Extremely SLOW PC

Hello gilmore :),

For Chkdsk, did you notice any errors from the most recent runs? There will not be any logs, and no need to run it any more.

Do you have a parental control program called WebWatcher? I see another two such programs; ComputerTime 4.0.1 and Norton Safety Minder. Having one too many similar programs might caused conflict and slow down the computer. This could be a possible source of your problem.

I suggest you to choose one to keep and uninstall the rest.

--------------------

From your earlier DDS log:
Trusted Zone: internet
Trusted Zone: mcafee.com
Trusted Zone: webkins.com\www

Please remove all websites from the Trusted Zone in Internet Explorer as a security precaution. Have a look at the following article on how to do it.

Security zones: adding or removing websites

--------------------

Please uninstall the following programs:
URL Assistant
Viewpoint Media Player
Vuze Remote Toolbar

--------------------

Please download ERUNT© by Lars Hederer from one of the links below and save it to your desktop.

Link 1
Link 2
Link 3

Backup your registry with ERUNT
  • Double click on erunt-setup.exe and run the installation setup.
  • Follow the setup instructions until you reach Select Additional Tasks, uncheck (untick) Create NTREGOPT desktop icon.
  • Continue until you get prompted to run ERUNT at startup. Choose No.
  • Next, make sure Launch ERUNT is checked (ticked) and click Finish.
  • Click OK when ERUNT is launched, and accept all default setting. ERUNT will then backup the registry.

--------------------

Please download OTM© by Old Timer from one of the links below and save it to your desktop.

Link 1
Link 2

  • Double click OTM.exe to run it.
  • Copy and paste the following text into the white box under Paste Instructions for Items to be Moved:
    Code:
    :files
    C:\Documents and Settings\Madison\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache\f_000750 
    C:\Documents and Settings\Madison\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache\f_000779 
    
    :reg
    [-HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}]
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar]
    "{604BC32A-9680-40D1-9AC6-E06B23A1BA4C}"=-
    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks]
    "{ef99bd32-c1fb-11d2-892f-0090271d4f88}"=-
    
    :commands
    [CREATERESTOREPOINT]
    [emptytemp]
  • Click the red MoveIt! button. Everything on the desktop may disappear, this is normal. Please wait until the tool completes its routine.
  • Copy everything in the Results window (under the green bar) and paste it in your next reply.
  • The results can also be found in C:\_OTM\MovedFiles folder, the log file being named MMDDYYYY_HHMMSS.log, where MMDDYYYY_HHMMSS represent the date and time the fix was performed.

--------------------

Please post back:
1. any errors from Chkdsk?
2. input on WebWatcher
3. OTM log
 
Last edited:
I unistalled Webwatcher and Norton Safety Reminder. I need to keep Computer Time to keep the peace in the house : ) I will eventually need to install another program to WebWatcher, any recomendations? I need a program that will record my kids activities, user friendly, and also kick them off after a selected period of time. I didn't realize that webwatcher and computer time would conflict with each other.
I removed the sites from the trusted zones.
I uninstalled the URL assistant and the viewpoint Media Player. BUT, I could not find the Vuze Remote Tool Bar. Am I missing something?
Ran the ERUNT.
Thank you!!!

Below are the results of the OTM:


All processes killed
========== FILES ==========
C:\Documents and Settings\Madison\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache\f_000750 moved successfully.
C:\Documents and Settings\Madison\Local Settings\Application Data\Google\Chrome\User Data\Default\Cache\f_000779 moved successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\browser helper objects\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B164E929-A1B6-4A06-B104-2CD0E90A88FF}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\{604BC32A-9680-40D1-9AC6-E06B23A1BA4C} not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{604BC32A-9680-40D1-9AC6-E06B23A1BA4C}\ not found.
Registry value HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\\{ef99bd32-c1fb-11d2-892f-0090271d4f88} deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ef99bd32-c1fb-11d2-892f-0090271d4f88}\ deleted successfully.
========== COMMANDS ==========
Restore point Set: OTM Restore Point (68719476736)

[EMPTYTEMP]

User: Administrator
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->Flash cache emptied: 56545 bytes

User: All Users

User: Dad
->Temp folder emptied: 339565 bytes
->Temporary Internet Files folder emptied: 51779 bytes
->Java cache emptied: 69804256 bytes
->FireFox cache emptied: 5423610 bytes
->Flash cache emptied: 24798 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->Flash cache emptied: 56545 bytes

User: Guest
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes
->Apple Safari cache emptied: 0 bytes
->Flash cache emptied: 405 bytes

User: Julie Goodwin
->Temp folder emptied: 27818374 bytes
->Temporary Internet Files folder emptied: 2311030 bytes
->Java cache emptied: 59379075 bytes
->FireFox cache emptied: 43065119 bytes
->Google Chrome cache emptied: 47351500 bytes
->Apple Safari cache emptied: 4757504 bytes
->Flash cache emptied: 229603 bytes

User: LocalService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 32902 bytes

User: Madison
->Temp folder emptied: 1277231 bytes
->Temporary Internet Files folder emptied: 7843990 bytes
->Java cache emptied: 68203253 bytes
->FireFox cache emptied: 318597378 bytes
->Google Chrome cache emptied: 258167146 bytes
->Apple Safari cache emptied: 994304 bytes
->Flash cache emptied: 258082 bytes

User: NetworkService
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 593214 bytes
->Flash cache emptied: 405 bytes

User: Owner

User: PJG
->Temp folder emptied: 2059885 bytes
->Temporary Internet Files folder emptied: 49624 bytes
->FireFox cache emptied: 68422347 bytes
->Flash cache emptied: 61133 bytes

User: Sean
->Temp folder emptied: 401679 bytes
->Temporary Internet Files folder emptied: 1495886 bytes
->Java cache emptied: 79246286 bytes
->FireFox cache emptied: 332586299 bytes
->Google Chrome cache emptied: 110520663 bytes
->Apple Safari cache emptied: 3692544 bytes
->Flash cache emptied: 29074 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 19569 bytes
%systemroot%\System32 .tmp files removed: 2577 bytes
%systemroot%\System32\dllcache .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 139140509 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 153518646 bytes
%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 33493110 bytes
RecycleBin emptied: 761 bytes

Total Files Cleaned = 1,756.00 mb


OTM by OldTimer - Version 3.1.18.0 log created on 10062011_063000
 
I knew I forgot something!
The Chkdsk. I ran again. Upon reboot, it runs through verifying the file storage, indexes, and security descriptors. Then another screen with things comes up and then goes away faster than I can read/copy it. It doesn't say "errors" at least not that I can see.
 
Hello gilmore :),

For parental controls, I used the Windows 7 built-in version. I am not familiar with third party parental controls, but some that you can consider are K9 Web Protection or Windows Live Family Safety 2011.

Here is an article from Microsoft on child safety.

In general, having two security programs doing the same thing will reduce effectiveness and take up a lot of resources. You should only choose one of the parental control programs that you feel works best.

Vuze Remote Tool Bar should be uninstalled from the browser.

--------------------

Your Java Runtime Environment is outdated. Older versions have security vulnerabilities that can be exploited.

Please update JRE to the latest.
It is important that you uninstall any previous versions by using Add/Remove Programs in your Control Panel before installing a newer version. Please uninstall:

Java(TM) 6 Update 15

  • Go to the Java SE download page. Click here.
  • Under the Windows title, click on Windows 7, XP Offline (32-bit) or Windows 7, XP Offline (64-bit) and save the file to your desktop.
  • Close any programs you may have running, especially your web browser.
  • Then, from your desktop, double click on the download to install the newest version. Reboot your computer.

--------------------

Your Adobe Reader is outdated. Older versions have security vulnerabilities that can be exploited.

Please update your Adobe Reader to the latest.
It is important that you uninstall any previous versions by using Add/Remove Programs in your Control Panel before installing a newer version. Please uninstall:

Adobe Reader 9.4.5

  • Go to the Adobe download page. Click here.
  • If your OS is not the same as stated, click on Do you have a different language or operating system? link.
    • Under the Select an operating system title, choose the OS that you have.
    • Change the language at the Select a language title.
    • Next, select the version of the reader at the Select a Version title.
    • Uncheck (untick) to opt out of Google Chrome installation.
    • Click the Download now button to proceed. Allow if prompted and save the file to a convenient location.
    • Run the downloaded file to continue with the installation.
  • If your OS is the same, uncheck (untick) to opt out of McAfee Security Scan Plus installation.
  • Click Download to proceed. Allow if prompted and save the file to a convenient location.
  • Run the downloaded file to continue with the installation.

Alternatively, you can try Foxit Reader Portable or Nuance PDF Reader.

--------------------

Thunderbird is outdated as well and should be updated:
Mozilla Thunderbird (3.1.11)

Please rerun DDS and post back its logs.

--------------------

Please post back:
1. fresh DDS logs
2. how is the computer now?
 
I think I uninstalled the Vuse toolbar - I had to do a search for the file and then delete.
I updated Java and Adobe. Forgot to update Mozilla, will do now.
Computer seems to be running a little faster.

Here is the DDS:
.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 7.0.5730.11 BrowserJavaVersion: 1.6.0_27
Run by Julie G at 22:57:29 on 2011-10-06
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.1014.507 [GMT -5:00]
.
.
============== Running Processes ===============
.
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
svchost.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\SoftwareTime\ComputerTime\bin\fbserver.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\SoftwareTime\ComputerTime\bin\STProxy.exe
C:\Program Files\Common Files\Authentium\AntiVirus5\vsedsps.exe
C:\Program Files\Common Files\Authentium\AntiVirus5\vseamps.exe
C:\Program Files\Common Files\Authentium\AntiVirus5\vseqrts.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\SoftwareTime\ComputerTime\bin\ctmn32.exe
C:\Program Files\SoftwareTime\ComputerTime\bin\stka32.exe
C:\Program Files\Logitech\SetPointP\SetPoint.exe
C:\Program Files\QuickTime\QTTask.exe
D:\iTunesHelper.exe
C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe
C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Mozilla Firefox 4.0 Beta 8\firefox.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT2953735
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uSearch Bar = hxxp://www.google.com/ie
uSearch Page = hxxp://www.google.com
uInternet Settings,ProxyOverride = *.local
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: DriveLetterAccess: {5ca3d70e-1895-11cf-8e15-001234567890} - c:\windows\system32\dla\DLASHX_W.DLL
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SEPsearchhelperie.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.7.6406.1642\swg.dll
BHO: Vuze Remote Toolbar: {ba14329e-9550-4989-b3f2-9732e92d17cc} - c:\program files\vuze_remote\tbVuze.dll
BHO: Bing Bar BHO: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\program files\msn toolbar\platform\6.3.2291.0\npwinext.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: Vuze Remote Toolbar: {ba14329e-9550-4989-b3f2-9732e92d17cc} - c:\program files\vuze_remote\tbVuze.dll
TB: @c:\program files\msn toolbar\platform\6.3.2291.0\npwinext.dll,-100: {8dcb7100-df86-4384-8842-8fa844297b3f} - c:\program files\msn toolbar\platform\6.3.2291.0\npwinext.dll
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
TB: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No File
TB: {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No File
TB: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
uRunOnce: [*ctmn32] "c:\program files\softwaretime\computertime\bin\ctmn32.exe" HKCU-RunOnce
mRun: [*ctmn32] "c:\program files\softwaretime\computertime\bin\ctmn32.exe" HKLM-Run
mRun: [EvtMgr6] c:\program files\logitech\setpointp\SetPoint.exe /launchGaming
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "D:\iTunesHelper.exe"
mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe
mRun: [<NO NAME>]
mRun: [Microsoft Default Manager] "c:\program files\microsoft\search enhancement pack\default manager\DefMgr.exe" -resume
mRun: [MMTray] "c:\program files\musicmatch\musicmatch jukebox\mm_tray.exe"
mRun: [PCLEUSBTip] c:\program files\pinnacle\shared files\programs\usbtip\USBTip.exe
mRun: [USBToolTip] "c:\program files\pinnacle\shared files\\programs\usbtip\USBTip.exe"
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRunOnce: [*ctmn32] "c:\program files\softwaretime\computertime\bin\ctmn32.exe" HKLM-RunOnce
StartupFolder: c:\docume~1\julieg~1\startm~1\programs\startup\erunta~1.lnk - c:\program files\erunt\AUTOBACK.EXE
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xport to Microsoft Excel - c:\progra~1\micros~4\office11\EXCEL.EXE/3000
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~4\office11\REFIEBAR.DLL
IE: {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - {FE54FA40-D68C-11d2-98FA-00C0F0318AFE} - c:\windows\system32\Shdocvw.dll
LSP: c:\windows\system32\STProxy.dll
DPF: {549F957E-2F89-11D6-8CFE-00C04F52B225} - hxxp://coupons.smartsource.com/download/cscmv5X.cab
DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} - hxxp://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase5036.cab
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab
DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} - hxxp://atv.disney.go.com/global/download/otoy/OTOYAX29b.cab
DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} - hxxp://www.ca.com/us/securityadvisor/virusinfo/webscan.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: {DE625294-70E6-45ED-B895-CFFA13AEB044} - hxxp://rescam1.b2science.org/activex/AMC.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: DhcpNameServer = 192.168.1.254
TCP: Interfaces\{3F815C68-606F-4179-9E43-F7E95177B20C} : DhcpNameServer = 192.168.1.254
Notify: igfxcui - igfxdev.dll
Notify: LBTWlgn - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\julie goodwin\application data\mozilla\firefox\profiles\yrou326h.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2953735&SearchSource=3&q={searchTerms}
FF - prefs.js: browser.search.selectedEngine - CyberDefender-TB Customized Web Search
FF - prefs.js: browser.startup.homepage - hxxp://search.conduit.com/?ctid=CT2953735&SearchSource=13
FF - prefs.js: keyword.URL - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2953735&SearchSource=2&q=
FF - prefs.js: network.proxy.ftp - :0
FF - prefs.js: network.proxy.gopher - :0
FF - prefs.js: network.proxy.http - :0
FF - prefs.js: network.proxy.socks - :0
FF - prefs.js: network.proxy.ssl - :0
FF - prefs.js: network.proxy.type - 0
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\google\google earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\google\update\1.3.21.69\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\microsoft silverlight\4.0.60531.0\npctrlui.dll
FF - plugin: c:\program files\picasa2\npPicasa2.dll
FF - plugin: c:\program files\picasa2\npPicasa3.dll
FF - plugin: c:\program files\sony\media go\npmediago.dll
FF - plugin: c:\program files\unity\webplayer\loader\npUnity3D32.dll
FF - plugin: d:\mozilla plugins\npitunes.dll
.
---- FIREFOX POLICIES ----
FF - user.js: general.useragent.extra.brc - BRI/1
.
============= SERVICES / DRIVERS ===============
.
R2 ComputerTimeServer;ComputerTime Server;c:\program files\softwaretime\computertime\bin\fbserver.exe [2010-10-12 3780608]
R2 LBeepKE;Logitech Beep Suppression Driver;c:\windows\system32\drivers\LBeepKE.sys [2010-8-20 10448]
R2 STProxy;STProxy;c:\program files\softwaretime\computertime\bin\STProxy.exe [2011-3-9 3035136]
R2 vseamps;vseamps;c:\program files\common files\authentium\antivirus5\vseamps.exe [2010-4-8 117288]
R2 vsedsps;vsedsps;c:\program files\common files\authentium\antivirus5\vsedsps.exe [2010-4-8 117288]
R2 vseqrts;vseqrts;c:\program files\common files\authentium\antivirus5\vseqrts.exe [2010-4-8 154152]
R3 WsAudio_DeviceS(1);WsAudio_DeviceS(1);c:\windows\system32\drivers\WsAudio_DeviceS(1).sys [2009-12-26 25704]
R3 WsAudio_DeviceS(2);WsAudio_DeviceS(2);c:\windows\system32\drivers\WsAudio_DeviceS(2).sys [2009-12-26 25704]
R3 WsAudio_DeviceS(3);WsAudio_DeviceS(3);c:\windows\system32\drivers\WsAudio_DeviceS(3).sys [2009-12-26 25704]
R3 WsAudio_DeviceS(4);WsAudio_DeviceS(4);c:\windows\system32\drivers\WsAudio_DeviceS(4).sys [2009-12-26 25704]
R3 WsAudio_DeviceS(5);WsAudio_DeviceS(5);c:\windows\system32\drivers\WsAudio_DeviceS(5).sys [2009-12-26 25704]
S2 gupdate1c9b9f9fa17bde8;Google Update Service (gupdate1c9b9f9fa17bde8);c:\program files\google\update\GoogleUpdate.exe [2009-4-10 133104]
S3 FANTOM;LEGO MINDSTORMS NXT Driver;c:\windows\system32\drivers\fantom.sys [2007-5-30 39424]
S3 gupdatem;Google Update Service (gupdatem);c:\program files\google\update\GoogleUpdate.exe [2009-4-10 133104]
S3 MBAMSwissArmy;MBAMSwissArmy;\??\c:\windows\system32\drivers\mbamswissarmy.sys --> c:\windows\system32\drivers\mbamswissarmy.sys [?]
S4 MSSQLServerADHelper100;SQL Active Directory Helper Service;c:\program files\microsoft sql server\100\shared\sqladhlp.exe [2008-7-10 47128]
S4 RsFx0102;RsFx0102 Driver;c:\windows\system32\drivers\RsFx0102.sys [2008-7-10 242712]
S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS);c:\program files\microsoft sql server\mssql10.sqlexpress\mssql\binn\SQLAGENT.EXE [2008-7-10 369688]
.
=============== Created Last 30 ================
.
2011-10-07 03:41:32 73728 ----a-w- c:\windows\system32\javacpl.cpl
2011-10-07 03:41:32 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-10-06 11:30:00 -------- dc----w- C:\_OTM
2011-10-04 04:26:19 -------- d-----w- c:\program files\ESET
2011-09-26 14:00:25 -------- d-----w- c:\documents and settings\julie goodwin\application data\Malwarebytes
2011-09-26 13:58:26 -------- d-----w- c:\documents and settings\all users\application data\Malwarebytes
2011-09-26 13:58:15 22216 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-09-26 13:58:13 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-09-26 13:39:52 96200 ----a-w- c:\windows\system32\drivers\CDAVFS.sys
2011-09-26 13:39:30 -------- d-----w- c:\program files\common files\Authentium
.
==================== Find3M ====================
.
2011-09-09 09:12:13 599040 ----a-w- c:\windows\system32\crypt32.dll
2011-08-19 03:15:19 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-07-15 13:29:31 456320 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2006-08-25 23:43:48 11817800 -c----w- c:\program files\GoogleEarth.exe
2002-07-26 22:02:06 153088 -c--a-w- c:\program files\UNWISE.EXE
.
============= FINISH: 22:58:53.14 ===============
 
Mozilla updated.
PS- I notice that a software/program/toolbar called CyberDefender has taken over the firefox and IE home page. I am not quite sure how it got there - maybe I didn't check or uncheck something when running the scans? Or maybe my kids clicked on something? I have tried to unistall in add/remove programs, but I can't find it there. I did a search online on how to remove and it says to use an unistaller program??? Any suggestions?
 
Hello gilmore :),

There are a few things that I would like some clarification from you before making further moves.

Did you install AVSDK5 and do you know what is it?

Previously you had Norton Security Suite, did you uninstall it?

I see from your installed programs list that the Firefox version is 7, but somehow in the running process it is C:\Program Files\Mozilla Firefox 4.0 Beta 8\firefox.exe. Older versions have security vulnerabilities. To be sure that you are having and using the correct one, please uninstall Firefox fully, then get the latest one from here.
 
I don't think I install AVSDK5 and I don't know what it is. Did a search - looks like a virus or worm???
I must have uninstalled the Norton Security Suite when I unistalled the other Norton program. Is that ok?
Deleted firefox from the C drive and add/remove programs and reinstalled.
 
Hello gilmore :),

Do you have other user accounts that have Administrator rights?

AVSDK5 appears legitimate and seems to be linked with the CyberDefender, but I am not familiar with it. Since you did not install it, it is OK to remove it. Please uninstall AVSDK5 through the Control Panel.

After you have removed Norton Security Suite, your computer does not have any protection. If you have the license, you can put it back, or choose from one of these:

Avast
Microsoft Security Essentials

AV is a very critical part of your system to keep the it safe and clean. Without it, a computer can easily get infected. You should only select one of these two, and keep only one installed.

Please rerun DDS and post back its logs.
 
I did have one other user as an adminstrator - but have now changed that to a limited account
I thought I got rid of the cyberdefender by going through the my computer and locating the file. It was not in my add/remove programs. Then the cyberdefender still appeared on the IE, so I re-installed IE and it seems to have fixed it.
I must have had a "brain glitch" because I forgot that I did uninstall the Norton program. I did this because our new isp is Macafee. I installed Mcafee. When installing, it found the malwarebytes and asked to uninstall because it would interfere - so I uninstalled.

Here is the DDS log:
.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 7.0.5730.11 BrowserJavaVersion: 1.6.0_27
Run by Julie G at 11:28:57 on 2011-10-10
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.1014.525 [GMT -5:00]
.
AV: McAfee Anti-Virus and Anti-Spyware *Disabled/Updated* {84B5EE75-6421-4CDE-A33A-DD43BA9FAD83}
FW: McAfee Firewall *Disabled*
.
============== Running Processes ===============
.
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
svchost.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\SoftwareTime\ComputerTime\bin\fbserver.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\SoftwareTime\ComputerTime\bin\STProxy.exe
C:\Program Files\Common Files\Authentium\AntiVirus5\vsedsps.exe
C:\Program Files\Common Files\Authentium\AntiVirus5\vseamps.exe
C:\Program Files\Common Files\Authentium\AntiVirus5\vseqrts.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\SoftwareTime\ComputerTime\bin\ctmn32.exe
C:\Program Files\Logitech\SetPointP\SetPoint.exe
C:\Program Files\QuickTime\QTTask.exe
D:\iTunesHelper.exe
C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe
C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE
C:\Program Files\SoftwareTime\ComputerTime\bin\stka32.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
C:\WINDOWS\system32\mfevtps.exe
C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
C:\Program Files\Mozilla Firefox\firefox.exe
.
============== Pseudo HJT Report ===============
.
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uSearch Bar = hxxp://www.google.com/ie
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: DriveLetterAccess: {5ca3d70e-1895-11cf-8e15-001234567890} - c:\windows\system32\dla\DLASHX_W.DLL
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SEPsearchhelperie.dll
BHO: scriptproxy: {7db2d5a0-7241-4e79-b68d-6309f01c5231} - c:\program files\common files\mcafee\systemcore\ScriptSn.20111010110833.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.7.6406.1642\swg.dll
BHO: McAfee SiteAdvisor BHO: {b164e929-a1b6-4a06-b104-2cd0e90a88ff} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
BHO: Vuze Remote Toolbar: {ba14329e-9550-4989-b3f2-9732e92d17cc} - c:\program files\vuze_remote\tbVuze.dll
BHO: Bing Bar BHO: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\program files\msn toolbar\platform\6.3.2291.0\npwinext.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: Vuze Remote Toolbar: {ba14329e-9550-4989-b3f2-9732e92d17cc} - c:\program files\vuze_remote\tbVuze.dll
TB: @c:\program files\msn toolbar\platform\6.3.2291.0\npwinext.dll,-100: {8dcb7100-df86-4384-8842-8fa844297b3f} - c:\program files\msn toolbar\platform\6.3.2291.0\npwinext.dll
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
TB: McAfee SiteAdvisor Toolbar: {0ebbbe48-bad4-4b4c-8e5a-516abecae064} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
TB: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No File
TB: {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No File
TB: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [MSMSGS] "c:\program files\messenger\msmsgs.exe" /background
uRunOnce: [*ctmn32] "c:\program files\softwaretime\computertime\bin\ctmn32.exe" HKCU-RunOnce
mRun: [*ctmn32] "c:\program files\softwaretime\computertime\bin\ctmn32.exe" HKLM-Run
mRun: [EvtMgr6] c:\program files\logitech\setpointp\SetPoint.exe /launchGaming
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "D:\iTunesHelper.exe"
mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe
mRun: [<NO NAME>]
mRun: [Microsoft Default Manager] "c:\program files\microsoft\search enhancement pack\default manager\DefMgr.exe" -resume
mRun: [MMTray] "c:\program files\musicmatch\musicmatch jukebox\mm_tray.exe"
mRun: [PCLEUSBTip] c:\program files\pinnacle\shared files\programs\usbtip\USBTip.exe
mRun: [USBToolTip] "c:\program files\pinnacle\shared files\\programs\usbtip\USBTip.exe"
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [mcui_exe] "c:\program files\mcafee.com\agent\mcagent.exe" /runkey
mRunOnce: [*ctmn32] "c:\program files\softwaretime\computertime\bin\ctmn32.exe" HKLM-RunOnce
StartupFolder: c:\docume~1\julieg~1\startm~1\programs\startup\erunta~1.lnk - c:\program files\erunt\AUTOBACK.EXE
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~4\office11\REFIEBAR.DLL
IE: {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - {FE54FA40-D68C-11d2-98FA-00C0F0318AFE} - c:\windows\system32\Shdocvw.dll
LSP: c:\windows\system32\STProxy.dll
DPF: {549F957E-2F89-11D6-8CFE-00C04F52B225} - hxxp://coupons.smartsource.com/download/cscmv5X.cab
DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} - hxxp://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase5036.cab
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab
DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} - hxxp://atv.disney.go.com/global/download/otoy/OTOYAX29b.cab
DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} - hxxp://www.ca.com/us/securityadvisor/virusinfo/webscan.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: {DE625294-70E6-45ED-B895-CFFA13AEB044} - hxxp://rescam1.b2science.org/activex/AMC.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: DhcpNameServer = 192.168.1.254
TCP: Interfaces\{3F815C68-606F-4179-9E43-F7E95177B20C} : DhcpNameServer = 192.168.1.254
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~1\mcafee\sitead~1\McIEPlg.dll
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~1\mcafee\sitead~1\McIEPlg.dll
Notify: igfxcui - igfxdev.dll
Notify: LBTWlgn - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\julie goodwin\application data\mozilla\firefox\profiles\07mj6jjm.default\
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\google\google earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\google\update\1.3.21.69\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\microsoft silverlight\4.0.60531.0\npctrlui.dll
FF - plugin: c:\program files\picasa2\npPicasa2.dll
FF - plugin: c:\program files\picasa2\npPicasa3.dll
FF - plugin: c:\program files\sony\media go\npmediago.dll
FF - plugin: c:\program files\unity\webplayer\loader\npUnity3D32.dll
FF - plugin: d:\mozilla plugins\npitunes.dll
.
============= SERVICES / DRIVERS ===============
.
R0 mfehidk;McAfee Inc. mfehidk;c:\windows\system32\drivers\mfehidk.sys [2011-3-13 459728]
R1 mfetdi2k;McAfee Inc. mfetdi2k;c:\windows\system32\drivers\mfetdi2k.sys [2011-10-10 84200]
R2 ComputerTimeServer;ComputerTime Server;c:\program files\softwaretime\computertime\bin\fbserver.exe [2010-10-12 3780608]
R2 LBeepKE;Logitech Beep Suppression Driver;c:\windows\system32\drivers\LBeepKE.sys [2010-8-20 10448]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\program files\common files\mcafee\mcsvchost\McSvHost.exe [2011-10-10 271480]
R2 McMPFSvc;McAfee Personal Firewall Service;c:\program files\common files\mcafee\mcsvchost\McSvHost.exe [2011-10-10 271480]
R2 McNaiAnn;McAfee VirusScan Announcer;c:\program files\common files\mcafee\mcsvchost\McSvHost.exe [2011-10-10 271480]
R2 McProxy;McAfee Proxy Service;c:\program files\common files\mcafee\mcsvchost\McSvHost.exe [2011-10-10 271480]
R2 McShield;McShield;c:\program files\common files\mcafee\systemcore\mcshield.exe [2011-10-10 171168]
R2 mfefire;McAfee Firewall Core Service;c:\program files\common files\mcafee\systemcore\mfefire.exe [2011-10-10 188136]
R2 mfevtp;McAfee Validation Trust Protection Service;c:\windows\system32\mfevtps.exe [2011-10-10 148520]
R2 STProxy;STProxy;c:\program files\softwaretime\computertime\bin\STProxy.exe [2011-3-9 3035136]
R2 vseamps;vseamps;c:\program files\common files\authentium\antivirus5\vseamps.exe [2010-4-8 117288]
R2 vsedsps;vsedsps;c:\program files\common files\authentium\antivirus5\vsedsps.exe [2010-4-8 117288]
R2 vseqrts;vseqrts;c:\program files\common files\authentium\antivirus5\vseqrts.exe [2010-4-8 154152]
R3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys [2011-10-10 56064]
R3 mfeavfk;McAfee Inc. mfeavfk;c:\windows\system32\drivers\mfeavfk.sys [2011-10-10 153280]
R3 mfendiskmp;mfendiskmp;c:\windows\system32\drivers\mfendisk.sys [2011-10-10 88736]
R3 WsAudio_DeviceS(1);WsAudio_DeviceS(1);c:\windows\system32\drivers\WsAudio_DeviceS(1).sys [2009-12-26 25704]
R3 WsAudio_DeviceS(2);WsAudio_DeviceS(2);c:\windows\system32\drivers\WsAudio_DeviceS(2).sys [2009-12-26 25704]
R3 WsAudio_DeviceS(3);WsAudio_DeviceS(3);c:\windows\system32\drivers\WsAudio_DeviceS(3).sys [2009-12-26 25704]
R3 WsAudio_DeviceS(4);WsAudio_DeviceS(4);c:\windows\system32\drivers\WsAudio_DeviceS(4).sys [2009-12-26 25704]
R3 WsAudio_DeviceS(5);WsAudio_DeviceS(5);c:\windows\system32\drivers\WsAudio_DeviceS(5).sys [2009-12-26 25704]
S2 0288811318262942mcinstcleanup;McAfee Application Installer Cleanup (0288811318262942);c:\docume~1\julieg~1\locals~1\temp\028881~1.exe c:\progra~1\common~1\mcafee\instal~1\cleanup.ini -cleanup -nolog -service --> c:\docume~1\julieg~1\locals~1\temp\028881~1.exe c:\progra~1\common~1\mcafee\instal~1\cleanup.ini -cleanup -nolog -service [?]
S2 gupdate1c9b9f9fa17bde8;Google Update Service (gupdate1c9b9f9fa17bde8);c:\program files\google\update\GoogleUpdate.exe [2009-4-10 133104]
S3 FANTOM;LEGO MINDSTORMS NXT Driver;c:\windows\system32\drivers\fantom.sys [2007-5-30 39424]
S3 gupdatem;Google Update Service (gupdatem);c:\program files\google\update\GoogleUpdate.exe [2009-4-10 133104]
S3 MBAMSwissArmy;MBAMSwissArmy;\??\c:\windows\system32\drivers\mbamswissarmy.sys --> c:\windows\system32\drivers\mbamswissarmy.sys [?]
S3 mfebopk;McAfee Inc. mfebopk;c:\windows\system32\drivers\mfebopk.sys [2011-10-10 52320]
S3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys [2011-10-10 314088]
S3 mfendisk;McAfee Core NDIS Intermediate Filter;c:\windows\system32\drivers\mfendisk.sys [2011-10-10 88736]
S3 mferkdet;McAfee Inc. mferkdet;c:\windows\system32\drivers\mferkdet.sys [2011-10-10 84488]
S4 MSSQLServerADHelper100;SQL Active Directory Helper Service;c:\program files\microsoft sql server\100\shared\sqladhlp.exe [2008-7-10 47128]
S4 RsFx0102;RsFx0102 Driver;c:\windows\system32\drivers\RsFx0102.sys [2008-7-10 242712]
S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS);c:\program files\microsoft sql server\mssql10.sqlexpress\mssql\binn\SQLAGENT.EXE [2008-7-10 369688]
.
=============== Created Last 30 ================
.
2011-10-10 16:07:42 148520 ----a-w- c:\windows\system32\mfevtps.exe
2011-10-07 03:41:32 73728 ----a-w- c:\windows\system32\javacpl.cpl
2011-10-07 03:41:32 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-10-06 11:30:00 -------- dc----w- C:\_OTM
2011-10-04 04:26:19 -------- d-----w- c:\program files\ESET
2011-09-26 14:00:25 -------- d-----w- c:\documents and settings\julie g\application data\Malwarebytes
2011-09-26 13:58:26 -------- d-----w- c:\documents and settings\all users\application data\Malwarebytes
2011-09-26 13:39:52 96200 ----a-w- c:\windows\system32\drivers\CDAVFS.sys
2011-09-26 13:39:30 -------- d-----w- c:\program files\common files\Authentium
.
==================== Find3M ====================
.
2011-09-09 09:12:13 599040 ----a-w- c:\windows\system32\crypt32.dll
2011-08-19 03:15:19 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-07-15 13:29:31 456320 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2006-08-25 23:43:48 11817800 -c----w- c:\program files\GoogleEarth.exe
2002-07-26 22:02:06 153088 -c--a-w- c:\program files\UNWISE.EXE
.
=================== ROOTKIT ====================
.
Stealth MBR rootkit/Mebroot/Sinowal/TDL4 detector 0.4.2 by Gmer, http://www.gmer.net
Windows 5.1.2600 Disk: WDC_WD1600JS-75NCB3 rev.10.02E04 -> Harddisk0\DR0 -> \Device\Ide\IdeDeviceP1T0L0-17
.
device: opened successfully
user: MBR read successfully
.
Disk trace:
called modules: >>UNKNOWN [0x804D7000]<< >>UNKNOWN [0xF763E000]<< >>UNKNOWN [0xF762E000]<< >>UNKNOWN [0xF7487000]<< >>UNKNOWN [0x806E5000]<< >>UNKNOWN [0xF7BC6000]<< >>UNKNOWN [0xF787E000]<<
_asm { DEC EBP; POP EDX; NOP ; ADD [EBX], AL; ADD [EAX], AL; ADD [EAX+EAX], AL; ADD [EAX], AL; }
1 ntkrnlpa!IofCallDriver[0x804EF1A6] -> \Device\Harddisk0\DR0[0x86D45AB8]
\Driver\Disk[0x86D8CA08] -> IRP_MJ_CREATE -> 0xF7644BB0
3 [0xF763EFD7] -> ntkrnlpa!IofCallDriver[0x804EF1A6] -> \Device\Ide\IdeDeviceP1T0L0-17[0x86D81D98]
\Driver\atapi[0x86DC8B30] -> IRP_MJ_CREATE -> 0xF74916F2
kernel: MBR read successfully
_asm { MOV AX, 0x0; MOV SS, AX; MOV SP, 0x7c00; MOV DS, AX; CLD ; MOV CX, 0x80; MOV SI, SP; MOV DI, 0x600; MOV ES, AX; REP MOVSD ; JMP FAR 0x0:0x62d; }
detected disk devices:
detected hooks:
\Driver\atapi DriverStartIo -> 0xF748E864
user & kernel MBR OK
Warning: possible TDL3 rootkit infection !
.
============= FINISH: 11:30:30.29 ===============
 
Hello gilmore :),

The McAfee package you got seems to be disabled. And you got infected when the security programs are down.

AVSDK5 is still around and Thunderbird has not been updated.

I need to make something clear here. You need to follow my instructions and not make any changes to the computer, otherwise it will be a long process to get you clean.

When security programs are not active, you may get new infections if you continue to use the computer and go online, just like what had happened.

Can you stick with me on this?

If this is a contraint for you, then you may need to find alternative channels to get the computer in tip top condition. If you wish to continue here, please continue the next step.

--------------------

Please download TDSSKiller© from Kaspersky and save it to your desktop. Click here.
  • Alternatively, you may get the zip version and extract the file to the desktop.
  • Double click on TDSSKiller.exe to execute it.
  • Press Start scan to begin.
  • If anything is found, please change all the actions to Skip only. <-- Important, please select Skip only, DO NOT proceed other actions.
  • Then click on Continue at the lower right corner.
  • You may be prompted to reboot your computer, please consent.
  • Once complete, a log will be produced at C:\. It will be named TDSSKiller.Version_Date_Time_log.txt, for example, C:\TDSSKiller.2.4.12.0_26.12.2010_23.12.11_log.txt.
  • Please post the contents of this log.

--------------------

Please post back:
1. whether to continue
2. if yes, TDSSKiller log
 
Hello-
I should have installed McAfee a few months ago when we switched isp's. The whole time I was doing the install, I had in the back of my mind that I shouldn't be installing at this time because of what I read in the forum/ or maybe it was the "before you post". But, I still knew I needed the anti-virus software on the computer and felt that antivirus-software would be ok to install. Maybe I should have just left Norton on - but, we no longer subscribe to Norton. Anyways, I guess I should have waited. Sorry about that - I'm not trying to jerk you around or make things more compliccated - really, I'm not.
I did the TDSSKiller.exe and copied and pasted results below. It didn't seem to find anything, so the "skip" part never came into play.
I'm confused about the AVSDK5 - is it a virus/worm? I also thought I updated Mozilla Thunderbird. I had trouble locating how to update, but finally figured it out - or at least I thought I did. It is not a program I use. My son downloaded. I can't recall the version numbers right now, but I remember when I updated it, it looked like the same version - but, there was not a way to click on the higher number type versions. Does that make sense?
I had the anti-virus disabled while running DDS - was that ok? I thought that I needed to disable while running the DDS.

22:01:09.0109 5124 TDSS rootkit removing tool 2.6.7.0 Oct 10 2011 09:40:06
22:01:09.0593 5124 ============================================================
22:01:09.0593 5124 Current date / time: 2011/10/10 22:01:09.0593
22:01:09.0593 5124 SystemInfo:
22:01:09.0593 5124
22:01:09.0593 5124 OS Version: 5.1.2600 ServicePack: 3.0
22:01:09.0593 5124 Product type: Workstation
22:01:09.0593 5124 ComputerName: HOMESCHOOL
22:01:09.0593 5124 UserName: Julie Goodwin
22:01:09.0593 5124 Windows directory: C:\WINDOWS
22:01:09.0593 5124 System windows directory: C:\WINDOWS
22:01:09.0593 5124 Processor architecture: Intel x86
22:01:09.0593 5124 Number of processors: 2
22:01:09.0593 5124 Page size: 0x1000
22:01:09.0593 5124 Boot type: Normal boot
22:01:09.0593 5124 ============================================================
22:01:11.0015 5124 Initialize success
22:01:13.0156 4156 ============================================================
22:01:13.0156 4156 Scan started
22:01:13.0156 4156 Mode: Manual;
22:01:13.0156 4156 ============================================================
22:01:14.0062 4156 Abiosdsk - ok
22:01:14.0125 4156 abp480n5 (6abb91494fe6c59089b9336452ab2ea3) C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS
22:01:14.0125 4156 abp480n5 - ok
22:01:14.0187 4156 ACPI (8fd99680a539792a30e97944fdaecf17) C:\WINDOWS\system32\DRIVERS\ACPI.sys
22:01:14.0187 4156 ACPI - ok
22:01:14.0234 4156 ACPIEC (9859c0f6936e723e4892d7141b1327d5) C:\WINDOWS\system32\drivers\ACPIEC.sys
22:01:14.0234 4156 ACPIEC - ok
22:01:14.0265 4156 adpu160m (9a11864873da202c996558b2106b0bbc) C:\WINDOWS\system32\DRIVERS\adpu160m.sys
22:01:14.0265 4156 adpu160m - ok
22:01:14.0296 4156 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
22:01:14.0296 4156 aec - ok
22:01:14.0359 4156 AFD (355556d9e580915118cd7ef736653a89) C:\WINDOWS\System32\drivers\afd.sys
22:01:14.0359 4156 AFD - ok
22:01:14.0421 4156 agp440 (08fd04aa961bdc77fb983f328334e3d7) C:\WINDOWS\system32\DRIVERS\agp440.sys
22:01:14.0421 4156 agp440 - ok
22:01:14.0437 4156 agpCPQ (03a7e0922acfe1b07d5db2eeb0773063) C:\WINDOWS\system32\DRIVERS\agpCPQ.sys
22:01:14.0437 4156 agpCPQ - ok
22:01:14.0453 4156 Aha154x (c23ea9b5f46c7f7910db3eab648ff013) C:\WINDOWS\system32\DRIVERS\aha154x.sys
22:01:14.0453 4156 Aha154x - ok
22:01:14.0484 4156 aic78u2 (19dd0fb48b0c18892f70e2e7d61a1529) C:\WINDOWS\system32\DRIVERS\aic78u2.sys
22:01:14.0484 4156 aic78u2 - ok
22:01:14.0500 4156 aic78xx (b7fe594a7468aa0132deb03fb8e34326) C:\WINDOWS\system32\DRIVERS\aic78xx.sys
22:01:14.0500 4156 aic78xx - ok
22:01:14.0515 4156 AliIde (1140ab9938809700b46bb88e46d72a96) C:\WINDOWS\system32\DRIVERS\aliide.sys
22:01:14.0515 4156 AliIde - ok
22:01:14.0578 4156 alim1541 (cb08aed0de2dd889a8a820cd8082d83c) C:\WINDOWS\system32\DRIVERS\alim1541.sys
22:01:14.0578 4156 alim1541 - ok
22:01:14.0593 4156 amdagp (95b4fb835e28aa1336ceeb07fd5b9398) C:\WINDOWS\system32\DRIVERS\amdagp.sys
22:01:14.0593 4156 amdagp - ok
22:01:14.0656 4156 amsint (79f5add8d24bd6893f2903a3e2f3fad6) C:\WINDOWS\system32\DRIVERS\amsint.sys
22:01:14.0656 4156 amsint - ok
22:01:14.0687 4156 asc (62d318e9a0c8fc9b780008e724283707) C:\WINDOWS\system32\DRIVERS\asc.sys
22:01:14.0687 4156 asc - ok
22:01:14.0703 4156 asc3350p (69eb0cc7714b32896ccbfd5edcbea447) C:\WINDOWS\system32\DRIVERS\asc3350p.sys
22:01:14.0703 4156 asc3350p - ok
22:01:14.0718 4156 asc3550 (5d8de112aa0254b907861e9e9c31d597) C:\WINDOWS\system32\DRIVERS\asc3550.sys
22:01:14.0718 4156 asc3550 - ok
22:01:14.0781 4156 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
22:01:14.0781 4156 AsyncMac - ok
22:01:14.0796 4156 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
22:01:14.0796 4156 atapi - ok
22:01:14.0812 4156 Atdisk - ok
22:01:14.0875 4156 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
22:01:14.0875 4156 Atmarpc - ok
22:01:14.0953 4156 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
22:01:14.0953 4156 audstub - ok
22:01:14.0984 4156 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
22:01:14.0984 4156 Beep - ok
22:01:15.0062 4156 bvrp_pci (c945dc4eee3f624dfd07788ea7f0db0a) C:\WINDOWS\system32\drivers\bvrp_pci.sys
22:01:15.0062 4156 bvrp_pci - ok
22:01:15.0078 4156 cbidf (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\DRIVERS\cbidf2k.sys
22:01:15.0078 4156 cbidf - ok
22:01:15.0093 4156 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
22:01:15.0093 4156 cbidf2k - ok
22:01:15.0109 4156 CCDECODE (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
22:01:15.0109 4156 CCDECODE - ok
22:01:15.0140 4156 cd20xrnt (f3ec03299634490e97bbce94cd2954c7) C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys
22:01:15.0140 4156 cd20xrnt - ok
22:01:15.0171 4156 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
22:01:15.0171 4156 Cdaudio - ok
22:01:15.0234 4156 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
22:01:15.0234 4156 Cdfs - ok
22:01:15.0250 4156 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
22:01:15.0250 4156 Cdrom - ok
22:01:15.0312 4156 cfwids (7fd604cd7a7a0ff8975af61bdf64c577) C:\WINDOWS\system32\drivers\cfwids.sys
22:01:15.0312 4156 cfwids - ok
22:01:15.0312 4156 Changer - ok
22:01:15.0359 4156 CmdIde (e5dcb56c533014ecbc556a8357c929d5) C:\WINDOWS\system32\DRIVERS\cmdide.sys
22:01:15.0359 4156 CmdIde - ok
22:01:15.0390 4156 Cpqarray (3ee529119eed34cd212a215e8c40d4b6) C:\WINDOWS\system32\DRIVERS\cpqarray.sys
22:01:15.0406 4156 Cpqarray - ok
22:01:15.0437 4156 dac2w2k (e550e7418984b65a78299d248f0a7f36) C:\WINDOWS\system32\DRIVERS\dac2w2k.sys
22:01:15.0437 4156 dac2w2k - ok
22:01:15.0453 4156 dac960nt (683789caa3864eb46125ae86ff677d34) C:\WINDOWS\system32\DRIVERS\dac960nt.sys
22:01:15.0453 4156 dac960nt - ok
22:01:15.0515 4156 DCamUSBEMPIA (5118ea8a2f55fa4d4295516500b78229) C:\WINDOWS\system32\DRIVERS\emDevice.sys
22:01:15.0515 4156 DCamUSBEMPIA - ok
22:01:15.0562 4156 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
22:01:15.0562 4156 Disk - ok
22:01:15.0609 4156 DLABOIOM (e2d0de31442390c35e3163c87cb6a9eb) C:\WINDOWS\system32\DLA\DLABOIOM.SYS
22:01:15.0625 4156 DLABOIOM - ok
22:01:15.0640 4156 DLACDBHM (d979bebcf7edcc9c9ee1857d1a68c67b) C:\WINDOWS\system32\Drivers\DLACDBHM.SYS
22:01:15.0640 4156 DLACDBHM - ok
22:01:15.0687 4156 DLADResN (83545593e297f50a8e2524b4c071a153) C:\WINDOWS\system32\DLA\DLADResN.SYS
22:01:15.0687 4156 DLADResN - ok
22:01:15.0703 4156 DLAIFS_M (96e01d901cdc98c7817155cc057001bf) C:\WINDOWS\system32\DLA\DLAIFS_M.SYS
22:01:15.0703 4156 DLAIFS_M - ok
22:01:15.0921 4156 DLAOPIOM (0a60a39cc5e767980a31ca5d7238dfa9) C:\WINDOWS\system32\DLA\DLAOPIOM.SYS
22:01:15.0921 4156 DLAOPIOM - ok
22:01:16.0046 4156 DLAPoolM (9fe2b72558fc808357f427fd83314375) C:\WINDOWS\system32\DLA\DLAPoolM.SYS
22:01:16.0046 4156 DLAPoolM - ok
22:01:16.0062 4156 DLARTL_N (7ee0852ae8907689df25049dcd2342e8) C:\WINDOWS\system32\Drivers\DLARTL_N.SYS
22:01:16.0062 4156 DLARTL_N - ok
22:01:16.0078 4156 DLAUDFAM (f08e1dafac457893399e03430a6a1397) C:\WINDOWS\system32\DLA\DLAUDFAM.SYS
22:01:16.0078 4156 DLAUDFAM - ok
22:01:16.0093 4156 DLAUDF_M (e7d105ed1e694449d444a9933df8e060) C:\WINDOWS\system32\DLA\DLAUDF_M.SYS
22:01:16.0093 4156 DLAUDF_M - ok
22:01:16.0140 4156 dmboot (d992fe1274bde0f84ad826acae022a41) C:\WINDOWS\system32\drivers\dmboot.sys
22:01:16.0156 4156 dmboot - ok
22:01:16.0265 4156 dmio (7c824cf7bbde77d95c08005717a95f6f) C:\WINDOWS\system32\drivers\dmio.sys
22:01:16.0265 4156 dmio - ok
22:01:16.0328 4156 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
22:01:16.0328 4156 dmload - ok
22:01:16.0390 4156 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
22:01:16.0390 4156 DMusic - ok
22:01:16.0421 4156 dpti2o (40f3b93b4e5b0126f2f5c0a7a5e22660) C:\WINDOWS\system32\DRIVERS\dpti2o.sys
22:01:16.0421 4156 dpti2o - ok
22:01:16.0468 4156 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
22:01:16.0468 4156 drmkaud - ok
22:01:16.0500 4156 DRVMCDB (fd0f95981fef9073659d8ec58e40aa3c) C:\WINDOWS\system32\Drivers\DRVMCDB.SYS
22:01:16.0500 4156 DRVMCDB - ok
22:01:16.0515 4156 DRVNDDM (b4869d320428cdc5ec4d7f5e808e99b5) C:\WINDOWS\system32\Drivers\DRVNDDM.SYS
22:01:16.0515 4156 DRVNDDM - ok
22:01:16.0640 4156 DSproct (413f2d5f9d802688242c23b38f767ecb) C:\Program Files\DellSupport\GTAction\triggers\DSproct.sys
22:01:16.0640 4156 DSproct - ok
22:01:16.0687 4156 dsunidrv (dfeabb7cfffadea4a912ab95bdc3177a) C:\WINDOWS\system32\DRIVERS\dsunidrv.sys
22:01:16.0687 4156 dsunidrv - ok
22:01:16.0750 4156 E100B (95974e66d3de4951d29e28e8bc0b644c) C:\WINDOWS\system32\DRIVERS\e100b325.sys
22:01:16.0750 4156 E100B - ok
22:01:16.0812 4156 emAudio (ffa45148a2d5d05dbb3c0997e579fc9c) C:\WINDOWS\system32\drivers\emAudio.sys
22:01:16.0812 4156 emAudio - ok
22:01:16.0890 4156 FANTOM (e3b0cd18146f9d51a34969e9bc2458d2) C:\WINDOWS\system32\DRIVERS\fantom.sys
22:01:16.0890 4156 FANTOM - ok
22:01:16.0953 4156 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
22:01:16.0953 4156 Fastfat - ok
22:01:17.0015 4156 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
22:01:17.0015 4156 Fdc - ok
22:01:17.0062 4156 FiltUSBEMPIA (6f87e4706f59463b74bc4fad0f67338f) C:\WINDOWS\system32\DRIVERS\emFilter.sys
22:01:17.0062 4156 FiltUSBEMPIA - ok
22:01:17.0125 4156 Fips (d45926117eb9fa946a6af572fbe1caa3) C:\WINDOWS\system32\drivers\Fips.sys
22:01:17.0125 4156 Fips - ok
22:01:17.0156 4156 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
22:01:17.0156 4156 Flpydisk - ok
22:01:17.0187 4156 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
22:01:17.0203 4156 FltMgr - ok
22:01:17.0234 4156 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
22:01:17.0234 4156 Fs_Rec - ok
22:01:17.0250 4156 Ftdisk (6ac26732762483366c3969c9e4d2259d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
22:01:17.0250 4156 Ftdisk - ok
22:01:17.0375 4156 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\WINDOWS\system32\Drivers\GEARAspiWDM.sys
22:01:17.0375 4156 GEARAspiWDM - ok
22:01:17.0437 4156 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
22:01:17.0437 4156 Gpc - ok
22:01:17.0515 4156 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
22:01:17.0515 4156 HDAudBus - ok
22:01:17.0593 4156 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
22:01:17.0593 4156 HidUsb - ok
22:01:17.0656 4156 hpn (b028377dea0546a5fcfba928a8aefae0) C:\WINDOWS\system32\DRIVERS\hpn.sys
22:01:17.0656 4156 hpn - ok
22:01:17.0687 4156 HSFHWBS2 (77e4ff0b73bc0aeaaf39bf0c8104231f) C:\WINDOWS\system32\DRIVERS\HSFHWBS2.sys
22:01:17.0687 4156 HSFHWBS2 - ok
22:01:17.0781 4156 HSF_DP (60e1604729a15ef4a3b05f298427b3b1) C:\WINDOWS\system32\DRIVERS\HSF_DP.sys
22:01:17.0781 4156 HSF_DP - ok
22:01:17.0859 4156 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
22:01:17.0859 4156 HTTP - ok
22:01:17.0921 4156 i2omgmt (9368670bd426ebea5e8b18a62416ec28) C:\WINDOWS\system32\drivers\i2omgmt.sys
22:01:17.0921 4156 i2omgmt - ok
22:01:17.0953 4156 i2omp (f10863bf1ccc290babd1a09188ae49e0) C:\WINDOWS\system32\DRIVERS\i2omp.sys
22:01:17.0953 4156 i2omp - ok
22:01:17.0984 4156 i8042prt (4a0b06aa8943c1e332520f7440c0aa30) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
22:01:17.0984 4156 i8042prt - ok
22:01:18.0046 4156 ialm (5a8e05f1d5c36abd58cffa111eb325ea) C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
22:01:18.0062 4156 ialm - ok
22:01:18.0125 4156 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
22:01:18.0125 4156 Imapi - ok
22:01:18.0171 4156 ini910u (4a40e045faee58631fd8d91afc620719) C:\WINDOWS\system32\DRIVERS\ini910u.sys
22:01:18.0171 4156 ini910u - ok
22:01:18.0218 4156 IntelIde (b5466a9250342a7aa0cd1fba13420678) C:\WINDOWS\system32\DRIVERS\intelide.sys
22:01:18.0234 4156 IntelIde - ok
22:01:18.0281 4156 intelppm (8c953733d8f36eb2133f5bb58808b66b) C:\WINDOWS\system32\DRIVERS\intelppm.sys
22:01:18.0281 4156 intelppm - ok
22:01:18.0312 4156 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
22:01:18.0312 4156 Ip6Fw - ok
22:01:18.0343 4156 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
22:01:18.0343 4156 IpFilterDriver - ok
22:01:18.0390 4156 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
22:01:18.0406 4156 IpInIp - ok
22:01:18.0468 4156 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
22:01:18.0484 4156 IpNat - ok
22:01:18.0515 4156 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
22:01:18.0515 4156 IPSec - ok
22:01:18.0578 4156 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
22:01:18.0578 4156 IRENUM - ok
22:01:18.0640 4156 isapnp (05a299ec56e52649b1cf2fc52d20f2d7) C:\WINDOWS\system32\DRIVERS\isapnp.sys
22:01:18.0640 4156 isapnp - ok
22:01:18.0718 4156 Kbdclass (463c1ec80cd17420a542b7f36a36f128) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
22:01:18.0718 4156 Kbdclass - ok
22:01:18.0750 4156 kbdhid (9ef487a186dea361aa06913a75b3fa99) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
22:01:18.0750 4156 kbdhid - ok
22:01:18.0812 4156 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
22:01:18.0812 4156 kmixer - ok
22:01:18.0859 4156 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
22:01:18.0859 4156 KSecDD - ok
22:01:18.0890 4156 LBeepKE (ca63fe81705ad660e482bef210bf2c73) C:\WINDOWS\system32\Drivers\LBeepKE.sys
22:01:18.0890 4156 LBeepKE - ok
22:01:18.0890 4156 lbrtfdc - ok
22:01:18.0937 4156 LHidFilt (b68309f25c5787385da842eb5b496958) C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys
22:01:18.0937 4156 LHidFilt - ok
22:01:18.0984 4156 LMouFilt (63d3b1d3cd267fcc186a0146b80d453b) C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys
22:01:18.0984 4156 LMouFilt - ok
22:01:19.0031 4156 LUsbFilt (0c62957912d4df1e4ba9795e6be3ed38) C:\WINDOWS\system32\Drivers\LUsbFilt.Sys
22:01:19.0031 4156 LUsbFilt - ok
22:01:19.0093 4156 MarvinBus (269c14d512b74cc28d2812ff7d1eb066) C:\WINDOWS\system32\DRIVERS\MarvinBus.sys
22:01:19.0093 4156 MarvinBus - ok
22:01:19.0109 4156 MBAMSwissArmy - ok
22:01:19.0171 4156 mdmxsdk (eeaea6514ba7c9d273b5e87c4e1aab30) C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
22:01:19.0171 4156 mdmxsdk - ok
22:01:19.0234 4156 mfeapfk (688b626fca708ee9eb161cad1f7363a9) C:\WINDOWS\system32\drivers\mfeapfk.sys
22:01:19.0234 4156 mfeapfk - ok
22:01:19.0296 4156 mfeavfk (dbf6e1b388d5c070d438c61adb990c30) C:\WINDOWS\system32\drivers\mfeavfk.sys
22:01:19.0296 4156 mfeavfk - ok
22:01:19.0312 4156 mfeavfk01 - ok
22:01:19.0343 4156 mfebopk (a528b15e330edb83ea649be318d841d5) C:\WINDOWS\system32\drivers\mfebopk.sys
22:01:19.0343 4156 mfebopk - ok
22:01:19.0406 4156 mfefirek (c7da1b8003c89acedaa13768f7a1c622) C:\WINDOWS\system32\drivers\mfefirek.sys
22:01:19.0406 4156 mfefirek - ok
22:01:19.0500 4156 mfehidk (44184f32392fa2e94d08d056ce750d56) C:\WINDOWS\system32\drivers\mfehidk.sys
22:01:19.0500 4156 mfehidk - ok
22:01:19.0609 4156 mfendisk (b1728195877b18ce63cf0cd00b2871eb) C:\WINDOWS\system32\DRIVERS\mfendisk.sys
22:01:19.0609 4156 mfendisk - ok
22:01:19.0609 4156 mfendiskmp (b1728195877b18ce63cf0cd00b2871eb) C:\WINDOWS\system32\DRIVERS\mfendisk.sys
22:01:19.0609 4156 mfendiskmp - ok
22:01:19.0656 4156 mferkdet (ce1711f7c3f72f6762abd241dcfd5ee1) C:\WINDOWS\system32\drivers\mferkdet.sys
22:01:19.0656 4156 mferkdet - ok
22:01:19.0718 4156 mfetdi2k (25e12c68b49a64ffc873603dfd578236) C:\WINDOWS\system32\drivers\mfetdi2k.sys
22:01:19.0718 4156 mfetdi2k - ok
22:01:19.0765 4156 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
22:01:19.0765 4156 mnmdd - ok
22:01:19.0812 4156 Modem (dfcbad3cec1c5f964962ae10e0bcc8e1) C:\WINDOWS\system32\drivers\Modem.sys
22:01:19.0812 4156 Modem - ok
22:01:19.0843 4156 MODEMCSA (1992e0d143b09653ab0f9c5e04b0fd65) C:\WINDOWS\system32\drivers\MODEMCSA.sys
22:01:19.0843 4156 MODEMCSA - ok
22:01:19.0859 4156 Mouclass (35c9e97194c8cfb8430125f8dbc34d04) C:\WINDOWS\system32\DRIVERS\mouclass.sys
22:01:19.0859 4156 Mouclass - ok
22:01:19.0875 4156 mouhid (b1c303e17fb9d46e87a98e4ba6769685) C:\WINDOWS\system32\DRIVERS\mouhid.sys
22:01:19.0875 4156 mouhid - ok
22:01:19.0921 4156 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
22:01:19.0921 4156 MountMgr - ok
22:01:19.0968 4156 mraid35x (3f4bb95e5a44f3be34824e8e7caf0737) C:\WINDOWS\system32\DRIVERS\mraid35x.sys
22:01:19.0968 4156 mraid35x - ok
22:01:20.0031 4156 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
22:01:20.0031 4156 MRxDAV - ok
22:01:20.0093 4156 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
22:01:20.0109 4156 MRxSmb - ok
22:01:20.0156 4156 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
22:01:20.0156 4156 Msfs - ok
22:01:20.0218 4156 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
22:01:20.0218 4156 MSKSSRV - ok
22:01:20.0281 4156 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
22:01:20.0281 4156 MSPCLOCK - ok
22:01:20.0296 4156 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
22:01:20.0296 4156 MSPQM - ok
22:01:20.0343 4156 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
22:01:20.0343 4156 mssmbios - ok
22:01:20.0421 4156 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys
22:01:20.0421 4156 MSTEE - ok
22:01:20.0453 4156 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
22:01:20.0453 4156 Mup - ok
22:01:20.0500 4156 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
22:01:20.0500 4156 NABTSFEC - ok
22:01:20.0531 4156 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
22:01:20.0546 4156 NDIS - ok
22:01:20.0578 4156 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
22:01:20.0578 4156 NdisIP - ok
22:01:20.0625 4156 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
22:01:20.0625 4156 NdisTapi - ok
22:01:20.0703 4156 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
22:01:20.0703 4156 Ndisuio - ok
22:01:20.0781 4156 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
22:01:20.0781 4156 NdisWan - ok
22:01:20.0828 4156 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
22:01:20.0828 4156 NDProxy - ok
22:01:20.0859 4156 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
22:01:20.0859 4156 NetBIOS - ok
22:01:20.0921 4156 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
22:01:20.0921 4156 NetBT - ok
22:01:21.0015 4156 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
22:01:21.0015 4156 Npfs - ok
22:01:21.0078 4156 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
22:01:21.0078 4156 Ntfs - ok
22:01:21.0109 4156 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
22:01:21.0109 4156 Null - ok
22:01:21.0203 4156 nv (2b298519edbfcf451d43e0f1e8f1006d) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
22:01:21.0218 4156 nv - ok
22:01:21.0250 4156 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
22:01:21.0250 4156 NwlnkFlt - ok
22:01:21.0281 4156 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
22:01:21.0281 4156 NwlnkFwd - ok
22:01:21.0343 4156 Parport (5575faf8f97ce5e713d108c2a58d7c7c) C:\WINDOWS\system32\DRIVERS\parport.sys
22:01:21.0343 4156 Parport - ok
22:01:21.0390 4156 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
22:01:21.0390 4156 PartMgr - ok
22:01:21.0437 4156 ParVdm (70e98b3fd8e963a6a46a2e6247e0bea1) C:\WINDOWS\system32\drivers\ParVdm.sys
22:01:21.0437 4156 ParVdm - ok
22:01:21.0484 4156 PCI (a219903ccf74233761d92bef471a07b1) C:\WINDOWS\system32\DRIVERS\pci.sys
22:01:21.0484 4156 PCI - ok
22:01:21.0500 4156 PCIDump - ok
22:01:21.0531 4156 PCIIde (ccf5f451bb1a5a2a522a76e670000ff0) C:\WINDOWS\system32\DRIVERS\pciide.sys
22:01:21.0531 4156 PCIIde - ok
22:01:21.0593 4156 PCLEPCI (1bebe7de8508a02650cdce45c664c2a2) C:\WINDOWS\system32\drivers\pclepci.sys
22:01:21.0593 4156 PCLEPCI - ok
22:01:21.0656 4156 Pcmcia (9e89ef60e9ee05e3f2eef2da7397f1c1) C:\WINDOWS\system32\drivers\Pcmcia.sys
22:01:21.0656 4156 Pcmcia - ok
22:01:21.0671 4156 PDCOMP - ok
22:01:21.0687 4156 PDFRAME - ok
22:01:21.0703 4156 PDRELI - ok
22:01:21.0718 4156 PDRFRAME - ok
22:01:21.0734 4156 perc2 (6c14b9c19ba84f73d3a86dba11133101) C:\WINDOWS\system32\DRIVERS\perc2.sys
22:01:21.0750 4156 perc2 - ok
22:01:21.0765 4156 perc2hib (f50f7c27f131afe7beba13e14a3b9416) C:\WINDOWS\system32\DRIVERS\perc2hib.sys
22:01:21.0765 4156 perc2hib - ok
22:01:21.0843 4156 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
22:01:21.0843 4156 PptpMiniport - ok
22:01:21.0921 4156 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
22:01:21.0921 4156 PSched - ok
22:01:21.0953 4156 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
22:01:21.0953 4156 Ptilink - ok
22:01:21.0984 4156 PxHelp20 (49452bfcec22f36a7a9b9c2181bc3042) C:\WINDOWS\system32\Drivers\PxHelp20.sys
22:01:21.0984 4156 PxHelp20 - ok
22:01:22.0031 4156 ql1080 (0a63fb54039eb5662433caba3b26dba7) C:\WINDOWS\system32\DRIVERS\ql1080.sys
22:01:22.0031 4156 ql1080 - ok
22:01:22.0046 4156 Ql10wnt (6503449e1d43a0ff0201ad5cb1b8c706) C:\WINDOWS\system32\DRIVERS\ql10wnt.sys
22:01:22.0046 4156 Ql10wnt - ok
22:01:22.0062 4156 ql12160 (156ed0ef20c15114ca097a34a30d8a01) C:\WINDOWS\system32\DRIVERS\ql12160.sys
22:01:22.0062 4156 ql12160 - ok
22:01:22.0078 4156 ql1240 (70f016bebde6d29e864c1230a07cc5e6) C:\WINDOWS\system32\DRIVERS\ql1240.sys
22:01:22.0078 4156 ql1240 - ok
22:01:22.0093 4156 ql1280 (907f0aeea6bc451011611e732bd31fcf) C:\WINDOWS\system32\DRIVERS\ql1280.sys
22:01:22.0093 4156 ql1280 - ok
22:01:22.0171 4156 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
22:01:22.0171 4156 RasAcd - ok
22:01:22.0234 4156 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
22:01:22.0234 4156 Rasl2tp - ok
22:01:22.0281 4156 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
22:01:22.0281 4156 RasPppoe - ok
22:01:22.0343 4156 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
22:01:22.0343 4156 Raspti - ok
22:01:22.0406 4156 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
22:01:22.0406 4156 Rdbss - ok
22:01:22.0437 4156 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
22:01:22.0437 4156 RDPCDD - ok
22:01:22.0500 4156 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
22:01:22.0500 4156 rdpdr - ok
22:01:22.0546 4156 RDPWD (fc105dd312ed64eb66bff111e8ec6eac) C:\WINDOWS\system32\drivers\RDPWD.sys
22:01:22.0562 4156 RDPWD - ok
22:01:22.0593 4156 redbook (f828dd7e1419b6653894a8f97a0094c5) C:\WINDOWS\system32\DRIVERS\redbook.sys
22:01:22.0593 4156 redbook - ok
22:01:22.0687 4156 RsFx0102 (fedd2710b75be3ecf078adace790c423) C:\WINDOWS\system32\DRIVERS\RsFx0102.sys
22:01:22.0687 4156 RsFx0102 - ok
22:01:22.0765 4156 ScanUSBEMPIA (f5a633609777c212ec5ff19927fc5955) C:\WINDOWS\system32\DRIVERS\emScan.sys
22:01:22.0765 4156 ScanUSBEMPIA - ok
22:01:22.0843 4156 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
22:01:22.0843 4156 Secdrv - ok
22:01:22.0921 4156 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
22:01:22.0921 4156 serenum - ok
22:01:22.0984 4156 Serial (cca207a8896d4c6a0c9ce29a4ae411a7) C:\WINDOWS\system32\DRIVERS\serial.sys
22:01:22.0984 4156 Serial - ok
22:01:23.0046 4156 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
22:01:23.0062 4156 Sfloppy - ok
22:01:23.0078 4156 Simbad - ok
22:01:23.0140 4156 sisagp (6b33d0ebd30db32e27d1d78fe946a754) C:\WINDOWS\system32\DRIVERS\sisagp.sys
22:01:23.0140 4156 sisagp - ok
22:01:23.0203 4156 SLIP (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys
22:01:23.0203 4156 SLIP - ok
22:01:23.0234 4156 Sparrow (83c0f71f86d3bdaf915685f3d568b20e) C:\WINDOWS\system32\DRIVERS\sparrow.sys
22:01:23.0234 4156 Sparrow - ok
22:01:23.0296 4156 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
22:01:23.0296 4156 splitter - ok
22:01:23.0343 4156 sr (76bb022c2fb6902fd5bdd4f78fc13a5d) C:\WINDOWS\system32\DRIVERS\sr.sys
22:01:23.0343 4156 sr - ok
22:01:23.0406 4156 SRS_SSCFilter (25ecea986742275ecb23a1cb6bc87a61) C:\WINDOWS\system32\drivers\srs_sscfilter_i386.sys
22:01:23.0406 4156 SRS_SSCFilter - ok
22:01:23.0515 4156 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
22:01:23.0515 4156 Srv - ok
22:01:23.0609 4156 STHDA (2a2dc39623adef8ab3703ab9fac4b440) C:\WINDOWS\system32\drivers\sthda.sys
22:01:23.0625 4156 STHDA - ok
22:01:23.0703 4156 StillCam (a9573045baa16eab9b1085205b82f1ed) C:\WINDOWS\system32\DRIVERS\serscan.sys
22:01:23.0703 4156 StillCam - ok
22:01:23.0765 4156 streamip (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
22:01:23.0765 4156 streamip - ok
22:01:23.0828 4156 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
22:01:23.0828 4156 swenum - ok
22:01:23.0890 4156 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
22:01:23.0890 4156 swmidi - ok
22:01:23.0921 4156 symc810 (1ff3217614018630d0a6758630fc698c) C:\WINDOWS\system32\DRIVERS\symc810.sys
22:01:23.0937 4156 symc810 - ok
22:01:23.0953 4156 symc8xx (070e001d95cf725186ef8b20335f933c) C:\WINDOWS\system32\DRIVERS\symc8xx.sys
22:01:23.0953 4156 symc8xx - ok
22:01:23.0968 4156 sym_hi (80ac1c4abbe2df3b738bf15517a51f2c) C:\WINDOWS\system32\DRIVERS\sym_hi.sys
22:01:23.0968 4156 sym_hi - ok
22:01:23.0984 4156 sym_u3 (bf4fab949a382a8e105f46ebb4937058) C:\WINDOWS\system32\DRIVERS\sym_u3.sys
22:01:23.0984 4156 sym_u3 - ok
22:01:24.0046 4156 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
22:01:24.0046 4156 sysaudio - ok
22:01:24.0109 4156 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
22:01:24.0125 4156 Tcpip - ok
22:01:24.0171 4156 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
22:01:24.0171 4156 TDPIPE - ok
22:01:24.0250 4156 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
22:01:24.0250 4156 TDTCP - ok
22:01:24.0312 4156 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
22:01:24.0312 4156 TermDD - ok
22:01:24.0375 4156 tmcomm (4dc436421c9d745d7e8c37f956701c78) C:\WINDOWS\system32\drivers\tmcomm.sys
22:01:24.0375 4156 tmcomm - ok
22:01:24.0406 4156 TosIde (f2790f6af01321b172aa62f8e1e187d9) C:\WINDOWS\system32\DRIVERS\toside.sys
22:01:24.0406 4156 TosIde - ok
22:01:24.0468 4156 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
22:01:24.0468 4156 Udfs - ok
22:01:24.0500 4156 ultra (1b698a51cd528d8da4ffaed66dfc51b9) C:\WINDOWS\system32\DRIVERS\ultra.sys
22:01:24.0500 4156 ultra - ok
22:01:24.0578 4156 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
22:01:24.0578 4156 Update - ok
22:01:24.0734 4156 USBAAPL (83cafcb53201bbac04d822f32438e244) C:\WINDOWS\system32\Drivers\usbaapl.sys
22:01:24.0734 4156 USBAAPL - ok
22:01:24.0812 4156 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
22:01:24.0812 4156 usbccgp - ok
22:01:24.0875 4156 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
22:01:24.0875 4156 usbehci - ok
22:01:24.0937 4156 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
22:01:24.0937 4156 usbhub - ok
22:01:25.0000 4156 USBIO (f90d8f845095fcd6924e3d751c04e442) C:\WINDOWS\system32\Drivers\usbio.sys
22:01:25.0000 4156 USBIO - ok
22:01:25.0062 4156 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
22:01:25.0062 4156 usbprint - ok
22:01:25.0125 4156 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
22:01:25.0125 4156 usbscan - ok
22:01:25.0171 4156 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
22:01:25.0171 4156 USBSTOR - ok
22:01:25.0234 4156 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
22:01:25.0234 4156 usbuhci - ok
22:01:25.0296 4156 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
22:01:25.0296 4156 VgaSave - ok
22:01:25.0328 4156 viaagp (754292ce5848b3738281b4f3607eaef4) C:\WINDOWS\system32\DRIVERS\viaagp.sys
22:01:25.0328 4156 viaagp - ok
22:01:25.0390 4156 ViaIde (3b3efcda263b8ac14fdf9cbdd0791b2e) C:\WINDOWS\system32\DRIVERS\viaide.sys
22:01:25.0390 4156 ViaIde - ok
22:01:25.0453 4156 VolSnap (4c8fcb5cc53aab716d810740fe59d025) C:\WINDOWS\system32\drivers\VolSnap.sys
22:01:25.0453 4156 VolSnap - ok
22:01:25.0500 4156 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
22:01:25.0500 4156 Wanarp - ok
22:01:25.0515 4156 wanatw - ok
22:01:25.0578 4156 Wdf01000 (d918617b46457b9ac28027722e30f647) C:\WINDOWS\system32\Drivers\wdf01000.sys
22:01:25.0593 4156 Wdf01000 - ok
22:01:25.0609 4156 WDICA - ok
22:01:25.0703 4156 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
22:01:25.0703 4156 wdmaud - ok
22:01:25.0750 4156 winachsf (f59ed5a43b988a18ef582bb07b2327a7) C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys
22:01:25.0750 4156 winachsf - ok
22:01:25.0859 4156 WpdUsb (cf4def1bf66f06964dc0d91844239104) C:\WINDOWS\system32\Drivers\wpdusb.sys
22:01:25.0859 4156 WpdUsb - ok
22:01:25.0890 4156 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
22:01:25.0890 4156 WS2IFSL - ok
22:01:25.0953 4156 WsAudio_DeviceS(1) (4160cbe59d9b5be22e4c3897e8db9d56) C:\WINDOWS\system32\drivers\WsAudio_DeviceS(1).sys
22:01:25.0953 4156 WsAudio_DeviceS(1) - ok
22:01:25.0968 4156 WsAudio_DeviceS(2) (4160cbe59d9b5be22e4c3897e8db9d56) C:\WINDOWS\system32\drivers\WsAudio_DeviceS(2).sys
22:01:25.0968 4156 WsAudio_DeviceS(2) - ok
22:01:25.0984 4156 WsAudio_DeviceS(3) (4160cbe59d9b5be22e4c3897e8db9d56) C:\WINDOWS\system32\drivers\WsAudio_DeviceS(3).sys
22:01:25.0984 4156 WsAudio_DeviceS(3) - ok
22:01:26.0000 4156 WsAudio_DeviceS(4) (4160cbe59d9b5be22e4c3897e8db9d56) C:\WINDOWS\system32\drivers\WsAudio_DeviceS(4).sys
22:01:26.0000 4156 WsAudio_DeviceS(4) - ok
22:01:26.0015 4156 WsAudio_DeviceS(5) (4160cbe59d9b5be22e4c3897e8db9d56) C:\WINDOWS\system32\drivers\WsAudio_DeviceS(5).sys
22:01:26.0015 4156 WsAudio_DeviceS(5) - ok
22:01:26.0093 4156 WSTCODEC (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
22:01:26.0093 4156 WSTCODEC - ok
22:01:26.0156 4156 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
22:01:26.0156 4156 WudfPf - ok
22:01:26.0203 4156 MBR (0x1B8) (5cb90281d1a59b251f6603134774eec3) \Device\Harddisk0\DR0
22:01:26.0203 4156 \Device\Harddisk0\DR0 - ok
22:01:26.0203 4156 MBR (0x1B8) (739b36f7a373fc81121d831231b6d311) \Device\Harddisk1\DR5
22:01:26.0406 4156 \Device\Harddisk1\DR5 - ok
22:01:26.0421 4156 Boot (0x1200) (401a310729643eec1ca00f824bb41875) \Device\Harddisk0\DR0\Partition0
22:01:26.0421 4156 \Device\Harddisk0\DR0\Partition0 - ok
22:01:26.0453 4156 Boot (0x1200) (3b2ecb9f78d7d5c54e202848546aaf71) \Device\Harddisk0\DR0\Partition1
22:01:26.0453 4156 \Device\Harddisk0\DR0\Partition1 - ok
22:01:26.0453 4156 Boot (0x1200) (f2df6bd7eb2bd2aec5bf4f4c6159c1fe) \Device\Harddisk1\DR5\Partition0
22:01:26.0453 4156 \Device\Harddisk1\DR5\Partition0 - ok
22:01:26.0453 4156 ============================================================
22:01:26.0453 4156 Scan finished
22:01:26.0453 4156 ============================================================
22:01:26.0468 4120 Detected object count: 0
22:01:26.0468 4120 Actual detected object count: 0
22:03:10.0265 5120 Deinitialize success
 
Hello gilmore :),

Sorry about that - I'm not trying to jerk you around or make things more compliccated - really, I'm not.
No worries, I am just trying to ensure we stay on track and get it done more effectively :).

Like I have said, I am not familiar with AVSDK5 althought it appears legitimate. If you did not install it in the first place, why not remove it?

The current Thunderbird version is 7.01 whereas yours is at 3.1.11. That is way outdated. You can check for updates via one of the pull down menu title. If I am not mistaken, it is under Help. Alternatively, you can uninstall it, then download the latest version, but this may have an impact on the data.

It is OK to have Antivirus running when scanning with DDS, unless we face a problem.

--------------------

Please repeat the TDSSKiller step, but this time I need you to Change parameters before starting the scan. Check (tick) both Verify driver digital signatures and Detect TDLFS file system (there should be total 4 options checked). Click OK, then start the scan.

Rerun aswMBR as well.
  • Double click the aswMBR.exe file to run it. If you are asked to download an antivirus software, please allow.
  • Click on the Scan button to start. The program will launch a scan.
  • When done, you will see Scan finished successfully. Please click on Save log and save the file to your desktop.
  • Please post the contents of the log in your next reply.

--------------------

Please post back:
1. new TDSSKiller log
2. aswMBR log
 
Hi-
I ran the TDSKiller and aswMBR.exe. Reports below:


Like I have said, I am not familiar with AVSDK5 although it appears legitimate. If you did not install it in the first place, why not remove it?

I can't find AVSDK in order to delete it. I have looked under control panel - add/remove programs.

The current Thunderbird version is 7.01 whereas yours is at 3.1.11. That is way outdated. You can check for updates via one of the pull down menu title. If I am not mistaken, it is under Help. Alternatively, you can uninstall it, then download the latest version, but this may have an impact on the data.

We really don't need Thunderbird - can I just delete?

aswMBR version 0.9.8.986 Copyright(c) 2011 AVAST Software
Run date: 2011-10-11 20:41:11
-----------------------------
20:41:11.281 OS Version: Windows 5.1.2600 Service Pack 3
20:41:11.281 Number of processors: 2 586 0x409
20:41:11.281 ComputerName: HOMESCHOOL UserName:
20:41:11.984 Initialize success
20:42:39.500 AVAST engine defs: 11101102
20:42:51.218 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP1T0L0-17
20:42:51.218 Disk 0 Vendor: WDC_WD1600JS-75NCB3 10.02E04 Size: 152587MB BusType: 3
20:42:53.234 Disk 0 MBR read successfully
20:42:53.234 Disk 0 MBR scan
20:42:53.265 Disk 0 unknown MBR code
20:42:53.265 Disk 0 scanning sectors +312496380
20:42:53.359 Disk 0 scanning C:\WINDOWS\system32\drivers
20:43:11.593 Service scanning
20:43:12.875 Modules scanning
20:43:20.546 Disk 0 trace - called modules:
20:43:20.562 ntkrnlpa.exe CLASSPNP.SYS disk.sys atapi.sys hal.dll pciide.sys PCIIDEX.SYS
20:43:20.562 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x86d4aab8]
20:43:20.562 3 CLASSPNP.SYS[f763efd7] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP1T0L0-17[0x86dd2b00]
20:43:21.390 AVAST engine scan C:\WINDOWS
20:43:53.968 AVAST engine scan C:\WINDOWS\system32
20:46:32.531 AVAST engine scan C:\WINDOWS\system32\drivers
20:46:58.687 AVAST engine scan C:\Documents and Settings\Julie G
20:49:58.171 AVAST engine scan C:\Documents and Settings\All Users
20:52:52.656 Scan finished successfully
21:02:57.875 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\Julie G\Desktop\MBR.dat"
21:02:57.875 The log file has been saved successfully to "C:\Documents and Settings\Julie G\Desktop\aswMBR 10 11 2011.txt"





20:29:56.0171 3532 TDSS rootkit removing tool 2.6.7.0 Oct 10 2011 09:40:06
20:29:57.0000 3532 ============================================================
20:29:57.0000 3532 Current date / time: 2011/10/11 20:29:57.0000
20:29:57.0000 3532 SystemInfo:
20:29:57.0000 3532
20:29:57.0000 3532 OS Version: 5.1.2600 ServicePack: 3.0
20:29:57.0000 3532 Product type: Workstation
20:29:57.0000 3532 ComputerName: HOMESCHOOL
20:29:57.0000 3532 UserName: Julie G
20:29:57.0000 3532 Windows directory: C:\WINDOWS
20:29:57.0000 3532 System windows directory: C:\WINDOWS
20:29:57.0000 3532 Processor architecture: Intel x86
20:29:57.0000 3532 Number of processors: 2
20:29:57.0000 3532 Page size: 0x1000
20:29:57.0000 3532 Boot type: Normal boot
20:29:57.0000 3532 ============================================================
20:29:59.0062 3532 Initialize success
20:30:36.0750 0796 ============================================================
20:30:36.0750 0796 Scan started
20:30:36.0750 0796 Mode: Manual; SigCheck; TDLFS;
20:30:36.0750 0796 ============================================================
20:30:37.0921 0796 Abiosdsk - ok
20:30:37.0968 0796 abp480n5 (6abb91494fe6c59089b9336452ab2ea3) C:\WINDOWS\system32\DRIVERS\ABP480N5.SYS
20:30:41.0140 0796 abp480n5 - ok
20:30:41.0484 0796 ACPI (8fd99680a539792a30e97944fdaecf17) C:\WINDOWS\system32\DRIVERS\ACPI.sys
20:30:41.0750 0796 ACPI - ok
20:30:41.0781 0796 ACPIEC (9859c0f6936e723e4892d7141b1327d5) C:\WINDOWS\system32\drivers\ACPIEC.sys
20:30:41.0953 0796 ACPIEC - ok
20:30:41.0984 0796 adpu160m (9a11864873da202c996558b2106b0bbc) C:\WINDOWS\system32\DRIVERS\adpu160m.sys
20:30:42.0250 0796 adpu160m - ok
20:30:42.0265 0796 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
20:30:42.0437 0796 aec - ok
20:30:42.0500 0796 AFD (355556d9e580915118cd7ef736653a89) C:\WINDOWS\System32\drivers\afd.sys
20:30:42.0703 0796 AFD - ok
20:30:42.0796 0796 agp440 (08fd04aa961bdc77fb983f328334e3d7) C:\WINDOWS\system32\DRIVERS\agp440.sys
20:30:42.0968 0796 agp440 - ok
20:30:43.0046 0796 agpCPQ (03a7e0922acfe1b07d5db2eeb0773063) C:\WINDOWS\system32\DRIVERS\agpCPQ.sys
20:30:43.0234 0796 agpCPQ - ok
20:30:43.0250 0796 Aha154x (c23ea9b5f46c7f7910db3eab648ff013) C:\WINDOWS\system32\DRIVERS\aha154x.sys
20:30:43.0406 0796 Aha154x - ok
20:30:43.0421 0796 aic78u2 (19dd0fb48b0c18892f70e2e7d61a1529) C:\WINDOWS\system32\DRIVERS\aic78u2.sys
20:30:43.0687 0796 aic78u2 - ok
20:30:43.0734 0796 aic78xx (b7fe594a7468aa0132deb03fb8e34326) C:\WINDOWS\system32\DRIVERS\aic78xx.sys
20:30:44.0015 0796 aic78xx - ok
20:30:44.0046 0796 AliIde (1140ab9938809700b46bb88e46d72a96) C:\WINDOWS\system32\DRIVERS\aliide.sys
20:30:44.0281 0796 AliIde - ok
20:30:44.0343 0796 alim1541 (cb08aed0de2dd889a8a820cd8082d83c) C:\WINDOWS\system32\DRIVERS\alim1541.sys
20:30:44.0515 0796 alim1541 - ok
20:30:44.0531 0796 amdagp (95b4fb835e28aa1336ceeb07fd5b9398) C:\WINDOWS\system32\DRIVERS\amdagp.sys
20:30:44.0718 0796 amdagp - ok
20:30:44.0781 0796 amsint (79f5add8d24bd6893f2903a3e2f3fad6) C:\WINDOWS\system32\DRIVERS\amsint.sys
20:30:44.0984 0796 amsint - ok
20:30:45.0078 0796 asc (62d318e9a0c8fc9b780008e724283707) C:\WINDOWS\system32\DRIVERS\asc.sys
20:30:45.0359 0796 asc - ok
20:30:45.0406 0796 asc3350p (69eb0cc7714b32896ccbfd5edcbea447) C:\WINDOWS\system32\DRIVERS\asc3350p.sys
20:30:45.0625 0796 asc3350p - ok
20:30:45.0703 0796 asc3550 (5d8de112aa0254b907861e9e9c31d597) C:\WINDOWS\system32\DRIVERS\asc3550.sys
20:30:45.0937 0796 asc3550 - ok
20:30:46.0015 0796 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
20:30:46.0171 0796 AsyncMac - ok
20:30:46.0203 0796 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
20:30:46.0375 0796 atapi - ok
20:30:46.0390 0796 Atdisk - ok
20:30:46.0453 0796 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
20:30:46.0609 0796 Atmarpc - ok
20:30:46.0671 0796 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
20:30:46.0843 0796 audstub - ok
20:30:46.0906 0796 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
20:30:47.0078 0796 Beep - ok
20:30:47.0156 0796 bvrp_pci (c945dc4eee3f624dfd07788ea7f0db0a) C:\WINDOWS\system32\drivers\bvrp_pci.sys
20:30:47.0234 0796 bvrp_pci ( UnsignedFile.Multi.Generic ) - warning
20:30:47.0234 0796 bvrp_pci - detected UnsignedFile.Multi.Generic (1)
20:30:47.0281 0796 cbidf (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\DRIVERS\cbidf2k.sys
20:30:47.0453 0796 cbidf - ok
20:30:47.0468 0796 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
20:30:47.0640 0796 cbidf2k - ok
20:30:47.0671 0796 CCDECODE (0be5aef125be881c4f854c554f2b025c) C:\WINDOWS\system32\DRIVERS\CCDECODE.sys
20:30:47.0828 0796 CCDECODE - ok
20:30:47.0843 0796 cd20xrnt (f3ec03299634490e97bbce94cd2954c7) C:\WINDOWS\system32\DRIVERS\cd20xrnt.sys
20:30:48.0062 0796 cd20xrnt - ok
20:30:48.0093 0796 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
20:30:48.0281 0796 Cdaudio - ok
20:30:48.0343 0796 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
20:30:48.0500 0796 Cdfs - ok
20:30:48.0562 0796 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
20:30:48.0734 0796 Cdrom - ok
20:30:48.0796 0796 cfwids (7fd604cd7a7a0ff8975af61bdf64c577) C:\WINDOWS\system32\drivers\cfwids.sys
20:30:48.0921 0796 cfwids - ok
20:30:49.0000 0796 Changer - ok
20:30:49.0031 0796 CmdIde (e5dcb56c533014ecbc556a8357c929d5) C:\WINDOWS\system32\DRIVERS\cmdide.sys
20:30:49.0218 0796 CmdIde - ok
20:30:49.0250 0796 Cpqarray (3ee529119eed34cd212a215e8c40d4b6) C:\WINDOWS\system32\DRIVERS\cpqarray.sys
20:30:49.0453 0796 Cpqarray - ok
20:30:49.0484 0796 dac2w2k (e550e7418984b65a78299d248f0a7f36) C:\WINDOWS\system32\DRIVERS\dac2w2k.sys
20:30:49.0687 0796 dac2w2k - ok
20:30:49.0718 0796 dac960nt (683789caa3864eb46125ae86ff677d34) C:\WINDOWS\system32\DRIVERS\dac960nt.sys
20:30:49.0953 0796 dac960nt - ok
20:30:50.0015 0796 DCamUSBEMPIA (5118ea8a2f55fa4d4295516500b78229) C:\WINDOWS\system32\DRIVERS\emDevice.sys
20:30:50.0171 0796 DCamUSBEMPIA - ok
20:30:50.0234 0796 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
20:30:50.0390 0796 Disk - ok
20:30:50.0468 0796 DLABOIOM (e2d0de31442390c35e3163c87cb6a9eb) C:\WINDOWS\system32\DLA\DLABOIOM.SYS
20:30:50.0484 0796 DLABOIOM ( UnsignedFile.Multi.Generic ) - warning
20:30:50.0484 0796 DLABOIOM - detected UnsignedFile.Multi.Generic (1)
20:30:50.0531 0796 DLACDBHM (d979bebcf7edcc9c9ee1857d1a68c67b) C:\WINDOWS\system32\Drivers\DLACDBHM.SYS
20:30:50.0578 0796 DLACDBHM ( UnsignedFile.Multi.Generic ) - warning
20:30:50.0578 0796 DLACDBHM - detected UnsignedFile.Multi.Generic (1)
20:30:50.0609 0796 DLADResN (83545593e297f50a8e2524b4c071a153) C:\WINDOWS\system32\DLA\DLADResN.SYS
20:30:50.0671 0796 DLADResN ( UnsignedFile.Multi.Generic ) - warning
20:30:50.0671 0796 DLADResN - detected UnsignedFile.Multi.Generic (1)
20:30:50.0703 0796 DLAIFS_M (96e01d901cdc98c7817155cc057001bf) C:\WINDOWS\system32\DLA\DLAIFS_M.SYS
20:30:50.0734 0796 DLAIFS_M ( UnsignedFile.Multi.Generic ) - warning
20:30:50.0734 0796 DLAIFS_M - detected UnsignedFile.Multi.Generic (1)
20:30:50.0750 0796 DLAOPIOM (0a60a39cc5e767980a31ca5d7238dfa9) C:\WINDOWS\system32\DLA\DLAOPIOM.SYS
20:30:50.0828 0796 DLAOPIOM ( UnsignedFile.Multi.Generic ) - warning
20:30:50.0828 0796 DLAOPIOM - detected UnsignedFile.Multi.Generic (1)
20:30:50.0875 0796 DLAPoolM (9fe2b72558fc808357f427fd83314375) C:\WINDOWS\system32\DLA\DLAPoolM.SYS
20:30:51.0000 0796 DLAPoolM ( UnsignedFile.Multi.Generic ) - warning
20:30:51.0000 0796 DLAPoolM - detected UnsignedFile.Multi.Generic (1)
20:30:51.0046 0796 DLARTL_N (7ee0852ae8907689df25049dcd2342e8) C:\WINDOWS\system32\Drivers\DLARTL_N.SYS
20:30:51.0140 0796 DLARTL_N ( UnsignedFile.Multi.Generic ) - warning
20:30:51.0140 0796 DLARTL_N - detected UnsignedFile.Multi.Generic (1)
20:30:51.0171 0796 DLAUDFAM (f08e1dafac457893399e03430a6a1397) C:\WINDOWS\system32\DLA\DLAUDFAM.SYS
20:30:51.0203 0796 DLAUDFAM ( UnsignedFile.Multi.Generic ) - warning
20:30:51.0203 0796 DLAUDFAM - detected UnsignedFile.Multi.Generic (1)
20:30:51.0218 0796 DLAUDF_M (e7d105ed1e694449d444a9933df8e060) C:\WINDOWS\system32\DLA\DLAUDF_M.SYS
20:30:51.0312 0796 DLAUDF_M ( UnsignedFile.Multi.Generic ) - warning
20:30:51.0312 0796 DLAUDF_M - detected UnsignedFile.Multi.Generic (1)
20:30:51.0390 0796 dmboot (d992fe1274bde0f84ad826acae022a41) C:\WINDOWS\system32\drivers\dmboot.sys
20:30:51.0609 0796 dmboot - ok
20:30:51.0718 0796 dmio (7c824cf7bbde77d95c08005717a95f6f) C:\WINDOWS\system32\drivers\dmio.sys
20:30:51.0890 0796 dmio - ok
20:30:51.0921 0796 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
20:30:52.0093 0796 dmload - ok
20:30:52.0156 0796 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
20:30:52.0312 0796 DMusic - ok
20:30:52.0343 0796 dpti2o (40f3b93b4e5b0126f2f5c0a7a5e22660) C:\WINDOWS\system32\DRIVERS\dpti2o.sys
20:30:52.0531 0796 dpti2o - ok
20:30:52.0609 0796 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
20:30:52.0781 0796 drmkaud - ok
20:30:52.0828 0796 DRVMCDB (fd0f95981fef9073659d8ec58e40aa3c) C:\WINDOWS\system32\Drivers\DRVMCDB.SYS
20:30:52.0906 0796 DRVMCDB ( UnsignedFile.Multi.Generic ) - warning
20:30:52.0906 0796 DRVMCDB - detected UnsignedFile.Multi.Generic (1)
20:30:52.0921 0796 DRVNDDM (b4869d320428cdc5ec4d7f5e808e99b5) C:\WINDOWS\system32\Drivers\DRVNDDM.SYS
20:30:53.0000 0796 DRVNDDM ( UnsignedFile.Multi.Generic ) - warning
20:30:53.0000 0796 DRVNDDM - detected UnsignedFile.Multi.Generic (1)
20:30:53.0140 0796 DSproct (413f2d5f9d802688242c23b38f767ecb) C:\Program Files\DellSupport\GTAction\triggers\DSproct.sys
20:30:53.0156 0796 DSproct ( UnsignedFile.Multi.Generic ) - warning
20:30:53.0156 0796 DSproct - detected UnsignedFile.Multi.Generic (1)
20:30:53.0218 0796 dsunidrv (dfeabb7cfffadea4a912ab95bdc3177a) C:\WINDOWS\system32\DRIVERS\dsunidrv.sys
20:30:53.0328 0796 dsunidrv - ok
20:30:53.0343 0796 E100B (95974e66d3de4951d29e28e8bc0b644c) C:\WINDOWS\system32\DRIVERS\e100b325.sys
20:30:53.0421 0796 E100B - ok
20:30:53.0484 0796 emAudio (ffa45148a2d5d05dbb3c0997e579fc9c) C:\WINDOWS\system32\drivers\emAudio.sys
20:30:53.0640 0796 emAudio - ok
20:30:53.0750 0796 FANTOM (e3b0cd18146f9d51a34969e9bc2458d2) C:\WINDOWS\system32\DRIVERS\fantom.sys
20:30:53.0890 0796 FANTOM ( UnsignedFile.Multi.Generic ) - warning
20:30:53.0890 0796 FANTOM - detected UnsignedFile.Multi.Generic (1)
20:30:53.0953 0796 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
20:30:54.0187 0796 Fastfat - ok
20:30:54.0250 0796 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
20:30:54.0468 0796 Fdc - ok
20:30:54.0531 0796 FiltUSBEMPIA (6f87e4706f59463b74bc4fad0f67338f) C:\WINDOWS\system32\DRIVERS\emFilter.sys
20:30:54.0656 0796 FiltUSBEMPIA - ok
20:30:54.0734 0796 Fips (d45926117eb9fa946a6af572fbe1caa3) C:\WINDOWS\system32\drivers\Fips.sys
20:30:54.0921 0796 Fips - ok
20:30:54.0953 0796 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
20:30:55.0140 0796 Flpydisk - ok
20:30:55.0203 0796 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
20:30:55.0390 0796 FltMgr - ok
20:30:55.0421 0796 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
20:30:55.0609 0796 Fs_Rec - ok
20:30:55.0656 0796 Ftdisk (6ac26732762483366c3969c9e4d2259d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
20:30:55.0875 0796 Ftdisk - ok
20:30:55.0968 0796 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\WINDOWS\system32\Drivers\GEARAspiWDM.sys
20:30:56.0093 0796 GEARAspiWDM - ok
20:30:56.0156 0796 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
20:30:56.0343 0796 Gpc - ok
20:30:56.0421 0796 HDAudBus (573c7d0a32852b48f3058cfd8026f511) C:\WINDOWS\system32\DRIVERS\HDAudBus.sys
20:30:56.0765 0796 HDAudBus - ok
20:30:56.0890 0796 HidUsb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
20:30:57.0203 0796 HidUsb - ok
20:30:57.0234 0796 hpn (b028377dea0546a5fcfba928a8aefae0) C:\WINDOWS\system32\DRIVERS\hpn.sys
20:30:57.0625 0796 hpn - ok
20:30:57.0687 0796 HSFHWBS2 (77e4ff0b73bc0aeaaf39bf0c8104231f) C:\WINDOWS\system32\DRIVERS\HSFHWBS2.sys
20:30:57.0953 0796 HSFHWBS2 - ok
20:30:58.0046 0796 HSF_DP (60e1604729a15ef4a3b05f298427b3b1) C:\WINDOWS\system32\DRIVERS\HSF_DP.sys
20:30:58.0390 0796 HSF_DP - ok
20:30:58.0500 0796 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
20:30:58.0609 0796 HTTP - ok
20:30:58.0718 0796 i2omgmt (9368670bd426ebea5e8b18a62416ec28) C:\WINDOWS\system32\drivers\i2omgmt.sys
20:30:58.0968 0796 i2omgmt - ok
20:30:59.0000 0796 i2omp (f10863bf1ccc290babd1a09188ae49e0) C:\WINDOWS\system32\DRIVERS\i2omp.sys
20:30:59.0250 0796 i2omp - ok
20:30:59.0281 0796 i8042prt (4a0b06aa8943c1e332520f7440c0aa30) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
20:30:59.0531 0796 i8042prt - ok
20:30:59.0625 0796 ialm (5a8e05f1d5c36abd58cffa111eb325ea) C:\WINDOWS\system32\DRIVERS\ialmnt5.sys
20:31:00.0000 0796 ialm - ok
20:31:00.0078 0796 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
20:31:00.0343 0796 Imapi - ok
20:31:00.0390 0796 ini910u (4a40e045faee58631fd8d91afc620719) C:\WINDOWS\system32\DRIVERS\ini910u.sys
20:31:00.0750 0796 ini910u - ok
20:31:00.0812 0796 IntelIde (b5466a9250342a7aa0cd1fba13420678) C:\WINDOWS\system32\DRIVERS\intelide.sys
20:31:01.0046 0796 IntelIde - ok
20:31:01.0109 0796 intelppm (8c953733d8f36eb2133f5bb58808b66b) C:\WINDOWS\system32\DRIVERS\intelppm.sys
20:31:01.0343 0796 intelppm - ok
20:31:01.0375 0796 Ip6Fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
20:31:01.0625 0796 Ip6Fw - ok
20:31:01.0703 0796 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
20:31:01.0937 0796 IpFilterDriver - ok
20:31:02.0015 0796 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
20:31:02.0234 0796 IpInIp - ok
20:31:02.0281 0796 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
20:31:02.0531 0796 IpNat - ok
20:31:02.0578 0796 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
20:31:02.0843 0796 IPSec - ok
20:31:02.0937 0796 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
20:31:03.0140 0796 IRENUM - ok
20:31:03.0203 0796 isapnp (05a299ec56e52649b1cf2fc52d20f2d7) C:\WINDOWS\system32\DRIVERS\isapnp.sys
20:31:03.0359 0796 isapnp - ok
20:31:03.0500 0796 Kbdclass (463c1ec80cd17420a542b7f36a36f128) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
20:31:03.0656 0796 Kbdclass - ok
20:31:03.0687 0796 kbdhid (9ef487a186dea361aa06913a75b3fa99) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
20:31:03.0828 0796 kbdhid - ok
20:31:03.0890 0796 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
20:31:04.0046 0796 kmixer - ok
20:31:04.0078 0796 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
20:31:04.0234 0796 KSecDD - ok
20:31:04.0328 0796 LBeepKE (ca63fe81705ad660e482bef210bf2c73) C:\WINDOWS\system32\Drivers\LBeepKE.sys
20:31:04.0484 0796 LBeepKE - ok
20:31:04.0500 0796 lbrtfdc - ok
20:31:04.0562 0796 LHidFilt (b68309f25c5787385da842eb5b496958) C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys
20:31:04.0656 0796 LHidFilt - ok
20:31:04.0687 0796 LMouFilt (63d3b1d3cd267fcc186a0146b80d453b) C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys
20:31:04.0843 0796 LMouFilt - ok
20:31:04.0906 0796 LUsbFilt (0c62957912d4df1e4ba9795e6be3ed38) C:\WINDOWS\system32\Drivers\LUsbFilt.Sys
20:31:05.0000 0796 LUsbFilt - ok
20:31:05.0062 0796 MarvinBus (269c14d512b74cc28d2812ff7d1eb066) C:\WINDOWS\system32\DRIVERS\MarvinBus.sys
20:31:05.0093 0796 MarvinBus ( UnsignedFile.Multi.Generic ) - warning
20:31:05.0093 0796 MarvinBus - detected UnsignedFile.Multi.Generic (1)
20:31:05.0109 0796 MBAMSwissArmy - ok
20:31:05.0171 0796 mdmxsdk (eeaea6514ba7c9d273b5e87c4e1aab30) C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
20:31:05.0250 0796 mdmxsdk - ok
20:31:05.0312 0796 mfeapfk (688b626fca708ee9eb161cad1f7363a9) C:\WINDOWS\system32\drivers\mfeapfk.sys
20:31:05.0406 0796 mfeapfk - ok
20:31:05.0468 0796 mfeavfk (dbf6e1b388d5c070d438c61adb990c30) C:\WINDOWS\system32\drivers\mfeavfk.sys
20:31:05.0609 0796 mfeavfk - ok
20:31:05.0656 0796 mfeavfk01 - ok
20:31:05.0687 0796 mfebopk (a528b15e330edb83ea649be318d841d5) C:\WINDOWS\system32\drivers\mfebopk.sys
20:31:05.0765 0796 mfebopk - ok
20:31:05.0828 0796 mfefirek (c7da1b8003c89acedaa13768f7a1c622) C:\WINDOWS\system32\drivers\mfefirek.sys
20:31:06.0000 0796 mfefirek - ok
20:31:06.0093 0796 mfehidk (44184f32392fa2e94d08d056ce750d56) C:\WINDOWS\system32\drivers\mfehidk.sys
20:31:06.0312 0796 mfehidk - ok
20:31:06.0390 0796 mfendisk (b1728195877b18ce63cf0cd00b2871eb) C:\WINDOWS\system32\DRIVERS\mfendisk.sys
20:31:06.0484 0796 mfendisk - ok
20:31:06.0484 0796 mfendiskmp (b1728195877b18ce63cf0cd00b2871eb) C:\WINDOWS\system32\DRIVERS\mfendisk.sys
20:31:06.0500 0796 mfendiskmp - ok
20:31:06.0578 0796 mferkdet (ce1711f7c3f72f6762abd241dcfd5ee1) C:\WINDOWS\system32\drivers\mferkdet.sys
20:31:06.0671 0796 mferkdet - ok
20:31:06.0750 0796 mfetdi2k (25e12c68b49a64ffc873603dfd578236) C:\WINDOWS\system32\drivers\mfetdi2k.sys
20:31:06.0875 0796 mfetdi2k - ok
20:31:06.0968 0796 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
20:31:07.0125 0796 mnmdd - ok
20:31:07.0187 0796 Modem (dfcbad3cec1c5f964962ae10e0bcc8e1) C:\WINDOWS\system32\drivers\Modem.sys
20:31:07.0343 0796 Modem - ok
20:31:07.0375 0796 MODEMCSA (1992e0d143b09653ab0f9c5e04b0fd65) C:\WINDOWS\system32\drivers\MODEMCSA.sys
20:31:07.0593 0796 MODEMCSA - ok
20:31:07.0609 0796 Mouclass (35c9e97194c8cfb8430125f8dbc34d04) C:\WINDOWS\system32\DRIVERS\mouclass.sys
20:31:07.0781 0796 Mouclass - ok
20:31:07.0781 0796 mouhid (b1c303e17fb9d46e87a98e4ba6769685) C:\WINDOWS\system32\DRIVERS\mouhid.sys
20:31:07.0953 0796 mouhid - ok
20:31:08.0015 0796 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
20:31:08.0171 0796 MountMgr - ok
20:31:08.0250 0796 mraid35x (3f4bb95e5a44f3be34824e8e7caf0737) C:\WINDOWS\system32\DRIVERS\mraid35x.sys
20:31:08.0484 0796 mraid35x - ok
20:31:08.0531 0796 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
20:31:08.0703 0796 MRxDAV - ok
20:31:08.0765 0796 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
20:31:09.0015 0796 MRxSmb - ok
20:31:09.0109 0796 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
20:31:09.0281 0796 Msfs - ok
20:31:09.0359 0796 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
20:31:09.0531 0796 MSKSSRV - ok
20:31:09.0625 0796 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
20:31:09.0796 0796 MSPCLOCK - ok
20:31:09.0812 0796 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
20:31:09.0968 0796 MSPQM - ok
20:31:10.0031 0796 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
20:31:10.0187 0796 mssmbios - ok
20:31:10.0250 0796 MSTEE (e53736a9e30c45fa9e7b5eac55056d1d) C:\WINDOWS\system32\drivers\MSTEE.sys
20:31:10.0421 0796 MSTEE - ok
20:31:10.0468 0796 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
20:31:10.0609 0796 Mup - ok
20:31:10.0703 0796 NABTSFEC (5b50f1b2a2ed47d560577b221da734db) C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys
20:31:10.0859 0796 NABTSFEC - ok
20:31:10.0937 0796 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
20:31:11.0093 0796 NDIS - ok
20:31:11.0125 0796 NdisIP (7ff1f1fd8609c149aa432f95a8163d97) C:\WINDOWS\system32\DRIVERS\NdisIP.sys
20:31:11.0281 0796 NdisIP - ok
20:31:11.0343 0796 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
20:31:11.0484 0796 NdisTapi - ok
20:31:11.0546 0796 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
20:31:11.0718 0796 Ndisuio - ok
20:31:11.0796 0796 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
20:31:12.0046 0796 NdisWan - ok
20:31:12.0078 0796 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
20:31:12.0312 0796 NDProxy - ok
20:31:12.0375 0796 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
20:31:12.0656 0796 NetBIOS - ok
20:31:12.0734 0796 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
20:31:12.0968 0796 NetBT - ok
20:31:13.0046 0796 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
20:31:13.0203 0796 Npfs - ok
20:31:13.0265 0796 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
20:31:13.0468 0796 Ntfs - ok
20:31:13.0500 0796 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
20:31:13.0671 0796 Null - ok
20:31:13.0765 0796 nv (2b298519edbfcf451d43e0f1e8f1006d) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
20:31:14.0031 0796 nv - ok
20:31:14.0109 0796 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
20:31:14.0250 0796 NwlnkFlt - ok
20:31:14.0328 0796 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
20:31:14.0500 0796 NwlnkFwd - ok
20:31:14.0562 0796 Parport (5575faf8f97ce5e713d108c2a58d7c7c) C:\WINDOWS\system32\DRIVERS\parport.sys
20:31:14.0750 0796 Parport - ok
20:31:14.0937 0796 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
20:31:15.0125 0796 PartMgr - ok
20:31:15.0203 0796 ParVdm (70e98b3fd8e963a6a46a2e6247e0bea1) C:\WINDOWS\system32\drivers\ParVdm.sys
20:31:15.0421 0796 ParVdm - ok
20:31:15.0703 0796 PCI (a219903ccf74233761d92bef471a07b1) C:\WINDOWS\system32\DRIVERS\pci.sys
20:31:15.0953 0796 PCI - ok
20:31:16.0078 0796 PCIDump - ok
20:31:16.0125 0796 PCIIde (ccf5f451bb1a5a2a522a76e670000ff0) C:\WINDOWS\system32\DRIVERS\pciide.sys
20:31:16.0281 0796 PCIIde - ok
20:31:16.0343 0796 PCLEPCI (1bebe7de8508a02650cdce45c664c2a2) C:\WINDOWS\system32\drivers\pclepci.sys
20:31:16.0484 0796 PCLEPCI ( UnsignedFile.Multi.Generic ) - warning
20:31:16.0484 0796 PCLEPCI - detected UnsignedFile.Multi.Generic (1)
20:31:16.0578 0796 Pcmcia (9e89ef60e9ee05e3f2eef2da7397f1c1) C:\WINDOWS\system32\drivers\Pcmcia.sys
20:31:16.0734 0796 Pcmcia - ok
20:31:16.0750 0796 PDCOMP - ok
20:31:16.0765 0796 PDFRAME - ok
20:31:16.0781 0796 PDRELI - ok
20:31:16.0796 0796 PDRFRAME - ok
20:31:16.0843 0796 perc2 (6c14b9c19ba84f73d3a86dba11133101) C:\WINDOWS\system32\DRIVERS\perc2.sys
20:31:17.0062 0796 perc2 - ok
20:31:17.0093 0796 perc2hib (f50f7c27f131afe7beba13e14a3b9416) C:\WINDOWS\system32\DRIVERS\perc2hib.sys
20:31:17.0250 0796 perc2hib - ok
20:31:17.0343 0796 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
20:31:17.0500 0796 PptpMiniport - ok
20:31:17.0562 0796 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
20:31:17.0828 0796 PSched - ok
20:31:17.0875 0796 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
20:31:18.0031 0796 Ptilink - ok
20:31:18.0093 0796 PxHelp20 (49452bfcec22f36a7a9b9c2181bc3042) C:\WINDOWS\system32\Drivers\PxHelp20.sys
20:31:18.0125 0796 PxHelp20 - ok
20:31:18.0171 0796 ql1080 (0a63fb54039eb5662433caba3b26dba7) C:\WINDOWS\system32\DRIVERS\ql1080.sys
20:31:18.0312 0796 ql1080 - ok
20:31:18.0343 0796 Ql10wnt (6503449e1d43a0ff0201ad5cb1b8c706) C:\WINDOWS\system32\DRIVERS\ql10wnt.sys
20:31:18.0500 0796 Ql10wnt - ok
20:31:18.0515 0796 ql12160 (156ed0ef20c15114ca097a34a30d8a01) C:\WINDOWS\system32\DRIVERS\ql12160.sys
20:31:18.0671 0796 ql12160 - ok
20:31:18.0687 0796 ql1240 (70f016bebde6d29e864c1230a07cc5e6) C:\WINDOWS\system32\DRIVERS\ql1240.sys
20:31:18.0859 0796 ql1240 - ok
20:31:18.0890 0796 ql1280 (907f0aeea6bc451011611e732bd31fcf) C:\WINDOWS\system32\DRIVERS\ql1280.sys
20:31:19.0046 0796 ql1280 - ok
20:31:19.0078 0796 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
20:31:19.0234 0796 RasAcd - ok
20:31:19.0281 0796 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
20:31:19.0437 0796 Rasl2tp - ok
20:31:19.0500 0796 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
20:31:19.0656 0796 RasPppoe - ok
20:31:19.0687 0796 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
20:31:19.0843 0796 Raspti - ok
20:31:19.0906 0796 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
20:31:20.0062 0796 Rdbss - ok
20:31:20.0093 0796 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
20:31:20.0234 0796 RDPCDD - ok
20:31:20.0312 0796 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
20:31:20.0453 0796 rdpdr - ok
20:31:20.0515 0796 RDPWD (fc105dd312ed64eb66bff111e8ec6eac) C:\WINDOWS\system32\drivers\RDPWD.sys
20:31:20.0750 0796 RDPWD - ok
20:31:20.0843 0796 redbook (f828dd7e1419b6653894a8f97a0094c5) C:\WINDOWS\system32\DRIVERS\redbook.sys
20:31:21.0000 0796 redbook - ok
20:31:21.0078 0796 RsFx0102 (fedd2710b75be3ecf078adace790c423) C:\WINDOWS\system32\DRIVERS\RsFx0102.sys
20:31:21.0281 0796 RsFx0102 - ok
20:31:21.0359 0796 ScanUSBEMPIA (f5a633609777c212ec5ff19927fc5955) C:\WINDOWS\system32\DRIVERS\emScan.sys
20:31:21.0484 0796 ScanUSBEMPIA - ok
20:31:21.0593 0796 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
20:31:21.0765 0796 Secdrv - ok
20:31:21.0843 0796 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
20:31:22.0000 0796 serenum - ok
20:31:22.0062 0796 Serial (cca207a8896d4c6a0c9ce29a4ae411a7) C:\WINDOWS\system32\DRIVERS\serial.sys
20:31:22.0234 0796 Serial - ok
20:31:22.0296 0796 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
20:31:22.0468 0796 Sfloppy - ok
20:31:22.0484 0796 Simbad - ok
20:31:22.0546 0796 sisagp (6b33d0ebd30db32e27d1d78fe946a754) C:\WINDOWS\system32\DRIVERS\sisagp.sys
20:31:22.0718 0796 sisagp - ok
20:31:22.0812 0796 SLIP (866d538ebe33709a5c9f5c62b73b7d14) C:\WINDOWS\system32\DRIVERS\SLIP.sys
20:31:22.0968 0796 SLIP - ok
20:31:23.0031 0796 Sparrow (83c0f71f86d3bdaf915685f3d568b20e) C:\WINDOWS\system32\DRIVERS\sparrow.sys
20:31:23.0140 0796 Sparrow - ok
20:31:23.0187 0796 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
20:31:23.0359 0796 splitter - ok
20:31:23.0406 0796 sr (76bb022c2fb6902fd5bdd4f78fc13a5d) C:\WINDOWS\system32\DRIVERS\sr.sys
20:31:23.0562 0796 sr - ok
20:31:23.0640 0796 SRS_SSCFilter (25ecea986742275ecb23a1cb6bc87a61) C:\WINDOWS\system32\drivers\srs_sscfilter_i386.sys
20:31:23.0859 0796 SRS_SSCFilter - ok
20:31:23.0968 0796 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
20:31:24.0171 0796 Srv - ok
20:31:24.0265 0796 STHDA (2a2dc39623adef8ab3703ab9fac4b440) C:\WINDOWS\system32\drivers\sthda.sys
20:31:24.0484 0796 STHDA - ok
20:31:24.0593 0796 StillCam (a9573045baa16eab9b1085205b82f1ed) C:\WINDOWS\system32\DRIVERS\serscan.sys
20:31:24.0812 0796 StillCam - ok
20:31:24.0875 0796 streamip (77813007ba6265c4b6098187e6ed79d2) C:\WINDOWS\system32\DRIVERS\StreamIP.sys
20:31:25.0031 0796 streamip - ok
20:31:25.0093 0796 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
20:31:25.0250 0796 swenum - ok
20:31:25.0312 0796 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
20:31:25.0515 0796 swmidi - ok
20:31:25.0609 0796 symc810 (1ff3217614018630d0a6758630fc698c) C:\WINDOWS\system32\DRIVERS\symc810.sys
20:31:25.0875 0796 symc810 - ok
20:31:25.0921 0796 symc8xx (070e001d95cf725186ef8b20335f933c) C:\WINDOWS\system32\DRIVERS\symc8xx.sys
20:31:26.0140 0796 symc8xx - ok
20:31:26.0156 0796 sym_hi (80ac1c4abbe2df3b738bf15517a51f2c) C:\WINDOWS\system32\DRIVERS\sym_hi.sys
20:31:26.0343 0796 sym_hi - ok
20:31:26.0421 0796 sym_u3 (bf4fab949a382a8e105f46ebb4937058) C:\WINDOWS\system32\DRIVERS\sym_u3.sys
20:31:26.0656 0796 sym_u3 - ok
20:31:26.0734 0796 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
20:31:26.0890 0796 sysaudio - ok
20:31:26.0968 0796 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
20:31:27.0078 0796 Tcpip - ok
20:31:27.0140 0796 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
20:31:27.0296 0796 TDPIPE - ok
20:31:27.0390 0796 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
20:31:27.0578 0796 TDTCP - ok
20:31:27.0687 0796 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
20:31:27.0843 0796 TermDD - ok
20:31:27.0906 0796 tmcomm (4dc436421c9d745d7e8c37f956701c78) C:\WINDOWS\system32\drivers\tmcomm.sys
20:31:28.0015 0796 tmcomm - ok
20:31:28.0046 0796 TosIde (f2790f6af01321b172aa62f8e1e187d9) C:\WINDOWS\system32\DRIVERS\toside.sys
20:31:28.0203 0796 TosIde - ok
20:31:28.0281 0796 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
20:31:28.0453 0796 Udfs - ok
20:31:28.0500 0796 ultra (1b698a51cd528d8da4ffaed66dfc51b9) C:\WINDOWS\system32\DRIVERS\ultra.sys
20:31:28.0671 0796 ultra - ok
20:31:28.0750 0796 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
20:31:28.0937 0796 Update - ok
20:31:29.0015 0796 USBAAPL (83cafcb53201bbac04d822f32438e244) C:\WINDOWS\system32\Drivers\usbaapl.sys
20:31:29.0250 0796 USBAAPL - ok
20:31:29.0312 0796 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
20:31:29.0500 0796 usbccgp - ok
20:31:29.0546 0796 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
20:31:29.0703 0796 usbehci - ok
20:31:29.0828 0796 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
20:31:29.0984 0796 usbhub - ok
20:31:30.0062 0796 USBIO (f90d8f845095fcd6924e3d751c04e442) C:\WINDOWS\system32\Drivers\usbio.sys
20:31:30.0140 0796 USBIO ( UnsignedFile.Multi.Generic ) - warning
20:31:30.0140 0796 USBIO - detected UnsignedFile.Multi.Generic (1)
20:31:30.0203 0796 usbprint (a717c8721046828520c9edf31288fc00) C:\WINDOWS\system32\DRIVERS\usbprint.sys
20:31:30.0375 0796 usbprint - ok
20:31:30.0421 0796 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
20:31:30.0609 0796 usbscan - ok
20:31:30.0718 0796 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
20:31:30.0906 0796 USBSTOR - ok
20:31:31.0078 0796 usbuhci (26496f9dee2d787fc3e61ad54821ffe6) C:\WINDOWS\system32\DRIVERS\usbuhci.sys
20:31:31.0281 0796 usbuhci - ok
20:31:31.0359 0796 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
20:31:31.0562 0796 VgaSave - ok
20:31:31.0734 0796 viaagp (754292ce5848b3738281b4f3607eaef4) C:\WINDOWS\system32\DRIVERS\viaagp.sys
20:31:31.0984 0796 viaagp - ok
20:31:32.0062 0796 ViaIde (3b3efcda263b8ac14fdf9cbdd0791b2e) C:\WINDOWS\system32\DRIVERS\viaide.sys
20:31:32.0328 0796 ViaIde - ok
20:31:32.0531 0796 VolSnap (4c8fcb5cc53aab716d810740fe59d025) C:\WINDOWS\system32\drivers\VolSnap.sys
20:31:32.0890 0796 VolSnap - ok
20:31:33.0093 0796 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
20:31:33.0359 0796 Wanarp - ok
20:31:33.0484 0796 wanatw - ok
20:31:33.0593 0796 Wdf01000 (d918617b46457b9ac28027722e30f647) C:\WINDOWS\system32\Drivers\wdf01000.sys
20:31:33.0890 0796 Wdf01000 - ok
20:31:33.0953 0796 WDICA - ok
20:31:34.0031 0796 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
20:31:34.0296 0796 wdmaud - ok
20:31:34.0359 0796 winachsf (f59ed5a43b988a18ef582bb07b2327a7) C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys
20:31:34.0531 0796 winachsf - ok
20:31:34.0671 0796 WpdUsb (cf4def1bf66f06964dc0d91844239104) C:\WINDOWS\system32\Drivers\wpdusb.sys
20:31:34.0859 0796 WpdUsb - ok
20:31:34.0984 0796 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
20:31:35.0234 0796 WS2IFSL - ok
20:31:35.0296 0796 WsAudio_DeviceS(1) (4160cbe59d9b5be22e4c3897e8db9d56) C:\WINDOWS\system32\drivers\WsAudio_DeviceS(1).sys
20:31:35.0421 0796 WsAudio_DeviceS(1) - ok
20:31:35.0453 0796 WsAudio_DeviceS(2) (4160cbe59d9b5be22e4c3897e8db9d56) C:\WINDOWS\system32\drivers\WsAudio_DeviceS(2).sys
20:31:35.0578 0796 WsAudio_DeviceS(2) - ok
20:31:35.0625 0796 WsAudio_DeviceS(3) (4160cbe59d9b5be22e4c3897e8db9d56) C:\WINDOWS\system32\drivers\WsAudio_DeviceS(3).sys
20:31:35.0750 0796 WsAudio_DeviceS(3) - ok
20:31:35.0796 0796 WsAudio_DeviceS(4) (4160cbe59d9b5be22e4c3897e8db9d56) C:\WINDOWS\system32\drivers\WsAudio_DeviceS(4).sys
20:31:35.0953 0796 WsAudio_DeviceS(4) - ok
20:31:35.0968 0796 WsAudio_DeviceS(5) (4160cbe59d9b5be22e4c3897e8db9d56) C:\WINDOWS\system32\drivers\WsAudio_DeviceS(5).sys
20:31:36.0109 0796 WsAudio_DeviceS(5) - ok
20:31:36.0187 0796 WSTCODEC (c98b39829c2bbd34e454150633c62c78) C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS
20:31:36.0453 0796 WSTCODEC - ok
20:31:36.0593 0796 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
20:31:36.0718 0796 WudfPf - ok
20:31:36.0765 0796 MBR (0x1B8) (5cb90281d1a59b251f6603134774eec3) \Device\Harddisk0\DR0
20:31:37.0500 0796 \Device\Harddisk0\DR0 - ok
20:31:37.0515 0796 MBR (0x1B8) (739b36f7a373fc81121d831231b6d311) \Device\Harddisk1\DR5
20:31:37.0890 0796 \Device\Harddisk1\DR5 - ok
20:31:37.0921 0796 Boot (0x1200) (401a310729643eec1ca00f824bb41875) \Device\Harddisk0\DR0\Partition0
20:31:37.0937 0796 \Device\Harddisk0\DR0\Partition0 - ok
20:31:37.0968 0796 Boot (0x1200) (3b2ecb9f78d7d5c54e202848546aaf71) \Device\Harddisk0\DR0\Partition1
20:31:37.0984 0796 \Device\Harddisk0\DR0\Partition1 - ok
20:31:38.0000 0796 Boot (0x1200) (f2df6bd7eb2bd2aec5bf4f4c6159c1fe) \Device\Harddisk1\DR5\Partition0
20:31:38.0000 0796 \Device\Harddisk1\DR5\Partition0 - ok
20:31:38.0000 0796 ============================================================
20:31:38.0000 0796 Scan finished
20:31:38.0000 0796 ============================================================
20:31:38.0109 2080 Detected object count: 17
20:31:38.0109 2080 Actual detected object count: 17
20:32:20.0546 2080 bvrp_pci ( UnsignedFile.Multi.Generic ) - skipped by user
20:32:20.0546 2080 bvrp_pci ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:32:20.0546 2080 DLABOIOM ( UnsignedFile.Multi.Generic ) - skipped by user
20:32:20.0546 2080 DLABOIOM ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:32:20.0546 2080 DLACDBHM ( UnsignedFile.Multi.Generic ) - skipped by user
20:32:20.0546 2080 DLACDBHM ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:32:20.0546 2080 DLADResN ( UnsignedFile.Multi.Generic ) - skipped by user
20:32:20.0546 2080 DLADResN ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:32:20.0546 2080 DLAIFS_M ( UnsignedFile.Multi.Generic ) - skipped by user
20:32:20.0546 2080 DLAIFS_M ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:32:20.0546 2080 DLAOPIOM ( UnsignedFile.Multi.Generic ) - skipped by user
20:32:20.0546 2080 DLAOPIOM ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:32:20.0546 2080 DLAPoolM ( UnsignedFile.Multi.Generic ) - skipped by user
20:32:20.0546 2080 DLAPoolM ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:32:20.0562 2080 DLARTL_N ( UnsignedFile.Multi.Generic ) - skipped by user
20:32:20.0562 2080 DLARTL_N ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:32:20.0562 2080 DLAUDFAM ( UnsignedFile.Multi.Generic ) - skipped by user
20:32:20.0562 2080 DLAUDFAM ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:32:20.0562 2080 DLAUDF_M ( UnsignedFile.Multi.Generic ) - skipped by user
20:32:20.0562 2080 DLAUDF_M ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:32:20.0562 2080 DRVMCDB ( UnsignedFile.Multi.Generic ) - skipped by user
20:32:20.0562 2080 DRVMCDB ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:32:20.0562 2080 DRVNDDM ( UnsignedFile.Multi.Generic ) - skipped by user
20:32:20.0562 2080 DRVNDDM ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:32:20.0562 2080 DSproct ( UnsignedFile.Multi.Generic ) - skipped by user
20:32:20.0562 2080 DSproct ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:32:20.0578 2080 FANTOM ( UnsignedFile.Multi.Generic ) - skipped by user
20:32:20.0578 2080 FANTOM ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:32:20.0578 2080 MarvinBus ( UnsignedFile.Multi.Generic ) - skipped by user
20:32:20.0578 2080 MarvinBus ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:32:20.0578 2080 PCLEPCI ( UnsignedFile.Multi.Generic ) - skipped by user
20:32:20.0578 2080 PCLEPCI ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:32:20.0578 2080 USBIO ( UnsignedFile.Multi.Generic ) - skipped by user
20:32:20.0578 2080 USBIO ( UnsignedFile.Multi.Generic ) - User select action: Skip
20:32:23.0312 4044 Deinitialize success
 
Hello gilmore :),

Please go ahead and uninstall Thunderbird if you do not need it.

For AVSDK5, please try AppRemover to remove security programs or their leftovers from incomplete uninstallation. In case it does not work, give Revo Uninstalller a shot.

The earlier detection from DDS could be caused by one of your existing program, so it is nothing to be alarmed about. Things are looking good so far. One more scan, and we should be good to go.

--------------------

Do an online scan with Panda ActiveScan.
Please be patient as scanning will take quite some time. If you have problem running the scan, you might want to disable any real time protection that you have.
  • Click here to go to Panda ActiveScan page.
  • Click on Scan now. The default setting is a Full scan.
  • You will be prompted to install an ActiveX Control from Panda. Please install.
  • Components of the scanner will be downloaded and updated as well. Then, scanning will commence.
  • When finished, the scan results will be shown. Click on the small icon besides Export to: and save the log to your desktop.
  • Post the contents of this log in your reply.

--------------------

Please post back:
1. Panda ActiveScan result
2. how is the computer now?
 
I uninstalled Thunderbird.
The AppRemover removed the ASVDK5 - I think. It still seems to be under the Authentium file.
The Panda Active Scan won't fully install until I remove McAfee. I tried turning off McAfee and then install Panda - but that didn't work either. Should I go ahead and uninstall McAfee? I can always install later.
 
Hello gilmore :),

Try the following. It is not advisable to be unprotected. If the following scan have the same issue, then we consider uninstalling McAfee.

Do an online scan with BitDefender QuickScan.
Please be patient as scanning may take some time. If you have problem running the scan, you might want to disable any real time protection that you have.
  • Click here to go to BitDefender QuickScan page.
  • For Firefox users:
    • Click on Free Scan Now. You will be prompted to install a plug-in. Please Allow. In case you get stuck, please refresh the page to try again.
    • A Software Installation window will appear. Click Install Now and the plugin will be installed as an Add-on.
    • Restart Firefox when done. Go back to the BitDefender QuickScan page again and click on Free Scan Now and proceed accordingly.
  • For Internet Explorer users:
    • Click on Free Scan Now. You will be prompted to install an ActiveX control. Please install.
    • The page will refresh. Click on Free Scan Now again and proceed accordingly.
  • When scan has completed, click on View report and a Notepad log shall open.
  • If there are any infections found, you will get a warning and the link to the report will be displayed as the number of infections. Click on it.
  • Post back the contents of this report. It can also be found at C:\Documents and Settings\<username>\Application Data\QuickScan, <username> is the Windows log-in name.

--------------------

Please post back:
1. BitDefender QuickScan result
2. how is the computer now?
 
Hi-
I disabled the McAffe to run the BitDefender. Report below.
The computer seems to be running ok. Maybe it's my imagination, but McAffe seems to slow things down. Would you recomend a better virus protection?
Thank you for your help!


QuickScan Beta 32-bit v0.9.9.99
-------------------------------
Scan date: Thu Oct 13 20:48:28 2011
Machine ID: A8EF9231



No infection found.
-------------------



Processes
---------
hpwuSchd Application 3772 C:\Program Files\HP\HP Software Update\hpwuschd2.exe
AVSDK5 872 C:\Program Files\Common Files\Authentium\AntiVirus5\vseamps.exe
AVSDK5 552 C:\Program Files\Common Files\Authentium\AntiVirus5\vsedsps.exe
AVSDK5 1328 C:\Program Files\Common Files\Authentium\AntiVirus5\vseqrts.exe
Bonjour 292 C:\Program Files\Bonjour\mDNSResponder.exe
Canon Camera Access Library 8 2560 C:\Program Files\Canon\CAL\CALMAIN.exe
ComputerTime Firebird SQL Server 344 C:\Program Files\SoftwareTime\ComputerTime\bin\fbserver.exe
ComputerTime™ 4004 C:\Program Files\SoftwareTime\ComputerTime\bin\ctmn32.exe
ComputerTime™ 2480 C:\Program Files\SoftwareTime\ComputerTime\bin\stka32.exe
Default Manager 3856 C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe
Firefox 4852 C:\Program Files\Mozilla Firefox\firefox.exe
Firefox 1696 C:\Program Files\Mozilla Firefox\plugin-container.exe
iTunes 3488 C:\Program Files\iPod\bin\iPodService.exe
iTunes 3548 D:\iTunesHelper.exe
Java(TM) Platform SE 6 U27 796 C:\Program Files\Java\jre6\bin\jqs.exe
Java(TM) Platform SE Auto Updater 2 0 2804 C:\Program Files\Common Files\Java\Java Update\jusched.exe
Logitech SetPoint 2764 C:\Program Files\Common Files\Logishrd\KHAL3\KHALMNPR.exe
Logitech SetPoint 3532 C:\Program Files\Logitech\SetPointP\SetPoint.exe
McAfee Integrated Security Platform 912 C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
McAfee SecurityCenter 1448 C:\Program Files\McAfee.com\Agent\mcagent.exe
McAfee SecurityCenter 3936 C:\PROGRA~1\McAfee.com\Agent\mcupdate.exe
Messenger 2544 C:\Program Files\Messenger\msmsgs.exe
Microsoft Search Enhancement Pack 1740 C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
Microsoft SQL Server 2032 C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
Microsoft SQL Server 1676 C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
Microsoft® Windows® Operating System 1960 C:\WINDOWS\system32\spoolsv.exe
MobileDeviceService 276 C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
Pinnacle USB Tip 324 C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
QuickTime 3544 C:\Program Files\QuickTime\QTTask.exe
STProxy.exe 496 C:\Program Files\SoftwareTime\ComputerTime\bin\STProxy.exe
SYSCORE 760 C:\Program Files\Common Files\Mcafee\SystemCore\mfefire.exe
SYSCORE 1316 C:\WINDOWS\system32\mfevtps.exe
VSCORE 676 C:\Program Files\Common Files\Mcafee\SystemCore\mcshield.exe
(verified) Microsoft® Windows® Operating System 3256 C:\WINDOWS\explorer.exe
(verified) Microsoft® Windows® Operating System 3292 C:\WINDOWS\system32\alg.exe
(verified) Microsoft® Windows® Operating System 980 C:\WINDOWS\system32\csrss.exe
(verified) Microsoft® Windows® Operating System 2404 C:\WINDOWS\system32\ctfmon.exe
(verified) Microsoft® Windows® Operating System 1060 C:\WINDOWS\system32\lsass.exe
(verified) Microsoft® Windows® Operating System 3264 C:\WINDOWS\system32\rundll32.exe
(verified) Microsoft® Windows® Operating System 1048 C:\WINDOWS\system32\services.exe
(verified) Microsoft® Windows® Operating System 920 C:\WINDOWS\system32\smss.exe
(verified) Microsoft® Windows® Operating System 1284 C:\WINDOWS\system32\svchost.exe
(verified) Microsoft® Windows® Operating System 148 C:\WINDOWS\system32\svchost.exe
(verified) Microsoft® Windows® Operating System 240 C:\WINDOWS\system32\svchost.exe
(verified) Microsoft® Windows® Operating System 1588 C:\WINDOWS\system32\svchost.exe
(verified) Microsoft® Windows® Operating System 1456 C:\WINDOWS\system32\svchost.exe
(verified) Microsoft® Windows® Operating System 1792 C:\WINDOWS\system32\svchost.exe
(verified) Microsoft® Windows® Operating System 1004 C:\WINDOWS\system32\winlogon.exe


Network activity
----------------
Process fbserver.exe (344) connected on port 1046 --> 192.168.1.66
Process fbserver.exe (344) connected on port 1047 --> 192.168.1.66
Process fbserver.exe (344) connected on port 1049 --> 192.168.1.66
Process STProxy.exe (496) connected on port 80 (HTTP) --> 69.171.224.12
Process STProxy.exe (496) connected on port 80 (HTTP) --> 74.125.225.36
Process STProxy.exe (496) connected on port 443 (HTTP over SSL) --> 209.85.225.95
Process STProxy.exe (496) connected on port 80 (HTTP) --> 63.236.252.122
Process STProxy.exe (496) connected on port 80 (HTTP) --> 198.63.194.33
Process ctmn32.exe (4004) connected on port 30013 --> 192.168.1.66
Process ctmn32.exe (4004) connected on port 30013 --> 192.168.1.66
Process ctmn32.exe (4004) connected on port 30013 --> 192.168.1.66

Process fbserver.exe (344) listens on ports: 30013
Process McSvHost.exe (912) listens on ports: 6646
Process svchost.exe (1456) listens on ports: 135 (RPC)


Autoruns and critical files
---------------------------
hpwuSchd Application C:\Program Files\HP\HP Software Update\hpwuschd2.exe
Adobe Reader and Acrobat Manager C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
Apple Software Update C:\Program Files\Apple Software Update\SoftwareUpdate.exe
AUTOBACK.EXE C:\Program Files\ERUNT\AUTOBACK.EXE
ComputerTime™ C:\Program Files\SoftwareTime\ComputerTime\bin\ctmn32.exe
Default Manager C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe
HP Digital Imaging C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HPCustPartic.exe
Intel(R) Common User Interface C:\WINDOWS\system32\igfxdev.dll
iTunes D:\iTunesHelper.exe
Java(TM) Platform SE Auto Updater 2 0 C:\Program Files\Common Files\Java\Java Update\jusched.exe
Logitech SetPoint c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
Logitech SetPoint C:\Program Files\Logitech\SetPointP\SetPoint.exe
McAfee SecurityCenter C:\Program Files\McAfee.com\Agent\mcagent.exe
Messenger C:\Program Files\Messenger\msmsgs.exe
Microsoft® Windows® Operating System C:\WINDOWS\system32\CRYPT32.dll
Microsoft® Windows® Operating System C:\WINDOWS\system32\cryptnet.dll
Microsoft® Windows® Operating System C:\WINDOWS\system32\cscdll.dll
Microsoft® Windows® Operating System C:\WINDOWS\System32\dimsntfy.dll
Microsoft® Windows® Operating System C:\WINDOWS\system32\SHELL32.dll
Microsoft® Windows® Operating System c:\windows\system32\userinit.exe
Microsoft® Windows® Operating System C:\WINDOWS\system32\WlNotify.dll
Pinnacle USB Tip C:\Program Files\Pinnacle\Shared Files\\Programs\USBTip\USBTip.exe
Pinnacle USB Tip C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
QuickTime C:\Program Files\QuickTime\QTTask.exe
Windows Genuine Advantage C:\WINDOWS\system32\WgaLogon.dll
Windows® Internet Explorer C:\WINDOWS\system32\msfeedssync.exe
Windows® Internet Explorer C:\WINDOWS\system32\webcheck.dll
(verified) Google Update C:\Documents and Settings\Madison\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
(verified) Google Update C:\Documents and Settings\Sean\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
(verified) Google Update C:\Program Files\Google\Update\GoogleUpdate.exe
(verified) Microsoft® Windows® Operating System C:\WINDOWS\system32\BROWSEUI.dll
(verified) Microsoft® Windows® Operating System C:\WINDOWS\system32\ctfmon.exe
(verified) Microsoft® Windows® Operating System C:\WINDOWS\system32\logonui.exe
(verified) Microsoft® Windows® Operating System C:\WINDOWS\system32\sclgntfy.dll
(verified) Microsoft® Windows® Operating System C:\WINDOWS\system32\stobject.dll
(verified) Microsoft® Windows® Operating System C:\WINDOWS\system32\WPDShServiceObj.dll


Browser plugins
---------------
AcroIEHelperShim Library c:\program files\common files\adobe\acrobat\activex\acroiehelpershim.dll
Adobe Acrobat C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
Adobe Acrobat C:\Program Files\Internet Explorer\plugins\nppdf32.dll
Bing Bar c:\program files\msn toolbar\platform\6.3.2291.0\npwinext.dll
BitDefender QuickScan C:\Documents and Settings\Julie Goodwin\Application Data\Mozilla\Firefox\Profiles\07mj6jjm.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\plugins\npqscan.dll
Bonjour C:\Program Files\Bonjour\mdnsNSP.dll
CA Web Scanner C:\WINDOWS\Downloaded Program Files\webscan.dll
CpnMgr Module C:\WINDOWS\Downloaded Program Files\CpnMgr.dll
Drive Letter Access Component c:\windows\system32\dla\dlashx_w.dll
Google Earth Plugin C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
Google Toolbar for Internet Explorer c:\program files\google\google toolbar\googletoolbar_32.dll
Google Update C:\Program Files\Google\Update\1.3.21.69\npGoogleUpdate3.dll
GoogleToolbarNotifier c:\program files\google\googletoolbarnotifier\5.7.6406.1642\swg.dll
InoculateIT C:\WINDOWS\Downloaded Program Files\arclib.dll
InoculateIT C:\WINDOWS\Downloaded Program Files\vete.dll
InstallShield Update Service C:\WINDOWS\Downloaded Program Files\isusweb.dll
Java(TM) Platform SE 6 U27 c:\program files\java\jre6\bin\jp2ssv.dll
Java(TM) Platform SE 6 U27 C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
Java(TM) Platform SE 6 U27 c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
McAfee SiteAdvisor c:\program files\mcafee\siteadvisor\mcieplg.dll
McAfee Virtual Technician C:\WINDOWS\Downloaded Program Files\McContentMgr.dll
McAfee Virtual Technician C:\WINDOWS\Downloaded Program Files\McHealthCheck.dll
McAfee Virtual Technician C:\WINDOWS\Downloaded Program Files\McLogMgr.dll
McAfee Virtual Technician C:\WINDOWS\Downloaded Program Files\McPlugins.dll
McAfee Virtual Technician C:\WINDOWS\Downloaded Program Files\McProdMgr.dll
McAfee Virtual Technician C:\WINDOWS\Downloaded Program Files\MVT.dll
McAfee Virtual Technician C:\WINDOWS\Downloaded Program Files\Uploader.exe
Media Go Detector C:\Program Files\Sony\Media Go\npmediago.dll
Messenger C:\Program Files\Messenger\msmsgs.exe
Microsoft Search Enhancement Pack c:\program files\microsoft\search enhancement pack\search helper\sepsearchhelperie.dll
Microsoft® Windows Live OneCare C:\WINDOWS\Downloaded Program Files\wlscBase.dll
Microsoft® Windows® Operating System C:\WINDOWS\system32\MSWSOCK.dll
Microsoft® Windows® Operating System C:\WINDOWS\system32\rsvpsp.dll
Microsoft® Windows® Operating System C:\WINDOWS\System32\winrnr.dll
NPEvery Plugin C:\Program Files\Internet Explorer\plugins\NPEvery.dll
npitunes.dll D:\Mozilla Plugins\npitunes.dll
NPSWF32.dll C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
OTOY Playback Control C:\WINDOWS\Downloaded Program Files\OTOYAX.dll
Picasa C:\Program Files\Picasa2\npPicasa2.dll
Picasa C:\Program Files\Picasa2\npPicasa3.dll
QuickTime Plug-in 7.6.9 C:\Program Files\Internet Explorer\plugins\npqtplugin.dll
QuickTime Plug-in 7.6.9 C:\Program Files\Internet Explorer\plugins\npqtplugin2.dll
QuickTime Plug-in 7.6.9 C:\Program Files\Internet Explorer\plugins\npqtplugin3.dll
QuickTime Plug-in 7.6.9 C:\Program Files\Internet Explorer\plugins\npqtplugin4.dll
QuickTime Plug-in 7.6.9 C:\Program Files\Internet Explorer\plugins\npqtplugin5.dll
QuickTime Plug-in 7.6.9 C:\Program Files\Internet Explorer\plugins\npqtplugin6.dll
QuickTime Plug-in 7.6.9 C:\Program Files\Internet Explorer\plugins\npqtplugin7.dll
RealJukebox NS Plugin C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll
RealPlayer Version Plugin C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll
RealPlayer(tm) G2 LiveConnect-Enabled P C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll
Shockwave for Director C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
Silverlight Plug-In C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll
STProxy.dll C:\WINDOWS\system32\STProxy.dll
unagiuninst.exe C:\WINDOWS\Downloaded Program Files\unagiuninst.exe
Unity Player C:\Program Files\Unity\WebPlayer\loader\npUnity3D32.dll
VSCORE C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20111010110833.dll
Windows Presentation Foundation C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
Windows® Internet Explorer C:\WINDOWS\system32\ieframe.dll
(verified) InstallShield Update Service C:\WINDOWS\Downloaded Program Files\dwusplay.dll
(verified) InstallShield Update Service C:\WINDOWS\Downloaded Program Files\dwusplay.exe
(verified) Microsoft® Windows® Operating System C:\WINDOWS\Network Diagnostic\xpnetdiag.exe


Missing files
-------------
File not found: C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe
--> HKLM\Software\Microsoft\Windows\CurrentVersion\Run\"MMTray"

File not found: c:\program files\vuze_remote\tbvuze.dll
--> HKLM\Software\Classes\CLSID\{ba14329e-9550-4989-b3f2-9732e92d17cc}\InprocServer32\"(default)"
--> HKLM\Software\Classes\CLSID\{ba14329e-9550-4989-b3f2-9732e92d17cc}\InprocServer32\"(default)"

File not found: none
--> HKCU\Control Panel\Desktop\"SCRNSAVE.EXE"


Scan
----
MD5: f4a569f89a90205a095965ae628625e1 C:\Documents and Settings\Julie Goodwin\Application Data\Mozilla\Firefox\Profiles\07mj6jjm.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\plugins\npqscan.dll
MD5: 198bed114015c2671c88fdc32cdcb21d C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
MD5: 34ebd4ff6a24d86bb4716d6afcc1a89b C:\Program Files\Apple Software Update\SoftwareUpdate.exe
MD5: 37bc9e0e4b3657b54037777135569d1e C:\Program Files\Bonjour\mdnsNSP.dll
MD5: f2060a34c8a75bc24a9222eb4f8c07bd C:\Program Files\Bonjour\mDNSResponder.exe
MD5: 5753532c476b83119d85aa43b1b10ab3 C:\Program Files\Canon\CAL\CALMAIN.exe
MD5: 8c4ac22616e77925135c221c46dc6307 c:\program files\common files\adobe\acrobat\activex\acroiehelpershim.dll
MD5: 47c1de0a890613ffcff1d67648eedf90 C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
MD5: dddd1d04d5f4360371bc99c7c476f70d C:\Program Files\Common Files\Apple\Apple Application Support\ASL.dll
MD5: d855b0e63ecafe9ebd086af6691e0016 C:\Program Files\Common Files\Apple\Apple Application Support\CFNetwork.DLL
MD5: 749cf03badc40453f61fd7025e2ba2f5 C:\Program Files\Common Files\Apple\Apple Application Support\CoreFoundation.dll
MD5: d30dd708f05fb85ef2c53727ed3573d2 C:\Program Files\Common Files\Apple\Apple Application Support\icudt40.dll
MD5: 38711bb50d27b7145186f61ce31b3336 C:\Program Files\Common Files\Apple\Apple Application Support\icuin40.dll
MD5: 9e515554a3ea7b70c975f61971c6977d C:\Program Files\Common Files\Apple\Apple Application Support\icuuc40.dll
MD5: 7ef0c8a9a1a57756f4868e3693173c08 C:\Program Files\Common Files\Apple\Apple Application Support\libdispatch.dll
MD5: 258d35f5f5f5f3f6045488ecdc14faab C:\Program Files\Common Files\Apple\Apple Application Support\objc.dll
MD5: 20f6f19fe9e753f2780dc2fa083ad597 C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
MD5: dc70310b3d079d667b67f0c7067209f3 C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService_main.dll
MD5: e6748a0adc22f0595e31448cac746d3f C:\Program Files\Common Files\Apple\Mobile Device Support\iTunesMobileDevice.dll
MD5: f14a3cf12522c2b48b55e2045dab80ef C:\Program Files\Common Files\Authentium\AntiVirus5\AmpVseApi.dll
MD5: 9bbf1a3a0abf6cc9e0e390e1e9944ae6 C:\Program Files\Common Files\Authentium\AntiVirus5\vseampc.dll
MD5: 9c2f3a9b54316c0a3f53e3272484b17c C:\Program Files\Common Files\Authentium\AntiVirus5\vseamps.exe
MD5: 33dbfbc551be96534a8bebddb866846b C:\Program Files\Common Files\Authentium\AntiVirus5\vseapi.dll
MD5: 00d15ff1e8363f7876396970d913cf26 C:\Program Files\Common Files\Authentium\AntiVirus5\vsedsps.exe
MD5: 68cc16e23f3b71918c0a003a046cef47 C:\Program Files\Common Files\Authentium\AntiVirus5\vseqrts.exe
MD5: 6e3245df783e58375b3465f03274743e C:\Program Files\Common Files\Java\Java Update\jusched.exe
MD5: ab097d0f93b30a6d79d430422ac6a7e8 C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
MD5: f65b397164cc4a9b192e2d50b48cf3a7 c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
MD5: c13772cefd0274078f1e23b13e5d9431 C:\Program Files\Common Files\LogiShrd\KHAL3\KHALAPI.DLL
MD5: ec2466a391a059a90941e5c4ce3c3a55 C:\Program Files\Common Files\LogiShrd\KHAL3\KHALHID.DLL
MD5: 48cfca56c72dfd1dae75eb1ad4dba256 C:\Program Files\Common Files\LogiShrd\KHAL3\KHALHPP.DLL
MD5: 42ac64ebb0c0ed81dd27893dbf9b68e7 C:\Program Files\Common Files\LogiShrd\KHAL3\KHALITCH.DLL
MD5: d779c18f315fa720bbd281bee382b92f C:\Program Files\Common Files\Logishrd\KHAL3\KHALMNPR.exe
MD5: 8ba43aaddace300b980078611b00da64 C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMOU.DLL
MD5: 7308e01961426700c11a6aafeb04aba6 C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMW.DLL
MD5: b358c3525173aa102398c78afa1a43a2 C:\Program Files\Common Files\LogiShrd\KHAL3\KHALUSB.DLL
MD5: cc039c83ae3a0e14fbec803b1fb7b7f5 c:\Program Files\Common Files\Mcafee\Core\mccoreps.dll
MD5: 4ffbfbbbc0a65b302db1958e340629b7 c:\Program Files\Common Files\Mcafee\Core\McEvtBrk.dll
MD5: 19e346239e2ee5a27bd6b3ba76419920 c:\Program Files\Common Files\Mcafee\HackerWatch\HWAPI.dll
MD5: 026e96d5ef16994f5bd7773a1656da30 C:\Program Files\Common Files\McAfee\McProxy\mcproxy.dll
MD5: b26a3ea976e6fd5c03c65f6e5824ad7c C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
MD5: 872901f4724dc2991f09fb47c426d949 C:\Program Files\Common Files\Mcafee\MNA\McNASvc.dll
MD5: e52784c250a13a1e9261f02b98d45e87 C:\Program Files\Common Files\McAfee\MSC\LangSel.dll
MD5: 4847ce730f5d12478cb5dcaebeb0953d C:\Program Files\Common Files\Mcafee\MSC\mcbrwsr2.dll
MD5: 56a4020083d63559b7ac94b67283e106 C:\Program Files\Common Files\McAfee\MSC\McRtMui.dll
MD5: 444f4ca5b252a785477ea55898535e93 c:\Program Files\Common Files\Mcafee\MSC\mcutil\10,5,155,0\mcutil.dll
MD5: 01438651636e4cf7f8231f6ff78cca31 C:\Program Files\Common Files\Mcafee\MSC\sqlite3.dll
MD5: 198ffdb4a8353a879ec983a556ff99ce C:\Program Files\Common Files\Mcafee\NMC\McDisc.dll
MD5: f2b397ce1118cefe497c9e5b8332b250 c:\Program Files\Common Files\Mcafee\NMC\McMPFEvt.dll
MD5: 3edcffa7b3af717b8ac70e6de6a03a81 C:\Program Files\Common Files\Mcafee\NMC\McNDSv.dll
MD5: 41c6cebb623537cb5c616e5c7d416271 C:\Program Files\Common Files\Mcafee\NMC\McNmcSrv.dll
MD5: f2861f8954d464f84c407a06a8d41d2f C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
MD5: a6dcd516f8c9e1dd3eac10ba97ea42c1 C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
MD5: 37621cfba438cec2fee8ef98bd7a5ad5 C:\Program Files\Common Files\McAfee\SystemCore\FTL.Dll
MD5: 7860f4a87c63491921b10b3339067e8f C:\Program Files\Common Files\McAfee\SystemCore\LockDown.dll
MD5: 2452c9ca7a81941f4323e1481e218040 C:\Program Files\Common Files\McAfee\SystemCore\mcshield.dll
MD5: f2861f8954d464f84c407a06a8d41d2f C:\Program Files\Common Files\Mcafee\SystemCore\mcshield.exe
MD5: 3cb6ee2df564bd4dd143789597924174 C:\Program Files\Common Files\McAfee\SystemCore\mfeapfa.dll
MD5: f7ae524c2b106ce2186f1e6e0fd6d1d2 C:\Program Files\Common Files\McAfee\SystemCore\mfeavfa.dll
MD5: a6dcd516f8c9e1dd3eac10ba97ea42c1 C:\Program Files\Common Files\Mcafee\SystemCore\mfefire.exe
MD5: 6a2371edead5d7351363ccb526ede02c C:\Program Files\Common Files\McAfee\SystemCore\mfefwctl.dll
MD5: 29c9737f86f3841f53e5bf0b469ee812 C:\Program Files\Common Files\McAfee\SystemCore\mfehida.dll
MD5: 731f2817f989f31e1438a29528d64a10 C:\Program Files\Common Files\McAfee\SystemCore\mfevtpa.dll
MD5: 3b13e3967ad0f878ea70ddbe21d0c8ba C:\Program Files\Common Files\McAfee\SystemCore\mytilus3.dll
MD5: e0f4211a6a3068b96a2fcb65bb979b70 C:\Program Files\Common Files\McAfee\SystemCore\mytilus3_server.dll
MD5: 9ce0ae7e1cac5deaecd021333dfc004b C:\Program Files\Common Files\McAfee\SystemCore\mytilus3_worker.dll
MD5: 86aba316b68e49a78c4556350cc182f5 C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20111010110833.dll
MD5: fe80901578e7e3da70299a5aeb2b7fbd C:\Program Files\DellSupport\brkrsvc.exe
MD5: 413f2d5f9d802688242c23b38f767ecb C:\Program Files\DellSupport\GTAction\triggers\DSproct.sys
MD5: e00de20f0f6bed5cd2160247ddc9443b C:\Program Files\ERUNT\AUTOBACK.EXE
MD5: 0f445b821549f9ff471bba56c69953d4 C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll
MD5: c097df5cd7dcb95e0d95644a993ac7ec c:\program files\google\google toolbar\googletoolbar_32.dll
MD5: a953e104137df406b70477d60bc29008 c:\program files\google\googletoolbarnotifier\5.7.6406.1642\swg.dll
MD5: 0d54bde041a1b094adb33648dce3fcfa C:\Program Files\Google\Update\1.3.21.69\npGoogleUpdate3.dll
MD5: c39790ba091f3f9ec7dfe5c2e4598df0 C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HPCustPartic.exe
MD5: 9da26b773bd04b867a8e9f427cd048fc C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
MD5: 9ed96215111b42bd0ef0c9bbddf8d0c9 C:\Program Files\Internet Explorer\plugins\NPEvery.dll
MD5: 198bed114015c2671c88fdc32cdcb21d C:\Program Files\Internet Explorer\plugins\nppdf32.dll
MD5: 840b4c97c7ef119834780fa09258dcd1 C:\Program Files\Internet Explorer\plugins\npqtplugin.dll
MD5: 840b4c97c7ef119834780fa09258dcd1 C:\Program Files\Internet Explorer\plugins\npqtplugin2.dll
MD5: 840b4c97c7ef119834780fa09258dcd1 C:\Program Files\Internet Explorer\plugins\npqtplugin3.dll
MD5: 840b4c97c7ef119834780fa09258dcd1 C:\Program Files\Internet Explorer\plugins\npqtplugin4.dll
MD5: 840b4c97c7ef119834780fa09258dcd1 C:\Program Files\Internet Explorer\plugins\npqtplugin5.dll
MD5: 840b4c97c7ef119834780fa09258dcd1 C:\Program Files\Internet Explorer\plugins\npqtplugin6.dll
MD5: 840b4c97c7ef119834780fa09258dcd1 C:\Program Files\Internet Explorer\plugins\npqtplugin7.dll
MD5: b84a28b3984185eda8867541af14cddb C:\Program Files\iPod\bin\iPodService.exe
MD5: 84cb60e2abc023e81fdf5c335568fb94 C:\Program Files\iPod\bin\iPodService.Resources\en.lproj\iPodServiceLocalized.DLL
MD5: 14c7e5cef764ae4708e820f61d048319 C:\Program Files\iPod\bin\iPodService.Resources\iPodService.DLL
MD5: 6f158c6029d841a5f37708cc2bbf3362 c:\program files\java\jre6\bin\jp2ssv.dll
MD5: 91061352084424820ac6268808cb8ee3 C:\Program Files\Java\jre6\bin\jqs.exe
MD5: 41700402834f793a8c06731e5cfba62a C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll
MD5: 79ac29dbbda1f2e11a827ccbcfed5563 c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
MD5: 00a5be5e57554259aee0085e4d4564e4 C:\Program Files\Logitech\SetPointP\KemMon.dll
MD5: 989a94f43eaddaec6be9182042a36f6a C:\Program Files\Logitech\SetPointP\kemutb.dll
MD5: bb76055c45b3a6c384cb8bc133aac0e9 C:\Program Files\Logitech\SetPointP\KemUtil.dll
MD5: edc69acfd2f60fe166e5285d476d1093 C:\Program Files\Logitech\SetPointP\KemWnd.dll
MD5: f116c79083ab038ab81b4d72191d12df C:\Program Files\Logitech\SetPointP\KemXML.dll
MD5: 209007b506f241a536a712a31c6fb506 C:\Program Files\Logitech\SetPointP\kgame.dll
MD5: e5b8e3ad6d60b7d0651c01d9987cb700 C:\Program Files\Logitech\SetPointP\khalwrapper.dll
MD5: d035404558b22ce7e99df6aa2d698a1d C:\Program Files\Logitech\SetPointP\LCabHandler.dll
MD5: 8369523d9255ce856e021da13def9cc0 C:\Program Files\Logitech\SetPointP\Macros\MacroAppSwitch.dll
MD5: f01dd27627fe882c9e59654367450d43 C:\Program Files\Logitech\SetPointP\Macros\MacroCore.dll
MD5: 0b995761f50b8a1f771716ac64444ade C:\Program Files\Logitech\SetPointP\Macros\MacroMedia.dll
MD5: 15373bdb125d7faf27d301565bf2a1c6 C:\Program Files\Logitech\SetPointP\SetPoint.exe
MD5: 4d2028d26e8ae8a827953fdc7a8d4a5c C:\Program Files\Logitech\SetPointP\SetPointCOM.dll
MD5: 49d461ea2b450fbc5242d20b548887f9 C:\Program Files\Logitech\SetPointP\WebBrowserSupport.dll
MD5: f906f057a4b6c7bce2bc8ed5845fb95d C:\Program Files\McAfee.com\Agent\mcagent.exe
MD5: 9388cada7c74c35e0e4455690f4dc638 c:\Program Files\McAfee.com\Agent\mcupdate.exe
MD5: c83e54c40274ae69eb41950b6ac5ab7d c:\Program Files\McAfee\MPF\FWJsRes.dll
MD5: 8581978ee35de1e0926513989c8eee4d c:\Program Files\McAfee\MPF\MpfApi.dll
MD5: d4c827c9c8ef6cee75a4f79ffa6ab6f8 c:\Program Files\McAfee\MPF\MpfEvt.dll
MD5: 6ed8e018924dfd9c7f32550b6d9a630a c:\Program Files\McAfee\MPF\MpfShm.dll
MD5: 3e7e83981808c2c83a602c7fea86aa00 c:\Program Files\McAfee\MPF\MpfSvc.dll
MD5: 98d39eb2c83e6e25621e6dada978d918 c:\Program Files\McAfee\MPF\MpfSvcPS.dll
MD5: 5ca17512ae97cceefa798edccc724a0c C:\Program Files\McAfee\MPF\Twerp.dll
MD5: 564ba7cffbcf8d2da2e366f9ffb5caa5 c:\Program Files\McAfee\MSC\McDBMgr.dll
MD5: 6b5222735bd07e9fca754e7942121277 c:\Program Files\McAfee\MSC\McGsShm.dll
MD5: b20b0ed458ed4011bf3e26094ffa7a57 c:\Program Files\McAfee\MSC\McIPTShm.dll
MD5: ef7c7c84846d736b28336870ea62dda4 C:\Program Files\McAfee\MSC\mclwapi.dll
MD5: 5e6f953adf328787a72e1a66781b4f1b c:\Program Files\McAfee\MSC\mcmispps.dll
MD5: a67abe653e6b16bedb4e5bc715263e5d c:\Program Files\McAfee\MSC\McMscShm.dll
MD5: dd54dbac21865e100769b000b6a0bb70 c:\Program Files\McAfee\MSC\mcmscsub.dll
MD5: 39a124d0e42145f07b6bb0e8c5347160 C:\Program Files\McAfee\MSC\McOemRes.dll
MD5: 83a595ee1ffd980349ec65c6c20c5302 C:\Program Files\McAfee\MSC\mcprlalt.dll
MD5: 6a041734e9758314978f4ab8b30a36b1 C:\Program Files\McAfee\MSC\mcprlres.dll
MD5: 16e20469b258f4456d27f75d29a2cbe6 c:\Program Files\McAfee\MSC\mcregobj\10,5,177,0\mcregobj.dll
MD5: 7b6270197e611fd8256631ea3b1bbaf2 c:\Program Files\McAfee\MSC\mcsubmgr\10,5,177,0\mcsubmgr.dll
MD5: 3ea746c9df8708098913bbacaa13822c c:\Program Files\McAfee\MSC\mcuicfg.dll
MD5: a68f4b488601c19d221e94e4017571e7 c:\Program Files\McAfee\MSC\McUpdShm.dll
MD5: 7cdeb836a3a30d87090c3a5eebaf162b C:\Program Files\McAfee\MSC\mscjsres.dll
MD5: 3cbd9a22f92f7677559a49fe78b25711 c:\Program Files\McAfee\MSC\mscuild.dll
MD5: 297c3c9f3b1cc22b80e342896db454ca C:\Program Files\McAfee\MSC\OemUI.dll
MD5: 058161224e92cf7f75eb41f8b7c8dd44 c:\Program Files\McAfee\MSC\oemuild.dll
MD5: 00a2083bd077c1300ae9493bad920416 c:\program files\mcafee\siteadvisor\mcieplg.dll
MD5: 80e806c7e7da5737074abc7424950feb c:\Program Files\McAfee\SiteAdvisor\McSACorePS.dll
MD5: af1a0573ed0e7f4766f886eaf7833ebe c:\Program Files\McAfee\SiteAdvisor\sahook.dll
MD5: b692147daa8b917f2ec2871d9b8dba72 c:\Program Files\McAfee\SiteAdvisor\SaSSHMod.dll
MD5: a6360992070cd80dacc07e36c8633ed6 c:\Program Files\McAfee\SiteAdvisor\saupkeep.dll
MD5: 43143131cc9b35e39ece5f56041fb20a c:\Program Files\McAfee\VirusScan\McOasShm.dll
MD5: ada83a989d5822daa5e2f62fdf118ac6 C:\Program Files\McAfee\VirusScan\mcods.exe
MD5: e1c614ed8c0d8d00a2c43c8ca36aac79 c:\Program Files\McAfee\VirusScan\mcodsax.dll
MD5: 2e842a2e2b26ac313adb90f8f023ce94 c:\Program Files\McAfee\VirusScan\McVsPs.dll
MD5: d6c5ead34e0a6eac2c37a6d3e3219b68 c:\Program Files\McAfee\VirusScan\MVsCfg.dll
MD5: 835d37a2726cd1d12bf404744674a5d4 c:\Program Files\McAfee\VirusScan\mvslog.dll
MD5: 74879b44cfa435600baf83ac2a5832e5 c:\Program Files\McAfee\VirusScan\NaiAnn.dll
MD5: 032c2db3daa2fe4a0459828e2fcaf123 c:\Program Files\McAfee\VirusScan\NaiAnnPs.dll
MD5: 1c1573f21ce68c358fcaeefe604fb1df c:\Program Files\McAfee\VirusScan\VSJsRes.dll
MD5: 72c6518ba1a06f8925a8aa0e38bad65f C:\Program Files\McAfee\VirusScan\vsores.dll
MD5: 3e930c641079443d4de036167a69caa2 C:\Program Files\Messenger\msmsgs.exe
MD5: c3e42cbf8215171a524d123a54ae3233 C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll
MD5: e31e4e9f644fbfe79dca532d9781f71d C:\Program Files\Microsoft SQL Server\100\Shared\instapi10.dll
MD5: f1761c8fb2b25a32c6d63e36bb88c3ae C:\Program Files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE
MD5: 99de6acfa5ca83fad6a765c81c6f129f C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
MD5: 637a0f23f9012358e92e6f99835494d1 C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
MD5: 070812b5fcd46f5a22af74ebf6a81e06 C:\Program Files\Microsoft SQL Server\90\Shared\sqlwvss_xp.dll
MD5: 0fb5aa33d26f7212963d832083cd0c5c C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\BatchParser.dll
MD5: b88613be5b9939bd5dd63f9e196413ad C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\opends60.dll
MD5: 080a55a56119b0effa809565a32ed8c3 C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\Resources\1033\sqlevn70.rll
MD5: eb2fd937449b7aceb39372f875eb8e78 C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE
MD5: d5afe08b548af0e80b0c6e421d81475c C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlos.dll
MD5: b5d37852d666e863e8051c1001548328 C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
MD5: 331e7bde228914574fc9ae6cd520dafa C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
MD5: 2a8da7e170010beae7aecdfdca10b626 c:\program files\microsoft\search enhancement pack\search helper\sepsearchhelperie.dll
MD5: 8a3314f8e2d828c689a1afabaadf1453 C:\Program Files\Mozilla Firefox\components\browsercomps.dll
MD5: 4e5585800b561fbef64b27425365a36f C:\Program Files\Mozilla Firefox\firefox.exe
MD5: 8ea8b096ce1c336e031fc91f50fd2c79 C:\Program Files\Mozilla Firefox\freebl3.dll
MD5: d45b94e37b589d44602c8cd23d5846f2 C:\Program Files\Mozilla Firefox\mozalloc.dll
MD5: 201d1419f982e4e99491730800f93f8a C:\Program Files\Mozilla Firefox\MOZCPP19.dll
MD5: 6769fa99f14b0a3a076c9b5c37c612ad C:\Program Files\Mozilla Firefox\MOZCRT19.dll
MD5: fa5c3b89009e6eeeb8ce5b5d522c8d86 C:\Program Files\Mozilla Firefox\mozjs.dll
MD5: ffdf182c96bd0a9fd3bc63bc7ebd29d9 C:\Program Files\Mozilla Firefox\mozsqlite3.dll
MD5: c47e54508c4fd350d5aed0934e5f7ec5 C:\Program Files\Mozilla Firefox\nspr4.dll
MD5: 95bfebc87318a69daf90a451d8c41d9e C:\Program Files\Mozilla Firefox\nss3.dll
MD5: 8f6e5bf3249385755a27216ba875fe54 C:\Program Files\Mozilla Firefox\nssckbi.dll
MD5: 5bfb3f3f690a279c0487a43a4959c58f C:\Program Files\Mozilla Firefox\nssdbm3.dll
MD5: 8986675ef2d7f77a4ae2ec43e7e14cbb C:\Program Files\Mozilla Firefox\nssutil3.dll
MD5: 328a247f9fc842e09f271ef53247c0f2 C:\Program Files\Mozilla Firefox\plc4.dll
MD5: e5daea8e7689a547a1edab4768934498 C:\Program Files\Mozilla Firefox\plds4.dll
MD5: 83f4ba8b8cda4f063aa2002955a508a9 C:\Program Files\Mozilla Firefox\plugin-container.exe
MD5: 19b4bddd14eda48ec07aace52b56c5c6 C:\Program Files\Mozilla Firefox\smime3.dll
MD5: fb38afc34dfb91c2b589a7bf535f21f9 C:\Program Files\Mozilla Firefox\softokn3.dll
MD5: 4265870f374c9a2be39d1ca6111200be C:\Program Files\Mozilla Firefox\ssl3.dll
MD5: 428013e8625ddc3a220a2cb77c82a448 C:\Program Files\Mozilla Firefox\xpcom.dll
MD5: 3799b05efbc4f0a4b430ddec09791c88 C:\Program Files\Mozilla Firefox\xul.dll
MD5: 372d3f4c91dfe752c0ae18a0a2655cc2 c:\program files\msn toolbar\platform\6.3.2291.0\npwinext.dll
MD5: 625d0a824f513ce1cabb8861e97f2142 C:\Program Files\Picasa2\npPicasa2.dll
MD5: 45d7f2fabdfd500e3c35dc068b552544 C:\Program Files\Picasa2\npPicasa3.dll
MD5: b42fe6e0251174b93b950dce9cb72262 C:\Program Files\Pinnacle\Shared Files\\Programs\USBTip\USBTip.exe
MD5: b42fe6e0251174b93b950dce9cb72262 C:\Program Files\Pinnacle\Shared Files\Programs\USBTip\USBTip.exe
MD5: afdae59fe562a7cdb44f9d4abedac316 C:\Program Files\QuickTime\QTSystem\QTCF.dll
MD5: 1d856e6e7490447fcfaa46e09a2bf9c9 C:\Program Files\QuickTime\QTSystem\QuickTime.qts
MD5: 0aee5668eb59912f32ff245bfa72465f C:\Program Files\QuickTime\QTTask.exe
MD5: e2b8c15caab06c6389184f23bac5ad6f C:\Program Files\Real\RealPlayer\Netscape6\nppl3260.dll
MD5: 3d304c8a8aa570169d87b0fc1701a864 C:\Program Files\Real\RealPlayer\Netscape6\nprjplug.dll
MD5: 4b2f61dca7db661570828dce5d302525 C:\Program Files\Real\RealPlayer\Netscape6\nprpjplug.dll
MD5: ee79116370a5b2980c9e4c543315fc98 C:\Program Files\SoftwareTime\ComputerTime\bin\ctmn32.exe
MD5: ec73542cfd81d4936d3703c14a1285b5 c:\program files\softwaretime\computertime\bin\ctproxy.dll
MD5: 26b4554cf06d9bef14a148a751a70813 C:\Program Files\SoftwareTime\ComputerTime\bin\fbclient.dll
MD5: 6d87da60cc6d16530b63e66ba14e15c9 C:\Program Files\SoftwareTime\ComputerTime\bin\fbserver.exe
MD5: 3e279b6da1d53e2131c50320e2f64c92 C:\Program Files\SoftwareTime\ComputerTime\bin\icudt30.dll
MD5: 39de7f7d147693167faee1774a1f0994 C:\Program Files\SoftwareTime\ComputerTime\bin\icuuc30.dll
MD5: fbcaa89a0467f8572633843d5550f361 C:\Program Files\SoftwareTime\ComputerTime\bin\stka32.exe
MD5: bfb8b52ec8c9c10e2037993a16e8ba8c C:\Program Files\SoftwareTime\ComputerTime\bin\STProxy.exe
MD5: 8f8b4c3d7e5d3d051a4942f5cea28f24 C:\Program Files\SoftwareTime\ComputerTime\bin\STUpdater.dll
MD5: a52cf2bd90c36c10155c1a0f93b52e7e C:\Program Files\Sony\Media Go\npmediago.dll
MD5: 84715535f8c1296b855ba02bd2c0b237 C:\Program Files\Unity\WebPlayer\loader\npUnity3D32.dll
MD5: 9388cada7c74c35e0e4455690f4dc638 C:\PROGRA~1\McAfee.com\Agent\mcupdate.exe
MD5: 310c15fd8358b2c4cd7a5b98a112883f C:\WINDOWS\AppPatch\AcGenral.DLL
MD5: 14800d86a62ddef4677444b786bd2363 C:\WINDOWS\Downloaded Program Files\arclib.dll
MD5: 759a6cc61bede26b4224e4a9c337bbc0 C:\WINDOWS\Downloaded Program Files\CpnMgr.dll
MD5: d8fb851a9fbd62352fd74283f9c14c77 C:\WINDOWS\Downloaded Program Files\isusweb.dll
MD5: 4af2bedfc339108f42fbda45238a3f34 C:\WINDOWS\Downloaded Program Files\McContentMgr.dll
MD5: 80a6e8d88f47bdebe7076d979d5442b3 C:\WINDOWS\Downloaded Program Files\McHealthCheck.dll
MD5: 061c34a890af71d44c13d801dfb7db27 C:\WINDOWS\Downloaded Program Files\McLogMgr.dll
MD5: 13f38e890318d6239f7d18adac882f2c C:\WINDOWS\Downloaded Program Files\McPlugins.dll
MD5: b98f891ee1433069bf05e9f65d432f1e C:\WINDOWS\Downloaded Program Files\McProdMgr.dll
MD5: 5765282a4e450fe12d6f0e089c4a30ba C:\WINDOWS\Downloaded Program Files\MVT.dll
MD5: be3d9b33f73c8a26274aa8ce6dbb43fe C:\WINDOWS\Downloaded Program Files\OTOYAX.dll
MD5: 6f678556a6fce04fc94f3435f6313705 C:\WINDOWS\Downloaded Program Files\unagiuninst.exe
MD5: 9deb8c5bf6aeca9db194cace96ff0d71 C:\WINDOWS\Downloaded Program Files\Uploader.exe
MD5: 003436c12cec3af36a6e409e9e91ef08 C:\WINDOWS\Downloaded Program Files\vete.dll
MD5: 76ea3abece61fba3c07f61e42bb0ca48 C:\WINDOWS\Downloaded Program Files\webscan.dll
MD5: 17536c890df63ab4644eb111c28128f5 C:\WINDOWS\Downloaded Program Files\wlscBase.dll
MD5: ab87eeffd18f2baafc274e7075ea6c67 C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
MD5: e2318e8514abf50e3ecedab9465a90a1 C:\WINDOWS\system32\Adobe\Director\np32dsw.dll
MD5: 93afb83fbc1f9443cac722fca63d73bf C:\WINDOWS\system32\comctl32.dll
MD5: ed0c0df222209e43ad9afbf3fe87dde0 C:\WINDOWS\system32\comsvcs.dll
MD5: be369da2dda97258303abf1b36b40fa4 C:\WINDOWS\system32\CRYPT32.dll
MD5: c14350fc0d47d806699c4f907fc6785b C:\WINDOWS\system32\cryptnet.dll
MD5: 515a7fae2070c2b0242b2353443e2f11 C:\WINDOWS\system32\cscdll.dll
MD5: 2a9e427681169f02274ad8c17d52fa2d C:\WINDOWS\system32\CSRSRV.dll
MD5: e2092f0a1d7abc243f9c2362483d150d C:\WINDOWS\System32\dimsntfy.dll
MD5: e2d0de31442390c35e3163c87cb6a9eb C:\WINDOWS\System32\DLA\DLABOIOM.SYS
MD5: 83545593e297f50a8e2524b4c071a153 C:\WINDOWS\System32\DLA\DLADResN.SYS
MD5: 96e01d901cdc98c7817155cc057001bf C:\WINDOWS\System32\DLA\DLAIFS_M.SYS
MD5: 0a60a39cc5e767980a31ca5d7238dfa9 C:\WINDOWS\System32\DLA\DLAOPIOM.SYS
MD5: 9fe2b72558fc808357f427fd83314375 C:\WINDOWS\System32\DLA\DLAPoolM.SYS
MD5: 8ef6619212e5500022ab22ff11e68d3b c:\windows\system32\dla\dlashx_w.dll
MD5: e7d105ed1e694449d444a9933df8e060 C:\WINDOWS\System32\DLA\DLAUDF_M.SYS
MD5: f08e1dafac457893399e03430a6a1397 C:\WINDOWS\System32\DLA\DLAUDFAM.SYS
MD5: 603dc4d0bb6ac2f34cb15c6495aa02b5 C:\WINDOWS\system32\dlbtcoms.exe
MD5: a18c0d1fcbb684dcb57a98b02bad6bc2 C:\WINDOWS\system32\dlbtlmpm.DLL
MD5: 389496118b3b03c2328024af320132ac C:\WINDOWS\system32\DNSAPI.dll
MD5: 5f7e24fa9eab896051ffb87f840730d2 C:\WINDOWS\System32\dnsrslvr.dll
MD5: 1e44bc1e83d8fd2305f8d452db109cf9 C:\WINDOWS\System32\drivers\afd.sys
MD5: 7fd604cd7a7a0ff8975af61bdf64c577 C:\WINDOWS\system32\drivers\cfwids.sys
MD5: d979bebcf7edcc9c9ee1857d1a68c67b C:\WINDOWS\System32\Drivers\DLACDBHM.SYS
MD5: 7ee0852ae8907689df25049dcd2342e8 C:\WINDOWS\System32\Drivers\DLARTL_N.SYS
MD5: fd0f95981fef9073659d8ec58e40aa3c C:\WINDOWS\System32\Drivers\DRVMCDB.SYS
MD5: b4869d320428cdc5ec4d7f5e808e99b5 C:\WINDOWS\System32\Drivers\DRVNDDM.SYS
MD5: dfeabb7cfffadea4a912ab95bdc3177a C:\WINDOWS\system32\DRIVERS\dsunidrv.sys
MD5: 95974e66d3de4951d29e28e8bc0b644c C:\WINDOWS\system32\DRIVERS\e100b325.sys
MD5: ffa45148a2d5d05dbb3c0997e579fc9c C:\WINDOWS\system32\drivers\emAudio.sys
MD5: 5118ea8a2f55fa4d4295516500b78229 C:\WINDOWS\system32\DRIVERS\emDevice.sys
MD5: 6f87e4706f59463b74bc4fad0f67338f C:\WINDOWS\system32\DRIVERS\emFilter.sys
MD5: f5a633609777c212ec5ff19927fc5955 C:\WINDOWS\system32\DRIVERS\emScan.sys
MD5: e3b0cd18146f9d51a34969e9bc2458d2 C:\WINDOWS\system32\DRIVERS\fantom.sys
MD5: f59ed5a43b988a18ef582bb07b2327a7 C:\WINDOWS\system32\DRIVERS\HSF_CNXT.sys
MD5: 60e1604729a15ef4a3b05f298427b3b1 C:\WINDOWS\system32\DRIVERS\HSF_DP.sys
MD5: 77e4ff0b73bc0aeaaf39bf0c8104231f C:\WINDOWS\system32\DRIVERS\HSFHWBS2.sys
MD5: ca63fe81705ad660e482bef210bf2c73 C:\WINDOWS\System32\Drivers\LBeepKE.sys
MD5: 63d3b1d3cd267fcc186a0146b80d453b C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys
MD5: 0c62957912d4df1e4ba9795e6be3ed38 C:\WINDOWS\System32\Drivers\LUsbFilt.Sys
MD5: 269c14d512b74cc28d2812ff7d1eb066 C:\WINDOWS\system32\DRIVERS\MarvinBus.sys
MD5: eeaea6514ba7c9d273b5e87c4e1aab30 C:\WINDOWS\system32\DRIVERS\mdmxsdk.sys
MD5: 688b626fca708ee9eb161cad1f7363a9 C:\WINDOWS\system32\drivers\mfeapfk.sys
MD5: dbf6e1b388d5c070d438c61adb990c30 C:\WINDOWS\system32\drivers\mfeavfk.sys
MD5: a528b15e330edb83ea649be318d841d5 C:\WINDOWS\system32\drivers\mfebopk.sys
MD5: c7da1b8003c89acedaa13768f7a1c622 C:\WINDOWS\system32\drivers\mfefirek.sys
MD5: 44184f32392fa2e94d08d056ce750d56 C:\WINDOWS\system32\drivers\mfehidk.sys
MD5: b1728195877b18ce63cf0cd00b2871eb C:\WINDOWS\system32\DRIVERS\mfendisk.sys
MD5: ce1711f7c3f72f6762abd241dcfd5ee1 C:\WINDOWS\system32\drivers\mferkdet.sys
MD5: 25e12c68b49a64ffc873603dfd578236 C:\WINDOWS\system32\drivers\mfetdi2k.sys
MD5: 7d304a5eb4344ebeeab53a2fe3ffb9f0 C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
MD5: 0109c4f3850dfbab279542515386ae22 C:\WINDOWS\system32\DRIVERS\ndistapi.sys
MD5: 1bebe7de8508a02650cdce45c664c2a2 C:\WINDOWS\system32\drivers\pclepci.sys
MD5: fedd2710b75be3ecf078adace790c423 C:\WINDOWS\system32\DRIVERS\RsFx0102.sys
MD5: a9573045baa16eab9b1085205b82f1ed C:\WINDOWS\system32\DRIVERS\serscan.sys
MD5: 47ddfc2f003f7f9f0592c6874962a2e7 C:\WINDOWS\system32\DRIVERS\srv.sys
MD5: 2a2dc39623adef8ab3703ab9fac4b440 C:\WINDOWS\system32\drivers\sthda.sys
MD5: 4dc436421c9d745d7e8c37f956701c78 C:\WINDOWS\system32\drivers\tmcomm.sys
MD5: 83cafcb53201bbac04d822f32438e244 C:\WINDOWS\System32\Drivers\usbaapl.sys
MD5: f90d8f845095fcd6924e3d751c04e442 C:\WINDOWS\System32\Drivers\usbio.sys
MD5: 4160cbe59d9b5be22e4c3897e8db9d56 C:\WINDOWS\system32\drivers\WsAudio_DeviceS(1).sys
MD5: 4160cbe59d9b5be22e4c3897e8db9d56 C:\WINDOWS\system32\drivers\WsAudio_DeviceS(2).sys
MD5: 4160cbe59d9b5be22e4c3897e8db9d56 C:\WINDOWS\system32\drivers\WsAudio_DeviceS(3).sys
MD5: 4160cbe59d9b5be22e4c3897e8db9d56 C:\WINDOWS\system32\drivers\WsAudio_DeviceS(4).sys
MD5: 4160cbe59d9b5be22e4c3897e8db9d56 C:\WINDOWS\system32\drivers\WsAudio_DeviceS(5).sys
MD5: dfd01abc9fcca5733741f26d6db1b79e C:\WINDOWS\system32\Dxtmsft.dll
MD5: 42d692401a0e80b46b05ed746d468fc4 C:\WINDOWS\system32\Dxtrans.dll
MD5: f4f3eae16ae6fd93e1f22df295e2a7fc C:\WINDOWS\system32\E_FLBFIA.DLL
MD5: f5b754cdea20bbb3a31e16a776ede6d6 C:\WINDOWS\system32\ESENT.dll
MD5: 303a63f4b913aa5d8998161cb77a8ce7 C:\WINDOWS\system32\feclient.dll
MD5: eb53460ce1aaa176e573b2a65027290f C:\WINDOWS\system32\HPDiscoPM5412.dll
MD5: 059d29ce8f93c0fa0e3da4e04db7033d C:\WINDOWS\system32\hpinksts5412LM.dll
MD5: fecf7a0cf46b3a8b6644c6b1a939916a C:\WINDOWS\system32\HPScanMiniDrv_OJ6500_E710nz.dll
MD5: d8d3aa6187f3af7756947a19402aafe2 C:\WINDOWS\system32\ieframe.dll
MD5: 80c92437b61d65e397d6ea0a763b8cac C:\WINDOWS\system32\iertutil.dll
MD5: 18c288f56f1d670682d64807914413bf C:\WINDOWS\system32\igfxdev.dll
MD5: f7b098a08efcf4ab4247264c0ac225d2 C:\WINDOWS\system32\JScript.dll
MD5: a525c96c51d55111fdf3bea9ffffc7ae C:\WINDOWS\system32\kerberos.dll
MD5: bd31dc6dbe9333c4fbd4bdf0899f2160 C:\WINDOWS\system32\LSASRV.dll
MD5: 0723fd1aa71f1222b95503794e30d7c7 C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
MD5: 15a9294b81d0ff0e4ac75276c13fd04b C:\WINDOWS\system32\mdimon.dll
MD5: f35a584e947a5b401feb0fe01db4a0d7 C:\WINDOWS\system32\MFC71.DLL
MD5: 6991a9ea5e74e6035b8dab17a7572cf3 C:\WINDOWS\system32\mfevtps.exe
MD5: 69a5adf546505f4c69ef3046bf798b49 C:\WINDOWS\system32\MPRUI.dll
MD5: 330e0015b751fafb53b6f73d30a4bbf1 C:\WINDOWS\system32\msfeedssync.exe
MD5: 56a67300c652cdf66e575b707f8b9397 C:\WINDOWS\system32\mshtml.dll
MD5: 249dce3cd85d97faabf1e22919db8eb7 C:\WINDOWS\system32\mshtmled.dll
MD5: 8c22083ed515dc94d575438662f0be6a C:\WINDOWS\system32\msi.dll
MD5: 25912cc032cb14c299cec9d2034a49f4 C:\WINDOWS\system32\MSVCR71.dll
MD5: 943337d786a56729263071623bbb9de5 C:\WINDOWS\system32\MSWSOCK.dll
MD5: 20fd44370267ccd0a64a1b31861c21d2 C:\WINDOWS\system32\netmsg.dll
MD5: 062f837c1fbdb6a0a75f82efc2ee8e74 C:\WINDOWS\system32\netshell.dll
MD5: 1414e666316ca7d9823dbd2d4ada5971 C:\WINDOWS\system32\NETUI2.dll
MD5: f8f0d25ca553e39dde485d8fc7fcce89 C:\WINDOWS\system32\ntdll.dll
MD5: 40b0f98bad16ad5def894e88c3ef8014 C:\WINDOWS\system32\ODBC32.dll
MD5: 7a6a7900b5e322763430ba6fd9a31224 C:\WINDOWS\system32\ole32.dll
MD5: 1b2be5777f69a71778f52ffee1c798d6 C:\WINDOWS\system32\OLEAUT32.dll
MD5: 3b72fe1ea1a2b5976cc1cdbb278122a7 C:\WINDOWS\system32\pngfilt.dll
MD5: d4502f124289a31976130cccb014c9aa C:\WINDOWS\system32\RPCRT4.dll
MD5: 72451fd61ddbb0a1fb071b7c3cde5594 C:\WINDOWS\system32\rsvpsp.dll
MD5: abeedd547e939ad827b2e29dec754206 C:\WINDOWS\system32\schannel.dll
MD5: f0a0ebf086597e645bc14b0d98f8ba58 C:\WINDOWS\system32\scrrun.dll
MD5: 8bcd11d38fce43a519246a91cc40de6a C:\WINDOWS\system32\security.dll
MD5: e73f18195ccf4aaaa87b2d22e83f791c C:\WINDOWS\system32\serwvdrv.dll
MD5: 26cb10fa893f940ab09713ff46dcdade C:\WINDOWS\system32\SHDOCVW.dll
MD5: e86423aa9aa8c382af02b94a058dc2aa C:\WINDOWS\system32\SHELL32.dll
MD5: 99bc0b50f511924348be19c7c7313bbf C:\WINDOWS\system32\SHSVCS.dll
MD5: 5b6f82bcb5e228822e2ed259dde1024f C:\WINDOWS\System32\spool\PRTPROCS\W32X86\DLBTPP5C.dll
MD5: 063457262374b224226710d8db74c37c C:\WINDOWS\System32\spool\PRTPROCS\W32X86\mdippr.dll
MD5: 60784f891563fb1b767f70117fc2428f C:\WINDOWS\system32\spoolsv.exe
MD5: 3a7c3cbe5d96b8ae96ce81f0b22fb527 c:\windows\system32\srvsvc.dll
MD5: 3caeae7608f1bd7ba873a3b02895b106 C:\WINDOWS\system32\sti.dll
MD5: 0bf58fb1f9f894e464564b104bbb9c6b C:\WINDOWS\system32\STProxy.dll
MD5: d0049860b63dd87a73a5d165c829c65f C:\WINDOWS\system32\t2embed.dll
MD5: ec2ad9ac452e0a8d976fb1b1718517ce C:\WINDOWS\system32\umdmxfrm.dll
MD5: da01583e2fe34e2f670167506fa5f1d3 C:\WINDOWS\system32\urlmon.dll
MD5: a93aee1928a9d7ce3e16d24ec7380f89 c:\windows\system32\userinit.exe
MD5: 9e03dc5ab51cfd0190541ce2038d819d C:\WINDOWS\system32\USP10.dll
MD5: 142e08e570d8fcd87e845f1463c1aece C:\WINDOWS\system32\VBScript.dll
MD5: f731f37bce6d6e43140822683087e3ee C:\WINDOWS\system32\webcheck.dll
MD5: d7dcfb4d0c58ffb569de93e1681fd37a C:\WINDOWS\system32\WgaLogon.dll
MD5: 3688e2bbe543cc753809e462c3553188 C:\WINDOWS\system32\WININET.dll
MD5: d72b9ec3337b247a666f098f3d6b43de C:\WINDOWS\System32\winrnr.dll
MD5: 95cf3446911a6e25ee4086df8a45b2aa C:\WINDOWS\system32\winsrv.dll
MD5: 2cc34e8bb667eef78899546e12649196 C:\WINDOWS\system32\WlNotify.dll
MD5: 277f3e3333f1d10ca428568197fcce70 C:\WINDOWS\system32\wsnmp32.dll
MD5: 18473f44d6de85c8cb4e70f503c5ea64 C:\WINDOWS\System32\xactsrv.dll
MD5: 7facb452456ef5c053af3ee4b228fe0d C:\WINDOWS\system32\XPOB2RES.DLL
MD5: 16403217ab6fc5c30c14c6b12098ad4b C:\WINDOWS\system32\xpsp2res.dll
MD5: 95decd7ee37e740f4176baf60897a92f C:\WINDOWS\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.4148_x-ww_a57c1f53\mfc90.dll
MD5: 736b12b725aeb2b07f0241a9f680cb10 C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
MD5: 33d9b7bb7ba323bafe489df033dac824 C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6002.22509_x-ww_c7dad023\gdiplus.dll
MD5: ba0f6dcc3181a4e3cbb02ec41153bb72 D:\iTunesHelper.dll
MD5: 53d96678fb89f056d5285101481297d9 D:\iTunesHelper.exe
MD5: 99aaa6c83d40be9db1ba81141b2aebc8 D:\iTunesHelper.Resources\en.lproj\iTunesHelperLocalized.DLL
MD5: 562814461db20253b42bb806c994d20d D:\iTunesHelper.Resources\iTunesHelper.DLL
MD5: 7f8aefd3bbc0f30c42c59fd27a828dcf D:\Mozilla Plugins\npitunes.dll


No file uploaded.

Scan finished - communication took 2 sec
Total traffic - 0.02 MB sent, 1.36 KB recvd
Scanned 811 files and modules - 51 seconds

==============================================================================
 
Hello gilmore :),

Some great and free antivirus for you to choose from, but you need to uninstall McAfee first.

Avast
Microsoft Security Essentials

You should only select one of these two, and keep only one installed.

Things are definitely looking better, but AVSDK5 is still around. I am afraid it might conflict with your existing antivirus so we must remove it. Please check again with AppRemover and / or Revo Uninstalller. If both could not properly remove it, we will have to do it manually.

--------------------

Please backup the registry with ERUNT.

Run OTM again
  • Double click OTM.exe to run it.
  • Copy and paste the following text into the white box under Paste Instructions for Items to be Moved:
    Code:
    :reg
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    "MMTray"=-
    [-HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ba14329e-9550-4989-b3f2-9732e92d17cc}]
    
    :commands
    [CREATERESTOREPOINT]
    [emptytemp]
  • Click the red MoveIt! button. Everything on the desktop may disappear, this is normal. Please wait until the tool completes its routine.
  • Copy everything in the Results window (under the green bar) and paste it in your next reply.
  • The results can also be found in C:\_OTM\MovedFiles folder, the log file being named MMDDYYYY_HHMMSS.log, where MMDDYYYY_HHMMSS represent the date and time the fix was performed.

--------------------

Please post back:
1. how did the removal of AVSDK5 go
2. OTM log
 
Back
Top