Jump to content


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.

Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

slow computer


  • This topic is locked This topic is locked
4 replies to this topic

#1 dittohead2

dittohead2

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:08:39 PM

Posted 17 March 2012 - 12:29 AM

.
DDS (Ver_2011-08-26.01) - NTFSAMD64
Internet Explorer: 9.0.8112.16421
Run by Jim at 1:15:33 on 2012-03-17
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.5943.3812 [GMT -4:00]
.
AV: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {86355677-4064-3EA7-ABB3-1B136EB04637}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {3D54B793-665E-3129-9103-206115370C8A}
FW: McAfee Firewall *Enabled* {BE0ED752-0A0B-3FFF-80EC-B2269063014C}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_58afa5ca50c7b5e7\STacSV64.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe
C:\Windows\system32\conhost.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskhost.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_58afa5ca50c7b5e7\AESTSr64.exe
C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\IDT\WDM\sttray64.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
C:\Windows\system32\dleacoms.exe
C:\Program Files\Intel\WiFi\bin\EvtEng.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe
C:\Program Files (x86)\Common Files\Motive\McciCMService.exe
C:\Program Files (x86)\Dell V310-V510 Series\dleamon.exe
C:\Program Files (x86)\Dell V310-V510 Series\ezprint.exe
C:\Program Files\ATT-SST\McciTrayApp.exe
C:\Program Files (x86)\Windows Live\Family Safety\fsui.exe
C:\Program Files\Common Files\Motive\McciCMService.exe
C:\Windows\system32\mfevtps.exe
C:\Program Files (x86)\Novatel Wireless\Novacore\Server\NvtlSrvr.exe
C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files (x86)\AWS\WeatherBug\Weather.exe
C:\Users\Jim\AppData\Roaming\BTLive\BTLive.exe
C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
C:\Program Files (x86)\Common Files\AOL\1302189883\ee\aolsoftware.exe
C:\Users\Jim\AppData\Roaming\BTLive\BTLive.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Windows\twain_32\Dell\DELL1135\Scan2Pc.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
C:\Program Files (x86)\Common Files\Motive\McciContextHookShim.exe
C:\Windows\System32\alg.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\DllHost.exe
C:\Program Files (x86)\Common Files\Intuit\Update Service\IntuitUpdateService.exe
C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe
C:\Program Files (x86)\Common Files\AOL\ACS\AOLAcsd.exe
C:\Windows\explorer.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files\Carbonite\Carbonite Backup\carboniteservice.exe
C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteUI.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Program Files\McAfee.com\Agent\mcagent.exe
C:\Program Files (x86)\AOL Desktop 9.7\waol.exe
C:\Program Files (x86)\AOL Desktop 9.7\shellmon.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashUtil11g_ActiveX.exe
C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\cscript.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.facebook.com/
uInternet Settings,ProxyOverride = *.local
uURLSearchHooks: H - No File
mWinlogon: Userinit=userinit.exe
BHO: {02478D38-C3F9-4efb-9B51-7695ECA05670} - No File
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: RoboForm Toolbar Helper: {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
BHO: scriptproxy: {7db2d5a0-7241-4e79-b68d-6309f01c5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20110513071542.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Windows Live Messenger Companion Helper: {9fdde16b-836f-4806-ab1f-1455cbeff289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
BHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
BHO: Yontoo Layers: {fd72061e-9fde-484d-a58a-0bab4151cad8} - C:\Program Files (x86)\Yontoo Layers Client\YontooIEClient.dll
TB: &RoboForm Toolbar: {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
uRun: [Weather] C:\Program Files (x86)\AWS\WeatherBug\Weather.exe 1
uRun: [BTLive] C:\Users\Jim\AppData\Roaming\BTLive\BTLive.exe
uRun: [RoboForm] "C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
uRun: [AOL Fast Start] "C:\Program Files (x86)\AOL Desktop 9.7\AOL.EXE" -b
mRun: [HostManager] C:\Program Files (x86)\Common Files\AOL\1302189883\ee\AOLSoftware.exe
mRun: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
mRun: [Dell V310-V510 Series] "C:\Program Files (x86)\Dell V310-V510 Series\fm3032.exe" /s
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [Desktop Disc Tool] "C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe"
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun: [1135n Scan2PC] "C:\Windows\twain_32\Dell\DELL1135\Scan2Pc.exe"
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [Carbonite Backup] C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteUI.exe
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: Customize Menu - file://C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
IE: Fill Forms - file://C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html
IE: RoboForm Editor - file://C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComEditIdent.html
IE: Save Forms - file://C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html
IE: Se&nd to OneNote - C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
IE: Show RoboForm Toolbar - file://C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
IE: SmarThru4 Capture Selection - C:\Program Files (x86)\SmarThru 4\WebCapture.dll2.htm
IE: SmarThru4 Save as HTML - C:\Program Files (x86)\SmarThru 4\WebCapture.dll1.htm
IE: SmarThru4 Save Selected Text - C:\Program Files (x86)\SmarThru 4\WebCapture.dll.htm
IE: SmarThru4 Web Capture - C:\Program Files (x86)\SmarThru 4\WebCapture.dll
IE: {FA9B9510-9FCB-4ca0-818C-5D0987B47C4D} - C:\Program Files (x86)\PokerStars.NET\PokerStarsUpdate.exe
IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
IE: {320AF880-6646-11D3-ABEE-C5DBF3571F46} - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
IE: {320AF880-6646-11D3-ABEE-C5DBF3571F49} - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
IE: {45DB34C3-955C-11D3-ABEF-444553540001} - {45DB34C3-955C-11D3-ABEF-444553540001} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
IE: {724d43aa-0d85-11d4-9908-00400523e39a} - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
Trusted Zone: $talisma_url$
Trusted Zone: intuit.com\ttlc
DPF: Garmin Communicator Plug-In - hxxps://static.garmincdn.com/gcp/ie/3.0.1.0/GarminAxControl.CAB
DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} - hxxp://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab
DPF: {233C1507-6A77-46A4-9443-F871F945D258} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files (x86)\Yahoo!\Common\Yinsthelper.dll
DPF: {49312E18-AA92-4CC2-BB97-55DEA7BCADD6} - hxxp://support.dell.com/systemprofiler/SysProExe.CAB
DPF: {682C59F5-478C-4421-9070-AD170D143B77} - hxxp://dell.com/support/troubleshooting/Content/Ode/pcd86.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab
DPF: {99FE5072-78AA-4FEE-89BA-69A5FA55343F} - hxxp://download.microsoft.com/download/B/3/A/B3A2EA73-793D-4ABE-992D-C81140384044/igdtoolx.cab
DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab
DPF: {E0FEE963-BB53-4215-81AD-B28C77384644} - hxxps://pattcw.att.motive.com/wizlet/DSLActivation/static/installer/ATTInternetInstaller64.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: DhcpNameServer = 192.168.7.254
TCP: Interfaces\{2994EB92-918F-4804-89DB-EBECEA56E482} : DhcpNameServer = 192.168.7.254
TCP: Interfaces\{2994EB92-918F-4804-89DB-EBECEA56E482}\647496563756E6D27657563747 : DhcpNameServer = 24.56.222.68 24.56.222.69
TCP: Interfaces\{2994EB92-918F-4804-89DB-EBECEA56E482}\84160707977596C6C6F677D27657563747 : DhcpNameServer = 192.168.7.254
TCP: Interfaces\{BBB7B936-70BE-41EE-B1A3-94181CD1CD8A} : DhcpNameServer = 192.168.7.254
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
Handler: x-owacid - {0215258f-f0a8-49de-bf1b-0ff02eda8807} - C:\Program Files (x86)\Microsoft\Outlook Web Access SMIME Client\mimectl.dll
BHO-X64: {02478D38-C3F9-4efb-9B51-7695ECA05670} - No File
BHO-X64: 0x1 - No File
BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO-X64: AcroIEHelperStub - No File
BHO-X64: RoboForm Toolbar Helper: {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
BHO-X64: RoboForm BHO - No File
BHO-X64: scriptproxy: {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20110513071542.dll
BHO-X64: scriptproxy - No File
BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO-X64: Windows Live Messenger Companion Helper: {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
BHO-X64: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
BHO-X64: URLRedirectionBHO - No File
BHO-X64: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
BHO-X64: Yontoo Layers: {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo Layers Client\YontooIEClient.dll
BHO-X64: Yontoo Layers - No File
TB-X64: &RoboForm Toolbar: {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
mRun-x64: [HostManager] C:\Program Files (x86)\Common Files\AOL\1302189883\ee\AOLSoftware.exe
mRun-x64: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
mRun-x64: [Dell V310-V510 Series] "C:\Program Files (x86)\Dell V310-V510 Series\fm3032.exe" /s
mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun-x64: [Desktop Disc Tool] "C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe"
mRun-x64: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun-x64: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun-x64: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun-x64: [1135n Scan2PC] "C:\Windows\twain_32\Dell\DELL1135\Scan2Pc.exe"
mRun-x64: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun-x64: [Carbonite Backup] C:\Program Files (x86)\Carbonite\Carbonite Backup\CarboniteUI.exe
IE-X64: {FA9B9510-9FCB-4ca0-818C-5D0987B47C4D} - C:\Program Files (x86)\PokerStars.NET\PokerStarsUpdate.exe
.
============= SERVICES / DRIVERS ===============
.
R0 mfehidk;McAfee Inc. mfehidk;C:\Windows\system32\drivers\mfehidk.sys --> C:\Windows\system32\drivers\mfehidk.sys [?]
R0 mfewfpk;McAfee Inc. mfewfpk;C:\Windows\system32\drivers\mfewfpk.sys --> C:\Windows\system32\drivers\mfewfpk.sys [?]
R0 PxHlpa64;PxHlpa64;C:\Windows\system32\Drivers\PxHlpa64.sys --> C:\Windows\system32\Drivers\PxHlpa64.sys [?]
R1 mfenlfk;McAfee NDIS Light Filter;C:\Windows\system32\DRIVERS\mfenlfk.sys --> C:\Windows\system32\DRIVERS\mfenlfk.sys [?]
R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys --> C:\Windows\system32\DRIVERS\vwififlt.sys [?]
R2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-1-3 63928]
R2 AESTFilters;Andrea ST Filters Service;C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_58afa5ca50c7b5e7\AESTSr64.exe [2011-3-30 89600]
R2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed Service;C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [2011-8-31 1166848]
R2 BTHSSecurityMgr;Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed Security Service;C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2011-6-3 134928]
R2 cvhsvc;Client Virtualization Handler;C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE [2012-1-4 822624]
R2 dlea_device;dlea_device;C:\Windows\system32\dleacoms.exe -service --> C:\Windows\system32\dleacoms.exe -service [?]
R2 fssfltr;fssfltr;C:\Windows\system32\DRIVERS\fssfltr.sys --> C:\Windows\system32\DRIVERS\fssfltr.sys [?]
R2 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2011-5-13 1492840]
R2 IntuitUpdateServiceV4;Intuit Update Service v4;C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe [2011-8-25 13672]
R2 McciCMService64;McciCMService64;C:\Program Files\Common Files\Motive\McciCMService.exe [2011-8-18 517632]
R2 McMPFSvc;McAfee Personal Firewall Service;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2011-5-7 355440]
R2 McNaiAnn;McAfee VirusScan Announcer;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2011-5-7 355440]
R2 McProxy;McAfee Proxy Service;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2011-5-7 355440]
R2 McShield;McShield;C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe [2011-5-7 200056]
R2 mfefire;McAfee Firewall Core Service;C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe [2011-5-7 245352]
R2 mfevtp;McAfee Validation Trust Protection Service;"C:\Windows\system32\mfevtps.exe" --> C:\Windows\system32\mfevtps.exe [?]
R2 NvtlService;NovaCore SDK Service;C:\Program Files (x86)\Novatel Wireless\Novacore\Server\NvtlSrvr.exe [2009-8-24 82432]
R2 sftlist;Application Virtualization Client;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2011-10-1 508776]
R2 SSPORT;SSPORT;\??\C:\Windows\system32\Drivers\SSPORT.sys --> C:\Windows\system32\Drivers\SSPORT.sys [?]
R3 AMPPAL;Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed Virtual Adapter;C:\Windows\system32\DRIVERS\AMPPAL.sys --> C:\Windows\system32\DRIVERS\AMPPAL.sys [?]
R3 cfwids;McAfee Inc. cfwids;C:\Windows\system32\drivers\cfwids.sys --> C:\Windows\system32\drivers\cfwids.sys [?]
R3 CtClsFlt;Creative Camera Class Upper Filter Driver;C:\Windows\system32\DRIVERS\CtClsFlt.sys --> C:\Windows\system32\DRIVERS\CtClsFlt.sys [?]
R3 HECIx64;Intel® Management Engine Interface;C:\Windows\system32\DRIVERS\HECIx64.sys --> C:\Windows\system32\DRIVERS\HECIx64.sys [?]
R3 Impcd;Impcd;C:\Windows\system32\DRIVERS\Impcd.sys --> C:\Windows\system32\DRIVERS\Impcd.sys [?]
R3 IntcDAud;Intel® Display Audio;C:\Windows\system32\DRIVERS\IntcDAud.sys --> C:\Windows\system32\DRIVERS\IntcDAud.sys [?]
R3 mfeavfk;McAfee Inc. mfeavfk;C:\Windows\system32\drivers\mfeavfk.sys --> C:\Windows\system32\drivers\mfeavfk.sys [?]
R3 mfefirek;McAfee Inc. mfefirek;C:\Windows\system32\drivers\mfefirek.sys --> C:\Windows\system32\drivers\mfefirek.sys [?]
R3 NETwNs64;___ Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit;C:\Windows\system32\DRIVERS\NETwNs64.sys --> C:\Windows\system32\DRIVERS\NETwNs64.sys [?]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\system32\DRIVERS\Rt64win7.sys --> C:\Windows\system32\DRIVERS\Rt64win7.sys [?]
R3 Sftfs;Sftfs;C:\Windows\system32\DRIVERS\Sftfslh.sys --> C:\Windows\system32\DRIVERS\Sftfslh.sys [?]
R3 Sftplay;Sftplay;C:\Windows\system32\DRIVERS\Sftplaylh.sys --> C:\Windows\system32\DRIVERS\Sftplaylh.sys [?]
R3 Sftredir;Sftredir;C:\Windows\system32\DRIVERS\Sftredirlh.sys --> C:\Windows\system32\DRIVERS\Sftredirlh.sys [?]
R3 Sftvol;Sftvol;C:\Windows\system32\DRIVERS\Sftvollh.sys --> C:\Windows\system32\DRIVERS\Sftvollh.sys [?]
R3 sftvsa;Application Virtualization Service Agent;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2011-10-1 219496]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service;C:\Windows\system32\DRIVERS\vwifimp.sys --> C:\Windows\system32\DRIVERS\vwifimp.sys [?]
R3 wdkmd;Intel WiDi KMD;C:\Windows\system32\DRIVERS\WDKMD.sys --> C:\Windows\system32\DRIVERS\WDKMD.sys [?]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 dleaCATSCustConnectService;dleaCATSCustConnectService;C:\Windows\System32\spool\DRIVERS\x64\3\dleaserv.exe [2009-7-1 33448]
S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-4-7 136176]
S3 AMPPALP;Intel® Centrino® Wireless Bluetooth® 3.0 + High Speed Protocol;C:\Windows\system32\DRIVERS\amppal.sys --> C:\Windows\system32\DRIVERS\amppal.sys [?]
S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-4-7 136176]
S3 mferkdet;McAfee Inc. mferkdet;C:\Windows\system32\drivers\mferkdet.sys --> C:\Windows\system32\drivers\mferkdet.sys [?]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2011-7-27 340240]
S3 NETw5s64;Intel® Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit;C:\Windows\system32\DRIVERS\NETw5s64.sys --> C:\Windows\system32\DRIVERS\NETw5s64.sys [?]
S3 NWVMModem;Virgin Mobile USB Modem Driver;C:\Windows\system32\DRIVERS\nwvmmdm.sys --> C:\Windows\system32\DRIVERS\nwvmmdm.sys [?]
S3 NWVMPort;Virgin Mobile USB Status Port Driver;C:\Windows\system32\DRIVERS\nwvmser.sys --> C:\Windows\system32\DRIVERS\nwvmser.sys [?]
S3 NWVMPort2;Virgin Mobile USB Status2 Port Driver;C:\Windows\system32\DRIVERS\nwvmser2.sys --> C:\Windows\system32\DRIVERS\nwvmser2.sys [?]
S3 osppsvc;Office Software Protection Platform;C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-1-9 4925184]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\system32\Drivers\RtsUStor.sys --> C:\Windows\system32\Drivers\RtsUStor.sys [?]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys --> C:\Windows\system32\drivers\tsusbflt.sys [?]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
S3 WSDPrintDevice;WSD Print Support via UMB;C:\Windows\system32\DRIVERS\WSDPrint.sys --> C:\Windows\system32\DRIVERS\WSDPrint.sys [?]
S4 TivoBeacon2;TiVo Beacon Service;C:\Program Files (x86)\TiVo\Desktop\TiVoBeacon.exe [2010-8-24 1104656]
.
=============== Created Last 30 ================
.
2012-03-17 05:05:07 388096 ----a-r- C:\Users\Jim\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2012-03-17 05:05:06 -------- d-----w- C:\Program Files (x86)\Trend Micro
2012-03-17 03:56:05 -------- d-----w- C:\Users\Jim\AppData\Local\{2953CA3A-2EBF-4E5E-AD64-193D7F26541C}
2012-03-16 15:55:40 -------- d-----w- C:\Users\Jim\AppData\Local\{04B19BBC-ECB0-4E0A-8770-FC092AEC8CFC}
2012-03-16 05:09:01 -------- d-----w- C:\Program Files\Carbonite
2012-03-16 05:08:21 -------- d-----w- C:\ProgramData\Carbonite
2012-03-16 05:08:21 -------- d-----w- C:\Program Files (x86)\Carbonite
2012-03-16 03:55:12 -------- d-----w- C:\Users\Jim\AppData\Local\{EBE2DFC0-E1F7-4F6F-ADDB-FCDAB78CC18E}
2012-03-16 03:55:01 -------- d-----w- C:\Users\Jim\AppData\Local\{DDD07CCF-F818-4A25-B026-6D65E53E6DAF}
2012-03-15 15:54:36 -------- d-----w- C:\Users\Jim\AppData\Local\{DC40F9E6-29C4-455F-9BFF-42BA082E8ED8}
2012-03-15 03:54:13 -------- d-----w- C:\Users\Jim\AppData\Local\{21BB2AE1-B695-42EE-92A7-4E0BFC191E7A}
2012-03-15 03:54:02 -------- d-----w- C:\Users\Jim\AppData\Local\{402052A9-F15B-49F1-93C6-FBEB9C062EE8}
2012-03-14 15:53:37 -------- d-----w- C:\Users\Jim\AppData\Local\{858208EE-D7D5-47BA-8D7A-86AD1C15E3A7}
2012-03-14 03:52:48 -------- d-----w- C:\Users\Jim\AppData\Local\{19C06503-8DE4-4D61-8CAE-2153641CBEF0}
2012-03-14 03:52:34 -------- d-----w- C:\Users\Jim\AppData\Local\{2B7672B6-E44F-4657-8A59-F3D0C937E42C}
2012-03-14 03:05:12 5559152 ----a-w- C:\Windows\System32\ntoskrnl.exe
2012-03-14 03:05:11 3968368 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2012-03-14 03:05:11 3913584 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2012-03-14 00:03:35 3145728 ----a-w- C:\Windows\System32\win32k.sys
2012-03-14 00:03:32 1544192 ----a-w- C:\Windows\System32\DWrite.dll
2012-03-14 00:03:32 1077248 ----a-w- C:\Windows\SysWow64\DWrite.dll
2012-03-13 17:08:49 9216 ----a-w- C:\Windows\System32\rdrmemptylst.exe
2012-03-13 17:08:49 77312 ----a-w- C:\Windows\System32\rdpwsx.dll
2012-03-13 17:08:49 149504 ----a-w- C:\Windows\System32\rdpcorekmts.dll
2012-03-13 17:08:46 826880 ----a-w- C:\Windows\SysWow64\rdpcore.dll
2012-03-13 17:08:46 23552 ----a-w- C:\Windows\System32\drivers\tdtcp.sys
2012-03-13 17:08:46 210944 ----a-w- C:\Windows\System32\drivers\rdpwd.sys
2012-03-13 17:08:46 1031680 ----a-w- C:\Windows\System32\rdpcore.dll
2012-03-13 15:52:07 -------- d-----w- C:\Users\Jim\AppData\Local\{7825993C-9BA4-4E71-9FC2-EF7032E2588C}
2012-03-13 03:51:41 -------- d-----w- C:\Users\Jim\AppData\Local\{328E105E-D9F9-498A-8F26-97B3C78D58D4}
2012-03-12 15:51:18 -------- d-----w- C:\Users\Jim\AppData\Local\{12DFEC9E-9E98-4C84-A40F-41D9B3881A0D}
2012-03-12 15:51:07 -------- d-----w- C:\Users\Jim\AppData\Local\{235930C2-11C4-4391-B63D-4B85DA864A75}
2012-03-12 02:43:17 -------- d-----w- C:\Users\Jim\AppData\Local\{EF502348-A4EA-4679-AE55-22816DB2789B}
2012-03-12 02:43:07 -------- d-----w- C:\Users\Jim\AppData\Local\{E9C19ECF-9499-4BB4-A87F-BA70FD2071EA}
2012-03-11 12:08:08 -------- d-----w- C:\Users\Jim\AppData\Local\{CDF6B515-B790-4B91-8C66-F0C71D06D957}
2012-03-10 06:22:48 -------- d-----w- C:\Users\Jim\AppData\Local\{95C09E8D-354D-4E0A-9F36-61DF7720A02A}
2012-03-10 06:22:37 -------- d-----w- C:\Users\Jim\AppData\Local\{8FBB6EEB-FC48-41A2-A8C1-51D20F4010F1}
2012-03-09 17:11:38 -------- d-----w- C:\Users\Jim\AppData\Local\{1917DF33-0E03-414A-9BB5-ABA1FDFDA263}
2012-03-09 05:11:14 -------- d-----w- C:\Users\Jim\AppData\Local\{93FDCC27-DA34-44C2-BD41-CEFC86FB1F24}
2012-03-08 17:10:51 -------- d-----w- C:\Users\Jim\AppData\Local\{901176C3-4EBC-4A6B-BA21-6ECEFAE5987C}
2012-03-08 13:12:36 -------- d-----w- C:\Program Files\iPod
2012-03-08 13:12:35 -------- d-----w- C:\Program Files\iTunes
2012-03-08 13:12:35 -------- d-----w- C:\Program Files (x86)\iTunes
2012-03-08 04:07:11 -------- d-----w- C:\Users\Jim\AppData\Local\{67E3BDF2-C8E6-48D6-BE98-2D6EB4BD5529}
2012-03-07 09:48:09 -------- d-----w- C:\Users\Jim\AppData\Local\{B941B6DF-FFC3-46A8-9CEB-54F301B3184A}
2012-03-06 21:47:43 -------- d-----w- C:\Users\Jim\AppData\Local\{8450B39A-DFAA-4A13-BAD1-B365995ED7E0}
2012-03-06 07:01:41 -------- d-----w- C:\Users\Jim\AppData\Local\{22185107-6146-4808-A18B-02EF77C6D0F0}
2012-03-06 07:01:30 -------- d-----w- C:\Users\Jim\AppData\Local\{6432641E-1F17-4F3B-8FC0-DDE023198727}
2012-03-05 20:00:05 -------- d-----w- C:\Program Files (x86)\Intel Corporation
2012-03-05 20:00:05 -------- d-----w- C:\Program Files (x86)\Common Files\Intel Corporation
2012-03-05 19:54:44 -------- d-----w- C:\Users\Jim\AppData\Local\Intel
2012-03-05 19:01:02 -------- d-----w- C:\Users\Jim\AppData\Local\{103D7D53-8C60-48A2-897A-FC502736B275}
2012-03-05 07:00:33 -------- d-----w- C:\Users\Jim\AppData\Local\{53B3E5FF-90DE-4759-9EEE-6178F0F44310}
2012-03-05 07:00:22 -------- d-----w- C:\Users\Jim\AppData\Local\{0188F334-463C-48A8-9627-1ED2E4897D36}
2012-03-05 05:13:22 -------- d-----w- C:\Users\Jim\AppData\Roaming\Intel
2012-03-05 05:13:14 -------- d-----w- C:\Users\Jim\Roaming
2012-03-05 05:13:14 -------- d-----w- C:\ProgramData\Roaming
2012-03-05 05:11:51 -------- d-----w- C:\Program Files\Common Files\Intel
2012-03-05 05:11:50 -------- d-----w- C:\Program Files (x86)\Cisco
2012-03-04 18:59:57 -------- d-----w- C:\Users\Jim\AppData\Local\{764A7DBA-52BC-4EE7-9345-39AE9A35075F}
2012-03-04 06:33:01 -------- d-----w- C:\Users\Jim\AppData\Local\{19742B63-0D1D-4BBD-BC81-4AB22B276F09}
2012-03-04 06:32:51 -------- d-----w- C:\Users\Jim\AppData\Local\{9D59F98F-1685-4200-8C19-2DAF346CEDC2}
2012-03-03 18:32:13 -------- d-----w- C:\Users\Jim\AppData\Local\{10827BD4-DC04-4950-8D4E-60F4DFD8385A}
2012-03-03 04:16:55 -------- d-----w- C:\Users\Jim\AppData\Local\{87B13D01-C129-4D31-A3D2-31B05FAC9622}
2012-03-02 16:12:30 -------- d-----w- C:\Users\Jim\AppData\Local\{F5E112A2-E40D-44E1-870E-DA22BF8D7862}
2012-03-02 03:51:28 -------- d-----w- C:\Users\Jim\AppData\Local\{2DA812B7-A220-40A5-90CC-742DB8A352EE}
2012-03-02 03:51:17 -------- d-----w- C:\Users\Jim\AppData\Local\{D9111DAA-4291-492F-8885-CB8DB95A78AA}
2012-03-01 15:50:52 -------- d-----w- C:\Users\Jim\AppData\Local\{B92740FE-59F1-4EEE-A18A-232591F5A9E6}
2012-03-01 03:50:24 -------- d-----w- C:\Users\Jim\AppData\Local\{83AB5F6B-315C-4EB5-B9AC-4DEEE12A1430}
2012-03-01 03:50:13 -------- d-----w- C:\Users\Jim\AppData\Local\{2D228995-2DD4-4E83-BA24-32B4A50825B8}
2012-02-29 15:49:48 -------- d-----w- C:\Users\Jim\AppData\Local\{BEA498EF-EA59-477F-AFDF-F53D6A713139}
2012-02-29 15:49:37 -------- d-----w- C:\Users\Jim\AppData\Local\{EE2D630B-D3E3-471D-B29A-5C07A67F8BBA}
2012-02-29 03:49:10 -------- d-----w- C:\Users\Jim\AppData\Local\{3BD70B80-D75B-4069-B3CE-D1FE8CB645EA}
2012-02-28 15:48:46 -------- d-----w- C:\Users\Jim\AppData\Local\{6FFABF85-A6AA-49CA-8B02-47C4632C9CC3}
2012-02-28 03:48:09 -------- d-----w- C:\Users\Jim\AppData\Local\{1DA1939C-A88C-4BEA-BAE5-010C08631E4F}
2012-02-28 03:47:57 -------- d-----w- C:\Users\Jim\AppData\Local\{7C9D4942-8129-447F-92A3-BD15AAD8F50C}
2012-02-27 15:35:37 -------- d-----w- C:\Users\Jim\AppData\Local\{A07AEE91-751D-4E04-8E5F-95F1EF0CA0E9}
2012-02-27 03:29:41 -------- d-----w- C:\Users\Jim\AppData\Local\{9A99CDB2-3159-4FAB-8448-C14B6CCD06E1}
2012-02-27 03:29:30 -------- d-----w- C:\Users\Jim\AppData\Local\{4E5D1790-89D8-4456-95DC-0ECCD376C2E3}
2012-02-26 14:35:00 -------- d-----w- C:\Users\Jim\AppData\Local\{14B98B55-22A2-4349-8295-77119B601AD3}
2012-02-26 02:34:35 -------- d-----w- C:\Users\Jim\AppData\Local\{8AEA3A85-CF00-4F4B-B707-11BC13C47DFE}
2012-02-26 02:34:24 -------- d-----w- C:\Users\Jim\AppData\Local\{CFF3E8E6-F868-4D20-B97F-EE1F75EF8609}
2012-02-25 14:33:52 -------- d-----w- C:\Users\Jim\AppData\Local\{0593061C-B137-42D5-B46D-394B5E3F9118}
2012-02-25 04:45:06 -------- d-----w- C:\Users\Jim\AppData\Roaming\Dell
2012-02-25 04:44:56 -------- d-----w- C:\ProgramData\PCDr
2012-02-25 04:43:56 -------- d-----w- C:\Program Files\Dell Support Center
2012-02-25 04:35:01 -------- d-----w- C:\Users\Jim\AppData\Roaming\PCDr
2012-02-25 02:33:43 -------- d-----w- C:\Users\Jim\AppData\Local\{579BC9D5-A7E0-48BF-869B-7713E9FD93CE}
2012-02-24 12:52:19 -------- d-----w- C:\Users\Jim\AppData\Local\{B59398BC-BD5E-4C34-B7EC-26271E8F15B4}
2012-02-23 20:42:07 -------- d-----w- C:\Users\Jim\AppData\Local\{16F8508D-9BEF-45D9-9453-B09594DC057D}
2012-02-23 08:01:19 -------- d-----w- C:\Users\Jim\AppData\Local\{A88337F3-F763-4FE5-83CE-67155288CADE}
2012-02-22 20:00:56 -------- d-----w- C:\Users\Jim\AppData\Local\{2466454E-F090-47F2-8DCE-71937404CC66}
2012-02-22 06:01:32 -------- d-----w- C:\Users\Jim\AppData\Local\{F990161E-6CF8-4891-AB96-AC3409751489}
2012-02-22 06:01:21 -------- d-----w- C:\Users\Jim\AppData\Local\{88CC15A9-13C6-4ECC-B54A-722AE23943E7}
2012-02-21 18:00:56 -------- d-----w- C:\Users\Jim\AppData\Local\{93702A9C-A9B2-4ECA-BF0B-DD8D2DD48A01}
2012-02-21 18:00:45 -------- d-----w- C:\Users\Jim\AppData\Local\{A4AB05D6-8B71-43B2-B082-882C6AE5EF64}
2012-02-21 05:03:48 -------- d-----w- C:\Users\Jim\AppData\Local\{DF9846FC-FC2B-437E-A62B-92D84E72AF8C}
2012-02-20 17:03:25 -------- d-----w- C:\Users\Jim\AppData\Local\{578FD16F-A0D0-4F6C-8B04-EE5A01C423B5}
2012-02-20 04:12:21 -------- d-----w- C:\Users\Jim\AppData\Local\{97E31C5E-9135-434C-BD3A-C8F56E901BD9}
2012-02-19 03:26:58 -------- d-----w- C:\Users\Jim\AppData\Local\{B6D42A01-1716-452E-9DED-A9F80B2FED46}
2012-02-18 15:26:33 -------- d-----w- C:\Users\Jim\AppData\Local\{2F6B85E8-30E2-4574-8088-C83F0AF83982}
2012-02-17 22:39:19 -------- d-----w- C:\Users\Jim\AppData\Local\{F753E189-218C-4324-B98E-092465FFFDE8}
2012-02-17 08:32:55 -------- d-----w- C:\Users\Jim\AppData\Local\{769D4AB4-8DBA-4705-9204-D69D7FDCFC05}
2012-02-17 08:32:41 -------- d-----w- C:\Users\Jim\AppData\Local\{B9D4CD56-36AE-4224-9957-E36EF443B36F}
2012-02-17 08:01:01 2382848 ----a-w- C:\Windows\System32\mshtml.tlb
2012-02-17 08:01:00 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2012-02-16 22:25:55 509952 ----a-w- C:\Windows\System32\ntshrui.dll
2012-02-16 22:25:55 442880 ----a-w- C:\Windows\SysWow64\ntshrui.dll
2012-02-16 22:25:52 515584 ----a-w- C:\Windows\System32\timedate.cpl
2012-02-16 22:25:52 478720 ----a-w- C:\Windows\SysWow64\timedate.cpl
2012-02-16 22:25:46 498688 ----a-w- C:\Windows\System32\drivers\afd.sys
2012-02-16 22:25:38 634880 ----a-w- C:\Windows\System32\msvcrt.dll
2012-02-16 22:25:37 690688 ----a-w- C:\Windows\SysWow64\msvcrt.dll
.
==================== Find3M ====================
.
2012-03-05 05:57:26 414368 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2012-01-11 03:43:30 167704 ----a-w- C:\Windows\System32\igfxtray.exe
2012-01-11 03:43:28 510232 ----a-w- C:\Windows\System32\igfxsrvc.exe
2012-01-11 03:43:26 417560 ----a-w- C:\Windows\System32\igfxpers.exe
2012-01-11 03:43:20 239896 ----a-w- C:\Windows\System32\igfxext.exe
2012-01-11 03:43:08 4379416 ----a-w- C:\Windows\System32\GfxUI.exe
2012-01-11 03:43:08 392984 ----a-w- C:\Windows\System32\hkcmd.exe
2012-01-11 03:43:06 184600 ----a-w- C:\Windows\System32\difx64.exe
2012-01-11 03:37:38 90112 ----a-w- C:\Windows\System32\igfxCoIn_v2622.dll
2012-01-11 03:28:32 8313856 ----a-w- C:\Windows\System32\igdumd64.dll
2012-01-11 03:28:18 12311904 ----a-w- C:\Windows\System32\drivers\igdkmd64.sys
2012-01-11 03:18:36 6323712 ----a-w- C:\Windows\SysWow64\igdumd32.dll
2012-01-11 03:12:26 581120 ----a-w- C:\Windows\SysWow64\igdumdx32.dll
2012-01-11 03:06:22 9528832 ----a-w- C:\Windows\System32\igd10umd64.dll
2012-01-11 02:55:08 7988224 ----a-w- C:\Windows\SysWow64\igd10umd32.dll
2012-01-11 02:42:26 18653696 ----a-w- C:\Windows\System32\ig4icd64.dll
2012-01-11 02:29:54 13904384 ----a-w- C:\Windows\SysWow64\ig4icd32.dll
2012-01-11 02:19:58 378368 ----a-w- C:\Windows\System32\igfxTMM.dll
2012-01-11 02:19:52 28672 ----a-w- C:\Windows\System32\igfxexps.dll
2012-01-11 02:19:42 62464 ----a-w- C:\Windows\System32\igfxsrvc.dll
2012-01-11 02:19:14 110080 ----a-w- C:\Windows\System32\hccutils.dll
2012-01-11 02:19:06 4096 ----a-w- C:\Windows\System32\IGFXDEVLib.dll
2012-01-11 02:19:06 390656 ----a-w- C:\Windows\System32\igfxdev.dll
2012-01-11 02:19:06 146432 ----a-w- C:\Windows\System32\gfxSrvc.dll
2012-01-11 02:18:36 285696 ----a-w- C:\Windows\System32\igfxrenu.lrc
2012-01-11 02:18:32 9014784 ----a-w- C:\Windows\System32\igfxress.dll
2012-01-11 02:18:32 142336 ----a-w- C:\Windows\System32\igfxdo.dll
2012-01-11 02:15:16 24576 ----a-w- C:\Windows\SysWow64\igfxexps32.dll
2012-01-11 02:14:34 294400 ----a-w- C:\Windows\SysWow64\igfxdv32.dll
2011-12-23 23:36:03 58696 ----a-w- C:\Windows\SysWow64\AOLParconLink.exe
.
============= FINISH: 1:16:26.63 ===============

Attached Files

  • Attached File  ark.txt   1.14KB   3 downloads

Edited by dittohead2, 17 March 2012 - 01:12 AM.


BC AdBot (Login to Remove)

 


#2 jntkwx

jntkwx

  • Malware Response Team
  • 4,026 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:New England, U.S.A.
  • Local time:08:39 PM

Posted 22 March 2012 - 08:28 AM

Hi dittohead2,

I will be handling your logs to help you get cleaned up. Please give me some time to look them over and I will get back to you as soon as possible. Thanks in advance for your patience.

Regards,
Jason


Simple and easy ways to keep your computer safe and secure on the Internet

My help is free... however, if you want to support my fight against malware, click here --> btn_donate_SM.gif <-- (every little bit helps)


#3 jntkwx

jntkwx

  • Malware Response Team
  • 4,026 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:New England, U.S.A.
  • Local time:08:39 PM

Posted 23 March 2012 - 08:42 AM

dittohead2,

:welcome: to Bleeping Computer.

My name is Jason and I'll be helping you with your computer problems. You can call me by my screename jntkwx or Jason is fine.

Some things to remember while we are working together.

  • Do not run any other tool until instructed to do so!
  • Please do not attach logs or put logs in code boxes.
  • Tell me about any problems that have occurred during the fix.
  • Tell me of any other symptoms you may be having as these can also help.
  • Do not run anything while running a fix.
  • If you don't understand a step, please ask for clarification before continuing with any future steps.

Click on the Watch Topic button and select Immediate Notification and click on proceed, this will help you to get notified faster when I have replied and make the cleaning process faster.

 

:step1: Please post the attatch.txt file that DDS creates.

:step2: I recommend uninstalling AOL Desktop, as this can slow down your computer.


In your next reply, please include:
  • Attach.txt file
  • How's your computer running now? Please be as specific as possible.

Regards,
Jason


Simple and easy ways to keep your computer safe and secure on the Internet

My help is free... however, if you want to support my fight against malware, click here --> btn_donate_SM.gif <-- (every little bit helps)


#4 jntkwx

jntkwx

  • Malware Response Team
  • 4,026 posts
  • ONLINE
  •  
  • Gender:Male
  • Location:New England, U.S.A.
  • Local time:08:39 PM

Posted 26 March 2012 - 04:45 PM

Hi dittohead2,

It's been several days since my last post. Do you still need help?

Regards,
Jason


Simple and easy ways to keep your computer safe and secure on the Internet

My help is free... however, if you want to support my fight against malware, click here --> btn_donate_SM.gif <-- (every little bit helps)


#5 Elise

Elise

    Bleepin' Blonde


  • Malware Study Hall Admin
  • 53,440 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Romania
  • Local time:03:39 AM

Posted 29 March 2012 - 02:53 PM

Due to the lack of feedback, this topic is now closed.In the event you still have problems, please send me or any Moderator a Private Message and ask them to reopen this topic within the next 5 days. Please include a link to your topic in the Private Message. Thank you.
regards, Elise

"Now faith is the substance of things hoped for, the evidence of things not seen."


banner.png

Follow BleepingComputer on: Facebook | Twitter | Google+ | lockerdome





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users