stephen forbes
Posts: 9 +0
I followed the steps here are my results:
attach
Digidesign HFS+ Disk Support
Digidesign Pro Tools LE 8.0
DivX Setup
Dropbox
FM Genie Scout 13 version 1.0 13.3.3
Football Manager 2013
Free DigiRack Plug-Ins 8.0
GeekBuddy
Google Chrome
Google Earth Plug-in
Google Update Helper
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Intel(R) PRO Network Connections 12.1.11.0
Intelewin filter
Interlok driver setup x32
Malwarebytes Anti-Malware version 1.75.0.1300
McAfee Security Scan Plus
Microsoft .NET Framework 3.5 SP1
Microsoft Office Access MUI (English) 2007
Microsoft Office Access Setup Metadata MUI (English) 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office InfoPath MUI (English) 2007
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Professional Plus 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
NVIDIA 3D Vision Controller Driver 306.97
NVIDIA 3D Vision Driver 311.06
NVIDIA Control Panel 311.06
NVIDIA Graphics Driver 311.06
NVIDIA Install Application
NVIDIA PhysX
NVIDIA PhysX System Software 9.12.0604
NVIDIA Stereoscopic 3D Driver
NVIDIA Update 1.11.3
NVIDIA Update Components
Open Metronome
PCM Native Reverb RTAS Plug-in
PrivDog
Real Alternative 2.0.2
RealDownloader
RealNetworks - Microsoft Visual C++ 2008 Runtime
RealNetworks - Microsoft Visual C++ 2010 Runtime
RealPlayer
Realtek High Definition Audio Driver
RealUpgrade 1.1
Reason 5.0
Rosetta Stone Version 3
Skype™ 6.14
Spotify
Steam
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
VC80CRTRedist - 8.0.50727.4053
VLC media player 1.1.11
webXvid Codec
Xvid Video Codec
.
==== Event Viewer Messages From Past Week ========
.
26/02/2014 12:15:02, Error: Service Control Manager [7038] - The nvUpdatusService service was unable to log on as .\UpdatusUser with the currently configured password due to the following error: Logon failure: the specified account password has expired. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
26/02/2014 12:15:02, Error: Service Control Manager [7000] - The NVIDIA Update Service Daemon service failed to start due to the following error: The service did not start due to a logon failure.
05/03/2014 19:21:14, Error: Service Control Manager [7009] - A timeout was reached (120000 milliseconds) while waiting for the Intelewin filter service to connect.
DDS
Handler: skype4com - <Clsid value has no data>
LSA: Security Packages = kerberos msv1_0 schannel wdigest tspkg
.
============= SERVICES / DRIVERS ===============
.
R0 MDFSYSNT;MacDrive file system driver;c:\windows\system32\drivers\MDFSYSNT.SYS [2008-7-22 288768]
R0 MDPMGRNT;MacDrive partition driver;c:\windows\system32\drivers\MDPMGRNT.SYS [2007-2-28 19072]
R1 CFRMD;CFRMD;c:\windows\system32\drivers\CFRMD.sys [2013-5-7 35064]
R1 cmderd;COMODO Internet Security Eradication Driver;c:\windows\system32\drivers\cmderd.sys [2013-9-24 20072]
R1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\system32\drivers\cmdguard.sys [2013-11-14 584496]
R1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\drivers\cmdhlp.sys [2013-9-24 43728]
R1 HMD;COMODO livePCsupport Hardware Monitor Driver;c:\windows\system32\drivers\hmd.sys [2013-10-7 15400]
R2 CLPSLauncher;COMODO LPS Launcher;c:\program files\common files\comodo\launcher_service.exe [2013-10-11 70352]
R2 DigiNet;Digidesign Ethernet Support;c:\windows\system32\drivers\diginet.sys [2011-4-13 16400]
R2 DragonUpdater;COMODO Dragon Update Service;c:\program files\comodo\dragon\dragon_updater.exe [2014-1-28 2135232]
R2 GeekBuddyRSP;GeekBuddyRSP Server;c:\program files\common files\comodo\GeekBuddyRSP.exe [2013-10-11 2327248]
R2 MacDriveServiceD;MacDrive service for Digidesign;c:\program files\mediafour\macdrive 7\MacDriveServiceD.exe [2008-9-18 152064]
R2 RealNetworks Downloader Resolver Service;RealNetworks Downloader Resolver Service;c:\program files\realnetworks\realdownloader\rndlresolversvc.exe [2013-8-14 39056]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\nvidia corporation\3d vision\nvSCPAPISvr.exe [2013-1-18 383264]
R3 Blackberry Device Manager;BlackBerry Device Manager;c:\program files\common files\research in motion\usb drivers\BbDevMgr.exe [2013-1-18 577536]
R3 PAC207;CIF USB Camera;c:\windows\system32\drivers\PFC027.SYS [2012-12-19 505984]
R3 RTL8192su;B-Link RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter;c:\windows\system32\drivers\RTL8192su.sys [2012-10-15 606056]
S2 ef65f95a;Intelewin filter;c:\windows\system32\rundll32.exe [2006-11-2 44544]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2013-10-23 172192]
S3 cmdvirth;COMODO Virtual Service Manager;c:\program files\comodo\comodo internet security\cmdvirth.exe [2013-9-24 131288]
S3 dalwdmservice;dal service;c:\windows\system32\drivers\Dalwdm.sys [2011-4-13 97808]
S3 MBX2DFU;MBX2DFU;c:\windows\system32\drivers\mbx2dfu.sys [2011-4-13 21648]
S3 MBX2MIDK;Digidesign Mbox 2 Midi Driver;c:\windows\system32\drivers\mbx2midk.sys [2011-4-13 21904]
S3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\mcafee security scan\3.8.141\McCHSvc.exe [2014-1-16 235696]
S3 SPC530;Philips SPC530NC PC Camera;c:\windows\system32\drivers\SPC530.sys [2013-8-30 486912]
S3 SPC530m;Philips SPC530NC PC Cameram;c:\windows\system32\drivers\SPC530m.sys [2013-8-30 7680]
.
=============== Created Last 30 ================
.
2014-03-05 18:59:30 -------- d-----w- c:\users\stephen\appdata\roaming\Malwarebytes
2014-03-05 18:59:10 -------- d-----w- c:\programdata\Malwarebytes
2014-03-05 18:59:09 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2014-03-05 18:59:09 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2014-03-05 18:42:25 563313 ----a-w- c:\windows\system32\drivers\sfi.dat
2014-03-05 18:39:00 -------- d-s---w- c:\programdata\Shared Space
2014-03-05 18:37:24 1700352 ----a-w- c:\windows\system32\gdiplus.dll
2014-03-05 18:35:06 -------- d-----w- c:\program files\AdTrustMedia
2014-03-05 18:35:05 -------- d-----w- c:\programdata\Adtrustmedia
2014-03-05 18:35:00 -------- d-----w- c:\programdata\COMODO
2014-03-05 18:34:34 -------- d-----w- c:\program files\common files\COMODO
2014-03-05 18:34:15 -------- d-----w- c:\users\stephen\appdata\local\Comodo
2014-03-05 18:34:10 -------- d-----w- C:\first_launch
2014-03-05 18:34:08 48392 ----a-w- c:\windows\system32\certsentry.dll
2014-03-05 18:33:57 -------- d-----w- c:\program files\Comodo
2014-03-05 18:33:47 -------- d-----w- c:\programdata\Comodo Downloader
2014-03-05 14:14:32 -------- d-----w- c:\users\stephen\appdata\local\Skype
2014-03-05 14:13:29 -------- d-----r- c:\program files\Skype
2014-02-28 11:01:13 -------- d-----w- c:\programdata\AlllChueaPPrice
2014-02-19 13:21:12 -------- d-----w- c:\program files\UTTuboeADBloCka
2014-02-19 13:20:16 -------- d-----w- c:\program files\JonniCooUUpon
2014-02-19 13:20:06 -------- d-----w- c:\program files\ExstRaSaavinnggS
2014-02-15 04:30:01 -------- d-----w- c:\program files\McAfee Security Scan
2014-02-14 01:49:48 -------- d-----w- C:\Poker
.
==================== Find3M ====================
.
2014-01-07 00:19:14 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2014-01-07 00:19:14 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-06-04 12:28:20 325960 ----a-w- c:\program files\lua5.1.dll
2013-06-04 12:28:20 1344512 ----a-w- c:\program files\uninstall.exe
.
============= FINISH: 19:26:56.89 ===============
MBAM
Objects scanned: 233425
Time elapsed: 14 minute(s), 28 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 13
HKCR\CLSID\{99079a25-328f-4bd4-be04-00955acaa0a7} (PUP.Optional.SearchQu) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{99079A25-328F-4BD4-BE04-00955ACAA0A7} (PUP.Optional.SearchQu) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{78F3A323-798E-4AEA-9A57-88F4B05FD5DD} (PUP.Optional.VShareRedir) -> No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{78F3A323-798E-4AEA-9A57-88F4B05FD5DD} (PUP.Optional.VShareRedir) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} (PUP.Optional.VShareRedir) -> No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} (PUP.Optional.VShareRedir) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{851552F5-B878-4B03-904F-2AD6A4CC8994} (PUP.Optional.Zwangi) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{9D717F81-9148-4F12-8568-69135F087DB0} (PUP.Optional.Bandoo.A) -> No action taken.
HKLM\SOFTWARE\{77D46E27-0E41-4478-87A6-AABE6FBCF252} (PUP.Optional.GreatSaver.A) -> No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1D2ABF6A-2B19-3E94-0991-5B5BDB7134DA} (PUP.Optional.ShoppingChip) -> No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5A1D3F9E-73B5-95EC-1233-6646E1358965} (PUP.Optional.MultiPlug.A) -> No action taken.
HKCU\Software\AppDataLow\SProtector (PUP.Optional.SProtector.A) -> No action taken.
HKCU\Software\AppDataLow\Software\PriceGong (PUP.Optional.PriceGong.A) -> No action taken.
Registry Values Detected: 8
HKCU\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser|{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} (PUP.Optional.VShareRedir) -> Data: ;áÃzÊ;XA³0öm»Áµ -> No action taken.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser|{851552F5-B878-4B03-904F-2AD6A4CC8994} (PUP.Optional.Zwangi) -> Data: õR…x¸KO*֤̉” -> No action taken.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{851552F5-B878-4B03-904F-2AD6A4CC8994} (PUP.Optional.Zwangi) -> Data: -> No action taken.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} (PUP.Optional.VShareRedir) -> Data: -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows|run (Trojan.Agent) -> Data: C:\Windows\system32\config\Win.exe -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|dc2k5 (IM.Worm) -> Data: C:\Windows\SVIQ.EXE -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Fun (IM.Worm) -> Data: C:\Windows\system\Fun.exe -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|dc (IM.Worm) -> Data: C:\Windows\dc.exe -> No action taken.
Registry Data Items Detected: 1
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows|AppInit_DLLs (Trojan.SProtector) -> Bad: (c:\progra~2\intele~1\intele~1.dll) Good: () -> No action taken.
Folders Detected: 1
C:\ProgramData\ShoppingChip (PUP.Optional.MultiPlug.A) -> No action taken.
Files Detected: 13
C:\ProgramData\Intelewin filter\Intelewinfilter.dll (Trojan.SProtector) -> No action taken.
C:\ProgramData\Intelewin filter\IntelewinfilterSvc.dll (Trojan.SProtector) -> No action taken.
C:\ProgramData\AlllChueaPPrice\eYLEX.exe (PUP.Optional.MultiPlug.A) -> No action taken.
c:\users\stephen\desktop\downloads\documents\downloads\trailer_park_boys_season_1 (1).exe (PUP.Optional.Bandoo.A) -> No action taken.
c:\users\stephen\desktop\downloads\documents\downloads\trailer_park_boys_season_1.exe (PUP.Optional.Bandoo.A) -> No action taken.
C:\Users\Stephen\Desktop\Downloads\Documents\Downloads\Windows_WGA_Patcher_Permanent_Kit.exe (Adware.DirectDownload) -> No action taken.
C:\Users\Stephen\Desktop\Downloads\Documents\Downloads\Windows_XP_Pro_Keygen.exe (Adware.DirectDownload) -> No action taken.
C:\$Recycle.Bin\S-1-5-21-3426693014-566441172-3061912103-1000\$RELZ7DR.exe (PUP.Optional.OneClickDownloader.A) -> No action taken.
C:\$Recycle.Bin\S-1-5-21-3426693014-566441172-3061912103-1000\$RI8XJQZ.exe (PUP.Optional.InstallMonetizer) -> No action taken.
C:\$Recycle.Bin\S-1-5-21-3426693014-566441172-3061912103-1000\$RJ1ZV82.exe (PUP.Optional.OneClickDownloader.A) -> No action taken.
C:\$Recycle.Bin\S-1-5-21-3426693014-566441172-3061912103-1000\$R722B5C.exe (PUP.Optional.OneClickDownloader.A) -> No action taken.
C:\$Recycle.Bin\S-1-5-21-3426693014-566441172-3061912103-1000\$RZ38GFB.exe (PUP.Optional.Amonetize) -> No action taken.
C:\$Recycle.Bin\S-1-5-21-3426693014-566441172-3061912103-1000\$RAL4H2W.exe (PUP.Optional.YourfileDownloader) -> No action taken.
(end)
.
attach
Digidesign HFS+ Disk Support
Digidesign Pro Tools LE 8.0
DivX Setup
Dropbox
FM Genie Scout 13 version 1.0 13.3.3
Football Manager 2013
Free DigiRack Plug-Ins 8.0
GeekBuddy
Google Chrome
Google Earth Plug-in
Google Update Helper
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Intel(R) PRO Network Connections 12.1.11.0
Intelewin filter
Interlok driver setup x32
Malwarebytes Anti-Malware version 1.75.0.1300
McAfee Security Scan Plus
Microsoft .NET Framework 3.5 SP1
Microsoft Office Access MUI (English) 2007
Microsoft Office Access Setup Metadata MUI (English) 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office InfoPath MUI (English) 2007
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Professional Plus 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
NVIDIA 3D Vision Controller Driver 306.97
NVIDIA 3D Vision Driver 311.06
NVIDIA Control Panel 311.06
NVIDIA Graphics Driver 311.06
NVIDIA Install Application
NVIDIA PhysX
NVIDIA PhysX System Software 9.12.0604
NVIDIA Stereoscopic 3D Driver
NVIDIA Update 1.11.3
NVIDIA Update Components
Open Metronome
PCM Native Reverb RTAS Plug-in
PrivDog
Real Alternative 2.0.2
RealDownloader
RealNetworks - Microsoft Visual C++ 2008 Runtime
RealNetworks - Microsoft Visual C++ 2010 Runtime
RealPlayer
Realtek High Definition Audio Driver
RealUpgrade 1.1
Reason 5.0
Rosetta Stone Version 3
Skype™ 6.14
Spotify
Steam
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
VC80CRTRedist - 8.0.50727.4053
VLC media player 1.1.11
webXvid Codec
Xvid Video Codec
.
==== Event Viewer Messages From Past Week ========
.
26/02/2014 12:15:02, Error: Service Control Manager [7038] - The nvUpdatusService service was unable to log on as .\UpdatusUser with the currently configured password due to the following error: Logon failure: the specified account password has expired. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
26/02/2014 12:15:02, Error: Service Control Manager [7000] - The NVIDIA Update Service Daemon service failed to start due to the following error: The service did not start due to a logon failure.
05/03/2014 19:21:14, Error: Service Control Manager [7009] - A timeout was reached (120000 milliseconds) while waiting for the Intelewin filter service to connect.
DDS
Handler: skype4com - <Clsid value has no data>
LSA: Security Packages = kerberos msv1_0 schannel wdigest tspkg
.
============= SERVICES / DRIVERS ===============
.
R0 MDFSYSNT;MacDrive file system driver;c:\windows\system32\drivers\MDFSYSNT.SYS [2008-7-22 288768]
R0 MDPMGRNT;MacDrive partition driver;c:\windows\system32\drivers\MDPMGRNT.SYS [2007-2-28 19072]
R1 CFRMD;CFRMD;c:\windows\system32\drivers\CFRMD.sys [2013-5-7 35064]
R1 cmderd;COMODO Internet Security Eradication Driver;c:\windows\system32\drivers\cmderd.sys [2013-9-24 20072]
R1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\system32\drivers\cmdguard.sys [2013-11-14 584496]
R1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\drivers\cmdhlp.sys [2013-9-24 43728]
R1 HMD;COMODO livePCsupport Hardware Monitor Driver;c:\windows\system32\drivers\hmd.sys [2013-10-7 15400]
R2 CLPSLauncher;COMODO LPS Launcher;c:\program files\common files\comodo\launcher_service.exe [2013-10-11 70352]
R2 DigiNet;Digidesign Ethernet Support;c:\windows\system32\drivers\diginet.sys [2011-4-13 16400]
R2 DragonUpdater;COMODO Dragon Update Service;c:\program files\comodo\dragon\dragon_updater.exe [2014-1-28 2135232]
R2 GeekBuddyRSP;GeekBuddyRSP Server;c:\program files\common files\comodo\GeekBuddyRSP.exe [2013-10-11 2327248]
R2 MacDriveServiceD;MacDrive service for Digidesign;c:\program files\mediafour\macdrive 7\MacDriveServiceD.exe [2008-9-18 152064]
R2 RealNetworks Downloader Resolver Service;RealNetworks Downloader Resolver Service;c:\program files\realnetworks\realdownloader\rndlresolversvc.exe [2013-8-14 39056]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\nvidia corporation\3d vision\nvSCPAPISvr.exe [2013-1-18 383264]
R3 Blackberry Device Manager;BlackBerry Device Manager;c:\program files\common files\research in motion\usb drivers\BbDevMgr.exe [2013-1-18 577536]
R3 PAC207;CIF USB Camera;c:\windows\system32\drivers\PFC027.SYS [2012-12-19 505984]
R3 RTL8192su;B-Link RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter;c:\windows\system32\drivers\RTL8192su.sys [2012-10-15 606056]
S2 ef65f95a;Intelewin filter;c:\windows\system32\rundll32.exe [2006-11-2 44544]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2013-10-23 172192]
S3 cmdvirth;COMODO Virtual Service Manager;c:\program files\comodo\comodo internet security\cmdvirth.exe [2013-9-24 131288]
S3 dalwdmservice;dal service;c:\windows\system32\drivers\Dalwdm.sys [2011-4-13 97808]
S3 MBX2DFU;MBX2DFU;c:\windows\system32\drivers\mbx2dfu.sys [2011-4-13 21648]
S3 MBX2MIDK;Digidesign Mbox 2 Midi Driver;c:\windows\system32\drivers\mbx2midk.sys [2011-4-13 21904]
S3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\mcafee security scan\3.8.141\McCHSvc.exe [2014-1-16 235696]
S3 SPC530;Philips SPC530NC PC Camera;c:\windows\system32\drivers\SPC530.sys [2013-8-30 486912]
S3 SPC530m;Philips SPC530NC PC Cameram;c:\windows\system32\drivers\SPC530m.sys [2013-8-30 7680]
.
=============== Created Last 30 ================
.
2014-03-05 18:59:30 -------- d-----w- c:\users\stephen\appdata\roaming\Malwarebytes
2014-03-05 18:59:10 -------- d-----w- c:\programdata\Malwarebytes
2014-03-05 18:59:09 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2014-03-05 18:59:09 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2014-03-05 18:42:25 563313 ----a-w- c:\windows\system32\drivers\sfi.dat
2014-03-05 18:39:00 -------- d-s---w- c:\programdata\Shared Space
2014-03-05 18:37:24 1700352 ----a-w- c:\windows\system32\gdiplus.dll
2014-03-05 18:35:06 -------- d-----w- c:\program files\AdTrustMedia
2014-03-05 18:35:05 -------- d-----w- c:\programdata\Adtrustmedia
2014-03-05 18:35:00 -------- d-----w- c:\programdata\COMODO
2014-03-05 18:34:34 -------- d-----w- c:\program files\common files\COMODO
2014-03-05 18:34:15 -------- d-----w- c:\users\stephen\appdata\local\Comodo
2014-03-05 18:34:10 -------- d-----w- C:\first_launch
2014-03-05 18:34:08 48392 ----a-w- c:\windows\system32\certsentry.dll
2014-03-05 18:33:57 -------- d-----w- c:\program files\Comodo
2014-03-05 18:33:47 -------- d-----w- c:\programdata\Comodo Downloader
2014-03-05 14:14:32 -------- d-----w- c:\users\stephen\appdata\local\Skype
2014-03-05 14:13:29 -------- d-----r- c:\program files\Skype
2014-02-28 11:01:13 -------- d-----w- c:\programdata\AlllChueaPPrice
2014-02-19 13:21:12 -------- d-----w- c:\program files\UTTuboeADBloCka
2014-02-19 13:20:16 -------- d-----w- c:\program files\JonniCooUUpon
2014-02-19 13:20:06 -------- d-----w- c:\program files\ExstRaSaavinnggS
2014-02-15 04:30:01 -------- d-----w- c:\program files\McAfee Security Scan
2014-02-14 01:49:48 -------- d-----w- C:\Poker
.
==================== Find3M ====================
.
2014-01-07 00:19:14 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2014-01-07 00:19:14 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-06-04 12:28:20 325960 ----a-w- c:\program files\lua5.1.dll
2013-06-04 12:28:20 1344512 ----a-w- c:\program files\uninstall.exe
.
============= FINISH: 19:26:56.89 ===============
MBAM
Objects scanned: 233425
Time elapsed: 14 minute(s), 28 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 13
HKCR\CLSID\{99079a25-328f-4bd4-be04-00955acaa0a7} (PUP.Optional.SearchQu) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{99079A25-328F-4BD4-BE04-00955ACAA0A7} (PUP.Optional.SearchQu) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{78F3A323-798E-4AEA-9A57-88F4B05FD5DD} (PUP.Optional.VShareRedir) -> No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{78F3A323-798E-4AEA-9A57-88F4B05FD5DD} (PUP.Optional.VShareRedir) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} (PUP.Optional.VShareRedir) -> No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} (PUP.Optional.VShareRedir) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{851552F5-B878-4B03-904F-2AD6A4CC8994} (PUP.Optional.Zwangi) -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{9D717F81-9148-4F12-8568-69135F087DB0} (PUP.Optional.Bandoo.A) -> No action taken.
HKLM\SOFTWARE\{77D46E27-0E41-4478-87A6-AABE6FBCF252} (PUP.Optional.GreatSaver.A) -> No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1D2ABF6A-2B19-3E94-0991-5B5BDB7134DA} (PUP.Optional.ShoppingChip) -> No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5A1D3F9E-73B5-95EC-1233-6646E1358965} (PUP.Optional.MultiPlug.A) -> No action taken.
HKCU\Software\AppDataLow\SProtector (PUP.Optional.SProtector.A) -> No action taken.
HKCU\Software\AppDataLow\Software\PriceGong (PUP.Optional.PriceGong.A) -> No action taken.
Registry Values Detected: 8
HKCU\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser|{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} (PUP.Optional.VShareRedir) -> Data: ;áÃzÊ;XA³0öm»Áµ -> No action taken.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser|{851552F5-B878-4B03-904F-2AD6A4CC8994} (PUP.Optional.Zwangi) -> Data: õR…x¸KO*֤̉” -> No action taken.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{851552F5-B878-4B03-904F-2AD6A4CC8994} (PUP.Optional.Zwangi) -> Data: -> No action taken.
HKCU\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{7AC3E13B-3BCA-4158-B330-F66DBB03C1B5} (PUP.Optional.VShareRedir) -> Data: -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows|run (Trojan.Agent) -> Data: C:\Windows\system32\config\Win.exe -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|dc2k5 (IM.Worm) -> Data: C:\Windows\SVIQ.EXE -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Fun (IM.Worm) -> Data: C:\Windows\system\Fun.exe -> No action taken.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|dc (IM.Worm) -> Data: C:\Windows\dc.exe -> No action taken.
Registry Data Items Detected: 1
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows|AppInit_DLLs (Trojan.SProtector) -> Bad: (c:\progra~2\intele~1\intele~1.dll) Good: () -> No action taken.
Folders Detected: 1
C:\ProgramData\ShoppingChip (PUP.Optional.MultiPlug.A) -> No action taken.
Files Detected: 13
C:\ProgramData\Intelewin filter\Intelewinfilter.dll (Trojan.SProtector) -> No action taken.
C:\ProgramData\Intelewin filter\IntelewinfilterSvc.dll (Trojan.SProtector) -> No action taken.
C:\ProgramData\AlllChueaPPrice\eYLEX.exe (PUP.Optional.MultiPlug.A) -> No action taken.
c:\users\stephen\desktop\downloads\documents\downloads\trailer_park_boys_season_1 (1).exe (PUP.Optional.Bandoo.A) -> No action taken.
c:\users\stephen\desktop\downloads\documents\downloads\trailer_park_boys_season_1.exe (PUP.Optional.Bandoo.A) -> No action taken.
C:\Users\Stephen\Desktop\Downloads\Documents\Downloads\Windows_WGA_Patcher_Permanent_Kit.exe (Adware.DirectDownload) -> No action taken.
C:\Users\Stephen\Desktop\Downloads\Documents\Downloads\Windows_XP_Pro_Keygen.exe (Adware.DirectDownload) -> No action taken.
C:\$Recycle.Bin\S-1-5-21-3426693014-566441172-3061912103-1000\$RELZ7DR.exe (PUP.Optional.OneClickDownloader.A) -> No action taken.
C:\$Recycle.Bin\S-1-5-21-3426693014-566441172-3061912103-1000\$RI8XJQZ.exe (PUP.Optional.InstallMonetizer) -> No action taken.
C:\$Recycle.Bin\S-1-5-21-3426693014-566441172-3061912103-1000\$RJ1ZV82.exe (PUP.Optional.OneClickDownloader.A) -> No action taken.
C:\$Recycle.Bin\S-1-5-21-3426693014-566441172-3061912103-1000\$R722B5C.exe (PUP.Optional.OneClickDownloader.A) -> No action taken.
C:\$Recycle.Bin\S-1-5-21-3426693014-566441172-3061912103-1000\$RZ38GFB.exe (PUP.Optional.Amonetize) -> No action taken.
C:\$Recycle.Bin\S-1-5-21-3426693014-566441172-3061912103-1000\$RAL4H2W.exe (PUP.Optional.YourfileDownloader) -> No action taken.
(end)
.