GLACHiie
2011-03-12, 07:42
APOLOGY.....im new too this... is this what u are lookin for
DDS (Ver_11-03-05.01) - NTFS_AMD64
Run by ERICKA at 0:36:41.33 on Sat 03/12/2011
Internet Explorer: 8.0.7600.16385
Microsoft Windows 7 Home Premium 6.1.7600.0.1252.1.1033.18.4025.2617 [GMT -5:00]
.
AV: Norton Internet Security *Enabled/Updated* {88C95A36-8C3B-2F2C-1B8B-30FCCFDC4855}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Norton Internet Security *Enabled/Updated* {33A8BBD2-AA01-20A2-213B-0B8EB45B02E8}
FW: Norton Internet Security *Enabled* {B0F2DB13-C654-2E74-30D4-99C9310F0F2E}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\ccSvcHst.exe
C:\Program Files\Gateway\Gateway Power Management\ePowerSvc.exe
C:\Program Files (x86)\Gateway\Registration\GregHSRW.exe
C:\Windows\system32\svchost.exe -k HsfXAudioService
C:\Program Files (x86)\NewTech Infosystems\Gateway MyBackup\IScheduleSvc.exe
C:\Program Files (x86)\Common Files\PC Tools\sMonitor\StartManSvc.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Gateway\Gateway Updater\UpdaterService.exe
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\taskhost.exe
C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\ccSvcHst.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\Dwm.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\Gateway\Gateway Power Management\ePowerTray.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\system32\igfxext.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe
C:\Program Files (x86)\NewTech Infosystems\Gateway MyBackup\BackupManagerTray.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files\Gateway\Gateway Power Management\ePowerEvent.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\wuauclt.exe
c:\PROGRA~2\MICROS~3\wkcalrem.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\SysWow64\Macromed\Flash\FlashUtil10c.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Users\ERICKA\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JJ2KILQP\dds[1].scr
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&m=nv54_series&r=27360311m0c6l04c0z125a4451u575
uDefault_Page_URL = hxxp://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&m=nv54_series&r=27360311m0c6l04c0z125a4451u575
mDefault_Page_URL = hxxp://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&m=nv54_series&r=27360311m0c6l04c0z125a4451u575
mStart Page = hxxp://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&m=nv54_series&r=27360311m0c6l04c0z125a4451u575
mWinlogon: Userinit=userinit.exe
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: DivX Plus Web Player HTML5 <video>: {326e768d-4182-46fd-9c16-1449a49795f4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
BHO: DivX HiQ: {593ddec6-7468-4cdd-90e1-42dadaa222e9} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Symantec NCO BHO: {602adb0e-4aff-4217-8aa1-95dac4dfa408} - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\coIEPlg.dll
BHO: Symantec Intrusion Prevention: {6d53ec84-6aae-4787-aeee-f4628f01010c} - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\IPSBHO.DLL
BHO: Partner BHO Class: {83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} - C:\ProgramData\Partner\Partner.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll
BHO: Google Dictionary Compression sdch: {c84d72fe-e17d-4195-bb24-76c02e2e7c4e} - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll
TB: Norton Toolbar: {7febefe3-6b19-4349-98d2-ffb09d4b49ca} - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\coIEPlg.dll
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
uRun: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
mRun: [SSDMonitor] C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe
mRun: [BackupManagerTray] "C:\Program Files (x86)\NewTech Infosystems\Gateway MyBackup\BackupManagerTray.exe" -h -k
mRun: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
mRun: [NortonOnlineBackupReminder] "C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe" UNATTENDED
mRun: [PDVD8LanguageShortcut] "c:\Program Files (x86)\CyberLink\PowerDVD8\Language\Language.exe"
mRun: [RemoteControl8] "c:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe"
mRun: [UpdateP2GoShortCut] "c:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "c:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
mRun: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
StartupFolder: C:\Users\ERICKA\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\ERUNTA~1.LNK - C:\Program Files (x86)\ERUNT\AUTOBACK.EXE
uPolicies-explorer: NoResolveTrack = 1 (0x1)
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
Handler: symres - {AA1061FE-6C41-421f-9344-69640C9732AB} - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\CoIEPlg.dll
BHO-X64: Partner BHO Class: {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} - C:\ProgramData\Partner\Partner64.dll
BHO-X64: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
BHO-X64: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg64.dll
TB-X64: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
TB-X64: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
mRun-x64: [Acer ePower Management] C:\Program Files\Gateway\Gateway Power Management\ePowerTray.exe
mRun-x64: [IgfxTray] C:\Windows\system32\igfxtray.exe
mRun-x64: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
mRun-x64: [Persistence] C:\Windows\system32\igfxpers.exe
Hosts: 127.0.0.1 www.spywareinfo.com
.
============= SERVICES / DRIVERS ===============
.
R0 SymEFA;Symantec Extended File Attributes;C:\Windows\System32\drivers\NISx64\1008000.029\SymEFA64.sys [2011-3-8 402992]
R1 ccHP;Symantec Hash Provider;C:\Windows\System32\drivers\NISx64\1008000.029\cchpx64.sys [2011-3-8 583296]
R1 IDSVia64;IDSVia64;C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20110310.002\IDSviA64.sys [2011-3-10 476792]
R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\System32\drivers\vwififlt.sys [2009-7-13 59904]
R2 ePowerSvc;Acer ePower Service;C:\Program Files\Gateway\Gateway Power Management\ePowerSvc.exe [2011-3-8 844320]
R2 Greg_Service;GRegService;C:\Program Files (x86)\Gateway\Registration\GregHSRW.exe [2009-8-28 1150496]
R2 HsfXAudioService;HsfXAudioService;C:\Windows\system32\svchost.exe -k HsfXAudioService [2009-7-13 27136]
R2 Norton Internet Security;Norton Internet Security;C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\ccSvcHst.exe [2011-3-8 117640]
R2 NTI IScheduleSvc;NTI IScheduleSvc;C:\Program Files (x86)\NewTech Infosystems\Gateway MyBackup\IScheduleSvc.exe [2009-9-24 62720]
R2 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service;C:\Program Files (x86)\Common Files\PC Tools\sMonitor\StartManSvc.exe [2011-3-10 583640]
R2 SBSDWSCService;SBSD Security Center Service;C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [2011-3-8 1153368]
R2 Updater Service;Updater Service;C:\Program Files\Gateway\Gateway Updater\UpdaterService.exe [2009-10-28 240160]
R3 CAXHWAZL;CAXHWAZL;C:\Windows\System32\drivers\CAXHWAZL.sys [2011-3-8 292864]
R3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI;C:\Windows\System32\drivers\IntcHdmi.sys [2011-3-8 139264]
R3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;C:\Windows\System32\drivers\k57nd60a.sys [2009-6-20 317480]
S1 BHDrvx64;Symantec Heuristics Driver;C:\Windows\System32\drivers\NISx64\1008000.029\BHDrvx64.sys [2011-3-8 334384]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;C:\Windows\System32\drivers\netw5v64.sys [2009-6-10 5434368]
S3 Partner Service;Partner Service;C:\ProgramData\Partner\Partner.exe [2009-10-28 332272]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\System32\drivers\RtsUStor.sys [2009-10-28 216064]
S3 SrvHsfHDA;SrvHsfHDA;C:\Windows\System32\drivers\VSTAZL6.SYS [2009-7-13 292864]
S3 SrvHsfV92;SrvHsfV92;C:\Windows\System32\drivers\VSTDPV6.SYS [2009-7-13 1485312]
S3 SrvHsfWinac;SrvHsfWinac;C:\Windows\System32\drivers\VSTCNXT6.SYS [2009-7-13 740864]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2011-3-10 1255736]
.
=============== Created Last 30 ================
.
2011-03-12 04:34:08 -------- d-----w- C:\Program Files (x86)\IE7 Tools
2011-03-12 03:28:47 -------- d-----w- C:\Users\ERICKA\AppData\Local\Yahoo!
2011-03-12 01:52:07 -------- d-----w- C:\Users\ERICKA\AppData\Local\DDMSettings
2011-03-12 01:49:53 -------- d-----w- C:\Program Files (x86)\Common Files\PX Storage Engine
2011-03-12 01:49:47 -------- d-----w- C:\Program Files\DivX
2011-03-12 01:49:19 -------- d-----w- C:\Program Files (x86)\Common Files\DivX Shared
2011-03-12 01:48:21 -------- d-----w- C:\Program Files (x86)\DivX
2011-03-12 01:47:33 -------- d-----w- C:\PROGRA~3\DivX
2011-03-11 19:16:28 -------- d-----w- C:\357814fbb0c1a00298e532f10dee
2011-03-11 14:13:12 -------- d-----w- C:\Users\ERICKA\AppData\Roaming\Registry Mechanic
2011-03-11 14:05:17 7947600 ----a-w- C:\PROGRA~3\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll
2011-03-11 14:05:12 7947600 ----a-w- C:\PROGRA~3\Microsoft\Windows Defender\Definition Updates\{2F5F77E8-E4CE-430F-887D-606DF1335C51}\mpengine.dll
2011-03-11 02:37:16 880640 ----a-w- C:\Windows\SysWow64\UniBox10.ocx
2011-03-11 02:37:16 658432 ----a-w- C:\Windows\SysWow64\MSCOMCT2.OCX
2011-03-11 02:37:16 506368 ----a-w- C:\Windows\SysWow64\msxml.dll
2011-03-11 02:37:16 40408 ----a-w- C:\Windows\System32\CleanMFT64.exe
2011-03-11 02:37:16 212992 ----a-w- C:\Windows\SysWow64\UniBoxVB12.ocx
2011-03-11 02:37:16 1101824 ----a-w- C:\Windows\SysWow64\UniBox210.ocx
2011-03-11 02:37:13 -------- d-----w- C:\Program Files (x86)\Common Files\PC Tools
2011-03-11 00:22:34 -------- d-----w- C:\Program Files (x86)\SDistTest
2011-03-10 23:36:17 -------- d-----w- C:\Windows\SysWow64\Adobe
2011-03-10 23:03:20 -------- d-----w- C:\Windows\SysWow64\Wat
2011-03-10 23:03:20 -------- d-----w- C:\Windows\System32\Wat
2011-03-10 06:52:41 -------- d-----w- C:\5c8deedd29914d2a45d9d46a1c
2011-03-09 16:25:34 -------- d-----w- C:\66c668b2fad4ddbc17ee0b37170115
2011-03-09 14:51:48 367104 ----a-w- C:\Windows\System32\wcncsvc.dll
2011-03-09 14:51:48 276992 ----a-w- C:\Windows\SysWow64\wcncsvc.dll
2011-03-09 14:37:43 99176 ----a-w- C:\Windows\SysWow64\PresentationHostProxy.dll
2011-03-09 14:37:42 49472 ----a-w- C:\Windows\SysWow64\netfxperf.dll
2011-03-09 14:37:42 48960 ----a-w- C:\Windows\System32\netfxperf.dll
2011-03-09 14:37:42 444752 ----a-w- C:\Windows\System32\mscoree.dll
2011-03-09 14:37:42 320352 ----a-w- C:\Windows\System32\PresentationHost.exe
2011-03-09 14:37:42 297808 ----a-w- C:\Windows\SysWow64\mscoree.dll
2011-03-09 14:37:42 295264 ----a-w- C:\Windows\SysWow64\PresentationHost.exe
2011-03-09 14:37:42 1942856 ----a-w- C:\Windows\System32\dfshim.dll
2011-03-09 14:37:42 1130824 ----a-w- C:\Windows\SysWow64\dfshim.dll
2011-03-09 14:37:42 109912 ----a-w- C:\Windows\System32\PresentationHostProxy.dll
2011-03-09 14:29:21 -------- d-sh--w- C:\Windows\SysWow64\%APPDATA%
2011-03-09 14:28:13 243712 ----a-w- C:\Windows\System32\drivers\ks.sys
2011-03-09 14:28:13 184832 ----a-w- C:\Windows\System32\drivers\usbvideo.sys
2011-03-09 13:57:58 340992 ----a-w- C:\Windows\System32\schannel.dll
2011-03-09 13:56:56 5510528 ----a-w- C:\Windows\System32\ntoskrnl.exe
2011-03-09 01:47:22 -------- d-----w- C:\Windows\pss
2011-03-09 00:13:50 -------- d-----w- C:\Program Files (x86)\Common Files\Symantec Shared
2011-03-08 23:50:48 56880 ----a-w- C:\Windows\System32\drivers\NISx64\1008000.029\symndisv.sys
2011-03-08 23:50:48 44080 ----a-w- C:\Windows\System32\drivers\NISx64\1008000.029\symndis.sys
2011-03-08 23:50:48 43568 ----a-w- C:\Windows\System32\drivers\NISx64\1008000.029\symids.sys
2011-03-08 23:50:48 278576 ----a-w- C:\Windows\System32\drivers\NISx64\1008000.029\symtdi.sys
2011-03-08 23:50:47 476720 ----a-w- C:\Windows\System32\drivers\NISx64\1008000.029\srtsp64.sys
2011-03-08 23:50:47 402992 ----a-w- C:\Windows\System32\drivers\NISx64\1008000.029\SymEFA64.sys
2011-03-08 23:50:47 334384 ----a-w- C:\Windows\System32\drivers\NISx64\1008000.029\BHDrvx64.sys
2011-03-08 23:50:47 32304 ----a-w- C:\Windows\System32\drivers\NISx64\1008000.029\srtspx64.sys
2011-03-08 23:50:47 120880 ----a-w- C:\Windows\System32\drivers\NISx64\1008000.029\symfw.sys
2011-03-08 23:50:34 583296 ----a-w- C:\Windows\System32\drivers\NISx64\1008000.029\cchpx64.sys
2011-03-08 23:50:33 -------- d-----w- C:\Windows\System32\drivers\NISx64\1008000.029
2011-03-08 23:19:57 -------- d-----r- C:\Program Files (x86)\Norton Support
2011-03-08 21:23:56 -------- d-----w- C:\Users\ERICKA\AppData\Roaming\Safer Networking
2011-03-08 21:09:56 270720 ------w- C:\Windows\System32\MpSigStub.exe
2011-03-08 21:09:14 -------- d-----w- C:\Program Files (x86)\Safer Networking
2011-03-08 20:44:54 220672 ----a-w- C:\Windows\System32\wintrust.dll
2011-03-08 20:44:54 172032 ----a-w- C:\Windows\SysWow64\wintrust.dll
2011-03-08 20:44:53 139264 ----a-w- C:\Windows\System32\cabview.dll
2011-03-08 20:44:53 132608 ----a-w- C:\Windows\SysWow64\cabview.dll
2011-03-08 20:42:48 4398360 ----a-w- C:\Windows\System32\d3dx9_32.dll
2011-03-08 20:42:48 3426072 ----a-w- C:\Windows\SysWow64\d3dx9_32.dll
2011-03-08 20:42:06 141402440 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\wlc8585.tmp
2011-03-08 20:33:05 -------- d-----w- C:\Users\ERICKA\AppData\Local\Symantec
2011-03-08 20:17:50 -------- d-----w- C:\Users\ERICKA\AppData\Local\Apps
2011-03-08 20:16:49 -------- d-----w- C:\Users\ERICKA\AppData\Local\ElevatedDiagnostics
2011-03-08 20:16:23 -------- d-----w- C:\Users\ERICKA\AppData\Local\Diagnostics
2011-03-08 16:34:11 -------- d-----w- C:\Program Files\Symantec
2011-03-08 16:34:11 -------- d-----w- C:\Program Files\Common Files\Symantec Shared
2011-03-08 16:29:30 -------- d-----w- C:\Program Files (x86)\Spybot - Search & Destroy
2011-03-08 16:29:30 -------- d-----w- C:\PROGRA~3\Spybot - Search & Destroy
2011-03-08 16:20:25 -------- d-----w- C:\Users\ERICKA\AppData\Local\Google
2011-03-08 16:14:25 -------- d-----w- C:\Program Files (x86)\OEM
2011-03-08 16:13:52 -------- d-----w- C:\Users\ERICKA\AppData\Local\Power2Go
2011-03-08 16:13:29 -------- d-----w- C:\PROGRA~3\OEM_E471269A730D
2011-03-08 15:58:57 -------- d-----w- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2011-03-08 15:58:18 -------- d-----w- C:\Program Files (x86)\Microsoft
2011-03-08 15:58:05 -------- d-----w- C:\Program Files (x86)\Windows Live SkyDrive
2011-03-08 15:57:27 74520 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\859e98731cbdda9\DSETUP.dll
2011-03-08 15:57:27 484632 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\859e98731cbdda9\DXSETUP.exe
2011-03-08 15:57:27 1670936 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\859e98731cbdda9\dsetup32.dll
2011-03-08 15:57:05 141402440 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\wlcCCA1.tmp
2011-03-08 15:56:59 -------- d-----w- C:\Program Files (x86)\Common Files\Windows Live
2011-03-08 15:56:33 -------- d-----w- C:\Users\ERICKA\AppData\Local\Packard Bell
2011-03-08 15:54:01 1066544 ----a-w- C:\Windows\SysWow64\MFC71.dll
2011-03-08 15:54:01 1053232 ----a-w- C:\Windows\SysWow64\MFC71u.dll
2011-03-08 15:53:20 -------- d-----w- C:\Program Files (x86)\Common Files\CyberLink
2011-03-08 15:52:47 29480 ----a-w- C:\Windows\SysWow64\msxml3a.dll
2011-03-08 15:52:46 505392 ----a-w- C:\Windows\SysWow64\msvcp71.dll
2011-03-08 15:52:46 353576 ----a-w- C:\Windows\SysWow64\msvcr71.dll
2011-03-08 15:50:55 -------- d-----w- C:\Program Files (x86)\Launch Manager
2011-03-08 15:50:43 200704 ----a-w- C:\Windows\PLFSetI.exe
2011-03-08 15:50:41 -------- d-----w- C:\Program Files (x86)\VideoWebCamera
2011-03-08 15:50:15 -------- d-----w- C:\Program Files\Synaptics
2011-03-08 15:40:10 -------- d-----w- C:\Program Files\CONEXANT
2011-03-08 15:40:08 740864 ----a-w- C:\Windows\System32\drivers\CAX_CNXT.sys
2011-03-08 15:40:08 292864 ----a-w- C:\Windows\System32\drivers\CAXHWAZL.sys
2011-03-08 15:40:08 1485824 ----a-w- C:\Windows\System32\drivers\CAX_DPV.sys
2011-03-08 15:38:46 -------- d-----w- C:\Windows\SysWow64\x64
2011-03-08 15:38:46 -------- d-----w- C:\Windows\SysWow64\Lang
2011-03-08 15:38:44 948760 ----a-w- C:\Windows\SysWow64\igxpun.exe
2011-03-08 15:38:41 -------- d-----w- C:\Intel
2011-03-08 15:31:38 -------- d-----w- C:\Windows\NAPP_Dism_Log
2011-03-08 15:30:52 -------- d-----w- C:\AcerSW
2011-03-08 15:29:52 311808 ----a-w- C:\Windows\System32\msv1_0.dll
2011-03-08 15:29:52 257024 ----a-w- C:\Windows\SysWow64\msv1_0.dll
2011-03-08 15:29:44 46592 ----a-w- C:\Windows\System32\msasn1.dll
2011-03-08 15:29:44 34816 ----a-w- C:\Windows\SysWow64\msasn1.dll
2011-03-08 15:29:14 1975296 ----a-w- C:\Windows\System32\CertEnroll.dll
2011-03-08 15:29:14 1320960 ----a-w- C:\Windows\SysWow64\CertEnroll.dll
2011-03-08 15:26:59 5195776 ----a-w- C:\Windows\System32\ig4dev64.dll
.
==================== Find3M ====================
.
2011-02-19 06:37:44 1135104 ----a-w- C:\Windows\System32\FntCache.dll
2011-02-19 06:37:10 1540608 ----a-w- C:\Windows\System32\DWrite.dll
2011-02-19 06:36:49 902656 ----a-w- C:\Windows\System32\d2d1.dll
2011-02-19 05:32:48 1074176 ----a-w- C:\Windows\SysWow64\DWrite.dll
2011-02-19 05:32:35 739840 ----a-w- C:\Windows\SysWow64\d2d1.dll
2011-01-26 06:53:10 982912 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys
2011-01-26 06:53:10 265088 ----a-w- C:\Windows\System32\drivers\dxgmms1.sys
2011-01-26 06:31:20 144384 ----a-w- C:\Windows\System32\cdd.dll
2011-01-07 08:07:24 662528 ----a-w- C:\Windows\System32\XpsPrint.dll
2011-01-07 08:07:24 475648 ----a-w- C:\Windows\System32\XpsGdiConverter.dll
2011-01-07 08:06:50 46080 ----a-w- C:\Windows\System32\atmlib.dll
2011-01-07 07:31:10 442880 ----a-w- C:\Windows\SysWow64\XpsPrint.dll
2011-01-07 07:31:10 288256 ----a-w- C:\Windows\SysWow64\XpsGdiConverter.dll
2011-01-07 07:27:11 34304 ----a-w- C:\Windows\SysWow64\atmlib.dll
2011-01-07 05:49:20 366080 ----a-w- C:\Windows\System32\atmfd.dll
2011-01-07 05:33:11 294400 ----a-w- C:\Windows\SysWow64\atmfd.dll
2011-01-05 06:20:30 612352 ----a-w- C:\Windows\System32\vbscript.dll
2011-01-05 05:37:33 428032 ----a-w- C:\Windows\SysWow64\vbscript.dll
2011-01-05 04:00:16 3127808 ----a-w- C:\Windows\System32\win32k.sys
2010-12-23 06:07:50 1118720 ----a-w- C:\Windows\System32\sbe.dll
2010-12-23 06:07:49 961024 ----a-w- C:\Windows\System32\CPFilters.dll
2010-12-23 06:07:49 723968 ----a-w- C:\Windows\System32\EncDec.dll
2010-12-23 06:02:33 259072 ----a-w- C:\Windows\System32\mpg2splt.ax
2010-12-23 05:28:29 850432 ----a-w- C:\Windows\SysWow64\sbe.dll
2010-12-23 05:28:28 642048 ----a-w- C:\Windows\SysWow64\CPFilters.dll
2010-12-23 05:28:28 534528 ----a-w- C:\Windows\SysWow64\EncDec.dll
2010-12-23 05:24:02 199680 ----a-w- C:\Windows\SysWow64\mpg2splt.ax
2010-12-21 06:16:27 97280 ----a-w- C:\Windows\System32\wscsvc.dll
2010-12-21 06:16:27 62976 ----a-w- C:\Windows\System32\wscapi.dll
2010-12-21 06:16:16 214016 ----a-w- C:\Windows\System32\winsrv.dll
2010-12-21 06:16:14 442880 ----a-w- C:\Windows\System32\winhttp.dll
2010-12-21 06:16:14 1197056 ----a-w- C:\Windows\System32\wininet.dll
2010-12-21 06:16:09 258048 ----a-w- C:\Windows\System32\WebClnt.dll
2010-12-21 06:15:55 264192 ----a-w- C:\Windows\System32\upnp.dll
2010-12-21 06:15:31 15360 ----a-w- C:\Windows\System32\slwga.dll
2010-12-21 06:13:03 2003968 ----a-w- C:\Windows\System32\msxml6.dll
2010-12-21 06:13:03 1880576 ----a-w- C:\Windows\System32\msxml3.dll
2010-12-21 06:10:22 100864 ----a-w- C:\Windows\System32\davclnt.dll
2010-12-21 05:38:24 51200 ----a-w- C:\Windows\SysWow64\wscapi.dll
2010-12-21 05:38:22 981504 ----a-w- C:\Windows\SysWow64\wininet.dll
2010-12-21 05:38:22 350720 ----a-w- C:\Windows\SysWow64\winhttp.dll
2010-12-21 05:38:21 204800 ----a-w- C:\Windows\SysWow64\WebClnt.dll
2010-12-21 05:38:19 204288 ----a-w- C:\Windows\SysWow64\upnp.dll
2010-12-21 05:38:16 14336 ----a-w- C:\Windows\SysWow64\slwga.dll
2010-12-21 05:36:17 1389568 ----a-w- C:\Windows\SysWow64\msxml6.dll
2010-12-21 05:36:16 1236992 ----a-w- C:\Windows\SysWow64\msxml3.dll
2010-12-21 05:34:12 80384 ----a-w- C:\Windows\SysWow64\davclnt.dll
2010-12-18 06:12:28 3138048 ----a-w- C:\Windows\System32\mstscax.dll
2010-12-18 06:11:41 57856 ----a-w- C:\Windows\System32\licmgr10.dll
2010-12-18 06:11:34 714752 ----a-w- C:\Windows\System32\kerberos.dll
2010-12-18 06:08:15 1097216 ----a-w- C:\Windows\System32\mstsc.exe
2010-12-18 05:30:20 2690560 ----a-w- C:\Windows\SysWow64\mstscax.dll
2010-12-18 05:29:40 44544 ----a-w- C:\Windows\SysWow64\licmgr10.dll
2010-12-18 05:29:31 541184 ----a-w- C:\Windows\SysWow64\kerberos.dll
2010-12-18 05:26:55 1034240 ----a-w- C:\Windows\SysWow64\mstsc.exe
2010-12-18 04:55:03 482816 ----a-w- C:\Windows\System32\html.iec
2010-12-18 04:20:55 386048 ----a-w- C:\Windows\SysWow64\html.iec
2010-12-18 04:13:40 1638912 ----a-w- C:\Windows\System32\mshtml.tlb
2010-12-18 03:47:59 1638912 ----a-w- C:\Windows\SysWow64\mshtml.tlb
.
============= FINISH: 0:37:19.08 ===============
:confused::confused:
DDS (Ver_11-03-05.01) - NTFS_AMD64
Run by ERICKA at 0:36:41.33 on Sat 03/12/2011
Internet Explorer: 8.0.7600.16385
Microsoft Windows 7 Home Premium 6.1.7600.0.1252.1.1033.18.4025.2617 [GMT -5:00]
.
AV: Norton Internet Security *Enabled/Updated* {88C95A36-8C3B-2F2C-1B8B-30FCCFDC4855}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Norton Internet Security *Enabled/Updated* {33A8BBD2-AA01-20A2-213B-0B8EB45B02E8}
FW: Norton Internet Security *Enabled* {B0F2DB13-C654-2E74-30D4-99C9310F0F2E}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\ccSvcHst.exe
C:\Program Files\Gateway\Gateway Power Management\ePowerSvc.exe
C:\Program Files (x86)\Gateway\Registration\GregHSRW.exe
C:\Windows\system32\svchost.exe -k HsfXAudioService
C:\Program Files (x86)\NewTech Infosystems\Gateway MyBackup\IScheduleSvc.exe
C:\Program Files (x86)\Common Files\PC Tools\sMonitor\StartManSvc.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Gateway\Gateway Updater\UpdaterService.exe
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\taskhost.exe
C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\ccSvcHst.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\Dwm.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\Gateway\Gateway Power Management\ePowerTray.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
C:\Windows\system32\igfxsrvc.exe
C:\Windows\system32\igfxext.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe
C:\Program Files (x86)\NewTech Infosystems\Gateway MyBackup\BackupManagerTray.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files\Gateway\Gateway Power Management\ePowerEvent.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\wuauclt.exe
c:\PROGRA~2\MICROS~3\wkcalrem.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\SysWow64\Macromed\Flash\FlashUtil10c.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Users\ERICKA\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JJ2KILQP\dds[1].scr
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&m=nv54_series&r=27360311m0c6l04c0z125a4451u575
uDefault_Page_URL = hxxp://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&m=nv54_series&r=27360311m0c6l04c0z125a4451u575
mDefault_Page_URL = hxxp://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&m=nv54_series&r=27360311m0c6l04c0z125a4451u575
mStart Page = hxxp://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&m=nv54_series&r=27360311m0c6l04c0z125a4451u575
mWinlogon: Userinit=userinit.exe
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: DivX Plus Web Player HTML5 <video>: {326e768d-4182-46fd-9c16-1449a49795f4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
BHO: DivX HiQ: {593ddec6-7468-4cdd-90e1-42dadaa222e9} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Symantec NCO BHO: {602adb0e-4aff-4217-8aa1-95dac4dfa408} - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\coIEPlg.dll
BHO: Symantec Intrusion Prevention: {6d53ec84-6aae-4787-aeee-f4628f01010c} - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\IPSBHO.DLL
BHO: Partner BHO Class: {83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} - C:\ProgramData\Partner\Partner.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll
BHO: Google Dictionary Compression sdch: {c84d72fe-e17d-4195-bb24-76c02e2e7c4e} - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll
TB: Norton Toolbar: {7febefe3-6b19-4349-98d2-ffb09d4b49ca} - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\coIEPlg.dll
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
uRun: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
mRun: [SSDMonitor] C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe
mRun: [BackupManagerTray] "C:\Program Files (x86)\NewTech Infosystems\Gateway MyBackup\BackupManagerTray.exe" -h -k
mRun: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
mRun: [NortonOnlineBackupReminder] "C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe" UNATTENDED
mRun: [PDVD8LanguageShortcut] "c:\Program Files (x86)\CyberLink\PowerDVD8\Language\Language.exe"
mRun: [RemoteControl8] "c:\Program Files (x86)\CyberLink\PowerDVD8\PDVD8Serv.exe"
mRun: [UpdateP2GoShortCut] "c:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "c:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
mRun: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
StartupFolder: C:\Users\ERICKA\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\ERUNTA~1.LNK - C:\Program Files (x86)\ERUNT\AUTOBACK.EXE
uPolicies-explorer: NoResolveTrack = 1 (0x1)
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
Handler: symres - {AA1061FE-6C41-421f-9344-69640C9732AB} - C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\CoIEPlg.dll
BHO-X64: Partner BHO Class: {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} - C:\ProgramData\Partner\Partner64.dll
BHO-X64: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
BHO-X64: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg64.dll
TB-X64: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
TB-X64: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
mRun-x64: [Acer ePower Management] C:\Program Files\Gateway\Gateway Power Management\ePowerTray.exe
mRun-x64: [IgfxTray] C:\Windows\system32\igfxtray.exe
mRun-x64: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
mRun-x64: [Persistence] C:\Windows\system32\igfxpers.exe
Hosts: 127.0.0.1 www.spywareinfo.com
.
============= SERVICES / DRIVERS ===============
.
R0 SymEFA;Symantec Extended File Attributes;C:\Windows\System32\drivers\NISx64\1008000.029\SymEFA64.sys [2011-3-8 402992]
R1 ccHP;Symantec Hash Provider;C:\Windows\System32\drivers\NISx64\1008000.029\cchpx64.sys [2011-3-8 583296]
R1 IDSVia64;IDSVia64;C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\Norton\Definitions\IPSDefs\20110310.002\IDSviA64.sys [2011-3-10 476792]
R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\System32\drivers\vwififlt.sys [2009-7-13 59904]
R2 ePowerSvc;Acer ePower Service;C:\Program Files\Gateway\Gateway Power Management\ePowerSvc.exe [2011-3-8 844320]
R2 Greg_Service;GRegService;C:\Program Files (x86)\Gateway\Registration\GregHSRW.exe [2009-8-28 1150496]
R2 HsfXAudioService;HsfXAudioService;C:\Windows\system32\svchost.exe -k HsfXAudioService [2009-7-13 27136]
R2 Norton Internet Security;Norton Internet Security;C:\Program Files (x86)\Norton Internet Security\Engine\16.8.0.41\ccSvcHst.exe [2011-3-8 117640]
R2 NTI IScheduleSvc;NTI IScheduleSvc;C:\Program Files (x86)\NewTech Infosystems\Gateway MyBackup\IScheduleSvc.exe [2009-9-24 62720]
R2 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service;C:\Program Files (x86)\Common Files\PC Tools\sMonitor\StartManSvc.exe [2011-3-10 583640]
R2 SBSDWSCService;SBSD Security Center Service;C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [2011-3-8 1153368]
R2 Updater Service;Updater Service;C:\Program Files\Gateway\Gateway Updater\UpdaterService.exe [2009-10-28 240160]
R3 CAXHWAZL;CAXHWAZL;C:\Windows\System32\drivers\CAXHWAZL.sys [2011-3-8 292864]
R3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI;C:\Windows\System32\drivers\IntcHdmi.sys [2011-3-8 139264]
R3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;C:\Windows\System32\drivers\k57nd60a.sys [2009-6-20 317480]
S1 BHDrvx64;Symantec Heuristics Driver;C:\Windows\System32\drivers\NISx64\1008000.029\BHDrvx64.sys [2011-3-8 334384]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;C:\Windows\System32\drivers\netw5v64.sys [2009-6-10 5434368]
S3 Partner Service;Partner Service;C:\ProgramData\Partner\Partner.exe [2009-10-28 332272]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\System32\drivers\RtsUStor.sys [2009-10-28 216064]
S3 SrvHsfHDA;SrvHsfHDA;C:\Windows\System32\drivers\VSTAZL6.SYS [2009-7-13 292864]
S3 SrvHsfV92;SrvHsfV92;C:\Windows\System32\drivers\VSTDPV6.SYS [2009-7-13 1485312]
S3 SrvHsfWinac;SrvHsfWinac;C:\Windows\System32\drivers\VSTCNXT6.SYS [2009-7-13 740864]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2011-3-10 1255736]
.
=============== Created Last 30 ================
.
2011-03-12 04:34:08 -------- d-----w- C:\Program Files (x86)\IE7 Tools
2011-03-12 03:28:47 -------- d-----w- C:\Users\ERICKA\AppData\Local\Yahoo!
2011-03-12 01:52:07 -------- d-----w- C:\Users\ERICKA\AppData\Local\DDMSettings
2011-03-12 01:49:53 -------- d-----w- C:\Program Files (x86)\Common Files\PX Storage Engine
2011-03-12 01:49:47 -------- d-----w- C:\Program Files\DivX
2011-03-12 01:49:19 -------- d-----w- C:\Program Files (x86)\Common Files\DivX Shared
2011-03-12 01:48:21 -------- d-----w- C:\Program Files (x86)\DivX
2011-03-12 01:47:33 -------- d-----w- C:\PROGRA~3\DivX
2011-03-11 19:16:28 -------- d-----w- C:\357814fbb0c1a00298e532f10dee
2011-03-11 14:13:12 -------- d-----w- C:\Users\ERICKA\AppData\Roaming\Registry Mechanic
2011-03-11 14:05:17 7947600 ----a-w- C:\PROGRA~3\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll
2011-03-11 14:05:12 7947600 ----a-w- C:\PROGRA~3\Microsoft\Windows Defender\Definition Updates\{2F5F77E8-E4CE-430F-887D-606DF1335C51}\mpengine.dll
2011-03-11 02:37:16 880640 ----a-w- C:\Windows\SysWow64\UniBox10.ocx
2011-03-11 02:37:16 658432 ----a-w- C:\Windows\SysWow64\MSCOMCT2.OCX
2011-03-11 02:37:16 506368 ----a-w- C:\Windows\SysWow64\msxml.dll
2011-03-11 02:37:16 40408 ----a-w- C:\Windows\System32\CleanMFT64.exe
2011-03-11 02:37:16 212992 ----a-w- C:\Windows\SysWow64\UniBoxVB12.ocx
2011-03-11 02:37:16 1101824 ----a-w- C:\Windows\SysWow64\UniBox210.ocx
2011-03-11 02:37:13 -------- d-----w- C:\Program Files (x86)\Common Files\PC Tools
2011-03-11 00:22:34 -------- d-----w- C:\Program Files (x86)\SDistTest
2011-03-10 23:36:17 -------- d-----w- C:\Windows\SysWow64\Adobe
2011-03-10 23:03:20 -------- d-----w- C:\Windows\SysWow64\Wat
2011-03-10 23:03:20 -------- d-----w- C:\Windows\System32\Wat
2011-03-10 06:52:41 -------- d-----w- C:\5c8deedd29914d2a45d9d46a1c
2011-03-09 16:25:34 -------- d-----w- C:\66c668b2fad4ddbc17ee0b37170115
2011-03-09 14:51:48 367104 ----a-w- C:\Windows\System32\wcncsvc.dll
2011-03-09 14:51:48 276992 ----a-w- C:\Windows\SysWow64\wcncsvc.dll
2011-03-09 14:37:43 99176 ----a-w- C:\Windows\SysWow64\PresentationHostProxy.dll
2011-03-09 14:37:42 49472 ----a-w- C:\Windows\SysWow64\netfxperf.dll
2011-03-09 14:37:42 48960 ----a-w- C:\Windows\System32\netfxperf.dll
2011-03-09 14:37:42 444752 ----a-w- C:\Windows\System32\mscoree.dll
2011-03-09 14:37:42 320352 ----a-w- C:\Windows\System32\PresentationHost.exe
2011-03-09 14:37:42 297808 ----a-w- C:\Windows\SysWow64\mscoree.dll
2011-03-09 14:37:42 295264 ----a-w- C:\Windows\SysWow64\PresentationHost.exe
2011-03-09 14:37:42 1942856 ----a-w- C:\Windows\System32\dfshim.dll
2011-03-09 14:37:42 1130824 ----a-w- C:\Windows\SysWow64\dfshim.dll
2011-03-09 14:37:42 109912 ----a-w- C:\Windows\System32\PresentationHostProxy.dll
2011-03-09 14:29:21 -------- d-sh--w- C:\Windows\SysWow64\%APPDATA%
2011-03-09 14:28:13 243712 ----a-w- C:\Windows\System32\drivers\ks.sys
2011-03-09 14:28:13 184832 ----a-w- C:\Windows\System32\drivers\usbvideo.sys
2011-03-09 13:57:58 340992 ----a-w- C:\Windows\System32\schannel.dll
2011-03-09 13:56:56 5510528 ----a-w- C:\Windows\System32\ntoskrnl.exe
2011-03-09 01:47:22 -------- d-----w- C:\Windows\pss
2011-03-09 00:13:50 -------- d-----w- C:\Program Files (x86)\Common Files\Symantec Shared
2011-03-08 23:50:48 56880 ----a-w- C:\Windows\System32\drivers\NISx64\1008000.029\symndisv.sys
2011-03-08 23:50:48 44080 ----a-w- C:\Windows\System32\drivers\NISx64\1008000.029\symndis.sys
2011-03-08 23:50:48 43568 ----a-w- C:\Windows\System32\drivers\NISx64\1008000.029\symids.sys
2011-03-08 23:50:48 278576 ----a-w- C:\Windows\System32\drivers\NISx64\1008000.029\symtdi.sys
2011-03-08 23:50:47 476720 ----a-w- C:\Windows\System32\drivers\NISx64\1008000.029\srtsp64.sys
2011-03-08 23:50:47 402992 ----a-w- C:\Windows\System32\drivers\NISx64\1008000.029\SymEFA64.sys
2011-03-08 23:50:47 334384 ----a-w- C:\Windows\System32\drivers\NISx64\1008000.029\BHDrvx64.sys
2011-03-08 23:50:47 32304 ----a-w- C:\Windows\System32\drivers\NISx64\1008000.029\srtspx64.sys
2011-03-08 23:50:47 120880 ----a-w- C:\Windows\System32\drivers\NISx64\1008000.029\symfw.sys
2011-03-08 23:50:34 583296 ----a-w- C:\Windows\System32\drivers\NISx64\1008000.029\cchpx64.sys
2011-03-08 23:50:33 -------- d-----w- C:\Windows\System32\drivers\NISx64\1008000.029
2011-03-08 23:19:57 -------- d-----r- C:\Program Files (x86)\Norton Support
2011-03-08 21:23:56 -------- d-----w- C:\Users\ERICKA\AppData\Roaming\Safer Networking
2011-03-08 21:09:56 270720 ------w- C:\Windows\System32\MpSigStub.exe
2011-03-08 21:09:14 -------- d-----w- C:\Program Files (x86)\Safer Networking
2011-03-08 20:44:54 220672 ----a-w- C:\Windows\System32\wintrust.dll
2011-03-08 20:44:54 172032 ----a-w- C:\Windows\SysWow64\wintrust.dll
2011-03-08 20:44:53 139264 ----a-w- C:\Windows\System32\cabview.dll
2011-03-08 20:44:53 132608 ----a-w- C:\Windows\SysWow64\cabview.dll
2011-03-08 20:42:48 4398360 ----a-w- C:\Windows\System32\d3dx9_32.dll
2011-03-08 20:42:48 3426072 ----a-w- C:\Windows\SysWow64\d3dx9_32.dll
2011-03-08 20:42:06 141402440 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\wlc8585.tmp
2011-03-08 20:33:05 -------- d-----w- C:\Users\ERICKA\AppData\Local\Symantec
2011-03-08 20:17:50 -------- d-----w- C:\Users\ERICKA\AppData\Local\Apps
2011-03-08 20:16:49 -------- d-----w- C:\Users\ERICKA\AppData\Local\ElevatedDiagnostics
2011-03-08 20:16:23 -------- d-----w- C:\Users\ERICKA\AppData\Local\Diagnostics
2011-03-08 16:34:11 -------- d-----w- C:\Program Files\Symantec
2011-03-08 16:34:11 -------- d-----w- C:\Program Files\Common Files\Symantec Shared
2011-03-08 16:29:30 -------- d-----w- C:\Program Files (x86)\Spybot - Search & Destroy
2011-03-08 16:29:30 -------- d-----w- C:\PROGRA~3\Spybot - Search & Destroy
2011-03-08 16:20:25 -------- d-----w- C:\Users\ERICKA\AppData\Local\Google
2011-03-08 16:14:25 -------- d-----w- C:\Program Files (x86)\OEM
2011-03-08 16:13:52 -------- d-----w- C:\Users\ERICKA\AppData\Local\Power2Go
2011-03-08 16:13:29 -------- d-----w- C:\PROGRA~3\OEM_E471269A730D
2011-03-08 15:58:57 -------- d-----w- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2011-03-08 15:58:18 -------- d-----w- C:\Program Files (x86)\Microsoft
2011-03-08 15:58:05 -------- d-----w- C:\Program Files (x86)\Windows Live SkyDrive
2011-03-08 15:57:27 74520 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\859e98731cbdda9\DSETUP.dll
2011-03-08 15:57:27 484632 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\859e98731cbdda9\DXSETUP.exe
2011-03-08 15:57:27 1670936 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\859e98731cbdda9\dsetup32.dll
2011-03-08 15:57:05 141402440 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\wlcCCA1.tmp
2011-03-08 15:56:59 -------- d-----w- C:\Program Files (x86)\Common Files\Windows Live
2011-03-08 15:56:33 -------- d-----w- C:\Users\ERICKA\AppData\Local\Packard Bell
2011-03-08 15:54:01 1066544 ----a-w- C:\Windows\SysWow64\MFC71.dll
2011-03-08 15:54:01 1053232 ----a-w- C:\Windows\SysWow64\MFC71u.dll
2011-03-08 15:53:20 -------- d-----w- C:\Program Files (x86)\Common Files\CyberLink
2011-03-08 15:52:47 29480 ----a-w- C:\Windows\SysWow64\msxml3a.dll
2011-03-08 15:52:46 505392 ----a-w- C:\Windows\SysWow64\msvcp71.dll
2011-03-08 15:52:46 353576 ----a-w- C:\Windows\SysWow64\msvcr71.dll
2011-03-08 15:50:55 -------- d-----w- C:\Program Files (x86)\Launch Manager
2011-03-08 15:50:43 200704 ----a-w- C:\Windows\PLFSetI.exe
2011-03-08 15:50:41 -------- d-----w- C:\Program Files (x86)\VideoWebCamera
2011-03-08 15:50:15 -------- d-----w- C:\Program Files\Synaptics
2011-03-08 15:40:10 -------- d-----w- C:\Program Files\CONEXANT
2011-03-08 15:40:08 740864 ----a-w- C:\Windows\System32\drivers\CAX_CNXT.sys
2011-03-08 15:40:08 292864 ----a-w- C:\Windows\System32\drivers\CAXHWAZL.sys
2011-03-08 15:40:08 1485824 ----a-w- C:\Windows\System32\drivers\CAX_DPV.sys
2011-03-08 15:38:46 -------- d-----w- C:\Windows\SysWow64\x64
2011-03-08 15:38:46 -------- d-----w- C:\Windows\SysWow64\Lang
2011-03-08 15:38:44 948760 ----a-w- C:\Windows\SysWow64\igxpun.exe
2011-03-08 15:38:41 -------- d-----w- C:\Intel
2011-03-08 15:31:38 -------- d-----w- C:\Windows\NAPP_Dism_Log
2011-03-08 15:30:52 -------- d-----w- C:\AcerSW
2011-03-08 15:29:52 311808 ----a-w- C:\Windows\System32\msv1_0.dll
2011-03-08 15:29:52 257024 ----a-w- C:\Windows\SysWow64\msv1_0.dll
2011-03-08 15:29:44 46592 ----a-w- C:\Windows\System32\msasn1.dll
2011-03-08 15:29:44 34816 ----a-w- C:\Windows\SysWow64\msasn1.dll
2011-03-08 15:29:14 1975296 ----a-w- C:\Windows\System32\CertEnroll.dll
2011-03-08 15:29:14 1320960 ----a-w- C:\Windows\SysWow64\CertEnroll.dll
2011-03-08 15:26:59 5195776 ----a-w- C:\Windows\System32\ig4dev64.dll
.
==================== Find3M ====================
.
2011-02-19 06:37:44 1135104 ----a-w- C:\Windows\System32\FntCache.dll
2011-02-19 06:37:10 1540608 ----a-w- C:\Windows\System32\DWrite.dll
2011-02-19 06:36:49 902656 ----a-w- C:\Windows\System32\d2d1.dll
2011-02-19 05:32:48 1074176 ----a-w- C:\Windows\SysWow64\DWrite.dll
2011-02-19 05:32:35 739840 ----a-w- C:\Windows\SysWow64\d2d1.dll
2011-01-26 06:53:10 982912 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys
2011-01-26 06:53:10 265088 ----a-w- C:\Windows\System32\drivers\dxgmms1.sys
2011-01-26 06:31:20 144384 ----a-w- C:\Windows\System32\cdd.dll
2011-01-07 08:07:24 662528 ----a-w- C:\Windows\System32\XpsPrint.dll
2011-01-07 08:07:24 475648 ----a-w- C:\Windows\System32\XpsGdiConverter.dll
2011-01-07 08:06:50 46080 ----a-w- C:\Windows\System32\atmlib.dll
2011-01-07 07:31:10 442880 ----a-w- C:\Windows\SysWow64\XpsPrint.dll
2011-01-07 07:31:10 288256 ----a-w- C:\Windows\SysWow64\XpsGdiConverter.dll
2011-01-07 07:27:11 34304 ----a-w- C:\Windows\SysWow64\atmlib.dll
2011-01-07 05:49:20 366080 ----a-w- C:\Windows\System32\atmfd.dll
2011-01-07 05:33:11 294400 ----a-w- C:\Windows\SysWow64\atmfd.dll
2011-01-05 06:20:30 612352 ----a-w- C:\Windows\System32\vbscript.dll
2011-01-05 05:37:33 428032 ----a-w- C:\Windows\SysWow64\vbscript.dll
2011-01-05 04:00:16 3127808 ----a-w- C:\Windows\System32\win32k.sys
2010-12-23 06:07:50 1118720 ----a-w- C:\Windows\System32\sbe.dll
2010-12-23 06:07:49 961024 ----a-w- C:\Windows\System32\CPFilters.dll
2010-12-23 06:07:49 723968 ----a-w- C:\Windows\System32\EncDec.dll
2010-12-23 06:02:33 259072 ----a-w- C:\Windows\System32\mpg2splt.ax
2010-12-23 05:28:29 850432 ----a-w- C:\Windows\SysWow64\sbe.dll
2010-12-23 05:28:28 642048 ----a-w- C:\Windows\SysWow64\CPFilters.dll
2010-12-23 05:28:28 534528 ----a-w- C:\Windows\SysWow64\EncDec.dll
2010-12-23 05:24:02 199680 ----a-w- C:\Windows\SysWow64\mpg2splt.ax
2010-12-21 06:16:27 97280 ----a-w- C:\Windows\System32\wscsvc.dll
2010-12-21 06:16:27 62976 ----a-w- C:\Windows\System32\wscapi.dll
2010-12-21 06:16:16 214016 ----a-w- C:\Windows\System32\winsrv.dll
2010-12-21 06:16:14 442880 ----a-w- C:\Windows\System32\winhttp.dll
2010-12-21 06:16:14 1197056 ----a-w- C:\Windows\System32\wininet.dll
2010-12-21 06:16:09 258048 ----a-w- C:\Windows\System32\WebClnt.dll
2010-12-21 06:15:55 264192 ----a-w- C:\Windows\System32\upnp.dll
2010-12-21 06:15:31 15360 ----a-w- C:\Windows\System32\slwga.dll
2010-12-21 06:13:03 2003968 ----a-w- C:\Windows\System32\msxml6.dll
2010-12-21 06:13:03 1880576 ----a-w- C:\Windows\System32\msxml3.dll
2010-12-21 06:10:22 100864 ----a-w- C:\Windows\System32\davclnt.dll
2010-12-21 05:38:24 51200 ----a-w- C:\Windows\SysWow64\wscapi.dll
2010-12-21 05:38:22 981504 ----a-w- C:\Windows\SysWow64\wininet.dll
2010-12-21 05:38:22 350720 ----a-w- C:\Windows\SysWow64\winhttp.dll
2010-12-21 05:38:21 204800 ----a-w- C:\Windows\SysWow64\WebClnt.dll
2010-12-21 05:38:19 204288 ----a-w- C:\Windows\SysWow64\upnp.dll
2010-12-21 05:38:16 14336 ----a-w- C:\Windows\SysWow64\slwga.dll
2010-12-21 05:36:17 1389568 ----a-w- C:\Windows\SysWow64\msxml6.dll
2010-12-21 05:36:16 1236992 ----a-w- C:\Windows\SysWow64\msxml3.dll
2010-12-21 05:34:12 80384 ----a-w- C:\Windows\SysWow64\davclnt.dll
2010-12-18 06:12:28 3138048 ----a-w- C:\Windows\System32\mstscax.dll
2010-12-18 06:11:41 57856 ----a-w- C:\Windows\System32\licmgr10.dll
2010-12-18 06:11:34 714752 ----a-w- C:\Windows\System32\kerberos.dll
2010-12-18 06:08:15 1097216 ----a-w- C:\Windows\System32\mstsc.exe
2010-12-18 05:30:20 2690560 ----a-w- C:\Windows\SysWow64\mstscax.dll
2010-12-18 05:29:40 44544 ----a-w- C:\Windows\SysWow64\licmgr10.dll
2010-12-18 05:29:31 541184 ----a-w- C:\Windows\SysWow64\kerberos.dll
2010-12-18 05:26:55 1034240 ----a-w- C:\Windows\SysWow64\mstsc.exe
2010-12-18 04:55:03 482816 ----a-w- C:\Windows\System32\html.iec
2010-12-18 04:20:55 386048 ----a-w- C:\Windows\SysWow64\html.iec
2010-12-18 04:13:40 1638912 ----a-w- C:\Windows\System32\mshtml.tlb
2010-12-18 03:47:59 1638912 ----a-w- C:\Windows\SysWow64\mshtml.tlb
.
============= FINISH: 0:37:19.08 ===============
:confused::confused: