Hey guys. I seem to have the same problem as a lot of people these days. Got a hold of a google redirect virus that is driving me nuts. I managed to get my old laptop running but that was after I took some steps on my own (probably hurting things.
)
As of right now here is what is going on.
My new laptop redirects whenever I use google with firefox. I did not try IE or Chrome or any other search engines for that matter. As soon as I noted the redirect I disconnected the wireless and restored the laptop to factory settings (I've only had it for a couple of weeks). I didn't know if that would help but I went for it. It restored from the hidden image as the laptop did not come with any restore discs.
Along with the redirect came a great slow down and when the restore completed it was still acting a little laggy. The searches worked fine for a little bit but then the same problem jumped up. I've been reading up on steps to clean my system but I didn't think relying on threads for other people would be good for me to do. I've run the latest malware bytes, but it doesnt notice anything. I've also reset my router to factory settings without any effect.
Edit- I looked back over and saw the 8-steps sticky. Went ahead and followed those steps.
Avira Scan----------------
Avira AntiVir Personal
Report file date: Tuesday, November 30, 2010 00:47
Scanning for 3104283 virus strains and unwanted programs.
The program is running as an unrestricted full version.
Online services are available:
Licensee : Avira AntiVir Personal - FREE Antivirus
Serial number : 0000149996-ADJIE-0000001
Platform : Windows 7 x64
Windows version : (plain) [6.1.7600]
Boot mode : Normally booted
Username : SYSTEM
Computer name : MIKE-PC
Version information:
BUILD.DAT : 10.0.0.592 31823 Bytes 8/9/2010 11:00:00
AVSCAN.EXE : 10.0.3.1 434344 Bytes 8/2/2010 22:09:56
AVSCAN.DLL : 10.0.3.0 46440 Bytes 4/1/2010 19:57:04
LUKE.DLL : 10.0.2.3 104296 Bytes 8/2/2010 22:10:00
LUKERES.DLL : 10.0.0.1 12648 Bytes 2/11/2010 06:40:49
VBASE000.VDF : 7.10.0.0 19875328 Bytes 11/6/2009 16:05:36
VBASE001.VDF : 7.10.1.0 1372672 Bytes 11/19/2009 02:27:49
VBASE002.VDF : 7.10.3.1 3143680 Bytes 1/20/2010 00:37:42
VBASE003.VDF : 7.10.3.75 996864 Bytes 1/26/2010 23:37:42
VBASE004.VDF : 7.10.4.203 1579008 Bytes 3/5/2010 18:29:03
VBASE005.VDF : 7.10.6.82 2494464 Bytes 4/15/2010 22:10:03
VBASE006.VDF : 7.10.7.218 2294784 Bytes 6/2/2010 22:10:04
VBASE007.VDF : 7.10.9.165 4840960 Bytes 7/23/2010 22:10:06
VBASE008.VDF : 7.10.11.133 3454464 Bytes 9/13/2010 06:42:51
VBASE009.VDF : 7.10.13.80 2265600 Bytes 11/2/2010 06:42:56
VBASE010.VDF : 7.10.13.81 2048 Bytes 11/2/2010 06:42:57
VBASE011.VDF : 7.10.13.82 2048 Bytes 11/2/2010 06:42:57
VBASE012.VDF : 7.10.13.83 2048 Bytes 11/2/2010 06:42:57
VBASE013.VDF : 7.10.13.116 147968 Bytes 11/4/2010 06:42:58
VBASE014.VDF : 7.10.13.147 146944 Bytes 11/7/2010 06:42:59
VBASE015.VDF : 7.10.13.180 123904 Bytes 11/9/2010 06:43:00
VBASE016.VDF : 7.10.13.211 122368 Bytes 11/11/2010 06:43:02
VBASE017.VDF : 7.10.13.243 147456 Bytes 11/15/2010 06:43:02
VBASE018.VDF : 7.10.14.15 142848 Bytes 11/17/2010 06:43:03
VBASE019.VDF : 7.10.14.41 134144 Bytes 11/19/2010 06:43:04
VBASE020.VDF : 7.10.14.63 128000 Bytes 11/22/2010 06:43:05
VBASE021.VDF : 7.10.14.87 143872 Bytes 11/24/2010 06:43:06
VBASE022.VDF : 7.10.14.116 140800 Bytes 11/26/2010 06:43:07
VBASE023.VDF : 7.10.14.117 2048 Bytes 11/26/2010 06:43:07
VBASE024.VDF : 7.10.14.118 2048 Bytes 11/26/2010 06:43:07
VBASE025.VDF : 7.10.14.119 2048 Bytes 11/26/2010 06:43:08
VBASE026.VDF : 7.10.14.120 2048 Bytes 11/26/2010 06:43:08
VBASE027.VDF : 7.10.14.121 2048 Bytes 11/26/2010 06:43:08
VBASE028.VDF : 7.10.14.122 2048 Bytes 11/26/2010 06:43:08
VBASE029.VDF : 7.10.14.123 2048 Bytes 11/26/2010 06:43:08
VBASE030.VDF : 7.10.14.124 2048 Bytes 11/26/2010 06:43:08
VBASE031.VDF : 7.10.14.136 103936 Bytes 11/29/2010 06:43:09
Engineversion : 8.2.4.114
AEVDF.DLL : 8.1.2.1 106868 Bytes 8/2/2010 22:09:54
AESCRIPT.DLL : 8.1.3.47 1294716 Bytes 11/30/2010 06:43:28
AESCN.DLL : 8.1.7.2 127349 Bytes 11/30/2010 06:43:26
AESBX.DLL : 8.1.3.2 254324 Bytes 11/30/2010 06:43:29
AERDL.DLL : 8.1.9.2 635252 Bytes 11/30/2010 06:43:25
AEPACK.DLL : 8.2.3.11 471416 Bytes 11/30/2010 06:43:24
AEOFFICE.DLL : 8.1.1.10 201084 Bytes 11/30/2010 06:43:22
AEHEUR.DLL : 8.1.2.46 3088759 Bytes 11/30/2010 06:43:22
AEHELP.DLL : 8.1.15.0 246135 Bytes 11/30/2010 06:43:17
AEGEN.DLL : 8.1.4.2 401781 Bytes 11/30/2010 06:43:16
AEEMU.DLL : 8.1.3.0 393589 Bytes 11/30/2010 06:43:14
AECORE.DLL : 8.1.18.1 196984 Bytes 11/30/2010 06:43:13
AEBB.DLL : 8.1.1.0 53618 Bytes 8/2/2010 22:09:48
AVWINLL.DLL : 10.0.0.0 19304 Bytes 8/2/2010 22:09:56
AVPREF.DLL : 10.0.0.0 44904 Bytes 8/2/2010 22:09:55
AVREP.DLL : 10.0.0.8 62209 Bytes 6/17/2010 21:27:13
AVREG.DLL : 10.0.3.2 53096 Bytes 8/2/2010 22:09:55
AVSCPLR.DLL : 10.0.3.1 83816 Bytes 8/2/2010 22:09:56
AVARKT.DLL : 10.0.0.14 227176 Bytes 8/2/2010 22:09:54
AVEVTLOG.DLL : 10.0.0.8 203112 Bytes 8/2/2010 22:09:55
SQLITE3.DLL : 3.6.19.0 355688 Bytes 6/17/2010 21:27:22
AVSMTP.DLL : 10.0.0.17 63848 Bytes 8/2/2010 22:09:56
NETNT.DLL : 10.0.0.0 11624 Bytes 6/17/2010 21:27:21
RCIMAGE.DLL : 10.0.0.26 2550120 Bytes 1/28/2010 20:10:20
RCTEXT.DLL : 10.0.58.0 97128 Bytes 8/2/2010 22:10:08
Configuration settings for the scan:
Jobname.............................: Complete system scan
Configuration file..................: C:\Program Files (x86)\Avira\AntiVir Desktop\sysscan.avp
Logging.............................: low
Primary action......................: interactive
Secondary action....................: ignore
Scan master boot sector.............: on
Scan boot sector....................: on
Boot sectors........................: C:,
Process scan........................: on
Extended process scan...............: on
Scan registry.......................: on
Search for rootkits.................: on
Integrity checking of system files..: off
Scan all files......................: All files
Scan archives.......................: on
Recursion depth.....................: 20
Smart extensions....................: on
Macro heuristic.....................: on
File heuristic......................: medium
Start of the scan: Tuesday, November 30, 2010 00:47
Starting search for hidden objects.
c:\program files\acer\acer updater\sd.exe
c:\Program Files\Acer\Acer Updater\SD.exe
[NOTE] The process is not visible.
c:\program files\acer\acer updater\sd.exe
c:\program files (x86)\intel\intel(r) rapid storage technology\iastoricon.exe
c:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
[NOTE] The process is not visible.
c:\program files\acer\acer epower management\setapm.exe
c:\Program Files\Acer\Acer ePower Management\SetAPM.exe
[NOTE] The process is not visible.
The scan of running processes will be started
Scan process 'avscan.exe' - '94' Module(s) have been scanned
Scan process 'avscan.exe' - '38' Module(s) have been scanned
Scan process 'avcenter.exe' - '78' Module(s) have been scanned
Scan process 'avgnt.exe' - '64' Module(s) have been scanned
Scan process 'sched.exe' - '54' Module(s) have been scanned
Scan process 'avguard.exe' - '73' Module(s) have been scanned
Scan process 'NOTEPAD.EXE' - '34' Module(s) have been scanned
Scan process 'firefox.exe' - '120' Module(s) have been scanned
Scan process 'firefox.exe' - '59' Module(s) have been scanned
Scan process 'UNS.exe' - '58' Module(s) have been scanned
Scan process 'IAStorDataMgrSvc.exe' - '52' Module(s) have been scanned
Scan process 'LMworker.exe' - '32' Module(s) have been scanned
Scan process 'ArcadeMovieService.exe' - '50' Module(s) have been scanned
Scan process 'LManager.exe' - '77' Module(s) have been scanned
Scan process 'BackupManagerTray.exe' - '41' Module(s) have been scanned
Scan process 'UpdaterService.exe' - '32' Module(s) have been scanned
Scan process 'RichVideo.exe' - '31' Module(s) have been scanned
Scan process 'SchedulerSvc.exe' - '44' Module(s) have been scanned
Scan process 'IScheduleSvc.exe' - '62' Module(s) have been scanned
Scan process 'rundll32.exe' - '38' Module(s) have been scanned
Scan process 'LMS.exe' - '35' Module(s) have been scanned
Scan process 'GREGsvc.exe' - '27' Module(s) have been scanned
Scan process 'dsiwmis.exe' - '47' Module(s) have been scanned
Starting master boot sector scan:
Master boot sector HD0
[DETECTION] Contains code of the BOO/Alureon.A boot sector virus
[NOTE] The boot sector was not written!
Start scanning boot sectors:
Boot sector 'C:\'
[DETECTION] Contains code of the BOO/Alureon.A boot sector virus
[NOTE] The boot sector was not written!
Starting to scan executable files (registry).
The registry was scanned ( '89' files ).
Starting the file scan:
Begin scan in 'C:\' <Acer>
End of the scan: Tuesday, November 30, 2010 01:15
Used time: 28:13 Minute(s)
The scan has been done completely.
20531 Scanned directories
426040 Files were scanned
2 Viruses and/or unwanted programs were found
0 Files were classified as suspicious
0 files were deleted
0 Viruses and unwanted programs were repaired
0 Files were moved to quarantine
0 Files were renamed
0 Files cannot be scanned
426040 Files not concerned
2564 Archives were scanned
0 Warnings
2 Notes
439140 Objects were scanned with rootkit scan
4 Hidden objects were found
MBAM-------------------------------------------------------
Malwarebytes' Anti-Malware 1.50
www.malwarebytes.org
Database version: 5214
Windows 6.1.7600
Internet Explorer 8.0.7600.16385
11/30/2010 1:23:09 AM
mbam-log-2010-11-30 (01-23-09).txt
Scan type: Quick scan
Objects scanned: 146390
Time elapsed: 1 minute(s), 51 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
Gmer----------------------------------------
Let it quick scan and saved but there was nothing in the file. I can do a full scan later if requested maybe?
DDS-----------------------------------------
DDS (Ver_10-11-27.01) - NTFS_AMD64
Run by Mike at 1:27:08.42 on Tue 11/30/2010
Internet Explorer: 8.0.7600.16385
Microsoft Windows 7 Home Premium 6.1.7600.0.1252.1.1033.18.3767.2590 [GMT -6:00]
============== Running Processes ===============
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
C:\Program Files (x86)\Launch Manager\dsiwmis.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Windows\Explorer.EXE
C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
C:\Program Files\Acer\Optical Drive Power Management\ODDPWRSvc.exe
C:\Program Files (x86)\Cyberlink\Shared files\RichVideo.exe
C:\Program Files\Acer\Acer Updater\UpdaterService.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
C:\Program Files\Acer\Optical Drive Power Management\ODDPWR.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\Acer Arcade Deluxe\Arcade Movie\ArcadeMovieService.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Windows\system32\igfxext.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
C:\Program Files (x86)\Launch Manager\LMworker.exe
C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Users\Mike\Downloads\dds.scr
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
============== Pseudo HJT Report ===============
mWinlogon: Userinit=userinit.exe
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
mRun: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
mRun: [BackupManagerTray] "C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -h -k
mRun: [OOTag] C:\Program Files (x86)\Acer\OOBEOffer\OOTag.exe
mRun: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
mRun: [MDS_Menu] "C:\Program Files (x86)\Acer Arcade Deluxe\MediaShow Espresso\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Acer Arcade Deluxe\MediaShow Espresso" UpdateWithCreateOnce "Software\CyberLink\MediaShow Espresso\5.6"
mRun: [ArcadeMovieService] "C:\Program Files (x86)\Acer Arcade Deluxe\Arcade Movie\ArcadeMovieService.exe"
mRun: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
mRun-x64: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
mRun-x64: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE3
mRun-x64: [AmIcoSinglun64] C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
mRun-x64: [ODDPwr] "C:\Program Files\Acer\Optical Drive Power Management\ODDPwr.exe"
mRun-x64: [mwlDaemon] C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe
mRun-x64: [IgfxTray] C:\Windows\system32\igfxtray.exe
mRun-x64: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
mRun-x64: [Persistence] C:\Windows\system32\igfxpers.exe
mRun-x64: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
mRun-x64: [Acer ePower Management] C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
================= FIREFOX ===================
FF - ProfilePath - C:\Users\Mike\AppData\Roaming\Mozilla\Firefox\Profiles\tl1vn61l.default\
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npdnu.dll
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npdnupdater2.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - Extension: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
---- FIREFOX POLICIES ----
FF - user.js: network.protocol-handler.warn-external.dnupdate - false
============= SERVICES / DRIVERS ===============
R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\System32\drivers\vwififlt.sys [2009-7-13 59904]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2010-11-30 135336]
R2 AntiVirService;Avira AntiVir Guard;C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2010-11-30 267944]
R2 avgntflt;avgntflt;C:\Windows\System32\drivers\avgntflt.sys [2010-11-30 81584]
R2 DsiWMIService;Dritek WMI Service;C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2010-8-3 321104]
R2 ePowerSvc;Acer ePower Service;C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2010-11-29 868896]
R2 GREGService;GREGService;C:\Program Files (x86)\Acer\Registration\GREGsvc.exe [2010-1-8 23584]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-8-3 13336]
R2 NTI IScheduleSvc;NTI IScheduleSvc;C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe [2010-6-28 255744]
R2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service;C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2010-4-16 144640]
R2 ODDPwrSvc;Acer ODD Power Service;C:\Program Files\Acer\Optical Drive Power Management\ODDPWRSvc.exe [2010-8-3 171040]
R2 UNS;Intel(R) Management & Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-11-29 2320920]
R2 Updater Service;Updater Service;C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2010-8-3 243232]
R3 HECIx64;Intel(R) Management Engine Interface;C:\Windows\System32\drivers\HECIx64.sys [2010-8-3 56344]
R3 Impcd;Impcd;C:\Windows\System32\drivers\Impcd.sys [2010-8-3 158976]
R3 IntcDAud;Intel(R) Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2010-8-3 271872]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\Windows\System32\drivers\L1C62x64.sys [2010-8-3 76400]
S2 0297431291090157mcinstcleanup;McAfee Application Installer Cleanup (0297431291090157);C:\Users\Mike\AppData\Local\Temp\029743~1.EXE C:\PROGRA~2\COMMON~1\McAfee\INSTAL~1\cleanup.ini -cleanup -nolog -service --> C:\Users\Mike\AppData\Local\Temp\029743~1.EXE C:\PROGRA~2\COMMON~1\McAfee\INSTAL~1\cleanup.ini -cleanup -nolog -service [?]
S3 AmUStor;AM USB Stroage Driver;C:\Windows\System32\drivers\AmUStor.sys [2010-6-9 40448]
S3 NTIBackupSvc;NTI Backup Now 5 Backup Service;C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2010-4-16 50432]
=============== Created Last 30 ================
2010-11-30 07:05:15 709456 ----a-w- C:\Windows\isRS-000.tmp
2010-11-30 06:46:51 -------- d-----w- C:\Users\Mike\AppData\Roaming\Avira
2010-11-30 06:41:51 81584 ----a-w- C:\Windows\System32\drivers\avgntflt.sys
2010-11-30 06:41:51 -------- d-----w- C:\Program Files (x86)\Avira
2010-11-30 06:41:51 -------- d-----w- C:\PROGRA~3\Avira
2010-11-30 04:49:43 -------- d-----w- C:\Users\Mike\AppData\Local\AOL
2010-11-30 04:49:43 -------- d-----w- C:\Users\Mike\AppData\Local\AIM
2010-11-30 04:45:37 -------- d-----w- C:\PROGRA~3\AIM
2010-11-30 04:45:32 -------- d-----w- C:\Program Files (x86)\AIM
2010-11-30 04:45:27 -------- d-----w- C:\Program Files (x86)\Common Files\Software Update Utility
2010-11-30 04:45:23 -------- d-----w- C:\Program Files (x86)\Common Files\AOL
2010-11-30 04:26:20 -------- d-----w- C:\Users\Mike\AppData\Local\Microsoft Games
2010-11-30 04:24:37 8199504 ----a-w- C:\PROGRA~3\Microsoft\Windows Defender\Definition Updates\{6DC46CEA-6696-4E71-A717-A2F7BB764522}\mpengine.dll
2010-11-30 04:24:36 270720 ------w- C:\Windows\System32\MpSigStub.exe
2010-11-30 04:20:57 -------- d-----w- C:\Users\Mike\AppData\Roaming\Malwarebytes
2010-11-30 04:20:42 38224 ----a-w- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
2010-11-30 04:20:41 24152 ----a-w- C:\Windows\System32\drivers\mbam.sys
2010-11-30 04:20:41 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2010-11-30 04:20:41 -------- d-----w- C:\PROGRA~3\Malwarebytes
2010-11-30 04:10:11 -------- d-----w- C:\Program Files (x86)\Launch Manager
2010-11-30 04:08:34 -------- d---a-w- C:\book
2010-11-30 04:04:46 3 ----a-w- C:\Windows\System32\PLD_Framework.cmd
2010-11-30 04:01:34 -------- d-----w- C:\Program Files\Common Files\Intel
2010-11-30 04:01:33 -------- d-----w- C:\Program Files (x86)\Common Files\Intel
2010-11-30 03:56:08 -------- d-----w- C:\Windows\NAPP_Dism_Log
2010-11-30 02:55:37 -------- d-----w- C:\PROGRA~3\boost_interprocess
2010-11-30 02:45:22 82432 ----a-w- C:\Windows\SysWow64\msxml4r.dll
2010-11-30 02:45:22 44544 ----a-w- C:\Windows\SysWow64\msxml4a.dll
2010-11-30 02:45:22 1233920 ----a-w- C:\Windows\SysWow64\msxml4.dll
2010-11-30 02:44:59 77824 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\ctor.dll
2010-11-30 02:44:59 610436 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\IKernel.exe
2010-11-30 02:44:59 32768 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\objectps.dll
2010-11-30 02:44:59 225280 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\IScript\iscript.dll
2010-11-30 02:44:59 176128 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\iuser.dll
2010-11-30 02:43:31 -------- d-----w- C:\Users\Mike\AppData\Local\Cyberlink
2010-11-30 02:42:29 -------- d-----w- C:\Program Files (x86)\Acer Arcade Deluxe
2010-11-30 02:40:53 4398360 ----a-w- C:\Windows\System32\d3dx9_32.dll
2010-11-30 02:40:53 3426072 ----a-w- C:\Windows\SysWow64\d3dx9_32.dll
2010-11-30 02:40:41 -------- d-----w- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2010-11-30 02:40:02 -------- d-----w- C:\Program Files (x86)\Microsoft
2010-11-30 02:39:36 -------- d-----w- C:\Program Files (x86)\Windows Live SkyDrive
2010-11-30 02:39:10 -------- d-----w- C:\Windows\PCHEALTH
2010-11-30 02:38:58 74520 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\bd851d6a1cb9037\DSETUP.dll
2010-11-30 02:38:58 484632 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\bd851d6a1cb9037\DXSETUP.exe
2010-11-30 02:38:58 1670936 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\bd851d6a1cb9037\dsetup32.dll
2010-11-30 02:38:22 141402440 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\wlc7215.tmp
2010-11-30 02:38:17 -------- d-----w- C:\Program Files (x86)\Common Files\Windows Live
2010-11-30 02:31:39 -------- d-----w- C:\Program Files (x86)\Common Files\postureAgent
2010-11-30 02:30:47 -------- d-----w- C:\Users\Mike\AppData\Roaming\Liteon
2010-11-30 02:30:47 -------- d-----w- C:\Program Files (x86)\Acer Crystal Eye webcam
2010-11-30 02:29:47 -------- d-----w- C:\Users\Mike\AppData\Roaming\Intel Corporation
2010-11-30 02:29:47 -------- d-----w- C:\Program Files\Synaptics
2010-11-30 02:25:01 -------- d-----w- C:\Users\Mike\AppData\Local\EgisTec IPS
2010-11-30 02:23:18 -------- d-----w- C:\Users\Mike\AppData\Local\VirtualStore
2010-11-30 02:21:49 -------- d-sh--w- C:\Recovery
==================== Find3M ====================
============= FINISH: 1:28:00.98 ===============
DDS Attach-----------------------------------------------------------
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
DDS (Ver_10-11-27.01)
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume2
Install Date: 11/29/2010 8:22:02 PM
System Uptime: 11/30/2010 1:17:39 AM (0 hours ago)
Motherboard: Acer | | ZR7
Processor: Intel(R) Core(TM) i3 CPU M 370 @ 2.40GHz | CPU | 2399/1066mhz
==== Disk Partitions =========================
C: is FIXED (NTFS) - 583 GiB total, 554.524 GiB free.
D: is CDROM ()
==== Disabled Device Manager Items =============
==== System Restore Points ===================
RP1: 11/29/2010 8:34:54 PM - Installed Acer ePower Management
RP2: 11/29/2010 8:36:53 PM - Installed Microsoft Office 2010
RP3: 11/29/2010 8:40:44 PM - Installed DirectX
RP4: 11/29/2010 8:42:15 PM - Installed Suite
RP5: 11/29/2010 10:24:15 PM - Windows Update
RP6: 11/29/2010 10:29:23 PM - Removed MyWinLocker Suite
RP7: 11/29/2010 10:44:27 PM - Removed Norton Online Backup
==== Installed Programs ======================
18 Wheels of Steel - American Long Haul
Acer Arcade Deluxe
Acer Arcade Movie
Acer Backup Manager
Acer Crystal Eye webcam
Acer ePower Management
Acer eRecovery Management
Acer Game Console
Acer Games
Acer Registration
Acer ScreenSaver
Acer Updater
Acrobat.com
Adobe AIR
Adobe Flash Player 10 ActiveX
Adobe Reader 9.1 MUI
Agatha Christie - Death on the Nile
AIM 7
Alcor Micro USB Card Reader
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver
Avira AntiVir Personal - Free Antivirus
Backup Manager Basic
Bejeweled 2 Deluxe
Blackhawk Striker 2
Build-a-lot 2
Chuzzle Deluxe
Diner Dash 2 Restaurant Rescue
Dora's Carnival Adventure
Download Updater (AOL LLC)
eSobi v2
FATE
Identity Card
Intel(R) Control Center
Intel(R) Graphics Media Accelerator Driver
Intel(R) Management Engine Components
Intel(R) Rapid Storage Technology
Jewel Quest - Heritage
Jewel Quest Solitaire 2
John Deere Drive Green
Junk Mail filter update
Launch Manager
Malwarebytes' Anti-Malware
MediaShow Espresso
Microsoft Choice Guard
Microsoft Office 2010
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Mozilla Firefox (3.6.12)
MSVCRT
NTI Backup Now 5
NTI Backup Now Standard
NTI Media Maker 8
Optical Drive Power Management
Penguins!
Plants vs. Zombies
Polar Bowler
Polar Golfer
Realtek High Definition Audio Driver
Virtual Villagers 4 - The Tree of Life
Welcome Center
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live Mail
Windows Live Messenger
Windows Live Movie Maker
Windows Live Photo Gallery
Windows Live Sign-in Assistant
Windows Live Sync
Windows Live Upload Tool
Windows Live Writer
Zuma's Revenge
==== Event Viewer Messages From Past Week ========
11/30/2010 12:42:18 AM, Error: Service Control Manager [7006] - The ScRegSetValueExW call failed for Start with the following error: Access is denied.
11/30/2010 1:20:29 AM, Error: Microsoft-Windows-WMPNSS-Service [14332] - Service 'WMPNetworkSvc' did not start correctly because CoCreateInstance(CLSID_UPnPDeviceFinder) encountered error '0x80004005'. Verify that the UPnPHost service is running and that the UPnPHost component of Windows is installed properly.
11/30/2010 1:18:52 AM, Error: Server [2505] - The server could not bind to the transport \Device\NetBT_Tcpip_{873743D8-7D7C-4D29-9A11-B0EB87BE8DD5} because another computer on the network has the same name. The server could not start.
11/30/2010 1:18:52 AM, Error: NetBT [4321] - The name "MIKE-PC :20" could not be registered on the interface with IP address 192.168.2.3. The computer with the IP address 192.168.2.2 did not allow the name to be claimed by this computer.
11/30/2010 1:18:23 AM, Error: NetBT [4321] - The name "MIKE-PC :0" could not be registered on the interface with IP address 192.168.2.3. The computer with the IP address 192.168.2.2 did not allow the name to be claimed by this computer.
11/30/2010 1:16:37 AM, Error: Service Control Manager [7034] - The Dritek WMI Service service terminated unexpectedly. It has done this 1 time(s).
11/29/2010 10:49:35 PM, Error: NetBT [4321] - The name "MIKE-PC :0" could not be registered on the interface with IP address 192.168.2.3. The computer with the IP address 192.168.2.4 did not allow the name to be claimed by this computer.
11/29/2010 10:05:38 PM, Error: NetBT [4321] - The name "MIKE-PC :20" could not be registered on the interface with IP address 192.168.2.3. The computer with the IP address 192.168.2.4 did not allow the name to be claimed by this computer.
11/29/2010 10:01:18 PM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Acer ODD Power Service service to connect.
11/29/2010 10:01:18 PM, Error: Service Control Manager [7000] - The Acer ODD Power Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
==== End Of File ===========================
As of right now here is what is going on.
My new laptop redirects whenever I use google with firefox. I did not try IE or Chrome or any other search engines for that matter. As soon as I noted the redirect I disconnected the wireless and restored the laptop to factory settings (I've only had it for a couple of weeks). I didn't know if that would help but I went for it. It restored from the hidden image as the laptop did not come with any restore discs.
Along with the redirect came a great slow down and when the restore completed it was still acting a little laggy. The searches worked fine for a little bit but then the same problem jumped up. I've been reading up on steps to clean my system but I didn't think relying on threads for other people would be good for me to do. I've run the latest malware bytes, but it doesnt notice anything. I've also reset my router to factory settings without any effect.
Edit- I looked back over and saw the 8-steps sticky. Went ahead and followed those steps.
Avira Scan----------------
Avira AntiVir Personal
Report file date: Tuesday, November 30, 2010 00:47
Scanning for 3104283 virus strains and unwanted programs.
The program is running as an unrestricted full version.
Online services are available:
Licensee : Avira AntiVir Personal - FREE Antivirus
Serial number : 0000149996-ADJIE-0000001
Platform : Windows 7 x64
Windows version : (plain) [6.1.7600]
Boot mode : Normally booted
Username : SYSTEM
Computer name : MIKE-PC
Version information:
BUILD.DAT : 10.0.0.592 31823 Bytes 8/9/2010 11:00:00
AVSCAN.EXE : 10.0.3.1 434344 Bytes 8/2/2010 22:09:56
AVSCAN.DLL : 10.0.3.0 46440 Bytes 4/1/2010 19:57:04
LUKE.DLL : 10.0.2.3 104296 Bytes 8/2/2010 22:10:00
LUKERES.DLL : 10.0.0.1 12648 Bytes 2/11/2010 06:40:49
VBASE000.VDF : 7.10.0.0 19875328 Bytes 11/6/2009 16:05:36
VBASE001.VDF : 7.10.1.0 1372672 Bytes 11/19/2009 02:27:49
VBASE002.VDF : 7.10.3.1 3143680 Bytes 1/20/2010 00:37:42
VBASE003.VDF : 7.10.3.75 996864 Bytes 1/26/2010 23:37:42
VBASE004.VDF : 7.10.4.203 1579008 Bytes 3/5/2010 18:29:03
VBASE005.VDF : 7.10.6.82 2494464 Bytes 4/15/2010 22:10:03
VBASE006.VDF : 7.10.7.218 2294784 Bytes 6/2/2010 22:10:04
VBASE007.VDF : 7.10.9.165 4840960 Bytes 7/23/2010 22:10:06
VBASE008.VDF : 7.10.11.133 3454464 Bytes 9/13/2010 06:42:51
VBASE009.VDF : 7.10.13.80 2265600 Bytes 11/2/2010 06:42:56
VBASE010.VDF : 7.10.13.81 2048 Bytes 11/2/2010 06:42:57
VBASE011.VDF : 7.10.13.82 2048 Bytes 11/2/2010 06:42:57
VBASE012.VDF : 7.10.13.83 2048 Bytes 11/2/2010 06:42:57
VBASE013.VDF : 7.10.13.116 147968 Bytes 11/4/2010 06:42:58
VBASE014.VDF : 7.10.13.147 146944 Bytes 11/7/2010 06:42:59
VBASE015.VDF : 7.10.13.180 123904 Bytes 11/9/2010 06:43:00
VBASE016.VDF : 7.10.13.211 122368 Bytes 11/11/2010 06:43:02
VBASE017.VDF : 7.10.13.243 147456 Bytes 11/15/2010 06:43:02
VBASE018.VDF : 7.10.14.15 142848 Bytes 11/17/2010 06:43:03
VBASE019.VDF : 7.10.14.41 134144 Bytes 11/19/2010 06:43:04
VBASE020.VDF : 7.10.14.63 128000 Bytes 11/22/2010 06:43:05
VBASE021.VDF : 7.10.14.87 143872 Bytes 11/24/2010 06:43:06
VBASE022.VDF : 7.10.14.116 140800 Bytes 11/26/2010 06:43:07
VBASE023.VDF : 7.10.14.117 2048 Bytes 11/26/2010 06:43:07
VBASE024.VDF : 7.10.14.118 2048 Bytes 11/26/2010 06:43:07
VBASE025.VDF : 7.10.14.119 2048 Bytes 11/26/2010 06:43:08
VBASE026.VDF : 7.10.14.120 2048 Bytes 11/26/2010 06:43:08
VBASE027.VDF : 7.10.14.121 2048 Bytes 11/26/2010 06:43:08
VBASE028.VDF : 7.10.14.122 2048 Bytes 11/26/2010 06:43:08
VBASE029.VDF : 7.10.14.123 2048 Bytes 11/26/2010 06:43:08
VBASE030.VDF : 7.10.14.124 2048 Bytes 11/26/2010 06:43:08
VBASE031.VDF : 7.10.14.136 103936 Bytes 11/29/2010 06:43:09
Engineversion : 8.2.4.114
AEVDF.DLL : 8.1.2.1 106868 Bytes 8/2/2010 22:09:54
AESCRIPT.DLL : 8.1.3.47 1294716 Bytes 11/30/2010 06:43:28
AESCN.DLL : 8.1.7.2 127349 Bytes 11/30/2010 06:43:26
AESBX.DLL : 8.1.3.2 254324 Bytes 11/30/2010 06:43:29
AERDL.DLL : 8.1.9.2 635252 Bytes 11/30/2010 06:43:25
AEPACK.DLL : 8.2.3.11 471416 Bytes 11/30/2010 06:43:24
AEOFFICE.DLL : 8.1.1.10 201084 Bytes 11/30/2010 06:43:22
AEHEUR.DLL : 8.1.2.46 3088759 Bytes 11/30/2010 06:43:22
AEHELP.DLL : 8.1.15.0 246135 Bytes 11/30/2010 06:43:17
AEGEN.DLL : 8.1.4.2 401781 Bytes 11/30/2010 06:43:16
AEEMU.DLL : 8.1.3.0 393589 Bytes 11/30/2010 06:43:14
AECORE.DLL : 8.1.18.1 196984 Bytes 11/30/2010 06:43:13
AEBB.DLL : 8.1.1.0 53618 Bytes 8/2/2010 22:09:48
AVWINLL.DLL : 10.0.0.0 19304 Bytes 8/2/2010 22:09:56
AVPREF.DLL : 10.0.0.0 44904 Bytes 8/2/2010 22:09:55
AVREP.DLL : 10.0.0.8 62209 Bytes 6/17/2010 21:27:13
AVREG.DLL : 10.0.3.2 53096 Bytes 8/2/2010 22:09:55
AVSCPLR.DLL : 10.0.3.1 83816 Bytes 8/2/2010 22:09:56
AVARKT.DLL : 10.0.0.14 227176 Bytes 8/2/2010 22:09:54
AVEVTLOG.DLL : 10.0.0.8 203112 Bytes 8/2/2010 22:09:55
SQLITE3.DLL : 3.6.19.0 355688 Bytes 6/17/2010 21:27:22
AVSMTP.DLL : 10.0.0.17 63848 Bytes 8/2/2010 22:09:56
NETNT.DLL : 10.0.0.0 11624 Bytes 6/17/2010 21:27:21
RCIMAGE.DLL : 10.0.0.26 2550120 Bytes 1/28/2010 20:10:20
RCTEXT.DLL : 10.0.58.0 97128 Bytes 8/2/2010 22:10:08
Configuration settings for the scan:
Jobname.............................: Complete system scan
Configuration file..................: C:\Program Files (x86)\Avira\AntiVir Desktop\sysscan.avp
Logging.............................: low
Primary action......................: interactive
Secondary action....................: ignore
Scan master boot sector.............: on
Scan boot sector....................: on
Boot sectors........................: C:,
Process scan........................: on
Extended process scan...............: on
Scan registry.......................: on
Search for rootkits.................: on
Integrity checking of system files..: off
Scan all files......................: All files
Scan archives.......................: on
Recursion depth.....................: 20
Smart extensions....................: on
Macro heuristic.....................: on
File heuristic......................: medium
Start of the scan: Tuesday, November 30, 2010 00:47
Starting search for hidden objects.
c:\program files\acer\acer updater\sd.exe
c:\Program Files\Acer\Acer Updater\SD.exe
[NOTE] The process is not visible.
c:\program files\acer\acer updater\sd.exe
c:\program files (x86)\intel\intel(r) rapid storage technology\iastoricon.exe
c:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
[NOTE] The process is not visible.
c:\program files\acer\acer epower management\setapm.exe
c:\Program Files\Acer\Acer ePower Management\SetAPM.exe
[NOTE] The process is not visible.
The scan of running processes will be started
Scan process 'avscan.exe' - '94' Module(s) have been scanned
Scan process 'avscan.exe' - '38' Module(s) have been scanned
Scan process 'avcenter.exe' - '78' Module(s) have been scanned
Scan process 'avgnt.exe' - '64' Module(s) have been scanned
Scan process 'sched.exe' - '54' Module(s) have been scanned
Scan process 'avguard.exe' - '73' Module(s) have been scanned
Scan process 'NOTEPAD.EXE' - '34' Module(s) have been scanned
Scan process 'firefox.exe' - '120' Module(s) have been scanned
Scan process 'firefox.exe' - '59' Module(s) have been scanned
Scan process 'UNS.exe' - '58' Module(s) have been scanned
Scan process 'IAStorDataMgrSvc.exe' - '52' Module(s) have been scanned
Scan process 'LMworker.exe' - '32' Module(s) have been scanned
Scan process 'ArcadeMovieService.exe' - '50' Module(s) have been scanned
Scan process 'LManager.exe' - '77' Module(s) have been scanned
Scan process 'BackupManagerTray.exe' - '41' Module(s) have been scanned
Scan process 'UpdaterService.exe' - '32' Module(s) have been scanned
Scan process 'RichVideo.exe' - '31' Module(s) have been scanned
Scan process 'SchedulerSvc.exe' - '44' Module(s) have been scanned
Scan process 'IScheduleSvc.exe' - '62' Module(s) have been scanned
Scan process 'rundll32.exe' - '38' Module(s) have been scanned
Scan process 'LMS.exe' - '35' Module(s) have been scanned
Scan process 'GREGsvc.exe' - '27' Module(s) have been scanned
Scan process 'dsiwmis.exe' - '47' Module(s) have been scanned
Starting master boot sector scan:
Master boot sector HD0
[DETECTION] Contains code of the BOO/Alureon.A boot sector virus
[NOTE] The boot sector was not written!
Start scanning boot sectors:
Boot sector 'C:\'
[DETECTION] Contains code of the BOO/Alureon.A boot sector virus
[NOTE] The boot sector was not written!
Starting to scan executable files (registry).
The registry was scanned ( '89' files ).
Starting the file scan:
Begin scan in 'C:\' <Acer>
End of the scan: Tuesday, November 30, 2010 01:15
Used time: 28:13 Minute(s)
The scan has been done completely.
20531 Scanned directories
426040 Files were scanned
2 Viruses and/or unwanted programs were found
0 Files were classified as suspicious
0 files were deleted
0 Viruses and unwanted programs were repaired
0 Files were moved to quarantine
0 Files were renamed
0 Files cannot be scanned
426040 Files not concerned
2564 Archives were scanned
0 Warnings
2 Notes
439140 Objects were scanned with rootkit scan
4 Hidden objects were found
MBAM-------------------------------------------------------
Malwarebytes' Anti-Malware 1.50
www.malwarebytes.org
Database version: 5214
Windows 6.1.7600
Internet Explorer 8.0.7600.16385
11/30/2010 1:23:09 AM
mbam-log-2010-11-30 (01-23-09).txt
Scan type: Quick scan
Objects scanned: 146390
Time elapsed: 1 minute(s), 51 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
Gmer----------------------------------------
Let it quick scan and saved but there was nothing in the file. I can do a full scan later if requested maybe?
DDS-----------------------------------------
DDS (Ver_10-11-27.01) - NTFS_AMD64
Run by Mike at 1:27:08.42 on Tue 11/30/2010
Internet Explorer: 8.0.7600.16385
Microsoft Windows 7 Home Premium 6.1.7600.0.1252.1.1033.18.3767.2590 [GMT -6:00]
============== Running Processes ===============
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
C:\Program Files (x86)\Launch Manager\dsiwmis.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Windows\Explorer.EXE
C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
C:\Program Files\Acer\Optical Drive Power Management\ODDPWRSvc.exe
C:\Program Files (x86)\Cyberlink\Shared files\RichVideo.exe
C:\Program Files\Acer\Acer Updater\UpdaterService.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
C:\Program Files\Acer\Optical Drive Power Management\ODDPWR.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\Acer Arcade Deluxe\Arcade Movie\ArcadeMovieService.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Windows\system32\igfxext.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
C:\Program Files (x86)\Launch Manager\LMworker.exe
C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Users\Mike\Downloads\dds.scr
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
============== Pseudo HJT Report ===============
mWinlogon: Userinit=userinit.exe
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
mRun: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
mRun: [BackupManagerTray] "C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -h -k
mRun: [OOTag] C:\Program Files (x86)\Acer\OOBEOffer\OOTag.exe
mRun: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
mRun: [MDS_Menu] "C:\Program Files (x86)\Acer Arcade Deluxe\MediaShow Espresso\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Acer Arcade Deluxe\MediaShow Espresso" UpdateWithCreateOnce "Software\CyberLink\MediaShow Espresso\5.6"
mRun: [ArcadeMovieService] "C:\Program Files (x86)\Acer Arcade Deluxe\Arcade Movie\ArcadeMovieService.exe"
mRun: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
mRun-x64: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
mRun-x64: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE3
mRun-x64: [AmIcoSinglun64] C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
mRun-x64: [ODDPwr] "C:\Program Files\Acer\Optical Drive Power Management\ODDPwr.exe"
mRun-x64: [mwlDaemon] C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe
mRun-x64: [IgfxTray] C:\Windows\system32\igfxtray.exe
mRun-x64: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
mRun-x64: [Persistence] C:\Windows\system32\igfxpers.exe
mRun-x64: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
mRun-x64: [Acer ePower Management] C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
================= FIREFOX ===================
FF - ProfilePath - C:\Users\Mike\AppData\Roaming\Mozilla\Firefox\Profiles\tl1vn61l.default\
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npdnu.dll
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npdnupdater2.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - Extension: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
---- FIREFOX POLICIES ----
FF - user.js: network.protocol-handler.warn-external.dnupdate - false
============= SERVICES / DRIVERS ===============
R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\System32\drivers\vwififlt.sys [2009-7-13 59904]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2010-11-30 135336]
R2 AntiVirService;Avira AntiVir Guard;C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2010-11-30 267944]
R2 avgntflt;avgntflt;C:\Windows\System32\drivers\avgntflt.sys [2010-11-30 81584]
R2 DsiWMIService;Dritek WMI Service;C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2010-8-3 321104]
R2 ePowerSvc;Acer ePower Service;C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2010-11-29 868896]
R2 GREGService;GREGService;C:\Program Files (x86)\Acer\Registration\GREGsvc.exe [2010-1-8 23584]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-8-3 13336]
R2 NTI IScheduleSvc;NTI IScheduleSvc;C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe [2010-6-28 255744]
R2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service;C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2010-4-16 144640]
R2 ODDPwrSvc;Acer ODD Power Service;C:\Program Files\Acer\Optical Drive Power Management\ODDPWRSvc.exe [2010-8-3 171040]
R2 UNS;Intel(R) Management & Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-11-29 2320920]
R2 Updater Service;Updater Service;C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2010-8-3 243232]
R3 HECIx64;Intel(R) Management Engine Interface;C:\Windows\System32\drivers\HECIx64.sys [2010-8-3 56344]
R3 Impcd;Impcd;C:\Windows\System32\drivers\Impcd.sys [2010-8-3 158976]
R3 IntcDAud;Intel(R) Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2010-8-3 271872]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\Windows\System32\drivers\L1C62x64.sys [2010-8-3 76400]
S2 0297431291090157mcinstcleanup;McAfee Application Installer Cleanup (0297431291090157);C:\Users\Mike\AppData\Local\Temp\029743~1.EXE C:\PROGRA~2\COMMON~1\McAfee\INSTAL~1\cleanup.ini -cleanup -nolog -service --> C:\Users\Mike\AppData\Local\Temp\029743~1.EXE C:\PROGRA~2\COMMON~1\McAfee\INSTAL~1\cleanup.ini -cleanup -nolog -service [?]
S3 AmUStor;AM USB Stroage Driver;C:\Windows\System32\drivers\AmUStor.sys [2010-6-9 40448]
S3 NTIBackupSvc;NTI Backup Now 5 Backup Service;C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2010-4-16 50432]
=============== Created Last 30 ================
2010-11-30 07:05:15 709456 ----a-w- C:\Windows\isRS-000.tmp
2010-11-30 06:46:51 -------- d-----w- C:\Users\Mike\AppData\Roaming\Avira
2010-11-30 06:41:51 81584 ----a-w- C:\Windows\System32\drivers\avgntflt.sys
2010-11-30 06:41:51 -------- d-----w- C:\Program Files (x86)\Avira
2010-11-30 06:41:51 -------- d-----w- C:\PROGRA~3\Avira
2010-11-30 04:49:43 -------- d-----w- C:\Users\Mike\AppData\Local\AOL
2010-11-30 04:49:43 -------- d-----w- C:\Users\Mike\AppData\Local\AIM
2010-11-30 04:45:37 -------- d-----w- C:\PROGRA~3\AIM
2010-11-30 04:45:32 -------- d-----w- C:\Program Files (x86)\AIM
2010-11-30 04:45:27 -------- d-----w- C:\Program Files (x86)\Common Files\Software Update Utility
2010-11-30 04:45:23 -------- d-----w- C:\Program Files (x86)\Common Files\AOL
2010-11-30 04:26:20 -------- d-----w- C:\Users\Mike\AppData\Local\Microsoft Games
2010-11-30 04:24:37 8199504 ----a-w- C:\PROGRA~3\Microsoft\Windows Defender\Definition Updates\{6DC46CEA-6696-4E71-A717-A2F7BB764522}\mpengine.dll
2010-11-30 04:24:36 270720 ------w- C:\Windows\System32\MpSigStub.exe
2010-11-30 04:20:57 -------- d-----w- C:\Users\Mike\AppData\Roaming\Malwarebytes
2010-11-30 04:20:42 38224 ----a-w- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
2010-11-30 04:20:41 24152 ----a-w- C:\Windows\System32\drivers\mbam.sys
2010-11-30 04:20:41 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2010-11-30 04:20:41 -------- d-----w- C:\PROGRA~3\Malwarebytes
2010-11-30 04:10:11 -------- d-----w- C:\Program Files (x86)\Launch Manager
2010-11-30 04:08:34 -------- d---a-w- C:\book
2010-11-30 04:04:46 3 ----a-w- C:\Windows\System32\PLD_Framework.cmd
2010-11-30 04:01:34 -------- d-----w- C:\Program Files\Common Files\Intel
2010-11-30 04:01:33 -------- d-----w- C:\Program Files (x86)\Common Files\Intel
2010-11-30 03:56:08 -------- d-----w- C:\Windows\NAPP_Dism_Log
2010-11-30 02:55:37 -------- d-----w- C:\PROGRA~3\boost_interprocess
2010-11-30 02:45:22 82432 ----a-w- C:\Windows\SysWow64\msxml4r.dll
2010-11-30 02:45:22 44544 ----a-w- C:\Windows\SysWow64\msxml4a.dll
2010-11-30 02:45:22 1233920 ----a-w- C:\Windows\SysWow64\msxml4.dll
2010-11-30 02:44:59 77824 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\ctor.dll
2010-11-30 02:44:59 610436 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\IKernel.exe
2010-11-30 02:44:59 32768 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\objectps.dll
2010-11-30 02:44:59 225280 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\IScript\iscript.dll
2010-11-30 02:44:59 176128 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\iuser.dll
2010-11-30 02:43:31 -------- d-----w- C:\Users\Mike\AppData\Local\Cyberlink
2010-11-30 02:42:29 -------- d-----w- C:\Program Files (x86)\Acer Arcade Deluxe
2010-11-30 02:40:53 4398360 ----a-w- C:\Windows\System32\d3dx9_32.dll
2010-11-30 02:40:53 3426072 ----a-w- C:\Windows\SysWow64\d3dx9_32.dll
2010-11-30 02:40:41 -------- d-----w- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2010-11-30 02:40:02 -------- d-----w- C:\Program Files (x86)\Microsoft
2010-11-30 02:39:36 -------- d-----w- C:\Program Files (x86)\Windows Live SkyDrive
2010-11-30 02:39:10 -------- d-----w- C:\Windows\PCHEALTH
2010-11-30 02:38:58 74520 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\bd851d6a1cb9037\DSETUP.dll
2010-11-30 02:38:58 484632 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\bd851d6a1cb9037\DXSETUP.exe
2010-11-30 02:38:58 1670936 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\bd851d6a1cb9037\dsetup32.dll
2010-11-30 02:38:22 141402440 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\wlc7215.tmp
2010-11-30 02:38:17 -------- d-----w- C:\Program Files (x86)\Common Files\Windows Live
2010-11-30 02:31:39 -------- d-----w- C:\Program Files (x86)\Common Files\postureAgent
2010-11-30 02:30:47 -------- d-----w- C:\Users\Mike\AppData\Roaming\Liteon
2010-11-30 02:30:47 -------- d-----w- C:\Program Files (x86)\Acer Crystal Eye webcam
2010-11-30 02:29:47 -------- d-----w- C:\Users\Mike\AppData\Roaming\Intel Corporation
2010-11-30 02:29:47 -------- d-----w- C:\Program Files\Synaptics
2010-11-30 02:25:01 -------- d-----w- C:\Users\Mike\AppData\Local\EgisTec IPS
2010-11-30 02:23:18 -------- d-----w- C:\Users\Mike\AppData\Local\VirtualStore
2010-11-30 02:21:49 -------- d-sh--w- C:\Recovery
==================== Find3M ====================
============= FINISH: 1:28:00.98 ===============
DDS Attach-----------------------------------------------------------
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
DDS (Ver_10-11-27.01)
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume2
Install Date: 11/29/2010 8:22:02 PM
System Uptime: 11/30/2010 1:17:39 AM (0 hours ago)
Motherboard: Acer | | ZR7
Processor: Intel(R) Core(TM) i3 CPU M 370 @ 2.40GHz | CPU | 2399/1066mhz
==== Disk Partitions =========================
C: is FIXED (NTFS) - 583 GiB total, 554.524 GiB free.
D: is CDROM ()
==== Disabled Device Manager Items =============
==== System Restore Points ===================
RP1: 11/29/2010 8:34:54 PM - Installed Acer ePower Management
RP2: 11/29/2010 8:36:53 PM - Installed Microsoft Office 2010
RP3: 11/29/2010 8:40:44 PM - Installed DirectX
RP4: 11/29/2010 8:42:15 PM - Installed Suite
RP5: 11/29/2010 10:24:15 PM - Windows Update
RP6: 11/29/2010 10:29:23 PM - Removed MyWinLocker Suite
RP7: 11/29/2010 10:44:27 PM - Removed Norton Online Backup
==== Installed Programs ======================
18 Wheels of Steel - American Long Haul
Acer Arcade Deluxe
Acer Arcade Movie
Acer Backup Manager
Acer Crystal Eye webcam
Acer ePower Management
Acer eRecovery Management
Acer Game Console
Acer Games
Acer Registration
Acer ScreenSaver
Acer Updater
Acrobat.com
Adobe AIR
Adobe Flash Player 10 ActiveX
Adobe Reader 9.1 MUI
Agatha Christie - Death on the Nile
AIM 7
Alcor Micro USB Card Reader
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver
Avira AntiVir Personal - Free Antivirus
Backup Manager Basic
Bejeweled 2 Deluxe
Blackhawk Striker 2
Build-a-lot 2
Chuzzle Deluxe
Diner Dash 2 Restaurant Rescue
Dora's Carnival Adventure
Download Updater (AOL LLC)
eSobi v2
FATE
Identity Card
Intel(R) Control Center
Intel(R) Graphics Media Accelerator Driver
Intel(R) Management Engine Components
Intel(R) Rapid Storage Technology
Jewel Quest - Heritage
Jewel Quest Solitaire 2
John Deere Drive Green
Junk Mail filter update
Launch Manager
Malwarebytes' Anti-Malware
MediaShow Espresso
Microsoft Choice Guard
Microsoft Office 2010
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Mozilla Firefox (3.6.12)
MSVCRT
NTI Backup Now 5
NTI Backup Now Standard
NTI Media Maker 8
Optical Drive Power Management
Penguins!
Plants vs. Zombies
Polar Bowler
Polar Golfer
Realtek High Definition Audio Driver
Virtual Villagers 4 - The Tree of Life
Welcome Center
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live Mail
Windows Live Messenger
Windows Live Movie Maker
Windows Live Photo Gallery
Windows Live Sign-in Assistant
Windows Live Sync
Windows Live Upload Tool
Windows Live Writer
Zuma's Revenge
==== Event Viewer Messages From Past Week ========
11/30/2010 12:42:18 AM, Error: Service Control Manager [7006] - The ScRegSetValueExW call failed for Start with the following error: Access is denied.
11/30/2010 1:20:29 AM, Error: Microsoft-Windows-WMPNSS-Service [14332] - Service 'WMPNetworkSvc' did not start correctly because CoCreateInstance(CLSID_UPnPDeviceFinder) encountered error '0x80004005'. Verify that the UPnPHost service is running and that the UPnPHost component of Windows is installed properly.
11/30/2010 1:18:52 AM, Error: Server [2505] - The server could not bind to the transport \Device\NetBT_Tcpip_{873743D8-7D7C-4D29-9A11-B0EB87BE8DD5} because another computer on the network has the same name. The server could not start.
11/30/2010 1:18:52 AM, Error: NetBT [4321] - The name "MIKE-PC :20" could not be registered on the interface with IP address 192.168.2.3. The computer with the IP address 192.168.2.2 did not allow the name to be claimed by this computer.
11/30/2010 1:18:23 AM, Error: NetBT [4321] - The name "MIKE-PC :0" could not be registered on the interface with IP address 192.168.2.3. The computer with the IP address 192.168.2.2 did not allow the name to be claimed by this computer.
11/30/2010 1:16:37 AM, Error: Service Control Manager [7034] - The Dritek WMI Service service terminated unexpectedly. It has done this 1 time(s).
11/29/2010 10:49:35 PM, Error: NetBT [4321] - The name "MIKE-PC :0" could not be registered on the interface with IP address 192.168.2.3. The computer with the IP address 192.168.2.4 did not allow the name to be claimed by this computer.
11/29/2010 10:05:38 PM, Error: NetBT [4321] - The name "MIKE-PC :20" could not be registered on the interface with IP address 192.168.2.3. The computer with the IP address 192.168.2.4 did not allow the name to be claimed by this computer.
11/29/2010 10:01:18 PM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Acer ODD Power Service service to connect.
11/29/2010 10:01:18 PM, Error: Service Control Manager [7000] - The Acer ODD Power Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
==== End Of File ===========================