Malware Bytes Log:
Malwarebytes Anti-Malware (Trial) 1.62.0.1300
www.malwarebytes.org
Database version: v2012.07.13.02
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Chris :: CHRIS-PC [administrator]
Protection: Enabled
13/07/2012 10:50:56
mbam-log-2012-07-13 (10-50-56).txt
Scan type: Full scan (C:\|D:\|E:\|)
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 654889
Time elapsed: 2 hour(s), 8 minute(s), 42 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
GMER Log:
GMER 1.0.15.15641 -
http://www.gmer.net
Rootkit scan 2012-07-13 13:37:23
Windows 6.1.7601 Service Pack 1
Running: 8cz6clv7.exe
---- Registry - GMER 1.0.15 ----
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg@s1 771343423
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg@s2 285507792
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg@h0 1
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0 E:\Program Files (x86)\DAEMON Tools Lite\
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 0
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0xEC 0x34 0x27 0x56 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12 0x3E 0x12 0x12 0x9F ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12 0x63 0x45 0xF2 0x10 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0 E:\Program Files (x86)\DAEMON Tools Lite\
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 0
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0xEC 0x34 0x27 0x56 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12 0x3E 0x12 0x12 0x9F ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12 0x63 0x45 0xF2 0x10 ...
---- EOF - GMER 1.0.15 ----
DDS.txt:
.
DDS (Ver_2011-08-26.01) - NTFSAMD64
Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 1.6.0_33
Run by Chris at 13:38:36 on 2012-07-13
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.44.1033.18.4095.2024 [GMT 1:00]
.
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
D:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
E:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Windows\system32\svchost.exe -k WindowsMobile
C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
E:\Program Files (x86)\Steam\Steam.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
D:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files (x86)\Common Files\Steam\SteamService.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\System32\svchost.exe -k secsvcs
E:\Program Files (x86)\Microsoft Office\OFFICE11\WINWORD.EXE
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\splwow64.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\cscript.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uInternet Settings,ProxyOverride = *.local
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: DivX Plus Web Player HTML5 <video>: {326e768d-4182-46fd-9c16-1449a49795f4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
BHO: Java(tm) Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
BHO: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - D:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
TB: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - D:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
uRun: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe"
uRun: [RGSC] E:\Program Files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe /silent
uRun: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
uRun: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
uRun: [igndlm.exe] C:\Program Files (x86)\Download Manager\DLM.exe /windowsstart /startifwork
uRun: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
uRun: [DAEMON Tools Lite] "E:\Program Files (x86)\DAEMON Tools Lite\daemon.exe" -autorun
uRun: [Google Update] "C:\Users\Chris\AppData\Local\Google\Update\GoogleUpdate.exe" /c
uRun: [Desura] D:\Program Files (x86)\Desura\Desura.exe -autostart
uRun: [Steam] "E:\Program Files (x86)\Steam\steam.exe" -silent
uRun: [Spotify Web Helper] "C:\Users\Chris\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
uRunOnce: [FlashPlayerUpdate] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_2_202_235_Plugin.exe -update plugin
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
mRun: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [avast] "D:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
mRun: [Malwarebytes' Anti-Malware] "D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
StartupFolder: C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip
StartupFolder: C:\Users\Chris\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\Xfire.lnk - D:\Program Files (x86)\Xfire\Xfire.exe
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&xport to Microsoft Excel - E:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - {2EAF5BB0-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
IE: {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - {2EAF5BB0-070F-11D3-9307-00C04FAE2D4F} - C:\Windows\WindowsMobile\INetRepl.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - E:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
Trusted Zone: tradedoubler.com\www
DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} - hxxp://
www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_33-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: DhcpNameServer = 192.168.0.1
TCP: Interfaces\{4962F81B-6789-4BF6-923B-44908F0623BF} : NameServer = 10.203.129.68 10.203.129.68
TCP: Interfaces\{D00078E4-61A7-4279-AF55-7A4A51448C6A} : DhcpNameServer = 192.168.0.1
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO-X64: AcroIEHelperStub - No File
BHO-X64: DivX Plus Web Player HTML5 <video>: {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
BHO-X64: Increase performance and video formats for your HTML5 <video> - No File
BHO-X64: Spybot-S&D IE Protection: {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
BHO-X64: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
BHO-X64: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - D:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO-X64: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
TB-X64: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - D:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
mRun-x64: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun-x64: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
mRun-x64: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
mRun-x64: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun-x64: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun-x64: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun-x64: [avast] "D:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
mRun-x64: [Malwarebytes' Anti-Malware] "D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
Hosts: 127.0.0.1
www.spywareinfo.com
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Chris\AppData\Roaming\Mozilla\Firefox\Profiles\q3jrwl1c.default\
FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Battlelog Web Plugins\1.118.0\npesnlaunch.dll
FF - plugin: C:\Program Files (x86)\Battlelog Web Plugins\1.122.0\npesnlaunch.dll
FF - plugin: C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll
FF - plugin: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
FF - plugin: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: C:\Program Files (x86)\Download Manager\npfpdlm.dll
FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Java\jre6\bin\plugin2\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll
FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
FF - plugin: C:\Users\Chris\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll
FF - plugin: C:\Users\Chris\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_3_300_265.dll
FF - plugin: C:\Windows\SysWOW64\npdeployJava1.dll
FF - plugin: C:\Windows\SysWOW64\npmproxy.dll
.
============= SERVICES / DRIVERS ===============
.
P2 HiPatchService;Hi-Rez Studios Authenticate and Update Service;E:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [2012-6-30 8704]
R1 aswSnx;aswSnx;C:\Windows\system32\drivers\aswSnx.sys --> C:\Windows\system32\drivers\aswSnx.sys [?]
R1 aswSP;aswSP;C:\Windows\system32\drivers\aswSP.sys --> C:\Windows\system32\drivers\aswSP.sys [?]
R1 avkmgr;avkmgr;C:\Windows\system32\DRIVERS\avkmgr.sys --> C:\Windows\system32\DRIVERS\avkmgr.sys [?]
R2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-1-3 63928]
R2 AntiVirSchedulerService;Avira Scheduler;C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2011-10-20 86224]
R2 AntiVirService;Avira Realtime Protection;C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2011-10-20 110032]
R2 aswFsBlk;aswFsBlk;C:\Windows\system32\drivers\aswFsBlk.sys --> C:\Windows\system32\drivers\aswFsBlk.sys [?]
R2 aswMonFlt;aswMonFlt;\??\C:\Windows\system32\drivers\aswMonFlt.sys --> C:\Windows\system32\drivers\aswMonFlt.sys [?]
R2 avast! Antivirus;avast! Antivirus;D:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-7-10 44808]
R2 avgntflt;avgntflt;C:\Windows\system32\DRIVERS\avgntflt.sys --> C:\Windows\system32\DRIVERS\avgntflt.sys [?]
R2 MBAMService;MBAMService;D:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-7-12 655944]
R2 SBSDWSCService;SBSD Security Center Service;C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [2010-10-22 1153368]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-5-15 382272]
R3 MBAMProtector;MBAMProtector;\??\C:\Windows\system32\drivers\mbam.sys --> C:\Windows\system32\drivers\mbam.sys [?]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;C:\Windows\system32\drivers\nvhda64v.sys --> C:\Windows\system32\drivers\nvhda64v.sys [?]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-3-2 136176]
S2 nvUpdatusService;NVIDIA Update Service Daemon;C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2012-5-23 1262400]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-4-3 250056]
S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-3-2 136176]
S3 MozillaMaintenance;Mozilla Maintenance Service;C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-4-25 129976]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys --> C:\Windows\system32\drivers\tsusbflt.sys [?]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
S3 ZTEusbvoice;ZTE VoUSB Port;C:\Windows\system32\DRIVERS\ZTEusbvoice.sys --> C:\Windows\system32\DRIVERS\ZTEusbvoice.sys [?]
S3 ZTEusbwwan;ZTE MBN Miniport;C:\Windows\system32\DRIVERS\ZTEusbwwan.sys --> C:\Windows\system32\DRIVERS\ZTEusbwwan.sys [?]
.
=============== Created Last 30 ================
.
2012-07-13 07:43:26 9013136 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{B04F0083-B0CE-4349-9F78-CEE851837AC7}\mpengine.dll
2012-07-13 07:40:53 -------- d-----w- C:\Users\Chris\AppData\Local\{B6700693-1297-43F4-925E-F7700DB76ED9}
2012-07-13 07:40:38 -------- d-----w- C:\Users\Chris\AppData\Local\{6C7ABEB2-30C1-4205-A23F-FD30DC28CBDE}
2012-07-12 10:33:31 711240 ----a-w- C:\Windows\isRS-000.tmp
2012-07-12 07:32:58 -------- d-----w- C:\Users\Chris\AppData\Local\{EE9FA78C-B78C-478F-8E5A-64244DABC615}
2012-07-12 07:32:41 -------- d-----w- C:\Users\Chris\AppData\Local\{6E647367-3A4D-4671-83CB-4209C7CE8C69}
2012-07-11 22:26:49 3148800 ----a-w- C:\Windows\System32\win32k.sys
2012-07-11 19:17:52 2004480 ----a-w- C:\Windows\System32\msxml6.dll
2012-07-11 08:25:14 -------- d-----w- C:\Users\Chris\AppData\Roaming\Malwarebytes
2012-07-11 08:25:05 -------- d-----w- C:\ProgramData\Malwarebytes
2012-07-11 08:25:04 24904 ----a-w- C:\Windows\System32\drivers\mbam.sys
2012-07-11 07:04:44 -------- d-----w- C:\Users\Chris\AppData\Local\{915C7216-E5D4-4311-B302-CE8AFC722357}
2012-07-11 07:04:32 -------- d-----w- C:\Users\Chris\AppData\Local\{A244C444-6879-4EAA-892E-2A232F0805CF}
2012-07-10 10:36:42 54072 ----a-w- C:\Windows\System32\drivers\aswRdr2.sys
2012-07-10 10:36:40 958400 ----a-w- C:\Windows\System32\drivers\aswSnx.sys
2012-07-10 10:36:37 71064 ----a-w- C:\Windows\System32\drivers\aswMonFlt.sys
2012-07-10 10:36:10 41224 ----a-w- C:\Windows\avastSS.scr
2012-07-10 10:35:51 -------- d-----w- C:\ProgramData\AVAST Software
2012-07-10 10:03:21 388096 ----a-r- C:\Users\Chris\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2012-07-10 06:57:02 -------- d-----w- C:\Users\Chris\AppData\Local\{4BFDD976-EDD0-429C-9B3C-5ECC4883747A}
2012-07-10 06:56:47 -------- d-----w- C:\Users\Chris\AppData\Local\{701E078A-CB4E-49E1-80E3-BCA4C12C49A3}
2012-07-09 07:32:52 476936 ----a-w- C:\Windows\SysWow64\npdeployJava1.dll
2012-07-09 07:23:58 -------- d-----w- C:\Users\Chris\AppData\Local\{F430564C-918F-4A40-9B3D-290C959382D5}
2012-07-09 07:23:45 -------- d-----w- C:\Users\Chris\AppData\Local\{055446DE-D74F-4C6E-A92D-6C0E7E958B52}
2012-07-08 15:33:28 -------- d-----w- C:\Users\Chris\AppData\Local\{3EDC17FA-72D0-4571-B733-582DD2EAB737}
2012-07-08 15:33:17 -------- d-----w- C:\Users\Chris\AppData\Local\{8D510BD4-60CA-43B8-9C3C-679D9C31CF27}
2012-07-07 10:36:44 -------- d-----w- C:\Users\Chris\AppData\Local\{DE5275DB-1BA4-4FBA-9F5E-EAD0F75618B5}
2012-07-07 10:36:34 -------- d-----w- C:\Users\Chris\AppData\Local\{FEED1FEB-474E-4487-B394-D7722DB74274}
2012-07-05 06:49:14 -------- d-----w- C:\Users\Chris\AppData\Local\{17A43A2A-4F5C-415C-A9EC-13C15B678613}
2012-07-05 06:49:03 -------- d-----w- C:\Users\Chris\AppData\Local\{28108600-4008-4375-8C14-DECE011DDB01}
2012-07-04 07:23:10 -------- d-----w- C:\Users\Chris\AppData\Local\{9C6B8D93-5C73-43E5-9051-EF8816228270}
2012-07-04 07:22:59 -------- d-----w- C:\Users\Chris\AppData\Local\{98BB496B-4A79-4930-AADD-DA2B84D70DB9}
2012-07-03 06:59:32 -------- d-----w- C:\Users\Chris\AppData\Local\{D49A9596-4CB5-473A-9968-9E0195F7003C}
2012-07-02 07:32:05 -------- d-----w- C:\Users\Chris\AppData\Local\{5EF27C68-9F8E-4408-B20A-F085805F6ADC}
2012-07-02 07:31:54 -------- d-----w- C:\Users\Chris\AppData\Local\{C34D9449-1CDE-49C6-A757-8297656C1652}
2012-07-01 14:29:50 -------- d-----w- C:\Users\Chris\AppData\Local\{417A0DB7-090F-456C-9B16-5B6814FE864F}
2012-07-01 14:29:32 -------- d-----w- C:\Users\Chris\AppData\Local\{04A73727-86DA-4451-B2B9-429E780D6625}
2012-06-30 10:17:18 -------- d-----w- C:\Users\Chris\AppData\Local\Chromium
2012-06-30 10:11:59 -------- d-----w- C:\ProgramData\Hi-Rez Studios
2012-06-29 06:43:24 -------- d-----w- C:\Users\Chris\AppData\Local\{6D341DA0-129F-4BB1-9C48-050692EE12BD}
2012-06-29 06:43:14 -------- d-----w- C:\Users\Chris\AppData\Local\{67FF3A29-7738-482F-A906-F2CD00CD78CE}
2012-06-27 07:39:13 -------- d-----w- C:\Users\Chris\AppData\Local\{04757828-77BC-4E56-9368-E281A3433724}
2012-06-26 08:09:48 -------- d-----w- C:\Users\Chris\AppData\Local\{90502E1B-F676-461E-AFDC-FA313C89C848}
2012-06-25 08:01:38 -------- d-----w- C:\Users\Chris\AppData\Local\{C3256933-60ED-424A-B2D1-6E8AFA96DAB3}
2012-06-25 08:01:28 -------- d-----w- C:\Users\Chris\AppData\Local\{D820BBD3-B55E-40C9-8C26-A3BC12D193F0}
2012-06-24 10:44:02 -------- d-----w- C:\Users\Chris\AppData\Local\{34BB2C00-8D87-4858-B269-7C90B043D8DF}
2012-06-24 10:43:51 -------- d-----w- C:\Users\Chris\AppData\Local\{D6E738C3-9A62-4562-9361-7D2BA56A9A5D}
2012-06-23 20:11:22 -------- d-----w- C:\Users\Chris\AppData\Local\{4CF90CF3-FC88-4373-BC12-151608C68130}
2012-06-23 20:11:11 -------- d-----w- C:\Users\Chris\AppData\Local\{9D614C1F-C379-49D8-928B-5643805E39B8}
2012-06-23 04:40:11 -------- d-----w- C:\Users\Chris\AppData\Local\{507A6580-9B95-4689-A639-E6C92A6E826F}
2012-06-23 04:39:54 -------- d-----w- C:\Users\Chris\AppData\Local\{49D293DF-F5C1-4E9C-87C0-3908493B0185}
2012-06-22 07:02:55 -------- d-----w- C:\Users\Chris\AppData\Local\{3CC50479-7732-4961-9C03-A98170ADEEDD}
2012-06-22 07:02:42 -------- d-----w- C:\Users\Chris\AppData\Local\{DC698B76-5882-4F24-B3DA-C2D10DD87431}
2012-06-22 06:54:07 2622464 ----a-w- C:\Windows\System32\wucltux.dll
2012-06-22 06:53:46 99840 ----a-w- C:\Windows\System32\wudriver.dll
2012-06-22 06:53:35 36864 ----a-w- C:\Windows\System32\wuapp.exe
2012-06-22 06:53:35 186752 ----a-w- C:\Windows\System32\wuwebv.dll
2012-06-21 07:19:43 -------- d-----w- C:\Users\Chris\AppData\Local\{EA0D0844-0CCD-420B-82B8-B8CFF25FECBE}
2012-06-21 07:19:32 -------- d-----w- C:\Users\Chris\AppData\Local\{D45518D8-5AC1-45F3-AE1A-BBF96227F2DC}
2012-06-20 07:18:06 -------- d-----w- C:\Users\Chris\AppData\Local\{251D4090-3407-4B42-AA4F-629BFA21D8FA}
2012-06-20 07:17:55 -------- d-----w- C:\Users\Chris\AppData\Local\{A41FB7A5-15A6-401F-934D-107A0C894572}
2012-06-19 15:58:04 -------- d-----w- C:\Program Files\iPod
2012-06-19 15:58:03 -------- d-----w- C:\Program Files\iTunes
2012-06-19 15:58:03 -------- d-----w- C:\Program Files (x86)\iTunes
2012-06-19 08:13:45 -------- d-----w- C:\Users\Chris\AppData\Local\{C9B1F012-4F50-4504-BC0D-D62B92E758FF}
2012-06-19 08:13:30 -------- d-----w- C:\Users\Chris\AppData\Local\{6553E594-8E01-48FC-A97B-07FABEE6E0AF}
2012-06-18 08:07:00 -------- d-----w- C:\Users\Chris\AppData\Local\{844EB276-51F5-4F2E-B66B-DB04507E8CD6}
2012-06-17 12:14:46 -------- d-----w- C:\Users\Chris\AppData\Local\{A8ABB1E3-0F7E-4E4A-B823-52830C5B6156}
2012-06-16 20:12:02 -------- d-----w- C:\Users\Chris\AppData\Local\{848A1EFE-B918-405E-8BE8-3218D29EF1A8}
2012-06-16 08:11:36 -------- d-----w- C:\Users\Chris\AppData\Local\{ECF2D59F-FE7A-49D6-8C33-C9E83091CD46}
2012-06-15 06:48:48 -------- d-----w- C:\Users\Chris\AppData\Local\{CBAECBD8-E5F9-4968-83D3-DDBEBBD38507}
2012-06-14 07:25:19 -------- d-----w- C:\Users\Chris\AppData\Local\{10168BAA-03DC-4700-AB6A-72C5B60EE8BA}
2012-06-14 07:25:07 -------- d-----w- C:\Users\Chris\AppData\Local\{160BEC7E-A140-4B7D-9A5F-6678B26C1824}
.
==================== Find3M ====================
.
2012-07-12 08:56:27 70344 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2012-07-12 08:56:27 426184 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2012-07-09 07:32:44 472840 ----a-w- C:\Windows\SysWow64\deployJava1.dll
2012-07-04 18:09:21 283304 ----a-w- C:\Windows\SysWow64\PnkBstrB.xtr
2012-07-04 18:09:21 283304 ----a-w- C:\Windows\SysWow64\PnkBstrB.exe
2012-07-04 18:09:08 280904 ----a-w- C:\Windows\SysWow64\PnkBstrB.ex0
2012-06-06 06:06:16 1881600 ----a-w- C:\Windows\System32\msxml3.dll
2012-06-06 06:02:54 1133568 ----a-w- C:\Windows\System32\cdosys.dll
2012-06-06 05:05:52 1390080 ----a-w- C:\Windows\SysWow64\msxml6.dll
2012-06-06 05:05:52 1236992 ----a-w- C:\Windows\SysWow64\msxml3.dll
2012-06-06 05:03:06 805376 ----a-w- C:\Windows\SysWow64\cdosys.dll
2012-06-02 12:12:17 2311680 ----a-w- C:\Windows\System32\jscript9.dll
2012-06-02 12:05:28 1392128 ----a-w- C:\Windows\System32\wininet.dll
2012-06-02 12:04:50 1494528 ----a-w- C:\Windows\System32\inetcpl.cpl
2012-06-02 12:01:40 173056 ----a-w- C:\Windows\System32\ieUnatt.exe
2012-06-02 11:57:08 2382848 ----a-w- C:\Windows\System32\mshtml.tlb
2012-06-02 08:33:25 1800192 ----a-w- C:\Windows\SysWow64\jscript9.dll
2012-06-02 08:25:08 1129472 ----a-w- C:\Windows\SysWow64\wininet.dll
2012-06-02 08:25:03 1427968 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
2012-06-02 08:20:33 142848 ----a-w- C:\Windows\SysWow64\ieUnatt.exe
2012-06-02 08:16:52 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2012-06-02 05:50:10 458704 ----a-w- C:\Windows\System32\drivers\cng.sys
2012-06-02 05:48:16 95600 ----a-w- C:\Windows\System32\drivers\ksecdd.sys
2012-06-02 05:48:16 151920 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys
2012-06-02 05:45:31 340992 ----a-w- C:\Windows\System32\schannel.dll
2012-06-02 05:44:21 307200 ----a-w- C:\Windows\System32\ncrypt.dll
2012-06-02 04:40:42 22016 ----a-w- C:\Windows\SysWow64\secur32.dll
2012-06-02 04:40:39 225280 ----a-w- C:\Windows\SysWow64\schannel.dll
2012-06-02 04:39:10 219136 ----a-w- C:\Windows\SysWow64\ncrypt.dll
2012-06-02 04:34:09 96768 ----a-w- C:\Windows\SysWow64\sspicli.dll
2012-05-19 18:36:31 76888 ----a-w- C:\Windows\SysWow64\PnkBstrA.exe
2012-05-15 09:29:47 889664 ----a-w- C:\Windows\System32\nvvsvc.exe
2012-05-15 09:29:46 63296 ----a-w- C:\Windows\System32\nvshext.dll
2012-05-15 09:29:46 118080 ----a-w- C:\Windows\System32\nvmctray.dll
2012-05-15 09:29:25 3149632 ----a-w- C:\Windows\System32\nvsvc64.dll
2012-05-15 09:28:42 6151488 ----a-w- C:\Windows\System32\nvcpl.dll
2012-05-15 01:21:50 423744 ----a-w- C:\Windows\SysWow64\nvStreaming.exe
2012-05-08 11:12:43 98848 ----a-w- C:\Windows\System32\drivers\avgntflt.sys
2012-05-04 11:06:22 5559664 ----a-w- C:\Windows\System32\ntoskrnl.exe
2012-05-04 10:03:53 3968368 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2012-05-04 10:03:50 3913072 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2012-05-03 02:54:46 42392 ----a-w- C:\Windows\SysWow64\xfcodec.dll
2012-05-03 02:54:46 28056 ----a-w- C:\Windows\System32\xfcodec64.dll
2012-05-01 05:40:20 209920 ----a-w- C:\Windows\System32\profsvc.dll
2012-04-28 03:55:21 210944 ----a-w- C:\Windows\System32\drivers\rdpwd.sys
2012-04-26 05:41:56 77312 ----a-w- C:\Windows\System32\rdpwsx.dll
2012-04-26 05:41:55 149504 ----a-w- C:\Windows\System32\rdpcorekmts.dll
2012-04-26 05:34:27 9216 ----a-w- C:\Windows\System32\rdrmemptylst.exe
2012-04-24 05:37:37 184320 ----a-w- C:\Windows\System32\cryptsvc.dll
2012-04-24 05:37:37 140288 ----a-w- C:\Windows\System32\cryptnet.dll
2012-04-24 05:37:36 1462272 ----a-w- C:\Windows\System32\crypt32.dll
2012-04-24 04:36:42 140288 ----a-w- C:\Windows\SysWow64\cryptsvc.dll
2012-04-24 04:36:42 1158656 ----a-w- C:\Windows\SysWow64\crypt32.dll
2012-04-24 04:36:42 103936 ----a-w- C:\Windows\SysWow64\cryptnet.dll
2012-04-18 17:08:08 31040 ----a-w- C:\Windows\System32\nvhdap64.dll
2012-04-18 17:08:03 188736 ----a-w- C:\Windows\System32\drivers\nvhda64v.sys
2012-04-18 17:08:02 1451840 ----a-w- C:\Windows\System32\nvhdagenco6420103.dll
.
============= FINISH: 13:39:24.70 ===============
Attach.txt:
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-08-26.01)
.
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume1
Install Date: 07/10/2010 14:19:44
System Uptime: 13/07/2012 08:38:10 (5 hours ago)
.
Motherboard: ASUSTeK Computer INC. | | M2N68-AM Plus
Processor: AMD Phenom(tm) 9850 Quad-Core Processor | AM2 | 2511/200mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 489 GiB total, 350.852 GiB free.
D: is FIXED (NTFS) - 489 GiB total, 404.402 GiB free.
E: is FIXED (NTFS) - 885 GiB total, 657.686 GiB free.
F: is CDROM ()
G: is CDROM ()
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP459: 09/07/2012 08:31:55 - Installed Java(TM) 6 Update 33
RP460: 10/07/2012 07:59:37 - Windows Update
RP461: 10/07/2012 10:29:03 - Windows Update
RP462: 10/07/2012 11:02:46 - Installed HiJackThis
RP463: 10/07/2012 11:35:32 - avast! Free Antivirus Setup
RP465: 10/07/2012 14:04:09 - Windows Defender Checkpoint
RP466: 11/07/2012 23:19:06 - Windows Update
.
==== Installed Programs ======================
.
.
18 Wheels of Steel: Haulin'
AC3Filter (remove only)
Adobe AIR
Adobe Flash Player 11 ActiveX
Adobe Flash Player 11 Plugin
Adobe Reader X (10.1.3)
Adobe Shockwave Player 11.6
Apple Application Support
Apple Software Update
ARMA 2
ARMA 2: British Armed Forces
ARMA 2: British Armed Forces - Data cache removal
ARMA 2: Operation Arrowhead
ArtMoney SE v7.38
Assassin's Creed
Assassin's Creed II
Audacity 2.0
avast! Free Antivirus
Avira Free Antivirus
Battlefield 2 Map - A.T.O.M.
Battlefield 2(TM)
Battlefield 2: Special Forces
Battlefield 3™
Battlefield 3™ Open Beta
Battlefield Play4Free
Battlelog Web Plugins
BattlEye for OA Uninstall
BattlEye Uninstall
BitTorrent
Blacklight: Retribution
Burnout(TM) Paradise The Ultimate Box
Call of Duty(R) 4 - Modern Warfare(TM)
Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch
Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch
Cities XL - Limited Edition
CoH Desert Map Pack
Command & Conquer 3
Command & Conquer 3 Tiberium Wars(TM) Worldbuilder
Company of Heroes
Company of Heroes - FAKEMSI
Curse Client
D3DX10
DAEMON Tools Toolbar
Dead Rising 2
Dead Space™ 2
DivX Converter
DivX Player
DivX Plus DirectShow Filters
DivX Setup
DivX Version Checker
Download Manager 2.3.10
Driver San Francisco
Eastern Front
Empire: Total War
ESN Sonar
EVE Online (remove only)
Fallen Earth
Far Cry 2
FileZilla Client 3.5.1
Flashpoint uninstall
Free Mp3 Wma Converter V 2.2
GameSpy Arcade
Google Chrome
Google Earth
Google Update Helper
GPGNet
Grand Theft Auto IV
Grand Theft Auto: Episodes from Liberty City
HaloRTS Alpha Demo 1.0
Hi-Rez Studios Authenticate and Update Service
HiJackThis
Homeworld2
Java Auto Updater
Java(TM) 6 Update 33
Malwarebytes Anti-Malware version 1.62.0.1300
Medal of Honor (TM)
Microsoft .NET Framework 1.1
Microsoft Chart Controls for Microsoft .NET Framework 3.5
Microsoft Digital Image Library 9 - Blocker
Microsoft Digital Image Suite Anniversary Edition
Microsoft Digital Image Suite Anniversary Edition Editor
Microsoft Digital Image Suite Anniversary Edition Library
Microsoft Games for Windows - LIVE Redistributable
Microsoft Games for Windows Marketplace
Microsoft Office File Validation Add-In
Microsoft Office Professional Edition 2003
Microsoft Office Word Viewer 2003
Microsoft Silverlight
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
MIDEAST CRISIS 2 version R2
Moon Breakers
Mozilla Firefox 12.0 (x86 en-US)
Mozilla Maintenance Service
MSVCRT
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
Need For Speed™ World
Nero 7 Essentials
neroxml
NVIDIA 3D Vision Controller Driver
NVIDIA PhysX
NVIDIA Stereoscopic 3D Driver
Origin
oZone3D.Net FurMark v1.7.0
PeaZip 2.0
PunisherSiX for UT3 1.0
PunkBuster Services
QuickTime
RAD Video Tools
Realtek High Definition Audio Driver
Renegade-X v0.55 Beta
Rockstar Games Social Club
Roll
RollerCoaster Tycoon 2
RollerCoaster Tycoon 2: Time Twister
RollerCoaster Tycoon 2: Wacky Worlds
Saints Row: The Third
San Andreas Mod Installer
Security Update for Microsoft .NET Framework 4 Client Profile (KB2160841)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)
Six Updater
Sky Broadband
Skype Toolbars
Skype™ 4.1
Spotify
Spybot - Search & Destroy
Steam
Supreme Commander
Supreme Commander - Forged Alliance
swMSM
System Requirements Lab
TC
TeamSpeak 2 RC2
Test Drive Unlimited 2
The Moon Project Demo
TotalBF2 Map Pack 3
Trains and Trucks Tycoon
Tribes: Ascend
Tropico 3 1.00
TRS2006
Tycoon City - New York
Ubisoft Game Launcher
Uninstall MEC2
Unity Web Player
Unreal Tournament 3
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
VC80CRTRedist - 8.0.50727.6195
Ventrilo Client
Windows Live Communications Platform
Windows Live Essentials
Windows Live Installer
Windows Live Messenger
Windows Live Photo Common
Windows Live PIMT Platform
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live UX Platform
Windows Live UX Platform Language Pack
World in Conflict MW Mod 2.0.1
World in Conflict: Soviet Assault
Xfire (remove only)
.
==== Event Viewer Messages From Past Week ========
.
13/07/2012 08:41:16, Error: Service Control Manager [7038] - The nvUpdatusService service was unable to log on as .\UpdatusUser with the currently configured password due to the following error: Logon failure: the specified account password has expired. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
13/07/2012 08:41:16, Error: Service Control Manager [7000] - The NVIDIA Update Service Daemon service failed to start due to the following error: The service did not start due to a logon failure.
13/07/2012 08:38:55, Error: Service Control Manager [7000] - The lirsgt service failed to start due to the following error: This driver has been blocked from loading
13/07/2012 08:38:55, Error: Application Popup [1060] - \SystemRoot\SysWow64\DRIVERS\lirsgt.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
.
==== End Of File ===========================
I have installed HiJack this program also if that would help as a refference after reading the steps and tips, have to be honest I am a big gamer and work on computers so know the basics but this sort of stuff kind of goes straight over my head. I appreciate the help
