. DDS (Ver_2011-06-23.01) - NTFSAMD64 Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 1.6.0_26 Run by [removed] at 20:24:27 on 2011-07-13 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.64.1033.18.8106.3499 [GMT 12:00] . AV: Microsoft Security Essentials *Enabled/Updated* {108DAC43-C256-20B7-BB05-914135DA5160} SP: Microsoft Security Essentials *Enabled/Updated* {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . ============== Running Processes =============== . C:\Windows\system32\wininit.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\nvvsvc.exe C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe C:\Windows\system32\svchost.exe -k RPCSS c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\svchost.exe -k NetworkService C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe C:\Windows\system32\nvvsvc.exe C:\Windows\system32\WLANExt.exe C:\Windows\system32\conhost.exe C:\Windows\system32\taskeng.exe C:\Windows\System32\spoolsv.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Windows\system32\rundll32.exe C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe C:\Windows\system32\taskhost.exe C:\Program Files\COMODO\COMODO BackUp\COSService.exe C:\Windows\system32\Dwm.exe C:\Program Files\Intel\WiFi\bin\EvtEng.exe C:\Windows\Explorer.EXE C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe C:\Windows\system32\svchost.exe -k imgsvc C:\Program Files\COMODO\COMODO BackUp\SynchronizationService.exe C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe C:\Windows\system32\svchost.exe -k bthsvcs C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Windows\System32\rundll32.exe C:\Windows\system32\wbem\unsecapp.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe C:\Windows\System32\igfxtray.exe C:\Windows\System32\hkcmd.exe C:\Windows\System32\igfxpers.exe C:\Program Files (x86)\STMicroelectronics\AccelerometerP11\FF_Protection.exe C:\Windows\System32\rundll32.exe C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe C:\Program Files\Microsoft Security Client\msseces.exe C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe C:\Windows\system32\SearchIndexer.exe C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE C:\Users\Laptop\AppData\Roaming\Dropbox\bin\Dropbox.exe C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe C:\Program Files\NVIDIA Corporation\Display\nvtray.exe C:\Windows\System32\svchost.exe -k LocalServicePeerNet C:\Windows\system32\wbem\unsecapp.exe C:\Windows\system32\DllHost.exe C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe C:\Windows\system32\svchost.exe -k SDRSVC c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Windows\SysWOW64\rundll32.exe C:\Program Files (x86)\Google\Chrome\Application\chrome.exe C:\Windows\system32\DllHost.exe C:\Windows\system32\DllHost.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\system32\conhost.exe C:\Windows\SysWOW64\cscript.exe C:\Windows\system32\wbem\wmiprvse.exe . ============== Pseudo HJT Report =============== . uStart Page = hxxp://www1.ap.dell.com/content/default.aspx?c=nz&l=en&s=gen BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - C:\Program Files (x86)\AVG\AVG10\avgssie.dll BHO: PodcastBHO Class: {65134fdf-f8a5-4b3d-91d9-cdf273cfd578} - C:\Program Files (x86)\Common Files\doubleTwist\IEPodcastPlugin.dll BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll BHO: Skype add-on for Internet Explorer: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll BHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll uRun: [KiesHelper] C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe /s uRun: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe uRun: [DAEMON Tools Pro Agent] "C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe" -autorun uRun: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe mRun: [Dell Webcam Central] "C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" /mode2 mRun: [RoxWatchTray] "C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe" mRun: [Desktop Disc Tool] "C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe" mRun: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" StartupFolder: C:\Users\Laptop\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\Dropbox.lnk - C:\Users\Laptop\AppData\Roaming\Dropbox\bin\Dropbox.exe StartupFolder: C:\Users\Laptop\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\GPADSE~1.LNK - C:\Program Files (x86)\gPadServer\gPadServer.exe mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5) mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3) mPolicies-system: EnableUIADesktopToggle = 0 (0x0) mPolicies-system: EnableLinkedConnections = 1 (0x1) IE: Add to Google Photos Screensa&ver - C:\Windows\system32\GPhotos.scr/200 IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000 IE: Se&nd to OneNote - C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105 IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab TCP: DhcpNameServer = 10.0.1.1 TCP: Interfaces\{E28B210F-1E3D-45CB-B6F3-98DF8E6D5E05} : DhcpNameServer = 10.0.1.1 Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll BHO-X64: AcroIEHelperStub - No File BHO-X64: AVG Safe Search: {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files (x86)\AVG\AVG10\avgssie.dll BHO-X64: WormRadar.com IESiteBlocker.NavFilter - No File BHO-X64: PodcastBHO Class: {65134FDF-F8A5-4B3D-91D9-CDF273CFD578} - C:\Program Files (x86)\Common Files\doubleTwist\IEPodcastPlugin.dll BHO-X64: dTPodcastBHO - No File BHO-X64: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll BHO-X64: Skype add-on for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll BHO-X64: SkypeIEPluginBHO - No File BHO-X64: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL BHO-X64: URLRedirectionBHO - No File BHO-X64: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll mRun-x64: [Dell Webcam Central] "C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" /mode2 mRun-x64: [RoxWatchTray] "C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe" mRun-x64: [Desktop Disc Tool] "C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe" mRun-x64: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" AppInit_DLLs-X64: C:\Windows\SysWOW64\nvinit.dll SEH-X64: Groove GFS Stub Execution Hook: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL . ================= FIREFOX =================== . FF - ProfilePath - C:\Users\Laptop\AppData\Roaming\Mozilla\Firefox\Profiles\cblbq9yv.default\ FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll FF - plugin: C:\Program Files (x86)\Common Files\doubleTwist\NPPodcast.dll FF - plugin: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll FF - plugin: C:\Program Files (x86)\Google\Update\1.2.183.23\npGoogleOneClick8.dll FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrlui.dll FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll FF - plugin: C:\Users\Laptop\AppData\Local\Google\Update\1.2.183.23\npGoogleOneClick8.dll FF - plugin: C:\Users\Laptop\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll FF - plugin: C:\Users\Laptop\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll FF - plugin: C:\Windows\system32\Wat\npWatWeb.dll FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll . ============= SERVICES / DRIVERS =============== . R0 bdisk;COMODO Disk Raw Access Filter;C:\Windows\system32\drivers\bdisk.sys --> C:\Windows\system32\drivers\bdisk.sys [?] R0 CBUfs;CBUfs;C:\Windows\system32\drivers\CBUFS.sys --> C:\Windows\system32\drivers\CBUFS.sys [?] R0 cbvd;Comodo Encrypted Virtual Disk;C:\Windows\system32\DRIVERS\cbvd.sys --> C:\Windows\system32\DRIVERS\cbvd.sys [?] R0 nvpciflt;nvpciflt;C:\Windows\system32\DRIVERS\nvpciflt.sys --> C:\Windows\system32\DRIVERS\nvpciflt.sys [?] R0 PxHlpa64;PxHlpa64;C:\Windows\system32\Drivers\PxHlpa64.sys --> C:\Windows\system32\Drivers\PxHlpa64.sys [?] R0 stdcfltn;Disk Class Filter Driver for Accelerometer;C:\Windows\system32\DRIVERS\stdcfltn.sys --> C:\Windows\system32\DRIVERS\stdcfltn.sys [?] R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;C:\Windows\system32\DRIVERS\dtsoftbus01.sys --> C:\Windows\system32\DRIVERS\dtsoftbus01.sys [?] R1 MpFilter;Microsoft Malware Protection Driver;C:\Windows\system32\DRIVERS\MpFilter.sys --> C:\Windows\system32\DRIVERS\MpFilter.sys [?] R1 SASDIFSV;SASDIFSV;C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys [2010-2-18 14920] R1 SASKUTIL;SASKUTIL;C:\Program Files\SUPERAntiSpyware\saskutil64.sys [2010-2-18 12360] R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys --> C:\Windows\system32\DRIVERS\vwififlt.sys [?] R2 !SASCORE;SAS Core Service;C:\Program Files\SUPERAntiSpyware\SASCore64.exe [2011-5-5 128384] R2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-6-6 64952] R2 AERTFilters;Andrea RT Filters Service;C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2011-6-11 98208] R2 COSService.exe;Comodo Online Storage Service;C:\Program Files\COMODO\COMODO BackUp\COSService.exe [2011-6-2 670000] R2 iPodDrv;iPodDrv;\??\C:\Windows\system32\drivers\iPodDrv.sys --> C:\Windows\system32\drivers\iPodDrv.sys [?] R2 nvUpdatusService;NVIDIA Update Service Daemon;C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-7-3 2214504] R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-5-20 378472] R2 SynchronizationService.exe;Comodo BackUp Service;C:\Program Files\COMODO\COMODO BackUp\SynchronizationService.exe [2011-6-2 1557808] R2 TurboB;Turbo Boost UI Monitor driver;C:\Windows\system32\DRIVERS\TurboB.sys --> C:\Windows\system32\DRIVERS\TurboB.sys [?] R2 UNS;Intel(R) Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2011-6-11 2656280] R3 Acceler;Accelerometer Service;C:\Windows\system32\DRIVERS\Accelern.sys --> C:\Windows\system32\DRIVERS\Accelern.sys [?] R3 btmaux;Intel Bluetooth Auxiliary Service;C:\Windows\system32\DRIVERS\btmaux.sys --> C:\Windows\system32\DRIVERS\btmaux.sys [?] R3 btmhsf;btmhsf;C:\Windows\system32\DRIVERS\btmhsf.sys --> C:\Windows\system32\DRIVERS\btmhsf.sys [?] R3 CtClsFlt;Creative Camera Class Upper Filter Driver;C:\Windows\system32\DRIVERS\CtClsFlt.sys --> C:\Windows\system32\DRIVERS\CtClsFlt.sys [?] R3 cyhid;Cypress Input Device;C:\Windows\system32\DRIVERS\cyhid.sys --> C:\Windows\system32\DRIVERS\cyhid.sys [?] R3 cykbfltrService;Cypress Keyboard Filter Driver;C:\Windows\system32\DRIVERS\cykbfltr.sys --> C:\Windows\system32\DRIVERS\cykbfltr.sys [?] R3 cymfltrService;Cypress Trackpad Filter Driver;C:\Windows\system32\DRIVERS\cymfltr.sys --> C:\Windows\system32\DRIVERS\cymfltr.sys [?] R3 iBtFltCoex;iBtFltCoex;C:\Windows\system32\DRIVERS\iBtFltCoex.sys --> C:\Windows\system32\DRIVERS\iBtFltCoex.sys [?] R3 IntcDAud;Intel(R) Display Audio;C:\Windows\system32\DRIVERS\IntcDAud.sys --> C:\Windows\system32\DRIVERS\IntcDAud.sys [?] R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\Windows\system32\DRIVERS\L1C62x64.sys --> C:\Windows\system32\DRIVERS\L1C62x64.sys [?] R3 MEIx64;Intel(R) Management Engine Interface;C:\Windows\system32\DRIVERS\HECIx64.sys --> C:\Windows\system32\DRIVERS\HECIx64.sys [?] R3 MpNWMon;Microsoft Malware Protection Network Driver;C:\Windows\system32\DRIVERS\MpNWMon.sys --> C:\Windows\system32\DRIVERS\MpNWMon.sys [?] R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit;C:\Windows\system32\DRIVERS\NETwNs64.sys --> C:\Windows\system32\DRIVERS\NETwNs64.sys [?] R3 NisDrv;Microsoft Network Inspection System;C:\Windows\system32\DRIVERS\NisDrvWFP.sys --> C:\Windows\system32\DRIVERS\NisDrvWFP.sys [?] R3 NisSrv;Microsoft Network Inspection;C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [2011-4-27 288272] R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;C:\Windows\system32\DRIVERS\nusb3hub.sys --> C:\Windows\system32\DRIVERS\nusb3hub.sys [?] R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;C:\Windows\system32\DRIVERS\nusb3xhc.sys --> C:\Windows\system32\DRIVERS\nusb3xhc.sys [?] R3 vdbus;Virtual Disk Bus Enumerator;C:\Windows\system32\DRIVERS\vdbus.sys --> C:\Windows\system32\DRIVERS\vdbus.sys [?] R3 vwifimp;Microsoft Virtual WiFi Miniport Service;C:\Windows\system32\DRIVERS\vwifimp.sys --> C:\Windows\system32\DRIVERS\vwifimp.sys [?] R3 wdkmd;Intel WiDi KMD;C:\Windows\system32\DRIVERS\WDKMD.sys --> C:\Windows\system32\DRIVERS\WDKMD.sys [?] S2 Bluetooth Device Monitor;Bluetooth Device Monitor;"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe" --> C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [?] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-19 130384] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-19 138576] S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-6-24 136176] S2 RoxWatch12;Roxio Hard Drive Watcher 12;C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe [2010-11-25 219632] S3 androidusb;SAMSUNG Android Composite ADB Interface Driver;C:\Windows\system32\Drivers\ssadadb.sys --> C:\Windows\system32\Drivers\ssadadb.sys [?] S3 FACAP;facap, FastAccess Video Capture;C:\Windows\system32\DRIVERS\facap.sys --> C:\Windows\system32\DRIVERS\facap.sys [?] S3 Impcd;Impcd;C:\Windows\system32\drivers\Impcd.sys --> C:\Windows\system32\drivers\Impcd.sys [?] S3 JMCR;JMCR;C:\Windows\system32\DRIVERS\jmcr.sys --> C:\Windows\system32\DRIVERS\jmcr.sys [?] S3 MEMSWEEP2;MEMSWEEP2;\??\C:\Windows\system32\8EF8.tmp --> C:\Windows\system32\8EF8.tmp [?] S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-12-27 31124344] S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2010-12-18 340240] S3 osppsvc;Office Software Protection Platform;C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-1-9 4925184] S3 reparse;reparse;C:\Windows\system32\DRIVERS\cbreparse.sys --> C:\Windows\system32\DRIVERS\cbreparse.sys [?] S3 RoxMediaDB12OEM;RoxMediaDB12OEM;C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe [2010-11-25 1116656] S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);C:\Windows\system32\DRIVERS\ssadbus.sys --> C:\Windows\system32\DRIVERS\ssadbus.sys [?] S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);C:\Windows\system32\DRIVERS\ssadmdfl.sys --> C:\Windows\system32\DRIVERS\ssadmdfl.sys [?] S3 ssadmdm;SAMSUNG Android USB Modem Drivers;C:\Windows\system32\DRIVERS\ssadmdm.sys --> C:\Windows\system32\DRIVERS\ssadmdm.sys [?] S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys --> C:\Windows\system32\drivers\tsusbflt.sys [?] S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\system32\drivers\TsUsbGD.sys --> C:\Windows\system32\drivers\TsUsbGD.sys [?] S3 TurboBoost;Intel(R) Turbo Boost Technology Monitor 2.0;C:\Program Files\Intel\TurboBoost\TurboBoost.exe [2010-11-30 149504] S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?] . =============== Created Last 30 ================ . 2011-07-13 08:10:20 8873296 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{716F3CA4-7763-4220-821D-C62A5AA1B614}\mpengine.dll 2011-07-13 07:30:52 98816 ----a-w- C:\Windows\sed.exe 2011-07-13 07:30:52 518144 ----a-w- C:\Windows\SWREG.exe 2011-07-13 07:30:52 256000 ----a-w- C:\Windows\PEV.exe 2011-07-13 07:30:52 208896 ----a-w- C:\Windows\MBR.exe 2011-07-10 10:53:42 250544 ----a-w- C:\Program Files (x86)\Common Files\keyhelp.ocx 2011-07-10 10:53:38 -------- d-----w- C:\Program Files (x86)\HotPotatoes6 2011-07-08 21:21:19 -------- d-----w- C:\MGADiagToolOutput 2011-07-07 10:48:09 -------- d-----w- C:\Program Files (x86)\ZD Soft 2011-07-07 10:32:23 -------- d-----w- C:\Program Files (x86)\ESCV 2011-07-07 10:31:48 -------- d-----w- C:\Windows\Downloaded Installations 2011-07-07 07:44:18 -------- d-----w- C:\Users\Laptop\AppData\Local\TechSmith 2011-07-05 07:41:48 -------- d-----w- C:\Users\Laptop\Backups 2011-07-05 07:38:01 -------- d-----w- C:\Program Files\COMODO 2011-07-05 07:37:52 1700352 ----a-w- C:\Windows\SysWow64\gdiplus.dll 2011-07-03 11:38:50 -------- d-----w- C:\My backups 2011-07-03 11:33:49 -------- d-----w- C:\Windows\SysWow64\NV 2011-07-03 11:33:49 -------- d-----w- C:\Windows\System32\NV 2011-07-03 11:27:24 8863336 ----a-w- C:\Windows\System32\nvwgf2umx.dll 2011-07-03 11:26:22 -------- d-----w- C:\NVIDIA 2011-07-03 09:34:00 8873296 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll 2011-07-03 02:30:39 601424 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{D4FCC5B9-D92F-43CC-8506-AD927009A334}\gapaengine.dll 2011-07-02 07:17:24 -------- d-----w- C:\Users\Laptop\AppData\Roaming\SUPERAntiSpyware.com 2011-07-02 07:17:24 -------- d-----w- C:\ProgramData\SUPERAntiSpyware.com 2011-07-02 07:17:13 -------- d-----w- C:\ProgramData\!SASCORE 2011-07-02 07:17:08 -------- d-----w- C:\Program Files\SUPERAntiSpyware 2011-07-02 00:33:29 -------- d-----w- C:\ProgramData\Blizzard Entertainment 2011-07-02 00:33:29 -------- d-----w- C:\Program Files (x86)\StarCraft II 2011-07-02 00:33:29 -------- d-----w- C:\Program Files (x86)\Common Files\Blizzard Entertainment 2011-07-02 00:09:11 -------- d-----w- C:\Users\Laptop\AppData\Local\Apple Computer 2011-07-02 00:03:43 -------- d-----w- C:\Users\Laptop\AppData\Local\Apple 2011-07-01 10:27:54 6144 ------w- C:\Windows\System32\8EF8.tmp 2011-07-01 10:25:19 6144 ------w- C:\Windows\System32\344A.tmp 2011-07-01 09:53:57 -------- d-----w- C:\Users\Laptop\AppData\Roaming\TweetDeckFast.FFF259DC0CE2657847BBB4AFF0E62062EFC56543.1 2011-07-01 09:53:49 -------- d-----w- C:\Program Files (x86)\TweetDeck 2011-07-01 09:44:06 -------- d-----w- C:\Users\Laptop\AppData\Roaming\AVG 2011-07-01 08:54:47 6144 ------w- C:\Windows\System32\9AAA.tmp 2011-07-01 08:53:58 6144 ------w- C:\Windows\System32\DBFC.tmp 2011-07-01 08:53:50 -------- d-----w- C:\Program Files (x86)\Sophos 2011-07-01 08:26:08 -------- d-----w- C:\Users\Laptop\AppData\Local\Diagnostics 2011-07-01 08:21:11 -------- d-----w- C:\Users\Laptop\AppData\Roaming\Malwarebytes 2011-07-01 08:21:05 39984 ----a-w- C:\Windows\SysWow64\drivers\mbamswissarmy.sys 2011-07-01 08:21:05 -------- d-----w- C:\ProgramData\Malwarebytes 2011-07-01 08:21:02 25912 ----a-w- C:\Windows\System32\drivers\mbam.sys 2011-07-01 08:21:02 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware 2011-07-01 07:44:19 -------- d-----w- C:\ProgramData\MFAData 2011-07-01 07:39:27 -------- d-----w- C:\Program Files (x86)\Microsoft Security Client 2011-07-01 07:39:02 -------- d-----w- C:\Program Files\Microsoft Security Client 2011-06-26 04:15:50 2784600 ----a-w- C:\Windows\System32\auto_reactivate.exe 2011-06-26 04:00:09 -------- d-----w- C:\Users\Laptop\AppData\Roaming\Reallusion 2011-06-26 03:44:36 272448 ----a-w- C:\Windows\System32\drivers\dtsoftbus01.sys 2011-06-26 03:44:32 -------- d-----w- C:\Program Files (x86)\DAEMON Tools Pro 2011-06-26 03:38:50 -------- d-----w- C:\Users\Laptop\AppData\Local\{DCE6C8D1-FC3B-4B74-B613-891B0D6D2B5E} 2011-06-26 02:54:57 -------- d-----w- C:\Users\Laptop\AppData\Roaming\DAEMON Tools Pro 2011-06-26 02:54:57 -------- d-----w- C:\ProgramData\DAEMON Tools Pro 2011-06-26 01:24:07 -------- d-----w- C:\Program Files\Dameon 2011-06-26 01:00:38 -------- d-----w- C:\Users\Laptop\AppData\Roaming\PCDr 2011-06-26 01:00:04 -------- d-----w- C:\ProgramData\PCDr 2011-06-26 00:37:13 -------- d-----w- C:\Program Files (x86)\Microsoft Games 2011-06-26 00:29:14 867064 ----a-w- C:\Windows\System32\drivers\sptd.sys 2011-06-26 00:25:27 91568 ----a-w- C:\Windows\System32\drivers\scdemu.sys 2011-06-26 00:25:27 -------- d-----w- C:\Program Files (x86)\PowerISO 2011-06-26 00:15:13 255552 ----a-w- C:\Windows\System32\drivers\mcdbus.sys 2011-06-26 00:08:16 -------- d-----w- C:\Program Files (x86)\MagicISO 2011-06-26 00:03:34 -------- d-----w- C:\ProgramData\farstone 2011-06-26 00:02:41 -------- d-----w- C:\Users\Laptop\AppData\Roaming\FarStone 2011-06-26 00:00:03 254224 ----a-w- C:\Windows\SysWow64\drmclien.dll 2011-06-25 23:58:15 81920 ----a-w- C:\Windows\VPLAY801.EXE 2011-06-25 23:58:13 81424 ----a-w- C:\Windows\System32\drivers\FVXSCSI.SYS 2011-06-25 23:58:10 21784 ----a-w- C:\Windows\System32\drivers\FCDABUS.SYS 2011-06-25 23:57:12 36864 ------w- C:\Windows\SysWow64\unVHDDrvExe.exe 2011-06-25 23:57:12 32768 ------w- C:\Windows\SysWow64\inVHDDrvExe.exe 2011-06-25 02:13:47 -------- d--h--w- C:\ProgramData\Common Files 2011-06-25 01:01:14 -------- d-----w- C:\Users\Laptop\AppData\Roaming\SPORE 2011-06-25 00:34:44 1240 ----a-w- C:\Windows\SysWow64\ealregsnapshot1.reg 2011-06-25 00:23:43 -------- d-----w- C:\Users\Laptop\AppData\Local\Adobe 2011-06-25 00:18:37 -------- d-----w- C:\Users\Laptop\AppData\Roaming\Roxio Burn 2011-06-25 00:08:49 -------- d-----w- C:\Users\Laptop\AppData\Roaming\Macrovision 2011-06-25 00:07:05 8199504 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll 2011-06-25 00:07:04 8873296 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0759AC3A-AEFC-4FC4-8AF2-5B1B709BE266}\mpengine.dll 2011-06-24 13:27:56 -------- d-----w- C:\Windows\SysWow64\Wat 2011-06-24 13:27:56 -------- d-----w- C:\Windows\System32\Wat 2011-06-24 12:46:46 -------- d-----w- C:\Program Files (x86)\Microsoft Synchronization Services 2011-06-24 12:45:25 -------- d-----w- C:\Program Files (x86)\Microsoft Visual Studio 8 2011-06-24 10:24:18 -------- d-----w- C:\Program Files (x86)\Microsoft Analysis Services 2011-06-24 10:23:38 -------- d-----w- C:\Users\Laptop\AppData\Local\Microsoft Help 2011-06-24 10:01:05 -------- d-----w- C:\Users\Laptop\AppData\Local\Microsoft Games 2011-06-24 09:33:01 36328 ----a-w- C:\Windows\System32\drivers\ssadadb.sys 2011-06-24 09:33:01 1917416 ----a-w- C:\Windows\System32\WdfCoInstaller01005.dll 2011-06-24 09:33:01 1917416 ----a-w- C:\Windows\System32\drivers\WdfCoInstaller01005.dll 2011-06-24 09:33:01 177128 ----a-w- C:\Windows\System32\drivers\ssadmdm.sys 2011-06-24 09:33:01 16872 ----a-w- C:\Windows\System32\drivers\ssadmdfl.sys 2011-06-24 09:33:01 157160 ----a-w- C:\Windows\System32\drivers\ssadbus.sys 2011-06-24 09:33:01 13800 ----a-w- C:\Windows\System32\drivers\ssadwhnt.sys 2011-06-24 09:33:01 13800 ----a-w- C:\Windows\System32\drivers\ssadwh.sys 2011-06-24 09:33:01 13288 ----a-w- C:\Windows\System32\drivers\ssadcmnt.sys 2011-06-24 09:33:01 13288 ----a-w- C:\Windows\System32\drivers\ssadcm.sys 2011-06-24 09:31:22 -------- d-----w- C:\Users\Laptop\AppData\Local\Downloaded Installations 2011-06-24 09:17:16 1263200 ----a-w- C:\Windows\System32\drivers\tdrpm273.sys 2011-06-24 09:17:15 970336 ----a-w- C:\Windows\System32\drivers\timntr.sys 2011-06-24 07:48:53 -------- d-----w- C:\Users\Laptop\AppData\Local\doubleTwist Corporation 2011-06-24 07:48:47 -------- d-----w- C:\Program Files (x86)\Common Files\doubleTwist 2011-06-24 07:48:46 57344 ----a-w- C:\Windows\SysWow64\ff_vfw.dll 2011-06-24 07:48:45 60273 ----a-w- C:\Windows\SysWow64\pthreadGC2.dll 2011-06-24 07:48:45 -------- d-----w- C:\Program Files (x86)\ffdshow 2011-06-24 07:46:29 142336 ----a-w- C:\Windows\System32\poqexec.exe 2011-06-24 07:46:29 123904 ----a-w- C:\Windows\SysWow64\poqexec.exe 2011-06-24 07:44:32 31232 ----a-w- C:\Windows\SysWow64\prevhost.exe 2011-06-24 07:44:32 31232 ----a-w- C:\Windows\System32\prevhost.exe 2011-06-24 07:41:23 90624 ----a-w- C:\Windows\System32\drivers\bowser.sys 2011-06-24 07:38:50 -------- d-----w- C:\Program Files (x86)\doubleTwist 2.0 2011-06-24 07:38:26 -------- d-----w- C:\Program Files (x86)\gPadServer 2011-06-24 07:15:16 -------- d-----w- C:\$AVG 2011-06-24 07:15:06 -------- d-----w- C:\ProgramData\avg9 2011-06-24 07:07:25 -------- d-----w- C:\Users\Laptop\AppData\Local\Google 2011-06-24 07:04:09 -------- d-----w- C:\Program Files (x86)\VideoLAN 2011-06-24 06:54:11 404640 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl 2011-06-24 06:46:29 48648 ----a-w- C:\ProgramData\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll 2011-06-24 06:37:32 -------- d-----w- C:\Users\Laptop\AppData\Roaming\Dropbox 2011-06-24 06:36:29 -------- d-----w- C:\Users\Laptop\AppData\Local\Intel Wireless Display 2011-06-24 06:26:36 -------- d-----w- C:\Program Files (x86)\Dell Touch Software Suite 2011-06-24 06:26:36 -------- d-----w- C:\FIND_EULA_PATH 2011-06-24 06:25:15 -------- d-----w- C:\Users\Laptop\AppData\Local\Dell 2011-06-24 06:24:40 -------- d-----w- C:\Users\Laptop\AppData\Roaming\Dell 2011-06-24 06:24:35 -------- d-----w- C:\Users\Laptop\AppData\Roaming\Dell Touch Zone 2011-06-24 06:24:04 -------- d-----w- C:\Users\Laptop\AppData\Local\VirtualStore 2011-06-24 06:23:54 -------- d-----w- C:\Users\Laptop\AppData\Local\SoftThinks . ==================== Find3M ==================== . 2011-06-11 03:29:47 91648 ----a-w- C:\Windows\System32\SetIEInstalledDate.exe 2011-06-11 01:53:17 521448 ----a-w- C:\Windows\System32\deployJava1.dll 2011-06-02 08:07:00 80864 ----a-w- C:\Windows\System32\drivers\bdisk.sys 2011-06-02 08:06:52 143688 ----a-w- C:\Windows\System32\drivers\cbufs.sys 2011-06-02 08:06:44 493352 ----a-w- C:\Windows\System32\drivers\CBVD.sys 2011-06-02 08:06:34 632384 ----a-w- C:\Windows\System32\drivers\vdbus.sys 2011-06-02 08:06:26 497984 ----a-w- C:\Windows\System32\drivers\cbreparse.sys 2011-05-28 03:06:58 3135488 ----a-w- C:\Windows\System32\win32k.sys 2011-05-24 11:42:55 404480 ----a-w- C:\Windows\System32\umpnpmgr.dll 2011-05-24 10:40:05 64512 ----a-w- C:\Windows\SysWow64\devobj.dll 2011-05-24 10:40:05 44544 ----a-w- C:\Windows\SysWow64\devrtl.dll 2011-05-24 10:39:38 145920 ----a-w- C:\Windows\SysWow64\cfgmgr32.dll 2011-05-24 10:37:54 252928 ----a-w- C:\Windows\SysWow64\drvinst.exe 2011-05-20 10:35:28 304744 ----a-w- C:\Windows\SysWow64\nvStreaming.exe 2011-05-04 05:25:03 2315776 ----a-w- C:\Windows\System32\tquery.dll 2011-05-04 05:22:25 778752 ----a-w- C:\Windows\System32\mssvp.dll 2011-05-04 05:22:25 2223616 ----a-w- C:\Windows\System32\mssrch.dll 2011-05-04 05:22:24 75264 ----a-w- C:\Windows\System32\msscntrs.dll 2011-05-04 05:22:24 491520 ----a-w- C:\Windows\System32\mssph.dll 2011-05-04 05:22:24 288256 ----a-w- C:\Windows\System32\mssphtb.dll 2011-05-04 05:19:28 591872 ----a-w- C:\Windows\System32\SearchIndexer.exe 2011-05-04 05:19:28 249856 ----a-w- C:\Windows\System32\SearchProtocolHost.exe 2011-05-04 05:19:28 113664 ----a-w- C:\Windows\System32\SearchFilterHost.exe 2011-05-04 04:34:43 1549312 ----a-w- C:\Windows\SysWow64\tquery.dll 2011-05-04 04:32:02 666624 ----a-w- C:\Windows\SysWow64\mssvp.dll 2011-05-04 04:32:01 337408 ----a-w- C:\Windows\SysWow64\mssph.dll 2011-05-04 04:32:01 197120 ----a-w- C:\Windows\SysWow64\mssphtb.dll 2011-05-04 04:32:01 1401344 ----a-w- C:\Windows\SysWow64\mssrch.dll 2011-05-04 04:32:00 59392 ----a-w- C:\Windows\SysWow64\msscntrs.dll 2011-05-04 04:28:31 86528 ----a-w- C:\Windows\SysWow64\SearchFilterHost.exe 2011-05-04 04:28:31 427520 ----a-w- C:\Windows\SysWow64\SearchIndexer.exe 2011-05-04 04:28:31 164352 ----a-w- C:\Windows\SysWow64\SearchProtocolHost.exe 2011-05-03 16:52:22 472808 ----a-w- C:\Windows\SysWow64\deployJava1.dll 2011-05-03 05:29:29 976896 ----a-w- C:\Windows\System32\inetcomm.dll 2011-05-03 04:30:02 741376 ----a-w- C:\Windows\SysWow64\inetcomm.dll 2011-04-29 03:06:10 467456 ----a-w- C:\Windows\System32\drivers\srv.sys 2011-04-29 03:05:49 410112 ----a-w- C:\Windows\System32\drivers\srv2.sys 2011-04-29 03:05:37 168448 ----a-w- C:\Windows\System32\drivers\srvnet.sys 2011-04-27 03:25:24 84864 ----a-w- C:\Windows\System32\drivers\NisDrvWFP.sys 2011-04-27 02:40:40 158208 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys 2011-04-27 02:39:40 289280 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys 2011-04-27 02:39:37 128000 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys 2011-04-25 05:33:51 1923968 ----a-w- C:\Windows\System32\drivers\tcpip.sys 2011-04-25 02:34:03 499200 ----a-w- C:\Windows\System32\drivers\afd.sys 2011-04-23 01:29:25 2303488 ----a-w- C:\Windows\System32\jscript9.dll 2011-04-23 01:19:19 2382848 ----a-w- C:\Windows\System32\mshtml.tlb 2011-04-22 23:35:56 1797632 ----a-w- C:\Windows\SysWow64\jscript9.dll 2011-04-22 23:25:54 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb 2011-04-22 22:15:29 27520 ----a-w- C:\Windows\System32\drivers\Diskdump.sys 2011-04-22 09:35:34 1720192 ----a-w- C:\Windows\System32\WdfCoInstaller01009.dll 2011-04-18 01:18:50 40832 ----a-w- C:\Windows\System32\drivers\MpNWMon.sys 2011-04-18 01:18:50 189440 ----a-w- C:\Windows\System32\drivers\MpFilter.sys . ============= FINISH: 20:25:54.91 ===============