    2011-07-26 05:44:47 600576 ----a-w- C:\Windows\System32\RMActivate_isv.exe
    2011-07-26 05:42:59 97792 ----a-w- C:\Windows\System32\drivers\dfsc.sys
    2011-07-26 05:42:43 1869824 ----a-w- C:\Windows\System32\msxml3.dll
    2011-07-26 05:42:43 1248768 ----a-w- C:\Windows\SysWow64\msxml3.dll
    2011-07-26 05:42:41 344576 ----a-w- C:\Windows\System32\schannel.dll
    2011-07-26 05:42:41 276992 ----a-w- C:\Windows\SysWow64\schannel.dll
    2011-07-26 05:42:39 975360 ----a-w- C:\Windows\System32\inetcomm.dll
    2011-07-26 05:42:39 739328 ----a-w- C:\Windows\SysWow64\inetcomm.dll
    2011-07-26 05:42:37 82944 ----a-w- C:\Windows\System32\msasn1.dll
    2011-07-26 05:42:37 60928 ----a-w- C:\Windows\SysWow64\msasn1.dll
    2011-07-26 05:42:13 1104384 ----a-w- C:\Program Files\Common Files\Microsoft Shared\vgx\VGX.dll
    2011-07-26 05:42:12 766464 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\vgx\VGX.dll
    2011-07-26 05:42:09 1927680 ----a-w- C:\Windows\System32\gameux.dll
    2011-07-26 05:42:09 1696256 ----a-w- C:\Windows\SysWow64\gameux.dll
    2011-07-26 05:40:47 867328 ----a-w- C:\Windows\SysWow64\wmpmde.dll
    2011-07-26 05:21:42 8578896 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll
    2011-07-26 05:21:34 270720 ------w- C:\Windows\System32\MpSigStub.exe
    2011-07-26 05:20:59 58288 ----a-w- C:\Windows\SysWow64\rpcnet.dll
    2011-07-26 05:20:59 58288 ------w- C:\Windows\SysWow64\rpcnet.exe
    2011-07-26 05:19:50 98304 ----a-w- C:\Windows\SysWow64\cabview.dll
    2011-07-26 05:19:50 218624 ----a-w- C:\Windows\System32\wintrust.dll
    2011-07-26 05:19:50 172032 ----a-w- C:\Windows\SysWow64\wintrust.dll
    2011-07-26 05:19:50 104960 ----a-w- C:\Windows\System32\cabview.dll
    2011-07-26 05:18:30 -------- d-----w- C:\ProgramData\P4G
    2011-07-26 05:18:30 -------- d-----w- C:\Program Files\P4G
    2011-07-26 05:18:06 225280 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\IScript\iscript.dll
    2011-07-26 05:18:06 176128 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\iuser.dll
    2011-07-26 05:18:05 77824 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\ctor.dll
    2011-07-26 05:18:05 32768 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\objectps.dll
    2011-07-26 05:17:07 9728 ----a-w- C:\Windows\System32\CIRCoInst.dll
    2011-07-26 05:17:07 -------- d-----w- C:\Windows\ITECIR
    2011-07-26 05:16:23 -------- d-----w- C:\Program Files\Synaptics
    2011-07-26 05:16:03 402432 ----a-w- C:\Windows\System32\SynCOM.dll
    2011-07-26 05:16:03 320048 ----a-w- C:\Windows\System32\drivers\SynTP.sys
    2011-07-26 05:16:03 253440 ----a-w- C:\Windows\System32\SynCtrl.dll
    2011-07-26 05:16:03 196608 ----a-w- C:\Windows\SysWow64\SynCtrl.dll
    2011-07-26 05:16:03 196096 ----a-w- C:\Windows\System32\SynTPAPI.dll
    2011-07-26 05:16:03 163840 ----a-w- C:\Windows\SysWow64\SynCOM.dll
    2011-07-26 05:16:03 1491528 ----a-w- C:\Windows\System32\WdfCoInstaller01000.dll
    2011-07-26 05:16:03 138240 ----a-w- C:\Windows\System32\SynTPCo4.dll
    2011-07-26 05:16:03 102400 ----a-w- C:\Windows\SysWow64\SynTPCOM.dll
    2011-07-26 05:15:16 766 ----a-w- C:\Windows\Uninstsxga.bat
    2011-07-26 05:15:16 41896 ----a-w- C:\Windows\System32\drivers\sncduvc.sys
    2011-07-26 05:15:16 386 ----a-w- C:\Windows\Uninstuxga.reg
    2011-07-26 05:15:16 386 ----a-w- C:\Windows\Uninstsxga.reg
    2011-07-26 05:15:16 384 ----a-w- C:\Windows\Uninstvga.reg
    2011-07-26 05:15:16 1878440 ----a-w- C:\Windows\System32\drivers\snp2uvc.sys
    2011-07-26 05:15:16 1470 ----a-w- C:\Windows\Uninstvga.bat
    2011-07-26 05:15:16 1363 ----a-w- C:\Windows\Uninstuxga.bat
    2011-07-26 05:15:16 12288 ----a-w- C:\Windows\DrvInst.exe
    2011-07-26 05:13:37 65024 ----a-w- C:\Windows\System32\drivers\rimmpx64.sys
    2011-07-26 05:13:36 90112 ----a-w- C:\Windows\System32\snymsico.dll
    2011-07-26 05:13:36 57856 ----a-w- C:\Windows\System32\drivers\rixdpx64.sys
    2011-07-26 05:13:36 172032 ----a-w- C:\Windows\System32\rixdicon.dll
    2011-07-26 05:13:35 55296 ----a-w- C:\Windows\System32\drivers\rimspx64.sys
    2011-07-26 05:12:41 -------- d-----w- C:\Program Files\Wireless Console 2
    2011-07-26 05:12:41 -------- d-----w- C:\Program Files (x86)\Wireless Console 2
    2011-07-26 05:10:59 36864 ----a-w- C:\Windows\System32\wuapp.exe
    2011-07-26 05:08:58 -------- d-----w- C:\Program Files (x86)\Realtek
    2011-07-26 05:00:56 -------- d-----w- C:\Program Files (x86)\ASUS
    2011-07-26 04:53:55 406040 ----a-w- C:\Windows\System32\drivers\iaStor.sys
    2011-07-26 04:51:59 53248 ----a-r- C:\Windows\SysWow64\CSVer.dll
    2011-07-26 04:51:39 -------- d-----w- C:\Intel
    2011-07-26 04:48:09 -------- d-----w- C:\Users\Tyler\AppData\Local\Google
    2011-07-26 04:47:53 -------- d-----w- C:\Users\Tyler\AppData\Local\VirtualStore
    .
    ==================== Find3M ====================
    .
    2011-07-26 05:11:02 525792 ----a-w- C:\Windows\DIFxAPI.dll
    2011-07-26 05:10:12 315392 ----a-w- C:\Windows\HideWin.exe
    2011-07-22 14:10:31 1383424 ----a-w- C:\Windows\System32\mshtml.tlb
    2011-07-22 13:54:40 1383424 ----a-w- C:\Windows\SysWow64\mshtml.tlb
    2011-06-21 16:06:57 1032192 ----a-w- C:\Windows\System32\wininet.dll
    2011-06-21 15:49:52 834048 ----a-w- C:\Windows\SysWow64\wininet.dll
    2011-06-21 14:41:18 485376 ----a-w- C:\Windows\System32\html.iec
    2011-06-21 14:13:51 389632 ----a-w- C:\Windows\SysWow64\html.iec
    2011-06-20 08:45:17 4699536 ----a-w- C:\Windows\System32\ntoskrnl.exe
    2011-06-11 06:15:38 93008 ----a-w- C:\Windows\System32\mfcm100u.dll
    2011-06-02 13:50:04 2764288 ----a-w- C:\Windows\System32\win32k.sys
    .
    ============= FINISH: 21:47:00.58 ===============



    .
    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT
    .
    DDS (Ver_2011-06-23.01)
    .
    Microsoft® Windows Vista™ Home Premium
    Boot Device: \Device\HarddiskVolume1
    Install Date: 7/26/2011 1:38:04 AM
    System Uptime: 8/14/2011 8:30:19 PM (1 hours ago)
    .
    Motherboard: ASUSTeK Computer Inc. | | G50VT
    Processor: Intel(R) Core(TM)2 Duo CPU P7450 @ 2.13GHz | Socket 478 | 2133/267mhz
    .
    ==== Disk Partitions =========================
    .
    C: is FIXED (NTFS) - 298 GiB total, 182.036 GiB free.
    D: is CDROM ()
    .
    ==== Disabled Device Manager Items =============
    .
    ==== System Restore Points ===================
    .
    .
    ==== Installed Programs ======================
    .
    Update for Microsoft Office 2007 (KB2508958)
    Adobe Flash Player 10 ActiveX
    ASUS Live Update
    Avira AntiVir Personal - Free Antivirus
    Battlefield: Bad Company™ 2
    Borderlands
    Compatibility Pack for the 2007 Office system
    Direct Console 2.0
    Dxtory 2.0.101
    Google Chrome
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
    ITECIR
    Java Auto Updater
    Java(TM) 6 Update 26
    Magicka
    Malwarebytes' Anti-Malware version 1.51.1.1800
    Microsoft Office 2007 Service Pack 2 (SP2)
    Microsoft Office Excel MUI (English) 2007
    Microsoft Office File Validation Add-In
    Microsoft Office Home and Student 2007
    Microsoft Office OneNote MUI (English) 2007
    Microsoft Office PowerPoint MUI (English) 2007
    Microsoft Office PowerPoint Viewer 2007 (English)
    Microsoft Office Proof (English) 2007
    Microsoft Office Proof (French) 2007
    Microsoft Office Proof (Spanish) 2007
    Microsoft Office Proofing (English) 2007
    Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
    Microsoft Office Shared MUI (English) 2007
    Microsoft Office Shared Setup Metadata MUI (English) 2007
    Microsoft Office Suite Activation Assistant
    Microsoft Office Word MUI (English) 2007
    Microsoft Silverlight
    Microsoft Visual C++ 2005 Redistributable
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
    Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
    Microsoft Works
    Microsoft XNA Framework Redistributable 3.1
    NVIDIA 3D Vision Controller Driver
    NVIDIA PhysX
    NVIDIA Stereoscopic 3D Driver
    Origin
    PunkBuster Services
    Realtek 8169 8168 8101E 8102E Ethernet Driver
    Realtek High Definition Audio Driver
    RICOH R5C83x/84x Flash Media Controller Driver Ver.3.55.03
    RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition
    Security Update for 2007 Microsoft Office System (KB2288621)
    Security Update for 2007 Microsoft Office System (KB2288931)
    Security Update for 2007 Microsoft Office System (KB2345043)
    Security Update for 2007 Microsoft Office System (KB2509488)
    Security Update for 2007 Microsoft Office System (KB969559)
    Security Update for 2007 Microsoft Office System (KB976321)
    Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
    Security Update for Microsoft Office 2007 System (KB2541012)
    Security Update for Microsoft Office Excel 2007 (KB2541007)
    Security Update for Microsoft Office InfoPath 2007 (KB979441)
    Security Update for Microsoft Office PowerPoint 2007 (KB2535818)
    Security Update for Microsoft Office PowerPoint Viewer 2007 (KB2464623)
    Security Update for Microsoft Office system 2007 (972581)
    Security Update for Microsoft Office system 2007 (KB974234)
    Security Update for Microsoft Office Visio Viewer 2007 (KB973709)
    Security Update for Microsoft Office Word 2007 (KB2344993)
    Steam
    System Requirements Lab
    System Requirements Lab CYRI
    Update for 2007 Microsoft Office System (KB2284654)
    Update for 2007 Microsoft Office System (KB967642)
    Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
    Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
    Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
    Update for Microsoft Office 2007 Help for Common Features (KB963673)
    Update for Microsoft Office 2007 System (KB2539530)
    Update for Microsoft Office Excel 2007 Help (KB963678)
    Update for Microsoft Office OneNote 2007 (KB980729)
    Update for Microsoft Office OneNote 2007 Help (KB963670)
    Update for Microsoft Office Powerpoint 2007 Help (KB963669)
    Update for Microsoft Office Script Editor Help (KB963671)
    Update for Microsoft Office Word 2007 Help (KB963665)
    Windows Live Messenger
    Windows Live Sign-in Assistant
    Wireless Console 2
    World of Warcraft
    Yahoo! Detect
    .
    ==== Event Viewer Messages From Past Week ========
    .
    8/9/2011 11:51:54 PM, Error: Service Control Manager [7006] - The ScRegSetValueExW call failed for Start with the following error: Access is denied.
    8/14/2011 8:31:15 PM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: Beep
    8/13/2011 2:26:40 PM, Error: EventLog [6008] - The previous system shutdown at 1:39:20 PM on 8/13/2011 was unexpected.
    8/12/2011 12:36:38 AM, Error: Microsoft-Windows-Dhcp-Client [1001] - Your computer was not assigned an address from the network (by the DHCP Server) for the Network Card with network address 00215DC5532C. The following error occurred: The operation was canceled by the user.. Your computer will continue to try and obtain an address on its own from the network address (DHCP) server.
    8/10/2011 4:09:25 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800706ba: Update for Windows Mail Junk E-mail Filter for x64-based Systems [August 2011] (KB905866).
    8/10/2011 4:09:25 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800706ba: Security Update for Windows Vista for x64-based Systems (KB2567680).
    8/10/2011 4:09:18 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800706be: Update for Microsoft .NET Framework 4 on Windows XP, Windows Server 2003, Windows Vista, Windows 7, Windows Server 2008, Windows Server 2008 R2 for x64-based Systems (KB2533523).
    8/10/2011 4:09:18 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800706ba: Windows Malicious Software Removal Tool x64 - August 2011 (KB890830).
    8/10/2011 4:09:18 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800706ba: Update Rollup for ActiveX Killbits for Windows Vista for x64-based Systems (KB2562937).
    8/10/2011 4:09:18 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800706ba: Update for Windows Vista for x64-based Systems (KB2563227).
    8/10/2011 4:09:18 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800706ba: Security Update for Windows Vista for x64-based Systems (KB2563894).
    8/10/2011 4:09:18 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800706ba: Security Update for Windows Vista for x64-based Systems (KB2556532).
    8/10/2011 4:09:18 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800706ba: Security Update for Windows Vista for x64-based Systems (KB2536276).
    8/10/2011 4:09:18 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800706ba: Security Update for Microsoft .NET Framework 2.0 SP2 on Windows Vista SP2 and Windows Server 2008 SP2 for x64-based Systems (KB2539633).
    8/10/2011 3:50:29 AM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Windows Search service to connect.
    8/10/2011 3:50:29 AM, Error: Service Control Manager [7000] - The Windows Search service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
    8/10/2011 3:50:29 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1053" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
    8/10/2011 3:50:29 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1053" attempting to start the service WSearch with arguments "" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
    8/10/2011 3:14:42 AM, Error: Service Control Manager [7034] - The NVIDIA Stereoscopic 3D Driver Service service terminated unexpectedly. It has done this 1 time(s).
    8/10/2011 2:48:53 AM, Error: Service Control Manager [7030] - The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.
    8/10/2011 2:25:19 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800706ba: Update for Microsoft .NET Framework 4 on Windows XP, Windows Server 2003, Windows Vista, Windows 7, Windows Server 2008, Windows Server 2008 R2 for x64-based Systems (KB2533523).
    8/10/2011 2:25:19 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Update for Microsoft .NET Framework 4 on Windows XP, Windows Server 2003, Windows Vista, Windows 7, Windows Server 2008, Windows Server 2008 R2 for x64-based Systems (KB2468871).
    8/10/2011 2:20:54 AM, Error: Application Popup [1060] - \??\C:\ComboFix\catchme.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
    .
    ==== End Of File ===========================
     
  5. Bobbye

    Bobbye Helper on the Fringe Posts: 16,335   +36

    You were pretty busy on 7/26-27 and 8/10/2011, installing programs. So you should take in to consideration that how the games worked previously can be affected by new installs, more running programs, more apps running, etc.

    Do you now what these.bat and .reg files are for?
    ============================================
    You installed Microsoft-Windows-SQMAPI:
    What it is
    The Microsoft-Windows-SQMAPI component implements the Windows Customer Experience Improvement Program (CEIP). If the component is enabled, it collects and sends data to Microsoft about Windows use. Participation in this program is voluntary, and the results are recorded to implement improvements in future releases.
    Do you really want to run this? Did you even know what it was?
    ====================================================
    I see that you installed Combofix. We have a warning that users should not run this on their own, as do most all other forums. The author of the program also issue the warning. And here is an example of one reason why you should not:

    Error in Event Viewer:
    ---------------------------------
    If Combofix is still on the system, please uninstall it. Then download the current version and do the scan: Uninstall directions, if needed
    • Click START> then RUN
    • Now type Combofix /Uninstall in the runbox and click OK. Note the space between the X and the U, it needs to be there.
    --------------------------------------
    Download Combofix from HERE or HERE and save to the desktop
    • Double click combofix.exe & follow the prompts.
    • ComboFix will check to see if the Microsoft Windows Recovery Console is installed. It is recommended to have this pre-installed on your machine before doing any malware removal. It will allow you to boot up into a special recovery/repair mode if needed.
      **Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will continue it's malware removal procedures.
    • Follow the prompts to allow ComboFix to download and install the Microsoft Windows Recovery Console, and when prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console.
    • Once installed, you should see a blue screen prompt that says:
      The Recovery Console was successfully installed.
    • .Click on Yes, to continue scanning for malware
    • .If Combofix asks you to update the program, allow
    • .Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.
    • .Close any open browsers.
    • .Double click combofix.exe[​IMG] & follow the prompts to run.
    • When the scan completes , a report will be generated-it will open a text window. Please paste the C:\ComboFix.txt in next reply..
    Re-enable your Antivirus software.

    Note 1:Do not mouse-click Combofix's window while it is running. That may cause it to stall.
    Note 2: ComboFix may reset a number of Internet Explorer's settings, including making I-E the default browser.
    Note 3: Combofix prevents autorun of ALL CD, floppy and USB devices to assist with malware removal & increase security. If this is an issue or makes it difficult for you -- please tell your helper.
    Note 4: CF disconnects your machine from the internet. The connection is automatically restored before CF completes its run. If CF runs into difficulty and terminates prematurely, the connection can be manually restored by restarting your machine.
    Note 5: If you receive an error "Illegal operation attempted on a registry key that has been marked for deletion", restart computer to fix the issue.

    Please also tell me how much RAM is installed.
     
  6. scraypeeraypees

    scraypeeraypees TS Rookie Topic Starter

    I do not know what those .bat and .reg files are for. I also don't recall installing Microsoft-Windows-SQMAPI but since it is there, obviously I okayed it. There are 4gigs of ram installed.



    ComboFix 11-08-16.05 - Tyler 08/16/2011 16:09:21.3.2 - x64
    Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.1.1033.18.4094.2638 [GMT -5:00]
    Running from: c:\users\Tyler\Desktop\ComboFix.exe
    AV: AntiVir Desktop *Disabled/Outdated* {090F9C29-64CE-6C6F-379C-5901B49A85B7}
    SP: AntiVir Desktop *Disabled/Outdated* {B26E7DCD-42F4-63E1-0D2C-6273CF1DCF0A}
    SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    * Created a new restore point
    .
    .
    ((((((((((((((((((((((((( Files Created from 2011-07-16 to 2011-08-16 )))))))))))))))))))))))))))))))
    .
    .
    2011-08-16 21:14 . 2011-08-16 21:14 -------- d-----w- c:\users\Default\AppData\Local\temp
    2011-08-10 09:46 . 2011-08-16 21:16 -------- d-----w- c:\programdata\NVIDIA
    2011-08-10 09:46 . 2011-08-13 19:29 -------- d-----w- c:\users\UpdatusUser
    2011-08-10 09:45 . 2011-08-10 09:46 -------- d-----w- c:\program files (x86)\NVIDIA Corporation
    2011-08-10 09:45 . 2011-08-03 11:50 980072 ----a-w- c:\windows\system32\nvvsvc.exe
    2011-08-10 09:45 . 2011-08-03 11:50 836200 ----a-w- c:\windows\system32\easyupdatusapiu64.dll
    2011-08-10 09:45 . 2011-08-03 11:50 61544 ----a-w- c:\windows\system32\nvshext.dll
    2011-08-10 09:45 . 2011-08-03 11:50 6136936 ----a-w- c:\windows\system32\nvcpl.dll
    2011-08-10 09:45 . 2011-08-03 11:50 335976 ----a-w- c:\windows\system32\nvhotkey.dll
    2011-08-10 09:45 . 2011-08-03 11:50 3021416 ----a-w- c:\windows\system32\nvsvc64.dll
    2011-08-10 09:45 . 2011-08-03 11:50 2560616 ----a-w- c:\windows\system32\nvsvcr.dll
    2011-08-10 09:45 . 2011-08-03 11:50 117864 ----a-w- c:\windows\system32\nvmctray.dll
    2011-08-10 09:42 . 2011-05-10 09:41 29288 ----a-w- c:\windows\system32\nvhdap64.dll
    2011-08-10 09:42 . 2011-05-10 09:41 174184 ----a-w- c:\windows\system32\drivers\nvhda64v.sys
    2011-08-10 09:42 . 2011-05-10 09:41 1426536 ----a-w- c:\windows\system32\nvhdagenco642040.dll
    2011-08-10 09:42 . 2011-05-10 09:41 70760 ----a-w- c:\windows\system32\nvapo64v.dll
    2011-08-10 09:33 . 2011-08-10 09:33 -------- d-----w- c:\programdata\NVIDIA Corporation
    2011-08-10 09:30 . 2011-08-10 09:47 -------- d-----w- c:\program files\NVIDIA Corporation
    2011-08-10 09:25 . 2011-08-10 09:25 404640 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
    2011-08-10 09:25 . 2011-08-10 09:25 -------- d-----w- c:\windows\SysWow64\Macromed
    2011-08-10 08:32 . 2011-08-10 08:32 -------- d-----w- c:\program files (x86)\Foxit Software
    2011-08-10 08:28 . 2011-08-10 08:28 -------- d-----w- c:\program files (x86)\Common Files\Java
    2011-08-10 08:27 . 2011-08-10 08:27 -------- d-----w- c:\program files (x86)\Java
    2011-08-10 08:08 . 2011-08-10 08:08 -------- d-----w- c:\windows\Sun
    2011-08-10 07:17 . 2011-08-10 07:17 -------- d-----w- C:\2dfcd969581f099dbdd650082ae8
    2011-08-10 06:09 . 2011-07-07 00:52 41272 ----a-w- c:\windows\SysWow64\drivers\mbamswissarmy.sys
    2011-08-10 06:09 . 2011-08-10 06:09 -------- d-----w- c:\programdata\Malwarebytes
    2011-08-10 06:09 . 2011-08-10 06:09 -------- d-----w- c:\program files (x86)\Malwarebytes' Anti-Malware
    2011-08-10 06:09 . 2011-07-07 00:52 25912 ----a-w- c:\windows\system32\drivers\mbam.sys
    2011-08-10 04:51 . 2011-08-16 01:32 88288 ----a-w- c:\windows\system32\drivers\avgntflt.sys
    2011-08-10 04:51 . 2011-08-16 01:32 123784 ----a-w- c:\windows\system32\drivers\avipbb.sys
    2011-08-10 04:51 . 2011-08-10 04:51 -------- d-----w- c:\programdata\Avira
    2011-08-10 04:51 . 2011-08-10 04:51 -------- d-----w- c:\program files (x86)\Avira
    2011-08-10 04:13 . 2011-08-14 10:51 280736 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
    2011-08-10 04:09 . 2011-08-14 10:51 280736 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
    2011-08-10 04:09 . 2011-08-14 10:50 215128 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
    2011-08-10 04:09 . 2011-08-10 04:27 75136 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
    2011-08-10 04:09 . 2011-08-10 04:09 2434856 ----a-w- c:\windows\SysWow64\pbsvc_bc2.exe
    2011-08-10 00:42 . 2011-08-10 04:13 -------- d-----w- c:\programdata\Origin
    2011-08-10 00:42 . 2011-08-10 02:11 -------- d-----w- c:\program files (x86)\Origin Games
    2011-08-10 00:42 . 2011-08-10 00:42 -------- d-----w- c:\programdata\Electronic Arts
    2011-08-10 00:42 . 2011-08-10 00:42 -------- d-----w- c:\program files (x86)\Origin
    2011-08-09 20:16 . 2011-06-06 10:59 2409784 ----a-w- c:\program files\Windows Mail\OESpamFilter.dat
    2011-08-09 20:16 . 2011-06-06 10:59 2409784 ----a-w- c:\program files (x86)\Windows Mail\OESpamFilter.dat
    2011-08-09 20:16 . 2011-06-17 16:16 451072 ----a-w- c:\windows\system32\winsrv.dll
    2011-08-09 20:16 . 2011-07-06 15:49 275456 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
    2011-08-09 20:16 . 2011-06-17 20:14 1427344 ----a-w- c:\windows\system32\drivers\tcpip.sys
    2011-08-09 07:16 . 2011-07-20 14:44 8578896 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{048D2C9D-CE3F-43BB-9021-185977250467}\mpengine.dll
    2011-08-03 08:31 . 2011-08-03 08:31 311912 ----a-w- c:\windows\SysWow64\nvStreaming.exe
    2011-07-31 01:02 . 2011-07-31 01:02 -------- d-----w- c:\program files (x86)\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition
    2011-07-30 08:04 . 2011-07-30 08:04 -------- d-----w- c:\users\Default\AppData\Local\Microsoft Help
    2011-07-29 08:31 . 2011-07-29 08:31 -------- d-----w- c:\program files (x86)\Microsoft Silverlight
    2011-07-28 04:50 . 2011-07-28 04:50 -------- d-----w- c:\program files\Ventrilo
    2011-07-28 04:49 . 2011-07-28 04:49 -------- d-----w- c:\program files (x86)\Common Files\Wise Installation Wizard
    2011-07-27 08:17 . 2010-02-07 05:32 3278336 ----a-w- c:\windows\SysWow64\DxtoryCodec.dll
    2011-07-27 08:17 . 2010-02-07 05:31 3849728 ----a-w- c:\windows\system32\DxtoryCodec64.dll
    2011-07-27 08:17 . 2011-07-27 08:17 -------- d-----w- c:\program files (x86)\Dxtory Software
    2011-07-27 06:20 . 2011-03-12 22:52 1653760 ----a-w- c:\windows\system32\XpsPrint.dll
    2011-07-27 06:20 . 2011-03-12 21:55 876032 ----a-w- c:\windows\SysWow64\XpsPrint.dll
    2011-07-27 06:09 . 2011-07-27 06:09 -------- d-----w- c:\windows\SysWow64\spool
    2011-07-27 06:09 . 2011-07-27 06:09 -------- d-----w- c:\program files (x86)\Windows Portable Devices
    2011-07-27 06:09 . 2011-07-27 06:09 -------- d-----w- c:\program files\Windows Portable Devices
    2011-07-27 06:06 . 2009-10-01 01:02 30208 ----a-w- c:\windows\SysWow64\WPDShextAutoplay.exe
    2011-07-27 05:47 . 2009-09-10 02:05 103424 ----a-w- c:\windows\system32\UIAnimation.dll
    2011-07-27 05:47 . 2009-09-10 02:00 92672 ----a-w- c:\windows\SysWow64\UIAnimation.dll
    2011-07-27 05:47 . 2009-09-10 02:07 3815424 ----a-w- c:\windows\system32\UIRibbon.dll
    2011-07-27 05:47 . 2009-09-10 02:06 1164800 ----a-w- c:\windows\system32\UIRibbonRes.dll
    2011-07-27 05:47 . 2009-09-10 02:01 3023360 ----a-w- c:\windows\SysWow64\UIRibbon.dll
    2011-07-27 05:47 . 2009-09-10 02:00 1164800 ----a-w- c:\windows\SysWow64\UIRibbonRes.dll
    2011-07-27 05:45 . 2011-02-22 14:47 479744 ----a-w- c:\windows\system32\XpsGdiConverter.dll
    2011-07-27 05:45 . 2011-02-22 14:13 288768 ----a-w- c:\windows\SysWow64\XpsGdiConverter.dll
    2011-07-27 05:45 . 2011-02-22 13:53 1555968 ----a-w- c:\windows\system32\DWrite.dll
    2011-07-27 05:45 . 2011-02-22 13:53 1149440 ----a-w- c:\windows\system32\FntCache.dll
    2011-07-27 05:45 . 2011-02-22 13:33 1068544 ----a-w- c:\windows\SysWow64\DWrite.dll
    2011-07-27 05:45 . 2010-05-04 19:40 316928 ----a-w- c:\windows\system32\msshsq.dll
    2011-07-27 05:45 . 2010-05-04 19:13 231424 ----a-w- c:\windows\SysWow64\msshsq.dll
    2011-07-27 05:04 . 2011-07-27 05:04 -------- d-----w- c:\windows\SysWow64\ca-ES
    2011-07-27 05:04 . 2011-07-27 05:04 -------- d-----w- c:\windows\SysWow64\vi-VN
    2011-07-27 05:04 . 2011-07-27 05:04 -------- d-----w- c:\windows\SysWow64\eu-ES
    2011-07-27 05:04 . 2011-07-27 05:04 -------- d-----w- c:\windows\system32\ca-ES
    2011-07-27 05:04 . 2011-07-27 05:04 -------- d-----w- c:\windows\system32\eu-ES
    2011-07-27 05:04 . 2011-07-27 05:04 -------- d-----w- c:\windows\system32\vi-VN
    2011-07-27 04:22 . 2011-07-27 04:22 -------- d-----w- c:\windows\system32\EventProviders
    2011-07-27 03:28 . 2009-04-11 06:12 12240896 ----a-w- c:\windows\system32\NlsLexicons0007.dll
    2011-07-27 03:28 . 2009-04-11 05:03 12240896 ----a-w- c:\windows\SysWow64\NlsLexicons0007.dll
    2011-07-27 03:26 . 2009-04-11 07:11 1930240 ----a-w- c:\windows\system32\d3d9.dll
    2011-07-27 03:25 . 2009-04-11 07:11 434176 ----a-w- c:\windows\system32\wmpps.dll
    2011-07-27 03:24 . 2009-04-11 07:11 43520 ----a-w- c:\windows\system32\wbem\wbemprox.dll
    2011-07-27 03:24 . 2009-04-11 07:11 1172992 ----a-w- c:\windows\system32\wbem\wbemcore.dll
    2011-07-27 03:24 . 2009-04-11 07:11 891392 ----a-w- c:\windows\system32\wbem\fastprox.dll
    2011-07-27 03:24 . 2009-04-11 07:11 936448 ----a-w- c:\windows\system32\SmiEngine.dll
    2011-07-27 03:24 . 2009-04-11 07:11 293888 ----a-w- c:\windows\system32\wdscore.dll
    2011-07-27 03:24 . 2009-04-11 07:10 138752 ----a-w- c:\windows\system32\PkgMgr.exe
    2011-07-27 03:24 . 2009-04-11 07:11 315904 ----a-w- c:\windows\system32\drvstore.dll
    2011-07-27 03:24 . 2011-08-10 09:23 -------- d-----w- c:\program files (x86)\SystemRequirementsLab
    2011-07-27 03:22 . 2011-08-10 08:27 472808 ----a-w- c:\windows\SysWow64\deployJava1.dll
    2011-07-27 03:21 . 2009-08-24 11:47 442368 ----a-w- c:\windows\system32\winhttp.dll
    2011-07-27 03:21 . 2009-08-24 11:36 377344 ----a-w- c:\windows\SysWow64\winhttp.dll
    2011-07-27 03:21 . 2009-11-03 22:07 28160 ----a-w- c:\windows\system32\drivers\en-US\http.sys.mui
    2011-07-27 03:20 . 2010-09-06 18:28 179712 ----a-w- c:\windows\system32\srvsvc.dll
    2011-07-27 03:20 . 2010-09-06 18:28 12288 ----a-w- c:\windows\system32\sscore.dll
    2011-07-27 03:20 . 2010-09-06 18:27 17920 ----a-w- c:\windows\system32\netevent.dll
    2011-07-27 03:20 . 2010-09-06 16:20 9728 ----a-w- c:\windows\SysWow64\sscore.dll
    2011-07-27 03:20 . 2010-09-06 16:19 17920 ----a-w- c:\windows\SysWow64\netevent.dll
    2011-07-27 03:15 . 2009-11-08 15:55 99176 ----a-w- c:\windows\SysWow64\PresentationHostProxy.dll
    2011-07-27 03:15 . 2009-11-08 15:55 49472 ----a-w- c:\windows\SysWow64\netfxperf.dll
    2011-07-27 03:15 . 2009-11-08 15:55 444752 ----a-w- c:\windows\system32\mscoree.dll
    2011-07-27 03:15 . 2009-11-08 15:55 320352 ----a-w- c:\windows\system32\PresentationHost.exe
    2011-07-27 03:15 . 2009-11-08 15:55 297808 ----a-w- c:\windows\SysWow64\mscoree.dll
    2011-07-27 03:15 . 2009-11-08 15:55 295264 ----a-w- c:\windows\SysWow64\PresentationHost.exe
    2011-07-27 03:15 . 2009-11-08 15:55 1130824 ----a-w- c:\windows\SysWow64\dfshim.dll
    2011-07-27 03:15 . 2009-11-08 15:55 109912 ----a-w- c:\windows\system32\PresentationHostProxy.dll
    2011-07-27 03:15 . 2009-11-08 15:55 48960 ----a-w- c:\windows\system32\netfxperf.dll
    2011-07-27 03:15 . 2009-11-08 15:55 1942856 ----a-w- c:\windows\system32\dfshim.dll
    2011-07-26 23:39 . 2011-07-26 23:39 -------- d-----w- C:\NVIDIA
    2011-07-26 23:17 . 2007-10-22 08:37 17928 ----a-w- c:\windows\SysWow64\X3DAudio1_2.dll
    2011-07-26 23:16 . 2009-03-16 19:18 517448 ----a-w- c:\windows\SysWow64\XAudio2_4.dll
    2011-07-26 23:16 . 2009-03-16 19:18 235352 ----a-w- c:\windows\SysWow64\xactengine3_4.dll
    2011-07-26 23:16 . 2009-03-16 19:18 22360 ----a-w- c:\windows\SysWow64\X3DAudio1_6.dll
    2011-07-26 23:16 . 2007-04-04 23:53 81768 ----a-w- c:\windows\SysWow64\xinput1_3.dll
    2011-07-26 23:16 . 2007-03-12 21:42 3495784 ----a-w- c:\windows\SysWow64\d3dx9_33.dll
    2011-07-26 23:16 . 2006-09-28 21:05 2414360 ----a-w- c:\windows\SysWow64\d3dx9_31.dll
    2011-07-26 23:15 . 2011-07-26 23:15 -------- d-----w- c:\program files (x86)\Microsoft XNA
    2011-07-26 22:50 . 2011-07-26 22:52 -------- d-----w- c:\program files (x86)\Common Files\Steam
    2011-07-26 22:50 . 2011-08-10 07:20 -------- d-----w- c:\program files (x86)\Steam
    .
    .
    (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2011-06-11 06:58 . 2011-06-11 06:58 81744 ----a-w- c:\windows\SysWow64\mfcm100u.dll
    2011-06-11 06:58 . 2011-06-11 06:58 81744 ----a-w- c:\windows\SysWow64\mfcm100.dll
    2011-06-11 06:58 . 2011-06-11 06:58 773968 ----a-w- c:\windows\SysWow64\msvcr100.dll
    2011-06-11 06:58 . 2011-06-11 06:58 64336 ----a-w- c:\windows\SysWow64\mfc100fra.dll
    2011-06-11 06:58 . 2011-06-11 06:58 64336 ----a-w- c:\windows\SysWow64\mfc100deu.dll
    2011-06-11 06:58 . 2011-06-11 06:58 63824 ----a-w- c:\windows\SysWow64\mfc100esn.dll
    2011-06-11 06:58 . 2011-06-11 06:58 62288 ----a-w- c:\windows\SysWow64\mfc100ita.dll
    2011-06-11 06:58 . 2011-06-11 06:58 60752 ----a-w- c:\windows\SysWow64\mfc100rus.dll
    2011-06-11 06:58 . 2011-06-11 06:58 55120 ----a-w- c:\windows\SysWow64\mfc100enu.dll
    2011-06-11 06:58 . 2011-06-11 06:58 51024 ----a-w- c:\windows\SysWow64\vcomp100.dll
    2011-06-11 06:58 . 2011-06-11 06:58 4422992 ----a-w- c:\windows\SysWow64\mfc100u.dll
    2011-06-11 06:58 . 2011-06-11 06:58 4397384 ----a-w- c:\windows\SysWow64\mfc100.dll
    2011-06-11 06:58 . 2011-06-11 06:58 43856 ----a-w- c:\windows\SysWow64\mfc100jpn.dll
    2011-06-11 06:58 . 2011-06-11 06:58 43344 ----a-w- c:\windows\SysWow64\mfc100kor.dll
    2011-06-11 06:58 . 2011-06-11 06:58 421200 ----a-w- c:\windows\SysWow64\msvcp100.dll
    2011-06-11 06:58 . 2011-06-11 06:58 36176 ----a-w- c:\windows\SysWow64\mfc100cht.dll
    2011-06-11 06:58 . 2011-06-11 06:58 36176 ----a-w- c:\windows\SysWow64\mfc100chs.dll
    2011-06-11 06:58 . 2011-06-11 06:58 138056 ----a-w- c:\windows\SysWow64\atl100.dll
    2011-06-11 06:15 . 2011-06-11 06:15 93008 ----a-w- c:\windows\system32\mfcm100u.dll
    2011-06-11 06:15 . 2011-06-11 06:15 93008 ----a-w- c:\windows\system32\mfcm100.dll
    2011-06-11 06:15 . 2011-06-11 06:15 829264 ----a-w- c:\windows\system32\msvcr100.dll
    2011-06-11 06:15 . 2011-06-11 06:15 64336 ----a-w- c:\windows\system32\mfc100fra.dll
    2011-06-11 06:15 . 2011-06-11 06:15 64336 ----a-w- c:\windows\system32\mfc100deu.dll
    2011-06-11 06:15 . 2011-06-11 06:15 63824 ----a-w- c:\windows\system32\mfc100esn.dll
    2011-06-11 06:15 . 2011-06-11 06:15 62288 ----a-w- c:\windows\system32\mfc100ita.dll
    2011-06-11 06:15 . 2011-06-11 06:15 608080 ----a-w- c:\windows\system32\msvcp100.dll
    2011-06-11 06:15 . 2011-06-11 06:15 60752 ----a-w- c:\windows\system32\mfc100rus.dll
    2011-06-11 06:15 . 2011-06-11 06:15 57168 ----a-w- c:\windows\system32\vcomp100.dll
    2011-06-11 06:15 . 2011-06-11 06:15 5601616 ----a-w- c:\windows\system32\mfc100u.dll
    2011-06-11 06:15 . 2011-06-11 06:15 5574984 ----a-w- c:\windows\system32\mfc100.dll
    2011-06-11 06:15 . 2011-06-11 06:15 55120 ----a-w- c:\windows\system32\mfc100enu.dll
    2011-06-11 06:15 . 2011-06-11 06:15 43856 ----a-w- c:\windows\system32\mfc100jpn.dll
    2011-06-11 06:15 . 2011-06-11 06:15 43344 ----a-w- c:\windows\system32\mfc100kor.dll
    2011-06-11 06:15 . 2011-06-11 06:15 36176 ----a-w- c:\windows\system32\mfc100cht.dll
    2011-06-11 06:15 . 2011-06-11 06:15 36176 ----a-w- c:\windows\system32\mfc100chs.dll
    2011-06-11 06:15 . 2011-06-11 06:15 158536 ----a-w- c:\windows\system32\atl100.dll
    .
    .
    ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    *Note* empty entries & legit default entries are not shown
    REGEDIT4
    .
    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "Dxtory Update Checker 2.0"="c:\program files (x86)\Dxtory Software\Dxtory2.0\UpdateChecker.exe" [2010-10-17 93696]
    "EADM"="c:\program files (x86)\Origin\Origin.exe" [2011-07-22 26766648]
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
    "DirectConsole2"="c:\program files (x86)\ASUS\Direct Console\Direct Console.exe" [2008-08-20 2705976]
    "avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2011-04-21 281768]
    "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-04-08 254696]
    .
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
    "EnableLUA"= 0 (0x0)
    "EnableUIADesktopToggle"= 0 (0x0)
    .
    R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
    R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
    R3 ASUSProcObsrv;ASUS Process Creation/Termination Observer;d:\i386\AsPrOb64.sys [x]
    R3 RivaTuner64;RivaTuner64;c:\program files (x86)\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition\RivaTuner64.sys [2011-07-31 19952]
    R3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\Microsoft.NET\Framework64\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 1020768]
    R3 yukonx64;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk60x64.sys [x]
    S2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [2011-04-21 136360]
    S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-08-03 2255464]
    S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-08-03 379496]
    S3 DAdderFltr;DeathAdder Mouse;c:\windows\system32\drivers\dadder.sys [x]
    S3 itecir;ITECIR Infrared Receiver;c:\windows\system32\DRIVERS\itecir.sys [x]
    S3 NETw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\DRIVERS\NETw5v64.sys [x]
    S3 NVHDA;Service for NVIDIA High Definition Audio Driver;c:\windows\system32\drivers\nvhda64v.sys [x]
    .
    .
    Contents of the 'Scheduled Tasks' folder
    .
    2011-08-15 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2302625597-521575309-4283027688-1000Core.job
    - c:\users\Tyler\AppData\Local\Google\Update\GoogleUpdate.exe [2011-07-26 06:54]
    .
    2011-08-16 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2302625597-521575309-4283027688-1000UA.job
    - c:\users\Tyler\AppData\Local\Google\Update\GoogleUpdate.exe [2011-07-26 06:54]
    .
    .
    --------- x86-64 -----------
    .
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "RtHDVCpl"="RAVCpl64.exe" [2008-06-13 6342688]
    "Skytel"="Skytel.exe" [2007-11-20 1826816]
    "SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-12-06 1216808]
    .
    ------- Supplementary Scan -------
    .
    uLocal Page = c:\windows\system32\blank.htm
    uStart Page = hxxp://www.google.com/ig/redirectdomain?brand=ASUS&bmod=ASUS
    mStart Page = hxxp://www.google.com/ig/redirectdomain?brand=ASUS&bmod=ASUS
    mLocal Page = %SystemRoot%\system32\blank.htm
    TCP: DhcpNameServer = 24.177.176.38 97.81.22.195 24.178.162.3
    CLSID: {603d3801-bd81-11d0-a3a5-00c04fd706ec} - %SystemRoot%\SysWow64\browseui.dll
    .
    - - - - ORPHANS REMOVED - - - -
    .
    AddRemove-PunkBusterSvc - c:\windows\system32\pbsvc_bc2.exe
    AddRemove-Steam App 42910 - c:\program files (x86)\Steam\steam.exe
    AddRemove-Steam App 8980 - c:\program files (x86)\Steam\steam.exe
    .
    .
    .
    --------------------- LOCKED REGISTRY KEYS ---------------------
    .
    [HKEY_USERS\S-1-5-21-2302625597-521575309-4283027688-1000\Software\SecuROM\License information*]
    "datasecu"=hex:96,87,b5,61,8e,9f,0a,2b,2a,42,5f,4b,7c,7a,41,ed,12,3c,53,54,cc,
    38,75,90,5c,6f,c9,64,9c,51,3f,84,4e,b6,23,b3,f5,6c,50,59,42,16,a0,58,2d,53,\
    "rkeysecu"=hex:e5,8a,4f,d0,0d,88,31,de,0f,43,fd,bb,ed,83,f3,fc
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
    @Denied: (A 2) (Everyone)
    @="FlashBroker"
    "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10v_ActiveX.exe,-101"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
    "Enabled"=dword:00000001
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil10v_ActiveX.exe"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
    @Denied: (A 2) (Everyone)
    @="Shockwave Flash Object"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10v.ocx"
    "ThreadingModel"="Apartment"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
    @="0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
    @="ShockwaveFlash.ShockwaveFlash.10"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10v.ocx, 1"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
    @="1.0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
    @="ShockwaveFlash.ShockwaveFlash"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
    @Denied: (A 2) (Everyone)
    @="Macromedia Flash Factory Object"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10v.ocx"
    "ThreadingModel"="Apartment"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
    @="FlashFactory.FlashFactory.1"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
    @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash10v.ocx, 1"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
    @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
    @="1.0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
    @="FlashFactory.FlashFactory"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
    @Denied: (A 2) (Everyone)
    @="IFlashBroker4"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
    @="{00020424-0000-0000-C000-000000000046}"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
    @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
    "Version"="1.0"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{D27CDB6B-AE6D-11CF-96B8-444553540000}]
    @Denied: (A 2) (Everyone)
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{D27CDB6B-AE6D-11CF-96B8-444553540000}\1.0]
    @="Shockwave Flash"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}]
    @Denied: (A 2) (Everyone)
    @=""
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}\1.0]
    @="FlashBroker"
    .
    [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes]
    "SymbolicLinkValue"=hex(6):5c,00,52,00,45,00,47,00,49,00,53,00,54,00,52,00,59,
    00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,4f,00,46,00,\
    .
    ------------------------ Other Running Processes ------------------------
    .
    c:\program files (x86)\Avira\AntiVir Desktop\avguard.exe
    c:\windows\SysWOW64\PnkBstrA.exe
    c:\windows\SysWOW64\rpcnet.exe
    .
    **************************************************************************
    .
    Completion time: 2011-08-16 16:22:28 - machine was rebooted
    ComboFix-quarantined-files.txt 2011-08-16 21:22
    ComboFix2.txt 2011-08-10 07:55
    .
    Pre-Run: 194,746,003,456 bytes free
    Post-Run: 194,940,297,216 bytes free
    .
    - - End Of File - - 91F329485DB2AC30B0F1FFDD1A9302FA
     
  7. Bobbye

    Bobbye Helper on the Fringe Posts: 16,335   +36

    Please update the antivirus porgram: AV: AntiVir Desktop *Disabled/Outdated*
    SP: AntiVir Desktop *Disabled/Outdated*
     
  8. scraypeeraypees

    scraypeeraypees TS Rookie Topic Starter

    It is updated and I ran a scan, it found nothing again. I can post the results if you need to see them.
     
  9. Bobbye

    Bobbye Helper on the Fringe Posts: 16,335   +36

    But as you add more, especially anything running in the background, it can take it's toll. So far I don't see any sign of malware. But there are entries running as batch files of which you have no knowledge. There is a major program on the system that you don't remember loading.

    This is what I'm seeing:
    1. You're overclocking.
    2011-07-31 01:02:31 -------- d-----w- C:\Program Files (x86)\RivaTuner v2.24 MSI Master Overclocking Arena 2009 edition

    2. You are using very resource intensive programs:
    Origin and Electronic Arts are resource intensive programs.
    2011-08-10 00:42:36 -------- d-----w- C:\Program Files (x86)\Origin Games
    uRun: [EADM] "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart

    3. You got iPhone apps:
    2011-07-26 05:18:30 -------- d-----w- C:\ProgramData\P4G
    2011-07-26 05:18:30 -------- d-----w- C:\Program Files\P4G

    4. More recent downloads:
    2011-07-26 23:15:56 -------- d-----w- C:\Program Files (x86)\Microsoft XNA
    2011-07-26 22:50:36 -------- d-----w- C:\Program Files (x86)\Common Files\Steam
    2011-07-26 22:50:35 -------- d-----w- C:\Program Files (x86)\Steam
    2011-07-26 07:23:06 -------- d-----w- C:\Program Files (x86)\World of Warcraft
    2011-07-26 07:23:06 -------- d-----w- C:\Program Files (x86)\Common Files\Blizzard Entertainment
    2011-07-26 07:21:57 -------- d-----w- C:\ProgramData\Blizzard Entertainment

    5. And more:
    Software>> Movie capture tool
    2011-07-27 08:17:38 3849728 ----a-w- C:\Windows\System32\DxtoryCodec64.dll
    2011-07-27 08:17:38 3278336 ----a-w- C:\Windows\SysWow64\DxtoryCodec.dll
    2011-07-27 08:17:37 -------- d-----w- C:\Program Files (x86)\Dxtory Software>> [Dxtory Update Checker 2.0] C:\Program Files (x86)\Dxtory Software\Dxtory2.0\UpdateChecker.exe
    2011-07-28 04:50:15 -------- d-----w- C:\Program Files\Ventrilo

    6. ?New iser?: 2011-08-13 19:29 -------- d-----w- c:\users\UpdatusUser
    “Optimus video technology from NVidia.” and “The account can be removed by changing it to use Local System, Set to Manual and then delete the UpdatusUser user account and folder.”
    =======================================
    Almost everything that starts on boot will continue to run in the background. The system will slow down accordingly.

    I suggest you take all the unnecessary processes off of the Startup Menu. Use All programs to access when you need to use them. That way, if you're playing the Origin games, the resources can be applied there instead of running 20 other programs and Services that are automatically starting.

    Take time and check what's running. If you don't know what it is, do a search. If it's something you don't use, remove it. If it's something that doesn't need to start on boot, take it off of startup. If it has a Service associated with it, change the startup to Manual instead of Automatic, run the Error Check to remove minor glitches.

    And very important: Do maintenance on the system: Disc cleanup, delete temporary internet files and Cookies, Defrag.
    You system will reward you with good performance.
     
  10. scraypeeraypees

    scraypeeraypees TS Rookie Topic Starter

    I defragged, disk cleanup, checked my start up processes and there were only 6 total on the list including Orgin (which I want to run on start up) Also the P4G file came with my computer. It measures battery life and what not for my computer. As for the overclocking, I am not. One of my friends recommended that my card might be overheating and I downloaded it and never actually set it up, I wanted another opinion before I jumped into all of that. Checked some games after all of this and no changes yet :/
     
Topic Status:
Not open for further replies.

Similar Topics

Add New Comment

You need to be a member to leave a comment. Join thousands of tech enthusiasts and participate.
TechSpot Account You may also...