Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Hijack This Log (help)


  • This topic is locked This topic is locked
3 replies to this topic

#1 TEXASMADE1978

TEXASMADE1978

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Dallas,Tx U.S.A.
  • Local time:03:23 AM

Posted 29 March 2009 - 12:56 PM

Am I infected or is there something else slowing down my computer.
HP a6700f AMD Phenom x4 1.8 ghz
Vista Home Premium- 500gb hd, 4gb ram


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:51:40 PM, on 3/29/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Norton Internet Security\Engine\16.2.0.7\ccSvcHst.exe
C:\hp\support\hpsysdrv.exe
C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\TSMAgent.exe
C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
C:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe
C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files (x86)\Hewlett-Packard\KBD\kbd.exe
C:\PROGRA~2\FREEDO~1\fdm.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...ion&pf=cndt
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...ion&pf=cndt
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...ion&pf=cndt
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...ion&pf=cndt
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: IEPlugin Class - {11222041-111B-46E3-BD29-EFB2449479B1} - C:\PROGRA~2\ArcSoft\VIDEOD~1\ARCURL~1.DLL
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files (x86)\AskBarDis\bar\bin\askBar.dll
O2 - BHO: OsbornTech Popup Blocker - {4592C7ED-FEE6-418C-B0F1-2A8F463682D2} - C:\Windows\ADSENS~1.DLL
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\16.2.0.7\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\16.2.0.7\IPSBHO.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: WOT Helper - {C920E44A-7F78-4E64-BDD7-A57026E7FEB7} - C:\Program Files (x86)\WOT\WOT.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files (x86)\Free Download Manager\iefdm2.dll
O2 - BHO: Microsoft Live Search Toolbar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files (x86)\MSN\Toolbar\3.0.0541.0\msneshellx.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files (x86)\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O2 - BHO: Cooliris Plug-In for Internet Explorer - {EAEE5C74-6D0D-4aca-9232-0DA4A7B866BA} - C:\Program Files (x86)\PicLensIE\cooliris.dll
O3 - Toolbar: Microsoft Live Search Toolbar - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - c:\Program Files (x86)\MSN\Toolbar\3.0.0541.0\msneshellx.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\16.2.0.7\coIEPlg.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files (x86)\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: Google Adsense Search - {0E1230F8-EA50-42A9-983C-D22ABC2EED3B} - C:\Windows\ToolBand.dll
O3 - Toolbar: Foxit Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files (x86)\AskBarDis\bar\bin\askBar.dll
O3 - Toolbar: WOT - {71576546-354D-41c9-AAE8-31F2EC22BF0D} - C:\Program Files (x86)\WOT\WOT.dll
O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe
O4 - HKLM\..\Run: [KBD] C:\Program Files (x86)\Hewlett-Packard\KBD\KbdStub.EXE
O4 - HKLM\..\Run: [UpdateP2GoShortCut] "c:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "c:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [UpdatePDIRShortCut] "c:\Program Files (x86)\CyberLink\PowerDirector\MUITransfer\MUIStartMenu.exe" "c:\Program Files (x86)\CyberLink\PowerDirector" UpdateWithCreateOnce "SOFTWARE\CyberLink\PowerDirector\7.0"
O4 - HKLM\..\Run: [UpdatePSTShortCut] "c:\Program Files (x86)\CyberLink\CyberLink DVD Suite Deluxe\MUITransfer\MUIStartMenu.exe" "c:\Program Files (x86)\CyberLink\CyberLink DVD Suite Deluxe" UpdateWithCreateOnce "Software\CyberLink\PowerStarter"
O4 - HKLM\..\Run: [TSMAgent] "c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\TSMAgent.exe"
O4 - HKLM\..\Run: [CLMLServer for HP TouchSmart] "c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe"
O4 - HKLM\..\Run: [DVDAgent] "c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe"
O4 - HKLM\..\Run: [EEventManager] C:\PROGRA~2\EPSONS~1\EVENTM~1\EEventManager.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files (x86)\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [googletalk] "C:\Program Files (x86)\Google\Google Talk\googletalk.exe" /autostart
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [EPSON WorkForce 600(Network)] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIEKA.EXE /FU "C:\Windows\TEMP\E_S6A46.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [HPAdvisor] C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe autorun=AUTORUN
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [swg] C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-3975849124-2450281172-1734554440-500\..\Run: [HPADVISOR] C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe autorun=AUTORUN (User 'Administrator')
O8 - Extra context menu item: &Find This In Google - res://C:\Windows\ToolBand.dll/MENUSEARCH.HTM
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: Download all with Free Download Manager - file://C:\Program Files (x86)\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download selected with Free Download Manager - file://C:\Program Files (x86)\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download video with Free Download Manager - file://C:\Program Files (x86)\Free Download Manager\dlfvideo.htm
O8 - Extra context menu item: Download with Free Download Manager - file://C:\Program Files (x86)\Free Download Manager\dllink.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~2\Java\JRE16~1.0_0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~2\Java\JRE16~1.0_0\bin\ssv.dll
O9 - Extra button: Launch Cooliris - {3437D640-C91A-458f-89F5-B9095EA4C28B} - C:\Program Files (x86)\PicLensIE\cooliris.dll
O13 - Gopher Prefix:
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: symres - {AA1061FE-6C41-421F-9344-69640C9732AB} - C:\Program Files (x86)\Norton Internet Security\Engine\16.2.0.7\coIEPlg.dll
O18 - Protocol: wot - {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} - C:\Program Files (x86)\WOT\WOT.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing)
O23 - Service: EpsonBidirectionalService - SEIKO EPSON CORPORATION - C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\HP Games\My HP Game Console\GameConsoleService.exe
O23 - Service: Google Update Service (gupdate1c9ac904f32c9da) (gupdate1c9ac904f32c9da) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVCSer64.exe
O23 - Service: Process Monitor (LVPrcS64) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\16.2.0.7\ccSvcHst.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: PDAgent - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk10\PDAgent.exe
O23 - Service: PDEngine - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk10\PDEngine.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13367 bytes

Thanks for your time and help.

BC AdBot (Login to Remove)

 


#2 TEXASMADE1978

TEXASMADE1978
  • Topic Starter

  • Members
  • 2 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Dallas,Tx U.S.A.
  • Local time:03:23 AM

Posted 31 March 2009 - 11:39 AM

Here is a new log file I just ran as it has been a couple of days since I posted the last one. Thanks in advance for any info and help that is given.

Logfile of random's system information tool 1.06 (written by random/random)
Run by Jarrad at 2009-03-31 11:34:59
Microsoft® Windows Vista™ Home Premium Service Pack 1
System drive C: has 406 GB (88%) free of 463 GB
Total RAM: 3965 MB (47% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:35:06 AM, on 3/31/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Norton Internet Security\Engine\16.2.0.7\ccSvcHst.exe
C:\hp\support\hpsysdrv.exe
C:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe
C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files (x86)\Hewlett-Packard\KBD\kbd.exe
C:\Users\Jarrad\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\PROGRA~2\FREEDO~1\fdm.exe
C:\Downloads\Software\RSIT.exe
C:\Program Files (x86)\Trend Micro\HijackThis\Jarrad.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...ion&pf=cndt
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...ion&pf=cndt
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...ion&pf=cndt
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...ion&pf=cndt
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: IEPlugin Class - {11222041-111B-46E3-BD29-EFB2449479B1} - C:\PROGRA~2\ArcSoft\VIDEOD~1\ARCURL~1.DLL
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files (x86)\AskBarDis\bar\bin\askBar.dll
O2 - BHO: OsbornTech Popup Blocker - {4592C7ED-FEE6-418C-B0F1-2A8F463682D2} - C:\Windows\ADSENS~1.DLL
O2 - BHO: Symantec NCO BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\16.2.0.7\coIEPlg.dll
O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\16.2.0.7\IPSBHO.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: WOT Helper - {C920E44A-7F78-4E64-BDD7-A57026E7FEB7} - C:\Program Files (x86)\WOT\WOT.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files (x86)\Free Download Manager\iefdm2.dll
O2 - BHO: Microsoft Live Search Toolbar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files (x86)\MSN\Toolbar\3.0.0541.0\msneshellx.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files (x86)\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O2 - BHO: Cooliris Plug-In for Internet Explorer - {EAEE5C74-6D0D-4aca-9232-0DA4A7B866BA} - C:\Program Files (x86)\PicLensIE\cooliris.dll
O3 - Toolbar: Microsoft Live Search Toolbar - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - c:\Program Files (x86)\MSN\Toolbar\3.0.0541.0\msneshellx.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\16.2.0.7\coIEPlg.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files (x86)\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: Google Adsense Search - {0E1230F8-EA50-42A9-983C-D22ABC2EED3B} - C:\Windows\ToolBand.dll
O3 - Toolbar: Foxit Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files (x86)\AskBarDis\bar\bin\askBar.dll
O3 - Toolbar: WOT - {71576546-354D-41c9-AAE8-31F2EC22BF0D} - C:\Program Files (x86)\WOT\WOT.dll
O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe
O4 - HKLM\..\Run: [KBD] C:\Program Files (x86)\Hewlett-Packard\KBD\KbdStub.EXE
O4 - HKLM\..\Run: [CLMLServer for HP TouchSmart] "c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe"
O4 - HKLM\..\Run: [EEventManager] C:\PROGRA~2\EPSONS~1\EVENTM~1\EEventManager.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [EPSON WorkForce 600(Network)] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIEKA.EXE /FU "C:\Windows\TEMP\E_S6A46.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [swg] C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\RunOnce: [FlashPlayerUpdate] C:\Windows\SysWow64\Macromed\Flash\FlashUtil9f.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O8 - Extra context menu item: &Find This In Google - res://C:\Windows\ToolBand.dll/MENUSEARCH.HTM
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: Download all with Free Download Manager - file://C:\Program Files (x86)\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download selected with Free Download Manager - file://C:\Program Files (x86)\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download video with Free Download Manager - file://C:\Program Files (x86)\Free Download Manager\dlfvideo.htm
O8 - Extra context menu item: Download with Free Download Manager - file://C:\Program Files (x86)\Free Download Manager\dllink.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~2\Java\JRE16~1.0_0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\PROGRA~2\Java\JRE16~1.0_0\bin\ssv.dll
O9 - Extra button: Launch Cooliris - {3437D640-C91A-458f-89F5-B9095EA4C28B} - C:\Program Files (x86)\PicLensIE\cooliris.dll
O13 - Gopher Prefix:
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: symres - {AA1061FE-6C41-421F-9344-69640C9732AB} - C:\Program Files (x86)\Norton Internet Security\Engine\16.2.0.7\coIEPlg.dll
O18 - Protocol: wot - {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} - C:\Program Files (x86)\WOT\WOT.dll
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - ArcSoft Inc. - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files (x86)\Bonjour\mDNSResponder.exe
O23 - Service: @dfsrres.dll,-101 (DFSR) - Unknown owner - C:\Windows\system32\DFSR.exe (file missing)
O23 - Service: EpsonBidirectionalService - SEIKO EPSON CORPORATION - C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe
O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\HP Games\My HP Game Console\GameConsoleService.exe
O23 - Service: Google Update Service (gupdate1c9ac904f32c9da) (gupdate1c9ac904f32c9da) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVCSer64.exe
O23 - Service: Process Monitor (LVPrcS64) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Norton Internet Security - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\16.2.0.7\ccSvcHst.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: PDAgent - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk10\PDAgent.exe
O23 - Service: PDEngine - Raxco Software, Inc. - C:\Program Files\Raxco\PerfectDisk10\PDEngine.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SLsvc.exe,-101 (slsvc) - Unknown owner - C:\Windows\system32\SLsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11619 bytes

======Scheduled tasks folder======

C:\Windows\tasks\GlaryInitialize.job
C:\Windows\tasks\Google Software Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachine.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3975849124-2450281172-1734554440-1000.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-3975849124-2450281172-1734554440-500.job
C:\Windows\tasks\PCDRScheduledMaintenance.job
C:\Windows\tasks\User_Feed_Synchronization-{1F230DA7-7F76-48DE-8ACC-DA2914749F77}.job
C:\Windows\tasks\User_Feed_Synchronization-{7E1CDBFD-3052-4DE3-A39D-AED98AE46758}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{11222041-111B-46E3-BD29-EFB2449479B1}]
IEPlugin Class - C:\PROGRA~2\ArcSoft\VIDEOD~1\ARCURL~1.DLL [2008-09-24 145920]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{201f27d4-3704-41d6-89c1-aa35e39143ed}]
AskBar BHO - C:\Program Files (x86)\AskBarDis\bar\bin\askBar.dll [2008-11-18 333192]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4592C7ED-FEE6-418C-B0F1-2A8F463682D2}]
ShowBarObj Class - C:\Windows\ADSENS~1.DLL [2006-03-15 32768]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}]
Symantec NCO BHO - C:\Program Files (x86)\Norton Internet Security\Engine\16.2.0.7\coIEPlg.dll [2008-12-11 344944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}]
Symantec Intrusion Prevention - C:\Program Files (x86)\Norton Internet Security\Engine\16.2.0.7\IPSBHO.DLL [2008-11-06 107896]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files (x86)\Java\jre1.6.0_07\bin\ssv.dll [2008-08-25 509328]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live Sign-in Helper - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll [2009-03-24 668656]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C920E44A-7F78-4E64-BDD7-A57026E7FEB7}]
WOT Helper - C:\Program Files (x86)\WOT\WOT.dll [2009-03-13 1430176]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}]
FDMIECookiesBHO Class - C:\Program Files (x86)\Free Download Manager\iefdm2.dll [2008-12-30 98304]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d2ce3e00-f94a-4740-988e-03dc2f38c34f}]
Microsoft Live Search Toolbar Helper - c:\Program Files (x86)\MSN\Toolbar\3.0.0541.0\msneshellx.dll [2008-08-28 86032]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E99421FB-68DD-40F0-B4AC-B7027CAE2F1A}]
EpsonToolBandKicker Class - C:\Program Files (x86)\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EAEE5C74-6D0D-4aca-9232-0DA4A7B866BA}]
C:\Program Files (x86)\PicLensIE\cooliris.dll [2009-02-24 3796992]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - Microsoft Live Search Toolbar - c:\Program Files (x86)\MSN\Toolbar\3.0.0541.0\msneshellx.dll [2008-08-28 86032]
{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - Norton Toolbar - C:\Program Files (x86)\Norton Internet Security\Engine\16.2.0.7\coIEPlg.dll [2008-12-11 344944]
{EE5D279F-081B-4404-994D-C6B60AAEBA6D} - EPSON Web-To-Page - C:\Program Files (x86)\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll [2005-02-22 368640]
{0E1230F8-EA50-42A9-983C-D22ABC2EED3B} - Google Adsense Search - C:\Windows\ToolBand.dll [2007-07-24 110592]
{3041d03e-fd4b-44e0-b742-2d9b88305f98} - Foxit Toolbar - C:\Program Files (x86)\AskBarDis\bar\bin\askBar.dll [2008-11-18 333192]
{71576546-354D-41c9-AAE8-31F2EC22BF0D} - WOT - C:\Program Files (x86)\WOT\WOT.dll [2009-03-13 1430176]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"hpsysdrv"=c:\hp\support\hpsysdrv.exe [2007-04-18 65536]
"KBD"=C:\Program Files (x86)\Hewlett-Packard\KBD\KbdStub.EXE [2008-07-21 12288]
"CLMLServer for HP TouchSmart"=c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe [2008-10-17 189736]
"EEventManager"=C:\PROGRA~2\EPSONS~1\EVENTM~1\EEventManager.exe [2008-02-19 591696]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-20 138240]
"EPSON WorkForce 600(Network)"=C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIEKA.EXE [2008-03-04 221696]
"WMPNSCFG"=C:\Program Files (x86)\Windows Media Player\WMPNSCFG.exe []
"swg"=C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-03-24 39408]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"FlashPlayerUpdate"=C:\Windows\SysWow64\Macromed\Flash\FlashUtil9f.exe [2008-03-24 218496]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=
"NoActiveDesktopChanges"=
"ForceActiveDesktopOn"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

======File associations======

.js - edit - C:\Windows\SysWOW64\Notepad.exe %1
.js - open - C:\Windows\SysWOW64\WScript.exe "%1" %*

======List of files/folders created in the last 2 months======

2009-03-31 11:34:59 ----D---- C:\rsit
2009-03-29 13:01:57 ----D---- C:\Users\Jarrad\AppData\Roaming\Auslogics
2009-03-29 13:01:52 ----D---- C:\Program Files (x86)\Auslogics
2009-03-29 12:43:54 ----D---- C:\Program Files (x86)\Trend Micro
2009-03-29 12:38:58 ----A---- C:\Windows\system32\MSSTDFMT.DLL
2009-03-29 12:38:56 ----D---- C:\Program Files (x86)\SpywareBlaster
2009-03-29 11:29:34 ----D---- C:\Users\Jarrad\AppData\Roaming\Template
2009-03-29 09:13:23 ----D---- C:\Windows\system32\Futuremark
2009-03-29 09:13:22 ----D---- C:\Program Files (x86)\Common Files\Futuremark Shared
2009-03-25 06:13:31 ----D---- C:\Program Files (x86)\Adobe
2009-03-24 09:59:34 ----D---- C:\Windows\system32\IOSUBSYS
2009-03-24 09:58:24 ----D---- C:\Program Files (x86)\Common Files\Adobe
2009-03-24 09:57:32 ----D---- C:\Program Files (x86)\Skype
2009-03-24 09:57:32 ----D---- C:\Program Files (x86)\Common Files\Skype
2009-03-24 09:57:30 ----D---- C:\ProgramData\Skype
2009-03-24 09:53:22 ----N---- C:\Windows\system32\vxblock.dll
2009-03-24 09:53:22 ----N---- C:\Windows\system32\pxwave.dll
2009-03-24 09:53:22 ----N---- C:\Windows\system32\pxmas.dll
2009-03-24 09:53:22 ----N---- C:\Windows\system32\pxhpinst.exe
2009-03-24 09:53:22 ----N---- C:\Windows\system32\pxdrv.dll
2009-03-24 09:53:22 ----N---- C:\Windows\system32\px.dll
2009-03-24 09:53:07 ----D---- C:\Windows\system32\runtime
2009-03-24 09:53:06 ----D---- C:\ProgramData\Google
2009-03-24 09:52:42 ----D---- C:\ProgramData\Google Updater
2009-03-24 09:52:37 ----D---- C:\Program Files (x86)\Google
2009-03-24 09:35:46 ----D---- C:\Users\Jarrad\AppData\Roaming\mioObjects
2009-03-21 23:45:40 ----D---- C:\Program Files (x86)\PicLensIE
2009-03-21 23:10:27 ----A---- C:\Windows\system32\ieui.dll
2009-03-21 23:10:27 ----A---- C:\Windows\system32\advpack.dll
2009-03-21 23:10:27 ----A---- C:\Windows\system32\admparse.dll
2009-03-21 23:10:26 ----A---- C:\Windows\system32\jsproxy.dll
2009-03-21 23:10:26 ----A---- C:\Windows\system32\ieakeng.dll
2009-03-21 23:10:26 ----A---- C:\Windows\system32\icardie.dll
2009-03-21 23:10:26 ----A---- C:\Windows\system32\corpol.dll
2009-03-21 23:10:24 ----A---- C:\Windows\system32\wextract.exe
2009-03-21 23:10:24 ----A---- C:\Windows\system32\msls31.dll
2009-03-21 23:10:24 ----A---- C:\Windows\system32\msfeedssync.exe
2009-03-21 23:10:24 ----A---- C:\Windows\system32\msfeedsbs.dll
2009-03-21 23:10:23 ----A---- C:\Windows\system32\pngfilt.dll
2009-03-21 23:10:23 ----A---- C:\Windows\system32\ieapfltr.dll
2009-03-21 23:10:22 ----A---- C:\Windows\system32\msfeeds.dll
2009-03-21 23:10:22 ----A---- C:\Windows\system32\imgutil.dll
2009-03-21 23:10:22 ----A---- C:\Windows\system32\iernonce.dll
2009-03-21 23:10:22 ----A---- C:\Windows\system32\dxtrans.dll
2009-03-21 23:10:22 ----A---- C:\Windows\system32\dxtmsft.dll
2009-03-21 23:10:21 ----A---- C:\Windows\system32\mstime.dll
2009-03-21 23:10:20 ----A---- C:\Windows\system32\occache.dll
2009-03-21 23:10:20 ----A---- C:\Windows\system32\licmgr10.dll
2009-03-21 23:10:20 ----A---- C:\Windows\system32\iepeers.dll
2009-03-21 23:10:18 ----A---- C:\Windows\system32\webcheck.dll
2009-03-21 23:10:18 ----A---- C:\Windows\system32\msrating.dll
2009-03-21 23:10:18 ----A---- C:\Windows\system32\mshtmled.dll
2009-03-21 23:10:18 ----A---- C:\Windows\system32\inseng.dll
2009-03-21 23:10:18 ----A---- C:\Windows\system32\ieaksie.dll
2009-03-21 23:10:17 ----A---- C:\Windows\system32\WinFXDocObj.exe
2009-03-21 23:10:17 ----A---- C:\Windows\system32\iesetup.dll
2009-03-21 23:10:17 ----A---- C:\Windows\system32\iedkcs32.dll
2009-03-21 23:10:17 ----A---- C:\Windows\system32\ieakui.dll
2009-03-21 23:10:16 ----A---- C:\Windows\system32\wininet.dll
2009-03-21 23:10:16 ----A---- C:\Windows\system32\vbscript.dll
2009-03-21 23:10:15 ----A---- C:\Windows\system32\jscript.dll
2009-03-21 23:10:13 ----A---- C:\Windows\system32\url.dll
2009-03-21 23:10:13 ----A---- C:\Windows\system32\mshtmler.dll
2009-03-21 23:10:11 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2009-03-21 23:10:11 ----A---- C:\Windows\system32\SetDepNx.exe
2009-03-21 23:10:11 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2009-03-21 23:10:11 ----A---- C:\Windows\system32\PDMSetup.exe
2009-03-21 23:10:11 ----A---- C:\Windows\system32\mshta.exe
2009-03-21 23:10:11 ----A---- C:\Windows\system32\iexpress.exe
2009-03-21 23:10:11 ----A---- C:\Windows\system32\ieUnatt.exe
2009-03-21 23:10:11 ----A---- C:\Windows\system32\iesysprep.dll
2009-03-21 23:10:10 ----A---- C:\Windows\system32\iertutil.dll
2009-03-21 23:10:10 ----A---- C:\Windows\system32\ie4uinit.exe
2009-03-21 23:10:09 ----A---- C:\Windows\system32\urlmon.dll
2009-03-21 23:10:08 ----A---- C:\Windows\system32\ieframe.dll
2009-03-21 23:10:03 ----A---- C:\Windows\system32\mshtml.dll
2009-03-21 19:55:08 ----D---- C:\Windows\Sun
2009-03-21 10:44:51 ----A---- C:\Windows\system32\GEARAspi.dll
2009-03-21 10:44:35 ----D---- C:\Program Files (x86)\iPod
2009-03-21 10:44:33 ----D---- C:\ProgramData\{CD649BED-8A0E-48BE-B3B6-0F5055BED534}
2009-03-21 10:44:33 ----D---- C:\Program Files (x86)\iTunes
2009-03-21 10:41:07 ----D---- C:\Program Files (x86)\Safari
2009-03-21 10:40:45 ----D---- C:\Program Files (x86)\Bonjour
2009-03-19 15:50:41 ----RD---- C:\Program Files (x86)\Norton Support
2009-03-19 15:23:46 ----D---- C:\Program Files (x86)\Miomni
2009-03-17 10:20:41 ----D---- C:\Program Files (x86)\WOT
2009-03-17 08:45:06 ----D---- C:\ProgramData\Adobe
2009-03-17 08:45:01 ----D---- C:\Program Files (x86)\Adobe Media Player
2009-03-17 08:44:59 ----D---- C:\Program Files (x86)\Common Files\Adobe AIR
2009-03-16 14:30:41 ----D---- C:\Program Files (x86)\AskBarDis
2009-03-13 23:45:17 ----A---- C:\Windows\EEventManager.INI
2009-03-13 22:43:03 ----D---- C:\Program Files (x86)\Microsoft
2009-03-13 22:42:45 ----D---- C:\Program Files (x86)\Windows Live SkyDrive
2009-03-13 22:42:26 ----D---- C:\Program Files (x86)\Windows Live
2009-03-13 22:42:15 ----D---- C:\Windows\PCHEALTH
2009-03-13 22:37:33 ----D---- C:\Program Files (x86)\Common Files\Windows Live
2009-03-13 22:14:14 ----D---- C:\Program Files (x86)\FastStone Image Viewer
2009-03-13 22:13:56 ----D---- C:\Program Files (x86)\FastStone Photo Resizer
2009-03-13 22:06:59 ----D---- C:\Program Files (x86)\Microsoft CAPICOM 2.1.0.2
2009-03-13 21:55:42 ----D---- C:\Program Files (x86)\Belarc
2009-03-12 21:04:53 ----D---- C:\Users\Jarrad\AppData\Roaming\LimeWire
2009-03-12 21:04:27 ----D---- C:\Program Files (x86)\LimeWire
2009-03-11 11:48:14 ----D---- C:\Users\Jarrad\AppData\Roaming\Apple Computer
2009-03-11 11:45:54 ----D---- C:\Program Files (x86)\Common Files\Apple
2009-03-11 11:44:44 ----D---- C:\ProgramData\Apple Computer
2009-03-11 11:44:44 ----D---- C:\Program Files (x86)\QuickTime
2009-03-11 11:43:38 ----D---- C:\ProgramData\Apple
2009-03-11 11:43:38 ----D---- C:\Program Files (x86)\Apple Software Update
2009-03-11 05:16:10 ----A---- C:\Windows\system32\schannel.dll
2009-03-09 11:30:14 ----A---- C:\Windows\rngctmp.txt
2009-03-09 11:30:11 ----D---- C:\My Games
2009-03-09 11:30:10 ----D---- C:\My Download Files
2009-03-09 11:27:35 ----A---- C:\Program Files (x86)\RngInterstitial.dll
2009-03-09 11:27:17 ----D---- C:\Program Files (x86)\Real
2009-03-09 11:21:32 ----D---- C:\Program Files (x86)\Common Files\xing shared
2009-03-09 11:21:22 ----A---- C:\Windows\system32\rmoc3260.dll
2009-03-09 11:21:16 ----A---- C:\Windows\system32\pndx5032.dll
2009-03-09 11:21:16 ----A---- C:\Windows\system32\pndx5016.dll
2009-03-09 11:21:14 ----A---- C:\Windows\system32\pncrt.dll
2009-03-09 11:21:10 ----D---- C:\Program Files (x86)\Common Files\Real
2009-03-09 11:21:07 ----D---- C:\Users\Jarrad\AppData\Roaming\Real
2009-03-09 11:02:32 ----D---- C:\Program Files (x86)\FNTV Google Toolbar 1.0
2009-03-09 11:02:32 ----A---- C:\Windows\SSEUninstaller.exe
2009-03-09 11:02:05 ----D---- C:\Program Files (x86)\Free Net TV and Radio Player
2009-03-09 11:01:28 ----A---- C:\Windows\system32\ShellLnkSSE.dll
2009-03-09 11:01:28 ----A---- C:\Windows\system32\Gif89.dll
2009-03-07 22:44:19 ----D---- C:\ProgramData\Raxco
2009-03-07 22:43:43 ----D---- C:\Program Files (x86)\Raxco
2009-03-07 22:43:19 ----D---- C:\Program Files (x86)\VS Revo Group
2009-03-07 22:12:57 ----D---- C:\Program Files (x86)\MSECache
2009-03-07 22:11:18 ----D---- C:\Python25
2009-03-07 22:08:06 ----D---- C:\ProgramData\muvee Technologies
2009-03-07 22:08:01 ----D---- C:\Users\Jarrad\AppData\Roaming\muvee Technologies
2009-03-07 22:05:15 ----D---- C:\Program Files (x86)\LightScribeTemplateLabeler
2009-03-07 22:02:19 ----A---- C:\Windows\system32\unicows.dll
2009-03-07 21:54:56 ----D---- C:\Users\Jarrad\AppData\Roaming\Media Player Classic
2009-03-07 21:38:47 ----D---- C:\Users\Jarrad\AppData\Roaming\Software Informer
2009-03-07 21:32:26 ----D---- C:\Program Files (x86)\Essentials Codec Pack
2009-03-07 20:49:45 ----D---- C:\Users\Jarrad\AppData\Roaming\Samsung
2009-03-07 20:10:14 ----D---- C:\Windows\system32\Samsung_USB_Drivers
2009-03-07 20:10:10 ----D---- C:\Program Files (x86)\Samsung
2009-03-07 20:09:12 ----D---- C:\Downloads
2009-03-06 18:30:57 ----D---- C:\Users\Jarrad\AppData\Roaming\CyberLink
2009-03-06 14:25:10 ----D---- C:\ProgramData\Logishrd
2009-03-06 14:25:09 ----D---- C:\Program Files (x86)\Common Files\LogiShrd
2009-03-06 14:25:07 ----D---- C:\ProgramData\Logitech
2009-03-06 14:25:06 ----D---- C:\Program Files (x86)\Logitech
2009-03-05 21:43:01 ----D---- C:\ProgramData\Sony Online Entertainment
2009-03-05 05:38:22 ----D---- C:\Program Files (x86)\Software Informer
2009-03-05 05:38:19 ----D---- C:\Users\Jarrad\AppData\Roaming\Free Download Manager
2009-03-05 05:38:15 ----D---- C:\ProgramData\FreeDownloadManager.ORG
2009-03-05 05:38:15 ----D---- C:\Program Files (x86)\Free Download Manager
2009-03-05 05:23:09 ----D---- C:\Windows\Java
2009-03-05 05:23:06 ----D---- C:\Program Files (x86)\PC Wizard 2008
2009-03-04 20:56:42 ----D---- C:\ProgramData\Symantec
2009-03-04 20:26:35 ----D---- C:\Users\Jarrad\AppData\Roaming\Epson
2009-03-02 17:05:22 ----D---- C:\Users\Jarrad\AppData\Roaming\Foxit
2009-03-02 17:05:11 ----D---- C:\Program Files (x86)\Foxit Software
2009-03-01 17:51:26 ----ASH---- C:\Users\Jarrad\AppData\Roaming\desktop.ini
2009-03-01 16:58:44 ----A---- C:\Windows\system32\EEBUtil.dll
2009-03-01 16:58:44 ----A---- C:\Windows\system32\EEBSDKIF.dll
2009-03-01 16:58:44 ----A---- C:\Windows\system32\EEBDSCVR.dll
2009-03-01 16:58:44 ----A---- C:\Windows\system32\EEBAPI.dll
2009-03-01 16:58:44 ----A---- C:\Windows\system32\EBAPI.dll
2009-03-01 16:53:19 ----D---- C:\Program Files (x86)\ABBYY FineReader 6.0 Sprint
2009-03-01 16:50:16 ----D---- C:\Program Files (x86)\Epson Software
2009-03-01 16:49:32 ----D---- C:\Program Files (x86)\EpsonNet
2009-03-01 15:44:34 ----D---- C:\Users\Jarrad\AppData\Roaming\Leadertech
2009-03-01 15:42:27 ----D---- C:\Program Files (x86)\Common Files\EPSON
2009-03-01 15:24:06 ----HD---- C:\ProgramData\ArcSoft
2009-03-01 15:23:43 ----D---- C:\Users\Jarrad\AppData\Roaming\Arcsoft
2009-03-01 15:23:28 ----D---- C:\Program Files (x86)\ArcSoft
2009-03-01 15:23:25 ----D---- C:\Program Files (x86)\Common Files\ArcSoft
2009-03-01 15:18:58 ----A---- C:\Windows\system32\PICSDK2.dll
2009-03-01 15:18:58 ----A---- C:\Windows\system32\PICSDK.ini
2009-03-01 15:18:58 ----A---- C:\Windows\system32\PICSDK.dll
2009-03-01 15:18:58 ----A---- C:\Windows\system32\PICEntry.dll
2009-03-01 15:18:58 ----A---- C:\Windows\system32\EpPicPrt.dll
2009-03-01 15:18:57 ----D---- C:\ProgramData\EPSON
2009-03-01 15:18:57 ----A---- C:\Windows\system32\EpPicMgr.dll
2009-03-01 15:18:55 ----D---- C:\Users\Jarrad\AppData\Roaming\InstallShield
2009-03-01 15:17:48 ----D---- C:\Program Files (x86)\epson
2009-03-01 15:17:01 ----A---- C:\Windows\EPWF600.ini
2009-03-01 14:25:50 ----D---- C:\Program Files (x86)\MSXML 4.0
2009-03-01 14:12:55 ----A---- C:\Windows\system32\icardres.dll
2009-03-01 14:12:48 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2009-03-01 14:12:46 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2009-03-01 14:12:43 ----A---- C:\Windows\system32\infocardapi.dll
2009-03-01 14:12:42 ----A---- C:\Windows\system32\icardagt.exe
2009-03-01 14:11:48 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2009-03-01 14:11:30 ----A---- C:\Windows\system32\PresentationHost.exe
2009-03-01 14:01:44 ----A---- C:\Windows\system32\netfxperf.dll
2009-03-01 14:01:32 ----A---- C:\Windows\system32\dfshim.dll
2009-03-01 14:01:21 ----A---- C:\Windows\system32\mscoree.dll
2009-03-01 14:01:12 ----A---- C:\Windows\system32\mscorier.dll
2009-03-01 14:01:07 ----A---- C:\Windows\system32\mscories.dll
2009-03-01 14:00:02 ----A---- C:\Windows\system32\tzres.dll
2009-03-01 13:57:21 ----A---- C:\Windows\system32\EncDec.dll
2009-03-01 13:57:20 ----A---- C:\Windows\system32\psisdecd.dll
2009-03-01 13:57:00 ----A---- C:\Windows\system32\mf.dll
2009-03-01 13:56:57 ----A---- C:\Windows\system32\WMVCORE.DLL
2009-03-01 13:56:56 ----A---- C:\Windows\system32\WMNetMgr.dll
2009-03-01 13:56:56 ----A---- C:\Windows\system32\logagent.exe
2009-03-01 13:56:54 ----A---- C:\Windows\system32\msxml6.dll
2009-03-01 13:56:49 ----A---- C:\Windows\system32\Apphlpdm.dll
2009-03-01 13:56:48 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2009-03-01 13:56:45 ----A---- C:\Windows\system32\msxml3.dll
2009-03-01 13:56:39 ----A---- C:\Windows\explorer.exe
2009-03-01 13:56:38 ----A---- C:\Windows\system32\explorer.exe
2009-03-01 13:56:34 ----A---- C:\Windows\system32\win32spl.dll
2009-03-01 13:56:32 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2009-03-01 13:56:31 ----A---- C:\Windows\system32\gdi32.dll
2009-03-01 13:56:29 ----A---- C:\Windows\system32\connect.dll
2009-03-01 13:56:17 ----A---- C:\Windows\system32\shell32.dll
2009-03-01 13:56:10 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2009-03-01 13:56:10 ----A---- C:\Windows\system32\WindowsCodecs.dll
2009-03-01 13:56:10 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2009-03-01 13:54:28 ----A---- C:\Windows\system32\Faultrep.dll
2009-03-01 11:49:56 ----A---- C:\Windows\system32\netapi32.dll
2009-03-01 11:46:25 ----D---- C:\Windows\SoftwareDistribution
2009-03-01 11:34:00 ----D---- C:\Program Files (x86)\Common Files\Symantec Shared
2009-03-01 11:08:55 ----SHD---- C:\System Volume Information
2009-03-01 11:01:22 ----D---- C:\Users\Jarrad\AppData\Roaming\Mozilla
2009-03-01 11:01:09 ----D---- C:\Program Files (x86)\Mozilla Firefox
2009-03-01 10:48:55 ----D---- C:\Users\Jarrad\AppData\Roaming\iWin
2009-03-01 10:44:30 ----D---- C:\Users\Jarrad\AppData\Roaming\WildTangent
2009-03-01 10:25:44 ----D---- C:\Users\Jarrad\AppData\Roaming\GlarySoft
2009-03-01 10:24:28 ----D---- C:\Program Files (x86)\Glary Utilities
2009-03-01 10:16:27 ----D---- C:\Windows\Minidump
2009-03-01 10:11:35 ----D---- C:\Users\Jarrad\AppData\Roaming\Macromedia
2009-03-01 10:06:59 ----D---- C:\Users\Jarrad\AppData\Roaming\Adobe
2009-03-01 10:02:02 ----D---- C:\Users\Jarrad\AppData\Roaming\Hewlett-Packard
2009-03-01 10:01:28 ----D---- C:\Users\Jarrad\AppData\Roaming\PictureMover
2009-03-01 10:01:10 ----D---- C:\Users\Jarrad\AppData\Roaming\Identities
2009-03-01 09:55:10 ----D---- C:\Program Files (x86)\Microsoft Office
2009-03-01 09:54:21 ----D---- C:\Users\Jarrad\AppData\Roaming\HP TCS
2009-03-01 09:54:17 ----D---- C:\Program Files (x86)\Microsoft Works
2009-03-01 09:52:10 ----SD---- C:\Users\Jarrad\AppData\Roaming\Microsoft
2009-03-01 09:52:10 ----D---- C:\Users\Jarrad\AppData\Roaming\Media Center Programs
2009-03-01 09:48:02 ----A---- C:\Windows\system32\wups.dll
2009-03-01 09:48:02 ----A---- C:\Windows\system32\wudriver.dll
2009-03-01 09:48:02 ----A---- C:\Windows\system32\wuapi.dll
2009-03-01 09:47:54 ----A---- C:\Windows\system32\wuwebv.dll
2009-03-01 09:47:54 ----A---- C:\Windows\system32\wuapp.exe
2009-03-01 09:47:06 ----SHD---- C:\ProgramData\Templates
2009-03-01 09:47:06 ----SHD---- C:\ProgramData\Start Menu
2009-03-01 09:47:06 ----SHD---- C:\ProgramData\Favorites
2009-03-01 09:47:06 ----SHD---- C:\ProgramData\Documents
2009-03-01 09:47:06 ----SHD---- C:\ProgramData\Desktop
2009-03-01 09:47:06 ----SHD---- C:\ProgramData\Application Data
2009-03-01 09:47:06 ----SHD---- C:\Documents and Settings
2009-02-06 18:52:40 ----A---- C:\Windows\system32\sirenacm.dll

======List of files/folders modified in the last 2 months======

2009-03-31 11:35:06 ----D---- C:\Windows\Prefetch
2009-03-31 11:35:04 ----D---- C:\Windows\Temp
2009-03-31 11:27:24 ----AD---- C:\ProgramData\Temp
2009-03-31 10:26:10 ----D---- C:\Windows\Tasks
2009-03-29 18:02:29 ----D---- C:\Windows\System32
2009-03-29 18:02:29 ----D---- C:\Windows\inf
2009-03-29 15:13:17 ----RSD---- C:\Windows\assembly
2009-03-29 15:13:17 ----D---- C:\Windows\Microsoft.NET
2009-03-29 14:51:50 ----SHD---- C:\Windows\Installer
2009-03-29 14:51:47 ----D---- C:\Windows\winsxs
2009-03-29 14:51:18 ----RD---- C:\Program Files
2009-03-29 13:01:52 ----RD---- C:\Program Files (x86)
2009-03-29 12:38:58 ----D---- C:\Windows\SysWOW64
2009-03-29 09:13:22 ----D---- C:\Program Files (x86)\Common Files
2009-03-29 09:13:17 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2009-03-27 01:40:48 ----D---- C:\Windows\registration
2009-03-27 01:11:34 ----SD---- C:\ProgramData\Microsoft
2009-03-24 10:23:30 ----D---- C:\Windows
2009-03-24 09:59:34 ----D---- C:\Windows\system32\drivers
2009-03-24 09:57:30 ----HD---- C:\ProgramData
2009-03-21 23:34:34 ----D---- C:\Windows\rescache
2009-03-21 23:15:13 ----D---- C:\Program Files (x86)\Internet Explorer
2009-03-21 23:15:04 ----D---- C:\Windows\system32\migration
2009-03-21 23:15:04 ----D---- C:\Windows\system32\en-US
2009-03-21 23:14:59 ----D---- C:\Windows\PolicyDefinitions
2009-03-17 08:42:18 ----SD---- C:\Windows\Downloaded Program Files
2009-03-17 08:42:17 ----D---- C:\Windows\system32\Macromed
2009-03-13 23:46:58 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2009-03-13 22:42:51 ----D---- C:\Program Files (x86)\Common Files\microsoft shared
2009-03-13 20:43:23 ----D---- C:\ProgramData\WildTangent
2009-03-13 14:42:26 ----HD---- C:\hp
2009-03-13 12:31:08 ----SHD---- C:\$Recycle.Bin
2009-03-13 12:30:03 ----RD---- C:\Users
2009-03-12 18:40:04 ----D---- C:\Program Files (x86)\Windows Mail
2009-03-07 22:07:34 ----D---- C:\Program Files (x86)\muvee Technologies
2009-03-06 18:30:59 ----D---- C:\ProgramData\CyberLink
2009-03-06 14:22:09 ----D---- C:\Windows\twain_32
2009-03-05 05:14:42 ----D---- C:\ProgramData\Hewlett-Packard
2009-03-01 18:32:25 ----D---- C:\Windows\Logs
2009-03-01 17:53:21 ----D---- C:\Windows\Debug
2009-03-01 16:34:43 ----D---- C:\Windows\ehome
2009-03-01 16:34:41 ----D---- C:\Windows\AppPatch
2009-03-01 16:34:38 ----D---- C:\Windows\system32\XPSViewer
2009-03-01 16:34:32 ----D---- C:\Windows\system32\wbem
2009-03-01 15:22:57 ----D---- C:\Program Files (x86)\Common Files\InstallShield
2009-03-01 11:09:50 ----D---- C:\Windows\Panther
2009-03-01 10:03:29 ----D---- C:\ProgramData\Norton
2009-03-01 10:01:43 ----D---- C:\ProgramData\NVIDIA
2009-03-01 09:54:22 ----RSD---- C:\Windows\Fonts
2009-03-01 09:53:43 ----D---- C:\Program Files (x86)\SMINST
2009-03-01 09:53:03 ----RD---- C:\Program Files (x86)\Online Services
2009-03-01 09:52:38 ----D---- C:\Program Files (x86)\Windows Sidebar

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 ccHP;Symantec Hash Provider; C:\Windows\System32\Drivers\NISx64\1002000.007\ccHPx64.sys []
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [2009-02-28 475696]
R1 IDSVia64;IDSVia64; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\ipsdefs\20090318.001\IDSvia64.sys [2009-01-29 396848]
R1 SRTSPX;Symantec Real Time Storage Protection (PEL) x64; C:\Windows\System32\Drivers\NISx64\1002000.007\SRTSPX64.SYS []
R1 SymIM;Symantec Network Security Intermediate Filter Driver; C:\Windows\system32\DRIVERS\SymIMv.sys []
R1 SYMTDI;SYMTDI; C:\Windows\System32\Drivers\NISx64\1002000.007\SYMTDI.SYS []
R2 {55662437-DA8C-40c0-AADA-2C816A897A49};{55662437-DA8C-40c0-AADA-2C816A897A49}; \??\c:\Program Files (x86)\Hewlett-Packard\Media\DVD\000.fcl [2008-09-26 27632]
R2 DefragFS;DefragFS; C:\Windows\system32\drivers\DefragFS.sys []
R3 Afc;PPdus ASPI Shell; C:\Windows\SysWOW64\drivers\Afc.sys [2006-11-14 22784]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2009-02-28 131632]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys []
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys []
R3 ksthunk;Kernel Streaming Thunks; C:\Windows\system32\drivers\ksthunk.sys []
R3 LVPr2M64;Logitech LVPr2M64 Driver; C:\Windows\system32\DRIVERS\LVPr2M64.sys []
R3 LVUSBS64;Logitech USB Monitor Filter; C:\Windows\system32\drivers\LVUSBS64.sys []
R3 NAVENG;NAVENG; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20090330.049\ENG64.SYS [2009-03-19 136752]
R3 NAVEX15;NAVEX15; \??\C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\VirusDefs\20090330.049\EX64.SYS [2009-03-19 1461808]
R3 netr7364;USB Wireless 802.11 b/g Adaptor Driver for Vista; C:\Windows\system32\DRIVERS\netr7364.sys []
R3 NVENETFD;NVIDIA nForce 10/100 Mbps Ethernet ; C:\Windows\system32\DRIVERS\nvmfdx64.sys []
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys []
R3 PID_0928;Logitech QuickCam Express(PID_0928); C:\Windows\system32\DRIVERS\LV561V64.SYS []
R3 Ps2;PS2; C:\Windows\system32\DRIVERS\PS2.sys []
R3 SRTSP;Symantec Real Time Storage Protection x64; C:\Windows\System32\Drivers\NISx64\1002000.007\SRTSP64.SYS []
R3 SYMDNS;SYMDNS; C:\Windows\System32\Drivers\NISx64\1002000.007\SYMDNS.SYS []
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT64x86.SYS []
R3 SYMFW;SYMFW; C:\Windows\System32\Drivers\NISx64\1002000.007\SYMFW.SYS []
R3 SYMNDISV;SYMNDISV; C:\Windows\System32\Drivers\NISx64\1002000.007\SYMNDISV.SYS []
R3 SYMREDRV;SYMREDRV; C:\Windows\System32\Drivers\NISx64\1002000.007\SYMREDRV.SYS []
R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys []
S1 StarOpen;StarOpen; C:\Windows\system32\drivers\StarOpen.sys [2009-03-07 5632]
S3 CrucialSMBusScan;CrucialSMBusScan; \??\C:\Windows\system32\drivers\CrucialSMBusScan.sys []
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys []
S3 ENTECH64;ENTECH64; \??\C:\Windows\system32\DRIVERS\ENTECH64.sys []
S3 LVPr2Mon;LVPr2M64 Driver; C:\Windows\system32\DRIVERS\LVPr2M64.sys []
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys []
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys []
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys []
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys []
S3 PCD5SRVC{8AAF211B-043E02A9-05040000};PCD5SRVC{8AAF211B-043E02A9-05040000} - PCDR Kernel Mode Service Helper Driver; \??\C:\PROGRA~1\PC-DOC~1\PCD5SRVC_x64.pkms [2008-09-09 25888]
S3 sscdbus;SAMSUNG USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\sscdbus.sys []
S3 sscdmdfl;SAMSUNG Mobile Modem Filter; C:\Windows\system32\DRIVERS\sscdmdfl.sys []
S3 sscdmdm;SAMSUNG Mobile Modem Drivers; C:\Windows\system32\DRIVERS\sscdmdm.sys []
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys []
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys []
S4 nvrd64;NVIDIA nForce RAID Driver; C:\Windows\system32\drivers\nvrd64.sys []
S4 nvsmu;nvsmu; C:\Windows\system32\drivers\nvsmu.sys []
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 EpsonBidirectionalService;EpsonBidirectionalService; C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe [2006-12-19 94208]
R2 LVPrcS64;Process Monitor; C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe [2008-07-26 187928]
R2 Norton Internet Security;Norton Internet Security; C:\Program Files (x86)\Norton Internet Security\Engine\16.2.0.7\ccSvcHst.exe [2008-12-11 115560]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe []
R2 PDAgent;PDAgent; C:\Program Files\Raxco\PerfectDisk10\PDAgent.exe [2009-02-23 1479944]
S2 gupdate1c9ac904f32c9da;Google Update Service (gupdate1c9ac904f32c9da); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2009-03-24 133104]
S2 gusvc;Google Software Updater; C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-03-24 183280]
S3 ACDaemon;ArcSoft Connect Daemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [2008-11-19 109056]
S3 Bonjour Service;Bonjour Service; C:\Program Files (x86)\Bonjour\mDNSResponder.exe [2008-12-12 238888]
S3 clr_optimization_v2.0.50727_64;Microsoft .NET Framework NGEN v2.0.50727_X64; C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe [2008-07-27 93184]
S3 GameConsoleService;GameConsoleService; C:\Program Files (x86)\HP Games\My HP Game Console\GameConsoleService.exe [2008-05-05 165416]
S3 HP Health Check Service;HP Health Check Service; c:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe [2008-10-09 94208]
S3 LightScribeService;LightScribeService Direct Disc Labeling Service; c:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2008-08-22 73728]
S3 LVCOMSer;LVCOMSer; C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVCSer64.exe [2008-07-26 255000]
S3 PDEngine;PDEngine; C:\Program Files\Raxco\PerfectDisk10\PDEngine.exe [2009-02-23 1476360]
S3 PerfHost;@%systemroot%\sysWow64\perfhost.exe,-2; C:\Windows\SysWow64\perfhost.exe [2008-01-20 19968]
S4 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-03-06 132424]
S4 iPod Service;iPod Service; C:\Program Files (x86)\iPod\bin\iPodService.exe [2009-03-12 656168]

-----------------EOF-----------------

#3 KoanYorel

KoanYorel

    Bleepin' Conundrum


  • Members
  • 19,461 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:65 miles due East of the "Logic Free Zone", in Md, USA
  • Local time:04:23 AM

Posted 07 April 2009 - 01:12 AM

Hello and welcome to Bleeping Computer

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help.

If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine.

If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.

Upon completing the steps below another staff member will review and take the steps necessary with you to get your machine back in working order clean and free of malware.

If you have already posted a DDS log, please do so again, as your situation may have changed.
Use the 'Add Reply' and add the new log to this thread.


Thanks and again sorry for the delay.

We need to see some information about what is happening in your machine. Please perform the following scan:
  • Download DDS by sUBs from one of the following links. Save it to your desktop.
  • Double click on the DDS icon, allow it to run.
  • A small box will open, with an explaination about the tool. No input is needed, the scan is running.
  • Notepad will open with the results.
  • Follow the instructions that pop up for posting the results.
  • Close the program window, and delete the program from your desktop.
Please note: You may have to disable any script protection running if the scan fails to run. After downloading the tool, disconnect from the internet and disable all antivirus protection. Run the scan, enable your A/V and reconnect to the internet.

Information on A/V control HERE

R,
K
The only easy day was yesterday.

...some do, some don't; some will, some won't (WR)

#4 KoanYorel

KoanYorel

    Bleepin' Conundrum


  • Members
  • 19,461 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:65 miles due East of the "Logic Free Zone", in Md, USA
  • Local time:04:23 AM

Posted 12 April 2009 - 12:48 PM

Due to the lack of feedback This Topic is closed.

Should you need it reopened, please contact a Forum Moderator. Include the address of this thread in your request.

If you have a new issue, please start a New Topic.

This applies only to the original poster. Everyone else please begin a New Topic.

R,
K
The only easy day was yesterday.

...some do, some don't; some will, some won't (WR)




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users