Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

MyStart Incredibar Virus


  • Please log in to reply
17 replies to this topic

#1 Ihavechickens123

Ihavechickens123

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:03:45 AM

Posted 21 July 2012 - 06:06 AM

Hi

I am running Windows 7 64-bit and every time I try to search for something I get redirected to the Mystart Incredibar site. How can I remove this?

Thanks,
Greg

Edited by hamluis, 21 July 2012 - 06:54 AM.
Moved from Win 7 to Am i Infected - Hamluis.


BC AdBot (Login to Remove)

 


#2 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:03:45 AM

Posted 21 July 2012 - 07:03 AM

Download

TDSSkiller

Launch it.Click on change parameters-Select TDLFS file system

Click on "Scan".Please post the LOG report(log file should be in your C drive)

Do not change the default options on scan results

Download

aswMBR

Launch it, allow it to download latest Avast! virus definitions
Click the "Scan" button to start scan.After scan finishes,click on Save log

Post the log results here

Download

ESET online scanner

Install it

Click on START,it should download the virus definitions
When scan gets completed,click on LIST of found threats

Export the list to desktop,copy the contents of the text file in your reply

#3 Ihavechickens123

Ihavechickens123
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:03:45 AM

Posted 21 July 2012 - 11:39 AM

Here is the log from TDSSKiller:


08:47:09.0571 5360 TDSS rootkit removing tool 2.7.46.0 Jul 16 2012 22:10:11
08:47:09.0806 5360 ============================================================
08:47:09.0806 5360 Current date / time: 2012/07/21 08:47:09.0806
08:47:09.0806 5360 SystemInfo:
08:47:09.0806 5360
08:47:09.0806 5360 OS Version: 6.1.7601 ServicePack: 1.0
08:47:09.0806 5360 Product type: Workstation
08:47:09.0806 5360 ComputerName: ADMIN-PC
08:47:09.0806 5360 UserName: admin
08:47:09.0806 5360 Windows directory: C:\Windows
08:47:09.0806 5360 System windows directory: C:\Windows
08:47:09.0806 5360 Running under WOW64
08:47:09.0806 5360 Processor architecture: Intel x64
08:47:09.0806 5360 Number of processors: 8
08:47:09.0806 5360 Page size: 0x1000
08:47:09.0806 5360 Boot type: Normal boot
08:47:09.0806 5360 ============================================================
08:47:10.0554 5360 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 (931.51 Gb), SectorSize: 0x200, Cylinders: 0x1F8B1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xF0, Type 'K0', Flags 0x00000048
08:47:10.0573 5360 Drive \Device\Harddisk1\DR1 - Size: 0x1D1C1115E00 (1863.02 Gb), SectorSize: 0x200, Cylinders: 0x3B601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
08:47:10.0609 5360 ============================================================
08:47:10.0609 5360 \Device\Harddisk0\DR0:
08:47:10.0637 5360 MBR partitions:
08:47:10.0637 5360 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
08:47:10.0637 5360 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x746D3000
08:47:10.0637 5360 \Device\Harddisk1\DR1:
08:47:10.0637 5360 MBR partitions:
08:47:10.0637 5360 \Device\Harddisk1\DR1\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0xE8E074C1
08:47:10.0637 5360 ============================================================
08:47:10.0666 5360 C: <-> \Device\Harddisk0\DR0\Partition1
08:47:10.0723 5360 D: <-> \Device\Harddisk1\DR1\Partition0
08:47:10.0723 5360 ============================================================
08:47:10.0723 5360 Initialize success
08:47:10.0723 5360 ============================================================
08:47:24.0088 2204 ============================================================
08:47:24.0088 2204 Scan started
08:47:24.0088 2204 Mode: Manual; TDLFS;
08:47:24.0088 2204 ============================================================
08:47:39.0730 2204 1394ohci (a87d604aea360176311474c87a63bb88) C:\Windows\system32\drivers\1394ohci.sys
08:47:39.0751 2204 1394ohci - ok
08:47:39.0855 2204 ACPI (d81d9e70b8a6dd14d42d7b4efa65d5f2) C:\Windows\system32\drivers\ACPI.sys
08:47:39.0863 2204 ACPI - ok
08:47:39.0906 2204 AcpiPmi (99f8e788246d495ce3794d7e7821d2ca) C:\Windows\system32\drivers\acpipmi.sys
08:47:39.0917 2204 AcpiPmi - ok
08:47:40.0030 2204 AdobeARMservice (62b7936f9036dd6ed36e6a7efa805dc0) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
08:47:40.0031 2204 AdobeARMservice - ok
08:47:40.0373 2204 AdobeFlashPlayerUpdateSvc (459ac130c6ab892b1cd5d7544626efc5) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
08:47:40.0376 2204 AdobeFlashPlayerUpdateSvc - ok
08:47:40.0431 2204 adp94xx (2f6b34b83843f0c5118b63ac634f5bf4) C:\Windows\system32\DRIVERS\adp94xx.sys
08:47:40.0458 2204 adp94xx - ok
08:47:40.0482 2204 adpahci (597f78224ee9224ea1a13d6350ced962) C:\Windows\system32\DRIVERS\adpahci.sys
08:47:40.0516 2204 adpahci - ok
08:47:40.0543 2204 adpu320 (e109549c90f62fb570b9540c4b148e54) C:\Windows\system32\DRIVERS\adpu320.sys
08:47:40.0546 2204 adpu320 - ok
08:47:40.0569 2204 AeLookupSvc (4b78b431f225fd8624c5655cb1de7b61) C:\Windows\System32\aelupsvc.dll
08:47:40.0570 2204 AeLookupSvc - ok
08:47:40.0766 2204 AFD (1c7857b62de5994a75b054a9fd4c3825) C:\Windows\system32\drivers\afd.sys
08:47:40.0782 2204 AFD - ok
08:47:40.0845 2204 agp440 (608c14dba7299d8cb6ed035a68a15799) C:\Windows\system32\drivers\agp440.sys
08:47:40.0869 2204 agp440 - ok
08:47:40.0950 2204 ALG (3290d6946b5e30e70414990574883ddb) C:\Windows\System32\alg.exe
08:47:40.0951 2204 ALG - ok
08:47:41.0026 2204 aliide (5812713a477a3ad7363c7438ca2ee038) C:\Windows\system32\drivers\aliide.sys
08:47:41.0068 2204 aliide - ok
08:47:41.0128 2204 AMD External Events Utility (9c616ba191b80f5cd1a1b9553e107100) C:\Windows\system32\atiesrxx.exe
08:47:41.0129 2204 AMD External Events Utility - ok
08:47:41.0222 2204 amdide (1ff8b4431c353ce385c875f194924c0c) C:\Windows\system32\drivers\amdide.sys
08:47:41.0233 2204 amdide - ok
08:47:41.0412 2204 AmdK8 (7024f087cff1833a806193ef9d22cda9) C:\Windows\system32\DRIVERS\amdk8.sys
08:47:41.0428 2204 AmdK8 - ok
08:47:47.0104 2204 amdkmdag (5165e83751b8ff40e5e4925996fcc506) C:\Windows\system32\DRIVERS\atikmdag.sys
08:47:47.0140 2204 amdkmdag - ok
08:47:47.0886 2204 amdkmdap (86ab3cf484260c4318f3a6e8b035f422) C:\Windows\system32\DRIVERS\atikmpag.sys
08:47:47.0887 2204 amdkmdap - ok
08:47:47.0973 2204 AmdPPM (1e56388b3fe0d031c44144eb8c4d6217) C:\Windows\system32\DRIVERS\amdppm.sys
08:47:47.0985 2204 AmdPPM - ok
08:47:48.0234 2204 amdsata (d4121ae6d0c0e7e13aa221aa57ef2d49) C:\Windows\system32\drivers\amdsata.sys
08:47:48.0288 2204 amdsata - ok
08:47:48.0531 2204 amdsbs (f67f933e79241ed32ff46a4f29b5120b) C:\Windows\system32\DRIVERS\amdsbs.sys
08:47:48.0632 2204 amdsbs - ok
08:47:48.0738 2204 amdxata (540daf1cea6094886d72126fd7c33048) C:\Windows\system32\drivers\amdxata.sys
08:47:48.0748 2204 amdxata - ok
08:47:49.0026 2204 AppID (89a69c3f2f319b43379399547526d952) C:\Windows\system32\drivers\appid.sys
08:47:49.0094 2204 AppID - ok
08:47:49.0266 2204 AppIDSvc (0bc381a15355a3982216f7172f545de1) C:\Windows\System32\appidsvc.dll
08:47:49.0267 2204 AppIDSvc - ok
08:47:49.0363 2204 Appinfo (3977d4a871ca0d4f2ed1e7db46829731) C:\Windows\System32\appinfo.dll
08:47:49.0364 2204 Appinfo - ok
08:47:49.0704 2204 Apple Mobile Device (3debbecf665dcdde3a95d9b902010817) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
08:47:49.0706 2204 Apple Mobile Device - ok
08:47:49.0764 2204 arc (c484f8ceb1717c540242531db7845c4e) C:\Windows\system32\DRIVERS\arc.sys
08:47:49.0775 2204 arc - ok
08:47:49.0905 2204 arcsas (019af6924aefe7839f61c830227fe79c) C:\Windows\system32\DRIVERS\arcsas.sys
08:47:49.0943 2204 arcsas - ok
08:47:50.0169 2204 aspnet_state (9217d874131ae6ff8f642f124f00a555) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
08:47:50.0170 2204 aspnet_state - ok
08:47:50.0273 2204 AsyncMac (769765ce2cc62867468cea93969b2242) C:\Windows\system32\DRIVERS\asyncmac.sys
08:47:50.0306 2204 AsyncMac - ok
08:47:50.0358 2204 atapi (02062c0b390b7729edc9e69c680a6f3c) C:\Windows\system32\drivers\atapi.sys
08:47:50.0371 2204 atapi - ok
08:47:51.0750 2204 athr (0acc06fcf46f64ed4f11e57ee461c1f4) C:\Windows\system32\DRIVERS\athrx.sys
08:47:51.0826 2204 athr - ok
08:47:52.0644 2204 AtiHDAudioService (dbb487d09f56c674430ac454fd8bcab9) C:\Windows\system32\drivers\AtihdW76.sys
08:47:52.0676 2204 AtiHDAudioService - ok
08:47:53.0335 2204 atksgt (fc0e8778c000291caf60eb88c011e931) C:\Windows\system32\DRIVERS\atksgt.sys
08:47:53.0347 2204 atksgt - ok
08:47:55.0068 2204 AudioEndpointBuilder (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
08:47:55.0086 2204 AudioEndpointBuilder - ok
08:47:55.0090 2204 AudioSrv (f23fef6d569fce88671949894a8becf1) C:\Windows\System32\Audiosrv.dll
08:47:55.0092 2204 AudioSrv - ok
08:47:55.0223 2204 AxInstSV (a6bf31a71b409dfa8cac83159e1e2aff) C:\Windows\System32\AxInstSV.dll
08:47:55.0225 2204 AxInstSV - ok
08:47:55.0468 2204 b06bdrv (3e5b191307609f7514148c6832bb0842) C:\Windows\system32\DRIVERS\bxvbda.sys
08:47:55.0698 2204 b06bdrv - ok
08:47:56.0057 2204 b57nd60a (b5ace6968304a3900eeb1ebfd9622df2) C:\Windows\system32\DRIVERS\b57nd60a.sys
08:47:56.0188 2204 b57nd60a - ok
08:47:56.0341 2204 BDESVC (fde360167101b4e45a96f939f388aeb0) C:\Windows\System32\bdesvc.dll
08:47:56.0342 2204 BDESVC - ok
08:47:56.0478 2204 Beep (16a47ce2decc9b099349a5f840654746) C:\Windows\system32\drivers\Beep.sys
08:47:56.0479 2204 Beep - ok
08:47:57.0388 2204 BFE (82974d6a2fd19445cc5171fc378668a4) C:\Windows\System32\bfe.dll
08:47:57.0408 2204 BFE - ok
08:47:58.0152 2204 BITS (1ea7969e3271cbc59e1730697dc74682) C:\Windows\System32\qmgr.dll
08:47:58.0183 2204 BITS - ok
08:47:58.0446 2204 blbdrive (61583ee3c3a17003c4acd0475646b4d3) C:\Windows\system32\DRIVERS\blbdrive.sys
08:47:58.0505 2204 blbdrive - ok
08:48:00.0667 2204 Bonjour Service (ebbcd5dfbb1de70e8f4af8fa59e401fd) C:\Program Files\Bonjour\mDNSResponder.exe
08:48:00.0731 2204 Bonjour Service - ok
08:48:00.0761 2204 bowser (6c02a83164f5cc0a262f4199f0871cf5) C:\Windows\system32\DRIVERS\bowser.sys
08:48:00.0780 2204 bowser - ok
08:48:00.0873 2204 BrFiltLo (f09eee9edc320b5e1501f749fde686c8) C:\Windows\system32\DRIVERS\BrFiltLo.sys
08:48:00.0906 2204 BrFiltLo - ok
08:48:01.0154 2204 BrFiltUp (b114d3098e9bdb8bea8b053685831be6) C:\Windows\system32\DRIVERS\BrFiltUp.sys
08:48:01.0173 2204 BrFiltUp - ok
08:48:01.0214 2204 Browser (8ef0d5c41ec907751b8429162b1239ed) C:\Windows\System32\browser.dll
08:48:01.0216 2204 Browser - ok
08:48:01.0287 2204 Brserid (43bea8d483bf1870f018e2d02e06a5bd) C:\Windows\System32\Drivers\Brserid.sys
08:48:01.0468 2204 Brserid - ok
08:48:01.0626 2204 BrSerWdm (a6eca2151b08a09caceca35c07f05b42) C:\Windows\System32\Drivers\BrSerWdm.sys
08:48:01.0649 2204 BrSerWdm - ok
08:48:01.0753 2204 BrUsbMdm (b79968002c277e869cf38bd22cd61524) C:\Windows\System32\Drivers\BrUsbMdm.sys
08:48:01.0763 2204 BrUsbMdm - ok
08:48:01.0785 2204 BrUsbSer (a87528880231c54e75ea7a44943b38bf) C:\Windows\System32\Drivers\BrUsbSer.sys
08:48:01.0787 2204 BrUsbSer - ok
08:48:01.0951 2204 BTHMODEM (9da669f11d1f894ab4eb69bf546a42e8) C:\Windows\system32\DRIVERS\bthmodem.sys
08:48:02.0001 2204 BTHMODEM - ok
08:48:02.0053 2204 bthserv (95f9c2976059462cbbf227f7aab10de9) C:\Windows\system32\bthserv.dll
08:48:02.0054 2204 bthserv - ok
08:48:02.0476 2204 cdfs (b8bd2bb284668c84865658c77574381a) C:\Windows\system32\DRIVERS\cdfs.sys
08:48:02.0478 2204 cdfs - ok
08:48:02.0965 2204 cdrom (f036ce71586e93d94dab220d7bdf4416) C:\Windows\system32\DRIVERS\cdrom.sys
08:48:03.0164 2204 cdrom - ok
08:48:03.0319 2204 CertPropSvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
08:48:03.0320 2204 CertPropSvc - ok
08:48:03.0394 2204 circlass (d7cd5c4e1b71fa62050515314cfb52cf) C:\Windows\system32\DRIVERS\circlass.sys
08:48:03.0395 2204 circlass - ok
08:48:03.0547 2204 CLFS (fe1ec06f2253f691fe36217c592a0206) C:\Windows\system32\CLFS.sys
08:48:03.0624 2204 CLFS - ok
08:48:03.0963 2204 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
08:48:03.0965 2204 clr_optimization_v2.0.50727_32 - ok
08:48:04.0329 2204 clr_optimization_v2.0.50727_64 (d1ceea2b47cb998321c579651ce3e4f8) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
08:48:04.0330 2204 clr_optimization_v2.0.50727_64 - ok
08:48:05.0033 2204 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
08:48:05.0035 2204 clr_optimization_v4.0.30319_32 - ok
08:48:05.0246 2204 clr_optimization_v4.0.30319_64 (c6f9af94dcd58122a4d7e89db6bed29d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
08:48:05.0247 2204 clr_optimization_v4.0.30319_64 - ok
08:48:05.0403 2204 CmBatt (0840155d0bddf1190f84a663c284bd33) C:\Windows\system32\DRIVERS\CmBatt.sys
08:48:05.0510 2204 CmBatt - ok
08:48:05.0634 2204 cmdide (e19d3f095812725d88f9001985b94edd) C:\Windows\system32\drivers\cmdide.sys
08:48:05.0676 2204 cmdide - ok
08:48:06.0166 2204 CNG (c4943b6c962e4b82197542447ad599f4) C:\Windows\system32\Drivers\cng.sys
08:48:06.0179 2204 CNG - ok
08:48:06.0219 2204 Compbatt (102de219c3f61415f964c88e9085ad14) C:\Windows\system32\DRIVERS\compbatt.sys
08:48:06.0231 2204 Compbatt - ok
08:48:06.0290 2204 CompositeBus (03edb043586cceba243d689bdda370a8) C:\Windows\system32\drivers\CompositeBus.sys
08:48:06.0342 2204 CompositeBus - ok
08:48:06.0360 2204 COMSysApp - ok
08:48:06.0877 2204 cpuz135 (262969a3fab32b9e17e63e2d17a57744) C:\Windows\system32\drivers\cpuz135_x64.sys
08:48:06.0878 2204 cpuz135 - ok
08:48:07.0508 2204 crcdisk (1c827878a998c18847245fe1f34ee597) C:\Windows\system32\DRIVERS\crcdisk.sys
08:48:07.0584 2204 crcdisk - ok
08:48:07.0823 2204 CryptSvc (4f5414602e2544a4554d95517948b705) C:\Windows\system32\cryptsvc.dll
08:48:07.0856 2204 CryptSvc - ok
08:48:08.0306 2204 DcomLaunch (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
08:48:08.0316 2204 DcomLaunch - ok
08:48:08.0782 2204 defragsvc (3cec7631a84943677aa8fa8ee5b6b43d) C:\Windows\System32\defragsvc.dll
08:48:08.0784 2204 defragsvc - ok
08:48:08.0821 2204 DfsC (9bb2ef44eaa163b29c4a4587887a0fe4) C:\Windows\system32\Drivers\dfsc.sys
08:48:08.0823 2204 DfsC - ok
08:48:09.0406 2204 Dhcp (43d808f5d9e1a18e5eeb5ebc83969e4e) C:\Windows\system32\dhcpcore.dll
08:48:09.0421 2204 Dhcp - ok
08:48:09.0527 2204 discache (13096b05847ec78f0977f2c0f79e9ab3) C:\Windows\system32\drivers\discache.sys
08:48:09.0546 2204 discache - ok
08:48:09.0744 2204 Disk (9819eee8b5ea3784ec4af3b137a5244c) C:\Windows\system32\DRIVERS\disk.sys
08:48:09.0782 2204 Disk - ok
08:48:09.0969 2204 Dnscache (16835866aaa693c7d7fceba8fff706e4) C:\Windows\System32\dnsrslvr.dll
08:48:10.0004 2204 Dnscache - ok
08:48:10.0158 2204 dot3svc (b1fb3ddca0fdf408750d5843591afbc6) C:\Windows\System32\dot3svc.dll
08:48:10.0167 2204 dot3svc - ok
08:48:10.0446 2204 DPS (b26f4f737e8f9df4f31af6cf31d05820) C:\Windows\system32\dps.dll
08:48:10.0473 2204 DPS - ok
08:48:10.0534 2204 drmkaud (9b19f34400d24df84c858a421c205754) C:\Windows\system32\drivers\drmkaud.sys
08:48:10.0584 2204 drmkaud - ok
08:48:11.0738 2204 DXGKrnl (f5bee30450e18e6b83a5012c100616fd) C:\Windows\System32\drivers\dxgkrnl.sys
08:48:11.0742 2204 DXGKrnl - ok
08:48:11.0846 2204 eamonm (aca3fe4f18a945b7bf2618a79f6f670b) C:\Windows\system32\DRIVERS\eamonm.sys
08:48:11.0872 2204 eamonm - ok
08:48:12.0084 2204 EapHost (e2dda8726da9cb5b2c4000c9018a9633) C:\Windows\System32\eapsvc.dll
08:48:12.0086 2204 EapHost - ok
08:48:13.0696 2204 ebdrv (dc5d737f51be844d8c82c695eb17372f) C:\Windows\system32\DRIVERS\evbda.sys
08:48:13.0935 2204 ebdrv - ok
08:48:15.0061 2204 EFS (c118a82cd78818c29ab228366ebf81c3) C:\Windows\System32\lsass.exe
08:48:15.0063 2204 EFS - ok
08:48:15.0566 2204 ehdrv (6672438bdcbfd87250d22112d458294d) C:\Windows\system32\DRIVERS\ehdrv.sys
08:48:15.0595 2204 ehdrv - ok
08:48:16.0458 2204 ehRecvr (c4002b6b41975f057d98c439030cea07) C:\Windows\ehome\ehRecvr.exe
08:48:16.0473 2204 ehRecvr - ok
08:48:16.0525 2204 ehSched (4705e8ef9934482c5bb488ce28afc681) C:\Windows\ehome\ehsched.exe
08:48:16.0527 2204 ehSched - ok
08:48:16.0858 2204 EhttpSrv (deb2b067745d92ff17a5068dfd2360bc) C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe
08:48:16.0889 2204 EhttpSrv - ok
08:48:18.0121 2204 ekrn (191d8eccc40f05b52fac0513f35ba01d) C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
08:48:18.0126 2204 ekrn - ok
08:48:20.0009 2204 elxstor (0e5da5369a0fcaea12456dd852545184) C:\Windows\system32\DRIVERS\elxstor.sys
08:48:20.0410 2204 elxstor - ok
08:48:21.0389 2204 epfwwfpr (954fade8e59f159b0a71d0cfcc99a76e) C:\Windows\system32\DRIVERS\epfwwfpr.sys
08:48:21.0400 2204 epfwwfpr - ok
08:48:21.0764 2204 EpsonBidirectionalService (abdd5ad016affd34ad40e944ce94bf59) C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe
08:48:21.0766 2204 EpsonBidirectionalService - ok
08:48:21.0886 2204 ErrDev (34a3c54752046e79a126e15c51db409b) C:\Windows\system32\drivers\errdev.sys
08:48:21.0896 2204 ErrDev - ok
08:48:22.0694 2204 EventSystem (4166f82be4d24938977dd1746be9b8a0) C:\Windows\system32\es.dll
08:48:22.0784 2204 EventSystem - ok
08:48:23.0340 2204 exfat (a510c654ec00c1e9bdd91eeb3a59823b) C:\Windows\system32\drivers\exfat.sys
08:48:23.0474 2204 exfat - ok
08:48:23.0894 2204 fastfat (0adc83218b66a6db380c330836f3e36d) C:\Windows\system32\drivers\fastfat.sys
08:48:24.0069 2204 fastfat - ok
08:48:24.0337 2204 Fax (dbefd454f8318a0ef691fdd2eaab44eb) C:\Windows\system32\fxssvc.exe
08:48:24.0345 2204 Fax - ok
08:48:24.0367 2204 fdc (d765d19cd8ef61f650c384f62fac00ab) C:\Windows\system32\DRIVERS\fdc.sys
08:48:24.0386 2204 fdc - ok
08:48:24.0428 2204 fdPHost (0438cab2e03f4fb61455a7956026fe86) C:\Windows\system32\fdPHost.dll
08:48:24.0429 2204 fdPHost - ok
08:48:24.0439 2204 FDResPub (802496cb59a30349f9a6dd22d6947644) C:\Windows\system32\fdrespub.dll
08:48:24.0440 2204 FDResPub - ok
08:48:24.0451 2204 FileInfo (655661be46b5f5f3fd454e2c3095b930) C:\Windows\system32\drivers\fileinfo.sys
08:48:24.0461 2204 FileInfo - ok
08:48:24.0551 2204 Filetrace (5f671ab5bc87eea04ec38a6cd5962a47) C:\Windows\system32\drivers\filetrace.sys
08:48:24.0604 2204 Filetrace - ok
08:48:24.0703 2204 flpydisk (c172a0f53008eaeb8ea33fe10e177af5) C:\Windows\system32\DRIVERS\flpydisk.sys
08:48:24.0704 2204 flpydisk - ok
08:48:25.0445 2204 FltMgr (da6b67270fd9db3697b20fce94950741) C:\Windows\system32\drivers\fltmgr.sys
08:48:25.0486 2204 FltMgr - ok
08:48:26.0222 2204 FontCache (5c4cb4086fb83115b153e47add961a0c) C:\Windows\system32\FntCache.dll
08:48:26.0234 2204 FontCache - ok
08:48:26.0290 2204 FontCache3.0.0.0 (a8b7f3818ab65695e3a0bb3279f6dce6) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
08:48:26.0291 2204 FontCache3.0.0.0 - ok
08:48:26.0346 2204 FsDepends (d43703496149971890703b4b1b723eac) C:\Windows\system32\drivers\FsDepends.sys
08:48:26.0357 2204 FsDepends - ok
08:48:26.0389 2204 Fs_Rec (6bd9295cc032dd3077c671fccf579a7b) C:\Windows\system32\drivers\Fs_Rec.sys
08:48:26.0399 2204 Fs_Rec - ok
08:48:26.0458 2204 fvevol (1f7b25b858fa27015169fe95e54108ed) C:\Windows\system32\DRIVERS\fvevol.sys
08:48:26.0480 2204 fvevol - ok
08:48:26.0545 2204 gagp30kx (8c778d335c9d272cfd3298ab02abe3b6) C:\Windows\system32\DRIVERS\gagp30kx.sys
08:48:26.0574 2204 gagp30kx - ok
08:48:26.0643 2204 GEARAspiWDM (e403aacf8c7bb11375122d2464560311) C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
08:48:26.0644 2204 GEARAspiWDM - ok
08:48:26.0707 2204 gpsvc (277bbc7e1aa1ee957f573a10eca7ef3a) C:\Windows\System32\gpsvc.dll
08:48:26.0715 2204 gpsvc - ok
08:48:26.0864 2204 gupdate (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
08:48:26.0865 2204 gupdate - ok
08:48:26.0899 2204 gupdatem (f02a533f517eb38333cb12a9e8963773) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
08:48:26.0900 2204 gupdatem - ok
08:48:26.0974 2204 hamachi (1e6438d4ea6e1174a3b3b1edc4de660b) C:\Windows\system32\DRIVERS\hamachi.sys
08:48:26.0993 2204 hamachi - ok
08:48:27.0137 2204 Hamachi2Svc (ce77bc37bdd36c9dc50c3591ebac3fa3) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
08:48:27.0172 2204 Hamachi2Svc - ok
08:48:27.0272 2204 hcw85cir (f2523ef6460fc42405b12248338ab2f0) C:\Windows\system32\drivers\hcw85cir.sys
08:48:27.0273 2204 hcw85cir - ok
08:48:27.0331 2204 HdAudAddService (975761c778e33cd22498059b91e7373a) C:\Windows\system32\drivers\HdAudio.sys
08:48:27.0345 2204 HdAudAddService - ok
08:48:27.0381 2204 HDAudBus (97bfed39b6b79eb12cddbfeed51f56bb) C:\Windows\system32\drivers\HDAudBus.sys
08:48:27.0383 2204 HDAudBus - ok
08:48:27.0401 2204 HidBatt (78e86380454a7b10a5eb255dc44a355f) C:\Windows\system32\DRIVERS\HidBatt.sys
08:48:27.0421 2204 HidBatt - ok
08:48:27.0446 2204 HidBth (7fd2a313f7afe5c4dab14798c48dd104) C:\Windows\system32\DRIVERS\hidbth.sys
08:48:27.0458 2204 HidBth - ok
08:48:27.0467 2204 HidIr (0a77d29f311b88cfae3b13f9c1a73825) C:\Windows\system32\DRIVERS\hidir.sys
08:48:27.0487 2204 HidIr - ok
08:48:27.0508 2204 hidserv (bd9eb3958f213f96b97b1d897dee006d) C:\Windows\system32\hidserv.dll
08:48:27.0509 2204 hidserv - ok
08:48:27.0562 2204 HidUsb (9592090a7e2b61cd582b612b6df70536) C:\Windows\system32\DRIVERS\hidusb.sys
08:48:27.0572 2204 HidUsb - ok
08:48:27.0604 2204 hkmsvc (387e72e739e15e3d37907a86d9ff98e2) C:\Windows\system32\kmsvc.dll
08:48:27.0605 2204 hkmsvc - ok
08:48:27.0651 2204 HomeGroupListener (efdfb3dd38a4376f93e7985173813abd) C:\Windows\system32\ListSvc.dll
08:48:27.0654 2204 HomeGroupListener - ok
08:48:27.0691 2204 HomeGroupProvider (908acb1f594274965a53926b10c81e89) C:\Windows\system32\provsvc.dll
08:48:27.0693 2204 HomeGroupProvider - ok
08:48:27.0752 2204 HpSAMD (39d2abcd392f3d8a6dce7b60ae7b8efc) C:\Windows\system32\drivers\HpSAMD.sys
08:48:27.0754 2204 HpSAMD - ok
08:48:27.0831 2204 HTTP (0ea7de1acb728dd5a369fd742d6eee28) C:\Windows\system32\drivers\HTTP.sys
08:48:27.0849 2204 HTTP - ok
08:48:27.0903 2204 hwpolicy (a5462bd6884960c9dc85ed49d34ff392) C:\Windows\system32\drivers\hwpolicy.sys
08:48:27.0913 2204 hwpolicy - ok
08:48:28.0236 2204 i8042prt (fa55c73d4affa7ee23ac4be53b4592d3) C:\Windows\system32\drivers\i8042prt.sys
08:48:28.0284 2204 i8042prt - ok
08:48:28.0372 2204 iaStorV (aaaf44db3bd0b9d1fb6969b23ecc8366) C:\Windows\system32\drivers\iaStorV.sys
08:48:28.0394 2204 iaStorV - ok
08:48:28.0499 2204 idsvc (5988fc40f8db5b0739cd1e3a5d0d78bd) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
08:48:28.0509 2204 idsvc - ok
08:48:28.0538 2204 iirsp (5c18831c61933628f5bb0ea2675b9d21) C:\Windows\system32\DRIVERS\iirsp.sys
08:48:28.0540 2204 iirsp - ok
08:48:28.0607 2204 IKEEXT (fcd84c381e0140af901e58d48882d26b) C:\Windows\System32\ikeext.dll
08:48:28.0621 2204 IKEEXT - ok
08:48:28.0813 2204 IntcAzAudAddService (a5f7cef8a939ebe270462edefd629f20) C:\Windows\system32\drivers\RTKVHD64.sys
08:48:28.0824 2204 IntcAzAudAddService - ok
08:48:28.0995 2204 intelide (f00f20e70c6ec3aa366910083a0518aa) C:\Windows\system32\drivers\intelide.sys
08:48:28.0996 2204 intelide - ok
08:48:29.0029 2204 intelppm (ada036632c664caa754079041cf1f8c1) C:\Windows\system32\DRIVERS\intelppm.sys
08:48:29.0039 2204 intelppm - ok
08:48:29.0060 2204 IPBusEnum (098a91c54546a3b878dad6a7e90a455b) C:\Windows\system32\ipbusenum.dll
08:48:29.0062 2204 IPBusEnum - ok
08:48:29.0101 2204 IpFilterDriver (c9f0e1bd74365a8771590e9008d22ab6) C:\Windows\system32\DRIVERS\ipfltdrv.sys
08:48:29.0104 2204 IpFilterDriver - ok
08:48:29.0158 2204 iphlpsvc (a34a587fffd45fa649fba6d03784d257) C:\Windows\System32\iphlpsvc.dll
08:48:29.0160 2204 iphlpsvc - ok
08:48:29.0213 2204 IPMIDRV (0fc1aea580957aa8817b8f305d18ca3a) C:\Windows\system32\drivers\IPMIDrv.sys
08:48:29.0215 2204 IPMIDRV - ok
08:48:29.0243 2204 IPNAT (af9b39a7e7b6caa203b3862582e9f2d0) C:\Windows\system32\drivers\ipnat.sys
08:48:29.0256 2204 IPNAT - ok
08:48:29.0361 2204 iPod Service (ee4c2a137c7088911a8919effc9812e7) C:\Program Files\iPod\bin\iPodService.exe
08:48:29.0372 2204 iPod Service - ok
08:48:29.0416 2204 IRENUM (3abf5e7213eb28966d55d58b515d5ce9) C:\Windows\system32\drivers\irenum.sys
08:48:29.0418 2204 IRENUM - ok
08:48:29.0453 2204 isapnp (2f7b28dc3e1183e5eb418df55c204f38) C:\Windows\system32\drivers\isapnp.sys
08:48:29.0464 2204 isapnp - ok
08:48:29.0500 2204 iScsiPrt (d931d7309deb2317035b07c9f9e6b0bd) C:\Windows\system32\drivers\msiscsi.sys
08:48:29.0514 2204 iScsiPrt - ok
08:48:29.0559 2204 JRAID (c0d9ba660a41ee8a269ef804e6cd0d7b) C:\Windows\system32\DRIVERS\jraid.sys
08:48:29.0560 2204 JRAID - ok
08:48:29.0686 2204 jswpsapi (cd9f4e53da79ed4cd7562604fe9523a6) C:\Program Files (x86)\D-Link\DWA-556 revA\jswpsapi.exe
08:48:29.0698 2204 jswpsapi - ok
08:48:29.0758 2204 JSWPSLWF (5be640e88814b77a9e84b4549b5dcc2c) C:\Windows\system32\DRIVERS\jswpslwfx.sys
08:48:29.0777 2204 JSWPSLWF - ok
08:48:29.0822 2204 kbdclass (bc02336f1cba7dcc7d1213bb588a68a5) C:\Windows\system32\drivers\kbdclass.sys
08:48:29.0823 2204 kbdclass - ok
08:48:29.0863 2204 kbdhid (0705eff5b42a9db58548eec3b26bb484) C:\Windows\system32\drivers\kbdhid.sys
08:48:29.0865 2204 kbdhid - ok
08:48:29.0901 2204 KeyIso (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
08:48:29.0901 2204 KeyIso - ok
08:48:29.0912 2204 KSecDD (da1e991a61cfdd755a589e206b97644b) C:\Windows\system32\Drivers\ksecdd.sys
08:48:29.0913 2204 KSecDD - ok
08:48:29.0928 2204 KSecPkg (7e33198d956943a4f11a5474c1e9106f) C:\Windows\system32\Drivers\ksecpkg.sys
08:48:29.0939 2204 KSecPkg - ok
08:48:29.0953 2204 ksthunk (6869281e78cb31a43e969f06b57347c4) C:\Windows\system32\drivers\ksthunk.sys
08:48:29.0963 2204 ksthunk - ok
08:48:30.0029 2204 KtmRm (6ab66e16aa859232f64deb66887a8c9c) C:\Windows\system32\msdtckrm.dll
08:48:30.0077 2204 KtmRm - ok
08:48:30.0129 2204 LanmanServer (d9f42719019740baa6d1c6d536cbdaa6) C:\Windows\system32\srvsvc.dll
08:48:30.0132 2204 LanmanServer - ok
08:48:30.0163 2204 LanmanWorkstation (851a1382eed3e3a7476db004f4ee3e1a) C:\Windows\System32\wkssvc.dll
08:48:30.0165 2204 LanmanWorkstation - ok
08:48:30.0217 2204 lirsgt (156ab2e56dc3ca0b582e3362e07cded7) C:\Windows\system32\DRIVERS\lirsgt.sys
08:48:30.0236 2204 lirsgt - ok
08:48:30.0265 2204 lltdio (1538831cf8ad2979a04c423779465827) C:\Windows\system32\DRIVERS\lltdio.sys
08:48:30.0276 2204 lltdio - ok
08:48:30.0311 2204 lltdsvc (c1185803384ab3feed115f79f109427f) C:\Windows\System32\lltdsvc.dll
08:48:30.0316 2204 lltdsvc - ok
08:48:30.0326 2204 lmhosts (f993a32249b66c9d622ea5592a8b76b8) C:\Windows\System32\lmhsvc.dll
08:48:30.0327 2204 lmhosts - ok
08:48:30.0437 2204 LMIGuardianSvc (c834c08ab79c650cd9f1a45ab881f1b7) C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe
08:48:30.0442 2204 LMIGuardianSvc - ok
08:48:30.0450 2204 LMIInfo (0317335b15ff3bda8e10197e3434cfc0) C:\Program Files (x86)\LogMeIn\x64\RaInfo.sys
08:48:30.0460 2204 LMIInfo - ok
08:48:30.0482 2204 LMIMaint (e0eeab902836fce06852d2fa041759d4) C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe
08:48:30.0483 2204 LMIMaint - ok
08:48:30.0532 2204 lmimirr (413ecdcfad9a82804d3674c8d7eec24e) C:\Windows\system32\DRIVERS\lmimirr.sys
08:48:30.0541 2204 lmimirr - ok
08:48:30.0549 2204 LMIRfsClientNP - ok
08:48:30.0565 2204 LMIRfsDriver (c57d3faa50e6f395759ffb7c709bd944) C:\Windows\system32\drivers\LMIRfsDriver.sys
08:48:30.0594 2204 LMIRfsDriver - ok
08:48:30.0638 2204 LogMeIn (d3760bc17e1755091b7120cf32dbf56b) C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe
08:48:30.0642 2204 LogMeIn - ok
08:48:30.0704 2204 LSI_FC (1a93e54eb0ece102495a51266dcdb6a6) C:\Windows\system32\DRIVERS\lsi_fc.sys
08:48:30.0715 2204 LSI_FC - ok
08:48:30.0731 2204 LSI_SAS (1047184a9fdc8bdbff857175875ee810) C:\Windows\system32\DRIVERS\lsi_sas.sys
08:48:30.0742 2204 LSI_SAS - ok
08:48:30.0757 2204 LSI_SAS2 (30f5c0de1ee8b5bc9306c1f0e4a75f93) C:\Windows\system32\DRIVERS\lsi_sas2.sys
08:48:30.0768 2204 LSI_SAS2 - ok
08:48:30.0780 2204 LSI_SCSI (0504eacaff0d3c8aed161c4b0d369d4a) C:\Windows\system32\DRIVERS\lsi_scsi.sys
08:48:30.0792 2204 LSI_SCSI - ok
08:48:30.0819 2204 luafv (43d0f98e1d56ccddb0d5254cff7b356e) C:\Windows\system32\drivers\luafv.sys
08:48:30.0820 2204 luafv - ok
08:48:30.0886 2204 mcdbus (79d51e7f5926e8ce1b3ebecebae28cff) C:\Windows\system32\DRIVERS\mcdbus.sys
08:48:30.0897 2204 mcdbus - ok
08:48:31.0000 2204 Mcx2Svc (0be09cd858abf9df6ed259d57a1a1663) C:\Windows\system32\Mcx2Svc.dll
08:48:31.0010 2204 Mcx2Svc - ok
08:48:31.0036 2204 megasas (a55805f747c6edb6a9080d7c633bd0f4) C:\Windows\system32\DRIVERS\megasas.sys
08:48:31.0056 2204 megasas - ok
08:48:31.0093 2204 MegaSR (baf74ce0072480c3b6b7c13b2a94d6b3) C:\Windows\system32\DRIVERS\MegaSR.sys
08:48:31.0108 2204 MegaSR - ok
08:48:31.0184 2204 Microsoft SharePoint Workspace Audit Service - ok
08:48:31.0217 2204 MMCSS (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
08:48:31.0218 2204 MMCSS - ok
08:48:31.0232 2204 Modem (800ba92f7010378b09f9ed9270f07137) C:\Windows\system32\drivers\modem.sys
08:48:31.0234 2204 Modem - ok
08:48:31.0262 2204 monitor (b03d591dc7da45ece20b3b467e6aadaa) C:\Windows\system32\DRIVERS\monitor.sys
08:48:31.0262 2204 monitor - ok
08:48:31.0312 2204 mouclass (7d27ea49f3c1f687d357e77a470aea99) C:\Windows\system32\drivers\mouclass.sys
08:48:31.0313 2204 mouclass - ok
08:48:31.0345 2204 mouhid (d3bf052c40b0c4166d9fd86a4288c1e6) C:\Windows\system32\DRIVERS\mouhid.sys
08:48:31.0346 2204 mouhid - ok
08:48:31.0381 2204 mountmgr (32e7a3d591d671a6df2db515a5cbe0fa) C:\Windows\system32\drivers\mountmgr.sys
08:48:31.0392 2204 mountmgr - ok
08:48:31.0430 2204 mpio (a44b420d30bd56e145d6a2bc8768ec58) C:\Windows\system32\drivers\mpio.sys
08:48:31.0436 2204 mpio - ok
08:48:31.0452 2204 mpsdrv (6c38c9e45ae0ea2fa5e551f2ed5e978f) C:\Windows\system32\drivers\mpsdrv.sys
08:48:31.0463 2204 mpsdrv - ok
08:48:31.0529 2204 MpsSvc (54ffc9c8898113ace189d4aa7199d2c1) C:\Windows\system32\mpssvc.dll
08:48:31.0537 2204 MpsSvc - ok
08:48:31.0566 2204 MRxDAV (dc722758b8261e1abafd31a3c0a66380) C:\Windows\system32\drivers\mrxdav.sys
08:48:31.0569 2204 MRxDAV - ok
08:48:31.0596 2204 mrxsmb (a5d9106a73dc88564c825d317cac68ac) C:\Windows\system32\DRIVERS\mrxsmb.sys
08:48:31.0598 2204 mrxsmb - ok
08:48:31.0624 2204 mrxsmb10 (d711b3c1d5f42c0c2415687be09fc163) C:\Windows\system32\DRIVERS\mrxsmb10.sys
08:48:31.0645 2204 mrxsmb10 - ok
08:48:31.0667 2204 mrxsmb20 (9423e9d355c8d303e76b8cfbd8a5c30c) C:\Windows\system32\DRIVERS\mrxsmb20.sys
08:48:31.0677 2204 mrxsmb20 - ok
08:48:31.0709 2204 msahci (c25f0bafa182cbca2dd3c851c2e75796) C:\Windows\system32\drivers\msahci.sys
08:48:31.0720 2204 msahci - ok
08:48:31.0782 2204 MSCamSvc (41fb1d61df09c36ccab0b04eec66f6d5) C:\Program Files\Microsoft LifeCam\MSCamS64.exe
08:48:31.0784 2204 MSCamSvc - ok
08:48:31.0823 2204 msdsm (db801a638d011b9633829eb6f663c900) C:\Windows\system32\drivers\msdsm.sys
08:48:31.0835 2204 msdsm - ok
08:48:31.0865 2204 MSDTC (de0ece52236cfa3ed2dbfc03f28253a8) C:\Windows\System32\msdtc.exe
08:48:31.0869 2204 MSDTC - ok
08:48:31.0886 2204 Msfs (aa3fb40e17ce1388fa1bedab50ea8f96) C:\Windows\system32\drivers\Msfs.sys
08:48:31.0887 2204 Msfs - ok
08:48:31.0893 2204 mshidkmdf (f9d215a46a8b9753f61767fa72a20326) C:\Windows\System32\drivers\mshidkmdf.sys
08:48:31.0894 2204 mshidkmdf - ok
08:48:31.0931 2204 msisadrv (d916874bbd4f8b07bfb7fa9b3ccae29d) C:\Windows\system32\drivers\msisadrv.sys
08:48:31.0941 2204 msisadrv - ok
08:48:31.0962 2204 MSiSCSI (808e98ff49b155c522e6400953177b08) C:\Windows\system32\iscsiexe.dll
08:48:31.0966 2204 MSiSCSI - ok
08:48:31.0968 2204 msiserver - ok
08:48:31.0991 2204 MSKSSRV (49ccf2c4fea34ffad8b1b59d49439366) C:\Windows\system32\drivers\MSKSSRV.sys
08:48:31.0992 2204 MSKSSRV - ok
08:48:32.0024 2204 MSPCLOCK (bdd71ace35a232104ddd349ee70e1ab3) C:\Windows\system32\drivers\MSPCLOCK.sys
08:48:32.0025 2204 MSPCLOCK - ok
08:48:32.0034 2204 MSPQM (4ed981241db27c3383d72092b618a1d0) C:\Windows\system32\drivers\MSPQM.sys
08:48:32.0044 2204 MSPQM - ok
08:48:32.0094 2204 MsRPC (759a9eeb0fa9ed79da1fb7d4ef78866d) C:\Windows\system32\drivers\MsRPC.sys
08:48:32.0099 2204 MsRPC - ok
08:48:32.0114 2204 mssmbios (0eed230e37515a0eaee3c2e1bc97b288) C:\Windows\system32\drivers\mssmbios.sys
08:48:32.0115 2204 mssmbios - ok
08:48:32.0126 2204 MSTEE (2e66f9ecb30b4221a318c92ac2250779) C:\Windows\system32\drivers\MSTEE.sys
08:48:32.0127 2204 MSTEE - ok
08:48:32.0408 2204 msvsmon90 (cb4a082af58d1a0969f931816d5cfb05) C:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\Remote Debugger\x64\msvsmon.exe
08:48:32.0472 2204 msvsmon90 - ok
08:48:32.0594 2204 MTConfig (7ea404308934e675bffde8edf0757bcd) C:\Windows\system32\DRIVERS\MTConfig.sys
08:48:32.0595 2204 MTConfig - ok
08:48:32.0629 2204 Mup (f9a18612fd3526fe473c1bda678d61c8) C:\Windows\system32\Drivers\mup.sys
08:48:32.0639 2204 Mup - ok
08:48:32.0686 2204 mvs91xx (2e6a752e8bb8ff39b5dfccadd31f6c00) C:\Windows\system32\DRIVERS\mvs91xx.sys
08:48:32.0735 2204 mvs91xx - ok
08:48:32.0802 2204 napagent (582ac6d9873e31dfa28a4547270862dd) C:\Windows\system32\qagentRT.dll
08:48:32.0810 2204 napagent - ok
08:48:32.0856 2204 NativeWifiP (1ea3749c4114db3e3161156ffffa6b33) C:\Windows\system32\DRIVERS\nwifi.sys
08:48:32.0883 2204 NativeWifiP - ok
08:48:33.0029 2204 NAUpdate (9d1cce440552500ded3a62f9d779cdb4) C:\Program Files (x86)\Nero\Update\NASvc.exe
08:48:33.0032 2204 NAUpdate - ok
08:48:33.0121 2204 NDIS (79b47fd40d9a817e932f9d26fac0a81c) C:\Windows\system32\drivers\ndis.sys
08:48:33.0131 2204 NDIS - ok
08:48:33.0170 2204 NdisCap (9f9a1f53aad7da4d6fef5bb73ab811ac) C:\Windows\system32\DRIVERS\ndiscap.sys
08:48:33.0180 2204 NdisCap - ok
08:48:33.0194 2204 NdisTapi (30639c932d9fef22b31268fe25a1b6e5) C:\Windows\system32\DRIVERS\ndistapi.sys
08:48:33.0195 2204 NdisTapi - ok
08:48:33.0230 2204 Ndisuio (136185f9fb2cc61e573e676aa5402356) C:\Windows\system32\DRIVERS\ndisuio.sys
08:48:33.0232 2204 Ndisuio - ok
08:48:33.0282 2204 NdisWan (53f7305169863f0a2bddc49e116c2e11) C:\Windows\system32\DRIVERS\ndiswan.sys
08:48:33.0294 2204 NdisWan - ok
08:48:33.0332 2204 NDProxy (015c0d8e0e0421b4cfd48cffe2825879) C:\Windows\system32\drivers\NDProxy.sys
08:48:33.0351 2204 NDProxy - ok
08:48:33.0380 2204 NetBIOS (86743d9f5d2b1048062b14b1d84501c4) C:\Windows\system32\DRIVERS\netbios.sys
08:48:33.0390 2204 NetBIOS - ok
08:48:33.0432 2204 NetBT (09594d1089c523423b32a4229263f068) C:\Windows\system32\DRIVERS\netbt.sys
08:48:33.0444 2204 NetBT - ok
08:48:33.0493 2204 Netlogon (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
08:48:33.0494 2204 Netlogon - ok
08:48:33.0618 2204 Netman (847d3ae376c0817161a14a82c8922a9e) C:\Windows\System32\netman.dll
08:48:33.0624 2204 Netman - ok
08:48:33.0712 2204 NetMsmqActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
08:48:33.0713 2204 NetMsmqActivator - ok
08:48:33.0715 2204 NetPipeActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
08:48:33.0716 2204 NetPipeActivator - ok
08:48:33.0746 2204 netprofm (5f28111c648f1e24f7dbc87cdeb091b8) C:\Windows\System32\netprofm.dll
08:48:33.0752 2204 netprofm - ok
08:48:33.0754 2204 NetTcpActivator (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
08:48:33.0754 2204 NetTcpActivator - ok
08:48:33.0756 2204 NetTcpPortSharing (d22cd77d4f0d63d1169bb35911bff12d) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
08:48:33.0757 2204 NetTcpPortSharing - ok
08:48:33.0877 2204 nfrd960 (77889813be4d166cdab78ddba990da92) C:\Windows\system32\DRIVERS\nfrd960.sys
08:48:33.0897 2204 nfrd960 - ok
08:48:34.0115 2204 NlaSvc (1ee99a89cc788ada662441d1e9830529) C:\Windows\System32\nlasvc.dll
08:48:34.0168 2204 NlaSvc - ok
08:48:34.0179 2204 Npfs (1e4c4ab5c9b8dd13179bbdc75a2a01f7) C:\Windows\system32\drivers\Npfs.sys
08:48:34.0189 2204 Npfs - ok
08:48:34.0208 2204 nsi (d54bfdf3e0c953f823b3d0bfe4732528) C:\Windows\system32\nsisvc.dll
08:48:34.0209 2204 nsi - ok
08:48:34.0219 2204 nsiproxy (e7f5ae18af4168178a642a9247c63001) C:\Windows\system32\drivers\nsiproxy.sys
08:48:34.0229 2204 nsiproxy - ok
08:48:34.0336 2204 Ntfs (a2f74975097f52a00745f9637451fdd8) C:\Windows\system32\drivers\Ntfs.sys
08:48:34.0364 2204 Ntfs - ok
08:48:34.0453 2204 Null (9899284589f75fa8724ff3d16aed75c1) C:\Windows\system32\drivers\Null.sys
08:48:34.0463 2204 Null - ok
08:48:34.0520 2204 nusb3hub (550be6c46110b74c1ed7b156598d67af) C:\Windows\system32\DRIVERS\nusb3hub.sys
08:48:34.0587 2204 nusb3hub - ok
08:48:34.0651 2204 nusb3xhc (17401c97dcf93f121b89b554d733b836) C:\Windows\system32\DRIVERS\nusb3xhc.sys
08:48:34.0705 2204 nusb3xhc - ok
08:48:34.0745 2204 nvraid (0a92cb65770442ed0dc44834632f66ad) C:\Windows\system32\drivers\nvraid.sys
08:48:34.0757 2204 nvraid - ok
08:48:34.0776 2204 nvstor (dab0e87525c10052bf65f06152f37e4a) C:\Windows\system32\drivers\nvstor.sys
08:48:34.0798 2204 nvstor - ok
08:48:34.0831 2204 nv_agp (270d7cd42d6e3979f6dd0146650f0e05) C:\Windows\system32\drivers\nv_agp.sys
08:48:34.0843 2204 nv_agp - ok
08:48:34.0873 2204 ohci1394 (3589478e4b22ce21b41fa1bfc0b8b8a0) C:\Windows\system32\drivers\ohci1394.sys
08:48:34.0885 2204 ohci1394 - ok
08:48:34.0976 2204 ose (9d10f99a6712e28f8acd5641e3a7ea6b) C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
08:48:34.0978 2204 ose - ok
08:48:35.0249 2204 osppsvc (61bffb5f57ad12f83ab64b7181829b34) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
08:48:35.0315 2204 osppsvc - ok
08:48:35.0428 2204 p2pimsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
08:48:35.0431 2204 p2pimsvc - ok
08:48:35.0457 2204 p2psvc (927463ecb02179f88e4b9a17568c63c3) C:\Windows\system32\p2psvc.dll
08:48:35.0468 2204 p2psvc - ok
08:48:35.0530 2204 Parport (0086431c29c35be1dbc43f52cc273887) C:\Windows\system32\DRIVERS\parport.sys
08:48:35.0541 2204 Parport - ok
08:48:35.0578 2204 partmgr (e9766131eeade40a27dc27d2d68fba9c) C:\Windows\system32\drivers\partmgr.sys
08:48:35.0589 2204 partmgr - ok
08:48:35.0624 2204 PcaSp60 (5eacb8a19cad7057806fbbf9550165e1) C:\Windows\system32\DRIVERS\PcaSp60.sys
08:48:35.0635 2204 PcaSp60 - ok
08:48:35.0658 2204 PcaSvc (3aeaa8b561e63452c655dc0584922257) C:\Windows\System32\pcasvc.dll
08:48:35.0660 2204 PcaSvc - ok
08:48:35.0707 2204 pci (94575c0571d1462a0f70bde6bd6ee6b3) C:\Windows\system32\drivers\pci.sys
08:48:35.0708 2204 pci - ok
08:48:35.0718 2204 pciide (b5b8b5ef2e5cb34df8dcf8831e3534fa) C:\Windows\system32\drivers\pciide.sys
08:48:35.0728 2204 pciide - ok
08:48:35.0754 2204 pcmcia (b2e81d4e87ce48589f98cb8c05b01f2f) C:\Windows\system32\DRIVERS\pcmcia.sys
08:48:35.0768 2204 pcmcia - ok
08:48:35.0789 2204 pcw (d6b9c2e1a11a3a4b26a182ffef18f603) C:\Windows\system32\drivers\pcw.sys
08:48:35.0799 2204 pcw - ok
08:48:35.0854 2204 PEAUTH (68769c3356b3be5d1c732c97b9a80d6e) C:\Windows\system32\drivers\peauth.sys
08:48:35.0877 2204 PEAUTH - ok
08:48:36.0045 2204 PerfHost (e495e408c93141e8fc72dc0c6046ddfa) C:\Windows\SysWow64\perfhost.exe
08:48:36.0047 2204 PerfHost - ok
08:48:36.0188 2204 pla (c7cf6a6e137463219e1259e3f0f0dd6c) C:\Windows\system32\pla.dll
08:48:36.0203 2204 pla - ok
08:48:36.0257 2204 PlugPlay (25fbdef06c4d92815b353f6e792c8129) C:\Windows\system32\umpnpmgr.dll
08:48:36.0263 2204 PlugPlay - ok
08:48:36.0277 2204 PnkBstrA - ok
08:48:36.0314 2204 PNRPAutoReg (7195581cec9bb7d12abe54036acc2e38) C:\Windows\system32\pnrpauto.dll
08:48:36.0316 2204 PNRPAutoReg - ok
08:48:36.0350 2204 PNRPsvc (3eac4455472cc2c97107b5291e0dcafe) C:\Windows\system32\pnrpsvc.dll
08:48:36.0351 2204 PNRPsvc - ok
08:48:36.0568 2204 PolicyAgent (4f15d75adf6156bf56eced6d4a55c389) C:\Windows\System32\ipsecsvc.dll
08:48:36.0573 2204 PolicyAgent - ok
08:48:36.0601 2204 Power (6ba9d927dded70bd1a9caded45f8b184) C:\Windows\system32\umpo.dll
08:48:36.0603 2204 Power - ok
08:48:36.0657 2204 PptpMiniport (f92a2c41117a11a00be01ca01a7fcde9) C:\Windows\system32\DRIVERS\raspptp.sys
08:48:36.0686 2204 PptpMiniport - ok
08:48:36.0723 2204 Processor (0d922e23c041efb1c3fac2a6f943c9bf) C:\Windows\system32\DRIVERS\processr.sys
08:48:36.0734 2204 Processor - ok
08:48:36.0786 2204 ProfSvc (53e83f1f6cf9d62f32801cf66d8352a8) C:\Windows\system32\profsvc.dll
08:48:36.0788 2204 ProfSvc - ok
08:48:36.0818 2204 ProtectedStorage (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
08:48:36.0818 2204 ProtectedStorage - ok
08:48:36.0858 2204 Psched (0557cf5a2556bd58e26384169d72438d) C:\Windows\system32\DRIVERS\pacer.sys
08:48:36.0858 2204 Psched - ok
08:48:36.0953 2204 ql2300 (a53a15a11ebfd21077463ee2c7afeef0) C:\Windows\system32\DRIVERS\ql2300.sys
08:48:36.0999 2204 ql2300 - ok
08:48:37.0079 2204 ql40xx (4f6d12b51de1aaeff7dc58c4d75423c8) C:\Windows\system32\DRIVERS\ql40xx.sys
08:48:37.0082 2204 ql40xx - ok
08:48:37.0115 2204 QWAVE (906191634e99aea92c4816150bda3732) C:\Windows\system32\qwave.dll
08:48:37.0118 2204 QWAVE - ok
08:48:37.0130 2204 QWAVEdrv (76707bb36430888d9ce9d705398adb6c) C:\Windows\system32\drivers\qwavedrv.sys
08:48:37.0141 2204 QWAVEdrv - ok
08:48:37.0151 2204 RasAcd (5a0da8ad5762fa2d91678a8a01311704) C:\Windows\system32\DRIVERS\rasacd.sys
08:48:37.0161 2204 RasAcd - ok
08:48:37.0191 2204 RasAgileVpn (7ecff9b22276b73f43a99a15a6094e90) C:\Windows\system32\DRIVERS\AgileVpn.sys
08:48:37.0192 2204 RasAgileVpn - ok
08:48:37.0202 2204 RasAuto (8f26510c5383b8dbe976de1cd00fc8c7) C:\Windows\System32\rasauto.dll
08:48:37.0203 2204 RasAuto - ok
08:48:37.0240 2204 Rasl2tp (471815800ae33e6f1c32fb1b97c490ca) C:\Windows\system32\DRIVERS\rasl2tp.sys
08:48:37.0260 2204 Rasl2tp - ok
08:48:37.0325 2204 RasMan (ee867a0870fc9e4972ba9eaad35651e2) C:\Windows\System32\rasmans.dll
08:48:37.0328 2204 RasMan - ok
08:48:37.0342 2204 RasPppoe (855c9b1cd4756c5e9a2aa58a15f58c25) C:\Windows\system32\DRIVERS\raspppoe.sys
08:48:37.0344 2204 RasPppoe - ok
08:48:37.0376 2204 RasSstp (e8b1e447b008d07ff47d016c2b0eeecb) C:\Windows\system32\DRIVERS\rassstp.sys
08:48:37.0387 2204 RasSstp - ok
08:48:37.0432 2204 rdbss (77f665941019a1594d887a74f301fa2f) C:\Windows\system32\DRIVERS\rdbss.sys
08:48:37.0436 2204 rdbss - ok
08:48:37.0448 2204 rdpbus (302da2a0539f2cf54d7c6cc30c1f2d8d) C:\Windows\system32\DRIVERS\rdpbus.sys
08:48:37.0467 2204 rdpbus - ok
08:48:37.0513 2204 RDPCDD (cea6cc257fc9b7715f1c2b4849286d24) C:\Windows\system32\DRIVERS\RDPCDD.sys
08:48:37.0513 2204 RDPCDD - ok
08:48:37.0523 2204 RDPENCDD (bb5971a4f00659529a5c44831af22365) C:\Windows\system32\drivers\rdpencdd.sys
08:48:37.0523 2204 RDPENCDD - ok
08:48:37.0533 2204 RDPREFMP (216f3fa57533d98e1f74ded70113177a) C:\Windows\system32\drivers\rdprefmp.sys
08:48:37.0533 2204 RDPREFMP - ok
08:48:37.0573 2204 RDPWD (e61608aa35e98999af9aaeeea6114b0a) C:\Windows\system32\drivers\RDPWD.sys
08:48:37.0583 2204 RDPWD - ok
08:48:37.0638 2204 rdyboost (34ed295fa0121c241bfef24764fc4520) C:\Windows\system32\drivers\rdyboost.sys
08:48:37.0643 2204 rdyboost - ok
08:48:37.0653 2204 RemoteAccess (254fb7a22d74e5511c73a3f6d802f192) C:\Windows\System32\mprdim.dll
08:48:37.0658 2204 RemoteAccess - ok
08:48:37.0668 2204 RemoteRegistry (e4d94f24081440b5fc5aa556c7c62702) C:\Windows\system32\regsvc.dll
08:48:37.0673 2204 RemoteRegistry - ok
08:48:37.0713 2204 Revoflt (9c3ac71a9934b884fac567a8807e9c4d) C:\Windows\system32\DRIVERS\revoflt.sys
08:48:37.0723 2204 Revoflt - ok
08:48:37.0758 2204 RpcEptMapper (e4dc58cf7b3ea515ae917ff0d402a7bb) C:\Windows\System32\RpcEpMap.dll
08:48:37.0758 2204 RpcEptMapper - ok
08:48:37.0783 2204 RpcLocator (d5ba242d4cf8e384db90e6a8ed850b8c) C:\Windows\system32\locator.exe
08:48:37.0783 2204 RpcLocator - ok
08:48:37.0833 2204 RpcSs (5c627d1b1138676c0a7ab2c2c190d123) C:\Windows\system32\rpcss.dll
08:48:37.0838 2204 RpcSs - ok
08:48:37.0848 2204 rspndr (ddc86e4f8e7456261e637e3552e804ff) C:\Windows\system32\DRIVERS\rspndr.sys
08:48:37.0858 2204 rspndr - ok
08:48:37.0913 2204 RTHDMIAzAudService (2e7d1ca91d62501713c9d6e6704395c6) C:\Windows\system32\drivers\RtHDMIVX.sys
08:48:37.0923 2204 RTHDMIAzAudService - ok
08:48:37.0998 2204 RTL8167 (9140db0911de035fed0a9a77a2d156ea) C:\Windows\system32\DRIVERS\Rt64win7.sys
08:48:37.0998 2204 RTL8167 - ok
08:48:38.0033 2204 SamSs (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
08:48:38.0033 2204 SamSs - ok
08:48:38.0068 2204 sbp2port (ac03af3329579fffb455aa2daabbe22b) C:\Windows\system32\drivers\sbp2port.sys
08:48:38.0083 2204 sbp2port - ok
08:48:38.0103 2204 SCardSvr (9b7395789e3791a3b6d000fe6f8b131e) C:\Windows\System32\SCardSvr.dll
08:48:38.0108 2204 SCardSvr - ok
08:48:38.0148 2204 scfilter (253f38d0d7074c02ff8deb9836c97d2b) C:\Windows\system32\DRIVERS\scfilter.sys
08:48:38.0158 2204 scfilter - ok
08:48:38.0238 2204 Schedule (262f6592c3299c005fd6bec90fc4463a) C:\Windows\system32\schedsvc.dll
08:48:38.0253 2204 Schedule - ok
08:48:38.0291 2204 SCPolicySvc (f17d1d393bbc69c5322fbfafaca28c7f) C:\Windows\System32\certprop.dll
08:48:38.0291 2204 SCPolicySvc - ok
08:48:38.0329 2204 SDRSVC (6ea4234dc55346e0709560fe7c2c1972) C:\Windows\System32\SDRSVC.dll
08:48:38.0331 2204 SDRSVC - ok
08:48:38.0555 2204 Seagate-Replica-Svc (b982b8d9f2bfbfe6c278ff1dc7b2a4f6) C:\Program Files\Seagate Replica\Seagate-Replica-Svc.exe
08:48:38.0599 2204 Seagate-Replica-Svc - ok
08:48:38.0711 2204 secdrv (3ea8a16169c26afbeb544e0e48421186) C:\Windows\system32\drivers\secdrv.sys
08:48:38.0721 2204 secdrv - ok
08:48:38.0735 2204 seclogon (bc617a4e1b4fa8df523a061739a0bd87) C:\Windows\system32\seclogon.dll
08:48:38.0736 2204 seclogon - ok
08:48:38.0761 2204 SENS (c32ab8fa018ef34c0f113bd501436d21) C:\Windows\System32\sens.dll
08:48:38.0763 2204 SENS - ok
08:48:38.0788 2204 SensrSvc (0336cffafaab87a11541f1cf1594b2b2) C:\Windows\system32\sensrsvc.dll
08:48:38.0790 2204 SensrSvc - ok
08:48:38.0809 2204 Serenum (cb624c0035412af0debec78c41f5ca1b) C:\Windows\system32\DRIVERS\serenum.sys
08:48:38.0819 2204 Serenum - ok
08:48:38.0845 2204 Serial (c1d8e28b2c2adfaec4ba89e9fda69bd6) C:\Windows\system32\DRIVERS\serial.sys
08:48:38.0881 2204 Serial - ok
08:48:38.0914 2204 sermouse (1c545a7d0691cc4a027396535691c3e3) C:\Windows\system32\DRIVERS\sermouse.sys
08:48:38.0925 2204 sermouse - ok
08:48:38.0962 2204 SessionEnv (0b6231bf38174a1628c4ac812cc75804) C:\Windows\system32\sessenv.dll
08:48:38.0964 2204 SessionEnv - ok
08:48:38.0994 2204 sffdisk (a554811bcd09279536440c964ae35bbf) C:\Windows\system32\drivers\sffdisk.sys
08:48:39.0004 2204 sffdisk - ok
08:48:39.0017 2204 sffp_mmc (ff414f0baefeba59bc6c04b3db0b87bf) C:\Windows\system32\drivers\sffp_mmc.sys
08:48:39.0028 2204 sffp_mmc - ok
08:48:39.0036 2204 sffp_sd (dd85b78243a19b59f0637dcf284da63c) C:\Windows\system32\drivers\sffp_sd.sys
08:48:39.0037 2204 sffp_sd - ok
08:48:39.0057 2204 sfloppy (a9d601643a1647211a1ee2ec4e433ff4) C:\Windows\system32\DRIVERS\sfloppy.sys
08:48:39.0091 2204 sfloppy - ok
08:48:39.0147 2204 SharedAccess (b95f6501a2f8b2e78c697fec401970ce) C:\Windows\System32\ipnathlp.dll
08:48:39.0150 2204 SharedAccess - ok
08:48:39.0203 2204 ShellHWDetection (aaf932b4011d14052955d4b212a4da8d) C:\Windows\System32\shsvcs.dll
08:48:39.0207 2204 ShellHWDetection - ok
08:48:39.0241 2204 SiSRaid2 (843caf1e5fde1ffd5ff768f23a51e2e1) C:\Windows\system32\DRIVERS\SiSRaid2.sys
08:48:39.0261 2204 SiSRaid2 - ok
08:48:39.0290 2204 SiSRaid4 (6a6c106d42e9ffff8b9fcb4f754f6da4) C:\Windows\system32\DRIVERS\sisraid4.sys
08:48:39.0301 2204 SiSRaid4 - ok
08:48:39.0312 2204 Smb (548260a7b8654e024dc30bf8a7c5baa4) C:\Windows\system32\DRIVERS\smb.sys
08:48:39.0315 2204 Smb - ok
08:48:39.0328 2204 SNMPTRAP (6313f223e817cc09aa41811daa7f541d) C:\Windows\System32\snmptrap.exe
08:48:39.0329 2204 SNMPTRAP - ok
08:48:39.0337 2204 spldr (b9e31e5cacdfe584f34f730a677803f9) C:\Windows\system32\drivers\spldr.sys
08:48:39.0347 2204 spldr - ok
08:48:39.0407 2204 Spooler (b96c17b5dc1424d56eea3a99e97428cd) C:\Windows\System32\spoolsv.exe
08:48:39.0415 2204 Spooler - ok
08:48:39.0581 2204 sppsvc (e17e0188bb90fae42d83e98707efa59c) C:\Windows\system32\sppsvc.exe
08:48:39.0626 2204 sppsvc - ok
08:48:39.0712 2204 sppuinotify (93d7d61317f3d4bc4f4e9f8a96a7de45) C:\Windows\system32\sppuinotify.dll
08:48:39.0714 2204 sppuinotify - ok
08:48:39.0762 2204 srv (441fba48bff01fdb9d5969ebc1838f0b) C:\Windows\system32\DRIVERS\srv.sys
08:48:39.0792 2204 srv - ok
08:48:39.0830 2204 srv2 (b4adebbf5e3677cce9651e0f01f7cc28) C:\Windows\system32\DRIVERS\srv2.sys
08:48:39.0844 2204 srv2 - ok
08:48:39.0878 2204 srvnet (27e461f0be5bff5fc737328f749538c3) C:\Windows\system32\DRIVERS\srvnet.sys
08:48:39.0879 2204 srvnet - ok
08:48:39.0906 2204 SSDPSRV (51b52fbd583cde8aa9ba62b8b4298f33) C:\Windows\System32\ssdpsrv.dll
08:48:39.0909 2204 SSDPSRV - ok
08:48:39.0919 2204 SstpSvc (ab7aebf58dad8daab7a6c45e6a8885cb) C:\Windows\system32\sstpsvc.dll
08:48:39.0920 2204 SstpSvc - ok
08:48:39.0962 2204 Steam Client Service - ok
08:48:39.0975 2204 stexstor (f3817967ed533d08327dc73bc4d5542a) C:\Windows\system32\DRIVERS\stexstor.sys
08:48:39.0977 2204 stexstor - ok
08:48:40.0038 2204 stisvc (8dd52e8e6128f4b2da92ce27402871c1) C:\Windows\System32\wiaservc.dll
08:48:40.0045 2204 stisvc - ok
08:48:40.0087 2204 swenum (d01ec09b6711a5f8e7e6564a4d0fbc90) C:\Windows\system32\drivers\swenum.sys
08:48:40.0097 2204 swenum - ok
08:48:40.0200 2204 SwitchBoard (f577910a133a592234ebaad3f3afa258) C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
08:48:40.0203 2204 SwitchBoard - ok
08:48:40.0263 2204 swprv (e08e46fdd841b7184194011ca1955a0b) C:\Windows\System32\swprv.dll
08:48:40.0270 2204 swprv - ok
08:48:40.0386 2204 SysMain (bf9ccc0bf39b418c8d0ae8b05cf95b7d) C:\Windows\system32\sysmain.dll
08:48:40.0406 2204 SysMain - ok
08:48:40.0484 2204 TabletInputService (e3c61fd7b7c2557e1f1b0b4cec713585) C:\Windows\System32\TabSvc.dll
08:48:40.0485 2204 TabletInputService - ok
08:48:40.0534 2204 TapiSrv (40f0849f65d13ee87b9a9ae3c1dd6823) C:\Windows\System32\tapisrv.dll
08:48:40.0537 2204 TapiSrv - ok
08:48:40.0549 2204 TBS (1be03ac720f4d302ea01d40f588162f6) C:\Windows\System32\tbssvc.dll
08:48:40.0551 2204 TBS - ok
08:48:40.0677 2204 Tcpip (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\drivers\tcpip.sys
08:48:40.0704 2204 Tcpip - ok
08:48:40.0824 2204 TCPIP6 (acb82bda8f46c84f465c1afa517dc4b9) C:\Windows\system32\DRIVERS\tcpip.sys
08:48:40.0831 2204 TCPIP6 - ok
08:48:40.0888 2204 tcpipreg (df687e3d8836bfb04fcc0615bf15a519) C:\Windows\system32\drivers\tcpipreg.sys
08:48:40.0890 2204 tcpipreg - ok
08:48:40.0899 2204 TDPIPE (3371d21011695b16333a3934340c4e7c) C:\Windows\system32\drivers\tdpipe.sys
08:48:40.0910 2204 TDPIPE - ok
08:48:40.0940 2204 TDTCP (51c5eceb1cdee2468a1748be550cfbc8) C:\Windows\system32\drivers\tdtcp.sys
08:48:40.0947 2204 TDTCP - ok
08:48:40.0985 2204 tdx (ddad5a7ab24d8b65f8d724f5c20fd806) C:\Windows\system32\DRIVERS\tdx.sys
08:48:40.0997 2204 tdx - ok
08:48:41.0008 2204 TermDD (561e7e1f06895d78de991e01dd0fb6e5) C:\Windows\system32\drivers\termdd.sys
08:48:41.0018 2204 TermDD - ok
08:48:41.0078 2204 TermService (2e648163254233755035b46dd7b89123) C:\Windows\System32\termsrv.dll
08:48:41.0086 2204 TermService - ok
08:48:41.0104 2204 Themes (f0344071948d1a1fa732231785a0664c) C:\Windows\system32\themeservice.dll
08:48:41.0106 2204 Themes - ok
08:48:41.0125 2204 THREADORDER (e40e80d0304a73e8d269f7141d77250b) C:\Windows\system32\mmcss.dll
08:48:41.0126 2204 THREADORDER - ok
08:48:41.0144 2204 TrkWks (7e7afd841694f6ac397e99d75cead49d) C:\Windows\System32\trkwks.dll
08:48:41.0146 2204 TrkWks - ok
08:48:41.0200 2204 TrustedInstaller (773212b2aaa24c1e31f10246b15b276c) C:\Windows\servicing\TrustedInstaller.exe
08:48:41.0201 2204 TrustedInstaller - ok
08:48:41.0233 2204 tssecsrv (ce18b2cdfc837c99e5fae9ca6cba5d30) C:\Windows\system32\DRIVERS\tssecsrv.sys
08:48:41.0235 2204 tssecsrv - ok
08:48:41.0251 2204 TsUsbFlt (d11c783e3ef9a3c52c0ebe83cc5000e9) C:\Windows\system32\drivers\tsusbflt.sys
08:48:41.0271 2204 TsUsbFlt - ok
08:48:41.0335 2204 tunnel (3566a8daafa27af944f5d705eaa64894) C:\Windows\system32\DRIVERS\tunnel.sys
08:48:41.0346 2204 tunnel - ok
08:48:41.0361 2204 uagp35 (b4dd609bd7e282bfc683cec7eaaaad67) C:\Windows\system32\DRIVERS\uagp35.sys
08:48:41.0373 2204 uagp35 - ok
08:48:41.0421 2204 udfs (ff4232a1a64012baa1fd97c7b67df593) C:\Windows\system32\DRIVERS\udfs.sys
08:48:41.0435 2204 udfs - ok
08:48:41.0473 2204 UI0Detect (3cbdec8d06b9968aba702eba076364a1) C:\Windows\system32\UI0Detect.exe
08:48:41.0475 2204 UI0Detect - ok
08:48:41.0488 2204 uliagpkx (4bfe1bc28391222894cbf1e7d0e42320) C:\Windows\system32\drivers\uliagpkx.sys
08:48:41.0499 2204 uliagpkx - ok
08:48:41.0538 2204 umbus (dc54a574663a895c8763af0fa1ff7561) C:\Windows\system32\DRIVERS\umbus.sys
08:48:41.0548 2204 umbus - ok
08:48:41.0559 2204 UmPass (b2e8e8cb557b156da5493bbddcc1474d) C:\Windows\system32\DRIVERS\umpass.sys
08:48:41.0570 2204 UmPass - ok
08:48:41.0602 2204 upnphost (d47ec6a8e81633dd18d2436b19baf6de) C:\Windows\System32\upnphost.dll
08:48:41.0606 2204 upnphost - ok
08:48:41.0643 2204 USBAAPL64 (aa33fc47ed58c34e6e9261e4f850b7eb) C:\Windows\system32\Drivers\usbaapl64.sys
08:48:41.0653 2204 USBAAPL64 - ok
08:48:41.0699 2204 usbaudio (82e8f44688e6fac57b5b7c6fc7adbc2a) C:\Windows\system32\drivers\usbaudio.sys
08:48:41.0711 2204 usbaudio - ok
08:48:41.0722 2204 usbccgp (6f1a3157a1c89435352ceb543cdb359c) C:\Windows\system32\DRIVERS\usbccgp.sys
08:48:41.0733 2204 usbccgp - ok
08:48:41.0765 2204 usbcir (af0892a803fdda7492f595368e3b68e7) C:\Windows\system32\drivers\usbcir.sys
08:48:41.0768 2204 usbcir - ok
08:48:41.0771 2204 usbehci (c025055fe7b87701eb042095df1a2d7b) C:\Windows\system32\DRIVERS\usbehci.sys
08:48:41.0782 2204 usbehci - ok
08:48:41.0824 2204 usbhub (287c6c9410b111b68b52ca298f7b8c24) C:\Windows\system32\DRIVERS\usbhub.sys
08:48:41.0846 2204 usbhub - ok
08:48:41.0885 2204 usbohci (9840fc418b4cbd632d3d0a667a725c31) C:\Windows\system32\drivers\usbohci.sys
08:48:41.0895 2204 usbohci - ok
08:48:41.0920 2204 usbprint (73188f58fb384e75c4063d29413cee3d) C:\Windows\system32\DRIVERS\usbprint.sys
08:48:41.0930 2204 usbprint - ok
08:48:41.0950 2204 USBSTOR (fed648b01349a3c8395a5169db5fb7d6) C:\Windows\system32\DRIVERS\USBSTOR.SYS
08:48:41.0970 2204 USBSTOR - ok
08:48:41.0973 2204 usbuhci (62069a34518bcf9c1fd9e74b3f6db7cd) C:\Windows\system32\DRIVERS\usbuhci.sys
08:48:41.0974 2204 usbuhci - ok
08:48:42.0035 2204 usbvideo (454800c2bc7f3927ce030141ee4f4c50) C:\Windows\system32\Drivers\usbvideo.sys
08:48:42.0047 2204 usbvideo - ok
08:48:42.0057 2204 UxSms (edbb23cbcf2cdf727d64ff9b51a6070e) C:\Windows\System32\uxsms.dll
08:48:42.0058 2204 UxSms - ok
08:48:42.0076 2204 VaultSvc (c118a82cd78818c29ab228366ebf81c3) C:\Windows\system32\lsass.exe
08:48:42.0076 2204 VaultSvc - ok
08:48:42.0079 2204 vdrvroot (c5c876ccfc083ff3b128f933823e87bd) C:\Windows\system32\drivers\vdrvroot.sys
08:48:42.0099 2204 vdrvroot - ok
08:48:42.0151 2204 vds (8d6b481601d01a456e75c3210f1830be) C:\Windows\System32\vds.exe
08:48:42.0160 2204 vds - ok
08:48:42.0204 2204 vga (da4da3f5e02943c2dc8c6ed875de68dd) C:\Windows\system32\DRIVERS\vgapnp.sys
08:48:42.0206 2204 vga - ok
08:48:42.0215 2204 VgaSave (53e92a310193cb3c03bea963de7d9cfc) C:\Windows\System32\drivers\vga.sys
08:48:42.0225 2204 VgaSave - ok
08:48:42.0245 2204 vhdmp (2ce2df28c83aeaf30084e1b1eb253cbb) C:\Windows\system32\drivers\vhdmp.sys
08:48:42.0259 2204 vhdmp - ok
08:48:42.0296 2204 viaide (e5689d93ffe4e5d66c0178761240dd54) C:\Windows\system32\drivers\viaide.sys
08:48:42.0307 2204 viaide - ok
08:48:42.0320 2204 volmgr (d2aafd421940f640b407aefaaebd91b0) C:\Windows\system32\drivers\volmgr.sys
08:48:42.0339 2204 volmgr - ok
08:48:42.0396 2204 volmgrx (a255814907c89be58b79ef2f189b843b) C:\Windows\system32\drivers\volmgrx.sys
08:48:42.0401 2204 volmgrx - ok
08:48:42.0460 2204 volsnap (0d08d2f3b3ff84e433346669b5e0f639) C:\Windows\system32\drivers\volsnap.sys
08:48:42.0476 2204 volsnap - ok
08:48:42.0527 2204 vsmraid (5e2016ea6ebaca03c04feac5f330d997) C:\Windows\system32\DRIVERS\vsmraid.sys
08:48:42.0540 2204 vsmraid - ok
08:48:42.0653 2204 VSS (b60ba0bc31b0cb414593e169f6f21cc2) C:\Windows\system32\vssvc.exe
08:48:42.0671 2204 VSS - ok
08:48:42.0766 2204 vwifibus (36d4720b72b5c5d9cb2b9c29e9df67a1) C:\Windows\system32\DRIVERS\vwifibus.sys
08:48:42.0777 2204 vwifibus - ok
08:48:42.0794 2204 vwififlt (6a3d66263414ff0d6fa754c646612f3f) C:\Windows\system32\DRIVERS\vwififlt.sys
08:48:42.0796 2204 vwififlt - ok
08:48:42.0821 2204 vwifimp (6a638fc4bfddc4d9b186c28c91bd1a01) C:\Windows\system32\DRIVERS\vwifimp.sys
08:48:42.0831 2204 vwifimp - ok
08:48:42.0880 2204 W32Time (1c9d80cc3849b3788048078c26486e1a) C:\Windows\system32\w32time.dll
08:48:42.0884 2204 W32Time - ok
08:48:42.0932 2204 WacomPen (4e9440f4f152a7b944cb1663d3935a3e) C:\Windows\system32\DRIVERS\wacompen.sys
08:48:42.0933 2204 WacomPen - ok
08:48:42.0964 2204 WANARP (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
08:48:42.0975 2204 WANARP - ok
08:48:42.0977 2204 Wanarpv6 (356afd78a6ed4457169241ac3965230c) C:\Windows\system32\DRIVERS\wanarp.sys
08:48:42.0978 2204 Wanarpv6 - ok
08:48:43.0076 2204 WatAdminSvc (3cec96de223e49eaae3651fcf8faea6c) C:\Windows\system32\Wat\WatAdminSvc.exe
08:48:43.0102 2204 WatAdminSvc - ok
08:48:43.0203 2204 wbengine (78f4e7f5c56cb9716238eb57da4b6a75) C:\Windows\system32\wbengine.exe
08:48:43.0220 2204 wbengine - ok
08:48:43.0288 2204 WbioSrvc (3aa101e8edab2db4131333f4325c76a3) C:\Windows\System32\wbiosrvc.dll
08:48:43.0291 2204 WbioSrvc - ok
08:48:43.0341 2204 wcncsvc (7368a2afd46e5a4481d1de9d14848edd) C:\Windows\System32\wcncsvc.dll
08:48:43.0345 2204 wcncsvc - ok
08:48:43.0384 2204 WcsPlugInService (20f7441334b18cee52027661df4a6129) C:\Windows\System32\WcsPlugInService.dll
08:48:43.0385 2204 WcsPlugInService - ok
08:48:43.0400 2204 Wd (72889e16ff12ba0f235467d6091b17dc) C:\Windows\system32\DRIVERS\wd.sys
08:48:43.0402 2204 Wd - ok
08:48:43.0444 2204 Wdf01000 (441bd2d7b4f98134c3a4f9fa570fd250) C:\Windows\system32\drivers\Wdf01000.sys
08:48:43.0452 2204 Wdf01000 - ok
08:48:43.0473 2204 WdiServiceHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
08:48:43.0475 2204 WdiServiceHost - ok
08:48:43.0477 2204 WdiSystemHost (bf1fc3f79b863c914687a737c2f3d681) C:\Windows\system32\wdi.dll
08:48:43.0478 2204 WdiSystemHost - ok
08:48:43.0564 2204 Web Assistant Updater (5cab8953e4a9301553ae5fbe7832767a) C:\Program Files\Web Assistant\ExtensionUpdaterService.exe
08:48:43.0567 2204 Web Assistant Updater - ok
08:48:43.0614 2204 WebClient (3db6d04e1c64272f8b14eb8bc4616280) C:\Windows\System32\webclnt.dll
08:48:43.0616 2204 WebClient - ok
08:48:43.0635 2204 Wecsvc (c749025a679c5103e575e3b48e092c43) C:\Windows\system32\wecsvc.dll
08:48:43.0638 2204 Wecsvc - ok
08:48:43.0646 2204 wercplsupport (7e591867422dc788b9e5bd337a669a08) C:\Windows\System32\wercplsupport.dll
08:48:43.0648 2204 wercplsupport - ok
08:48:43.0657 2204 WerSvc (6d137963730144698cbd10f202e9f251) C:\Windows\System32\WerSvc.dll
08:48:43.0659 2204 WerSvc - ok
08:48:43.0668 2204 WfpLwf (611b23304bf067451a9fdee01fbdd725) C:\Windows\system32\DRIVERS\wfplwf.sys
08:48:43.0679 2204 WfpLwf - ok
08:48:43.0691 2204 WIMMount (05ecaec3e4529a7153b3136ceb49f0ec) C:\Windows\system32\drivers\wimmount.sys
08:48:43.0701 2204 WIMMount - ok
08:48:43.0717 2204 WinDefend - ok
08:48:43.0720 2204 WinHttpAutoProxySvc - ok
08:48:43.0782 2204 Winmgmt (19b07e7e8915d701225da41cb3877306) C:\Windows\system32\wbem\WMIsvc.dll
08:48:43.0785 2204 Winmgmt - ok
08:48:43.0903 2204 WinRM (bcb1310604aa415c4508708975b3931e) C:\Windows\system32\WsmSvc.dll
08:48:43.0927 2204 WinRM - ok
08:48:44.0019 2204 WinUsb (fe88b288356e7b47b74b13372add906d) C:\Windows\system32\DRIVERS\WinUsb.sys
08:48:44.0028 2204 WinUsb - ok
08:48:44.0092 2204 Wlansvc (4fada86e62f18a1b2f42ba18ae24e6aa) C:\Windows\System32\wlansvc.dll
08:48:44.0104 2204 Wlansvc - ok
08:48:44.0298 2204 wlidsvc (2bacd71123f42cea603f4e205e1ae337) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
08:48:44.0333 2204 wlidsvc - ok
08:48:44.0395 2204 WmiAcpi (f6ff8944478594d0e414d3f048f0d778) C:\Windows\system32\drivers\wmiacpi.sys
08:48:44.0405 2204 WmiAcpi - ok
08:48:44.0452 2204 wmiApSrv (38b84c94c5a8af291adfea478ae54f93) C:\Windows\system32\wbem\WmiApSrv.exe
08:48:44.0453 2204 wmiApSrv - ok
08:48:44.0460 2204 WMPNetworkSvc - ok
08:48:44.0470 2204 WPCSvc (96c6e7100d724c69fcf9e7bf590d1dca) C:\Windows\System32\wpcsvc.dll
08:48:44.0472 2204 WPCSvc - ok
08:48:44.0493 2204 WPDBusEnum (93221146d4ebbf314c29b23cd6cc391d) C:\Windows\system32\wpdbusenum.dll
08:48:44.0494 2204 WPDBusEnum - ok
08:48:44.0507 2204 ws2ifsl (6bcc1d7d2fd2453957c5479a32364e52) C:\Windows\system32\drivers\ws2ifsl.sys
08:48:44.0517 2204 ws2ifsl - ok
08:48:44.0531 2204 wscsvc (e8b1fe6669397d1772d8196df0e57a9e) C:\Windows\System32\wscsvc.dll
08:48:44.0532 2204 wscsvc - ok
08:48:44.0573 2204 WSDPrintDevice (8d918b1db190a4d9b1753a66fa8c96e8) C:\Windows\system32\DRIVERS\WSDPrint.sys
08:48:44.0583 2204 WSDPrintDevice - ok
08:48:44.0612 2204 WSDScan (4a2a5c50dd1a63577d3aca94269fbc7f) C:\Windows\system32\DRIVERS\WSDScan.sys
08:48:44.0614 2204 WSDScan - ok
08:48:44.0615 2204 WSearch - ok
08:48:44.0752 2204 wuauserv (d9ef901dca379cfe914e9fa13b73b4c4) C:\Windows\system32\wuaueng.dll
08:48:44.0785 2204 wuauserv - ok
08:48:44.0846 2204 WudfPf (d3381dc54c34d79b22cee0d65ba91b7c) C:\Windows\system32\drivers\WudfPf.sys
08:48:44.0857 2204 WudfPf - ok
08:48:44.0894 2204 WUDFRd (cf8d590be3373029d57af80914190682) C:\Windows\system32\DRIVERS\WUDFRd.sys
08:48:44.0905 2204 WUDFRd - ok
08:48:44.0961 2204 wudfsvc (7a95c95b6c4cf292d689106bcae49543) C:\Windows\System32\WUDFSvc.dll
08:48:44.0962 2204 wudfsvc - ok
08:48:44.0978 2204 WwanSvc (9a3452b3c2a46c073166c5cf49fad1ae) C:\Windows\System32\wwansvc.dll
08:48:44.0981 2204 WwanSvc - ok
08:48:45.0017 2204 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
08:48:45.0253 2204 \Device\Harddisk0\DR0 - ok
08:48:45.0281 2204 MBR (0x1B8) (5fb38429d5d77768867c76dcbdb35194) \Device\Harddisk1\DR1
08:48:45.0352 2204 \Device\Harddisk1\DR1 - ok
08:48:45.0354 2204 Boot (0x1200) (8132e8b4123d8c5d6d2040a46c948ba8) \Device\Harddisk0\DR0\Partition0
08:48:45.0355 2204 \Device\Harddisk0\DR0\Partition0 - ok
08:48:45.0370 2204 Boot (0x1200) (07ef0ec47e7fec910857af58e2294d48) \Device\Harddisk0\DR0\Partition1
08:48:45.0372 2204 \Device\Harddisk0\DR0\Partition1 - ok
08:48:45.0373 2204 Boot (0x1200) (4437e72cf159928a8c89ded84457a12a) \Device\Harddisk1\DR1\Partition0
08:48:45.0374 2204 \Device\Harddisk1\DR1\Partition0 - ok
08:48:45.0375 2204 ============================================================
08:48:45.0375 2204 Scan finished
08:48:45.0375 2204 ============================================================
08:48:45.0380 5624 Detected object count: 0
08:48:45.0380 5624 Actual detected object count: 0

And from aswMBR:


aswMBR version 0.9.9.1665 Copyright© 2011 AVAST Software
Run date: 2012-07-21 08:54:10
-----------------------------
08:54:10.644 OS Version: Windows x64 6.1.7601 Service Pack 1
08:54:10.644 Number of processors: 8 586 0x1A05
08:54:10.645 ComputerName: ADMIN-PC UserName: admin
08:54:12.390 Initialize success
08:55:56.952 AVAST engine defs: 12072100
08:56:40.621 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Scsi\JRAID1Port0Path0Target0Lun0
08:56:40.623 Disk 0 Vendor: WDC_____ 500. Size: 953869MB BusType: 8
08:56:40.641 Disk 0 MBR read successfully
08:56:40.642 Disk 0 MBR scan
08:56:40.645 Disk 0 Windows 7 default MBR code
08:56:40.647 Disk 0 Partition 1 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 2048
08:56:40.653 Disk 0 Partition 2 00 07 HPFS/NTFS NTFS 953766 MB offset 206848
08:56:40.669 Disk 0 scanning C:\Windows\system32\drivers
08:56:48.650 Service scanning
08:57:05.044 Modules scanning
08:57:05.048 Disk 0 trace - called modules:
08:57:05.057 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys SCSIPORT.SYS hal.dll jraid.sys
08:57:05.059 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa800ec55790]
08:57:05.385 3 CLASSPNP.SYS[fffff8800185143f] -> nt!IofCallDriver -> [0xfffffa800d498310]
08:57:05.388 5 ACPI.sys[fffff88000f937a1] -> nt!IofCallDriver -> \Device\Scsi\JRAID1Port0Path0Target0Lun0[0xfffffa800d8d4050]
08:57:07.643 AVAST engine scan C:\Windows
08:57:10.337 AVAST engine scan C:\Windows\system32
08:59:29.689 AVAST engine scan C:\Windows\system32\drivers
08:59:41.655 AVAST engine scan C:\Users\admin
09:11:39.786 AVAST engine scan C:\ProgramData
09:12:30.366 Scan finished successfully
10:05:44.860 Disk 0 MBR has been saved successfully to "C:\Users\admin\Desktop\MBR.dat"
10:05:44.866 The log file has been saved successfully to "C:\Users\admin\Desktop\aswMBR log.txt"

#4 Ihavechickens123

Ihavechickens123
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:03:45 AM

Posted 21 July 2012 - 03:45 PM

and here's the log from ESET:

C:\Users\admin\Downloads\cnet2_Bat_To_Exe_Converter_zip.exe a variant of Win32/InstallCore.D application cleaned by deleting - quarantined
C:\Users\admin\Downloads\gb3-setup.exe a variant of Win32/Toolbar.Widgi application cleaned by deleting - quarantined

#5 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:03:45 AM

Posted 21 July 2012 - 04:01 PM

Download

http://www.techspot.com/downloads/4716-malwarebytes-anti-malware.html

Install,update and run a full scan

Click on SHOW results.Select all infections and remove it

Reboot the PC and scan MBAM once in regular mode until you get a clean log

Download

mini toolbox

Checkmark following boxes:

Flush DNS
Report IE Proxy Settings
Reset IE Proxy Settings
Report FF Proxy Settings
Reset FF Proxy Settings
List content of Hosts
List IP configuration
List Winsock Entries
List last 10 Event Viewer log
List Installed Programs
List Users, Partitions and Memory size

Click Go and post the result.

Download

FSS

Checkmark all the boxes

Click on "Scan".
Please copy and paste the log to your reply.

Create a restore point before trying this

Download

adware cleaner

Launch it click on Delete

post the generated log

#6 Ihavechickens123

Ihavechickens123
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:03:45 AM

Posted 22 July 2012 - 08:06 PM

The results from mini toolbox:

MiniToolBox by Farbar Version: 22-07-2012
Ran by admin (administrator) on 22-07-2012 at 21:00:58
Microsoft Windows 7 Home Premium Service Pack 1 (X64)
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
ProxyServer: 127.0.0.1:80

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================


"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================

# Any other entries you had go here (new line no # no space);
127.0.0.1 localhost
127.0.0.1 3dns.adobe.com 3dns-1.adobe.com 3dns-2.adobe.com 3dns-3.adobe.com 3dns-4.adobe.com activate.adobe.com activate-sea.adobe.com activate-sjc0.adobe.com activate.wip.adobe.com
127.0.0.1 activate.wip1.adobe.com activate.wip2.adobe.com activate.wip3.adobe.com activate.wip4.adobe.com adobe-dns.adobe.com adobe-dns-1.adobe.com adobe-dns-2.adobe.com adobe-dns-3.adobe.com adobe-dns-4.adobe.com
127.0.0.1 adobeereg.com practivate.adobe practivate.adobe.com practivate.adobe.newoa practivate.adobe.ntp practivate.adobe.ipp ereg.adobe.com ereg.wip.adobe.com ereg.wip1.adobe.com
127.0.0.1 ereg.wip2.adobe.com ereg.wip3.adobe.com ereg.wip4.adobe.com hl2rcv.adobe.com wip.adobe.com wip1.adobe.com wip2.adobe.com wip3.adobe.com wip4.adobe.com
127.0.0.1 www.adobeereg.com wwis-dubc1-vip60.adobe.com www.wip.adobe.com www.wip1.adobe.com
127.0.0.1 www.wip2.adobe.com www.wip3.adobe.com www.wip4.adobe.com wwis-dubc1-vip60.adobe.com crl.verisign.net CRL.VERISIGN.NET ood.opsource.net

========================= IP Configuration: ================================

D-Link DWA-556 Xtreme N PCIe Desktop Adapter = Wireless Network Connection (Connected)
Hamachi Network Interface = Hamachi (Connected)
Realtek PCIe GBE Family Controller = Local Area Connection (Media disconnected)
Microsoft Virtual WiFi Miniport Adapter = Wireless Network Connection 2 (Media disconnected)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global icmpredirects=enabled
add route prefix=0.0.0.0/0 interface="Hamachi" nexthop=5.0.0.1 publish=Yes
set interface interface="Hamachi" forwarding=disabled advertise=disabled metric=9000 siteprefixlength=0 nud=disabled routerdiscovery=disabled managedaddress=disabled otherstateful=disabled weakhostsend=disabled weakhostreceive=disabled ignoredefaultroutes=disabled advertisedrouterlifetime=0 advertisedefaultroute=disabled currenthoplimit=0 forcearpndwolpattern=disabled enabledirectedmacwolpattern=disabled


popd
# End of IPv4 configuration



Windows IP Configuration

Host Name . . . . . . . . . . . . : admin-PC
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No

Wireless LAN adapter Wireless Network Connection 2:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft Virtual WiFi Miniport Adapter
Physical Address. . . . . . . . . : F6-7D-68-C1-AA-F5
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes

Ethernet adapter Local Area Connection:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Realtek PCIe GBE Family Controller
Physical Address. . . . . . . . . : 1C-6F-65-95-BF-88
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes

Wireless LAN adapter Wireless Network Connection:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : D-Link DWA-556 Xtreme N PCIe Desktop Adapter
Physical Address. . . . . . . . . : F0-7D-68-C1-AA-F5
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::6058:fe33:6bb:fae9%10(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.0.104(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Lease Obtained. . . . . . . . . . : Sunday, July 22, 2012 11:09:52 AM
Lease Expires . . . . . . . . . . : Monday, July 23, 2012 11:09:52 AM
Default Gateway . . . . . . . . . : 192.168.0.1
DHCP Server . . . . . . . . . . . : 192.168.0.1
DHCPv6 IAID . . . . . . . . . . . : 200310120
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-16-0B-8F-B2-F0-7D-68-C1-AA-F5
DNS Servers . . . . . . . . . . . : 192.168.0.1
NetBIOS over Tcpip. . . . . . . . : Enabled

Ethernet adapter Hamachi:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Hamachi Network Interface
Physical Address. . . . . . . . . : 7A-79-05-D2-75-85
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
IPv6 Address. . . . . . . . . . . : 2620:9b::5d2:7585(Preferred)
Link-local IPv6 Address . . . . . : fe80::86b:7d51:8193:9c5a%14(Preferred)
IPv4 Address. . . . . . . . . . . : 5.210.117.133(Preferred)
Subnet Mask . . . . . . . . . . . : 255.0.0.0
Lease Obtained. . . . . . . . . . : Sunday, July 22, 2012 7:43:25 AM
Lease Expires . . . . . . . . . . : Sunday, July 22, 2012 9:03:41 PM
Default Gateway . . . . . . . . . : 5.0.0.1
DHCP Server . . . . . . . . . . . : 5.0.0.1
DHCPv6 IAID . . . . . . . . . . . : 427456840
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-16-0B-8F-B2-F0-7D-68-C1-AA-F5
DNS Servers . . . . . . . . . . . : fec0:0:0:ffff::1%1
fec0:0:0:ffff::2%1
fec0:0:0:ffff::3%1
NetBIOS over Tcpip. . . . . . . . : Enabled

Tunnel adapter isatap.{DD77415F-BDE6-45B7-AF92-E102C1C2385A}:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Teredo Tunneling Pseudo-Interface:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
IPv6 Address. . . . . . . . . . . : 2001:0:4137:9e76:d3:15dd:bb3b:bdae(Preferred)
Link-local IPv6 Address . . . . . : fe80::d3:15dd:bb3b:bdae%11(Preferred)
Default Gateway . . . . . . . . . :
NetBIOS over Tcpip. . . . . . . . : Disabled

Tunnel adapter isatap.{8714A822-D088-4D7D-B9AB-DD8DAAE25160}:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter isatap.{6A3E5DC8-F5C4-48C3-AF7B-F243460DAEA5}:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #3
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter isatap.{9D3DC724-1CAF-4167-BA60-6D48E6366095}:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #4
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Server: dlinkrouter
Address: 192.168.0.1

Name: google.com
Addresses: 2607:f8b0:4006:802::1004
173.194.43.5
173.194.43.2
173.194.43.9
173.194.43.8
173.194.43.14
173.194.43.0
173.194.43.7
173.194.43.4
173.194.43.3
173.194.43.6
173.194.43.1


Pinging google.com [173.194.43.1] with 32 bytes of data:
Reply from 173.194.43.1: bytes=32 time=11ms TTL=55
Reply from 173.194.43.1: bytes=32 time=11ms TTL=55

Ping statistics for 173.194.43.1:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 11ms, Maximum = 11ms, Average = 11ms
Server: dlinkrouter
Address: 192.168.0.1

Name: yahoo.com
Addresses: 98.139.183.24
209.191.122.70
72.30.38.140


Pinging yahoo.com [72.30.38.140] with 32 bytes of data:
Reply from 72.30.38.140: bytes=32 time=171ms TTL=50
Reply from 72.30.38.140: bytes=32 time=135ms TTL=49

Ping statistics for 72.30.38.140:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 135ms, Maximum = 171ms, Average = 153ms
Server: dlinkrouter
Address: 192.168.0.1

Name: bleepingcomputer.com
Address: 208.43.87.2


Pinging bleepingcomputer.com [208.43.87.2] with 32 bytes of data:
Reply from 208.43.87.2: Destination host unreachable.
Reply from 208.43.87.2: Destination host unreachable.

Ping statistics for 208.43.87.2:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),

Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Ping statistics for 127.0.0.1:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
17...f6 7d 68 c1 aa f5 ......Microsoft Virtual WiFi Miniport Adapter
12...1c 6f 65 95 bf 88 ......Realtek PCIe GBE Family Controller
10...f0 7d 68 c1 aa f5 ......D-Link DWA-556 Xtreme N PCIe Desktop Adapter
14...7a 79 05 d2 75 85 ......Hamachi Network Interface
1...........................Software Loopback Interface 1
18...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
11...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
16...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #2
36...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #3
37...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter #4
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 5.0.0.1 5.210.117.133 9256
0.0.0.0 0.0.0.0 192.168.0.1 192.168.0.104 20
5.0.0.0 255.0.0.0 On-link 5.210.117.133 9256
5.210.117.133 255.255.255.255 On-link 5.210.117.133 9256
5.255.255.255 255.255.255.255 On-link 5.210.117.133 9256
127.0.0.0 255.0.0.0 On-link 127.0.0.1 306
127.0.0.1 255.255.255.255 On-link 127.0.0.1 306
127.255.255.255 255.255.255.255 On-link 127.0.0.1 306
192.168.0.0 255.255.255.0 On-link 192.168.0.104 276
192.168.0.104 255.255.255.255 On-link 192.168.0.104 276
192.168.0.255 255.255.255.255 On-link 192.168.0.104 276
224.0.0.0 240.0.0.0 On-link 127.0.0.1 306
224.0.0.0 240.0.0.0 On-link 5.210.117.133 9256
224.0.0.0 240.0.0.0 On-link 192.168.0.104 276
255.255.255.255 255.255.255.255 On-link 127.0.0.1 306
255.255.255.255 255.255.255.255 On-link 5.210.117.133 9256
255.255.255.255 255.255.255.255 On-link 192.168.0.104 276
===========================================================================
Persistent Routes:
Network Address Netmask Gateway Address Metric
0.0.0.0 0.0.0.0 5.0.0.1 Default
===========================================================================

IPv6 Route Table
===========================================================================
Active Routes:
If Metric Network Destination Gateway
1 306 ::1/128 On-link
11 58 2001::/32 On-link
11 306 2001:0:4137:9e76:d3:15dd:bb3b:bdae/128
On-link
14 276 2620:9b::/64 On-link
14 276 2620:9b::/96 On-link
14 276 2620:9b::5d2:7585/128 On-link
14 276 fe80::/64 On-link
10 276 fe80::/64 On-link
11 306 fe80::/64 On-link
11 306 fe80::d3:15dd:bb3b:bdae/128
On-link
14 276 fe80::86b:7d51:8193:9c5a/128
On-link
10 276 fe80::6058:fe33:6bb:fae9/128
On-link
1 306 ff00::/8 On-link
11 306 ff00::/8 On-link
14 276 ff00::/8 On-link
10 276 ff00::/8 On-link
===========================================================================
Persistent Routes:
If Metric Network Destination Gateway
0 4294967295 2620:9b::/96 On-link
===========================================================================
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog5 06 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog5 07 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 09 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog5 06 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog5 07 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171392] (Microsoft Corp.)
x64-Catalog5 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171392] (Microsoft Corp.)
x64-Catalog5 09 C:\Program Files\Bonjour\mdnsNSP.dll [132968] (Apple Inc.)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)

#7 Ihavechickens123

Ihavechickens123
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:03:45 AM

Posted 22 July 2012 - 08:08 PM

========================= Event log errors: ===============================

Application errors:
==================
Error: (07/22/2012 00:30:05 PM) (Source: Application Error) (User: )
Description: Faulting application name: svchost.exe_SysMain, version: 6.1.7600.16385, time stamp: 0x4a5bc3c1
Faulting module name: sysmain.dll, version: 6.1.7601.17514, time stamp: 0x4ce7c9db
Exception code: 0xc0000005
Fault offset: 0x000000000006c793
Faulting process id: 0x538
Faulting application start time: 0xsvchost.exe_SysMain0
Faulting application path: svchost.exe_SysMain1
Faulting module path: svchost.exe_SysMain2
Report Id: svchost.exe_SysMain3

Error: (07/22/2012 03:23:10 AM) (Source: PerfNet) (User: )
Description:

Error: (07/22/2012 00:31:01 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (07/22/2012 00:30:55 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (07/21/2012 10:56:08 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (07/08/2012 07:44:17 AM) (Source: Application Error) (User: )
Description: Faulting application name: WmiApSrv.exe, version: 6.1.7600.16385, time stamp: 0x4a5bc7a0
Faulting module name: ntdll.dll, version: 6.1.7601.17725, time stamp: 0x4ec4aa8e
Exception code: 0xc0000005
Fault offset: 0x000000000004e4b4
Faulting process id: 0x80c
Faulting application start time: 0xWmiApSrv.exe0
Faulting application path: WmiApSrv.exe1
Faulting module path: WmiApSrv.exe2
Report Id: WmiApSrv.exe3

Error: (06/30/2012 01:23:43 AM) (Source: Microsoft-Windows-LoadPerf) (User: NT AUTHORITY)NT AUTHORITY
Description: Unloading the performance counter strings for service WmiApRpl (WmiApRpl) failed. The first DWORD in the Data section contains the error code.

Error: (06/30/2012 01:23:43 AM) (Source: Microsoft-Windows-LoadPerf) (User: NT AUTHORITY)NT AUTHORITY
Description: The performance strings in the Performance registry value is corrupted when process Performance extension counter provider. The BaseIndex value from the Performance registry is the first DWORD in the Data section, LastCounter value is the second DWORD in the Data section, and LastHelp value is the third DWORD in the Data section.

Error: (06/24/2012 06:22:41 PM) (Source: Application Error) (User: )
Description: Faulting application name: Explorer.EXE, version: 6.1.7601.17567, time stamp: 0x4d672ee4
Faulting module name: ntdll.dll, version: 6.1.7601.17725, time stamp: 0x4ec4aa8e
Exception code: 0xc0000005
Fault offset: 0x00000000000532d0
Faulting process id: 0xde8
Faulting application start time: 0xExplorer.EXE0
Faulting application path: Explorer.EXE1
Faulting module path: Explorer.EXE2
Report Id: Explorer.EXE3

Error: (06/24/2012 00:50:25 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest2" on line C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Component 2: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.


System errors:
=============
Error: (07/22/2012 00:30:07 PM) (Source: Service Control Manager) (User: )
Description: The Superfetch service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.

Error: (07/22/2012 07:49:10 AM) (Source: Service Control Manager) (User: )
Description: The Windows Search service hung on starting.

Error: (07/22/2012 07:44:34 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)

Error: (07/22/2012 07:43:24 AM) (Source: EventLog) (User: )
Description: The previous system shutdown at 7:40:21 AM on ?7/?22/?2012 was unexpected.

Error: (07/22/2012 03:24:10 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)

Error: (07/21/2012 05:33:29 PM) (Source: Service Control Manager) (User: )
Description: The LogMeIn service terminated unexpectedly. It has done this 1 time(s).

Error: (07/21/2012 08:59:56 AM) (Source: JRAID) (User: )
Description: The driver for device \Device\Scsi\JRAID1 detected a port timeout due to prolonged inactivity. All associated busses were reset in an effort to clear the condition.

Error: (07/21/2012 08:44:45 AM) (Source: Service Control Manager) (User: )
Description: The AMD External Events Utility service failed to start due to the following error:
%%1053

Error: (07/21/2012 08:44:45 AM) (Source: Service Control Manager) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the AMD External Events Utility service to connect.

Error: (07/21/2012 06:45:25 AM) (Source: DCOM) (User: NT AUTHORITY)
Description: application-specificLocalLaunch{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)


Microsoft Office Sessions:
=========================
Error: (07/22/2012 00:30:05 PM) (Source: Application Error)(User: )
Description: svchost.exe_SysMain6.1.7600.163854a5bc3c1sysmain.dll6.1.7601.175144ce7c9dbc0000005000000000006c79353801cd67ff3853699eC:\Windows\system32\svchost.exec:\windows\system32\sysmain.dll7db8c0c1-d41a-11e1-af38-1c6f6595bf88

Error: (07/22/2012 03:23:10 AM) (Source: PerfNet)(User: )
Description:

Error: (07/22/2012 00:31:01 AM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestc:\program files (x86)\ESET\eset online scanner\ESETSmartInstaller.exe

Error: (07/22/2012 00:30:55 AM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestc:\Users\admin\downloads\esetsmartinstaller_enu.exe

Error: (07/21/2012 10:56:08 AM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\admin\Downloads\esetsmartinstaller_enu.exe

Error: (07/08/2012 07:44:17 AM) (Source: Application Error)(User: )
Description: WmiApSrv.exe6.1.7600.163854a5bc7a0ntdll.dll6.1.7601.177254ec4aa8ec0000005000000000004e4b480c01cd5cff015b9d58C:\Windows\system32\wbem\WmiApSrv.exeC:\Windows\SYSTEM32\ntdll.dll3f675f44-c8f2-11e1-9ff9-1c6f6595bf88

Error: (06/30/2012 01:23:43 AM) (Source: Microsoft-Windows-LoadPerf)(User: NT AUTHORITY)NT AUTHORITY
Description: WmiApRplWmiApRpl8F20300004D070000

Error: (06/30/2012 01:23:43 AM) (Source: Microsoft-Windows-LoadPerf)(User: NT AUTHORITY)NT AUTHORITY
Description: Performance1637070000000000000000000009030000

Error: (06/24/2012 06:22:41 PM) (Source: Application Error)(User: )
Description: Explorer.EXE6.1.7601.175674d672ee4ntdll.dll6.1.7601.177254ec4aa8ec000000500000000000532d0de801cd4be2a7f198f9C:\Windows\Explorer.EXEC:\Windows\SYSTEM32\ntdll.dll1c4ad9df-be4b-11e1-8529-1c6f6595bf88

Error: (06/24/2012 00:50:25 AM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestc:\Users\admin\downloads\SoftonicDownloader_for_sumotori-dreams.exe

#8 Ihavechickens123

Ihavechickens123
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:03:45 AM

Posted 22 July 2012 - 08:13 PM

I cant seem to post the rest

#9 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:03:45 AM

Posted 22 July 2012 - 08:19 PM

Sign out and login again,try to post

#10 Ihavechickens123

Ihavechickens123
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:03:45 AM

Posted 22 July 2012 - 08:30 PM

Results from FSS:

Farbar Service Scanner Version: 22-07-2012
Ran by admin (administrator) on 22-07-2012 at 21:29:36
Running from "C:\Users\admin\Downloads"
Microsoft Windows 7 Home Premium Service Pack 1 (X64)
Boot Mode: Normal
****************************************************************

Internet Services:
============

Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo IP is accessible.
Yahoo.com is accessible.


Windows Firewall:
=============

Firewall Disabled Policy:
==================


System Restore:
============

System Restore Disabled Policy:
========================


Action Center:
============

Windows Update:
============

Windows Autoupdate Disabled Policy:
============================


Windows Defender:
==============

Other Services:
==============

sharedaccess Service is not running. Checking service configuration:
The start type of sharedaccess service is set to Demand
The ImagePath of sharedaccess service is OK.
The ServiceDll of sharedaccess service is OK.


File Check:
========
C:\Windows\System32\nsisvc.dll => MD5 is legit
C:\Windows\System32\drivers\nsiproxy.sys => MD5 is legit
C:\Windows\System32\dhcpcore.dll => MD5 is legit
C:\Windows\System32\drivers\afd.sys => MD5 is legit
C:\Windows\System32\drivers\tdx.sys => MD5 is legit
C:\Windows\System32\Drivers\tcpip.sys => MD5 is legit
C:\Windows\System32\dnsrslvr.dll => MD5 is legit
C:\Windows\System32\mpssvc.dll => MD5 is legit
C:\Windows\System32\bfe.dll => MD5 is legit
C:\Windows\System32\drivers\mpsdrv.sys => MD5 is legit
C:\Windows\System32\SDRSVC.dll => MD5 is legit
C:\Windows\System32\vssvc.exe => MD5 is legit
C:\Windows\System32\wscsvc.dll => MD5 is legit
C:\Windows\System32\wbem\WMIsvc.dll => MD5 is legit
C:\Windows\System32\wuaueng.dll => MD5 is legit
C:\Windows\System32\qmgr.dll => MD5 is legit
C:\Windows\System32\es.dll => MD5 is legit
C:\Windows\System32\cryptsvc.dll => MD5 is legit
C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit
C:\Windows\System32\ipnathlp.dll => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit


**** End of log ****

#11 Ihavechickens123

Ihavechickens123
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:03:45 AM

Posted 22 July 2012 - 08:35 PM

and from adwcleaner:


# AdwCleaner v1.703 - Logfile created 07/22/2012 at 21:30:58
# Updated 20/07/2012 by Xplode
# Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
# User : admin - ADMIN-PC
# Running from : C:\Users\admin\Downloads\adwcleaner.exe
# Option [Delete]


***** [Services] *****

Stopped & Deleted : Web Assistant Updater

***** [Files / Folders] *****

Folder Deleted : C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd
Folder Deleted : C:\Users\admin\AppData\LocalLow\Incredibar.com
Folder Deleted : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\uwx0safa.default\extensions\ffxtlbr@incredibar.com
Folder Deleted : C:\Program Files\Web Assistant
File Deleted : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\uwx0safa.default\searchplugins\MyStart Search.xml

***** [Registry] *****

Key Deleted : HKCU\Software\IM
Key Deleted : HKCU\Software\ImInstaller
Key Deleted : HKCU\Software\Softonic
Key Deleted : HKLM\SOFTWARE\Classes\AppID\Extension.DLL
Key Deleted : HKLM\SOFTWARE\Classes\Extension.ExtensionHelperObject
Key Deleted : HKLM\SOFTWARE\Classes\Extension.ExtensionHelperObject.1
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd
Key Deleted : HKLM\SOFTWARE\Incredibar.com
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\IncredibarToolbar_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\IncredibarToolbar_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\NEW_CORRECT_incredibar_install_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\NEW_CORRECT_incredibar_install_RASMANCS
Key Deleted : HKLM\SOFTWARE\Web Assistant
Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\extensions [{336D0C35-8A85-403a-B9D2-65C292C39087}]
[x64] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd
[x64] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{336D0C35-8A85-403a-B9D2-65C292C39087}_is1
[x64] Key Deleted : HKLM\SOFTWARE\Web Assistant

***** [Registre - GUID] *****

Key Deleted : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{B302A1BD-0157-49FA-90F1-4E94F22C7B4B}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{336D0C35-8A85-403a-B9D2-65C292C39087}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A36867C6-302D-49FC-9D8E-1EB037B5F1AB}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{1D5A4199-956E-49BC-B89F-6A35C57C0D13}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{336D0C35-8A85-403a-B9D2-65C292C39087}
[x64] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{336D0C35-8A85-403a-B9D2-65C292C39087}
[x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{22B0769F-794B-4422-AC84-47B123C8986D}
[x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{255E0B2A-D747-4EEF-B7CE-159D73A3656D}
[x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{28ED590D-F5ED-4E05-A87F-1D759F1C6169}
[x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{45D5B93F-E2ED-4AF2-915E-DCDDBDA8C33C}
[x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{771B99AB-636F-4A11-9039-8DFEB927B061}
[x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A36867C6-302D-49FC-9D8E-1EB037B5F1AB}
[x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{A8321AA2-2227-40C7-8525-6C2F4E1B0EBE}
[x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{AA41A731-6814-4A70-A6F1-C0A20FBBFBD5}
[x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{ABBB8A9E-D8AF-40D1-94BE-5175077465FC}
[x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{BF737694-56F6-46FA-9FDC-FA99A5B25FAD}
[x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{CFCD164E-8AC9-478E-9ECC-B616A932016C}
[x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{D5961CC0-B442-4567-8030-67E241EF4CC2}
[x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{E450067F-1C93-41A7-928E-07E5C2EEC680}
[x64] Key Deleted : HKLM\SOFTWARE\Classes\Interface\{F977D9F2-4BDC-44A6-B508-7C0284C61EED}
[x64] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{336D0C35-8A85-403a-B9D2-65C292C39087}

***** [Internet Browsers] *****

-\\ Internet Explorer v9.0.8112.16421

[OK] Registry is clean.

-\\ Mozilla Firefox v6.0.2 (en-US)

Profile name : default
File : C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\uwx0safa.default\prefs.js

C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\uwx0safa.default\user.js ... Deleted !

Deleted : user_pref("browser.search.defaultenginename", "MyStart Search");
Deleted : user_pref("browser.search.selectedEngine", "MyStart Search");
Deleted : user_pref("browser.startup.homepage", "hxxp://mystart.incredibar.com/mb165?a=6OyEYRKgCr&i=26");
Deleted : user_pref("extensions.enabledAddons", "ffxtlbr@incredibar.com:1.5.0,{336D0C35-8A85-403a-B9D2-65C292C[...]
Deleted : user_pref("extensions.incredibar.admin", false);
Deleted : user_pref("extensions.incredibar.aflt", "orgnl");
Deleted : user_pref("extensions.incredibar.cntry", "US");
Deleted : user_pref("extensions.incredibar.dfltLng", "");
Deleted : user_pref("extensions.incredibar.dfltSrch", false);
Deleted : user_pref("extensions.incredibar.did", "10665");
Deleted : user_pref("extensions.incredibar.envrmnt", "production");
Deleted : user_pref("extensions.incredibar.excTlbr", false);
Deleted : user_pref("extensions.incredibar.hdrMd5", "E1F4688526CAD330CCDEDF367297E51A");
Deleted : user_pref("extensions.incredibar.hmpg", false);
Deleted : user_pref("extensions.incredibar.id", "66e5eb2e000000000000f67d68c1aaf5");
Deleted : user_pref("extensions.incredibar.installerproductid", "26");
Deleted : user_pref("extensions.incredibar.instlDay", "15506");
Deleted : user_pref("extensions.incredibar.instlRef", "");
Deleted : user_pref("extensions.incredibar.lastVrsnTs", "1.5.11.1422:19:49");
Deleted : user_pref("extensions.incredibar.mntrvrsn", "1.2.0");
Deleted : user_pref("extensions.incredibar.newTab", false);
Deleted : user_pref("extensions.incredibar.noFFXTlbr", false);
Deleted : user_pref("extensions.incredibar.ppd", "");
Deleted : user_pref("extensions.incredibar.prdct", "incredibar");
Deleted : user_pref("extensions.incredibar.productid", "26");
Deleted : user_pref("extensions.incredibar.prtnrId", "Incredibar");
Deleted : user_pref("extensions.incredibar.sg", "none");
Deleted : user_pref("extensions.incredibar.smplGrp", "none");
Deleted : user_pref("extensions.incredibar.tlbrId", "base");
Deleted : user_pref("extensions.incredibar.tlbrSrchUrl", "hxxp://mystart.Incredibar.com/?a=6OyEYRKgCr&loc=IB_T[...]
Deleted : user_pref("extensions.incredibar.upn2", "6OyEYRKgCr");
Deleted : user_pref("extensions.incredibar.upn2n", "92261587225003247");
Deleted : user_pref("extensions.incredibar.vrsn", "1.5.11.14");
Deleted : user_pref("extensions.incredibar.vrsnTs", "1.5.11.1422:19:49");
Deleted : user_pref("extensions.incredibar.vrsni", "1.5.11.14");
Deleted : user_pref("extensions.incredibar_i.aflt", "orgnl");
Deleted : user_pref("extensions.incredibar_i.dfltLng", "");
Deleted : user_pref("extensions.incredibar_i.did", "10665");
Deleted : user_pref("extensions.incredibar_i.excTlbr", false);
Deleted : user_pref("extensions.incredibar_i.id", "66e5eb2e000000000000f67d68c1aaf5");
Deleted : user_pref("extensions.incredibar_i.installerproductid", "26");
Deleted : user_pref("extensions.incredibar_i.instlDay", "15506");
Deleted : user_pref("extensions.incredibar_i.instlRef", "");
Deleted : user_pref("extensions.incredibar_i.ms_url_id", "");
Deleted : user_pref("extensions.incredibar_i.newTab", false);
Deleted : user_pref("extensions.incredibar_i.ppd", "");
Deleted : user_pref("extensions.incredibar_i.prdct", "incredibar");
Deleted : user_pref("extensions.incredibar_i.productid", "26");
Deleted : user_pref("extensions.incredibar_i.prtnrId", "Incredibar");
Deleted : user_pref("extensions.incredibar_i.smplGrp", "none");
Deleted : user_pref("extensions.incredibar_i.tlbrId", "base");
Deleted : user_pref("extensions.incredibar_i.tlbrSrchUrl", "hxxp://mystart.Incredibar.com/?a=6OyEYRKgCr&loc=IB[...]
Deleted : user_pref("extensions.incredibar_i.upn2", "6OyEYRKgCr");
Deleted : user_pref("extensions.incredibar_i.upn2n", "92261587225003247");
Deleted : user_pref("extensions.incredibar_i.vrsn", "1.5.11.14");
Deleted : user_pref("extensions.incredibar_i.vrsnTs", "1.5.11.1422:19:49");
Deleted : user_pref("extensions.incredibar_i.vrsni", "1.5.11.14");
Deleted : user_pref("keyword.URL", "hxxp://mystart.incredibar.com/mb165/?loc=IB_DS&a=6OyEYRKgCr&&i=26&search="[...]
Deleted : user_pref("{336D0C35-8A85-403a-B9D2-65C292C39087}.ScriptData_WSG_whiteList", "{\"search.babylon.com\[...]

-\\ Google Chrome v20.0.1132.57

File : C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Preferences

Deleted : "icon_url": "hxxp://mystart.incredibar.com/mb165/favicon.ico",
Deleted : "keyword": "mystart.incredibar.com/mb165",
Deleted : "name": "MyStart Search",
Deleted : "search_url": "hxxp://mystart.incredibar.com/mb165/?loc=IB_DS&search={searchTerms}&a=6OyEYRKgC[...]
Deleted : "description": "The fastest way to search the web.",
Deleted : "search.incredibar.com": -1.5778828859329224,

-\\ Opera v11.61.1250.0

File : C:\Users\admin\AppData\Roaming\Opera\Opera\operaprefs.ini

Deleted : Home URL=hxxp://mystart.incredibar.com/mb165?a=6OyEYRKgCr&i=26

*************************

AdwCleaner[S1].txt - [270 octets] - [22/07/2012 21:30:35]
AdwCleaner[S2].txt - [9693 octets] - [22/07/2012 21:30:58]

########## EOF - C:\AdwCleaner[S2].txt - [9821 octets] ##########

#12 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:03:45 AM

Posted 22 July 2012 - 08:37 PM

Post the minitoolbox log again

Edited by narenxp, 22 July 2012 - 08:37 PM.


#13 Ihavechickens123

Ihavechickens123
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:03:45 AM

Posted 22 July 2012 - 08:44 PM

It's still not letting me post. Every time I try it "[#103130] You do not have permission to reply to this topic" appears.

#14 narenxp

narenxp

  • BC Advisor
  • 16,371 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:India
  • Local time:03:45 AM

Posted 22 July 2012 - 08:49 PM

Can you send me via PM?

Edited by narenxp, 22 July 2012 - 08:49 PM.


#15 Ihavechickens123

Ihavechickens123
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:03:45 AM

Posted 22 July 2012 - 08:57 PM

sent it




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users