Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

I have a virus which wont let me install Avira or run malwarebyte


  • Please log in to reply
17 replies to this topic

#1 MittyP

MittyP

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:06:50 AM

Posted 26 February 2013 - 08:03 AM

Hi guys, I read a previous topic which was pretty similar to the problem I am having here but wanted someone to help me directly as its a computer I use for business and has some important stuff on it.

 

I wouldn't say I'm the most computer literate person in the world or I wouldnt be posting on here but I do share this computer with someone who is usually trigger happy when it comes to clicking 'yes' after a pop up saying YOU ARE INFECTED appears.

 

A quick description of what is going on

 

Norton was installed on the computer (much to my horror) and I think it lead to a few problems in itself.. Windows updates would not install successfully, the computer wasnt shutting down properly. The firefox homepage was changed to a website called snap.do which I finally managed to delete. I am trying to download and install Avira onto the system but it wont let me install it at all and just gets stuck on the installation part. I have downloaded malwarebytes and again it wont even let me open it when I double click the icon on the desktop. I read on a previous thread about a program called ESET Online Scanner so i am currently downloading that and am going to run a scan on the computer once it is finished.

 

Just wanted some help if possible guys.

 

Really appreciate the time you've taken to read this post and hope you can help me find a way round this.

 

Regards

 

P.S Im running windows 7 home

/Mitty


Edited by MittyP, 26 February 2013 - 08:03 AM.


BC AdBot (Login to Remove)

 


#2 InadequateInfirmity

InadequateInfirmity

    I Gots Me A Certified Edumication


  • Banned
  • 5,180 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:01:50 AM

Posted 26 February 2013 - 10:39 AM

If you need to please perform  these steps in safemode with networking.

http://kb.eset.com/esetkb/index?page=content&id=SOLN2268

 

 

 

Please download MINITOOLBOX and run it.
http://download.bleepingcomputer.com/farbar/MiniToolBox.exe

Checkmark following boxes:

Flush DNS
Report IE Proxy Settings
Report FF Proxy Settings
Reset Ie proxy Settins
Reset FF proxy settings
List content of Hosts
List IP configuration
List Winsock Entries
List last 10 Event Viewer log
List Installed Programs
List Users, Partitions and Memory size
List Devices (problems only)



Click Go and post the result. 

Download Adware Cleaner run it Click the delete button allow it to run and post the log it creates.

http://general-changelog-team.fr/fr/downloads/finish/20-outils-de-xplode/2-adwcleaner


Download the junkware removal tool save it to your desktop run it in safe mode post the log.
http://thisisudax.org/downloads/JRT.exe


Download Emsisoft Emergency Kit and save it to your desktop. Right-click on EmsisoftEmergencyKit.zip and select Extract All.... Leave all settings as they are and click Extract. You will now have a folder named EmsisoftEmergencyKit on your desktop.

Open the EmsisoftEmergencyKit
http://www.emsisoft.com/en/software/eek/download/
folder and double-click Start.exe.
A new window will open. Under "Run Directly:" click Emergency Kit Scanner.
When asked to run an online update, click Yes.
When the update is finished, click the Back to Security Status link in the left corner. On the main screen click the Scan Now button.
Select the Deep Scan option and click the SCAN button.
When the scan is finished click the Quarantine selected objects button. Note, this option is only available if malicious objects were detected during the scan.
Click the View Report button and in the Reports window double-click on the most recent log. Note, logs are named as follows: a2scan_<date>-<time>.txt.
Copy/paste the report contents in your next reply.

 

Edit:  To add link. 


Edited by InadequateInfirmity, 26 February 2013 - 10:40 AM.


#3 MittyP

MittyP
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:06:50 AM

Posted 27 February 2013 - 10:23 AM

JRT Report

 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 4.6.5 (02.18.2013:1)
OS: Windows 7 Home Premium x64
Ran by Management on 27/02/2013 at 13:56:40.71
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully deleted: [Registry Value] hkey_local_machine\software\microsoft\internet explorer\toolbar\\{ae07101b-46d4-4a98-af68-0333ea26e113}
Successfully repaired: [Registry Value] hkey_current_user\software\microsoft\internet explorer\main\\Start Page
Successfully repaired: [Registry Value] hkey_users\.default\software\microsoft\internet explorer\main\\Start Page
Successfully repaired: [Registry Value] hkey_users\s-1-5-18\software\microsoft\internet explorer\main\\Start Page
Successfully repaired: [Registry Value] hkey_users\s-1-5-19\software\microsoft\internet explorer\main\\Start Page
Successfully repaired: [Registry Value] hkey_users\s-1-5-20\software\microsoft\internet explorer\main\\Start Page
Successfully repaired: [Registry Value] hkey_users\S-1-5-21-2237272554-1537871678-815445765-1000\software\microsoft\internet explorer\main\\Start Page
Successfully repaired: [Registry Value] hkey_current_user\software\microsoft\internet explorer\searchscopes\\DefaultScope
Successfully repaired: [Registry Value] hkey_local_machine\software\microsoft\internet explorer\searchscopes\\DefaultScope
Successfully repaired: [Registry Value] hkey_users\.default\software\microsoft\internet explorer\searchscopes\\DefaultScope
Successfully repaired: [Registry Value] hkey_users\s-1-5-18\software\microsoft\internet explorer\searchscopes\\DefaultScope
Successfully repaired: [Registry Value] hkey_users\s-1-5-19\software\microsoft\internet explorer\searchscopes\\DefaultScope
Successfully repaired: [Registry Value] hkey_users\s-1-5-20\software\microsoft\internet explorer\searchscopes\\DefaultScope
Successfully repaired: [Registry Value] hkey_users\S-1-5-21-2237272554-1537871678-815445765-1000\software\microsoft\internet explorer\searchscopes\\DefaultScope
Successfully repaired: [Registry Value] hkey_current_user\software\microsoft\internet explorer\main\\Search Bar
Successfully repaired: [Registry Value] hkey_users\S-1-5-21-2237272554-1537871678-815445765-1000\software\microsoft\internet explorer\main\\Search Bar
Successfully repaired: [Registry Value] hkey_current_user\software\microsoft\internet explorer\main\\Search Page
Successfully repaired: [Registry Value] hkey_users\S-1-5-21-2237272554-1537871678-815445765-1000\software\microsoft\internet explorer\main\\Search Page
Successfully repaired: [Registry Value] hkey_current_user\software\microsoft\internet explorer\search\\Default_Search_URL
Successfully repaired: [Registry Value] hkey_users\S-1-5-21-2237272554-1537871678-815445765-1000\software\microsoft\internet explorer\search\\Default_Search_URL
Successfully repaired: [Registry Value] hkey_current_user\software\microsoft\internet explorer\searchurl\\Default
Successfully repaired: [Registry Value] hkey_users\S-1-5-21-2237272554-1537871678-815445765-1000\software\microsoft\internet explorer\searchurl\\Default
Successfully repaired: [Registry Value] hkey_local_machine\software\microsoft\internet explorer\searchurl\\Default
Successfully repaired: [Registry Value] hkey_current_user\software\microsoft\internet explorer\search\\SearchAssistant
Successfully repaired: [Registry Value] hkey_users\S-1-5-21-2237272554-1537871678-815445765-1000\software\microsoft\internet explorer\search\\SearchAssistant



~~~ Registry Keys

Successfully deleted: [Registry Key] hkey_current_user\software\smartbar
Successfully deleted: [Registry Key] hkey_current_user\software\systweak
Successfully deleted: [Registry Key] hkey_local_machine\software\systweak
Successfully deleted: [Registry Key] hkey_current_user\software\microsoft\internet explorer\searchscopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}
Successfully deleted: [Registry Key] hkey_local_machine\software\microsoft\internet explorer\searchscopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}
Successfully deleted: [Registry Key] hkey_classes_root\clsid\{ae07101b-46d4-4a98-af68-0333ea26e113}



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\Users\Management\AppData\Roaming\systweak"



~~~ FireFox

Successfully deleted: [Folder] C:\Users\Management\AppData\Roaming\mozilla\firefox\profiles\m2nvcb9x.default\fctb
Successfully deleted the following from C:\Users\Management\AppData\Roaming\mozilla\firefox\profiles\m2nvcb9x.default\prefs.js

user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.2803282.KeywordHistory", "nfl%2520uk%7Ccottage%2520cheese%2520sandwich%7Ccountry%2520choice%7Canglian%2520water%7C");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.AutoSearchEventData", "auto%20search");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.ClearCacheDate", 27);
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.DNSCatch", true);
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.DisplayEULA", false);
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.DnsCatchEventData", "dns%20catch");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.FirstLaunchShown", true);
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.LoadLayoutDate.61465", 27);
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.NewTabSearchEventData", "tab%20search");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.ShowRecommendedOptions", true);
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.StateReportDate", "1361943814181");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.TopRightSearchEventData", "top%20right%20search");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.Uninstall", false);
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.comp.affiliate.2803296.disabled", false);
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.comp.search.2803282.engine_img", "aHR0cDovL3MzdG9vbGJhci5mcmVlY2F1c2UuY29tL3lhaG9vX3B1cnBsZV95YmFuZy5wbmc%3D");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.comp.search.2803282.engine_url", "aHR0cDovL3VrLnNlYXJjaC55YWhvby5jb20vc2VhcmNoP291cm1hcms9MSZlaT11dGYtOCZmcj1uZWN0YXItdGIt
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.comp.search.2803282.text", "Search%20to%20Collect%20Nectar%20Points");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.customNewTab", true);
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.helpUsImprove", true);
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.hideOthers", false);
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.partnerauth", false);
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.processAddrBar", true);
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.restoreSearch", false);
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.revision", "89");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.", "1361363355");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.123", "61684");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.14", "1334261993");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1335851400", "nectar_may_promo_1335851400");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1335855001", "nectar_may_promo_1335855001");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1335862196", "nectar_may_promo_1335862196");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1335865789", "nectar_may_promo_1335865789");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336144561", "nectar_may_promo_1336144561");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336157107", "nectar_may_promo_1336157107");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336200271", "nectar_may_promo_1336200271");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336211072", "nectar_may_promo_1336211072");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336221872", "nectar_may_promo_1336221872");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336329967", "nectar_may_promo_1336329967");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336369118", "nectar_may_promo_1336369118");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336413435", "nectar_may_promo_1336413435");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336456904", "nectar_may_promo_1336456904");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336473334", "nectar_may_promo_1336473334");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336476932", "nectar_may_promo_1336476932");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336544552", "nectar_may_promo_1336544552");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336548152", "nectar_may_promo_1336548152");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336560741", "nectar_may_promo_1336560741");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336575483", "nectar_may_promo_1336575483");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336682090", "nectar_may_promo_1336682090");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336711971", "nectar_may_promo_1336711971");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336896597", "nectar_may_promo_1336896597");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336928520", "nectar_may_promo_1336928520");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336936092", "nectar_may_promo_1336936092");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336972337", "nectar_may_promo_1336972337");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337028561", "nectar_may_promo_1337028561");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337059854", "nectar_may_promo_1337059854");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337070075", "nectar_may_promo_1337070075");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337329528", "nectar_may_promo_1337329528");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337405973", "nectar_may_promo_1337405973");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337417090", "nectar_may_promo_1337417090");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337423621", "nectar_may_promo_1337423621");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337444292", "nectar_may_promo_1337444292");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337540436", "nectar_may_promo_1337540436");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337622878", "nectar_may_promo_1337622878");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337664301", "nectar_may_promo_1337664301");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337674667", "nectar_may_promo_1337674667");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337753892", "nectar_may_promo_1337753892");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337770166", "nectar_may_promo_1337770166");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337847763", "nectar_may_promo_1337847763");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337871846", "nectar_may_promo_1337871846");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337974922", "nectar_may_promo_1337974922");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1338014703", "nectar_may_promo_1338014703");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1338019521", "nectar_may_promo_1338019521");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1338023120", "nectar_may_promo_1338023120");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1338215721", "nectar_may_promo_1338215721");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1338271928", "nectar_may_promo_1338271928");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1338293289", "nectar_may_promo_1338293289");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1338365822", "nectar_may_promo_1338365822");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1338369422", "nectar_may_promo_1338369422");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1349941004", "nectar_oct_promo_event_1349941004");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1350120826", "nectar_oct_promo_event_1350120826");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1350466616", "nectar_oct_promo_event_1350466616");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1350563862", "nectar_oct_promo_event_1350563862");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1350826139", "nectar_oct_promo_event_1350826139");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1350835780", "nectar_oct_promo_event_1350835780");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1350966600", "nectar_oct_promo_event_1350966600");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1350970858", "nectar_oct_promo_event_1350970858");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351228694", "nectar_oct_promo_event_1351228694");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351274514", "nectar_oct_promo_event_1351274514");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351278102", "nectar_oct_promo_event_1351278102");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351313484", "nectar_oct_promo_event_1351313484");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351317084", "nectar_oct_promo_event_1351317084");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351320684", "nectar_oct_promo_event_1351320684");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351324282", "nectar_oct_promo_event_1351324282");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351335083", "nectar_oct_promo_event_1351335083");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351447455", "nectar_oct_promo_event_1351447455");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351502031", "nectar_oct_promo_event_1351502031");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351542126", "nectar_oct_promo_event_1351542126");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351587698", "nectar_oct_promo_event_1351587698");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1315411768", "nectar_sept_promo_1315411768");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1315544707", "nectar_sept_promo_1315544707");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1315593926", "nectar_sept_promo_1315593926");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1315633022", "nectar_sept_promo_1315633022");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1315647765", "nectar_sept_promo_1315647765");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1315651706", "nectar_sept_promo_1315651706");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1315654588", "nectar_sept_promo_1315654588");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1315902922", "nectar_sept_promo_1315902922");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1315988297", "nectar_sept_promo_1315988297");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316096910", "nectar_sept_promo_1316096910");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316097450", "nectar_sept_promo_1316097450");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316109450", "nectar_sept_promo_1316109450");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316111610", "nectar_sept_promo_1316111610");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316117571", "nectar_sept_promo_1316117571");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316154916", "nectar_sept_promo_1316154916");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316236546", "nectar_sept_promo_1316236546");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316237862", "nectar_sept_promo_1316237862");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316254122", "nectar_sept_promo_1316254122");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316254182", "nectar_sept_promo_1316254182");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316349585", "nectar_sept_promo_1316349585");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316406646", "nectar_sept_promo_1316406646");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316506760", "nectar_sept_promo_1316506760");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316611244", "nectar_sept_promo_1316611244");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316696856", "nectar_sept_promo_1316696856");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316698238", "nectar_sept_promo_1316698238");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316721802", "nectar_sept_promo_1316721802");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316723182", "nectar_sept_promo_1316723182");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316723242", "nectar_sept_promo_1316723242");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316752507", "nectar_sept_promo_1316752507");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316804061", "nectar_sept_promo_1316804061");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316844639", "nectar_sept_promo_1316844639");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316845073", "nectar_sept_promo_1316845073");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316856413", "nectar_sept_promo_1316856413");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316864623", "nectar_sept_promo_1316864623");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316867983", "nectar_sept_promo_1316867983");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316984097", "nectar_sept_promo_1316984097");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1317015971", "nectar_sept_promo_1317015971");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1317104333", "nectar_sept_promo_1317104333");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1317204726", "nectar_sept_promo_1317204726");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1317360825", "nectar_sept_promo_1317360825");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1317408265", "nectar_sept_promo_1317408265");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1317413550", "nectar_sept_promo_1317413550");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1346478628", "nectar_sept_promo_1346478628");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1346572925", "nectar_sept_promo_1346572925");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1346576528", "nectar_sept_promo_1346576528");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1346591227", "nectar_sept_promo_1346591227");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1346594827", "nectar_sept_promo_1346594827");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1346606465", "nectar_sept_promo_1346606465");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1346703144", "nectar_sept_promo_1346703144");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1346953987", "nectar_sept_promo_1346953987");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1346961199", "nectar_sept_promo_1346961199");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347010274", "nectar_sept_promo_1347010274");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347047561", "nectar_sept_promo_1347047561");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347095725", "nectar_sept_promo_1347095725");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347102640", "nectar_sept_promo_1347102640");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347106234", "nectar_sept_promo_1347106234");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347222394", "nectar_sept_promo_1347222394");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347263995", "nectar_sept_promo_1347263995");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347299547", "nectar_sept_promo_1347299547");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347309110", "nectar_sept_promo_1347309110");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347340906", "nectar_sept_promo_1347340906");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347350023", "nectar_sept_promo_1347350023");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347433753", "nectar_sept_promo_1347433753");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347437355", "nectar_sept_promo_1347437355");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347440959", "nectar_sept_promo_1347440959");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347554131", "nectar_sept_promo_1347554131");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347610598", "nectar_sept_promo_1347610598");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347647487", "nectar_sept_promo_1347647487");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347654685", "nectar_sept_promo_1347654685");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347689217", "nectar_sept_promo_1347689217");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347701420", "nectar_sept_promo_1347701420");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347774752", "nectar_sept_promo_1347774752");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347804792", "nectar_sept_promo_1347804792");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347949366", "nectar_sept_promo_1347949366");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348039137", "nectar_sept_promo_1348039137");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348042737", "nectar_sept_promo_1348042737");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348046337", "nectar_sept_promo_1348046337");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348050883", "nectar_sept_promo_1348050883");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348218882", "nectar_sept_promo_1348218882");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348250496", "nectar_sept_promo_1348250496");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348257703", "nectar_sept_promo_1348257703");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348289669", "nectar_sept_promo_1348289669");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348296864", "nectar_sept_promo_1348296864");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348300461", "nectar_sept_promo_1348300461");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348311261", "nectar_sept_promo_1348311261");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348424477", "nectar_sept_promo_1348424477");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348474897", "nectar_sept_promo_1348474897");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348509362", "nectar_sept_promo_1348509362");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348547227", "nectar_sept_promo_1348547227");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348554430", "nectar_sept_promo_1348554430");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348646154", "nectar_sept_promo_1348646154");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348649754", "nectar_sept_promo_1348649754");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348660819", "nectar_sept_promo_1348660819");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348819856", "nectar_sept_promo_1348819856");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348865115", "nectar_sept_promo_1348865115");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348907996", "nectar_sept_promo_1348907996");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348922396", "nectar_sept_promo_1348922396");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1349025320", "nectar_sept_promo_1349025320");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1349036164", "nectar_sept_promo_1349036164");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.searchHistory", true);
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.session", "");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.showFirstLaunchOptions", false);
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.tb_lang", "en");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.tool_id", "61465");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.user_id", "68288385");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.user_key", "d4b81b9b809c09143452836801db73c5a08f299f");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.user_layouts", "61465");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.user_lnames", "Nectar%20Search%20Toolbar");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.xml_service_url", "6bb94bbf55fe2f255901a560824a6ebe");
user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.yahooSearch", true);
user_pref("keyword.URL", "hxxp://feed.snap.do/?publisher=DownloadXYB&dpid=DownloadXYB&co=GB&userid=a320cdf2-2a74-4e85-b159-e775d5b7bced&searchtype=ds&q=");



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 27/02/2013 at 13:59:35.27
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
 



AdwCleaner Report

 

# AdwCleaner v2.113 - Logfile created 02/27/2013 at 13:55:57
# Updated 23/02/2013 by Xplode
# Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
# User : Management - MANAGEMENT-PC
# Boot Mode : Safe mode with networking
# Running from : C:\Users\Management\Desktop\adwcleaner.exe
# Option [Search]


***** [Services] *****


***** [Files / Folders] *****

File Found : C:\Users\Management\AppData\Roaming\Mozilla\Firefox\Profiles\m2nvcb9x.default\searchplugins\Web Search.xml
Folder Found : C:\Users\Management\AppData\Roaming\Mozilla\Firefox\Profiles\m2nvcb9x.default\FCTB

***** [Registry] *****

Key Found : HKCU\Software\SmartBar
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Key Found : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Key Found : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Found : HKU\S-1-5-21-2237272554-1537871678-815445765-1000\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Value Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Value Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]

***** [Internet Browsers] *****

-\\ Internet Explorer v8.0.7601.17514

[HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://feed.snap.do/?publisher=DownloadXYB&dpid=DownloadXYB&co=GB&userid=a320cdf2-2a74-4e85-b159-e775d5b7bced&searchtype=hp
[HKCU\Software\Microsoft\Internet Explorer\Main - Search Page] = hxxp://feed.snap.do/?publisher=DownloadXYB&dpid=DownloadXYB&co=GB&userid=a320cdf2-2a74-4e85-b159-e775d5b7bced&searchtype=ds&q={searchTerms}
[HKCU\Software\Microsoft\Internet Explorer\Main - Search Bar] = hxxp://feed.snap.do/?publisher=DownloadXYB&dpid=DownloadXYB&co=GB&userid=a320cdf2-2a74-4e85-b159-e775d5b7bced&searchtype=ds&q={searchTerms}
[HKCU\Software\Microsoft\Internet Explorer\Search - Default_Search_URL] = hxxp://feed.snap.do/?publisher=DownloadXYB&dpid=DownloadXYB&co=GB&userid=a320cdf2-2a74-4e85-b159-e775d5b7bced&searchtype=ds&q={searchTerms}
[HKCU\Software\Microsoft\Internet Explorer\Search - SearchAssistant] = hxxp://feed.snap.do/?publisher=DownloadXYB&dpid=DownloadXYB&co=GB&userid=a320cdf2-2a74-4e85-b159-e775d5b7bced&searchtype=ds&q={searchTerms}

-\\ Mozilla Firefox v18.0.2 (en-GB)

File : C:\Users\Management\AppData\Roaming\Mozilla\Firefox\Profiles\m2nvcb9x.default\prefs.js

Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.2803282.KeywordHistory", "nfl%2520uk%7Ccottage%[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.AutoSearchEventData", "auto%20search");
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.ClearCacheDate", 27);
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.DNSCatch", true);
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.DisplayEULA", false);
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.DnsCatchEventData", "dns%20catch");
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.FirstLaunchShown", true);
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.LoadLayoutDate.61465", 27);
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.NewTabSearchEventData", "tab%20search");
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.ShowRecommendedOptions", true);
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.StateReportDate", "1361943814181");
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.TopRightSearchEventData", "top%20right%20search[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.Uninstall", false);
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.comp.affiliate.2803296.disabled", false);
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.comp.search.2803282.engine_img", "aHR0cDovL3Mzd[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.comp.search.2803282.engine_url", "aHR0cDovL3VrL[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.comp.search.2803282.text", "Search%20to%20Colle[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.customNewTab", true);
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.helpUsImprove", true);
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.hideOthers", false);
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.partnerauth", false);
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.processAddrBar", true);
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.restoreSearch", false);
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.revision", "89");
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.", "1361363355");
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.123", "61684");
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.14", "1334261993");
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1335851400", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1335855001", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1335862196", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1335865789", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336144561", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336157107", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336200271", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336211072", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336221872", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336329967", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336369118", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336413435", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336456904", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336473334", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336476932", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336544552", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336548152", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336560741", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336575483", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336682090", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336711971", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336896597", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336928520", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336936092", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1336972337", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337028561", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337059854", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337070075", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337329528", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337405973", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337417090", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337423621", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337444292", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337540436", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337622878", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337664301", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337674667", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337753892", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337770166", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337847763", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337871846", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1337974922", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1338014703", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1338019521", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1338023120", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1338215721", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1338271928", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1338293289", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1338365822", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_may_1338369422", "nectar_may_prom[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1349941004", "nectar_oc[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1350120826", "nectar_oc[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1350466616", "nectar_oc[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1350563862", "nectar_oc[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1350826139", "nectar_oc[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1350835780", "nectar_oc[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1350966600", "nectar_oc[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1350970858", "nectar_oc[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351228694", "nectar_oc[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351274514", "nectar_oc[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351278102", "nectar_oc[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351313484", "nectar_oc[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351317084", "nectar_oc[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351320684", "nectar_oc[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351324282", "nectar_oc[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351335083", "nectar_oc[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351447455", "nectar_oc[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351502031", "nectar_oc[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351542126", "nectar_oc[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_oct_promo_1351587698", "nectar_oc[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1315411768", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1315544707", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1315593926", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1315633022", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1315647765", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1315651706", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1315654588", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1315902922", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1315988297", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316096910", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316097450", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316109450", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316111610", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316117571", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316154916", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316236546", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316237862", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316254122", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316254182", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316349585", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316406646", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316506760", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316611244", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316696856", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316698238", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316721802", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316723182", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316723242", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316752507", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316804061", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316844639", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316845073", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316856413", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316864623", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316867983", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1316984097", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1317015971", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1317104333", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1317204726", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1317360825", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1317408265", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1317413550", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1346478628", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1346572925", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1346576528", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1346591227", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1346594827", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1346606465", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1346703144", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1346953987", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1346961199", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347010274", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347047561", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347095725", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347102640", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347106234", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347222394", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347263995", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347299547", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347309110", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347340906", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347350023", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347433753", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347437355", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347440959", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347554131", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347610598", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347647487", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347654685", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347689217", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347701420", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347774752", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347804792", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1347949366", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348039137", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348042737", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348046337", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348050883", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348218882", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348250496", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348257703", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348289669", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348296864", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348300461", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348311261", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348424477", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348474897", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348509362", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348547227", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348554430", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348646154", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348649754", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348660819", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348819856", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348865115", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348907996", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1348922396", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1349025320", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.runcmd.nectar_sept_1349036164", "nectar_sept_pr[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.searchHistory", true);
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.session", "");
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.showFirstLaunchOptions", false);
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.tb_lang", "en");
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.tool_id", "61465");
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.user_id", "68288385");
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.user_key", "d4b81b9b809c09143452836801db73c5a08[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.user_layouts", "61465");
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.user_lnames", "Nectar%20Search%20Toolbar");
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.xml_service_url", "6bb94bbf55fe2f255901a560824a[...]
Found : user_pref("freecause841468a1d7f44bd384e6bb0f13a06c64.yahooSearch", true);
Found : user_pref("keyword.URL", "hxxp://feed.snap.do/?publisher=DownloadXYB&dpid=DownloadXYB&co=GB&userid=a[...]

File : C:\Users\Mitesh\AppData\Roaming\Mozilla\Firefox\Profiles\taf64u1o.default\prefs.js

[OK] File is clean.

*************************

AdwCleaner[R1].txt - [26113 octets] - [27/02/2013 13:55:57]

########## EOF - C:\AdwCleaner[R1].txt - [26174 octets] ##########
 



MiniToolBox Report

 

MiniToolBox by Farbar  Version:10-01-2013
Ran by Management (administrator) on 27-02-2013 at 13:52:51
Running from "C:\Users\Management\Desktop"
Windows 7 Home Premium Service Pack 1 (X64)
Boot Mode: Network
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.

"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= FF Proxy Settings: ==============================


"Reset FF Proxy Settings": Firefox Proxy settings were reset.

========================= Hosts content: =================================



========================= IP Configuration: ================================

Broadcom NetXtreme Gigabit Ethernet = Local Area Connection (Connected)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global icmpredirects=enabled
add route prefix=0.0.0.0/0 interface="Local Area Connection" nexthop=192.1.1.10 publish=Yes
add address name="Local Area Connection" address=192.1.1.9 mask=255.255.255.0


popd
# End of IPv4 configuration



Windows IP Configuration

   Host Name . . . . . . . . . . . . : Management-PC
   Primary Dns Suffix  . . . . . . . :
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No

Ethernet adapter Local Area Connection:

   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Broadcom NetXtreme Gigabit Ethernet
   Physical Address. . . . . . . . . : D0-27-88-19-AF-2D
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   Link-local IPv6 Address . . . . . : fe80::7519:d9f4:c1fe:4e93%10(Preferred)
   IPv4 Address. . . . . . . . . . . : 192.1.1.9(Preferred)
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Default Gateway . . . . . . . . . : 192.1.1.10
   DHCPv6 IAID . . . . . . . . . . . : 198190984
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-14-80-05-24-D0-27-88-19-AF-2D
   DNS Servers . . . . . . . . . . . : 192.1.1.10
   NetBIOS over Tcpip. . . . . . . . : Enabled

Tunnel adapter isatap.{192C7CFC-9F5F-43E8-88E4-EEB7761DB706}:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Teredo Tunneling Pseudo-Interface:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

Tunnel adapter 6TO4 Adapter:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft 6to4 Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
Server:  www.routerlogin.com
Address:  192.1.1.10

Name:    google.com
Addresses:  2a00:1450:4009:807::1006
      173.194.41.71
      173.194.41.73
      173.194.41.66
      173.194.41.72
      173.194.41.67
      173.194.41.68
      173.194.41.69
      173.194.41.78
      173.194.41.64
      173.194.41.65
      173.194.41.70


Pinging google.com [173.194.41.67] with 32 bytes of data:
Reply from 173.194.41.67: bytes=32 time=19ms TTL=52
Reply from 173.194.41.67: bytes=32 time=18ms TTL=52

Ping statistics for 173.194.41.67:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 18ms, Maximum = 19ms, Average = 18ms
Server:  www.routerlogin.com
Address:  192.1.1.10

Name:    yahoo.com
Addresses:  98.138.253.109
      206.190.36.45
      98.139.183.24


Pinging yahoo.com [206.190.36.45] with 32 bytes of data:
Reply from 206.190.36.45: bytes=32 time=588ms TTL=42
Reply from 206.190.36.45: bytes=32 time=706ms TTL=42

Ping statistics for 206.190.36.45:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 588ms, Maximum = 706ms, Average = 647ms

Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Ping statistics for 127.0.0.1:
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
    Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
 10...d0 27 88 19 af 2d ......Broadcom NetXtreme Gigabit Ethernet
  1...........................Software Loopback Interface 1
 11...00 00 00 00 00 00 00 e0 Microsoft ISATAP Adapter
 12...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface
 13...00 00 00 00 00 00 00 e0 Microsoft 6to4 Adapter
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0       192.1.1.10        192.1.1.9    276
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
        192.1.1.0    255.255.255.0         On-link         192.1.1.9    276
        192.1.1.9  255.255.255.255         On-link         192.1.1.9    276
      192.1.1.255  255.255.255.255         On-link         192.1.1.9    276
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link         192.1.1.9    276
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link         192.1.1.9    276
===========================================================================
Persistent Routes:
  Network Address          Netmask  Gateway Address  Metric
          0.0.0.0          0.0.0.0       192.1.1.10  Default
===========================================================================

IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
  1    306 ::1/128                  On-link
 10    276 fe80::/64                On-link
 10    276 fe80::7519:d9f4:c1fe:4e93/128
                                    On-link
  1    306 ff00::/8                 On-link
 10    276 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================

Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation)
Catalog5 05 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 06 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280] (Microsoft Corp.)
Catalog5 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog5 08 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation)
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation)
x64-Catalog5 05 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [170880] (Microsoft Corp.)
x64-Catalog5 06 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [170880] (Microsoft Corp.)
x64-Catalog5 07 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog5 08 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [326144] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (02/26/2013 00:59:57 PM) (Source: Application Hang) (User: )
Description: The program mbam-setup-1.70.0.1100.tmp version 51.52.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Action Center control panel.

Process ID: 1c4

Start Time: 01ce141d7ab84155

Termination Time: 0

Application Path: C:\Users\MANAGE~1\AppData\Local\Temp\is-LJUKM.tmp\mbam-setup-1.70.0.1100.tmp

Report Id:

Error: (02/26/2013 00:39:04 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (02/26/2013 00:39:02 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (02/26/2013 00:38:49 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1".Error in manifest or policy file "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" on line C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (02/26/2013 09:27:33 AM) (Source: System Restore) (User: )
Description: Failed to create restore point (Process = C:\Windows\servicing\TrustedInstaller.exe; Description = Windows Modules Installer; Error = 0x81000101).

Error: (02/26/2013 09:17:31 AM) (Source: System Restore) (User: )
Description: Failed to create restore point (Process = C:\Windows\system32\svchost.exe -k netsvcs; Description = Windows Update; Error = 0x81000101).

Error: (02/26/2013 07:56:29 AM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "assemblyIdentity1".Error in manifest or policy file "assemblyIdentity2" on line assemblyIdentity3.
The value "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" of attribute "version" in element "assemblyIdentity" is invalid.

Error: (02/25/2013 02:32:29 PM) (Source: Windows Search Service) (User: )
Description: The index cannot be initialized.


Details:
    The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (02/25/2013 02:32:29 PM) (Source: Windows Search Service) (User: )
Description: The application cannot be initialized.

Context: Windows Application


Details:
    The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (02/25/2013 02:32:29 PM) (Source: Windows Search Service) (User: )
Description: The gatherer object cannot be initialized.

Context: Windows Application, SystemIndex Catalog


Details:
    The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)


System errors:
=============
Error: (02/27/2013 01:52:11 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068

Error: (02/27/2013 01:52:11 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068

Error: (02/27/2013 01:52:11 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068

Error: (02/27/2013 01:52:11 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068

Error: (02/27/2013 01:52:11 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068

Error: (02/27/2013 01:52:11 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service depends on the Server service which failed to start because of the following error:
%%1068

Error: (02/27/2013 01:52:11 PM) (Source: DCOM) (User: )
Description: 1084WSearch{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}

Error: (02/27/2013 01:52:10 PM) (Source: DCOM) (User: )
Description: 1084WSearch{9E175B6D-F52A-11D8-B9A5-505054503030}

Error: (02/27/2013 01:52:10 PM) (Source: DCOM) (User: )
Description: 1084EventSystem{1BE1F766-5536-11D1-B726-00C04FB926AF}

Error: (02/27/2013 01:52:04 PM) (Source: DCOM) (User: )
Description: 1084ShellHWDetection{DD522ACC-F821-461A-A407-50B198B896DC}


Microsoft Office Sessions:
=========================
Error: (02/26/2013 00:59:57 PM) (Source: Application Hang)(User: )
Description: mbam-setup-1.70.0.1100.tmp51.52.0.01c401ce141d7ab841550C:\Users\MANAGE~1\AppData\Local\Temp\is-LJUKM.tmp\mbam-setup-1.70.0.1100.tmp

Error: (02/26/2013 00:39:04 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Management\Desktop\esetsmartinstaller_enu.exe

Error: (02/26/2013 00:39:02 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Management\Desktop\esetsmartinstaller_enu.exe

Error: (02/26/2013 00:38:49 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Management\Desktop\esetsmartinstaller_enu.exe

Error: (02/26/2013 09:27:33 AM) (Source: System Restore)(User: )
Description: C:\Windows\servicing\TrustedInstaller.exeWindows Modules Installer0x81000101

Error: (02/26/2013 09:17:31 AM) (Source: System Restore)(User: )
Description: C:\Windows\system32\svchost.exe -k netsvcsWindows Update0x81000101

Error: (02/26/2013 07:56:29 AM) (Source: SideBySide)(User: )
Description: assemblyIdentityversionMAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINORc:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dllc:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Adobe AIR.dll3

Error: (02/25/2013 02:32:29 PM) (Source: Windows Search Service)(User: )
Description:
Details:
    The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (02/25/2013 02:32:29 PM) (Source: Windows Search Service)(User: )
Description: Context: Windows Application


Details:
    The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (02/25/2013 02:32:29 PM) (Source: Windows Search Service)(User: )
Description: Context: Windows Application, SystemIndex Catalog


Details:
    The content index catalog is corrupt.  (HRESULT : 0xc0041801) (0xc0041801)


=========================== Installed Programs ============================

Acrobat.com (Version: 1.6.65)
Adobe AIR (Version: 1.5.0.7220)
Adobe Flash Player 10 ActiveX (Version: 10.1.82.76)
Adobe Flash Player 10 Plugin (Version: 10.3.183.5)
Adobe Photoshop Elements 8.0 (Version: 8.0)
Adobe Reader X (10.1.1) (Version: 10.1.1)
Agatha Christie - Death on the Nile (Version: 2.2.0.95)
Bejeweled 2 Deluxe (Version: 2.2.0.95)
BlackBerry Desktop Software 6.1 (Version: 6.1.0.36)
BlackBerry Device Manager 7.0 (Version: 7.0.0.40)
BlackBerry Device Software Updater (Version: 6.0.1.37)
BlackBerry Device Software v6.0.0 for the BlackBerry 9700 smartphone (Version: 6.0.0.668 (Platform 6.6.0.236))
Bomgar Jump Client 12.2.1 [support.proteusuk.com] [1300889299] (Version: 12.2.1)
Build-a-lot 2 (Version: 2.2.0.95)
CCleaner (Version: 3.18)
Chuzzle Deluxe (Version: 2.2.0.95)
D3DX10 (Version: 15.4.2368.0902)
DHTML Editing Component (Version: 6.02.0001)
Diner Dash 2 Restaurant Rescue (Version: 2.2.0.95)
DownloadX ActiveX Download Control 1.6.7
Dropbox (Version: 1.6.16)
ESET Online Scanner v3
Farm Frenzy (Version: 2.2.0.95)
FATE (Version: 2.2.0.95)
Final Drive Nitro (Version: 2.2.0.95)
HL-2250DN (Version: 1.0.6.0)
Hotkey Utility (Version: 2.05.3009)
Identity Card (Version: 1.00.3003)
ImagXpress (Version: 7.0.74.0)
Insaniquarium Deluxe (Version: 2.2.0.95)
Intel® Control Center (Version: 1.2.0.1006)
Intel® Graphics Media Accelerator Driver (Version: 8.15.10.1995)
Jewel Quest Solitaire 2 (Version: 2.2.0.95)
John Deere Drive Green (Version: 2.2.0.95)
Junk Mail filter update (Version: 15.4.3502.0922)
Malwarebytes Anti-Malware version 1.70.0.1100 (Version: 1.70.0.1100)
Mesh Runtime (Version: 15.4.5722.2)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Office 2010 (Version: 14.0.4763.1000)
Microsoft Office Click-to-Run 2010 (Version: 14.0.4763.1000)
Microsoft Office Starter 2010 - English (Version: 14.0.4763.1000)
Microsoft PowerPoint Viewer (Version: 14.0.6029.1000)
Microsoft Silverlight (Version: 4.1.10329.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (Version: 9.0.30729.5570)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Mozilla Firefox 18.0.2 (x86 en-GB) (Version: 18.0.2)
MSVCRT (Version: 15.4.2862.0708)
MSVCRT_amd64 (Version: 15.4.2862.0708)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
MyPC Backup  (Version: )
neroxml (Version: 1.0.0)
NetPOS (Version: 1.0.0)
Norton 360 (Version: 6.4.0.9)
Packard Bell Game Console
Packard Bell Games (Version: 1.0.1.3)
Packard Bell InfoCentre (Version: 3.02.3000)
Packard Bell Recovery Management (Version: 4.05.3013)
Packard Bell Registration (Version: 1.03.3003)
Packard Bell ScreenSaver (Version: 1.1.0825.2010)
Packard Bell Software Suite SE (Version: 2.01.3003)
Packard Bell Updater (Version: 1.02.3001)
PageBreeze Free HTML Editor
PassPort Resolution (Version: 230.1.00)
Penguins! (Version: 2.2.0.95)
Plants vs. Zombies (Version: 2.2.0.95)
Polar Bowler (Version: 2.2.0.95)
Polar Golfer (Version: 2.2.0.95)
Realtek High Definition Audio Driver (Version: 6.0.1.5983)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2473228) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Videoplayer (Version: 1.0.5.9)
Virtual Villagers 4 - The Tree of Life (Version: 2.2.0.95)
Welcome Center (Version: 1.02.3005)
Windows Live Communications Platform (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0)
Windows Live Installer (Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3502.0922)
Windows Live Mail (Version: 15.4.3502.0922)
Windows Live Mesh (Version: 15.4.3502.0922)
Windows Live Mesh ActiveX Control for Remote Connections (Version: 15.4.5722.2)
Windows Live Messenger (Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (Version: 15.4.3502.0922)
Windows Live Photo Common (Version: 15.4.3502.0922)
Windows Live Photo Gallery (Version: 15.4.3502.0922)
Windows Live PIMT Platform (Version: 15.4.3502.0922)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Live SOXE (Version: 15.4.3502.0922)
Windows Live SOXE Definitions (Version: 15.4.3502.0922)
Windows Live UX Platform (Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (Version: 15.4.3502.0922)
Windows Live Writer (Version: 15.4.3502.0922)
Windows Live Writer Resources (Version: 15.4.3502.0922)
Windows Mobile Device Center (Version: 6.1.6965.0)
WinRAR 4.00 (32-bit) (Version: 4.00.0)
Zuma's Revenge (Version: 2.2.0.95)
Zuma Deluxe (Version: 2.2.0.95)

========================= Devices: ================================

Name: Security Processor Loader Driver
Description: Security Processor Loader Driver
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: spldr
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: Generic USB Disk USB Device
Description: Disk drive
Class Guid: {4d36e967-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standard disk drives)
Service: disk
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


========================= Memory info: ===================================

Percentage of memory in use: 28%
Total physical RAM: 3037.24 MB
Available physical RAM: 2176.64 MB
Total Pagefile: 6072.68 MB
Available Pagefile: 5224.62 MB
Total Virtual: 4095.88 MB
Available Virtual: 3970.21 MB

========================= Partitions: =====================================

1 Drive c: (Packard Bell) (Fixed) (Total:289.95 GB) (Free:189.59 GB) NTFS
2 Drive d: (DATA) (Fixed) (Total:290.12 GB) (Free:283.03 GB) NTFS
4 Drive f: (WD USB 2) (Fixed) (Total:74.5 GB) (Free:47.65 GB) FAT32

========================= Users: ========================================

User accounts for \\MANAGEMENT-PC

Administrator            Guest                    Management               
Mitesh                   


**** End of log ****
 



#4 InadequateInfirmity

InadequateInfirmity

    I Gots Me A Certified Edumication


  • Banned
  • 5,180 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:01:50 AM

Posted 28 February 2013 - 07:44 PM

Please Re-run Adware Cleaner and then hit the Delete button this time and post the new log. 



#5 MittyP

MittyP
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:06:50 AM

Posted 01 March 2013 - 04:30 AM

# AdwCleaner v2.113 - Logfile created 03/01/2013 at 09:25:23
# Updated 23/02/2013 by Xplode
# Operating system : Windows 7 Home Premium Service Pack 1 (64 bits)
# User : Management - MANAGEMENT-PC
# Boot Mode : Normal
# Running from : C:\Users\Management\Desktop\adwcleaner.exe
# Option [Search]


***** [Services] *****


***** [Files / Folders] *****


***** [Registry] *****


***** [Internet Browsers] *****

-\\ Internet Explorer v8.0.7601.17514

[OK] Registry is clean.

-\\ Mozilla Firefox v19.0 (en-GB)

File : C:\Users\Management\AppData\Roaming\Mozilla\Firefox\Profiles\m2nvcb9x.default\prefs.js

[OK] File is clean.

File : C:\Users\Mitesh\AppData\Roaming\Mozilla\Firefox\Profiles\taf64u1o.default\prefs.js

[OK] File is clean.

*************************

AdwCleaner[R1].txt - [26236 octets] - [27/02/2013 13:55:57]
AdwCleaner[R2].txt - [1501 octets] - [27/02/2013 14:00:24]
AdwCleaner[R3].txt - [5089 octets] - [28/02/2013 07:02:56]
AdwCleaner[R4].txt - [984 octets] - [01/03/2013 09:25:23]
AdwCleaner[S1].txt - [1571 octets] - [27/02/2013 14:00:31]
AdwCleaner[S2].txt - [5235 octets] - [28/02/2013 07:03:13]

########## EOF - C:\AdwCleaner[R4].txt - [1163 octets] ##########
 



#6 InadequateInfirmity

InadequateInfirmity

    I Gots Me A Certified Edumication


  • Banned
  • 5,180 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:01:50 AM

Posted 01 March 2013 - 09:01 PM

Ok the emisoft log please.



#7 MittyP

MittyP
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:06:50 AM

Posted 02 March 2013 - 07:16 AM

Ok the emisoft log please.

 


I've tried to run the emisoft scan twice now and each time it has frozen on around 81%, i'm currently running it again to see if I get a result this time.



#8 InadequateInfirmity

InadequateInfirmity

    I Gots Me A Certified Edumication


  • Banned
  • 5,180 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:01:50 AM

Posted 02 March 2013 - 08:07 AM

Have you tried in safemode with networking???

 

Here are a few other steps I know you said you can not get Malwarebytes to install but please try in safemode with networking.

 

 

Download tdss killer

http://support.kaspersky.com/downloads/utils/tdsskiller.exe

Double Click to Run it.


Right Click it Run As Admin Vista win 7 Users

 

. Click on Change parameters Select TDLFS file system

Hit the Scan button Post the LOG In your next reply

Do not change the default options on scan results



Update and do a quick scan with Malwarebytes remove all that it finds and reboot.
http://www.filehippo.com/download_malwarebytes_anti_malware/download/ecf14848530d11a2f09a94b92a69fcfa/

Post the log here,


Update do a quick scan with Superantispyware remove all this finds reboot.
http://www.superantispyware.com/downloadfile.html?productid=SUPERANTISPYWAREFREE
post the log here.




Run a scan with Eset. You will need to disable your antivirus during this scan.
http://www.eset.com/us/online-scanner/
Make sure remove found threats and scan archives is checked.
When the scan finish list found threats save to clipboard copy to notepad Post the log here.



#9 MittyP

MittyP
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:06:50 AM

Posted 02 March 2013 - 09:38 AM

TDSS Killer Report

 

14:33:14.0424 1692  TDSS rootkit removing tool 2.8.16.0 Feb 11 2013 18:50:42
14:33:14.0611 1692  ============================================================
14:33:14.0611 1692  Current date / time: 2013/03/02 14:33:14.0611
14:33:14.0611 1692  SystemInfo:
14:33:14.0611 1692  
14:33:14.0611 1692  OS Version: 6.1.7601 ServicePack: 1.0
14:33:14.0611 1692  Product type: Workstation
14:33:14.0611 1692  ComputerName: MANAGEMENT-PC
14:33:14.0611 1692  UserName: Management
14:33:14.0611 1692  Windows directory: C:\Windows
14:33:14.0611 1692  System windows directory: C:\Windows
14:33:14.0611 1692  Running under WOW64
14:33:14.0611 1692  Processor architecture: Intel x64
14:33:14.0611 1692  Number of processors: 2
14:33:14.0611 1692  Page size: 0x1000
14:33:14.0611 1692  Boot type: Safe boot with network
14:33:14.0611 1692  ============================================================
14:33:15.0594 1692  Drive \Device\Harddisk0\DR0 - Size: 0x950B056000 (596.17 Gb), SectorSize: 0x200, Cylinders: 0x13001, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
14:33:15.0594 1692  Drive \Device\Harddisk1\DR1 - Size: 0x12A1F16000 (74.53 Gb), SectorSize: 0x200, Cylinders: 0x2601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
14:33:15.0625 1692  ============================================================
14:33:15.0625 1692  \Device\Harddisk0\DR0:
14:33:15.0625 1692  MBR partitions:
14:33:15.0625 1692  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x2000800, BlocksNum 0x32000
14:33:15.0625 1692  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x2032800, BlocksNum 0x243E7000
14:33:15.0625 1692  \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x26419800, BlocksNum 0x2443E000
14:33:15.0625 1692  \Device\Harddisk1\DR1:
14:33:15.0625 1692  MBR partitions:
14:33:15.0625 1692  \Device\Harddisk1\DR1\Partition1: MBR, Type 0xC, StartLBA 0x3F, BlocksNum 0x950A5C1
14:33:15.0625 1692  ============================================================
14:33:15.0656 1692  C: <-> \Device\Harddisk0\DR0\Partition2
14:33:15.0687 1692  D: <-> \Device\Harddisk0\DR0\Partition3
14:33:15.0687 1692  F: <-> \Device\Harddisk1\DR1\Partition1
14:33:15.0687 1692  ============================================================
14:33:15.0687 1692  Initialize success
14:33:15.0687 1692  ============================================================
14:33:40.0195 0884  ============================================================
14:33:40.0195 0884  Scan started
14:33:40.0195 0884  Mode: Manual; TDLFS;
14:33:40.0195 0884  ============================================================
14:33:40.0897 0884  ================ Scan system memory ========================
14:33:40.0897 0884  System memory - ok
14:33:40.0897 0884  ================ Scan services =============================
14:33:41.0006 0884  [ A87D604AEA360176311474C87A63BB88 ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
14:33:41.0022 0884  1394ohci - ok
14:33:41.0162 0884  [ 3044D0F3FEB9FFE8BC953D8F34B5B504 ] A2DDA           C:\Users\MANAGE~1\AppData\Local\Temp\Rar$EX87.968\Run\a2ddax64.sys
14:33:41.0162 0884  A2DDA - ok
14:33:41.0193 0884  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
14:33:41.0193 0884  ACPI - ok
14:33:41.0224 0884  [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
14:33:41.0224 0884  AcpiPmi - ok
14:33:41.0271 0884  [ 34400005DE52842C4D6D4EE978B4D7CE ] AdobeActiveFileMonitor8.0 c:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe
14:33:41.0287 0884  AdobeActiveFileMonitor8.0 - ok
14:33:41.0318 0884  [ 11A52CF7B265631DEEB24C6149309EFF ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
14:33:41.0318 0884  AdobeARMservice - ok
14:33:41.0349 0884  [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx         C:\Windows\system32\DRIVERS\adp94xx.sys
14:33:41.0365 0884  adp94xx - ok
14:33:41.0396 0884  [ 597F78224EE9224EA1A13D6350CED962 ] adpahci         C:\Windows\system32\DRIVERS\adpahci.sys
14:33:41.0396 0884  adpahci - ok
14:33:41.0412 0884  [ E109549C90F62FB570B9540C4B148E54 ] adpu320         C:\Windows\system32\DRIVERS\adpu320.sys
14:33:41.0412 0884  adpu320 - ok
14:33:41.0427 0884  [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
14:33:41.0427 0884  AeLookupSvc - ok
14:33:41.0458 0884  [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD             C:\Windows\system32\drivers\afd.sys
14:33:41.0474 0884  AFD - ok
14:33:41.0505 0884  [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440          C:\Windows\system32\drivers\agp440.sys
14:33:41.0505 0884  agp440 - ok
14:33:41.0521 0884  [ 3290D6946B5E30E70414990574883DDB ] ALG             C:\Windows\System32\alg.exe
14:33:41.0521 0884  ALG - ok
14:33:41.0536 0884  [ 5812713A477A3AD7363C7438CA2EE038 ] aliide          C:\Windows\system32\drivers\aliide.sys
14:33:41.0536 0884  aliide - ok
14:33:41.0552 0884  [ 1FF8B4431C353CE385C875F194924C0C ] amdide          C:\Windows\system32\drivers\amdide.sys
14:33:41.0552 0884  amdide - ok
14:33:41.0552 0884  [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8           C:\Windows\system32\DRIVERS\amdk8.sys
14:33:41.0568 0884  AmdK8 - ok
14:33:41.0568 0884  [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM          C:\Windows\system32\DRIVERS\amdppm.sys
14:33:41.0568 0884  AmdPPM - ok
14:33:41.0599 0884  [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
14:33:41.0599 0884  amdsata - ok
14:33:41.0614 0884  [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs          C:\Windows\system32\DRIVERS\amdsbs.sys
14:33:41.0614 0884  amdsbs - ok
14:33:41.0630 0884  [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
14:33:41.0630 0884  amdxata - ok
14:33:41.0661 0884  [ 89A69C3F2F319B43379399547526D952 ] AppID           C:\Windows\system32\drivers\appid.sys
14:33:41.0661 0884  AppID - ok
14:33:41.0677 0884  [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
14:33:41.0677 0884  AppIDSvc - ok
14:33:41.0692 0884  [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo         C:\Windows\System32\appinfo.dll
14:33:41.0692 0884  Appinfo - ok
14:33:41.0724 0884  [ C484F8CEB1717C540242531DB7845C4E ] arc             C:\Windows\system32\DRIVERS\arc.sys
14:33:41.0724 0884  arc - ok
14:33:41.0724 0884  [ 019AF6924AEFE7839F61C830227FE79C ] arcsas          C:\Windows\system32\DRIVERS\arcsas.sys
14:33:41.0724 0884  arcsas - ok
14:33:41.0739 0884  [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
14:33:41.0739 0884  AsyncMac - ok
14:33:41.0755 0884  [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi           C:\Windows\system32\drivers\atapi.sys
14:33:41.0755 0884  atapi - ok
14:33:41.0786 0884  [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
14:33:41.0817 0884  AudioEndpointBuilder - ok
14:33:41.0817 0884  [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv        C:\Windows\System32\Audiosrv.dll
14:33:41.0817 0884  AudioSrv - ok
14:33:41.0848 0884  [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV        C:\Windows\System32\AxInstSV.dll
14:33:41.0848 0884  AxInstSV - ok
14:33:41.0880 0884  [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv         C:\Windows\system32\DRIVERS\bxvbda.sys
14:33:41.0880 0884  b06bdrv - ok
14:33:41.0926 0884  [ A375AA8F1549BA51CFBCBD9A4AE0C2D3 ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
14:33:41.0926 0884  b57nd60a - ok
14:33:41.0942 0884  [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC          C:\Windows\System32\bdesvc.dll
14:33:41.0942 0884  BDESVC - ok
14:33:41.0958 0884  [ 16A47CE2DECC9B099349A5F840654746 ] Beep            C:\Windows\system32\drivers\Beep.sys
14:33:41.0958 0884  Beep - ok
14:33:42.0020 0884  [ 82974D6A2FD19445CC5171FC378668A4 ] BFE             C:\Windows\System32\bfe.dll
14:33:42.0036 0884  BFE - ok
14:33:42.0129 0884  [ 866335C9C0E6733C753FB472C539A6B9 ] BHDrvx64        C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_6.2.1.5\Definitions\BASHDefs\20130116.013_903\BHDrvx64.sys
14:33:42.0160 0884  BHDrvx64 - ok
14:33:42.0192 0884  [ 1EA7969E3271CBC59E1730697DC74682 ] BITS            C:\Windows\System32\qmgr.dll
14:33:42.0207 0884  BITS - ok
14:33:42.0223 0884  [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
14:33:42.0223 0884  blbdrive - ok
14:33:42.0379 0884  [ 224791555EFEEFDC8B98BF3296CC7EE6 ] bomgar-ps-1300889299-1343947193 C:\ProgramData\bomgar-scc-000000004D89FED3\bomgar-scc.exe
14:33:42.0488 0884  bomgar-ps-1300889299-1343947193 - ok
14:33:42.0519 0884  [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
14:33:42.0519 0884  bowser - ok
14:33:42.0535 0884  [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo        C:\Windows\system32\DRIVERS\BrFiltLo.sys
14:33:42.0535 0884  BrFiltLo - ok
14:33:42.0550 0884  [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp        C:\Windows\system32\DRIVERS\BrFiltUp.sys
14:33:42.0550 0884  BrFiltUp - ok
14:33:42.0582 0884  [ 8EF0D5C41EC907751B8429162B1239ED ] Browser         C:\Windows\System32\browser.dll
14:33:42.0582 0884  Browser - ok
14:33:42.0597 0884  [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
14:33:42.0597 0884  Brserid - ok
14:33:42.0613 0884  [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
14:33:42.0613 0884  BrSerWdm - ok
14:33:42.0628 0884  [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
14:33:42.0628 0884  BrUsbMdm - ok
14:33:42.0628 0884  [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
14:33:42.0628 0884  BrUsbSer - ok
14:33:42.0691 0884  [ EA7E57F87D6FEE5FD6C5F813C04E8CD2 ] BrYNSvc         C:\Program Files (x86)\Browny02\BrYNSvc.exe
14:33:42.0691 0884  BrYNSvc - ok
14:33:42.0706 0884  [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM        C:\Windows\system32\DRIVERS\bthmodem.sys
14:33:42.0706 0884  BTHMODEM - ok
14:33:42.0738 0884  [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv         C:\Windows\system32\bthserv.dll
14:33:42.0738 0884  bthserv - ok
14:33:42.0784 0884  [ 2C6FFCCA37B002AAB3C7C31A6D780A76 ] ccSet_N360      C:\Windows\system32\drivers\N360x64\0604000.009\ccSetx64.sys
14:33:42.0784 0884  ccSet_N360 - ok
14:33:42.0800 0884  [ B8BD2BB284668C84865658C77574381A ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
14:33:42.0800 0884  cdfs - ok
14:33:42.0831 0884  [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
14:33:42.0831 0884  cdrom - ok
14:33:42.0847 0884  [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc     C:\Windows\System32\certprop.dll
14:33:42.0847 0884  CertPropSvc - ok
14:33:42.0878 0884  [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass        C:\Windows\system32\DRIVERS\circlass.sys
14:33:42.0878 0884  circlass - ok
14:33:42.0894 0884  [ FE1EC06F2253F691FE36217C592A0206 ] CLFS            C:\Windows\system32\CLFS.sys
14:33:42.0909 0884  CLFS - ok
14:33:42.0940 0884  [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
14:33:42.0956 0884  clr_optimization_v2.0.50727_32 - ok
14:33:42.0972 0884  [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
14:33:42.0972 0884  clr_optimization_v2.0.50727_64 - ok
14:33:43.0018 0884  [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
14:33:43.0081 0884  clr_optimization_v4.0.30319_32 - ok
14:33:43.0174 0884  [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
14:33:43.0221 0884  clr_optimization_v4.0.30319_64 - ok
14:33:43.0237 0884  [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
14:33:43.0237 0884  CmBatt - ok
14:33:43.0284 0884  [ E19D3F095812725D88F9001985B94EDD ] cmdide          C:\Windows\system32\drivers\cmdide.sys
14:33:43.0299 0884  cmdide - ok
14:33:43.0362 0884  [ 9AC4F97C2D3E93367E2148EA940CD2CD ] CNG             C:\Windows\system32\Drivers\cng.sys
14:33:43.0362 0884  CNG - ok
14:33:43.0393 0884  [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
14:33:43.0408 0884  Compbatt - ok
14:33:43.0455 0884  [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
14:33:43.0455 0884  CompositeBus - ok
14:33:43.0455 0884  COMSysApp - ok
14:33:43.0471 0884  [ 1C827878A998C18847245FE1F34EE597 ] crcdisk         C:\Windows\system32\DRIVERS\crcdisk.sys
14:33:43.0471 0884  crcdisk - ok
14:33:43.0502 0884  [ 4F5414602E2544A4554D95517948B705 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
14:33:43.0502 0884  CryptSvc - ok
14:33:43.0564 0884  [ 72794D112CBAFF3BC0C29BF7350D4741 ] cvhsvc          C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
14:33:43.0580 0884  cvhsvc - ok
14:33:43.0611 0884  [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch      C:\Windows\system32\rpcss.dll
14:33:43.0611 0884  DcomLaunch - ok
14:33:43.0627 0884  [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc       C:\Windows\System32\defragsvc.dll
14:33:43.0642 0884  defragsvc - ok
14:33:43.0658 0884  [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
14:33:43.0658 0884  DfsC - ok
14:33:43.0689 0884  [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp            C:\Windows\system32\dhcpcore.dll
14:33:43.0689 0884  Dhcp - ok
14:33:43.0705 0884  [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache        C:\Windows\system32\drivers\discache.sys
14:33:43.0705 0884  discache - ok
14:33:43.0720 0884  [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk            C:\Windows\system32\DRIVERS\disk.sys
14:33:43.0720 0884  Disk - ok
14:33:43.0752 0884  [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
14:33:43.0752 0884  Dnscache - ok
14:33:43.0783 0884  [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc         C:\Windows\System32\dot3svc.dll
14:33:43.0783 0884  dot3svc - ok
14:33:43.0814 0884  [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS             C:\Windows\system32\dps.dll
14:33:43.0814 0884  DPS - ok
14:33:43.0830 0884  [ 9B19F34400D24DF84C858A421C205754 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
14:33:43.0830 0884  drmkaud - ok
14:33:43.0861 0884  [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
14:33:43.0876 0884  DXGKrnl - ok
14:33:43.0892 0884  [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost         C:\Windows\System32\eapsvc.dll
14:33:43.0892 0884  EapHost - ok
14:33:43.0954 0884  [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv           C:\Windows\system32\DRIVERS\evbda.sys
14:33:44.0001 0884  ebdrv - ok
14:33:44.0048 0884  [ 4353FF94D47A0A9D52B89ECCF0CDB013 ] eeCtrl          C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys
14:33:44.0064 0884  eeCtrl - ok
14:33:44.0079 0884  [ C118A82CD78818C29AB228366EBF81C3 ] EFS             C:\Windows\System32\lsass.exe
14:33:44.0079 0884  EFS - ok
14:33:44.0126 0884  [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
14:33:44.0142 0884  ehRecvr - ok
14:33:44.0157 0884  [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched         C:\Windows\ehome\ehsched.exe
14:33:44.0173 0884  ehSched - ok
14:33:44.0204 0884  [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor         C:\Windows\system32\DRIVERS\elxstor.sys
14:33:44.0220 0884  elxstor - ok
14:33:44.0235 0884  [ 34A3C54752046E79A126E15C51DB409B ] ErrDev          C:\Windows\system32\drivers\errdev.sys
14:33:44.0235 0884  ErrDev - ok
14:33:44.0266 0884  [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem     C:\Windows\system32\es.dll
14:33:44.0266 0884  EventSystem - ok
14:33:44.0282 0884  [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat           C:\Windows\system32\drivers\exfat.sys
14:33:44.0298 0884  exfat - ok
14:33:44.0298 0884  [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat         C:\Windows\system32\drivers\fastfat.sys
14:33:44.0313 0884  fastfat - ok
14:33:44.0344 0884  [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax             C:\Windows\system32\fxssvc.exe
14:33:44.0360 0884  Fax - ok
14:33:44.0376 0884  [ D765D19CD8EF61F650C384F62FAC00AB ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
14:33:44.0376 0884  fdc - ok
14:33:44.0376 0884  [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost         C:\Windows\system32\fdPHost.dll
14:33:44.0376 0884  fdPHost - ok
14:33:44.0407 0884  [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub        C:\Windows\system32\fdrespub.dll
14:33:44.0407 0884  FDResPub - ok
14:33:44.0407 0884  [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
14:33:44.0407 0884  FileInfo - ok
14:33:44.0422 0884  [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
14:33:44.0422 0884  Filetrace - ok
14:33:44.0454 0884  [ ABEDFD48AC042C6AAAD32452E77217A1 ] FLEXnet Licensing Service C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
14:33:44.0485 0884  FLEXnet Licensing Service - ok
14:33:44.0500 0884  [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
14:33:44.0500 0884  flpydisk - ok
14:33:44.0532 0884  [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
14:33:44.0532 0884  FltMgr - ok
14:33:44.0578 0884  [ 5C4CB4086FB83115B153E47ADD961A0C ] FontCache       C:\Windows\system32\FntCache.dll
14:33:44.0594 0884  FontCache - ok
14:33:44.0625 0884  [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
14:33:44.0625 0884  FontCache3.0.0.0 - ok
14:33:44.0641 0884  [ D43703496149971890703B4B1B723EAC ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
14:33:44.0641 0884  FsDepends - ok
14:33:44.0656 0884  [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
14:33:44.0656 0884  Fs_Rec - ok
14:33:44.0688 0884  [ 1F7B25B858FA27015169FE95E54108ED ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
14:33:44.0688 0884  fvevol - ok
14:33:44.0703 0884  [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx        C:\Windows\system32\DRIVERS\gagp30kx.sys
14:33:44.0703 0884  gagp30kx - ok
14:33:44.0734 0884  [ CE16683CFD11FE70BDE435DDA5EA1FCA ] GameConsoleService C:\Program Files (x86)\Packard Bell Games\Packard Bell Game Console\GameConsoleService.exe
14:33:44.0750 0884  GameConsoleService - ok
14:33:44.0766 0884  [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc           C:\Windows\System32\gpsvc.dll
14:33:44.0797 0884  gpsvc - ok
14:33:44.0812 0884  [ 0191DEE9B9EB7902AF2CF4F67301095D ] GREGService     C:\Program Files (x86)\Packard Bell\Registration\GREGsvc.exe
14:33:44.0812 0884  GREGService - ok
14:33:44.0828 0884  [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
14:33:44.0844 0884  hcw85cir - ok
14:33:44.0875 0884  [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
14:33:44.0875 0884  HdAudAddService - ok
14:33:44.0906 0884  [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus        C:\Windows\system32\drivers\HDAudBus.sys
14:33:44.0906 0884  HDAudBus - ok
14:33:44.0922 0884  [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt         C:\Windows\system32\DRIVERS\HidBatt.sys
14:33:44.0922 0884  HidBatt - ok
14:33:44.0922 0884  [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth          C:\Windows\system32\DRIVERS\hidbth.sys
14:33:44.0937 0884  HidBth - ok
14:33:44.0937 0884  [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr           C:\Windows\system32\DRIVERS\hidir.sys
14:33:44.0953 0884  HidIr - ok
14:33:44.0968 0884  [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv         C:\Windows\system32\hidserv.dll
14:33:44.0968 0884  hidserv - ok
14:33:45.0000 0884  [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb          C:\Windows\system32\drivers\hidusb.sys
14:33:45.0000 0884  HidUsb - ok
14:33:45.0046 0884  [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc          C:\Windows\system32\kmsvc.dll
14:33:45.0046 0884  hkmsvc - ok
14:33:45.0078 0884  [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
14:33:45.0078 0884  HomeGroupListener - ok
14:33:45.0109 0884  [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
14:33:45.0109 0884  HomeGroupProvider - ok
14:33:45.0124 0884  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
14:33:45.0140 0884  HpSAMD - ok
14:33:45.0171 0884  [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
14:33:45.0171 0884  HTTP - ok
14:33:45.0202 0884  [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
14:33:45.0202 0884  hwpolicy - ok
14:33:45.0249 0884  [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
14:33:45.0249 0884  i8042prt - ok
14:33:45.0280 0884  [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
14:33:45.0296 0884  iaStorV - ok
14:33:45.0312 0884  [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
14:33:45.0327 0884  idsvc - ok
14:33:45.0390 0884  [ A48928D4CCA6F8B731989DB08CF2C0AB ] IDSVia64        C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_6.2.1.5\Definitions\IPSDefs\20130131.001\IDSvia64.sys
14:33:45.0390 0884  IDSVia64 - ok
14:33:45.0561 0884  [ 677AA5991026A65ADA128C4B59CF2BAD ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
14:33:45.0702 0884  igfx - ok
14:33:45.0733 0884  [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp           C:\Windows\system32\DRIVERS\iirsp.sys
14:33:45.0733 0884  iirsp - ok
14:33:45.0764 0884  [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT          C:\Windows\System32\ikeext.dll
14:33:45.0780 0884  IKEEXT - ok
14:33:45.0826 0884  [ 52D9171838BB92319F23656F502916E9 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
14:33:45.0858 0884  IntcAzAudAddService - ok
14:33:45.0889 0884  [ F00F20E70C6EC3AA366910083A0518AA ] intelide        C:\Windows\system32\drivers\intelide.sys
14:33:45.0889 0884  intelide - ok
14:33:45.0904 0884  [ ADA036632C664CAA754079041CF1F8C1 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
14:33:45.0904 0884  intelppm - ok
14:33:45.0920 0884  [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
14:33:45.0936 0884  IPBusEnum - ok
14:33:45.0951 0884  [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
14:33:45.0951 0884  IpFilterDriver - ok
14:33:45.0982 0884  [ A34A587FFFD45FA649FBA6D03784D257 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
14:33:45.0998 0884  iphlpsvc - ok
14:33:46.0014 0884  [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
14:33:46.0014 0884  IPMIDRV - ok
14:33:46.0029 0884  [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
14:33:46.0029 0884  IPNAT - ok
14:33:46.0029 0884  [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM          C:\Windows\system32\drivers\irenum.sys
14:33:46.0029 0884  IRENUM - ok
14:33:46.0060 0884  [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
14:33:46.0060 0884  isapnp - ok
14:33:46.0076 0884  [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
14:33:46.0076 0884  iScsiPrt - ok
14:33:46.0107 0884  [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass        C:\Windows\system32\drivers\kbdclass.sys
14:33:46.0107 0884  kbdclass - ok
14:33:46.0123 0884  [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid          C:\Windows\system32\drivers\kbdhid.sys
14:33:46.0123 0884  kbdhid - ok
14:33:46.0138 0884  [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso          C:\Windows\system32\lsass.exe
14:33:46.0138 0884  KeyIso - ok
14:33:46.0154 0884  [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
14:33:46.0154 0884  KSecDD - ok
14:33:46.0185 0884  [ 26C43A7C2862447EC59DEDA188D1DA07 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
14:33:46.0185 0884  KSecPkg - ok
14:33:46.0201 0884  [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
14:33:46.0201 0884  ksthunk - ok
14:33:46.0216 0884  [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm           C:\Windows\system32\msdtckrm.dll
14:33:46.0232 0884  KtmRm - ok
14:33:46.0248 0884  [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer    C:\Windows\system32\srvsvc.dll
14:33:46.0248 0884  LanmanServer - ok
14:33:46.0279 0884  [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
14:33:46.0279 0884  LanmanWorkstation - ok
14:33:46.0310 0884  [ 1538831CF8AD2979A04C423779465827 ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
14:33:46.0310 0884  lltdio - ok
14:33:46.0326 0884  [ C1185803384AB3FEED115F79F109427F ] lltdsvc         C:\Windows\System32\lltdsvc.dll
14:33:46.0326 0884  lltdsvc - ok
14:33:46.0341 0884  [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts         C:\Windows\System32\lmhsvc.dll
14:33:46.0341 0884  lmhosts - ok
14:33:46.0372 0884  [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC          C:\Windows\system32\DRIVERS\lsi_fc.sys
14:33:46.0372 0884  LSI_FC - ok
14:33:46.0372 0884  [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS         C:\Windows\system32\DRIVERS\lsi_sas.sys
14:33:46.0388 0884  LSI_SAS - ok
14:33:46.0404 0884  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2        C:\Windows\system32\DRIVERS\lsi_sas2.sys
14:33:46.0404 0884  LSI_SAS2 - ok
14:33:46.0404 0884  [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI        C:\Windows\system32\DRIVERS\lsi_scsi.sys
14:33:46.0404 0884  LSI_SCSI - ok
14:33:46.0435 0884  [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv           C:\Windows\system32\drivers\luafv.sys
14:33:46.0435 0884  luafv - ok
14:33:46.0466 0884  [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
14:33:46.0466 0884  Mcx2Svc - ok
14:33:46.0482 0884  [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas         C:\Windows\system32\DRIVERS\megasas.sys
14:33:46.0482 0884  megasas - ok
14:33:46.0497 0884  [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR          C:\Windows\system32\DRIVERS\MegaSR.sys
14:33:46.0497 0884  MegaSR - ok
14:33:46.0513 0884  [ E40E80D0304A73E8D269F7141D77250B ] MMCSS           C:\Windows\system32\mmcss.dll
14:33:46.0513 0884  MMCSS - ok
14:33:46.0528 0884  [ 800BA92F7010378B09F9ED9270F07137 ] Modem           C:\Windows\system32\drivers\modem.sys
14:33:46.0528 0884  Modem - ok
14:33:46.0544 0884  [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
14:33:46.0544 0884  monitor - ok
14:33:46.0560 0884  [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass        C:\Windows\system32\drivers\mouclass.sys
14:33:46.0560 0884  mouclass - ok
14:33:46.0575 0884  [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
14:33:46.0575 0884  mouhid - ok
14:33:46.0606 0884  [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
14:33:46.0606 0884  mountmgr - ok
14:33:46.0638 0884  [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio            C:\Windows\system32\drivers\mpio.sys
14:33:46.0638 0884  mpio - ok
14:33:46.0653 0884  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
14:33:46.0653 0884  mpsdrv - ok
14:33:46.0684 0884  [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc          C:\Windows\system32\mpssvc.dll
14:33:46.0700 0884  MpsSvc - ok
14:33:46.0731 0884  [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
14:33:46.0731 0884  MRxDAV - ok
14:33:46.0747 0884  [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
14:33:46.0747 0884  mrxsmb - ok
14:33:46.0778 0884  [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
14:33:46.0778 0884  mrxsmb10 - ok
14:33:46.0794 0884  [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
14:33:46.0794 0884  mrxsmb20 - ok
14:33:46.0825 0884  [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci          C:\Windows\system32\drivers\msahci.sys
14:33:46.0825 0884  msahci - ok
14:33:46.0856 0884  [ DB801A638D011B9633829EB6F663C900 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
14:33:46.0856 0884  msdsm - ok
14:33:46.0872 0884  [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC           C:\Windows\System32\msdtc.exe
14:33:46.0872 0884  MSDTC - ok
14:33:46.0903 0884  [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
14:33:46.0903 0884  Msfs - ok
14:33:46.0918 0884  [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
14:33:46.0918 0884  mshidkmdf - ok
14:33:46.0918 0884  [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
14:33:46.0918 0884  msisadrv - ok
14:33:46.0950 0884  [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
14:33:46.0950 0884  MSiSCSI - ok
14:33:46.0950 0884  msiserver - ok
14:33:46.0965 0884  [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
14:33:46.0965 0884  MSKSSRV - ok
14:33:46.0981 0884  [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
14:33:46.0981 0884  MSPCLOCK - ok
14:33:46.0996 0884  [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
14:33:46.0996 0884  MSPQM - ok
14:33:47.0012 0884  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
14:33:47.0028 0884  MsRPC - ok
14:33:47.0043 0884  [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
14:33:47.0043 0884  mssmbios - ok
14:33:47.0059 0884  [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
14:33:47.0059 0884  MSTEE - ok
14:33:47.0074 0884  [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig        C:\Windows\system32\DRIVERS\MTConfig.sys
14:33:47.0074 0884  MTConfig - ok
14:33:47.0090 0884  [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup             C:\Windows\system32\Drivers\mup.sys
14:33:47.0106 0884  Mup - ok
14:33:47.0168 0884  [ F2840DBFE9322F35557219AE82CC4597 ] N360            C:\Program Files (x86)\Norton 360\Engine\6.4.0.9\ccSvcHst.exe
14:33:47.0168 0884  N360 - ok
14:33:47.0199 0884  [ 582AC6D9873E31DFA28A4547270862DD ] napagent        C:\Windows\system32\qagentRT.dll
14:33:47.0215 0884  napagent - ok
14:33:47.0230 0884  [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
14:33:47.0230 0884  NativeWifiP - ok
14:33:47.0277 0884  [ 88A2F45CE66B904285978D6BB13AFEB2 ] NAVENG          C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_6.2.1.5\Definitions\VirusDefs\20130201.004\ENG64.SYS
14:33:47.0277 0884  NAVENG - ok
14:33:47.0324 0884  [ D2A545DA3A90BBFA40E020C23F1B7A48 ] NAVEX15         C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_6.2.1.5\Definitions\VirusDefs\20130201.004\EX64.SYS
14:33:47.0371 0884  NAVEX15 - ok
14:33:47.0402 0884  [ 79B47FD40D9A817E932F9D26FAC0A81C ] NDIS            C:\Windows\system32\drivers\ndis.sys
14:33:47.0418 0884  NDIS - ok
14:33:47.0433 0884  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
14:33:47.0433 0884  NdisCap - ok
14:33:47.0449 0884  [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
14:33:47.0449 0884  NdisTapi - ok
14:33:47.0480 0884  [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
14:33:47.0480 0884  Ndisuio - ok
14:33:47.0511 0884  [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
14:33:47.0511 0884  NdisWan - ok
14:33:47.0542 0884  [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
14:33:47.0542 0884  NDProxy - ok
14:33:47.0558 0884  [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
14:33:47.0558 0884  NetBIOS - ok
14:33:47.0574 0884  [ 09594D1089C523423B32A4229263F068 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
14:33:47.0574 0884  NetBT - ok
14:33:47.0589 0884  [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon        C:\Windows\system32\lsass.exe
14:33:47.0589 0884  Netlogon - ok
14:33:47.0620 0884  [ 847D3AE376C0817161A14A82C8922A9E ] Netman          C:\Windows\System32\netman.dll
14:33:47.0620 0884  Netman - ok
14:33:47.0652 0884  [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm        C:\Windows\System32\netprofm.dll
14:33:47.0652 0884  netprofm - ok
14:33:47.0683 0884  [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
14:33:47.0683 0884  NetTcpPortSharing - ok
14:33:47.0698 0884  [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960         C:\Windows\system32\DRIVERS\nfrd960.sys
14:33:47.0698 0884  nfrd960 - ok
14:33:47.0730 0884  [ 1EE99A89CC788ADA662441D1E9830529 ] NlaSvc          C:\Windows\System32\nlasvc.dll
14:33:47.0730 0884  NlaSvc - ok
14:33:47.0792 0884  [ FAC20F9060FF9C74AF0C8A002BB04AE7 ] nlsX86cc        C:\Windows\SysWOW64\NLSSRV32.EXE
14:33:47.0808 0884  nlsX86cc - ok
14:33:47.0823 0884  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
14:33:47.0823 0884  Npfs - ok
14:33:47.0839 0884  [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi             C:\Windows\system32\nsisvc.dll
14:33:47.0839 0884  nsi - ok
14:33:47.0854 0884  [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
14:33:47.0854 0884  nsiproxy - ok
14:33:47.0901 0884  [ E453ACF4E7D44E5530B5D5F2B9CA8563 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
14:33:47.0932 0884  Ntfs - ok
14:33:47.0932 0884  [ 9899284589F75FA8724FF3D16AED75C1 ] Null            C:\Windows\system32\drivers\Null.sys
14:33:47.0932 0884  Null - ok
14:33:47.0964 0884  [ 0A92CB65770442ED0DC44834632F66AD ] nvraid          C:\Windows\system32\drivers\nvraid.sys
14:33:47.0964 0884  nvraid - ok
14:33:47.0979 0884  [ DAB0E87525C10052BF65F06152F37E4A ] nvstor          C:\Windows\system32\drivers\nvstor.sys
14:33:47.0995 0884  nvstor - ok
14:33:48.0010 0884  [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
14:33:48.0010 0884  nv_agp - ok
14:33:48.0026 0884  [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
14:33:48.0026 0884  ohci1394 - ok
14:33:48.0073 0884  [ 9D10F99A6712E28F8ACD5641E3A7EA6B ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
14:33:48.0073 0884  ose - ok
14:33:48.0182 0884  [ 61BFFB5F57AD12F83AB64B7181829B34 ] osppsvc         C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
14:33:48.0244 0884  osppsvc - ok
14:33:48.0260 0884  [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
14:33:48.0260 0884  p2pimsvc - ok
14:33:48.0276 0884  [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc          C:\Windows\system32\p2psvc.dll
14:33:48.0291 0884  p2psvc - ok
14:33:48.0307 0884  [ 0086431C29C35BE1DBC43F52CC273887 ] Parport         C:\Windows\system32\DRIVERS\parport.sys
14:33:48.0307 0884  Parport - ok
14:33:48.0322 0884  [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr         C:\Windows\system32\drivers\partmgr.sys
14:33:48.0322 0884  partmgr - ok
14:33:48.0338 0884  [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc          C:\Windows\System32\pcasvc.dll
14:33:48.0338 0884  PcaSvc - ok
14:33:48.0354 0884  [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci             C:\Windows\system32\drivers\pci.sys
14:33:48.0354 0884  pci - ok
14:33:48.0369 0884  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide          C:\Windows\system32\drivers\pciide.sys
14:33:48.0369 0884  pciide - ok
14:33:48.0385 0884  [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia          C:\Windows\system32\DRIVERS\pcmcia.sys
14:33:48.0385 0884  pcmcia - ok
14:33:48.0400 0884  [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw             C:\Windows\system32\drivers\pcw.sys
14:33:48.0400 0884  pcw - ok
14:33:48.0416 0884  [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
14:33:48.0416 0884  PEAUTH - ok
14:33:48.0447 0884  [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost        C:\Windows\SysWow64\perfhost.exe
14:33:48.0447 0884  PerfHost - ok
14:33:48.0510 0884  [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla             C:\Windows\system32\pla.dll
14:33:48.0525 0884  pla - ok
14:33:48.0556 0884  [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
14:33:48.0572 0884  PlugPlay - ok
14:33:48.0572 0884  [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
14:33:48.0588 0884  PNRPAutoReg - ok
14:33:48.0588 0884  [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
14:33:48.0603 0884  PNRPsvc - ok
14:33:48.0619 0884  [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
14:33:48.0634 0884  PolicyAgent - ok
14:33:48.0666 0884  [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power           C:\Windows\system32\umpo.dll
14:33:48.0666 0884  Power - ok
14:33:48.0697 0884  [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
14:33:48.0697 0884  PptpMiniport - ok
14:33:48.0712 0884  [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor       C:\Windows\system32\DRIVERS\processr.sys
14:33:48.0712 0884  Processor - ok
14:33:48.0744 0884  [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc         C:\Windows\system32\profsvc.dll
14:33:48.0744 0884  ProfSvc - ok
14:33:48.0759 0884  [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
14:33:48.0759 0884  ProtectedStorage - ok
14:33:48.0790 0884  [ 0557CF5A2556BD58E26384169D72438D ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
14:33:48.0790 0884  Psched - ok
14:33:48.0806 0884  [ FBF4DB6D53585437E41A113300002A2B ] PxHlpa64        C:\Windows\system32\Drivers\PxHlpa64.sys
14:33:48.0806 0884  PxHlpa64 - ok
14:33:48.0837 0884  [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300          C:\Windows\system32\DRIVERS\ql2300.sys
14:33:48.0868 0884  ql2300 - ok
14:33:48.0884 0884  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx          C:\Windows\system32\DRIVERS\ql40xx.sys
14:33:48.0884 0884  ql40xx - ok
14:33:48.0900 0884  [ 906191634E99AEA92C4816150BDA3732 ] QWAVE           C:\Windows\system32\qwave.dll
14:33:48.0900 0884  QWAVE - ok
14:33:48.0915 0884  [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
14:33:48.0915 0884  QWAVEdrv - ok
14:33:48.0946 0884  [ A55E7D0D873B2C97585B3B5926AC6ADE ] RapiMgr         C:\Windows\WindowsMobile\rapimgr.dll
14:33:48.0946 0884  RapiMgr - ok
14:33:48.0962 0884  [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
14:33:48.0962 0884  RasAcd - ok
14:33:48.0993 0884  [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
14:33:48.0993 0884  RasAgileVpn - ok
14:33:49.0009 0884  [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto         C:\Windows\System32\rasauto.dll
14:33:49.0009 0884  RasAuto - ok
14:33:49.0024 0884  [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
14:33:49.0040 0884  Rasl2tp - ok
14:33:49.0056 0884  [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan          C:\Windows\System32\rasmans.dll
14:33:49.0071 0884  RasMan - ok
14:33:49.0087 0884  [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
14:33:49.0087 0884  RasPppoe - ok
14:33:49.0102 0884  [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
14:33:49.0102 0884  RasSstp - ok
14:33:49.0118 0884  [ 77F665941019A1594D887A74F301FA2F ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
14:33:49.0118 0884  rdbss - ok
14:33:49.0134 0884  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
14:33:49.0134 0884  rdpbus - ok
14:33:49.0149 0884  [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
14:33:49.0149 0884  RDPCDD - ok
14:33:49.0165 0884  [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
14:33:49.0165 0884  RDPENCDD - ok
14:33:49.0180 0884  [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
14:33:49.0180 0884  RDPREFMP - ok
14:33:49.0212 0884  [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
14:33:49.0212 0884  RDPWD - ok
14:33:49.0227 0884  [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
14:33:49.0227 0884  rdyboost - ok
14:33:49.0258 0884  [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess    C:\Windows\System32\mprdim.dll
14:33:49.0258 0884  RemoteAccess - ok
14:33:49.0274 0884  [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
14:33:49.0274 0884  RemoteRegistry - ok
14:33:49.0305 0884  [ AD42432D22940B4215177BE113E4919C ] RimUsb          C:\Windows\system32\Drivers\RimUsb_AMD64.sys
14:33:49.0305 0884  RimUsb - ok
14:33:49.0336 0884  [ 4AAFFFA67AC4DFA3D9985D78573887E2 ] RimVSerPort     C:\Windows\system32\DRIVERS\RimSerial_AMD64.sys
14:33:49.0336 0884  RimVSerPort - ok
14:33:49.0336 0884  [ 388D3DD1A6457280F3BADBA9F3ACD6B1 ] ROOTMODEM       C:\Windows\system32\Drivers\RootMdm.sys
14:33:49.0352 0884  ROOTMODEM - ok
14:33:49.0368 0884  [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
14:33:49.0368 0884  RpcEptMapper - ok
14:33:49.0383 0884  [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator      C:\Windows\system32\locator.exe
14:33:49.0383 0884  RpcLocator - ok
14:33:49.0414 0884  [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs           C:\Windows\system32\rpcss.dll
14:33:49.0414 0884  RpcSs - ok
14:33:49.0430 0884  [ DDC86E4F8E7456261E637E3552E804FF ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
14:33:49.0430 0884  rspndr - ok
14:33:49.0446 0884  [ C118A82CD78818C29AB228366EBF81C3 ] SamSs           C:\Windows\system32\lsass.exe
14:33:49.0446 0884  SamSs - ok
14:33:49.0461 0884  [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
14:33:49.0461 0884  sbp2port - ok
14:33:49.0477 0884  [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr        C:\Windows\System32\SCardSvr.dll
14:33:49.0492 0884  SCardSvr - ok
14:33:49.0508 0884  [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
14:33:49.0508 0884  scfilter - ok
14:33:49.0539 0884  [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule        C:\Windows\system32\schedsvc.dll
14:33:49.0570 0884  Schedule - ok
14:33:49.0586 0884  [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc     C:\Windows\System32\certprop.dll
14:33:49.0586 0884  SCPolicySvc - ok
14:33:49.0602 0884  [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
14:33:49.0602 0884  SDRSVC - ok
14:33:49.0633 0884  [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv          C:\Windows\system32\drivers\secdrv.sys
14:33:49.0633 0884  secdrv - ok
14:33:49.0648 0884  [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon        C:\Windows\system32\seclogon.dll
14:33:49.0648 0884  seclogon - ok
14:33:49.0664 0884  [ C32AB8FA018EF34C0F113BD501436D21 ] SENS            C:\Windows\System32\sens.dll
14:33:49.0664 0884  SENS - ok
14:33:49.0680 0884  [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
14:33:49.0680 0884  SensrSvc - ok
14:33:49.0695 0884  [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
14:33:49.0695 0884  Serenum - ok
14:33:49.0711 0884  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial          C:\Windows\system32\DRIVERS\serial.sys
14:33:49.0711 0884  Serial - ok
14:33:49.0726 0884  [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse        C:\Windows\system32\DRIVERS\sermouse.sys
14:33:49.0726 0884  sermouse - ok
14:33:49.0758 0884  [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv      C:\Windows\system32\sessenv.dll
14:33:49.0758 0884  SessionEnv - ok
14:33:49.0789 0884  [ A554811BCD09279536440C964AE35BBF ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
14:33:49.0789 0884  sffdisk - ok
14:33:49.0804 0884  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
14:33:49.0804 0884  sffp_mmc - ok
14:33:49.0804 0884  [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
14:33:49.0804 0884  sffp_sd - ok
14:33:49.0820 0884  [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy         C:\Windows\system32\DRIVERS\sfloppy.sys
14:33:49.0820 0884  sfloppy - ok
14:33:49.0867 0884  [ C6CC9297BD53E5229653303E556AA539 ] Sftfs           C:\Windows\system32\DRIVERS\Sftfslh.sys
14:33:49.0867 0884  Sftfs - ok
14:33:49.0898 0884  [ 13693B6354DD6E72DC5131DA7D764B90 ] sftlist         C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
14:33:49.0914 0884  sftlist - ok
14:33:49.0929 0884  [ 390AA7BC52CEE43F6790CDEA1E776703 ] Sftplay         C:\Windows\system32\DRIVERS\Sftplaylh.sys
14:33:49.0929 0884  Sftplay - ok
14:33:49.0945 0884  [ 617E29A0B0A2807466560D4C4E338D3E ] Sftredir        C:\Windows\system32\DRIVERS\Sftredirlh.sys
14:33:49.0945 0884  Sftredir - ok
14:33:49.0960 0884  [ 8F571F016FA1976F445147E9E6C8AE9B ] Sftvol          C:\Windows\system32\DRIVERS\Sftvollh.sys
14:33:49.0960 0884  Sftvol - ok
14:33:49.0976 0884  [ C3CDDD18F43D44AB713CF8C4916F7696 ] sftvsa          C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
14:33:49.0976 0884  sftvsa - ok
14:33:49.0992 0884  [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess    C:\Windows\System32\ipnathlp.dll
14:33:50.0007 0884  SharedAccess - ok
14:33:50.0038 0884  [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
14:33:50.0038 0884  ShellHWDetection - ok
14:33:50.0054 0884  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2        C:\Windows\system32\DRIVERS\SiSRaid2.sys
14:33:50.0054 0884  SiSRaid2 - ok
14:33:50.0054 0884  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4        C:\Windows\system32\DRIVERS\sisraid4.sys
14:33:50.0054 0884  SiSRaid4 - ok
14:33:50.0070 0884  [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
14:33:50.0070 0884  Smb - ok
14:33:50.0101 0884  [ D48F87803F3965EE04D9BCB318791AAB ] SMR311          C:\Windows\system32\drivers\SMR311.SYS
14:33:50.0116 0884  SMR311 - ok
14:33:50.0148 0884  [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
14:33:50.0148 0884  SNMPTRAP - ok
14:33:50.0148 0884  [ B9E31E5CACDFE584F34F730A677803F9 ] spldr           C:\Windows\system32\drivers\spldr.sys
14:33:50.0148 0884  spldr - ok
14:33:50.0179 0884  [ B96C17B5DC1424D56EEA3A99E97428CD ] Spooler         C:\Windows\System32\spoolsv.exe
14:33:50.0194 0884  Spooler - ok
14:33:50.0272 0884  [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc          C:\Windows\system32\sppsvc.exe
14:33:50.0319 0884  sppsvc - ok
14:33:50.0335 0884  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
14:33:50.0335 0884  sppuinotify - ok
14:33:50.0397 0884  [ 891793E00432FA055CF040605C260E49 ] SRTSP           C:\Windows\System32\Drivers\N360x64\0604000.009\SRTSP64.SYS
14:33:50.0413 0884  SRTSP - ok
14:33:50.0428 0884  [ 1CB7BB3B0561FB5ECFE37F7731E8BF3E ] SRTSPX          C:\Windows\system32\drivers\N360x64\0604000.009\SRTSPX64.SYS
14:33:50.0428 0884  SRTSPX - ok
14:33:50.0460 0884  [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv             C:\Windows\system32\DRIVERS\srv.sys
14:33:50.0460 0884  srv - ok
14:33:50.0475 0884  [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
14:33:50.0475 0884  srv2 - ok
14:33:50.0491 0884  [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
14:33:50.0491 0884  srvnet - ok
14:33:50.0506 0884  [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
14:33:50.0522 0884  SSDPSRV - ok
14:33:50.0522 0884  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc         C:\Windows\system32\sstpsvc.dll
14:33:50.0538 0884  SstpSvc - ok
14:33:50.0553 0884  [ F3817967ED533D08327DC73BC4D5542A ] stexstor        C:\Windows\system32\DRIVERS\stexstor.sys
14:33:50.0553 0884  stexstor - ok
14:33:50.0584 0884  [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc          C:\Windows\System32\wiaservc.dll
14:33:50.0600 0884  stisvc - ok
14:33:50.0616 0884  [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum          C:\Windows\system32\drivers\swenum.sys
14:33:50.0616 0884  swenum - ok
14:33:50.0647 0884  [ E08E46FDD841B7184194011CA1955A0B ] swprv           C:\Windows\System32\swprv.dll
14:33:50.0662 0884  swprv - ok
14:33:50.0678 0884  [ 8B2430762099598DA40686F754632EFD ] SymDS           C:\Windows\system32\drivers\N360x64\0604000.009\SYMDS64.SYS
14:33:50.0694 0884  SymDS - ok
14:33:50.0709 0884  [ 5CB7F2FD7E30A0F52F93574BFC3A8041 ] SymEFA          C:\Windows\system32\drivers\N360x64\0604000.009\SYMEFA64.SYS
14:33:50.0725 0884  SymEFA - ok
14:33:50.0756 0884  [ 898BB48C797483420DF523B2BBC1ECDB ] SymEvent        C:\Windows\system32\Drivers\SYMEVENT64x86.SYS
14:33:50.0756 0884  SymEvent - ok
14:33:50.0772 0884  [ 5013A76CAAA1D7CF1C55214B490B4E35 ] SymIRON         C:\Windows\system32\drivers\N360x64\0604000.009\Ironx64.SYS
14:33:50.0787 0884  SymIRON - ok
14:33:50.0787 0884  [ 3911BD0E68C010E5438A87706ABBE9AB ] SymNetS         C:\Windows\System32\Drivers\N360x64\0604000.009\SYMNETS.SYS
14:33:50.0803 0884  SymNetS - ok
14:33:50.0834 0884  [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain         C:\Windows\system32\sysmain.dll
14:33:50.0865 0884  SysMain - ok
14:33:50.0896 0884  [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
14:33:50.0896 0884  TabletInputService - ok
14:33:50.0928 0884  [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv         C:\Windows\System32\tapisrv.dll
14:33:50.0928 0884  TapiSrv - ok
14:33:50.0943 0884  [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS             C:\Windows\System32\tbssvc.dll
14:33:50.0943 0884  TBS - ok
14:33:50.0990 0884  [ ACB82BDA8F46C84F465C1AFA517DC4B9 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
14:33:51.0037 0884  Tcpip - ok
14:33:51.0084 0884  [ ACB82BDA8F46C84F465C1AFA517DC4B9 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
14:33:51.0084 0884  TCPIP6 - ok
14:33:51.0115 0884  [ DF687E3D8836BFB04FCC0615BF15A519 ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
14:33:51.0115 0884  tcpipreg - ok
14:33:51.0130 0884  [ 3371D21011695B16333A3934340C4E7C ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
14:33:51.0130 0884  TDPIPE - ok
14:33:51.0162 0884  [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
14:33:51.0162 0884  TDTCP - ok
14:33:51.0193 0884  [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
14:33:51.0193 0884  tdx - ok
14:33:51.0224 0884  [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD          C:\Windows\system32\drivers\termdd.sys
14:33:51.0224 0884  TermDD - ok
14:33:51.0255 0884  [ 2E648163254233755035B46DD7B89123 ] TermService     C:\Windows\System32\termsrv.dll
14:33:51.0271 0884  TermService - ok
14:33:51.0286 0884  [ F0344071948D1A1FA732231785A0664C ] Themes          C:\Windows\system32\themeservice.dll
14:33:51.0286 0884  Themes - ok
14:33:51.0318 0884  [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER     C:\Windows\system32\mmcss.dll
14:33:51.0318 0884  THREADORDER - ok
14:33:51.0333 0884  [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks          C:\Windows\System32\trkwks.dll
14:33:51.0333 0884  TrkWks - ok
14:33:51.0364 0884  [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
14:33:51.0364 0884  TrustedInstaller - ok
14:33:51.0396 0884  [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
14:33:51.0396 0884  tssecsrv - ok
14:33:51.0442 0884  [ D11C783E3EF9A3C52C0EBE83CC5000E9 ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
14:33:51.0442 0884  TsUsbFlt - ok
14:33:51.0474 0884  [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
14:33:51.0474 0884  tunnel - ok
14:33:51.0489 0884  [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35          C:\Windows\system32\DRIVERS\uagp35.sys
14:33:51.0489 0884  uagp35 - ok
14:33:51.0505 0884  [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
14:33:51.0505 0884  udfs - ok
14:33:51.0520 0884  [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect       C:\Windows\system32\UI0Detect.exe
14:33:51.0536 0884  UI0Detect - ok
14:33:51.0536 0884  [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
14:33:51.0536 0884  uliagpkx - ok
14:33:51.0567 0884  [ DC54A574663A895C8763AF0FA1FF7561 ] umbus           C:\Windows\system32\drivers\umbus.sys
14:33:51.0567 0884  umbus - ok
14:33:51.0567 0884  [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass          C:\Windows\system32\DRIVERS\umpass.sys
14:33:51.0567 0884  UmPass - ok
14:33:51.0614 0884  [ F9EC9ACD504D823D9B9CA98A4F8D3CA2 ] Updater Service C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
14:33:51.0614 0884  Updater Service - ok
14:33:51.0630 0884  [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost        C:\Windows\System32\upnphost.dll
14:33:51.0630 0884  upnphost - ok
14:33:51.0645 0884  [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
14:33:51.0645 0884  usbccgp - ok
14:33:51.0676 0884  [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir          C:\Windows\system32\drivers\usbcir.sys
14:33:51.0676 0884  usbcir - ok
14:33:51.0708 0884  [ C025055FE7B87701EB042095DF1A2D7B ] usbehci         C:\Windows\system32\drivers\usbehci.sys
14:33:51.0708 0884  usbehci - ok
14:33:51.0723 0884  [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
14:33:51.0723 0884  usbhub - ok
14:33:51.0739 0884  [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci         C:\Windows\system32\drivers\usbohci.sys
14:33:51.0739 0884  usbohci - ok
14:33:51.0754 0884  [ 73188F58FB384E75C4063D29413CEE3D ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
14:33:51.0754 0884  usbprint - ok
14:33:51.0770 0884  [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
14:33:51.0786 0884  USBSTOR - ok
14:33:51.0801 0884  [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
14:33:51.0801 0884  usbuhci - ok
14:33:51.0817 0884  [ 70D05EE263568A742D14E1876DF80532 ] usb_rndisx      C:\Windows\system32\DRIVERS\usb8023x.sys
14:33:51.0832 0884  usb_rndisx - ok
14:33:51.0832 0884  [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms           C:\Windows\System32\uxsms.dll
14:33:51.0832 0884  UxSms - ok
14:33:51.0848 0884  [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc        C:\Windows\system32\lsass.exe
14:33:51.0848 0884  VaultSvc - ok
14:33:51.0864 0884  [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
14:33:51.0864 0884  vdrvroot - ok
14:33:51.0895 0884  [ 8D6B481601D01A456E75C3210F1830BE ] vds             C:\Windows\System32\vds.exe
14:33:51.0910 0884  vds - ok
14:33:51.0942 0884  [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
14:33:51.0942 0884  vga - ok
14:33:51.0957 0884  [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave         C:\Windows\System32\drivers\vga.sys
14:33:51.0957 0884  VgaSave - ok
14:33:51.0988 0884  [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
14:33:51.0988 0884  vhdmp - ok
14:33:52.0004 0884  [ E5689D93FFE4E5D66C0178761240DD54 ] viaide          C:\Windows\system32\drivers\viaide.sys
14:33:52.0004 0884  viaide - ok
14:33:52.0020 0884  [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
14:33:52.0020 0884  volmgr - ok
14:33:52.0051 0884  [ A255814907C89BE58B79EF2F189B843B ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
14:33:52.0051 0884  volmgrx - ok
14:33:52.0082 0884  [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
14:33:52.0082 0884  volsnap - ok
14:33:52.0113 0884  [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid         C:\Windows\system32\DRIVERS\vsmraid.sys
14:33:52.0113 0884  vsmraid - ok
14:33:52.0144 0884  [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS             C:\Windows\system32\vssvc.exe
14:33:52.0176 0884  VSS - ok
14:33:52.0191 0884  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus        C:\Windows\System32\drivers\vwifibus.sys
14:33:52.0191 0884  vwifibus - ok
14:33:52.0207 0884  [ 1C9D80CC3849B3788048078C26486E1A ] W32Time         C:\Windows\system32\w32time.dll
14:33:52.0207 0884  W32Time - ok
14:33:52.0222 0884  [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen        C:\Windows\system32\DRIVERS\wacompen.sys
14:33:52.0222 0884  WacomPen - ok
14:33:52.0238 0884  [ 356AFD78A6ED4457169241AC3965230C ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
14:33:52.0238 0884  WANARP - ok
14:33:52.0254 0884  [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
14:33:52.0254 0884  Wanarpv6 - ok
14:33:52.0300 0884  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
14:33:52.0316 0884  WatAdminSvc - ok
14:33:52.0363 0884  [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine        C:\Windows\system32\wbengine.exe
14:33:52.0394 0884  wbengine - ok
14:33:52.0410 0884  [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
14:33:52.0410 0884  WbioSrvc - ok
14:33:52.0441 0884  [ 8BDA6DB43AA54E8BB5E0794541DDC209 ] WcesComm        C:\Windows\WindowsMobile\wcescomm.dll
14:33:52.0441 0884  WcesComm - ok
14:33:52.0472 0884  [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc         C:\Windows\System32\wcncsvc.dll
14:33:52.0472 0884  wcncsvc - ok
14:33:52.0488 0884  [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
14:33:52.0488 0884  WcsPlugInService - ok
14:33:52.0488 0884  [ 72889E16FF12BA0F235467D6091B17DC ] Wd              C:\Windows\system32\DRIVERS\wd.sys
14:33:52.0503 0884  Wd - ok
14:33:52.0519 0884  [ 441BD2D7B4F98134C3A4F9FA570FD250 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
14:33:52.0534 0884  Wdf01000 - ok
14:33:52.0550 0884  [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost  C:\Windows\system32\wdi.dll
14:33:52.0550 0884  WdiServiceHost - ok
14:33:52.0550 0884  [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost   C:\Windows\system32\wdi.dll
14:33:52.0550 0884  WdiSystemHost - ok
14:33:52.0581 0884  [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient       C:\Windows\System32\webclnt.dll
14:33:52.0597 0884  WebClient - ok
14:33:52.0612 0884  [ C749025A679C5103E575E3B48E092C43 ] Wecsvc          C:\Windows\system32\wecsvc.dll
14:33:52.0612 0884  Wecsvc - ok
14:33:52.0628 0884  [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
14:33:52.0628 0884  wercplsupport - ok
14:33:52.0659 0884  [ 6D137963730144698CBD10F202E9F251 ] WerSvc          C:\Windows\System32\WerSvc.dll
14:33:52.0659 0884  WerSvc - ok
14:33:52.0659 0884  [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
14:33:52.0659 0884  WfpLwf - ok
14:33:52.0675 0884  [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
14:33:52.0675 0884  WIMMount - ok
14:33:52.0675 0884  WinDefend - ok
14:33:52.0690 0884  WinHttpAutoProxySvc - ok
14:33:52.0737 0884  [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
14:33:52.0753 0884  Winmgmt - ok
14:33:52.0800 0884  [ BCB1310604AA415C4508708975B3931E ] WinRM           C:\Windows\system32\WsmSvc.dll
14:33:52.0831 0884  WinRM - ok
14:33:52.0878 0884  [ FE88B288356E7B47B74B13372ADD906D ] WINUSB          C:\Windows\system32\DRIVERS\WinUsb.sys
14:33:52.0878 0884  WINUSB - ok
14:33:52.0893 0884  [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc         C:\Windows\System32\wlansvc.dll
14:33:52.0909 0884  Wlansvc - ok
14:33:52.0940 0884  [ 06C8FA1CF39DE6A735B54D906BA791C6 ] wlcrasvc        C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
14:33:52.0940 0884  wlcrasvc - ok
14:33:53.0034 0884  [ 7E47C328FC4768CB8BEAFBCFAFA70362 ] wlidsvc         C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
14:33:53.0065 0884  wlidsvc - ok
14:33:53.0080 0884  [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
14:33:53.0080 0884  WmiAcpi - ok
14:33:53.0112 0884  [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
14:33:53.0112 0884  wmiApSrv - ok
14:33:53.0127 0884  WMPNetworkSvc - ok
14:33:53.0143 0884  [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc          C:\Windows\System32\wpcsvc.dll
14:33:53.0143 0884  WPCSvc - ok
14:33:53.0158 0884  [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
14:33:53.0174 0884  WPDBusEnum - ok
14:33:53.0190 0884  [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
14:33:53.0190 0884  ws2ifsl - ok
14:33:53.0205 0884  [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc          C:\Windows\System32\wscsvc.dll
14:33:53.0205 0884  wscsvc - ok
14:33:53.0205 0884  WSearch - ok
14:33:53.0268 0884  [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv        C:\Windows\system32\wuaueng.dll
14:33:53.0314 0884  wuauserv - ok
14:33:53.0330 0884  [ D3381DC54C34D79B22CEE0D65BA91B7C ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
14:33:53.0330 0884  WudfPf - ok
14:33:53.0346 0884  [ CF8D590BE3373029D57AF80914190682 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
14:33:53.0346 0884  WUDFRd - ok
14:33:53.0377 0884  [ 7A95C95B6C4CF292D689106BCAE49543 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
14:33:53.0377 0884  wudfsvc - ok
14:33:53.0392 0884  [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc         C:\Windows\System32\wwansvc.dll
14:33:53.0392 0884  WwanSvc - ok
14:33:53.0408 0884  ================ Scan global ===============================
14:33:53.0424 0884  [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
14:33:53.0455 0884  [ F46BBAAC1C4980F4D0DD463F190A42D3 ] C:\Windows\system32\winsrv.dll
14:33:53.0470 0884  [ F46BBAAC1C4980F4D0DD463F190A42D3 ] C:\Windows\system32\winsrv.dll
14:33:53.0486 0884  [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
14:33:53.0502 0884  [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
14:33:53.0502 0884  [Global] - ok
14:33:53.0502 0884  ================ Scan MBR ==================================
14:33:53.0517 0884  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
14:33:53.0736 0884  \Device\Harddisk0\DR0 - ok
14:33:53.0751 0884  [ BBB0A0725AD66F38B1A32135F3CB55D6 ] \Device\Harddisk1\DR1
14:33:53.0892 0884  \Device\Harddisk1\DR1 - ok
14:33:53.0892 0884  ================ Scan VBR ==================================
14:33:53.0892 0884  [ 9DD930F15012D7389E6C9626E28F039F ] \Device\Harddisk0\DR0\Partition1
14:33:53.0892 0884  \Device\Harddisk0\DR0\Partition1 - ok
14:33:53.0907 0884  [ 03A12B04F3CD117C1454AF99BEDC6856 ] \Device\Harddisk0\DR0\Partition2
14:33:53.0907 0884  \Device\Harddisk0\DR0\Partition2 - ok
14:33:53.0923 0884  [ B492D792D4F1F4A6DA40F9DF4EB6184F ] \Device\Harddisk0\DR0\Partition3
14:33:53.0923 0884  \Device\Harddisk0\DR0\Partition3 - ok
14:33:53.0938 0884  [ 7FF3CAFF14A0D4F92A39C8B5645EAE35 ] \Device\Harddisk1\DR1\Partition1
14:33:53.0938 0884  \Device\Harddisk1\DR1\Partition1 - ok
14:33:53.0938 0884  ============================================================
14:33:53.0938 0884  Scan finished
14:33:53.0938 0884  ============================================================
14:33:53.0954 0760  Detected object count: 0
14:33:53.0954 0760  Actual detected object count: 0
 



#10 MittyP

MittyP
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:06:50 AM

Posted 02 March 2013 - 10:05 AM

Malwarebytes Report

 

Malwarebytes Anti-Malware (Trial) 1.70.0.1100
www.malwarebytes.org

Database version: v2013.03.02.07

Windows 7 Service Pack 1 x64 NTFS (Safe Mode/Networking)
Internet Explorer 8.0.7601.17514
Management :: MANAGEMENT-PC [administrator]

Protection: Disabled

02/03/2013 14:55:20
mbam-log-2013-03-02 (14-55-20).txt

Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 230314
Time elapsed: 2 minute(s), 21 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

(end)
 



#11 MittyP

MittyP
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:06:50 AM

Posted 02 March 2013 - 10:28 AM

Eset Scan Log

 

SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 03/02/2013 at 03:15 PM

Application Version : 5.6.1014

Core Rules Database Version : 10076
Trace Rules Database Version: 7888

Scan type       : Quick Scan
Total Scan Time : 00:02:09

Operating System Information
Windows 7 Home Premium 64-bit, Service Pack 1 (Build 6.01.7601)
UAC Off - Administrator

Memory items scanned      : 402
Memory threats detected   : 0
Registry items scanned    : 60312
Registry threats detected : 0
File items scanned        : 10617
File threats detected     : 8

Adware.Tracking Cookie
    .doubleclick.net [ C:\USERS\MANAGEMENT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\M2NVCB9X.DEFAULT\COOKIES.SQLITE ]
    .atdmt.com [ C:\USERS\MANAGEMENT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\M2NVCB9X.DEFAULT\COOKIES.SQLITE ]
    .atdmt.com [ C:\USERS\MANAGEMENT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\M2NVCB9X.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\MANAGEMENT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\M2NVCB9X.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\MANAGEMENT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\M2NVCB9X.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\USERS\MANAGEMENT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\M2NVCB9X.DEFAULT\COOKIES.SQLITE ]
    .doubleclick.net [ C:\USERS\MANAGEMENT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\M2NVCB9X.DEFAULT\COOKIES.SQLITE ]
    .eset.122.2o7.net [ C:\USERS\MANAGEMENT\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\M2NVCB9X.DEFAULT\COOKIES.SQLITE ]
 



#12 MittyP

MittyP
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:06:50 AM

Posted 02 March 2013 - 12:49 PM

Emsisoft stuck on 83% while running in safe mode with networking



#13 MittyP

MittyP
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:06:50 AM

Posted 03 March 2013 - 04:30 AM

Managed to get Emsisoft to do a complete scan which took a good few hours.

 

Emsisoft Report

 

Emsisoft Emergency Kit - Version 3.0
Last update: 02/03/2013 15:32:06

Scan settings:

Scan type: Deep Scan
Objects: Rootkits, Memory, Traces, C:\, D:\, F:\

Detect Riskware: Off
Scan archives: On
ADS Scan: On
File extension filter: Off
Advanced caching: On
Direct disk access: Off

Scan start:    02/03/2013 15:32:18


Scanned    502052
Found    0

Scan end:    02/03/2013 20:29:25
Scan time:    4:57:07
 



#14 InadequateInfirmity

InadequateInfirmity

    I Gots Me A Certified Edumication


  • Banned
  • 5,180 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:01:50 AM

Posted 03 March 2013 - 06:08 AM

So what issues are you having now all those scans came up clean. 



#15 MittyP

MittyP
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:06:50 AM

Posted 03 March 2013 - 07:57 AM

Last bits are that it won't let me install any of the windows updates, when the PC boots up, it says installing windows updates and then it says failed, reverting.

 

Also when shutting down it gets stuck on the 'Shutting Down' screen.

 

Not sure if this is associated with anything but worth telling you.

 

Thanks for helping btw. You've been amazing!






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users