Hi
I had a call from someone who said they were from Microsoft and let them take control of my pc.
My friend has since alerted me of the danger of this and has tried to clean my pc, but has been unsuccessful as my task manager is still not working properly and I cant uninstall a programme called system protector.
I have run the dds and attach them below.
Thank you
DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 10.0.9200.16521
Run by [removed] at 14:26:51 on 2013-03-08
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.44.1033.18.4061.2992 [GMT 0:00]
.
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\system32\taskhost.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
c:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe
C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE
C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE
C:\Program Files (x86)\Packard Bell\Registration\GregHSRW.exe
C:\Program Files (x86)\Secunia\PSI\PSIA.exe
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\System32\StikyNot.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files (x86)\Secunia\PSI\sua.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop.exe
C:\Program Files (x86)\Secunia\PSI\psi_tray.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Program Files (x86)\Nero\Update\NASvc.exe
C:\Windows\system32\svchost.exe -k SDRSVC
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Windows\system32\Macromed\Flash\FlashUtil64_11_6_602_171_ActiveX.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.co.uk/
uSearch Bar = Preserve
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
BHO: &Yahoo! Toolbar Helper: {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll
BHO: Giant Savings Extension: {11111111-1111-1111-1111-110211181110} -
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Toolbar BHO: {58f7b5ca-1162-42e8-8bbc-d543b4edd780} - LocalServer32 - <no file>
BHO: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Windows Live Messenger Companion Helper: {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
BHO: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO: Magentic Toolbar: {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
TB: &Inbox Toolbar: {D7E97865-918F-41E4-9CD0-25AB1C574CE8} - C:\Program Files (x86)\Inbox Toolbar\Inbox.dll
TB: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
TB: Magentic Toolbar: {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
TB: Utility Chest: {cf67755f-9265-449c-87cf-b945519e073b} - LocalServer32 - <no file>
TB: Yahoo! Toolbar: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll
uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
uRun: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
uRun: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
mRun: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
mRun: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
mRun: [BingDesktop] C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop.exe /fromkey
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\Secunia PSI Tray.lnk - C:\Program Files (x86)\Secunia\PSI\psi_tray.exe
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/s ... wflash.cab
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{C377D2A2-6B28-4976-93F7-A4C0B3DC9A83} : DHCPNameServer = 192.168.1.1
Handler: inbox - {37540F19-DD4C-478B-B2DF-C19281BCAF27} - C:\Program Files (x86)\Inbox Toolbar\Inbox.dll
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
SSODL: WebCheck - <orphaned>
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\25.0.1364.152\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
x64-BHO: avast! WebRep: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
x64-BHO: Easy Photo Print: {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll
x64-BHO: Skype add-on for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-TB: Easy Photo Print: {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll
x64-TB: avast! WebRep: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
x64-Run: [IgfxTray] C:\Windows\System32\igfxtray.exe
x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe
x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe
x64-IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-Handler: inbox - {37540F19-DD4C-478B-B2DF-C19281BCAF27} - <orphaned>
x64-Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-Notify: igfxcui - igfxdev.dll
x64-SSODL: WebCheck - <orphaned>
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\David\AppData\Roaming\Mozilla\Firefox\Profiles\yhqyc8hd.default\
FF - prefs.js: browser.search.selectedEngine - Delta Search
FF - plugin: C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL
FF - plugin: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\McAfee Security Scan\3.0.318\npMcAfeeMSS.dll
FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1200112.dll
FF - ExtSQL: 2013-02-16 16:47; [removed]; C:\Users\David\AppData\Roaming\Mozilla\Firefox\Profiles\yhqyc8hd.default\extensions\[removed]
FF - ExtSQL: 2013-02-25 11:58; {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}; C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
.
============= SERVICES / DRIVERS ===============
.
R0 aswRvrt;aswRvrt;C:\Windows\System32\drivers\aswRvrt.sys [2013-2-28 65408]
R0 aswVmm;aswVmm;C:\Windows\System32\drivers\aswVmm.sys [2013-2-28 177672]
R0 PxHlpa64;PxHlpa64;C:\Windows\System32\drivers\PxHlpa64.sys [2010-9-18 55024]
R1 aswKbd;aswKbd;C:\Windows\System32\drivers\aswKbd.sys [2012-10-18 19600]
R1 aswSnx;aswSnx;C:\Windows\System32\drivers\aswSnx.sys [2011-11-17 1025880]
R1 aswSP;aswSP;C:\Windows\System32\drivers\aswSP.sys [2011-11-17 377992]
R1 SASDIFSV;SASDIFSV;C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys [2011-7-22 14928]
R1 SASKUTIL;SASKUTIL;C:\Program Files\SUPERAntiSpyware\saskutil64.sys [2011-7-12 12368]
R2 !SASCORE;SAS Core Service;C:\Program Files\SUPERAntiSpyware\SASCore64.exe [2012-7-11 140672]
R2 ABBYY.Licensing.FineReader.Sprint.9.0;ABBYY FineReader 9.0 Sprint Licensing Service;C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [2009-5-14 759048]
R2 AdobeActiveFileMonitor8.0;Adobe Active File Monitor V8;C:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [2009-10-9 169312]
R2 aswFsBlk;aswFsBlk;C:\Windows\System32\drivers\aswFsBlk.sys [2011-11-17 33472]
R2 aswMonFlt;aswMonFlt;C:\Windows\System32\drivers\aswMonFlt.sys [2011-11-17 80888]
R2 avast! Antivirus;avast! Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-2-28 45248]
R2 BingDesktopUpdate;Bing Desktop Update service;C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe [2013-1-25 166408]
R2 cvhsvc;Client Virtualization Handler;C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE [2012-1-4 822624]
R2 EPSON_EB_RPCV4_04;EPSON V5 Service4(04);C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE [2011-12-16 166400]
R2 EPSON_PM_RPCV4_04;EPSON V3 Service4(04);C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE [2011-12-16 128512]
R2 Greg_Service;GRegService;C:\Program Files (x86)\Packard Bell\Registration\GregHSRW.exe [2009-8-28 1150496]
R2 NAUpdate;Nero Update;C:\Program Files (x86)\Nero\Update\NASvc.exe [2010-5-4 503080]
R2 Secunia PSI Agent;Secunia PSI Agent;C:\Program Files (x86)\Secunia\PSI\psia.exe [2012-3-30 1295416]
R2 Secunia Update Agent;Secunia Update Agent;C:\Program Files (x86)\Secunia\PSI\sua.exe [2012-3-30 681016]
R2 sftlist;Application Virtualization Client;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2011-10-1 508776]
R2 Skype C2C Service;Skype C2C Service;C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-1-31 3289208]
R2 Updater Service;Updater Service;C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [2010-5-7 243232]
R3 PSI;PSI;C:\Windows\System32\drivers\psi_mf.sys [2011-12-16 17976]
R3 Sftfs;Sftfs;C:\Windows\System32\drivers\Sftfslh.sys [2011-10-1 764264]
R3 Sftplay;Sftplay;C:\Windows\System32\drivers\Sftplaylh.sys [2011-10-1 268648]
R3 Sftredir;Sftredir;C:\Windows\System32\drivers\Sftredirlh.sys [2011-10-1 25960]
R3 Sftvol;Sftvol;C:\Windows\System32\drivers\Sftvollh.sys [2011-10-1 22376]
R3 sftvsa;Application Virtualization Service Agent;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2011-10-1 219496]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S3 fssfltr;fssfltr;C:\Windows\System32\drivers\fssfltr.sys [2012-4-4 48488]
S3 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2012-3-8 1492840]
S3 GamesAppService;GamesAppService;C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 JLTECH0227;Dual Mode Camera;C:\Windows\System32\drivers\jl2005c.sys [2011-9-18 79664]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2012-11-14 19456]
S3 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-2-7 161384]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2012-11-14 57856]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2011-1-6 1255736]
S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184]
.
=============== Created Last 30 ================
.
2013-03-08 13:09:25 -------- dc----w- C:\Users\David\AppData\Roaming\SUPERAntiSpyware.com
2013-03-08 13:09:19 -------- dc----w- C:\ProgramData\SUPERAntiSpyware.com
2013-03-08 13:09:19 -------- dc----w- C:\Program Files\SUPERAntiSpyware
2013-03-05 20:20:50 9162192 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{96F218F8-6F22-40EC-AB24-C8A84580E7BF}\mpengine.dll
2013-03-02 19:28:47 -------- dc----w- C:\ProgramData\Symantec
2013-03-02 19:28:25 -------- dc----w- C:\Windows\System32\drivers\NSSx64\0307050.005
2013-03-02 19:28:25 -------- dc----w- C:\Windows\System32\drivers\NSSx64
2013-03-02 19:28:25 -------- dc----w- C:\Program Files (x86)\Norton Security Scan
2013-03-02 19:28:19 -------- dc----w- C:\Program Files (x86)\NortonInstaller
2013-03-02 17:27:38 -------- dc----w- C:\Windows\SysWow64\Adobe
2013-03-02 17:24:42 263064 -c--a-w- C:\Program Files (x86)\Mozilla Firefox\components\browsercomps.dll
2013-02-28 21:52:56 177672 -c--a-w- C:\Windows\System32\drivers\aswVmm.sys
2013-02-28 21:52:54 65408 -c--a-w- C:\Windows\System32\drivers\aswRvrt.sys
2013-02-27 01:47:43 9728 ---ha-w- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-02-27 01:18:15 -------- dc----w- C:\Users\David\AppData\Local\{75C1A19C-8CE0-4FB6-967A-57171DA75939}
2013-02-20 19:15:11 -------- dcsh--w- C:\$RECYCLE.BIN
2013-02-20 18:48:29 98816 -c--a-w- C:\Windows\sed.exe
2013-02-20 18:48:29 256000 -c--a-w- C:\Windows\PEV.exe
2013-02-20 18:48:29 208896 -c--a-w- C:\Windows\MBR.exe
2013-02-20 18:15:00 12872 -c--a-w- C:\Windows\System32\bootdelete.exe
2013-02-20 18:08:34 -------- dc----w- C:\ProgramData\HitmanPro
2013-02-20 16:46:28 388096 -c--a-r- C:\Users\David\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2013-02-20 16:46:28 -------- dc----w- C:\Program Files (x86)\Trend Micro
2013-02-18 20:59:31 -------- dc----w- C:\Program Files (x86)\Inbox Toolbar
2013-02-17 11:21:38 -------- dc----w- C:\Program Files (x86)\MyPC Backup
2013-02-16 16:47:10 -------- dc----w- C:\Users\David\AppData\Local\Mozilla
2013-02-16 16:47:01 -------- dc----w- C:\Program Files (x86)\Mozilla Maintenance Service
2013-02-16 16:06:26 -------- dc----w- C:\Program Files (x86)\Yahoo!
2013-02-16 16:06:21 -------- dc----w- C:\Program Files (x86)\IObit
2013-02-16 15:53:46 -------- dc----w- C:\Users\David\AppData\Local\LogMeIn Rescue Applet
2013-02-16 15:06:58 -------- dc----w- C:\Users\David\AppData\Local\{955CA103-8257-4387-87F5-1B48DD211832}
2013-02-16 07:24:42 72624 ----a-w- C:\Program Files\Internet Explorer\pdmproxy100.dll
2013-02-16 07:24:42 70568 ----a-w- C:\Program Files (x86)\Internet Explorer\pdmproxy100.dll
2013-02-16 07:24:42 514952 ----a-w- C:\Program Files\Internet Explorer\pdm.dll
2013-02-16 07:24:42 392080 ----a-w- C:\Program Files (x86)\Internet Explorer\pdm.dll
2013-02-16 07:24:42 368024 ----a-w- C:\Program Files\Internet Explorer\msdbg2.dll
2013-02-16 07:24:42 285080 ----a-w- C:\Program Files (x86)\Internet Explorer\msdbg2.dll
2013-02-13 00:34:51 -------- dc----w- C:\Users\David\AppData\Local\Giant Savings Extension
2013-02-13 00:34:40 -------- dc----w- C:\Windows\SysWow64\searchplugins
2013-02-13 00:34:40 -------- dc----w- C:\Windows\SysWow64\Extensions
2013-02-13 00:34:32 -------- dc----w- C:\Program Files (x86)\Giant Savings Extension
2013-02-13 00:33:51 -------- dc----w- C:\Users\David\AppData\Roaming\Babylon
2013-02-13 00:33:51 -------- dc----w- C:\ProgramData\Babylon
2013-02-13 00:13:53 215040 ----a-w- C:\Windows\System32\winsrv.dll
2013-02-13 00:13:52 7680 ----a-w- C:\Windows\SysWow64\instnm.exe
2013-02-13 00:13:52 5120 ----a-w- C:\Windows\SysWow64\wow32.dll
2013-02-13 00:13:52 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
2013-02-13 00:13:52 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll
2013-02-13 00:13:51 2048 ----a-w- C:\Windows\SysWow64\user.exe
2013-02-13 00:13:44 5553512 ----a-w- C:\Windows\System32\ntoskrnl.exe
2013-02-13 00:13:43 3967848 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2013-02-13 00:13:43 3913064 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2013-02-13 00:13:41 3153408 ----a-w- C:\Windows\System32\win32k.sys
2013-02-13 00:13:39 288088 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS
2013-02-13 00:13:39 1913192 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2013-02-07 23:40:01 -------- dc----w- C:\ProgramData\Systweak
.
==================== Find3M ====================
.
2013-02-28 08:36:33 71064 -c--a-w- C:\Windows\System32\drivers\aswRdr2.sys
2013-02-28 08:36:33 1025880 -c--a-w- C:\Windows\System32\drivers\aswSnx.sys
2013-02-28 08:36:32 80888 -c--a-w- C:\Windows\System32\drivers\aswMonFlt.sys
2013-02-28 08:36:07 41664 -c--a-w- C:\Windows\avastSS.scr
2013-02-28 00:29:30 71024 -c--a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2013-02-28 00:29:30 691568 -c--a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2013-02-27 01:48:59 92160 ----a-w- C:\Windows\System32\SetIEInstalledDate.exe
2013-02-27 01:47:43 9728 ---ha-w- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-02-13 00:16:04 44032 ----a-w- C:\Windows\apppatch\acwow64.dll
2013-01-29 18:17:34 20336 -c--a-w- C:\Windows\System32\roboot64.exe
2013-01-17 01:28:58 273840 -c----w- C:\Windows\System32\MpSigStub.exe
2013-01-08 21:53:32 750592 ----a-w- C:\Windows\System32\win32spl.dll
2013-01-08 21:53:32 492032 ----a-w- C:\Windows\SysWow64\win32spl.dll
2012-12-20 20:05:25 46080 ----a-w- C:\Windows\System32\atmlib.dll
2012-12-20 20:05:25 367616 ----a-w- C:\Windows\System32\atmfd.dll
2012-12-20 20:05:25 34304 ----a-w- C:\Windows\SysWow64\atmlib.dll
2012-12-20 20:05:25 295424 ----a-w- C:\Windows\SysWow64\atmfd.dll
2012-12-14 16:49:28 24176 -c--a-w- C:\Windows\System32\drivers\mbam.sys
2012-12-12 01:29:22 2048 ----a-w- C:\Windows\SysWow64\tzres.dll
2012-12-12 01:29:22 2048 ----a-w- C:\Windows\System32\tzres.dll
2012-12-12 01:26:32 478208 ----a-w- C:\Windows\System32\dpnet.dll
2012-12-12 01:26:32 376832 ----a-w- C:\Windows\SysWow64\dpnet.dll
.
============= FINISH: 14:27:09.55 ===============
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume2
Install Date: 06/01/2011 13:59:42
System Uptime: 08/03/2013 13:55:12 (1 hours ago)
.
Motherboard: Packard Bell | | Veriton M275
Processor: Pentium(R) Dual-Core CPU E5700 @ 3.00GHz | CPU 1 | 3003/200mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 224 GiB total, 182.322 GiB free.
D: is FIXED (NTFS) - 225 GiB total, 160.796 GiB free.
E: is CDROM (CDFS)
F: is Removable
G: is Removable
H: is Removable
I: is Removable
K: is Removable
L: is Removable
M: is Removable
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP916: 01/03/2013 21:50:09 - Windows Backup
RP917: 02/03/2013 20:34:22 - Windows Backup
RP918: 03/03/2013 13:03:28 - Windows Backup
RP919: 03/03/2013 23:44:15 - Windows Backup
RP920: 04/03/2013 01:38:54 - Windows Backup
RP921: 05/03/2013 20:20:06 - Windows Update
RP922: 06/03/2013 01:23:24 - Windows Backup
RP923: 07/03/2013 04:37:14 - Windows Backup
RP924: 07/03/2013 23:43:02 - Windows Backup
.
==== Installed Programs ======================
.
ABBYY FineReader 9.0 Sprint
Acrobat.com
Adobe AIR
Adobe Flash Player 11 ActiveX
Adobe Photoshop Elements 8.0
Adobe Reader XI (11.0.02)
Adobe Shockwave Player 12.0
Advanced File Optimizer
Advanced System Protector
Advertising Center
ArcSoft PhotoStudio 5.5
Ask Toolbar
avast! Free Antivirus
Ballistik
Bejeweled 2 Deluxe
Bing Desktop
Blasterball 3
Bob the Builder Can-Do-Zoo
Boom Voyage
Build-a-lot 2
Canon MP Navigator EX 2.0
Canon Utilities Solution Menu
CanoScan LiDE 100 Scanner Driver
CCleaner
Chicken Invaders 3 - Revenge of the Yolk
Coupon Printer
D3DX10
eBay Worldwide
Epson Easy Photo Print 2
Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser)
Epson Event Manager
EPSON Scan
EPSON SX218 Series Manual
EPSON SX218 Series Printer Uninstall
Escape Rosecliff Island
ESET Online Scanner v3
Faerie Solitaire
FATE - The Traitor Soul
File Type Assistant
FileHippo.com Update Checker
Free File Viewer 2011
Giant Savings Extension
Google Chrome
Google Earth
Google Earth Plug-in
Google Update Helper
HiJackThis
HiYo
HiYo
Hotkey Utility
Identity Card
ImagXpress
Inbox Toolbar
Insaniquarium Deluxe
InstallIQ Updater
Intel(R) Control Center
Intel(R) Graphics Media Accelerator Driver
Internet TV for Windows Media Center
Jewel Quest
Jewel Quest Solitaire 3
Junk Mail filter update
Magentic
Mahjongg Artifacts
Malwarebytes Anti-Malware version 1.70.0.1100
Mesh Runtime
Messenger Companion
Microsoft .NET Framework 4 Client Profile
Microsoft Application Error Reporting
Microsoft Office 2010
Microsoft Office Click-to-Run 2010
Microsoft Office Starter 2010 - English
Microsoft PowerPoint Viewer
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Mozilla Firefox 19.0 (x86 en-US)
Mozilla Maintenance Service
MSVCRT
MSVCRT_amd64
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 4.0 SP3 Parser
MSXML 4.0 SP3 Parser (KB2721691)
MSXML 4.0 SP3 Parser (KB2758694)
Nero 9 Essentials
Nero BurnLite 10
Nero Control Center 10
Nero ControlCenter
Nero ControlCenter 10 Help (CHM)
Nero Core Components 10
Nero DiscSpeed
Nero DiscSpeed Help
Nero DriveSpeed
Nero DriveSpeed Help
Nero Express Help
Nero InfoTool
Nero InfoTool Help
Nero Installer
Nero Online Upgrade
Nero StartSmart
Nero StartSmart Help
Nero StartSmart OEM
Nero Update
NeroExpress
neroxml
Norton Security Scan
Packard Bell Game Console
Packard Bell Games
Packard Bell InfoCentre
Packard Bell Recovery Management
Packard Bell Registration
Packard Bell ScreenSaver
Packard Bell Software Suite SE
Packard Bell Updater
Penguins!
Picasa 3
Polar Bowler
Polar Golfer
Polar Pool
Realtek High Definition Audio Driver
Secunia PSI (3.0.0.0006)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2160841)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)
Skype Click to Call
Skype™ 6.2
SkyPlayer for Windows Media Center
SUPERAntiSpyware
swMSM
Treasures of the Deep
Uninstall Dual Mode Camera
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2473228)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
Update Installer for WildTangent Games App
Utility Chest Toolbar
Virtual Families
Virtual Villagers - A New Home
Visual Studio 2008 x64 Redistributables
Welcome Center
WildTangent Games App (Packard Bell Games)
Windows Live Communications Platform
Windows Live Essentials
Windows Live Family Safety
Windows Live ID Sign-in Assistant
Windows Live Installer
Windows Live Language Selector
Windows Live Mail
Windows Live Mesh
Windows Live Mesh ActiveX Control for Remote Connections
Windows Live Messenger
Windows Live Messenger Companion Core
Windows Live MIME IFilter
Windows Live Movie Maker
Windows Live Photo Common
Windows Live Photo Gallery
Windows Live PIMT Platform
Windows Live Remote Client
Windows Live Remote Client Resources
Windows Live Remote Service
Windows Live Remote Service Resources
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live Sync
Windows Live UX Platform
Windows Live UX Platform Language Pack
Windows Live Writer
Windows Live Writer Resources
WinPatrol
Yahoo! Toolbar
Yahtzee
Zuma Deluxe
.
==== Event Viewer Messages From Past Week ========
.
08/03/2013 13:54:32, Error: volmgr [46] - Crash dump initialization failed!
07/03/2013 03:46:37, Error: Service Control Manager [7022] - The Windows Update service hung on starting.
02/03/2013 21:32:09, Error: Service Control Manager [7031] - The Windows Search service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service.
02/03/2013 21:32:09, Error: Service Control Manager [7024] - The Windows Search service terminated with service-specific error %%-1073473535.
02/03/2013 16:17:49, Error: Microsoft-Windows-Bits-Client [16398] - A new BITS job could not be created. The current job count for the user David-PC\David (60) is equal to or greater than the job limit (60) specified through group policy. To correct the problem, complete or cancel the BITS jobs that haven't made progress by looking at the error, and restart the BITS service. If this error recurs, contact your system administrator and increate the per-user and per-computer Group Policy job limits.
.
==== End Of File ===========================
I had a call from someone who said they were from Microsoft and let them take control of my pc.
My friend has since alerted me of the danger of this and has tried to clean my pc, but has been unsuccessful as my task manager is still not working properly and I cant uninstall a programme called system protector.
I have run the dds and attach them below.
Thank you
DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 10.0.9200.16521
Run by [removed] at 14:26:51 on 2013-03-08
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.44.1033.18.4061.2992 [GMT 0:00]
.
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\system32\taskhost.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
c:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe
C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE
C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE
C:\Program Files (x86)\Packard Bell\Registration\GregHSRW.exe
C:\Program Files (x86)\Secunia\PSI\PSIA.exe
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\System32\StikyNot.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files (x86)\Secunia\PSI\sua.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop.exe
C:\Program Files (x86)\Secunia\PSI\psi_tray.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Program Files (x86)\Nero\Update\NASvc.exe
C:\Windows\system32\svchost.exe -k SDRSVC
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Windows\system32\Macromed\Flash\FlashUtil64_11_6_602_171_ActiveX.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.co.uk/
uSearch Bar = Preserve
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
BHO: &Yahoo! Toolbar Helper: {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll
BHO: Giant Savings Extension: {11111111-1111-1111-1111-110211181110} -
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Toolbar BHO: {58f7b5ca-1162-42e8-8bbc-d543b4edd780} - LocalServer32 - <no file>
BHO: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Windows Live Messenger Companion Helper: {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
BHO: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO: Magentic Toolbar: {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
TB: &Inbox Toolbar: {D7E97865-918F-41E4-9CD0-25AB1C574CE8} - C:\Program Files (x86)\Inbox Toolbar\Inbox.dll
TB: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
TB: Magentic Toolbar: {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
TB: Utility Chest: {cf67755f-9265-449c-87cf-b945519e073b} - LocalServer32 - <no file>
TB: Yahoo! Toolbar: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll
uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
uRun: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
uRun: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
mRun: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
mRun: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
mRun: [BingDesktop] C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop.exe /fromkey
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\Secunia PSI Tray.lnk - C:\Program Files (x86)\Secunia\PSI\psi_tray.exe
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/s ... wflash.cab
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{C377D2A2-6B28-4976-93F7-A4C0B3DC9A83} : DHCPNameServer = 192.168.1.1
Handler: inbox - {37540F19-DD4C-478B-B2DF-C19281BCAF27} - C:\Program Files (x86)\Inbox Toolbar\Inbox.dll
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
SSODL: WebCheck - <orphaned>
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\25.0.1364.152\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
x64-BHO: avast! WebRep: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
x64-BHO: Easy Photo Print: {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll
x64-BHO: Skype add-on for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-TB: Easy Photo Print: {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll
x64-TB: avast! WebRep: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
x64-Run: [IgfxTray] C:\Windows\System32\igfxtray.exe
x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe
x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe
x64-IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-Handler: inbox - {37540F19-DD4C-478B-B2DF-C19281BCAF27} - <orphaned>
x64-Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-Notify: igfxcui - igfxdev.dll
x64-SSODL: WebCheck - <orphaned>
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\David\AppData\Roaming\Mozilla\Firefox\Profiles\yhqyc8hd.default\
FF - prefs.js: browser.search.selectedEngine - Delta Search
FF - plugin: C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL
FF - plugin: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.135\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\McAfee Security Scan\3.0.318\npMcAfeeMSS.dll
FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\Windows\SysWOW64\Adobe\Director\np32dsw_1200112.dll
FF - ExtSQL: 2013-02-16 16:47; [removed]; C:\Users\David\AppData\Roaming\Mozilla\Firefox\Profiles\yhqyc8hd.default\extensions\[removed]
FF - ExtSQL: 2013-02-25 11:58; {82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}; C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
.
============= SERVICES / DRIVERS ===============
.
R0 aswRvrt;aswRvrt;C:\Windows\System32\drivers\aswRvrt.sys [2013-2-28 65408]
R0 aswVmm;aswVmm;C:\Windows\System32\drivers\aswVmm.sys [2013-2-28 177672]
R0 PxHlpa64;PxHlpa64;C:\Windows\System32\drivers\PxHlpa64.sys [2010-9-18 55024]
R1 aswKbd;aswKbd;C:\Windows\System32\drivers\aswKbd.sys [2012-10-18 19600]
R1 aswSnx;aswSnx;C:\Windows\System32\drivers\aswSnx.sys [2011-11-17 1025880]
R1 aswSP;aswSP;C:\Windows\System32\drivers\aswSP.sys [2011-11-17 377992]
R1 SASDIFSV;SASDIFSV;C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys [2011-7-22 14928]
R1 SASKUTIL;SASKUTIL;C:\Program Files\SUPERAntiSpyware\saskutil64.sys [2011-7-12 12368]
R2 !SASCORE;SAS Core Service;C:\Program Files\SUPERAntiSpyware\SASCore64.exe [2012-7-11 140672]
R2 ABBYY.Licensing.FineReader.Sprint.9.0;ABBYY FineReader 9.0 Sprint Licensing Service;C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [2009-5-14 759048]
R2 AdobeActiveFileMonitor8.0;Adobe Active File Monitor V8;C:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [2009-10-9 169312]
R2 aswFsBlk;aswFsBlk;C:\Windows\System32\drivers\aswFsBlk.sys [2011-11-17 33472]
R2 aswMonFlt;aswMonFlt;C:\Windows\System32\drivers\aswMonFlt.sys [2011-11-17 80888]
R2 avast! Antivirus;avast! Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2013-2-28 45248]
R2 BingDesktopUpdate;Bing Desktop Update service;C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe [2013-1-25 166408]
R2 cvhsvc;Client Virtualization Handler;C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE [2012-1-4 822624]
R2 EPSON_EB_RPCV4_04;EPSON V5 Service4(04);C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50STB.EXE [2011-12-16 166400]
R2 EPSON_PM_RPCV4_04;EPSON V3 Service4(04);C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE [2011-12-16 128512]
R2 Greg_Service;GRegService;C:\Program Files (x86)\Packard Bell\Registration\GregHSRW.exe [2009-8-28 1150496]
R2 NAUpdate;Nero Update;C:\Program Files (x86)\Nero\Update\NASvc.exe [2010-5-4 503080]
R2 Secunia PSI Agent;Secunia PSI Agent;C:\Program Files (x86)\Secunia\PSI\psia.exe [2012-3-30 1295416]
R2 Secunia Update Agent;Secunia Update Agent;C:\Program Files (x86)\Secunia\PSI\sua.exe [2012-3-30 681016]
R2 sftlist;Application Virtualization Client;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2011-10-1 508776]
R2 Skype C2C Service;Skype C2C Service;C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2013-1-31 3289208]
R2 Updater Service;Updater Service;C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [2010-5-7 243232]
R3 PSI;PSI;C:\Windows\System32\drivers\psi_mf.sys [2011-12-16 17976]
R3 Sftfs;Sftfs;C:\Windows\System32\drivers\Sftfslh.sys [2011-10-1 764264]
R3 Sftplay;Sftplay;C:\Windows\System32\drivers\Sftplaylh.sys [2011-10-1 268648]
R3 Sftredir;Sftredir;C:\Windows\System32\drivers\Sftredirlh.sys [2011-10-1 25960]
R3 Sftvol;Sftvol;C:\Windows\System32\drivers\Sftvollh.sys [2011-10-1 22376]
R3 sftvsa;Application Virtualization Service Agent;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2011-10-1 219496]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S3 fssfltr;fssfltr;C:\Windows\System32\drivers\fssfltr.sys [2012-4-4 48488]
S3 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2012-3-8 1492840]
S3 GamesAppService;GamesAppService;C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 JLTECH0227;Dual Mode Camera;C:\Windows\System32\drivers\jl2005c.sys [2011-9-18 79664]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2012-11-14 19456]
S3 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-2-7 161384]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2012-11-14 57856]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2011-1-6 1255736]
S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184]
.
=============== Created Last 30 ================
.
2013-03-08 13:09:25 -------- dc----w- C:\Users\David\AppData\Roaming\SUPERAntiSpyware.com
2013-03-08 13:09:19 -------- dc----w- C:\ProgramData\SUPERAntiSpyware.com
2013-03-08 13:09:19 -------- dc----w- C:\Program Files\SUPERAntiSpyware
2013-03-05 20:20:50 9162192 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{96F218F8-6F22-40EC-AB24-C8A84580E7BF}\mpengine.dll
2013-03-02 19:28:47 -------- dc----w- C:\ProgramData\Symantec
2013-03-02 19:28:25 -------- dc----w- C:\Windows\System32\drivers\NSSx64\0307050.005
2013-03-02 19:28:25 -------- dc----w- C:\Windows\System32\drivers\NSSx64
2013-03-02 19:28:25 -------- dc----w- C:\Program Files (x86)\Norton Security Scan
2013-03-02 19:28:19 -------- dc----w- C:\Program Files (x86)\NortonInstaller
2013-03-02 17:27:38 -------- dc----w- C:\Windows\SysWow64\Adobe
2013-03-02 17:24:42 263064 -c--a-w- C:\Program Files (x86)\Mozilla Firefox\components\browsercomps.dll
2013-02-28 21:52:56 177672 -c--a-w- C:\Windows\System32\drivers\aswVmm.sys
2013-02-28 21:52:54 65408 -c--a-w- C:\Windows\System32\drivers\aswRvrt.sys
2013-02-27 01:47:43 9728 ---ha-w- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-02-27 01:18:15 -------- dc----w- C:\Users\David\AppData\Local\{75C1A19C-8CE0-4FB6-967A-57171DA75939}
2013-02-20 19:15:11 -------- dcsh--w- C:\$RECYCLE.BIN
2013-02-20 18:48:29 98816 -c--a-w- C:\Windows\sed.exe
2013-02-20 18:48:29 256000 -c--a-w- C:\Windows\PEV.exe
2013-02-20 18:48:29 208896 -c--a-w- C:\Windows\MBR.exe
2013-02-20 18:15:00 12872 -c--a-w- C:\Windows\System32\bootdelete.exe
2013-02-20 18:08:34 -------- dc----w- C:\ProgramData\HitmanPro
2013-02-20 16:46:28 388096 -c--a-r- C:\Users\David\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2013-02-20 16:46:28 -------- dc----w- C:\Program Files (x86)\Trend Micro
2013-02-18 20:59:31 -------- dc----w- C:\Program Files (x86)\Inbox Toolbar
2013-02-17 11:21:38 -------- dc----w- C:\Program Files (x86)\MyPC Backup
2013-02-16 16:47:10 -------- dc----w- C:\Users\David\AppData\Local\Mozilla
2013-02-16 16:47:01 -------- dc----w- C:\Program Files (x86)\Mozilla Maintenance Service
2013-02-16 16:06:26 -------- dc----w- C:\Program Files (x86)\Yahoo!
2013-02-16 16:06:21 -------- dc----w- C:\Program Files (x86)\IObit
2013-02-16 15:53:46 -------- dc----w- C:\Users\David\AppData\Local\LogMeIn Rescue Applet
2013-02-16 15:06:58 -------- dc----w- C:\Users\David\AppData\Local\{955CA103-8257-4387-87F5-1B48DD211832}
2013-02-16 07:24:42 72624 ----a-w- C:\Program Files\Internet Explorer\pdmproxy100.dll
2013-02-16 07:24:42 70568 ----a-w- C:\Program Files (x86)\Internet Explorer\pdmproxy100.dll
2013-02-16 07:24:42 514952 ----a-w- C:\Program Files\Internet Explorer\pdm.dll
2013-02-16 07:24:42 392080 ----a-w- C:\Program Files (x86)\Internet Explorer\pdm.dll
2013-02-16 07:24:42 368024 ----a-w- C:\Program Files\Internet Explorer\msdbg2.dll
2013-02-16 07:24:42 285080 ----a-w- C:\Program Files (x86)\Internet Explorer\msdbg2.dll
2013-02-13 00:34:51 -------- dc----w- C:\Users\David\AppData\Local\Giant Savings Extension
2013-02-13 00:34:40 -------- dc----w- C:\Windows\SysWow64\searchplugins
2013-02-13 00:34:40 -------- dc----w- C:\Windows\SysWow64\Extensions
2013-02-13 00:34:32 -------- dc----w- C:\Program Files (x86)\Giant Savings Extension
2013-02-13 00:33:51 -------- dc----w- C:\Users\David\AppData\Roaming\Babylon
2013-02-13 00:33:51 -------- dc----w- C:\ProgramData\Babylon
2013-02-13 00:13:53 215040 ----a-w- C:\Windows\System32\winsrv.dll
2013-02-13 00:13:52 7680 ----a-w- C:\Windows\SysWow64\instnm.exe
2013-02-13 00:13:52 5120 ----a-w- C:\Windows\SysWow64\wow32.dll
2013-02-13 00:13:52 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
2013-02-13 00:13:52 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll
2013-02-13 00:13:51 2048 ----a-w- C:\Windows\SysWow64\user.exe
2013-02-13 00:13:44 5553512 ----a-w- C:\Windows\System32\ntoskrnl.exe
2013-02-13 00:13:43 3967848 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2013-02-13 00:13:43 3913064 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2013-02-13 00:13:41 3153408 ----a-w- C:\Windows\System32\win32k.sys
2013-02-13 00:13:39 288088 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS
2013-02-13 00:13:39 1913192 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2013-02-07 23:40:01 -------- dc----w- C:\ProgramData\Systweak
.
==================== Find3M ====================
.
2013-02-28 08:36:33 71064 -c--a-w- C:\Windows\System32\drivers\aswRdr2.sys
2013-02-28 08:36:33 1025880 -c--a-w- C:\Windows\System32\drivers\aswSnx.sys
2013-02-28 08:36:32 80888 -c--a-w- C:\Windows\System32\drivers\aswMonFlt.sys
2013-02-28 08:36:07 41664 -c--a-w- C:\Windows\avastSS.scr
2013-02-28 00:29:30 71024 -c--a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2013-02-28 00:29:30 691568 -c--a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2013-02-27 01:48:59 92160 ----a-w- C:\Windows\System32\SetIEInstalledDate.exe
2013-02-27 01:47:43 9728 ---ha-w- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-02-13 00:16:04 44032 ----a-w- C:\Windows\apppatch\acwow64.dll
2013-01-29 18:17:34 20336 -c--a-w- C:\Windows\System32\roboot64.exe
2013-01-17 01:28:58 273840 -c----w- C:\Windows\System32\MpSigStub.exe
2013-01-08 21:53:32 750592 ----a-w- C:\Windows\System32\win32spl.dll
2013-01-08 21:53:32 492032 ----a-w- C:\Windows\SysWow64\win32spl.dll
2012-12-20 20:05:25 46080 ----a-w- C:\Windows\System32\atmlib.dll
2012-12-20 20:05:25 367616 ----a-w- C:\Windows\System32\atmfd.dll
2012-12-20 20:05:25 34304 ----a-w- C:\Windows\SysWow64\atmlib.dll
2012-12-20 20:05:25 295424 ----a-w- C:\Windows\SysWow64\atmfd.dll
2012-12-14 16:49:28 24176 -c--a-w- C:\Windows\System32\drivers\mbam.sys
2012-12-12 01:29:22 2048 ----a-w- C:\Windows\SysWow64\tzres.dll
2012-12-12 01:29:22 2048 ----a-w- C:\Windows\System32\tzres.dll
2012-12-12 01:26:32 478208 ----a-w- C:\Windows\System32\dpnet.dll
2012-12-12 01:26:32 376832 ----a-w- C:\Windows\SysWow64\dpnet.dll
.
============= FINISH: 14:27:09.55 ===============
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume2
Install Date: 06/01/2011 13:59:42
System Uptime: 08/03/2013 13:55:12 (1 hours ago)
.
Motherboard: Packard Bell | | Veriton M275
Processor: Pentium(R) Dual-Core CPU E5700 @ 3.00GHz | CPU 1 | 3003/200mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 224 GiB total, 182.322 GiB free.
D: is FIXED (NTFS) - 225 GiB total, 160.796 GiB free.
E: is CDROM (CDFS)
F: is Removable
G: is Removable
H: is Removable
I: is Removable
K: is Removable
L: is Removable
M: is Removable
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP916: 01/03/2013 21:50:09 - Windows Backup
RP917: 02/03/2013 20:34:22 - Windows Backup
RP918: 03/03/2013 13:03:28 - Windows Backup
RP919: 03/03/2013 23:44:15 - Windows Backup
RP920: 04/03/2013 01:38:54 - Windows Backup
RP921: 05/03/2013 20:20:06 - Windows Update
RP922: 06/03/2013 01:23:24 - Windows Backup
RP923: 07/03/2013 04:37:14 - Windows Backup
RP924: 07/03/2013 23:43:02 - Windows Backup
.
==== Installed Programs ======================
.
ABBYY FineReader 9.0 Sprint
Acrobat.com
Adobe AIR
Adobe Flash Player 11 ActiveX
Adobe Photoshop Elements 8.0
Adobe Reader XI (11.0.02)
Adobe Shockwave Player 12.0
Advanced File Optimizer
Advanced System Protector
Advertising Center
ArcSoft PhotoStudio 5.5
Ask Toolbar
avast! Free Antivirus
Ballistik
Bejeweled 2 Deluxe
Bing Desktop
Blasterball 3
Bob the Builder Can-Do-Zoo
Boom Voyage
Build-a-lot 2
Canon MP Navigator EX 2.0
Canon Utilities Solution Menu
CanoScan LiDE 100 Scanner Driver
CCleaner
Chicken Invaders 3 - Revenge of the Yolk
Coupon Printer
D3DX10
eBay Worldwide
Epson Easy Photo Print 2
Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser)
Epson Event Manager
EPSON Scan
EPSON SX218 Series Manual
EPSON SX218 Series Printer Uninstall
Escape Rosecliff Island
ESET Online Scanner v3
Faerie Solitaire
FATE - The Traitor Soul
File Type Assistant
FileHippo.com Update Checker
Free File Viewer 2011
Giant Savings Extension
Google Chrome
Google Earth
Google Earth Plug-in
Google Update Helper
HiJackThis
HiYo
HiYo
Hotkey Utility
Identity Card
ImagXpress
Inbox Toolbar
Insaniquarium Deluxe
InstallIQ Updater
Intel(R) Control Center
Intel(R) Graphics Media Accelerator Driver
Internet TV for Windows Media Center
Jewel Quest
Jewel Quest Solitaire 3
Junk Mail filter update
Magentic
Mahjongg Artifacts
Malwarebytes Anti-Malware version 1.70.0.1100
Mesh Runtime
Messenger Companion
Microsoft .NET Framework 4 Client Profile
Microsoft Application Error Reporting
Microsoft Office 2010
Microsoft Office Click-to-Run 2010
Microsoft Office Starter 2010 - English
Microsoft PowerPoint Viewer
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Mozilla Firefox 19.0 (x86 en-US)
Mozilla Maintenance Service
MSVCRT
MSVCRT_amd64
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 4.0 SP3 Parser
MSXML 4.0 SP3 Parser (KB2721691)
MSXML 4.0 SP3 Parser (KB2758694)
Nero 9 Essentials
Nero BurnLite 10
Nero Control Center 10
Nero ControlCenter
Nero ControlCenter 10 Help (CHM)
Nero Core Components 10
Nero DiscSpeed
Nero DiscSpeed Help
Nero DriveSpeed
Nero DriveSpeed Help
Nero Express Help
Nero InfoTool
Nero InfoTool Help
Nero Installer
Nero Online Upgrade
Nero StartSmart
Nero StartSmart Help
Nero StartSmart OEM
Nero Update
NeroExpress
neroxml
Norton Security Scan
Packard Bell Game Console
Packard Bell Games
Packard Bell InfoCentre
Packard Bell Recovery Management
Packard Bell Registration
Packard Bell ScreenSaver
Packard Bell Software Suite SE
Packard Bell Updater
Penguins!
Picasa 3
Polar Bowler
Polar Golfer
Polar Pool
Realtek High Definition Audio Driver
Secunia PSI (3.0.0.0006)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2160841)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)
Skype Click to Call
Skype™ 6.2
SkyPlayer for Windows Media Center
SUPERAntiSpyware
swMSM
Treasures of the Deep
Uninstall Dual Mode Camera
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2473228)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
Update Installer for WildTangent Games App
Utility Chest Toolbar
Virtual Families
Virtual Villagers - A New Home
Visual Studio 2008 x64 Redistributables
Welcome Center
WildTangent Games App (Packard Bell Games)
Windows Live Communications Platform
Windows Live Essentials
Windows Live Family Safety
Windows Live ID Sign-in Assistant
Windows Live Installer
Windows Live Language Selector
Windows Live Mail
Windows Live Mesh
Windows Live Mesh ActiveX Control for Remote Connections
Windows Live Messenger
Windows Live Messenger Companion Core
Windows Live MIME IFilter
Windows Live Movie Maker
Windows Live Photo Common
Windows Live Photo Gallery
Windows Live PIMT Platform
Windows Live Remote Client
Windows Live Remote Client Resources
Windows Live Remote Service
Windows Live Remote Service Resources
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live Sync
Windows Live UX Platform
Windows Live UX Platform Language Pack
Windows Live Writer
Windows Live Writer Resources
WinPatrol
Yahoo! Toolbar
Yahtzee
Zuma Deluxe
.
==== Event Viewer Messages From Past Week ========
.
08/03/2013 13:54:32, Error: volmgr [46] - Crash dump initialization failed!
07/03/2013 03:46:37, Error: Service Control Manager [7022] - The Windows Update service hung on starting.
02/03/2013 21:32:09, Error: Service Control Manager [7031] - The Windows Search service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service.
02/03/2013 21:32:09, Error: Service Control Manager [7024] - The Windows Search service terminated with service-specific error %%-1073473535.
02/03/2013 16:17:49, Error: Microsoft-Windows-Bits-Client [16398] - A new BITS job could not be created. The current job count for the user David-PC\David (60) is equal to or greater than the job limit (60) specified through group policy. To correct the problem, complete or cancel the BITS jobs that haven't made progress by looking at the error, and restart the BITS service. If this error recurs, contact your system administrator and increate the per-user and per-computer Group Policy job limits.
.
==== End Of File ===========================
text box. Do not include the word Code




, then save the file to your desktop as ESETScan.txt.