Any help would be appreciated.....
Hopefully I followed all the instructions.
DSS Log
.
DDS (Ver_2011-08-26.01) - NTFSAMD64
Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 1.6.0_26
Run by GaryDZ at 22:08:09 on 2011-10-28
Microsoft Windows 7 Ultimate 6.1.7601.1.1252.1.1033.18.9207.6654 [GMT -4:00]
.
AV: Norton 360 *Enabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Norton 360 *Enabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202}
FW: Norton 360 *Enabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k apphost
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Dell Printers\Additional Color Laser Software\Status Monitor\DLSDBNT.EXE
C:\ProgramData\EPSON\EPW!3 SSRP\E_S30RP1.EXE
C:\Program Files (x86)\Gladinet\Gladinet Cloud Desktop\GladFileMonSvc.exe
C:\Program Files (x86)\Memeo\AutoBackupPro\MemeoBackgroundService.exe
C:\Program Files (x86)\Gladinet\Gladinet Cloud Desktop\WOSVSSSvr.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\taskhost.exe
C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\ccSvcHst.exe
C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
C:\Windows\SysWOW64\nlssrv32.exe
C:\Program Files (x86)\Norton Ghost\Agent\VProSvc.exe
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe
C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe
C:\Program Files (x86)\StartNow Toolbar\ToolbarUpdaterService.exe
C:\Program Files (x86)\RapidSolution\Audials 8\VCDWriter\64\VCDAudioService.exe
C:\Windows\system32\svchost.exe -k iissvcs
C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\ccSvcHst.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Dell Printers\Additional Color Laser Software\Status Monitor\DLPWDNT.EXE
C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesApp64.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\System32\rundll32.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\Logitech\SetPointP\SetPoint.exe
C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
C:\Program Files (x86)\Xmarks\IE Extension\xmarkssync.exe
C:\Users\GaryDZ\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files (x86)\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files (x86)\Norton Ghost\Shared\Drivers\SymSnapServicex64.exe
C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE
C:\Program Files (x86)\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files (x86)\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files (x86)\AntiLogger\AntiLogger.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10x_ActiveX.exe
C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Windows Live\Mail\wlmail.exe
C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\cscript.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com/ig
uSearch Bar = Preserve
uInternet Settings,ProxyOverride = 127.0.0.1;192.168.*.*;*.local
mWinlogon: Userinit=userinit.exe,
BHO: ThumbnailsBHO Class: {1bd0befe-f697-4eee-b7e1-76b849a5cb84} - C:\Program Files (x86)\Xmarks\Thumbnails for IE\xmarksthumbnails.dll
BHO: Symantec NCO BHO: {602adb0e-4aff-4217-8aa1-95dac4dfa408} - C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\coIEPlg.dll
BHO: Symantec Intrusion Prevention: {6d53ec84-6aae-4787-aeee-f4628f01010c} - C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\IPS\IPSBHO.DLL
BHO: StartNow Toolbar Helper: {6e13d095-45c3-4271-9475-f3b48227dd9f} - C:\Program Files (x86)\StartNow Toolbar\Toolbar32.dll
BHO: RoboForm: {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
BHO: Yontoo Layers: {fd72061e-9fde-484d-a58a-0bab4151cad8} - C:\Program Files (x86)\Yontoo Layers Runtime\YontooIEClient.dll
TB: Norton Toolbar: {7febefe3-6b19-4349-98d2-ffb09d4b49ca} - C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\coIEPlg.dll
TB: &RoboForm: {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
TB: StartNow Toolbar: {5911488e-9d1e-40ec-8cbb-06b231cc153f} - C:\Program Files (x86)\StartNow Toolbar\Toolbar32.dll
uRun: [EPSON Stylus Photo R260 Series] C:\Windows\system32\spool\DRIVERS\x64\3\E_FATIBNA.EXE /FU "C:\Windows\TEMP\E_SF8AB.tmp" /EF "HKCU"
uRun: [EPSON Stylus Photo R260 Series (Copy 1)] C:\Windows\system32\spool\DRIVERS\x64\3\E_FATIBNA.EXE /FU "C:\Windows\TEMP\E_S5922.tmp" /EF "HKCU"
uRun: [RoboForm] "C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
uRun: [Xmarks] C:\Program Files (x86)\Xmarks\IE Extension\xmarkssync.exe -q
mRun: [Memeo Backup Pro] C:\Program Files (x86)\Memeo\AutoBackupPro\MemeoLauncher2.exe --silent --no_ui
mRun: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun: [AntiLogger] "C:\Program Files (x86)\AntiLogger\AntiLogger.exe" /minimized
StartupFolder: C:\Users\GaryDZ\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\Dropbox.lnk - C:\Users\GaryDZ\AppData\Roaming\Dropbox\bin\Dropbox.exe
StartupFolder: C:\Users\GaryDZ\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\ONENOT~1.LNK - C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
StartupFolder: C:\Users\GaryDZ\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\YAHOO!~1.LNK - C:\Program Files (x86)\Yahoo!\Widgets\YahooWidgets.exe
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: Customize Menu - file://C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
IE: Fill Forms - file://C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html
IE: RoboForm Toolbar - file://C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
IE: Save Forms - file://C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html
IE: {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html
IE: {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html
IE: {5CC5AADB-AD8E-433a-A5DE-46F33901281A} - C:\Program Files (x86)\PC TechZone\Merlin AuctionMagic\IE Toolbar\iebutton.htm
IE: {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
IE: {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
DPF: Garmin Communicator Plug-In - hxxps://static.garmincdn.com/gcp/ie/3.0.1.0/GarminAxControl.CAB
DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - C:\Program Files (x86)\Yahoo!\Common\Yinsthelper.dll
DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} - hxxp://download.bitdefender.com/resources/scanner/sources/en/scan8/oscan8.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} - hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab
DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} - hxxp://www.popcap.com/webgames/popcaploader_v10.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} - hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/15116/CTPID.cab
TCP: DhcpNameServer = 192.168.1.1
TCP: Interfaces\{ACC2128D-E4D4-49D8-984A-861BEC4C780C} : NameServer = 8.8.8.8,8.8.4.4
TCP: Interfaces\{ACC2128D-E4D4-49D8-984A-861BEC4C780C} : DhcpNameServer = 192.168.1.1
TCP: Interfaces\{ACC2128D-E4D4-49D8-984A-861BEC4C780C}\74162744F67623 : NameServer = 8.8.8.8,8.8.4.4
TCP: Interfaces\{ACC2128D-E4D4-49D8-984A-861BEC4C780C}\74162744F67623 : DhcpNameServer = 192.168.1.1
TCP: Interfaces\{DED541C9-0466-4872-AA87-DE65FDABADEA} : DhcpNameServer = 192.168.1.1 8.8.8.8
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
IFEO: install.exe - "C:\Program Files (x86)\TuneUp Utilities 2011\TUAutoReactivator64.exe"
IFEO: lightscribecontrolpanel.exe - "C:\Program Files (x86)\TuneUp Utilities 2011\TUAutoReactivator64.exe"
IFEO: lslauncher.exe - "C:\Program Files (x86)\TuneUp Utilities 2011\TUAutoReactivator64.exe"
IFEO: nvstlink.exe - "C:\Program Files (x86)\TuneUp Utilities 2011\TUAutoReactivator64.exe"
IFEO: nvstview.exe - "C:\Program Files (x86)\TuneUp Utilities 2011\TUAutoReactivator64.exe"
BHO-X64: ThumbnailsBHO Class: {1BD0BEFE-F697-4eee-B7E1-76B849A5CB84} - C:\Program Files (x86)\Xmarks\Thumbnails for IE\xmarksthumbnails.dll
BHO-X64: XmarksThumbnailsDLLBHO - No File
BHO-X64: Symantec NCO BHO: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\coIEPlg.dll
BHO-X64: Symantec NCO BHO - No File
BHO-X64: Symantec Intrusion Prevention: {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\IPS\IPSBHO.DLL
BHO-X64: Symantec Intrusion Prevention - No File
BHO-X64: StartNow Toolbar Helper: {6E13D095-45C3-4271-9475-F3B48227DD9F} - C:\Program Files (x86)\StartNow Toolbar\Toolbar32.dll
BHO-X64: StartNow Toolbar Helper - No File
C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
BHO-X64: RoboForm - No File
BHO-X64: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO-X64: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
BHO-X64: Yontoo Layers: {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo Layers Runtime\YontooIEClient.dll
BHO-X64: Yontoo Layers - No File
TB-X64: Norton Toolbar: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\coIEPlg.dll
TB-X64: &RoboForm: {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
TB-X64: StartNow Toolbar: {5911488E-9D1E-40ec-8CBB-06B231CC153F} - C:\Program Files (x86)\StartNow Toolbar\Toolbar32.dll
mRun-x64: [Memeo Backup Pro] C:\Program Files (x86)\Memeo\AutoBackupPro\MemeoLauncher2.exe --silent --no_ui
mRun-x64: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
mRun-x64: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun-x64: [AntiLogger] "C:\Program Files (x86)\AntiLogger\AntiLogger.exe" /minimized
IE-X64: {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html
IE-X64: {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html
IE-X64: {5CC5AADB-AD8E-433a-A5DE-46F33901281A} - C:\Program Files (x86)\PC TechZone\Merlin AuctionMagic\IE Toolbar\iebutton.htm
IE-X64: {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
IE-X64: {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe
IE-X64: {638F11AA-DF27-433b-BA2E-7281CE561D71} - C:\Program Files (x86)\Xmarks\IE Extension\xmarkssync.exe
SEH-X64: Groove GFS Stub Execution Hook: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
IFEO-X64: install.exe - "C:\Program Files (x86)\TuneUp Utilities 2011\TUAutoReactivator64.exe"
IFEO-X64: lightscribecontrolpanel.exe - "C:\Program Files (x86)\TuneUp Utilities 2011\TUAutoReactivator64.exe"
IFEO-X64: lslauncher.exe - "C:\Program Files (x86)\TuneUp Utilities 2011\TUAutoReactivator64.exe"
IFEO-X64: nvstlink.exe - "C:\Program Files (x86)\TuneUp Utilities 2011\TUAutoReactivator64.exe"
IFEO-X64: nvstview.exe - "C:\Program Files (x86)\TuneUp Utilities 2011\TUAutoReactivator64.exe"
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\GaryDZ\AppData\Roaming\Mozilla\Firefox\Profiles\m1egkkck.default\
FF - prefs.js: browser.search.selectedEngine - Bing
FF - prefs.js: browser.startup.homepage - hxxp://www.msn.com/?pc=Z128&install_date=20111013
FF - prefs.js: keyword.URL - hxxp://www.bing.com/search?pc=Z128&form=ZGAADF&install_date=20111013&q=
FF - prefs.js: network.proxy.type - 0
FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\Users\GaryDZ\AppData\Local\Roblox\Versions\version-684ac714abb74f38\NPRobloxProxy.dll
FF - plugin: C:\Windows\system32\Wat\npWatWeb.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
.
---- FIREFOX POLICIES ----
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: nglayout.initialpaint.delay - 600
FF - user.js: content.notify.interval - 600000
FF - user.js: content.max.tokenizing.time - 1800000
FF - user.js: content.switch.threshold - 600000
FF - user.js: network.http.max-connections-per-server - 8
.
.
.
FF - user.js: extentions.y2layers.installId - 46509b48-aee8-4909-9e6e-7d923eff3b94
.
============= SERVICES / DRIVERS ===============
.
R0 SMR162;Symantec SMR Utility Service 1.6.2;C:\Windows\system32\drivers\SMR162.SYS --> C:\Windows\system32\drivers\SMR162.SYS [?]
R0 SymDS;Symantec Data Store;C:\Windows\system32\drivers\N360x64\0501000.01D\SYMDS64.SYS --> C:\Windows\system32\drivers\N360x64\0501000.01D\SYMDS64.SYS [?]
R0 SymEFA;Symantec Extended File Attributes;C:\Windows\system32\drivers\N360x64\0501000.01D\SYMEFA64.SYS --> C:\Windows\system32\drivers\N360x64\0501000.01D\SYMEFA64.SYS [?]
R1 AntiLog32;AntiLog32;C:\Program Files (x86)\AntiLogger\AntiLog64.sys [2011-10-19 29400]
R1 BHDrvx64;BHDrvx64;C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.0.0.125\Definitions\BASHDefs\20111014.001\BHDrvx64.sys [2011-10-14 1155704]
R1 IDSVia64;IDSVia64;C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.0.0.125\Definitions\IPSDefs\20111026.030\IDSviA64.sys [2011-10-26 488568]
R1 SymIRON;Symantec Iron Driver;C:\Windows\system32\drivers\N360x64\0501000.01D\Ironx64.SYS --> C:\Windows\system32\drivers\N360x64\0501000.01D\Ironx64.SYS [?]
R1 SymNetS;Symantec Network Security WFP Driver;C:\Windows\system32\Drivers\N360x64\0501000.01D\SYMNETS.SYS --> C:\Windows\system32\Drivers\N360x64\0501000.01D\SYMNETS.SYS [?]
R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys --> C:\Windows\system32\DRIVERS\vwififlt.sys [?]
R2 DLSDB;Dell Printer Status Database;C:\Program Files\Dell Printers\Additional Color Laser Software\Status Monitor\dlsdbnt.exe [2011-9-21 191896]
R2 GladFileMonSvc;GladFileMonSvc;C:\Program Files (x86)\Gladinet\Gladinet Cloud Desktop\GladFileMonSvc.exe [2011-8-19 29552]
R2 MemeoBackgroundService;MemeoBackgroundService;C:\Program Files (x86)\Memeo\AutoBackupPro\MemeoBackgroundService.exe [2010-7-26 25824]
R2 N360;Norton 360;C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\ccsvchst.exe [2011-5-2 130008]
R2 nlsX86cc;Nalpeiron Licensing Service;C:\Windows\SysWOW64\nlssrv32.exe [2011-3-29 66560]
R2 nvUpdatusService;NVIDIA Update Service Daemon;C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe [2011-8-13 2255464]
R2 TeamViewer6;TeamViewer 6;C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe [2011-4-15 2280312]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe [2010-11-23 1974080]
R2 Updater Service for StartNow Toolbar;Updater Service for StartNow Toolbar;C:\Program Files (x86)\StartNow Toolbar\ToolbarUpdaterService.exe [2011-7-27 267488]
R2 Virtual CDAudio Service;Virtual CDAudio Service;C:\Program Files (x86)\RapidSolution\Audials 8\VCDWriter\64\VCDAudioService.exe [2011-9-9 178528]
R3 CT20XUT.SYS;CT20XUT.SYS;C:\Windows\system32\drivers\CT20XUT.SYS --> C:\Windows\system32\drivers\CT20XUT.SYS [?]
R3 CTEXFIFX.SYS;CTEXFIFX.SYS;C:\Windows\system32\drivers\CTEXFIFX.SYS --> C:\Windows\system32\drivers\CTEXFIFX.SYS [?]
R3 CTHWIUT.SYS;CTHWIUT.SYS;C:\Windows\system32\drivers\CTHWIUT.SYS --> C:\Windows\system32\drivers\CTHWIUT.SYS [?]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2011-9-5 136824]
R3 GenericMount;Generic Mount Driver;C:\Windows\system32\DRIVERS\GenericMount.sys --> C:\Windows\system32\DRIVERS\GenericMount.sys [?]
R3 ha20x22k;Creative 20X2 HAL Driver;C:\Windows\system32\drivers\ha20x22k.sys --> C:\Windows\system32\drivers\ha20x22k.sys [?]
R3 lvpepf64;Volume Adapter;C:\Windows\system32\DRIVERS\lv302a64.sys --> C:\Windows\system32\DRIVERS\lv302a64.sys [?]
R3 LVRS64;Logitech RightSound Filter Driver;C:\Windows\system32\DRIVERS\lvrs64.sys --> C:\Windows\system32\DRIVERS\lvrs64.sys [?]
R3 LVUSBS64;Logitech USB Monitor Filter;C:\Windows\system32\drivers\LVUSBS64.sys --> C:\Windows\system32\drivers\LVUSBS64.sys [?]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;C:\Windows\system32\drivers\nvhda64v.sys --> C:\Windows\system32\drivers\nvhda64v.sys [?]
R3 RRNetCapMP;RRNetCapMP;C:\Windows\system32\DRIVERS\rrnetcap.sys --> C:\Windows\system32\DRIVERS\rrnetcap.sys [?]
R3 rsvcdwdr;rsvcdwdr;C:\Windows\system32\DRIVERS\rsvcdwdr.sys --> C:\Windows\system32\DRIVERS\rsvcdwdr.sys [?]
R3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter;C:\Windows\system32\DRIVERS\RTL8192su.sys --> C:\Windows\system32\DRIVERS\RTL8192su.sys [?]
R3 SymSnapService;SymSnapService;C:\Program Files (x86)\Norton Ghost\Shared\Drivers\SymSnapServicex64.exe [2009-9-21 2963960]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesDriver64.sys [2010-8-19 11856]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service;C:\Windows\system32\DRIVERS\vwifimp.sys --> C:\Windows\system32\DRIVERS\vwifimp.sys [?]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S3 A_USBETHMP;USB PowerPacket Network Adapter;C:\Windows\system32\Drivers\usbethmp.sys --> C:\Windows\system32\Drivers\usbethmp.sys [?]
S3 CT20XUT;CT20XUT;C:\Windows\system32\drivers\CT20XUT.SYS --> C:\Windows\system32\drivers\CT20XUT.SYS [?]
S3 CTEXFIFX;CTEXFIFX;C:\Windows\system32\drivers\CTEXFIFX.SYS --> C:\Windows\system32\drivers\CTEXFIFX.SYS [?]
S3 CTHWIUT;CTHWIUT;C:\Windows\system32\drivers\CTHWIUT.SYS --> C:\Windows\system32\drivers\CTHWIUT.SYS [?]
S3 e1yexpress;Intel® Gigabit Network Connections Driver;C:\Windows\system32\DRIVERS\e1y62x64.sys --> C:\Windows\system32\DRIVERS\e1y62x64.sys [?]
S3 GenericMount Helper Service;GenericMount Helper Service;C:\Program Files (x86)\Norton Ghost\Shared\Drivers\GenericMountHelperx64.exe [2010-2-12 2227216]
S3 Netaapl;Apple Mobile Device Ethernet Service;C:\Windows\system32\DRIVERS\netaapl64.sys --> C:\Windows\system32\DRIVERS\netaapl64.sys [?]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\system32\drivers\rdpvideominiport.sys --> C:\Windows\system32\drivers\rdpvideominiport.sys [?]
S3 RRNetCap;RRNetCap Service;C:\Windows\system32\DRIVERS\rrnetcap.sys --> C:\Windows\system32\DRIVERS\rrnetcap.sys [?]
S3 Symantec SymSnap VSS Provider;Symantec SymSnap VSS Provider;C:\Windows\System32\dllhost.exe [2009-7-13 7168]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys --> C:\Windows\system32\drivers\tsusbflt.sys [?]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\system32\Drivers\usbaapl64.sys --> C:\Windows\system32\Drivers\usbaapl64.sys [?]
S3 vpcuxd;USB Virtualization Stub Service;C:\Windows\system32\DRIVERS\vpcuxd.sys --> C:\Windows\system32\DRIVERS\vpcuxd.sys [?]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
S3 WLRAWMp50x64;WLRAWMp50x64 NDIS Protocol Driver;C:\Windows\System32\drivers\WLRAWMp50x64.sys [2011-8-15 35352]
S3 WLRAWSp50x64;WLRAWSp50x64 NDIS Protocol Driver;C:\Windows\System32\drivers\WLRAWSp50x64.sys [2011-8-15 34328]
S3 WMZuneComm;Zune Windows Mobile Connectivity Service;C:\Program Files\Zune\WMZuneComm.exe [2010-11-11 306416]
S4 Realtek11nSU;Realtek11nSU;C:\Program Files (x86)\RNX-N180UBE 11n USB Wireless LAN Utility\RtlService.exe [2011-3-7 40960]
.
=============== Created Last 30 ================
.
2011-10-29 01:40:18 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{473277FE-CE2E-40DD-870C-7D58EE24C9DF}
2011-10-29 01:40:08 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{4E3FE914-6AF0-4A41-B2A3-9CCFF05297CF}
2011-10-29 01:04:14 -------- d-----w- C:\Program Files (x86)\HiJack This
2011-10-28 13:16:55 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{31B5E65C-3846-4334-9D11-87F30ABF75DC}
2011-10-28 13:16:27 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{627EDAC8-8DC6-4959-87DD-FAC7E1165E10}
2011-10-28 01:16:04 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{2D2E5851-D8F5-435A-8086-D2F8868AA0A5}
2011-10-28 01:15:43 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{D594BDFA-D507-4DDE-9957-84C3A7884A96}
2011-10-27 13:15:31 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{9172F1A9-35B4-435B-B2EB-FF7889C629C5}
2011-10-27 13:15:10 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{DBB1115E-F9F8-4216-AC74-9025D111D7A8}
2011-10-27 01:14:47 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{90E28832-5970-4385-8563-4EA0DDF2788C}
2011-10-27 01:14:26 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{9FB33943-79A3-49AD-88EB-F35F3FC60789}
2011-10-26 13:14:02 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{22343FE3-A7BF-4308-9CC4-EB82CDB7CC1A}
2011-10-26 13:13:41 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{C5790095-240F-4AE8-B14F-449AB8E51807}
2011-10-26 01:13:07 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{F1BF1314-6028-4CC7-BEF4-454F8C9732B9}
2011-10-26 01:12:58 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{46FE4B23-C64A-40EF-A125-72BC65CC1558}
2011-10-25 13:12:46 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{83433E6C-B7D7-49BC-88AA-6B7A6582D772}
2011-10-25 13:12:36 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{BFCDB92F-67E1-4FE6-A804-0B0E01CD08FA}
2011-10-25 01:12:12 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{1AFE2C5B-9A8F-45A0-8D03-C496BFF6B180}
2011-10-25 01:12:02 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{60276C3B-9E68-4542-81EC-CAB5BE2C7BF5}
2011-10-24 13:11:51 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{C56A6B0E-030F-488C-887E-95D0232CB775}
2011-10-24 13:11:41 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{0EC06861-F811-4DFB-A195-6589FCE1C842}
2011-10-24 00:27:36 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{54714A5F-C472-4408-9D23-663148C61553}
2011-10-24 00:27:26 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{960A31CB-E193-49AE-94BD-74C0C2863472}
2011-10-22 18:50:51 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{E47B5D4B-D7B7-4E8D-9769-EB45C4407C98}
2011-10-22 18:50:40 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{D047E1E8-14FB-4B87-8931-AA92356C6ABE}
2011-10-22 02:37:19 -------- d-----w- C:\Users\GaryDZ\AppData\Local\Google
2011-10-22 00:49:02 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{71157D5D-2999-4552-AC56-796472E6F875}
2011-10-22 00:48:37 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{9F22EE22-8380-4D9B-9CE2-B3181A96665D}
2011-10-21 13:26:47 -------- dc-h--w- C:\ProgramData\{74C839EA-2796-4223-8C11-81A29F465536}
2011-10-21 12:48:13 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{87B44B39-84CA-446F-895F-5C2606775C91}
2011-10-21 12:48:03 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{43E06501-0059-49CC-9E46-43CDC54AFEE5}
2011-10-20 23:39:22 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{491C63F9-2D2B-4404-BD87-0F8D8F374131}
2011-10-20 23:39:01 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{2E9E503F-496A-4F14-988F-D85B42BFDF2B}
2011-10-20 11:38:38 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{72779469-DA40-4E0B-A45D-5F6367A9E98F}
2011-10-20 11:38:25 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{052741ED-73DE-4392-8BEE-52C292BCECCC}
2011-10-19 23:38:14 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{2F9D0868-A8E4-47E2-A9D6-B3FFBC86BF17}
2011-10-19 23:37:53 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{72974F99-2633-45CF-822D-D0668B29AC55}
2011-10-19 19:30:46 -------- d-----w- C:\Program Files (x86)\iResizer
2011-10-19 11:37:29 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{19D1CEF8-7BC3-40D9-B1E4-CD09E6CE9D5D}
2011-10-19 11:37:08 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{9E1244AF-A85B-4E03-8B13-61D6EDEBDDFB}
2011-10-18 23:36:57 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{D6A1A610-3BF7-4D50-B119-3095FA406CBE}
2011-10-18 23:36:36 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{6D32653D-E599-48BF-AA9A-578CE4F5DEC8}
2011-10-18 11:36:12 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{A112EF5B-E9FE-441D-B5C4-6F3CDA55A4D8}
2011-10-18 11:35:51 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{069A66A7-2FFA-4148-9E1B-B49A96A338B6}
2011-10-17 14:56:27 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{8982C6F4-6EE9-4820-8A50-09134097F774}
2011-10-17 14:56:06 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{4DFDC685-458E-4ABD-BB8B-594664E7DBD2}
2011-10-17 02:55:54 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{C8DB25F9-ACB9-477E-BF72-33A759A6EB93}
2011-10-17 02:55:33 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{3CDCD423-AA82-423C-A98D-62AED4607A3C}
2011-10-16 14:55:09 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{66625C34-211C-4415-BFE9-530F3DF2592E}
2011-10-16 14:54:49 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{4615A26C-E7CA-40B4-8EC4-CB9439194EDD}
2011-10-16 02:54:25 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{9D2E134D-9AC4-4ACB-951B-18BB6DD94AC6}
2011-10-16 02:54:04 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{FCE34D11-F4BD-48F4-8D21-619C705E6388}
2011-10-15 16:05:47 -------- d-----w- C:\Windows\pss
2011-10-15 14:53:41 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{5CD49F52-F0EB-44DB-B00A-844E95FD3D8F}
2011-10-15 14:53:20 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{59A50D90-B263-4DDD-A70B-3692DDE258E3}
2011-10-15 02:52:56 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{9B8DD75E-9C07-462C-9602-324ED91E166E}
2011-10-15 02:52:35 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{439A388F-06C7-480F-80E8-D0F3F0EEBABA}
2011-10-14 14:52:12 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{CFB2F2BD-7C6C-488A-9D2F-A1A9056F01DE}
2011-10-14 14:51:48 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{EC0B4E0C-E77E-4859-AC9E-F71F5047455C}
2011-10-14 03:15:47 -------- d-----r- C:\Users\GaryDZ\Dropbox
2011-10-14 03:11:05 -------- d-----w- C:\Users\GaryDZ\AppData\Roaming\Dropbox
2011-10-14 02:52:37 -------- d-----w- C:\Program Files (x86)\Wondershare
2011-10-14 02:51:24 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{25EB6C28-B8B0-43C7-AD0C-B1FEC810BCEC}
2011-10-14 02:51:14 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{741F6798-E2B6-4107-9C64-591A77F65B73}
2011-10-14 02:50:20 -------- d-----w- C:\ProgramData\Tarma Installer
2011-10-14 02:50:20 -------- d-----w- C:\Program Files (x86)\Yontoo Layers Runtime
2011-10-14 02:50:18 -------- d-----w- C:\Program Files (x86)\FoxTabPDFConverter
2011-10-13 19:29:39 98304 ----a-w- C:\Windows\SysWow64\redmonnt.dll
2011-10-13 19:29:36 -------- d-----w- C:\Program Files (x86)\StartNow Toolbar
2011-10-13 13:40:12 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{167D06C1-5011-4BCC-ADEF-FA93BA542D7F}
2011-10-13 13:39:51 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{A27E95D3-5D93-460A-A119-17341D94F185}
2011-10-13 01:39:28 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{875E8845-45D8-4F98-A4E4-C7213FD1BD8D}
2011-10-13 01:39:07 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{B16AF720-FDF6-4F04-8210-F53ADBA35B72}
2011-10-12 23:48:03 -------- d-----w- C:\Program Files\iTunes
2011-10-12 23:48:03 -------- d-----w- C:\Program Files\iPod
2011-10-12 23:48:03 -------- d-----w- C:\Program Files (x86)\iTunes
2011-10-12 23:46:29 -------- d-----w- C:\Program Files\Bonjour
2011-10-12 23:46:29 -------- d-----w- C:\Program Files (x86)\Bonjour
2011-10-12 21:18:45 3138048 ----a-w- C:\Windows\System32\win32k.sys
2011-10-12 21:18:43 613888 ----a-w- C:\Windows\System32\psisdecd.dll
2011-10-12 21:18:42 75776 ----a-w- C:\Windows\SysWow64\psisrndr.ax
2011-10-12 21:18:42 465408 ----a-w- C:\Windows\SysWow64\psisdecd.dll
2011-10-12 21:18:42 108032 ----a-w- C:\Windows\System32\psisrndr.ax
2011-10-12 21:18:34 861696 ----a-w- C:\Windows\System32\oleaut32.dll
2011-10-12 21:18:34 571904 ----a-w- C:\Windows\SysWow64\oleaut32.dll
2011-10-12 21:18:34 331776 ----a-w- C:\Windows\System32\oleacc.dll
2011-10-12 21:18:34 233472 ----a-w- C:\Windows\SysWow64\oleacc.dll
2011-10-12 13:38:53 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{7BAC8177-91D1-46CA-9F9C-83D9A9B12014}
2011-10-12 13:38:32 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{1BF695FB-F57B-4B84-98D6-0E94D4B4EF18}
2011-10-12 00:39:22 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{35A1F70B-194A-41C6-A9B2-4F26F24D1C98}
2011-10-12 00:39:01 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{23FA54E9-11B8-480B-A35F-B0A3647974F3}
2011-10-11 20:21:38 -------- d-----w- C:\ProgramData\Garmin
2011-10-11 12:38:50 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{C9E7687E-42E6-4FE9-A224-162EF8834CC5}
2011-10-11 12:38:29 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{02FEC144-58D3-473D-AED2-35B923AAF6A0}
2011-10-11 00:38:05 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{AEDFC271-7ED1-476D-881B-C85348CFD8A0}
2011-10-11 00:37:55 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{01B444D3-DBF7-469B-81A6-6F3DAC9E34FC}
2011-10-10 12:37:43 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{9AF7DC6C-39E8-4E04-9EC6-61E40BC097ED}
2011-10-10 12:37:34 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{1338A92F-5DEF-4378-813F-C07971A021EF}
2011-10-10 00:35:28 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{382EA1FD-76D5-422B-B0C7-7FC0A25EAD26}
2011-10-10 00:35:06 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{415BA987-0641-4EB6-8155-B6F12D8382A5}
2011-10-09 22:10:01 -------- d-----w- C:\Windows\[SystemFolder]
2011-10-09 12:34:41 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{636FB909-2389-4F28-AA99-39296531B445}
2011-10-09 12:34:20 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{EF8D854E-1422-4585-A202-E4D28A896011}
2011-10-08 16:21:47 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{110C114C-063A-4F6F-8A55-3BCB3E336F25}
2011-10-08 16:21:26 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{1F0FD23D-9C46-44F1-8A5C-663780015ED7}
2011-10-08 04:21:02 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{C37B6894-5835-46EA-95B7-DAD9B76773A3}
2011-10-08 04:20:53 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{39BC320B-0E4E-4DD2-B009-A6883D42CE22}
2011-10-07 15:26:10 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{2FED7DAB-13E6-40CF-B5EA-5E3DA61C4D64}
2011-10-07 15:25:49 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{3B22DC97-2492-4DE2-9BD6-6EAB471EB374}
2011-10-07 03:25:26 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{8851E511-7278-4D42-A08A-CF4BD0B90161}
2011-10-07 03:25:05 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{81FCEDDA-86F9-419D-B172-59732AB435EF}
2011-10-06 15:24:53 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{1AADD9A9-006B-487D-B686-5E6FE9025CCD}
2011-10-06 15:24:33 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{760FF488-BE05-4495-92B8-7A486D214656}
2011-10-06 03:24:10 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{15CDED09-58D1-4B7E-9631-78370FE5C8BD}
2011-10-06 03:24:00 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{FF5B283E-BAA0-4681-8B22-20D7B5C2C2C0}
2011-10-05 15:23:48 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{9CBB50AD-533D-4061-A591-A41F5EBEECF2}
2011-10-05 15:23:27 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{8D97BA47-C69B-4DEE-A3EB-8CE5F55DEE36}
2011-10-05 03:23:04 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{A7923A3C-F50E-4F3A-9523-77C93FC3ED6F}
2011-10-05 03:22:40 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{7BC10A07-4493-469F-9B83-E0E8F1DAD207}
2011-10-04 15:22:16 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{7C02EF7D-2CC1-40D0-BA88-BA0B884E5A4C}
2011-10-04 15:22:07 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{5F40190F-1972-41D4-892D-D89DCB8E27A9}
2011-10-04 03:10:42 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{2451C495-ED7C-449C-A7D8-F91B5E3AC16A}
2011-10-04 03:10:19 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{4CA742B5-AD8A-4EBD-BCAC-8C903926A7F1}
2011-10-03 18:21:09 -------- d-----w- C:\Program Files (x86)\Common Files\Pinnacle
2011-10-03 18:16:58 -------- d-----w- C:\Program Files (x86)\Common Files\Pegasus Imaging
2011-10-03 18:16:56 -------- d-----w- C:\Program Files (x86)\Common Files\Yahoo!
2011-10-03 18:16:55 -------- d-----w- C:\ProgramData\Studio 14
2011-10-03 18:16:55 -------- d-----w- C:\ProgramData\Pinnacle Studio Plus
2011-10-03 18:16:55 -------- d-----w- C:\Program Files (x86)\Pinnacle
2011-10-03 15:09:56 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{F911DF3E-4910-4E3F-8584-18C681A8D57D}
2011-10-03 15:09:46 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{F0EC6DDA-784F-44D5-8D21-12513FD1B6F6}
2011-10-03 02:42:20 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{E7B2973D-B94C-40E3-849B-0C431B0DA020}
2011-10-03 02:41:59 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{F908A74D-8B8A-4F16-A402-242B19D02A58}
2011-10-02 14:41:35 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{4B3DD253-E8C2-4CAC-909C-F092496437A6}
2011-10-02 14:41:25 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{35EA924A-02F0-4408-9358-C1DFA593BDB3}
2011-10-02 00:50:32 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{88C70B71-DABC-44DD-9EEA-CBB6EA540EFC}
2011-10-02 00:50:11 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{5FAFCD8C-C16C-4F07-9C5F-0188F10FC9AB}
2011-10-01 12:49:47 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{F930413E-E70A-49DC-BF4F-F9C73452F940}
2011-10-01 12:49:36 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{4F40D357-E789-43E1-A6B1-E73C0F2B634B}
2011-10-01 00:49:13 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{8B3ED531-5D3E-4CD6-9BF8-9C7A3EC4E064}
2011-10-01 00:49:03 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{5AC6E8A3-4512-4E7D-A09A-29051DA31DE6}
2011-09-30 14:23:29 -------- d-----w- C:\Users\GaryDZ\AppData\Roaming\Digiarty
2011-09-30 12:48:41 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{D6E520D6-15F0-41CC-BFD8-4CFD3A85812D}
2011-09-30 12:48:31 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{9F02EB40-4D5C-402A-837A-B8D917D36389}
2011-09-30 00:48:08 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{D905C5EF-6D79-4DBA-93A0-A1BA8316E52A}
2011-09-30 00:47:45 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{2B199F6A-AA12-40C6-9758-C19C618C163F}
2011-09-29 12:47:34 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{34720C41-1D8E-4509-A40E-ADC4B7291ED3}
2011-09-29 12:47:25 -------- d-----w- C:\Users\GaryDZ\AppData\Local\{7A8E053A-085A-4CB5-B6BE-4F910A2C08B5}
.
==================== Find3M ====================
.
2011-09-28 14:17:31 72080 ----a-w- C:\Users\GaryDZ\g2mdlhlpx.exe
2011-09-27 12:13:27 404640 ------w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2011-09-01 05:24:07 2309120 ----a-w- C:\Windows\System32\jscript9.dll
2011-09-01 05:17:57 1389056 ----a-w- C:\Windows\System32\wininet.dll
2011-09-01 05:12:04 2382848 ----a-w- C:\Windows\System32\mshtml.tlb
2011-09-01 02:35:59 1798144 ----a-w- C:\Windows\SysWow64\jscript9.dll
2011-09-01 02:28:15 1126912 ----a-w- C:\Windows\SysWow64\wininet.dll
2011-09-01 02:22:54 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2011-08-31 03:05:32 96104 ----a-w- C:\Windows\System32\dns-sd.exe
2011-08-31 03:05:32 85864 ----a-w- C:\Windows\System32\dnssd.dll
2011-08-31 03:05:32 61288 ----a-w- C:\Windows\System32\jdns_sd.dll
2011-08-31 03:05:32 212840 ----a-w- C:\Windows\System32\dnssdX.dll
2011-08-31 03:05:04 83816 ----a-w- C:\Windows\SysWow64\dns-sd.exe
2011-08-31 03:05:04 73064 ----a-w- C:\Windows\SysWow64\dnssd.dll
2011-08-31 03:05:04 50536 ----a-w- C:\Windows\SysWow64\jdns_sd.dll
2011-08-31 03:05:04 178536 ----a-w- C:\Windows\SysWow64\dnssdX.dll
.
============= FINISH: 22:09:05.89 ===============
Hijack Log
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:16:36 PM, on 10/28/2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\ccSvcHst.exe
C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
C:\Program Files (x86)\Xmarks\IE Extension\xmarkssync.exe
C:\Users\GaryDZ\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files (x86)\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files (x86)\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files (x86)\Yahoo!\Widgets\YahooWidgets.exe
C:\Program Files (x86)\AntiLogger\AntiLogger.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashUtil10x_ActiveX.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Windows Live\Mail\wlmail.exe
C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\HiJack This\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1;192.168.*.*;*.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: XmarksThumbnailsDLLBHO - {1BD0BEFE-F697-4eee-B7E1-76B849A5CB84} - C:\Program Files (x86)\Xmarks\Thumbnails for IE\xmarksthumbnails.dll
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\IPS\IPSBHO.DLL
O2 - BHO: StartNow Toolbar Helper - {6E13D095-45C3-4271-9475-F3B48227DD9F} - C:\Program Files (x86)\StartNow Toolbar\Toolbar32.dll
O2 - BHO: RoboForm - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Yontoo Layers - {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo Layers Runtime\YontooIEClient.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\coIEPlg.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: StartNow Toolbar - {5911488E-9D1E-40ec-8CBB-06B231CC153F} - C:\Program Files (x86)\StartNow Toolbar\Toolbar32.dll
O4 - HKLM\..\Run: [Memeo Backup Pro] C:\Program Files (x86)\Memeo\AutoBackupPro\MemeoLauncher2.exe --silent --no_ui
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [AntiLogger] "C:\Program Files (x86)\AntiLogger\AntiLogger.exe" /minimized
O4 - HKCU\..\Run: [EPSON Stylus Photo R260 Series] C:\Windows\system32\spool\DRIVERS\x64\3\E_FATIBNA.EXE /FU "C:\Windows\TEMP\E_SF8AB.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [EPSON Stylus Photo R260 Series (Copy 1)] C:\Windows\system32\spool\DRIVERS\x64\3\E_FATIBNA.EXE /FU "C:\Windows\TEMP\E_S5922.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [RoboForm] "C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
O4 - HKCU\..\Run: [Xmarks] C:\Program Files (x86)\Xmarks\IE Extension\xmarkssync.exe -q
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-307459654-3684837125-3832645713-1009\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-307459654-3684837125-3832645713-1009\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O4 - Startup: Dropbox.lnk = GaryDZ\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Startup: Yahoo! Widgets.lnk = C:\Program Files (x86)\Yahoo!\Widgets\YahooWidgets.exe
O8 - Extra context menu item: Customize Menu - file://C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: Fill Forms - file://C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O8 - Extra context menu item: RoboForm Toolbar - file://C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: Save Forms - file://C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: Add to AuctionMagic - {5CC5AADB-AD8E-433a-A5DE-46F33901281A} - C:\Program Files (x86)\PC TechZone\Merlin AuctionMagic\IE Toolbar\iebutton.htm
O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\Windows\bdoscandel.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {638F11AA-DF27-433b-BA2E-7281CE561D71} - C:\Program Files (x86)\Xmarks\IE Extension\xmarkssync.exe (HKCU)
O9 - Extra 'Tools' menuitem: Xmarks for IE... - {638F11AA-DF27-433b-BA2E-7281CE561D71} - C:\Program Files (x86)\Xmarks\IE Extension\xmarkssync.exe (HKCU)
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: Garmin Communicator Plug-In - https://static.garmincdn.com/gcp/ie/3.0.1.0/GarminAxControl.CAB
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files (x86)\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scanner/sources/en/scan8/oscan8.cab
O16 - DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} - http://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://www.popcap.com/webgames/popcaploader_v10.cab
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} - http://ccfiles.creative.com/Web/softwareupdate/ocx/15116/CTPID.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{ACC2128D-E4D4-49D8-984A-861BEC4C780C}: NameServer = 8.8.8.8,8.8.4.4
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Dell Printer Status Watcher (DLPWD) - Dell Inc. - C:\Program Files\Dell Printers\Additional Color Laser Software\Status Monitor\DLPWDNT.EXE
O23 - Service: Dell Printer Status Database (DLSDB) - Dell Inc. - C:\Program Files\Dell Printers\Additional Color Laser Software\Status Monitor\DLSDBNT.EXE
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: EPSON V3 Service4(01) (EPSON_PM_RPCV4_01) - SEIKO EPSON CORPORATION - C:\ProgramData\EPSON\EPW!3 SSRP\E_S30RP1.EXE
O23 - Service: GenericMount Helper Service - Symantec - C:\Program Files (x86)\Norton Ghost\Shared\Drivers\GenericMountHelperx64.exe
O23 - Service: GladFileMonSvc - Gladinet, INC - C:\Program Files (x86)\Gladinet\Gladinet Cloud Desktop\GladFileMonSvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~2\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: MemeoBackgroundService - Memeo - C:\Program Files (x86)\Memeo\AutoBackupPro\MemeoBackgroundService.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Norton 360 (N360) - Symantec Corporation - C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\ccSvcHst.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Nalpeiron Licensing Service (nlsX86cc) - Nalpeiron Ltd. - C:\Windows\SysWOW64\nlssrv32.exe
O23 - Service: Norton Ghost - Symantec Corporation - C:\Program Files (x86)\Norton Ghost\Agent\VProSvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: SymSnapService - Symantec - C:\Program Files (x86)\Norton Ghost\Shared\Drivers\SymSnapServicex64.exe
O23 - Service: TeamViewer 6 (TeamViewer6) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe
O23 - Service: TuneUp Utilities Service (TuneUp.UtilitiesSvc) - TuneUp Software - C:\Program Files (x86)\TuneUp Utilities 2011\TuneUpUtilitiesService64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Updater Service for StartNow Toolbar - Unknown owner - C:\Program Files (x86)\StartNow Toolbar\ToolbarUpdaterService.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: Virtual CDAudio Service - RapidSolution Software AG - C:\Program Files (x86)\RapidSolution\Audials 8\VCDWriter\64\VCDAudioService.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 15379 bytes
Attached File(s)
-
Attach Oct 28 2011.txt (10.95K)
Number of downloads: 0

Help
This topic is locked

Back to top









