Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

PCeU virus? Trojan?


  • Please log in to reply
10 replies to this topic

#1 RedW

RedW

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:01 PM

Posted 24 February 2012 - 08:00 AM

Hello,

I have a Vaio laptop running Windows 7 64 bit. On startup this morning I have a grey screen with a banner of the Met Police PCeU and I can't access anything else. There was a windows explorer window open so I could swap to there to access other things.

I am typing this on my MacBook as I now only use the Vaio for a couple of things I don't like to do on the Mac - Website maintenance mainly.

I have AVG installed but in program files I can't find AVG.exe in the AVG folder. Similarly, I have Adaware but can't see that exe either.

I downloaded spycatcher onto a USB stick, ran it and it identified rogue.errorguard, Mal/Packer!se2 and Trojan.FakeAV.638 but I would need to pay for the full version of Spycatcher to remove them and I don't trust that approach.

All suggestions welcome.

Thanks,

Peter

BC AdBot (Login to Remove)

 


#2 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,530 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:09:01 AM

Posted 24 February 2012 - 10:53 AM

Hello, is iy asking you to buy a code?

Try running MBAm off that stick,It's free.



Next run MBAM (MalwareBytes):

Please download Malwarebytes Anti-Malware and save it to your desktop.
Download Link 1 <<<== Use this one first.

Download Link 2MBAM may "make changes to your registry" as part of its disinfection routine. If using other security programs that detect registry changes (ie Spybot's Teatimer), they may interfere or alert you. Temporarily disable such programs or permit them to allow the changes.
  • Make sure you are connected to the Internet.
  • Double-click on mbam-setup.exe to install the application.
    For instructions with screenshots, please refer to the How to use Malwarebytes' Anti-Malware Guide.
  • When the installation begins, follow the prompts and do not make any changes to default settings.
  • When installation has finished, make sure you leave both of these checked:
    • Update Malwarebytes' Anti-Malware
    • Launch Malwarebytes' Anti-Malware
  • Then click Finish.
MBAM will automatically start and you will be asked to update the program before performing a scan.
  • If an update is found, the program will automatically update itself. Press the OK button to close that box and continue.
  • If you encounter any problems while downloading the definition updates, manually download them from here and just double-click on mbam-rules.exe to install.
On the Scanner tab:
  • Make sure the "Perform Quick Scan" option is selected.
  • Then click on the Scan button.
  • If asked to select the drives to scan, leave all the drives selected and click on the Start Scan button.
  • The scan will begin and "Scan in progress" will show at the top. It may take some time to complete so please be patient.
  • When the scan is finished, a message box will say "The scan completed successfully. Click 'Show Results' to display all objects found".
  • Click OK to close the message box and continue with the removal process.
Back at the main Scanner screen:
  • Click on the Show Results button to see a list of any malware that was found.
  • Make sure that everything is checked, and click Remove Selected.
  • When removal is completed, a log report will open in Notepad.
  • The log is automatically saved and can be viewed by clicking the Logs tab in MBAM.
  • Copy and paste the contents of that report in your next reply. Be sure to post the complete log to include the top portion which shows MBAM's database version and your operating system.
  • Exit MBAM when done.
Note: If MBAM encounters a file that is difficult to remove, you will be asked to reboot your computer so MBAM can proceed with the disinfection process. If asked to restart the computer, please do so immediately. Failure to reboot normally (not into safe mode) will prevent MBAM from removing all the malware.

Troubleshoot Malwarebytes' Anti-Malware
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#3 RedW

RedW
  • Topic Starter

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:01 PM

Posted 24 February 2012 - 11:36 AM

Hi Boopme,

Thanks for te prompt reply!

Yes it was asking for payment which is why I came here instead :)

I am running the scan now so I'll post back later.

Thanks,

Peter

#4 RedW

RedW
  • Topic Starter

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:01 PM

Posted 24 February 2012 - 11:59 AM

Right, the scan is complete. 7 items identified and removed, here is the log:


Malwarebytes Anti-Malware 1.60.1.1000
www.malwarebytes.org

Database version: v2012.02.24.01

Windows 7 x64 NTFS
Internet Explorer 9.0.8112.16421
Peter :: ALBIONV500 [administrator]

24/02/2012 16:32:28
mbam-log-2012-02-24 (16-32-28).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 238876
Time elapsed: 16 minute(s), 32 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 1
C:\Users\Peter\AppData\Local\Temp\0.15946863288792767f76.exe (Exploit.Drop.4) -> Delete on reboot.

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 6
C:\Users\Peter\AppData\Local\Temp\~TM128F.tmp (Spyware.Passwords.XGen) -> Quarantined and deleted successfully.
C:\Users\Peter\AppData\Local\Temp\~TM1C8D.tmp (Trojan.Hiloti) -> Quarantined and deleted successfully.
C:\Users\Peter\Downloads\XvidSetup.exe (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Peter\AppData\Roaming\avdrn.dat (Malware.Trace) -> Quarantined and deleted successfully.
C:\Users\Peter\AppData\Local\Temp\0.15946863288792767f76.exe (Exploit.Drop.4) -> Delete on reboot.
C:\Users\Peter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\0.15946863288792767f76.exe.lnk (Backdoor.Agent) -> Quarantined and deleted successfully.

(end)

I have rebooted and things seem pretty normal.

Thanks

Peter

#5 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,530 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:09:01 AM

Posted 24 February 2012 - 12:31 PM

Ok, this looks good. we should do 2 oyher scans to be certain it left no friends on here.

Please download TDSSKiller.zip and and extract it.
  • Run TDSSKiller.exe.
  • Click Start scan.
  • When it is finished the utility outputs a list of detected objects with description.
    The utility automatically selects an action (Cure or Delete) for malicious objects.
    The utility prompts the user to select an action to apply to suspicious objects (Skip, by default). Let the options as it is and click Continue
  • Let reboot if needed and tell me if the tool needed a reboot.
  • Click on Report and post the contents of the text file that will open.

    Note: By default, the utility outputs the log into system disk (it is usually the disk with installed operating system, C:\) root folder. The Log have a name like: TDSSKiller.Version_Date_Time_log.txt.


I'd like us to scan your machine with ESET OnlineScan
  • Hold down Control and click on the following link to open ESET OnlineScan in a new window.
    ESET OnlineScan
  • Click the Posted Image button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
    • Click on Posted Image to download the ESET Smart Installer. Save it to your desktop.
    • Double click on the Posted Image icon on your desktop.
  • Check Posted Image
  • Click the Posted Image button.
  • Accept any security warnings from your browser.
  • Under scan settings, check Posted Image and check Remove found threats
  • Click Advanced settings and select the following:
    • Scan potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth technology
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, push Posted Image
  • Push Posted Image, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Push the Posted Image button.
  • Push Posted Image


NOTE: In some instances if no malware is found there will be no log produced.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#6 RedW

RedW
  • Topic Starter

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:01 PM

Posted 25 February 2012 - 05:02 AM

Hi,

I have run the 2 scans, TDSSkiller didn't find anything but I ESET did. Both logs are below.

Thanks,


18:24:45.0815 0420 TDSS rootkit removing tool 2.7.14.0 Feb 22 2012 16:54:49
18:24:46.0002 0420 ============================================================
18:24:46.0002 0420 Current date / time: 2012/02/24 18:24:46.0002
18:24:46.0002 0420 SystemInfo:
18:24:46.0002 0420
18:24:46.0002 0420 OS Version: 6.1.7600 ServicePack: 0.0
18:24:46.0002 0420 Product type: Workstation
18:24:46.0002 0420 ComputerName: ALBIONV500
18:24:46.0002 0420 UserName: Peter
18:24:46.0002 0420 Windows directory: C:\Windows
18:24:46.0002 0420 System windows directory: C:\Windows
18:24:46.0002 0420 Running under WOW64
18:24:46.0002 0420 Processor architecture: Intel x64
18:24:46.0002 0420 Number of processors: 2
18:24:46.0002 0420 Page size: 0x1000
18:24:46.0002 0420 Boot type: Normal boot
18:24:46.0002 0420 ============================================================
18:24:48.0483 0420 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 (465.76 Gb), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
18:24:48.0483 0420 \Device\Harddisk0\DR0:
18:24:48.0483 0420 MBR used
18:24:48.0483 0420 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
18:24:48.0483 0420 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x3A353000
18:24:48.0514 0420 Initialize success
18:24:48.0514 0420 ============================================================
18:24:57.0375 5360 ============================================================
18:24:57.0375 5360 Scan started
18:24:57.0375 5360 Mode: Manual;
18:24:57.0375 5360 ============================================================
18:24:59.0231 5360 1394ohci (1b00662092f9f9568b995902f0cc40d5) C:\Windows\system32\DRIVERS\1394ohci.sys
18:24:59.0231 5360 1394ohci - ok
18:24:59.0403 5360 ACPI (6f11e88748cdefd2f76aa215f97ddfe5) C:\Windows\system32\DRIVERS\ACPI.sys
18:24:59.0418 5360 ACPI - ok
18:24:59.0512 5360 AcpiPmi (63b05a0420ce4bf0e4af6dcc7cada254) C:\Windows\system32\DRIVERS\acpipmi.sys
18:24:59.0527 5360 AcpiPmi - ok
18:24:59.0637 5360 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
18:24:59.0652 5360 adp94xx - ok
18:24:59.0746 5360 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
18:24:59.0761 5360 adpahci - ok
18:24:59.0855 5360 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
18:24:59.0871 5360 adpu320 - ok
18:25:00.0011 5360 AFD (db9d6c6b2cd95a9ca414d045b627422e) C:\Windows\system32\drivers\afd.sys
18:25:00.0027 5360 AFD - ok
18:25:00.0167 5360 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\DRIVERS\agp440.sys
18:25:00.0167 5360 agp440 - ok
18:25:00.0276 5360 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\DRIVERS\aliide.sys
18:25:00.0276 5360 aliide - ok
18:25:00.0385 5360 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\DRIVERS\amdide.sys
18:25:00.0385 5360 amdide - ok
18:25:00.0557 5360 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
18:25:00.0557 5360 AmdK8 - ok
18:25:00.0666 5360 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
18:25:00.0666 5360 AmdPPM - ok
18:25:00.0775 5360 amdsata (7a4b413614c055935567cf88a9734d38) C:\Windows\system32\DRIVERS\amdsata.sys
18:25:00.0775 5360 amdsata - ok
18:25:00.0885 5360 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
18:25:00.0885 5360 amdsbs - ok
18:25:01.0009 5360 amdxata (b4ad0cacbab298671dd6f6ef7e20679d) C:\Windows\system32\DRIVERS\amdxata.sys
18:25:01.0009 5360 amdxata - ok
18:25:01.0212 5360 AnyDVD (ace1f390f0398e7b3fe36c98fba67575) C:\Windows\system32\Drivers\AnyDVD.sys
18:25:01.0212 5360 AnyDVD - ok
18:25:01.0384 5360 ApfiltrService (22fecb5b3de1eb8b1b2761338922f681) C:\Windows\system32\DRIVERS\Apfiltr.sys
18:25:01.0399 5360 ApfiltrService - ok
18:25:01.0509 5360 AppID (42fd751b27fa0e9c69bb39f39e409594) C:\Windows\system32\drivers\appid.sys
18:25:01.0524 5360 AppID - ok
18:25:01.0649 5360 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
18:25:01.0649 5360 arc - ok
18:25:01.0852 5360 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
18:25:01.0852 5360 arcsas - ok
18:25:01.0992 5360 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
18:25:02.0023 5360 AsyncMac - ok
18:25:02.0117 5360 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\DRIVERS\atapi.sys
18:25:02.0117 5360 atapi - ok
18:25:02.0304 5360 AVGIDSDriver (e6671e90d38c88764412e07c9d9b3d63) C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys
18:25:02.0304 5360 AVGIDSDriver - ok
18:25:02.0460 5360 AVGIDSEH (1553b388e0f0462c25ad8f30c3c29e83) C:\Windows\system32\DRIVERS\AVGIDSEH.Sys
18:25:02.0460 5360 AVGIDSEH - ok
18:25:02.0601 5360 AVGIDSFilter (dca426a66739e75f51a72160dfb945ad) C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys
18:25:02.0601 5360 AVGIDSFilter - ok
18:25:02.0788 5360 Avgldx64 (ff7383388a7d2283dae5831abc2b0720) C:\Windows\system32\DRIVERS\avgldx64.sys
18:25:02.0788 5360 Avgldx64 - ok
18:25:02.0897 5360 Avgmfx64 (997d002827d3e3dcbbb25bf46db161ab) C:\Windows\system32\DRIVERS\avgmfx64.sys
18:25:02.0897 5360 Avgmfx64 - ok
18:25:03.0053 5360 Avgrkx64 (bccfe3374c887075cde2ac8fdb1cb2f8) C:\Windows\system32\DRIVERS\avgrkx64.sys
18:25:03.0053 5360 Avgrkx64 - ok
18:25:03.0209 5360 Avgtdia (0d49adcebe243b79366ea523b647519a) C:\Windows\system32\DRIVERS\avgtdia.sys
18:25:03.0225 5360 Avgtdia - ok
18:25:03.0474 5360 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
18:25:03.0474 5360 b06bdrv - ok
18:25:03.0677 5360 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
18:25:03.0677 5360 b57nd60a - ok
18:25:03.0802 5360 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
18:25:03.0802 5360 Beep - ok
18:25:04.0114 5360 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
18:25:04.0114 5360 blbdrive - ok
18:25:04.0254 5360 bowser (19d20159708e152267e53b66677a4995) C:\Windows\system32\DRIVERS\bowser.sys
18:25:04.0270 5360 bowser - ok
18:25:04.0395 5360 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
18:25:04.0395 5360 BrFiltLo - ok
18:25:04.0519 5360 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
18:25:04.0519 5360 BrFiltUp - ok
18:25:04.0629 5360 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
18:25:04.0629 5360 Brserid - ok
18:25:04.0753 5360 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
18:25:04.0753 5360 BrSerWdm - ok
18:25:04.0847 5360 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
18:25:04.0847 5360 BrUsbMdm - ok
18:25:04.0941 5360 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
18:25:04.0941 5360 BrUsbSer - ok
18:25:05.0081 5360 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
18:25:05.0081 5360 BTHMODEM - ok
18:25:05.0268 5360 BVRPMPR5a64 (9887ca12f407d7fbc7f48f3678f5f0b6) C:\Windows\system32\drivers\BVRPMPR5a64.SYS
18:25:05.0268 5360 BVRPMPR5a64 - ok
18:25:05.0377 5360 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
18:25:05.0377 5360 cdfs - ok
18:25:05.0471 5360 cdrom (83d2d75e1efb81b3450c18131443f7db) C:\Windows\system32\DRIVERS\cdrom.sys
18:25:05.0471 5360 cdrom - ok
18:25:05.0611 5360 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
18:25:05.0611 5360 circlass - ok
18:25:05.0689 5360 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
18:25:05.0705 5360 CLFS - ok
18:25:05.0877 5360 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
18:25:05.0877 5360 CmBatt - ok
18:25:05.0986 5360 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\DRIVERS\cmdide.sys
18:25:05.0986 5360 cmdide - ok
18:25:06.0111 5360 CNG (937beb186a735aca91d717044a49d17e) C:\Windows\system32\Drivers\cng.sys
18:25:06.0126 5360 CNG - ok
18:25:06.0267 5360 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
18:25:06.0267 5360 Compbatt - ok
18:25:06.0391 5360 CompositeBus (f26b3a86f6fa87ca360b879581ab4123) C:\Windows\system32\DRIVERS\CompositeBus.sys
18:25:06.0391 5360 CompositeBus - ok
18:25:06.0563 5360 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
18:25:06.0563 5360 crcdisk - ok
18:25:06.0719 5360 DfsC (9c253ce7311ca60fc11c774692a13208) C:\Windows\system32\Drivers\dfsc.sys
18:25:06.0750 5360 DfsC - ok
18:25:06.0875 5360 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
18:25:06.0891 5360 discache - ok
18:25:07.0047 5360 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
18:25:07.0047 5360 Disk - ok
18:25:07.0234 5360 Dot4 (b42ed0320c6e41102fde0005154849bb) C:\Windows\system32\DRIVERS\Dot4.sys
18:25:07.0265 5360 Dot4 - ok
18:25:07.0421 5360 Dot4Print (85135ad27e79b689335c08167d917cde) C:\Windows\system32\DRIVERS\Dot4Prt.sys
18:25:07.0437 5360 Dot4Print - ok
18:25:07.0577 5360 dot4usb (fd05a02b0370bc3000f402e543ca5814) C:\Windows\system32\DRIVERS\dot4usb.sys
18:25:07.0593 5360 dot4usb - ok
18:25:07.0671 5360 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
18:25:07.0686 5360 drmkaud - ok
18:25:07.0936 5360 DXGKrnl (1633b9abf52784a1331476397a48cbef) C:\Windows\System32\drivers\dxgkrnl.sys
18:25:07.0967 5360 DXGKrnl - ok
18:25:08.0217 5360 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
18:25:08.0310 5360 ebdrv - ok
18:25:08.0513 5360 ElbyCDIO (a14d6e3ef78f6d6ac42f98d633f2400a) C:\Windows\system32\Drivers\ElbyCDIO.sys
18:25:08.0513 5360 ElbyCDIO - ok
18:25:08.0700 5360 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
18:25:08.0716 5360 elxstor - ok
18:25:08.0825 5360 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\DRIVERS\errdev.sys
18:25:08.0841 5360 ErrDev - ok
18:25:08.0997 5360 EST_BusEnum (917dff97525b7d70c46d4deda240089f) C:\Windows\system32\DRIVERS\GenBus.sys
18:25:08.0997 5360 EST_BusEnum - ok
18:25:09.0184 5360 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
18:25:09.0184 5360 exfat - ok
18:25:09.0309 5360 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
18:25:09.0324 5360 fastfat - ok
18:25:09.0480 5360 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
18:25:09.0480 5360 fdc - ok
18:25:09.0558 5360 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
18:25:09.0558 5360 FileInfo - ok
18:25:09.0652 5360 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
18:25:09.0652 5360 Filetrace - ok
18:25:09.0777 5360 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
18:25:09.0777 5360 flpydisk - ok
18:25:09.0886 5360 FltMgr (f7866af72abbaf84b1fa5aa195378c59) C:\Windows\system32\drivers\fltmgr.sys
18:25:09.0886 5360 FltMgr - ok
18:25:10.0026 5360 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
18:25:10.0026 5360 FsDepends - ok
18:25:10.0057 5360 Fs_Rec (e95ef8547de20cf0603557c0cf7a9462) C:\Windows\system32\drivers\Fs_Rec.sys
18:25:10.0057 5360 Fs_Rec - ok
18:25:10.0167 5360 fvevol (b8b2a6e1558f8f5de5ce431c5b2c7b09) C:\Windows\system32\DRIVERS\fvevol.sys
18:25:10.0167 5360 fvevol - ok
18:25:10.0307 5360 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
18:25:10.0307 5360 gagp30kx - ok
18:25:10.0572 5360 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
18:25:10.0588 5360 GEARAspiWDM - ok
18:25:10.0759 5360 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
18:25:10.0775 5360 hcw85cir - ok
18:25:10.0869 5360 HdAudAddService (6410f6f415b2a5a9037224c41da8bf12) C:\Windows\system32\drivers\HdAudio.sys
18:25:10.0884 5360 HdAudAddService - ok
18:25:11.0009 5360 HDAudBus (0a49913402747a0b67de940fb42cbdbb) C:\Windows\system32\DRIVERS\HDAudBus.sys
18:25:11.0009 5360 HDAudBus - ok
18:25:11.0103 5360 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
18:25:11.0103 5360 HidBatt - ok
18:25:11.0243 5360 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
18:25:11.0243 5360 HidBth - ok
18:25:11.0383 5360 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
18:25:11.0383 5360 HidIr - ok
18:25:11.0524 5360 HidUsb (b3bf6b5b50006def50b66306d99fcf6f) C:\Windows\system32\DRIVERS\hidusb.sys
18:25:11.0524 5360 HidUsb - ok
18:25:11.0680 5360 HpSAMD (0886d440058f203eba0e1825e4355914) C:\Windows\system32\DRIVERS\HpSAMD.sys
18:25:11.0680 5360 HpSAMD - ok
18:25:11.0945 5360 HTTP (cee049cac4efa7f4e1e4ad014414a5d4) C:\Windows\system32\drivers\HTTP.sys
18:25:11.0961 5360 HTTP - ok
18:25:12.0070 5360 hwpolicy (f17766a19145f111856378df337a5d79) C:\Windows\system32\drivers\hwpolicy.sys
18:25:12.0070 5360 hwpolicy - ok
18:25:12.0179 5360 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\DRIVERS\i8042prt.sys
18:25:12.0179 5360 i8042prt - ok
18:25:12.0304 5360 iaStorV (d83efb6fd45df9d55e9a1afc63640d50) C:\Windows\system32\DRIVERS\iaStorV.sys
18:25:12.0304 5360 iaStorV - ok
18:25:12.0413 5360 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys
18:25:12.0413 5360 iirsp - ok
18:25:12.0538 5360 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\DRIVERS\intelide.sys
18:25:12.0538 5360 intelide - ok
18:25:12.0663 5360 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
18:25:12.0663 5360 intelppm - ok
18:25:12.0834 5360 IpFilterDriver (722dd294df62483cecaae6e094b4d695) C:\Windows\system32\DRIVERS\ipfltdrv.sys
18:25:12.0865 5360 IpFilterDriver - ok
18:25:12.0959 5360 IPMIDRV (e2b4a4494db7cb9b89b55ca268c337c5) C:\Windows\system32\DRIVERS\IPMIDrv.sys
18:25:12.0975 5360 IPMIDRV - ok
18:25:13.0068 5360 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
18:25:13.0084 5360 IPNAT - ok
18:25:13.0255 5360 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
18:25:13.0255 5360 IRENUM - ok
18:25:13.0443 5360 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\DRIVERS\isapnp.sys
18:25:13.0443 5360 isapnp - ok
18:25:13.0567 5360 iScsiPrt (fa4d2557de56d45b0a346f93564be6e1) C:\Windows\system32\DRIVERS\msiscsi.sys
18:25:13.0583 5360 iScsiPrt - ok
18:25:13.0692 5360 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\DRIVERS\kbdclass.sys
18:25:13.0692 5360 kbdclass - ok
18:25:13.0786 5360 kbdhid (6def98f8541e1b5dceb2c822a11f7323) C:\Windows\system32\DRIVERS\kbdhid.sys
18:25:13.0786 5360 kbdhid - ok
18:25:13.0926 5360 KSecDD (16c1b906fc5ead84769f90b736b6bf0e) C:\Windows\system32\Drivers\ksecdd.sys
18:25:13.0926 5360 KSecDD - ok
18:25:14.0035 5360 KSecPkg (0b711550c56444879d71c7daabda6c83) C:\Windows\system32\Drivers\ksecpkg.sys
18:25:14.0035 5360 KSecPkg - ok
18:25:14.0129 5360 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
18:25:14.0145 5360 ksthunk - ok
18:25:14.0347 5360 Lavasoft Kernexplorer (9a7fa6371f68335fd3c3d6488bc5a9f8) C:\Program Files (x86)\Lavasoft\Ad-Aware\KernExplorer64.sys
18:25:14.0379 5360 Lavasoft Kernexplorer - ok
18:25:14.0519 5360 Lbd (3c46290f7a5d45ba6ef32c248e22aa69) C:\Windows\system32\DRIVERS\Lbd.sys
18:25:14.0535 5360 Lbd - ok
18:25:14.0613 5360 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
18:25:14.0613 5360 lltdio - ok
18:25:14.0722 5360 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys
18:25:14.0722 5360 LSI_FC - ok
18:25:14.0831 5360 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys
18:25:14.0831 5360 LSI_SAS - ok
18:25:14.0925 5360 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys
18:25:14.0925 5360 LSI_SAS2 - ok
18:25:15.0034 5360 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys
18:25:15.0034 5360 LSI_SCSI - ok
18:25:15.0127 5360 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
18:25:15.0127 5360 luafv - ok
18:25:15.0221 5360 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys
18:25:15.0237 5360 megasas - ok
18:25:15.0330 5360 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys
18:25:15.0346 5360 MegaSR - ok
18:25:15.0424 5360 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
18:25:15.0424 5360 Modem - ok
18:25:15.0533 5360 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
18:25:15.0533 5360 monitor - ok
18:25:15.0627 5360 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\DRIVERS\mouclass.sys
18:25:15.0627 5360 mouclass - ok
18:25:15.0736 5360 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
18:25:15.0736 5360 mouhid - ok
18:25:15.0861 5360 mountmgr (791af66c4d0e7c90a3646066386fb571) C:\Windows\system32\drivers\mountmgr.sys
18:25:15.0861 5360 mountmgr - ok
18:25:15.0954 5360 mpio (609d1d87649ecc19796f4d76d4c15cea) C:\Windows\system32\DRIVERS\mpio.sys
18:25:15.0970 5360 mpio - ok
18:25:16.0048 5360 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
18:25:16.0048 5360 mpsdrv - ok
18:25:16.0204 5360 MRxDAV (30524261bb51d96d6fcbac20c810183c) C:\Windows\system32\drivers\mrxdav.sys
18:25:16.0204 5360 MRxDAV - ok
18:25:16.0329 5360 mrxsmb (040d62a9d8ad28922632137acdd984f2) C:\Windows\system32\DRIVERS\mrxsmb.sys
18:25:16.0329 5360 mrxsmb - ok
18:25:16.0422 5360 mrxsmb10 (f0067552f8f9b33d7c59403ab808a3cb) C:\Windows\system32\DRIVERS\mrxsmb10.sys
18:25:16.0422 5360 mrxsmb10 - ok
18:25:16.0531 5360 mrxsmb20 (3c142d31de9f2f193218a53fe2632051) C:\Windows\system32\DRIVERS\mrxsmb20.sys
18:25:16.0547 5360 mrxsmb20 - ok
18:25:16.0625 5360 msahci (5c37497276e3b3a5488b23a326a754b7) C:\Windows\system32\DRIVERS\msahci.sys
18:25:16.0625 5360 msahci - ok
18:25:16.0724 5360 msdsm (8d27b597229aed79430fb9db3bcbfbd0) C:\Windows\system32\DRIVERS\msdsm.sys
18:25:16.0728 5360 msdsm - ok
18:25:17.0875 5360 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
18:25:17.0891 5360 Msfs - ok
18:25:17.0953 5360 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
18:25:17.0953 5360 mshidkmdf - ok
18:25:18.0109 5360 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\DRIVERS\msisadrv.sys
18:25:18.0109 5360 msisadrv - ok
18:25:18.0234 5360 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
18:25:18.0234 5360 MSKSSRV - ok
18:25:18.0406 5360 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
18:25:18.0406 5360 MSPCLOCK - ok
18:25:18.0515 5360 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
18:25:18.0515 5360 MSPQM - ok
18:25:18.0624 5360 MsRPC (89cb141aa8616d8c6a4610fa26c60964) C:\Windows\system32\drivers\MsRPC.sys
18:25:18.0624 5360 MsRPC - ok
18:25:18.0718 5360 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\DRIVERS\mssmbios.sys
18:25:18.0718 5360 mssmbios - ok
18:25:18.0827 5360 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
18:25:18.0827 5360 MSTEE - ok
18:25:18.0905 5360 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys
18:25:18.0905 5360 MTConfig - ok
18:25:18.0983 5360 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
18:25:18.0983 5360 Mup - ok
18:25:19.0108 5360 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
18:25:19.0108 5360 NativeWifiP - ok
18:25:19.0233 5360 NDIS (cad515dbd07d082bb317d9928ce8962c) C:\Windows\system32\drivers\ndis.sys
18:25:19.0264 5360 NDIS - ok
18:25:19.0357 5360 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
18:25:19.0357 5360 NdisCap - ok
18:25:19.0373 5360 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
18:25:19.0389 5360 NdisTapi - ok
18:25:19.0498 5360 Ndisuio (f105ba1e22bf1f2ee8f005d4305e4bec) C:\Windows\system32\DRIVERS\ndisuio.sys
18:25:19.0498 5360 Ndisuio - ok
18:25:19.0591 5360 NdisWan (557dfab9ca1fcb036ac77564c010dad3) C:\Windows\system32\DRIVERS\ndiswan.sys
18:25:19.0607 5360 NdisWan - ok
18:25:19.0685 5360 NDProxy (659b74fb74b86228d6338d643cd3e3cf) C:\Windows\system32\drivers\NDProxy.sys
18:25:19.0701 5360 NDProxy - ok
18:25:19.0841 5360 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
18:25:19.0857 5360 NetBIOS - ok
18:25:19.0950 5360 NetBT (9162b273a44ab9dce5b44362731d062a) C:\Windows\system32\DRIVERS\netbt.sys
18:25:19.0950 5360 NetBT - ok
18:25:20.0559 5360 netw5v64 (64428dfdaf6e88366cb51f45a79c5f69) C:\Windows\system32\DRIVERS\netw5v64.sys
18:25:20.0699 5360 netw5v64 - ok
18:25:21.0214 5360 NETwLv64 (54762e37f65c20652532dbdac53698f6) C:\Windows\system32\DRIVERS\NETwLv64.sys
18:25:21.0463 5360 NETwLv64 - ok
18:25:21.0619 5360 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys
18:25:21.0619 5360 nfrd960 - ok
18:25:21.0775 5360 npf (c31fa031335eff434b2d94278e74bcce) C:\Windows\system32\drivers\npf.sys
18:25:21.0791 5360 npf - ok
18:25:22.0056 5360 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
18:25:22.0056 5360 Npfs - ok
18:25:22.0228 5360 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
18:25:22.0228 5360 nsiproxy - ok
18:25:22.0399 5360 Ntfs (356698a13c4630d5b31c37378d469196) C:\Windows\system32\drivers\Ntfs.sys
18:25:22.0431 5360 Ntfs - ok
18:25:22.0509 5360 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
18:25:22.0509 5360 Null - ok
18:25:22.0649 5360 NUServer64 (715b1c3d7abfde4bbfb36cc177a6a525) C:\Windows\system32\DRIVERS\NUServer64.sys
18:25:22.0680 5360 NUServer64 - ok
18:25:22.0836 5360 NUS_Bus (d4fa3ea39c6e919103daa24fab48b329) C:\Windows\system32\DRIVERS\NUS_Bus.sys
18:25:22.0836 5360 NUS_Bus - ok
18:25:23.0289 5360 nvlddmkm (02a6e89a96c4cc6e23d548d61c17a760) C:\Windows\system32\DRIVERS\nvlddmkm.sys
18:25:23.0351 5360 nvlddmkm - ok
18:25:23.0460 5360 nvraid (3e38712941e9bb4ddbee00affe3fed3d) C:\Windows\system32\DRIVERS\nvraid.sys
18:25:23.0460 5360 nvraid - ok
18:25:23.0569 5360 nvstor (477dc4d6deb99be37084c9ac6d013da1) C:\Windows\system32\DRIVERS\nvstor.sys
18:25:23.0569 5360 nvstor - ok
18:25:23.0679 5360 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\DRIVERS\nv_agp.sys
18:25:23.0679 5360 nv_agp - ok
18:25:23.0913 5360 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\DRIVERS\ohci1394.sys
18:25:23.0913 5360 ohci1394 - ok
18:25:24.0084 5360 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
18:25:24.0084 5360 Parport - ok
18:25:24.0256 5360 partmgr (7daa117143316c4a1537e074a5a9eaf0) C:\Windows\system32\drivers\partmgr.sys
18:25:24.0256 5360 partmgr - ok
18:25:24.0365 5360 pci (f36f6504009f2fb0dfd1b17a116ad74b) C:\Windows\system32\DRIVERS\pci.sys
18:25:24.0381 5360 pci - ok
18:25:24.0583 5360 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\DRIVERS\pciide.sys
18:25:24.0583 5360 pciide - ok
18:25:24.0661 5360 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys
18:25:24.0661 5360 pcmcia - ok
18:25:24.0755 5360 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
18:25:24.0755 5360 pcw - ok
18:25:24.0989 5360 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
18:25:25.0005 5360 PEAUTH - ok
18:25:25.0145 5360 PptpMiniport (27cc19e81ba5e3403c48302127bda717) C:\Windows\system32\DRIVERS\raspptp.sys
18:25:25.0161 5360 PptpMiniport - ok
18:25:25.0254 5360 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys
18:25:25.0270 5360 Processor - ok
18:25:25.0363 5360 Psched (ee992183bd8eaefd9973f352e587a299) C:\Windows\system32\DRIVERS\pacer.sys
18:25:25.0379 5360 Psched - ok
18:25:25.0597 5360 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys
18:25:25.0660 5360 ql2300 - ok
18:25:25.0769 5360 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys
18:25:25.0785 5360 ql40xx - ok
18:25:25.0878 5360 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
18:25:25.0894 5360 QWAVEdrv - ok
18:25:25.0972 5360 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
18:25:25.0972 5360 RasAcd - ok
18:25:26.0112 5360 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
18:25:26.0112 5360 RasAgileVpn - ok
18:25:26.0221 5360 Rasl2tp (87a6e852a22991580d6d39adc4790463) C:\Windows\system32\DRIVERS\rasl2tp.sys
18:25:26.0221 5360 Rasl2tp - ok
18:25:26.0315 5360 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
18:25:26.0315 5360 RasPppoe - ok
18:25:26.0346 5360 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
18:25:26.0346 5360 RasSstp - ok
18:25:26.0596 5360 rdbss (3bac8142102c15d59a87757c1d41dce5) C:\Windows\system32\DRIVERS\rdbss.sys
18:25:26.0611 5360 rdbss - ok
18:25:26.0705 5360 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
18:25:26.0705 5360 rdpbus - ok
18:25:26.0799 5360 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
18:25:26.0799 5360 RDPCDD - ok
18:25:26.0877 5360 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
18:25:26.0877 5360 RDPENCDD - ok
18:25:27.0001 5360 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
18:25:27.0001 5360 RDPREFMP - ok
18:25:27.0142 5360 RDPWD (8a3e6bea1c53ea6177fe2b6eba2c80d7) C:\Windows\system32\drivers\RDPWD.sys
18:25:27.0157 5360 RDPWD - ok
18:25:27.0251 5360 rdyboost (634b9a2181d98f15941236886164ec8b) C:\Windows\system32\drivers\rdyboost.sys
18:25:27.0251 5360 rdyboost - ok
18:25:27.0391 5360 RimUsb (7b04c9843921ab1f695fb395422c5360) C:\Windows\system32\Drivers\RimUsb_AMD64.sys
18:25:27.0407 5360 RimUsb - ok
18:25:27.0547 5360 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
18:25:27.0563 5360 rspndr - ok
18:25:27.0703 5360 sbp2port (e3bbb89983daf5622c1d50cf49f28227) C:\Windows\system32\DRIVERS\sbp2port.sys
18:25:27.0703 5360 sbp2port - ok
18:25:27.0797 5360 scfilter (c94da20c7e3ba1dca269bc8460d98387) C:\Windows\system32\DRIVERS\scfilter.sys
18:25:27.0813 5360 scfilter - ok
18:25:28.0062 5360 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
18:25:28.0062 5360 secdrv - ok
18:25:28.0234 5360 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
18:25:28.0234 5360 Serenum - ok
18:25:28.0265 5360 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
18:25:28.0265 5360 Serial - ok
18:25:28.0374 5360 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys
18:25:28.0561 5360 sermouse - ok
18:25:28.0702 5360 SFEP (70f9c476b62de4f2823e918a6c181ade) C:\Windows\system32\DRIVERS\SFEP.sys
18:25:28.0749 5360 SFEP - ok
18:25:28.0905 5360 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\DRIVERS\sffdisk.sys
18:25:28.0905 5360 sffdisk - ok
18:25:29.0201 5360 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\DRIVERS\sffp_mmc.sys
18:25:29.0201 5360 sffp_mmc - ok
18:25:29.0279 5360 sffp_sd (5588b8c6193eb1522490c122eb94dffa) C:\Windows\system32\DRIVERS\sffp_sd.sys
18:25:29.0279 5360 sffp_sd - ok
18:25:29.0373 5360 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys
18:25:29.0373 5360 sfloppy - ok
18:25:29.0419 5360 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys
18:25:29.0419 5360 SiSRaid2 - ok
18:25:29.0497 5360 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys
18:25:29.0497 5360 SiSRaid4 - ok
18:25:29.0591 5360 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
18:25:29.0591 5360 Smb - ok
18:25:29.0700 5360 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
18:25:29.0700 5360 spldr - ok
18:25:29.0841 5360 srv (2408c0366d96bcdf63e8f1c78e4a29c5) C:\Windows\system32\DRIVERS\srv.sys
18:25:29.0841 5360 srv - ok
18:25:29.0965 5360 srv2 (76548f7b818881b47d8d1ae1be9c11f8) C:\Windows\system32\DRIVERS\srv2.sys
18:25:29.0965 5360 srv2 - ok
18:25:30.0106 5360 SrvHsfHDA (0c4540311e11664b245a263e1154cef8) C:\Windows\system32\DRIVERS\VSTAZL6.SYS
18:25:30.0106 5360 SrvHsfHDA - ok
18:25:30.0277 5360 SrvHsfV92 (02071d207a9858fbe3a48cbfd59c4a04) C:\Windows\system32\DRIVERS\VSTDPV6.SYS
18:25:30.0293 5360 SrvHsfV92 - ok
18:25:30.0433 5360 SrvHsfWinac (18e40c245dbfaf36fd0134a7ef2df396) C:\Windows\system32\DRIVERS\VSTCNXT6.SYS
18:25:30.0449 5360 SrvHsfWinac - ok
18:25:30.0574 5360 srvnet (0af6e19d39c70844c5caa8fb0183c36e) C:\Windows\system32\DRIVERS\srvnet.sys
18:25:30.0574 5360 srvnet - ok
18:25:30.0667 5360 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys
18:25:30.0667 5360 stexstor - ok
18:25:30.0761 5360 StillCam (decacb6921ded1a38642642685d77dac) C:\Windows\system32\DRIVERS\serscan.sys
18:25:30.0777 5360 StillCam - ok
18:25:30.0901 5360 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\DRIVERS\swenum.sys
18:25:30.0901 5360 swenum - ok
18:25:31.0120 5360 Tcpip (f18f56efc0bfb9c87ba01c37b27f4da5) C:\Windows\system32\drivers\tcpip.sys
18:25:31.0135 5360 Tcpip - ok
18:25:31.0291 5360 TCPIP6 (f18f56efc0bfb9c87ba01c37b27f4da5) C:\Windows\system32\DRIVERS\tcpip.sys
18:25:31.0307 5360 TCPIP6 - ok
18:25:31.0494 5360 tcpipreg (76d078af6f587b162d50210f761eb9ed) C:\Windows\system32\drivers\tcpipreg.sys
18:25:31.0494 5360 tcpipreg - ok
18:25:31.0588 5360 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
18:25:31.0603 5360 TDPIPE - ok
18:25:31.0744 5360 TDTCP (e4245bda3190a582d55ed09e137401a9) C:\Windows\system32\drivers\tdtcp.sys
18:25:31.0744 5360 TDTCP - ok
18:25:31.0869 5360 tdx (079125c4b17b01fcaeebce0bcb290c0f) C:\Windows\system32\DRIVERS\tdx.sys
18:25:31.0869 5360 tdx - ok
18:25:31.0993 5360 TermDD (c448651339196c0e869a355171875522) C:\Windows\system32\DRIVERS\termdd.sys
18:25:31.0993 5360 TermDD - ok
18:25:32.0212 5360 ti21sony (00c632b77d5ecb5ab84a7188fddd275e) C:\Windows\system32\drivers\ti21sony.sys
18:25:32.0243 5360 ti21sony - ok
18:25:32.0461 5360 TrojanKillerDriver (9bf9e809fbb2d5d0403b32b15abe5f30) C:\Windows\system32\DRIVERS\gtkdrv.sys
18:25:32.0461 5360 TrojanKillerDriver - ok
18:25:32.0539 5360 tssecsrv (61b96c26131e37b24e93327a0bd1fb95) C:\Windows\system32\DRIVERS\tssecsrv.sys
18:25:32.0555 5360 tssecsrv - ok
18:25:32.0711 5360 tunnel (3836171a2cdf3af8ef10856db9835a70) C:\Windows\system32\DRIVERS\tunnel.sys
18:25:32.0711 5360 tunnel - ok
18:25:32.0851 5360 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys
18:25:32.0851 5360 uagp35 - ok
18:25:32.0961 5360 udfs (d47baead86c65d4f4069d7ce0a4edceb) C:\Windows\system32\DRIVERS\udfs.sys
18:25:32.0976 5360 udfs - ok
18:25:33.0085 5360 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\DRIVERS\uliagpkx.sys
18:25:33.0085 5360 uliagpkx - ok
18:25:33.0195 5360 umbus (eab6c35e62b1b0db0d1b48b671d3a117) C:\Windows\system32\DRIVERS\umbus.sys
18:25:33.0195 5360 umbus - ok
18:25:33.0522 5360 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
18:25:33.0522 5360 UmPass - ok
18:25:33.0678 5360 USB28xxBGA (6e65c7c62185b3dd62de048d552729b7) C:\Windows\system32\DRIVERS\emBDA64.sys
18:25:33.0694 5360 USB28xxBGA - ok
18:25:33.0803 5360 USB28xxOEM (66433b230458aad05f194d5c8aa272b3) C:\Windows\system32\DRIVERS\emOEM64.sys
18:25:33.0803 5360 USB28xxOEM - ok
18:25:33.0975 5360 USBAAPL64 (f724b03c3dfaacf08d17d38bf3333583) C:\Windows\system32\Drivers\usbaapl64.sys
18:25:33.0975 5360 USBAAPL64 - ok
18:25:34.0131 5360 usbccgp (b26afb54a534d634523c4fb66765b026) C:\Windows\system32\DRIVERS\usbccgp.sys
18:25:34.0131 5360 usbccgp - ok
18:25:34.0224 5360 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\DRIVERS\usbcir.sys
18:25:34.0240 5360 usbcir - ok
18:25:34.0318 5360 usbehci (2ea4aff7be7eb4632e3aa8595b0803b5) C:\Windows\system32\DRIVERS\usbehci.sys
18:25:34.0318 5360 usbehci - ok
18:25:34.0411 5360 usbhub (4c9042b8df86c1e8e6240c218b99b39b) C:\Windows\system32\DRIVERS\usbhub.sys
18:25:34.0427 5360 usbhub - ok
18:25:34.0505 5360 usbohci (58e546bbaf87664fc57e0f6081e4f609) C:\Windows\system32\DRIVERS\usbohci.sys
18:25:34.0505 5360 usbohci - ok
18:25:34.0630 5360 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys
18:25:34.0645 5360 usbprint - ok
18:25:34.0973 5360 usbscan (aaa2513c8aed8b54b189fd0c6b1634c0) C:\Windows\system32\DRIVERS\usbscan.sys
18:25:34.0989 5360 usbscan - ok
18:25:35.0082 5360 usbser (0f0c72a657c622286013788b886968ad) C:\Windows\system32\DRIVERS\usbser.sys
18:25:35.0098 5360 usbser - ok
18:25:35.0160 5360 USBSTOR (080d3820da6c046be82fc8b45a893e83) C:\Windows\system32\DRIVERS\USBSTOR.SYS
18:25:35.0176 5360 USBSTOR - ok
18:25:35.0254 5360 usbuhci (81fb2216d3a60d1284455d511797db3d) C:\Windows\system32\DRIVERS\usbuhci.sys
18:25:35.0254 5360 usbuhci - ok
18:25:35.0457 5360 usbvideo (d501e12614b00a3252073101d6a1a74b) C:\Windows\system32\Drivers\usbvideo.sys
18:25:35.0472 5360 usbvideo - ok
18:25:35.0597 5360 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\DRIVERS\vdrvroot.sys
18:25:35.0597 5360 vdrvroot - ok
18:25:35.0691 5360 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
18:25:35.0691 5360 vga - ok
18:25:35.0769 5360 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
18:25:35.0769 5360 VgaSave - ok
18:25:35.0940 5360 vhdmp (c82e748660f62a242b2dfac1442f22a4) C:\Windows\system32\DRIVERS\vhdmp.sys
18:25:35.0940 5360 vhdmp - ok
18:25:36.0065 5360 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\DRIVERS\viaide.sys
18:25:36.0065 5360 viaide - ok
18:25:36.0174 5360 volmgr (2b1a3dae2b4e70dbba822b7a03fbd4a3) C:\Windows\system32\DRIVERS\volmgr.sys
18:25:36.0174 5360 volmgr - ok
18:25:36.0315 5360 volmgrx (99b0cbb569ca79acaed8c91461d765fb) C:\Windows\system32\drivers\volmgrx.sys
18:25:36.0330 5360 volmgrx - ok
18:25:36.0486 5360 volsnap (58f82eed8ca24b461441f9c3e4f0bf5c) C:\Windows\system32\DRIVERS\volsnap.sys
18:25:36.0486 5360 volsnap - ok
18:25:36.0658 5360 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys
18:25:36.0673 5360 vsmraid - ok
18:25:36.0845 5360 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\System32\drivers\vwifibus.sys
18:25:36.0845 5360 vwifibus - ok
18:25:37.0001 5360 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys
18:25:37.0001 5360 WacomPen - ok
18:25:37.0141 5360 WANARP (47ca49400643effd3f1c9a27e1d69324) C:\Windows\system32\DRIVERS\wanarp.sys
18:25:37.0141 5360 WANARP - ok
18:25:37.0173 5360 Wanarpv6 (47ca49400643effd3f1c9a27e1d69324) C:\Windows\system32\DRIVERS\wanarp.sys
18:25:37.0173 5360 Wanarpv6 - ok
18:25:37.0235 5360 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys
18:25:37.0235 5360 Wd - ok
18:25:37.0329 5360 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
18:25:37.0344 5360 Wdf01000 - ok
18:25:37.0516 5360 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
18:25:37.0516 5360 WfpLwf - ok
18:25:37.0734 5360 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
18:25:37.0734 5360 WIMMount - ok
18:25:37.0968 5360 WinUsb (817eaff5d38674edd7713b9dfb8e9791) C:\Windows\system32\DRIVERS\WinUsb.sys
18:25:37.0999 5360 WinUsb - ok
18:25:38.0202 5360 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\DRIVERS\wmiacpi.sys
18:25:38.0202 5360 WmiAcpi - ok
18:25:38.0389 5360 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
18:25:38.0405 5360 ws2ifsl - ok
18:25:38.0561 5360 WudfPf (7cadc74271dd6461c452c271b30bd378) C:\Windows\system32\drivers\WudfPf.sys
18:25:38.0561 5360 WudfPf - ok
18:25:38.0764 5360 WUDFRd (3b197af0fff08aa66b6b2241ca538d64) C:\Windows\system32\DRIVERS\WUDFRd.sys
18:25:38.0764 5360 WUDFRd - ok
18:25:38.0889 5360 yukonw7 (b3eeacf62445e24fbb2cd4b0fb4db026) C:\Windows\system32\DRIVERS\yk62x64.sys
18:25:38.0889 5360 yukonw7 - ok
18:25:38.0935 5360 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
18:25:39.0013 5360 \Device\Harddisk0\DR0 - ok
18:25:39.0013 5360 Boot (0x1200) (1de601d2254bf07cd7bacfb205e63abf) \Device\Harddisk0\DR0\Partition0
18:25:39.0013 5360 \Device\Harddisk0\DR0\Partition0 - ok
18:25:39.0060 5360 Boot (0x1200) (62acc5206d5fb227d02341d76c82f17a) \Device\Harddisk0\DR0\Partition1
18:25:39.0060 5360 \Device\Harddisk0\DR0\Partition1 - ok
18:25:39.0076 5360 ============================================================
18:25:39.0076 5360 Scan finished
18:25:39.0076 5360 ============================================================
18:25:39.0076 2256 Detected object count: 0
18:25:39.0076 2256 Actual detected object count: 0
18:32:43.0381 0408 Deinitialize success


C:\Program Files (x86)\GridinSoft Trojan Killer\trojankiller.exe a variant of Win32/1AntiVirus application cleaned by deleting - quarantined
C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Cache\f_00002c a variant of Win32/Adware.HotBar.N application cleaned by deleting - quarantined
C:\Users\Peter\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low\Content.IE5\EE23NIPK\apitfugtdry7[1].htm JS/Kryptik.Y trojan cleaned by deleting - quarantined
C:\Users\Peter\AppData\Local\Temp\jar_cache3823758974350011652.tmp multiple threats deleted - quarantined
C:\Users\Peter\AppData\Local\Temp\jar_cache5526330595261080535.tmp multiple threats deleted - quarantined
C:\Users\Peter\AppData\Local\Temp\jar_cache6607171197535531598.tmp multiple threats deleted - quarantined
C:\Users\Peter\AppData\Local\Temp\_MTB593303861452411312012.exe Win32/OpenCandy application deleted - quarantined
C:\Users\Peter\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\14\2993370e-123f5a56 multiple threats deleted - quarantined
C:\Users\Peter\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\14\4491a0ce-3d431323 multiple threats deleted - quarantined
C:\Users\Peter\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\17\76863151-70c0f253 Java/Exploit.CVE-2010-0844.A trojan deleted - quarantined
C:\Users\Peter\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\53\10757db5-32873a9a multiple threats deleted - quarantined
C:\Users\Peter\Downloads\aTube_Catcher.exe Win32/OpenCandy application deleted - quarantined
C:\Users\Peter\Downloads\Software downloads\Setup_FreeFlvConverterN.exe Win32/Adware.Toolbar.Dealio application deleted - quarantined
C:\Users\Peter\Downloads\Software downloads\vdownloader-latest.zip probably a variant of Win32/Agent.ILZCTEN trojan deleted - quarantined
C:\Users\Peter\Downloads\Software downloads\vdownloader1.12_setup.exe Win32/Adware.ADON application deleted - quarantined
C:\Users\Peter\Downloads\Software downloads\Nero 7.10.1.0\Nero-7.10.1.0_eng_full.exe Win32/Toolbar.AskSBar application deleted - quarantined

#7 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,530 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:09:01 AM

Posted 25 February 2012 - 11:38 AM

Looks alot better. Lets clean the Temp files and see if there are any exploitable apps before we go.

Run TFC by OT (Temp File Cleaner)
Please download TFC by Old Timer and save it to your desktop.
alternate download link

Save any unsaved work. TFC will close ALL open programs including your browser!
Double-click on TFC.exe to run it. If you are using Vista, right-click on the file and choose Run As Administrator.
Click the Start button to begin the cleaning process and let it run uninterrupted to completion.
Important! If TFC prompts you to reboot, please do so immediately. If not prompted, manually reboot the machine anyway to ensure a complete clean.

Please download MiniToolBox, save it to your desktop and run it.

Checkmark the following checkboxes:
  • Flush DNS
  • Report IE Proxy Settings
  • Reset IE Proxy Settings
  • Report FF Proxy Settings
  • Reset FF Proxy Settings
  • List content of Hosts
  • List IP configuration
  • List Winsock Entries
  • List last 10 Event Viewer log
  • List Installed Programs
  • List Users, Partitions and Memory size.
Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.

Note: When using "Reset FF Proxy Settings" option Firefox should be closed.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#8 RedW

RedW
  • Topic Starter

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:01 PM

Posted 25 February 2012 - 01:54 PM

Hi Boopme,

Here's the log!


MiniToolBox by Farbar Version: 18-01-2012
Ran by Peter (administrator) on 25-02-2012 at 18:51:33
Microsoft Windows 7 Home Premium (X64)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================


"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================



========================= IP Configuration: ================================

Intel® Wireless WiFi Link 4965AGN = Wireless Network Connection (Connected)
Marvell Yukon 88E8036 PCI-E Fast Ethernet Controller = Local Area Connection (Media disconnected)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global icmpredirects=enabled


popd
# End of IPv4 configuration



Windows IP Configuration

Host Name . . . . . . . . . . . . : AlbionV500
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No

Wireless LAN adapter Wireless Network Connection:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Intel® Wireless WiFi Link 4965AGN
Physical Address. . . . . . . . . : 00-1D-E0-7C-6B-EF
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::416a:68a6:8e9:1673%12(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.1.2(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Lease Obtained. . . . . . . . . . : 25 February 2012 18:47:54
Lease Expires . . . . . . . . . . : 26 February 2012 18:47:56
Default Gateway . . . . . . . . . : 192.168.1.1
DHCP Server . . . . . . . . . . . : 192.168.1.1
DHCPv6 IAID . . . . . . . . . . . : 218111456
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-13-2D-5F-B9-00-1A-80-A0-6E-3C
DNS Servers . . . . . . . . . . . : 192.168.1.1
NetBIOS over Tcpip. . . . . . . . : Enabled

Ethernet adapter Local Area Connection:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Marvell Yukon 88E8036 PCI-E Fast Ethernet Controller
Physical Address. . . . . . . . . : 00-1A-80-A0-41-C1
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter isatap.Belkin:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Local Area Connection* 9:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
IPv6 Address. . . . . . . . . . . : 2001:0:5ef5:79fb:2471:283e:a9fb:5057(Preferred)
Link-local IPv6 Address . . . . . : fe80::2471:283e:a9fb:5057%16(Preferred)
Default Gateway . . . . . . . . . : ::
NetBIOS over Tcpip. . . . . . . . : Disabled

Tunnel adapter isatap.{013F17E7-5879-4227-AF69-B8D6F16C5923}:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Server: UnKnown
Address: 192.168.1.1

Name: google.com
Addresses: 173.194.34.163
173.194.34.162
173.194.34.174
173.194.34.160
173.194.34.168
173.194.34.161
173.194.34.167
173.194.34.164
173.194.34.169
173.194.34.165
173.194.34.166


Pinging google.com [173.194.34.174] with 32 bytes of data:
Reply from 173.194.34.174: bytes=32 time=40ms TTL=54
Reply from 173.194.34.174: bytes=32 time=39ms TTL=54

Ping statistics for 173.194.34.174:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 39ms, Maximum = 40ms, Average = 39ms
Server: UnKnown
Address: 192.168.1.1

Name: yahoo.com
Addresses: 209.191.122.70
98.139.127.62
98.139.183.24


Pinging yahoo.com [98.139.127.62] with 32 bytes of data:
Reply from 98.139.127.62: bytes=32 time=217ms TTL=54
Reply from 98.139.127.62: bytes=32 time=193ms TTL=54

Ping statistics for 98.139.127.62:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 193ms, Maximum = 217ms, Average = 205ms
Server: UnKnown
Address: 192.168.1.1

Name: bleepingcomputer.com
Address: 208.43.87.2


Pinging bleepingcomputer.com [208.43.87.2] with 32 bytes of data:
Reply from 208.43.87.2: Destination host unreachable.
Reply from 208.43.87.2: Destination host unreachable.

Ping statistics for 208.43.87.2:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Ping statistics for 127.0.0.1:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
12...00 1d e0 7c 6b ef ......Intel® Wireless WiFi Link 4965AGN
11...00 1a 80 a0 41 c1 ......Marvell Yukon 88E8036 PCI-E Fast Ethernet Controller
1...........................Software Loopback Interface 1
15...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
16...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
17...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #2
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.1.1 192.168.1.2 25
127.0.0.0 255.0.0.0 On-link 127.0.0.1 306
127.0.0.1 255.255.255.255 On-link 127.0.0.1 306
127.255.255.255 255.255.255.255 On-link 127.0.0.1 306
192.168.1.0 255.255.255.0 On-link 192.168.1.2 281
192.168.1.2 255.255.255.255 On-link 192.168.1.2 281
192.168.1.255 255.255.255.255 On-link 192.168.1.2 281
224.0.0.0 240.0.0.0 On-link 127.0.0.1 306
224.0.0.0 240.0.0.0 On-link 192.168.1.2 281
255.255.255.255 255.255.255.255 On-link 127.0.0.1 306
255.255.255.255 255.255.255.255 On-link 192.168.1.2 281
===========================================================================
Persistent Routes:
None

IPv6 Route Table
===========================================================================
Active Routes:
If Metric Network Destination Gateway
16 58 ::/0 On-link
1 306 ::1/128 On-link
16 58 2001::/32 On-link
16 306 2001:0:5ef5:79fb:2471:283e:a9fb:5057/128
On-link
12 281 fe80::/64 On-link
16 306 fe80::/64 On-link
16 306 fe80::2471:283e:a9fb:5057/128
On-link
12 281 fe80::416a:68a6:8e9:1673/128
On-link
1 306 ff00::/8 On-link
16 306 ff00::/8 On-link
12 281 ff00::/8 On-link
===========================================================================
Persistent Routes:
None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [51712] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog5 04 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 05 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 06 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 07 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [134528] (Microsoft Corporation)
Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [134528] (Microsoft Corporation)
Catalog5 09 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [152864] (Apple Inc.)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70144] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 07 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [168304] (Microsoft Corporation)
x64-Catalog5 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [168304] (Microsoft Corporation)
x64-Catalog5 09 C:\Program Files\Bonjour\mdnsNSP.dll [193824] (Apple Inc.)
x64-Catalog5 10 C:\Program Files (x86)\USB Server 2\NPW\NPWprint.dll [195584] (Elite Silicon Technology Inc.)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [320000] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (02/25/2012 06:48:27 PM) (Source: Lavasoft Ad-Aware Service) (User: )
Description: Assertion failed: (ValueIsInDomain(val)) in .\SettingStringRestricted.cpp:38

Error: (02/25/2012 06:48:21 PM) (Source: Lavasoft Ad-Aware Service) (User: )
Description: Assertion failed: (ValueIsInDomain(val)) in .\SettingStringRestricted.cpp:38

Error: (02/25/2012 06:47:53 PM) (Source: Lavasoft Ad-Aware Service) (User: )
Description: Assertion failed: (ValueIsInDomain(val)) in .\SettingStringRestricted.cpp:38

Error: (02/25/2012 06:40:43 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest.

Error: (02/25/2012 00:31:47 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest.

Error: (02/25/2012 00:31:22 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.

Error: (02/24/2012 06:41:25 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_fa62ad231704eab7.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd.manifest.

Error: (02/24/2012 06:17:55 PM) (Source: Lavasoft Ad-Aware Service) (User: )
Description: Assertion failed: (ValueIsInDomain(val)) in .\SettingStringRestricted.cpp:38

Error: (02/24/2012 06:17:47 PM) (Source: Lavasoft Ad-Aware Service) (User: )
Description: Assertion failed: (ValueIsInDomain(val)) in .\SettingStringRestricted.cpp:38

Error: (02/24/2012 06:17:23 PM) (Source: Lavasoft Ad-Aware Service) (User: )
Description: Assertion failed: (ValueIsInDomain(val)) in .\SettingStringRestricted.cpp:38


System errors:
=============
Error: (02/25/2012 06:48:27 PM) (Source: Service Control Manager) (User: )
Description: The Lavasoft Ad-Aware Service service terminated unexpectedly. It has done this 3 time(s).

Error: (02/25/2012 06:48:21 PM) (Source: Service Control Manager) (User: )
Description: The Lavasoft Ad-Aware Service service terminated unexpectedly. It has done this 2 time(s). The following corrective action will be taken in 5000 milliseconds: Restart the service.

Error: (02/25/2012 06:48:15 PM) (Source: Service Control Manager) (User: )
Description: The Lavasoft Ad-Aware Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 5000 milliseconds: Restart the service.

Error: (02/25/2012 06:41:31 PM) (Source: Service Control Manager) (User: )
Description: The Apple Mobile Device service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.

Error: (02/24/2012 06:17:55 PM) (Source: Service Control Manager) (User: )
Description: The Lavasoft Ad-Aware Service service terminated unexpectedly. It has done this 3 time(s).

Error: (02/24/2012 06:17:49 PM) (Source: Service Control Manager) (User: )
Description: The Lavasoft Ad-Aware Service service terminated unexpectedly. It has done this 2 time(s). The following corrective action will be taken in 5000 milliseconds: Restart the service.

Error: (02/24/2012 06:17:39 PM) (Source: Service Control Manager) (User: )
Description: The Lavasoft Ad-Aware Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 5000 milliseconds: Restart the service.

Error: (02/24/2012 04:55:33 PM) (Source: Service Control Manager) (User: )
Description: The Lavasoft Ad-Aware Service service terminated unexpectedly. It has done this 3 time(s).

Error: (02/24/2012 04:55:26 PM) (Source: Service Control Manager) (User: )
Description: The Lavasoft Ad-Aware Service service terminated unexpectedly. It has done this 2 time(s). The following corrective action will be taken in 5000 milliseconds: Restart the service.

Error: (02/24/2012 04:55:20 PM) (Source: Service Control Manager) (User: )
Description: The Lavasoft Ad-Aware Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 5000 milliseconds: Restart the service.


Microsoft Office Sessions:
=========================
Error: (12/10/2010 05:11:33 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6539.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 4 seconds with 0 seconds of active time. This session ended with a crash.

Error: (12/10/2010 04:31:40 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6539.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 194 seconds with 60 seconds of active time. This session ended with a crash.

Error: (12/08/2010 08:40:36 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6539.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 499 seconds with 300 seconds of active time. This session ended with a crash.

Error: (11/29/2010 02:51:04 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6539.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 1016 seconds with 60 seconds of active time. This session ended with a crash.

Error: (11/26/2010 07:52:04 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6539.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 330 seconds with 0 seconds of active time. This session ended with a crash.

Error: (11/26/2010 06:38:21 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6539.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 14777 seconds with 1080 seconds of active time. This session ended with a crash.

Error: (11/26/2010 00:15:34 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6539.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 658 seconds with 120 seconds of active time. This session ended with a crash.

Error: (11/25/2010 08:30:42 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6539.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 20102 seconds with 1440 seconds of active time. This session ended with a crash.

Error: (11/24/2010 08:14:23 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6539.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 27 seconds with 0 seconds of active time. This session ended with a crash.

Error: (11/24/2010 08:05:57 PM) (Source: Microsoft Office 12 Sessions)(User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6539.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 17039 seconds with 540 seconds of active time. This session ended with a crash.


=========================== Installed Programs ============================

Update for Microsoft Office 2007 (KB2508958)
6300 (Version: 130.0.365.000)
6300_Help (Version: 82.0.242.000)
6300Trb (Version: 82.0.242.000)
64 Bit HP CIO Components Installer (Version: 6.2.1)
7-Zip 4.65 (x64 edition) (Version: 4.65.00.0)
Acrobat.com (Version: 2.3.0)
Acrobat.com (Version: 2.3.0.0)
Ad-Aware
Ad-Aware (Version: 9.0.0)
Adobe AIR (Version: 1.5.3.9130)
Adobe Anchor Service CS3 (Version: 1.0)
Adobe Asset Services CS3 (Version: 3)
Adobe Audition 3.0 (Version: 3.0)
Adobe Audition 3.0 Vista Compatibility
Adobe Bridge CS3 (Version: 2)
Adobe Bridge Start Meeting (Version: 1.0)
Adobe Camera Raw 4.0 (Version: 4.0)
Adobe CMaps (Version: 1.0)
Adobe Default Language CS3 (Version: 1.0)
Adobe Device Central CS3 (Version: 1.0)
Adobe Dreamweaver CS3 (Version: 9)
Adobe Dreamweaver CS3 (Version: 9.0)
Adobe ExtendScript Toolkit 2 (Version: 2.0)
Adobe Extension Manager CS3 (Version: 1.8)
Adobe Flash Player 10 ActiveX (Version: 10.0.32.18)
Adobe Flash Player 10 Plugin (Version: 10.0.45.2)
Adobe Help Viewer CS3 (Version: 1)
Adobe PDF Library Files (Version: 8.0)
Adobe Reader 9.4.1 (Version: 9.4.1)
Adobe Setup (Version: 1.0)
Adobe Type Support (Version: 1.0)
Adobe Update Manager CS3 (Version: 5.1.0)
Adobe Version Cue CS3 Client (Version: 3)
Advertising Center (Version: 0.0.0.1)
AIO_CDB_ProductContext (Version: 130.0.365.000)
AIO_CDB_Software (Version: 130.0.365.000)
AIO_Scan (Version: 130.0.421.000)
ALLConverter to iPhone (Version: 1.0)
ALLConverter to iPhone (Version: 1.2)
Alps Pointing-device for VAIO
Amazon MP3 Downloader 1.0.9
AnyDVD (Version: 6.6.7.0)
AoA Audio Extractor
Apple Application Support (Version: 1.4.1)
Apple Mobile Device Support (Version: 3.3.1.3)
Apple Software Update (Version: 2.1.1.116)
Ashampoo Burning Studio 6 FREE (Version: 6.7.7)
aTube Catcher (Version: 2.7.778)
Audacity 1.2.6
AudVidder version 1.0.0.5
AVG 2011 (Version: 10.0.1424)
AVG 2011 (Version: 10.0.2113)
Avi2Dvd 0.4.5 beta (Version: 0.4.5 beta)
BatteryBar (remove only)
BitTorrent
Bonjour (Version: 2.0.4.0)
BufferChm (Version: 130.0.331.000)
Canon Inkjet Printer/Scanner/Fax Extended Survey Program
Canon MP Navigator EX 3.0
Canon MP270 series MP Drivers
Canon MP270 series User Registration
Canon Utilities Easy-PhotoPrint EX
Canon Utilities My Printer
Canon Utilities Solution Menu
Clone2Go Video Converter Free Version 1.9.2
CloneDVDmobile (Version: 1.7.1.0)
Combined Community Codec Pack 2009-09-09 (Version: 2009.09.09.0)
Compatibility Pack for the 2007 Office system (Version: 12.0.6612.1000)
Copy (Version: 130.0.428.000)
CopyTrans Suite Remove Only (Version: 2.23)
Core FTP LE 2.1
CutePDF Writer 2.8
Cyberduck 4.0b9 (8294) (Version: 4.0b9 (8294))
Destinations (Version: 130.0.0.0)
DeviceDiscovery (Version: 130.0.465.000)
DivX Setup (Version: 1.0.0.450)
DNA (Version: 2.2.4 (16502))
DocProc (Version: 13.0.0.0)
DolbyFiles (Version: 2.0)
Dropbox (Version: 1.2.52)
ESET Online Scanner v3
Fax (Version: 130.0.418.000)
ffdshow (Version: 1.0)
File Scavenger 3.2 (en) (Version: 3.2.22.0)
FM Screen Capture Codec (Remove Only)
Free FLV Converter V 6.91.0 (Version: 6.91.0.0)
Free ISO Create Wizard 3.6.1.1
Free RAR Extract Frog (Version: 1.80)
Free RM to MP3 Converter 1.12
Free Video to MP3 Converter version 4.1
GB-PVR (Version: 1.3.11)
get_iplayer 4.2 (Version: 4.2)
Google Chrome (Version: 17.0.963.56)
Google Earth Plug-in (Version: 6.1.0.5001)
Google Toolbar for Internet Explorer (Version: 1.0.0)
Google Toolbar for Internet Explorer (Version: 7.2.2427.2330)
Google Update Helper (Version: 1.3.21.99)
GPBaseService2 (Version: 130.0.371.000)
Haali Media Splitter
HandBrake 0.9.5 (Version: 0.9.5)
Hauppauge English Help Files and Resources
Hauppauge MCE XP/Vista Software Encoder (2.0.25180) (Version: 2.0.25180)
Hauppauge WinTV
Hauppauge WinTV DVB-T EPG Service
Hauppauge WinTV Infrared Remote
Hauppauge WinTV Scheduler
Hauppauge WinTV Soft PVR
HP Customer Participation Program 13.0 (Version: 13.0)
HP Imaging Device Functions 13.0 (Version: 13.0)
HP Photosmart Essential 3.5 (Version: 3.5)
HP Photosmart Officejet and Deskjet All-In-One Driver Software 13.0 Rel. B (Version: 13.0)
HP Smart Web Printing 4.51 (Version: 4.51)
HP Solution Center 13.0 (Version: 13.0)
HP Update (Version: 4.000.011.006)
HPPhotoGadget (Version: 130.0.282.000)
HPPhotoSmartDiscLabelContent1 (Version: 2.04.0000)
HPPhotosmartEssential (Version: 2.04.0000)
HPProductAssistant (Version: 130.0.371.000)
HPSSupply (Version: 130.0.371.000)
ImgBurn (Version: 2.5.1.0)
inSSIDer 2.0 (Version: 2.0.6)
InterVideo FilterSDK for Hauppauge
iPhone/iTouch/iPod to Computer Transfer 7.5.0
iTunes (Version: 10.1.2.17)
iTunes Export (Version: 2.2.2)
Jasc Animation Shop 3 (Version: 3.11)
Jasc Paint Shop Pro 9 (Version: 9.00.0000)
Java Auto Updater (Version: 2.0.3.1)
Java™ 6 Update 24 (64-bit) (Version: 6.0.240)
Java™ 6 Update 24 (Version: 6.0.240)
K-Lite Mega Codec Pack 5.8.3 (Version: 5.8.3)
Malwarebytes Anti-Malware version 1.60.1.1000 (Version: 1.60.1.1000)
MarketResearch (Version: 130.0.374.000)
Microsoft .NET Framework 1.1 (Version: 1.1.4322)
Microsoft .NET Framework 1.1 Security Update (KB953297)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Access MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Access Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Excel MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Excel Viewer (Version: 12.0.6612.1000)
Microsoft Office Groove MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Groove Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office InfoPath MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000)
Microsoft Office OneNote MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Outlook MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office PowerPoint MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (French) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proof (Spanish) 2007 (Version: 12.0.6612.1000)
Microsoft Office Proofing (English) 2007 (Version: 12.0.4518.1014)
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Publisher MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared 64-bit MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Office Ultimate 2007 (Version: 12.0.6612.1000)
Microsoft Office Word MUI (English) 2007 (Version: 12.0.6612.1000)
Microsoft Silverlight (Version: 4.1.10111.0)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
MixMeister BPM Analyzer 1.0
MobileMe Control Panel (Version: 3.1.5.0)
Moovida (Version: 1.0.5)
Mozilla Firefox (3.6) (Version: 3.6 (en-US))
MSXML 4.0 (Version: 4.20.9818.0)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
Musicnotes Software Suite 1.5.3 (Version: 1.5.3)
My Movies PC 1.1.1004 (Version: 1.1.1004)
Nero 9.4.13.2c
Nero ControlCenter (Version: 9.0.0.1)
Nero Installer (Version: 4.4.9.0)
NeroBurningROM (Version: 9.4.13.100)
Network64 (Version: 130.0.572.000)
NVIDIA 3D Vision Driver 266.58 (Version: 266.58)
NVIDIA Control Panel 266.58 (Version: 266.58)
NVIDIA Drivers
NVIDIA Graphics Driver 266.58 (Version: 266.58)
NVIDIA Install Application (Version: 2.265.36.0)
NVIDIA nView 135.50 (Version: 135.50)
NVIDIA nView Desktop Manager (Version: 6.14.10.13550)
NVIDIA Stereoscopic 3D Driver (Version: 7.17.12.6658)
OCR Software by I.R.I.S. 13.0 (Version: 13.0)
Playlist Creator 3.6.2 (Version: 3.6.2.0)
PlayReady PC Runtime amd64 (Version: 1.3.0)
PodLift
PodLift (Version: 1.0.2.1)
QuickTime (Version: 7.69.80.9)
Real Alternative 1.9.0 Lite (Version: 1.9.0)
RM Downloader 3.1.3.3.2010.06.26
S3 Backup (Version: 1.0.5 r2734)
Safari (Version: 5.33.19.4)
Scan (Version: 13.0.0.0)
SD Formatter (Version: 2.9.5)
SesamTV Media Center
Shop for HP Supplies (Version: 13.0)
Sibelius Scorch (Firefox, Opera, Netscape only) (Version: 6.0.7)
SmartWebPrinting (Version: 130.0.457.000)
SolutionCenter (Version: 130.0.373.000)
Sony Video Shared Library (Version: 3.5.00)
SopCast 3.2.9 (Version: 3.2.9)
Spotify (Version: 0.3.23)
Status (Version: 130.0.469.000)
SureAnalysis 2.19
sureanalysis version 3.13 (Version: 3.13)
SyncBack
System Requirements Lab
TeamViewer 5 (Version: 5.0.8703 )
Texas Instruments PCIxx21/x515/xx12 drivers. (Version: 2.0.0020)
TIPCI (Version: 2.0.0020)
Toolbox (Version: 130.0.648.000)
TrayApp (Version: 130.0.422.000)
Trojan Killer (Version: 2.1.1.8)
Uninstall 1.0.0.1
UnloadSupport (Version: 11.0.0)
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 4 Client Profile (KB2473228) (Version: 1)
Update for Microsoft Office 2007 suites (KB2596651) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596789) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2597998) 32-Bit Edition
Update for Microsoft Office Excel 2007 (KB2596596) 32-Bit Edition
USB Server (Version: 0.10.0308.0040)
VAIO Event Service (Version: 4.1.00.07150)
VAIO Power Management (Version: 3.2.0.10310)
VC80CRTRedist - 8.0.50727.4053 (Version: 1.1.0)
VDownloader 1.12
Visual C++ 2008 x86 Runtime - (v9.0.30729) (Version: 9.0.30729)
Visual C++ 2008 x86 Runtime - v9.0.30729.01 (Version: 9.0.30729.01)
Visual C++ 8.0 Runtime Setup Package (x64) (Version: 9.0.0.623)
Visual Studio 2008 x64 Redistributables (Version: 10.0.0.2)
VLC media player 1.1.5 (Version: 1.1.5)
VTPlus32 for WinTV (English)
WebReg (Version: 130.0.132.017)
Win7codecs (Version: 2.4.7)
Windows Live ID Sign-in Assistant (Version: 6.500.3165.0)
Windows Media Player Firefox Plugin (Version: 1.0.0.8)
Windows Movie Maker 2.6 (Version: 2.6.4038.0)
WinPcap 4.1.1 (Version: 4.1.0.1753)
WinRAR archiver
WirelessMon V3.1
XBMC
ZumoCast

========================= Memory info: ===================================

Percentage of memory in use: 44%
Total physical RAM: 4094.43 MB
Available physical RAM: 2277.52 MB
Total Pagefile: 8187 MB
Available Pagefile: 6406.56 MB
Total Virtual: 4095.88 MB
Available Virtual: 3964.88 MB

========================= Partitions: =====================================

1 Drive c: () (Fixed) (Total:465.66 GB) (Free:106.91 GB) NTFS

========================= Users: ========================================

User accounts for \\ALBIONV500

Administrator ASPNET Guest
MacPeter Peter


**** End of log ****

#9 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,530 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:09:01 AM

Posted 25 February 2012 - 07:42 PM

Hello again, there are some apps that need fixing.

Important Note: Your version of Java is out of date. Older versions have vulnerabilities that malicious sites can use to exploit and infect your system.Please follow these steps to remove older version Java components and update:
  • Download the latest version of Java Runtime Environment (JRE) Version 7 and save it to your desktop.
  • Look for "Java Platform, Standard Edition".
  • Click the "Download JRE" button to the right.
  • Read the License Agreement, and then check the box that says: "Accept License Agreement".
  • From the list, select your OS and Platform (32-bit or 64-bit).
  • If a download for an Offline Installation is available, it is recommended to choose that and save the file to your desktop.
  • Close any programs you may have running - especially your web browser.
Go to Posted Image > Control Panel, double-click on Add/Remove Programs or Programs and Features in Vista/Windows 7 and remove all older versions of Java.
  • Check (highlight) any item with Java Runtime Environment (JRE or J2SE) in the name.
  • Click the Remove or Change/Remove button and follow the onscreen instructions for the Java uninstaller.
  • Repeat as many times as necessary to remove each Java versions.
  • Reboot your computer once all Java components are removed.
  • Then from your desktop double-click on jre-7u3-windows-i586.exe (or jre-7u3-windows-x64.exe for 64-bit) to install the newest version.
  • If using Windows 7 or Vista and the installer refuses to launch due to insufficient user permissions, then Run As Administrator.
  • When the Java Setup - Welcome window opens, click the Install > button.
  • If offered to install a Toolbar, just uncheck the box before continuing unless you want it.
  • The McAfee Security Scan Plus tool is installed by default unless you uncheck the McAfee installation box when updating Java.
Note: The Java Quick Starter (JQS.exe) adds a service to improve the initial startup time of Java applets and applications but it's not necessary.
To disable the JQS service if you don't want to use it:
  • Go to Start > Control Panel > Java > Advanced > Miscellaneous and uncheck the box for Java Quick Starter.
  • Click Ok and reboot your computer.



Similarly Update to Adobe Reader X (10.1.0)
Note UN check the box so you do not install the toolbar,unless you really want it..
You have other Adobe apps you should also check.
Free! Google Toolbar search Google from any web page, block pop-ups

Yes, install Google Toolbar - optional

How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook

#10 RedW

RedW
  • Topic Starter

  • Members
  • 20 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:02:01 PM

Posted 26 February 2012 - 12:10 PM

OK that's all done!

Thanks for your expert help :)

Cheers,

Peter

#11 boopme

boopme

    To Insanity and Beyond


  • Global Moderator
  • 73,530 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:NJ USA
  • Local time:09:01 AM

Posted 26 February 2012 - 03:47 PM

You're welcome from us all.
How do I get help? Who is helping me?For the time will come when men will not put up with sound doctrine. Instead, to suit their own desires, they will gather around them a great number of teachers to say what their itching ears want to hear....Become a BleepingComputer fan: Facebook




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users