Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Not able to connect to the internet on my Windows Vista Laptop


  • This topic is locked This topic is locked
28 replies to this topic

#1 dazedchaos

dazedchaos

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:12:54 PM

Posted 04 May 2014 - 01:26 PM

Hello... This is my first forum post and I am having an issue accessing the internet I have spent quite a bit of time researching and I am unable to resolve this issue... I have run mini toolbox on my machine and the results can be seen below, please let me know if you can provide me any assistance. Thanks in advance:

 

MiniToolBox by Farbar  Version: 23-01-2014
Ran by Kevin (administrator) on 27-04-2014 at 00:38:46
Running from "C:\Users\Kevin\Desktop"
Microsoft® Windows Vista™ Home Premium  Service Pack 2 (X64)
Boot Mode: Normal
***************************************************************************
 
========================= Flush DNS: ===================================
 
Windows IP Configuration
 
Successfully flushed the DNS Resolver Cache.
 
========================= IE Proxy Settings: ============================== 
 
Proxy is not enabled.
No Proxy Server is set.
 
"Reset IE Proxy Settings": IE Proxy Settings were reset.
 
========================= FF Proxy Settings: ============================== 
 
"network.proxy.autoconfig_url", "file:///C:\\ProgramData\\javau.n"
"network.proxy.no_proxies_on", "*.local"
"network.proxy.type", 2
 
"Reset FF Proxy Settings": Firefox Proxy settings were reset.
 
========================= Hosts content: =================================
 
 
 
216.239.32.20 www.google.ae 
216.239.32.20 www.google.at 
216.239.32.20 www.google.be 
216.239.32.20 www.google.ca 
216.239.32.20 www.google.ch 
216.239.32.20 www.google.cl 
216.239.32.20 www.google.co.il 
216.239.32.20 www.google.co.in 
216.239.32.20 www.google.co.jp 
216.239.32.20 www.google.co.kr 
216.239.32.20 www.google.co.nz 
216.239.32.20 www.google.co.uk 
216.239.32.20 www.google.co.ve 
216.239.32.20 www.google.co.za 
216.239.32.20 www.google.com 
216.239.32.20 www.google.com.ar 
216.239.32.20 www.google.com.au 
216.239.32.20 www.google.com.br 
216.239.32.20 www.google.com.co 
216.239.32.20 www.google.com.gr 
216.239.32.20 www.google.com.hk 
216.239.32.20 www.google.com.mx 
216.239.32.20 www.google.com.my 
216.239.32.20 www.google.com.pe 
216.239.32.20 www.google.com.ph 
216.239.32.20 www.google.com.pk 
216.239.32.20 www.google.com.sg 
216.239.32.20 www.google.com.tr 
216.239.32.20 www.google.com.tw 
216.239.32.20 www.google.com.ua 
216.239.32.20 www.google.de 
216.239.32.20 www.google.dk 
216.239.32.20 www.google.es 
216.239.32.20 www.google.fi 
216.239.32.20 www.google.fr 
216.239.32.20 www.google.it 
216.239.32.20 www.google.lt 
216.239.32.20 www.google.lv 
216.239.32.20 www.google.nl 
216.239.32.20 www.google.pl 
216.239.32.20 www.google.pt 
216.239.32.20 www.google.ro 
216.239.32.20 www.google.ru 
 
127.0.0.1       localhost
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 1000gratisproben.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
 
There are 15471 more lines starting with "127.0.0.1"
 
========================= IP Configuration: ================================
 
Intel® WiFi Link 5100 AGN = Wireless Network Connection (Connected)
Bluetooth Device (Personal Area Network) = Bluetooth Network Connection (Media disconnected)
Broadcom NetLink ™ Gigabit Ethernet = Local Area Connection (Media disconnected)
 
 
# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4
 
reset
 
 
popd
# End of IPv4 configuration
 
 
 
Windows IP Configuration
 
   Host Name . . . . . . . . . . . . : Kevin-XPS
   Primary Dns Suffix  . . . . . . . : 
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
   DNS Suffix Search List. . . . . . : cmts.tv13.ptd.net
 
Wireless LAN adapter Wireless Network Connection:
 
   Connection-specific DNS Suffix  . : cmts.tv13.ptd.net
   Description . . . . . . . . . . . : Intel® WiFi Link 5100 AGN
   Physical Address. . . . . . . . . : 00-22-FB-0D-68-5A
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   IPv6 Address. . . . . . . . . . . : fd8c:8799:5117:0:dde5:dd50:80dc:af2f(Preferred) 
   Temporary IPv6 Address. . . . . . : fd8c:8799:5117:0:4d4a:67f8:6e71:24d4(Preferred) 
   Link-local IPv6 Address . . . . . : fe80::dde5:dd50:80dc:af2f%14(Preferred) 
   IPv4 Address. . . . . . . . . . . : 192.168.127.109(Preferred) 
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Lease Obtained. . . . . . . . . . : Saturday, April 26, 2014 11:57:28 PM
   Lease Expires . . . . . . . . . . : Monday, April 28, 2014 12:07:33 AM
   Default Gateway . . . . . . . . . : 192.168.127.1
   DHCP Server . . . . . . . . . . . : 192.168.127.1
   DHCPv6 IAID . . . . . . . . . . . : 335553275
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-16-43-8C-FE-00-22-19-D8-85-FE
   DNS Servers . . . . . . . . . . . : 216.144.187.101
                                       204.186.80.251
                                       216.144.187.199
   NetBIOS over Tcpip. . . . . . . . : Enabled
 
Ethernet adapter Local Area Connection:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : cmts.tv13.ptd.net
   Description . . . . . . . . . . . : Broadcom NetLink ™ Gigabit Ethernet
   Physical Address. . . . . . . . . : 00-22-19-D8-85-FE
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
 
Ethernet adapter Bluetooth Network Connection:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Bluetooth Device (Personal Area Network)
   Physical Address. . . . . . . . . : 00-22-68-E1-E0-E0
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter Local Area Connection* 11:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : isatap.{12A5758D-B86B-4A1C-9C64-27D2DE4B7697}
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter Local Area Connection* 12:
 
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physical Address. . . . . . . . . : 02-00-54-55-4E-01
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   IPv6 Address. . . . . . . . . . . : 2001:0:9d38:6ab8:49f:509:3f57:8092(Preferred) 
   Link-local IPv6 Address . . . . . : fe80::49f:509:3f57:8092%13(Preferred) 
   Default Gateway . . . . . . . . . : 
   NetBIOS over Tcpip. . . . . . . . : Disabled
 
Tunnel adapter Local Area Connection* 13:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter Local Area Connection* 16:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : isatap.{12A5758D-B86B-4A1C-9C64-27D2DE4B7697}
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter Local Area Connection* 17:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : cmts.tv13.ptd.net
   Description . . . . . . . . . . . : isatap.cmts.tv13.ptd.net
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
Server:  dns.tv13.ptd.net
Address:  216.144.187.101
 
Name:    google.com
Addresses:  2a00:1450:4006:801::1005
 204.186.48.16
 204.186.48.20
 204.186.48.24
 204.186.48.26
 204.186.48.27
 204.186.48.31
 204.186.48.35
 204.186.48.37
 204.186.48.38
 204.186.48.42
 204.186.48.46
 204.186.48.48
 204.186.48.49
 204.186.48.53
 204.186.48.57
 204.186.48.59
 
 
 
Pinging google.com [204.186.48.26] with 32 bytes of data:
 
General failure.
 
Request timed out.
 
 
 
Ping statistics for 204.186.48.26:
 
    Packets: Sent = 2, Received = 0, Lost = 2 (100% loss),
 
Server:  dns.tv13.ptd.net
Address:  216.144.187.101
 
Name:    yahoo.com
Addresses:  206.190.36.45
 98.138.253.109
 98.139.183.24
 
 
 
Pinging yahoo.com [206.190.36.45] with 32 bytes of data:
 
General failure.
 
Request timed out.
 
 
 
Ping statistics for 206.190.36.45:
 
    Packets: Sent = 2, Received = 0, Lost = 2 (100% loss),
 
 
 
Pinging 127.0.0.1 with 32 bytes of data:
 
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
 
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
 
 
 
Ping statistics for 127.0.0.1:
 
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
 
Approximate round trip times in milli-seconds:
 
    Minimum = 0ms, Maximum = 0ms, Average = 0ms
 
===========================================================================
Interface List
 14 ...00 22 fb 0d 68 5a ...... Intel® WiFi Link 5100 AGN
 12 ...00 22 19 d8 85 fe ...... Broadcom NetLink ™ Gigabit Ethernet
 11 ...00 22 68 e1 e0 e0 ...... Bluetooth Device (Personal Area Network)
  1 ........................... Software Loopback Interface 1
 15 ...00 00 00 00 00 00 00 e0  isatap.{12A5758D-B86B-4A1C-9C64-27D2DE4B7697}
 13 ...02 00 54 55 4e 01 ...... Teredo Tunneling Pseudo-Interface
 20 ...00 00 00 00 00 00 00 e0  Microsoft ISATAP Adapter
 18 ...00 00 00 00 00 00 00 e0  isatap.{12A5758D-B86B-4A1C-9C64-27D2DE4B7697}
 19 ...00 00 00 00 00 00 00 e0  isatap.cmts.tv13.ptd.net
===========================================================================
 
IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0    192.168.127.1  192.168.127.109     25
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
    192.168.127.0    255.255.255.0         On-link   192.168.127.109    281
  192.168.127.109  255.255.255.255         On-link   192.168.127.109    281
  192.168.127.255  255.255.255.255         On-link   192.168.127.109    281
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link   192.168.127.109    281
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link   192.168.127.109    281
===========================================================================
Persistent Routes:
  None
 
IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
  1    306 ::1/128                  On-link
 13     18 2001::/32                On-link
 13    266 2001:0:9d38:6ab8:49f:509:3f57:8092/128
                                    On-link
 14     33 fd8c:8799:5117::/64      On-link
 14    281 fd8c:8799:5117:0:4d4a:67f8:6e71:24d4/128
                                    On-link
 14    281 fd8c:8799:5117:0:dde5:dd50:80dc:af2f/128
                                    On-link
 14    281 fe80::/64                On-link
 13    266 fe80::/64                On-link
 13    266 fe80::49f:509:3f57:8092/128
                                    On-link
 14    281 fe80::dde5:dd50:80dc:af2f/128
                                    On-link
  1    306 ff00::/8                 On-link
 13    266 ff00::/8                 On-link
 14    281 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================
 
Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [48128] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [50176] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [62464] (Microsoft Corporation)
Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [62464] (Microsoft Corporation)
Catalog5 05 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Catalog5 06 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
Catalog5 07 C:\Windows\SysWOW64\winrnr.dll [19968] (Microsoft Corporation)
Catalog5 08 C:\Windows\SysWOW64\wshbth.dll [34304] (Microsoft Corporation)
Catalog5 09 C:\Windows\SysWOW64\PrxerNsp.dll [56424] ()
Catalog9 01 C:\Windows\system32\wpclsp.dll [72192] (Microsoft Corporation)
Catalog9 02 C:\Windows\system32\wpclsp.dll [72192] (Microsoft Corporation)
Catalog9 03 C:\Windows\system32\wpclsp.dll [72192] (Microsoft Corporation)
Catalog9 04 C:\Windows\system32\wpclsp.dll [72192] (Microsoft Corporation)
Catalog9 05 C:\Windows\system32\wpclsp.dll [72192] (Microsoft Corporation)
Catalog9 06 C:\Windows\system32\wpclsp.dll [72192] (Microsoft Corporation)
Catalog9 07 C:\Windows\system32\wpclsp.dll [72192] (Microsoft Corporation)
Catalog9 08 C:\Windows\system32\wpclsp.dll [72192] (Microsoft Corporation)
Catalog9 09 C:\Windows\SysWOW64\PrxerDrv.dll [70248] (Initex)
Catalog9 10 C:\Windows\SysWOW64\PrxerDrv.dll [70248] (Initex)
Catalog9 11 C:\Windows\SysWOW64\PrxerDrv.dll [70248] (Initex)
Catalog9 12 C:\Windows\SysWOW64\PrxerDrv.dll [70248] (Initex)
Catalog9 13 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 14 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 15 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 16 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 17 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 18 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 19 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 20 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 21 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 22 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 23 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 24 C:\Windows\system32\wpclsp.dll [72192] (Microsoft Corporation)
Catalog9 25 C:\Windows\SysWOW64\PrxerDrv.dll [70248] (Initex)
x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [61440] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\napinsp.dll [62976] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [78848] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [78848] (Microsoft Corporation)
x64-Catalog5 05 C:\Program Files\Bonjour\mdnsNSP.dll [132968] (Apple Inc.)
x64-Catalog5 06 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
x64-Catalog5 07 C:\Windows\System32\winrnr.dll [27648] (Microsoft Corporation)
x64-Catalog5 08 C:\Windows\System32\wshbth.dll [44032] (Microsoft Corporation)
x64-Catalog5 09 C:\Windows\System32\PrxerNsp.dll [57448] ()
x64-Catalog9 01 C:\Windows\System32\wpclsp.dll [102912] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\wpclsp.dll [102912] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\wpclsp.dll [102912] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\wpclsp.dll [102912] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\wpclsp.dll [102912] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\wpclsp.dll [102912] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\wpclsp.dll [102912] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\wpclsp.dll [102912] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\PrxerDrv.dll [76392] (Initex)
x64-Catalog9 10 C:\Windows\System32\PrxerDrv.dll [76392] (Initex)
x64-Catalog9 11 C:\Windows\System32\PrxerDrv.dll [76392] (Initex)
x64-Catalog9 12 C:\Windows\System32\PrxerDrv.dll [76392] (Initex)
x64-Catalog9 13 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
x64-Catalog9 14 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
x64-Catalog9 15 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
x64-Catalog9 16 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
x64-Catalog9 17 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
x64-Catalog9 18 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
x64-Catalog9 19 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
x64-Catalog9 20 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
x64-Catalog9 21 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
x64-Catalog9 22 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
x64-Catalog9 23 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
x64-Catalog9 24 C:\Windows\System32\wpclsp.dll [102912] (Microsoft Corporation)
x64-Catalog9 25 C:\Windows\System32\PrxerDrv.dll [76392] (Initex)
 
========================= Event log errors: ===============================
 
Application errors:
==================
Error: (04/26/2014 11:59:59 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Dependent Assembly Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (04/26/2014 11:57:45 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (04/26/2014 11:57:19 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Dependent Assembly Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (04/26/2014 11:55:14 PM) (Source: EventSystem) (User: )
Description: 80070005EventSystem.EventSubscription{CEB8B221-89C5-41A8-98CE-79B413BF150B}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}
 
Error: (04/26/2014 11:31:22 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Dependent Assembly Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (04/26/2014 11:29:26 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (04/26/2014 11:28:52 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Dependent Assembly Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (04/26/2014 10:32:35 PM) (Source: Application Hang) (User: )
Description: The program SpybotSD.exe version 1.6.2.46 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Problem Reports and Solutions control panel.
Process ID: 12a0
Start Time: 01cf61c06e79ad17
Termination Time: 18
 
Error: (04/26/2014 10:28:38 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Dependent Assembly Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (04/26/2014 10:26:06 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
 
System errors:
=============
Error: (04/26/2014 11:58:15 PM) (Source: Service Control Manager) (User: )
Description: Beep
 
Error: (04/26/2014 11:58:15 PM) (Source: Service Control Manager) (User: )
Description: SBSD Security Center Service%%1053
 
Error: (04/26/2014 11:58:15 PM) (Source: Service Control Manager) (User: )
Description: 30000SBSD Security Center Service
 
Error: (04/26/2014 11:57:46 PM) (Source: Service Control Manager) (User: )
Description: MCSTRM%%2
 
Error: (04/26/2014 11:55:47 PM) (Source: Service Control Manager) (User: )
Description: Windows Update
 
Error: (04/26/2014 11:29:49 PM) (Source: Service Control Manager) (User: )
Description: Beep
 
Error: (04/26/2014 11:29:49 PM) (Source: Service Control Manager) (User: )
Description: SBSD Security Center Service%%1053
 
Error: (04/26/2014 11:29:49 PM) (Source: Service Control Manager) (User: )
Description: 30000SBSD Security Center Service
 
Error: (04/26/2014 11:29:26 PM) (Source: Service Control Manager) (User: )
Description: MCSTRM%%2
 
Error: (04/26/2014 11:29:05 PM) (Source: Microsoft-Windows-ResourcePublication) (User: NT AUTHORITY)
Description: Provider\Microsoft.Base.Publication/Publication/Computer
 
 
Microsoft Office Sessions:
=========================
Error: (04/26/2014 11:59:59 PM) (Source: SideBySide)(User: )
Description: Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
 
Error: (04/26/2014 11:57:45 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (04/26/2014 11:57:19 PM) (Source: SideBySide)(User: )
Description: Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Windows\system32\BtRez.dll
 
Error: (04/26/2014 11:55:14 PM) (Source: EventSystem)(User: )
Description: 80070005EventSystem.EventSubscription{CEB8B221-89C5-41A8-98CE-79B413BF150B}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000}
 
Error: (04/26/2014 11:31:22 PM) (Source: SideBySide)(User: )
Description: Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
 
Error: (04/26/2014 11:29:26 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (04/26/2014 11:28:52 PM) (Source: SideBySide)(User: )
Description: Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Windows\system32\BtRez.dll
 
Error: (04/26/2014 10:32:35 PM) (Source: Application Hang)(User: )
Description: SpybotSD.exe1.6.2.4612a001cf61c06e79ad1718
 
Error: (04/26/2014 10:28:38 PM) (Source: SideBySide)(User: )
Description: Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
 
Error: (04/26/2014 10:26:06 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
 
CodeIntegrity Errors:
===================================
  Date: 2014-04-26 23:58:45.848
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-04-26 23:30:01.417
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-04-26 22:26:20.176
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-04-26 22:12:18.839
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-04-26 22:12:18.620
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-04-26 22:12:18.432
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-04-26 22:12:18.237
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-04-26 22:01:18.237
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-04-26 22:01:18.038
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-04-26 22:01:17.870
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.
 
 
=========================== Installed Programs ============================
 
Apple Mobile Device Support (Version: 7.1.1.3)
Bitdefender Total Security (Version: 17.25.0.1074)
Blue Coat K9 Web Protection (Version: 4.3.188)
Bonjour (Version: 3.0.0.10)
Broadcom Gigabit NetLink Controller (Version: 11.07.01)
Dell Dock (Version: 2.0)
Dell Driver Download Manager (Version: 2.1.0.0)
FastAccess (Version: 2.4.97.1)
iCloud (Version: 2.1.3.25)
Integrated Webcam Driver (1.06.03.0309)   (Version: 1.06.03.0309)
Intel® PROSet/Wireless WiFi Driver (Version: 12.00.4000)
iTunes (Version: 11.1.5.5)
Java 7 Update 7 (64-bit) (Version: 7.0.70)
Java™ 6 Update 30 (64-bit) (Version: 6.0.300)
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
OptimizerPro Upd (Version: 1.0)
SanDiskSecureAccess_Manager.exe (Version: 1.1.19755)
SpyroPortalDriver (Version: 1.0.0)
WIDCOMM Bluetooth Software 6.2.0.6600 (Version: 6.2.0.6600)
Windows Live Family Safety (Version: 15.4.3555.0308)
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0)
Windows Live Language Selector (Version: 15.4.3555.0308)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Mobile Device Updater Component (Version: 04.08.2345.00)
XBMC
Zune (Version: 04.08.2345.00)
Zune Language Pack (CHS) (Version: 04.08.2345.00)
Zune Language Pack (CHT) (Version: 04.08.2345.00)
Zune Language Pack (CSY) (Version: 04.08.2345.00)
Zune Language Pack (DAN) (Version: 04.08.2345.00)
Zune Language Pack (DEU) (Version: 04.08.2345.00)
Zune Language Pack (ELL) (Version: 04.08.2345.00)
Zune Language Pack (ESP) (Version: 04.08.2345.00)
Zune Language Pack (FIN) (Version: 04.08.2345.00)
Zune Language Pack (FRA) (Version: 04.08.2345.00)
Zune Language Pack (HUN) (Version: 04.08.2345.00)
Zune Language Pack (IND) (Version: 04.08.2345.00)
Zune Language Pack (ITA) (Version: 04.08.2345.00)
Zune Language Pack (JPN) (Version: 04.08.2345.00)
Zune Language Pack (KOR) (Version: 04.08.2345.00)
Zune Language Pack (MSL) (Version: 04.08.2345.00)
Zune Language Pack (NLD) (Version: 04.08.2345.00)
Zune Language Pack (NOR) (Version: 04.08.2345.00)
Zune Language Pack (PLK) (Version: 04.08.2345.00)
Zune Language Pack (PTB) (Version: 04.08.2345.00)
Zune Language Pack (PTG) (Version: 04.08.2345.00)
Zune Language Pack (RUS) (Version: 04.08.2345.00)
Zune Language Pack (SVE) (Version: 04.08.2345.00)
 
========================= Devices: ================================
 
Name: Microsoft ISATAP Adapter #4
Description: Microsoft ISATAP Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver
 
Name: SM Bus Controller
Description: SM Bus Controller
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
 
Name: Activision Xbox360 Spyro Portal
Description: Activision Xbox360 Spyro Portal
Class Guid: {4a9c2fa7-d63f-44c5-a247-bb3289a3739f}
Manufacturer: Activision
Service: WinUSB
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
 
 
========================= Memory info: ===================================
 
Percentage of memory in use: 31%
Total physical RAM: 8185.95 MB
Available physical RAM: 5621.5 MB
Total Pagefile: 16494.86 MB
Available Pagefile: 13809.84 MB
Total Virtual: 4095.88 MB
Available Virtual: 3986.7 MB
 
========================= Partitions: =====================================
 
1 Drive c: () (Fixed) (Total:287.94 GB) (Free:10.26 GB) NTFS
3 Drive e: (MINI TD) (Removable) (Total:1.92 GB) (Free:1.45 GB) FAT32
 
========================= Users: ========================================
 
User accounts for \\KEVIN-XPS
 
Administrator            Guest                    Kevin                    
Mcx1                     Samara                   Victor                   
 
========================= Minidump Files ==================================
 
C:\Windows\Minidump\Mini022113-01.dmp
C:\Windows\Minidump\Mini041314-01.dmp
C:\Windows\Minidump\Mini122113-01.dmp
========================= Restore Points ==================================
 
05-02-2014 21:10:55 Windows Update
13-02-2014 02:27:48 Windows Update
13-02-2014 04:14:28 Windows Update
16-02-2014 04:07:20 Windows Update
27-02-2014 00:22:00 Windows Update
27-02-2014 00:56:35 Device Driver Package Install: BitDefender LLC Network Service
27-02-2014 04:04:47 Windows Update
02-03-2014 20:26:20 Windows Update
13-03-2014 02:52:47 Windows Update
13-04-2014 02:04:35 Windows Update
27-04-2014 02:49:55 Restore Operation
 
**** End of log ****
 


BC AdBot (Login to Remove)

 


#2 HelpBot

HelpBot

    Bleepin' Binary Bot


  • Bots
  • 12,699 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:01:54 PM

Posted 09 May 2014 - 01:30 PM

Hello and welcome to Bleeping Computer!

I am HelpBot: an automated program designed to help the Bleeping Computer Staff better assist you! This message contains very important information, so please read through all of it before doing anything.

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.

To help Bleeping Computer better assist you please perform the following steps:

***************************************************

step1.gif In order to continue receiving help at BleepingComputer.com, YOU MUST tell me if you still need help or if your issue has already been resolved on your own or through another resource! To tell me this, please click on the following link and follow the instructions there.

CLICK THIS LINK >>> http://www.bleepingcomputer.com/logreply/533259 <<< CLICK THIS LINK



If you no longer need help, then all you needed to do was the previous instructions of telling me so. You can skip the rest of this post. If you do need help please continue with Step 2 below.

***************************************************

step2.gifIf you still need help, I would like you to post a Reply to this topic (click the "Add Reply" button in the lower right hand of this page). In that reply, please include the following information:

  • If you have not done so already, include a clear description of the problems you're having, along with any steps you may have performed so far.
  • A new DDS log. For your convenience, you will find the instructions for generating these logs repeated at the bottom of this post.
    • Please do this even if you have previously posted logs for us.
    • If you were unable to produce the logs originally please try once more.
    • If you are unable to create a log please provide detailed information about your installed Windows Operating System including the Version, Edition and if it is a 32bit or a 64bit system.
    • If you are unsure about any of these characteristics just post what you can and we will guide you.
  • Please tell us if you have your original Windows CD/DVD available.
  • Upon completing the above steps and posting a reply, another staff member will review your topic and do their best to resolve your issues.

Thank you for your patience, and again sorry for the delay.

***************************************************

We need to see some information about what is happening in your machine. Please perform the following scan again:

  • Download DDS by sUBs from the following link if you no longer have it available and save it to your destop.

    DDS.com Download Link
  • Double click on the DDS icon, allow it to run.
  • A small box will open, with an explanation about the tool. No input is needed, the scan is running.
  • Notepad will open with the results.
  • Follow the instructions that pop up for posting the results.
  • Close the program window, and delete the program from your desktop.
Please note: You may have to disable any script protection running if the scan fails to run. After downloading the tool, disconnect from the internet and disable all antivirus protection. Run the scan, enable your A/V and reconnect to the internet.

Information on A/V control can be found HERE.

As I am just a silly little program running on the BleepingComputer.com servers, please do not send me private messages as I do not know how to read and reply to them! Thanks!

#3 The Pugilist

The Pugilist

  • Members
  • 826 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:01:54 PM

Posted 11 May 2014 - 10:05 AM

Hello dazedchaos, welcome to forums. :welcome:

 

My name is Dave and I'll be helping you out with your connectivity problems.  Before we begin, please follow the instructions in the above post and get back to me as soon as possible. 

 

In the mean time, I will be reviewing the material you have provided.

 

 

Lastly, while we are helping you here, here are some tips to help improve our ability to serve you:

  1. Do not make any changes to your computer outside of my instructions (if I don't know what's happening on your computer, it is very difficult for me to help you).
  2. Read each post as carefully as possible and follow all instructions.
  3. Reply to this thread within 48 hours or so.  If this is a problem, feel free to PM me or post here letting me know that you are unable to reply.

//Dave

#4 dazedchaos

dazedchaos
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:12:54 PM

Posted 11 May 2014 - 03:31 PM

Hi Dave... I am running windows Vista Home Premium (64 bit) version on a Dell Studio XPS laptop. So far I have tried to access the internet when logging in normally. I have ran spybot search and destroy and checked for any suspicious programs running upon startup and killed a few items that were noted as potential malware etc... I also ran Antimalwarebytes and deleted all of the items that appeared. I ran the same programs in safe mode without networking to try an stop anything that was triggered though backdoor applications.

 

Lastly, I was reading through bleepingcomputer.com forums I saw others were using the mintoolbar application, so I ran and posted the results from my original post. I do have my original Windows Vista discs if necessary.

 

 

Today I also got the blue screen of death with the error: BAD_POOL_HEADER, but upon a couple of restarts I was able to get in.

 

The Requested "DSS" files can be seen below

 

DDS.txt

 

DDS (Ver_2012-11-20.01) - NTFS_AMD64 
Internet Explorer: 9.0.8112.16545  BrowserJavaVersion: 10.17.2
Run by Kevin at 16:13:28 on 2014-05-11
Microsoft® Windows Vista™ Home Premium   6.0.6002.2.1252.1.1033.18.8186.5150 [GMT -4:00]
.
AV: Bitdefender Antivirus *Enabled/Outdated* {9A0813D8-CED6-F86B-072E-28D2AF25A83D}
SP: Bitdefender Antispyware *Enabled/Outdated* {2169F23C-E8EC-F7E5-3D9E-13A0D4A2E280}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Bitdefender Firewall *Enabled* {A23392FD-84B9-F933-2C71-81E751F6EF46}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Program Files\Bitdefender\Bitdefender\vsserv.exe
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\system32\Ati2evxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Program Files (x86)\Sensible Vision\Fast Access\FAService.exe
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_3e0eef5b\STacSV64.exe
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\Ati2evxx.exe
C:\Program Files\Dell\DellDock\DockLogin.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\taskeng.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_3e0eef5b\AESTSr64.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Blue Coat K9 Web Protection\k9filter.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Windows\system32\spool\DRIVERS\x64\3\dleaserv.exe
C:\Windows\system32\dleacoms.exe
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files (x86)\FS\Spyro Portal\FlashPortal.exe
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe
C:\ProgramData\BrowserSafer\wbrosrec.exe
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe
C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
C:\Windows\System32\wpcumi.exe
C:\Program Files (x86)\Dell V310-V510 Series\dleamon.exe
C:\Program Files (x86)\Dell V310-V510 Series\ezprint.exe
C:\Program Files\Zune\ZuneLauncher.exe
C:\Program Files\IDT\WDM\sttray64.exe
C:\Program Files\Bitdefender\Bitdefender\bdagent.exe
C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\BookmarkDAV_client.exe
C:\Program Files (x86)\Printer Pro Desktop\PrinterProDesktop.exe
C:\Users\Kevin\Desktop\iFunbox\ifunbox.win\ifb_conn.exe
C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe
C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe
C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell.exe
C:\Program Files (x86)\Sensible Vision\Fast Access\FATrayMon.exe
C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files (x86)\Spybot - Search & Destroy\SpybotSD.exe
C:\Program Files (x86)\Sensible Vision\Fast Access\FATrayAlert.exe
C:\Program Files (x86)\SlySoft\AnyDVD\AnyDVDtray.exe
C:\Windows\ehome\ehmsas.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\SlySoft\AnyDVD\ADvdDiscHlp64.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files (x86)\Common Files\Apple\Internet Services\APSDaemon.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Bitdefender\Bitdefender\odscanui.exe
C:\Windows\System32\WUDFHost.exe
C:\Windows\System32\mobsync.exe
C:\Program Files (x86)\Windows Media Player\wmplayer.exe
C:\Program Files (x86)\Windows Media Player\setup_wm.exe
C:\Windows\SysWOW64\werfault.exe
C:\Program Files\Bitdefender\Bitdefender\downloader.exe
C:\Program Files (x86)\Sensible Vision\Fast Access\FAUpdateClient.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\RacAgent.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = about:blank
mStart Page = about:blank
uSearchAssistant = hxxp://www.google.com
mWinlogon: Userinit = userinit.exe
BHO: {09F58E74-42B4-4D70-BA26-35FC954E7A17} - <orphaned>
BHO: Bitdefender Wallet: {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender\Antispam32\pmbxie.dll
BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
BHO: Spybot-S&D IE Protection: {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll
BHO: Java™ Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Windows Live Messenger Companion Helper: {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
BHO: WOT Helper: {C920E44A-7F78-4E64-BDD7-A57026E7FEB7} - C:\Program Files (x86)\WOT\WOT.dll
BHO: Face recognition web login for FastAccess: {DA5BCE70-D057-4D63-943D-5F3927EC59F1} - C:\Program Files (x86)\Sensible Vision\Fast Access\FAIESSO.dll
BHO: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
TB: WOT: {71576546-354D-41C9-AAE8-31F2EC22BF0D} - C:\Program Files (x86)\WOT\WOT.dll
TB: WOT: {71576546-354D-41c9-AAE8-31F2EC22BF0D} - C:\Program Files (x86)\WOT\WOT.dll
uRun: [AnyDVD] "C:\Program Files (x86)\SlySoft\AnyDVD\AnyDVD.exe"
uRun: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
uRun: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
uRun: [ehTray.exe] C:\Windows\ehome\ehTray.exe
uRun: [com.apple.dav.bookmarks.daemon] C:\Program Files (x86)\Common Files\Apple\Internet Services\BookmarkDAV_client.exe
uRun: [PrinterProDesktop] C:\Program Files (x86)\Printer Pro Desktop\PrinterProDesktop.exe /autorun
uRun: [BrowserSafer] "C:\Program Files (x86)\BrowserSafer\browsersafer.exe"
uRun: [iFunBoxConnector] "C:\Users\Kevin\Desktop\iFunbox\ifunbox.win\ifb_conn.exe"
uRun: [Bitdefender Wallet Agent] "C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe"
uRun: [Bitdefender Wallet Application Agent] "C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe"
uRun: [Bitdefender Wallet] "C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe" --hidden --nowizard
mRun: [Dell Webcam Central] "C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell.exe" /mode2
mRun: [FATrayAlert] C:\Program Files (x86)\Sensible Vision\Fast Access\FATrayMon.exe
mRun: [PDVDDXSrv] "C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe"
mRun: [BrowserSafer] "C:\Program Files (x86)\BrowserSafer\BrowserSafer.exe"
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [FAStartup] <no file>
dRun: [Bitdefender Wallet Agent] "C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe"
dRun: [Bitdefender Wallet] "C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe" --hidden --nowizard
dRun: [Bitdefender Wallet Application Agent] "C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe"
StartupFolder: C:\Users\Kevin\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\DELLDO~1.LNK - C:\Program Files\Dell\DellDock\DellDock.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\BLUETO~1.LNK - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
uPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: BindDirectlyToPropertySetStorage = dword:0
mPolicies-Explorer: NoDrives = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll
LSP: C:\Windows\System32\wpclsp.dll
LSP: %SystemRoot%\system32\PrxerDrv.dll
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
.
INFO: HKLM has more than 50 listed domains.
   If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: Garmin Communicator Plug-In - hxxps://static.garmincdn.com/gcp/ie/4.0.1.0/GarminAxControl_32.CAB
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
TCP: NameServer = 216.144.187.101 204.186.80.251 216.144.187.199
TCP: Interfaces\{12A5758D-B86B-4A1C-9C64-27D2DE4B7697} : DHCPNameServer = 216.144.187.101 204.186.80.251 216.144.187.199
TCP: Interfaces\{CEBC7A1A-618E-42E9-9AA8-F07313C94662} : DHCPNameServer = 216.144.187.101 204.186.80.251 216.144.187.199
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
Handler: wot - {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} - C:\Program Files (x86)\WOT\WOT.dll
LSA: Notification Packages =  scecli FAPassSync
LSA: Security Packages =  kerberos msv1_0 schannel wdigest tspkg
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\34.0.1847.116\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
x64-mStart Page = about:blank
x64-BHO: Bitdefender Wallet : {09F58E74-42B4-4D70-BA26-35FC954E7A17} - C:\Program Files\Bitdefender\Bitdefender\pmbxie.dll
x64-BHO: Bitdefender Wallet : {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender\pmbxie.dll
x64-BHO: Java™ Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
x64-BHO: Face recognition web login for FastAccess: {DA5BCE70-D057-4D63-943D-5F3927EC59F1} - C:\Program Files (x86)\Sensible Vision\Fast Access\x64\FAIESSO.dll
x64-BHO: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
x64-Run: [WPCUMI] C:\Windows\System32\WpcUmi.exe
x64-Run: [dleamon.exe] "C:\Program Files (x86)\Dell V310-V510 Series\dleamon.exe"
x64-Run: [EzPrint] "C:\Program Files (x86)\Dell V310-V510 Series\ezprint.exe"
x64-Run: [Zune Launcher] "C:\Program Files\Zune\ZuneLauncher.exe"
x64-Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe
x64-Run: [Bdagent] "C:\Program Files\Bitdefender\Bitdefender\bdagent.exe"
x64-RunOnce: [*Restore] C:\Windows\System32\rstrui.exe /runonce
x64-mPolicies-Explorer: BindDirectlyToPropertySetStorage = dword:0
x64-mPolicies-Explorer: NoDrives = dword:0
x64-mPolicies-System: EnableUIADesktopToggle = dword:0
x64-IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
.
INFO: x64-HKLM has more than 50 listed domains.
   If you wish to scan all of them, select the 'Force scan all domains' option.
.
x64-DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
x64-DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
x64-DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-Handler: wot - {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} - LocalServer32 - <no file>
Hosts: 127.0.0.1 www.spywareinfo.com
Hosts: 216.239.32.20 www.google.ae # bck9
Hosts: 216.239.32.20 www.google.at # bck9
Hosts: 216.239.32.20 www.google.be # bck9
Hosts: 216.239.32.20 www.google.ca # bck9
.
Note: multiple HOSTS entries found. Please refer to Attach.txt
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Kevin\AppData\Roaming\Mozilla\Firefox\Profiles\qlyym5ge.default\
FF - prefs.js: browser.search.selectedEngine - Conduit Search
FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrlui.dll
FF - plugin: c:\program files (x86)\real\realplayer\Netscape6\nprpplugin.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll
FF - plugin: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll
FF - plugin: C:\Windows\SysWOW64\npDeployJava1.dll
FF - plugin: C:\Windows\SysWOW64\npmproxy.dll
FF - ExtSQL: 1969-12-31 19:00; {7affbfae-c4e2-4915-8c0f-00fa3ec610a1}; C:\Users\Kevin\AppData\Roaming\Mozilla\Firefox\Profiles\qlyym5ge.default\extensions\{7affbfae-c4e2-4915-8c0f-00fa3ec610a1}
.
---- FIREFOX POLICIES ----
FF - user.js: extensions.claro.tlbrSrchUrl - 
FF - user.js: extensions.claro.id - b8c9c2ea0000000000000022fb0d685a
FF - user.js: extensions.claro.appId - {C3110516-8EFC-49D6-8B72-69354F332062}
FF - user.js: extensions.claro.instlDay - 15662
FF - user.js: extensions.claro.vrsn - 1.8.3.10
FF - user.js: extensions.claro.vrsni - 1.8.3.10
FF - user.js: extensions.claro_i.vrsnTs - 1.8.3.102:15:46
FF - user.js: extensions.claro.prtnrId - claro
FF - user.js: extensions.claro.prdct - claro
FF - user.js: extensions.claro.aflt - babsst
FF - user.js: extensions.claro_i.smplGrp - none
FF - user.js: extensions.claro.tlbrId - base
FF - user.js: extensions.claro.instlRef - sst
FF - user.js: extensions.claro.dfltLng - en
FF - user.js: extensions.claro.excTlbr - false
FF - user.js: extensions.claro.admin - false
FF - user.js: extensions.shownSelectionUI - true
FF - user.js: extensions.delta.tlbrSrchUrl - 
FF - user.js: extensions.delta.id - b8c9c2ea0000000000000022fb0d685a
FF - user.js: extensions.delta.appId - {C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
FF - user.js: extensions.delta.instlDay - 15912
FF - user.js: extensions.delta.vrsn - 1.8.22.0
FF - user.js: extensions.delta.vrsni - 1.8.22.0
FF - user.js: extensions.delta.vrsnTs - 1.8.22.00:58:03
FF - user.js: extensions.delta.prtnrId - delta
FF - user.js: extensions.delta.prdct - delta
FF - user.js: extensions.delta.aflt - babsst
FF - user.js: extensions.delta.smplGrp - none
FF - user.js: extensions.delta.tlbrId - base
FF - user.js: extensions.delta.instlRef - sst
FF - user.js: extensions.delta.dfltLng - en
FF - user.js: extensions.delta.excTlbr - false
FF - user.js: extensions.delta.ffxUnstlRst - true
FF - user.js: extensions.delta.admin - false
FF - user.js: extensions.delta_i.babTrack - affID=123485&tsp=4955
FF - user.js: extensions.delta_i.babExt - 
FF - user.js: extensions.delta_i.srcExt - ss
FF - user.js: extensions.delta.autoRvrt - false
FF - user.js: extensions.delta.rvrt - false
FF - user.js: extensions.delta.newTab - false
.
============= SERVICES / DRIVERS ===============
.
R0 avc3;avc3;C:\Windows\System32\drivers\avc3.sys [2014-2-26 893440]
R1 bckd;bckd;C:\Windows\System32\drivers\bckd.sys [2012-2-13 108304]
R1 BdfNdisf;BitDefender Firewall NDIS 6 Filter Driver;C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfndisf6.sys [2014-2-26 93600]
R1 BDVEDISK;BDVEDISK;C:\Windows\System32\drivers\bdvedisk.sys [2014-2-26 76944]
R3 avchv;avchv Function Driver;C:\Windows\System32\drivers\avchv.sys [2013-7-26 261056]
R3 avckf;avckf;C:\Windows\System32\drivers\avckf.sys [2014-2-26 635392]
R3 btwl2cap;Bluetooth L2CAP Service;C:\Windows\System32\drivers\btwl2cap.sys [2011-11-2 36392]
S3 BDSandBox;BDSandBox;C:\Windows\System32\drivers\bdsandbox.sys [2014-2-26 82824]
.
=============== File Associations ===============
.
FileExt: .jse: JSEFile=C:\Windows\SysWOW64\WScript.exe "%1" %*
.
=============== Created Last 30 ================
.
.
==================== Find3M  ====================
.
2014-05-11 19:58:29 119512 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys
2014-04-03 13:51:12 63192 ----a-w- C:\Windows\System32\drivers\mwac.sys
2014-04-03 13:51:04 88280 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys
2014-04-03 13:50:58 25816 ----a-w- C:\Windows\System32\drivers\mbam.sys
2014-03-31 07:51:02 90655440 ----a-w- C:\Windows\System32\mrt.exe
2014-03-13 01:26:22 71048 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2014-03-13 01:26:22 692616 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2014-03-08 04:54:09 17848832 ----a-w- C:\Windows\System32\mshtml.dll
2014-03-08 04:06:34 10926592 ----a-w- C:\Windows\System32\ieframe.dll
2014-03-08 03:49:45 2334720 ----a-w- C:\Windows\System32\jscript9.dll
2014-03-08 03:41:51 1347072 ----a-w- C:\Windows\System32\urlmon.dll
2014-03-08 03:40:14 1392128 ----a-w- C:\Windows\System32\wininet.dll
2014-03-08 03:39:34 1494528 ----a-w- C:\Windows\System32\inetcpl.cpl
2014-03-08 03:38:58 237056 ----a-w- C:\Windows\System32\url.dll
2014-03-08 03:37:23 85504 ----a-w- C:\Windows\System32\jsproxy.dll
2014-03-08 03:34:25 173056 ----a-w- C:\Windows\System32\ieUnatt.exe
2014-03-08 03:34:18 816640 ----a-w- C:\Windows\System32\jscript.dll
2014-03-08 03:33:45 599040 ----a-w- C:\Windows\System32\vbscript.dll
2014-03-08 03:32:09 729088 ----a-w- C:\Windows\System32\msfeeds.dll
2014-03-08 03:32:05 2147840 ----a-w- C:\Windows\System32\iertutil.dll
2014-03-08 03:30:20 96768 ----a-w- C:\Windows\System32\mshtmled.dll
2014-03-08 03:29:50 2382848 ----a-w- C:\Windows\System32\mshtml.tlb
2014-03-08 03:24:19 248320 ----a-w- C:\Windows\System32\ieui.dll
2014-03-07 23:51:01 12347904 ----a-w- C:\Windows\SysWow64\mshtml.dll
2014-03-07 23:20:15 9739264 ----a-w- C:\Windows\SysWow64\ieframe.dll
2014-03-07 23:12:00 1806848 ----a-w- C:\Windows\SysWow64\jscript9.dll
2014-03-07 23:03:31 1105408 ----a-w- C:\Windows\SysWow64\urlmon.dll
2014-03-07 23:02:19 1427968 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
2014-03-07 23:02:07 1129472 ----a-w- C:\Windows\SysWow64\wininet.dll
2014-03-07 23:00:41 231936 ----a-w- C:\Windows\SysWow64\url.dll
2014-03-07 22:59:00 65024 ----a-w- C:\Windows\SysWow64\jsproxy.dll
2014-03-07 22:57:17 142848 ----a-w- C:\Windows\SysWow64\ieUnatt.exe
2014-03-07 22:57:11 717824 ----a-w- C:\Windows\SysWow64\jscript.dll
2014-03-07 22:56:03 421376 ----a-w- C:\Windows\SysWow64\vbscript.dll
2014-03-07 22:54:48 607744 ----a-w- C:\Windows\SysWow64\msfeeds.dll
2014-03-07 22:53:26 1796096 ----a-w- C:\Windows\SysWow64\iertutil.dll
2014-03-07 22:52:24 73216 ----a-w- C:\Windows\SysWow64\mshtmled.dll
2014-03-07 22:52:04 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2014-03-07 22:47:04 176640 ----a-w- C:\Windows\SysWow64\ieui.dll
2014-02-15 15:31:08 138664 ----a-w- C:\Windows\SysWow64\drivers\AnyDVD.sys
2014-02-15 15:31:08 138664 ----a-w- C:\Windows\System32\drivers\AnyDVD.sys
.
============= FINISH: 16:24:31.49 ===============

 

 

 

Attach.txt

 

.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft® Windows Vista™ Home Premium 
Boot Device: \Device\HarddiskVolume2
Install Date: 10/31/2011 5:13:23 PM
System Uptime: 5/11/2014 3:54:36 PM (1 hours ago)
.
Motherboard: Dell Inc. |  | 0U785D
Processor: Intel® Core™2 Duo CPU     P8600  @ 2.40GHz | U2E1 | 2401/1066mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 288 GiB total, 45.346 GiB free.
D: is CDROM ()
.
==== Disabled Device Manager Items =============
.
==== Hosts File Hijack ======================
.
Hosts: 127.0.0.1 www.spywareinfo.com
Hosts: 216.239.32.20 www.google.ae # bck9
Hosts: 216.239.32.20 www.google.at # bck9
Hosts: 216.239.32.20 www.google.be # bck9
Hosts: 216.239.32.20 www.google.ca # bck9
Hosts: 216.239.32.20 www.google.ch # bck9
Hosts: 216.239.32.20 www.google.cl # bck9
Hosts: 216.239.32.20 www.google.co.il # bck9
Hosts: 216.239.32.20 www.google.co.in # bck9
Hosts: 216.239.32.20 www.google.co.jp # bck9
Hosts: 216.239.32.20 www.google.co.kr # bck9
Hosts: 216.239.32.20 www.google.co.nz # bck9
Hosts: 216.239.32.20 www.google.co.uk # bck9
Hosts: 216.239.32.20 www.google.co.ve # bck9
Hosts: 216.239.32.20 www.google.co.za # bck9
Hosts: 216.239.32.20 www.google.com # bck9
Hosts: 216.239.32.20 www.google.com.ar # bck9
Hosts: 216.239.32.20 www.google.com.au # bck9
Hosts: 216.239.32.20 www.google.com.br # bck9
Hosts: 216.239.32.20 www.google.com.co # bck9
Hosts: 216.239.32.20 www.google.com.gr # bck9
Hosts: 216.239.32.20 www.google.com.hk # bck9
Hosts: 216.239.32.20 www.google.com.mx # bck9
Hosts: 216.239.32.20 www.google.com.my # bck9
Hosts: 216.239.32.20 www.google.com.pe # bck9
Hosts: 216.239.32.20 www.google.com.ph # bck9
Hosts: 216.239.32.20 www.google.com.pk # bck9
Hosts: 216.239.32.20 www.google.com.sg # bck9
Hosts: 216.239.32.20 www.google.com.tr # bck9
Hosts: 216.239.32.20 www.google.com.tw # bck9
Hosts: 216.239.32.20 www.google.com.ua # bck9
Hosts: 216.239.32.20 www.google.de # bck9
Hosts: 216.239.32.20 www.google.dk # bck9
Hosts: 216.239.32.20 www.google.es # bck9
Hosts: 216.239.32.20 www.google.fi # bck9
Hosts: 216.239.32.20 www.google.fr # bck9
Hosts: 216.239.32.20 www.google.it # bck9
Hosts: 216.239.32.20 www.google.lt # bck9
Hosts: 216.239.32.20 www.google.lv # bck9
Hosts: 216.239.32.20 www.google.nl # bck9
Hosts: 216.239.32.20 www.google.pl # bck9
Hosts: 216.239.32.20 www.google.pt # bck9
Hosts: 216.239.32.20 www.google.ro # bck9
Hosts: 216.239.32.20 www.google.ru # bck9
.
==== Installed Programs ======================
.
7-zip v9.20
Adobe AIR
Adobe Flash Player 12 ActiveX
Adobe Flash Player 12 Plugin
Adobe Reader X (10.1.9)
Advanced Audio FX Engine
AnyDVD
Apple Application Support
Apple Mobile Device Support
Apple Software Update
Auslogics Duplicate File Finder
Bitdefender Total Security
Blue Coat K9 Web Protection
Bonjour
Broadcom Gigabit NetLink Controller
Cisco Connect
D3DX10
Dell Dock
Dell Driver Download Manager
Dell Resource CD
Dell Video Chat
Dell Webcam Central
Disketch Disc Label Software
DVD Shrink 3.2
DVDFab 9.0.4.7 (26/06/2013)
Express Burn
FastAccess
Free Video Flip and Rotate version 2.1.6.320
Google Chrome
Google Update Helper
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
iCloud
IDT Audio
ImgBurn
Integrated Webcam Driver (1.06.03.0309)  
Intel® PROSet/Wireless WiFi Driver
iTunes
Java 7 Update 17
Java 7 Update 7 (64-bit)
Java Auto Updater
Java™ 6 Update 30 (64-bit)
JavaFX 2.1.1
Junk Mail filter update
Live! Cam Avatar Creator
Malwarebytes Anti-Malware version 2.0.1.1004
Mesh Runtime
Messenger Companion
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4.5.1
Microsoft Application Error Reporting
Microsoft Office File Validation Add-In
Microsoft Office Outlook Connector
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft VC9 runtime libraries
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
Mozilla Firefox 16.0.1 (x86 en-US)
Mozilla Maintenance Service
Mozilla Thunderbird 24.0.1 (x86 en-US)
MSVCRT
MSVCRT_amd64
ooVoo
OpenOffice.org 3.4
OptimizerPro Upd
Origin
PowerDVD DX
Printer Pro Desktop
Proxifier version 3.21
QuickTime 7
RealNetworks - Microsoft Visual C++ 2008 Runtime
RealPlayer
RealUpgrade 1.1
Replay Converter 4
Rhapsody
Rhapsody Cloud Sync
RICOH R5C83x/84x Media Driver Ver.3.53.02
Roxio Creator Audio
Roxio Creator Copy
Roxio Creator Data
Roxio Creator DE
Roxio Creator Tools
Roxio Express Labeler 3
Roxio Update Manager
Safari
SanDiskSecureAccess_Manager.exe
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2604111)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2736416)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2840629)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2861697)
Security Update for Microsoft .NET Framework 4.5.1 (KB2898869)
Security Update for Microsoft .NET Framework 4.5.1 (KB2901126)
Segoe UI
Skype™ 6.11
Spybot - Search & Destroy
SpyroDriver
SpyroPortalDriver
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
VideoPad Video Editor
Visual Pinball
VLC media player 2.1.3
WavePad Sound Editor
WIDCOMM Bluetooth Software 6.2.0.6600
Windows Live Communications Platform
Windows Live Essentials
Windows Live Family Safety
Windows Live ID Sign-in Assistant
Windows Live Installer
Windows Live Language Selector
Windows Live Mail
Windows Live Mesh
Windows Live Mesh ActiveX Control for Remote Connections
Windows Live Messenger
Windows Live Messenger Companion Core
Windows Live MIME IFilter
Windows Live Movie Maker
Windows Live Photo Common
Windows Live Photo Gallery
Windows Live PIMT Platform
Windows Live Remote Client
Windows Live Remote Client Resources
Windows Live Remote Service
Windows Live Remote Service Resources
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live UX Platform
Windows Live UX Platform Language Pack
Windows Live Writer
Windows Live Writer Resources
Windows Mobile Device Updater Component
WinRAR archiver
WinSCP 5.1.3
Wisdom-soft ScreenHunter 6.0 Free
Wondershare Music Converter(Build 1.3.3.0)
WOT for Internet Explorer
XBMC
XBMCHUB Wizard
Zune
Zune Language Pack (CHS)
Zune Language Pack (CHT)
Zune Language Pack (CSY)
Zune Language Pack (DAN)
Zune Language Pack (DEU)
Zune Language Pack (ELL)
Zune Language Pack (ESP)
Zune Language Pack (FIN)
Zune Language Pack (FRA)
Zune Language Pack (HUN)
Zune Language Pack (IND)
Zune Language Pack (ITA)
Zune Language Pack (JPN)
Zune Language Pack (KOR)
Zune Language Pack (MSL)
Zune Language Pack (NLD)
Zune Language Pack (NOR)
Zune Language Pack (PLK)
Zune Language Pack (PTB)
Zune Language Pack (PTG)
Zune Language Pack (RUS)
Zune Language Pack (SVE)
.
==== End Of File ===========================

 

 

 

Please let me know if you I missed anything or if you need further information.

 

Thanks

 

Dazedchaos (Kevin)



#5 The Pugilist

The Pugilist

  • Members
  • 826 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:01:54 PM

Posted 12 May 2014 - 07:53 PM

Kevin,

 

Thanks for the update, I am in the process of reviewing all of the required information and I will return to you with the next steps asap.

 

Thanks for your patience.


//Dave

#6 The Pugilist

The Pugilist

  • Members
  • 826 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:01:54 PM

Posted 14 May 2014 - 06:24 AM

Kevin,
 
We're going to start by uninstalling a program, then move on to run an anti-malware utility.

  • First, click "start" on the taskbar and then click on the "Control Panel" icon.
    Please doubleclick the "Add or Remove Programs" icon
    A list of programs installed will be "populated" this may take a bit of time.
    If they exist, uninstall the following by clicking on the following entries and selecting "remove":

    OptimizerPro

    Additional instructions can be found here if needed.
     
  • Next, we need to run ComboFix.
    • Download Combofix from any of the links below and save it to your desktop.

      Link 1
      Link 2
       
    • Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.
       
    • Double click ComboFix.exe & follow the prompts. When finished, it will produce a report for you.
       
    • Please post the C:\ComboFix.txt so we can continue cleaning the system.

//Dave

#7 The Pugilist

The Pugilist

  • Members
  • 826 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:01:54 PM

Posted 16 May 2014 - 07:24 AM

Kevin,

 

It has been over 48 hours since the last activity here, are you still in need of assistance?


//Dave

#8 dazedchaos

dazedchaos
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:12:54 PM

Posted 16 May 2014 - 08:02 PM

Hi Dave... It has been a busy week but I am back and still need help... I will be posting the combo fix report shortly. I did uninstall OptimizerPro as noted above.

 

Thanks,

 

Kevin



#9 dazedchaos

dazedchaos
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:12:54 PM

Posted 16 May 2014 - 08:40 PM

Dave,

 

Below are the combo fix results after the uninstall of Optimizer Pro, please let me know the next steps:

 

ComboFix 14-05-16.01 - Kevin 05/16/2014  21:12:58.1.2 - x64
Microsoft® Windows Vista™ Home Premium   6.0.6002.2.1252.1.1033.18.8186.5741 [GMT -4:00]
Running from: c:\users\Kevin\Desktop\ComboFix.exe
AV: Bitdefender Antivirus *Disabled/Outdated* {9A0813D8-CED6-F86B-072E-28D2AF25A83D}
FW: Bitdefender Firewall *Enabled* {A23392FD-84B9-F933-2C71-81E751F6EF46}
SP: Bitdefender Antispyware *Disabled/Outdated* {2169F23C-E8EC-F7E5-3D9E-13A0D4A2E280}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((   Files Created from 2014-04-17 to 2014-05-17  )))))))))))))))))))))))))))))))
.
.
2014-05-17 01:33 . 2014-05-17 01:33 -------- d-----w- c:\users\Victor\AppData\Local\temp
2014-05-17 01:33 . 2014-05-17 01:33 -------- d-----w- c:\users\Samara\AppData\Local\temp
2014-05-17 01:33 . 2014-05-17 01:33 -------- d-----w- c:\users\Kevin\AppData\Local\temp
2014-05-17 01:33 . 2014-05-17 01:33 -------- d-----w- c:\users\Default\AppData\Local\temp
.
.
.
((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-05-17 00:48 . 2014-04-13 01:53 119512 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2014-04-03 13:51 . 2014-04-13 01:52 63192 ----a-w- c:\windows\system32\drivers\mwac.sys
2014-04-03 13:51 . 2014-04-13 01:52 88280 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2014-04-03 13:50 . 2011-11-03 04:24 25816 ----a-w- c:\windows\system32\drivers\mbam.sys
2014-03-31 07:51 . 2006-11-02 12:35 90655440 ----a-w- c:\windows\system32\mrt.exe
2014-03-13 01:26 . 2012-04-02 03:50 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-03-13 01:26 . 2011-11-03 01:10 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-03-08 04:54 . 2014-04-13 02:09 17848832 ----a-w- c:\windows\system32\mshtml.dll
2014-03-08 04:06 . 2014-04-13 02:09 10926592 ----a-w- c:\windows\system32\ieframe.dll
2014-03-08 03:49 . 2014-04-13 02:09 2334720 ----a-w- c:\windows\system32\jscript9.dll
2014-03-08 03:41 . 2014-04-13 02:09 1347072 ----a-w- c:\windows\system32\urlmon.dll
2014-03-08 03:40 . 2014-04-13 02:09 1392128 ----a-w- c:\windows\system32\wininet.dll
2014-03-08 03:39 . 2014-04-13 02:09 1494528 ----a-w- c:\windows\system32\inetcpl.cpl
2014-03-08 03:38 . 2014-04-13 02:09 237056 ----a-w- c:\windows\system32\url.dll
2014-03-08 03:37 . 2014-04-13 02:09 85504 ----a-w- c:\windows\system32\jsproxy.dll
2014-03-08 03:34 . 2014-04-13 02:09 173056 ----a-w- c:\windows\system32\ieUnatt.exe
2014-03-08 03:34 . 2014-04-13 02:09 816640 ----a-w- c:\windows\system32\jscript.dll
2014-03-08 03:33 . 2014-04-13 02:09 599040 ----a-w- c:\windows\system32\vbscript.dll
2014-03-08 03:32 . 2014-04-13 02:09 729088 ----a-w- c:\windows\system32\msfeeds.dll
2014-03-08 03:32 . 2014-04-13 02:09 2147840 ----a-w- c:\windows\system32\iertutil.dll
2014-03-08 03:30 . 2014-04-13 02:09 96768 ----a-w- c:\windows\system32\mshtmled.dll
2014-03-08 03:29 . 2014-04-13 02:09 2382848 ----a-w- c:\windows\system32\mshtml.tlb
2014-03-08 03:24 . 2014-04-13 02:09 248320 ----a-w- c:\windows\system32\ieui.dll
2014-03-07 23:12 . 2014-04-13 02:09 1806848 ----a-w- c:\windows\SysWow64\jscript9.dll
2014-03-07 23:02 . 2014-04-13 02:09 1427968 ----a-w- c:\windows\SysWow64\inetcpl.cpl
2014-03-07 23:02 . 2014-04-13 02:09 1129472 ----a-w- c:\windows\SysWow64\wininet.dll
2014-03-07 22:57 . 2014-04-13 02:09 142848 ----a-w- c:\windows\SysWow64\ieUnatt.exe
2014-03-07 22:56 . 2014-04-13 02:09 421376 ----a-w- c:\windows\SysWow64\vbscript.dll
2014-03-07 22:52 . 2014-04-13 02:09 2382848 ----a-w- c:\windows\SysWow64\mshtml.tlb
.
.
(((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown 
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AnyDVD"="c:\program files (x86)\SlySoft\AnyDVD\AnyDVD.exe" [2014-03-25 93096]
"SpybotSD TeaTimer"="c:\program files (x86)\Spybot - Search & Destroy\TeaTimer.exe" [2009-03-05 2260480]
"iCloudServices"="c:\program files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe" [2013-10-31 59720]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2008-01-21 138240]
"com.apple.dav.bookmarks.daemon"="c:\program files (x86)\Common Files\Apple\Internet Services\BookmarkDAV_client.exe" [2013-10-02 59720]
"PrinterProDesktop"="c:\program files (x86)\Printer Pro Desktop\PrinterProDesktop.exe" [2012-02-02 2132992]
"BrowserSafer"="c:\program files (x86)\BrowserSafer\browsersafer.exe" [2013-07-23 223744]
"iFunBoxConnector"="c:\users\Kevin\Desktop\iFunbox\ifunbox.win\ifb_conn.exe" [2013-08-04 812544]
"Bitdefender Wallet Agent"="c:\program files\Bitdefender\Bitdefender\pmbxag.exe" [2014-04-13 567888]
"Bitdefender Wallet Application Agent"="c:\program files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe" [2014-04-13 614232]
"Bitdefender Wallet"="c:\program files\Bitdefender\Bitdefender\pwdmanui.exe" [2014-04-13 1001536]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"Dell Webcam Central"="c:\program files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell.exe" [2008-02-19 438403]
"FATrayAlert"="c:\program files (x86)\Sensible Vision\Fast Access\FATrayMon.exe" [2011-04-24 98488]
"PDVDDXSrv"="c:\program files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe" [2011-03-01 144616]
"BrowserSafer"="c:\program files (x86)\BrowserSafer\BrowserSafer.exe" [2013-07-23 223744]
"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2014-02-21 152392]
"FAStartup"="" [BU]
"APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2014-02-13 43848]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904]
"SpybotSnD"="c:\program files (x86)\Spybot - Search & Destroy\SpybotSD.exe" [2009-01-26 5365592]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"Bitdefender Wallet Agent"="c:\program files\Bitdefender\Bitdefender\pmbxag.exe" [2014-04-13 567888]
"Bitdefender Wallet"="c:\program files\Bitdefender\Bitdefender\pwdmanui.exe" [2014-04-13 1001536]
"Bitdefender Wallet Application Agent"="c:\program files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe" [2014-04-13 614232]
.
c:\users\Kevin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dell Dock.lnk - c:\program files\Dell\DellDock\DellDock.exe [2009-10-19 1316192]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Bluetooth.lnk - c:\program files\WIDCOMM\Bluetooth Software\BTTray.exe [2008-11-17 1066536]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Notification Packages REG_MULTI_SZ   scecli FAPassSync
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]
@="Service"
.
S2 AESTFilters;Andrea ST Filters Service;c:\windows\System32\DriverStore\FileRepository\stwrt64.inf_3e0eef5b\AESTSr64.exe;c:\windows\SYSNATIVE\DriverStore\FileRepository\stwrt64.inf_3e0eef5b\AESTSr64.exe [x]
.
.
--- Other Services/Drivers In Memory ---
.
*Deregistered* - CLKMDRV10_1628BCEA
*Deregistered* - MBAMWebAccessControl
.
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows NT\CurrentVersion\Svchost  - NetSvcs
Themes
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-04-13 01:20 1077576 ----a-w- c:\program files (x86)\Google\Chrome\Application\34.0.1847.116\Installer\chrmstp.exe
.
Contents of the 'Scheduled Tasks' folder
.
2014-05-17 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-02 01:26]
.
2014-05-17 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-05-30 01:41]
.
2014-05-17 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2012-05-30 01:41]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\__SafeBox1]
@="{152C96EB-288E-4EDC-B7C6-D21F8250ADF3}"
[HKEY_CLASSES_ROOT\CLSID\{152C96EB-288E-4EDC-B7C6-D21F8250ADF3}]
2013-07-08 19:59 206352 ----a-w- c:\program files\Bitdefender\Bitdefender Safebox\safeboxshell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\__SafeBox2]
@="{342DAA0B-D796-460D-8566-901E08A1CCAD}"
[HKEY_CLASSES_ROOT\CLSID\{342DAA0B-D796-460D-8566-901E08A1CCAD}]
2013-07-08 19:59 206352 ----a-w- c:\program files\Bitdefender\Bitdefender Safebox\safeboxshell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\__SafeBox3]
@="{57595DAE-1AE1-4D97-A49E-67CBB53B52DF}"
[HKEY_CLASSES_ROOT\CLSID\{57595DAE-1AE1-4D97-A49E-67CBB53B52DF}]
2013-07-08 19:59 206352 ----a-w- c:\program files\Bitdefender\Bitdefender Safebox\safeboxshell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\__SafeBox4]
@="{33816773-98AE-4723-ADE0-EBE54C8B5A67}"
[HKEY_CLASSES_ROOT\CLSID\{33816773-98AE-4723-ADE0-EBE54C8B5A67}]
2013-07-08 19:59 206352 ----a-w- c:\program files\Bitdefender\Bitdefender Safebox\safeboxshell.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"WPCUMI"="c:\windows\system32\WpcUmi.exe" [2006-11-02 182784]
"dleamon.exe"="c:\program files (x86)\Dell V310-V510 Series\dleamon.exe" [2011-01-24 770728]
"EzPrint"="c:\program files (x86)\Dell V310-V510 Series\ezprint.exe" [2011-01-24 139944]
"Zune Launcher"="c:\program files\Zune\ZuneLauncher.exe" [2011-08-05 163552]
"SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2010-01-21 487424]
"Bdagent"="c:\program files\Bitdefender\Bitdefender\bdagent.exe" [2014-04-13 1742064]
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = about:blank
mStart Page = about:blank
mLocal Page = c:\windows\SysWOW64\blank.htm
uSearchAssistant = hxxp://www.google.com
IE: E&xport to Microsoft Excel - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: Send image to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Send page to &Bluetooth Device... - c:\program files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
LSP: c:\windows\system32\wpclsp.dll
LSP: %SystemRoot%\system32\PrxerDrv.dll
Trusted Zone: rhapsody.com\rhap-app-4-0
Trusted Zone: rhapsody.com\rhapreg
TCP: DhcpNameServer = 216.144.187.101 204.186.80.251 216.144.187.199
DPF: Garmin Communicator Plug-In - hxxps://static.garmincdn.com/gcp/ie/4.0.1.0/GarminAxControl_32.CAB
FF - ProfilePath - c:\users\Kevin\AppData\Roaming\Mozilla\Firefox\Profiles\qlyym5ge.default\
FF - prefs.js: browser.search.selectedEngine - Conduit Search
FF - ExtSQL: 1969-12-31 19:00; {7affbfae-c4e2-4915-8c0f-00fa3ec610a1}; c:\users\Kevin\AppData\Roaming\Mozilla\Firefox\Profiles\qlyym5ge.default\extensions\{7affbfae-c4e2-4915-8c0f-00fa3ec610a1}
FF - user.js: extensions.claro.tlbrSrchUrl - 
FF - user.js: extensions.claro.id - b8c9c2ea0000000000000022fb0d685a
FF - user.js: extensions.claro.appId - {C3110516-8EFC-49D6-8B72-69354F332062}
FF - user.js: extensions.claro.instlDay - 15662
FF - user.js: extensions.claro.vrsn - 1.8.3.10
FF - user.js: extensions.claro.vrsni - 1.8.3.10
FF - user.js: extensions.claro_i.vrsnTs - 1.8.3.102:15
FF - user.js: extensions.claro.prtnrId - claro
FF - user.js: extensions.claro.prdct - claro
FF - user.js: extensions.claro.aflt - babsst
FF - user.js: extensions.claro_i.smplGrp - none
FF - user.js: extensions.claro.tlbrId - base
FF - user.js: extensions.claro.instlRef - sst
FF - user.js: extensions.claro.dfltLng - en
FF - user.js: extensions.claro.excTlbr - false
FF - user.js: extensions.claro.admin - false
FF - user.js: extensions.shownSelectionUI - true
FF - user.js: extensions.delta.tlbrSrchUrl - 
FF - user.js: extensions.delta.id - b8c9c2ea0000000000000022fb0d685a
FF - user.js: extensions.delta.appId - {C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
FF - user.js: extensions.delta.instlDay - 15912
FF - user.js: extensions.delta.vrsn - 1.8.22.0
FF - user.js: extensions.delta.vrsni - 1.8.22.0
FF - user.js: extensions.delta.vrsnTs - 1.8.22.00:58
FF - user.js: extensions.delta.prtnrId - delta
FF - user.js: extensions.delta.prdct - delta
FF - user.js: extensions.delta.aflt - babsst
FF - user.js: extensions.delta.smplGrp - none
FF - user.js: extensions.delta.tlbrId - base
FF - user.js: extensions.delta.instlRef - sst
FF - user.js: extensions.delta.dfltLng - en
FF - user.js: extensions.delta.excTlbr - false
FF - user.js: extensions.delta.ffxUnstlRst - true
FF - user.js: extensions.delta.admin - false
FF - user.js: extensions.delta_i.babTrack - affID=123485&tsp=4955
FF - user.js: extensions.delta_i.babExt - 
FF - user.js: extensions.delta_i.srcExt - ss
FF - user.js: extensions.delta.autoRvrt - false
FF - user.js: extensions.delta.rvrt - false
FF - user.js: extensions.delta.newTab - false
.
- - - - ORPHANS REMOVED - - - -
.
SafeBoot-mbamchameleon
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\{1E444BE9-B8EC-4ce6-8C2B-6536FB7F4FB7}]
"ImagePath"="\??\c:\program files (x86)\CyberLink\PowerDVD DX\000.fcl"
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_12_0_0_77_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_12_0_0_77_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_12_0_0_77_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_12_0_0_77_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_12_0_0_77.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.12"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_12_0_0_77.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_12_0_0_77.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_12_0_0_77.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{D27CDB6B-AE6D-11CF-96B8-444553540000}]
@Denied: (A 2) (Everyone)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{D27CDB6B-AE6D-11CF-96B8-444553540000}\1.0]
@="Shockwave Flash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}]
@Denied: (A 2) (Everyone)
@=""
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{FAB3E735-69C7-453B-A446-B6823C6DF1C9}\1.0]
@="FlashBroker"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\VideoLAN.VLCPlugin.*1*]
@="?????????????????? v1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\VideoLAN.VLCPlugin.*1*\CLSID]
@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\VideoLAN.VLCPlugin.*2*]
@="?????????????????? v2"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\VideoLAN.VLCPlugin.*2*\CLSID]
@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*1*]
@="?????????????????? v1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*2*]
@="?????????????????? v2"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes]
"SymbolicLinkValue"=hex(6):5c,00,52,00,45,00,47,00,49,00,53,00,54,00,52,00,59,
   00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,4f,00,46,00,\
.
Completion time: 2014-05-16  21:36:52
ComboFix-quarantined-files.txt  2014-05-17 01:36
ComboFix2.txt  2014-04-19 04:18
.
Pre-Run: 47,306,829,824 bytes free
Post-Run: 47,214,465,024 bytes free
.
- - End Of File - - EE936A08927E0446EE438694455F364D
5C616939100B85E558DA92B899A0FC36
 

 

Thanks

 

Kevin



#10 The Pugilist

The Pugilist

  • Members
  • 826 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:01:54 PM

Posted 18 May 2014 - 08:40 AM

Kevin,

 

Before we go further, I would like to clarify the exact problem that you are having with your internet connection. 

 

As specifically as you can, please describe to me the problems that you see when attempting to access the internet.  Along with that, here are a few more questions I have:

  • Can you access any web pages or only some?
  • Is the problem uniform across different web browsers?
  • Your computer is connected to the internet via wireless, does the problem persist if you connect to your router with an Ethernet cable (if you have one)?
  • Can other programs work? E.G. Windows updates, antivirus updates, Mail programs, etc

//Dave

#11 dazedchaos

dazedchaos
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:12:54 PM

Posted 18 May 2014 - 11:27 AM

I am unable to access the Internet via an ethernet or wireless connection. I have tried using Firefox Google Chrome and Internet Explorer without any success. I am also unable to access the Internet with any other programs, I am unable to update windows or any other applications.

#12 The Pugilist

The Pugilist

  • Members
  • 826 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:01:54 PM

Posted 19 May 2014 - 10:14 AM

Okay, thanks for the additional information. :) I have one more question for you and then some steps to take to attempt to resolve your problem.

 

  1. The only remaining question that I would like to ask you is this: When did the internet connection stop working?  Were there any events that you can recall that precipitated your loss of connectivity?  Did you install/uninstall any software, make system changes, etc?

     
  2. We Need to Run a Batch Script
  • Press the Windows Logo in the bottom left corner of your screen.
  • In the 10-16-2011%204-33-46%20PM.png box, enter notepad and press Enter.
  • Highlight the contents of the following codebox, and copy and paste that text into notepad.
    netsh winsock reset
    del /f /q "%~f0"
  • Select File -> Save.
  • Press the Desktop button on the left side of the save dialog.
  • In the 10-16-2011%204-37-58%20PM.png box, type in Fix.bat.
  • Press 10-16-2011%204-36-39%20PM.png.
  • Close Notepad.
  • Right click 10-16-2011%204-34-34%20PM.png on your desktop, and choose 10-16-2011%204-40-48%20PM.png.
  • Press Yes if prompted by User Account Control. 

 

 

 

EDIT: fixed formatting


Edited by The Pugilist, 19 May 2014 - 10:19 AM.

//Dave

#13 dazedchaos

dazedchaos
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:12:54 PM

Posted 20 May 2014 - 07:25 PM

Dave... One of the last things I was doing was working on a friends external hard drive and scanning for viruses and the next time I started my PC I was experiencing sluggish speeds and eventually I was unable to connect to the internet after a couple more restarts. 

 

I ran the Fix.bat file as requested and I am still not able to connect, should I be expecting something to happen. All that I am seeing is that the Fix.bat file disappeared.

 

Thanks,

 

Kevin



#14 The Pugilist

The Pugilist

  • Members
  • 826 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:01:54 PM

Posted 21 May 2014 - 09:45 AM

Kevin,
 

One of the last things I was doing was working on a friends external hard drive and scanning for viruses and the next time I started my PC I was experiencing sluggish speeds and eventually I was unable to connect to the internet after a couple more restarts.

Understood.

 

All that I am seeing is that the Fix.bat file disappeared.

 That's normal.

 
At this time, I'd like you to do a few things for me:

  • Restart your computer.
  • Generate a fresh Farbar Minitoolbox Log
    • Please download MiniToolBox, (if you do not already have it).  Save it to your desktop and run it.
      Checkmark the following checkboxes:
      • Flush DNS
      • Report IE Proxy Settings
      • Reset IE Proxy Settings
      • Report FF Proxy Settings
      • Reset FF Proxy Settings
      • List content of Hosts
      • List IP configuration
      • List Winsock Entries
      • List last 10 Event Viewer log
      • List Installed Programs
      • List Devices
      • List Users, Partitions and Memory size.
      • List Minidump Files
      • List Restore Points
    • Click Go and post the result (Result.txt). A copy of Result.txt will be saved in the same directory the tool is run.

      Note: When using "Reset FF Proxy Settings" option Firefox should be closed.
  • Please download Farbar Recovery Scan Tool and save it to your Desktop.

    Note: You need to run the version compatible with your system. If you are not sure which version applies to your system, download both of them and try to run them. Only one of them will run on your system, that will be the right version.

    • Right-click FRST then click "Run as administrator" (XP users: click run after receipt of Windows Security Warning - Open File).

    • When the tool opens, click Yes to disclaimer.

    • Press the Scan button.

    • When finished, it will produce a log called FRST.txt in the same directory the tool was run from.

    • Please copy and paste the log in your next reply.

Note 2: The first time the tool is run it generates another log (Addition.txt - also located in the same directory the tool was run from). Please also paste that, along with the FRST.txt into your next reply.


//Dave

#15 dazedchaos

dazedchaos
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:12:54 PM

Posted 21 May 2014 - 09:42 PM

Dave... I downloaded both versions of the Farbar Recovery Scan Tool and the 64bit version is the one for me, but as soon as I open it with "Run as Administrator" it says "Checking for update. Please wait..." but as I am unable to connect to the internet on that machine I keep getting (Not Responding) and I have to task manager out of the app. 

 

Below are the results of the Farbar Minitoolbox Log:

 

MiniToolBox by Farbar  Version: 23-01-2014

Ran by Kevin (administrator) on 21-05-2014 at 22:16:08
Running from "C:\Users\Kevin\Desktop"
Microsoft® Windows Vista™ Home Premium  Service Pack 2 (X64)
Boot Mode: Normal
***************************************************************************
 
========================= Flush DNS: ===================================
 
Windows IP Configuration
 
Successfully flushed the DNS Resolver Cache.
 
========================= IE Proxy Settings: ============================== 
 
Proxy is not enabled.
No Proxy Server is set.
 
"Reset IE Proxy Settings": IE Proxy Settings were reset.
 
========================= FF Proxy Settings: ============================== 
 
 
"Reset FF Proxy Settings": Firefox Proxy settings were reset.
 
========================= Hosts content: =================================
 
 
 
216.239.32.20 www.google.ae 
216.239.32.20 www.google.at 
216.239.32.20 www.google.be 
216.239.32.20 www.google.ca 
216.239.32.20 www.google.ch 
216.239.32.20 www.google.cl 
216.239.32.20 www.google.co.il 
216.239.32.20 www.google.co.in 
216.239.32.20 www.google.co.jp 
216.239.32.20 www.google.co.kr 
216.239.32.20 www.google.co.nz 
216.239.32.20 www.google.co.uk 
216.239.32.20 www.google.co.ve 
216.239.32.20 www.google.co.za 
216.239.32.20 www.google.com 
216.239.32.20 www.google.com.ar 
216.239.32.20 www.google.com.au 
216.239.32.20 www.google.com.br 
216.239.32.20 www.google.com.co 
216.239.32.20 www.google.com.gr 
216.239.32.20 www.google.com.hk 
216.239.32.20 www.google.com.mx 
216.239.32.20 www.google.com.my 
216.239.32.20 www.google.com.pe 
216.239.32.20 www.google.com.ph 
216.239.32.20 www.google.com.pk 
216.239.32.20 www.google.com.sg 
216.239.32.20 www.google.com.tr 
216.239.32.20 www.google.com.tw 
216.239.32.20 www.google.com.ua 
216.239.32.20 www.google.de 
216.239.32.20 www.google.dk 
216.239.32.20 www.google.es 
216.239.32.20 www.google.fi 
216.239.32.20 www.google.fr 
216.239.32.20 www.google.it 
216.239.32.20 www.google.lt 
216.239.32.20 www.google.lv 
216.239.32.20 www.google.nl 
216.239.32.20 www.google.pl 
216.239.32.20 www.google.pt 
216.239.32.20 www.google.ro 
216.239.32.20 www.google.ru 
 
127.0.0.1       localhost
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 1000gratisproben.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
 
There are 15471 more lines starting with "127.0.0.1"
 
========================= IP Configuration: ================================
 
Intel® WiFi Link 5100 AGN = Wireless Network Connection (Connected)
Bluetooth Device (Personal Area Network) = Bluetooth Network Connection (Media disconnected)
Broadcom NetLink ™ Gigabit Ethernet = Local Area Connection (Media disconnected)
 
 
# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4
 
reset
 
 
popd
# End of IPv4 configuration
 
 
 
Windows IP Configuration
 
   Host Name . . . . . . . . . . . . : Kevin-XPS
   Primary Dns Suffix  . . . . . . . : 
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
   DNS Suffix Search List. . . . . . : cmts.tv13.ptd.net
 
Wireless LAN adapter Wireless Network Connection:
 
   Connection-specific DNS Suffix  . : cmts.tv13.ptd.net
   Description . . . . . . . . . . . : Intel® WiFi Link 5100 AGN
   Physical Address. . . . . . . . . : 00-22-FB-0D-68-5A
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
   IPv6 Address. . . . . . . . . . . : fd8c:8799:5117:0:dde5:dd50:80dc:af2f(Preferred) 
   Temporary IPv6 Address. . . . . . : fd8c:8799:5117:0:acdf:58ef:32a2:8259(Preferred) 
   Link-local IPv6 Address . . . . . : fe80::dde5:dd50:80dc:af2f%14(Preferred) 
   IPv4 Address. . . . . . . . . . . : 192.168.127.104(Preferred) 
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Lease Obtained. . . . . . . . . . : Wednesday, May 21, 2014 9:48:30 PM
   Lease Expires . . . . . . . . . . : Thursday, May 22, 2014 9:48:23 PM
   Default Gateway . . . . . . . . . : 192.168.127.1
   DHCP Server . . . . . . . . . . . : 192.168.127.1
   DHCPv6 IAID . . . . . . . . . . . : 335553275
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-16-43-8C-FE-00-22-19-D8-85-FE
   DNS Servers . . . . . . . . . . . : 216.144.187.101
                                       204.186.80.251
                                       216.144.187.199
   NetBIOS over Tcpip. . . . . . . . : Enabled
 
Ethernet adapter Local Area Connection:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : cmts.tv13.ptd.net
   Description . . . . . . . . . . . : Broadcom NetLink ™ Gigabit Ethernet
   Physical Address. . . . . . . . . : 00-22-19-D8-85-FE
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
 
Ethernet adapter Bluetooth Network Connection:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Bluetooth Device (Personal Area Network)
   Physical Address. . . . . . . . . : 00-22-68-E1-E0-E0
   DHCP Enabled. . . . . . . . . . . : Yes
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter Local Area Connection* 11:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : isatap.{12A5758D-B86B-4A1C-9C64-27D2DE4B7697}
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter Local Area Connection* 12:
 
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physical Address. . . . . . . . . : 02-00-54-55-4E-01
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   IPv6 Address. . . . . . . . . . . : 2001:0:5ef5:79fd:34c3:1611:3f57:8097(Preferred) 
   Link-local IPv6 Address . . . . . : fe80::34c3:1611:3f57:8097%13(Preferred) 
   Default Gateway . . . . . . . . . : 
   NetBIOS over Tcpip. . . . . . . . : Disabled
 
Tunnel adapter Local Area Connection* 13:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : isatap.{7B384F0E-8B6E-4639-8BA0-51829DB4BABF}
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter Local Area Connection* 16:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : 
   Description . . . . . . . . . . . : isatap.{12A5758D-B86B-4A1C-9C64-27D2DE4B7697}
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
 
Tunnel adapter Local Area Connection* 17:
 
   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : cmts.tv13.ptd.net
   Description . . . . . . . . . . . : isatap.cmts.tv13.ptd.net
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
Server:  dns.tv13.ptd.net
Address:  216.144.187.101
 
Name:    google.com
Addresses:  2a00:1450:4006:802::100e
 204.186.48.49
 204.186.48.53
 204.186.48.57
 204.186.48.59
 204.186.48.16
 204.186.48.20
 204.186.48.24
 204.186.48.26
 204.186.48.27
 204.186.48.31
 204.186.48.35
 204.186.48.37
 204.186.48.38
 204.186.48.42
 204.186.48.46
 204.186.48.48
 
 
 
Pinging google.com [204.186.48.53] with 32 bytes of data:
 
General failure.
 
Request timed out.
 
 
 
Ping statistics for 204.186.48.53:
 
    Packets: Sent = 2, Received = 0, Lost = 2 (100% loss),
 
Server:  dns.tv13.ptd.net
Address:  216.144.187.101
 
Name:    yahoo.com
Addresses:  98.138.253.109
 98.139.183.24
 206.190.36.45
 
 
 
Pinging yahoo.com [206.190.36.45] with 32 bytes of data:
 
General failure.
 
Request timed out.
 
 
 
Ping statistics for 206.190.36.45:
 
    Packets: Sent = 2, Received = 0, Lost = 2 (100% loss),
 
 
 
Pinging 127.0.0.1 with 32 bytes of data:
 
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
 
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
 
 
 
Ping statistics for 127.0.0.1:
 
    Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
 
Approximate round trip times in milli-seconds:
 
    Minimum = 0ms, Maximum = 0ms, Average = 0ms
 
===========================================================================
Interface List
 14 ...00 22 fb 0d 68 5a ...... Intel® WiFi Link 5100 AGN
 12 ...00 22 19 d8 85 fe ...... Broadcom NetLink ™ Gigabit Ethernet
 11 ...00 22 68 e1 e0 e0 ...... Bluetooth Device (Personal Area Network)
  1 ........................... Software Loopback Interface 1
 15 ...00 00 00 00 00 00 00 e0  isatap.{12A5758D-B86B-4A1C-9C64-27D2DE4B7697}
 13 ...02 00 54 55 4e 01 ...... Teredo Tunneling Pseudo-Interface
 19 ...00 00 00 00 00 00 00 e0  isatap.{7B384F0E-8B6E-4639-8BA0-51829DB4BABF}
 17 ...00 00 00 00 00 00 00 e0  isatap.{12A5758D-B86B-4A1C-9C64-27D2DE4B7697}
 18 ...00 00 00 00 00 00 00 e0  isatap.cmts.tv13.ptd.net
===========================================================================
 
IPv4 Route Table
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway       Interface  Metric
          0.0.0.0          0.0.0.0    192.168.127.1  192.168.127.104     25
        127.0.0.0        255.0.0.0         On-link         127.0.0.1    306
        127.0.0.1  255.255.255.255         On-link         127.0.0.1    306
  127.255.255.255  255.255.255.255         On-link         127.0.0.1    306
    192.168.127.0    255.255.255.0         On-link   192.168.127.104    281
  192.168.127.104  255.255.255.255         On-link   192.168.127.104    281
  192.168.127.255  255.255.255.255         On-link   192.168.127.104    281
        224.0.0.0        240.0.0.0         On-link         127.0.0.1    306
        224.0.0.0        240.0.0.0         On-link   192.168.127.104    281
  255.255.255.255  255.255.255.255         On-link         127.0.0.1    306
  255.255.255.255  255.255.255.255         On-link   192.168.127.104    281
===========================================================================
Persistent Routes:
  None
 
IPv6 Route Table
===========================================================================
Active Routes:
 If Metric Network Destination      Gateway
  1    306 ::1/128                  On-link
 13     18 2001::/32                On-link
 13    266 2001:0:5ef5:79fd:34c3:1611:3f57:8097/128
                                    On-link
 14     33 fd8c:8799:5117::/64      On-link
 14    281 fd8c:8799:5117:0:acdf:58ef:32a2:8259/128
                                    On-link
 14    281 fd8c:8799:5117:0:dde5:dd50:80dc:af2f/128
                                    On-link
 14    281 fe80::/64                On-link
 13    266 fe80::/64                On-link
 13    266 fe80::34c3:1611:3f57:8097/128
                                    On-link
 14    281 fe80::dde5:dd50:80dc:af2f/128
                                    On-link
  1    306 ff00::/8                 On-link
 13    266 ff00::/8                 On-link
 14    281 ff00::/8                 On-link
===========================================================================
Persistent Routes:
  None
========================= Winsock entries =====================================
 
Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [48128] (Microsoft Corporation)
Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [50176] (Microsoft Corporation)
Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [62464] (Microsoft Corporation)
Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [62464] (Microsoft Corporation)
Catalog5 05 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Catalog5 06 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
Catalog5 07 C:\Windows\SysWOW64\winrnr.dll [19968] (Microsoft Corporation)
Catalog5 08 C:\Windows\SysWOW64\wshbth.dll [34304] (Microsoft Corporation)
Catalog5 09 C:\Windows\SysWOW64\PrxerNsp.dll [56424] ()
Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
Catalog9 11 C:\Windows\SysWOW64\mswsock.dll [223232] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [61440] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\napinsp.dll [62976] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [78848] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [78848] (Microsoft Corporation)
x64-Catalog5 05 C:\Program Files\Bonjour\mdnsNSP.dll [132968] (Apple Inc.)
x64-Catalog5 06 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
x64-Catalog5 07 C:\Windows\System32\winrnr.dll [27648] (Microsoft Corporation)
x64-Catalog5 08 C:\Windows\System32\wshbth.dll [44032] (Microsoft Corporation)
x64-Catalog5 09 C:\Windows\System32\PrxerNsp.dll [57448] ()
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
x64-Catalog9 11 C:\Windows\System32\mswsock.dll [304128] (Microsoft Corporation)
 
========================= Event log errors: ===============================
 
Application errors:
==================
Error: (05/21/2014 10:11:34 PM) (Source: Application Hang) (User: )
Description: The program SpybotSD.exe version 1.6.2.46 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Problem Reports and Solutions control panel.
Process ID: 120c
Start Time: 01cf75602ea06ed0
Termination Time: 34
 
Error: (05/21/2014 09:50:14 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Dependent Assembly Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (05/21/2014 09:48:41 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (05/21/2014 09:48:17 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Dependent Assembly Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (05/20/2014 08:02:55 PM) (Source: Application Hang) (User: )
Description: The program SpybotSD.exe version 1.6.2.46 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Problem Reports and Solutions control panel.
Process ID: 1250
Start Time: 01cf7487605bf893
Termination Time: 8
 
Error: (05/20/2014 07:58:12 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Dependent Assembly Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (05/20/2014 07:55:42 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (05/20/2014 07:55:17 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Dependent Assembly Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
Error: (05/16/2014 09:56:34 PM) (Source: Application Hang) (User: )
Description: The program SpybotSD.exe version 1.6.2.46 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Problem Reports and Solutions control panel.
Process ID: 5d4
Start Time: 01cf7172ccb98dcb
Termination Time: 15
 
Error: (05/16/2014 09:53:07 PM) (Source: SideBySide) (User: )
Description: Activation context generation failed for "Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Dependent Assembly Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" could not be found.
Please use sxstrace.exe for detailed diagnosis.
 
 
System errors:
=============
Error: (05/21/2014 09:49:06 PM) (Source: Service Control Manager) (User: )
Description: Beep
 
Error: (05/21/2014 09:49:06 PM) (Source: Service Control Manager) (User: )
Description: SBSD Security Center Service%%1053
 
Error: (05/21/2014 09:49:06 PM) (Source: Service Control Manager) (User: )
Description: 30000SBSD Security Center Service
 
Error: (05/21/2014 09:48:42 PM) (Source: Service Control Manager) (User: )
Description: MCSTRM%%2
 
Error: (05/20/2014 08:27:01 PM) (Source: Service Control Manager) (User: )
Description: Windows Update
 
Error: (05/20/2014 08:26:55 PM) (Source: DCOM) (User: )
Description: {6295DF2D-35EE-11D1-8707-00C04FD93327}
 
Error: (05/20/2014 07:55:59 PM) (Source: Service Control Manager) (User: )
Description: Beep
 
Error: (05/20/2014 07:55:43 PM) (Source: Service Control Manager) (User: )
Description: MCSTRM%%2
 
Error: (05/16/2014 10:25:23 PM) (Source: Service Control Manager) (User: )
Description: Windows Update
 
Error: (05/16/2014 09:56:38 PM) (Source: Service Control Manager) (User: )
Description: Google Update Service (gupdate)
 
 
Microsoft Office Sessions:
=========================
Error: (05/21/2014 10:11:34 PM) (Source: Application Hang)(User: )
Description: SpybotSD.exe1.6.2.46120c01cf75602ea06ed034
 
Error: (05/21/2014 09:50:14 PM) (Source: SideBySide)(User: )
Description: Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
 
Error: (05/21/2014 09:48:41 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (05/21/2014 09:48:17 PM) (Source: SideBySide)(User: )
Description: Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Windows\system32\BtRez.dll
 
Error: (05/20/2014 08:02:55 PM) (Source: Application Hang)(User: )
Description: SpybotSD.exe1.6.2.46125001cf7487605bf8938
 
Error: (05/20/2014 07:58:12 PM) (Source: SideBySide)(User: )
Description: Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
 
Error: (05/20/2014 07:55:42 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
 
Error: (05/20/2014 07:55:17 PM) (Source: SideBySide)(User: )
Description: Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Windows\system32\BtRez.dll
 
Error: (05/16/2014 09:56:34 PM) (Source: Application Hang)(User: )
Description: SpybotSD.exe1.6.2.465d401cf7172ccb98dcb15
 
Error: (05/16/2014 09:53:07 PM) (Source: SideBySide)(User: )
Description: Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
 
 
CodeIntegrity Errors:
===================================
  Date: 2014-05-21 21:49:14.561
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-05-20 19:56:04.074
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-05-20 19:56:03.887
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-05-16 21:52:18.207
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-05-16 20:47:45.194
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-05-11 15:57:23.738
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-04-26 23:58:45.848
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-04-26 23:30:01.417
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-04-26 22:26:20.176
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.
 
  Date: 2014-04-26 22:12:18.839
  Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mwac.sys because the set of per-page image hashes could not be found on the system.
 
 
=========================== Installed Programs ============================
 
Apple Mobile Device Support (Version: 7.1.1.3)
Bitdefender Total Security (Version: 17.25.0.1074)
Blue Coat K9 Web Protection (Version: 4.3.188)
Bonjour (Version: 3.0.0.10)
Broadcom Gigabit NetLink Controller (Version: 11.07.01)
Dell Dock (Version: 2.0)
Dell Driver Download Manager (Version: 2.1.0.0)
FastAccess (Version: 2.4.97.1)
iCloud (Version: 2.1.3.25)
Integrated Webcam Driver (1.06.03.0309)   (Version: 1.06.03.0309)
Intel® PROSet/Wireless WiFi Driver (Version: 12.00.4000)
iTunes (Version: 11.1.5.5)
Java 7 Update 7 (64-bit) (Version: 7.0.70)
Java™ 6 Update 30 (64-bit) (Version: 6.0.300)
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
SanDiskSecureAccess_Manager.exe (Version: 1.1.19755)
SpyroPortalDriver (Version: 1.0.0)
WIDCOMM Bluetooth Software 6.2.0.6600 (Version: 6.2.0.6600)
Windows Live Family Safety (Version: 15.4.3555.0308)
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0)
Windows Live Language Selector (Version: 15.4.3555.0308)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Mobile Device Updater Component (Version: 04.08.2345.00)
XBMC
Zune (Version: 04.08.2345.00)
Zune Language Pack (CHS) (Version: 04.08.2345.00)
Zune Language Pack (CHT) (Version: 04.08.2345.00)
Zune Language Pack (CSY) (Version: 04.08.2345.00)
Zune Language Pack (DAN) (Version: 04.08.2345.00)
Zune Language Pack (DEU) (Version: 04.08.2345.00)
Zune Language Pack (ELL) (Version: 04.08.2345.00)
Zune Language Pack (ESP) (Version: 04.08.2345.00)
Zune Language Pack (FIN) (Version: 04.08.2345.00)
Zune Language Pack (FRA) (Version: 04.08.2345.00)
Zune Language Pack (HUN) (Version: 04.08.2345.00)
Zune Language Pack (IND) (Version: 04.08.2345.00)
Zune Language Pack (ITA) (Version: 04.08.2345.00)
Zune Language Pack (JPN) (Version: 04.08.2345.00)
Zune Language Pack (KOR) (Version: 04.08.2345.00)
Zune Language Pack (MSL) (Version: 04.08.2345.00)
Zune Language Pack (NLD) (Version: 04.08.2345.00)
Zune Language Pack (NOR) (Version: 04.08.2345.00)
Zune Language Pack (PLK) (Version: 04.08.2345.00)
Zune Language Pack (PTB) (Version: 04.08.2345.00)
Zune Language Pack (PTG) (Version: 04.08.2345.00)
Zune Language Pack (RUS) (Version: 04.08.2345.00)
Zune Language Pack (SVE) (Version: 04.08.2345.00)
 
========================= Devices: ================================
 
Name: SM Bus Controller
Description: SM Bus Controller
Class Guid: 
Manufacturer: 
Service: 
Problem: : This device is not configured correctly. (Code1)
Resolution: You may be prompted to provide the path of the driver. Windows may have the driver built-in, or may still have the driver files installed from the last time that you set up the device. If you are asked for the driver and you do not have it, you can try to download the latest driver from the hardware vendor’s Web site.
In the device properties dialog box, click the "Driver" tab, and then click "Update Driver" to start the "Hardware Update Wizard". Follow the instructions to update the driver. If updating the driver does not work, see your hardware documentation for more information.
 
Name: Activision Xbox360 Spyro Portal
Description: Activision Xbox360 Spyro Portal
Class Guid: {4a9c2fa7-d63f-44c5-a247-bb3289a3739f}
Manufacturer: Activision
Service: WinUSB
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
 
 
========================= Memory info: ===================================
 
Percentage of memory in use: 28%
Total physical RAM: 8185.95 MB
Available physical RAM: 5831.42 MB
Total Pagefile: 16424.86 MB
Available Pagefile: 14060.2 MB
Total Virtual: 4095.88 MB
Available Virtual: 3995.97 MB
 
========================= Partitions: =====================================
 
1 Drive c: () (Fixed) (Total:287.94 GB) (Free:43.92 GB) NTFS
 
========================= Users: ========================================
 
User accounts for \\KEVIN-XPS
 
Administrator            Guest                    Kevin                    
Mcx1                     Samara                   Victor                   
 
========================= Minidump Files ==================================
 
C:\Windows\Minidump\Mini022113-01.dmp
C:\Windows\Minidump\Mini041314-01.dmp
C:\Windows\Minidump\Mini122113-01.dmp
========================= Restore Points ==================================
 
17-05-2014 01:10:32 ComboFix created restore point
 
**** End of log ****
 
Thanks





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users