Quantcast
Channel: Tech Support Guy
Viewing all articles
Browse latest Browse all 29110

FBI/DoJ Virus

$
0
0
Hello,

About 1 month ago one of my children came to get me and showed me my computer and it had been locked by the FBI due to this virus. I immediately shutdown my computer and unplugged it from the internet. I restarted it at a later time and it had gone back to normal operation (so I thought). about 3 weeks ago my games stopped being able to launch their clients or download updates (WoW and SWToR). I have been struggling to figure out the problem for the last 2 weeks. I finally called Cox Communications and worked with their Tech Support and the gentleman that I was speaking with had mention that my computer was behaving as if it had the FBI/DoJ virus on it. My computer will not let me uninstall any software or games, it will not boot into safe mode of any kind, it will not allow a system restore and AVG free anti-virus does not find any threats on my computer. I have downloaded and ran all the software that was asked and I will post the logs below. Thank you in advance for your help.

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 3:53:05 PM, on 8/9/2013
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
D:\WINDOWS\System32\smss.exe
D:\PROGRA~1\AVG\AVG2013\avgrsx.exe
D:\Program Files\AVG\AVG2013\avgcsrvx.exe
D:\WINDOWS\system32\winlogon.exe
D:\WINDOWS\system32\services.exe
D:\WINDOWS\system32\lsass.exe
D:\WINDOWS\system32\svchost.exe
D:\WINDOWS\System32\svchost.exe
D:\Program Files\HitmanPro\hmpsched.exe
D:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe
D:\WINDOWS\system32\spoolsv.exe
D:\Program Files\SUPERAntiSpyware\SASCORE.EXE
D:\Program Files\AVG\AVG2013\avgidsagent.exe
D:\Program Files\AVG\AVG2013\avgwdsvc.exe
D:\WINDOWS\system32\svchost.exe
D:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe
D:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.4.0\ToolbarUpdater.exe
D:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.4.0\loggingserver.exe
D:\Program Files\AVG\AVG2013\avgnsx.exe
D:\Program Files\AVG\AVG2013\avgemcx.exe
D:\WINDOWS\Explorer.EXE
D:\Program Files\HitmanPro\HitmanPro.exe
D:\Program Files\Google\Update\1.3.21.153\GoogleCrashHandler.exe
D:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S0BIC1.EXE
D:\WINDOWS\System32\svchost.exe
D:\Program Files\Microsoft IntelliType Pro\itype.exe
D:\WINDOWS\system32\wuauclt.exe
D:\Program Files\Microsoft IntelliPoint\ipoint.exe
D:\Program Files\AVG\AVG2013\avgui.exe
D:\Program Files\Microsoft IntelliType Pro\dpupdchk.exe
D:\Program Files\AVG SafeGuard toolbar\vprot.exe
D:\Program Files\Common Files\Java\Java Update\jusched.exe
D:\WINDOWS\system32\ctfmon.exe
D:\Program Files\SpywareGuard\sgmain.exe
D:\Program Files\SpywareGuard\sgbhp.exe
D:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesApp32.exe
D:\Program Files\HitmanPro\HitmanPro.exe
D:\Program Files\HitmanPro\HitmanPro.exe
D:\Program Files\Internet Explorer\iexplore.exe
D:\Program Files\Internet Explorer\iexplore.exe
D:\Documents and Settings\Anthony\My Documents\Downloads\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: vShare Plugin - {043C5167-00BB-4324-AF7E-62013FAEDACF} - D:\Program Files\vShare\vshare_toolbar.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - D:\Documents and Settings\All Users\Application Data\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)
O2 - BHO: SpywareGuard Download Protection - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - D:\Program Files\SpywareGuard\dlprotect.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files\Java\jre7\bin\ssv.dll
O2 - BHO: ZoneAlarm Security Engine Registrar - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - D:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll
O2 - BHO: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - D:\Program Files\AVG SafeGuard toolbar\15.4.0.5\AVG SafeGuard toolbar_toolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - D:\Program Files\Java\jre7\bin\jp2ssv.dll
O3 - Toolbar: vShare Plugin - {043C5167-00BB-4324-AF7E-62013FAEDACF} - D:\Program Files\vShare\vshare_toolbar.dll
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
O3 - Toolbar: ZoneAlarm Security Engine - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - D:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll
O3 - Toolbar: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - D:\Program Files\AVG SafeGuard toolbar\15.4.0.5\AVG SafeGuard toolbar_toolbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - D:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [JMB36X IDE Setup] D:\WINDOWS\RaidTool\xInsIDE.exe
O4 - HKLM\..\Run: [36X Raid Configurer] D:\WINDOWS\system32\xRaidSetup.exe boot
O4 - HKLM\..\Run: [WinSys2] D:\WINDOWS\system32\winsys2.exe
O4 - HKLM\..\Run: [EPSON Stylus C62 Series] D:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S0BIC1.EXE /P23 "EPSON Stylus C62 Series" /O6 "USB001" /M "Stylus C62"
O4 - HKLM\..\Run: [itype] "D:\Program Files\Microsoft IntelliType Pro\itype.exe"
O4 - HKLM\..\Run: [IntelliPoint] "D:\Program Files\Microsoft IntelliPoint\ipoint.exe"
O4 - HKLM\..\Run: [ZoneAlarm] "D:\Program Files\CheckPoint\ZoneAlarm\zatray.exe"
O4 - HKLM\..\Run: [AVG_UI] "D:\Program Files\AVG\AVG2013\avgui.exe" /TRAYONLY
O4 - HKLM\..\Run: [vProt] "D:\Program Files\AVG SafeGuard toolbar\vprot.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "D:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE D:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] D:\Program Files\NVIDIA Corporation\nview\nwiz.exe /installquiet
O4 - HKLM\..\RunOnce: [AvgUninstallURL] cmd.exe /c start http://www.avg.com/ww.special-uninstallation-feedback-appf?lic=NFVZOVgtTlNWVkwtTzRCWlEtUUlNQ0wtUVREQ0gtNElKTUg"&"inst=NzctNDg2NTk xMjE5LVQyMi1CQSsxLUtWMys3LVhMKzEtRlA5KzYtQkFSOUcrMS1UQjkrMi1GTCs5LUYxME0rNS 1RSVgxKzQtWDIwMTArMi1GMTBNMTBEKzI"&"prod=90"&"ver=10.0.1204
O4 - HKCU\..\Run: [ctfmon.exe] D:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [ToolBoxDebug] rundll32.exe "D:\Documents and Settings\Anthony\Local Settings\Application Data\ToolBoxDebug\risfgerz.dll",BL_CollationInfo
O4 - HKUS\S-1-5-19\..\Run: [Yahoo] rundll32 "D:\Documents and Settings\Anthony\Local Settings\Application Data\Apple Computer\Yahoo\cfjfg.dll",DllRegisterServer (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Yahoo] rundll32 "D:\Documents and Settings\Anthony\Local Settings\Application Data\Apple Computer\Yahoo\cfjfg.dll",DllRegisterServer (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [Yahoo] rundll32 "D:\Documents and Settings\Anthony\Local Settings\Application Data\Apple Computer\Yahoo\cfjfg.dll",DllRegisterServer (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Yahoo] rundll32 "D:\Documents and Settings\Anthony\Local Settings\Application Data\Apple Computer\Yahoo\cfjfg.dll",DllRegisterServer (User 'Default user')
O4 - Startup: SpywareGuard.lnk = D:\Program Files\SpywareGuard\sgmain.exe
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - D:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - D:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - D:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O15 - Trusted Zone: spp.aaa.com
O15 - Trusted Zone: spp1.aaa.com
O15 - Trusted Zone: spp2.aaa.com
O15 - Trusted Zone: spp3.aaa.com
O15 - Trusted Zone: sppt.aaa.com
O15 - Trusted Zone: sppt1.aaa.com
O15 - Trusted Zone: sppt2.aaa.com
O15 - Trusted Zone: *.clonewarsadventures.com
O15 - Trusted Zone: *.freerealms.com
O15 - Trusted Zone: *.soe.com
O15 - Trusted Zone: *.sony.com
O16 - DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} (asusTek_sysctrl Class) - http://support.asus.com/select/asusTek_sys_ctrl3.cab
O16 - DPF: {140E4DF8-9E14-4A34-9577-C77561ED7883} (SysInfo Class) - http://content.systemrequirementslab...i_4.1.72.0.cab
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} (System Requirements Lab) - http://www.nvidia.com/content/Driver...reqlab_nvd.cab
O16 - DPF: {40F576AD-8680-4F9E-9490-99D069CD665F} (System Requirements Lab Class) - http://srtest-cdn.systemrequirements...qlabdetect.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/wind...?1232500994500
O16 - DPF: {9C23D886-43CB-43DE-B2DB-112A68D7E10A} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader2.cab
O16 - DPF: {A7846ED2-9DE6-4E8A-B116-A8ACEBFA7DB1} - http://rms2.invokesolutions.com/even...452/MILive.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/ge...sh/swflash.cab
O16 - DPF: {D8AA889B-2C65-47C3-8C16-3DCD4EF76A47} -
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - (no file)
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - D:\Program Files\Common Files\AVG Secure Search\ViProtocolInstaller\15.4.0\ViProtocol.dll
O18 - Protocol: vsharechrome - {3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484} - D:\Program Files\vShare\vshare_toolbar.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - D:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - D:\WINDOWS\system32\browseui.dll
O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - D:\Program Files\SUPERAntiSpyware\SASCORE.EXE
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - D:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - D:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG Security Toolbar Service - Unknown owner - D:\Program Files\AVG\AVG10\Toolbar\ToolbarBroker.exe (file missing)
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - D:\Program Files\AVG\AVG2013\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - D:\Program Files\AVG\AVG2013\avgwdsvc.exe
O23 - Service: BitRaider Mini-Support Service (BRSptSvc) - BitRaider, LLC - D:\Documents and Settings\All Users\Application Data\BitRaider\BRSptSvc.exe
O23 - Service: HitmanPro Scheduler (HitmanProScheduler) - SurfRight B.V. - D:\Program Files\HitmanPro\hmpsched.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - D:\WINDOWS\system32\nvsvc32.exe
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - D:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: AVG PC TuneUp Service (TuneUp.UtilitiesSvc) - AVG - D:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - D:\Program Files\CheckPoint\ZoneAlarm\vsmon.exe
O23 - Service: vToolbarUpdater15.4.0 - Unknown owner - D:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.4.0\ToolbarUpdater.exe

--
End of file - 11934 bytes

------------------------------------------------------------------------------------------------
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 10.25.2
Run by Anthony at 15:54:17 on 2013-08-09
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.3327.2477 [GMT -7:00]
.
AV: AVG AntiVirus Free Edition 2013 *Enabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
AV: Lavasoft Ad-Aware *Disabled/Outdated* {964FCE60-0B18-4D30-ADD6-EB178909041C}
FW: Lavasoft Ad-Aware *Disabled*
FW: ZoneAlarm Free Firewall *Enabled*
.
============== Running Processes ================
.
D:\Program Files\HitmanPro\hmpsched.exe
D:\WINDOWS\system32\spoolsv.exe
D:\Program Files\SUPERAntiSpyware\SASCORE.EXE
D:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
D:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe
D:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.4.0\ToolbarUpdater.exe
D:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\15.4.0\loggingserver.exe
D:\WINDOWS\System32\alg.exe
D:\WINDOWS\Explorer.EXE
D:\Program Files\HitmanPro\HitmanPro.exe
D:\Program Files\Google\Update\1.3.21.153\GoogleCrashHandler.exe
D:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S0BIC1.EXE
D:\Program Files\Microsoft IntelliType Pro\itype.exe
D:\WINDOWS\system32\wuauclt.exe
D:\Program Files\Microsoft IntelliPoint\ipoint.exe
D:\Program Files\Microsoft IntelliType Pro\dpupdchk.exe
D:\Program Files\AVG SafeGuard toolbar\vprot.exe
D:\Program Files\Common Files\Java\Java Update\jusched.exe
D:\WINDOWS\system32\ctfmon.exe
D:\Program Files\SpywareGuard\sgmain.exe
D:\Program Files\SpywareGuard\sgbhp.exe
D:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesApp32.exe
D:\Program Files\HitmanPro\HitmanPro.exe
D:\Program Files\HitmanPro\HitmanPro.exe
D:\Program Files\Internet Explorer\iexplore.exe
D:\Program Files\Internet Explorer\iexplore.exe
D:\Program Files\Internet Explorer\iexplore.exe
D:\WINDOWS\system32\wbem\wmiprvse.exe
D:\WINDOWS\System32\svchost.exe -k netsvcs
D:\WINDOWS\system32\svchost.exe -k NetworkService
D:\WINDOWS\system32\svchost.exe -k LocalService
D:\WINDOWS\system32\svchost.exe -k imgsvc
D:\WINDOWS\System32\svchost.exe -k HTTPFilter
.
============== Pseudo HJT Report ===============
.
dURLSearchHooks: {A3BC75A2-1F87-4686-AA43-5347D756017C} - <orphaned>
BHO: vShare Plugin: {043C5167-00BB-4324-AF7E-62013FAEDACF} - d:\program files\vshare\vshare_toolbar.dll
BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049C3E9-B461-4BC5-8870-4C09146192CA} - d:\documents and settings\all users\application data\real\realplayer\browserrecordplugin\ie\rpbrowserrecordplugin.dll
BHO: AVG Safe Search: {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - LocalServer32 - <no file>
BHO: SpywareGuardDLBLOCK.CBrowserHelper: {4A368E80-174F-4872-96B5-0B27DDD11DB2} - d:\program files\spywareguard\dlprotect.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - d:\program files\java\jre7\bin\ssv.dll
BHO: ZoneAlarm Security Engine Registrar: {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - d:\program files\checkpoint\zaforcefield\trustchecker\bin\TrustCheckerIEPlugin.dll
BHO: AVG SafeGuard toolbar: {95B7759C-8C7F-4BF1-B163-73684A933233} - d:\program files\avg safeguard toolbar\15.4.0.5\AVG SafeGuard toolbar_toolbar.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - d:\program files\java\jre7\bin\jp2ssv.dll
TB: vShare Plugin: {043C5167-00BB-4324-AF7E-62013FAEDACF} - d:\program files\vshare\vshare_toolbar.dll
TB: ZoneAlarm Security Engine: {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - d:\program files\checkpoint\zaforcefield\trustchecker\bin\TrustCheckerIEPlugin.dll
TB: <No Name>: {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - LocalServer32 - <no file>
TB: vShare Plugin: {043C5167-00BB-4324-AF7E-62013FAEDACF} - d:\program files\vshare\vshare_toolbar.dll
TB: ZoneAlarm Security Engine: {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - d:\program files\checkpoint\zaforcefield\trustchecker\bin\TrustCheckerIEPlugin.dll
TB: AVG SafeGuard toolbar: {95B7759C-8C7F-4BF1-B163-73684A933233} - d:\program files\avg safeguard toolbar\15.4.0.5\AVG SafeGuard toolbar_toolbar.dll
TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - d:\program files\google\google toolbar\GoogleToolbar_32.dll
uRun: [ctfmon.exe] d:\windows\system32\ctfmon.exe
uRun: [ToolBoxDebug] rundll32.exe "d:\documents and settings\anthony\local settings\application data\toolboxdebug\risfgerz.dll",BL_CollationInfo
mRun: [JMB36X IDE Setup] d:\windows\raidtool\xInsIDE.exe
mRun: [36X Raid Configurer] d:\windows\system32\xRaidSetup.exe boot
mRun: [WinSys2] d:\windows\system32\winsys2.exe
mRun: [EPSON Stylus C62 Series] d:\windows\system32\spool\drivers\w32x86\3\E_S0BIC1.EXE /P23 "EPSON Stylus C62 Series" /O6 "USB001" /M "Stylus C62"
mRun: [itype] "d:\program files\microsoft intellitype pro\itype.exe"
mRun: [IntelliPoint] "d:\program files\microsoft intellipoint\ipoint.exe"
mRun: [ZoneAlarm] "d:\program files\checkpoint\zonealarm\zatray.exe"
mRun: [AVG_UI] "d:\program files\avg\avg2013\avgui.exe" /TRAYONLY
mRun: [vProt] "d:\program files\avg safeguard toolbar\vprot.exe"
mRun: [SunJavaUpdateSched] "d:\program files\common files\java\java update\jusched.exe"
mRun: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
mRun: [NvCplDaemon] RUNDLL32.EXE d:\windows\system32\NvCpl.dll,NvStartup
mRun: [nwiz] d:\program files\nvidia corporation\nview\nwiz.exe /installquiet
mRunOnce: [AvgUninstallURL] cmd.exe /c start http://www.avg.com/ww.special-uninstallation-feedback-appf?lic=NFVZOVgtTlNWVkwtTzRCWlEtUUlNQ0wtUVREQ0gtNElKTUg"&"inst=NzctNDg2NTk xMjE5LVQyMi1CQSsxLUtWMys3LVhMKzEtRlA5KzYtQkFSOUcrMS1UQjkrMi1GTCs5LUYxME0rNS 1RSVgxKzQtWDIwMTArMi1GMTBNMTBEKzI"&"prod=90"&"ver=10.0.1204
dRun: [Yahoo] rundll32 "d:\documents and settings\anthony\local settings\application data\apple computer\yahoo\cfjfg.dll",DllRegisterServer
StartupFolder: d:\docume~1\anthony\startm~1\programs\startup\spywar~1.lnk - d:\program files\spywareguard\sgmain.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Windows\System: Allow-LogonScript-NetbiosDisabled = dword:1
mPolicies-Explorer: NoDriveTypeAutoRun = dword:145
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - d:\program files\microsoft office\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - d:\program files\spybot - search & destroy\SDHelper.dll
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
LSP: mswsock.dll
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} - hxxp://support.asus.com/select/asusTek_sys_ctrl3.cab
DPF: {140E4DF8-9E14-4A34-9577-C77561ED7883} - hxxp://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_cyri_4.1.72.0.cab
DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} - hxxp://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab
DPF: {40F576AD-8680-4F9E-9490-99D069CD665F} - hxxp://srtest-cdn.systemrequirementslab.com.s3.amazonaws.com/bin/sysreqlabdetect.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1232500994500
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab
DPF: {9C23D886-43CB-43DE-B2DB-112A68D7E10A} - hxxp://lads.myspace.com/upload/MySpaceUploader2.cab
DPF: {A7846ED2-9DE6-4E8A-B116-A8ACEBFA7DB1} - hxxp://rms2.invokesolutions.com/events/bin/6.2.0.1452/MILive.cab
DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{D1E5C5B0-E2FA-4743-A603-747510A91B61} : DHCPNameServer = 192.168.1.1
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - <orphaned>
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - d:\program files\common files\avg secure search\viprotocolinstaller\15.4.0\ViProtocol.dll
Handler: vsharechrome - {3F3A4B8A-86FC-43A4-BB00-6D7EBE9D4484} - d:\program files\vshare\vshare_toolbar.dll
Notify: AtiExtEvent - Ati2evxx.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - d:\windows\system32\WPDShServiceObj.dll
SEH: SpywareGuard.Handler - {81559C35-8464-49F7-BB0E-07A383BEF910} - d:\program files\spywareguard\spywareguard.dll
SEH: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - d:\program files\superantispyware\SASSEH.DLL
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "d:\program files\google\chrome\application\28.0.1500.95\installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
.
============= SERVICES / DRIVERS ===============
.
R0 AVGIDSHX;AVGIDSHX;d:\windows\system32\drivers\avgidshx.sys [2012-4-19 60216]
R0 Avglogx;AVG Logging Driver;d:\windows\system32\drivers\avglogx.sys [2012-8-9 246072]
R0 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield;d:\windows\system32\drivers\avgmfx86.sys [2011-12-23 96568]
R0 Avgrkx86;AVG Anti-Rootkit Driver;d:\windows\system32\drivers\avgrkx86.sys [2012-1-31 39224]
R0 gfibto;gfibto;d:\windows\system32\drivers\gfibto.sys [2013-3-7 13560]
R1 AVGIDSDriver;AVGIDSDriver;d:\windows\system32\drivers\avgidsdriverx.sys [2011-12-23 208184]
R1 AVGIDSShim;AVGIDSShim;d:\windows\system32\drivers\avgidsshimx.sys [2011-12-23 22328]
R1 Avgldx86;AVG AVI Loader Driver;d:\windows\system32\drivers\avgldx86.sys [2012-2-22 171320]
R1 Avgtdix;AVG TDI Driver;d:\windows\system32\drivers\avgtdix.sys [2012-3-19 182072]
R1 avgtp;avgtp;d:\windows\system32\drivers\avgtpx86.sys [2013-5-2 37664]
R1 SASDIFSV;SASDIFSV;d:\program files\superantispyware\sasdifsv.sys [2011-7-22 12880]
R1 SASKUTIL;SASKUTIL;d:\program files\superantispyware\SASKUTIL.SYS [2011-7-12 67664]
R1 Vsdatant;vsdatant;d:\windows\system32\vsdatant.sys [2012-11-7 525840]
R2 !SASCORE;SAS Core Service;d:\program files\superantispyware\SASCore.exe [2011-8-11 116608]
R2 AVGIDSAgent;AVGIDSAgent;d:\program files\avg\avg2013\avgidsagent.exe [2013-7-4 4939312]
R2 avgwd;AVG WatchDog;d:\program files\avg\avg2013\avgwdsvc.exe [2013-7-23 283136]
R2 HitmanProScheduler;HitmanPro Scheduler;d:\program files\hitmanpro\hmpsched.exe [2013-8-9 106280]
R2 ISWKL;ZoneAlarm LTD Toolbar ISWKL;d:\program files\checkpoint\zaforcefield\ISWKL.sys [2012-3-16 27016]
R2 TuneUp.UtilitiesSvc;AVG PC TuneUp Service;d:\program files\avg\avg pc tuneup\TuneUpUtilitiesService32.exe [2012-8-23 1532280]
R2 vsmon;TrueVector Internet Monitor;d:\program files\checkpoint\zonealarm\vsmon.exe -service --> d:\program files\checkpoint\zonealarm\vsmon.exe -service [?]
R2 vToolbarUpdater15.4.0;vToolbarUpdater15.4.0;d:\program files\common files\avg secure search\vtoolbarupdater\15.4.0\ToolbarUpdater.exe [2013-7-29 1616048]
R3 AtcL001;NDIS Miniport Driver for Atheros L1 Gigabit Ethernet Controller;d:\windows\system32\drivers\l151x86.sys [2009-4-6 37376]
R3 KKW_HID;Kensington HIDClass Filter Driver;d:\windows\system32\drivers\kkw_hid.sys [2008-10-29 14208]
R3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;d:\program files\avg\avg pc tuneup\TuneUpUtilitiesDriver32.sys [2012-7-4 10088]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;d:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 Ambfilt;Ambfilt;d:\windows\system32\drivers\Ambfilt.sys [2009-1-20 1684736]
S3 AVG Security Toolbar Service;AVG Security Toolbar Service;d:\program files\avg\avg10\toolbar\toolbarbroker.exe --> d:\program files\avg\avg10\toolbar\ToolbarBroker.exe [?]
S3 BRDriver;BRDriver;\??\d:\documents and settings\all users\application data\bitraider\brdriver.sys --> d:\documents and settings\all users\application data\bitraider\BRDriver.sys [?]
S3 BRSptSvc;BitRaider Mini-Support Service;d:\documents and settings\all users\application data\bitraider\BRSptSvc.exe [2013-7-31 476936]
S3 qcserxp;HTC Diagnostic Port;d:\windows\system32\drivers\qcserxp.sys [2012-2-29 103424]
S3 qcusbser;Qualcomm USB Device for Legacy Serial Communication;d:\windows\system32\drivers\qcmdmxp.sys [2012-2-29 105984]
S3 SetupNTGLM7X;SetupNTGLM7X;\??\e:\ntglm7x.sys --> e:\NTGLM7X.sys [?]
S3 SMSIVZAM5;SMSIVZAM5 NDIS Protocol Driver;d:\progra~1\verizo~1\vzacce~1\SMSIVZAM5.SYS [2009-5-25 32408]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;d:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v040 0.exe [2013-4-18 754856]
S4 Ad-Aware Service;Ad-Aware Service;d:\program files\ad-aware antivirus\AdAwareService.exe [2013-2-21 1236336]
S4 IswSvc;ZoneAlarm LTD Toolbar IswSvc;d:\program files\checkpoint\zaforcefield\ISWSVC.exe [2012-3-16 497280]
S4 SBAMSvc;Ad-Aware;d:\program files\ad-aware antivirus\SBAMSvc.exe [2012-9-20 3677000]
S4 WUSB54Gv42SVC;WUSB54Gv42SVC;d:\program files\linksys wireless-g usb wireless network monitor\WLService.exe [2008-10-29 53307]
.
=============== Created Last 30 ================
.
2013-08-09 20:37:57 -------- d-----w- d:\program files\HitmanPro
2013-08-09 20:37:16 -------- d-----w- d:\documents and settings\all users\application data\HitmanPro
2013-08-09 19:54:19 -------- d-----w- d:\documents and settings\all users\application data\bomgar-scc-520548EB
2013-08-09 19:39:49 -------- d-----w- d:\documents and settings\all users\application data\bomgar-scc-52054585
2013-08-09 19:35:24 -------- d-----w- d:\documents and settings\all users\application data\bomgar-scc-5205447C
2013-08-09 19:30:57 -------- d-----w- d:\documents and settings\all users\application data\bomgar-scc-52054371
2013-08-09 19:13:14 -------- d-----w- d:\documents and settings\all users\application data\bomgar-scc-52053F4A
2013-08-09 19:10:10 -------- d-----w- d:\documents and settings\all users\application data\bomgar-scc-52053E92
2013-08-09 18:19:42 -------- d-----w- d:\documents and settings\anthony\local settings\application data\DriverTuner
2013-08-09 18:19:32 -------- d-----w- d:\program files\DriverTuner
2013-08-09 09:16:07 32120 ----a-w- d:\windows\system32\TURegOpt.exe
2013-08-09 09:15:50 -------- d-----w- d:\documents and settings\anthony\application data\AVG
2013-08-09 09:14:41 -------- d-----w- d:\documents and settings\all users\application data\AVG
2013-08-09 09:14:28 -------- d-sh--w- d:\documents and settings\all users\application data\{D1D4879F-2279-49C9-AEBF-3B95C84EAA8F}
2013-08-08 06:15:05 -------- d-----w- d:\documents and settings\all users\application data\Battle.net
2013-08-02 08:18:18 -------- d-----w- d:\documents and settings\anthony\local settings\application data\SWTOR
2013-07-31 10:03:48 -------- d-----w- d:\documents and settings\all users\application data\BitRaider
2013-07-31 07:50:27 953856 -c----w- d:\windows\system32\dllcache\mfc40u.dll
2013-07-31 07:49:45 456320 -c----w- d:\windows\system32\dllcache\mrxsmb.sys
2013-07-31 07:48:34 617472 -c----w- d:\windows\system32\dllcache\comctl32.dll
2013-07-31 07:47:32 40960 -c----w- d:\windows\system32\dllcache\ndproxy.sys
2013-07-31 07:45:55 105472 -c----w- d:\windows\system32\dllcache\mup.sys
2013-07-31 07:45:41 12928 -c----w- d:\windows\system32\dllcache\usb8023x.sys
2013-07-31 07:45:41 12928 -c----w- d:\windows\system32\dllcache\usb8023.sys
2013-07-31 07:45:20 522240 -c----w- d:\windows\system32\dllcache\jsdbgui.dll
2013-07-31 07:44:39 536576 -c----w- d:\windows\system32\dllcache\msado15.dll
2013-07-31 07:44:37 139784 -c----w- d:\windows\system32\dllcache\rdpwd.sys
2013-07-31 07:44:23 884072 ----a-w- d:\windows\system32\nvhdagenco3220103.dll
2013-07-31 07:44:23 28008 ----a-w- d:\windows\system32\nvhdap32.dll
2013-07-31 07:44:23 124264 ----a-w- d:\windows\system32\drivers\nvhda32.sys
2013-07-31 07:44:22 49408 ----a-w- d:\windows\system32\drivers\stream.sys
2013-07-31 07:44:22 23552 ----a-w- d:\windows\system32\wdmaud.drv
2013-07-31 07:44:22 146048 ----a-w- d:\windows\system32\drivers\portcls.sys
2013-07-31 07:44:20 4096 ----a-w- d:\windows\system32\ksuser.dll
2013-07-31 07:44:20 129536 ----a-w- d:\windows\system32\ksproxy.ax
2013-07-31 07:44:19 60160 ----a-w- d:\windows\system32\drivers\drmk.sys
2013-07-31 07:44:19 141056 ----a-w- d:\windows\system32\drivers\ks.sys
2013-07-31 07:43:07 718336 -c----w- d:\windows\system32\dllcache\ntdll.dll
2013-07-31 07:43:07 2149888 -c----w- d:\windows\system32\dllcache\ntkrnlmp.exe
2013-07-31 07:43:06 2193536 -c----w- d:\windows\system32\dllcache\ntoskrnl.exe
2013-07-31 07:43:06 2028544 -c----w- d:\windows\system32\dllcache\ntkrpamp.exe
2013-07-31 07:43:05 2070144 -c----w- d:\windows\system32\dllcache\ntkrnlpa.exe
2013-07-31 07:42:57 10496 -c----w- d:\windows\system32\dllcache\ndistapi.sys
2013-07-31 07:42:53 3072 -c----w- d:\windows\system32\dllcache\iacenc.dll
2013-07-31 07:42:53 3072 ------w- d:\windows\system32\iacenc.dll
2013-07-31 07:42:38 45568 -c----w- d:\windows\system32\dllcache\wab.exe
2013-07-31 07:42:34 590848 -c----w- d:\windows\system32\dllcache\rpcrt4.dll
2013-07-31 07:40:27 5947392 ----a-w- d:\windows\system32\nvopencl.dll
2013-07-31 07:40:13 19103744 ----a-w- d:\windows\system32\nvoglnt.dll
2013-07-31 07:40:11 2578792 ----a-w- d:\windows\system32\nvcuvid.dll
2013-07-31 07:40:10 1866088 ----a-w- d:\windows\system32\nvcuvenc.dll
2013-07-31 07:40:08 7446528 ----a-w- d:\windows\system32\nvcuda.dll
2013-07-31 07:40:00 17551360 ----a-w- d:\windows\system32\nvcompiler.dll
2013-07-31 07:39:48 2376704 ----a-w- d:\windows\system32\nvapi.dll
2013-07-31 07:39:28 4494208 ----a-w- d:\windows\system32\nv4_disp.dll
2013-07-31 07:39:25 12557728 ----a-w- d:\windows\system32\drivers\nv4_mini.sys
2013-07-31 07:37:25 272128 -c----w- d:\windows\system32\dllcache\bthport.sys
2013-07-31 07:37:09 892704 ----a-w- d:\windows\system32\SET17E.tmp
2013-07-31 07:37:03 893728 ----a-w- d:\windows\system32\nvdispgenco3232049.dll
2013-07-31 07:37:03 1024288 ----a-w- d:\windows\system32\nvdispco3232049.dll
2013-07-31 07:36:57 2548736 ----a-w- d:\windows\system32\SETE4.tmp
2013-07-31 07:36:56 4014592 ----a-w- d:\windows\system32\SETDA.tmp
2013-07-31 07:36:31 471552 -c----w- d:\windows\system32\dllcache\aclayers.dll
2013-07-31 07:35:59 81920 -c----w- d:\windows\system32\dllcache\fontsub.dll
2013-07-31 07:35:59 119808 -c----w- d:\windows\system32\dllcache\t2embed.dll
2013-07-31 07:35:57 284160 -c----w- d:\windows\system32\dllcache\pdh.dll
2013-07-31 07:35:56 473600 -c----w- d:\windows\system32\dllcache\fastprox.dll
2013-07-31 07:35:56 453120 -c----w- d:\windows\system32\dllcache\wmiprvsd.dll
2013-07-31 07:35:56 401408 -c----w- d:\windows\system32\dllcache\rpcss.dll
2013-07-31 07:35:56 227840 -c----w- d:\windows\system32\dllcache\wmiprvse.exe
2013-07-31 07:35:56 110592 -c----w- d:\windows\system32\dllcache\services.exe
2013-07-31 07:35:55 617472 -c----w- d:\windows\system32\dllcache\advapi32.dll
2013-07-31 07:35:26 203136 -c----w- d:\windows\system32\dllcache\rmcast.sys
2013-07-31 07:16:38 -------- d-----w- d:\windows\system32\scripting
2013-07-31 07:16:38 -------- d-----w- d:\windows\l2schemas
2013-07-31 07:16:37 -------- d-----w- d:\windows\system32\en
2013-07-31 07:16:37 -------- d-----w- d:\windows\system32\bits
2013-07-31 06:42:38 94632 ----a-w- d:\windows\system32\WindowsAccessBridge.dll
2013-07-25 21:59:18 -------- d-----w- d:\documents and settings\anthony\local settings\application data\SWTORPerf
.
==================== Find3M ====================
.
2013-07-31 07:40:47 1098236 ----a-w- d:\windows\system32\nvdrsdb1.bin
2013-07-31 07:40:47 1 ----a-w- d:\windows\system32\nvdrssel.bin
2013-07-31 07:40:41 1098236 ----a-w- d:\windows\system32\nvdrsdb0.bin
2013-07-31 06:42:27 867240 ----a-w- d:\windows\system32\npDeployJava1.dll
2013-07-31 06:42:27 789416 ----a-w- d:\windows\system32\deployJava1.dll
2013-07-31 06:42:27 144896 ----a-w- d:\windows\system32\javacpl.cpl
2013-07-29 19:06:07 37664 ----a-w- d:\windows\system32\drivers\avgtpx86.sys
2013-07-22 19:58:24 71048 ----a-w- d:\windows\system32\FlashPlayerCPLApp.cpl
2013-07-22 19:58:24 692104 ----a-w- d:\windows\system32\FlashPlayerApp.exe
2013-07-20 08:51:00 246072 ----a-w- d:\windows\system32\drivers\avglogx.sys
2013-07-20 08:50:56 60216 ----a-w- d:\windows\system32\drivers\avgidshx.sys
2013-07-20 08:50:56 208184 ----a-w- d:\windows\system32\drivers\avgidsdriverx.sys
2013-07-20 08:50:50 171320 ----a-w- d:\windows\system32\drivers\avgldx86.sys
2013-07-10 08:32:40 39224 ----a-w- d:\windows\system32\drivers\avgrkx86.sys
2013-06-21 09:54:12 54272 ----a-w- d:\windows\system32\nvwddi.dll
2013-06-21 09:54:11 156960 ----a-w- d:\windows\system32\nvsvc32.exe
2013-06-21 09:54:10 15677728 ----a-w- d:\windows\system32\nvcpl.dll
2013-06-21 09:54:09 223008 ----a-w- d:\windows\system32\nvmctray.dll
2013-06-21 09:54:09 144160 ----a-w- d:\windows\system32\nvcolor.exe
2013-06-08 06:55:44 385024 ----a-w- d:\windows\system32\html.iec
2013-06-07 21:56:06 920064 ----a-w- d:\windows\system32\wininet.dll
2013-06-07 21:56:06 43520 ----a-w- d:\windows\system32\licmgr10.dll
2013-06-07 21:56:05 1469440 ------w- d:\windows\system32\inetcpl.cpl
2013-06-04 07:23:02 562688 ----a-w- d:\windows\system32\qedit.dll
2013-06-04 01:40:45 1876736 ----a-w- d:\windows\system32\win32k.sys
.
============= FINISH: 15:55:00.68 ===============


----------------------------------------------------------------------------------------------------------
DDS (Ver_2012-11-20.01)
.
Microsoft Windows XP Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 1/20/2009 2:10:44 PM
System Uptime: 8/9/2013 2:09:35 PM (1 hours ago)
.
Motherboard: ASUSTeK Computer INC. | | P5K
Processor: Intel(R) Core(TM)2 Quad CPU Q6600 @ 2.40GHz | LGA775 | 2405/266mhz
.
==== Disk Partitions =========================
.
A: is Removable
C: is FIXED (NTFS) - 234 GiB total, 204.353 GiB free.
D: is FIXED (NTFS) - 231 GiB total, 78.157 GiB free.
E: is CDROM ()
F: is Removable
G: is Removable
H: is Removable
I: is Removable
J: is CDROM ()
.
==== Disabled Device Manager Items =============
.
Class GUID: {4D36E96B-E325-11CE-BFC1-08002BE10318}
Description: Standard 101/102-Key or Microsoft Natural PS/2 Keyboard
Device ID: ACPI\PNP0303\4&1400782C&0
Manufacturer: (Standard keyboards)
Name: Standard 101/102-Key or Microsoft Natural PS/2 Keyboard
PNP Device ID: ACPI\PNP0303\4&1400782C&0
Service: i8042prt
.
==== System Restore Points ===================
.
RP1481: 5/11/2013 11:16:31 PM - System Checkpoint
RP1482: 5/13/2013 2:19:39 PM - System Checkpoint
RP1483: 5/16/2013 3:03:18 PM - System Checkpoint
RP1484: 5/21/2013 1:01:24 PM - System Checkpoint
RP1485: 5/22/2013 2:34:23 PM - System Checkpoint
RP1486: 5/23/2013 4:46:34 PM - System Checkpoint
RP1487: 5/27/2013 11:52:51 AM - System Checkpoint
RP1488: 5/28/2013 4:27:12 PM - System Checkpoint
RP1489: 6/1/2013 7:34:52 PM - System Checkpoint
RP1490: 6/5/2013 2:23:42 PM - System Checkpoint
RP1491: 6/9/2013 7:45:36 PM - System Checkpoint
RP1492: 6/12/2013 7:25:03 PM - System Checkpoint
RP1493: 6/13/2013 7:40:55 PM - System Checkpoint
RP1494: 6/20/2013 12:53:11 AM - System Checkpoint
RP1495: 6/22/2013 3:21:27 PM - System Checkpoint
RP1496: 6/25/2013 11:56:55 AM - System Checkpoint
RP1497: 6/27/2013 4:10:15 PM - System Checkpoint
RP1498: 6/29/2013 10:11:39 AM - System Checkpoint
RP1499: 7/2/2013 3:52:02 PM - System Checkpoint
RP1500: 7/7/2013 1:32:52 PM - System Checkpoint
RP1501: 7/8/2013 2:23:07 PM - System Checkpoint
RP1502: 7/9/2013 4:17:05 PM - System Checkpoint
RP1503: 7/13/2013 6:04:01 PM - System Checkpoint
RP1504: 7/15/2013 2:50:36 PM - System Checkpoint
RP1505: 7/17/2013 11:55:22 AM - System Checkpoint
RP1506: 7/20/2013 1:03:24 PM - System Checkpoint
RP1507: 7/22/2013 3:22:54 PM - System Checkpoint
RP1508: 7/22/2013 6:50:34 PM - Installed AVG 2013
RP1509: 7/22/2013 6:52:48 PM - Removed AVG 2013
RP1510: 7/22/2013 6:53:21 PM - Removed AVG 2013
RP1511: 7/22/2013 6:53:55 PM - Removed AVG 2013
RP1512: 7/22/2013 6:54:31 PM - Removed AVG 2013
RP1513: 7/22/2013 6:55:03 PM - Removed AVG 2013
RP1514: 7/22/2013 6:55:36 PM - Removed AVG 2013
RP1515: 7/22/2013 6:56:08 PM - Removed AVG 2013
RP1516: 7/22/2013 6:56:40 PM - Removed AVG 2013
RP1517: 7/22/2013 6:57:38 PM - Removed AVG 2013
RP1518: 7/22/2013 6:58:13 PM - Removed AVG 2013
RP1519: 7/24/2013 3:28:08 PM - System Checkpoint
RP1520: 7/25/2013 6:20:58 PM - System Checkpoint
RP1521: 7/27/2013 1:33:22 AM - System Checkpoint
RP1522: 7/29/2013 12:21:00 PM - System Checkpoint
RP1523: 7/30/2013 3:36:27 PM - System Checkpoint
RP1524: 7/30/2013 11:41:52 PM - Removed Java 7 Update 17
RP1525: 7/30/2013 11:42:21 PM - Installed Java 7 Update 25
RP1526: 7/30/2013 11:58:24 PM - Software Distribution Service 3.0
RP1527: 7/31/2013 1:19:55 AM - Software Distribution Service 3.0
RP1528: 7/31/2013 2:34:26 AM - Software Distribution Service 3.0
RP1529: 7/31/2013 2:42:06 AM - Software Distribution Service 3.0
RP1530: 7/31/2013 2:43:11 AM - Software Distribution Service 3.0
RP1531: 7/31/2013 2:47:43 AM - Software Distribution Service 3.0
RP1532: 7/31/2013 3:00:15 AM - Software Distribution Service 3.0
RP1533: 8/1/2013 3:25:46 AM - System Checkpoint
RP1534: 8/2/2013 1:26:14 AM - Software Distribution Service 3.0
RP1535: 8/2/2013 3:00:14 AM - Software Distribution Service 3.0
RP1536: 8/3/2013 3:00:33 AM - Software Distribution Service 3.0
RP1537: 8/4/2013 3:00:16 AM - Software Distribution Service 3.0
RP1538: 8/4/2013 11:09:09 AM - Software Distribution Service 3.0
RP1539: 8/5/2013 12:04:24 AM - Software Distribution Service 3.0
RP1540: 8/5/2013 12:13:11 AM - Software Distribution Service 3.0
RP1541: 8/5/2013 3:00:16 AM - Software Distribution Service 3.0
RP1542: 8/6/2013 3:00:16 AM - Software Distribution Service 3.0
RP1543: 8/7/2013 1:59:27 AM - Removed Ad-Aware Antivirus.
RP1544: 8/7/2013 2:05:41 AM - Removed Ad-Aware Antivirus.
RP1545: 8/7/2013 3:00:15 AM - Software Distribution Service 3.0
RP1546: 8/8/2013 3:00:15 AM - Software Distribution Service 3.0
RP1547: 8/9/2013 2:15:33 AM - Installed AVG PC TuneUp
RP1548: 8/9/2013 4:50:38 AM - Software Distribution Service 3.0
RP1549: 8/9/2013 12:25:45 PM - Restore Operation
RP1550: 8/9/2013 12:29:13 PM - Restore Operation
.
==== Installed Programs ======================
.
Acrobat.com
Ad-Aware Antivirus
Ad-Aware Browsing Protection
Adobe AIR
Adobe Flash Player 10 Plugin
Adobe Flash Player 11 ActiveX
Adobe Reader XI (11.0.03)
Apple Mobile Device Support
Apple Software Update
Attansic Ethernet Utility
AVG 2013
AVG PC TuneUp
AVG PC TuneUp Language Pack (en-US)
AVS Update Manager 1.0
AVS Video Converter 6
AVS4YOU Software Navigator 1.3
BitRaider Web Client
Bonjour
CCleaner
Cheetah CD Burner
Critical Update for Windows Media Player 11 (KB959772)
Curse Client
DivX Setup
DriverTuner 3.1.0.1
EPSON Printer Software
Free Easy Burner V 3.8
Galactic Civilizations
Galactic Civilizations II
GalCiv II - Dark Avatar
GalCiv II - Twilight of the Arnor
Google Chrome
Google Toolbar for Internet Explorer
Google Update Helper
Guild Wars
Haali Media Splitter
HitmanPro 3.7
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
Hotfix for Windows XP (KB2779562)
Hotfix for Windows XP (KB952287)
Hotfix for Windows XP (KB954550-v5)
Hotfix for Windows XP (KB961118)
Hotfix for Windows XP (KB970653-v3)
Hotfix for Windows XP (KB976098-v2)
Hotfix for Windows XP (KB979306)
Hotfix for Windows XP (KB981793)
Impulse
iTunes
Java 7 Update 25
Java Auto Updater
Java(TM) 6 Update 21
JavaFX 2.1.1
JMB36X Raid Configurer
Kensington Keyboard
LimeWire 5.5.14
Linksys Wireless-G USB Network Adapter
Malwarebytes Anti-Malware version 1.75.0.1300
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Security Update (KB2833941)
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 2.0 Service Pack 2
Microsoft .NET Framework 3.0 Service Pack 2
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4 Client Profile
Microsoft .NET Framework 4 Extended
Microsoft Application Error Reporting
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft IntelliPoint 7.1
Microsoft IntelliType Pro 7.1
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft National Language Support Downlevel APIs
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Excel MUI (English) 2007
Microsoft Office File Validation Add-In
Microsoft Office Home and Student 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office PowerPoint Viewer 2007 (English)
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Silverlight
Microsoft Software Update for Web Folders (English) 12
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 6 Service Pack 2 (KB973686)
NVIDIA Control Panel 320.49
NVIDIA GeForce Experience 1.5
NVIDIA Graphics Driver 320.49
NVIDIA HD Audio Driver 1.3.24.2
NVIDIA Install Application
NVIDIA nView 140.62
NVIDIA nView Desktop Manager
NVIDIA PhysX
NVIDIA PhysX System Software 9.13.0604
NVIDIA Update 4.11.9
NVIDIA Update Components
OGA Notifier 2.0.0048.0
PlanetSide 2 Beta
QuickTime
RealNetworks - Microsoft Visual C++ 2008 Runtime
RealPlayer
Realtek High Definition Audio Driver
RealUpgrade 1.1
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2604111)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2657424)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2736416)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2840629)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2736428)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2804576)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2832407)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2835393)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628)
Security Update for Microsoft .NET Framework 4 Extended (KB2487367)
Security Update for Microsoft .NET Framework 4 Extended (KB2656351)
Security Update for Microsoft .NET Framework 4 Extended (KB2736428)
Security Update for Microsoft .NET Framework 4 Extended (KB2742595)
Security Update for Microsoft Office 2007 suites (KB2596615) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596785) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2687309) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2687311) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2687441) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2687499) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760416) 32-Bit Edition
Security Update for Microsoft Office Excel 2007 (KB2687307) 32-Bit Edition
Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition
Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition
Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition
Security Update for Microsoft Office Word 2007 (KB2760421) 32-Bit Edition
Security Update for Microsoft Windows (KB2564958)
Security Update for Windows Internet Explorer 7 (KB938127-v2)
Security Update for Windows Internet Explorer 7 (KB956390)
Security Update for Windows Internet Explorer 7 (KB958215)
Security Update for Windows Internet Explorer 7 (KB960714)
Security Update for Windows Internet Explorer 7 (KB961260)
Security Update for Windows Internet Explorer 7 (KB963027)
Security Update for Windows Internet Explorer 7 (KB969897)
Security Update for Windows Internet Explorer 7 (KB972260)
Security Update for Windows Internet Explorer 8 (KB2510531)
Security Update for Windows Internet Explorer 8 (KB2846071)
Security Update for Windows Internet Explorer 8 (KB971961)
Security Update for Windows Internet Explorer 8 (KB972260)
Security Update for Windows Internet Explorer 8 (KB974455)
Security Update for Windows Internet Explorer 8 (KB976325)
Security Update for Windows Internet Explorer 8 (KB978207)
Security Update for Windows Internet Explorer 8 (KB981332)
Security Update for Windows Internet Explorer 8 (KB982381)
Security Update for Windows Media Player (KB2378111)
Security Update for Windows Media Player (KB2834904)
Security Update for Windows Media Player (KB954155)
Security Update for Windows Media Player (KB968816)
Security Update for Windows Media Player (KB973540)
Security Update for Windows Media Player (KB975558)
Security Update for Windows Media Player (KB978695)
Security Update for Windows XP (KB2115168)
Security Update for Windows XP (KB2229593)
Security Update for Windows XP (KB2296011)
Security Update for Windows XP (KB2347290)
Security Update for Windows XP (KB2360937)
Security Update for Windows XP (KB2387149)
Security Update for Windows XP (KB2393802)
Security Update for Windows XP (KB2419632)
Security Update for Windows XP (KB2423089)
Security Update for Windows XP (KB2440591)
Security Update for Windows XP (KB2443105)
Security Update for Windows XP (KB2478960)
Security Update for Windows XP (KB2478971)
Security Update for Windows XP (KB2479943)
Security Update for Windows XP (KB2481109)
Security Update for Windows XP (KB2483185)
Security Update for Windows XP (KB2485663)
Security Update for Windows XP (KB2506212)
Security Update for Windows XP (KB2507938)
Security Update for Windows XP (KB2508429)
Security Update for Windows XP (KB2509553)
Security Update for Windows XP (KB2535512)
Security Update for Windows XP (KB2536276-v2)
Security Update for Windows XP (KB2544893-v2)
Security Update for Windows XP (KB2566454)
Security Update for Windows XP (KB2570947)
Security Update for Windows XP (KB2584146)
Security Update for Windows XP (KB2585542)
Security Update for Windows XP (KB2592799)
Security Update for Windows XP (KB2598479)
Security Update for Windows XP (KB2603381)
Security Update for Windows XP (KB2618451)
Security Update for Windows XP (KB2619339)
Security Update for Windows XP (KB2620712)
Security Update for Windows XP (KB2624667)
Security Update for Windows XP (KB2631813)
Security Update for Windows XP (KB2653956)
Security Update for Windows XP (KB2655992)
Security Update for Windows XP (KB2659262)
Security Update for Windows XP (KB2661637)
Security Update for Windows XP (KB2676562)
Security Update for Windows XP (KB2686509)
Security Update for Windows XP (KB2691442)
Security Update for Windows XP (KB2698365)
Security Update for Windows XP (KB2705219-v2)
Security Update for Windows XP (KB2712808)
Security Update for Windows XP (KB2719985)
Security Update for Windows XP (KB2723135-v2)
Security Update for Windows XP (KB2727528)
Security Update for Windows XP (KB2753842-v2)
Security Update for Windows XP (KB2757638)
Security Update for Windows XP (KB2758857)
Security Update for Windows XP (KB2770660)
Security Update for Windows XP (KB2780091)
Security Update for Windows XP (KB2802968)
Security Update for Windows XP (KB2807986)
Security Update for Windows XP (KB2813345)
Security Update for Windows XP (KB2820197)
Security Update for Windows XP (KB2820917)
Security Update for Windows XP (KB2834886)
Security Update for Windows XP (KB2839229)
Security Update for Windows XP (KB2845187)
Security Update for Windows XP (KB2850851)
Security Update for Windows XP (KB923561)
Security Update for Windows XP (KB923789)
Security Update for Windows XP (KB938464)
Security Update for Windows XP (KB941569)
Security Update for Windows XP (KB946648)
Security Update for Windows XP (KB950762)
Security Update for Windows XP (KB950974)
Security Update for Windows XP (KB951066)
Security Update for Windows XP (KB951376-v2)
Security Update for Windows XP (KB951698)
Security Update for Windows XP (KB951748)
Security Update for Windows XP (KB952004)
Security Update for Windows XP (KB952954)
Security Update for Windows XP (KB954211)
Security Update for Windows XP (KB954600)
Security Update for Windows XP (KB955069)
Security Update for Windows XP (KB956391)
Security Update for Windows XP (KB956572)
Security Update for Windows XP (KB956802)
Security Update for Windows XP (KB956803)
Security Update for Windows XP (KB956841)
Security Update for Windows XP (KB956844)
Security Update for Windows XP (KB957095)
Security Update for Windows XP (KB957097)
Security Update for Windows XP (KB958215)
Security Update for Windows XP (KB958644)
Security Update for Windows XP (KB958690)
Security Update for Windows XP (KB958869)
Security Update for Windows XP (KB959426)
Security Update for Windows XP (KB960225)
Security Update for Windows XP (KB960714)
Security Update for Windows XP (KB960715)
Security Update for Windows XP (KB960803)
Security Update for Windows XP (KB960859)
Security Update for Windows XP (KB961371)
Security Update for Windows XP (KB961373)
Security Update for Windows XP (KB961501)
Security Update for Windows XP (KB968537)
Security Update for Windows XP (KB969059)
Security Update for Windows XP (KB969898)
Security Update for Windows XP (KB969947)
Security Update for Windows XP (KB970238)
Security Update for Windows XP (KB970430)
Security Update for Windows XP (KB971468)
Security Update for Windows XP (KB971486)
Security Update for Windows XP (KB971557)
Security Update for Windows XP (KB971633)
Security Update for Windows XP (KB971657)
Security Update for Windows XP (KB972270)
Security Update for Windows XP (KB973346)
Security Update for Windows XP (KB973354)
Security Update for Windows XP (KB973507)
Security Update for Windows XP (KB973525)
Security Update for Windows XP (KB973869)
Security Update for Windows XP (KB973904)
Security Update for Windows XP (KB974112)
Security Update for Windows XP (KB974318)
Security Update for Windows XP (KB974392)
Security Update for Windows XP (KB974571)
Security Update for Windows XP (KB975025)
Security Update for Windows XP (KB975467)
Security Update for Windows XP (KB975560)
Security Update for Windows XP (KB975561)
Security Update for Windows XP (KB975562)
Security Update for Windows XP (KB975713)
Security Update for Windows XP (KB977165-v2)
Security Update for Windows XP (KB977816)
Security Update for Windows XP (KB977914)
Security Update for Windows XP (KB978037)
Security Update for Windows XP (KB978251)
Security Update for Windows XP (KB978262)
Security Update for Windows XP (KB978338)
Security Update for Windows XP (KB978542)
Security Update for Windows XP (KB978601)
Security Update for Windows XP (KB978706)
Security Update for Windows XP (KB979309)
Security Update for Windows XP (KB979482)
Security Update for Windows XP (KB979559)
Security Update for Windows XP (KB979683)
Security Update for Windows XP (KB979687)
Security Update for Windows XP (KB980195)
Security Update for Windows XP (KB980218)
Security Update for Windows XP (KB980232)
Security Update for Windows XP (KB981322)
Security Update for Windows XP (KB981997)
Security Update for Windows XP (KB982132)
Security Update for Windows XP (KB982665)
Spybot - Search & Destroy
SpywareBlaster 4.1
SpywareGuard v2.2
Star Wars Empire at War
Star Wars JK II Jedi Outcast
Star Wars Knights of the Old Republic
Star Wars The Old Republic
Star Wars(R) Knights of the Old Republic(R) II: The Sith Lords(TM)
Star Wars: The Old Republic
Starcraft
SUPERAntiSpyware
System Requirements Lab
TeamSpeak 3 Client
The Core Media Player 4.0
Unity Web Player
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition
Update for Windows Internet Explorer 8 (KB973874)
Update for Windows Internet Explorer 8 (KB976662)
Update for Windows Internet Explorer 8 (KB976749)
Update for Windows Internet Explorer 8 (KB980182)
Update for Windows XP (KB2345886)
Update for Windows XP (KB2661254-v2)
Update for Windows XP (KB2749655)
Update for Windows XP (KB951978)
Update for Windows XP (KB955759)
Update for Windows XP (KB955839)
Update for Windows XP (KB967715)
Update for Windows XP (KB968389)
Update for Windows XP (KB971029)
Update for Windows XP (KB971737)
Update for Windows XP (KB973687)
Update for Windows XP (KB973815)
VC 9.0 Runtime
VC80CRTRedist - 8.0.50727.4053
Ventrilo Client
vShare Plugin
VZAccess Manager
WebFldrs XP
Windows Genuine Advantage Notifications (KB905474)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Imaging Component
Windows Internet Explorer 8
Windows Media Format 11 runtime
Windows Media Player 11
Windows XP Service Pack 3
Wise Registry Cleaner 5.9.4
WModem Driver Installer
Xvid Video Codec
Yahoo! Messenger
ZoneAlarm Firewall
ZoneAlarm Free
ZoneAlarm Security
.
==== Event Viewer Messages From Past Week ========
.
8/8/2013 9:20:00 AM, error: DCOM [10005] - DCOM got error "%1058" attempting to start the service gupdate with arguments "/comsvc" in order to run the server: {4EB61BAC-A3B6-4760-9581-655041EF4D69}
8/8/2013 12:06:13 AM, error: Service Control Manager [7006] - The ScRegSetValueExW call failed for FailureActions with the following error: Access is denied.
8/8/2013 10:46:49 AM, error: JRAID [9] - The device, \Device\Scsi\JRAID1, did not respond within the timeout period.
8/7/2013 2:22:26 AM, error: Service Control Manager [7006] - The ScRegSetValueExW call failed for Start with the following error: Access is denied.
8/7/2013 11:11:28 PM, error: DCOM [10005] - DCOM got error "%1058" attempting to start the service Ad-Aware Service with arguments "" in order to run the server: {706FFEF5-7E90-4149-B038-B39106ECDB99}
8/4/2013 10:34:09 PM, error: Dhcp [1002] - The IP address lease 192.168.1.4 for the Network Card with network address 001D60A249CB has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).
8/3/2013 1:27:32 AM, error: DCOM [10005] - DCOM got error "%1058" attempting to start the service iPod Service with arguments "" in order to run the server: {7A7FB085-6068-4898-8CCA-480A9187277C}
.
==== End Of File ===========================


------------------------------------------------------------------------------------------------------
GMER 2.1.19163 - http://www.gmer.net
Rootkit quick scan 2013-08-10 00:20:42
Windows 5.1.2600 Service Pack 3 \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3 ST3500320AS rev.SD15 465.76GB
Running: 67imcve5.exe; Driver: D:\DOCUME~1\Anthony\LOCALS~1\Temp\kwrcqpog.sys


---- Devices - GMER 2.1 ----

AttachedDevice \FileSystem\Fastfat \Fat fltmgr.sys

Device \Driver\Tcpip \Device\Ip vsdatant.sys

AttachedDevice \Driver\Tcpip \Device\Ip avgtdix.sys

Device \Driver\Tcpip \Device\Tcp vsdatant.sys

AttachedDevice \Driver\Tcpip \Device\Tcp avgtdix.sys

Device \Driver\Tcpip \Device\Udp vsdatant.sys

AttachedDevice \Driver\Tcpip \Device\Udp avgtdix.sys

Device \Driver\Tcpip \Device\RawIp vsdatant.sys

AttachedDevice \Driver\Tcpip \Device\RawIp avgtdix.sys

---- EOF - GMER 2.1 ----

Viewing all articles
Browse latest Browse all 29110

Trending Articles