Malwarebytes Log
Malwarebytes' Anti-Malware 1.51.2.1300
www.malwarebytes.org
Database version: 7996
Windows 6.1.7600
Internet Explorer 8.0.7600.16385
10/21/2011 6:36:39 PM
mbam-log-2011-10-21 (18-36-39).txt
Scan type: Full scan (C:\|)
Objects scanned: 259490
Time elapsed: 19 minute(s), 0 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
---------
GMER log
At the end, it just said "No system modifications were idenitifed" and blank log.
---------------
DDS.text
.
DDS (Ver_2011-08-26.01) - NTFSAMD64
Internet Explorer: 8.0.7600.16385
Run by Sera at 18:45:07 on 2011-10-21
Microsoft Windows 7 Home Premium 6.1.7600.0.1252.1.1033.18.3767.2366 [GMT -7:00]
.
AV: AVG Anti-Virus Free Edition 2012 *Disabled/Updated* {5A2746B1-DEE9-F85A-FBCD-ADB11639C5F0}
SP: AVG Anti-Virus Free Edition 2012 *Disabled/Updated* {E146A755-F8D3-F7D4-C17D-96C36DBE8F4D}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\PROGRA~2\AVG\AVG2012\avgrsa.exe
C:\Program Files (x86)\AVG\AVG2012\avgcsrva.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe
C:\Windows\system32\conhost.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe
C:\Program Files (x86)\Launch Manager\dsiwmis.exe
C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
C:\Program Files\Acer\Acer Updater\UpdaterService.exe
C:\Program Files (x86)\AVG\AVG2012\avgnsa.exe
C:\Program Files (x86)\AVG\AVG2012\avgemca.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\PLFSetI.exe
C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Windows\system32\igfxext.exe
C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\AVG\AVG2012\avgtray.exe
C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe
C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
C:\Program Files (x86)\Launch Manager\LMworker.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\REGSVR32.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\cscript.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = about:blank
uDefault_Page_URL = hxxp://homepage.acer.com/rdr.aspx?b=ACAW&l=0409&m=aspire_5741&r=273610116545l0434z135t4542n41r
mStart Page = about:blank
mWinlogon: Userinit=userinit.exe
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - C:\Program Files (x86)\AVG\AVG2012\avgssie.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
TB: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
mRun: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
mRun: [BackupManagerTray] "C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -h -k
mRun: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
mRun: [AVG_TRAY] "C:\Program Files (x86)\AVG\AVG2012\avgtray.exe"
mRunOnce: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: Google Sidewiki... - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll/cmsidewiki.html
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
TCP: DhcpNameServer = 192.168.1.1
TCP: Interfaces\{30D78CC0-0811-43D9-9132-E9C48892828E} : DhcpNameServer = 192.168.1.1
TCP: Interfaces\{35C6CC6C-8F4E-4E1A-BC14-57D46E7F8C3E} : DhcpNameServer = 192.168.1.1
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgpp.dll
BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO-X64: AcroIEHelperStub - No File
BHO-X64: AVG Safe Search: {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG2012\avgssie.dll
BHO-X64: WormRadar.com IESiteBlocker.NavFilter - No File
BHO-X64: Windows Live Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
TB-X64: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
mRun-x64: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
mRun-x64: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
mRun-x64: [BackupManagerTray] "C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -h -k
mRun-x64: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
mRun-x64: [AVG_TRAY] "C:\Program Files (x86)\AVG\AVG2012\avgtray.exe"
mRunOnce-x64: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Sera\AppData\Roaming\Mozilla\Firefox\Profiles\ts1a5owq.default\
FF - prefs.js: browser.startup.homepage - yahoo.com
FF - prefs.js: network.proxy.type - 0
FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
.
============= SERVICES / DRIVERS ===============
.
R0 AVGIDSEH;AVGIDSEH;C:\Windows\system32\DRIVERS\AVGIDSEH.Sys --> C:\Windows\system32\DRIVERS\AVGIDSEH.Sys [?]
R0 Avgrkx64;AVG Anti-Rootkit Driver;C:\Windows\system32\DRIVERS\avgrkx64.sys --> C:\Windows\system32\DRIVERS\avgrkx64.sys [?]
R1 Avgldx64;AVG AVI Loader Driver;C:\Windows\system32\DRIVERS\avgldx64.sys --> C:\Windows\system32\DRIVERS\avgldx64.sys [?]
R1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;C:\Windows\system32\DRIVERS\avgmfx64.sys --> C:\Windows\system32\DRIVERS\avgmfx64.sys [?]
R1 Avgtdia;AVG TDI Driver;C:\Windows\system32\DRIVERS\avgtdia.sys --> C:\Windows\system32\DRIVERS\avgtdia.sys [?]
R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys --> C:\Windows\system32\DRIVERS\vwififlt.sys [?]
R2 AVGIDSAgent;AVGIDSAgent;C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe [2011-9-12 5265248]
R2 avgwd;AVG WatchDog;C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe [2011-8-2 192776]
R2 DsiWMIService;Dritek WMI Service;C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2010-4-23 312400]
R2 ePowerSvc;Acer ePower Service;C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2011-10-20 866336]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-4-23 13336]
R2 NTI IScheduleSvc;NTI IScheduleSvc;C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe [2010-3-8 250368]
R2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service;C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2009-11-5 144640]
R2 UNS;Intel(R) Management & Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-4-23 2320920]
R2 Updater Service;Updater Service;C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2010-4-23 243232]
R3 AVGIDSDriver;AVGIDSDriver;C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys --> C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys [?]
R3 AVGIDSFilter;AVGIDSFilter;C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys --> C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys [?]
R3 HECIx64;Intel(R) Management Engine Interface;C:\Windows\system32\DRIVERS\HECIx64.sys --> C:\Windows\system32\DRIVERS\HECIx64.sys [?]
R3 Impcd;Impcd;C:\Windows\system32\DRIVERS\Impcd.sys --> C:\Windows\system32\DRIVERS\Impcd.sys [?]
R3 IntcDAud;Intel(R) Display Audio;C:\Windows\system32\DRIVERS\IntcDAud.sys --> C:\Windows\system32\DRIVERS\IntcDAud.sys [?]
R3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;C:\Windows\system32\DRIVERS\k57nd60a.sys --> C:\Windows\system32\DRIVERS\k57nd60a.sys [?]
S3 NTIBackupSvc;NTI Backup Now 5 Backup Service;C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2009-11-5 50432]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\system32\Drivers\RtsUStor.sys --> C:\Windows\system32\Drivers\RtsUStor.sys [?]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
.
=============== Created Last 30 ================
.
2011-10-22 01:17:01 -------- d-----w- C:\ProgramData\Malwarebytes
2011-10-22 01:16:57 25416 ----a-w- C:\Windows\System32\drivers\mbam.sys
2011-10-21 23:14:49 -------- d-----w- C:\ProgramData\SecTaskMan
2011-10-21 23:14:46 -------- d-----w- C:\Program Files (x86)\Security Task Manager
2011-10-21 21:37:04 -------- d-----w- C:\Windows\SysWow64\Wat
2011-10-21 21:35:49 -------- d-----w- C:\Windows\System32\WAT
2011-10-21 21:35:01 -------- d--h--w- C:\kleaner.tmp
2011-10-21 21:25:34 9049936 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll
2011-10-21 21:25:21 8570192 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{4DC4B536-BE6F-4B65-8579-14F4BAF83506}\mpengine.dll
2011-10-21 21:09:23 367104 ----a-w- C:\Windows\System32\wcncsvc.dll
2011-10-21 21:09:23 276992 ----a-w- C:\Windows\SysWow64\wcncsvc.dll
2011-10-21 20:55:13 -------- d-----w- C:\Program Files (x86)\ewido anti-malware
2011-10-21 20:48:16 99176 ----a-w- C:\Windows\SysWow64\PresentationHostProxy.dll
2011-10-21 20:48:16 297808 ----a-w- C:\Windows\SysWow64\mscoree.dll
2011-10-21 20:48:16 295264 ----a-w- C:\Windows\SysWow64\PresentationHost.exe
2011-10-21 20:48:15 49472 ----a-w- C:\Windows\SysWow64\netfxperf.dll
2011-10-21 20:48:15 48960 ----a-w- C:\Windows\System32\netfxperf.dll
2011-10-21 20:48:15 444752 ----a-w- C:\Windows\System32\mscoree.dll
2011-10-21 20:48:15 320352 ----a-w- C:\Windows\System32\PresentationHost.exe
2011-10-21 20:48:15 1130824 ----a-w- C:\Windows\SysWow64\dfshim.dll
2011-10-21 20:48:15 109912 ----a-w- C:\Windows\System32\PresentationHostProxy.dll
2011-10-21 20:48:14 1942856 ----a-w- C:\Windows\System32\dfshim.dll
2011-10-21 20:46:40 -------- d-----w- C:\Program Files (x86)\MALWAREBYTES ANTI-MALWARE
2011-10-21 20:41:24 -------- d-----w- C:\Users\Sera\AppData\Roaming\Malwarebytes
2011-10-21 20:41:05 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2011-10-21 02:40:13 243712 ----a-w- C:\Windows\System32\drivers\ks.sys
2011-10-21 02:10:45 388096 ----a-r- C:\Users\Sera\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2011-10-21 02:10:45 -------- d-----w- C:\Program Files (x86)\Trend Micro
2011-10-21 00:55:08 -------- d-----w- C:\Users\Sera\AppData\Local\Mozilla
2011-10-21 00:23:01 -------- d-----w- C:\Windows\NAPP_Dism_Log
2011-10-21 00:16:59 -------- d-----w- C:\Users\Sera\AppData\Roaming\AVG2012
2011-10-21 00:16:20 -------- d--h--w- C:\ProgramData\Common Files
2011-10-21 00:16:05 -------- d-----w- C:\Windows\SysWow64\drivers\AVG
2011-10-21 00:15:44 -------- d-----w- C:\Windows\System32\drivers\AVG
2011-10-21 00:15:44 -------- d-----w- C:\ProgramData\AVG2012
2011-10-21 00:14:22 -------- d-----w- C:\Program Files (x86)\AVG
2011-10-21 00:10:41 -------- d-----w- C:\ProgramData\MFAData
2011-10-21 00:05:13 52224 ----a-w- C:\Windows\System32\rtutils.dll
2011-10-21 00:05:13 37376 ----a-w- C:\Windows\SysWow64\rtutils.dll
2011-10-21 00:05:12 954752 ----a-w- C:\Windows\SysWow64\mfc40.dll
2011-10-21 00:05:12 954288 ----a-w- C:\Windows\SysWow64\mfc40u.dll
2011-10-21 00:03:57 142336 ----a-w- C:\Windows\System32\poqexec.exe
2011-10-21 00:02:59 2003968 ----a-w- C:\Windows\System32\msxml6.dll
2011-10-21 00:01:59 167424 ----a-w- C:\Program Files\Windows Media Player\wmplayer.exe
2011-10-21 00:00:57 367104 ----a-w- C:\Windows\System32\atmfd.dll
2011-10-20 23:53:56 4398360 ----a-w- C:\Windows\System32\d3dx9_32.dll
2011-10-20 23:53:56 3426072 ----a-w- C:\Windows\SysWow64\d3dx9_32.dll
2011-10-20 23:53:40 5507968 ----a-w- C:\Windows\System32\ntoskrnl.exe
2011-10-20 23:53:39 3957120 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2011-10-20 23:53:39 3902336 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2011-10-20 23:53:37 220672 ----a-w- C:\Windows\System32\wintrust.dll
2011-10-20 23:53:37 172032 ----a-w- C:\Windows\SysWow64\wintrust.dll
2011-10-20 23:53:35 -------- d-----w- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2011-10-20 23:52:55 -------- d-----w- C:\Program Files (x86)\Microsoft
2011-10-20 23:52:31 139264 ----a-w- C:\Windows\System32\cabview.dll
2011-10-20 23:52:31 132608 ----a-w- C:\Windows\SysWow64\cabview.dll
2011-10-20 23:52:30 -------- d-----w- C:\Program Files (x86)\Windows Live SkyDrive
2011-10-20 23:51:52 74520 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\3db06f951cc8f83\DSETUP.dll
2011-10-20 23:51:52 484632 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\3db06f951cc8f83\DXSETUP.exe
2011-10-20 23:51:52 1670936 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\3db06f951cc8f83\dsetup32.dll
2011-10-20 23:51:14 141402440 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\wlcA390.tmp
2011-10-20 23:50:58 -------- d-----w- C:\Program Files (x86)\Common Files\Windows Live
2011-10-20 23:49:58 -------- d-----w- C:\Program Files (x86)\Common Files\CyberLink
2011-10-20 23:48:50 505128 ----a-w- C:\Windows\SysWow64\msvcp71.dll
2011-10-20 23:48:50 353576 ----a-w- C:\Windows\SysWow64\msvcr71.dll
2011-10-20 23:48:50 29480 ----a-w- C:\Windows\SysWow64\msxml3a.dll
2011-10-20 23:48:32 270720 ------w- C:\Windows\System32\MpSigStub.exe
2011-10-20 23:46:54 9168 ----a-w- C:\Windows\Suyin.reg
2011-10-20 23:46:54 632056 ----a-w- C:\Windows\Image.dll
2011-10-20 23:46:54 49464 ----a-w- C:\Windows\AutosetFrequency.exe
2011-10-20 23:46:54 25848 ----a-w- C:\Windows\USB_VIDEO_REG.exe
2011-10-20 23:46:54 206208 ----a-w- C:\Windows\PLFSetI.exe
2011-10-20 23:46:53 1664248 ----a-w- C:\Windows\Acer Crystal Eye webcam.exe
2011-10-20 23:46:34 -------- d-----w- C:\Users\Sera\AppData\Local\Google
2011-10-20 23:44:54 -------- d-----w- C:\Program Files\Synaptics
2011-10-20 23:42:51 -------- d-----w- C:\Users\Sera\AppData\Local\Diagnostics
2011-10-20 23:41:43 -------- d-----w- C:\Program Files (x86)\Launch Manager
2011-10-20 23:40:59 -------- d-----w- C:\Users\Sera\AppData\Roaming\Intel Corporation
2011-10-20 23:40:42 -------- d---a-w- C:\book
2011-10-20 23:40:41 -------- d-----w- C:\Users\Sera\AppData\Local\EgisTec IPS
2011-10-20 23:39:51 -------- d-----w- C:\Users\Sera\AppData\Local\VirtualStore
2011-10-20 23:37:56 -------- d-----w- C:\ProgramData\OEM_E471269A730D
2011-10-20 23:32:26 3 ----a-w- C:\Windows\System32\PLD_Framework.cmd
2011-10-20 23:30:58 -------- d-----w- C:\Program Files\Common Files\Intel
2011-10-20 23:30:58 -------- d-----w- C:\Program Files (x86)\Common Files\Intel
.
==================== Find3M ====================
.
2011-09-13 13:30:08 37456 ----a-w- C:\Windows\System32\drivers\avgrkx64.sys
2011-09-06 03:07:02 3134976 ----a-w- C:\Windows\System32\win32k.sys
2011-08-27 05:40:28 861184 ----a-w- C:\Windows\System32\oleaut32.dll
2011-08-27 05:40:28 331776 ----a-w- C:\Windows\System32\oleacc.dll
2011-08-27 04:43:07 571904 ----a-w- C:\Windows\SysWow64\oleaut32.dll
2011-08-27 04:43:06 233472 ----a-w- C:\Windows\SysWow64\oleacc.dll
2011-08-17 05:32:24 613888 ----a-w- C:\Windows\System32\psisdecd.dll
2011-08-17 05:27:46 75776 ----a-w- C:\Windows\System32\MSDvbNP.ax
2011-08-17 05:27:46 288256 ----a-w- C:\Windows\System32\MSNP.ax
2011-08-17 05:27:46 108032 ----a-w- C:\Windows\System32\psisrndr.ax
2011-08-17 05:27:46 104960 ----a-w- C:\Windows\System32\Mpeg2Data.ax
2011-08-17 04:26:02 465408 ----a-w- C:\Windows\SysWow64\psisdecd.dll
2011-08-17 04:22:23 75776 ----a-w- C:\Windows\SysWow64\psisrndr.ax
2011-08-17 04:22:23 72704 ----a-w- C:\Windows\SysWow64\Mpeg2Data.ax
2011-08-17 04:22:23 59904 ----a-w- C:\Windows\SysWow64\MSDvbNP.ax
2011-08-17 04:22:23 204288 ----a-w- C:\Windows\SysWow64\MSNP.ax
2011-08-08 13:08:58 46672 ----a-w- C:\Windows\System32\drivers\avgmfx64.sys
.
============= FINISH: 18:52:29.99 ===============
----------------------
Attach.txt
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-08-26.01)
.
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume2
Install Date: 10/20/2011 4:35:32 PM
System Uptime: 10/21/2011 5:27:56 PM (1 hours ago)
.
Motherboard: Acer | | Aspire 5741
Processor: Intel(R) Core(TM) i3 CPU M 350 @ 2.27GHz | CPU | 1586/1066mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 284 GiB total, 252.798 GiB free.
D: is CDROM ()
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP1: 10/20/2011 4:46:42 PM - Installed Acer Crystal Eye Webcam
RP2: 10/20/2011 4:47:13 PM - Installed Acer ePower Management
RP3: 10/20/2011 4:48:19 PM - Windows Update
RP4: 10/20/2011 4:48:23 PM - Installed PowerDVD
RP5: 10/20/2011 4:53:39 PM - Installed DirectX
RP6: 10/20/2011 5:14:07 PM - Installed AVG 2012
RP7: 10/20/2011 5:14:31 PM - Installed AVG 2012
RP8: 10/20/2011 5:30:53 PM - Removed Norton Online Backup
RP9: 10/20/2011 5:32:54 PM - Removed MyWinLocker Suite
RP10: 10/20/2011 5:44:49 PM - Removed eBay Worldwide
RP11: 10/20/2011 5:45:55 PM - Removed Microsoft Office Home and Student 2007
RP12: 10/20/2011 5:57:51 PM - Windows Modules Installer
RP13: 10/20/2011 7:10:26 PM - Installed HiJackThis
RP14: 10/20/2011 7:40:04 PM - Windows Update
RP15: 10/21/2011 1:33:41 PM - Windows Update
RP16: 10/21/2011 2:24:49 PM - Windows Update
RP17: 10/21/2011 4:15:35 PM - Move file to quarantine: {5C255C8A-E604-49b4-9D64-90988571CECB}
RP18: 10/21/2011 4:16:45 PM - Move file to quarantine: DefaultSettingEXE MFC Application
RP19: 10/21/2011 4:19:53 PM - Uninstall "Google Toolbar"
RP20: 10/21/2011 4:20:17 PM - Move file to quarantine: GoogleToolbarNotifier
RP21: 10/21/2011 4:50:35 PM - Windows Update
.
==== Installed Programs ======================
.
Acer Backup Manager
Acer Crystal Eye Webcam
Acer ePower Management
Acer eRecovery Management
Acer ScreenSaver
Acer Updater
Acrobat.com
Adobe AIR
Adobe Flash Player 10 ActiveX
Adobe Reader 9.1 MUI
Backup Manager Basic
Compatibility Pack for the 2007 Office system
CyberLink PowerDVD 9
eSobi v2
HiJackThis
Identity Card
Intel(R) Control Center
Intel(R) Graphics Media Accelerator Driver
Intel(R) Management Engine Components
Intel(R) Rapid Storage Technology
Junk Mail filter update
Launch Manager
Malwarebytes' Anti-Malware version 1.51.2.1300
Microsoft Choice Guard
Microsoft Office PowerPoint Viewer 2007 (English)
Microsoft Office Suite Activation Assistant
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Works
Mozilla Firefox 7.0.1 (x86 en-US)
MSVCRT
NTI Backup Now 5
NTI Backup Now Standard
NTI Media Maker 8
Realtek High Definition Audio Driver
Realtek USB 2.0 Card Reader
Security Task Manager 1.8d
Visual Studio 2008 x64 Redistributables
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live Mail
Windows Live Messenger
Windows Live Movie Maker
Windows Live Photo Gallery
Windows Live Sign-in Assistant
Windows Live Sync
Windows Live Upload Tool
Windows Live Writer
.
==== Event Viewer Messages From Past Week ========
.
10/21/2011 4:38:10 PM, Error: Service Control Manager [7001] - The Computer Browser service depends on the Server service which failed to start because of the following error: The dependency service or group failed to start.
10/21/2011 4:30:29 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service MSIServer with arguments "" in order to run the server: {000C101C-0000-0000-C000-000000000046}
10/21/2011 4:24:34 PM, Error: Service Control Manager [7001] - The HomeGroup Provider service depends on the Function Discovery Provider Host service which failed to start because of the following error: The dependency service or group failed to start.
10/21/2011 4:24:34 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
10/21/2011 4:24:34 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
10/21/2011 4:24:29 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
10/21/2011 4:24:23 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC}
10/21/2011 4:23:41 PM, Error: Microsoft-Windows-WLAN-AutoConfig [10000] - WLAN Extensibility Module has failed to start. Module Path: C:\Windows\System32\bcmihvsrv64.dll Error Code: 21
10/21/2011 4:23:24 PM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: Avgldx64 Avgmfx64 discache spldr Wanarpv6
10/21/2011 2:44:18 PM, Error: Service Control Manager [7022] - The Windows Search service hung on starting.
10/21/2011 2:40:42 PM, Error: Service Control Manager [7023] -
10/21/2011 2:35:53 PM, Error: Service Control Manager [7023] - The Windows Modules Installer service terminated with the following error: The process cannot access the file because it is being used by another process.
10/21/2011 1:59:11 PM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the ewido security suite guard service.
10/21/2011 1:55:24 PM, Error: Application Popup [1060] - \??\C:\Program Files (x86)\ewido anti-malware\guard.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
10/21/2011 1:55:18 PM, Error: Service Control Manager [7030] - The ewido security suite guard service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.
10/21/2011 1:55:18 PM, Error: Service Control Manager [7030] - The ewido security suite control service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.
10/21/2011 1:32:54 PM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800705b4: Update for Windows 7 for x64-based Systems (KB2345886).
10/21/2011 1:32:54 PM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800705b4: Security Update for Windows 7 for x64-based Systems (KB2564958).
10/21/2011 1:32:54 PM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800705b4: Security Update for Windows 7 for x64-based Systems (KB2556532).
10/21/2011 1:32:54 PM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800705b4: Security Update for Windows 7 for x64-based Systems (KB2511455).
10/21/2011 1:32:54 PM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x800705b4: Security Update for Windows 7 for x64-based Systems (KB2419640).
10/20/2011 4:29:37 PM, Error: Microsoft-Windows-Application-Experience [205] - The Program Compatibility Assistant service failed to perform the phase two initialization.
.
==== End Of File ===========================