shortee619
Posts: 6 +0
This computer was given to me about 2 years ago (give or take). As time went on, it started getting slower and slower, and started freezing constantly...extremely frustrating. Then comes the google redirecting and then the cpu usage began shooting up to 90% or more while idle. My cousin suggested a few virus removal programs so I tried everything- Malwarebytes, SUPERAntiSpyware, Kaspersky...the list goes on. Several hundred removed Adware, Spyware, and Malware files later; it's running better but will still randomly freeze for no reason and the cpu usage still shoots up when nothing is running. Here are the logs as requested.
Malwarebytes' Anti-Malware 1.51.2.1300
www.malwarebytes.org
Database version: 8348
Windows 6.0.6002 Service Pack 2
Internet Explorer 9.0.8112.16421
12/10/2011 1:51:32 PM
mbam-log-2011-12-10 (13-51-32).txt
Scan type: Quick scan
Objects scanned: 179868
Time elapsed: 15 minute(s), 43 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
GMER 1.0.15.15641 - http://www.gmer.net
Rootkit quick scan 2011-12-10 13:56:49
Windows 6.0.6002 Service Pack 2 Harddisk0\DR0 ->
\Device\Ide\IdeDeviceP1T0L0-1 Hitachi_HTS541280H9AT00
rev.HP3OA23C
Running: 5sn1ehsi.exe; Driver: C:\Users\JULIAK~1
\AppData\Local\Temp\uxldypod.sys
---- System - GMER 1.0.15 ----
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self
protection module/AVAST Software) ZwCreateProcessEx [0x9D47C7A2]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self
protection module/AVAST Software) ObInsertObject
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self
protection module/AVAST Software) ObMakeTemporaryObject
---- Devices - GMER 1.0.15 ----
Device \FileSystem\Ntfs \Ntfs
aswSP.SYS (avast! self protection module/AVAST Software)
AttachedDevice \FileSystem\Ntfs \Ntfs
X6XSEx.Sys
AttachedDevice \Driver\tdx \Device\Tcp
aswTdi.SYS (avast! TDI Filter Driver/AVAST Software)
AttachedDevice \Driver\tdx \Device\Udp
aswTdi.SYS (avast! TDI Filter Driver/AVAST Software)
---- EOF - GMER 1.0.15 ----
.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 1.6.0_20
Run by julia k at 16:06:07 on 2011-12-10
Microsoft® Windows Vista™ Home Premium
6.0.6002.2.1252.1.1033.18.991.455 [GMT -8:00]
.
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E
-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-
A87D98DFB681}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-
9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
svchost.exe
svchost.exe
svchost.exe
svchost.exe
svchost.exe
svchost.exe
svchost.exe
svchost.exe
svchost.exe
C:\Windows\system32\taskeng.exe
svchost.exe
svchost.exe
svchost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\spool\drivers\w32x86\3\EKIJ5000MUI.exe
C:\Program Files\Common Files\ArcSoft\Connection
Service\Bin\ACDaemon.exe
C:\Program Files\Real\RealPlayer\Update\realsched.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
svchost.exe
svchost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\ctfmon.exe
.
============== Pseudo HJT Report ===============
.
uSearch Page =
uStart Page = hxxp://www.google.com/
uSearch Bar =
uInternet Settings,ProxyOverride = *.local
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-
fa578c2ebdc3} - c:\program files\common
files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: RealPlayer Download and Record Plugin for Internet Explorer:
{3049c3e9-b461-4bc5-8870-4c09146192ca} -
c:\programdata\real\realplayer\browserrecordplugin\ie\rpbrowserrecordplugin.dll
BHO: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} -
c:\program files\avast software\avast\aswWebRepIE.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-
5164760863c6} - c:\program files\common files\microsoft shared\windows
live\WindowsLiveLogin.dll
BHO: Ask Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} -
c:\program files\ask.com\GenericAskToolbar.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-
9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: kikin Plugin: {e601996f-e400-41ca-804b-cd6373a7eee2} -
c:\program files\kikin\ie_kikin.dll
TB: Ask Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} -
c:\program files\ask.com\GenericAskToolbar.dll
TB: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} -
c:\program files\avast software\avast\aswWebRepIE.dll
uRun: [WMPNSCFG] c:\program files\windows media player\WMPNSCFG.exe
mRun: [EKIJ5000StatusMonitor] c:\windows\system32
\spool\drivers\w32x86\3\EKIJ5000MUI.exe
mRun: [ArcSoft Connection Service] c:\program files\common
files\arcsoft\connection service\bin\ACDaemon.exe
mRun: [TkBellExe] "c:\program files\real\realplayer\update\realsched.exe" -
osboot
mRun: [APSDaemon] "c:\program files\common files\apple\apple application
support\APSDaemon.exe"
mRun: [Malwarebytes' Anti-Malware (reboot)] "c:\program files\malwarebytes'
anti-malware\mbam.exe" /runcleanupscript
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0
\reader\Reader_sl.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0
\AdobeARM.exe"
mRun: [avast] "c:\program files\avast software\avast\avastUI.exe" /nogui
mRun: [Conime] %windir%\system32\conime.exe
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mPolicies-explorer: BindDirectlyToPropertySetStorage = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12
\EXCEL.EXE/3000
IE: {0F7195C2-6713-4d93-A1BC-DA5FA33F0A65} - {E601996F-
E400-41CA-804B-CD6373A7EEE2} - c:\program files\kikin\ie_kikin.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-
E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~2
\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31
-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2
\office12\REFIEBAR.DLL
LSP: c:\progra~1\speedb~1\sblsp.dll
DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} -
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} -
hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: DhcpNameServer = 68.105.28.11 68.105.29.11 68.105.28.12
TCP: Interfaces\{D8C05882-80E2-4166-9283-EA5BB8A0A564} :
DhcpNameServer = 68.105.28.11 68.105.29.11 68.105.28.12
Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.DLL
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-
ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\julia
k\appdata\roaming\mozilla\firefox\profiles\fci7jxb5.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.facebook.com/
FF - prefs.js: network.proxy.type - 4
FF - plugin: c:\program files\adobe\reader 9.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\free ride games\npExentCtl.dll
FF - plugin: c:\program files\microsoft silverlight\4.0.60831.0\npctrlui.dll
FF - plugin: c:\program files\mozilla
firefox\plugins\npclntax_ClickPotatoLiteSA.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npdeployJava1.dll
FF - plugin: c:\program files\thrixxx\weblaunch\binaries\npWebLaunch.dll
FF - plugin:
c:\programdata\real\realplayer\browserrecordplugin\mozillaplugins\nprpchrome
browserrecordext.dll
FF - plugin:
c:\programdata\real\realplayer\browserrecordplugin\mozillaplugins\nprphtml5vi
deoshim.dll
FF - plugin: c:\users\julia
k\appdata\roaming\mozilla\firefox\profiles\fci7jxb5.default\extensions\2020pl
ayer_web@2020technologies.com\plugins\NP_2020Player_WEB.dll
.
============= SERVICES / DRIVERS ===============
.
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2011-11-6
435032]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2011-11-6
314456]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys
[2011-7-22 12880]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS
[2011-7-12 67664]
R2 !SASCORE;SAS Core Service;c:\program
files\superantispyware\SASCore.exe [2011-8-11 116608]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2011-
11-6 20568]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys
[2011-11-6 55128]
R2 avast! Antivirus;avast! Antivirus;c:\program files\avast
software\avast\AvastSvc.exe [2011-11-6 44768]
R2 FontCache;Windows Font Cache Service;c:\windows\system32\svchost.exe
-k LocalServiceAndNoImpersonation [2008-1-20 21504]
R2 Kodak AiO Network Discovery Service;Kodak AiO Network Discovery
Service;c:\program files\kodak\aio\center\EKAiOHostService.exe [2011-9-5
393648]
R2 uCamMonitor;CamMonitor;c:\program files\arcsoft\magic-i visual effects 2
\uCamMonitor.exe [2011-10-14 104960]
R2 X6XSEx;X6XSEx;c:\program files\free ride games\X6XSEx.sys [2011-
11-22 46184]
R3 NETw2v32;Intel(R) PRO/Wireless 2200BG Network Connection Driver for
Windows Vista;c:\windows\system32\drivers\NETw2v32.sys [2006-11-2
2589184]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN
v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319
\mscorsvw.exe [2010-3-18 130384]
S2 VideoAcceleratorService;VideoAcceleratorService;c:\progra~1\speedb~1
\videoacceleratorservice.exe -start -scm --> c:\progra~1\speedb~1
\VideoAcceleratorService.exe -start -scm [?]
S3 AA;AA;c:\users\juliak~1\appdata\local\temp\aa.exe -->
c:\users\juliak~1\appdata\local\temp\AA.exe [?]
S3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect;c:\windows\system32
\drivers\ArcSoftKsUFilter.sys [2011-10-14 17920]
S3 AVHNTD;AVHNTD;c:\users\juliak~1\appdata\local\temp\avhntd.exe -->
c:\users\juliak~1\appdata\local\temp\AVHNTD.exe [?]
S3 BSKWCSLN;BSKWCSLN;c:\users\juliak~1
\appdata\local\temp\bskwcsln.exe --> c:\users\juliak~1
\appdata\local\temp\BSKWCSLN.exe [?]
S3 CBONSWPL;CBONSWPL;c:\users\juliak~1
\appdata\local\temp\cbonswpl.exe --> c:\users\juliak~1
\appdata\local\temp\CBONSWPL.exe [?]
S3 DQHGZHXDSKW;DQHGZHXDSKW;c:\users\juliak~1
\appdata\local\temp\dqhgzhxdskw.exe --> c:\users\juliak~1
\appdata\local\temp\DQHGZHXDSKW.exe [?]
S3 eustub;Usb Stub (Eltima software);c:\windows\system32
\drivers\eusbstub.sys [2011-8-15 13384]
S3 GSWCLOOZ;GSWCLOOZ;c:\users\juliak~1
\appdata\local\temp\gswclooz.exe --> c:\users\juliak~1
\appdata\local\temp\GSWCLOOZ.exe [?]
S3 GUGRYPUF;GUGRYPUF;c:\users\juliak~1
\appdata\local\temp\gugrypuf.exe --> c:\users\juliak~1
\appdata\local\temp\GUGRYPUF.exe [?]
S3 KTYMOIJBNZ;KTYMOIJBNZ;c:\users\juliak~1
\appdata\local\temp\ktymoijbnz.exe --> c:\users\juliak~1
\appdata\local\temp\KTYMOIJBNZ.exe [?]
S3 LFHTBUO;LFHTBUO;c:\users\juliak~1\appdata\local\temp\lfhtbuo.exe -
-> c:\users\juliak~1\appdata\local\temp\LFHTBUO.exe [?]
S3 OWT;OWT;c:\users\juliak~1\appdata\local\temp\owt.exe -->
c:\users\juliak~1\appdata\local\temp\OWT.exe [?]
S3 SNUPARQ;SNUPARQ;c:\users\juliak~1\appdata\local\temp\snuparq.exe
--> c:\users\juliak~1\appdata\local\temp\SNUPARQ.exe [?]
S3 vuhub;Virtual Usb Hub;c:\windows\system32\drivers\vuhub.sys [2011-8
-15 50248]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache
4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319
\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
S3 wxpSvc;webcamXP Service;c:\program files\webcamxp 5\wservice.exe
/startedbyscm:5053b757-40e35b3b-webcamsrv --> c:\program
files\webcamxp 5\wService.exe [?]
S3 XOEZMGD;XOEZMGD;c:\users\juliak~1\appdata\local\temp\xoezmgd.exe
--> c:\users\juliak~1\appdata\local\temp\XOEZMGD.exe [?]
.
=============== Created Last 30 ================
.
2011-12-10 04:07:21 -------- d-----w-
c:\program files\iPod
2011-12-10 04:06:41 -------- d-----w-
c:\program files\iTunes
2011-12-10 03:28:32 -------- d-----w-
c:\program files\Bonjour
2011-12-06 09:29:39 46592 ----a-w-
c:\windows\system32\shellses.dll
2011-12-06 09:29:39 400896 ----a-w-
c:\windows\system32\setresus.dll
2011-12-06 09:29:38 498688 ----a-w-
c:\windows\system32\setnote.cpl
2011-12-06 09:29:38 22528 ----a-w-
c:\windows\system32\rhmmplay.dll
2011-12-06 09:29:38 16896 ----a-w-
c:\windows\system32\ibmwave.exe
2011-12-06 09:29:22 -------- dc----w- C:\ViaVoice
2011-12-06 09:23:07 306688 ----a-w-
c:\windows\IsUninst.exe
2011-12-06 04:25:24 905088 ----a-w-
c:\windows\system32\drivers\tcpip.sys
2011-12-06 04:25:20 707584 ----a-w- c:\program
files\common files\system\wab32.dll
2011-12-02 05:51:25 -------- d-----w-
c:\users\julia k\appdata\local\{A47CFEFA-4884-4BA8-AAB8-
FDE9FEDA0EBE}
2011-12-02 05:51:04 -------- d-----w-
c:\users\julia k\appdata\local\{4472B695-9B92-4B0E-8062-
356E2DD74577}
2011-12-02 05:50:43 -------- d-----w-
c:\users\julia k\Tracing
2011-11-29 15:10:47 -------- d-----w-
c:\programdata\{49985C6A-CD7C-4D26-8E83-A936A367A677}
2011-11-29 12:14:30 -------- d-----w-
c:\programdata\Kaspersky Lab
2011-11-29 06:56:56 -------- d-----w-
c:\users\julia k\appdata\local\Eastman_Kodak_Company
2011-11-29 06:24:22 -------- d-----w-
c:\users\julia k\appdata\roaming\Temp
2011-11-22 13:51:52 -------- dc----w- C:\Remote
Programs
2011-11-22 13:51:49 -------- d-----w-
c:\programdata\Free Ride Games
2011-11-22 13:51:34 53314 ------w-
c:\windows\ExentInfo.exe
2011-11-22 13:51:30 -------- d-----w-
c:\program files\Free Ride Games
2011-11-12 03:30:33 -------- d-----w-
c:\program files\Sophos
.
==================== Find3M ====================
.
2011-11-28 18:01:25 41184 ----a-w-
c:\windows\avastSS.scr
2011-11-28 17:53:53 435032 ----a-w-
c:\windows\system32\drivers\aswSnx.sys
2011-11-28 17:52:07 55128 ----a-w-
c:\windows\system32\drivers\aswMonFlt.sys
2011-11-26 18:25:51 414368 ----a-w-
c:\windows\system32\FlashPlayerCPLApp.cpl
2011-10-28 04:00:28 348160 ----a-w-
c:\windows\system32\msvcr71.dll
2011-10-28 04:00:27 499712 ----a-w-
c:\windows\system32\msvcp71.dll
2011-10-24 22:29:02 94208 ----a-w-
c:\windows\system32\QuickTimeVR.qtx
2011-10-24 22:29:02 69632 ----a-w-
c:\windows\system32\QuickTime.qts
.
============= FINISH: 16:08:06.07 ===============
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-08-26.01)
.
Microsoft® Windows Vista™ Home Premium
Boot Device: \Device\HarddiskVolume1
Install Date: 2/24/2010 11:16:45 AM
System Uptime: 12/10/2011 3:00:23 PM (1 hours ago)
.
Motherboard: By O.E.M | | To Be Filled By O.E.M.
Processor: Intel(R) Pentium(R) M processor 2.13GHz | CPU 1 |
2133/532mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 65 GiB total, 20.925 GiB free.
D: is CDROM ()
.
==== Disabled Device Manager Items =============
.
Class GUID: {6bdd1fc6-810f-11d0-bec7-08002be2092f}
Description: KODAK 5000 Series AiO
Device ID: ROOT\IMAGE\0000
Manufacturer: Eastman Kodak Company
Name: KODAK 5000 Series AiO
PNP Device ID: ROOT\IMAGE\0000
Service: usbscan
.
Class GUID: {6bdd1fc6-810f-11d0-bec7-08002be2092f}
Description: KODAK ESP 7 AiO
Device ID: ROOT\IMAGE\0001
Manufacturer: Eastman Kodak Company
Name: KODAK ESP 7 AiO
PNP Device ID: ROOT\IMAGE\0001
Service: usbscan
.
Class GUID: {6bdd1fc6-810f-11d0-bec7-08002be2092f}
Description: KODAK ESP 7 AiO
Device ID: ROOT\IMAGE\0002
Manufacturer: Eastman Kodak Company
Name: KODAK ESP 7 AiO #2
PNP Device ID: ROOT\IMAGE\0002
Service: usbscan
.
==== System Restore Points ===================
.
RP348: 12/6/2011 8:50:04 PM - Scheduled Checkpoint
RP349: 12/9/2011 2:59:24 PM - Scheduled Checkpoint
RP350: 12/10/2011 8:54:34 AM - Scheduled Checkpoint
.
==== Installed Programs ======================
.
Update for Microsoft Office 2007 (KB2508958)
Acrobat.com
Adobe AIR
Adobe Flash Player 10 ActiveX
Adobe Flash Player 11 Plugin
Adobe Reader 9.4.6
aioprnt
aioscnnr
Apple Application Support
Apple Mobile Device Support
Apple Software Update
ArcSoft Magic-i Visual Effects 2
ArcSoft WebCam Companion 3
avast! Free Antivirus
Bonjour
center
D3DX10
essentials
Free Ride Games Player
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
IBM ViaVoice Command and Control Runtime 5.3
iCloud
iTunes
Java Auto Updater
Java(TM) 6 Update 20
Kodak AIO Printer
KODAK AiO Software
Logitech Vid HD
Malwarebytes' Anti-Malware version 1.51.2.1300
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4 Client Profile
Microsoft Application Error Reporting
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office Excel MUI (English) 2007
Microsoft Office File Validation Add-In
Microsoft Office Home and Student 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Silverlight
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable - KB2467175
Microsoft Visual C++ 2008 ATL Update kb973924 - x86
9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86
9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Mozilla Firefox 8.0.1 (x86 en-US)
MSVCRT
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
ocr
ooVoo
PreReq
QuickTime
RealNetworks - Microsoft Visual C++ 2005 Runtime
RealNetworks - Microsoft Visual C++ 2008 Runtime
RealPlayer
RealUpgrade 1.1
Security Update for 2007 Microsoft Office System (KB2288621)
Security Update for 2007 Microsoft Office System (KB2288931)
Security Update for 2007 Microsoft Office System (KB2345043)
Security Update for 2007 Microsoft Office System (KB2553074)
Security Update for 2007 Microsoft Office System (KB2553089)
Security Update for 2007 Microsoft Office System (KB2553090)
Security Update for 2007 Microsoft Office System (KB2584063)
Security Update for 2007 Microsoft Office System (KB969559)
Security Update for 2007 Microsoft Office System (KB976321)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft Office Excel 2007 (KB2553073)
Security Update for Microsoft Office InfoPath 2007 (KB979441)
Security Update for Microsoft Office PowerPoint 2007 (KB2535818)
Security Update for Microsoft Office PowerPoint Viewer 2007 (KB2464623)
Security Update for Microsoft Office system 2007 (972581)
Security Update for Microsoft Office system 2007 (KB974234)
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)
Security Update for Microsoft Office Word 2007 (KB2344993)
Segoe UI
SUPERAntiSpyware
Tango
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office 2007 System (KB2539530)
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office OneNote 2007 (KB980729)
Update for Microsoft Office OneNote 2007 Help (KB963670)
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 Help (KB963665)
Virtual Villagers 2: The Lost Children
Virtual Villagers 3: The Secret City
VLC media player 1.0.1
Windows Live Communications Platform
Windows Live Essentials
Windows Live ID Sign-in Assistant
Windows Live Installer
Windows Live Messenger
Windows Live Photo Common
Windows Live PIMT Platform
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live UX Platform
Windows Live UX Platform Language Pack
Windows Movie Maker 2.6
WinRAR 4.10 beta 1 (32-bit)
.
==== End Of File ===========================
Malwarebytes' Anti-Malware 1.51.2.1300
www.malwarebytes.org
Database version: 8348
Windows 6.0.6002 Service Pack 2
Internet Explorer 9.0.8112.16421
12/10/2011 1:51:32 PM
mbam-log-2011-12-10 (13-51-32).txt
Scan type: Quick scan
Objects scanned: 179868
Time elapsed: 15 minute(s), 43 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
GMER 1.0.15.15641 - http://www.gmer.net
Rootkit quick scan 2011-12-10 13:56:49
Windows 6.0.6002 Service Pack 2 Harddisk0\DR0 ->
\Device\Ide\IdeDeviceP1T0L0-1 Hitachi_HTS541280H9AT00
rev.HP3OA23C
Running: 5sn1ehsi.exe; Driver: C:\Users\JULIAK~1
\AppData\Local\Temp\uxldypod.sys
---- System - GMER 1.0.15 ----
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self
protection module/AVAST Software) ZwCreateProcessEx [0x9D47C7A2]
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self
protection module/AVAST Software) ObInsertObject
Code \SystemRoot\System32\Drivers\aswSP.SYS (avast! self
protection module/AVAST Software) ObMakeTemporaryObject
---- Devices - GMER 1.0.15 ----
Device \FileSystem\Ntfs \Ntfs
aswSP.SYS (avast! self protection module/AVAST Software)
AttachedDevice \FileSystem\Ntfs \Ntfs
X6XSEx.Sys
AttachedDevice \Driver\tdx \Device\Tcp
aswTdi.SYS (avast! TDI Filter Driver/AVAST Software)
AttachedDevice \Driver\tdx \Device\Udp
aswTdi.SYS (avast! TDI Filter Driver/AVAST Software)
---- EOF - GMER 1.0.15 ----
.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 1.6.0_20
Run by julia k at 16:06:07 on 2011-12-10
Microsoft® Windows Vista™ Home Premium
6.0.6002.2.1252.1.1033.18.991.455 [GMT -8:00]
.
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E
-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-
A87D98DFB681}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-
9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
svchost.exe
svchost.exe
svchost.exe
svchost.exe
svchost.exe
svchost.exe
svchost.exe
svchost.exe
svchost.exe
C:\Windows\system32\taskeng.exe
svchost.exe
svchost.exe
svchost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\spool\drivers\w32x86\3\EKIJ5000MUI.exe
C:\Program Files\Common Files\ArcSoft\Connection
Service\Bin\ACDaemon.exe
C:\Program Files\Real\RealPlayer\Update\realsched.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac
svchost.exe
svchost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\ctfmon.exe
.
============== Pseudo HJT Report ===============
.
uSearch Page =
uStart Page = hxxp://www.google.com/
uSearch Bar =
uInternet Settings,ProxyOverride = *.local
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-
fa578c2ebdc3} - c:\program files\common
files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: RealPlayer Download and Record Plugin for Internet Explorer:
{3049c3e9-b461-4bc5-8870-4c09146192ca} -
c:\programdata\real\realplayer\browserrecordplugin\ie\rpbrowserrecordplugin.dll
BHO: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} -
c:\program files\avast software\avast\aswWebRepIE.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-
5164760863c6} - c:\program files\common files\microsoft shared\windows
live\WindowsLiveLogin.dll
BHO: Ask Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} -
c:\program files\ask.com\GenericAskToolbar.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-
9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: kikin Plugin: {e601996f-e400-41ca-804b-cd6373a7eee2} -
c:\program files\kikin\ie_kikin.dll
TB: Ask Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} -
c:\program files\ask.com\GenericAskToolbar.dll
TB: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} -
c:\program files\avast software\avast\aswWebRepIE.dll
uRun: [WMPNSCFG] c:\program files\windows media player\WMPNSCFG.exe
mRun: [EKIJ5000StatusMonitor] c:\windows\system32
\spool\drivers\w32x86\3\EKIJ5000MUI.exe
mRun: [ArcSoft Connection Service] c:\program files\common
files\arcsoft\connection service\bin\ACDaemon.exe
mRun: [TkBellExe] "c:\program files\real\realplayer\update\realsched.exe" -
osboot
mRun: [APSDaemon] "c:\program files\common files\apple\apple application
support\APSDaemon.exe"
mRun: [Malwarebytes' Anti-Malware (reboot)] "c:\program files\malwarebytes'
anti-malware\mbam.exe" /runcleanupscript
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0
\reader\Reader_sl.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0
\AdobeARM.exe"
mRun: [avast] "c:\program files\avast software\avast\avastUI.exe" /nogui
mRun: [Conime] %windir%\system32\conime.exe
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mPolicies-explorer: BindDirectlyToPropertySetStorage = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12
\EXCEL.EXE/3000
IE: {0F7195C2-6713-4d93-A1BC-DA5FA33F0A65} - {E601996F-
E400-41CA-804B-CD6373A7EEE2} - c:\program files\kikin\ie_kikin.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-
E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~2
\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31
-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2
\office12\REFIEBAR.DLL
LSP: c:\progra~1\speedb~1\sblsp.dll
DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} -
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} -
hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: DhcpNameServer = 68.105.28.11 68.105.29.11 68.105.28.12
TCP: Interfaces\{D8C05882-80E2-4166-9283-EA5BB8A0A564} :
DhcpNameServer = 68.105.28.11 68.105.29.11 68.105.28.12
Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.DLL
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-
ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\julia
k\appdata\roaming\mozilla\firefox\profiles\fci7jxb5.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.facebook.com/
FF - prefs.js: network.proxy.type - 4
FF - plugin: c:\program files\adobe\reader 9.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\free ride games\npExentCtl.dll
FF - plugin: c:\program files\microsoft silverlight\4.0.60831.0\npctrlui.dll
FF - plugin: c:\program files\mozilla
firefox\plugins\npclntax_ClickPotatoLiteSA.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npdeployJava1.dll
FF - plugin: c:\program files\thrixxx\weblaunch\binaries\npWebLaunch.dll
FF - plugin:
c:\programdata\real\realplayer\browserrecordplugin\mozillaplugins\nprpchrome
browserrecordext.dll
FF - plugin:
c:\programdata\real\realplayer\browserrecordplugin\mozillaplugins\nprphtml5vi
deoshim.dll
FF - plugin: c:\users\julia
k\appdata\roaming\mozilla\firefox\profiles\fci7jxb5.default\extensions\2020pl
ayer_web@2020technologies.com\plugins\NP_2020Player_WEB.dll
.
============= SERVICES / DRIVERS ===============
.
R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2011-11-6
435032]
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2011-11-6
314456]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys
[2011-7-22 12880]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS
[2011-7-12 67664]
R2 !SASCORE;SAS Core Service;c:\program
files\superantispyware\SASCore.exe [2011-8-11 116608]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2011-
11-6 20568]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys
[2011-11-6 55128]
R2 avast! Antivirus;avast! Antivirus;c:\program files\avast
software\avast\AvastSvc.exe [2011-11-6 44768]
R2 FontCache;Windows Font Cache Service;c:\windows\system32\svchost.exe
-k LocalServiceAndNoImpersonation [2008-1-20 21504]
R2 Kodak AiO Network Discovery Service;Kodak AiO Network Discovery
Service;c:\program files\kodak\aio\center\EKAiOHostService.exe [2011-9-5
393648]
R2 uCamMonitor;CamMonitor;c:\program files\arcsoft\magic-i visual effects 2
\uCamMonitor.exe [2011-10-14 104960]
R2 X6XSEx;X6XSEx;c:\program files\free ride games\X6XSEx.sys [2011-
11-22 46184]
R3 NETw2v32;Intel(R) PRO/Wireless 2200BG Network Connection Driver for
Windows Vista;c:\windows\system32\drivers\NETw2v32.sys [2006-11-2
2589184]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN
v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319
\mscorsvw.exe [2010-3-18 130384]
S2 VideoAcceleratorService;VideoAcceleratorService;c:\progra~1\speedb~1
\videoacceleratorservice.exe -start -scm --> c:\progra~1\speedb~1
\VideoAcceleratorService.exe -start -scm [?]
S3 AA;AA;c:\users\juliak~1\appdata\local\temp\aa.exe -->
c:\users\juliak~1\appdata\local\temp\AA.exe [?]
S3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect;c:\windows\system32
\drivers\ArcSoftKsUFilter.sys [2011-10-14 17920]
S3 AVHNTD;AVHNTD;c:\users\juliak~1\appdata\local\temp\avhntd.exe -->
c:\users\juliak~1\appdata\local\temp\AVHNTD.exe [?]
S3 BSKWCSLN;BSKWCSLN;c:\users\juliak~1
\appdata\local\temp\bskwcsln.exe --> c:\users\juliak~1
\appdata\local\temp\BSKWCSLN.exe [?]
S3 CBONSWPL;CBONSWPL;c:\users\juliak~1
\appdata\local\temp\cbonswpl.exe --> c:\users\juliak~1
\appdata\local\temp\CBONSWPL.exe [?]
S3 DQHGZHXDSKW;DQHGZHXDSKW;c:\users\juliak~1
\appdata\local\temp\dqhgzhxdskw.exe --> c:\users\juliak~1
\appdata\local\temp\DQHGZHXDSKW.exe [?]
S3 eustub;Usb Stub (Eltima software);c:\windows\system32
\drivers\eusbstub.sys [2011-8-15 13384]
S3 GSWCLOOZ;GSWCLOOZ;c:\users\juliak~1
\appdata\local\temp\gswclooz.exe --> c:\users\juliak~1
\appdata\local\temp\GSWCLOOZ.exe [?]
S3 GUGRYPUF;GUGRYPUF;c:\users\juliak~1
\appdata\local\temp\gugrypuf.exe --> c:\users\juliak~1
\appdata\local\temp\GUGRYPUF.exe [?]
S3 KTYMOIJBNZ;KTYMOIJBNZ;c:\users\juliak~1
\appdata\local\temp\ktymoijbnz.exe --> c:\users\juliak~1
\appdata\local\temp\KTYMOIJBNZ.exe [?]
S3 LFHTBUO;LFHTBUO;c:\users\juliak~1\appdata\local\temp\lfhtbuo.exe -
-> c:\users\juliak~1\appdata\local\temp\LFHTBUO.exe [?]
S3 OWT;OWT;c:\users\juliak~1\appdata\local\temp\owt.exe -->
c:\users\juliak~1\appdata\local\temp\OWT.exe [?]
S3 SNUPARQ;SNUPARQ;c:\users\juliak~1\appdata\local\temp\snuparq.exe
--> c:\users\juliak~1\appdata\local\temp\SNUPARQ.exe [?]
S3 vuhub;Virtual Usb Hub;c:\windows\system32\drivers\vuhub.sys [2011-8
-15 50248]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache
4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319
\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
S3 wxpSvc;webcamXP Service;c:\program files\webcamxp 5\wservice.exe
/startedbyscm:5053b757-40e35b3b-webcamsrv --> c:\program
files\webcamxp 5\wService.exe [?]
S3 XOEZMGD;XOEZMGD;c:\users\juliak~1\appdata\local\temp\xoezmgd.exe
--> c:\users\juliak~1\appdata\local\temp\XOEZMGD.exe [?]
.
=============== Created Last 30 ================
.
2011-12-10 04:07:21 -------- d-----w-
c:\program files\iPod
2011-12-10 04:06:41 -------- d-----w-
c:\program files\iTunes
2011-12-10 03:28:32 -------- d-----w-
c:\program files\Bonjour
2011-12-06 09:29:39 46592 ----a-w-
c:\windows\system32\shellses.dll
2011-12-06 09:29:39 400896 ----a-w-
c:\windows\system32\setresus.dll
2011-12-06 09:29:38 498688 ----a-w-
c:\windows\system32\setnote.cpl
2011-12-06 09:29:38 22528 ----a-w-
c:\windows\system32\rhmmplay.dll
2011-12-06 09:29:38 16896 ----a-w-
c:\windows\system32\ibmwave.exe
2011-12-06 09:29:22 -------- dc----w- C:\ViaVoice
2011-12-06 09:23:07 306688 ----a-w-
c:\windows\IsUninst.exe
2011-12-06 04:25:24 905088 ----a-w-
c:\windows\system32\drivers\tcpip.sys
2011-12-06 04:25:20 707584 ----a-w- c:\program
files\common files\system\wab32.dll
2011-12-02 05:51:25 -------- d-----w-
c:\users\julia k\appdata\local\{A47CFEFA-4884-4BA8-AAB8-
FDE9FEDA0EBE}
2011-12-02 05:51:04 -------- d-----w-
c:\users\julia k\appdata\local\{4472B695-9B92-4B0E-8062-
356E2DD74577}
2011-12-02 05:50:43 -------- d-----w-
c:\users\julia k\Tracing
2011-11-29 15:10:47 -------- d-----w-
c:\programdata\{49985C6A-CD7C-4D26-8E83-A936A367A677}
2011-11-29 12:14:30 -------- d-----w-
c:\programdata\Kaspersky Lab
2011-11-29 06:56:56 -------- d-----w-
c:\users\julia k\appdata\local\Eastman_Kodak_Company
2011-11-29 06:24:22 -------- d-----w-
c:\users\julia k\appdata\roaming\Temp
2011-11-22 13:51:52 -------- dc----w- C:\Remote
Programs
2011-11-22 13:51:49 -------- d-----w-
c:\programdata\Free Ride Games
2011-11-22 13:51:34 53314 ------w-
c:\windows\ExentInfo.exe
2011-11-22 13:51:30 -------- d-----w-
c:\program files\Free Ride Games
2011-11-12 03:30:33 -------- d-----w-
c:\program files\Sophos
.
==================== Find3M ====================
.
2011-11-28 18:01:25 41184 ----a-w-
c:\windows\avastSS.scr
2011-11-28 17:53:53 435032 ----a-w-
c:\windows\system32\drivers\aswSnx.sys
2011-11-28 17:52:07 55128 ----a-w-
c:\windows\system32\drivers\aswMonFlt.sys
2011-11-26 18:25:51 414368 ----a-w-
c:\windows\system32\FlashPlayerCPLApp.cpl
2011-10-28 04:00:28 348160 ----a-w-
c:\windows\system32\msvcr71.dll
2011-10-28 04:00:27 499712 ----a-w-
c:\windows\system32\msvcp71.dll
2011-10-24 22:29:02 94208 ----a-w-
c:\windows\system32\QuickTimeVR.qtx
2011-10-24 22:29:02 69632 ----a-w-
c:\windows\system32\QuickTime.qts
.
============= FINISH: 16:08:06.07 ===============
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-08-26.01)
.
Microsoft® Windows Vista™ Home Premium
Boot Device: \Device\HarddiskVolume1
Install Date: 2/24/2010 11:16:45 AM
System Uptime: 12/10/2011 3:00:23 PM (1 hours ago)
.
Motherboard: By O.E.M | | To Be Filled By O.E.M.
Processor: Intel(R) Pentium(R) M processor 2.13GHz | CPU 1 |
2133/532mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 65 GiB total, 20.925 GiB free.
D: is CDROM ()
.
==== Disabled Device Manager Items =============
.
Class GUID: {6bdd1fc6-810f-11d0-bec7-08002be2092f}
Description: KODAK 5000 Series AiO
Device ID: ROOT\IMAGE\0000
Manufacturer: Eastman Kodak Company
Name: KODAK 5000 Series AiO
PNP Device ID: ROOT\IMAGE\0000
Service: usbscan
.
Class GUID: {6bdd1fc6-810f-11d0-bec7-08002be2092f}
Description: KODAK ESP 7 AiO
Device ID: ROOT\IMAGE\0001
Manufacturer: Eastman Kodak Company
Name: KODAK ESP 7 AiO
PNP Device ID: ROOT\IMAGE\0001
Service: usbscan
.
Class GUID: {6bdd1fc6-810f-11d0-bec7-08002be2092f}
Description: KODAK ESP 7 AiO
Device ID: ROOT\IMAGE\0002
Manufacturer: Eastman Kodak Company
Name: KODAK ESP 7 AiO #2
PNP Device ID: ROOT\IMAGE\0002
Service: usbscan
.
==== System Restore Points ===================
.
RP348: 12/6/2011 8:50:04 PM - Scheduled Checkpoint
RP349: 12/9/2011 2:59:24 PM - Scheduled Checkpoint
RP350: 12/10/2011 8:54:34 AM - Scheduled Checkpoint
.
==== Installed Programs ======================
.
Update for Microsoft Office 2007 (KB2508958)
Acrobat.com
Adobe AIR
Adobe Flash Player 10 ActiveX
Adobe Flash Player 11 Plugin
Adobe Reader 9.4.6
aioprnt
aioscnnr
Apple Application Support
Apple Mobile Device Support
Apple Software Update
ArcSoft Magic-i Visual Effects 2
ArcSoft WebCam Companion 3
avast! Free Antivirus
Bonjour
center
D3DX10
essentials
Free Ride Games Player
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
IBM ViaVoice Command and Control Runtime 5.3
iCloud
iTunes
Java Auto Updater
Java(TM) 6 Update 20
Kodak AIO Printer
KODAK AiO Software
Logitech Vid HD
Malwarebytes' Anti-Malware version 1.51.2.1300
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4 Client Profile
Microsoft Application Error Reporting
Microsoft Office 2007 Service Pack 2 (SP2)
Microsoft Office Excel MUI (English) 2007
Microsoft Office File Validation Add-In
Microsoft Office Home and Student 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Silverlight
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable - KB2467175
Microsoft Visual C++ 2008 ATL Update kb973924 - x86
9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86
9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Mozilla Firefox 8.0.1 (x86 en-US)
MSVCRT
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
ocr
ooVoo
PreReq
QuickTime
RealNetworks - Microsoft Visual C++ 2005 Runtime
RealNetworks - Microsoft Visual C++ 2008 Runtime
RealPlayer
RealUpgrade 1.1
Security Update for 2007 Microsoft Office System (KB2288621)
Security Update for 2007 Microsoft Office System (KB2288931)
Security Update for 2007 Microsoft Office System (KB2345043)
Security Update for 2007 Microsoft Office System (KB2553074)
Security Update for 2007 Microsoft Office System (KB2553089)
Security Update for 2007 Microsoft Office System (KB2553090)
Security Update for 2007 Microsoft Office System (KB2584063)
Security Update for 2007 Microsoft Office System (KB969559)
Security Update for 2007 Microsoft Office System (KB976321)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft Office Excel 2007 (KB2553073)
Security Update for Microsoft Office InfoPath 2007 (KB979441)
Security Update for Microsoft Office PowerPoint 2007 (KB2535818)
Security Update for Microsoft Office PowerPoint Viewer 2007 (KB2464623)
Security Update for Microsoft Office system 2007 (972581)
Security Update for Microsoft Office system 2007 (KB974234)
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)
Security Update for Microsoft Office Word 2007 (KB2344993)
Segoe UI
SUPERAntiSpyware
Tango
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office 2007 System (KB2539530)
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office OneNote 2007 (KB980729)
Update for Microsoft Office OneNote 2007 Help (KB963670)
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 Help (KB963665)
Virtual Villagers 2: The Lost Children
Virtual Villagers 3: The Secret City
VLC media player 1.0.1
Windows Live Communications Platform
Windows Live Essentials
Windows Live ID Sign-in Assistant
Windows Live Installer
Windows Live Messenger
Windows Live Photo Common
Windows Live PIMT Platform
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live UX Platform
Windows Live UX Platform Language Pack
Windows Movie Maker 2.6
WinRAR 4.10 beta 1 (32-bit)
.
==== End Of File ===========================