I'm always redirected to another, unrelated site whenever I attempt to click on a result from any search engine. I have attempted to use MalwareBytes, Spybot, Adaware to no avail. I've attempted Combofix, but had to stop it when it was deleting strange files like my Steam.exe. When I click on a search result, I can make out that it goes to something called "thewebtimes.net" or "goingonearth.com" before I'm sent to another site or my no script directs me back to my search engine.
Also, whenever I attempt to start up my Windows Security Center Service, I get an error message reading "The Windows Security Center Service cannot be started."
I also have a Hijackthis log. Thanks for the help.
.
DDS (Ver_2011-06-12.02) - NTFSAMD64
Internet Explorer: 9.0.8112.16421
Run by [removed] at 3:31:30 on 2011-06-16
Microsoft Windows 7 Professional 6.1.7601.1.1252.1.1033.18.8191.5809 [GMT -4:00]
.
AV: Trend Micro Internet Security *Disabled/Updated* {48929DFC-7A52-A34F-8351-C4DBEDBD9C50}
SP: Trend Micro Internet Security *Disabled/Updated* {F3F37C18-5C68-ACC1-B9E1-FFA9963AD6ED}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Trend Micro Personal Firewall *Disabled* {70A91CD9-303D-A217-A80E-6DEE136EDB2B}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\AUDIODG.EXE
C:\Windows\system32\svchost.exe -k LocalService
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\taskeng.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\rundll32.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files (x86)\Lavasoft\Ad-Aware\AWSC.exe
C:\Program Files (x86)\Lavasoft\Ad-Aware\AWSC.exe
C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Common Files\Steam\SteamService.exe
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files\Trend Micro\BM\TMBMSRV.exe
C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\explorer.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\cscript.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uURLSearchHooks: H - No File
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll
BHO: Skype Plug-In: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
TB: {88C7F2AA-F93F-432C-8F0E-B7D85967A527} - No File
uRun: [Steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent
uRun: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
uRun: [EPSON3A51C4 (Epson Stylus NX420)] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIGCA.EXE /FU "C:\Windows\TEMP\E_S50C7.tmp" /EF "HKCU"
uRun: [EPSON NX420 Series] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIGCA.EXE /FU "C:\Windows\TEMP\E_S5DF1.tmp" /EF "HKCU"
uRun: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
mRun: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
mRun: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
mRun: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/s ... wflash.cab
TCP: DhcpNameServer = 192.168.1.1 [removed]
TCP: Interfaces\{8F47CAD1-7B91-4F96-BC54-17BC47C618E6} : DhcpNameServer = 192.168.1.1 [removed]
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO-X64: AcroIEHelperStub - No File
BHO-X64: Spybot-S&D IE Protection: {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll
BHO-X64: Skype Plug-In: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO-X64: SkypeIEPluginBHO - No File
TB-X64: {88C7F2AA-F93F-432C-8F0E-B7D85967A527} - No File
mRun-x64: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
mRun-x64: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
mRun-x64: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun-x64: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
mRun-x64: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Kevin\AppData\Roaming\Mozilla\Firefox\Profiles\k32841yo.default\
FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
FF - plugin: C:\Windows\system32\Wat\npWatWeb.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
.
============= SERVICES / DRIVERS ===============
.
R0 Lbd;Lbd;C:\Windows\system32\DRIVERS\Lbd.sys --> C:\Windows\system32\DRIVERS\Lbd.sys [?]
R1 BIOS;BIOS;C:\Windows\System32\drivers\BIOS64.sys [2011-7-1 14136]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe [2011-5-25 2151128]
R2 nvUpdatusService;NVIDIA Update Service Daemon;C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-6-2 2214504]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-5-20 378472]
R2 tmpreflt;tmpreflt;C:\Windows\system32\DRIVERS\tmpreflt.sys --> C:\Windows\system32\DRIVERS\tmpreflt.sys [?]
R3 Lavasoft Kernexplorer;Lavasoft helper driver;C:\Program Files (x86)\Lavasoft\Ad-Aware\kernexplorer64.sys [2011-6-10 17152]
R3 TmProxy;Trend Micro Proxy Service;C:\Program Files\Trend Micro\Internet Security\TmProxy.exe [2011-6-10 917768]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service;C:\Windows\system32\drivers\viahduaa.sys --> C:\Windows\system32\drivers\viahduaa.sys [?]
R3 WSDPrintDevice;WSD Print Support via UMB;C:\Windows\system32\DRIVERS\WSDPrint.sys --> C:\Windows\system32\DRIVERS\WSDPrint.sys [?]
R3 WSDScan;WSD Scan Support via UMB;C:\Windows\system32\DRIVERS\WSDScan.sys --> C:\Windows\system32\DRIVERS\WSDScan.sys [?]
S3 dmvsc;dmvsc;C:\Windows\system32\drivers\dmvsc.sys --> C:\Windows\system32\drivers\dmvsc.sys [?]
S3 StorSvc;Storage Service;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-13 20992]
S3 SwitchBoard;Adobe SwitchBoard;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-2-19 517096]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys --> C:\Windows\system32\drivers\tsusbflt.sys [?]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\system32\drivers\TsUsbGD.sys --> C:\Windows\system32\drivers\TsUsbGD.sys [?]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
.
=============== Created Last 30 ================
.
2011-07-02 03:52:34 -------- d-----w- C:\Windows\Panther
2011-07-02 03:34:20 -------- d-----w- C:\Windows.old
2011-07-02 02:56:55 -------- d-sh--w- C:\found.000
2011-07-02 00:13:31 414632 ------w- C:\Windows\difxapi.dll
2011-07-02 00:13:31 -------- d-----w- C:\Program Files (x86)\VIA
2011-07-02 00:12:26 704000 ----a-w- C:\Windows\System32\cohelper.dll
2011-07-02 00:12:26 6136 ----a-w- C:\Windows\System32\drivers\nvphy.bin
2011-07-02 00:12:00 -------- d-sh--w- C:\Windows\Installer
2011-07-02 00:11:10 645736 ----a-w- C:\Windows\System32\NVUNINST.EXE
2011-07-02 00:10:26 14136 ----a-r- C:\Windows\SysWow64\drivers\BIOS64.sys
2011-06-16 04:58:15 388096 ----a-r- C:\Users\Kevin\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2011-06-16 04:58:15 -------- d-----w- C:\Program Files (x86)\Trend Micro
2011-06-15 06:54:51 -------- d-----w- C:\ProgramData\Spybot - Search & Destroy
2011-06-15 06:54:51 -------- d-----w- C:\Program Files (x86)\Spybot - Search & Destroy
2011-06-15 06:35:10 -------- d-----w- C:\Users\Kevin\AppData\Roaming\Malwarebytes
2011-06-15 06:34:37 -------- d-----w- C:\ProgramData\Malwarebytes
2011-06-15 05:58:43 208896 ----a-w- C:\Windows\MBR.exe
2011-06-15 05:58:42 98816 ----a-w- C:\Windows\sed.exe
2011-06-15 05:58:42 518144 ----a-w- C:\Windows\SWREG.exe
2011-06-15 05:58:42 256512 ----a-w- C:\Windows\PEV.exe
2011-06-15 05:58:31 -------- d-s---w- C:\ComboFix
2011-06-15 05:52:41 -------- d-----w- C:\Users\Kevin\AppData\Roaming\RegistryCleanerFree
2011-06-15 05:52:41 -------- d-----w- C:\ProgramData\RegistryCleanerFree
2011-06-12 08:38:41 -------- d-----w- C:\ProgramData\regid.1986-12.com.adobe
2011-06-11 06:52:14 42576 ----a-w- C:\Windows\System32\drivers\tmpreflt.sys
2011-06-11 06:52:14 309840 ----a-w- C:\Windows\System32\drivers\tmxpflt.sys
2011-06-11 06:52:14 1988176 ----a-w- C:\Windows\System32\drivers\vsapint.sys
2011-06-11 04:06:34 16432 ----a-w- C:\Windows\System32\lsdelete.exe
2011-06-11 02:34:25 49752 ----a-w- C:\Windows\System32\drivers\SBREDrv.sys
2011-06-11 02:31:09 69376 ----a-w- C:\Windows\System32\drivers\Lbd.sys
2011-06-11 02:31:05 -------- d-----w- C:\Program Files (x86)\Lavasoft
2011-06-11 00:26:02 -------- d-----w- C:\Program Files (x86)\SplitMediaLabs
2011-06-11 00:17:18 -------- d-----w- C:\ProgramData\Trend Micro
2011-06-11 00:15:35 -------- d-----w- C:\Program Files\Trend Micro
2011-06-10 23:40:29 166400 --sha-r- C:\Windows\SysWow64\wow32F.dll
2011-06-10 18:58:56 8718160 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{25E3767F-E8BA-4C37-8507-0124C1EB884F}\mpengine.dll
2011-06-10 07:48:41 -------- d-----w- C:\ProgramData\IObit
2011-06-10 07:48:40 -------- d-----w- C:\Program Files (x86)\IObit
2011-06-10 07:18:41 -------- d-----w- C:\Users\Kevin\AppData\Local\My Games
2011-06-09 19:10:24 -------- d-----w- C:\Program Files\Games
2011-06-09 09:04:45 -------- d-----w- C:\Users\Kevin\AppData\Roaming\ScummVM
2011-06-09 09:04:39 -------- d-----w- C:\Program Files (x86)\ScummVM
2011-06-09 04:24:02 -------- d-----w- C:\Users\Kevin\AppData\Local\PunkBuster
2011-06-09 02:53:56 103736 ----a-w- C:\Windows\SysWow64\PnkBstrB.exe
2011-06-09 02:53:55 66872 ----a-w- C:\Windows\SysWow64\PnkBstrA.exe
2011-06-09 02:41:55 -------- d-----w- C:\Program Files (x86)\Activision
2011-06-03 08:54:05 -------- d-----w- C:\Windows\System32\appmgmt
2011-06-03 04:43:04 -------- d-----w- C:\Program Files\Common Files\EPSON
2011-06-03 04:42:26 118784 ----a-w- C:\Windows\System32\E_ILMGCA.DLL
2011-06-03 04:42:25 88064 ----a-w- C:\Windows\System32\E_IBCBGCA.DLL
2011-06-03 04:42:21 -------- d-----w- C:\ProgramData\EPSON
2011-06-03 04:42:02 -------- d-----w- C:\Program Files (x86)\Epson Software
2011-06-03 04:41:27 464384 ----a-w- C:\Windows\System32\esxw2ud.dll
2011-06-03 04:41:27 17408 ----a-w- C:\Windows\System32\esxcdev.dll
2011-06-03 04:41:27 128392 ----a-w- C:\Windows\System32\esdevapp.exe
2011-06-03 04:41:26 -------- d-----w- C:\Program Files (x86)\epson
2011-06-03 04:03:31 -------- d-----w- C:\Program Files\Ventrilo
2011-06-03 04:03:00 -------- d-----w- C:\Program Files (x86)\Common Files\Wise Installation Wizard
2011-06-03 03:56:06 -------- d-----w- C:\Program Files (x86)\StarCraft II
2011-06-02 20:44:58 -------- d-----w- C:\Users\Kevin\AppData\Local\Adobe
2011-06-02 08:43:30 -------- d-----w- C:\Users\Kevin\AppData\Roaming\NVIDIA
2011-06-02 08:32:11 739432 ----a-w- C:\Windows\System32\easyupdatusapiu64.dll
2011-06-02 08:32:04 -------- d-----w- C:\ProgramData\NVIDIA Corporation
2011-06-02 08:30:06 -------- d-----w- C:\NVIDIA
2011-06-02 08:03:45 -------- d-----w- C:\Users\Kevin\AppData\Local\4A Games
2011-06-02 04:29:16 419840 ----a-w- C:\Windows\System32\wrap_oal.dll
2011-06-02 04:29:16 413696 ----a-w- C:\Windows\SysWow64\wrap_oal.dll
2011-06-02 04:29:16 133632 ----a-w- C:\Windows\System32\OpenAL32.dll
2011-06-02 04:29:16 110592 ----a-w- C:\Windows\SysWow64\OpenAL32.dll
2011-06-02 04:29:16 -------- d-----w- C:\Program Files (x86)\OpenAL
2011-06-02 03:23:48 -------- d-----w- C:\ProgramData\Skype Extras
2011-06-02 03:22:40 -------- d-----r- C:\Program Files (x86)\Skype
2011-06-02 03:12:29 -------- d-----w- C:\ProgramData\Blizzard Entertainment
2011-06-02 03:12:29 -------- d-----w- C:\Program Files (x86)\Common Files\Blizzard Entertainment
2011-06-02 02:33:39 -------- d-----w- C:\ProgramData\SplitMediaLabs
2011-06-02 02:19:48 855 ----a-w- C:\Windows\System32\drivers\etc\tmvsthfud.bin
2011-06-02 02:19:48 855 ----a-w- C:\Windows\System32\drivers\etc\tmvsthfss.bin
2011-06-02 01:45:31 -------- d-----w- C:\Program Files (x86)\BitTorrent
2011-06-02 01:19:09 737072 ----a-w- C:\ProgramData\Microsoft\eHome\Packages\SportsV2\SportsTemplateCore\Microsoft.MediaCenter.Sports.UI.dll
2011-06-02 01:18:55 4283672 ----a-w- C:\ProgramData\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll
2011-06-02 01:18:44 42776 ----a-w- C:\ProgramData\Microsoft\eHome\Packages\MCEClientUX\dSM\StartResources.dll
2011-06-02 01:18:41 539968 ----a-w- C:\ProgramData\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2011-06-02 01:08:38 404640 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2011-06-02 01:07:51 -------- d-----w- C:\Program Files (x86)\Steam
2011-06-02 01:07:51 -------- d-----w- C:\Program Files (x86)\Common Files\Steam
2011-05-21 02:35:28 304744 ----a-w- C:\Windows\SysWow64\nvStreaming.exe
.
==================== Find3M ====================
.
2011-05-28 03:06:58 3135488 ----a-w- C:\Windows\System32\win32k.sys
2011-05-24 23:14:10 270720 ------w- C:\Windows\System32\MpSigStub.exe
2011-05-03 05:29:29 976896 ----a-w- C:\Windows\System32\inetcomm.dll
2011-05-03 04:30:02 741376 ----a-w- C:\Windows\SysWow64\inetcomm.dll
2011-04-29 03:06:10 467456 ----a-w- C:\Windows\System32\drivers\srv.sys
2011-04-29 03:05:49 410112 ----a-w- C:\Windows\System32\drivers\srv2.sys
2011-04-29 03:05:37 168448 ----a-w- C:\Windows\System32\drivers\srvnet.sys
2011-04-27 02:40:40 158208 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys
2011-04-27 02:39:40 289280 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys
2011-04-27 02:39:37 128000 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys
2011-04-25 05:33:51 1923968 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2011-04-25 02:34:03 499200 ----a-w- C:\Windows\System32\drivers\afd.sys
2011-04-23 01:29:25 2303488 ----a-w- C:\Windows\System32\jscript9.dll
2011-04-23 01:19:19 2382848 ----a-w- C:\Windows\System32\mshtml.tlb
2011-04-22 23:35:56 1797632 ----a-w- C:\Windows\SysWow64\jscript9.dll
2011-04-22 23:25:54 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2011-04-22 22:15:29 27520 ----a-w- C:\Windows\System32\drivers\Diskdump.sys
2011-04-09 07:02:55 5562240 ----a-w- C:\Windows\System32\ntoskrnl.exe
2011-04-09 06:58:56 142336 ----a-w- C:\Windows\System32\poqexec.exe
2011-04-09 06:02:25 3967872 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2011-04-09 06:02:25 3912576 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2011-04-09 05:56:38 123904 ----a-w- C:\Windows\SysWow64\poqexec.exe
.
============= FINISH: 3:32:43.35 ===============
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-06-12.02)
.
Microsoft Windows 7 Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 7/1/2011 8:08:44 PM
System Uptime: 6/16/2011 1:11:27 AM (2 hours ago)
.
Motherboard: BIOSTAR Group | | N68S3B
Processor: AMD Phenom(tm) II X4 810 Processor | CPU 1 | 1898/200mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 931 GiB total, 815.622 GiB free.
D: is CDROM ()
E: is Removable
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
No restore point in system.
.
==== Installed Programs ======================
.
Ad-Aware
Adobe AIR
Adobe Community Help
Adobe Flash Media Live Encoder 3.2
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Photoshop CS5.1
Adobe Reader X (10.0.1)
Alien Swarm
Amnesia: The Dark Descent
BitTorrent
Call of Duty(R) 4 - Modern Warfare(TM)
Counter-Strike: Source
Day of Defeat: Source
Epson Event Manager
EPSON Scan
Game Booster
HiJackThis
Killing Floor
Metro 2033
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft_VC80_ATL_x86
Microsoft_VC80_CRT_x86
Microsoft_VC80_MFC_x86
Microsoft_VC80_MFCLOC_x86
Microsoft_VC90_ATL_x86
Microsoft_VC90_CRT_x86
Microsoft_VC90_MFC_x86
Microsoft_VC90_MFCLOC_x86
Mozilla Firefox 4.0.1 (x86 en-US)
MSI Afterburner 1.5.0
NVIDIA 3D Vision Controller Driver
NVIDIA PhysX
NVIDIA Stereoscopic 3D Driver
OpenAL
Out Of Order
PDF Settings CS5
Penumbra: Overture
Penumbra: Requiem
Platform
Red Faction: Guerrilla
S.T.A.L.K.E.R.: Shadow of Chernobyl
ScummVM Git
Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Sid Meier's Civilization IV
Sid Meier's Civilization IV: Beyond the Sword
Sid Meier's Civilization IV: Colonization
Sid Meier's Civilization IV: Warlords
Skype Toolbars
Skype™ 5.3
Spybot - Search & Destroy
Star Wars: Knights of the Old Republic
StarCraft II
Steam
Team Fortress 2
Thief: Deadly Shadows
Titan Quest
Titan Quest: Immortal Throne
VIA Platform Device Manager
XSplit
.
==== Event Viewer Messages From Past Week ========
.
7/1/2011 11:02:42 PM, Error: Service Control Manager [7023] - The Windows Update service terminated with the following error: %%-2147467243
6/15/2011 2:13:14 AM, Error: Service Control Manager [7030] - The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.
6/15/2011 2:13:02 AM, Error: Application Popup [1060] - \??\C:\ComboFix\catchme.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
6/15/2011 10:33:09 PM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Steam Client Service service to connect.
Also, whenever I attempt to start up my Windows Security Center Service, I get an error message reading "The Windows Security Center Service cannot be started."
I also have a Hijackthis log. Thanks for the help.
.
DDS (Ver_2011-06-12.02) - NTFSAMD64
Internet Explorer: 9.0.8112.16421
Run by [removed] at 3:31:30 on 2011-06-16
Microsoft Windows 7 Professional 6.1.7601.1.1252.1.1033.18.8191.5809 [GMT -4:00]
.
AV: Trend Micro Internet Security *Disabled/Updated* {48929DFC-7A52-A34F-8351-C4DBEDBD9C50}
SP: Trend Micro Internet Security *Disabled/Updated* {F3F37C18-5C68-ACC1-B9E1-FFA9963AD6ED}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Trend Micro Personal Firewall *Disabled* {70A91CD9-303D-A217-A80E-6DEE136EDB2B}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\AUDIODG.EXE
C:\Windows\system32\svchost.exe -k LocalService
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\taskeng.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\rundll32.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files (x86)\Lavasoft\Ad-Aware\AWSC.exe
C:\Program Files (x86)\Lavasoft\Ad-Aware\AWSC.exe
C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWTray.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Common Files\Steam\SteamService.exe
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files\Trend Micro\BM\TMBMSRV.exe
C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe
C:\Windows\system32\NOTEPAD.EXE
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\explorer.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\cscript.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uURLSearchHooks: H - No File
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll
BHO: Skype Plug-In: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
TB: {88C7F2AA-F93F-432C-8F0E-B7D85967A527} - No File
uRun: [Steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent
uRun: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized
uRun: [EPSON3A51C4 (Epson Stylus NX420)] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIGCA.EXE /FU "C:\Windows\TEMP\E_S50C7.tmp" /EF "HKCU"
uRun: [EPSON NX420 Series] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIGCA.EXE /FU "C:\Windows\TEMP\E_S5DF1.tmp" /EF "HKCU"
uRun: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
mRun: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
mRun: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
mRun: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/s ... wflash.cab
TCP: DhcpNameServer = 192.168.1.1 [removed]
TCP: Interfaces\{8F47CAD1-7B91-4F96-BC54-17BC47C618E6} : DhcpNameServer = 192.168.1.1 [removed]
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO-X64: AcroIEHelperStub - No File
BHO-X64: Spybot-S&D IE Protection: {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll
BHO-X64: Skype Plug-In: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO-X64: SkypeIEPluginBHO - No File
TB-X64: {88C7F2AA-F93F-432C-8F0E-B7D85967A527} - No File
mRun-x64: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r
mRun-x64: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
mRun-x64: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun-x64: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
mRun-x64: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Kevin\AppData\Roaming\Mozilla\Firefox\Profiles\k32841yo.default\
FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
FF - plugin: C:\Windows\system32\Wat\npWatWeb.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
.
============= SERVICES / DRIVERS ===============
.
R0 Lbd;Lbd;C:\Windows\system32\DRIVERS\Lbd.sys --> C:\Windows\system32\DRIVERS\Lbd.sys [?]
R1 BIOS;BIOS;C:\Windows\System32\drivers\BIOS64.sys [2011-7-1 14136]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;C:\Program Files (x86)\Lavasoft\Ad-Aware\AAWService.exe [2011-5-25 2151128]
R2 nvUpdatusService;NVIDIA Update Service Daemon;C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-6-2 2214504]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2011-5-20 378472]
R2 tmpreflt;tmpreflt;C:\Windows\system32\DRIVERS\tmpreflt.sys --> C:\Windows\system32\DRIVERS\tmpreflt.sys [?]
R3 Lavasoft Kernexplorer;Lavasoft helper driver;C:\Program Files (x86)\Lavasoft\Ad-Aware\kernexplorer64.sys [2011-6-10 17152]
R3 TmProxy;Trend Micro Proxy Service;C:\Program Files\Trend Micro\Internet Security\TmProxy.exe [2011-6-10 917768]
R3 VIAHdAudAddService;VIA High Definition Audio Driver Service;C:\Windows\system32\drivers\viahduaa.sys --> C:\Windows\system32\drivers\viahduaa.sys [?]
R3 WSDPrintDevice;WSD Print Support via UMB;C:\Windows\system32\DRIVERS\WSDPrint.sys --> C:\Windows\system32\DRIVERS\WSDPrint.sys [?]
R3 WSDScan;WSD Scan Support via UMB;C:\Windows\system32\DRIVERS\WSDScan.sys --> C:\Windows\system32\DRIVERS\WSDScan.sys [?]
S3 dmvsc;dmvsc;C:\Windows\system32\drivers\dmvsc.sys --> C:\Windows\system32\drivers\dmvsc.sys [?]
S3 StorSvc;Storage Service;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-13 20992]
S3 SwitchBoard;Adobe SwitchBoard;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-2-19 517096]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys --> C:\Windows\system32\drivers\tsusbflt.sys [?]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\system32\drivers\TsUsbGD.sys --> C:\Windows\system32\drivers\TsUsbGD.sys [?]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
.
=============== Created Last 30 ================
.
2011-07-02 03:52:34 -------- d-----w- C:\Windows\Panther
2011-07-02 03:34:20 -------- d-----w- C:\Windows.old
2011-07-02 02:56:55 -------- d-sh--w- C:\found.000
2011-07-02 00:13:31 414632 ------w- C:\Windows\difxapi.dll
2011-07-02 00:13:31 -------- d-----w- C:\Program Files (x86)\VIA
2011-07-02 00:12:26 704000 ----a-w- C:\Windows\System32\cohelper.dll
2011-07-02 00:12:26 6136 ----a-w- C:\Windows\System32\drivers\nvphy.bin
2011-07-02 00:12:00 -------- d-sh--w- C:\Windows\Installer
2011-07-02 00:11:10 645736 ----a-w- C:\Windows\System32\NVUNINST.EXE
2011-07-02 00:10:26 14136 ----a-r- C:\Windows\SysWow64\drivers\BIOS64.sys
2011-06-16 04:58:15 388096 ----a-r- C:\Users\Kevin\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2011-06-16 04:58:15 -------- d-----w- C:\Program Files (x86)\Trend Micro
2011-06-15 06:54:51 -------- d-----w- C:\ProgramData\Spybot - Search & Destroy
2011-06-15 06:54:51 -------- d-----w- C:\Program Files (x86)\Spybot - Search & Destroy
2011-06-15 06:35:10 -------- d-----w- C:\Users\Kevin\AppData\Roaming\Malwarebytes
2011-06-15 06:34:37 -------- d-----w- C:\ProgramData\Malwarebytes
2011-06-15 05:58:43 208896 ----a-w- C:\Windows\MBR.exe
2011-06-15 05:58:42 98816 ----a-w- C:\Windows\sed.exe
2011-06-15 05:58:42 518144 ----a-w- C:\Windows\SWREG.exe
2011-06-15 05:58:42 256512 ----a-w- C:\Windows\PEV.exe
2011-06-15 05:58:31 -------- d-s---w- C:\ComboFix
2011-06-15 05:52:41 -------- d-----w- C:\Users\Kevin\AppData\Roaming\RegistryCleanerFree
2011-06-15 05:52:41 -------- d-----w- C:\ProgramData\RegistryCleanerFree
2011-06-12 08:38:41 -------- d-----w- C:\ProgramData\regid.1986-12.com.adobe
2011-06-11 06:52:14 42576 ----a-w- C:\Windows\System32\drivers\tmpreflt.sys
2011-06-11 06:52:14 309840 ----a-w- C:\Windows\System32\drivers\tmxpflt.sys
2011-06-11 06:52:14 1988176 ----a-w- C:\Windows\System32\drivers\vsapint.sys
2011-06-11 04:06:34 16432 ----a-w- C:\Windows\System32\lsdelete.exe
2011-06-11 02:34:25 49752 ----a-w- C:\Windows\System32\drivers\SBREDrv.sys
2011-06-11 02:31:09 69376 ----a-w- C:\Windows\System32\drivers\Lbd.sys
2011-06-11 02:31:05 -------- d-----w- C:\Program Files (x86)\Lavasoft
2011-06-11 00:26:02 -------- d-----w- C:\Program Files (x86)\SplitMediaLabs
2011-06-11 00:17:18 -------- d-----w- C:\ProgramData\Trend Micro
2011-06-11 00:15:35 -------- d-----w- C:\Program Files\Trend Micro
2011-06-10 23:40:29 166400 --sha-r- C:\Windows\SysWow64\wow32F.dll
2011-06-10 18:58:56 8718160 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{25E3767F-E8BA-4C37-8507-0124C1EB884F}\mpengine.dll
2011-06-10 07:48:41 -------- d-----w- C:\ProgramData\IObit
2011-06-10 07:48:40 -------- d-----w- C:\Program Files (x86)\IObit
2011-06-10 07:18:41 -------- d-----w- C:\Users\Kevin\AppData\Local\My Games
2011-06-09 19:10:24 -------- d-----w- C:\Program Files\Games
2011-06-09 09:04:45 -------- d-----w- C:\Users\Kevin\AppData\Roaming\ScummVM
2011-06-09 09:04:39 -------- d-----w- C:\Program Files (x86)\ScummVM
2011-06-09 04:24:02 -------- d-----w- C:\Users\Kevin\AppData\Local\PunkBuster
2011-06-09 02:53:56 103736 ----a-w- C:\Windows\SysWow64\PnkBstrB.exe
2011-06-09 02:53:55 66872 ----a-w- C:\Windows\SysWow64\PnkBstrA.exe
2011-06-09 02:41:55 -------- d-----w- C:\Program Files (x86)\Activision
2011-06-03 08:54:05 -------- d-----w- C:\Windows\System32\appmgmt
2011-06-03 04:43:04 -------- d-----w- C:\Program Files\Common Files\EPSON
2011-06-03 04:42:26 118784 ----a-w- C:\Windows\System32\E_ILMGCA.DLL
2011-06-03 04:42:25 88064 ----a-w- C:\Windows\System32\E_IBCBGCA.DLL
2011-06-03 04:42:21 -------- d-----w- C:\ProgramData\EPSON
2011-06-03 04:42:02 -------- d-----w- C:\Program Files (x86)\Epson Software
2011-06-03 04:41:27 464384 ----a-w- C:\Windows\System32\esxw2ud.dll
2011-06-03 04:41:27 17408 ----a-w- C:\Windows\System32\esxcdev.dll
2011-06-03 04:41:27 128392 ----a-w- C:\Windows\System32\esdevapp.exe
2011-06-03 04:41:26 -------- d-----w- C:\Program Files (x86)\epson
2011-06-03 04:03:31 -------- d-----w- C:\Program Files\Ventrilo
2011-06-03 04:03:00 -------- d-----w- C:\Program Files (x86)\Common Files\Wise Installation Wizard
2011-06-03 03:56:06 -------- d-----w- C:\Program Files (x86)\StarCraft II
2011-06-02 20:44:58 -------- d-----w- C:\Users\Kevin\AppData\Local\Adobe
2011-06-02 08:43:30 -------- d-----w- C:\Users\Kevin\AppData\Roaming\NVIDIA
2011-06-02 08:32:11 739432 ----a-w- C:\Windows\System32\easyupdatusapiu64.dll
2011-06-02 08:32:04 -------- d-----w- C:\ProgramData\NVIDIA Corporation
2011-06-02 08:30:06 -------- d-----w- C:\NVIDIA
2011-06-02 08:03:45 -------- d-----w- C:\Users\Kevin\AppData\Local\4A Games
2011-06-02 04:29:16 419840 ----a-w- C:\Windows\System32\wrap_oal.dll
2011-06-02 04:29:16 413696 ----a-w- C:\Windows\SysWow64\wrap_oal.dll
2011-06-02 04:29:16 133632 ----a-w- C:\Windows\System32\OpenAL32.dll
2011-06-02 04:29:16 110592 ----a-w- C:\Windows\SysWow64\OpenAL32.dll
2011-06-02 04:29:16 -------- d-----w- C:\Program Files (x86)\OpenAL
2011-06-02 03:23:48 -------- d-----w- C:\ProgramData\Skype Extras
2011-06-02 03:22:40 -------- d-----r- C:\Program Files (x86)\Skype
2011-06-02 03:12:29 -------- d-----w- C:\ProgramData\Blizzard Entertainment
2011-06-02 03:12:29 -------- d-----w- C:\Program Files (x86)\Common Files\Blizzard Entertainment
2011-06-02 02:33:39 -------- d-----w- C:\ProgramData\SplitMediaLabs
2011-06-02 02:19:48 855 ----a-w- C:\Windows\System32\drivers\etc\tmvsthfud.bin
2011-06-02 02:19:48 855 ----a-w- C:\Windows\System32\drivers\etc\tmvsthfss.bin
2011-06-02 01:45:31 -------- d-----w- C:\Program Files (x86)\BitTorrent
2011-06-02 01:19:09 737072 ----a-w- C:\ProgramData\Microsoft\eHome\Packages\SportsV2\SportsTemplateCore\Microsoft.MediaCenter.Sports.UI.dll
2011-06-02 01:18:55 4283672 ----a-w- C:\ProgramData\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll
2011-06-02 01:18:44 42776 ----a-w- C:\ProgramData\Microsoft\eHome\Packages\MCEClientUX\dSM\StartResources.dll
2011-06-02 01:18:41 539968 ----a-w- C:\ProgramData\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2011-06-02 01:08:38 404640 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2011-06-02 01:07:51 -------- d-----w- C:\Program Files (x86)\Steam
2011-06-02 01:07:51 -------- d-----w- C:\Program Files (x86)\Common Files\Steam
2011-05-21 02:35:28 304744 ----a-w- C:\Windows\SysWow64\nvStreaming.exe
.
==================== Find3M ====================
.
2011-05-28 03:06:58 3135488 ----a-w- C:\Windows\System32\win32k.sys
2011-05-24 23:14:10 270720 ------w- C:\Windows\System32\MpSigStub.exe
2011-05-03 05:29:29 976896 ----a-w- C:\Windows\System32\inetcomm.dll
2011-05-03 04:30:02 741376 ----a-w- C:\Windows\SysWow64\inetcomm.dll
2011-04-29 03:06:10 467456 ----a-w- C:\Windows\System32\drivers\srv.sys
2011-04-29 03:05:49 410112 ----a-w- C:\Windows\System32\drivers\srv2.sys
2011-04-29 03:05:37 168448 ----a-w- C:\Windows\System32\drivers\srvnet.sys
2011-04-27 02:40:40 158208 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys
2011-04-27 02:39:40 289280 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys
2011-04-27 02:39:37 128000 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys
2011-04-25 05:33:51 1923968 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2011-04-25 02:34:03 499200 ----a-w- C:\Windows\System32\drivers\afd.sys
2011-04-23 01:29:25 2303488 ----a-w- C:\Windows\System32\jscript9.dll
2011-04-23 01:19:19 2382848 ----a-w- C:\Windows\System32\mshtml.tlb
2011-04-22 23:35:56 1797632 ----a-w- C:\Windows\SysWow64\jscript9.dll
2011-04-22 23:25:54 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2011-04-22 22:15:29 27520 ----a-w- C:\Windows\System32\drivers\Diskdump.sys
2011-04-09 07:02:55 5562240 ----a-w- C:\Windows\System32\ntoskrnl.exe
2011-04-09 06:58:56 142336 ----a-w- C:\Windows\System32\poqexec.exe
2011-04-09 06:02:25 3967872 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2011-04-09 06:02:25 3912576 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2011-04-09 05:56:38 123904 ----a-w- C:\Windows\SysWow64\poqexec.exe
.
============= FINISH: 3:32:43.35 ===============
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-06-12.02)
.
Microsoft Windows 7 Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 7/1/2011 8:08:44 PM
System Uptime: 6/16/2011 1:11:27 AM (2 hours ago)
.
Motherboard: BIOSTAR Group | | N68S3B
Processor: AMD Phenom(tm) II X4 810 Processor | CPU 1 | 1898/200mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 931 GiB total, 815.622 GiB free.
D: is CDROM ()
E: is Removable
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
No restore point in system.
.
==== Installed Programs ======================
.
Ad-Aware
Adobe AIR
Adobe Community Help
Adobe Flash Media Live Encoder 3.2
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Photoshop CS5.1
Adobe Reader X (10.0.1)
Alien Swarm
Amnesia: The Dark Descent
BitTorrent
Call of Duty(R) 4 - Modern Warfare(TM)
Counter-Strike: Source
Day of Defeat: Source
Epson Event Manager
EPSON Scan
Game Booster
HiJackThis
Killing Floor
Metro 2033
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft_VC80_ATL_x86
Microsoft_VC80_CRT_x86
Microsoft_VC80_MFC_x86
Microsoft_VC80_MFCLOC_x86
Microsoft_VC90_ATL_x86
Microsoft_VC90_CRT_x86
Microsoft_VC90_MFC_x86
Microsoft_VC90_MFCLOC_x86
Mozilla Firefox 4.0.1 (x86 en-US)
MSI Afterburner 1.5.0
NVIDIA 3D Vision Controller Driver
NVIDIA PhysX
NVIDIA Stereoscopic 3D Driver
OpenAL
Out Of Order
PDF Settings CS5
Penumbra: Overture
Penumbra: Requiem
Platform
Red Faction: Guerrilla
S.T.A.L.K.E.R.: Shadow of Chernobyl
ScummVM Git
Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Sid Meier's Civilization IV
Sid Meier's Civilization IV: Beyond the Sword
Sid Meier's Civilization IV: Colonization
Sid Meier's Civilization IV: Warlords
Skype Toolbars
Skype™ 5.3
Spybot - Search & Destroy
Star Wars: Knights of the Old Republic
StarCraft II
Steam
Team Fortress 2
Thief: Deadly Shadows
Titan Quest
Titan Quest: Immortal Throne
VIA Platform Device Manager
XSplit
.
==== Event Viewer Messages From Past Week ========
.
7/1/2011 11:02:42 PM, Error: Service Control Manager [7023] - The Windows Update service terminated with the following error: %%-2147467243
6/15/2011 2:13:14 AM, Error: Service Control Manager [7030] - The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.
6/15/2011 2:13:02 AM, Error: Application Popup [1060] - \??\C:\ComboFix\catchme.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
6/15/2011 10:33:09 PM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Steam Client Service service to connect.