Please help!
MBAM
Malwarebytes Anti-Malware 1.65.1.1000
www.malwarebytes.org
Database version: v2012.10.26.02
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Justin :: JUSTIN-PC [administrator]
10/25/2012 11:26:57 PM
mbam-log-2012-10-25 (23-26-57).txt
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 245387
Time elapsed: 54 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
(end)
GMER: no output
DDS.txt:
[LEFT]DDS (Ver_2012-10-19.01) - NTFS_AMD64
Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 10.7.2
Run by Justin at 23:22:27 on 2012-10-25
Microsoft Windows 7 Professional 6.1.7601.1.1252.1.1033.18.18423.12860 [GMT -4:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {B140BF4E-23BB-4198-90AB-A51A4C60A69C}
SP: Microsoft Security Essentials *Enabled/Updated* {0A215EAA-0581-4E16-AA1B-9E6837E7EC21}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\windows\system32\wininit.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
C:\windows\system32\svchost.exe -k RPCSS
c:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k NetworkService
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
C:\windows\system32\nvvsvc.exe
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe
C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files (x86)\Drobo\Drobo Dashboard\DDService.exe
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
D:\Program Files\nHancer\nHancerService.exe
C:\windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\WUDFHost.exe
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\taskhost.exe
C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr64.exe
C:\windows\system32\Dwm.exe
C:\windows\Explorer.EXE
C:\Windows\SysWOW64\ExMgr.exe
C:\Program Files\ASUS Phoebus Audio Sound Card\CPL\Phoebus_x64.exe
C:\Program Files (x86)\uTorrent\uTorrent.exe
C:\Users\Justin\Local Settings\Apps\F.lux\flux.exe
C:\Windows\System32\spool\drivers\x64\3\E_IATIGBA.EXE
C:\Program Files (x86)\Drobo\Drobo Dashboard\DDAssist.exe
C:\Users\Justin\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\Rainmeter\Rainmeter.exe
C:\Program Files (x86)\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files (x86)\n52te\n52teHid.exe
C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe
C:\Program Files (x86)\ASUS\AI Suite II\AI Direct Link\AsCmd.exe
C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\ACD Systems\ACDSee\15.0\ACDSee15InTouch2.exe
C:\windows\system32\SearchIndexer.exe
C:\windows\system\ATLOISAService.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
C:\windows\system32\taskhost.exe
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
C:\Program Files (x86)\Adobe\Adobe InDesign CS6\Utilities\adb.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe
C:\windows\system32\conhost.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\SyncServer.exe
C:\windows\system32\conhost.exe
C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
D:\Steam\Steam.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Program Files (x86)\n52te\n52teTra.exe
C:\Users\Justin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Justin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Justin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Justin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\windows\system32\spool\DRIVERS\x64\3\E_IARNGBA.EXE
C:\Users\Justin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Justin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Justin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\Waterfox\waterfox.exe
C:\Program Files\Waterfox\plugin-container.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\windows\system32\taskmgr.exe
c:\Program Files\Microsoft Security Client\MpCmdRun.exe
C:\windows\system32\SearchProtocolHost.exe
C:\windows\system32\SearchFilterHost.exe
C:\windows\system32\conhost.exe
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
mWinlogon: Userinit = userinit.exe
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
uRun: [Google Update] "C:\Users\Justin\AppData\Local\Google\Update\GoogleUpdate.exe" /c
uRun: [Steam] "D:\Steam\steam.exe" -silent
uRun: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED
uRun: [AdobeBridge] <no file>
mRun: [NUSB3MON] "C:\Program Files (x86)\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
mRun: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe
mRun: [Jomantha] C:\Program Files (x86)\n52te\n52teHid.exe
mRun: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
mRun: [Dolby Home Theater v4] "C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe" -autostart
mRun: [ASUS ShellProcess Execute] C:\Program Files (x86)\ASUS\AI Suite II\ASUS Mobilink\Simulator\AsShellProcess.exe
mRun: [ASUS AI Direct Link Command Execute] C:\Program Files (x86)\ASUS\AI Suite II\AI Direct Link\AsCmd.exe
mRun: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
mRun: [FUFAXSTM] "C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe"
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [ACSW15EN] "C:\Program Files (x86)\ACD Systems\ACDSee\15.0\ACDSee15InTouch2.exe" /pid ACSW15EN
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRunOnce: [Malwarebytes Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
StartupFolder: C:\Users\Justin\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\Dropbox.lnk - C:\Users\Justin\AppData\Roaming\Dropbox\bin\Dropbox.exe
StartupFolder: C:\Users\Justin\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\RAINME~1.LNK - C:\Program Files\Rainmeter\Rainmeter.exe
StartupFolder: C:\Users\Justin\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\WORKDR~1.LNK - C:\Users\Justin\AppData\Roaming\Dropbox\Dropboxuser.bat
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:0
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableLUA = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: PromptOnSecureDesktop = dword:0
IE: E&xport to Microsoft Excel - C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
LSP: mswsock.dll
TCP: Interfaces\{121BBBAE-F031-4198-A478-40625F03F0D3} : NameServer = 8.8.8.8,8.8.4.4
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
SSODL: WebCheck - <orphaned>
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL
x64-BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL
x64-BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL
x64-BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
x64-Run: [MSC] "C:\Program Files\Microsoft Security Client\mssecex.exe" -hide -runkey
x64-Run: [PheobusEX] C:\windows\syswow64\ExMgr.exe Envoke
x64-Run: [GamecomSound] C:\Program Files\ASUS Phoebus Audio Sound Card\CPL\Phoebus_x64.exe /h /d
x64-Run: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
x64-Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
x64-SSODL: WebCheck - <orphaned>
x64-SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Justin\AppData\Roaming\Mozilla\Firefox\Profiles\96vhs7iq.default\
FF - plugin: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
FF - plugin: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll
FF - plugin: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll
FF - plugin: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
FF - plugin: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll
FF - plugin: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrlui.dll
FF - plugin: C:\Users\Justin\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll
FF - plugin: C:\windows\System32\Macromed\Flash\NPSWF64_11_4_402_287.dll
FF - plugin: C:\windows\System32\npdeployJava1.dll
FF - plugin: C:\windows\System32\npmproxy.dll
FF - plugin: C:\windows\System32\Wat\npWatWeb.dll
FF - ExtSQL: 2012-09-26 10:47; {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}; C:\Users\Justin\AppData\Roaming\Mozilla\Firefox\Profiles\96vhs7iq.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF - ExtSQL: 2012-09-26 17:12; jid1-xUfzOsOFlzSOXg@jetpack; C:\Users\Justin\AppData\Roaming\Mozilla\Firefox\Profiles\96vhs7iq.default\extensions\jid1-xUfzOsOFlzSOXg@jetpack.xpi
FF - ExtSQL: 2012-10-24 20:52; {e4a8a97b-f2ed-450b-b12d-ee082ba24781}; C:\Users\Justin\AppData\Roaming\Mozilla\Firefox\Profiles\96vhs7iq.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi
FF - ExtSQL: 2012-10-24 20:56; {4324f4a6-3a89-477e-b388-6bca032df78b}; C:\Users\Justin\AppData\Roaming\Mozilla\Firefox\Profiles\96vhs7iq.default\extensions\{4324f4a6-3a89-477e-b388-6bca032df78b}.xpi
.
============= SERVICES / DRIVERS ===============
.
R0 MpFilter;Microsoft Malware Protection Driver;C:\windows\System32\drivers\MpFilter.sys [2012-8-30 228768]
R0 mv91xx;mv91xx;C:\windows\System32\drivers\mv91xx.sys [2009-12-25 297512]
R0 PxHlpa64;PxHlpa64;C:\windows\System32\drivers\PxHlpa64.sys [2012-8-7 56208]
R2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-7-27 63960]
R2 asHmComSvc;ASUS HM Com Service;C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [2012-9-15 951936]
R2 AsSysCtrlService;ASUS System Control Service;C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [2012-9-15 149120]
R2 DDService;Drobo Dashboard Service;C:\Program Files (x86)\Drobo\Drobo Dashboard\DDService.exe [2012-9-12 1888152]
R2 nvUpdatusService;NVIDIA Update Service Daemon;C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-4-4 1258856]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-8-30 382312]
R3 ATLOISAService;ATLOISAService;C:\Windows\system\ATLOISAService.exe [2012-6-29 489472]
R3 CmHdAudAddService;C-Media Function Driver for High Definition Audio Service;C:\windows\System32\drivers\CMHDAudioV64.sys [2012-5-24 52736]
R3 JmtFltr;n52te;C:\windows\System32\drivers\JmtFltr.sys [2012-4-29 46464]
R3 nusb3hub;NEC Electronics USB 3.0 Hub Driver;C:\windows\System32\drivers\nusb3hub.sys [2010-1-22 77824]
R3 nusb3xhc;NEC Electronics USB 3.0 Host Controller Driver;C:\windows\System32\drivers\nusb3xhc.sys [2010-1-22 180224]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;C:\windows\System32\drivers\nvhda64v.sys [2012-9-15 189288]
R3 osppsvc;Office Software Protection Platform;C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-1-9 4925184]
R3 rzendpt;rzendpt;C:\windows\System32\drivers\rzendpt.sys [2012-9-18 22016]
R3 rzudd;Razer Mouse Driver;C:\windows\System32\drivers\rzudd.sys [2012-9-18 112640]
S1 jmvckaxc;jmvckaxc;C:\windows\System32\drivers\jmvckaxc.sys [2012-10-25 49872]
S1 kjjmdktf;kjjmdktf;C:\windows\System32\drivers\kjjmdktf.sys [2012-10-25 49872]
S1 kwtgbxto;kwtgbxto;C:\windows\System32\drivers\kwtgbxto.sys [2012-10-25 49872]
S1 ljvtbapo;ljvtbapo;C:\windows\System32\drivers\ljvtbapo.sys [2012-10-25 49872]
S1 rqsitnnj;rqsitnnj;C:\windows\System32\drivers\rqsitnnj.sys [2012-10-25 49872]
S1 scfjtloa;scfjtloa;C:\windows\System32\drivers\scfjtloa.sys [2012-10-25 49872]
S1 vidbaokg;vidbaokg;C:\windows\System32\drivers\vidbaokg.sys [2012-10-25 49872]
S2 AsusFanControlService;AsusFanControlService;C:\Program Files (x86)\ASUS\AsusFanControlService\1.00.08\AsusFanControlService.exe [2012-9-15 1406080]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-4-30 250808]
S3 ATLMonitorService;ATLMonitorService;C:\Windows\system\MonitorService.exe [2012-6-29 610816]
S3 Desura Install Service;Desura Install Service;C:\Program Files (x86)\Common Files\Desura\desura_service.exe [2012-7-9 131912]
S3 e1yexpress;Intel(R) Gigabit Network Connections Driver;C:\windows\System32\drivers\e1y62x64.sys [2011-12-26 290008]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2011-6-12 51740536]
S3 MozillaMaintenance;Mozilla Maintenance Service;C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-8-19 114144]
S3 NisDrv;Microsoft Network Inspection System;C:\windows\System32\drivers\NisDrvWFP.sys [2011-4-27 128456]
S3 NisSrv;Microsoft Network Inspection;C:\Program Files\Microsoft Security Client\NisSrv.exe [2012-9-12 368896]
S3 ose64;Office 64 Source Engine;C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-1-9 174440]
S3 RzSynapse;Razer Driver;C:\windows\System32\drivers\RzSynapse.sys [2011-5-12 154624]
S3 StorSvc;Storage Service;C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-13 27136]
S3 SwitchBoard;Adobe SwitchBoard;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-2-19 517096]
S3 TsUsbFlt;TsUsbFlt;C:\windows\System32\drivers\TsUsbFlt.sys [2012-2-13 59392]
S3 USBAAPL64;Apple Mobile USB Driver;C:\windows\System32\drivers\usbaapl64.sys [2012-7-9 52736]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\windows\System32\Wat\WatAdminSvc.exe [2012-2-13 1255736]
.
=============== Created Last 30 ================
.
2012-10-26 03:22:07 49872 ----a-w- C:\windows\System32\drivers\rqsitnnj.sys
2012-10-26 03:21:43 69000 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{0B0A7149-D47E-4D7A-BBBE-26670099BA40}\offreg.dll
2012-10-26 03:20:07 9291768 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{0B0A7149-D47E-4D7A-BBBE-26670099BA40}\mpengine.dll
2012-10-26 03:17:38 49872 ----a-w- C:\windows\System32\drivers\ljvtbapo.sys
2012-10-26 03:17:28 49872 ----a-w- C:\windows\System32\drivers\vidbaokg.sys
2012-10-26 03:13:27 49872 ----a-w- C:\windows\System32\drivers\jmvckaxc.sys
2012-10-26 03:13:12 49872 ----a-w- C:\windows\System32\drivers\kjjmdktf.sys
2012-10-26 03:13:07 -------- d-----w- C:\Users\Justin\AppData\Roaming\Malwarebytes
2012-10-26 03:12:42 -------- d-----w- C:\ProgramData\Malwarebytes
2012-10-26 03:12:41 25928 ----a-w- C:\windows\System32\drivers\mbam.sys
2012-10-26 03:12:41 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2012-10-26 03:10:11 49872 ----a-w- C:\windows\System32\drivers\scfjtloa.sys
2012-10-26 03:08:47 49872 ----a-w- C:\windows\System32\drivers\kwtgbxto.sys
2012-10-26 03:06:21 -------- d-----w- C:\Users\Justin\AppData\Roaming\Brainwave
2012-10-26 03:05:47 -------- d-----w- C:\Program Files (x86)\Brainwave
2012-10-25 17:30:46 -------- d-----w- C:\Users\Justin\AppData\Local\MediaMonkey
2012-10-25 17:26:45 -------- d-----w- C:\Users\Justin\AppData\Roaming\MediaMonkey
2012-10-25 17:26:38 -------- d-----w- C:\ProgramData\MediaMonkey
2012-10-25 17:26:34 -------- d-----w- C:\Program Files (x86)\MediaMonkey
2012-10-24 23:20:47 9291768 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2012-10-24 02:22:54 -------- d-----w- C:\ProgramData\CCP
2012-10-24 01:47:20 -------- d-----w- C:\Program Files (x86)\CCP
2012-10-23 23:39:14 -------- d-----w- C:\Users\Justin\AppData\Local\CCP
2012-10-21 00:55:21 -------- d-----w- C:\Users\Justin\AppData\Local\THQ
2012-10-19 23:20:32 972192 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A3D86D65-F6B3-4644-85A4-B1077D0159BB}\gapaengine.dll
2012-10-18 14:01:50 -------- d-----w- C:\Program Files\TeamSpeak 3 Client
2012-10-16 02:53:40 -------- d-----w- C:\Users\Justin\AppData\Roaming\HandBrake
2012-10-16 02:53:24 -------- d-----w- C:\Program Files\Handbrake
2012-10-15 14:32:06 -------- d-----w- C:\Users\Justin\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2012-10-12 11:12:06 -------- d-----w- C:\Users\Justin\AppData\Roaming\IrfanView
2012-10-12 11:11:53 -------- d-----w- C:\Program Files (x86)\IrfanView
2012-10-11 23:21:13 972192 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A29AED54-5644-4577-BD65-94E292D3DD12}\gapaengine.dll
2012-10-11 21:35:40 -------- d-----w- C:\Program Files (x86)\WinSCP
2012-10-11 20:18:49 -------- d-----w- C:\Users\Justin\AppData\Local\libimobiledevice
2012-10-11 15:31:16 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin7.dll
2012-10-11 15:31:16 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin6.dll
2012-10-11 15:31:16 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin5.dll
2012-10-11 15:31:16 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin4.dll
2012-10-11 15:31:16 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin3.dll
2012-10-11 15:31:16 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin2.dll
2012-10-11 15:31:16 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin.dll
2012-10-10 03:10:48 148480 ----a-w- C:\windows\SysWow64\rztouchdll.dll
2012-10-10 03:10:44 617472 ----a-w- C:\windows\SysWow64\rzdevicedll.dll
2012-10-10 03:10:44 165888 ----a-w- C:\windows\SysWow64\rzaudiodll.dll
2012-10-09 17:58:43 -------- d-----w- C:\Users\Justin\AppData\Roaming\JAM Software
2012-10-05 13:47:18 -------- d-----w- C:\Program Files\Waterfox
2012-10-05 13:45:37 -------- d-----w- C:\Users\Justin\AppData\Roaming\Waterfox Limited
2012-10-02 22:46:05 -------- d-----w- C:\Users\Justin\AppData\Roaming\ACD Systems
2012-10-02 22:45:53 -------- d-----w- C:\Users\Justin\AppData\Local\ACD Systems
2012-10-02 19:13:47 -------- d-----w- C:\Users\Justin\AppData\Roaming\TeraCopy
2012-10-02 19:13:40 -------- d-----w- C:\Program Files\TeraCopy
2012-10-02 18:53:02 -------- d-----w- C:\ProgramData\ACD Systems
2012-10-02 18:52:58 -------- d-----w- C:\Program Files (x86)\Common Files\ACD Systems
2012-10-02 18:52:58 -------- d-----w- C:\Program Files (x86)\ACD Systems
2012-10-02 14:43:36 -------- d-----w- C:\Users\Justin\AppData\Local\Drobo Dashboard
2012-10-02 14:43:31 -------- d-----w- C:\ProgramData\Drobo Dashboard
2012-10-02 14:43:19 -------- d-----w- C:\Users\Justin\AppData\Roaming\Drobo
2012-10-02 14:43:19 -------- d-----w- C:\ProgramData\Drobo
2012-10-02 14:43:19 -------- d-----w- C:\Program Files (x86)\Drobo
2012-10-02 00:59:24 -------- d-----w- C:\Users\Justin\AppData\Local\Solid State Networks
2012-10-02 00:59:18 -------- d-----w- C:\Program Files (x86)\MeteorEntertainment
2012-09-27 13:11:09 -------- d-----w- C:\Users\Justin\AppData\Local\Thunderbird
2012-09-26 15:03:45 95208 ----a-w- C:\windows\SysWow64\WindowsAccessBridge-32.dll
2012-09-26 14:44:16 73696 ----a-w- C:\Program Files (x86)\Mozilla Firefox\breakpadinjector.dll
2012-09-26 14:44:16 266720 ----a-w- C:\Program Files (x86)\Mozilla Firefox\components\browsercomps.dll
2012-09-26 06:20:17 245760 ----a-w- C:\windows\System32\OxpsConverter.exe
.
==================== Find3M ====================
.
2012-10-26 03:08:39 328704 ----a-w- C:\windows\System32\services.exe
2012-10-09 04:12:23 696760 ----a-w- C:\windows\SysWow64\FlashPlayerApp.exe
2012-10-09 04:12:22 73656 ----a-w- C:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-09-26 15:03:41 746984 ----a-w- C:\windows\SysWow64\deployJava1.dll
2012-09-18 06:21:54 22016 ----a-w- C:\windows\System32\drivers\rzendpt.sys
2012-09-18 06:21:54 112640 ----a-w- C:\windows\System32\drivers\rzudd.sys
2012-09-15 19:08:10 821736 ----a-w- C:\windows\SysWow64\npDeployJava1.dll
2012-09-15 17:01:52 1401184 ----a-w- C:\windows\PE_Rom.dll
2012-09-14 19:19:29 2048 ----a-w- C:\windows\System32\tzres.dll
2012-09-14 18:28:53 2048 ----a-w- C:\windows\SysWow64\tzres.dll
2012-08-31 18:19:35 1659760 ----a-w- C:\windows\System32\drivers\ntfs.sys
2012-08-31 02:03:48 228768 ----a-w- C:\windows\System32\drivers\MpFilter.sys
2012-08-31 02:03:48 128456 ----a-w- C:\windows\System32\drivers\NisDrvWFP.sys
2012-08-30 18:03:45 5559664 ----a-w- C:\windows\System32\ntoskrnl.exe
2012-08-30 17:12:02 3968880 ----a-w- C:\windows\SysWow64\ntkrnlpa.exe
2012-08-30 17:12:02 3914096 ----a-w- C:\windows\SysWow64\ntoskrnl.exe
2012-08-30 16:18:05 891240 ----a-w- C:\windows\System32\nvvsvc.exe
2012-08-30 16:18:05 63336 ----a-w- C:\windows\System32\nvshext.dll
2012-08-30 16:18:05 118120 ----a-w- C:\windows\System32\nvmctray.dll
2012-08-30 16:18:04 3487434 ----a-w- C:\windows\System32\nvcoproc.bin
2012-08-30 16:18:01 3266920 ----a-w- C:\windows\System32\nvsvc64.dll
2012-08-30 16:17:59 6198120 ----a-w- C:\windows\System32\nvcpl.dll
2012-08-30 14:40:14 429416 ----a-w- C:\windows\SysWow64\nvStreaming.exe
2012-08-27 00:31:18 108008 ----a-w- C:\windows\System32\WindowsAccessBridge-64.dll
2012-08-27 00:31:16 916456 ----a-w- C:\windows\System32\deployJava1.dll
2012-08-27 00:31:16 1034216 ----a-w- C:\windows\System32\npdeployJava1.dll
2012-08-24 18:05:07 220160 ----a-w- C:\windows\System32\wintrust.dll
2012-08-24 16:57:48 172544 ----a-w- C:\windows\SysWow64\wintrust.dll
2012-08-24 10:31:32 2312704 ----a-w- C:\windows\System32\jscript9.dll
2012-08-24 10:21:18 1392128 ----a-w- C:\windows\System32\wininet.dll
2012-08-24 10:20:11 1494528 ----a-w- C:\windows\System32\inetcpl.cpl
2012-08-24 10:14:45 173056 ----a-w- C:\windows\System32\ieUnatt.exe
2012-08-24 10:13:29 599040 ----a-w- C:\windows\System32\vbscript.dll
2012-08-24 10:09:42 2382848 ----a-w- C:\windows\System32\mshtml.tlb
2012-08-24 06:59:17 1800704 ----a-w- C:\windows\SysWow64\jscript9.dll
2012-08-24 06:51:27 1129472 ----a-w- C:\windows\SysWow64\wininet.dll
2012-08-24 06:51:02 1427968 ----a-w- C:\windows\SysWow64\inetcpl.cpl
2012-08-24 06:47:26 142848 ----a-w- C:\windows\SysWow64\ieUnatt.exe
2012-08-24 06:47:12 420864 ----a-w- C:\windows\SysWow64\vbscript.dll
2012-08-24 06:43:58 2382848 ----a-w- C:\windows\SysWow64\mshtml.tlb
2012-08-22 18:12:50 1913200 ----a-w- C:\windows\System32\drivers\tcpip.sys
2012-08-22 18:12:40 950128 ----a-w- C:\windows\System32\drivers\ndis.sys
2012-08-22 18:12:40 376688 ----a-w- C:\windows\System32\drivers\netio.sys
2012-08-22 18:12:33 288624 ----a-w- C:\windows\System32\drivers\FWPKCLNT.SYS
2012-08-21 17:01:20 33240 ----a-w- C:\windows\System32\drivers\GEARAspiWDM.sys
2012-08-21 17:01:20 125872 ----a-w- C:\windows\System32\GEARAspi64.dll
2012-08-21 17:01:20 106928 ----a-w- C:\windows\SysWow64\GEARAspi.dll
2012-08-20 18:48:44 362496 ----a-w- C:\windows\System32\wow64win.dll
2012-08-20 18:48:44 243200 ----a-w- C:\windows\System32\wow64.dll
2012-08-20 18:48:44 13312 ----a-w- C:\windows\System32\wow64cpu.dll
2012-08-20 18:48:43 215040 ----a-w- C:\windows\System32\winsrv.dll
2012-08-20 18:48:37 16384 ----a-w- C:\windows\System32\ntvdm64.dll
2012-08-20 18:48:35 424448 ----a-w- C:\windows\System32\KernelBase.dll
2012-08-20 18:46:22 338432 ----a-w- C:\windows\System32\conhost.exe
2012-08-20 17:40:21 14336 ----a-w- C:\windows\SysWow64\ntvdm64.dll
2012-08-20 17:38:44 44032 ----a-w- C:\windows\apppatch\acwow64.dll
2012-08-20 17:38:26 25600 ----a-w- C:\windows\SysWow64\setup16.exe
2012-08-20 17:37:19 5120 ----a-w- C:\windows\SysWow64\wow32.dll
2012-08-20 17:37:18 274944 ----a-w- C:\windows\SysWow64\KernelBase.dll
2012-08-20 15:38:21 7680 ----a-w- C:\windows\SysWow64\instnm.exe
2012-08-20 15:38:20 2048 ----a-w- C:\windows\SysWow64\user.exe
2012-08-20 15:33:28 6144 ---ha-w- C:\windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
2012-08-20 15:33:28 4608 ---ha-w- C:\windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
2012-08-20 15:33:28 3584 ---ha-w- C:\windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
2012-08-20 15:33:28 3072 ---ha-w- C:\windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
2012-08-11 00:56:03 715776 ----a-w- C:\windows\System32\kerberos.dll
2012-08-10 23:56:14 542208 ----a-w- C:\windows\SysWow64\kerberos.dll
2012-08-02 17:58:52 574464 ----a-w- C:\windows\System32\d3d10level9.dll
2012-08-02 16:57:20 490496 ----a-w- C:\windows\SysWow64\d3d10level9.dll
2012-07-29 17:59:32 96768 ----a-w- C:\windows\System32\pdfcmon.dll
.
============= FINISH: 23:22:36.01 ===============
[/LEFT]
Attach.txt:
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-10-19.01)
.
Microsoft Windows 7 Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 12/26/2011 11:43:30 AM
System Uptime: 10/10/2012 7:09:59 PM (364 hours ago)
.
Motherboard: ASUSTeK Computer INC. | | Rampage III Formula
Processor: Intel(R) Core(TM) i7 CPU 950 @ 3.07GHz | LGA1366 | 3068/133mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 238 GiB total, 18.255 GiB free.
D: is FIXED (NTFS) - 1863 GiB total, 592.484 GiB free.
E: is FIXED (NTFS) - 466 GiB total, 226.99 GiB free.
F: is FIXED (NTFS) - 20 GiB total, 15.44 GiB free.
G: is CDROM (UDF)
H: is FIXED (NTFS) - 446 GiB total, 83.289 GiB free.
I: is Removable
J: is Removable
.
==== Disabled Device Manager Items =============
.
Class GUID: {4d36e972-e325-11ce-bfc1-08002be10318}
Description: Intel(R) 82567V-2 Gigabit Network Connection
Device ID: PCI\VEN_8086&DEV_10CE&SUBSYS_82D51043&REV_00\3&11583659&0&C8
Manufacturer: Intel
Name: Intel(R) 82567V-2 Gigabit Network Connection
PNP Device ID: PCI\VEN_8086&DEV_10CE&SUBSYS_82D51043&REV_00\3&11583659&0&C8
Service: e1yexpress
.
==== System Restore Points ===================
.
RP198: 10/11/2012 11:30:57 AM - Installed QuickTime
RP199: 10/13/2012 7:20:48 PM - Windows Update
RP200: 10/17/2012 7:20:34 PM - Windows Update
RP201: 10/20/2012 8:54:31 PM - Installed DirectX
RP202: 10/21/2012 2:18:21 AM - Windows Update
RP203: 10/24/2012 7:20:27 PM - Windows Update
.
==== Installed Programs ======================
.
µTorrent
7-Zip 9.20 (x64 edition)
ACDSee 15
Adobe AIR
Adobe Creative Suite 6 Production Premium
Adobe Flash Player 11 ActiveX
Adobe Flash Player 11 Plugin
Adobe Help Manager
Adobe InDesign CS6
Adobe Media Player
Adobe Reader X (10.1.4)
Adobe SVG Viewer 3.0
Adobe® Content Viewer
AI Suite II
AirPort
Akamai NetSession Interface
Amazon Kindle
Apple Application Support
Apple Mobile Device Support
Apple Software Update
ASUS Phoebus Audio Sound Card
bl
Bonjour
Combined Community Codec Pack 2011-11-11
Crysis 2 Maximum Edition
Dear Esther
Definition Update for Microsoft Office 2010 (KB982726) 64-Bit Edition
Desura
Desura: Omegalodon
Dolby Home Theater v4
Drobo Dashboard
Dropbox
Epson Event Manager
Epson FAX Utility
Epson PC-FAX Driver
EPSON Scan
EPSON WorkForce 630 Series Printer Uninstall
EpsonNet Print
EpsonNet Setup 3.3
EVE Online (remove only)
F.lux
Fallout: New Vegas
GiftWorks
GiftWorks Events
GiftWorks Volunteers
Google Chrome
Google SketchUp 8
HandBrake 0.9.8
Hawken
Hitman 2: Silent Assassin
Hitman: Blood Money
Hitman: Codename 47
iCloud
ImgBurn
InfraRecorder 0.52 (x64 edition)
Intel(R) Network Connections 15.3.68.0
IrfanView (remove only)
iTunes
Java 7 Update 6 (64-bit)
Java 7 Update 7
Java Auto Updater
JMicron JMB36X Driver
Link Shell Extension
LogMeIn Rescue Technician Console
Malwarebytes Anti-Malware version 1.65.1.1000
marvell 91xx driver
Mass Effect™ 3
MediaMonkey 4.0
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Extended
Microsoft Games for Windows - LIVE Redistributable
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office Access MUI (English) 2010
Microsoft Office Access Setup Metadata MUI (English) 2010
Microsoft Office Excel MUI (English) 2010
Microsoft Office Groove MUI (English) 2010
Microsoft Office InfoPath MUI (English) 2010
Microsoft Office Office 32-bit Components 2010
Microsoft Office OneNote MUI (English) 2010
Microsoft Office Outlook MUI (English) 2010
Microsoft Office PowerPoint MUI (English) 2010
Microsoft Office Professional Plus 2010
Microsoft Office Proof (English) 2010
Microsoft Office Proof (French) 2010
Microsoft Office Proof (Spanish) 2010
Microsoft Office Proofing (English) 2010
Microsoft Office Publisher MUI (English) 2010
Microsoft Office Shared 32-bit MUI (English) 2010
Microsoft Office Shared MUI (English) 2010
Microsoft Office Shared Setup Metadata MUI (English) 2010
Microsoft Office Word MUI (English) 2010
Microsoft Security Client
Microsoft Security Essentials
Microsoft Silverlight
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable (x64)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Microsoft XNA Framework Redistributable 3.1
Microsoft_VC80_CRT_x86
Microsoft_VC90_CRT_x86
Mount & Blade
Mozilla Firefox 15.0.1 (x86 en-US)
Mozilla Maintenance Service
Mozilla Thunderbird 15.0.1 (x86 en-US)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
n52te Editor
NEC Electronics USB 3.0 Host Controller Driver
Nexus Mod Manager
nHancer
NVIDIA 3D Vision Controller Driver 306.23
NVIDIA 3D Vision Driver 306.23
NVIDIA Control Panel 306.23
NVIDIA Graphics Driver 306.23
NVIDIA HD Audio Driver 1.3.18.0
NVIDIA Install Application
NVIDIA PhysX
NVIDIA PhysX System Software 9.12.0604
NVIDIA Stereoscopic 3D Driver
NVIDIA Update 1.10.8
NVIDIA Update Components
Oil Rush
OpenAL
Origin
PDF Settings CS6
PDFCreator
pdfsam
ph
POWERPREP II
PS3 Media Server
PunkBuster Services
pzizz
QuickTime
Rainmeter
Razer Naga Epic Dock Firmware Updater
Razer Naga Epic Firmware Updater
Razer Synapse 2.0
Realtek High Definition Audio Driver
RocketDock 1.3.5
Safari
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)
Security Update for Microsoft .NET Framework 4 Extended (KB2487367)
Security Update for Microsoft .NET Framework 4 Extended (KB2656351)
Security Update for Microsoft Excel 2010 (KB2597166) 64-Bit Edition
Security Update for Microsoft InfoPath 2010 (KB2687417) 64-Bit Edition
Security Update for Microsoft InfoPath 2010 (KB2687436) 64-Bit Edition
Security Update for Microsoft Office 2010 (KB2553091)
Security Update for Microsoft Office 2010 (KB2553096)
Security Update for Microsoft Office 2010 (KB2553260) 64-Bit Edition
Security Update for Microsoft Office 2010 (KB2553371) 64-Bit Edition
Security Update for Microsoft Office 2010 (KB2553447) 64-Bit Edition
Security Update for Microsoft Office 2010 (KB2589320) 64-Bit Edition
Security Update for Microsoft Office 2010 (KB2589322) 64-Bit Edition
Security Update for Microsoft Office 2010 (KB2598243) 64-Bit Edition
Security Update for Microsoft PowerPoint 2010 (KB2553185) 64-Bit Edition
Security Update for Microsoft SharePoint Workspace 2010 (KB2566445)
Security Update for Microsoft Visio Viewer 2010 (KB2598287) 64-Bit Edition
Security Update for Microsoft Word 2010 (KB2553488) 64-Bit Edition
SimCity 4 Deluxe
Source SDK Base 2007
SpeedFan (remove only)
StarCraft II
Steam
SteamTool 1.1
TeamSpeak 3 Client
TeraCopy 2.27
The Witcher 2: Assassins of Kings Enhanced Edition
The Witcher: Enhanced Edition
Trine 2
Ubisoft Game Launcher
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
Update for Microsoft .NET Framework 4 Extended (KB2468871)
Update for Microsoft .NET Framework 4 Extended (KB2533523)
Update for Microsoft .NET Framework 4 Extended (KB2600217)
Update for Microsoft Office 2010 (KB2494150)
Update for Microsoft Office 2010 (KB2553065)
Update for Microsoft Office 2010 (KB2553092)
Update for Microsoft Office 2010 (KB2553181) 64-Bit Edition
Update for Microsoft Office 2010 (KB2553267) 64-Bit Edition
Update for Microsoft Office 2010 (KB2553270) 64-Bit Edition
Update for Microsoft Office 2010 (KB2553272) 64-Bit Edition
Update for Microsoft Office 2010 (KB2553310) 64-Bit Edition
Update for Microsoft Office 2010 (KB2566458)
Update for Microsoft Office 2010 (KB2598289) 64-Bit Edition
Update for Microsoft OneNote 2010 (KB2553290) 64-Bit Edition
Update for Microsoft OneNote 2010 (KB2589345) 64-Bit Edition
Update for Microsoft Outlook 2010 (KB2553248) 64-Bit Edition
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 64-Bit Edition
Ventrilo Client for Windows x64
Ventrilo Server
Vessel
VLC media player 2.0.2
Warhammer 40,000 Space Marine
Waterfox
WinDirStat 1.1.2
WinRAR 4.10 (64-bit)
WinSCP 5.1
.
==== Event Viewer Messages From Past Week ========
.
10/25/2012 11:19:54 PM, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Network Inspection System Error Code: 0x8007041d Error description: The service did not respond to the start or control request in a timely fashion. Reason: Antimalware protection has stopped functioning for an unknown reason. In some instances, restarting the service may resolve the problem.
10/25/2012 11:19:24 PM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the NisSrv service.
10/25/2012 11:09:11 PM, Error: Service Control Manager [7034] - The PnkBstrA service terminated unexpectedly. It has done this 1 time(s).
.
==== End Of File ===========================
I killed PnkBstrA
MBAM
Malwarebytes Anti-Malware 1.65.1.1000
www.malwarebytes.org
Database version: v2012.10.26.02
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Justin :: JUSTIN-PC [administrator]
10/25/2012 11:26:57 PM
mbam-log-2012-10-25 (23-26-57).txt
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 245387
Time elapsed: 54 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
(end)
GMER: no output
DDS.txt:
[LEFT]DDS (Ver_2012-10-19.01) - NTFS_AMD64
Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 10.7.2
Run by Justin at 23:22:27 on 2012-10-25
Microsoft Windows 7 Professional 6.1.7601.1.1252.1.1033.18.18423.12860 [GMT -4:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {B140BF4E-23BB-4198-90AB-A51A4C60A69C}
SP: Microsoft Security Essentials *Enabled/Updated* {0A215EAA-0581-4E16-AA1B-9E6837E7EC21}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\windows\system32\wininit.exe
C:\windows\system32\lsm.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
C:\windows\system32\svchost.exe -k RPCSS
c:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k NetworkService
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
C:\windows\system32\nvvsvc.exe
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe
C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files (x86)\Drobo\Drobo Dashboard\DDService.exe
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
D:\Program Files\nHancer\nHancerService.exe
C:\windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\WUDFHost.exe
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\taskhost.exe
C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr64.exe
C:\windows\system32\Dwm.exe
C:\windows\Explorer.EXE
C:\Windows\SysWOW64\ExMgr.exe
C:\Program Files\ASUS Phoebus Audio Sound Card\CPL\Phoebus_x64.exe
C:\Program Files (x86)\uTorrent\uTorrent.exe
C:\Users\Justin\Local Settings\Apps\F.lux\flux.exe
C:\Windows\System32\spool\drivers\x64\3\E_IATIGBA.EXE
C:\Program Files (x86)\Drobo\Drobo Dashboard\DDAssist.exe
C:\Users\Justin\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\Rainmeter\Rainmeter.exe
C:\Program Files (x86)\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Program Files (x86)\n52te\n52teHid.exe
C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe
C:\Program Files (x86)\ASUS\AI Suite II\AI Direct Link\AsCmd.exe
C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\ACD Systems\ACDSee\15.0\ACDSee15InTouch2.exe
C:\windows\system32\SearchIndexer.exe
C:\windows\system\ATLOISAService.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
C:\windows\system32\taskhost.exe
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
C:\Program Files (x86)\Adobe\Adobe InDesign CS6\Utilities\adb.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe
C:\windows\system32\conhost.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\SyncServer.exe
C:\windows\system32\conhost.exe
C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
D:\Steam\Steam.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Program Files (x86)\n52te\n52teTra.exe
C:\Users\Justin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Justin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Justin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Justin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\windows\system32\spool\DRIVERS\x64\3\E_IARNGBA.EXE
C:\Users\Justin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Justin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Justin\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\Waterfox\waterfox.exe
C:\Program Files\Waterfox\plugin-container.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\windows\system32\taskmgr.exe
c:\Program Files\Microsoft Security Client\MpCmdRun.exe
C:\windows\system32\SearchProtocolHost.exe
C:\windows\system32\SearchFilterHost.exe
C:\windows\system32\conhost.exe
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
mWinlogon: Userinit = userinit.exe
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
uRun: [Google Update] "C:\Users\Justin\AppData\Local\Google\Update\GoogleUpdate.exe" /c
uRun: [Steam] "D:\Steam\steam.exe" -silent
uRun: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED
uRun: [AdobeBridge] <no file>
mRun: [NUSB3MON] "C:\Program Files (x86)\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
mRun: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe
mRun: [Jomantha] C:\Program Files (x86)\n52te\n52teHid.exe
mRun: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
mRun: [Dolby Home Theater v4] "C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe" -autostart
mRun: [ASUS ShellProcess Execute] C:\Program Files (x86)\ASUS\AI Suite II\ASUS Mobilink\Simulator\AsShellProcess.exe
mRun: [ASUS AI Direct Link Command Execute] C:\Program Files (x86)\ASUS\AI Suite II\AI Direct Link\AsCmd.exe
mRun: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
mRun: [FUFAXSTM] "C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe"
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [ACSW15EN] "C:\Program Files (x86)\ACD Systems\ACDSee\15.0\ACDSee15InTouch2.exe" /pid ACSW15EN
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRunOnce: [Malwarebytes Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
StartupFolder: C:\Users\Justin\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\Dropbox.lnk - C:\Users\Justin\AppData\Roaming\Dropbox\bin\Dropbox.exe
StartupFolder: C:\Users\Justin\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\RAINME~1.LNK - C:\Program Files\Rainmeter\Rainmeter.exe
StartupFolder: C:\Users\Justin\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\WORKDR~1.LNK - C:\Users\Justin\AppData\Roaming\Dropbox\Dropboxuser.bat
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:0
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableLUA = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: PromptOnSecureDesktop = dword:0
IE: E&xport to Microsoft Excel - C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
LSP: mswsock.dll
TCP: Interfaces\{121BBBAE-F031-4198-A478-40625F03F0D3} : NameServer = 8.8.8.8,8.8.4.4
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
SSODL: WebCheck - <orphaned>
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL
x64-BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL
x64-BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL
x64-BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
x64-Run: [MSC] "C:\Program Files\Microsoft Security Client\mssecex.exe" -hide -runkey
x64-Run: [PheobusEX] C:\windows\syswow64\ExMgr.exe Envoke
x64-Run: [GamecomSound] C:\Program Files\ASUS Phoebus Audio Sound Card\CPL\Phoebus_x64.exe /h /d
x64-Run: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
x64-Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
x64-SSODL: WebCheck - <orphaned>
x64-SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Justin\AppData\Roaming\Mozilla\Firefox\Profiles\96vhs7iq.default\
FF - plugin: C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL
FF - plugin: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll
FF - plugin: C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll
FF - plugin: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll
FF - plugin: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll
FF - plugin: C:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrlui.dll
FF - plugin: C:\Users\Justin\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll
FF - plugin: C:\windows\System32\Macromed\Flash\NPSWF64_11_4_402_287.dll
FF - plugin: C:\windows\System32\npdeployJava1.dll
FF - plugin: C:\windows\System32\npmproxy.dll
FF - plugin: C:\windows\System32\Wat\npWatWeb.dll
FF - ExtSQL: 2012-09-26 10:47; {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}; C:\Users\Justin\AppData\Roaming\Mozilla\Firefox\Profiles\96vhs7iq.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF - ExtSQL: 2012-09-26 17:12; jid1-xUfzOsOFlzSOXg@jetpack; C:\Users\Justin\AppData\Roaming\Mozilla\Firefox\Profiles\96vhs7iq.default\extensions\jid1-xUfzOsOFlzSOXg@jetpack.xpi
FF - ExtSQL: 2012-10-24 20:52; {e4a8a97b-f2ed-450b-b12d-ee082ba24781}; C:\Users\Justin\AppData\Roaming\Mozilla\Firefox\Profiles\96vhs7iq.default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi
FF - ExtSQL: 2012-10-24 20:56; {4324f4a6-3a89-477e-b388-6bca032df78b}; C:\Users\Justin\AppData\Roaming\Mozilla\Firefox\Profiles\96vhs7iq.default\extensions\{4324f4a6-3a89-477e-b388-6bca032df78b}.xpi
.
============= SERVICES / DRIVERS ===============
.
R0 MpFilter;Microsoft Malware Protection Driver;C:\windows\System32\drivers\MpFilter.sys [2012-8-30 228768]
R0 mv91xx;mv91xx;C:\windows\System32\drivers\mv91xx.sys [2009-12-25 297512]
R0 PxHlpa64;PxHlpa64;C:\windows\System32\drivers\PxHlpa64.sys [2012-8-7 56208]
R2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-7-27 63960]
R2 asHmComSvc;ASUS HM Com Service;C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [2012-9-15 951936]
R2 AsSysCtrlService;ASUS System Control Service;C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [2012-9-15 149120]
R2 DDService;Drobo Dashboard Service;C:\Program Files (x86)\Drobo\Drobo Dashboard\DDService.exe [2012-9-12 1888152]
R2 nvUpdatusService;NVIDIA Update Service Daemon;C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-4-4 1258856]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-8-30 382312]
R3 ATLOISAService;ATLOISAService;C:\Windows\system\ATLOISAService.exe [2012-6-29 489472]
R3 CmHdAudAddService;C-Media Function Driver for High Definition Audio Service;C:\windows\System32\drivers\CMHDAudioV64.sys [2012-5-24 52736]
R3 JmtFltr;n52te;C:\windows\System32\drivers\JmtFltr.sys [2012-4-29 46464]
R3 nusb3hub;NEC Electronics USB 3.0 Hub Driver;C:\windows\System32\drivers\nusb3hub.sys [2010-1-22 77824]
R3 nusb3xhc;NEC Electronics USB 3.0 Host Controller Driver;C:\windows\System32\drivers\nusb3xhc.sys [2010-1-22 180224]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;C:\windows\System32\drivers\nvhda64v.sys [2012-9-15 189288]
R3 osppsvc;Office Software Protection Platform;C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-1-9 4925184]
R3 rzendpt;rzendpt;C:\windows\System32\drivers\rzendpt.sys [2012-9-18 22016]
R3 rzudd;Razer Mouse Driver;C:\windows\System32\drivers\rzudd.sys [2012-9-18 112640]
S1 jmvckaxc;jmvckaxc;C:\windows\System32\drivers\jmvckaxc.sys [2012-10-25 49872]
S1 kjjmdktf;kjjmdktf;C:\windows\System32\drivers\kjjmdktf.sys [2012-10-25 49872]
S1 kwtgbxto;kwtgbxto;C:\windows\System32\drivers\kwtgbxto.sys [2012-10-25 49872]
S1 ljvtbapo;ljvtbapo;C:\windows\System32\drivers\ljvtbapo.sys [2012-10-25 49872]
S1 rqsitnnj;rqsitnnj;C:\windows\System32\drivers\rqsitnnj.sys [2012-10-25 49872]
S1 scfjtloa;scfjtloa;C:\windows\System32\drivers\scfjtloa.sys [2012-10-25 49872]
S1 vidbaokg;vidbaokg;C:\windows\System32\drivers\vidbaokg.sys [2012-10-25 49872]
S2 AsusFanControlService;AsusFanControlService;C:\Program Files (x86)\ASUS\AsusFanControlService\1.00.08\AsusFanControlService.exe [2012-9-15 1406080]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-4-30 250808]
S3 ATLMonitorService;ATLMonitorService;C:\Windows\system\MonitorService.exe [2012-6-29 610816]
S3 Desura Install Service;Desura Install Service;C:\Program Files (x86)\Common Files\Desura\desura_service.exe [2012-7-9 131912]
S3 e1yexpress;Intel(R) Gigabit Network Connections Driver;C:\windows\System32\drivers\e1y62x64.sys [2011-12-26 290008]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2011-6-12 51740536]
S3 MozillaMaintenance;Mozilla Maintenance Service;C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-8-19 114144]
S3 NisDrv;Microsoft Network Inspection System;C:\windows\System32\drivers\NisDrvWFP.sys [2011-4-27 128456]
S3 NisSrv;Microsoft Network Inspection;C:\Program Files\Microsoft Security Client\NisSrv.exe [2012-9-12 368896]
S3 ose64;Office 64 Source Engine;C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-1-9 174440]
S3 RzSynapse;Razer Driver;C:\windows\System32\drivers\RzSynapse.sys [2011-5-12 154624]
S3 StorSvc;Storage Service;C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-13 27136]
S3 SwitchBoard;Adobe SwitchBoard;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-2-19 517096]
S3 TsUsbFlt;TsUsbFlt;C:\windows\System32\drivers\TsUsbFlt.sys [2012-2-13 59392]
S3 USBAAPL64;Apple Mobile USB Driver;C:\windows\System32\drivers\usbaapl64.sys [2012-7-9 52736]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\windows\System32\Wat\WatAdminSvc.exe [2012-2-13 1255736]
.
=============== Created Last 30 ================
.
2012-10-26 03:22:07 49872 ----a-w- C:\windows\System32\drivers\rqsitnnj.sys
2012-10-26 03:21:43 69000 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{0B0A7149-D47E-4D7A-BBBE-26670099BA40}\offreg.dll
2012-10-26 03:20:07 9291768 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{0B0A7149-D47E-4D7A-BBBE-26670099BA40}\mpengine.dll
2012-10-26 03:17:38 49872 ----a-w- C:\windows\System32\drivers\ljvtbapo.sys
2012-10-26 03:17:28 49872 ----a-w- C:\windows\System32\drivers\vidbaokg.sys
2012-10-26 03:13:27 49872 ----a-w- C:\windows\System32\drivers\jmvckaxc.sys
2012-10-26 03:13:12 49872 ----a-w- C:\windows\System32\drivers\kjjmdktf.sys
2012-10-26 03:13:07 -------- d-----w- C:\Users\Justin\AppData\Roaming\Malwarebytes
2012-10-26 03:12:42 -------- d-----w- C:\ProgramData\Malwarebytes
2012-10-26 03:12:41 25928 ----a-w- C:\windows\System32\drivers\mbam.sys
2012-10-26 03:12:41 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2012-10-26 03:10:11 49872 ----a-w- C:\windows\System32\drivers\scfjtloa.sys
2012-10-26 03:08:47 49872 ----a-w- C:\windows\System32\drivers\kwtgbxto.sys
2012-10-26 03:06:21 -------- d-----w- C:\Users\Justin\AppData\Roaming\Brainwave
2012-10-26 03:05:47 -------- d-----w- C:\Program Files (x86)\Brainwave
2012-10-25 17:30:46 -------- d-----w- C:\Users\Justin\AppData\Local\MediaMonkey
2012-10-25 17:26:45 -------- d-----w- C:\Users\Justin\AppData\Roaming\MediaMonkey
2012-10-25 17:26:38 -------- d-----w- C:\ProgramData\MediaMonkey
2012-10-25 17:26:34 -------- d-----w- C:\Program Files (x86)\MediaMonkey
2012-10-24 23:20:47 9291768 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2012-10-24 02:22:54 -------- d-----w- C:\ProgramData\CCP
2012-10-24 01:47:20 -------- d-----w- C:\Program Files (x86)\CCP
2012-10-23 23:39:14 -------- d-----w- C:\Users\Justin\AppData\Local\CCP
2012-10-21 00:55:21 -------- d-----w- C:\Users\Justin\AppData\Local\THQ
2012-10-19 23:20:32 972192 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A3D86D65-F6B3-4644-85A4-B1077D0159BB}\gapaengine.dll
2012-10-18 14:01:50 -------- d-----w- C:\Program Files\TeamSpeak 3 Client
2012-10-16 02:53:40 -------- d-----w- C:\Users\Justin\AppData\Roaming\HandBrake
2012-10-16 02:53:24 -------- d-----w- C:\Program Files\Handbrake
2012-10-15 14:32:06 -------- d-----w- C:\Users\Justin\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2012-10-12 11:12:06 -------- d-----w- C:\Users\Justin\AppData\Roaming\IrfanView
2012-10-12 11:11:53 -------- d-----w- C:\Program Files (x86)\IrfanView
2012-10-11 23:21:13 972192 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{A29AED54-5644-4577-BD65-94E292D3DD12}\gapaengine.dll
2012-10-11 21:35:40 -------- d-----w- C:\Program Files (x86)\WinSCP
2012-10-11 20:18:49 -------- d-----w- C:\Users\Justin\AppData\Local\libimobiledevice
2012-10-11 15:31:16 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin7.dll
2012-10-11 15:31:16 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin6.dll
2012-10-11 15:31:16 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin5.dll
2012-10-11 15:31:16 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin4.dll
2012-10-11 15:31:16 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin3.dll
2012-10-11 15:31:16 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin2.dll
2012-10-11 15:31:16 159744 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin.dll
2012-10-10 03:10:48 148480 ----a-w- C:\windows\SysWow64\rztouchdll.dll
2012-10-10 03:10:44 617472 ----a-w- C:\windows\SysWow64\rzdevicedll.dll
2012-10-10 03:10:44 165888 ----a-w- C:\windows\SysWow64\rzaudiodll.dll
2012-10-09 17:58:43 -------- d-----w- C:\Users\Justin\AppData\Roaming\JAM Software
2012-10-05 13:47:18 -------- d-----w- C:\Program Files\Waterfox
2012-10-05 13:45:37 -------- d-----w- C:\Users\Justin\AppData\Roaming\Waterfox Limited
2012-10-02 22:46:05 -------- d-----w- C:\Users\Justin\AppData\Roaming\ACD Systems
2012-10-02 22:45:53 -------- d-----w- C:\Users\Justin\AppData\Local\ACD Systems
2012-10-02 19:13:47 -------- d-----w- C:\Users\Justin\AppData\Roaming\TeraCopy
2012-10-02 19:13:40 -------- d-----w- C:\Program Files\TeraCopy
2012-10-02 18:53:02 -------- d-----w- C:\ProgramData\ACD Systems
2012-10-02 18:52:58 -------- d-----w- C:\Program Files (x86)\Common Files\ACD Systems
2012-10-02 18:52:58 -------- d-----w- C:\Program Files (x86)\ACD Systems
2012-10-02 14:43:36 -------- d-----w- C:\Users\Justin\AppData\Local\Drobo Dashboard
2012-10-02 14:43:31 -------- d-----w- C:\ProgramData\Drobo Dashboard
2012-10-02 14:43:19 -------- d-----w- C:\Users\Justin\AppData\Roaming\Drobo
2012-10-02 14:43:19 -------- d-----w- C:\ProgramData\Drobo
2012-10-02 14:43:19 -------- d-----w- C:\Program Files (x86)\Drobo
2012-10-02 00:59:24 -------- d-----w- C:\Users\Justin\AppData\Local\Solid State Networks
2012-10-02 00:59:18 -------- d-----w- C:\Program Files (x86)\MeteorEntertainment
2012-09-27 13:11:09 -------- d-----w- C:\Users\Justin\AppData\Local\Thunderbird
2012-09-26 15:03:45 95208 ----a-w- C:\windows\SysWow64\WindowsAccessBridge-32.dll
2012-09-26 14:44:16 73696 ----a-w- C:\Program Files (x86)\Mozilla Firefox\breakpadinjector.dll
2012-09-26 14:44:16 266720 ----a-w- C:\Program Files (x86)\Mozilla Firefox\components\browsercomps.dll
2012-09-26 06:20:17 245760 ----a-w- C:\windows\System32\OxpsConverter.exe
.
==================== Find3M ====================
.
2012-10-26 03:08:39 328704 ----a-w- C:\windows\System32\services.exe
2012-10-09 04:12:23 696760 ----a-w- C:\windows\SysWow64\FlashPlayerApp.exe
2012-10-09 04:12:22 73656 ----a-w- C:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-09-26 15:03:41 746984 ----a-w- C:\windows\SysWow64\deployJava1.dll
2012-09-18 06:21:54 22016 ----a-w- C:\windows\System32\drivers\rzendpt.sys
2012-09-18 06:21:54 112640 ----a-w- C:\windows\System32\drivers\rzudd.sys
2012-09-15 19:08:10 821736 ----a-w- C:\windows\SysWow64\npDeployJava1.dll
2012-09-15 17:01:52 1401184 ----a-w- C:\windows\PE_Rom.dll
2012-09-14 19:19:29 2048 ----a-w- C:\windows\System32\tzres.dll
2012-09-14 18:28:53 2048 ----a-w- C:\windows\SysWow64\tzres.dll
2012-08-31 18:19:35 1659760 ----a-w- C:\windows\System32\drivers\ntfs.sys
2012-08-31 02:03:48 228768 ----a-w- C:\windows\System32\drivers\MpFilter.sys
2012-08-31 02:03:48 128456 ----a-w- C:\windows\System32\drivers\NisDrvWFP.sys
2012-08-30 18:03:45 5559664 ----a-w- C:\windows\System32\ntoskrnl.exe
2012-08-30 17:12:02 3968880 ----a-w- C:\windows\SysWow64\ntkrnlpa.exe
2012-08-30 17:12:02 3914096 ----a-w- C:\windows\SysWow64\ntoskrnl.exe
2012-08-30 16:18:05 891240 ----a-w- C:\windows\System32\nvvsvc.exe
2012-08-30 16:18:05 63336 ----a-w- C:\windows\System32\nvshext.dll
2012-08-30 16:18:05 118120 ----a-w- C:\windows\System32\nvmctray.dll
2012-08-30 16:18:04 3487434 ----a-w- C:\windows\System32\nvcoproc.bin
2012-08-30 16:18:01 3266920 ----a-w- C:\windows\System32\nvsvc64.dll
2012-08-30 16:17:59 6198120 ----a-w- C:\windows\System32\nvcpl.dll
2012-08-30 14:40:14 429416 ----a-w- C:\windows\SysWow64\nvStreaming.exe
2012-08-27 00:31:18 108008 ----a-w- C:\windows\System32\WindowsAccessBridge-64.dll
2012-08-27 00:31:16 916456 ----a-w- C:\windows\System32\deployJava1.dll
2012-08-27 00:31:16 1034216 ----a-w- C:\windows\System32\npdeployJava1.dll
2012-08-24 18:05:07 220160 ----a-w- C:\windows\System32\wintrust.dll
2012-08-24 16:57:48 172544 ----a-w- C:\windows\SysWow64\wintrust.dll
2012-08-24 10:31:32 2312704 ----a-w- C:\windows\System32\jscript9.dll
2012-08-24 10:21:18 1392128 ----a-w- C:\windows\System32\wininet.dll
2012-08-24 10:20:11 1494528 ----a-w- C:\windows\System32\inetcpl.cpl
2012-08-24 10:14:45 173056 ----a-w- C:\windows\System32\ieUnatt.exe
2012-08-24 10:13:29 599040 ----a-w- C:\windows\System32\vbscript.dll
2012-08-24 10:09:42 2382848 ----a-w- C:\windows\System32\mshtml.tlb
2012-08-24 06:59:17 1800704 ----a-w- C:\windows\SysWow64\jscript9.dll
2012-08-24 06:51:27 1129472 ----a-w- C:\windows\SysWow64\wininet.dll
2012-08-24 06:51:02 1427968 ----a-w- C:\windows\SysWow64\inetcpl.cpl
2012-08-24 06:47:26 142848 ----a-w- C:\windows\SysWow64\ieUnatt.exe
2012-08-24 06:47:12 420864 ----a-w- C:\windows\SysWow64\vbscript.dll
2012-08-24 06:43:58 2382848 ----a-w- C:\windows\SysWow64\mshtml.tlb
2012-08-22 18:12:50 1913200 ----a-w- C:\windows\System32\drivers\tcpip.sys
2012-08-22 18:12:40 950128 ----a-w- C:\windows\System32\drivers\ndis.sys
2012-08-22 18:12:40 376688 ----a-w- C:\windows\System32\drivers\netio.sys
2012-08-22 18:12:33 288624 ----a-w- C:\windows\System32\drivers\FWPKCLNT.SYS
2012-08-21 17:01:20 33240 ----a-w- C:\windows\System32\drivers\GEARAspiWDM.sys
2012-08-21 17:01:20 125872 ----a-w- C:\windows\System32\GEARAspi64.dll
2012-08-21 17:01:20 106928 ----a-w- C:\windows\SysWow64\GEARAspi.dll
2012-08-20 18:48:44 362496 ----a-w- C:\windows\System32\wow64win.dll
2012-08-20 18:48:44 243200 ----a-w- C:\windows\System32\wow64.dll
2012-08-20 18:48:44 13312 ----a-w- C:\windows\System32\wow64cpu.dll
2012-08-20 18:48:43 215040 ----a-w- C:\windows\System32\winsrv.dll
2012-08-20 18:48:37 16384 ----a-w- C:\windows\System32\ntvdm64.dll
2012-08-20 18:48:35 424448 ----a-w- C:\windows\System32\KernelBase.dll
2012-08-20 18:46:22 338432 ----a-w- C:\windows\System32\conhost.exe
2012-08-20 17:40:21 14336 ----a-w- C:\windows\SysWow64\ntvdm64.dll
2012-08-20 17:38:44 44032 ----a-w- C:\windows\apppatch\acwow64.dll
2012-08-20 17:38:26 25600 ----a-w- C:\windows\SysWow64\setup16.exe
2012-08-20 17:37:19 5120 ----a-w- C:\windows\SysWow64\wow32.dll
2012-08-20 17:37:18 274944 ----a-w- C:\windows\SysWow64\KernelBase.dll
2012-08-20 15:38:21 7680 ----a-w- C:\windows\SysWow64\instnm.exe
2012-08-20 15:38:20 2048 ----a-w- C:\windows\SysWow64\user.exe
2012-08-20 15:33:28 6144 ---ha-w- C:\windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
2012-08-20 15:33:28 4608 ---ha-w- C:\windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
2012-08-20 15:33:28 3584 ---ha-w- C:\windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
2012-08-20 15:33:28 3072 ---ha-w- C:\windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
2012-08-11 00:56:03 715776 ----a-w- C:\windows\System32\kerberos.dll
2012-08-10 23:56:14 542208 ----a-w- C:\windows\SysWow64\kerberos.dll
2012-08-02 17:58:52 574464 ----a-w- C:\windows\System32\d3d10level9.dll
2012-08-02 16:57:20 490496 ----a-w- C:\windows\SysWow64\d3d10level9.dll
2012-07-29 17:59:32 96768 ----a-w- C:\windows\System32\pdfcmon.dll
.
============= FINISH: 23:22:36.01 ===============
[/LEFT]
Attach.txt:
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-10-19.01)
.
Microsoft Windows 7 Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 12/26/2011 11:43:30 AM
System Uptime: 10/10/2012 7:09:59 PM (364 hours ago)
.
Motherboard: ASUSTeK Computer INC. | | Rampage III Formula
Processor: Intel(R) Core(TM) i7 CPU 950 @ 3.07GHz | LGA1366 | 3068/133mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 238 GiB total, 18.255 GiB free.
D: is FIXED (NTFS) - 1863 GiB total, 592.484 GiB free.
E: is FIXED (NTFS) - 466 GiB total, 226.99 GiB free.
F: is FIXED (NTFS) - 20 GiB total, 15.44 GiB free.
G: is CDROM (UDF)
H: is FIXED (NTFS) - 446 GiB total, 83.289 GiB free.
I: is Removable
J: is Removable
.
==== Disabled Device Manager Items =============
.
Class GUID: {4d36e972-e325-11ce-bfc1-08002be10318}
Description: Intel(R) 82567V-2 Gigabit Network Connection
Device ID: PCI\VEN_8086&DEV_10CE&SUBSYS_82D51043&REV_00\3&11583659&0&C8
Manufacturer: Intel
Name: Intel(R) 82567V-2 Gigabit Network Connection
PNP Device ID: PCI\VEN_8086&DEV_10CE&SUBSYS_82D51043&REV_00\3&11583659&0&C8
Service: e1yexpress
.
==== System Restore Points ===================
.
RP198: 10/11/2012 11:30:57 AM - Installed QuickTime
RP199: 10/13/2012 7:20:48 PM - Windows Update
RP200: 10/17/2012 7:20:34 PM - Windows Update
RP201: 10/20/2012 8:54:31 PM - Installed DirectX
RP202: 10/21/2012 2:18:21 AM - Windows Update
RP203: 10/24/2012 7:20:27 PM - Windows Update
.
==== Installed Programs ======================
.
µTorrent
7-Zip 9.20 (x64 edition)
ACDSee 15
Adobe AIR
Adobe Creative Suite 6 Production Premium
Adobe Flash Player 11 ActiveX
Adobe Flash Player 11 Plugin
Adobe Help Manager
Adobe InDesign CS6
Adobe Media Player
Adobe Reader X (10.1.4)
Adobe SVG Viewer 3.0
Adobe® Content Viewer
AI Suite II
AirPort
Akamai NetSession Interface
Amazon Kindle
Apple Application Support
Apple Mobile Device Support
Apple Software Update
ASUS Phoebus Audio Sound Card
bl
Bonjour
Combined Community Codec Pack 2011-11-11
Crysis 2 Maximum Edition
Dear Esther
Definition Update for Microsoft Office 2010 (KB982726) 64-Bit Edition
Desura
Desura: Omegalodon
Dolby Home Theater v4
Drobo Dashboard
Dropbox
Epson Event Manager
Epson FAX Utility
Epson PC-FAX Driver
EPSON Scan
EPSON WorkForce 630 Series Printer Uninstall
EpsonNet Print
EpsonNet Setup 3.3
EVE Online (remove only)
F.lux
Fallout: New Vegas
GiftWorks
GiftWorks Events
GiftWorks Volunteers
Google Chrome
Google SketchUp 8
HandBrake 0.9.8
Hawken
Hitman 2: Silent Assassin
Hitman: Blood Money
Hitman: Codename 47
iCloud
ImgBurn
InfraRecorder 0.52 (x64 edition)
Intel(R) Network Connections 15.3.68.0
IrfanView (remove only)
iTunes
Java 7 Update 6 (64-bit)
Java 7 Update 7
Java Auto Updater
JMicron JMB36X Driver
Link Shell Extension
LogMeIn Rescue Technician Console
Malwarebytes Anti-Malware version 1.65.1.1000
marvell 91xx driver
Mass Effect™ 3
MediaMonkey 4.0
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Extended
Microsoft Games for Windows - LIVE Redistributable
Microsoft Office 2010 Service Pack 1 (SP1)
Microsoft Office Access MUI (English) 2010
Microsoft Office Access Setup Metadata MUI (English) 2010
Microsoft Office Excel MUI (English) 2010
Microsoft Office Groove MUI (English) 2010
Microsoft Office InfoPath MUI (English) 2010
Microsoft Office Office 32-bit Components 2010
Microsoft Office OneNote MUI (English) 2010
Microsoft Office Outlook MUI (English) 2010
Microsoft Office PowerPoint MUI (English) 2010
Microsoft Office Professional Plus 2010
Microsoft Office Proof (English) 2010
Microsoft Office Proof (French) 2010
Microsoft Office Proof (Spanish) 2010
Microsoft Office Proofing (English) 2010
Microsoft Office Publisher MUI (English) 2010
Microsoft Office Shared 32-bit MUI (English) 2010
Microsoft Office Shared MUI (English) 2010
Microsoft Office Shared Setup Metadata MUI (English) 2010
Microsoft Office Word MUI (English) 2010
Microsoft Security Client
Microsoft Security Essentials
Microsoft Silverlight
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable (x64)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Microsoft XNA Framework Redistributable 3.1
Microsoft_VC80_CRT_x86
Microsoft_VC90_CRT_x86
Mount & Blade
Mozilla Firefox 15.0.1 (x86 en-US)
Mozilla Maintenance Service
Mozilla Thunderbird 15.0.1 (x86 en-US)
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
n52te Editor
NEC Electronics USB 3.0 Host Controller Driver
Nexus Mod Manager
nHancer
NVIDIA 3D Vision Controller Driver 306.23
NVIDIA 3D Vision Driver 306.23
NVIDIA Control Panel 306.23
NVIDIA Graphics Driver 306.23
NVIDIA HD Audio Driver 1.3.18.0
NVIDIA Install Application
NVIDIA PhysX
NVIDIA PhysX System Software 9.12.0604
NVIDIA Stereoscopic 3D Driver
NVIDIA Update 1.10.8
NVIDIA Update Components
Oil Rush
OpenAL
Origin
PDF Settings CS6
PDFCreator
pdfsam
ph
POWERPREP II
PS3 Media Server
PunkBuster Services
pzizz
QuickTime
Rainmeter
Razer Naga Epic Dock Firmware Updater
Razer Naga Epic Firmware Updater
Razer Synapse 2.0
Realtek High Definition Audio Driver
RocketDock 1.3.5
Safari
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)
Security Update for Microsoft .NET Framework 4 Extended (KB2487367)
Security Update for Microsoft .NET Framework 4 Extended (KB2656351)
Security Update for Microsoft Excel 2010 (KB2597166) 64-Bit Edition
Security Update for Microsoft InfoPath 2010 (KB2687417) 64-Bit Edition
Security Update for Microsoft InfoPath 2010 (KB2687436) 64-Bit Edition
Security Update for Microsoft Office 2010 (KB2553091)
Security Update for Microsoft Office 2010 (KB2553096)
Security Update for Microsoft Office 2010 (KB2553260) 64-Bit Edition
Security Update for Microsoft Office 2010 (KB2553371) 64-Bit Edition
Security Update for Microsoft Office 2010 (KB2553447) 64-Bit Edition
Security Update for Microsoft Office 2010 (KB2589320) 64-Bit Edition
Security Update for Microsoft Office 2010 (KB2589322) 64-Bit Edition
Security Update for Microsoft Office 2010 (KB2598243) 64-Bit Edition
Security Update for Microsoft PowerPoint 2010 (KB2553185) 64-Bit Edition
Security Update for Microsoft SharePoint Workspace 2010 (KB2566445)
Security Update for Microsoft Visio Viewer 2010 (KB2598287) 64-Bit Edition
Security Update for Microsoft Word 2010 (KB2553488) 64-Bit Edition
SimCity 4 Deluxe
Source SDK Base 2007
SpeedFan (remove only)
StarCraft II
Steam
SteamTool 1.1
TeamSpeak 3 Client
TeraCopy 2.27
The Witcher 2: Assassins of Kings Enhanced Edition
The Witcher: Enhanced Edition
Trine 2
Ubisoft Game Launcher
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
Update for Microsoft .NET Framework 4 Extended (KB2468871)
Update for Microsoft .NET Framework 4 Extended (KB2533523)
Update for Microsoft .NET Framework 4 Extended (KB2600217)
Update for Microsoft Office 2010 (KB2494150)
Update for Microsoft Office 2010 (KB2553065)
Update for Microsoft Office 2010 (KB2553092)
Update for Microsoft Office 2010 (KB2553181) 64-Bit Edition
Update for Microsoft Office 2010 (KB2553267) 64-Bit Edition
Update for Microsoft Office 2010 (KB2553270) 64-Bit Edition
Update for Microsoft Office 2010 (KB2553272) 64-Bit Edition
Update for Microsoft Office 2010 (KB2553310) 64-Bit Edition
Update for Microsoft Office 2010 (KB2566458)
Update for Microsoft Office 2010 (KB2598289) 64-Bit Edition
Update for Microsoft OneNote 2010 (KB2553290) 64-Bit Edition
Update for Microsoft OneNote 2010 (KB2589345) 64-Bit Edition
Update for Microsoft Outlook 2010 (KB2553248) 64-Bit Edition
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 64-Bit Edition
Ventrilo Client for Windows x64
Ventrilo Server
Vessel
VLC media player 2.0.2
Warhammer 40,000 Space Marine
Waterfox
WinDirStat 1.1.2
WinRAR 4.10 (64-bit)
WinSCP 5.1
.
==== Event Viewer Messages From Past Week ========
.
10/25/2012 11:19:54 PM, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Network Inspection System Error Code: 0x8007041d Error description: The service did not respond to the start or control request in a timely fashion. Reason: Antimalware protection has stopped functioning for an unknown reason. In some instances, restarting the service may resolve the problem.
10/25/2012 11:19:24 PM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the NisSrv service.
10/25/2012 11:09:11 PM, Error: Service Control Manager [7034] - The PnkBstrA service terminated unexpectedly. It has done this 1 time(s).
.
==== End Of File ===========================
I killed PnkBstrA